Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Neskutečný vir/nevir? Prosím pomoc!

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
heroeska
Návštěvník
Návštěvník
Příspěvky: 5
Registrován: 23 dub 2012 19:05

Neskutečný vir/nevir? Prosím pomoc!

#1 Příspěvek od heroeska »

Logfile of random's system information tool 1.09 (written by random/random)
Run by Robert at 2012-04-23 20:03:31
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 301 GB (86%) free of 348 GB
Total RAM: 4078 MB (66% free)


======Listing Processes======

\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
winlogon.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
"C:\Program Files (x86)\Common Files\EgisTec\Services\EgisTicketService.exe"
atieclxx
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe"
"C:\Program Files (x86)\Bluetooth Suite\adminservice.exe"
"C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE"
"C:\Program Files\Bonjour\mDNSResponder.exe"
"C:\Program Files (x86)\Launch Manager\dsiwmis.exe"
"C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe"
"C:\Program Files (x86)\Launch Manager\LMutilps32.exe" --system-level-mutex="Local\{B904A927-FE6B-48fd-8C83-6B807BED1F9C}" --enable-wmi-window
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Acer\Registration\GREGsvc.exe"
"C:\Program Files\Acer\Acer Updater\UpdaterService.exe"
"C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe" /McCoreSvc
"C:\Windows\system32\mfevtps.exe"
"C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe" SERVICE
"C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe"
"C:\Windows\system32\rundll32.exe" "c:\PROGRA~2\mcafee\SITEAD~1\saHook.dll", saHooker_Initialize_and_Wait
"C:\Windows\system32\rundll32.exe" "c:\PROGRA~2\mcafee\SITEAD~1\x64\saHook.dll", saHooker_Initialize_and_Wait
"C:\Windows\system32\rundll32.exe" "c:\PROGRA~2\mcafee\SITEAD~1\saHook.dll", saHooker_Initialize_and_Wait
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe"
"C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe"
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe"
"C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /FORPCEE4
"C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe"
"C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE" /tsr
C:\Windows\system32\wbem\unsecapp.exe -Embedding
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files\Synaptics\SynTP\SynTPHelper.exe"
"C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe" -h -k
"C:\Program Files\Acer\Acer ePower Management\ePowerEvent.exe"
"C:\Program Files (x86)\Launch Manager\LManager.exe"
"C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe"
"C:\Dolby PCEE4\pcee4.exe" -autostart
"C:\Program Files (x86)\Acer\clear.fi\Movie\clear.fiMovieService.exe"
taskeng.exe {C8C58635-05AC-481E-A377-B78457DF391C}
"C:\Program Files (x86)\Acer\clear.fi\MVP\clear.fiAgent.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\Launch Manager\MMDx64Fx.exe"
"C:\Program Files (x86)\iTunes\iTunesHelper.exe"
"C:\Windows\Samsung\PanelMgr\SSMMgr.exe" /autorun
"C:\Program Files (x86)\Launch Manager\LMworker.exe"
"C:\Program Files (x86)\Acer\clear.fi\MVP\.\Kernel\DMR\DMREngine.exe"
C:\Windows\Samsung\PanelMgr\caller64.exe Samsung PanelMgr
"C:\Program Files\iPod\bin\iPodService.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE"
"C:\Program Files\EgisTec IPS\PMMUpdate.exe"
"C:\Program Files\EgisTec IPS\EgisUpdate.exe"
"C:\Users\Uživatel\AppData\Local\Google\Chrome\Application\chrome.exe"
"C:\Users\Uživatel\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtest=ConnCountImpact/conn_count_6/ConnnectBackupJobs/ConnectBackupJobsEnabled/DnsImpact/default_enabled_prefetch/GlobalSdch/global_enable_sdch/IdleSktToImpact/idle_timeout_10/Instant/Inactive/Prerender/ContentPrefetchPrerender2/PrerenderFromOmnibox/OmniboxPrerenderEnabled/ProxyConnectionImpact/proxy_connections_32/SpdyCwnd/cwnd16/SpdyImpact/npn_with_spdy/WarmSocketImpact/last_accessed_socket/ --extension-process --renderer-print-preview --channel=5832.04F111C0.101738774 /prefetch:3
"C:\Users\Uživatel\AppData\Local\Google\Chrome\Application\chrome.exe" --type=plugin --plugin-path="C:\Users\Uživatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho\3.41.123.2_0\McChPlg.dll" --lang=cs --channel=5832.05657820.1314128654 /prefetch:4
C:\Windows\system32\rundll32.exe "C:\Users\UIVATE~1\AppData\Local\Google\Chrome\APPLIC~1\180102~1.162\gcswf32.dll",BrokerMain browser=chrome
"C:\Users\Uživatel\AppData\Local\Google\Chrome\Application\chrome.exe" --type=plugin --plugin-path="C:\Users\Uživatel\AppData\Local\Google\Chrome\Application\18.0.1025.162\gcswf32.dll" --lang=cs --channel=5832.05867B90.50534060 --flash-broker=6600 /prefetch:4
"c:\PROGRA~2\mcafee\SITEAD~1\saui.exe" -Embedding
"C:\Users\Uživatel\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtest=ConnCountImpact/conn_count_6/ConnnectBackupJobs/ConnectBackupJobsEnabled/DnsImpact/default_enabled_prefetch/GlobalSdch/global_enable_sdch/IdleSktToImpact/idle_timeout_10/Instant/Inactive/Prerender/ContentPrefetchPrerender2/PrerenderFromOmnibox/OmniboxPrerenderEnabled/ProxyConnectionImpact/proxy_connections_32/SpdyCwnd/cwnd16/SpdyImpact/npn_with_spdy/WarmSocketImpact/last_accessed_socket/ --renderer-print-preview --channel=5832.05985E00.1302739786 /prefetch:3
"C:\Users\Uživatel\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtest=ConnCountImpact/conn_count_6/ConnnectBackupJobs/ConnectBackupJobsEnabled/DnsImpact/default_enabled_prefetch/GlobalSdch/global_enable_sdch/IdleSktToImpact/idle_timeout_10/Instant/Inactive/Prerender/ContentPrefetchPrerender2/PrerenderFromOmnibox/OmniboxPrerenderEnabled/ProxyConnectionImpact/proxy_connections_32/SpdyCwnd/cwnd16/SpdyImpact/npn_with_spdy/WarmSocketImpact/last_accessed_socket/ --renderer-print-preview --channel=5832.058DE8C0.174724400 /prefetch:3
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files\trend micro\Robert.exe" /silentautolog
"C:\Program Files\mcafee.com\agent\mcagent.exe" /shRequest
C:\Windows\system32\sppsvc.exe
taskmgr.exe /3
taskhost.exe $(Arg0)
"C:\Users\Uživatel\Downloads\RSITx64.exe"

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2011-06-12 6721936]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7DB2D5A0-7241-4E79-B68D-6309F01C5231}]
scriptproxy - C:\Program Files\Common Files\McAfee\SystemCore\ScriptSn.20120416180420.dll [2011-12-06 94688]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-29 529280]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B164E929-A1B6-4A06-B104-2CD0E90A88FF}]
McAfee SiteAdvisor BHO - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll [2012-02-17 348592]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL [2010-12-21 689040]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-04-04 63912]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~2\MICROS~4\Office14\GROOVEEX.DLL [2011-06-12 4221328]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7DB2D5A0-7241-4E79-B68D-6309F01C5231}]
scriptproxy - C:\Program Files (x86)\Common Files\McAfee\SystemCore\ScriptSn.20120416180420.dll [2011-12-06 79744]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8D10F6C4-0E01-4BD4-8601-11AC1FDF8126}]
CIESpeechBHO Class - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll [2011-03-13 60576]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-29 441216]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B164E929-A1B6-4A06-B104-2CD0E90A88FF}]
McAfee SiteAdvisor BHO - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll [2012-02-17 281600]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~4\Office14\URLREDIR.DLL [2010-12-21 561552]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d2ce3e00-f94a-4740-988e-03dc2f38c34f}]
Bing Bar Helper - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll [2011-06-07 1152264]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - McAfee SiteAdvisor Toolbar - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll [2012-02-17 348592]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - McAfee SiteAdvisor Toolbar - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll [2012-02-17 281600]
{8dcb7100-df86-4384-8842-8fa844297b3f} - Bing Bar - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll [2011-06-07 1152264]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IntelTBRunOnce"=wscript.exe //b //nologo C:\Program Files\Intel\TurboBoost\RunTBGadgetOnce.vbs []
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2010-07-29 2280232]
"AtherosBtStack"=C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [2011-03-13 617120]
"AthBtTray"=C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe [2011-03-13 379552]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2011-08-16 12673128]
"RtHDVBg_Dolby"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2011-08-16 2277480]
"Power Management"=C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe [2011-08-02 1831016]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"mcui_exe"=C:\Program Files\McAfee.com\Agent\mcagent.exe [2011-11-22 1675160]
"Norton Online Backup"=C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuClient.exe [2010-06-02 1155928]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-01-03 843712]
"BackupManagerTray"=C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe [2011-04-24 297280]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2011-02-08 336384]
"LManager"=C:\Program Files (x86)\Launch Manager\LManager.exe [2011-07-01 1103440]
"NUSB3MON"=C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [2010-11-17 113288]
"Dolby Advanced Audio v2"=C:\Dolby PCEE4\pcee4.exe [2011-06-01 506712]
"SuiteTray"=C:\Program Files (x86)\EgisTec MyWinLockerSuite\x86\SuiteTray.exe [2011-09-20 341360]
"ArcadeMovieService"=C:\Program Files (x86)\Acer\clear.fi\Movie\clear.fiMovieService.exe [2011-08-26 177448]
"BCSSync"=C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [2010-03-13 91520]
"APSDaemon"=C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [2012-02-20 59240]
"iTunesHelper"=C:\Program Files (x86)\iTunes\iTunesHelper.exe [2012-03-27 421736]
"Samsung PanelMgr"=C:\Windows\Samsung\PanelMgr\SSMMgr.exe [2011-07-06 688128]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2011-06-12 6721936]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~2\MICROS~4\Office14\GROOVEEX.DLL [2011-06-12 4221328]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcmscsvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\McMPFSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mcmscsvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfefire]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfefirek]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfefirek.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfehidk]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfehidk.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfevtp]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"LogonHoursAction"=2
"DontDisplayLogonHoursWarnings"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave2"=wdmaud.drv
"mixer2"=wdmaud.drv
"midi2"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2012-04-23 00:24:28 ----D---- C:\Program Files\trend micro
2012-04-23 00:24:27 ----D---- C:\rsit
2012-04-22 23:37:13 ----D---- C:\Program Files (x86)\ESET
2012-04-22 22:18:59 ----SHD---- C:\Config.Msi
2012-04-22 15:06:29 ----D---- C:\Program Files (x86)\MSXML 4.0
2012-04-18 21:25:20 ----A---- C:\Windows\ssndii.exe
2012-04-18 21:25:17 ----D---- C:\Windows\Samsung
2012-04-18 21:25:07 ----A---- C:\Windows\system32\ssb3ml6.dll
2012-04-18 21:25:06 ----A---- C:\Windows\system32\ssb3mci.exe
2012-04-18 21:25:06 ----A---- C:\Windows\system32\ssb3mci.dll
2012-04-18 21:25:02 ----D---- C:\Program Files (x86)\Samsung
2012-04-18 21:23:21 ----N---- C:\Windows\system32\drivers\SSPORT.SYS
2012-04-18 21:23:05 ----A---- C:\Windows\SYSWOW64\ssusbpn.dll
2012-04-18 21:23:05 ----A---- C:\Windows\system32\ssusbp64.dll
2012-04-18 21:23:04 ----A---- C:\Windows\SYSWOW64\ssdevm.dll
2012-04-18 21:23:04 ----A---- C:\Windows\system32\ssdevm64.dll
2012-04-18 21:23:03 ----A---- C:\Windows\SYSWOW64\msxml4r.dll
2012-04-18 21:23:03 ----A---- C:\Windows\SYSWOW64\msxml4a.dll
2012-04-18 21:23:03 ----A---- C:\Windows\SYSWOW64\msxml2r.dll
2012-04-18 21:23:03 ----A---- C:\Windows\SYSWOW64\msxml2a.dll
2012-04-18 21:23:03 ----A---- C:\Windows\SYSWOW64\msxml2.dll
2012-04-18 20:43:34 ----D---- C:\Program Files (x86)\SamsungPrinterLiveUpdateInstaller
2012-04-18 20:43:33 ----D---- C:\ProgramData\Samsung
2012-04-18 20:43:33 ----D---- C:\Program Files (x86)\SamsungPrinterLiveUpdate
2012-04-18 19:19:50 ----DC---- C:\Windows\system32\DRVSTORE
2012-04-18 19:19:50 ----A---- C:\Windows\SYSWOW64\GEARAspi.dll
2012-04-18 19:19:50 ----A---- C:\Windows\system32\GEARAspi64.dll
2012-04-18 19:19:50 ----A---- C:\Windows\system32\drivers\GEARAspiWDM.sys
2012-04-18 19:19:24 ----D---- C:\ProgramData\Apple Computer
2012-04-18 19:19:24 ----D---- C:\ProgramData\{93E26451-CD9A-43A5-A2FA-C42392EA4001}
2012-04-18 19:19:24 ----D---- C:\Program Files\iTunes
2012-04-18 19:19:24 ----D---- C:\Program Files\iPod
2012-04-18 19:19:24 ----D---- C:\Program Files (x86)\iTunes
2012-04-18 19:18:02 ----D---- C:\Program Files (x86)\Apple Software Update
2012-04-18 19:17:51 ----D---- C:\Program Files\Common Files\Apple
2012-04-18 19:17:41 ----D---- C:\Program Files\Bonjour
2012-04-18 19:17:41 ----D---- C:\Program Files (x86)\Bonjour
2012-04-18 19:17:27 ----D---- C:\ProgramData\Apple
2012-04-18 00:06:18 ----A---- C:\log.txt
2012-04-18 00:00:19 ----D---- C:\Program Files (x86)\Microsoft Synchronization Services
2012-04-18 00:00:08 ----D---- C:\Program Files (x86)\Microsoft Sync Framework
2012-04-17 23:58:47 ----D---- C:\Program Files (x86)\Microsoft Visual Studio 8
2012-04-17 23:58:26 ----D---- C:\Program Files\Microsoft Office
2012-04-17 23:58:10 ----D---- C:\Program Files (x86)\Microsoft Analysis Services
2012-04-17 23:57:52 ----D---- C:\ProgramData\Microsoft Help
2012-04-17 23:57:24 ----RHD---- C:\MSOCache
2012-04-17 23:50:51 ----D---- C:\Program Files\WinRAR
2012-04-17 23:49:41 ----D---- C:\Users\Robert\AppData\Roaming\WinRAR
2012-04-16 21:15:01 ----D---- C:\ProgramData\NTIRegEt
2012-04-16 21:10:27 ----A---- C:\Windows\sediag.exe
2012-04-16 21:10:22 ----A---- C:\Windows\system32\ICF.dll
2012-04-16 20:56:13 ----D---- C:\Users\Robert\AppData\Roaming\newsXpresso
2012-04-16 18:20:49 ----D---- C:\Program Files (x86)\Microsoft.NET
2012-04-16 18:19:16 ----D---- C:\Windows\SYSWOW64\Wat
2012-04-16 18:19:16 ----D---- C:\Windows\system32\Wat
2012-04-16 18:18:11 ----D---- C:\ProgramData\clear.fi
2012-04-16 18:05:18 ----A---- C:\Windows\system32\mshtmled.dll
2012-04-16 18:05:17 ----A---- C:\Windows\SYSWOW64\url.dll
2012-04-16 18:05:17 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2012-04-16 18:05:17 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2012-04-16 18:05:17 ----A---- C:\Windows\system32\jscript9.dll
2012-04-16 18:05:17 ----A---- C:\Windows\system32\iertutil.dll
2012-04-16 18:05:16 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2012-04-16 18:05:16 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2012-04-16 18:05:16 ----A---- C:\Windows\SYSWOW64\jscript.dll
2012-04-16 18:05:16 ----A---- C:\Windows\SYSWOW64\ieui.dll
2012-04-16 18:05:16 ----A---- C:\Windows\system32\urlmon.dll
2012-04-16 18:05:16 ----A---- C:\Windows\system32\url.dll
2012-04-16 18:05:16 ----A---- C:\Windows\system32\jscript.dll
2012-04-16 18:05:16 ----A---- C:\Windows\system32\ieui.dll
2012-04-16 18:05:15 ----A---- C:\Windows\SYSWOW64\wininet.dll
2012-04-16 18:05:15 ----A---- C:\Windows\system32\jsproxy.dll
2012-04-16 18:05:14 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2012-04-16 18:05:14 ----A---- C:\Windows\system32\wininet.dll
2012-04-16 18:05:13 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2012-04-16 18:05:12 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2012-04-16 18:05:12 ----A---- C:\Windows\system32\mshtml.dll
2012-04-16 18:05:11 ----A---- C:\Windows\system32\ieframe.dll
2012-04-16 18:05:01 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2012-04-16 18:05:01 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2012-04-16 18:05:01 ----A---- C:\Windows\system32\ntoskrnl.exe
2012-04-16 18:02:12 ----A---- C:\Windows\system32\MRT.exe
2012-04-16 18:02:06 ----A---- C:\Windows\SYSWOW64\wmi.dll
2012-04-16 18:02:06 ----A---- C:\Windows\SYSWOW64\wintrust.dll
2012-04-16 18:02:06 ----A---- C:\Windows\SYSWOW64\imagehlp.dll
2012-04-16 18:02:06 ----A---- C:\Windows\system32\wmi.dll
2012-04-16 18:02:06 ----A---- C:\Windows\system32\wintrust.dll
2012-04-16 18:02:06 ----A---- C:\Windows\system32\imagehlp.dll
2012-04-16 18:02:06 ----A---- C:\Windows\system32\drivers\fs_rec.sys
2012-04-16 18:01:07 ----A---- C:\Windows\system32\rdpcore.dll
2012-04-16 18:01:06 ----A---- C:\Windows\SYSWOW64\rdpcore.dll
2012-04-16 18:01:06 ----A---- C:\Windows\system32\drivers\tdtcp.sys
2012-04-16 18:01:06 ----A---- C:\Windows\system32\drivers\rdpwd.sys
2012-04-16 18:01:05 ----A---- C:\Windows\system32\rdrmemptylst.exe
2012-04-16 18:01:04 ----A---- C:\Windows\system32\rdpwsx.dll
2012-04-16 18:01:04 ----A---- C:\Windows\system32\rdpcorekmts.dll
2012-04-16 18:01:03 ----D---- C:\Users\Robert\AppData\Roaming\Adobe
2012-04-16 17:59:44 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2012-04-16 17:59:44 ----A---- C:\Windows\system32\ntdll.dll
2012-04-16 17:59:34 ----A---- C:\Windows\SYSWOW64\poqexec.exe
2012-04-16 17:59:34 ----A---- C:\Windows\system32\poqexec.exe
2012-04-16 17:59:33 ----A---- C:\Windows\SYSWOW64\quartz.dll
2012-04-16 17:59:33 ----A---- C:\Windows\SYSWOW64\qdvd.dll
2012-04-16 17:59:33 ----A---- C:\Windows\system32\quartz.dll
2012-04-16 17:59:33 ----A---- C:\Windows\system32\qdvd.dll
2012-04-16 17:59:32 ----A---- C:\Windows\system32\shell32.dll
2012-04-16 17:59:31 ----A---- C:\Windows\SYSWOW64\shell32.dll
2012-04-16 17:59:31 ----A---- C:\Windows\SYSWOW64\ntshrui.dll
2012-04-16 17:59:31 ----A---- C:\Windows\system32\ntshrui.dll
2012-04-16 17:59:30 ----A---- C:\Windows\system32\schannel.dll
2012-04-16 17:59:29 ----A---- C:\Windows\SYSWOW64\webio.dll
2012-04-16 17:59:29 ----A---- C:\Windows\SYSWOW64\schannel.dll
2012-04-16 17:59:29 ----A---- C:\Windows\SYSWOW64\secur32.dll
2012-04-16 17:59:29 ----A---- C:\Windows\system32\webio.dll
2012-04-16 17:59:29 ----A---- C:\Windows\system32\sspisrv.dll
2012-04-16 17:59:29 ----A---- C:\Windows\system32\sspicli.dll
2012-04-16 17:59:29 ----A---- C:\Windows\system32\secur32.dll
2012-04-16 17:59:29 ----A---- C:\Windows\system32\lsass.exe
2012-04-16 17:59:29 ----A---- C:\Windows\system32\lsasrv.dll
2012-04-16 17:59:29 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2012-04-16 17:59:29 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2012-04-16 17:59:29 ----A---- C:\Windows\system32\drivers\cng.sys
2012-04-16 17:59:28 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2012-04-16 17:59:27 ----A---- C:\Windows\system32\win32k.sys
2012-04-16 17:59:27 ----A---- C:\Windows\system32\csrsrv.dll
2012-04-16 17:59:25 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2012-04-16 17:59:25 ----A---- C:\Windows\system32\DWrite.dll
2012-04-16 17:59:24 ----A---- C:\Windows\system32\drivers\tcpip.sys
2012-04-16 17:59:23 ----A---- C:\Windows\system32\XpsPrint.dll
2012-04-16 17:59:22 ----A---- C:\Windows\SYSWOW64\XpsPrint.dll
2012-04-16 17:59:21 ----A---- C:\Windows\system32\psisdecd.dll
2012-04-16 17:59:20 ----A---- C:\Windows\SYSWOW64\psisdecd.dll
2012-04-16 17:59:19 ----A---- C:\Windows\system32\drivers\afd.sys
2012-04-16 17:58:53 ----A---- C:\Windows\SYSWOW64\msvcrt.dll
2012-04-16 17:58:53 ----A---- C:\Windows\system32\msvcrt.dll
2012-04-16 17:58:51 ----A---- C:\Windows\SYSWOW64\oleaut32.dll
2012-04-16 17:58:51 ----A---- C:\Windows\SYSWOW64\oleacc.dll
2012-04-16 17:58:51 ----A---- C:\Windows\system32\oleaut32.dll
2012-04-16 17:58:51 ----A---- C:\Windows\system32\oleacc.dll
2012-04-16 17:58:50 ----A---- C:\Windows\SYSWOW64\EncDec.dll
2012-04-16 17:58:50 ----A---- C:\Windows\system32\EncDec.dll
2012-04-16 17:58:42 ----A---- C:\Windows\SYSWOW64\tzres.dll
2012-04-16 17:58:42 ----A---- C:\Windows\system32\tzres.dll
2012-04-16 17:58:26 ----A---- C:\Windows\SYSWOW64\packager.dll
2012-04-16 17:58:26 ----A---- C:\Windows\system32\packager.dll
2012-04-16 16:53:49 ----D---- C:\Users\Robert\AppData\Roaming\Screensaver
2012-04-16 16:53:33 ----D---- C:\Users\Robert\AppData\Roaming\Identities
2012-04-16 16:50:50 ----D---- C:\Users\Robert\AppData\Roaming\CyberLink
2012-04-16 16:50:23 ----SD---- C:\Users\Robert\AppData\Roaming\Microsoft
2012-04-16 16:50:23 ----D---- C:\Users\Robert\AppData\Roaming\Media Center Programs
2012-04-16 16:50:23 ----D---- C:\Users\Robert\AppData\Roaming\Macromedia
2012-04-16 16:50:09 ----SHD---- C:\Recovery
2012-04-16 16:50:09 ----SHD---- C:\ProgramData\Šablony
2012-04-16 16:50:09 ----SHD---- C:\ProgramData\Plocha
2012-04-16 16:50:09 ----SHD---- C:\ProgramData\Oblíbené položky
2012-04-16 16:50:09 ----SHD---- C:\ProgramData\Nabídka Start
2012-04-16 16:50:09 ----SHD---- C:\ProgramData\Dokumenty
2012-04-16 16:50:09 ----SHD---- C:\ProgramData\Data aplikací
2012-04-12 17:44:32 ----A---- C:\Windows\system32\perfi005.dat
2012-04-12 17:44:32 ----A---- C:\Windows\system32\perfh005.dat
2012-04-12 17:44:32 ----A---- C:\Windows\system32\perfd005.dat
2012-04-12 17:44:32 ----A---- C:\Windows\system32\perfc005.dat
2012-04-12 17:44:07 ----D---- C:\Windows\SYSWOW64\XPSViewer
2012-04-12 17:44:07 ----D---- C:\Windows\SYSWOW64\drivers\cs-CZ
2012-04-12 17:44:07 ----D---- C:\Windows\SYSWOW64\cs
2012-04-12 17:44:07 ----D---- C:\Windows\system32\cs
2012-04-12 17:44:07 ----D---- C:\Windows\cs-CZ
2012-04-12 17:44:06 ----D---- C:\Windows\system32\drivers\cs-CZ
2012-04-12 17:38:44 ----D---- C:\Windows\NAPP_Dism_Log
2012-04-12 08:47:44 ----HD---- C:\ProgramData\EgisTec
2012-04-12 08:40:22 ----D---- C:\ProgramData\CLSK
2012-04-12 08:39:58 ----D---- C:\Program Files (x86)\Cyberlink
2012-04-12 08:39:06 ----D---- C:\ProgramData\Temp
2012-04-12 08:39:06 ----D---- C:\ProgramData\CyberLink
2012-04-12 08:36:21 ----D---- C:\ProgramData\NTI Launcher
2012-04-12 08:35:16 ----D---- C:\ProgramData\FLEXnet
2012-04-12 08:34:33 ----D---- C:\Program Files (x86)\EgisTec Shredder
2012-04-12 08:34:20 ----A---- C:\Windows\system32\drivers\mwlPSDVDisk.sys
2012-04-12 08:34:20 ----A---- C:\Windows\system32\drivers\mwlPSDNserv.sys
2012-04-12 08:34:20 ----A---- C:\Windows\system32\drivers\mwlPSDFilter.sys
2012-04-12 08:34:13 ----D---- C:\ProgramData\EgisTec IPS
2012-04-12 08:34:13 ----D---- C:\Program Files (x86)\EgisTec IPS
2012-04-12 08:34:03 ----D---- C:\Program Files\EgisTec IPS
2012-04-12 08:34:03 ----D---- C:\Program Files (x86)\EgisTec MyWinLocker
2012-04-12 08:33:49 ----D---- C:\Program Files (x86)\EgisTec MyWinLockerSuite
2012-04-12 08:33:16 ----D---- C:\Program Files (x86)\Microsoft Office
2012-04-12 08:32:06 ----D---- C:\Program Files (x86)\Microsoft
2012-04-12 08:31:46 ----D---- C:\ProgramData\Atheros
2012-04-12 08:21:38 ----A---- C:\Windows\system32\drivers\RtsUStor.sys
2012-04-12 08:21:37 ----A---- C:\Windows\SYSWOW64\RtsUStoricon.dll
2012-04-12 08:21:37 ----A---- C:\Windows\system32\RtsUStor.dll
2012-04-12 08:19:31 ----D---- C:\Dolby PCEE4
2012-04-12 08:19:24 ----D---- C:\Windows\SYSWOW64\RTCOM
2012-04-12 08:19:17 ----D---- C:\Program Files\Realtek
2012-04-12 08:19:17 ----A---- C:\Windows\system32\drivers\RtPCEE4.DAT
2012-04-12 08:19:17 ----A---- C:\Windows\system32\drivers\RtPCEE3.DAT
2012-04-12 08:19:17 ----A---- C:\Windows\system32\drivers\rtkhdaud.dat
2012-04-12 08:19:17 ----A---- C:\Windows\system32\drivers\RtHdatEx.dat
2012-04-12 08:19:17 ----A---- C:\Windows\system32\drivers\RTHDAEQ1.dat
2012-04-12 08:19:17 ----A---- C:\Windows\system32\drivers\RTHDAEQ0.dat
2012-04-12 08:19:17 ----A---- C:\Windows\system32\drivers\RTEQEX3.dat
2012-04-12 08:19:17 ----A---- C:\Windows\system32\drivers\RTEQEX2.dat
2012-04-12 08:19:17 ----A---- C:\Windows\system32\drivers\RTEQEX1.dat
2012-04-12 08:19:17 ----A---- C:\Windows\system32\drivers\RTEQEX0.dat
2012-04-12 08:19:17 ----A---- C:\Windows\system32\drivers\RTConvEQ.dat
2012-04-12 08:19:15 ----A---- C:\Windows\system32\WavesGUILib.dll
2012-04-12 08:19:15 ----A---- C:\Windows\system32\SRSWOW64.dll
2012-04-12 08:19:15 ----A---- C:\Windows\system32\SRSTSX64.dll
2012-04-12 08:19:15 ----A---- C:\Windows\system32\SRSTSH64.dll
2012-04-12 08:19:15 ----A---- C:\Windows\system32\SRSHP64.dll
2012-04-12 08:19:14 ----A---- C:\Windows\SYSWOW64\SFCOM.dll
2012-04-12 08:19:14 ----A---- C:\Windows\system32\SFSS_APO.dll
2012-04-12 08:19:14 ----A---- C:\Windows\system32\SFNHK64.dll
2012-04-12 08:19:14 ----A---- C:\Windows\system32\SFCOM64.dll
2012-04-12 08:19:14 ----A---- C:\Windows\system32\SFAPO64.dll
2012-04-12 08:19:14 ----A---- C:\Windows\system32\RtPgEx64.dll
2012-04-12 08:19:13 ----A---- C:\Windows\system32\RtlCPAPI64.dll
2012-04-12 08:19:13 ----A---- C:\Windows\system32\RtkCfg64.dll
2012-04-12 08:19:13 ----A---- C:\Windows\system32\RtkAPO64.dll
2012-04-12 08:19:13 ----A---- C:\Windows\system32\RtkApi64.dll
2012-04-12 08:19:13 ----A---- C:\Windows\system32\RTEEP64A.dll
2012-04-12 08:19:13 ----A---- C:\Windows\system32\RTEEL64A.dll
2012-04-12 08:19:13 ----A---- C:\Windows\system32\RTEEG64A.dll
2012-04-12 08:19:13 ----A---- C:\Windows\system32\RTEED64A.dll
2012-04-12 08:19:13 ----A---- C:\Windows\system32\RTCOM64.dll
2012-04-12 08:19:13 ----A---- C:\Windows\system32\RP3DHT64.dll
2012-04-12 08:19:13 ----A---- C:\Windows\system32\RP3DAA64.dll
2012-04-12 08:19:13 ----A---- C:\Windows\system32\RCoRes64.dat
2012-04-12 08:19:13 ----A---- C:\Windows\system32\RCoInst64.dll
2012-04-12 08:19:13 ----A---- C:\Windows\system32\R4EEP64A.dll
2012-04-12 08:19:13 ----A---- C:\Windows\system32\R4EEL64A.dll
2012-04-12 08:19:13 ----A---- C:\Windows\system32\R4EEG64A.dll
2012-04-12 08:19:13 ----A---- C:\Windows\system32\R4EED64A.dll
2012-04-12 08:19:13 ----A---- C:\Windows\system32\R4EEA64A.dll
2012-04-12 08:19:13 ----A---- C:\Windows\system32\drivers\RTKVHD64.sys
2012-04-12 08:19:12 ----A---- C:\Windows\system32\MaxxVolumeSDAPO.dll
2012-04-12 08:19:12 ----A---- C:\Windows\system32\MaxxAudioRealtek.dll
2012-04-12 08:19:12 ----A---- C:\Windows\system32\MaxxAudioEQ.dll
2012-04-12 08:19:12 ----A---- C:\Windows\system32\MaxxAudioAPO30.dll
2012-04-12 08:19:12 ----A---- C:\Windows\system32\MaxxAudioAPO20.dll
2012-04-12 08:19:11 ----A---- C:\Windows\system32\FMAPO64.dll
2012-04-12 08:19:11 ----A---- C:\Windows\system32\DTSVoiceClarityDLL64.dll
2012-04-12 08:19:11 ----A---- C:\Windows\system32\DTSSymmetryDLL64.dll
2012-04-12 08:19:11 ----A---- C:\Windows\system32\DTSS2SpeakerDLL64.dll
2012-04-12 08:19:11 ----A---- C:\Windows\system32\DTSS2HeadphoneDLL64.dll
2012-04-12 08:19:11 ----A---- C:\Windows\system32\DTSNeoPCDLL64.dll
2012-04-12 08:19:11 ----A---- C:\Windows\system32\DTSLimiterDLL64.dll
2012-04-12 08:19:11 ----A---- C:\Windows\system32\DTSLFXAPO64.dll
2012-04-12 08:19:11 ----A---- C:\Windows\system32\DTSGFXAPONS64.dll
2012-04-12 08:19:11 ----A---- C:\Windows\system32\DTSGFXAPO64.dll
2012-04-12 08:19:11 ----A---- C:\Windows\system32\DTSGainCompensatorDLL64.dll
2012-04-12 08:19:11 ----A---- C:\Windows\system32\DTSBoostDLL64.dll
2012-04-12 08:19:11 ----A---- C:\Windows\system32\DTSBassEnhancementDLL64.dll
2012-04-12 08:19:10 ----HD---- C:\Program Files (x86)\Temp
2012-04-12 08:19:10 ----D---- C:\Program Files (x86)\Realtek
2012-04-12 08:19:10 ----A---- C:\Windows\system32\AERTAR64.dll
2012-04-12 08:19:10 ----A---- C:\Windows\system32\AERTAC64.dll
2012-04-12 08:19:10 ----A---- C:\Windows\RtlExUpd.dll
2012-04-12 08:15:44 ----D---- C:\Program Files (x86)\Bluetooth Suite
2012-04-12 08:14:38 ----D---- C:\Program Files\Synaptics
2012-04-12 08:13:45 ----D---- C:\Program Files (x86)\Renesas Electronics
2012-04-12 08:12:51 ----D---- C:\Program Files\Intel
2012-04-12 08:11:20 ----D---- C:\Program Files (x86)\Launch Manager
2012-04-12 08:06:23 ----A---- C:\Windows\system32\drivers\IntelMEFWVer.dll
2012-04-12 08:06:21 ----A---- C:\Windows\SYSWOW64\log.txt
2012-04-12 08:02:31 ----A---- C:\Windows\SYSWOW64\CSVer.dll
2012-04-12 08:01:00 ----D---- C:\Windows\SYSWOW64\Atheros_L1e
2012-04-12 07:58:35 ----HD---- C:\Intel
2012-04-12 07:58:35 ----A---- C:\Windows\system32\drivers\iaStor.sys
2012-04-12 07:58:34 ----D---- C:\Program Files (x86)\Intel
2012-04-12 07:56:41 ----AHD---- C:\book
2012-04-12 07:52:04 ----A---- C:\Windows\SYSWOW64\atipblup.dat
2012-04-12 07:52:04 ----A---- C:\Windows\system32\atipblup.dat
2012-04-12 07:51:49 ----D---- C:\Program Files\ATI
2012-04-12 07:51:47 ----D---- C:\Program Files (x86)\ATI Technologies
2012-04-12 07:51:22 ----D---- C:\Windows\SoftwareDistribution
2012-04-12 07:48:06 ----SHD---- C:\System Volume Information
2012-04-12 07:48:06 ----ASH---- C:\pagefile.sys
2012-04-12 07:48:06 ----ASH---- C:\hiberfil.sys

======List of files/folders modified in the last 1 month======

2012-04-23 20:03:36 ----D---- C:\Windows\Prefetch
2012-04-23 20:03:32 ----D---- C:\Windows\Temp
2012-04-23 00:24:28 ----RD---- C:\Program Files
2012-04-22 23:42:09 ----D---- C:\Windows\system32\config
2012-04-22 23:37:13 ----RD---- C:\Program Files (x86)
2012-04-22 22:20:49 ----SHD---- C:\Windows\Installer
2012-04-22 22:16:52 ----D---- C:\Windows\SysWOW64
2012-04-22 20:13:33 ----D---- C:\Windows\System32
2012-04-22 20:13:33 ----D---- C:\Windows\inf
2012-04-22 20:13:33 ----A---- C:\Windows\system32\PerfStringBackup.INI
2012-04-22 15:06:53 ----D---- C:\Windows\winsxs
2012-04-22 15:06:52 ----D---- C:\Windows
2012-04-22 15:02:52 ----D---- C:\ProgramData\Adobe
2012-04-20 07:00:06 ----D---- C:\Windows\system32\wdi
2012-04-19 19:08:41 ----D---- C:\Windows\Microsoft.NET
2012-04-19 19:08:30 ----RSD---- C:\Windows\assembly
2012-04-19 18:23:53 ----D---- C:\Program Files (x86)\McAfee
2012-04-19 18:23:30 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2012-04-18 23:55:40 ----A---- C:\Windows\win.ini
2012-04-18 21:25:11 ----D---- C:\Windows\system32\DriverStore
2012-04-18 21:23:22 ----D---- C:\Windows\system32\catroot
2012-04-18 21:23:21 ----D---- C:\Windows\system32\drivers
2012-04-18 20:43:33 ----HD---- C:\ProgramData
2012-04-18 20:31:49 ----SD---- C:\ProgramData\Microsoft
2012-04-18 19:23:25 ----D---- C:\Windows\system32\drivers\UMDF
2012-04-18 19:18:08 ----D---- C:\Windows\system32\Tasks
2012-04-18 19:17:51 ----D---- C:\Program Files\Common Files
2012-04-18 19:17:27 ----D---- C:\Program Files (x86)\Common Files
2012-04-18 00:00:50 ----RSD---- C:\Windows\Fonts
2012-04-18 00:00:46 ----D---- C:\Windows\ShellNew
2012-04-18 00:00:34 ----D---- C:\Program Files (x86)\MSBuild
2012-04-18 00:00:08 ----D---- C:\Program Files (x86)\Microsoft SQL Server Compact Edition
2012-04-17 23:59:14 ----D---- C:\Program Files\Common Files\Microsoft Shared
2012-04-17 22:50:34 ----SHD---- C:\$Recycle.Bin
2012-04-17 22:50:29 ----RD---- C:\Users
2012-04-16 22:44:06 ----D---- C:\Windows\rescache
2012-04-16 22:42:58 ----D---- C:\Windows\Logs
2012-04-16 21:21:17 ----HD---- C:\Windows\system32\GroupPolicyUsers
2012-04-16 21:21:17 ----HD---- C:\Windows\system32\GroupPolicy
2012-04-16 21:10:26 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2012-04-16 20:57:06 ----D---- C:\ProgramData\newsXpresso
2012-04-16 19:40:59 ----D---- C:\ProgramData\BackupManager
2012-04-16 19:34:20 ----D---- C:\ProgramData\oem
2012-04-16 19:09:41 ----D---- C:\Windows\system32\catroot2
2012-04-16 18:58:59 ----D---- C:\ProgramData\McAfee
2012-04-16 18:36:34 ----D---- C:\Windows\system32\NDF
2012-04-16 18:23:40 ----D---- C:\Windows\SYSWOW64\cs-CZ
2012-04-16 18:23:40 ----D---- C:\Windows\system32\cs-CZ
2012-04-16 18:20:49 ----D---- C:\Windows\SYSWOW64\en-US
2012-04-16 18:20:49 ----D---- C:\Windows\system32\en-US
2012-04-16 18:13:37 ----D---- C:\Windows\ehome
2012-04-16 18:13:37 ----D---- C:\Program Files\Common Files\System
2012-04-16 18:13:34 ----D---- C:\Windows\SYSWOW64\migration
2012-04-16 18:13:34 ----D---- C:\Windows\system32\migration
2012-04-16 18:13:34 ----D---- C:\Program Files\Internet Explorer
2012-04-16 18:13:34 ----D---- C:\Program Files (x86)\Internet Explorer
2012-04-16 18:02:13 ----D---- C:\Windows\debug
2012-04-16 18:01:12 ----D---- C:\Windows\system32\restore
2012-04-16 17:56:14 ----D---- C:\Windows\system32\LogFiles
2012-04-16 16:53:59 ----D---- C:\Windows\system32\OEM
2012-04-16 16:52:50 ----HD---- C:\OEM
2012-04-16 16:50:09 ----D---- C:\Windows\system32\Recovery
2012-04-16 16:50:09 ----D---- C:\Program Files\Windows NT
2012-04-12 17:46:29 ----D---- C:\Windows\SYSWOW64\winrm
2012-04-12 17:46:29 ----D---- C:\Windows\SYSWOW64\WCN
2012-04-12 17:46:29 ----D---- C:\Windows\SYSWOW64\slmgr
2012-04-12 17:46:29 ----D---- C:\Windows\SYSWOW64\en
2012-04-12 17:46:29 ----D---- C:\Windows\SYSWOW64\DriverStore
2012-04-12 17:46:29 ----D---- C:\Windows\SYSWOW64\drivers\en-US
2012-04-12 17:46:29 ----D---- C:\Windows\system32\winrm
2012-04-12 17:46:29 ----D---- C:\Windows\system32\WCN
2012-04-12 17:46:29 ----D---- C:\Windows\system32\slmgr
2012-04-12 17:46:29 ----D---- C:\Windows\system32\en
2012-04-12 17:46:29 ----D---- C:\Windows\system32\drivers\en-US
2012-04-12 17:46:29 ----D---- C:\Windows\system32\Dism
2012-04-12 17:46:29 ----D---- C:\Windows\system32\Boot
2012-04-12 17:46:29 ----D---- C:\Windows\servicing
2012-04-12 17:46:29 ----D---- C:\Windows\en-US
2012-04-12 17:46:28 ----D---- C:\Windows\Speech
2012-04-12 17:44:08 ----D---- C:\Program Files\Windows Sidebar
2012-04-12 17:44:08 ----D---- C:\Program Files\Windows Photo Viewer
2012-04-12 17:44:08 ----D---- C:\Program Files\Windows Media Player
2012-04-12 17:44:08 ----D---- C:\Program Files\Windows Mail
2012-04-12 17:44:08 ----D---- C:\Program Files\Windows Journal
2012-04-12 17:44:08 ----D---- C:\Program Files\Windows Defender
2012-04-12 17:44:08 ----D---- C:\Program Files\DVD Maker
2012-04-12 17:44:08 ----D---- C:\Program Files (x86)\Windows Sidebar
2012-04-12 17:44:08 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2012-04-12 17:44:08 ----D---- C:\Program Files (x86)\Windows Media Player
2012-04-12 17:44:08 ----D---- C:\Program Files (x86)\Windows Mail
2012-04-12 17:44:08 ----D---- C:\Program Files (x86)\Windows Defender
2012-04-12 17:44:07 ----D---- C:\Windows\SYSWOW64\wbem
2012-04-12 17:44:07 ----D---- C:\Windows\SYSWOW64\Printing_Admin_Scripts
2012-04-12 17:44:07 ----D---- C:\Windows\SYSWOW64\MUI
2012-04-12 17:44:07 ----D---- C:\Windows\SYSWOW64\migwiz
2012-04-12 17:44:07 ----D---- C:\Windows\SYSWOW64\drivers
2012-04-12 17:44:07 ----D---- C:\Windows\SYSWOW64\Dism
2012-04-12 17:44:07 ----D---- C:\Windows\SYSWOW64\com
2012-04-12 17:44:07 ----D---- C:\Windows\system32\oobe
2012-04-12 17:44:07 ----D---- C:\Windows\system32\migwiz
2012-04-12 17:44:07 ----D---- C:\Windows\PolicyDefinitions
2012-04-12 17:44:07 ----D---- C:\Windows\IME
2012-04-12 17:44:06 ----D---- C:\Windows\system32\MUI
2012-04-12 17:44:05 ----D---- C:\Windows\system32\wbem
2012-04-12 17:44:05 ----D---- C:\Windows\system32\Printing_Admin_Scripts
2012-04-12 17:44:05 ----D---- C:\Windows\system32\com
2012-04-12 17:44:05 ----D---- C:\Windows\AppPatch
2012-04-12 09:01:30 ----D---- C:\Windows\system32\sysprep
2012-04-12 09:01:30 ----D---- C:\Windows\Panther
2012-04-12 08:47:38 ----D---- C:\Windows\Help
2012-04-12 08:45:21 ----D---- C:\Program Files (x86)\Acer
2012-04-12 08:42:39 ----D---- C:\Program Files\Acer
2012-04-12 08:40:58 ----D---- C:\Windows\system32\CodeIntegrity
2012-04-12 08:35:40 ----D---- C:\Program Files (x86)\NTI
2012-04-12 07:56:54 ----AD---- C:\Windows\DeployWinRE2

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2011-01-12 439320]
R0 mfehidk;McAfee Inc. mfehidk; C:\Windows\system32\drivers\mfehidk.sys [2011-10-15 647080]
R0 mfewfpk;McAfee Inc. mfewfpk; C:\Windows\system32\drivers\mfewfpk.sys [2011-10-15 284648]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R1 mfenlfk;McAfee NDIS Light Filter; C:\Windows\system32\DRIVERS\mfenlfk.sys [2011-10-15 75808]
R1 mwlPSDFilter;mwlPSDFilter; C:\Windows\system32\DRIVERS\mwlPSDFilter.sys [2012-04-12 22648]
R1 mwlPSDNServ;mwlPSDNServ; C:\Windows\system32\DRIVERS\mwlPSDNServ.sys [2012-04-12 20520]
R1 mwlPSDVDisk;mwlPSDVDisk; C:\Windows\system32\DRIVERS\mwlPSDVDisk.sys [2012-04-12 62776]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 SSPORT;SSPORT; \??\C:\Windows\system32\Drivers\SSPORT.sys [2009-10-28 11576]
R2 TurboB;Turbo Boost UI Monitor driver; C:\Windows\system32\DRIVERS\TurboB.sys [2010-11-29 16120]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2011-02-08 9078272]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2011-02-08 299520]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athrx.sys [2011-06-02 2750464]
R3 AtiHDAudioService;ATI Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdW76.sys [2010-11-17 115216]
R3 BTATH_BUS;Atheros Bluetooth Bus; C:\Windows\system32\DRIVERS\btath_bus.sys [2011-03-13 28832]
R3 cfwids;McAfee Inc. cfwids; C:\Windows\system32\drivers\cfwids.sys [2011-10-15 65264]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\Windows\system32\DRIVERS\GEARAspiWDM.sys [2009-05-18 34152]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2011-08-16 3056360]
R3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller; C:\Windows\system32\DRIVERS\L1C62x64.sys [2010-09-27 76912]
R3 MEIx64;Intel(R) Management Engine Interface; C:\Windows\system32\DRIVERS\HECIx64.sys [2010-10-20 56344]
R3 mfeapfk;McAfee Inc. mfeapfk; C:\Windows\system32\drivers\mfeapfk.sys [2011-10-15 160280]
R3 mfeavfk;McAfee Inc. mfeavfk; C:\Windows\system32\drivers\mfeavfk.sys [2011-10-15 229528]
R3 mfefirek;McAfee Inc. mfefirek; C:\Windows\system32\drivers\mfefirek.sys [2011-10-15 481768]
R3 NTIDrvr;NTIDrvr; \??\C:\Windows\system32\drivers\NTIDrvr.sys [2011-09-20 18432]
R3 nusb3hub;Renesas Electronics USB 3.0 Hub Driver; C:\Windows\system32\DRIVERS\nusb3hub.sys [2011-02-10 82432]
R3 nusb3xhc;Renesas Electronics USB 3.0 Host Controller Driver; C:\Windows\system32\DRIVERS\nusb3xhc.sys [2011-02-10 181760]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2010-07-29 1383472]
R3 UBHelper;UBHelper; \??\C:\Windows\system32\drivers\UBHelper.sys [2011-09-20 17408]
S3 AthBTPort;Atheros Virtual Bluetooth Class; C:\Windows\system32\DRIVERS\btath_flt.sys [2011-03-13 36000]
S3 BTATH_A2DP;Bluetooth A2DP Audio Driver; C:\Windows\system32\drivers\btath_a2dp.sys [2011-03-13 298656]
S3 BTATH_HCRP;Bluetooth HCRP Server driver; C:\Windows\system32\DRIVERS\btath_hcrp.sys [2011-03-13 201376]
S3 BTATH_LWFLT;Bluetooth LWFLT Device; C:\Windows\system32\DRIVERS\btath_lwflt.sys [2011-03-13 55456]
S3 BTATH_RCP;Bluetooth AVRCP Device; C:\Windows\system32\DRIVERS\btath_rcp.sys [2011-03-13 154272]
S3 BtFilter;BtFilter; C:\Windows\system32\DRIVERS\btfilter.sys [2011-03-13 280224]
S3 BthEnum;Služba Bluetooth Enumerator; C:\Windows\system32\DRIVERS\BthEnum.sys [2009-07-14 41984]
S3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2011-09-21 552960]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-09-21 80384]
S3 E1G60;Intel(R) PRO/1000 NDIS 6 Adapter Driver; C:\Windows\system32\DRIVERS\E1G6032E.sys [2009-06-10 145792]
S3 mfeavfk01;McAfee Inc.; C:\Windows\system32\drivers\mfeavfk01.sys []
S3 mferkdet;McAfee Inc. mferkdet; C:\Windows\system32\drivers\mferkdet.sys [2011-10-15 100912]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader; C:\Windows\System32\Drivers\RtsUStor.sys [2010-07-20 247400]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-21 59392]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2010-11-21 31232]
S3 USBAAPL64;Apple Mobile USB Driver; C:\Windows\System32\Drivers\usbaapl64.sys [2012-02-15 52736]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-21 41984]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-04-03 63928]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2011-02-08 203776]
R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2012-02-27 55144]
R2 AtherosSvc;AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [2011-03-13 74912]
R2 BBUpdate;BBUpdate; C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE [2011-05-12 249648]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-30 462184]
R2 DsiWMIService;Dritek WMI Service; C:\Program Files (x86)\Launch Manager\dsiwmis.exe [2011-07-01 353360]
R2 EgisTec Ticket Service;EgisTec Ticket Service; C:\Program Files (x86)\Common Files\EgisTec\Services\EgisTicketService.exe [2011-06-21 173424]
R2 ePowerSvc;ePower Service; C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe [2011-08-02 872552]
R2 GREGService;GREGService; C:\Program Files (x86)\Acer\Registration\GREGsvc.exe [2011-05-30 36456]
R2 IAStorDataMgrSvc;Úložná technologie Intel(R) Rapid; C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2011-01-12 13336]
R2 Live Updater Service;Live Updater Service; C:\Program Files\Acer\Acer Updater\UpdaterService.exe [2011-04-22 244624]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2011-02-01 326168]
R2 McAfee SiteAdvisor Service;McAfee SiteAdvisor Service; C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe [2011-01-28 249936]
R2 McMPFSvc;McAfee Personal Firewall Service; C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe [2011-01-28 249936]
R2 mcmscsvc;McAfee Services; C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe [2011-01-28 249936]
R2 McNaiAnn;McAfee VirusScan Announcer; C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe [2011-01-28 249936]
R2 McNASvc;McAfee Network Agent; C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe [2011-01-28 249936]
R2 McProxy;McAfee Proxy Service; C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe [2011-01-28 249936]
R2 McShield;McAfee McShield; C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe [2011-12-06 199272]
R2 mfefire;McAfee Firewall Core Service; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [2011-12-06 208536]
R2 mfevtp;McAfee Validation Trust Protection Service; C:\Windows\system32\mfevtps.exe [2011-12-06 161168]
R2 MSK80Service;McAfee Anti-Spam Service; C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe [2011-01-28 249936]
R2 NOBU;Norton Online Backup; C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe [2010-06-02 2804568]
R2 NTI IScheduleSvc;NTI IScheduleSvc; C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe [2011-04-24 256832]
R2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2011-02-01 2656280]
R3 iPod Service;iPod Service; C:\Program Files\iPod\bin\iPodService.exe [2012-03-27 934760]
R3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S3 BBSvc;Bing Bar Update Service; C:\Program Files (x86)\Microsoft\BingBar\BBSvc.EXE [2011-06-07 191752]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2012-04-12 655624]
S3 GamesAppService;GamesAppService; C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe [2010-10-12 206072]
S3 McAWFwk;McAfee Activation Service; c:\PROGRA~1\mcafee\msc\mcawfwk.exe [2011-03-09 224704]
S3 McODS;McAfee Scanner; C:\Program Files\mcafee\VirusScan\mcods.exe [2011-03-18 501768]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files (x86)\Microsoft Office\Office14\GROOVE.EXE [2011-06-12 31125880]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 TurboBoost;Intel(R) Turbo Boost Technology Monitor 2.0; C:\Program Files\Intel\TurboBoost\TurboBoost.exe [2010-11-29 149504]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2012-04-16 1255736]
S3 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2011-03-29 2292096]
S4 McOobeSv;McAfee OOBE Service; C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe [2011-01-28 249936]
S4 wlcrasvc;Windows Live Mesh remote connections service; C:\Program Files\Windows Live\Mesh\wlcrasvc.exe [2010-09-23 57184]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119515
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Neskutečný vir/nevir? Prosím pomoc!

#2 Příspěvek od Rudy »

V logu není nic nebezpečného vidět. Udělejte kompletní sken MBAM: http://www.malwarebytes.org/mbam.php a dejte log. Předem nic nemažte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

heroeska
Návštěvník
Návštěvník
Příspěvky: 5
Registrován: 23 dub 2012 19:05

Re: Neskutečný vir/nevir? Prosím pomoc!

#3 Příspěvek od heroeska »

Popis problému:

Pánové a dámy rád bych Vám popsal problém, který mě trápí a snad našel pomoc.

Od jisté doby se můj notebook projevuje následovně:
Prvé se problém objevil, když jsem si pracoval na nějakém textovém dokumentu, z ničeho nic "zatuhne"obraz, jakoby jste dali print screen a zobrazily ho s tím, že během 1 minuty se postupně obraz stále více zesvětluje, rovnoměrně až dokud nesvítí bílo šedá obrazovka. Občas se probere a opět chvilku můžete dělat, během chvilky ale zase příde sek, obrazovka se obarví na šedo a je to.

Jako pravý amatér jsem ho natvrdo vypnul a tím ho pravděpodobně zavrtal do hloubky systému. Po této mé akci nepomohli body obnovy, nouzový režím, totální formát, ba ani !!! oprava v servisu na záruční dobu!!! ntb mi vrátili s tím, že mu nic není, s přiloženými testy všech HW komponent, opět formát a natáhli kompletně nový systém... po týdnu používání se mi stalo to samé! Neinstaloval sem žádnou neznámou aplikaci ani hru, nenavštěvoval lechtivé weby atp.. jedině office, winrar a podobné aplikace.

Opravdu netuším o co se jedná, jsem zoufalý, prosím pomoc...

heroeska
Návštěvník
Návštěvník
Příspěvky: 5
Registrován: 23 dub 2012 19:05

Re: Neskutečný vir/nevir? Prosím pomoc!

#4 Příspěvek od heroeska »

+++ ještě mám za to že v tom zatuhnutí obrazovky normálně běží systém (například slyšíte přihlášení systému,..atp..)

a občas se to "vzapamtuje" po připojení na ext.monitor

heroeska
Návštěvník
Návštěvník
Příspěvky: 5
Registrován: 23 dub 2012 19:05

Re: Neskutečný vir/nevir? Prosím pomoc!

#5 Příspěvek od heroeska »

jeste neco...poskytovatel internetu me upozornil, na zahlcovani site multicastem, coz by podporilo teorii viru))

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119515
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Neskutečný vir/nevir? Prosím pomoc!

#6 Příspěvek od Rudy »

Popis problému jste měl dáta jako úvod, před logem: Virus tam být může, zároveň ale se může jednat o hardwarový problém. Nyní bych potřeboval ten log. Po něm můžete vyzkoušet, zda se problém objeví i v nouz. režimu.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

heroeska
Návštěvník
Návštěvník
Příspěvky: 5
Registrován: 23 dub 2012 19:05

Re: Neskutečný vir/nevir? Prosím pomoc!

#7 Příspěvek od heroeska »

Malwarebytes Anti-Malware (Trial) 1.61.0.1400
www.malwarebytes.org

Database version: v2012.04.23.05

Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 9.0.8112.16421
Uživatel :: ROBERT-PC [limited]

Protection: Enabled

23.4.2012 20:30:28
mbam-log-2012-04-23 (20-30-28).txt

Scan type: Full scan
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 294402
Time elapsed: 56 minute(s), 32 second(s)

Memory Processes Detected: 0
(No malicious items detected)

Memory Modules Detected: 0
(No malicious items detected)

Registry Keys Detected: 0
(No malicious items detected)

Registry Values Detected: 0
(No malicious items detected)

Registry Data Items Detected: 0
(No malicious items detected)

Folders Detected: 0
(No malicious items detected)

Files Detected: 0
(No malicious items detected)

(end)

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119515
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Neskutečný vir/nevir? Prosím pomoc!

#8 Příspěvek od Rudy »

Virem to asi nebude. Zkuste provozovat chvíli PC v nouz. režimu. Pokud bude vše OK, zkuste reinstalovat ovladače gr. karty.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Odpovědět