Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Divné soubory, prosím pomoc

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zamčeno
Zpráva
Autor
M.Lukes
Návštěvník
Návštěvník
Příspěvky: 89
Registrován: 23 črc 2012 01:47

Divné soubory, prosím pomoc

#1 Příspěvek od M.Lukes »

Dobrý den,
Potřebuju pomoct se soubory TMP, který se skoro neustále tvoří ve složce Firefoxu. Nevím jak jinak to popsat, ale v minulosti se tohle nestávalo. Trvá to už delší dobu, ale napsal jsem až teď, protože jsem si myslel, že to je tím ASC shitem :roll: v počitáčích se celkem vyznám, ale tomuhle fakt nerozumím :( přiložím screen těch souborů.. ani nevím jak nebo z čeho se vytvářejí.
Obrázek

Jestli mám udělat nějákou kontrolu nebo něco, cokoliv Vám dodám

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119533
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Divné soubory, prosím pomoc

#2 Příspěvek od Rudy »

Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

M.Lukes
Návštěvník
Návštěvník
Příspěvky: 89
Registrován: 23 črc 2012 01:47

Re: Divné soubory, prosím pomoc

#3 Příspěvek od M.Lukes »

Zde je log

Logfile of random's system information tool 1.06 (written by random/random)
Run by Lukes_CZ at 2014-01-17 21:02:03
Microsoft Windows 7 Ultimate Service Pack 1
System drive C: has 108 GB (76%) free of 142 GB
Total RAM: 2814 MB (53% free)

HijackThis download failed

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2013-12-20 1138536]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2008-01-21 61440]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [2013-10-24 12017368]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2013-12-20 3764024]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AppInfo]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AppMgmt]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Base]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Boot Bus Extender]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Boot file system]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CryptSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\DcomLaunch]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\EFS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\EventLog]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\File system]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Filter]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HelpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\KeyIso]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Netlogon]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NTDS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PCI Configuration]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PlugPlay]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PNP Filter]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Power]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Primary disk]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ProfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\RpcEptMapper]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\RpcSs]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sacsvr]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SCSI Class]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sermouse.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SWPRV]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\System Bus Extender]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TabletInputService]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TBS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TrustedInstaller]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\VDS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vga.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vgasave.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vmms]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\volmgr.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\volmgrx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinMgmt]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfPf]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfRd]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{36FC9E60-C465-11CF-8056-444553540000}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E965-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E967-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E969-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96A-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96B-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96F-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E977-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E97B-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E97D-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E980-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{533C5B84-EC70-11D2-9505-00C04F79DEAF}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{6BDD1FC1-810F-11D0-BEC7-08002BE2092F}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{71A27CDD-812A-11D0-BEC7-08002BE2092F}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{745A17A0-74D3-11D0-B6FE-00A0C90F57DA}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{D48179BE-EC20-11D1-B6B8-00C04FA372A7}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{D94EE5D8-D189-4994-83D2-F68D7D41B0E6}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AppInfo]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AppMgmt]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Base]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\BFE]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Boot Bus Extender]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Boot file system]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\bowser]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Browser]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CryptSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\DcomLaunch]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\dfsc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Dhcp]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\DnsCache]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Dot3Svc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Eaphost]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\EFS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\EventLog]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\File system]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Filter]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Hamachi2Svc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\HelpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\IKEEXT]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\ipnat.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\KeyIso]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\LanmanServer]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\LanmanWorkstation]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\LmHosts]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Messenger]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MPSDrv]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MPSSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb10]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb20]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NativeWifiP]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NDIS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NDIS Wrapper]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\ndiscap]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ndisuio]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetBIOS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetBIOSGroup]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetBT]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetDDEGroup]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Netlogon]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetMan]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\netprofm]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Network]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetworkProvider]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NlaSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Nsi]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nsiproxy.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NTDS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PCI Configuration]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PlugPlay]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PNP Filter]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PNP_TDI]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PolicyAgent]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Power]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Primary disk]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\ProfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\rdbss]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\rdpencdd.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\rdsessmgr]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\RpcEptMapper]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\RpcSs]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\sacsvr]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SCardSvr]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SCSI Class]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\sermouse.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SharedAccess]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Streams Drivers]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SWPRV]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\System Bus Extender]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TabletInputService]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TBS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Tcpip]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TDI]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TrustedInstaller]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\VaultSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\VDS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vga.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vgasave.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vmms]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\volmgr.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\volmgrx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WinDefend]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WinMgmt]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wlansvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{36FC9E60-C465-11CF-8056-444553540000}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E965-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E967-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E969-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E96A-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E96B-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E96F-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E972-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E973-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E974-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E975-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E977-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E97B-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E97D-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E980-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{50DD5230-BA8A-11D1-BF5D-0000F805F530}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{533C5B84-EC70-11D2-9505-00C04F79DEAF}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{6BDD1FC1-810F-11D0-BEC7-08002BE2092F}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{71A27CDD-812A-11D0-BEC7-08002BE2092F}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{745A17A0-74D3-11D0-B6FE-00A0C90F57DA}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{D48179BE-EC20-11D1-B6B8-00C04FA372A7}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{D94EE5D8-D189-4994-83D2-F68D7D41B0E6}]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DisableTaskMgr"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 months======

2014-01-17 21:02:03 ----D---- C:\rsit
2014-01-17 21:02:03 ----D---- C:\Program Files\trend micro
2014-01-09 19:55:04 ----HD---- C:\Windows\PIF
2013-12-31 17:01:40 ----D---- C:\Users\Lukes_CZ\AppData\Roaming\Skype
2013-12-31 17:01:26 ----D---- C:\Program Files\Common Files\Skype
2013-12-31 17:01:25 ----RD---- C:\Program Files\Skype
2013-12-31 16:45:08 ----D---- C:\Windows\system32\appmgmt
2013-12-27 01:41:32 ----SHD---- C:\ProgramData\{01BD4FC9-2F86-4706-A62E-774BB7E9D308}
2013-12-27 01:41:32 ----HD---- C:\ProgramData\Common Files
2013-12-25 16:28:04 ----D---- C:\Program Files\Rockstar Games
2013-12-21 13:27:00 ----D---- C:\Windows\ERUNT
2013-12-21 12:49:07 ----A---- C:\Windows\system32\DWrite.dll
2013-12-18 18:49:14 ----D---- C:\Users\Lukes_CZ\AppData\Roaming\Mozilla
2013-12-18 18:48:59 ----D---- C:\Program Files\Mozilla Firefox
2013-12-18 17:46:59 ----D---- C:\ProgramData\Mozilla

======List of files/folders modified in the last 1 months======

2014-01-17 21:02:03 ----RD---- C:\Program Files
2014-01-17 21:01:56 ----D---- C:\Windows\Temp
2014-01-17 21:01:48 ----D---- C:\Windows\Prefetch
2014-01-17 20:40:41 ----D---- C:\Program Files\Steam
2014-01-17 19:48:06 ----D---- C:\Program Files\Origin
2014-01-17 17:07:09 ----D---- C:\Windows\system32\config
2014-01-17 16:52:13 ----D---- C:\Windows
2014-01-17 12:02:53 ----D---- C:\Windows\inf
2014-01-17 01:19:08 ----D---- C:\Users\Lukes_CZ\AppData\Roaming\Clip2Net
2014-01-17 01:11:50 ----SHD---- C:\$Recycle.Bin
2014-01-16 17:36:28 ----SHD---- C:\System Volume Information
2014-01-16 16:11:51 ----D---- C:\Program Files\The KMPlayer
2014-01-16 14:06:41 ----D---- C:\Windows\Tasks
2014-01-16 14:06:40 ----A---- C:\Windows\system32\FlashPlayerApp.exe
2014-01-15 02:14:32 ----D---- C:\Windows\debug
2014-01-15 02:08:21 ----D---- C:\Windows\winsxs
2014-01-15 02:03:19 ----D---- C:\Windows\system32\DriverStore
2014-01-15 02:03:19 ----D---- C:\Windows\system32\drivers
2014-01-15 02:03:19 ----D---- C:\Windows\System32
2014-01-15 01:51:44 ----D---- C:\Windows\system32\MRT
2014-01-15 01:47:46 ----A---- C:\Windows\system32\MRT.exe
2014-01-15 01:46:35 ----D---- C:\Windows\system32\catroot
2014-01-15 01:42:42 ----D---- C:\Windows\system32\catroot2
2014-01-14 21:47:22 ----D---- C:\Windows\system32\NDF
2014-01-14 21:34:52 ----D---- C:\Users\Lukes_CZ\AppData\Roaming\uTorrent
2014-01-13 18:07:02 ----SHD---- C:\Windows\Installer
2014-01-13 18:07:02 ----D---- C:\ProgramData\Skype
2014-01-10 23:21:35 ----A---- C:\Windows\system32\PerfStringBackup.INI
2014-01-09 22:07:24 ----D---- C:\Program Files\Clip2Net
2014-01-07 10:36:04 ----SD---- C:\ProgramData\Microsoft
2014-01-07 10:04:30 ----D---- C:\Windows\SoftwareDistribution
2014-01-07 08:07:10 ----D---- C:\Windows\system32\Tasks
2014-01-07 07:47:09 ----SHD---- C:\Boot
2014-01-07 07:20:43 ----D---- C:\ProgramData\ProductData
2014-01-06 20:22:12 ----D---- C:\Users\Lukes_CZ\AppData\Roaming\ICQ
2014-01-04 18:40:02 ----D---- C:\ProgramData\IObit
2014-01-03 23:40:22 ----AHD---- C:\ProgramData
2013-12-31 17:01:26 ----D---- C:\Program Files\Common Files
2013-12-26 23:06:03 ----D---- C:\Program Files\Common Files\Steam
2013-12-26 22:41:37 ----D---- C:\Program Files\ATI
2013-12-26 02:35:05 ----D---- C:\Users\Lukes_CZ\AppData\Roaming\DAEMON Tools Lite
2013-12-25 16:28:03 ----HD---- C:\Program Files\InstallShield Installation Information
2013-12-23 14:30:43 ----D---- C:\Windows\rescache
2013-12-20 02:39:46 ----D---- C:\Program Files\CCleaner
2013-12-20 02:29:34 ----A---- C:\Windows\system32\aswBoot.exe

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119533
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Divné soubory, prosím pomoc

#4 Příspěvek od Rudy »

Jednak není log kompletní a za druhé bych rád věděl, jak je na tom váš oper. systém s legalitou.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

M.Lukes
Návštěvník
Návštěvník
Příspěvky: 89
Registrován: 23 črc 2012 01:47

Re: Divné soubory, prosím pomoc

#5 Příspěvek od M.Lukes »

Tohle bylo v logu, to jsem jsem zkopíroval.
Jinak 3 roky používám legální licenční klič na win 7 ultimate.

Zde nový log s 3 měsíci

Logfile of random's system information tool 1.06 (written by random/random)
Run by Lukes_CZ at 2014-01-17 21:25:00
Microsoft Windows 7 Ultimate Service Pack 1
System drive C: has 108 GB (76%) free of 142 GB
Total RAM: 2814 MB (51% free)

HijackThis download failed

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2013-12-20 1138536]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2008-01-21 61440]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [2013-10-24 12017368]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2013-12-20 3764024]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AppInfo]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AppMgmt]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Base]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Boot Bus Extender]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Boot file system]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CryptSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\DcomLaunch]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\EFS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\EventLog]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\File system]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Filter]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HelpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\KeyIso]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Netlogon]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NTDS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PCI Configuration]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PlugPlay]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PNP Filter]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Power]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Primary disk]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ProfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\RpcEptMapper]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\RpcSs]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sacsvr]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SCSI Class]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sermouse.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SWPRV]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\System Bus Extender]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TabletInputService]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TBS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TrustedInstaller]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\VDS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vga.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vgasave.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vmms]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\volmgr.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\volmgrx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinMgmt]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfPf]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfRd]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{36FC9E60-C465-11CF-8056-444553540000}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E965-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E967-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E969-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96A-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96B-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96F-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E977-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E97B-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E97D-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E980-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{533C5B84-EC70-11D2-9505-00C04F79DEAF}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{6BDD1FC1-810F-11D0-BEC7-08002BE2092F}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{71A27CDD-812A-11D0-BEC7-08002BE2092F}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{745A17A0-74D3-11D0-B6FE-00A0C90F57DA}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{D48179BE-EC20-11D1-B6B8-00C04FA372A7}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{D94EE5D8-D189-4994-83D2-F68D7D41B0E6}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AppInfo]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AppMgmt]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Base]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\BFE]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Boot Bus Extender]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Boot file system]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\bowser]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Browser]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CryptSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\DcomLaunch]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\dfsc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Dhcp]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\DnsCache]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Dot3Svc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Eaphost]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\EFS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\EventLog]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\File system]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Filter]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Hamachi2Svc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\HelpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\IKEEXT]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\ipnat.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\KeyIso]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\LanmanServer]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\LanmanWorkstation]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\LmHosts]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Messenger]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MPSDrv]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MPSSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb10]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb20]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NativeWifiP]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NDIS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NDIS Wrapper]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\ndiscap]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ndisuio]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetBIOS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetBIOSGroup]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetBT]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetDDEGroup]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Netlogon]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetMan]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\netprofm]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Network]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetworkProvider]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NlaSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Nsi]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nsiproxy.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NTDS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PCI Configuration]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PlugPlay]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PNP Filter]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PNP_TDI]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PolicyAgent]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Power]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Primary disk]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\ProfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\rdbss]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\rdpencdd.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\rdsessmgr]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\RpcEptMapper]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\RpcSs]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\sacsvr]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SCardSvr]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SCSI Class]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\sermouse.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SharedAccess]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Streams Drivers]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SWPRV]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\System Bus Extender]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TabletInputService]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TBS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Tcpip]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TDI]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TrustedInstaller]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\VaultSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\VDS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vga.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vgasave.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vmms]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\volmgr.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\volmgrx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WinDefend]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WinMgmt]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wlansvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{36FC9E60-C465-11CF-8056-444553540000}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E965-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E967-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E969-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E96A-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E96B-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E96F-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E972-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E973-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E974-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E975-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E977-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E97B-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E97D-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E980-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{50DD5230-BA8A-11D1-BF5D-0000F805F530}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{533C5B84-EC70-11D2-9505-00C04F79DEAF}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{6BDD1FC1-810F-11D0-BEC7-08002BE2092F}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{71A27CDD-812A-11D0-BEC7-08002BE2092F}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{745A17A0-74D3-11D0-B6FE-00A0C90F57DA}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{D48179BE-EC20-11D1-B6B8-00C04FA372A7}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{D94EE5D8-D189-4994-83D2-F68D7D41B0E6}]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DisableTaskMgr"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 3 months======

2014-01-17 21:02:03 ----D---- C:\rsit
2014-01-17 21:02:03 ----D---- C:\Program Files\trend micro
2014-01-09 19:55:04 ----HD---- C:\Windows\PIF
2013-12-31 17:01:40 ----D---- C:\Users\Lukes_CZ\AppData\Roaming\Skype
2013-12-31 17:01:26 ----D---- C:\Program Files\Common Files\Skype
2013-12-31 17:01:25 ----RD---- C:\Program Files\Skype
2013-12-31 16:45:08 ----D---- C:\Windows\system32\appmgmt
2013-12-27 01:41:32 ----SHD---- C:\ProgramData\{01BD4FC9-2F86-4706-A62E-774BB7E9D308}
2013-12-27 01:41:32 ----HD---- C:\ProgramData\Common Files
2013-12-25 16:28:04 ----D---- C:\Program Files\Rockstar Games
2013-12-21 13:27:00 ----D---- C:\Windows\ERUNT
2013-12-21 12:49:07 ----A---- C:\Windows\system32\DWrite.dll
2013-12-18 18:49:14 ----D---- C:\Users\Lukes_CZ\AppData\Roaming\Mozilla
2013-12-18 18:48:59 ----D---- C:\Program Files\Mozilla Firefox
2013-12-18 17:46:59 ----D---- C:\ProgramData\Mozilla
2013-12-17 01:09:37 ----D---- C:\ProgramData\Malwarebytes
2013-12-15 17:36:07 ----D---- C:\Program Files\AVAST Software
2013-12-14 13:28:22 ----A---- C:\Windows\system32\ie4uinit.exe
2013-12-14 13:28:17 ----A---- C:\Windows\system32\jsproxy.dll
2013-12-14 13:28:16 ----A---- C:\Windows\system32\ieui.dll
2013-12-14 13:28:16 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2013-12-14 13:28:15 ----A---- C:\Windows\system32\ieapfltr.dll
2013-12-14 13:28:14 ----A---- C:\Windows\system32\iesetup.dll
2013-12-14 13:28:14 ----A---- C:\Windows\system32\iernonce.dll
2013-12-14 13:28:13 ----A---- C:\Windows\system32\jscript9diag.dll
2013-12-14 13:28:13 ----A---- C:\Windows\system32\ieUnatt.exe
2013-12-14 13:28:13 ----A---- C:\Windows\system32\ieetwproxystub.dll
2013-12-14 13:28:12 ----A---- C:\Windows\system32\ieetwcollector.exe
2013-12-14 13:28:10 ----A---- C:\Windows\system32\wininet.dll
2013-12-14 13:28:07 ----A---- C:\Windows\system32\urlmon.dll
2013-12-14 13:28:07 ----A---- C:\Windows\system32\iertutil.dll
2013-12-14 13:28:04 ----A---- C:\Windows\system32\ieframe.dll
2013-12-14 13:28:01 ----A---- C:\Windows\system32\mshtml.dll
2013-12-14 13:28:00 ----A---- C:\Windows\system32\jscript9.dll
2013-12-13 23:05:05 ----A---- C:\Windows\system32\xactengine3_7.dll
2013-12-13 23:05:04 ----A---- C:\Windows\system32\d3dx10_43.dll
2013-12-13 23:05:04 ----A---- C:\Windows\system32\d3dcsx_43.dll
2013-12-13 23:05:03 ----A---- C:\Windows\system32\XAPOFX1_4.dll
2013-12-13 23:05:03 ----A---- C:\Windows\system32\D3DX9_43.dll
2013-12-13 23:05:02 ----A---- C:\Windows\system32\XAudio2_6.dll
2013-12-13 23:05:02 ----A---- C:\Windows\system32\XAudio2_5.dll
2013-12-13 23:05:02 ----A---- C:\Windows\system32\xactengine3_6.dll
2013-12-13 23:05:02 ----A---- C:\Windows\system32\xactengine3_5.dll
2013-12-13 23:05:02 ----A---- C:\Windows\system32\X3DAudio1_7.dll
2013-12-13 23:05:01 ----A---- C:\Windows\system32\d3dcsx_42.dll
2013-12-13 23:05:01 ----A---- C:\Windows\system32\D3DCompiler_42.dll
2013-12-13 23:05:00 ----A---- C:\Windows\system32\D3DX9_42.dll
2013-12-13 23:05:00 ----A---- C:\Windows\system32\d3dx11_42.dll
2013-12-13 23:04:59 ----A---- C:\Windows\system32\XAudio2_4.dll
2013-12-13 23:04:59 ----A---- C:\Windows\system32\XAPOFX1_3.dll
2013-12-13 23:04:59 ----A---- C:\Windows\system32\xactengine3_4.dll
2013-12-13 23:04:59 ----A---- C:\Windows\system32\D3DX9_41.dll
2013-12-13 23:04:58 ----A---- C:\Windows\system32\X3DAudio1_6.dll
2013-12-13 23:04:58 ----A---- C:\Windows\system32\d3dx10_40.dll
2013-12-13 23:04:58 ----A---- C:\Windows\system32\D3DCompiler_40.dll
2013-12-13 23:04:57 ----A---- C:\Windows\system32\XAudio2_3.dll
2013-12-13 23:04:57 ----A---- C:\Windows\system32\XAPOFX1_2.dll
2013-12-13 23:04:57 ----A---- C:\Windows\system32\xactengine3_3.dll
2013-12-13 23:04:57 ----A---- C:\Windows\system32\X3DAudio1_5.dll
2013-12-13 23:04:57 ----A---- C:\Windows\system32\D3DX9_40.dll
2013-12-13 23:04:56 ----A---- C:\Windows\system32\XAudio2_2.dll
2013-12-13 23:04:56 ----A---- C:\Windows\system32\XAPOFX1_1.dll
2013-12-13 23:04:56 ----A---- C:\Windows\system32\xactengine3_2.dll
2013-12-13 23:04:55 ----A---- C:\Windows\system32\D3DX9_39.dll
2013-12-13 23:04:55 ----A---- C:\Windows\system32\d3dx10_39.dll
2013-12-13 23:04:55 ----A---- C:\Windows\system32\D3DCompiler_39.dll
2013-12-13 23:04:54 ----A---- C:\Windows\system32\XAudio2_1.dll
2013-12-13 23:04:54 ----A---- C:\Windows\system32\XAPOFX1_0.dll
2013-12-13 23:04:54 ----A---- C:\Windows\system32\xactengine3_1.dll
2013-12-13 23:04:54 ----A---- C:\Windows\system32\X3DAudio1_4.dll
2013-12-13 23:04:54 ----A---- C:\Windows\system32\d3dx10_38.dll
2013-12-13 23:04:54 ----A---- C:\Windows\system32\D3DCompiler_38.dll
2013-12-13 23:04:53 ----A---- C:\Windows\system32\D3DX9_38.dll
2013-12-13 23:04:52 ----A---- C:\Windows\system32\XAudio2_0.dll
2013-12-13 23:04:52 ----A---- C:\Windows\system32\xactengine3_0.dll
2013-12-13 23:04:52 ----A---- C:\Windows\system32\X3DAudio1_3.dll
2013-12-13 23:04:51 ----A---- C:\Windows\system32\d3dx10_37.dll
2013-12-13 23:04:51 ----A---- C:\Windows\system32\D3DCompiler_37.dll
2013-12-13 23:04:50 ----A---- C:\Windows\system32\xactengine2_10.dll
2013-12-13 23:04:50 ----A---- C:\Windows\system32\D3DX9_37.dll
2013-12-13 23:04:48 ----A---- C:\Windows\system32\d3dx10_36.dll
2013-12-13 23:04:48 ----A---- C:\Windows\system32\D3DCompiler_36.dll
2013-12-13 23:04:47 ----A---- C:\Windows\system32\d3dx9_36.dll
2013-12-13 23:04:46 ----A---- C:\Windows\system32\xactengine2_9.dll
2013-12-13 23:04:46 ----A---- C:\Windows\system32\d3dx10_35.dll
2013-12-13 23:04:45 ----A---- C:\Windows\system32\D3DCompiler_35.dll
2013-12-13 23:04:44 ----A---- C:\Windows\system32\xactengine2_8.dll
2013-12-13 23:04:44 ----A---- C:\Windows\system32\X3DAudio1_2.dll
2013-12-13 23:04:44 ----A---- C:\Windows\system32\d3dx9_35.dll
2013-12-13 23:04:44 ----A---- C:\Windows\system32\d3dx10_34.dll
2013-12-13 23:04:44 ----A---- C:\Windows\system32\D3DCompiler_34.dll
2013-12-13 23:04:43 ----A---- C:\Windows\system32\xinput1_3.dll
2013-12-13 23:04:43 ----A---- C:\Windows\system32\xactengine2_7.dll
2013-12-13 23:04:43 ----A---- C:\Windows\system32\d3dx9_34.dll
2013-12-13 23:04:42 ----A---- C:\Windows\system32\xactengine2_6.dll
2013-12-13 23:04:42 ----A---- C:\Windows\system32\d3dx9_33.dll
2013-12-13 23:04:42 ----A---- C:\Windows\system32\d3dx10_33.dll
2013-12-13 23:04:42 ----A---- C:\Windows\system32\D3DCompiler_33.dll
2013-12-13 23:04:41 ----A---- C:\Windows\system32\xactengine2_5.dll
2013-12-13 23:04:41 ----A---- C:\Windows\system32\xactengine2_4.dll
2013-12-13 23:04:41 ----A---- C:\Windows\system32\x3daudio1_1.dll
2013-12-13 23:04:41 ----A---- C:\Windows\system32\d3dx10.dll
2013-12-13 23:04:40 ----A---- C:\Windows\system32\d3dx9_31.dll
2013-12-13 23:04:39 ----A---- C:\Windows\system32\xinput1_2.dll
2013-12-13 23:04:39 ----A---- C:\Windows\system32\xinput1_1.dll
2013-12-13 23:04:39 ----A---- C:\Windows\system32\xactengine2_3.dll
2013-12-13 23:04:39 ----A---- C:\Windows\system32\xactengine2_2.dll
2013-12-13 23:04:39 ----A---- C:\Windows\system32\xactengine2_1.dll
2013-12-13 23:04:35 ----A---- C:\Windows\system32\xactengine2_0.dll
2013-12-13 23:04:35 ----A---- C:\Windows\system32\x3daudio1_0.dll
2013-12-13 23:04:35 ----A---- C:\Windows\system32\d3dx9_30.dll
2013-12-13 23:04:33 ----A---- C:\Windows\system32\d3dx9_29.dll
2013-12-13 23:04:33 ----A---- C:\Windows\system32\d3dx9_28.dll
2013-12-13 23:04:32 ----A---- C:\Windows\system32\d3dx9_27.dll
2013-12-13 23:04:31 ----A---- C:\Windows\system32\d3dx9_26.dll
2013-12-13 23:04:30 ----A---- C:\Windows\system32\d3dx9_24.dll
2013-12-13 23:02:19 ----D---- C:\Windows\system32\directx
2013-12-11 11:30:41 ----A---- C:\Windows\system32\wmp.dll
2013-12-11 11:30:34 ----A---- C:\Windows\system32\wmploc.DLL
2013-12-11 11:29:39 ----A---- C:\Windows\system32\WMPhoto.dll
2013-12-11 11:29:38 ----A---- C:\Windows\system32\imagehlp.dll
2013-12-11 11:29:37 ----A---- C:\Windows\system32\wscript.exe
2013-12-11 11:29:37 ----A---- C:\Windows\system32\scrrun.dll
2013-12-11 11:29:37 ----A---- C:\Windows\system32\cscript.exe
2013-12-11 11:29:36 ----A---- C:\Windows\system32\msieftp.dll
2013-12-11 11:28:41 ----A---- C:\Windows\system32\tzres.dll
2013-12-06 13:54:32 ----D---- C:\ProgramData\LogMeIn
2013-12-06 13:23:27 ----D---- C:\Program Files\LogMeIn Hamachi
2013-12-05 23:02:26 ----AD---- C:\ProgramData\MTA San Andreas All
2013-12-02 16:40:28 ----D---- C:\Program Files\Common Files\Adobe
2013-12-02 16:40:28 ----D---- C:\Program Files\Adobe
2013-12-02 16:40:06 ----D---- C:\ProgramData\Adobe
2013-11-29 08:41:36 ----D---- C:\Windows\Migration
2013-11-29 03:52:36 ----D---- C:\Users\Lukes_CZ\AppData\Roaming\OpenOffice
2013-11-21 23:35:33 ----D---- C:\Windows\cs
2013-11-21 23:34:34 ----D---- C:\Program Files\Microsoft SQL Server Compact Edition
2013-11-21 23:32:12 ----D---- C:\Windows\PCHEALTH
2013-11-21 23:30:35 ----D---- C:\Program Files\Windows Live
2013-11-21 23:28:16 ----A---- C:\Windows\system32\XAudio2_7.dll
2013-11-21 23:28:16 ----A---- C:\Windows\system32\XAPOFX1_5.dll
2013-11-21 23:28:14 ----A---- C:\Windows\system32\D3DCompiler_43.dll
2013-11-21 23:28:13 ----A---- C:\Windows\system32\d3dx11_43.dll
2013-11-21 23:26:48 ----A---- C:\Windows\system32\d3dx10_42.dll
2013-11-21 23:25:16 ----A---- C:\Windows\system32\d3dx9_32.dll
2013-11-21 23:21:47 ----D---- C:\Program Files\Common Files\Windows Live
2013-11-21 20:43:20 ----D---- C:\Users\Lukes_CZ\AppData\Roaming\Clip2Net
2013-11-21 20:43:09 ----D---- C:\Program Files\Clip2Net
2013-11-19 18:57:57 ----D---- C:\Fraps
2013-11-19 06:59:06 ----D---- C:\Program Files\The KMPlayer
2013-11-19 02:29:54 ----A---- C:\Windows\system32\spoolsv.exe
2013-11-19 02:29:52 ----A---- C:\Windows\explorer.exe
2013-11-19 02:29:30 ----A---- C:\Windows\system32\WindowsCodecs.dll
2013-11-19 01:52:07 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2013-11-19 01:52:03 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2013-11-19 01:52:03 ----A---- C:\Windows\system32\RdpGroupPolicyExtension.dll
2013-11-19 01:51:50 ----A---- C:\Windows\system32\wksprtPS.dll
2013-11-19 01:51:50 ----A---- C:\Windows\system32\TSWbPrxy.exe
2013-11-19 01:51:50 ----A---- C:\Windows\system32\TsUsbGDCoInstaller.dll
2013-11-19 01:51:50 ----A---- C:\Windows\system32\tsgqec.dll
2013-11-19 01:51:50 ----A---- C:\Windows\system32\MsRdpWebAccess.dll
2013-11-19 01:51:50 ----A---- C:\Windows\system32\aaclient.dll
2013-11-19 01:51:49 ----A---- C:\Windows\system32\rdpudd.dll
2013-11-19 01:51:49 ----A---- C:\Windows\system32\rdpendp_winip.dll
2013-11-19 01:51:48 ----A---- C:\Windows\system32\wksprt.exe
2013-11-19 01:51:48 ----A---- C:\Windows\system32\mstsc.exe
2013-11-19 01:51:47 ----A---- C:\Windows\system32\rdpcorets.dll
2013-11-19 01:51:46 ----A---- C:\Windows\system32\mstscax.dll
2013-11-19 00:46:41 ----A---- C:\Windows\system32\url.dll
2013-11-19 00:46:41 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2013-11-19 00:46:41 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2013-11-19 00:46:41 ----A---- C:\Windows\system32\msrating.dll
2013-11-19 00:46:41 ----A---- C:\Windows\system32\msls31.dll
2013-11-19 00:46:41 ----A---- C:\Windows\system32\mshtmlmedia.dll
2013-11-19 00:46:41 ----A---- C:\Windows\system32\jsIntl.dll
2013-11-19 00:46:41 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2013-11-19 00:46:41 ----A---- C:\Windows\system32\iedkcs32.dll
2013-11-19 00:46:41 ----A---- C:\Windows\system32\icardie.dll
2013-11-19 00:46:41 ----A---- C:\Windows\system32\elshyph.dll
2013-11-19 00:46:41 ----A---- C:\Windows\system32\dxtrans.dll
2013-11-19 00:46:41 ----A---- C:\Windows\system32\dxtmsft.dll
2013-11-19 00:46:40 ----A---- C:\Windows\system32\wextract.exe
2013-11-19 00:46:40 ----A---- C:\Windows\system32\webcheck.dll
2013-11-19 00:46:40 ----A---- C:\Windows\system32\vbscript.dll
2013-11-19 00:46:40 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2013-11-19 00:46:40 ----A---- C:\Windows\system32\pngfilt.dll
2013-11-19 00:46:40 ----A---- C:\Windows\system32\occache.dll
2013-11-19 00:46:40 ----A---- C:\Windows\system32\mshtmler.dll
2013-11-19 00:46:40 ----A---- C:\Windows\system32\mshtmled.dll
2013-11-19 00:46:40 ----A---- C:\Windows\system32\MshtmlDac.dll
2013-11-19 00:46:40 ----A---- C:\Windows\system32\mshta.exe
2013-11-19 00:46:40 ----A---- C:\Windows\system32\msfeedssync.exe
2013-11-19 00:46:40 ----A---- C:\Windows\system32\msfeedsbs.dll
2013-11-19 00:46:40 ----A---- C:\Windows\system32\msfeeds.dll
2013-11-19 00:46:40 ----A---- C:\Windows\system32\licmgr10.dll
2013-11-19 00:46:40 ----A---- C:\Windows\system32\jscript.dll
2013-11-19 00:46:40 ----A---- C:\Windows\system32\inseng.dll
2013-11-19 00:46:40 ----A---- C:\Windows\system32\imgutil.dll
2013-11-19 00:46:40 ----A---- C:\Windows\system32\iexpress.exe
2013-11-19 00:46:40 ----A---- C:\Windows\system32\iesysprep.dll
2013-11-19 00:46:40 ----A---- C:\Windows\system32\iepeers.dll
2013-11-19 00:46:40 ----A---- C:\Windows\system32\IEAdvpack.dll
2013-11-19 00:45:36 ----A---- C:\Windows\system32\tdh.dll
2013-11-19 00:45:36 ----A---- C:\Windows\system32\ntoskrnl.exe
2013-11-19 00:45:36 ----A---- C:\Windows\system32\ntkrnlpa.exe
2013-11-19 00:45:36 ----A---- C:\Windows\system32\ntdll.dll
2013-11-19 00:45:36 ----A---- C:\Windows\system32\advapi32.dll
2013-11-19 00:45:14 ----A---- C:\Windows\system32\mswsock.dll
2013-11-19 00:44:56 ----A---- C:\Windows\system32\taskhost.exe
2013-11-19 00:44:24 ----AH---- C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2013-11-19 00:44:24 ----AH---- C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2013-11-19 00:44:24 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2013-11-19 00:44:24 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2013-11-19 00:44:24 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2013-11-19 00:44:24 ----AH---- C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2013-11-19 00:44:24 ----AH---- C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2013-11-19 00:44:24 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2013-11-19 00:44:24 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2013-11-19 00:44:24 ----A---- C:\Windows\system32\XpsPrint.dll
2013-11-19 00:44:24 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2013-11-19 00:44:24 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
2013-11-19 00:44:24 ----A---- C:\Windows\system32\UIAnimation.dll
2013-11-19 00:44:24 ----A---- C:\Windows\system32\msmpeg2vdec.dll
2013-11-19 00:44:24 ----A---- C:\Windows\system32\FntCache.dll
2013-11-19 00:44:24 ----A---- C:\Windows\system32\dxgi.dll
2013-11-19 00:44:24 ----A---- C:\Windows\system32\d3d10warp.dll
2013-11-19 00:44:24 ----A---- C:\Windows\system32\d3d10level9.dll
2013-11-19 00:44:24 ----A---- C:\Windows\system32\d3d10core.dll
2013-11-19 00:44:24 ----A---- C:\Windows\system32\d3d10_1core.dll
2013-11-19 00:44:24 ----A---- C:\Windows\system32\d3d10_1.dll
2013-11-19 00:44:24 ----A---- C:\Windows\system32\d3d10.dll
2013-11-19 00:44:24 ----A---- C:\Windows\system32\d2d1.dll
2013-11-19 00:43:35 ----A---- C:\Windows\system32\d3d11.dll
2013-11-19 00:27:04 ----A---- C:\Windows\system32\shell32.dll
2013-11-19 00:27:03 ----A---- C:\Windows\system32\shdocvw.dll
2013-11-19 00:26:55 ----A---- C:\Windows\system32\wintrust.dll
2013-11-19 00:24:47 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2013-11-19 00:24:47 ----A---- C:\Windows\system32\winsrv.dll
2013-11-19 00:24:47 ----A---- C:\Windows\system32\KernelBase.dll
2013-11-19 00:24:47 ----A---- C:\Windows\system32\kernel32.dll
2013-11-19 00:24:47 ----A---- C:\Windows\system32\conhost.exe
2013-11-19 00:24:46 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2013-11-19 00:24:46 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2013-11-19 00:24:46 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2013-11-19 00:24:45 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2013-11-19 00:24:45 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2013-11-19 00:24:45 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2013-11-19 00:24:45 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2013-11-19 00:24:45 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2013-11-19 00:24:45 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2013-11-19 00:24:44 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2013-11-19 00:24:44 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2013-11-19 00:24:44 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2013-11-19 00:24:44 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2013-11-19 00:24:43 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2013-11-19 00:24:43 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2013-11-19 00:24:43 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2013-11-19 00:24:43 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2013-11-19 00:24:42 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2013-11-19 00:24:42 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2013-11-19 00:24:42 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2013-11-19 00:24:42 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2013-11-19 00:24:42 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2013-11-19 00:24:42 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2013-11-19 00:24:41 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2013-11-19 00:24:41 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2013-11-19 00:24:41 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2013-11-19 00:24:41 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2013-11-19 00:24:32 ----A---- C:\Windows\system32\ncsi.dll
2013-11-19 00:24:31 ----A---- C:\Windows\system32\nlasvc.dll
2013-11-19 00:24:31 ----A---- C:\Windows\system32\nlaapi.dll
2013-11-19 00:24:31 ----A---- C:\Windows\system32\netevent.dll
2013-11-19 00:24:31 ----A---- C:\Windows\system32\netcorehc.dll
2013-11-19 00:24:31 ----A---- C:\Windows\system32\iphlpsvc.dll
2013-11-19 00:24:04 ----A---- C:\Windows\system32\OxpsConverter.exe
2013-11-19 00:23:56 ----A---- C:\Windows\system32\certutil.exe
2013-11-19 00:23:55 ----A---- C:\Windows\system32\certenc.dll
2013-11-19 00:23:42 ----A---- C:\Windows\system32\WMVDECOD.DLL
2013-11-19 00:23:39 ----A---- C:\Windows\system32\scavengeui.dll
2013-11-19 00:23:27 ----A---- C:\Windows\system32\schannel.dll
2013-11-19 00:23:26 ----A---- C:\Windows\system32\lsasrv.dll
2013-11-19 00:23:25 ----A---- C:\Windows\system32\sspisrv.dll
2013-11-19 00:23:25 ----A---- C:\Windows\system32\sspicli.dll
2013-11-19 00:23:25 ----A---- C:\Windows\system32\secur32.dll
2013-11-19 00:23:25 ----A---- C:\Windows\system32\ncrypt.dll
2013-11-19 00:23:25 ----A---- C:\Windows\system32\lsass.exe
2013-11-19 00:23:10 ----A---- C:\Windows\system32\WebClnt.dll
2013-11-19 00:23:10 ----A---- C:\Windows\system32\davclnt.dll
2013-11-19 00:23:04 ----A---- C:\Windows\system32\crypt32.dll
2013-11-19 00:23:03 ----A---- C:\Windows\system32\cryptsvc.dll
2013-11-19 00:23:03 ----A---- C:\Windows\system32\cryptnet.dll
2013-11-19 00:22:56 ----A---- C:\Windows\system32\dhcpcsvc6.dll
2013-11-19 00:22:56 ----A---- C:\Windows\system32\dhcpcore6.dll
2013-11-19 00:22:44 ----A---- C:\Windows\system32\cryptdlg.dll
2013-11-19 00:22:31 ----A---- C:\Windows\system32\authui.dll
2013-11-19 00:22:30 ----A---- C:\Windows\system32\SmartcardCredentialProvider.dll
2013-11-19 00:22:30 ----A---- C:\Windows\system32\credui.dll
2013-11-19 00:22:08 ----A---- C:\Windows\system32\rpcrt4.dll
2013-11-19 00:22:07 ----A---- C:\Windows\system32\IKEEXT.DLL
2013-11-19 00:22:06 ----A---- C:\Windows\system32\nshwfp.dll
2013-11-19 00:22:06 ----A---- C:\Windows\system32\FWPUCLNT.DLL
2013-11-19 00:21:48 ----A---- C:\Windows\system32\qedit.dll
2013-11-19 00:21:47 ----A---- C:\Windows\system32\dciman32.dll
2013-11-19 00:21:47 ----A---- C:\Windows\system32\atmfd.dll
2013-11-19 00:21:46 ----A---- C:\Windows\system32\lpk.dll
2013-11-19 00:21:46 ----A---- C:\Windows\system32\fontsub.dll
2013-11-19 00:21:46 ----A---- C:\Windows\system32\atmlib.dll
2013-11-19 00:21:44 ----A---- C:\Windows\system32\win32spl.dll
2013-11-19 00:21:32 ----A---- C:\Windows\system32\qdvd.dll
2013-11-19 00:21:31 ----A---- C:\Windows\system32\wwansvc.dll
2013-11-19 00:21:31 ----A---- C:\Windows\system32\wwanprotdim.dll
2013-11-19 00:21:30 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2013-11-19 00:21:29 ----A---- C:\Windows\system32\gdi32.dll
2013-11-19 00:21:28 ----A---- C:\Windows\system32\comctl32.dll
2013-11-18 23:56:52 ----A---- C:\Windows\system32\consent.exe
2013-11-18 23:56:51 ----A---- C:\Windows\system32\appinfo.dll
2013-11-18 23:42:59 ----A---- C:\Windows\system32\RegistryDefragBootTime.exe
2013-11-18 23:26:45 ----D---- C:\Users\Lukes_CZ\AppData\Roaming\Apple Computer
2013-11-18 23:26:40 ----D---- C:\ProgramData\ProductData
2013-11-18 23:26:22 ----D---- C:\ProgramData\{3C5CBD7B-3D1D-411E-96C2-513FFCA84D2D}
2013-11-18 23:26:19 ----D---- C:\ProgramData\IObit
2013-11-18 22:56:33 ----D---- C:\Program Files\Cenega Czech
2013-11-18 22:09:22 ----D---- C:\Users\Lukes_CZ\AppData\Roaming\GHISLER
2013-11-18 22:09:22 ----D---- C:\Program Files\totalcmd
2013-11-18 21:58:35 ----D---- C:\Program Files\Origin Games
2013-11-18 21:51:40 ----D---- C:\Users\Lukes_CZ\AppData\Roaming\Origin
2013-11-18 21:50:32 ----D---- C:\ProgramData\Origin
2013-11-18 21:50:32 ----D---- C:\ProgramData\Electronic Arts
2013-11-18 21:50:17 ----D---- C:\Program Files\Origin
2013-11-18 21:08:29 ----D---- C:\Program Files\Common Files\Steam
2013-11-18 21:08:27 ----D---- C:\Program Files\Steam
2013-11-18 20:42:36 ----D---- C:\Program Files\OpenOffice 4
2013-11-18 20:11:38 ----D---- C:\Users\Lukes_CZ\AppData\Roaming\WinRAR
2013-11-18 19:48:50 ----D---- C:\Users\Lukes_CZ\AppData\Roaming\DAEMON Tools Lite
2013-11-18 19:48:42 ----D---- C:\Program Files\DAEMON Tools Lite
2013-11-18 19:45:09 ----D---- C:\ProgramData\DAEMON Tools Lite
2013-11-18 19:37:18 ----D---- C:\Program Files\WinRAR
2013-11-18 18:57:23 ----D---- C:\Users\Lukes_CZ\AppData\Roaming\uTorrent
2013-11-18 17:52:09 ----D---- C:\Users\Lukes_CZ\AppData\Roaming\ICQ
2013-11-18 17:52:00 ----D---- C:\Program Files\ICQ7M
2013-11-18 17:32:52 ----D---- C:\Program Files\Google
2013-11-18 17:18:44 ----D---- C:\ProgramData\Skype
2013-11-18 13:28:30 ----D---- C:\Windows\Panther
2013-11-18 13:28:18 ----RASH---- C:\BOOTSECT.BAK
2013-11-18 13:28:16 ----SHD---- C:\Boot
2013-11-18 13:28:02 ----D---- C:\Windows\system32\OEM
2013-11-18 09:48:53 ----D---- C:\Users\Lukes_CZ\AppData\Roaming\Macromedia
2013-11-18 09:48:53 ----D---- C:\Users\Lukes_CZ\AppData\Roaming\Adobe
2013-11-18 09:40:26 ----D---- C:\Program Files\CCleaner
2013-11-18 09:31:02 ----D---- C:\Windows\system32\RTCOM
2013-11-18 09:29:38 ----A---- C:\Windows\system32\WavesLib.dll
2013-11-18 09:29:37 ----A---- C:\Windows\system32\WavesGUILib.dll
2013-11-18 09:29:37 ----A---- C:\Windows\system32\tosade.dll
2013-11-18 09:29:37 ----A---- C:\Windows\system32\TepeqAPO.dll
2013-11-18 09:29:37 ----A---- C:\Windows\system32\tadefxapo2.dll
2013-11-18 09:29:37 ----A---- C:\Windows\system32\tadefxapo.dll
2013-11-18 09:29:37 ----A---- C:\Windows\system32\SRSWOW.dll
2013-11-18 09:29:37 ----A---- C:\Windows\system32\SRSTSXT.dll
2013-11-18 09:29:37 ----A---- C:\Windows\system32\SRSTSHD.dll
2013-11-18 09:29:37 ----A---- C:\Windows\system32\SRSHP360.dll
2013-11-18 09:29:37 ----A---- C:\Windows\system32\sltech32.dll
2013-11-18 09:29:36 ----A---- C:\Windows\system32\slprp32.dll
2013-11-18 09:29:36 ----A---- C:\Windows\system32\slcnt32.dll
2013-11-18 09:29:36 ----A---- C:\Windows\system32\sl3apo32.dll
2013-11-18 09:29:36 ----A---- C:\Windows\system32\SFSS_APO.dll
2013-11-18 09:29:36 ----A---- C:\Windows\system32\SFNHK.dll
2013-11-18 09:29:36 ----A---- C:\Windows\system32\SFCOM.dll
2013-11-18 09:29:36 ----A---- C:\Windows\system32\SFAPO.dll
2013-11-18 09:29:35 ----A---- C:\Windows\system32\RtkPgExt.dll
2013-11-18 09:29:35 ----A---- C:\Windows\system32\RtkCoLDR.dll
2013-11-18 09:29:35 ----A---- C:\Windows\system32\RtkCoInstII.dll
2013-11-18 09:29:35 ----A---- C:\Windows\system32\RtkApoApi.dll
2013-11-18 09:29:35 ----A---- C:\Windows\system32\RtkAPO.dll
2013-11-18 09:29:34 ----A---- C:\Windows\system32\RTEEP32A.dll
2013-11-18 09:29:34 ----A---- C:\Windows\system32\RTEEL32A.dll
2013-11-18 09:29:34 ----A---- C:\Windows\system32\RTEEG32A.dll
2013-11-18 09:29:34 ----A---- C:\Windows\system32\RTEED32A.dll
2013-11-18 09:29:34 ----A---- C:\Windows\system32\RP3DHT32.dll
2013-11-18 09:29:34 ----A---- C:\Windows\system32\RP3DAA32.dll
2013-11-18 09:29:32 ----A---- C:\Windows\system32\R4EEP32A.dll
2013-11-18 09:29:32 ----A---- C:\Windows\system32\R4EEL32A.dll
2013-11-18 09:29:32 ----A---- C:\Windows\system32\R4EEG32A.dll
2013-11-18 09:29:32 ----A---- C:\Windows\system32\R4EED32A.dll
2013-11-18 09:29:32 ----A---- C:\Windows\system32\R4EEA32A.dll
2013-11-18 09:29:32 ----A---- C:\Windows\system32\NAHIMICAPOSettingsIPC.dll
2013-11-18 09:29:32 ----A---- C:\Windows\system32\NAHIMICAPOlfx.dll
2013-11-18 09:29:32 ----A---- C:\Windows\system32\MISS_APO.dll
2013-11-18 09:29:31 ----A---- C:\Windows\system32\MaxxVolumeSDAPO.dll
2013-11-18 09:29:31 ----A---- C:\Windows\system32\MaxxVoiceAPO20.dll
2013-11-18 09:29:31 ----A---- C:\Windows\system32\MaxxSpeechAPO.dll
2013-11-18 09:29:31 ----A---- C:\Windows\system32\MaxxAudioVnN.dll
2013-11-18 09:29:30 ----A---- C:\Windows\system32\MaxxAudioVnA.dll
2013-11-18 09:29:30 ----A---- C:\Windows\system32\MaxxAudioRealtek2.dll
2013-11-18 09:29:29 ----A---- C:\Windows\system32\MaxxAudioRealtek.dll
2013-11-18 09:29:29 ----A---- C:\Windows\system32\MaxxAudioEQ.dll
2013-11-18 09:29:29 ----A---- C:\Windows\system32\MaxxAudioAPOShell.dll
2013-11-18 09:29:29 ----A---- C:\Windows\system32\MaxxAudioAPO50.dll
2013-11-18 09:29:29 ----A---- C:\Windows\system32\MaxxAudioAPO40.dll
2013-11-18 09:29:29 ----A---- C:\Windows\system32\MaxxAudioAPO30.dll
2013-11-18 09:29:29 ----A---- C:\Windows\system32\MaxxAudioAPO20.dll
2013-11-18 09:29:29 ----A---- C:\Windows\system32\MaxxAudioAPO.dll
2013-11-18 09:29:28 ----A---- C:\Windows\system32\KAAPORT.dll
2013-11-18 09:29:27 ----A---- C:\Windows\system32\FMAPO.dll
2013-11-18 09:29:27 ----A---- C:\Windows\system32\DTSVoiceClarityDLL.dll
2013-11-18 09:29:26 ----A---- C:\Windows\system32\DTSU2PREC32.dll
2013-11-18 09:29:26 ----A---- C:\Windows\system32\DTSU2PLFX32.dll
2013-11-18 09:29:26 ----A---- C:\Windows\system32\DTSU2PGFX32.dll
2013-11-18 09:29:26 ----A---- C:\Windows\system32\DTSSymmetryDLL.dll
2013-11-18 09:29:26 ----A---- C:\Windows\system32\DTSS2SpeakerDLL.dll
2013-11-18 09:29:26 ----A---- C:\Windows\system32\DTSS2HeadphoneDLL.dll
2013-11-18 09:29:26 ----A---- C:\Windows\system32\DTSNeoPCDLL.dll
2013-11-18 09:29:26 ----A---- C:\Windows\system32\DTSLimiterDLL.dll
2013-11-18 09:29:26 ----A---- C:\Windows\system32\DTSLFXAPO.dll
2013-11-18 09:29:26 ----A---- C:\Windows\system32\DTSGFXAPONS.dll
2013-11-18 09:29:25 ----A---- C:\Windows\system32\DTSGFXAPO.dll
2013-11-18 09:29:25 ----A---- C:\Windows\system32\DTSGainCompensatorDLL.dll
2013-11-18 09:29:25 ----A---- C:\Windows\system32\DTSBoostDLL.dll
2013-11-18 09:29:25 ----A---- C:\Windows\system32\DTSBassEnhancementDLL.dll
2013-11-18 09:29:25 ----A---- C:\Windows\system32\DDPP32A.dll
2013-11-18 09:29:25 ----A---- C:\Windows\system32\DDPO32A.dll
2013-11-18 09:29:25 ----A---- C:\Windows\system32\DDPD32A.dll
2013-11-18 09:29:25 ----A---- C:\Windows\system32\DDPA32.dll
2013-11-18 09:29:25 ----A---- C:\Windows\system32\CONEQMSAPOGUILibrary.dll
2013-11-18 09:29:24 ----D---- C:\Program Files\Realtek
2013-11-18 09:29:24 ----A---- C:\Windows\system32\audioLibVc.dll
2013-11-18 09:29:24 ----A---- C:\Windows\system32\AERTARen.dll
2013-11-18 09:29:24 ----A---- C:\Windows\system32\AERTACap.dll
2013-11-18 09:29:24 ----A---- C:\Windows\system32\AcpiServiceVnA.dll
2013-11-18 09:29:23 ----HD---- C:\Program Files\InstallShield Installation Information
2013-11-18 09:29:19 ----HD---- C:\Program Files\Temp
2013-11-18 09:29:18 ----A---- C:\Windows\RtlExUpd.dll
2013-11-18 09:29:12 ----D---- C:\Program Files\Common Files\InstallShield
2013-11-18 09:01:50 ----A---- C:\Windows\system32\FlashPlayerApp.exe
2013-11-18 09:01:48 ----D---- C:\Windows\system32\Macromed
2013-11-18 08:57:01 ----D---- C:\Users\Lukes_CZ\AppData\Roaming\AVAST Software
2013-11-18 08:56:15 ----A---- C:\Windows\system32\aswBoot.exe
2013-11-18 08:54:25 ----D---- C:\ProgramData\AVAST Software
2013-11-18 08:33:55 ----D---- C:\Users\Lukes_CZ\AppData\Roaming\ATI
2013-11-18 08:33:55 ----D---- C:\ProgramData\ATI
2013-11-18 08:33:09 ----D---- C:\Program Files\ATI Technologies
2013-11-18 08:33:06 ----D---- C:\Program Files\ATI
2013-11-18 07:43:14 ----D---- C:\Windows\system32\SPReview
2013-11-18 07:42:27 ----D---- C:\Windows\system32\EventProviders
2013-11-18 07:19:16 ----A---- C:\Windows\system32\dfshim.dll
2013-11-18 07:19:10 ----A---- C:\Windows\system32\LSCSHostPolicy.dll
2013-11-18 07:19:06 ----A---- C:\Windows\system32\mfc40.dll
2013-11-18 07:19:05 ----A---- C:\Windows\system32\tssrvlic.dll
2013-11-18 07:19:05 ----A---- C:\Windows\system32\sysmain.dll
2013-11-18 07:19:05 ----A---- C:\Windows\system32\RDVGHelper.exe
2013-11-18 07:19:05 ----A---- C:\Windows\system32\mfc40u.dll
2013-11-18 07:19:04 ----A---- C:\Windows\system32\secproc_isv.dll
2013-11-18 07:19:02 ----A---- C:\Windows\system32\secproc.dll
2013-11-18 07:19:02 ----A---- C:\Windows\system32\RMActivate_isv.exe
2013-11-18 07:19:01 ----A---- C:\Windows\system32\RMActivate.exe
2013-11-18 07:19:00 ----A---- C:\Windows\system32\spwizui.dll
2013-11-18 07:19:00 ----A---- C:\Windows\system32\mscoree.dll
2013-11-18 07:18:59 ----A---- C:\Windows\system32\mf.dll
2013-11-18 07:18:58 ----A---- C:\Windows\system32\mcupdate_GenuineIntel.dll
2013-11-18 07:18:58 ----A---- C:\Windows\system32\CertEnroll.dll
2013-11-18 07:18:56 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2013-11-18 07:18:56 ----A---- C:\Windows\system32\PresentationHost.exe
2013-11-18 07:18:55 ----A---- C:\Windows\system32\schedsvc.dll
2013-11-18 07:18:55 ----A---- C:\Windows\system32\RacEngn.dll
2013-11-18 07:18:53 ----A---- C:\Windows\system32\rdpdd.dll
2013-11-18 07:18:53 ----A---- C:\Windows\system32\AuthFWSnapin.dll
2013-11-18 07:18:52 ----A---- C:\Windows\system32\qmgr.dll
2013-11-18 07:18:51 ----A---- C:\Windows\system32\wevtsvc.dll
2013-11-18 07:18:51 ----A---- C:\Windows\system32\ole32.dll
2013-11-18 07:18:51 ----A---- C:\Windows\system32\ExplorerFrame.dll
2013-11-18 07:18:50 ----A---- C:\Windows\system32\vssapi.dll
2013-11-18 07:18:50 ----A---- C:\Windows\system32\SearchFolder.dll
2013-11-18 07:18:50 ----A---- C:\Windows\system32\d3d9.dll
2013-11-18 07:18:49 ----A---- C:\Windows\system32\taskschd.dll
2013-11-18 07:18:48 ----A---- C:\Windows\system32\spreview.exe
2013-11-18 07:18:48 ----A---- C:\Windows\system32\spinstall.exe
2013-11-18 07:18:48 ----A---- C:\Windows\system32\PushPrinterConnections.exe
2013-11-18 07:18:47 ----A---- C:\Windows\system32\wer.dll
2013-11-18 07:18:47 ----A---- C:\Windows\system32\termsrv.dll
2013-11-18 07:18:47 ----A---- C:\Windows\system32\gpsvc.dll
2013-11-18 07:18:47 ----A---- C:\Windows\system32\dwmcore.dll
2013-11-18 07:18:47 ----A---- C:\Windows\system32\certcli.dll
2013-11-18 07:18:46 ----A---- C:\Windows\system32\wbengine.exe
2013-11-18 07:18:46 ----A---- C:\Windows\system32\odbc32.dll
2013-11-18 07:18:46 ----A---- C:\Windows\system32\MPSSVC.dll
2013-11-18 07:18:46 ----A---- C:\Windows\system32\diagperf.dll
2013-11-18 07:18:45 ----A---- C:\Windows\system32\WinSAT.exe
2013-11-18 07:18:45 ----A---- C:\Windows\system32\umrdp.dll
2013-11-18 07:18:45 ----A---- C:\Windows\system32\TSWorkspace.dll
2013-11-18 07:18:45 ----A---- C:\Windows\system32\tsmf.dll
2013-11-18 07:18:45 ----A---- C:\Windows\system32\dot3api.dll
2013-11-18 07:18:44 ----A---- C:\Windows\system32\winhttp.dll
2013-11-18 07:18:44 ----A---- C:\Windows\system32\setupapi.dll
2013-11-18 07:18:44 ----A---- C:\Windows\system32\MSVidCtl.dll
2013-11-18 07:18:44 ----A---- C:\Windows\system32\dbgeng.dll
2013-11-18 07:18:44 ----A---- C:\Windows\system32\apphelp.dll
2013-11-18 07:18:43 ----A---- C:\Windows\system32\winlogon.exe
2013-11-18 07:18:43 ----A---- C:\Windows\system32\VSSVC.exe
2013-11-18 07:18:43 ----A---- C:\Windows\system32\user32.dll
2013-11-18 07:18:43 ----A---- C:\Windows\system32\rdpshell.exe
2013-11-18 07:18:43 ----A---- C:\Windows\system32\netlogon.dll
2013-11-18 07:18:43 ----A---- C:\Windows\system32\netcfgx.dll
2013-11-18 07:18:42 ----A---- C:\Windows\system32\WsmSvc.dll
2013-11-18 07:18:42 ----A---- C:\Windows\system32\Query.dll
2013-11-18 07:18:42 ----A---- C:\Windows\system32\gpprefcl.dll
2013-11-18 07:18:41 ----A---- C:\Windows\system32\upnp.dll
2013-11-18 07:18:41 ----A---- C:\Windows\system32\netfxperf.dll
2013-11-18 07:18:41 ----A---- C:\Windows\system32\msv1_0.dll
2013-11-18 07:18:41 ----A---- C:\Windows\system32\msdrm.dll
2013-11-18 07:18:41 ----A---- C:\Windows\system32\mmcndmgr.dll
2013-11-18 07:18:41 ----A---- C:\Windows\system32\lsm.exe
2013-11-18 07:18:41 ----A---- C:\Windows\system32\imapi2fs.dll
2013-11-18 07:18:41 ----A---- C:\Windows\system32\DShowRdpFilter.dll
2013-11-18 07:18:40 ----A---- C:\Windows\system32\sppobjs.dll
2013-11-18 07:18:40 ----A---- C:\Windows\system32\shlwapi.dll
2013-11-18 07:18:40 ----A---- C:\Windows\system32\SessEnv.dll
2013-11-18 07:18:40 ----A---- C:\Windows\system32\PortableDeviceApi.dll
2013-11-18 07:18:40 ----A---- C:\Windows\system32\mcbuilder.exe
2013-11-18 07:18:39 ----A---- C:\Windows\system32\xpsservices.dll
2013-11-18 07:18:39 ----A---- C:\Windows\system32\winload.exe
2013-11-18 07:18:39 ----A---- C:\Windows\system32\userenv.dll
2013-11-18 07:18:39 ----A---- C:\Windows\system32\sppwinob.dll
2013-11-18 07:18:39 ----A---- C:\Windows\system32\drvstore.dll
2013-11-18 07:18:39 ----A---- C:\Windows\system32\comdlg32.dll
2013-11-18 07:18:39 ----A---- C:\Windows\system32\certmgr.dll
2013-11-18 07:18:39 ----A---- C:\Windows\system32\audiosrv.dll
2013-11-18 07:18:38 ----A---- C:\Windows\system32\Wldap32.dll
2013-11-18 07:18:38 ----A---- C:\Windows\system32\rpcss.dll
2013-11-18 07:18:38 ----A---- C:\Windows\system32\propsys.dll
2013-11-18 07:18:38 ----A---- C:\Windows\system32\mfds.dll
2013-11-18 07:18:38 ----A---- C:\Windows\system32\framedynos.dll
2013-11-18 07:18:38 ----A---- C:\Windows\system32\cmd.exe
2013-11-18 07:18:38 ----A---- C:\Windows\system32\BFE.DLL
2013-11-18 07:18:37 ----A---- C:\Windows\system32\wmicmiplugin.dll
2013-11-18 07:18:37 ----A---- C:\Windows\system32\winresume.exe
2013-11-18 07:18:37 ----A---- C:\Windows\system32\werconcpl.dll
2013-11-18 07:18:37 ----A---- C:\Windows\system32\samsrv.dll
2013-11-18 07:18:37 ----A---- C:\Windows\system32\rdpendp.dll
2013-11-18 07:18:37 ----A---- C:\Windows\system32\rdpclip.exe
2013-11-18 07:18:37 ----A---- C:\Windows\system32\cscsvc.dll
2013-11-18 07:18:37 ----A---- C:\Windows\system32\azroles.dll
2013-11-18 07:18:37 ----A---- C:\Windows\system32\appmgr.dll
2013-11-18 07:18:36 ----A---- C:\Windows\system32\themeui.dll
2013-11-18 07:18:36 ----A---- C:\Windows\system32\taskeng.exe
2013-11-18 07:18:36 ----A---- C:\Windows\system32\spp.dll
2013-11-18 07:18:36 ----A---- C:\Windows\system32\dhcpcore.dll
2013-11-18 07:18:35 ----A---- C:\Windows\system32\WinSATAPI.dll
2013-11-18 07:18:35 ----A---- C:\Windows\system32\taskcomp.dll
2013-11-18 07:18:35 ----A---- C:\Windows\system32\sqlsrv32.dll
2013-11-18 07:18:35 ----A---- C:\Windows\system32\rdpinit.exe
2013-11-18 07:18:35 ----A---- C:\Windows\system32\QAGENTRT.DLL
2013-11-18 07:18:35 ----A---- C:\Windows\system32\NaturalLanguage6.dll
2013-11-18 07:18:35 ----A---- C:\Windows\system32\mfreadwrite.dll
2013-11-18 07:18:35 ----A---- C:\Windows\system32\evr.dll
2013-11-18 07:18:35 ----A---- C:\Windows\system32\dbghelp.dll
2013-11-18 07:18:35 ----A---- C:\Windows\system32\calc.exe
2013-11-18 07:18:35 ----A---- C:\Windows\system32\basecsp.dll
2013-11-18 07:18:34 ----A---- C:\Windows\system32\vpnike.dll
2013-11-18 07:18:34 ----A---- C:\Windows\system32\UIRibbon.dll
2013-11-18 07:18:34 ----A---- C:\Windows\system32\srvsvc.dll
2013-11-18 07:18:34 ----A---- C:\Windows\system32\lpksetup.exe
2013-11-18 07:18:34 ----A---- C:\Windows\system32\fveapi.dll
2013-11-18 07:18:33 ----A---- C:\Windows\system32\ws2_32.dll
2013-11-18 07:18:33 ----A---- C:\Windows\system32\tspubwmi.dll
2013-11-18 07:18:33 ----A---- C:\Windows\system32\sxs.dll
2013-11-18 07:18:33 ----A---- C:\Windows\system32\stobject.dll
2013-11-18 07:18:33 ----A---- C:\Windows\system32\prncache.dll
2013-11-18 07:18:33 ----A---- C:\Windows\system32\printui.dll
2013-11-18 07:18:33 ----A---- C:\Windows\system32\netshell.dll
2013-11-18 07:18:33 ----A---- C:\Windows\system32\inetpp.dll
2013-11-18 07:18:33 ----A---- C:\Windows\system32\hgprint.dll
2013-11-18 07:18:33 ----A---- C:\Windows\system32\dps.dll
2013-11-18 07:18:32 ----A---- C:\Windows\system32\WSDApi.dll
2013-11-18 07:18:32 ----A---- C:\Windows\system32\wmpeffects.dll
2013-11-18 07:18:32 ----A---- C:\Windows\system32\rpchttp.dll
2013-11-18 07:18:32 ----A---- C:\Windows\system32\net1.exe
2013-11-18 07:18:32 ----A---- C:\Windows\system32\ci.dll
2013-11-18 07:18:32 ----A---- C:\Windows\system32\aitagent.exe
2013-11-18 07:18:32 ----A---- C:\Windows\system32\aepdu.dll
2013-11-18 07:18:31 ----A---- C:\Windows\system32\WMVCORE.DLL
2013-11-18 07:18:31 ----A---- C:\Windows\system32\wlangpui.dll
2013-11-18 07:18:31 ----A---- C:\Windows\system32\vds.exe
2013-11-18 07:18:31 ----A---- C:\Windows\system32\scansetting.dll
2013-11-18 07:18:31 ----A---- C:\Windows\system32\QSHVHOST.DLL
2013-11-18 07:18:31 ----A---- C:\Windows\system32\MMDevAPI.dll
2013-11-18 07:18:31 ----A---- C:\Windows\system32\IPSECSVC.DLL
2013-11-18 07:18:31 ----A---- C:\Windows\system32\FXSSVC.exe
2013-11-18 07:18:30 ----A---- C:\Windows\system32\wpdshext.dll
2013-11-18 07:18:30 ----A---- C:\Windows\system32\t2embed.dll
2013-11-18 07:18:30 ----A---- C:\Windows\system32\scrptadm.dll
2013-11-18 07:18:30 ----A---- C:\Windows\system32\pnidui.dll
2013-11-18 07:18:29 ----A---- C:\Windows\system32\wscapi.dll
2013-11-18 07:18:29 ----A---- C:\Windows\system32\webservices.dll
2013-11-18 07:18:29 ----A---- C:\Windows\system32\vmicsvc.exe
2013-11-18 07:18:29 ----A---- C:\Windows\system32\tscfgwmi.dll
2013-11-18 07:18:29 ----A---- C:\Windows\system32\SyncCenter.dll
2013-11-18 07:18:29 ----A---- C:\Windows\system32\sdengin2.dll
2013-11-18 07:18:29 ----A---- C:\Windows\system32\netdiagfx.dll
2013-11-18 07:18:29 ----A---- C:\Windows\system32\fde.dll
2013-11-18 07:18:28 ----A---- C:\Windows\system32\wisptis.exe
2013-11-18 07:18:28 ----A---- C:\Windows\system32\winsta.dll
2013-11-18 07:18:28 ----A---- C:\Windows\system32\WinSCard.dll
2013-11-18 07:18:28 ----A---- C:\Windows\system32\pla.dll
2013-11-18 07:18:28 ----A---- C:\Windows\system32\MSMPEG2ENC.DLL
2013-11-18 07:18:28 ----A---- C:\Windows\system32\msasn1.dll
2013-11-18 07:18:28 ----A---- C:\Windows\system32\mcmde.dll
2013-11-18 07:18:28 ----A---- C:\Windows\system32\cscobj.dll
2013-11-18 07:18:27 ----A---- C:\Windows\system32\WMPEncEn.dll
2013-11-18 07:18:27 ----A---- C:\Windows\system32\wiaservc.dll
2013-11-18 07:18:27 ----A---- C:\Windows\system32\shsvcs.dll
2013-11-18 07:18:27 ----A---- C:\Windows\system32\setupcl.exe
2013-11-18 07:18:27 ----A---- C:\Windows\system32\rasmans.dll
2013-11-18 07:18:27 ----A---- C:\Windows\system32\onex.dll
2013-11-18 07:18:27 ----A---- C:\Windows\system32\imapi2.dll
2013-11-18 07:18:27 ----A---- C:\Windows\system32\DXPTaskRingtone.dll
2013-11-18 07:18:27 ----A---- C:\Windows\system32\dwmredir.dll
2013-11-18 07:18:27 ----A---- C:\Windows\system32\aeinv.dll
2013-11-18 07:18:26 ----A---- C:\Windows\system32\winmm.dll
2013-11-18 07:18:26 ----A---- C:\Windows\system32\vaultsvc.dll
2013-11-18 07:18:26 ----A---- C:\Windows\system32\TabSvc.dll
2013-11-18 07:18:26 ----A---- C:\Windows\system32\samcli.dll
2013-11-18 07:18:26 ----A---- C:\Windows\system32\proquota.exe
2013-11-18 07:18:26 ----A---- C:\Windows\system32\netiohlp.dll
2013-11-18 07:18:26 ----A---- C:\Windows\system32\Narrator.exe
2013-11-18 07:18:26 ----A---- C:\Windows\system32\msutb.dll
2013-11-18 07:18:26 ----A---- C:\Windows\system32\IPHLPAPI.DLL
2013-11-18 07:18:26 ----A---- C:\Windows\system32\hbaapi.dll
2013-11-18 07:18:26 ----A---- C:\Windows\system32\halmacpi.dll
2013-11-18 07:18:26 ----A---- C:\Windows\system32\hal.dll
2013-11-18 07:18:26 ----A---- C:\Windows\system32\bootres.dll
2013-11-18 07:18:26 ----A---- C:\Windows\system32\autochk.exe
2013-11-18 07:18:26 ----A---- C:\Windows\system32\autofmt.exe
2013-11-18 07:18:26 ----A---- C:\Windows\system32\autoconv.exe
2013-11-18 07:18:26 ----A---- C:\Windows\system32\AudioSes.dll
2013-11-18 07:18:26 ----A---- C:\Windows\system32\audiodg.exe
2013-11-18 07:18:25 ----A---- C:\Windows\system32\wcncsvc.dll
2013-11-18 07:18:25 ----A---- C:\Windows\system32\umpo.dll
2013-11-18 07:18:25 ----A---- C:\Windows\system32\thumbcache.dll
2013-11-18 07:18:25 ----A---- C:\Windows\system32\tcpipcfg.dll
2013-11-18 07:18:25 ----A---- C:\Windows\system32\srchadmin.dll
2013-11-18 07:18:25 ----A---- C:\Windows\system32\schtasks.exe
2013-11-18 07:18:25 ----A---- C:\Windows\system32\regapi.dll
2013-11-18 07:18:25 ----A---- C:\Windows\system32\QAGENT.DLL
2013-11-18 07:18:25 ----A---- C:\Windows\system32\powercpl.dll
2013-11-18 07:18:25 ----A---- C:\Windows\system32\netid.dll
2013-11-18 07:18:25 ----A---- C:\Windows\system32\msinfo32.exe
2013-11-18 07:18:25 ----A---- C:\Windows\system32\msihnd.dll
2013-11-18 07:18:25 ----A---- C:\Windows\system32\mscorier.dll
2013-11-18 07:18:25 ----A---- C:\Windows\system32\mimefilt.dll
2013-11-18 07:18:25 ----A---- C:\Windows\system32\ipsmsnap.dll
2013-11-18 07:18:25 ----A---- C:\Windows\system32\framedyn.dll
2013-11-18 07:18:25 ----A---- C:\Windows\system32\eapphost.dll
2013-11-18 07:18:25 ----A---- C:\Windows\system32\DXP.dll
2013-11-18 07:18:25 ----A---- C:\Windows\system32\AuxiliaryDisplayCpl.dll
2013-11-18 07:18:25 ----A---- C:\Windows\system32\actxprxy.dll
2013-11-18 07:18:24 ----A---- C:\Windows\system32\wlanpref.dll
2013-11-18 07:18:24 ----A---- C:\Windows\system32\wdc.dll
2013-11-18 07:18:24 ----A---- C:\Windows\system32\Vault.dll
2013-11-18 07:18:24 ----A---- C:\Windows\system32\untfs.dll
2013-11-18 07:18:24 ----A---- C:\Windows\system32\StructuredQuery.dll
2013-11-18 07:18:24 ----A---- C:\Windows\system32\sppsvc.exe
2013-11-18 07:18:24 ----A---- C:\Windows\system32\sdclt.exe
2013-11-18 07:18:24 ----A---- C:\Windows\system32\scesrv.dll
2013-11-18 07:18:24 ----A---- C:\Windows\system32\rastls.dll
2013-11-18 07:18:24 ----A---- C:\Windows\system32\nci.dll
2013-11-18 07:18:23 ----A---- C:\Windows\system32\XpsRasterService.dll
2013-11-18 07:18:23 ----A---- C:\Windows\system32\WMNetMgr.dll
2013-11-18 07:18:23 ----A---- C:\Windows\system32\userinit.exe
2013-11-18 07:18:23 ----A---- C:\Windows\system32\taskmgr.exe
2013-11-18 07:18:23 ----A---- C:\Windows\system32\sharemediacpl.dll
2013-11-18 07:18:23 ----A---- C:\Windows\system32\RpcRtRemote.dll
2013-11-18 07:18:23 ----A---- C:\Windows\system32\Robocopy.exe
2013-11-18 07:18:23 ----A---- C:\Windows\system32\puiobj.dll
2013-11-18 07:18:23 ----A---- C:\Windows\system32\mtxclu.dll
2013-11-18 07:18:23 ----A---- C:\Windows\system32\msdri.dll
2013-11-18 07:18:23 ----A---- C:\Windows\system32\ListSvc.dll
2013-11-18 07:18:23 ----A---- C:\Windows\system32\DxpTaskSync.dll
2013-11-18 07:18:23 ----A---- C:\Windows\system32\Display.dll
2013-11-18 07:18:22 ----A---- C:\Windows\system32\wiadefui.dll
2013-11-18 07:18:22 ----A---- C:\Windows\system32\termmgr.dll
2013-11-18 07:18:22 ----A---- C:\Windows\system32\sppcomapi.dll
2013-11-18 07:18:22 ----A---- C:\Windows\system32\shsetup.dll
2013-11-18 07:18:22 ----A---- C:\Windows\system32\rasppp.dll
2013-11-18 07:18:22 ----A---- C:\Windows\system32\msdtctm.dll
2013-11-18 07:18:22 ----A---- C:\Windows\system32\msconfig.exe
2013-11-18 07:18:22 ----A---- C:\Windows\system32\logoncli.dll
2013-11-18 07:18:22 ----A---- C:\Windows\system32\FirewallControlPanel.dll
2013-11-18 07:18:22 ----A---- C:\Windows\system32\eudcedit.exe
2013-11-18 07:18:22 ----A---- C:\Windows\system32\DiagCpl.dll
2013-11-18 07:18:22 ----A---- C:\Windows\system32\cscui.dll
2013-11-18 07:18:22 ----A---- C:\Windows\system32\cabview.dll
2013-11-18 07:18:22 ----A---- C:\Windows\system32\biocpl.dll
2013-11-18 07:18:21 ----A---- C:\Windows\system32\wpccpl.dll
2013-11-18 07:18:21 ----A---- C:\Windows\system32\themecpl.dll
2013-11-18 07:18:21 ----A---- C:\Windows\system32\tapisrv.dll
2013-11-18 07:18:21 ----A---- C:\Windows\system32\SensorsCpl.dll
2013-11-18 07:18:21 ----A---- C:\Windows\system32\scecli.dll
2013-11-18 07:18:21 ----A---- C:\Windows\system32\mscories.dll
2013-11-18 07:18:21 ----A---- C:\Windows\system32\mscms.dll
2013-11-18 07:18:21 ----A---- C:\Windows\system32\localsec.dll
2013-11-18 07:18:21 ----A---- C:\Windows\system32\hgcpl.dll
2013-11-18 07:18:21 ----A---- C:\Windows\system32\fontext.dll
2013-11-18 07:18:21 ----A---- C:\Windows\system32\dnscmmc.dll
2013-11-18 07:18:20 ----A---- C:\Windows\system32\wpdbusenum.dll
2013-11-18 07:18:20 ----A---- C:\Windows\system32\wlanui.dll
2013-11-18 07:18:20 ----A---- C:\Windows\system32\wkssvc.dll
2013-11-18 07:18:20 ----A---- C:\Windows\system32\w32tm.exe
2013-11-18 07:18:20 ----A---- C:\Windows\system32\VAN.dll
2013-11-18 07:18:20 ----A---- C:\Windows\system32\usercpl.dll
2013-11-18 07:18:20 ----A---- C:\Windows\system32\spwizeng.dll
2013-11-18 07:18:20 ----A---- C:\Windows\system32\SndVolSSO.dll
2013-11-18 07:18:20 ----A---- C:\Windows\system32\SndVol.exe
2013-11-18 07:18:20 ----A---- C:\Windows\system32\prntvpt.dll
2013-11-18 07:18:20 ----A---- C:\Windows\system32\PerfCenterCPL.dll
2013-11-18 07:18:20 ----A---- C:\Windows\system32\netcenter.dll
2013-11-18 07:18:20 ----A---- C:\Windows\system32\mprddm.dll
2013-11-18 07:18:20 ----A---- C:\Windows\system32\mblctr.exe
2013-11-18 07:18:20 ----A---- C:\Windows\system32\KMSVC.DLL
2013-11-18 07:18:20 ----A---- C:\Windows\system32\iasacct.dll
2013-11-18 07:18:20 ----A---- C:\Windows\system32\bcdsrv.dll
2013-11-18 07:18:20 ----A---- C:\Windows\system32\batmeter.dll
2013-11-18 07:18:20 ----A---- C:\Windows\system32\azroleui.dll
2013-11-18 07:18:20 ----A---- C:\Windows\system32\accessibilitycpl.dll
2013-11-18 07:18:19 ----A---- C:\Windows\system32\zipfldr.dll
2013-11-18 07:18:19 ----A---- C:\Windows\system32\wusa.exe
2013-11-18 07:18:19 ----A---- C:\Windows\system32\networkmap.dll
2013-11-18 07:18:19 ----A---- C:\Windows\system32\netjoin.dll
2013-11-18 07:18:19 ----A---- C:\Windows\system32\mspbda.dll
2013-11-18 07:18:19 ----A---- C:\Windows\system32\MSAC3ENC.DLL
2013-11-18 07:18:19 ----A---- C:\Windows\system32\MCEWMDRMNDBootstrap.dll
2013-11-18 07:18:19 ----A---- C:\Windows\system32\fdeploy.dll
2013-11-18 07:18:19 ----A---- C:\Windows\system32\Faultrep.dll
2013-11-18 07:18:19 ----A---- C:\Windows\system32\cryptui.dll
2013-11-18 07:18:19 ----A---- C:\Windows\system32\adsldp.dll
2013-11-18 07:18:18 ----A---- C:\Windows\system32\wpd_ci.dll
2013-11-18 07:18:18 ----A---- C:\Windows\system32\taskbarcpl.dll
2013-11-18 07:18:18 ----A---- C:\Windows\system32\sud.dll
2013-11-18 07:18:18 ----A---- C:\Windows\system32\slui.exe
2013-11-18 07:18:18 ----A---- C:\Windows\system32\sisbkup.dll
2013-11-18 07:18:18 ----A---- C:\Windows\system32\shwebsvc.dll
2013-11-18 07:18:18 ----A---- C:\Windows\system32\recovery.dll
2013-11-18 07:18:18 ----A---- C:\Windows\system32\prnfldr.dll
2013-11-18 07:18:18 ----A---- C:\Windows\system32\photowiz.dll
2013-11-18 07:18:18 ----A---- C:\Windows\system32\OnLineIDCpl.dll
2013-11-18 07:18:18 ----A---- C:\Windows\system32\MediaMetadataHandler.dll
2013-11-18 07:18:18 ----A---- C:\Windows\system32\iprtrmgr.dll
2013-11-18 07:18:18 ----A---- C:\Windows\system32\ifsutil.dll
2013-11-18 07:18:18 ----A---- C:\Windows\system32\iasrad.dll
2013-11-18 07:18:18 ----A---- C:\Windows\system32\halacpi.dll
2013-11-18 07:18:18 ----A---- C:\Windows\system32\ftp.exe
2013-11-18 07:18:18 ----A---- C:\Windows\system32\efscore.dll
2013-11-18 07:18:18 ----A---- C:\Windows\system32\dot3cfg.dll
2013-11-18 07:18:18 ----A---- C:\Windows\system32\defaultlocationcpl.dll
2013-11-18 07:18:18 ----A---- C:\Windows\system32\credssp.dll
2013-11-18 07:18:18 ----A---- C:\Windows\system32\ActionCenterCPL.dll
2013-11-18 07:18:18 ----A---- C:\Windows\system32\ActionCenter.dll
2013-11-18 07:18:17 ----A---- C:\Windows\system32\wmpmde.dll
2013-11-18 07:18:17 ----A---- C:\Windows\system32\vdsutil.dll
2013-11-18 07:18:17 ----A---- C:\Windows\system32\systemcpl.dll
2013-11-18 07:18:17 ----A---- C:\Windows\system32\syncui.dll
2013-11-18 07:18:17 ----A---- C:\Windows\system32\sppnp.dll
2013-11-18 07:18:17 ----A---- C:\Windows\system32\sethc.exe
2013-11-18 07:18:17 ----A---- C:\Windows\system32\sdcpl.dll
2013-11-18 07:18:17 ----A---- C:\Windows\system32\rtutils.dll
2013-11-18 07:18:17 ----A---- C:\Windows\system32\riched20.dll
2013-11-18 07:18:17 ----A---- C:\Windows\system32\recdisc.exe
2013-11-18 07:18:17 ----A---- C:\Windows\system32\rdpsign.exe
2013-11-18 07:18:17 ----A---- C:\Windows\system32\OobeFldr.dll
2013-11-18 07:18:17 ----A---- C:\Windows\system32\ntprint.dll
2013-11-18 07:18:17 ----A---- C:\Windows\system32\ntlanman.dll
2013-11-18 07:18:17 ----A---- C:\Windows\system32\fvecpl.dll
2013-11-18 07:18:17 ----A---- C:\Windows\system32\dskquoui.dll
2013-11-18 07:18:17 ----A---- C:\Windows\system32\DeviceCenter.dll
2013-11-18 07:18:17 ----A---- C:\Windows\system32\blackbox.dll
2013-11-18 07:18:17 ----A---- C:\Windows\system32\bcdedit.exe
2013-11-18 07:18:17 ----A---- C:\Windows\system32\bcdboot.exe
2013-11-18 07:18:17 ----A---- C:\Windows\system32\AxInstSv.dll
2013-11-18 07:18:17 ----A---- C:\Windows\system32\autoplay.dll
2013-11-18 07:18:16 ----A---- C:\Windows\system32\wsqmcons.exe
2013-11-18 07:18:16 ----A---- C:\Windows\system32\wmpsrcwp.dll
2013-11-18 07:18:16 ----A---- C:\Windows\system32\wavemsp.dll
2013-11-18 07:18:16 ----A---- C:\Windows\system32\nshipsec.dll
2013-11-18 07:18:16 ----A---- C:\Windows\system32\netplwiz.dll
2013-11-18 07:18:16 ----A---- C:\Windows\system32\NAPHLPR.DLL
2013-11-18 07:18:16 ----A---- C:\Windows\system32\msftedit.dll
2013-11-18 07:18:16 ----A---- C:\Windows\system32\migisol.dll
2013-11-18 07:18:16 ----A---- C:\Windows\system32\isoburn.exe
2013-11-18 07:18:16 ----A---- C:\Windows\system32\httpapi.dll
2013-11-18 07:18:16 ----A---- C:\Windows\system32\fms.dll
2013-11-18 07:18:16 ----A---- C:\Windows\system32\dpx.dll
2013-11-18 07:18:16 ----A---- C:\Windows\system32\dot3svc.dll
2013-11-18 07:18:16 ----A---- C:\Windows\system32\AuxiliaryDisplayServices.dll
2013-11-18 07:18:16 ----A---- C:\Windows\system32\asycfilt.dll
2013-11-18 07:18:16 ----A---- C:\Windows\system32\activeds.dll
2013-11-18 07:18:15 ----A---- C:\Windows\twain_32.dll
2013-11-18 07:18:15 ----A---- C:\Windows\system32\wvc.dll
2013-11-18 07:18:15 ----A---- C:\Windows\system32\wtsapi32.dll
2013-11-18 07:18:15 ----A---- C:\Windows\system32\wlanmsm.dll
2013-11-18 07:18:15 ----A---- C:\Windows\system32\wimgapi.dll
2013-11-18 07:18:15 ----A---- C:\Windows\system32\uxlib.dll
2013-11-18 07:18:15 ----A---- C:\Windows\system32\tzutil.exe
2013-11-18 07:18:15 ----A---- C:\Windows\system32\twext.dll
2013-11-18 07:18:15 ----A---- C:\Windows\system32\sysclass.dll
2013-11-18 07:18:15 ----A---- C:\Windows\system32\srrstr.dll
2013-11-18 07:18:15 ----A---- C:\Windows\system32\SmiEngine.dll
2013-11-18 07:18:15 ----A---- C:\Windows\system32\slwga.dll
2013-11-18 07:18:15 ----A---- C:\Windows\system32\setupugc.exe
2013-11-18 07:18:15 ----A---- C:\Windows\system32\ReAgent.dll
2013-11-18 07:18:15 ----A---- C:\Windows\system32\qcap.dll
2013-11-18 07:18:15 ----A---- C:\Windows\system32\qasf.dll
2013-11-18 07:18:15 ----A---- C:\Windows\system32\provsvc.dll
2013-11-18 07:18:15 ----A---- C:\Windows\system32\PresentationSettings.exe
2013-11-18 07:18:15 ----A---- C:\Windows\system32\PkgMgr.exe
2013-11-18 07:18:15 ----A---- C:\Windows\system32\ocsetup.exe
2013-11-18 07:18:15 ----A---- C:\Windows\system32\mstask.dll
2013-11-18 07:18:15 ----A---- C:\Windows\system32\imm32.dll
2013-11-18 07:18:15 ----A---- C:\Windows\system32\dsuiext.dll
2013-11-18 07:18:15 ----A---- C:\Windows\system32\dot3ui.dll
2013-11-18 07:18:15 ----A---- C:\Windows\system32\dfrgui.exe
2013-11-18 07:18:15 ----A---- C:\Windows\system32\certprop.dll
2013-11-18 07:18:15 ----A---- C:\Windows\system32\AdmTmpl.dll
2013-11-18 07:18:14 ----A---- C:\Windows\system32\wwanconn.dll
2013-11-18 07:18:14 ----A---- C:\Windows\system32\WPDShServiceObj.dll
2013-11-18 07:18:14 ----A---- C:\Windows\system32\wmdrmsdk.dll
2013-11-18 07:18:14 ----A---- C:\Windows\system32\wimserv.exe
2013-11-18 07:18:14 ----A---- C:\Windows\system32\TSpkg.dll
2013-11-18 07:18:14 ----A---- C:\Windows\system32\remotepg.dll
2013-11-18 07:18:14 ----A---- C:\Windows\system32\rdpencom.dll
2013-11-18 07:18:14 ----A---- C:\Windows\system32\raschap.dll
2013-11-18 07:18:14 ----A---- C:\Windows\system32\QUTIL.DLL
2013-11-18 07:18:14 ----A---- C:\Windows\system32\perfmon.exe
2013-11-18 07:18:14 ----A---- C:\Windows\system32\nslookup.exe
2013-11-18 07:18:14 ----A---- C:\Windows\system32\msvfw32.dll
2013-11-18 07:18:14 ----A---- C:\Windows\system32\msscp.dll
2013-11-18 07:18:14 ----A---- C:\Windows\system32\mciavi32.dll
2013-11-18 07:18:14 ----A---- C:\Windows\system32\input.dll
2013-11-18 07:18:14 ----A---- C:\Windows\system32\drmmgrtn.dll
2013-11-18 07:18:14 ----A---- C:\Windows\system32\diskraid.exe
2013-11-18 07:18:14 ----A---- C:\Windows\system32\DevicePairingFolder.dll
2013-11-18 07:18:14 ----A---- C:\Windows\system32\clusapi.dll
2013-11-18 07:18:14 ----A---- C:\Windows\system32\audiodev.dll
2013-11-18 07:18:14 ----A---- C:\Windows\system32\acppage.dll
2013-11-18 07:18:13 ----A---- C:\Windows\system32\wpdwcn.dll
2013-11-18 07:18:13 ----A---- C:\Windows\system32\wmpdxm.dll
2013-11-18 07:18:13 ----A---- C:\Windows\system32\WindowsAnytimeUpgradeResults.exe
2013-11-18 07:18:13 ----A---- C:\Windows\system32\vpnikeapi.dll
2013-11-18 07:18:13 ----A---- C:\Windows\system32\vdsbas.dll
2013-11-18 07:18:13 ----A---- C:\Windows\system32\UserAccountControlSettings.dll
2013-11-18 07:18:13 ----A---- C:\Windows\system32\sdrsvc.dll
2013-11-18 07:18:13 ----A---- C:\Windows\system32\runonce.exe
2013-11-18 07:18:13 ----A---- C:\Windows\system32\onexui.dll
2013-11-18 07:18:13 ----A---- C:\Windows\system32\olepro32.dll
2013-11-18 07:18:13 ----A---- C:\Windows\system32\ocsetapi.dll
2013-11-18 07:18:13 ----A---- C:\Windows\system32\nltest.exe
2013-11-18 07:18:13 ----A---- C:\Windows\system32\networkexplorer.dll
2013-11-18 07:18:13 ----A---- C:\Windows\system32\NAPCRYPT.DLL
2013-11-18 07:18:13 ----A---- C:\Windows\system32\msvidc32.dll
2013-11-18 07:18:13 ----A---- C:\Windows\system32\MFPlay.dll
2013-11-18 07:18:13 ----A---- C:\Windows\system32\Mcx2Svc.dll
2013-11-18 07:18:13 ----A---- C:\Windows\system32\logagent.exe
2013-11-18 07:18:13 ----A---- C:\Windows\system32\iTVData.dll
2013-11-18 07:18:13 ----A---- C:\Windows\system32\eapp3hst.dll
2013-11-18 07:18:13 ----A---- C:\Windows\system32\dxdiagn.dll
2013-11-18 07:18:13 ----A---- C:\Windows\bfsvc.exe
2013-11-18 07:18:12 ----A---- C:\Windows\system32\WPDSp.dll
2013-11-18 07:18:12 ----A---- C:\Windows\system32\wmpshell.dll
2013-11-18 07:18:12 ----A---- C:\Windows\system32\wmdrmdev.dll
2013-11-18 07:18:12 ----A---- C:\Windows\system32\WMADMOD.DLL
2013-11-18 07:18:12 ----A---- C:\Windows\system32\wiavideo.dll
2013-11-18 07:18:12 ----A---- C:\Windows\system32\utildll.dll
2013-11-18 07:18:12 ----A---- C:\Windows\system32\unimdmat.dll
2013-11-18 07:18:12 ----A---- C:\Windows\system32\tabcal.exe
2013-11-18 07:18:12 ----A---- C:\Windows\system32\srvcli.dll
2013-11-18 07:18:12 ----A---- C:\Windows\system32\sqlcese30.dll
2013-11-18 07:18:12 ----A---- C:\Windows\system32\shacct.dll
2013-11-18 07:18:12 ----A---- C:\Windows\system32\rdpd3d.dll
2013-11-18 07:18:12 ----A---- C:\Windows\system32\QSVRMGMT.DLL
2013-11-18 07:18:12 ----A---- C:\Windows\system32\PortableDeviceSyncProvider.dll
2013-11-18 07:18:12 ----A---- C:\Windows\system32\PortableDeviceStatus.dll
2013-11-18 07:18:12 ----A---- C:\Windows\system32\PnPUnattend.exe
2013-11-18 07:18:12 ----A---- C:\Windows\system32\pdh.dll
2013-11-18 07:18:12 ----A---- C:\Windows\system32\OpcServices.dll
2013-11-18 07:18:12 ----A---- C:\Windows\system32\olethk32.dll
2013-11-18 07:18:12 ----A---- C:\Windows\system32\ncryptui.dll
2013-11-18 07:18:12 ----A---- C:\Windows\system32\msiexec.exe
2013-11-18 07:18:12 ----A---- C:\Windows\system32\mprapi.dll
2013-11-18 07:18:12 ----A---- C:\Windows\system32\MdSched.exe
2013-11-18 07:18:12 ----A---- C:\Windows\system32\mapistub.dll
2013-11-18 07:18:12 ----A---- C:\Windows\system32\mapi32.dll
2013-11-18 07:18:12 ----A---- C:\Windows\system32\lsmproxy.dll
2013-11-18 07:18:12 ----A---- C:\Windows\system32\lpremove.exe
2013-11-18 07:18:12 ----A---- C:\Windows\system32\logman.exe
2013-11-18 07:18:12 ----A---- C:\Windows\system32\iscsium.dll
2013-11-18 07:18:12 ----A---- C:\Windows\system32\fphc.dll
2013-11-18 07:18:12 ----A---- C:\Windows\system32\dot3msm.dll
2013-11-18 07:18:12 ----A---- C:\Windows\system32\djoin.exe
2013-11-18 07:18:12 ----A---- C:\Windows\system32\CscMig.dll
2013-11-18 07:18:12 ----A---- C:\Windows\system32\cscapi.dll
2013-11-18 07:18:12 ----A---- C:\Windows\system32\bitsadmin.exe
2013-11-18 07:18:12 ----A---- C:\Windows\system32\avifil32.dll
2013-11-18 07:18:12 ----A---- C:\Windows\system32\ActionQueue.dll
2013-11-18 07:18:11 ----A---- C:\Windows\system32\wsnmp32.dll
2013-11-18 07:18:11 ----A---- C:\Windows\system32\WMVSDECD.DLL
2013-11-18 07:18:11 ----A---- C:\Windows\system32\WMSPDMOD.DLL
2013-11-18 07:18:11 ----A---- C:\Windows\system32\wmdrmnet.dll
2013-11-18 07:18:11 ----A---- C:\Windows\system32\wkscli.dll
2013-11-18 07:18:11 ----A---- C:\Windows\system32\WavDest.dll
2013-11-18 07:18:11 ----A---- C:\Windows\system32\vfwwdm32.dll
2013-11-18 07:18:11 ----A---- C:\Windows\system32\unattend.dll
2013-11-18 07:18:11 ----A---- C:\Windows\system32\umb.dll
2013-11-18 07:18:11 ----A---- C:\Windows\system32\tsbyuv.dll
2013-11-18 07:18:11 ----A---- C:\Windows\system32\takeown.exe
2013-11-18 07:18:11 ----A---- C:\Windows\system32\sppuinotify.dll
2013-11-18 07:18:11 ----A---- C:\Windows\system32\sppinst.dll
2013-11-18 07:18:11 ----A---- C:\Windows\system32\spbcd.dll
2013-11-18 07:18:11 ----A---- C:\Windows\system32\setupcln.dll
2013-11-18 07:18:11 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
2013-11-18 07:18:11 ----A---- C:\Windows\system32\secproc_ssp.dll
2013-11-18 07:18:11 ----A---- C:\Windows\system32\resutils.dll
2013-11-18 07:18:11 ----A---- C:\Windows\system32\RelPost.exe
2013-11-18 07:18:11 ----A---- C:\Windows\system32\relog.exe
2013-11-18 07:18:11 ----A---- C:\Windows\system32\rastapi.dll
2013-11-18 07:18:11 ----A---- C:\Windows\system32\qwinsta.exe
2013-11-18 07:18:11 ----A---- C:\Windows\system32\quser.exe
2013-11-18 07:18:11 ----A---- C:\Windows\system32\qprocess.exe
2013-11-18 07:18:11 ----A---- C:\Windows\system32\qdv.dll
2013-11-18 07:18:11 ----A---- C:\Windows\system32\QCLIPROV.DLL
2013-11-18 07:18:11 ----A---- C:\Windows\system32\PrintIsolationProxy.dll
2013-11-18 07:18:11 ----A---- C:\Windows\system32\pdhui.dll
2013-11-18 07:18:11 ----A---- C:\Windows\system32\nrpsrv.dll
2013-11-18 07:18:11 ----A---- C:\Windows\system32\netiougc.exe
2013-11-18 07:18:11 ----A---- C:\Windows\system32\netbtugc.exe
2013-11-18 07:18:11 ----A---- C:\Windows\system32\mydocs.dll
2013-11-18 07:18:11 ----A---- C:\Windows\system32\MultiDigiMon.exe
2013-11-18 07:18:11 ----A---- C:\Windows\system32\MuiUnattend.exe
2013-11-18 07:18:11 ----A---- C:\Windows\system32\msyuv.dll
2013-11-18 07:18:11 ----A---- C:\Windows\system32\msrle32.dll
2013-11-18 07:18:11 ----A---- C:\Windows\system32\msorcl32.dll
2013-11-18 07:18:11 ----A---- C:\Windows\system32\msnetobj.dll
2013-11-18 07:18:11 ----A---- C:\Windows\system32\msg.exe
2013-11-18 07:18:11 ----A---- C:\Windows\system32\iyuv_32.dll
2013-11-18 07:18:11 ----A---- C:\Windows\system32\itircl.dll
2013-11-18 07:18:11 ----A---- C:\Windows\system32\iscsicli.exe
2013-11-18 07:18:11 ----A---- C:\Windows\system32\iasrecst.dll
2013-11-18 07:18:11 ----A---- C:\Windows\system32\chglogon.exe
2013-11-18 07:18:11 ----A---- C:\Windows\system32\EhStorAPI.dll
2013-11-18 07:18:11 ----A---- C:\Windows\system32\diskpart.exe
2013-11-18 07:18:11 ----A---- C:\Windows\system32\cmstp.exe
2013-11-18 07:18:11 ----A---- C:\Windows\system32\cca.dll
2013-11-18 07:18:11 ----A---- C:\Windows\system32\BdeHdCfg.exe
2013-11-18 07:18:11 ----A---- C:\Windows\system32\basesrv.dll
2013-11-18 07:18:11 ----A---- C:\Windows\system32\AzSqlExt.dll
2013-11-18 07:18:11 ----A---- C:\Windows\system32\amstream.dll
2013-11-18 07:18:10 ----A---- C:\Windows\system32\wmpps.dll
2013-11-18 07:18:10 ----A---- C:\Windows\system32\wiarpc.dll
2013-11-18 07:18:10 ----A---- C:\Windows\system32\WerFaultSecure.exe
2013-11-18 07:18:10 ----A---- C:\Windows\system32\wdiasqmmodule.dll
2013-11-18 07:18:10 ----A---- C:\Windows\system32\tskill.exe
2013-11-18 07:18:10 ----A---- C:\Windows\system32\tsdiscon.exe
2013-11-18 07:18:10 ----A---- C:\Windows\system32\tscon.exe
2013-11-18 07:18:10 ----A---- C:\Windows\system32\tlscsp.dll
2013-11-18 07:18:10 ----A---- C:\Windows\system32\syssetup.dll
2013-11-18 07:18:10 ----A---- C:\Windows\system32\sppc.dll
2013-11-18 07:18:10 ----A---- C:\Windows\system32\spopk.dll
2013-11-18 07:18:10 ----A---- C:\Windows\system32\shimgvw.dll
2013-11-18 07:18:10 ----A---- C:\Windows\system32\shadow.exe
2013-11-18 07:18:10 ----A---- C:\Windows\system32\setbcdlocale.dll
2013-11-18 07:18:10 ----A---- C:\Windows\system32\rwinsta.exe
2013-11-18 07:18:10 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
2013-11-18 07:18:10 ----A---- C:\Windows\system32\RMActivate_ssp.exe
2013-11-18 07:18:10 ----A---- C:\Windows\system32\repair-bde.exe
2013-11-18 07:18:10 ----A---- C:\Windows\system32\ReAgentc.exe
2013-11-18 07:18:10 ----A---- C:\Windows\system32\qappsrv.exe
2013-11-18 07:18:10 ----A---- C:\Windows\system32\PrintBrmUi.exe
2013-11-18 07:18:10 ----A---- C:\Windows\system32\netutils.dll
2013-11-18 07:18:10 ----A---- C:\Windows\system32\muifontsetup.dll
2013-11-18 07:18:10 ----A---- C:\Windows\system32\mobsync.exe
2013-11-18 07:18:10 ----A---- C:\Windows\system32\mciqtz32.dll
2013-11-18 07:18:10 ----A---- C:\Windows\system32\luainstall.dll
2013-11-18 07:18:10 ----A---- C:\Windows\system32\logoff.exe
2013-11-18 07:18:10 ----A---- C:\Windows\system32\iccvid.dll
2013-11-18 07:18:10 ----A---- C:\Windows\system32\chgusr.exe
2013-11-18 07:18:10 ----A---- C:\Windows\system32\chgport.exe
2013-11-18 07:18:10 ----A---- C:\Windows\system32\HotStartUserAgent.dll
2013-11-18 07:18:10 ----A---- C:\Windows\system32\FXSTIFF.dll
2013-11-18 07:18:10 ----A---- C:\Windows\system32\findstr.exe
2013-11-18 07:18:10 ----A---- C:\Windows\system32\eappgnui.dll
2013-11-18 07:18:10 ----A---- C:\Windows\system32\dosx.exe
2013-11-18 07:18:10 ----A---- C:\Windows\system32\CertPolEng.dll
2013-11-18 07:18:10 ----A---- C:\Windows\system32\cabinet.dll
2013-11-18 07:18:09 ----A---- C:\Windows\system32\wshbth.dll
2013-11-18 07:18:09 ----A---- C:\Windows\system32\vmstorfltres.dll
2013-11-18 07:18:09 ----A---- C:\Windows\system32\vmicres.dll
2013-11-18 07:18:09 ----A---- C:\Windows\system32\vmbusres.dll
2013-11-18 07:18:09 ----A---- C:\Windows\system32\unlodctr.exe
2013-11-18 07:18:09 ----A---- C:\Windows\system32\UIRibbonRes.dll
2013-11-18 07:18:09 ----A---- C:\Windows\system32\TRAPI.dll
2013-11-18 07:18:09 ----A---- C:\Windows\system32\schedcli.dll
2013-11-18 07:18:09 ----A---- C:\Windows\system32\reset.exe
2013-11-18 07:18:09 ----A---- C:\Windows\system32\rdprefdrvapi.dll
2013-11-18 07:18:09 ----A---- C:\Windows\system32\RDPENCDD.dll
2013-11-18 07:18:09 ----A---- C:\Windows\system32\query.exe
2013-11-18 07:18:09 ----A---- C:\Windows\system32\perfts.dll
2013-11-18 07:18:09 ----A---- C:\Windows\system32\odbcconf.dll
2013-11-18 07:18:09 ----A---- C:\Windows\system32\netcfg.exe
2013-11-18 07:18:09 ----A---- C:\Windows\system32\napdsnap.dll
2013-11-18 07:18:09 ----A---- C:\Windows\system32\msdmo.dll
2013-11-18 07:18:09 ----A---- C:\Windows\system32\manage-bde.exe
2013-11-18 07:18:09 ----A---- C:\Windows\system32\LogonUI.exe
2013-11-18 07:18:09 ----A---- C:\Windows\system32\inetmib1.dll
2013-11-18 07:18:09 ----A---- C:\Windows\system32\icaapi.dll
2013-11-18 07:18:09 ----A---- C:\Windows\system32\change.exe
2013-11-18 07:18:09 ----A---- C:\Windows\system32\FXSMON.dll
2013-11-18 07:18:09 ----A---- C:\Windows\system32\elsTrans.dll
2013-11-18 07:18:09 ----A---- C:\Windows\system32\dsauth.dll
2013-11-18 07:18:09 ----A---- C:\Windows\system32\cscdll.dll
2013-11-18 07:18:09 ----A---- C:\Windows\system32\bitsperf.dll
2013-11-18 07:18:08 ----A---- C:\Windows\system32\wsdchngr.dll
2013-11-18 07:18:08 ----A---- C:\Windows\system32\sscore.dll
2013-11-18 07:18:08 ----A---- C:\Windows\system32\shgina.dll
2013-11-18 07:18:08 ----A---- C:\Windows\system32\riched32.dll
2013-11-18 07:18:08 ----A---- C:\Windows\system32\rdpcfgex.dll
2013-11-18 07:18:07 ----A---- C:\Windows\system32\wshirda.dll
2013-11-18 07:18:07 ----A---- C:\Windows\system32\vmictimeprovider.dll
2013-11-18 07:18:07 ----A---- C:\Windows\system32\VmdCoinstall.dll
2013-11-18 07:18:07 ----A---- C:\Windows\system32\vmbuspipe.dll
2013-11-18 07:18:07 ----A---- C:\Windows\system32\VmbusCoinstaller.dll
2013-11-18 07:18:07 ----A---- C:\Windows\system32\spwmp.dll
2013-11-18 07:18:07 ----A---- C:\Windows\system32\shunimpl.dll
2013-11-18 07:18:07 ----A---- C:\Windows\system32\RDPREFDD.dll
2013-11-18 07:18:07 ----A---- C:\Windows\system32\IcCoinstall.dll
2013-11-18 07:18:07 ----A---- C:\Windows\system32\dxmasf.dll
2013-11-18 07:18:07 ----A---- C:\Windows\system32\C_ISCII.DLL
2013-11-18 07:18:07 ----A---- C:\Windows\system32\browseui.dll
2013-11-18 07:18:05 ----A---- C:\Windows\system32\spwizres.dll
2013-11-18 07:18:05 ----A---- C:\Windows\system32\pifmgr.dll
2013-11-18 07:18:05 ----A---- C:\Windows\system32\nlsbres.dll
2013-11-18 07:18:05 ----A---- C:\Windows\system32\KBDUS.DLL
2013-11-18 07:18:05 ----A---- C:\Windows\system32\KBDUGHR1.DLL
2013-11-18 07:18:05 ----A---- C:\Windows\system32\KBDTURME.DLL
2013-11-18 07:18:05 ----A---- C:\Windows\system32\KBDTUQ.DLL
2013-11-18 07:18:05 ----A---- C:\Windows\system32\KBDTUF.DLL
2013-11-18 07:18:05 ----A---- C:\Windows\system32\KBDTAJIK.DLL
2013-11-18 07:18:05 ----A---- C:\Windows\system32\KBDSG.DLL
2013-11-18 07:18:05 ----A---- C:\Windows\system32\KBDSF.DLL
2013-11-18 07:18:05 ----A---- C:\Windows\system32\KBDPO.DLL
2013-11-18 07:18:05 ----A---- C:\Windows\system32\KBDNEPR.DLL
2013-11-18 07:18:05 ----A---- C:\Windows\system32\KBDMON.DLL
2013-11-18 07:18:05 ----A---- C:\Windows\system32\KBDMAORI.DLL
2013-11-18 07:18:05 ----A---- C:\Windows\system32\KBDLT1.DLL
2013-11-18 07:18:05 ----A---- C:\Windows\system32\kbdlk41a.dll
2013-11-18 07:18:05 ----A---- C:\Windows\system32\KBDINTEL.DLL
2013-11-18 07:18:05 ----A---- C:\Windows\system32\KBDINTAM.DLL
2013-11-18 07:18:05 ----A---- C:\Windows\system32\KBDINORI.DLL
2013-11-18 07:18:05 ----A---- C:\Windows\system32\KBDINMAR.DLL
2013-11-18 07:18:05 ----A---- C:\Windows\system32\KBDINKAN.DLL
2013-11-18 07:18:05 ----A---- C:\Windows\system32\KBDINHIN.DLL
2013-11-18 07:18:05 ----A---- C:\Windows\system32\KBDINBEN.DLL
2013-11-18 07:18:05 ----A---- C:\Windows\system32\KBDGR1.DLL
2013-11-18 07:18:05 ----A---- C:\Windows\system32\KBDGKL.DLL
2013-11-18 07:18:05 ----A---- C:\Windows\system32\KBDGEO.DLL
2013-11-18 07:18:05 ----A---- C:\Windows\system32\KBDCZ1.DLL
2013-11-18 07:18:05 ----A---- C:\Windows\system32\KBDBULG.DLL
2013-11-18 07:18:05 ----A---- C:\Windows\system32\KBDBLR.DLL
2013-11-18 07:18:05 ----A---- C:\Windows\system32\KBDBASH.DLL
2013-11-18 07:18:05 ----A---- C:\Windows\system32\BlbEvents.dll
2013-11-18 07:18:00 ----A---- C:\Windows\system32\wdscore.dll
2013-11-18 07:17:51 ----A---- C:\Windows\system32\wbemcomn.dll
2013-11-18 07:17:47 ----A---- C:\Windows\system32\sqmapi.dll
2013-11-18 07:15:44 ----A---- C:\Windows\system32\esent.dll
2013-11-18 07:15:42 ----A---- C:\Windows\system32\fsutil.exe
2013-11-18 06:48:19 ----D---- C:\Program Files\Microsoft.NET
2013-11-18 06:47:48 ----SHD---- C:\Windows\Installer
2013-11-18 05:42:01 ----A---- C:\Windows\system32\Wdfres.dll
2013-11-18 05:40:43 ----A---- C:\Windows\system32\WUDFSvc.dll
2013-11-18 05:40:43 ----A---- C:\Windows\system32\WUDFPlatform.dll
2013-11-18 05:40:42 ----A---- C:\Windows\system32\WUDFx.dll
2013-11-18 05:40:42 ----A---- C:\Windows\system32\WUDFHost.exe
2013-11-18 05:40:42 ----A---- C:\Windows\system32\WUDFCoinstaller.dll
2013-11-18 05:38:35 ----A---- C:\Windows\system32\wmi.dll
2013-11-18 05:34:18 ----A---- C:\Windows\system32\browserchoice.exe
2013-11-18 05:25:42 ----D---- C:\Windows\system32\MRT
2013-11-18 05:25:35 ----A---- C:\Windows\system32\MRT.exe
2013-11-18 05:24:48 ----A---- C:\Windows\system32\usp10.dll
2013-11-18 05:22:56 ----A---- C:\Windows\system32\Wpc.dll
2013-11-18 05:22:56 ----A---- C:\Windows\system32\gameux.dll
2013-11-18 05:22:26 ----A---- C:\Windows\system32\cdosys.dll
2013-11-18 05:22:13 ----A---- C:\Windows\system32\ntshrui.dll
2013-11-18 05:22:11 ----A---- C:\Windows\system32\tquery.dll
2013-11-18 05:22:11 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2013-11-18 05:22:11 ----A---- C:\Windows\system32\SearchIndexer.exe
2013-11-18 05:22:11 ----A---- C:\Windows\system32\mssvp.dll
2013-11-18 05:22:11 ----A---- C:\Windows\system32\mssrch.dll
2013-11-18 05:22:11 ----A---- C:\Windows\system32\mssph.dll
2013-11-18 05:22:10 ----A---- C:\Windows\system32\SearchFilterHost.exe
2013-11-18 05:22:10 ----A---- C:\Windows\system32\mssphtb.dll
2013-11-18 05:22:10 ----A---- C:\Windows\system32\msscntrs.dll
2013-11-18 05:22:00 ----A---- C:\Windows\system32\smss.exe
2013-11-18 05:22:00 ----A---- C:\Windows\system32\csrsrv.dll
2013-11-18 05:21:17 ----A---- C:\Windows\system32\msxml6.dll
2013-11-18 05:21:15 ----A---- C:\Windows\system32\rdpcore.dll
2013-11-18 05:21:07 ----A---- C:\Windows\system32\dnsrslvr.dll
2013-11-18 05:21:07 ----A---- C:\Windows\system32\dnsapi.dll
2013-11-18 05:21:05 ----A---- C:\Windows\system32\dnscacheugc.exe
2013-11-18 05:21:01 ----A---- C:\Windows\system32\dpnet.dll
2013-11-18 05:21:01 ----A---- C:\Windows\system32\dpnaddr.dll
2013-11-18 05:20:58 ----A---- C:\Windows\system32\srcore.dll
2013-11-18 05:20:58 ----A---- C:\Windows\system32\rstrui.exe
2013-11-18 05:20:55 ----A---- C:\Windows\system32\inetcomm.dll
2013-11-18 05:20:53 ----A---- C:\Windows\system32\oleaut32.dll
2013-11-18 05:20:53 ----A---- C:\Windows\system32\oleacc.dll
2013-11-18 05:20:50 ----A---- C:\Windows\system32\msxml3r.dll
2013-11-18 05:20:50 ----A---- C:\Windows\system32\msxml3.dll
2013-11-18 05:20:49 ----A---- C:\Windows\system32\xmllite.dll
2013-11-18 05:20:48 ----A---- C:\Windows\system32\umpnpmgr.dll
2013-11-18 05:20:48 ----A---- C:\Windows\system32\cfgmgr32.dll
2013-11-18 05:20:44 ----A---- C:\Windows\system32\CPFilters.dll
2013-11-18 05:20:43 ----A---- C:\Windows\system32\sbe.dll
2013-11-18 05:20:37 ----A---- C:\Windows\system32\webio.dll
2013-11-18 05:20:35 ----A---- C:\Windows\system32\psisdecd.dll
2013-11-18 05:20:32 ----A---- C:\Windows\system32\quartz.dll
2013-11-18 05:20:29 ----A---- C:\Windows\system32\msi.dll
2013-11-18 05:20:27 ----A---- C:\Windows\system32\prevhost.exe
2013-11-18 05:20:25 ----A---- C:\Windows\system32\EncDec.dll
2013-11-18 05:20:21 ----A---- C:\Windows\system32\netapi32.dll
2013-11-18 05:20:21 ----A---- C:\Windows\system32\browser.dll
2013-11-18 05:20:21 ----A---- C:\Windows\system32\browcli.dll
2013-11-18 05:20:13 ----A---- C:\Windows\system32\kerberos.dll
2013-11-18 05:20:07 ----A---- C:\Windows\system32\packager.dll
2013-11-18 05:20:05 ----A---- C:\Windows\system32\WFS.exe
2013-11-18 05:20:05 ----A---- C:\Windows\system32\FXSCOVER.exe
2013-11-18 05:20:04 ----A---- C:\Windows\system32\mfc42u.dll
2013-11-18 05:20:04 ----A---- C:\Windows\system32\mfc42.dll
2013-11-18 05:19:53 ----A---- C:\Windows\system32\odbcjt32.dll
2013-11-18 05:19:53 ----A---- C:\Windows\system32\odbccu32.dll
2013-11-18 05:19:53 ----A---- C:\Windows\system32\odbccr32.dll
2013-11-18 05:19:53 ----A---- C:\Windows\system32\odbccp32.dll
2013-11-18 05:19:52 ----A---- C:\Windows\system32\odbctrac.dll
2013-11-18 05:19:45 ----A---- C:\Windows\system32\rdrmemptylst.exe
2013-11-18 05:19:45 ----A---- C:\Windows\system32\rdpwsx.dll
2013-11-18 05:19:45 ----A---- C:\Windows\system32\rdpcorekmts.dll
2013-11-18 05:19:07 ----N---- C:\Windows\system32\MpSigStub.exe
2013-11-18 05:19:03 ----A---- C:\Windows\system32\poqexec.exe
2013-11-18 05:18:54 ----A---- C:\Windows\system32\profsvc.dll
2013-11-18 05:18:54 ----A---- C:\Windows\system32\profprov.dll
2013-11-18 05:18:53 ----A---- C:\Windows\system32\msvcrt.dll
2013-11-18 05:18:50 ----A---- C:\Windows\system32\synceng.dll
2013-11-18 05:18:47 ----A---- C:\Windows\system32\localspl.dll
2013-11-18 05:00:15 ----A---- C:\Windows\system32\cdd.dll
2013-11-18 04:53:22 ----A---- C:\Windows\system32\wups2.dll
2013-11-18 04:53:22 ----A---- C:\Windows\system32\wucltux.dll
2013-11-18 04:53:22 ----A---- C:\Windows\system32\wuauclt.exe
2013-11-18 04:53:21 ----A---- C:\Windows\system32\wuaueng.dll
2013-11-18 04:53:12 ----A---- C:\Windows\system32\wups.dll
2013-11-18 04:53:12 ----A---- C:\Windows\system32\wudriver.dll
2013-11-18 04:53:12 ----A---- C:\Windows\system32\wuapi.dll
2013-11-18 04:53:06 ----A---- C:\Windows\system32\wuwebv.dll
2013-11-18 04:53:06 ----A---- C:\Windows\system32\wuapp.exe
2013-11-18 04:50:27 ----D---- C:\Users\Lukes_CZ\AppData\Roaming\Identities
2013-11-18 04:50:10 ----D---- C:\Users\Lukes_CZ\AppData\Roaming\Media Center Programs
2013-11-18 04:50:09 ----SD---- C:\Users\Lukes_CZ\AppData\Roaming\Microsoft
2013-11-18 04:46:18 ----SHD---- C:\Recovery
2013-11-18 04:46:18 ----SHD---- C:\ProgramData\Šablony
2013-11-18 04:46:18 ----SHD---- C:\ProgramData\Plocha
2013-11-18 04:46:18 ----SHD---- C:\ProgramData\Oblíbené položky
2013-11-18 04:46:18 ----SHD---- C:\ProgramData\Nabídka Start
2013-11-18 04:46:18 ----SHD---- C:\ProgramData\Dokumenty
2013-11-18 04:46:18 ----SHD---- C:\ProgramData\Data aplikací
2013-11-18 04:44:33 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-11-18 04:32:22 ----D---- C:\Windows\SoftwareDistribution
2013-11-18 04:29:17 ----D---- C:\Windows\Prefetch
2013-11-18 04:29:16 ----SHD---- C:\System Volume Information

======List of files/folders modified in the last 3 months======

2014-01-17 21:24:53 ----D---- C:\Windows\Temp
2014-01-17 21:02:03 ----RD---- C:\Program Files
2014-01-17 17:07:09 ----D---- C:\Windows\system32\config
2014-01-17 16:52:13 ----D---- C:\Windows
2014-01-17 12:02:53 ----D---- C:\Windows\inf
2014-01-17 01:11:50 ----SHD---- C:\$Recycle.Bin
2014-01-16 14:06:41 ----D---- C:\Windows\Tasks
2014-01-15 02:14:32 ----D---- C:\Windows\debug
2014-01-15 02:08:21 ----D---- C:\Windows\winsxs
2014-01-15 02:03:19 ----D---- C:\Windows\system32\DriverStore
2014-01-15 02:03:19 ----D---- C:\Windows\system32\drivers
2014-01-15 02:03:19 ----D---- C:\Windows\System32
2014-01-15 01:46:35 ----D---- C:\Windows\system32\catroot
2014-01-15 01:42:42 ----D---- C:\Windows\system32\catroot2
2014-01-14 21:47:22 ----D---- C:\Windows\system32\NDF
2014-01-07 10:36:04 ----SD---- C:\ProgramData\Microsoft
2014-01-07 08:07:10 ----D---- C:\Windows\system32\Tasks
2014-01-03 23:40:22 ----AHD---- C:\ProgramData
2013-12-31 17:01:26 ----D---- C:\Program Files\Common Files
2013-12-23 14:30:43 ----D---- C:\Windows\rescache
2013-12-14 13:30:28 ----D---- C:\Program Files\Internet Explorer
2013-12-14 01:55:49 ----D---- C:\Windows\Logs
2013-12-13 23:04:39 ----RSD---- C:\Windows\assembly
2013-12-13 23:04:17 ----D---- C:\Windows\Microsoft.NET
2013-12-13 22:40:43 ----D---- C:\Windows\system32\sk-SK
2013-12-13 22:40:42 ----D---- C:\Windows\system32\migration
2013-12-13 22:40:42 ----D---- C:\Windows\system32\en-US
2013-12-13 22:40:42 ----D---- C:\Windows\system32\cs-CZ
2013-12-13 22:40:42 ----D---- C:\Windows\PolicyDefinitions
2013-12-13 22:40:38 ----D---- C:\Windows\system32\zh-TW
2013-12-13 22:40:38 ----D---- C:\Windows\system32\zh-HK
2013-12-13 22:40:38 ----D---- C:\Windows\system32\zh-CN
2013-12-13 22:40:38 ----D---- C:\Windows\system32\tr-TR
2013-12-13 22:40:38 ----D---- C:\Windows\system32\sv-SE
2013-12-13 22:40:38 ----D---- C:\Windows\system32\ru-RU
2013-12-13 22:40:38 ----D---- C:\Windows\system32\pt-PT
2013-12-13 22:40:38 ----D---- C:\Windows\system32\pt-BR
2013-12-13 22:40:38 ----D---- C:\Windows\system32\pl-PL
2013-12-13 22:40:38 ----D---- C:\Windows\system32\nl-NL
2013-12-13 22:40:38 ----D---- C:\Windows\system32\nb-NO
2013-12-13 22:40:38 ----D---- C:\Windows\system32\ko-KR
2013-12-13 22:40:38 ----D---- C:\Windows\system32\ja-JP
2013-12-13 22:40:38 ----D---- C:\Windows\system32\it-IT
2013-12-13 22:40:38 ----D---- C:\Windows\system32\hu-HU
2013-12-13 22:40:38 ----D---- C:\Windows\system32\fr-FR
2013-12-13 22:40:38 ----D---- C:\Windows\system32\fi-FI
2013-12-13 22:40:38 ----D---- C:\Windows\system32\es-ES
2013-12-13 22:40:38 ----D---- C:\Windows\system32\el-GR
2013-12-13 22:40:38 ----D---- C:\Windows\system32\de-DE
2013-12-13 22:40:38 ----D---- C:\Windows\system32\da-DK
2013-12-13 21:16:03 ----D---- C:\Program Files\Windows Sidebar
2013-12-11 11:42:28 ----D---- C:\Program Files\Windows Media Player
2013-12-06 18:49:40 ----D---- C:\Windows\system32\FxsTmp
2013-11-22 03:46:54 ----D---- C:\Windows\system32\wdi
2013-11-21 23:32:12 ----D---- C:\Program Files\Common Files\microsoft shared
2013-11-19 23:38:27 ----RD---- C:\Users
2013-11-19 02:09:44 ----D---- C:\Windows\system32\wbem
2013-11-19 02:09:38 ----D---- C:\Windows\AppPatch
2013-11-19 02:09:31 ----D---- C:\Program Files\Windows Defender
2013-11-18 23:41:45 ----D---- C:\Windows\Downloaded Program Files
2013-11-18 23:37:57 ----D---- C:\Windows\system32\LogFiles
2013-11-18 20:43:19 ----RSD---- C:\Windows\Fonts
2013-11-18 08:13:20 ----D---- C:\Program Files\Windows Portable Devices
2013-11-18 08:13:20 ----D---- C:\Program Files\Windows Photo Viewer
2013-11-18 08:13:20 ----D---- C:\Program Files\Windows Mail
2013-11-18 08:13:20 ----D---- C:\Program Files\DVD Maker
2013-11-18 08:13:20 ----D---- C:\Program Files\Common Files\System
2013-11-18 08:13:14 ----D---- C:\Windows\servicing
2013-11-18 08:13:14 ----D---- C:\Windows\ehome
2013-11-18 08:13:12 ----SHD---- C:\Windows\BitLockerDiscoveryVolumeContents
2013-11-18 08:13:05 ----D---- C:\Windows\system32\sysprep
2013-11-18 08:13:05 ----D---- C:\Windows\system32\Setup
2013-11-18 08:13:05 ----D---- C:\Windows\system32\oobe
2013-11-18 08:13:05 ----D---- C:\Windows\system32\cs
2013-11-18 08:13:05 ----D---- C:\Windows\system32\AdvancedInstallers
2013-11-18 08:13:04 ----D---- C:\Windows\system32\sppui
2013-11-18 08:13:04 ----D---- C:\Windows\system32\manifeststore
2013-11-18 08:13:04 ----D---- C:\Windows\system32\en
2013-11-18 08:13:02 ----D---- C:\Windows\system32\migwiz
2013-11-18 08:13:02 ----D---- C:\Windows\system32\Dism
2013-11-18 08:12:25 ----D---- C:\Windows\system32\Boot
2013-11-18 08:08:56 ----A---- C:\Windows\system32\msclmd.dll
2013-11-18 04:46:28 ----D---- C:\Windows\Setup
2013-11-18 04:46:24 ----D---- C:\Windows\system32\restore
2013-11-18 04:46:18 ----D---- C:\Windows\system32\Recovery
2013-11-18 04:46:18 ----D---- C:\Program Files\Windows NT
2013-11-18 04:44:41 ----D---- C:\Windows\system32\CodeIntegrity
2013-11-18 04:30:11 ----D---- C:\Windows\CSC

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119533
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Divné soubory, prosím pomoc

#6 Příspěvek od Rudy »

Kompletní není. Ten vypadá takto: http://forum.viry.cz/viewtopic.php?f=13 ... t#p1288846 . Spusťte nejprve tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

M.Lukes
Návštěvník
Návštěvník
Příspěvky: 89
Registrován: 23 črc 2012 01:47

Re: Divné soubory, prosím pomoc

#7 Příspěvek od M.Lukes »

RSIT LOG

Logfile of random's system information tool 1.09 (written by random/random)
Run by Lukes_CZ at 2014-01-17 22:31:30
Microsoft Windows 7 Ultimate Service Pack 1
System drive C: has 108 GB (76%) free of 142 GB
Total RAM: 2814 MB (65% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22:31:42, on 17.1.2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.16428)
Boot mode: Normal

Running processes:
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_43.exe
C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_43.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\Lukes_CZ\Desktop\RSIT.exe
C:\Program Files\trend micro\Lukes_CZ.exe
C:\Windows\system32\taskeng.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ˙ţ127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [RTHDVCPL] "C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe" -s
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'Default user')
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Ati External Event Utility - ATI Technologies Inc. - C:\Windows\system32\Ati2evxx.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: avast! Firewall - AVAST Software - C:\Program Files\AVAST Software\Avast\afwServ.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - C:\Program Files\LogMeIn Hamachi\hamachi-2.exe
O23 - Service: LMIGuardianSvc - LogMeIn, Inc. - C:\Program Files\LogMeIn Hamachi\LMIGuardianSvc.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe

--
End of file - 5184 bytes

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job

=========Mozilla firefox=========

ProfilePath - C:\Users\Lukes_CZ\AppData\Roaming\Mozilla\Firefox\Profiles\8lyojffp.default

prefs.js - "browser.startup.homepage" - "www.seznam.cz"

"wrc@avast.com"=C:\Program Files\AVAST Software\Avast\WebRep\FF


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 12.0.0.43 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF32_12_0_0_43.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@google.com/npPicasa3,version=3.0.0]
"Description"=Picasa3 plugin
"Path"=C:\Program Files\Google\Picasa3\npPicasa3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WLPG,version=16.4.3508.0205]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.22.3\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.22.3\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll

C:\Program Files\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}

C:\Program Files\Mozilla Firefox\components\
binary.manifest
browsercomps.dll

C:\Program Files\Mozilla Firefox\searchplugins\
google.xml
heureka-cz.xml
jyxo-cz.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml

C:\Users\Lukes_CZ\AppData\Roaming\Mozilla\Firefox\Profiles\8lyojffp.default\extensions\
superstart@enjoyfreeware.org

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2013-12-20 1138536]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2008-01-21 61440]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [2013-10-24 12017368]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2013-12-20 3764024]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Hamachi2Svc]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DisableTaskMgr"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"VIDC.FPS1"=frapsvid.dll

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2014-01-17 22:10:12 ----D---- C:\AdwCleaner
2014-01-17 21:02:03 ----D---- C:\rsit
2014-01-17 21:02:03 ----D---- C:\Program Files\trend micro
2014-01-15 01:46:48 ----A---- C:\Windows\system32\win32k.sys
2014-01-15 01:46:47 ----A---- C:\Windows\system32\drivers\netio.sys
2014-01-15 01:46:45 ----A---- C:\Windows\system32\drivers\usbuhci.sys
2014-01-15 01:46:45 ----A---- C:\Windows\system32\drivers\usbport.sys
2014-01-15 01:46:45 ----A---- C:\Windows\system32\drivers\usbohci.sys
2014-01-15 01:46:45 ----A---- C:\Windows\system32\drivers\usbhub.sys
2014-01-15 01:46:45 ----A---- C:\Windows\system32\drivers\usbehci.sys
2014-01-15 01:46:45 ----A---- C:\Windows\system32\drivers\usbccgp.sys
2014-01-15 01:46:44 ----A---- C:\Windows\system32\drivers\usbd.sys
2014-01-09 19:55:04 ----HD---- C:\Windows\PIF
2014-01-06 20:23:36 ----A---- C:\Windows\system32\GPhotos.scr
2013-12-31 17:01:40 ----D---- C:\Users\Lukes_CZ\AppData\Roaming\Skype
2013-12-31 17:01:26 ----D---- C:\Program Files\Common Files\Skype
2013-12-31 17:01:25 ----RD---- C:\Program Files\Skype
2013-12-31 16:45:08 ----D---- C:\Windows\system32\appmgmt
2013-12-27 01:41:32 ----SHD---- C:\ProgramData\{01BD4FC9-2F86-4706-A62E-774BB7E9D308}
2013-12-27 01:41:32 ----HD---- C:\ProgramData\Common Files
2013-12-25 16:28:04 ----D---- C:\Program Files\Rockstar Games
2013-12-21 13:27:00 ----D---- C:\Windows\ERUNT
2013-12-21 12:49:07 ----A---- C:\Windows\system32\DWrite.dll
2013-12-20 02:30:02 ----A---- C:\Windows\system32\drivers\aswstm.sys
2013-12-18 18:49:14 ----D---- C:\Users\Lukes_CZ\AppData\Roaming\Mozilla
2013-12-18 18:48:59 ----D---- C:\Program Files\Mozilla Firefox
2013-12-18 17:46:59 ----D---- C:\ProgramData\Mozilla

======List of files/folders modified in the last 1 month======

2014-01-17 22:31:35 ----D---- C:\Windows\Temp
2014-01-17 22:18:20 ----D---- C:\Program Files\Steam
2014-01-17 22:18:09 ----D---- C:\Windows
2014-01-17 22:13:13 ----D---- C:\Windows\system32\config
2014-01-17 21:02:03 ----RD---- C:\Program Files
2014-01-17 21:01:48 ----D---- C:\Windows\Prefetch
2014-01-17 19:48:06 ----D---- C:\Program Files\Origin
2014-01-17 12:02:53 ----D---- C:\Windows\inf
2014-01-17 01:19:08 ----D---- C:\Users\Lukes_CZ\AppData\Roaming\Clip2Net
2014-01-17 01:11:50 ----SHD---- C:\$Recycle.Bin
2014-01-16 17:36:28 ----SHD---- C:\System Volume Information
2014-01-16 16:11:51 ----D---- C:\Program Files\The KMPlayer
2014-01-16 14:06:41 ----D---- C:\Windows\Tasks
2014-01-16 14:06:40 ----A---- C:\Windows\system32\FlashPlayerApp.exe
2014-01-15 02:14:32 ----D---- C:\Windows\debug
2014-01-15 02:08:21 ----D---- C:\Windows\winsxs
2014-01-15 02:03:19 ----D---- C:\Windows\system32\DriverStore
2014-01-15 02:03:19 ----D---- C:\Windows\system32\drivers
2014-01-15 02:03:19 ----D---- C:\Windows\System32
2014-01-15 01:51:44 ----D---- C:\Windows\system32\MRT
2014-01-15 01:47:46 ----A---- C:\Windows\system32\MRT.exe
2014-01-15 01:46:35 ----D---- C:\Windows\system32\catroot
2014-01-15 01:42:42 ----D---- C:\Windows\system32\catroot2
2014-01-14 21:47:22 ----D---- C:\Windows\system32\NDF
2014-01-14 21:34:52 ----D---- C:\Users\Lukes_CZ\AppData\Roaming\uTorrent
2014-01-13 18:07:02 ----SHD---- C:\Windows\Installer
2014-01-13 18:07:02 ----D---- C:\ProgramData\Skype
2014-01-10 23:21:35 ----A---- C:\Windows\system32\PerfStringBackup.INI
2014-01-09 22:07:24 ----D---- C:\Program Files\Clip2Net
2014-01-07 10:36:04 ----SD---- C:\ProgramData\Microsoft
2014-01-07 10:04:30 ----D---- C:\Windows\SoftwareDistribution
2014-01-07 08:07:10 ----D---- C:\Windows\system32\Tasks
2014-01-07 07:47:09 ----SHD---- C:\Boot
2014-01-07 07:20:43 ----D---- C:\ProgramData\ProductData
2014-01-06 20:22:12 ----D---- C:\Users\Lukes_CZ\AppData\Roaming\ICQ
2014-01-04 18:40:02 ----D---- C:\ProgramData\IObit
2014-01-03 23:40:22 ----AHD---- C:\ProgramData
2013-12-31 17:01:26 ----D---- C:\Program Files\Common Files
2013-12-26 23:06:03 ----D---- C:\Program Files\Common Files\Steam
2013-12-26 22:41:37 ----D---- C:\Program Files\ATI
2013-12-26 02:35:05 ----D---- C:\Users\Lukes_CZ\AppData\Roaming\DAEMON Tools Lite
2013-12-25 16:28:03 ----HD---- C:\Program Files\InstallShield Installation Information
2013-12-23 14:30:43 ----D---- C:\Windows\rescache
2013-12-23 00:22:40 ----D---- C:\Windows\system32\drivers\etc
2013-12-20 02:39:46 ----D---- C:\Program Files\CCleaner
2013-12-20 02:29:34 ----A---- C:\Windows\system32\aswBoot.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 ahcix86s;ahcix86s; C:\Windows\system32\DRIVERS\ahcix86s.sys [2008-08-07 129552]
R0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2013-12-15 49944]
R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2013-12-20 180248]
R0 AtiPcie;ATI PCI Express (3GIO) Filter; C:\Windows\system32\DRIVERS\AtiPcie.sys [2008-04-28 14352]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 175360]
R1 aswKbd;aswKbd; \??\C:\Windows\system32\drivers\aswKbd.sys [2013-12-15 26136]
R1 aswNdisFlt;Avast! Firewall Driver; C:\Windows\system32\DRIVERS\aswNdisFlt.sys [2014-01-08 265072]
R1 aswRdr;aswRdr; \??\C:\Windows\system32\drivers\aswRdr2.sys [2013-12-15 79720]
R1 aswSnx;aswSnx; \??\C:\Windows\system32\drivers\aswSnx.sys [2013-12-20 775952]
R1 aswSP;aswSP; \??\C:\Windows\system32\drivers\aswSP.sys [2013-12-20 410528]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 388096]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2013-11-18 243128]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 48128]
R2 aswMonFlt;aswMonFlt; \??\C:\Windows\system32\drivers\aswMonFlt.sys [2013-12-20 67824]
R3 aswStm;aswStm; \??\C:\Windows\system32\drivers\aswStm.sys [2013-12-20 64168]
R3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2008-07-04 3847168]
R3 BCM43XX;Broadcom 802.11 Network Adapter Driver; C:\Windows\system32\DRIVERS\bcmwl6.sys [2009-07-08 2506232]
R3 hamachi;Hamachi Network Interface; C:\Windows\system32\DRIVERS\hamachi.sys [2009-03-18 26176]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2013-11-05 2888536]
R3 RTL8167;Ovladač Realtek 8167 NT; C:\Windows\system32\DRIVERS\Rt86win7.sys [2009-07-13 139776]
S2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 amdagp;Ovladač filtru AMD portu AGP; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-13 229888]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 133632]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 14848]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 5632]
S3 sisagp;Filtr SIS sběrnice AGP; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 28032]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2012-08-23 49664]
S3 viaagp;Filtr VIA sběrnice AGP; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 17920]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-09-05 65640]
R2 Ati External Event Utility;Ati External Event Utility; C:\Windows\system32\Ati2evxx.exe [2008-07-04 692224]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2013-12-20 50344]
R2 avast! Firewall;avast! Firewall; C:\Program Files\AVAST Software\Avast\afwServ.exe [2013-12-20 113704]
R2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine; C:\Program Files\LogMeIn Hamachi\hamachi-2.exe [2013-11-29 1664336]
R2 LMIGuardianSvc;LMIGuardianSvc; C:\Program Files\LogMeIn Hamachi\LMIGuardianSvc.exe [2013-10-11 375056]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2012-07-17 1713904]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2013-11-20 116648]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2013-10-23 172192]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2014-01-16 257928]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2013-11-20 116648]
S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2011-05-09 136120]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2013-11-26 108032]
S3 Steam Client Service;Steam Client Service; C:\Program Files\Common Files\Steam\SteamService.exe [2013-12-11 569768]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2013-09-11 46688]
S4 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 20992]

-----------------EOF-----------------


Zde je log z AdwCleaner

# AdwCleaner v3.017 - Report created 17/01/2014 at 22:12:46
# Updated 12/01/2014 by Xplode
# Operating System : Windows 7 Ultimate Service Pack 1 (32 bits)
# Username : Lukes_CZ - LUKES_CZ-PC
# Running from : C:\Users\Lukes_CZ\Desktop\adwcleaner.exe
# Option : Clean

***** [ Services ] *****


***** [ Files / Folders ] *****

Folder Deleted : C:\Users\Lukes_CZ\AppData\Local\PackageAware

***** [ Shortcuts ] *****


***** [ Registry ] *****


***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.16428


-\\ Mozilla Firefox v17.0.1 (cs)

[ File : C:\Users\Lukes_CZ\AppData\Roaming\Mozilla\Firefox\Profiles\8lyojffp.default\prefs.js ]


-\\ Google Chrome v32.0.1700.76

[ File : C:\Users\Lukes_CZ\AppData\Local\Google\Chrome\User Data\Default\preferences ]


*************************

AdwCleaner[R0].txt - [964 octets] - [17/01/2014 22:10:19]
AdwCleaner[S0].txt - [890 octets] - [17/01/2014 22:12:46]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [949 octets] ##########

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119533
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Divné soubory, prosím pomoc

#8 Příspěvek od Rudy »

Stáhněte OTM: http://oldtimer.geekstogo.com/OTM.exe a uložte na plochu. Spusťte a do levého okna zkopírujte:
:files
C:\Program Files\Mozilla Firefox\*.tmp

:commands
[Purity]
[Emptytemp]
[Emptyflash]
a klikněte na >MoveIt!<. Před skenem vypněte antivir a po něm restartujte PC. Dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

M.Lukes
Návštěvník
Návštěvník
Příspěvky: 89
Registrován: 23 črc 2012 01:47

Re: Divné soubory, prosím pomoc

#9 Příspěvek od M.Lukes »

RSIT LOG

Logfile of random's system information tool 1.09 (written by random/random)
Run by Lukes_CZ at 2014-01-17 23:05:15
Microsoft Windows 7 Ultimate Service Pack 1
System drive C: has 108 GB (76%) free of 142 GB
Total RAM: 2814 MB (70% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 23:05:24, on 17.1.2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.16428)
Boot mode: Normal

Running processes:
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\Lukes_CZ\Desktop\RSIT.exe
C:\Program Files\trend micro\Lukes_CZ.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ˙ţ127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [RTHDVCPL] "C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe" -s
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'Default user')
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Ati External Event Utility - ATI Technologies Inc. - C:\Windows\system32\Ati2evxx.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: avast! Firewall - AVAST Software - C:\Program Files\AVAST Software\Avast\afwServ.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - C:\Program Files\LogMeIn Hamachi\hamachi-2.exe
O23 - Service: LMIGuardianSvc - LogMeIn, Inc. - C:\Program Files\LogMeIn Hamachi\LMIGuardianSvc.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe

--
End of file - 4958 bytes

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job

=========Mozilla firefox=========

ProfilePath - C:\Users\Lukes_CZ\AppData\Roaming\Mozilla\Firefox\Profiles\8lyojffp.default

prefs.js - "browser.startup.homepage" - "www.seznam.cz"

"wrc@avast.com"=C:\Program Files\AVAST Software\Avast\WebRep\FF


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 12.0.0.43 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF32_12_0_0_43.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@google.com/npPicasa3,version=3.0.0]
"Description"=Picasa3 plugin
"Path"=C:\Program Files\Google\Picasa3\npPicasa3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WLPG,version=16.4.3508.0205]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.22.3\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.22.3\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll

C:\Program Files\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}

C:\Program Files\Mozilla Firefox\components\
binary.manifest
browsercomps.dll

C:\Program Files\Mozilla Firefox\searchplugins\
google.xml
heureka-cz.xml
jyxo-cz.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml

C:\Users\Lukes_CZ\AppData\Roaming\Mozilla\Firefox\Profiles\8lyojffp.default\extensions\
superstart@enjoyfreeware.org

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2013-12-20 1138536]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2008-01-21 61440]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [2013-10-24 12017368]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2013-12-20 3764024]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Hamachi2Svc]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DisableTaskMgr"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"VIDC.FPS1"=frapsvid.dll

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2014-01-17 22:58:11 ----D---- C:\_OTM
2014-01-17 22:10:12 ----D---- C:\AdwCleaner
2014-01-17 21:02:03 ----D---- C:\rsit
2014-01-17 21:02:03 ----D---- C:\Program Files\trend micro
2014-01-15 01:46:48 ----A---- C:\Windows\system32\win32k.sys
2014-01-15 01:46:47 ----A---- C:\Windows\system32\drivers\netio.sys
2014-01-15 01:46:45 ----A---- C:\Windows\system32\drivers\usbuhci.sys
2014-01-15 01:46:45 ----A---- C:\Windows\system32\drivers\usbport.sys
2014-01-15 01:46:45 ----A---- C:\Windows\system32\drivers\usbohci.sys
2014-01-15 01:46:45 ----A---- C:\Windows\system32\drivers\usbhub.sys
2014-01-15 01:46:45 ----A---- C:\Windows\system32\drivers\usbehci.sys
2014-01-15 01:46:45 ----A---- C:\Windows\system32\drivers\usbccgp.sys
2014-01-15 01:46:44 ----A---- C:\Windows\system32\drivers\usbd.sys
2014-01-09 19:55:04 ----HD---- C:\Windows\PIF
2014-01-06 20:23:36 ----A---- C:\Windows\system32\GPhotos.scr
2013-12-31 17:01:40 ----D---- C:\Users\Lukes_CZ\AppData\Roaming\Skype
2013-12-31 17:01:26 ----D---- C:\Program Files\Common Files\Skype
2013-12-31 17:01:25 ----RD---- C:\Program Files\Skype
2013-12-31 16:45:08 ----D---- C:\Windows\system32\appmgmt
2013-12-27 01:41:32 ----SHD---- C:\ProgramData\{01BD4FC9-2F86-4706-A62E-774BB7E9D308}
2013-12-27 01:41:32 ----HD---- C:\ProgramData\Common Files
2013-12-25 16:28:04 ----D---- C:\Program Files\Rockstar Games
2013-12-21 13:27:00 ----D---- C:\Windows\ERUNT
2013-12-21 12:49:07 ----A---- C:\Windows\system32\DWrite.dll
2013-12-20 02:30:02 ----A---- C:\Windows\system32\drivers\aswstm.sys
2013-12-18 18:49:14 ----D---- C:\Users\Lukes_CZ\AppData\Roaming\Mozilla
2013-12-18 18:48:59 ----D---- C:\Program Files\Mozilla Firefox
2013-12-18 17:46:59 ----D---- C:\ProgramData\Mozilla

======List of files/folders modified in the last 1 month======

2014-01-17 23:05:17 ----D---- C:\Windows\Temp
2014-01-17 23:00:54 ----D---- C:\Windows
2014-01-17 22:59:52 ----D---- C:\Windows\system32\config
2014-01-17 22:18:20 ----D---- C:\Program Files\Steam
2014-01-17 21:02:03 ----RD---- C:\Program Files
2014-01-17 21:01:48 ----D---- C:\Windows\Prefetch
2014-01-17 19:48:06 ----D---- C:\Program Files\Origin
2014-01-17 12:02:53 ----D---- C:\Windows\inf
2014-01-17 01:19:08 ----D---- C:\Users\Lukes_CZ\AppData\Roaming\Clip2Net
2014-01-17 01:11:50 ----SHD---- C:\$Recycle.Bin
2014-01-16 17:36:28 ----SHD---- C:\System Volume Information
2014-01-16 16:11:51 ----D---- C:\Program Files\The KMPlayer
2014-01-16 14:06:41 ----D---- C:\Windows\Tasks
2014-01-16 14:06:40 ----A---- C:\Windows\system32\FlashPlayerApp.exe
2014-01-15 02:14:32 ----D---- C:\Windows\debug
2014-01-15 02:08:21 ----D---- C:\Windows\winsxs
2014-01-15 02:03:19 ----D---- C:\Windows\system32\DriverStore
2014-01-15 02:03:19 ----D---- C:\Windows\system32\drivers
2014-01-15 02:03:19 ----D---- C:\Windows\System32
2014-01-15 01:51:44 ----D---- C:\Windows\system32\MRT
2014-01-15 01:47:46 ----A---- C:\Windows\system32\MRT.exe
2014-01-15 01:46:35 ----D---- C:\Windows\system32\catroot
2014-01-15 01:42:42 ----D---- C:\Windows\system32\catroot2
2014-01-14 21:47:22 ----D---- C:\Windows\system32\NDF
2014-01-14 21:34:52 ----D---- C:\Users\Lukes_CZ\AppData\Roaming\uTorrent
2014-01-13 18:07:02 ----SHD---- C:\Windows\Installer
2014-01-13 18:07:02 ----D---- C:\ProgramData\Skype
2014-01-10 23:21:35 ----A---- C:\Windows\system32\PerfStringBackup.INI
2014-01-09 22:07:24 ----D---- C:\Program Files\Clip2Net
2014-01-07 10:36:04 ----SD---- C:\ProgramData\Microsoft
2014-01-07 10:04:30 ----D---- C:\Windows\SoftwareDistribution
2014-01-07 08:07:10 ----D---- C:\Windows\system32\Tasks
2014-01-07 07:47:09 ----SHD---- C:\Boot
2014-01-07 07:20:43 ----D---- C:\ProgramData\ProductData
2014-01-06 20:22:12 ----D---- C:\Users\Lukes_CZ\AppData\Roaming\ICQ
2014-01-04 18:40:02 ----D---- C:\ProgramData\IObit
2014-01-03 23:40:22 ----AHD---- C:\ProgramData
2013-12-31 17:01:26 ----D---- C:\Program Files\Common Files
2013-12-26 23:06:03 ----D---- C:\Program Files\Common Files\Steam
2013-12-26 22:41:37 ----D---- C:\Program Files\ATI
2013-12-26 02:35:05 ----D---- C:\Users\Lukes_CZ\AppData\Roaming\DAEMON Tools Lite
2013-12-25 16:28:03 ----HD---- C:\Program Files\InstallShield Installation Information
2013-12-23 14:30:43 ----D---- C:\Windows\rescache
2013-12-23 00:22:40 ----D---- C:\Windows\system32\drivers\etc
2013-12-20 02:39:46 ----D---- C:\Program Files\CCleaner
2013-12-20 02:29:34 ----A---- C:\Windows\system32\aswBoot.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 ahcix86s;ahcix86s; C:\Windows\system32\DRIVERS\ahcix86s.sys [2008-08-07 129552]
R0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2013-12-15 49944]
R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2013-12-20 180248]
R0 AtiPcie;ATI PCI Express (3GIO) Filter; C:\Windows\system32\DRIVERS\AtiPcie.sys [2008-04-28 14352]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 175360]
R1 aswKbd;aswKbd; \??\C:\Windows\system32\drivers\aswKbd.sys [2013-12-15 26136]
R1 aswNdisFlt;Avast! Firewall Driver; C:\Windows\system32\DRIVERS\aswNdisFlt.sys [2014-01-08 265072]
R1 aswRdr;aswRdr; \??\C:\Windows\system32\drivers\aswRdr2.sys [2013-12-15 79720]
R1 aswSnx;aswSnx; \??\C:\Windows\system32\drivers\aswSnx.sys [2013-12-20 775952]
R1 aswSP;aswSP; \??\C:\Windows\system32\drivers\aswSP.sys [2013-12-20 410528]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 388096]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2013-11-18 243128]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 48128]
R2 aswMonFlt;aswMonFlt; \??\C:\Windows\system32\drivers\aswMonFlt.sys [2013-12-20 67824]
R3 aswStm;aswStm; \??\C:\Windows\system32\drivers\aswStm.sys [2013-12-20 64168]
R3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2008-07-04 3847168]
R3 BCM43XX;Broadcom 802.11 Network Adapter Driver; C:\Windows\system32\DRIVERS\bcmwl6.sys [2009-07-08 2506232]
R3 hamachi;Hamachi Network Interface; C:\Windows\system32\DRIVERS\hamachi.sys [2009-03-18 26176]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2013-11-05 2888536]
R3 RTL8167;Ovladač Realtek 8167 NT; C:\Windows\system32\DRIVERS\Rt86win7.sys [2009-07-13 139776]
S2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 amdagp;Ovladač filtru AMD portu AGP; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-13 229888]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 133632]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 14848]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 5632]
S3 sisagp;Filtr SIS sběrnice AGP; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 28032]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2012-08-23 49664]
S3 viaagp;Filtr VIA sběrnice AGP; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 17920]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-09-05 65640]
R2 Ati External Event Utility;Ati External Event Utility; C:\Windows\system32\Ati2evxx.exe [2008-07-04 692224]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2013-12-20 50344]
R2 avast! Firewall;avast! Firewall; C:\Program Files\AVAST Software\Avast\afwServ.exe [2013-12-20 113704]
R2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine; C:\Program Files\LogMeIn Hamachi\hamachi-2.exe [2013-11-29 1664336]
R2 LMIGuardianSvc;LMIGuardianSvc; C:\Program Files\LogMeIn Hamachi\LMIGuardianSvc.exe [2013-10-11 375056]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2012-07-17 1713904]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2013-11-20 116648]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2013-10-23 172192]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2014-01-16 257928]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2013-11-20 116648]
S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2011-05-09 136120]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2013-11-26 108032]
S3 Steam Client Service;Steam Client Service; C:\Program Files\Common Files\Steam\SteamService.exe [2013-12-11 569768]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2013-09-11 46688]
S4 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 20992]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119533
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Divné soubory, prosím pomoc

#10 Příspěvek od Rudy »

Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

M.Lukes
Návštěvník
Návštěvník
Příspěvky: 89
Registrován: 23 črc 2012 01:47

Re: Divné soubory, prosím pomoc

#11 Příspěvek od M.Lukes »

Ano, ntb se zase o trochu zrychlil, a ty soubory se už asi nevytvářejí :idea:

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119533
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Divné soubory, prosím pomoc

#12 Příspěvek od Rudy »

OK. Ty soubory zřejmě nebyly virem (měly nulovou délku), mohly být však jeho pzůstatkem.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

M.Lukes
Návštěvník
Návštěvník
Příspěvky: 89
Registrován: 23 črc 2012 01:47

Re: Divné soubory, prosím pomoc

#13 Příspěvek od M.Lukes »

Děkuji za pomoc! uklíd už asi zvládnu :happy:

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119533
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Divné soubory, prosím pomoc

#14 Příspěvek od Rudy »

ADW odinstalujte přes >Uninstall<. OTM znovu spusťte a klikněte na >CleanUp"<. Uklidí po sobě. Nemázte zač! :)
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Zamčeno