Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Neco mi krade pripojeni

To, co se nehodí jinam..

Moderátor: Moderátoři

Zpráva
Autor
GrambiczeQ
Návštěvník
Návštěvník
Příspěvky: 10
Registrován: 19 srp 2015 08:50

Neco mi krade pripojeni

#1 Příspěvek od GrambiczeQ »

Dobry den posledni dobou mivam na google.com ping +-500ms. Myslim si ze je to kvuli tomuto
http://www.imgup.cz/image/UbR
Obrázek

- Windows 8.1
- Comodo antivir
- wireshark ukazal nejaky cerveny pakety, ale ja ani poradne nevim co to paket je...
- dal jsem to radsi do offtopicu, jelikoz je tohle muj prvni post zde a nevim kam to poradne patri
- nekdy tam vyskoci i vetsi rychlost jako 2,5 mb/s atd
- zajimavy ze to porad stahuje a ja nevim co, upload to nevyuziva...


proctl jsem si forum a koukam ze vyzadujete logy, tak tady jsou :
RSIT :
Logfile of random's system information tool 1.10 (written by random/random)
Run by GrambiczeQ at 2015-08-19 10:22:00
Microsoft Windows 8.1
System drive C: has 216 GB (31%) free of 704 GB
Total RAM: 3971 MB (56% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 10:22:06, on 19. 8. 2015
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.16384)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files\trend micro\GrambiczeQ.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://toshiba13.msn.com/?pc=TEJB
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://toshiba13.msn.com/?pc=TEJB
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O4 - HKLM\..\Run: [AmIcoSinglun64] "C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe"
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O20 - AppInit_DLLs: C:\Windows\SysWOW64\nvinit.dll
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: AtherosSvc - Windows (R) Win 7 DDK provider - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: DTS APO Service (dts_apo_service) - Unknown owner - C:\Program Files (x86)\DTS, Inc\DTS Studio Sound\dts_apo_service.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) ME Service - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\stlang64.dll,-10101 (STacSV) - IDT, Inc. - C:\Program Files\IDT\WDM\STacSV64.exe
O23 - Service: TMachInfo - TOSHIBA Corporation - C:\Program Files\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 6379 bytes

======Listing Processes======





wininit.exe

winlogon.exe

C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"C:\Windows\system32\nvvsvc.exe"
"dwm.exe"
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\WINDOWS\system32\nvvsvc.exe -session -first
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
"C:\Program Files\IDT\WDM\STacSV64.exe"
C:\WINDOWS\system32\svchost.exe -k NetworkService
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Bluetooth Suite\adminservice.exe"
"C:\Program Files (x86)\DTS, Inc\DTS Studio Sound\dts_apo_service.exe"
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"

C:\WINDOWS\system32\wbem\wmiprvse.exe

taskhostex.exe
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\system32\igfxsrvc.exe" -Embedding
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe"
"C:\Program Files\TOSHIBA\Hotkey\TCrdMain_Win8.exe"
"C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
taskhost.exe $(Arg0)
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\Windows\System32\SettingSyncHost.exe" -Embedding
"C:\WINDOWS\System32\Taskmgr.exe" /3

"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe12_ Global\UsGthrCtrlFltPipeMssGthrPipe12 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 568 572 580 65536 576
"C:\Users\PC\Downloads\RSITx64.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe

=========Mozilla firefox=========

ProfilePath - C:\Users\PC\AppData\Roaming\Mozilla\Firefox\Profiles\mw6p9km6.default

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 18.0.0.232 Plugin
"Path"=C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_232.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5]
"Description"=Intel IPT WebApi plugin
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater]
"Description"=This plugin updates Intel WebAPI component
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 18.0.0.232 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF64_18_0_0_232.dll


======Registry dump======

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
""= []
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2013-09-20 391152]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2013-09-20 771056]
"Persistence"=C:\Windows\system32\igfxpers.exe [2013-09-20 769520]
"Nvtmru"=C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe [2013-08-27 1028896]
"TSSSrv"=C:\Program Files (x86)\TOSHIBA\System Setting\TSSSrv.exe [2013-09-12 296520]
"TecoResident"=C:\Program Files\TOSHIBA\Teco\TecoResident.exe []
"TCrdMain"=C:\Program Files\TOSHIBA\Hotkey\TCrdMain_Win8.exe [2013-08-18 2556768]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"AmIcoSinglun64"=C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe [2002-04-12 383768]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\Windows\system32\nvinitx.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2013-09-16 623104]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mcpltsvc]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"PromptOnSecureDesktop"=0
"ConsentPromptBehaviorAdmin"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2015-08-19 10:22:00 ----D---- C:\rsit
2015-08-19 10:22:00 ----D---- C:\Program Files\trend micro
2015-08-18 18:49:38 ----D---- C:\Program Files (x86)\OMC ModPack Client
2015-08-17 18:57:26 ----D---- C:\ProgramData\Riot Games
2015-08-17 18:40:50 ----D---- C:\Users\PC\AppData\Roaming\Wargaming.net
2015-08-17 17:38:58 ----D---- C:\Users\PC\AppData\Roaming\Macromedia
2015-08-17 15:38:58 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_7.dll
2015-08-17 15:38:58 ----A---- C:\WINDOWS\SYSWOW64\XAPOFX1_5.dll
2015-08-17 15:38:58 ----A---- C:\WINDOWS\system32\XAudio2_7.dll
2015-08-17 15:38:58 ----A---- C:\WINDOWS\system32\XAPOFX1_5.dll
2015-08-17 15:38:57 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_7.dll
2015-08-17 15:38:57 ----A---- C:\WINDOWS\system32\xactengine3_7.dll
2015-08-17 15:38:56 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_43.dll
2015-08-17 15:38:56 ----A---- C:\WINDOWS\system32\D3DCompiler_43.dll
2015-08-17 15:38:55 ----A---- C:\WINDOWS\SYSWOW64\d3dx11_43.dll
2015-08-17 15:38:55 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_43.dll
2015-08-17 15:38:55 ----A---- C:\WINDOWS\SYSWOW64\d3dcsx_43.dll
2015-08-17 15:38:55 ----A---- C:\WINDOWS\system32\d3dx11_43.dll
2015-08-17 15:38:55 ----A---- C:\WINDOWS\system32\d3dx10_43.dll
2015-08-17 15:38:55 ----A---- C:\WINDOWS\system32\d3dcsx_43.dll
2015-08-17 15:38:54 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_43.dll
2015-08-17 15:38:54 ----A---- C:\WINDOWS\system32\D3DX9_43.dll
2015-08-17 15:38:53 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_6.dll
2015-08-17 15:38:53 ----A---- C:\WINDOWS\SYSWOW64\XAPOFX1_4.dll
2015-08-17 15:38:53 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_6.dll
2015-08-17 15:38:53 ----A---- C:\WINDOWS\system32\XAudio2_6.dll
2015-08-17 15:38:53 ----A---- C:\WINDOWS\system32\XAPOFX1_4.dll
2015-08-17 15:38:53 ----A---- C:\WINDOWS\system32\xactengine3_6.dll
2015-08-17 15:38:51 ----A---- C:\WINDOWS\SYSWOW64\X3DAudio1_7.dll
2015-08-17 15:38:51 ----A---- C:\WINDOWS\system32\X3DAudio1_7.dll
2015-08-17 15:38:50 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_5.dll
2015-08-17 15:38:50 ----A---- C:\WINDOWS\system32\XAudio2_5.dll
2015-08-17 15:38:49 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_5.dll
2015-08-17 15:38:49 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_42.dll
2015-08-17 15:38:49 ----A---- C:\WINDOWS\system32\xactengine3_5.dll
2015-08-17 15:38:49 ----A---- C:\WINDOWS\system32\D3DCompiler_42.dll
2015-08-17 15:38:47 ----A---- C:\WINDOWS\SYSWOW64\d3dx11_42.dll
2015-08-17 15:38:47 ----A---- C:\WINDOWS\SYSWOW64\d3dcsx_42.dll
2015-08-17 15:38:47 ----A---- C:\WINDOWS\system32\d3dx11_42.dll
2015-08-17 15:38:47 ----A---- C:\WINDOWS\system32\d3dcsx_42.dll
2015-08-17 15:38:46 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_42.dll
2015-08-17 15:38:46 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_42.dll
2015-08-17 15:38:46 ----A---- C:\WINDOWS\system32\D3DX9_42.dll
2015-08-17 15:38:46 ----A---- C:\WINDOWS\system32\d3dx10_42.dll
2015-08-17 15:38:45 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_41.dll
2015-08-17 15:38:45 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_41.dll
2015-08-17 15:38:45 ----A---- C:\WINDOWS\system32\d3dx10_41.dll
2015-08-17 15:38:45 ----A---- C:\WINDOWS\system32\D3DCompiler_41.dll
2015-08-17 15:38:44 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_4.dll
2015-08-17 15:38:44 ----A---- C:\WINDOWS\SYSWOW64\XAPOFX1_3.dll
2015-08-17 15:38:44 ----A---- C:\WINDOWS\system32\XAudio2_4.dll
2015-08-17 15:38:44 ----A---- C:\WINDOWS\system32\XAPOFX1_3.dll
2015-08-17 15:38:44 ----A---- C:\WINDOWS\system32\D3DX9_41.dll
2015-08-17 15:38:42 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_4.dll
2015-08-17 15:38:42 ----A---- C:\WINDOWS\SYSWOW64\X3DAudio1_6.dll
2015-08-17 15:38:42 ----A---- C:\WINDOWS\system32\xactengine3_4.dll
2015-08-17 15:38:42 ----A---- C:\WINDOWS\system32\X3DAudio1_6.dll
2015-08-17 15:38:40 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_40.dll
2015-08-17 15:38:40 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_40.dll
2015-08-17 15:38:40 ----A---- C:\WINDOWS\system32\d3dx10_40.dll
2015-08-17 15:38:40 ----A---- C:\WINDOWS\system32\D3DCompiler_40.dll
2015-08-17 15:38:39 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_3.dll
2015-08-17 15:38:39 ----A---- C:\WINDOWS\SYSWOW64\XAPOFX1_2.dll
2015-08-17 15:38:39 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_40.dll
2015-08-17 15:38:39 ----A---- C:\WINDOWS\system32\XAudio2_3.dll
2015-08-17 15:38:39 ----A---- C:\WINDOWS\system32\XAPOFX1_2.dll
2015-08-17 15:38:39 ----A---- C:\WINDOWS\system32\D3DX9_40.dll
2015-08-17 15:38:38 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_3.dll
2015-08-17 15:38:38 ----A---- C:\WINDOWS\SYSWOW64\X3DAudio1_5.dll
2015-08-17 15:38:38 ----A---- C:\WINDOWS\system32\xactengine3_3.dll
2015-08-17 15:38:38 ----A---- C:\WINDOWS\system32\X3DAudio1_5.dll
2015-08-17 15:38:37 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_2.dll
2015-08-17 15:38:37 ----A---- C:\WINDOWS\SYSWOW64\XAPOFX1_1.dll
2015-08-17 15:38:37 ----A---- C:\WINDOWS\system32\XAudio2_2.dll
2015-08-17 15:38:37 ----A---- C:\WINDOWS\system32\XAPOFX1_1.dll
2015-08-17 15:38:36 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_2.dll
2015-08-17 15:38:36 ----A---- C:\WINDOWS\system32\xactengine3_2.dll
2015-08-17 15:38:35 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_39.dll
2015-08-17 15:38:35 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_39.dll
2015-08-17 15:38:35 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_39.dll
2015-08-17 15:38:35 ----A---- C:\WINDOWS\system32\D3DX9_39.dll
2015-08-17 15:38:35 ----A---- C:\WINDOWS\system32\d3dx10_39.dll
2015-08-17 15:38:35 ----A---- C:\WINDOWS\system32\D3DCompiler_39.dll
2015-08-17 15:38:34 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_1.dll
2015-08-17 15:38:34 ----A---- C:\WINDOWS\SYSWOW64\XAPOFX1_0.dll
2015-08-17 15:38:34 ----A---- C:\WINDOWS\system32\XAudio2_1.dll
2015-08-17 15:38:34 ----A---- C:\WINDOWS\system32\XAPOFX1_0.dll
2015-08-17 15:38:33 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_1.dll
2015-08-17 15:38:33 ----A---- C:\WINDOWS\SYSWOW64\X3DAudio1_4.dll
2015-08-17 15:38:33 ----A---- C:\WINDOWS\system32\xactengine3_1.dll
2015-08-17 15:38:33 ----A---- C:\WINDOWS\system32\X3DAudio1_4.dll
2015-08-17 15:38:31 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_38.dll
2015-08-17 15:38:31 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_38.dll
2015-08-17 15:38:31 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_38.dll
2015-08-17 15:38:31 ----A---- C:\WINDOWS\system32\D3DX9_38.dll
2015-08-17 15:38:31 ----A---- C:\WINDOWS\system32\d3dx10_38.dll
2015-08-17 15:38:31 ----A---- C:\WINDOWS\system32\D3DCompiler_38.dll
2015-08-17 15:38:30 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_0.dll
2015-08-17 15:38:30 ----A---- C:\WINDOWS\system32\XAudio2_0.dll
2015-08-17 15:38:29 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_0.dll
2015-08-17 15:38:29 ----A---- C:\WINDOWS\system32\xactengine3_0.dll
2015-08-17 15:38:28 ----A---- C:\WINDOWS\SYSWOW64\X3DAudio1_3.dll
2015-08-17 15:38:28 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_37.dll
2015-08-17 15:38:28 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_37.dll
2015-08-17 15:38:28 ----A---- C:\WINDOWS\system32\X3DAudio1_3.dll
2015-08-17 15:38:28 ----A---- C:\WINDOWS\system32\d3dx10_37.dll
2015-08-17 15:38:28 ----A---- C:\WINDOWS\system32\D3DCompiler_37.dll
2015-08-17 15:38:27 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_37.dll
2015-08-17 15:38:27 ----A---- C:\WINDOWS\system32\D3DX9_37.dll
2015-08-17 15:38:25 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_10.dll
2015-08-17 15:38:25 ----A---- C:\WINDOWS\system32\xactengine2_10.dll
2015-08-17 15:38:24 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_36.dll
2015-08-17 15:38:24 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_36.dll
2015-08-17 15:38:24 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_36.dll
2015-08-17 15:38:24 ----A---- C:\WINDOWS\system32\d3dx9_36.dll
2015-08-17 15:38:24 ----A---- C:\WINDOWS\system32\d3dx10_36.dll
2015-08-17 15:38:24 ----A---- C:\WINDOWS\system32\D3DCompiler_36.dll
2015-08-17 15:38:22 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_9.dll
2015-08-17 15:38:22 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_35.dll
2015-08-17 15:38:22 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_35.dll
2015-08-17 15:38:22 ----A---- C:\WINDOWS\system32\xactengine2_9.dll
2015-08-17 15:38:22 ----A---- C:\WINDOWS\system32\d3dx10_35.dll
2015-08-17 15:38:22 ----A---- C:\WINDOWS\system32\D3DCompiler_35.dll
2015-08-17 15:38:21 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_35.dll
2015-08-17 15:38:21 ----A---- C:\WINDOWS\system32\d3dx9_35.dll
2015-08-17 15:38:20 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_8.dll
2015-08-17 15:38:20 ----A---- C:\WINDOWS\SYSWOW64\X3DAudio1_2.dll
2015-08-17 15:38:20 ----A---- C:\WINDOWS\system32\xactengine2_8.dll
2015-08-17 15:38:20 ----A---- C:\WINDOWS\system32\X3DAudio1_2.dll
2015-08-17 15:38:19 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_34.dll
2015-08-17 15:38:19 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_34.dll
2015-08-17 15:38:19 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_34.dll
2015-08-17 15:38:19 ----A---- C:\WINDOWS\system32\d3dx9_34.dll
2015-08-17 15:38:19 ----A---- C:\WINDOWS\system32\d3dx10_34.dll
2015-08-17 15:38:19 ----A---- C:\WINDOWS\system32\D3DCompiler_34.dll
2015-08-17 15:38:18 ----A---- C:\WINDOWS\SYSWOW64\xinput1_3.dll
2015-08-17 15:38:18 ----A---- C:\WINDOWS\system32\xinput1_3.dll
2015-08-17 15:38:16 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_7.dll
2015-08-17 15:38:16 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_33.dll
2015-08-17 15:38:16 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_33.dll
2015-08-17 15:38:16 ----A---- C:\WINDOWS\system32\xactengine2_7.dll
2015-08-17 15:38:16 ----A---- C:\WINDOWS\system32\d3dx10_33.dll
2015-08-17 15:38:16 ----A---- C:\WINDOWS\system32\D3DCompiler_33.dll
2015-08-17 15:38:15 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_33.dll
2015-08-17 15:38:15 ----A---- C:\WINDOWS\system32\d3dx9_33.dll
2015-08-17 15:38:14 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_6.dll
2015-08-17 15:38:14 ----A---- C:\WINDOWS\system32\xactengine2_6.dll
2015-08-17 15:38:13 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_5.dll
2015-08-17 15:38:13 ----A---- C:\WINDOWS\system32\xactengine2_5.dll
2015-08-17 15:38:12 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_32.dll
2015-08-17 15:38:12 ----A---- C:\WINDOWS\SYSWOW64\d3dx10.dll
2015-08-17 15:38:12 ----A---- C:\WINDOWS\system32\d3dx9_32.dll
2015-08-17 15:38:12 ----A---- C:\WINDOWS\system32\d3dx10.dll
2015-08-17 15:38:11 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_4.dll
2015-08-17 15:38:11 ----A---- C:\WINDOWS\SYSWOW64\x3daudio1_1.dll
2015-08-17 15:38:11 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_31.dll
2015-08-17 15:38:11 ----A---- C:\WINDOWS\system32\xactengine2_4.dll
2015-08-17 15:38:11 ----A---- C:\WINDOWS\system32\x3daudio1_1.dll
2015-08-17 15:38:11 ----A---- C:\WINDOWS\system32\d3dx9_31.dll
2015-08-17 15:38:10 ----A---- C:\WINDOWS\SYSWOW64\xinput1_2.dll
2015-08-17 15:38:10 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_3.dll
2015-08-17 15:38:10 ----A---- C:\WINDOWS\system32\xinput1_2.dll
2015-08-17 15:38:10 ----A---- C:\WINDOWS\system32\xactengine2_3.dll
2015-08-17 15:38:09 ----A---- C:\WINDOWS\SYSWOW64\xinput1_1.dll
2015-08-17 15:38:09 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_2.dll
2015-08-17 15:38:09 ----A---- C:\WINDOWS\system32\xinput1_1.dll
2015-08-17 15:38:09 ----A---- C:\WINDOWS\system32\xactengine2_2.dll
2015-08-17 15:38:08 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_1.dll
2015-08-17 15:38:08 ----A---- C:\WINDOWS\system32\xactengine2_1.dll
2015-08-17 15:38:04 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_30.dll
2015-08-17 15:38:04 ----A---- C:\WINDOWS\system32\d3dx9_30.dll
2015-08-17 15:38:03 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_0.dll
2015-08-17 15:38:03 ----A---- C:\WINDOWS\SYSWOW64\x3daudio1_0.dll
2015-08-17 15:38:03 ----A---- C:\WINDOWS\system32\xactengine2_0.dll
2015-08-17 15:38:03 ----A---- C:\WINDOWS\system32\x3daudio1_0.dll
2015-08-17 15:38:02 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_29.dll
2015-08-17 15:38:02 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_28.dll
2015-08-17 15:38:02 ----A---- C:\WINDOWS\system32\d3dx9_29.dll
2015-08-17 15:38:02 ----A---- C:\WINDOWS\system32\d3dx9_28.dll
2015-08-17 15:38:01 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_27.dll
2015-08-17 15:38:01 ----A---- C:\WINDOWS\system32\d3dx9_27.dll
2015-08-17 15:38:00 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_26.dll
2015-08-17 15:38:00 ----A---- C:\WINDOWS\system32\d3dx9_26.dll
2015-08-17 15:37:59 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_25.dll
2015-08-17 15:37:59 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_24.dll
2015-08-17 15:37:59 ----A---- C:\WINDOWS\system32\d3dx9_25.dll
2015-08-17 15:37:59 ----A---- C:\WINDOWS\system32\d3dx9_24.dll
2015-08-17 15:24:41 ----HD---- C:\WINDOWS\msdownld.tmp
2015-08-17 15:24:10 ----D---- C:\WINDOWS\SYSWOW64\directx
2015-08-17 14:15:14 ----D---- C:\Users\PC\AppData\Roaming\WinRAR
2015-08-17 14:14:23 ----D---- C:\Program Files\WinRAR
2015-08-16 20:41:35 ----N---- C:\WINDOWS\system32\MpSigStub.exe
2015-08-16 19:29:52 ----D---- C:\Windows.old
2015-08-16 15:16:27 ----D---- C:\Users\PC\AppData\Roaming\Mozilla
2015-08-16 15:16:14 ----D---- C:\Program Files (x86)\Mozilla Firefox
2015-08-16 15:03:12 ----SHD---- C:\Config.Msi
2015-08-16 14:53:06 ----D---- C:\ProgramData\IsolatedStorage
2015-08-16 14:18:39 ----D---- C:\Users\PC\AppData\Roaming\Adobe
2015-08-16 09:36:24 ----SHD---- C:\ProgramData\Šablony
2015-08-16 09:36:23 ----SHD---- C:\ProgramData\Plocha
2015-08-16 09:36:23 ----SHD---- C:\ProgramData\Nabídka Start
2015-08-16 09:36:23 ----SHD---- C:\ProgramData\Dokumenty
2015-08-16 09:36:23 ----SHD---- C:\ProgramData\Data aplikací
2015-08-16 09:34:32 ----SD---- C:\Users\PC\AppData\Roaming\Microsoft
2015-08-16 08:49:44 ----HD---- C:\$SysReset
2015-08-14 22:28:11 ----ASH---- C:\swapfile.sys
2015-08-14 22:28:10 ----ASH---- C:\pagefile.sys
2015-08-14 22:28:09 ----ASH---- C:\hiberfil.sys

======List of files/folders modified in the last 1 month======

2015-08-19 10:22:00 ----RD---- C:\Program Files
2015-08-19 10:00:00 ----D---- C:\WINDOWS\system32\sru
2015-08-19 09:33:04 ----D---- C:\WINDOWS\Temp
2015-08-19 09:33:04 ----D---- C:\WINDOWS\Prefetch
2015-08-19 09:31:17 ----D---- C:\WINDOWS\Microsoft.NET
2015-08-18 21:03:12 ----D---- C:\Games
2015-08-18 19:14:16 ----RSD---- C:\WINDOWS\Fonts
2015-08-18 18:49:38 ----D---- C:\Program Files (x86)
2015-08-18 16:58:05 ----D---- C:\WINDOWS\AppReadiness
2015-08-18 16:58:02 ----HD---- C:\Program Files\WindowsApps
2015-08-18 13:57:47 ----D---- C:\WINDOWS\Logs
2015-08-17 18:57:26 ----HD---- C:\ProgramData
2015-08-17 17:59:13 ----AD---- C:\WINDOWS\System32
2015-08-17 17:59:13 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2015-08-17 17:59:12 ----D---- C:\WINDOWS\Inf
2015-08-17 15:38:58 ----D---- C:\WINDOWS\SysWOW64
2015-08-17 15:38:08 ----RSD---- C:\WINDOWS\assembly
2015-08-17 15:37:59 ----AD---- C:\Windows
2015-08-17 15:37:33 ----SHD---- C:\System Volume Information
2015-08-17 11:41:04 ----D---- C:\WINDOWS\system32\wdi
2015-08-16 19:32:02 ----D---- C:\WINDOWS\system32\drivers
2015-08-16 19:32:01 ----D---- C:\WINDOWS\system32\drivers\UMDF
2015-08-16 19:30:20 ----D---- C:\WINDOWS\system32\Recovery
2015-08-16 19:16:39 ----D---- C:\Program Files\Common Files
2015-08-16 19:16:38 ----D---- C:\Program Files (x86)\Common Files
2015-08-16 19:15:11 ----HD---- C:\WINDOWS\ELAMBKUP
2015-08-16 15:04:16 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2015-08-16 15:04:16 ----D---- C:\Program Files\TOSHIBA
2015-08-16 15:04:14 ----DC---- C:\WINDOWS\system32\DRVSTORE
2015-08-16 15:03:37 ----SHD---- C:\WINDOWS\Installer
2015-08-16 15:00:45 ----D---- C:\Program Files (x86)\TOSHIBA
2015-08-16 14:54:06 ----D---- C:\Program Files (x86)\TOSHIBA Games
2015-08-16 14:53:44 ----D---- C:\ProgramData\WildTangent
2015-08-16 14:53:08 ----D---- C:\WINDOWS\system32\Tasks
2015-08-16 14:51:14 ----D---- C:\ProgramData\regid.1991-06.com.microsoft
2015-08-16 14:51:13 ----SD---- C:\ProgramData\Microsoft
2015-08-16 14:50:02 ----D---- C:\WINDOWS\system32\config
2015-08-16 14:49:37 ----D---- C:\WINDOWS\system32\restore
2015-08-16 14:23:44 ----D---- C:\ProgramData\Toshiba
2015-08-16 14:21:46 ----D---- C:\WINDOWS\SoftwareDistribution
2015-08-16 12:38:28 ----D---- C:\WINDOWS\system32\DriverStore
2015-08-16 09:44:08 ----D---- C:\WINDOWS\rescache
2015-08-16 09:36:27 ----DC---- C:\WINDOWS\Panther
2015-08-16 09:36:24 ----D---- C:\Program Files\Windows NT
2015-08-16 09:34:32 ----RD---- C:\Users
2015-08-16 09:32:03 ----D---- C:\WINDOWS\SYSWOW64\NV
2015-08-16 09:32:02 ----D---- C:\WINDOWS\system32\NV

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2013-08-08 644968]
R0 nvpciflt;nvpciflt; C:\WINDOWS\system32\DRIVERS\nvpciflt.sys [2013-08-09 30496]
R0 tos_sps64;@oem21.inf,%SERVICE_DESC_amd64%;TOSHIBA tos_sps64 Service; C:\WINDOWS\System32\drivers\tos_sps64.sys [2012-06-18 499096]
R0 TVALZ;@oem17.inf,%TVALZ.SvcDesc%;TOSHIBA ACPI-Based Value Added Logical and General Purpose Device Driver; C:\WINDOWS\System32\drivers\TVALZ_O.SYS [2013-08-15 32832]
R1 vwififlt;@%SystemRoot%\System32\drivers\vwififlt.sys,-259; C:\WINDOWS\system32\DRIVERS\vwififlt.sys [2013-08-22 71680]
R3 AmUStor;@oem20.inf,%AmUStor.SvcDesc%;AM USB Stroage Driver; C:\WINDOWS\system32\drivers\AmUStor.SYS [2013-06-25 109336]
R3 athr;@oem18.inf,%ATHR.Service.DispName%;Qualcomm Atheros Extensible Wireless LAN device driver; C:\WINDOWS\system32\DRIVERS\athwbx.sys [2013-08-16 3859968]
R3 BtFilter;BtFilter; C:\WINDOWS\system32\DRIVERS\btfilter.sys [2013-10-01 594632]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Bluetooth Enumerator Service; C:\WINDOWS\system32\DRIVERS\BthEnum.sys [2013-08-22 53248]
R3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\WINDOWS\system32\DRIVERS\BthLEEnum.sys [2013-08-22 224768]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\system32\DRIVERS\bthpan.sys [2013-08-22 118272]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Bluetooth Radio USB Driver; C:\WINDOWS\System32\Drivers\BTHUSB.sys [2013-08-22 77312]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2013-09-16 4177920]
R3 IntcDAud;@oem3.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2013-09-16 449528]
R3 iwdbus;@oem6.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\WINDOWS\System32\drivers\iwdbus.sys [2013-08-23 26008]
R3 L1C;@oem13.inf,%L1C.Service.DispName%;NDIS Miniport Driver for Qualcomm Atheros AR81xx PCI-E Ethernet Controller; C:\WINDOWS\system32\DRIVERS\L1C63x64.sys [2013-07-18 130248]
R3 MEIx64;@oem2.inf,%TEE_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\system32\DRIVERS\TeeDriverx64.sys [2013-09-04 99288]
R3 nvlddmkm;nvlddmkm; C:\WINDOWS\system32\DRIVERS\nvlddmkm.sys [2013-08-09 11268384]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\WINDOWS\system32\DRIVERS\rfcomm.sys [2013-09-11 167424]
R3 SmbDrvI;SmbDrvI; C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys [2013-08-22 34544]
R3 STHDA;@%SystemRoot%\system32\stlang64.dll,-10301; C:\WINDOWS\system32\DRIVERS\stwrt64.sys [2013-08-16 551936]
R3 SynTP;@oem12.inf,%SynTP.SvcDesc%;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys [2013-08-22 528112]
R3 Thotkey;@oem14.inf,%Thotkey%;Toshiba Hotkey Driver; C:\WINDOWS\System32\drivers\Thotkey.sys [2013-08-19 32624]
R3 tosrfec;@oem15.inf,%busenum.SVCDESC%;Bluetooth ACPI; C:\WINDOWS\System32\drivers\tosrfec.sys [2013-08-22 27032]
R3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;USB Video Device (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys [2013-08-22 212224]
R3 vwifimp;@%SystemRoot%\System32\drivers\vwifimp.sys,-261; C:\WINDOWS\system32\DRIVERS\vwifimp.sys [2013-08-22 36864]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Bluetooth Port Driver; C:\WINDOWS\System32\Drivers\BTHport.sys [2013-08-22 1200128]
S3 intaud_WaveExtensible;@oem5.inf,%INTAUD_WEX.SvcDesc%;Intel WiDi Audio Device; C:\WINDOWS\system32\drivers\intelaud.sys [2013-08-23 39320]
S3 RTWlanE;@netrtwlane.inf,%RTWlanE.DeviceDesc.DispName%;Realtek Wireless LAN 802.11n PCI-E Network Adapter; C:\WINDOWS\system32\DRIVERS\rtwlane.sys [2013-07-31 1936088]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AtherosSvc;AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [2013-10-01 312448]
R2 dts_apo_service;DTS APO Service; C:\Program Files (x86)\DTS, Inc\DTS Studio Sound\dts_apo_service.exe [2013-09-10 19792]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2013-05-12 733696]
R2 Intel(R) ME Service;Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [2013-09-04 131544]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2013-09-04 169432]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2013-09-04 390616]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2013-08-09 920864]
R2 STacSV;@%SystemRoot%\system32\stlang64.dll,-10101; C:\Program Files\IDT\WDM\STacSV64.exe [2013-08-16 339456]
R3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2012-04-25 169752]
S2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2013-08-27 2155296]
S3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2013-09-20 279024]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2013-08-22 43696]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2013-05-12 822232]
S3 TMachInfo;TMachInfo; C:\Program Files\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe [2013-07-31 53864]

-----------------EOF-----------------



FRST LOG

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:17-08-2015
Ran by GrambiczeQ (administrator) on GRAMOBOOK (19-08-2015 10:32:43)
Running from C:\Users\PC\Desktop
Loaded Profiles: GrambiczeQ (Available Profiles: GrambiczeQ & Administrator)
Platform: Windows 8.1 (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\stacsv64.exe
(Windows (R) Win 7 DDK provider) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe
() C:\Program Files (x86)\DTS, Inc\DTS Studio Sound\dts_apo_service.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\Hotkey\TCrdMain_Win8.exe
(Alcor Micro Corp.) C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Microsoft Corporation) C:\Windows\System32\Taskmgr.exe
(forum.viry.cz) C:\Users\PC\Desktop\FRSTLauncher.exe
(Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe
(Microsoft Corporation) C:\Windows\SysWOW64\PING.EXE


==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [] => [X]
HKLM\...\Run: [Nvtmru] => C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe [1028896 2013-08-27] (NVIDIA Corporation)
HKLM\...\Run: [TSSSrv] => C:\Program Files (x86)\TOSHIBA\System Setting\TSSSrv.exe [296520 2013-09-12] (TOSHIBA Corporation)
HKLM\...\Run: [TecoResident] => C:\Program Files\TOSHIBA\Teco\TecoResident.exe
HKLM\...\Run: [TCrdMain] => C:\Program Files\TOSHIBA\Hotkey\TCrdMain_Win8.exe [2556768 2013-08-18] (TOSHIBA Corporation)
HKLM-x32\...\Run: [AmIcoSinglun64] => C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe [383768 2002-04-12] (Alcor Micro Corp.)
Winlogon\Notify\igfxcui: C:\WINDOWS\system32\igfxdev.dll (Intel Corporation)
AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [387536 2013-08-09] (NVIDIA Corporation)
AppInit_DLLs-x32: C:\Windows\SysWOW64\nvinit.dll => C:\Windows\SysWOW64\nvinit.dll [326224 2013-08-09] (NVIDIA Corporation)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKU\S-1-5-21-575301853-1833114181-593166800-1002\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://toshiba13.msn.com/?pc=TEJB
HKU\S-1-5-21-575301853-1833114181-593166800-1002\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://toshiba13.msn.com/?pc=TEJB
HKU\S-1-5-21-575301853-1833114181-593166800-1002\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://toshiba.eu/symbaloo_c
HKU\S-1-5-21-575301853-1833114181-593166800-1002\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://toshiba.eu/symbaloo_c
SearchScopes: HKU\S-1-5-21-575301853-1833114181-593166800-1002 -> DefaultScope {25B35CE7-152B-4D90-8821-6FD7D8D10F5E} URL =
Tcpip\Parameters: [DhcpNameServer] 93.153.117.1 93.153.117.33
Tcpip\..\Interfaces\{A00B2AEC-82D1-48BA-8187-A8D334163E95}: [DhcpNameServer] 93.153.117.1 93.153.117.33
Tcpip\..\Interfaces\{E75CF43C-217D-4D01-9A55-7C148CF2BCED}: [DhcpNameServer] 10.65.40.1 127.0.0.1

FireFox:
========
FF ProfilePath: C:\Users\PC\AppData\Roaming\Mozilla\Firefox\Profiles\mw6p9km6.default
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_18_0_0_232.dll [2015-08-17] ()
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_232.dll [2015-08-17] ()
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-09-04] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-09-04] (Intel Corporation)

==================== Services (Whitelisted) ========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [312448 2013-10-01] (Windows (R) Win 7 DDK provider) [File not signed]
R2 dts_apo_service; C:\Program Files (x86)\DTS, Inc\DTS Studio Sound\dts_apo_service.exe [19792 2013-09-10] ()
R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [733696 2013-05-12] (Intel(R) Corporation) [File not signed]
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [822232 2013-05-12] (Intel(R) Corporation)
R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131544 2013-09-04] (Intel Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-09-04] (Intel Corporation)
R2 STacSV; C:\Program Files\IDT\WDM\STacSV64.exe [339456 2013-08-16] (IDT, Inc.) [File not signed]
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [346872 2013-08-22] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23840 2013-08-22] (Microsoft Corporation)

===================== Drivers (Whitelisted) ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 athr; C:\Windows\system32\DRIVERS\athwbx.sys [3859968 2013-08-16] (Qualcomm Atheros Communications, Inc.)
R3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [224768 2013-08-22] (Microsoft Corporation)
R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [99288 2013-09-04] (Intel Corporation)
S3 RTWlanE; C:\Windows\system32\DRIVERS\rtwlane.sys [1936088 2013-07-31] (Realtek Semiconductor Corporation )
R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [34544 2013-08-22] (Synaptics Incorporated)
R3 Thotkey; C:\Windows\System32\drivers\Thotkey.sys [32624 2013-08-19] (Windows (R) Win 7 DDK provider)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-08-19 10:32 - 2015-08-19 10:33 - 00008311 _____ C:\Users\PC\Desktop\FRST.txt
2015-08-19 10:32 - 2015-08-19 10:32 - 00015327 _____ C:\Users\PC\Desktop\LM.bat
2015-08-19 10:32 - 2015-08-19 10:32 - 00000000 ____D C:\FRST
2015-08-19 10:31 - 2015-08-19 10:32 - 00029696 _____ C:\Users\PC\AppData\Local\MSGBOX.EXE
2015-08-19 10:31 - 2015-08-19 10:31 - 00112640 _____ (forum.viry.cz) C:\Users\PC\Desktop\FRSTLauncher.exe
2015-08-19 10:27 - 2015-08-19 10:27 - 02173440 _____ (Farbar) C:\Users\PC\Desktop\FRST64.exe
2015-08-19 10:22 - 2015-08-19 10:22 - 00000000 ____D C:\rsit
2015-08-19 10:22 - 2015-08-19 10:22 - 00000000 ____D C:\Program Files\trend micro
2015-08-19 10:21 - 2015-08-19 10:21 - 01222144 _____ C:\Users\PC\Downloads\RSITx64.exe
2015-08-18 21:51 - 2015-08-18 21:51 - 00001163 _____ C:\Users\PC\Desktop\WoTLauncher – zástupce.lnk
2015-08-18 18:49 - 2015-08-18 18:49 - 00000000 ____D C:\Program Files (x86)\OMC ModPack Client
2015-08-17 19:02 - 2015-08-17 19:02 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\World of Tanks
2015-08-17 18:57 - 2015-08-17 18:57 - 00000000 ____D C:\ProgramData\Riot Games
2015-08-17 18:49 - 2015-08-17 18:49 - 06693128 _____ (Wargaming.net ) C:\Users\PC\Downloads\WoT_internet_install_eu.exe
2015-08-17 18:40 - 2015-08-17 18:40 - 00000000 ____D C:\Users\PC\AppData\Roaming\Wargaming.net
2015-08-17 17:57 - 2015-08-17 17:57 - 00000000 ____D C:\Users\PC\Desktop\jkhjjgh
2015-08-17 17:38 - 2015-08-17 17:38 - 00000000 ____D C:\Users\PC\AppData\Roaming\Macromedia
2015-08-17 17:38 - 2015-08-17 17:38 - 00000000 ____D C:\Users\PC\AppData\Local\Macromedia
2015-08-17 15:53 - 2015-08-17 17:38 - 00000000 ____D C:\Users\PC\AppData\Local\Adobe
2015-08-17 15:38 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_7.dll
2015-08-17 15:38 - 2010-06-02 04:55 - 00518488 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_7.dll
2015-08-17 15:38 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_7.dll
2015-08-17 15:38 - 2010-06-02 04:55 - 00176984 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_7.dll
2015-08-17 15:38 - 2010-06-02 04:55 - 00077656 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_5.dll
2015-08-17 15:38 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_5.dll
2015-08-17 15:38 - 2010-05-26 11:41 - 02526056 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_43.dll
2015-08-17 15:38 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_43.dll
2015-08-17 15:38 - 2010-05-26 11:41 - 02106216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_43.dll
2015-08-17 15:38 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_43.dll
2015-08-17 15:38 - 2010-05-26 11:41 - 01907552 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dcsx_43.dll
2015-08-17 15:38 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dcsx_43.dll
2015-08-17 15:38 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_43.dll
2015-08-17 15:38 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_43.dll
2015-08-17 15:38 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx11_43.dll
2015-08-17 15:38 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx11_43.dll
2015-08-17 15:38 - 2010-02-04 10:01 - 00530776 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_6.dll
2015-08-17 15:38 - 2010-02-04 10:01 - 00528216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_6.dll
2015-08-17 15:38 - 2010-02-04 10:01 - 00238936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_6.dll
2015-08-17 15:38 - 2010-02-04 10:01 - 00176984 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_6.dll
2015-08-17 15:38 - 2010-02-04 10:01 - 00078680 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_4.dll
2015-08-17 15:38 - 2010-02-04 10:01 - 00074072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_4.dll
2015-08-17 15:38 - 2010-02-04 10:01 - 00024920 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_7.dll
2015-08-17 15:38 - 2010-02-04 10:01 - 00022360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_7.dll
2015-08-17 15:38 - 2009-09-04 17:44 - 00517960 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_5.dll
2015-08-17 15:38 - 2009-09-04 17:44 - 00515416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_5.dll
2015-08-17 15:38 - 2009-09-04 17:44 - 00238936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_5.dll
2015-08-17 15:38 - 2009-09-04 17:44 - 00176968 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_5.dll
2015-08-17 15:38 - 2009-09-04 17:44 - 00073544 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_3.dll
2015-08-17 15:38 - 2009-09-04 17:44 - 00069464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_3.dll
2015-08-17 15:38 - 2009-09-04 17:29 - 05554512 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dcsx_42.dll
2015-08-17 15:38 - 2009-09-04 17:29 - 05501792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dcsx_42.dll
2015-08-17 15:38 - 2009-09-04 17:29 - 02582888 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_42.dll
2015-08-17 15:38 - 2009-09-04 17:29 - 02475352 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_42.dll
2015-08-17 15:38 - 2009-09-04 17:29 - 01974616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_42.dll
2015-08-17 15:38 - 2009-09-04 17:29 - 01892184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_42.dll
2015-08-17 15:38 - 2009-09-04 17:29 - 00523088 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_42.dll
2015-08-17 15:38 - 2009-09-04 17:29 - 00453456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_42.dll
2015-08-17 15:38 - 2009-09-04 17:29 - 00285024 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx11_42.dll
2015-08-17 15:38 - 2009-09-04 17:29 - 00235344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx11_42.dll
2015-08-17 15:38 - 2009-03-16 14:18 - 00521560 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_4.dll
2015-08-17 15:38 - 2009-03-16 14:18 - 00517448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_4.dll
2015-08-17 15:38 - 2009-03-16 14:18 - 00235352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_4.dll
2015-08-17 15:38 - 2009-03-16 14:18 - 00174936 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_4.dll
2015-08-17 15:38 - 2009-03-16 14:18 - 00024920 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_6.dll
2015-08-17 15:38 - 2009-03-16 14:18 - 00022360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_6.dll
2015-08-17 15:38 - 2009-03-09 15:27 - 05425496 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_41.dll
2015-08-17 15:38 - 2009-03-09 15:27 - 02430312 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_41.dll
2015-08-17 15:38 - 2009-03-09 15:27 - 01846632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_41.dll
2015-08-17 15:38 - 2009-03-09 15:27 - 00520544 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_41.dll
2015-08-17 15:38 - 2009-03-09 15:27 - 00453456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_41.dll
2015-08-17 15:38 - 2008-10-27 10:04 - 00518480 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_3.dll
2015-08-17 15:38 - 2008-10-27 10:04 - 00514384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_3.dll
2015-08-17 15:38 - 2008-10-27 10:04 - 00235856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_3.dll
2015-08-17 15:38 - 2008-10-27 10:04 - 00175440 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_3.dll
2015-08-17 15:38 - 2008-10-27 10:04 - 00074576 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_2.dll
2015-08-17 15:38 - 2008-10-27 10:04 - 00070992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_2.dll
2015-08-17 15:38 - 2008-10-27 10:04 - 00025936 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_5.dll
2015-08-17 15:38 - 2008-10-27 10:04 - 00023376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_5.dll
2015-08-17 15:38 - 2008-10-10 04:52 - 05631312 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_40.dll
2015-08-17 15:38 - 2008-10-10 04:52 - 04379984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_40.dll
2015-08-17 15:38 - 2008-10-10 04:52 - 02605920 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_40.dll
2015-08-17 15:38 - 2008-10-10 04:52 - 02036576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_40.dll
2015-08-17 15:38 - 2008-10-10 04:52 - 00519000 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_40.dll
2015-08-17 15:38 - 2008-10-10 04:52 - 00452440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_40.dll
2015-08-17 15:38 - 2008-07-31 10:41 - 00238088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_2.dll
2015-08-17 15:38 - 2008-07-31 10:41 - 00177672 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_2.dll
2015-08-17 15:38 - 2008-07-31 10:41 - 00072200 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_1.dll
2015-08-17 15:38 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_1.dll
2015-08-17 15:38 - 2008-07-31 10:40 - 00513544 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_2.dll
2015-08-17 15:38 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_2.dll
2015-08-17 15:38 - 2008-07-10 11:01 - 00467984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_39.dll
2015-08-17 15:38 - 2008-07-10 11:00 - 04992520 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_39.dll
2015-08-17 15:38 - 2008-07-10 11:00 - 03851784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_39.dll
2015-08-17 15:38 - 2008-07-10 11:00 - 01942552 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_39.dll
2015-08-17 15:38 - 2008-07-10 11:00 - 01493528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_39.dll
2015-08-17 15:38 - 2008-07-10 11:00 - 00540688 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_39.dll
2015-08-17 15:38 - 2008-05-30 14:19 - 00511496 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_1.dll
2015-08-17 15:38 - 2008-05-30 14:19 - 00507400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_1.dll
2015-08-17 15:38 - 2008-05-30 14:18 - 00238088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_1.dll
2015-08-17 15:38 - 2008-05-30 14:18 - 00177672 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_1.dll
2015-08-17 15:38 - 2008-05-30 14:17 - 00068104 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_0.dll
2015-08-17 15:38 - 2008-05-30 14:17 - 00065032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_0.dll
2015-08-17 15:38 - 2008-05-30 14:17 - 00025608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_4.dll
2015-08-17 15:38 - 2008-05-30 14:16 - 00028168 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_4.dll
2015-08-17 15:38 - 2008-05-30 14:11 - 04991496 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_38.dll
2015-08-17 15:38 - 2008-05-30 14:11 - 03850760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_38.dll
2015-08-17 15:38 - 2008-05-30 14:11 - 01941528 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_38.dll
2015-08-17 15:38 - 2008-05-30 14:11 - 01491992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_38.dll
2015-08-17 15:38 - 2008-05-30 14:11 - 00540688 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_38.dll
2015-08-17 15:38 - 2008-05-30 14:11 - 00467984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_38.dll
2015-08-17 15:38 - 2008-03-05 16:04 - 00489480 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_0.dll
2015-08-17 15:38 - 2008-03-05 16:03 - 00479752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_0.dll
2015-08-17 15:38 - 2008-03-05 16:03 - 00238088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_0.dll
2015-08-17 15:38 - 2008-03-05 16:03 - 00177672 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_0.dll
2015-08-17 15:38 - 2008-03-05 16:00 - 00028168 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_3.dll
2015-08-17 15:38 - 2008-03-05 16:00 - 00025608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_3.dll
2015-08-17 15:38 - 2008-03-05 15:56 - 04910088 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_37.dll
2015-08-17 15:38 - 2008-03-05 15:56 - 03786760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_37.dll
2015-08-17 15:38 - 2008-03-05 15:56 - 01860120 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_37.dll
2015-08-17 15:38 - 2008-03-05 15:56 - 01420824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_37.dll
2015-08-17 15:38 - 2008-02-05 23:07 - 00529424 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_37.dll
2015-08-17 15:38 - 2008-02-05 23:07 - 00462864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_37.dll
2015-08-17 15:38 - 2007-10-22 03:40 - 00411656 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_10.dll
2015-08-17 15:38 - 2007-10-22 03:39 - 00267272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_10.dll
2015-08-17 15:38 - 2007-10-22 03:37 - 00021000 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_2.dll
2015-08-17 15:38 - 2007-10-22 03:37 - 00017928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_2.dll
2015-08-17 15:38 - 2007-10-12 15:14 - 05081608 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_36.dll
2015-08-17 15:38 - 2007-10-12 15:14 - 03734536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_36.dll
2015-08-17 15:38 - 2007-10-12 15:14 - 02006552 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_36.dll
2015-08-17 15:38 - 2007-10-12 15:14 - 01374232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_36.dll
2015-08-17 15:38 - 2007-10-02 09:56 - 00508264 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_36.dll
2015-08-17 15:38 - 2007-10-02 09:56 - 00444776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_36.dll
2015-08-17 15:38 - 2007-07-20 00:57 - 00411496 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_9.dll
2015-08-17 15:38 - 2007-07-20 00:57 - 00267112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_9.dll
2015-08-17 15:38 - 2007-07-19 18:14 - 05073256 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_35.dll
2015-08-17 15:38 - 2007-07-19 18:14 - 03727720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_35.dll
2015-08-17 15:38 - 2007-07-19 18:14 - 01985904 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_35.dll
2015-08-17 15:38 - 2007-07-19 18:14 - 01358192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_35.dll
2015-08-17 15:38 - 2007-07-19 18:14 - 00508264 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_35.dll
2015-08-17 15:38 - 2007-07-19 18:14 - 00444776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_35.dll
2015-08-17 15:38 - 2007-06-20 20:49 - 00409960 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_8.dll
2015-08-17 15:38 - 2007-06-20 20:46 - 00266088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_8.dll
2015-08-17 15:38 - 2007-05-16 16:45 - 04496232 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_34.dll
2015-08-17 15:38 - 2007-05-16 16:45 - 03497832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_34.dll
2015-08-17 15:38 - 2007-05-16 16:45 - 01401200 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_34.dll
2015-08-17 15:38 - 2007-05-16 16:45 - 01124720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_34.dll
2015-08-17 15:38 - 2007-05-16 16:45 - 00506728 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_34.dll
2015-08-17 15:38 - 2007-05-16 16:45 - 00443752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_34.dll
2015-08-17 15:38 - 2007-04-04 18:55 - 00403304 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_7.dll
2015-08-17 15:38 - 2007-04-04 18:55 - 00261480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_7.dll
2015-08-17 15:38 - 2007-04-04 18:54 - 00107368 _____ (Microsoft Corporation) C:\WINDOWS\system32\xinput1_3.dll
2015-08-17 15:38 - 2007-04-04 18:53 - 00081768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xinput1_3.dll
2015-08-17 15:38 - 2007-03-15 16:57 - 00506728 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_33.dll
2015-08-17 15:38 - 2007-03-15 16:57 - 00443752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_33.dll
2015-08-17 15:38 - 2007-03-12 16:42 - 04494184 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_33.dll
2015-08-17 15:38 - 2007-03-12 16:42 - 03495784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_33.dll
2015-08-17 15:38 - 2007-03-12 16:42 - 01400176 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_33.dll
2015-08-17 15:38 - 2007-03-12 16:42 - 01123696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_33.dll
2015-08-17 15:38 - 2007-03-05 12:42 - 00017688 _____ (Microsoft Corporation) C:\WINDOWS\system32\x3daudio1_1.dll
2015-08-17 15:38 - 2007-03-05 12:42 - 00015128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\x3daudio1_1.dll
2015-08-17 15:38 - 2007-01-24 15:27 - 00393576 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_6.dll
2015-08-17 15:38 - 2007-01-24 15:27 - 00255848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_6.dll
2015-08-17 15:38 - 2006-12-08 12:02 - 00251672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_5.dll
2015-08-17 15:38 - 2006-12-08 12:00 - 00390424 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_5.dll
2015-08-17 15:38 - 2006-11-29 13:06 - 04398360 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_32.dll
2015-08-17 15:38 - 2006-11-29 13:06 - 03426072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_32.dll
2015-08-17 15:38 - 2006-11-29 13:06 - 00469264 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10.dll
2015-08-17 15:38 - 2006-11-29 13:06 - 00440080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10.dll
2015-08-17 15:38 - 2006-09-28 16:05 - 03977496 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_31.dll
2015-08-17 15:38 - 2006-09-28 16:05 - 02414360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_31.dll
2015-08-17 15:38 - 2006-09-28 16:05 - 00237848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_4.dll
2015-08-17 15:38 - 2006-09-28 16:04 - 00364824 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_4.dll
2015-08-17 15:38 - 2006-07-28 09:31 - 00083736 _____ (Microsoft Corporation) C:\WINDOWS\system32\xinput1_2.dll
2015-08-17 15:38 - 2006-07-28 09:30 - 00363288 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_3.dll
2015-08-17 15:38 - 2006-07-28 09:30 - 00236824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_3.dll
2015-08-17 15:38 - 2006-07-28 09:30 - 00062744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xinput1_2.dll
2015-08-17 15:38 - 2006-05-31 07:24 - 00230168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_2.dll
2015-08-17 15:38 - 2006-05-31 07:22 - 00354072 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_2.dll
2015-08-17 15:38 - 2006-03-31 12:41 - 03927248 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_30.dll
2015-08-17 15:38 - 2006-03-31 12:40 - 02388176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_30.dll
2015-08-17 15:38 - 2006-03-31 12:40 - 00352464 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_1.dll
2015-08-17 15:38 - 2006-03-31 12:39 - 00229584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_1.dll
2015-08-17 15:38 - 2006-03-31 12:39 - 00083664 _____ (Microsoft Corporation) C:\WINDOWS\system32\xinput1_1.dll
2015-08-17 15:38 - 2006-03-31 12:39 - 00062672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xinput1_1.dll
2015-08-17 15:38 - 2006-02-03 08:43 - 03830992 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_29.dll
2015-08-17 15:38 - 2006-02-03 08:43 - 02332368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_29.dll
2015-08-17 15:38 - 2006-02-03 08:42 - 00355536 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_0.dll
2015-08-17 15:38 - 2006-02-03 08:42 - 00230096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_0.dll
2015-08-17 15:38 - 2006-02-03 08:41 - 00016592 _____ (Microsoft Corporation) C:\WINDOWS\system32\x3daudio1_0.dll
2015-08-17 15:38 - 2006-02-03 08:41 - 00014032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\x3daudio1_0.dll
2015-08-17 15:38 - 2005-12-05 18:09 - 03815120 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_28.dll
2015-08-17 15:38 - 2005-12-05 18:09 - 02323664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_28.dll
2015-08-17 15:38 - 2005-07-22 19:59 - 03807440 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_27.dll
2015-08-17 15:38 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_27.dll
2015-08-17 15:38 - 2005-05-26 15:34 - 03767504 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_26.dll
2015-08-17 15:38 - 2005-05-26 15:34 - 02297552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_26.dll
2015-08-17 15:37 - 2015-08-17 15:38 - 00009895 _____ C:\WINDOWS\DirectX.log
2015-08-17 15:37 - 2005-03-18 17:19 - 03823312 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_25.dll
2015-08-17 15:37 - 2005-03-18 17:19 - 02337488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_25.dll
2015-08-17 15:37 - 2005-02-05 19:45 - 03544272 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_24.dll
2015-08-17 15:37 - 2005-02-05 19:45 - 02222800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_24.dll
2015-08-17 15:24 - 2015-08-17 19:02 - 00000000 ___HD C:\WINDOWS\msdownld.tmp
2015-08-17 15:24 - 2015-08-17 19:02 - 00000000 ____D C:\WINDOWS\SysWOW64\directx
2015-08-17 15:24 - 2015-08-17 15:24 - 00292184 _____ (Microsoft Corporation) C:\Users\PC\Downloads\dxwebsetup.exe
2015-08-17 14:15 - 2015-08-17 14:15 - 00000000 ____D C:\Users\PC\Downloads\Wu-Tang Clan - 1999 - Forever
2015-08-17 14:15 - 2015-08-17 14:15 - 00000000 ____D C:\Users\PC\AppData\Roaming\WinRAR
2015-08-17 14:14 - 2015-08-17 14:14 - 00001004 _____ C:\ProgramData\Microsoft\Windows\Start Menu\WinRAR.lnk
2015-08-17 14:14 - 2015-08-17 14:14 - 00000998 _____ C:\Users\Public\Desktop\WinRAR.lnk
2015-08-17 14:14 - 2015-08-17 14:14 - 00000000 ____D C:\Users\PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2015-08-17 14:14 - 2015-08-17 14:14 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2015-08-17 14:14 - 2015-08-17 14:14 - 00000000 ____D C:\Program Files\WinRAR
2015-08-17 11:58 - 2015-08-17 12:04 - 115779840 _____ C:\Users\PC\Downloads\Wu-Tang-Clan---1999---Forever.rar
2015-08-16 22:34 - 2015-08-16 22:34 - 00007607 _____ C:\Users\PC\AppData\Local\Resmon.ResmonCfg
2015-08-16 22:28 - 2015-08-16 22:29 - 01030498 _____ (Nullsoft, Inc.) C:\Users\PC\Downloads\winamp5666_full_all_redux.exe.part
2015-08-16 20:41 - 2015-07-05 12:08 - 00300704 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe
2015-08-16 19:32 - 2015-08-16 19:32 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2015-08-16 19:29 - 2015-08-18 23:23 - 00000000 ____D C:\Windows.old
2015-08-16 19:29 - 2015-08-16 19:29 - 00262144 _____ C:\WINDOWS\system32\config\userdiff
2015-08-16 15:16 - 2015-08-18 06:29 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2015-08-16 15:16 - 2015-08-16 15:16 - 00001142 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2015-08-16 15:16 - 2015-08-16 15:16 - 00001130 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2015-08-16 15:16 - 2015-08-16 15:16 - 00000000 ____D C:\Users\PC\AppData\Roaming\Mozilla
2015-08-16 15:16 - 2015-08-16 15:16 - 00000000 ____D C:\Users\PC\AppData\Local\Mozilla
2015-08-16 14:53 - 2015-08-16 14:53 - 00000000 ____D C:\ProgramData\IsolatedStorage
2015-08-16 14:49 - 2015-08-16 14:49 - 00000375 _____ C:\Users\PC\Desktop\Ovládací panely – zástupce.lnk
2015-08-16 14:34 - 2015-08-18 22:54 - 00003596 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-575301853-1833114181-593166800-1002
2015-08-16 14:32 - 2015-08-16 14:32 - 00000882 _____ C:\Users\PC\Desktop\Stažené soubory – zástupce.lnk
2015-08-16 14:32 - 2015-08-16 14:32 - 00000436 _____ C:\Users\PC\Desktop\Tento počítač – zástupce.lnk
2015-08-16 14:30 - 2015-08-16 14:30 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_LocationProvider_01_11_00.Wdf
2015-08-16 14:19 - 2015-08-16 14:19 - 00000000 ____D C:\WINDOWS\System32\Tasks\WPD
2015-08-16 14:19 - 2015-08-16 14:19 - 00000000 ____D C:\Users\PC\AppData\Local\TOSHIBA
2015-08-16 14:18 - 2015-08-16 14:18 - 00001433 _____ C:\Users\PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2015-08-16 14:18 - 2015-08-16 14:18 - 00000020 ___SH C:\Users\PC\ntuser.ini
2015-08-16 14:18 - 2015-08-16 14:18 - 00000000 ____D C:\Users\PC\AppData\Roaming\Adobe
2015-08-16 14:18 - 2015-08-16 14:18 - 00000000 ____D C:\Users\PC\AppData\Local\VirtualStore
2015-08-16 09:36 - 2015-08-16 09:36 - 00000000 _SHDL C:\Users\Default\Šablony
2015-08-16 09:36 - 2015-08-16 09:36 - 00000000 _SHDL C:\Users\Default\Soubory cookie
2015-08-16 09:36 - 2015-08-16 09:36 - 00000000 _SHDL C:\Users\Default\Poslední
2015-08-16 09:36 - 2015-08-16 09:36 - 00000000 _SHDL C:\Users\Default\Okolní tiskárny
2015-08-16 09:36 - 2015-08-16 09:36 - 00000000 _SHDL C:\Users\Default\Okolní síť
2015-08-16 09:36 - 2015-08-16 09:36 - 00000000 _SHDL C:\Users\Default\Nabídka Start
2015-08-16 09:36 - 2015-08-16 09:36 - 00000000 _SHDL C:\Users\Default\Dokumenty
2015-08-16 09:36 - 2015-08-16 09:36 - 00000000 _SHDL C:\Users\Default\Documents\Obrázky
2015-08-16 09:36 - 2015-08-16 09:36 - 00000000 _SHDL C:\Users\Default\Documents\Hudba
2015-08-16 09:36 - 2015-08-16 09:36 - 00000000 _SHDL C:\Users\Default\Documents\Filmy
2015-08-16 09:36 - 2015-08-16 09:36 - 00000000 _SHDL C:\Users\Default\Data aplikací
2015-08-16 09:36 - 2015-08-16 09:36 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2015-08-16 09:36 - 2015-08-16 09:36 - 00000000 _SHDL C:\Users\Default\AppData\Local\Data aplikací
2015-08-16 09:36 - 2015-08-16 09:36 - 00000000 _SHDL C:\Users\Default User\Documents\Obrázky
2015-08-16 09:36 - 2015-08-16 09:36 - 00000000 _SHDL C:\Users\Default User\Documents\Hudba
2015-08-16 09:36 - 2015-08-16 09:36 - 00000000 _SHDL C:\Users\Default User\Documents\Filmy
2015-08-16 09:36 - 2015-08-16 09:36 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2015-08-16 09:36 - 2015-08-16 09:36 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Data aplikací
2015-08-16 09:36 - 2015-08-16 09:36 - 00000000 _SHDL C:\ProgramData\Šablony
2015-08-16 09:36 - 2015-08-16 09:36 - 00000000 _SHDL C:\ProgramData\Plocha
2015-08-16 09:36 - 2015-08-16 09:36 - 00000000 _SHDL C:\ProgramData\Nabídka Start
2015-08-16 09:36 - 2015-08-16 09:36 - 00000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programy
2015-08-16 09:36 - 2015-08-16 09:36 - 00000000 _SHDL C:\ProgramData\Dokumenty
2015-08-16 09:36 - 2015-08-16 09:36 - 00000000 _SHDL C:\ProgramData\Data aplikací
2015-08-16 09:34 - 2015-08-16 14:18 - 00000000 ____D C:\Users\PC
2015-08-16 09:34 - 2015-08-16 09:34 - 00000000 _SHDL C:\Users\PC\Šablony
2015-08-16 09:34 - 2015-08-16 09:34 - 00000000 _SHDL C:\Users\PC\Soubory cookie
2015-08-16 09:34 - 2015-08-16 09:34 - 00000000 _SHDL C:\Users\PC\Poslední
2015-08-16 09:34 - 2015-08-16 09:34 - 00000000 _SHDL C:\Users\PC\Okolní tiskárny
2015-08-16 09:34 - 2015-08-16 09:34 - 00000000 _SHDL C:\Users\PC\Okolní síť
2015-08-16 09:34 - 2015-08-16 09:34 - 00000000 _SHDL C:\Users\PC\Nabídka Start
2015-08-16 09:34 - 2015-08-16 09:34 - 00000000 _SHDL C:\Users\PC\Dokumenty
2015-08-16 09:34 - 2015-08-16 09:34 - 00000000 _SHDL C:\Users\PC\Documents\Obrázky
2015-08-16 09:34 - 2015-08-16 09:34 - 00000000 _SHDL C:\Users\PC\Documents\Hudba
2015-08-16 09:34 - 2015-08-16 09:34 - 00000000 _SHDL C:\Users\PC\Documents\Filmy
2015-08-16 09:34 - 2015-08-16 09:34 - 00000000 _SHDL C:\Users\PC\Data aplikací
2015-08-16 09:34 - 2015-08-16 09:34 - 00000000 _SHDL C:\Users\PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2015-08-16 09:34 - 2015-08-16 09:34 - 00000000 _SHDL C:\Users\PC\AppData\Local\Data aplikací
2015-08-16 09:34 - 2013-08-22 17:36 - 00000000 ___RD C:\Users\PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-08-16 09:34 - 2013-08-22 17:36 - 00000000 ___RD C:\Users\PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-08-16 09:34 - 2013-08-22 17:36 - 00000000 ___RD C:\Users\PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2015-08-16 09:34 - 2013-08-22 17:36 - 00000000 ____D C:\Users\PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2015-08-16 09:32 - 2015-08-16 09:35 - 00032388 _____ C:\WINDOWS\diagwrn.xml
2015-08-16 09:32 - 2015-08-16 09:35 - 00032388 _____ C:\WINDOWS\diagerr.xml
2015-08-16 08:49 - 2015-08-16 20:00 - 00000000 ___HD C:\$SysReset
2015-08-16 03:08 - 2015-08-16 03:09 - 00619868 _____ C:\Users\PC\Documents\GRAMOBOOK.arn
2015-08-14 16:29 - 2015-08-14 16:29 - 00001181 _____ C:\Users\PC\Documents\GrambovoworldoftanksOMCModpacksettings.omc
2015-08-14 12:32 - 2015-08-18 20:43 - 00000000 ____D C:\Users\PC\Documents\OMC ModPack
2015-08-14 12:31 - 2015-08-14 12:31 - 02228096 _____ (Odem Mortis ) C:\Users\PC\Downloads\OMC_ModPack_Installer.exe
2015-08-09 16:20 - 2015-08-09 16:23 - 03801670 _____ C:\Users\PC\Documents\GRAMOBOOKcosi co jsem provedl s regisrama v programu autoruns.arn
2015-08-04 18:21 - 2015-08-04 18:21 - 00000000 _SHDL C:\Users\Public\Documents\Obrázky
2015-08-04 18:21 - 2015-08-04 18:21 - 00000000 _SHDL C:\Users\Public\Documents\Hudba
2015-08-04 18:21 - 2015-08-04 18:21 - 00000000 _SHDL C:\Users\Public\Documents\Filmy
2015-07-31 19:05 - 2015-07-31 19:11 - 52928528 _____ C:\Users\PC\Downloads\biladevkablondcernej.mp4
2015-07-30 08:25 - 2015-07-30 12:42 - 1048487936 _____ C:\Users\PC\Downloads\Belyy tigr - Белый тигр - CZ titulky vloženy (2012).avi
2015-07-27 16:35 - 2015-07-30 11:11 - 760786944 _____ C:\Users\PC\Downloads\42 (2013).avi
2015-07-25 18:29 - 2015-07-25 18:35 - 55441474 _____ C:\Users\PC\Downloads\russian milf.mp4
2015-07-25 11:42 - 2015-08-19 09:30 - 00000000 __RDO C:\Users\PC\SkyDrive
2015-07-20 02:20 - 2015-07-20 02:25 - 41362923 _____ C:\Users\PC\Downloads\cumcovered.mp4

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-08-19 10:00 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\sru
2015-08-19 09:32 - 2014-01-26 09:25 - 00675441 _____ C:\WINDOWS\WindowsUpdate.log
2015-08-18 21:03 - 2014-04-10 18:10 - 00000000 ____D C:\Games
2015-08-18 20:46 - 2013-08-22 16:45 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2015-08-18 19:15 - 2013-08-22 16:44 - 00345080 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2015-08-18 19:14 - 2013-08-22 15:25 - 00262144 ___SH C:\WINDOWS\system32\config\BBI
2015-08-18 16:58 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\AppReadiness
2015-08-18 09:12 - 2015-01-28 16:41 - 00002119 _____ C:\Users\PC\Desktop\Nový textový dokument.txt
2015-08-17 17:59 - 2013-11-28 18:56 - 04255064 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2015-08-17 17:59 - 2013-08-28 16:28 - 00797960 _____ C:\WINDOWS\system32\perfh015.dat
2015-08-17 17:59 - 2013-08-28 16:28 - 00163344 _____ C:\WINDOWS\system32\perfc015.dat
2015-08-17 17:59 - 2013-08-28 16:19 - 00742562 _____ C:\WINDOWS\system32\perfh00E.dat
2015-08-17 17:59 - 2013-08-28 16:19 - 00177650 _____ C:\WINDOWS\system32\perfc00E.dat
2015-08-17 17:59 - 2013-08-28 16:11 - 00541792 _____ C:\WINDOWS\system32\perfh008.dat
2015-08-17 17:59 - 2013-08-28 16:11 - 00088858 _____ C:\WINDOWS\system32\perfc008.dat
2015-08-17 17:59 - 2013-08-28 16:02 - 00739924 _____ C:\WINDOWS\system32\perfh005.dat
2015-08-17 17:59 - 2013-08-28 16:02 - 00151610 _____ C:\WINDOWS\system32\perfc005.dat
2015-08-17 17:50 - 2013-08-22 16:46 - 00035083 _____ C:\WINDOWS\setupact.log
2015-08-17 17:44 - 2015-05-28 17:55 - 00000000 ____D C:\Users\PC\Downloads\Videa
2015-08-16 19:30 - 2014-03-30 23:54 - 00000000 ____D C:\Users\PC\AppData\Local\Packages
2015-08-16 19:30 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\Recovery
2015-08-16 19:29 - 2013-08-22 17:36 - 00262144 _____ C:\WINDOWS\system32\config\BCD-Template
2015-08-16 19:16 - 2013-11-29 03:42 - 00002642 _____ C:\WINDOWS\PFRO.log
2015-08-16 19:15 - 2013-08-22 17:36 - 00000000 ___HD C:\WINDOWS\ELAMBKUP
2015-08-16 15:04 - 2013-11-28 19:00 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2015-08-16 15:04 - 2013-11-28 19:00 - 00000000 ____D C:\Program Files\TOSHIBA
2015-08-16 15:00 - 2013-11-28 19:00 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA
2015-08-16 15:00 - 2013-11-28 19:00 - 00000000 ____D C:\Program Files (x86)\TOSHIBA
2015-08-16 14:54 - 2014-01-26 10:16 - 00000000 ____D C:\Program Files (x86)\TOSHIBA Games
2015-08-16 14:54 - 2014-01-26 10:06 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2015-08-16 14:53 - 2014-01-26 10:06 - 00000000 ____D C:\ProgramData\WildTangent
2015-08-16 14:49 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\restore
2015-08-16 14:23 - 2013-11-28 19:01 - 00000000 ____D C:\ProgramData\Toshiba
2015-08-16 14:22 - 2013-08-22 15:25 - 00262144 ___SH C:\WINDOWS\system32\config\ELAM
2015-08-16 09:44 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\rescache
2015-08-16 09:36 - 2013-11-29 19:31 - 00000000 ___DC C:\WINDOWS\Panther
2015-08-16 09:36 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files\Windows NT
2015-08-16 09:36 - 2013-08-22 15:36 - 00000000 __RHD C:\Users\Default
2015-08-16 09:35 - 2015-01-31 23:27 - 00000000 ___RD C:\Users\PC\Desktop\Utils
2015-08-16 09:35 - 2013-08-22 17:36 - 00000000 __RHD C:\Users\Public\Libraries
2015-08-16 09:32 - 2014-01-26 09:26 - 00000000 ____D C:\WINDOWS\SysWOW64\NV
2015-08-16 09:32 - 2014-01-26 09:26 - 00000000 ____D C:\WINDOWS\system32\NV
2015-08-15 17:05 - 2015-04-11 03:04 - 00000000 ____D C:\Users\PC\Downloads\hudbesesesese
2015-08-13 18:18 - 2015-03-01 16:54 - 00000000 ____D C:\Users\PC\www.catchvideo.net
2015-08-13 00:32 - 2015-03-17 19:13 - 00000000 ____D C:\Users\PC\Downloads\Fotky
2015-07-25 11:42 - 2014-04-03 00:38 - 00000000 __RDO C:\Users\PC\SkyDrive.old

==================== Files in the root of some directories =======

2015-08-19 10:31 - 2015-08-19 10:32 - 0029696 _____ () C:\Users\PC\AppData\Local\MSGBOX.EXE
2015-08-16 22:34 - 2015-08-16 22:34 - 0007607 _____ () C:\Users\PC\AppData\Local\Resmon.ResmonCfg

==================== Bamital & volsnap =================

(There is no automatic fix for files that do not pass verification.)

C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2013-11-29 03:42

==================== End of log ============================
Přílohy
Addition.rar
podle navodu pridavam addition .rar
(4.99 KiB) Staženo 120 x

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Neco mi krade pripojeni

#2 Příspěvek od Márty84 »

Zdravim :)

:arrow: Stahnete AdwCleaner https://toolslib.net/downloads/finish/1/ a ulozte ho na plochu.
Ukoncete vsechny programy, jinak to AdwCleaner udela za vas.
Kliknete na nej pravym mysidlem a levym na Spustit jako spravce.
Kliknete na Scan a pockejte, az kontrola dobehne.
Pak kliknete na Cleaning
Program zacne pracovat (muze dojit k restartu pc) a vyplivne log (pripadne bude zde C:\AdwCleaner[C?].txt ). Ten mi sem zkopirujte.
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

GrambiczeQ
Návštěvník
Návštěvník
Příspěvky: 10
Registrován: 19 srp 2015 08:50

Re: Neco mi krade pripojeni

#3 Příspěvek od GrambiczeQ »

nic nenasel krome ikonky kterou to smazalo :)
pridavam log :
# AdwCleaner v5.002 - Logfile created 19/08/2015 at 13:32:14
# Updated 18/08/2015 by Xplode
# Database : 2015-08-18.2 [Server]
# Operating system : Windows 8.1 (x64)
# Username : GrambiczeQ - GRAMOBOOK
# Running from : C:\Users\PC\Downloads\adwcleaner_5.002.exe
# Option : Scan

***** [ Services ] *****


***** [ Folders ] *****


***** [ Files ] *****


***** [ Shortcuts ] *****


***** [ Scheduled tasks ] *****


***** [ Registry ] *****


***** [ Web browsers ] *****


########## EOF - C:\AdwCleaner\AdwCleaner[S2].txt - [504 bytes] ##########




Ted jsem si vsiml ze vzdycky kdyz ten nechtenej download vystreli nahoru tak je na chvilku disk na 100%

Existuje nějaký program který zvládne detekovat všechna příchozí spojení a potom je případně zablokovat? chtěl bych takhle zablokovat cely system a povolit internet jenom určitým aplikacím (lol, wot, firefox, utorrent)

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Neco mi krade pripojeni

#4 Příspěvek od Márty84 »

GrambiczeQ píše:Ted jsem si vsiml ze vzdycky kdyz ten nechtenej download vystreli nahoru tak je na chvilku disk na 100%
Jak casto k tomu dochazi?

GrambiczeQ píše:Existuje nějaký program který zvládne detekovat všechna příchozí spojení a potom je případně zablokovat?
Firewall. Ale je potreba s nim umet zachazet.



:arrow: Udelejte kontrolu s MBAM. Test nastavte podle tohoto navodu (cili Vlastni sken vsech disku) http://forum.viry.cz/viewtopic.php?f=29&t=144868 a dejte sem vysledky. Predem nic nemazte, miva obcas falesne detekce
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

GrambiczeQ
Návštěvník
Návštěvník
Příspěvky: 10
Registrován: 19 srp 2015 08:50

Re: Neco mi krade pripojeni

#5 Příspěvek od GrambiczeQ »

GrambiczeQ píše:Existuje nějaký program který zvládne detekovat všechna příchozí spojení a potom je případně zablokovat?
Firewall. Ale je potreba s nim umet zachazet.



:arrow: Udelejte kontrolu s MBAM. Test nastavte podle tohoto navodu (cili Vlastni sken vsech disku) http://forum.viry.cz/viewtopic.php?f=29&t=144868 a dejte sem vysledky. Predem nic nemazte, miva obcas falesne detekce[/quote]

ano malwarebytes jsem zkousel predevcirem nez jsem udelal obnovu systemu, nicmene to nic nevyresilo, stejne jako obnova...
taky to muze mit neco spolecneho s tim ze jsem ´´UPGRADOVAL´´ (haha) na win 10, nicmene jsem provedl rollback na 8.1

nyni zkusim to malwarebytes znovu, a potom sem postnu log

Firewall : muzete mi nejaky poradit? jsem prumerne zkuseny uzivatel a anglicky umim drive jsem pouzival keerio firewall...
Márty84 píše:
GrambiczeQ píše:Ted jsem si vsiml ze vzdycky kdyz ten nechtenej download vystreli nahoru tak je na chvilku disk na 100%
Jak casto k tomu dochazi?

prakticky porad, v zhruba 30 min intervalech...

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Neco mi krade pripojeni

#6 Příspěvek od Márty84 »

Muze to delat klidne nejaky legitimni program, ktery jen kontroluje aktualizace. Uvidime po vycisteni.

Ja taky kdysi pouzival Kerio, pak ZoneAlarm, ale od doby, co mam W8 uz nechavam jen ten windowsacky. Pokud si ale chcete fakt hrat a vse kontrolovat, zkuste treba Comodo.

Hlavne MBAM nastavte spravne (Vlastni sken), aby to projelo cely pocitac. Sken hrozeb je rychlejsi, ale neprohlizi vsechno.
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

Uživatelský avatar
Polda18
Návštěvník
Návštěvník
Příspěvky: 192
Registrován: 21 črc 2014 15:48
Bydliště: Česká republika - sever
Kontaktovat uživatele:

Re: Neco mi krade pripojeni

#7 Příspěvek od Polda18 »

Mohu vstoupit?

:offtopic:
Co se týče Windows 10, může to být odesílání dat na server, údajně kvůli zajištění lepšího komfortu. Takové odesílání se ale zpravidla děje při nečinnosti uživatele (tedy žádný vstup z klávesnice, myši, webkamery nebo mikrofonu), tedy za zády uživatele. Existuje na to i článek, který se probírá tady: http://forum.viry.cz/viewtopic.php?f=5&t=145671 Upřímě nevím, zda jsou informace pravdivé, možná se to týká jen konkrétní verze (v komentářích píše autor o testu na RTM verzi, tedy verze především pro tablety a chytré telefony), ale každopádně to stojí za prověření. Můžete vyzkoušet metody popsané v článku, abyste zjistil, zda to není právě tímto. Každopádně nejen ztráta soukromí, ale i vyšší účet za internet může být výsledkem takového špehování...

GrambiczeQ
Návštěvník
Návštěvník
Příspěvky: 10
Registrován: 19 srp 2015 08:50

Re: Neco mi krade pripojeni

#8 Příspěvek od GrambiczeQ »

Tady je ten log
ten dual core cosi v dragon age potrebuju...


Malwarebytes Anti-Malware
www.malwarebytes.org

Datum skenování: 19. 8. 2015
Čas skenování: 15:46
Protokol: MALWAREBYTES TEXT LOG.txt
Správce: Ano

Verze: 2.1.8.1057
Databáze malwaru: v2015.08.19.03
Databáze rootkitů: v2015.08.16.01
Licence: Bezplatná verze
Ochrana proti malwaru: Vypnuto
Ochrana proti škodlivým webovým stránkám: Vypnuto
Ochrana programu: Vypnuto

OS: Windows 8.1
CPU: x64
Souborový systém: NTFS
Uživatel: GrambiczeQ

Typ skenu: Vlastní sken
Výsledek: Dokončeno
Prohledaných objektů: 701221
Uplynulý čas: 4 hod, 41 min, 51 sek

Paměť: Zapnuto
Po spuštění: Zapnuto
Souborový systém: Zapnuto
Archivy: Zapnuto
Rootkity: Zapnuto
Heuristika: Zapnuto
PUP: Zapnuto
PUM: Zapnuto

Procesy: 0
(Nenalezeny žádné škodlivé položky)

Moduly: 0
(Nenalezeny žádné škodlivé položky)

Klíče registru: 0
(Nenalezeny žádné škodlivé položky)

Hodnoty registru: 0
(Nenalezeny žádné škodlivé položky)

Data registru: 0
(Nenalezeny žádné škodlivé položky)

Složky: 0
(Nenalezeny žádné škodlivé položky)

Soubory: 3
RiskWare.Injector.DC, C:\Games\Dragon Age Inquisition\Mrdkoviny\DAI Dual-Core Fix\DAI Dual-Core Fix.exe, , [218e5cae0a8196a065f10ebc16eb48b8],
PUP.Optional.APNToolBar.A, C:\Users\PC\Desktop\Utils\FormatFactory\FFModules\Package\Ask\AskPIP_FF_.exe, , [36795cae503bf83e77cf8324f90818e8],
RiskWare.Injector.DC, C:\Users\PC\Downloads\Dragon Age Inquisition [R.G. Games]\DAI Dual-Core Fix.rar, , [c7e8f9114e3d8bab4b0b0ac0bc4503fd],

Fyzické sektory: 0
(Nenalezeny žádné škodlivé položky)


(end)

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Neco mi krade pripojeni

#9 Příspěvek od Márty84 »

GrambiczeQ píše:ten dual core cosi v dragon age potrebuju...
A jste si jisty, ze jsou ty cracky ciste? :?:


:arrow: Ten zbyvajici nalez tedy urcite smazte, s tema crackama si nalozte jak uznate za vhodne. Pak muzete MBAM odinstalovat.

:arrow: Dejte novy log z RSITx64

a k tomu

:arrow: Dejte nove logy podle tohoto navodu http://forum.viry.cz/viewtopic.php?f=13&t=133100 - vypnete na chvili antivir, je mozne, ze to bude blokovat jako skodnou, ale pouzivame to porad, jedna se o falesny poplach :)
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

GrambiczeQ
Návštěvník
Návštěvník
Příspěvky: 10
Registrován: 19 srp 2015 08:50

Re: Neco mi krade pripojeni

#10 Příspěvek od GrambiczeQ »

kdyz zmacknete ctrl+f a nasledne napisete FRST, budete na zacatku logu

nemel by to byt crack ale emulator 4jadra :|

GrambiczeQ
Návštěvník
Návštěvník
Příspěvky: 10
Registrován: 19 srp 2015 08:50

Re: Neco mi krade pripojeni

#11 Příspěvek od GrambiczeQ »

Logfile of random's system information tool 1.10 (written by random/random)
Run by GrambiczeQ at 2015-08-21 16:29:07
Microsoft Windows 8.1
System drive C: has 238 GB (34%) free of 704 GB
Total RAM: 3971 MB (28% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 16:29:12, on 21. 8. 2015
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.16384)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe
C:\Games\Pillars of Eternity\PillarsOfEternity.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files\trend micro\GrambiczeQ.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://toshiba13.msn.com/?pc=TEJB
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://toshiba13.msn.com/?pc=TEJB
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe,
O4 - HKLM\..\Run: [AmIcoSinglun64] "C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe"
O4 - HKLM\..\RunOnce: [Malwarebytes Anti-Malware (cleanup)] "C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware\mbamdor.exe" "C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware"
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O20 - AppInit_DLLs: C:\Windows\SysWOW64\nvinit.dll
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: AtherosSvc - Windows (R) Win 7 DDK provider - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: DTS APO Service (dts_apo_service) - Unknown owner - C:\Program Files (x86)\DTS, Inc\DTS Studio Sound\dts_apo_service.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) ME Service - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\stlang64.dll,-10101 (STacSV) - IDT, Inc. - C:\Program Files\IDT\WDM\STacSV64.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)

--
End of file - 6160 bytes

======Listing Processes======





wininit.exe

winlogon.exe

C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"C:\Windows\system32\nvvsvc.exe"
"dwm.exe"
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\WINDOWS\system32\nvvsvc.exe -session -first
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
"C:\Program Files\IDT\WDM\STacSV64.exe"
C:\WINDOWS\system32\svchost.exe -k NetworkService
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Bluetooth Suite\adminservice.exe"
"C:\Program Files (x86)\DTS, Inc\DTS Studio Sound\dts_apo_service.exe"
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"

C:\WINDOWS\system32\wbem\wmiprvse.exe

taskhostex.exe
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\system32\igfxsrvc.exe" -Embedding
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe"
"C:\Program Files\TOSHIBA\Hotkey\TCrdMain_Win8.exe"
"C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
taskhost.exe $(Arg0)
"C:\Windows\System32\SettingSyncHost.exe" -Embedding
taskhost.exe
C:\WINDOWS\system32\DllHost.exe /Processid:{478B41E6-3257-4519-BDA8-E971F9843849}

"C:\Games\Pillars of Eternity\PillarsOfEternity.exe"
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\Users\PC\Downloads\RSITx64.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe

=========Mozilla firefox=========

ProfilePath - C:\Users\PC\AppData\Roaming\Mozilla\Firefox\Profiles\mw6p9km6.default

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 18.0.0.232 Plugin
"Path"=C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_232.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5]
"Description"=Intel IPT WebApi plugin
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater]
"Description"=This plugin updates Intel WebAPI component
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 18.0.0.232 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF64_18_0_0_232.dll


======Registry dump======

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
""= []
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2013-09-20 391152]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2013-09-20 771056]
"Persistence"=C:\Windows\system32\igfxpers.exe [2013-09-20 769520]
"Nvtmru"=C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe [2013-08-27 1028896]
"TSSSrv"=C:\Program Files (x86)\TOSHIBA\System Setting\TSSSrv.exe [2013-09-12 296520]
"TecoResident"=C:\Program Files\TOSHIBA\Teco\TecoResident.exe []
"TCrdMain"=C:\Program Files\TOSHIBA\Hotkey\TCrdMain_Win8.exe [2013-08-18 2556768]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"AmIcoSinglun64"=C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe [2002-04-12 383768]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\RunOnce]
"Malwarebytes Anti-Malware (cleanup)"=C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware\mbamdor.exe [2015-06-18 54072]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\Windows\system32\nvinitx.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2013-09-16 623104]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mcpltsvc]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"PromptOnSecureDesktop"=0
"ConsentPromptBehaviorAdmin"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 3 months======

2015-08-19 23:13:20 ----A---- C:\WINDOWS\system32\drivers\cjmh.sys
2015-08-19 20:55:10 ----A---- C:\MALWAREBYTES TEXT LOG.txt
2015-08-19 15:44:31 ----A---- C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys
2015-08-19 15:43:58 ----A---- C:\WINDOWS\system32\drivers\mwac.sys
2015-08-19 15:43:58 ----A---- C:\WINDOWS\system32\drivers\mbamchameleon.sys
2015-08-19 15:43:58 ----A---- C:\WINDOWS\system32\drivers\mbam.sys
2015-08-19 15:43:57 ----D---- C:\ProgramData\Malwarebytes
2015-08-19 15:43:57 ----D---- C:\Program Files (x86)\Malwarebytes Anti-Malware
2015-08-19 10:32:23 ----D---- C:\FRST
2015-08-19 10:22:00 ----D---- C:\rsit
2015-08-19 10:22:00 ----D---- C:\Program Files\trend micro
2015-08-17 18:57:26 ----D---- C:\ProgramData\Riot Games
2015-08-17 18:40:50 ----D---- C:\Users\PC\AppData\Roaming\Wargaming.net
2015-08-17 17:38:58 ----D---- C:\Users\PC\AppData\Roaming\Macromedia
2015-08-17 15:38:58 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_7.dll
2015-08-17 15:38:58 ----A---- C:\WINDOWS\SYSWOW64\XAPOFX1_5.dll
2015-08-17 15:38:58 ----A---- C:\WINDOWS\system32\XAudio2_7.dll
2015-08-17 15:38:58 ----A---- C:\WINDOWS\system32\XAPOFX1_5.dll
2015-08-17 15:38:57 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_7.dll
2015-08-17 15:38:57 ----A---- C:\WINDOWS\system32\xactengine3_7.dll
2015-08-17 15:38:56 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_43.dll
2015-08-17 15:38:56 ----A---- C:\WINDOWS\system32\D3DCompiler_43.dll
2015-08-17 15:38:55 ----A---- C:\WINDOWS\SYSWOW64\d3dx11_43.dll
2015-08-17 15:38:55 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_43.dll
2015-08-17 15:38:55 ----A---- C:\WINDOWS\SYSWOW64\d3dcsx_43.dll
2015-08-17 15:38:55 ----A---- C:\WINDOWS\system32\d3dx11_43.dll
2015-08-17 15:38:55 ----A---- C:\WINDOWS\system32\d3dx10_43.dll
2015-08-17 15:38:55 ----A---- C:\WINDOWS\system32\d3dcsx_43.dll
2015-08-17 15:38:54 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_43.dll
2015-08-17 15:38:54 ----A---- C:\WINDOWS\system32\D3DX9_43.dll
2015-08-17 15:38:53 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_6.dll
2015-08-17 15:38:53 ----A---- C:\WINDOWS\SYSWOW64\XAPOFX1_4.dll
2015-08-17 15:38:53 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_6.dll
2015-08-17 15:38:53 ----A---- C:\WINDOWS\system32\XAudio2_6.dll
2015-08-17 15:38:53 ----A---- C:\WINDOWS\system32\XAPOFX1_4.dll
2015-08-17 15:38:53 ----A---- C:\WINDOWS\system32\xactengine3_6.dll
2015-08-17 15:38:51 ----A---- C:\WINDOWS\SYSWOW64\X3DAudio1_7.dll
2015-08-17 15:38:51 ----A---- C:\WINDOWS\system32\X3DAudio1_7.dll
2015-08-17 15:38:50 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_5.dll
2015-08-17 15:38:50 ----A---- C:\WINDOWS\system32\XAudio2_5.dll
2015-08-17 15:38:49 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_5.dll
2015-08-17 15:38:49 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_42.dll
2015-08-17 15:38:49 ----A---- C:\WINDOWS\system32\xactengine3_5.dll
2015-08-17 15:38:49 ----A---- C:\WINDOWS\system32\D3DCompiler_42.dll
2015-08-17 15:38:47 ----A---- C:\WINDOWS\SYSWOW64\d3dx11_42.dll
2015-08-17 15:38:47 ----A---- C:\WINDOWS\SYSWOW64\d3dcsx_42.dll
2015-08-17 15:38:47 ----A---- C:\WINDOWS\system32\d3dx11_42.dll
2015-08-17 15:38:47 ----A---- C:\WINDOWS\system32\d3dcsx_42.dll
2015-08-17 15:38:46 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_42.dll
2015-08-17 15:38:46 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_42.dll
2015-08-17 15:38:46 ----A---- C:\WINDOWS\system32\D3DX9_42.dll
2015-08-17 15:38:46 ----A---- C:\WINDOWS\system32\d3dx10_42.dll
2015-08-17 15:38:45 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_41.dll
2015-08-17 15:38:45 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_41.dll
2015-08-17 15:38:45 ----A---- C:\WINDOWS\system32\d3dx10_41.dll
2015-08-17 15:38:45 ----A---- C:\WINDOWS\system32\D3DCompiler_41.dll
2015-08-17 15:38:44 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_4.dll
2015-08-17 15:38:44 ----A---- C:\WINDOWS\SYSWOW64\XAPOFX1_3.dll
2015-08-17 15:38:44 ----A---- C:\WINDOWS\system32\XAudio2_4.dll
2015-08-17 15:38:44 ----A---- C:\WINDOWS\system32\XAPOFX1_3.dll
2015-08-17 15:38:44 ----A---- C:\WINDOWS\system32\D3DX9_41.dll
2015-08-17 15:38:42 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_4.dll
2015-08-17 15:38:42 ----A---- C:\WINDOWS\SYSWOW64\X3DAudio1_6.dll
2015-08-17 15:38:42 ----A---- C:\WINDOWS\system32\xactengine3_4.dll
2015-08-17 15:38:42 ----A---- C:\WINDOWS\system32\X3DAudio1_6.dll
2015-08-17 15:38:40 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_40.dll
2015-08-17 15:38:40 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_40.dll
2015-08-17 15:38:40 ----A---- C:\WINDOWS\system32\d3dx10_40.dll
2015-08-17 15:38:40 ----A---- C:\WINDOWS\system32\D3DCompiler_40.dll
2015-08-17 15:38:39 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_3.dll
2015-08-17 15:38:39 ----A---- C:\WINDOWS\SYSWOW64\XAPOFX1_2.dll
2015-08-17 15:38:39 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_40.dll
2015-08-17 15:38:39 ----A---- C:\WINDOWS\system32\XAudio2_3.dll
2015-08-17 15:38:39 ----A---- C:\WINDOWS\system32\XAPOFX1_2.dll
2015-08-17 15:38:39 ----A---- C:\WINDOWS\system32\D3DX9_40.dll
2015-08-17 15:38:38 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_3.dll
2015-08-17 15:38:38 ----A---- C:\WINDOWS\SYSWOW64\X3DAudio1_5.dll
2015-08-17 15:38:38 ----A---- C:\WINDOWS\system32\xactengine3_3.dll
2015-08-17 15:38:38 ----A---- C:\WINDOWS\system32\X3DAudio1_5.dll
2015-08-17 15:38:37 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_2.dll
2015-08-17 15:38:37 ----A---- C:\WINDOWS\SYSWOW64\XAPOFX1_1.dll
2015-08-17 15:38:37 ----A---- C:\WINDOWS\system32\XAudio2_2.dll
2015-08-17 15:38:37 ----A---- C:\WINDOWS\system32\XAPOFX1_1.dll
2015-08-17 15:38:36 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_2.dll
2015-08-17 15:38:36 ----A---- C:\WINDOWS\system32\xactengine3_2.dll
2015-08-17 15:38:35 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_39.dll
2015-08-17 15:38:35 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_39.dll
2015-08-17 15:38:35 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_39.dll
2015-08-17 15:38:35 ----A---- C:\WINDOWS\system32\D3DX9_39.dll
2015-08-17 15:38:35 ----A---- C:\WINDOWS\system32\d3dx10_39.dll
2015-08-17 15:38:35 ----A---- C:\WINDOWS\system32\D3DCompiler_39.dll
2015-08-17 15:38:34 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_1.dll
2015-08-17 15:38:34 ----A---- C:\WINDOWS\SYSWOW64\XAPOFX1_0.dll
2015-08-17 15:38:34 ----A---- C:\WINDOWS\system32\XAudio2_1.dll
2015-08-17 15:38:34 ----A---- C:\WINDOWS\system32\XAPOFX1_0.dll
2015-08-17 15:38:33 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_1.dll
2015-08-17 15:38:33 ----A---- C:\WINDOWS\SYSWOW64\X3DAudio1_4.dll
2015-08-17 15:38:33 ----A---- C:\WINDOWS\system32\xactengine3_1.dll
2015-08-17 15:38:33 ----A---- C:\WINDOWS\system32\X3DAudio1_4.dll
2015-08-17 15:38:31 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_38.dll
2015-08-17 15:38:31 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_38.dll
2015-08-17 15:38:31 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_38.dll
2015-08-17 15:38:31 ----A---- C:\WINDOWS\system32\D3DX9_38.dll
2015-08-17 15:38:31 ----A---- C:\WINDOWS\system32\d3dx10_38.dll
2015-08-17 15:38:31 ----A---- C:\WINDOWS\system32\D3DCompiler_38.dll
2015-08-17 15:38:30 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_0.dll
2015-08-17 15:38:30 ----A---- C:\WINDOWS\system32\XAudio2_0.dll
2015-08-17 15:38:29 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_0.dll
2015-08-17 15:38:29 ----A---- C:\WINDOWS\system32\xactengine3_0.dll
2015-08-17 15:38:28 ----A---- C:\WINDOWS\SYSWOW64\X3DAudio1_3.dll
2015-08-17 15:38:28 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_37.dll
2015-08-17 15:38:28 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_37.dll
2015-08-17 15:38:28 ----A---- C:\WINDOWS\system32\X3DAudio1_3.dll
2015-08-17 15:38:28 ----A---- C:\WINDOWS\system32\d3dx10_37.dll
2015-08-17 15:38:28 ----A---- C:\WINDOWS\system32\D3DCompiler_37.dll
2015-08-17 15:38:27 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_37.dll
2015-08-17 15:38:27 ----A---- C:\WINDOWS\system32\D3DX9_37.dll
2015-08-17 15:38:25 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_10.dll
2015-08-17 15:38:25 ----A---- C:\WINDOWS\system32\xactengine2_10.dll
2015-08-17 15:38:24 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_36.dll
2015-08-17 15:38:24 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_36.dll
2015-08-17 15:38:24 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_36.dll
2015-08-17 15:38:24 ----A---- C:\WINDOWS\system32\d3dx9_36.dll
2015-08-17 15:38:24 ----A---- C:\WINDOWS\system32\d3dx10_36.dll
2015-08-17 15:38:24 ----A---- C:\WINDOWS\system32\D3DCompiler_36.dll
2015-08-17 15:38:22 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_9.dll
2015-08-17 15:38:22 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_35.dll
2015-08-17 15:38:22 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_35.dll
2015-08-17 15:38:22 ----A---- C:\WINDOWS\system32\xactengine2_9.dll
2015-08-17 15:38:22 ----A---- C:\WINDOWS\system32\d3dx10_35.dll
2015-08-17 15:38:22 ----A---- C:\WINDOWS\system32\D3DCompiler_35.dll
2015-08-17 15:38:21 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_35.dll
2015-08-17 15:38:21 ----A---- C:\WINDOWS\system32\d3dx9_35.dll
2015-08-17 15:38:20 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_8.dll
2015-08-17 15:38:20 ----A---- C:\WINDOWS\SYSWOW64\X3DAudio1_2.dll
2015-08-17 15:38:20 ----A---- C:\WINDOWS\system32\xactengine2_8.dll
2015-08-17 15:38:20 ----A---- C:\WINDOWS\system32\X3DAudio1_2.dll
2015-08-17 15:38:19 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_34.dll
2015-08-17 15:38:19 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_34.dll
2015-08-17 15:38:19 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_34.dll
2015-08-17 15:38:19 ----A---- C:\WINDOWS\system32\d3dx9_34.dll
2015-08-17 15:38:19 ----A---- C:\WINDOWS\system32\d3dx10_34.dll
2015-08-17 15:38:19 ----A---- C:\WINDOWS\system32\D3DCompiler_34.dll
2015-08-17 15:38:18 ----A---- C:\WINDOWS\SYSWOW64\xinput1_3.dll
2015-08-17 15:38:18 ----A---- C:\WINDOWS\system32\xinput1_3.dll
2015-08-17 15:38:16 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_7.dll
2015-08-17 15:38:16 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_33.dll
2015-08-17 15:38:16 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_33.dll
2015-08-17 15:38:16 ----A---- C:\WINDOWS\system32\xactengine2_7.dll
2015-08-17 15:38:16 ----A---- C:\WINDOWS\system32\d3dx10_33.dll
2015-08-17 15:38:16 ----A---- C:\WINDOWS\system32\D3DCompiler_33.dll
2015-08-17 15:38:15 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_33.dll
2015-08-17 15:38:15 ----A---- C:\WINDOWS\system32\d3dx9_33.dll
2015-08-17 15:38:14 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_6.dll
2015-08-17 15:38:14 ----A---- C:\WINDOWS\system32\xactengine2_6.dll
2015-08-17 15:38:13 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_5.dll
2015-08-17 15:38:13 ----A---- C:\WINDOWS\system32\xactengine2_5.dll
2015-08-17 15:38:12 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_32.dll
2015-08-17 15:38:12 ----A---- C:\WINDOWS\SYSWOW64\d3dx10.dll
2015-08-17 15:38:12 ----A---- C:\WINDOWS\system32\d3dx9_32.dll
2015-08-17 15:38:12 ----A---- C:\WINDOWS\system32\d3dx10.dll
2015-08-17 15:38:11 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_4.dll
2015-08-17 15:38:11 ----A---- C:\WINDOWS\SYSWOW64\x3daudio1_1.dll
2015-08-17 15:38:11 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_31.dll
2015-08-17 15:38:11 ----A---- C:\WINDOWS\system32\xactengine2_4.dll
2015-08-17 15:38:11 ----A---- C:\WINDOWS\system32\x3daudio1_1.dll
2015-08-17 15:38:11 ----A---- C:\WINDOWS\system32\d3dx9_31.dll
2015-08-17 15:38:10 ----A---- C:\WINDOWS\SYSWOW64\xinput1_2.dll
2015-08-17 15:38:10 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_3.dll
2015-08-17 15:38:10 ----A---- C:\WINDOWS\system32\xinput1_2.dll
2015-08-17 15:38:10 ----A---- C:\WINDOWS\system32\xactengine2_3.dll
2015-08-17 15:38:09 ----A---- C:\WINDOWS\SYSWOW64\xinput1_1.dll
2015-08-17 15:38:09 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_2.dll
2015-08-17 15:38:09 ----A---- C:\WINDOWS\system32\xinput1_1.dll
2015-08-17 15:38:09 ----A---- C:\WINDOWS\system32\xactengine2_2.dll
2015-08-17 15:38:08 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_1.dll
2015-08-17 15:38:08 ----A---- C:\WINDOWS\system32\xactengine2_1.dll
2015-08-17 15:38:04 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_30.dll
2015-08-17 15:38:04 ----A---- C:\WINDOWS\system32\d3dx9_30.dll
2015-08-17 15:38:03 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_0.dll
2015-08-17 15:38:03 ----A---- C:\WINDOWS\SYSWOW64\x3daudio1_0.dll
2015-08-17 15:38:03 ----A---- C:\WINDOWS\system32\xactengine2_0.dll
2015-08-17 15:38:03 ----A---- C:\WINDOWS\system32\x3daudio1_0.dll
2015-08-17 15:38:02 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_29.dll
2015-08-17 15:38:02 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_28.dll
2015-08-17 15:38:02 ----A---- C:\WINDOWS\system32\d3dx9_29.dll
2015-08-17 15:38:02 ----A---- C:\WINDOWS\system32\d3dx9_28.dll
2015-08-17 15:38:01 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_27.dll
2015-08-17 15:38:01 ----A---- C:\WINDOWS\system32\d3dx9_27.dll
2015-08-17 15:38:00 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_26.dll
2015-08-17 15:38:00 ----A---- C:\WINDOWS\system32\d3dx9_26.dll
2015-08-17 15:37:59 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_25.dll
2015-08-17 15:37:59 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_24.dll
2015-08-17 15:37:59 ----A---- C:\WINDOWS\system32\d3dx9_25.dll
2015-08-17 15:37:59 ----A---- C:\WINDOWS\system32\d3dx9_24.dll
2015-08-17 15:24:41 ----HD---- C:\WINDOWS\msdownld.tmp
2015-08-17 15:24:10 ----D---- C:\WINDOWS\SYSWOW64\directx
2015-08-17 14:15:14 ----D---- C:\Users\PC\AppData\Roaming\WinRAR
2015-08-17 14:14:23 ----D---- C:\Program Files\WinRAR
2015-08-16 20:41:35 ----N---- C:\WINDOWS\system32\MpSigStub.exe
2015-08-16 19:29:52 ----D---- C:\Windows.old
2015-08-16 15:16:27 ----D---- C:\Users\PC\AppData\Roaming\Mozilla
2015-08-16 15:16:14 ----D---- C:\Program Files (x86)\Mozilla Firefox
2015-08-16 15:03:12 ----SHD---- C:\Config.Msi
2015-08-16 14:53:06 ----D---- C:\ProgramData\IsolatedStorage
2015-08-16 14:18:39 ----D---- C:\Users\PC\AppData\Roaming\Adobe
2015-08-16 09:36:24 ----SHD---- C:\ProgramData\Šablony
2015-08-16 09:36:23 ----SHD---- C:\ProgramData\Plocha
2015-08-16 09:36:23 ----SHD---- C:\ProgramData\Nabídka Start
2015-08-16 09:36:23 ----SHD---- C:\ProgramData\Dokumenty
2015-08-16 09:36:23 ----SHD---- C:\ProgramData\Data aplikací
2015-08-16 09:34:32 ----SD---- C:\Users\PC\AppData\Roaming\Microsoft
2015-08-16 08:49:44 ----HD---- C:\$SysReset
2015-08-14 22:28:11 ----ASH---- C:\swapfile.sys
2015-08-14 22:28:10 ----ASH---- C:\pagefile.sys
2015-08-14 22:28:09 ----ASH---- C:\hiberfil.sys

======List of files/folders modified in the last 3 months======

2015-08-21 15:00:00 ----D---- C:\WINDOWS\system32\sru
2015-08-21 13:38:42 ----D---- C:\WINDOWS\rescache
2015-08-21 13:36:18 ----D---- C:\WINDOWS\Temp
2015-08-21 13:35:56 ----D---- C:\WINDOWS\Microsoft.NET
2015-08-21 13:35:54 ----D---- C:\WINDOWS\WinSxS
2015-08-21 13:35:41 ----AD---- C:\WINDOWS\System32
2015-08-21 13:35:25 ----D---- C:\Program Files\Internet Explorer
2015-08-21 13:35:24 ----D---- C:\WINDOWS\servicing
2015-08-21 13:35:23 ----D---- C:\WINDOWS\WinStore
2015-08-21 13:35:16 ----D---- C:\WINDOWS\SYSWOW64\pl-PL
2015-08-21 13:35:10 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2015-08-21 13:35:10 ----D---- C:\WINDOWS\SysWOW64
2015-08-21 13:35:10 ----D---- C:\WINDOWS\system32\Sysprep
2015-08-21 13:35:10 ----AD---- C:\Windows
2015-08-21 13:35:09 ----D---- C:\WINDOWS\system32\drivers
2015-08-21 13:35:07 ----D---- C:\WINDOWS\system32\pl-PL
2015-08-21 13:34:53 ----D---- C:\WINDOWS\system32\wbem
2015-08-21 13:34:51 ----D---- C:\WINDOWS\apppatch
2015-08-21 13:21:25 ----D---- C:\WINDOWS\Prefetch
2015-08-20 21:03:09 ----D---- C:\WINDOWS\system32\config
2015-08-20 21:00:21 ----D---- C:\Program Files\Windows Photo Viewer
2015-08-20 21:00:21 ----D---- C:\Program Files\Windows Media Player
2015-08-20 21:00:20 ----D---- C:\WINDOWS\SYSWOW64\slmgr
2015-08-20 21:00:20 ----D---- C:\WINDOWS\SYSWOW64\sk-SK
2015-08-20 21:00:20 ----D---- C:\Program Files\Windows Defender
2015-08-20 21:00:20 ----D---- C:\Program Files\Common Files\System
2015-08-20 21:00:20 ----D---- C:\Program Files (x86)\Windows Media Player
2015-08-20 21:00:20 ----D---- C:\Program Files (x86)\Internet Explorer
2015-08-20 21:00:18 ----D---- C:\WINDOWS\SYSWOW64\WCN
2015-08-20 21:00:18 ----D---- C:\WINDOWS\SYSWOW64\wbem
2015-08-20 21:00:18 ----D---- C:\WINDOWS\system32\slmgr
2015-08-20 21:00:18 ----D---- C:\WINDOWS\system32\sk-SK
2015-08-20 21:00:18 ----D---- C:\WINDOWS\system32\oobe
2015-08-20 21:00:18 ----D---- C:\WINDOWS\system32\migwiz
2015-08-20 21:00:18 ----D---- C:\WINDOWS\PolicyDefinitions
2015-08-20 21:00:14 ----D---- C:\WINDOWS\system32\WCN
2015-08-20 21:00:14 ----D---- C:\WINDOWS\system32\DriverStore
2015-08-20 20:58:06 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2015-08-20 20:58:06 ----D---- C:\Program Files (x86)\Windows Mail
2015-08-20 20:58:06 ----D---- C:\Program Files (x86)\Windows Defender
2015-08-20 20:57:58 ----D---- C:\WINDOWS\SYSWOW64\XPSViewer
2015-08-20 20:57:58 ----D---- C:\WINDOWS\SYSWOW64\winrm
2015-08-20 20:57:58 ----D---- C:\WINDOWS\SYSWOW64\Printing_Admin_Scripts
2015-08-20 20:57:58 ----D---- C:\WINDOWS\SYSWOW64\oobe
2015-08-20 20:57:58 ----D---- C:\WINDOWS\SYSWOW64\MUI
2015-08-20 20:57:58 ----D---- C:\WINDOWS\SYSWOW64\hu-HU
2015-08-20 20:57:58 ----D---- C:\WINDOWS\SYSWOW64\drivers
2015-08-20 20:57:58 ----D---- C:\WINDOWS\SYSWOW64\Dism
2015-08-20 20:57:55 ----D---- C:\WINDOWS\system32\winrm
2015-08-20 20:57:55 ----D---- C:\WINDOWS\system32\MUI
2015-08-20 20:57:55 ----D---- C:\WINDOWS\system32\drivers\UMDF
2015-08-20 20:57:55 ----D---- C:\WINDOWS\system32\Dism
2015-08-20 20:57:55 ----D---- C:\WINDOWS\system32\Boot
2015-08-20 20:57:46 ----D---- C:\WINDOWS\system32\Printing_Admin_Scripts
2015-08-20 20:57:45 ----D---- C:\WINDOWS\system32\hu-HU
2015-08-20 20:57:24 ----D---- C:\WINDOWS\system32\SystemResetPlatform
2015-08-20 20:57:19 ----D---- C:\WINDOWS\Help
2015-08-20 20:57:19 ----D---- C:\Program Files\Windows Mail
2015-08-20 20:57:19 ----D---- C:\Program Files\Windows Journal
2015-08-20 20:54:18 ----D---- C:\WINDOWS\SYSWOW64\el-GR
2015-08-20 20:54:10 ----D---- C:\WINDOWS\SYSWOW64\migration
2015-08-20 20:54:09 ----D---- C:\WINDOWS\SYSWOW64\Com
2015-08-20 20:54:09 ----D---- C:\WINDOWS\IME
2015-08-20 20:54:06 ----D---- C:\WINDOWS\system32\el-GR
2015-08-20 20:53:19 ----D---- C:\WINDOWS\system32\migration
2015-08-20 20:52:59 ----D---- C:\WINDOWS\system32\Com
2015-08-20 20:51:18 ----D---- C:\WINDOWS\CbsTemp
2015-08-20 20:51:07 ----SHD---- C:\System Volume Information
2015-08-19 23:13:20 ----D---- C:\WINDOWS\Inf
2015-08-19 15:43:57 ----HD---- C:\ProgramData
2015-08-19 15:43:57 ----D---- C:\Program Files (x86)
2015-08-19 13:32:14 ----D---- C:\AdwCleaner
2015-08-19 11:09:56 ----D---- C:\WINDOWS\Logs
2015-08-19 10:22:00 ----RD---- C:\Program Files
2015-08-18 21:03:12 ----D---- C:\Games
2015-08-18 19:14:16 ----RSD---- C:\WINDOWS\Fonts
2015-08-18 16:58:05 ----D---- C:\WINDOWS\AppReadiness
2015-08-18 16:58:02 ----HD---- C:\Program Files\WindowsApps
2015-08-17 17:59:13 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2015-08-17 15:38:08 ----RSD---- C:\WINDOWS\assembly
2015-08-17 11:41:04 ----D---- C:\WINDOWS\system32\wdi
2015-08-16 19:30:20 ----D---- C:\WINDOWS\system32\Recovery
2015-08-16 19:16:39 ----D---- C:\Program Files\Common Files
2015-08-16 19:16:38 ----D---- C:\Program Files (x86)\Common Files
2015-08-16 19:15:11 ----HD---- C:\WINDOWS\ELAMBKUP
2015-08-16 15:04:16 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2015-08-16 15:04:16 ----D---- C:\Program Files\TOSHIBA
2015-08-16 15:04:14 ----DC---- C:\WINDOWS\system32\DRVSTORE
2015-08-16 15:03:37 ----SHD---- C:\WINDOWS\Installer
2015-08-16 15:00:45 ----D---- C:\Program Files (x86)\TOSHIBA
2015-08-16 14:54:06 ----D---- C:\Program Files (x86)\TOSHIBA Games
2015-08-16 14:53:44 ----D---- C:\ProgramData\WildTangent
2015-08-16 14:53:08 ----D---- C:\WINDOWS\system32\Tasks
2015-08-16 14:51:14 ----D---- C:\ProgramData\regid.1991-06.com.microsoft
2015-08-16 14:51:13 ----SD---- C:\ProgramData\Microsoft
2015-08-16 14:49:37 ----D---- C:\WINDOWS\system32\restore
2015-08-16 14:23:44 ----D---- C:\ProgramData\Toshiba
2015-08-16 14:21:46 ----D---- C:\WINDOWS\SoftwareDistribution
2015-08-16 09:36:27 ----DC---- C:\WINDOWS\Panther
2015-08-16 09:36:24 ----D---- C:\Program Files\Windows NT
2015-08-16 09:34:32 ----RD---- C:\Users
2015-08-16 09:32:03 ----D---- C:\WINDOWS\SYSWOW64\NV
2015-08-16 09:32:02 ----D---- C:\WINDOWS\system32\NV
2015-06-19 14:27:55 ----D---- C:\FFOutput

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2013-08-08 644968]
R0 nvpciflt;nvpciflt; C:\WINDOWS\system32\DRIVERS\nvpciflt.sys [2013-08-09 30496]
R0 tos_sps64;@oem21.inf,%SERVICE_DESC_amd64%;TOSHIBA tos_sps64 Service; C:\WINDOWS\System32\drivers\tos_sps64.sys [2012-06-18 499096]
R0 TVALZ;@oem17.inf,%TVALZ.SvcDesc%;TOSHIBA ACPI-Based Value Added Logical and General Purpose Device Driver; C:\WINDOWS\System32\drivers\TVALZ_O.SYS [2013-08-15 32832]
R1 vwififlt;@%SystemRoot%\System32\drivers\vwififlt.sys,-259; C:\WINDOWS\system32\DRIVERS\vwififlt.sys [2013-08-22 71680]
R3 AmUStor;@oem20.inf,%AmUStor.SvcDesc%;AM USB Stroage Driver; C:\WINDOWS\system32\drivers\AmUStor.SYS [2013-06-25 109336]
R3 athr;@oem18.inf,%ATHR.Service.DispName%;Qualcomm Atheros Extensible Wireless LAN device driver; C:\WINDOWS\system32\DRIVERS\athwbx.sys [2013-08-16 3859968]
R3 BtFilter;BtFilter; C:\WINDOWS\system32\DRIVERS\btfilter.sys [2013-10-01 594632]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Bluetooth Enumerator Service; C:\WINDOWS\system32\DRIVERS\BthEnum.sys [2013-08-22 53248]
R3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\WINDOWS\system32\DRIVERS\BthLEEnum.sys [2013-08-22 224768]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\system32\DRIVERS\bthpan.sys [2013-08-22 118272]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Bluetooth Radio USB Driver; C:\WINDOWS\System32\Drivers\BTHUSB.sys [2013-08-22 77312]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2013-09-16 4177920]
R3 IntcDAud;@oem3.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2013-09-16 449528]
R3 iwdbus;@oem6.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\WINDOWS\System32\drivers\iwdbus.sys [2013-08-23 26008]
R3 L1C;@oem13.inf,%L1C.Service.DispName%;NDIS Miniport Driver for Qualcomm Atheros AR81xx PCI-E Ethernet Controller; C:\WINDOWS\system32\DRIVERS\L1C63x64.sys [2013-07-18 130248]
R3 MEIx64;@oem2.inf,%TEE_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\system32\DRIVERS\TeeDriverx64.sys [2013-09-04 99288]
R3 nvlddmkm;nvlddmkm; C:\WINDOWS\system32\DRIVERS\nvlddmkm.sys [2013-08-09 11268384]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\WINDOWS\system32\DRIVERS\rfcomm.sys [2013-09-11 167424]
R3 SmbDrvI;SmbDrvI; C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys [2013-08-22 34544]
R3 STHDA;@%SystemRoot%\system32\stlang64.dll,-10301; C:\WINDOWS\system32\DRIVERS\stwrt64.sys [2013-08-16 551936]
R3 SynTP;@oem12.inf,%SynTP.SvcDesc%;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys [2013-08-22 528112]
R3 Thotkey;@oem14.inf,%Thotkey%;Toshiba Hotkey Driver; C:\WINDOWS\System32\drivers\Thotkey.sys [2013-08-19 32624]
R3 tosrfec;@oem15.inf,%busenum.SVCDESC%;Bluetooth ACPI; C:\WINDOWS\System32\drivers\tosrfec.sys [2013-08-22 27032]
R3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;USB Video Device (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys [2013-08-22 212224]
R3 vwifimp;@%SystemRoot%\System32\drivers\vwifimp.sys,-261; C:\WINDOWS\system32\DRIVERS\vwifimp.sys [2013-08-22 36864]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Bluetooth Port Driver; C:\WINDOWS\System32\Drivers\BTHport.sys [2013-08-22 1200128]
S3 intaud_WaveExtensible;@oem5.inf,%INTAUD_WEX.SvcDesc%;Intel WiDi Audio Device; C:\WINDOWS\system32\drivers\intelaud.sys [2013-08-23 39320]
S3 MBAMProtector;MBAMProtector; \??\C:\WINDOWS\system32\drivers\mbam.sys [2015-06-18 25816]
S3 MBAMWebAccessControl;MBAMWebAccessControl; \??\C:\WINDOWS\system32\drivers\mwac.sys [2015-06-18 64216]
S3 RTWlanE;@netrtwlane.inf,%RTWlanE.DeviceDesc.DispName%;Realtek Wireless LAN 802.11n PCI-E Network Adapter; C:\WINDOWS\system32\DRIVERS\rtwlane.sys [2013-07-31 1936088]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AtherosSvc;AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [2013-10-01 312448]
R2 dts_apo_service;DTS APO Service; C:\Program Files (x86)\DTS, Inc\DTS Studio Sound\dts_apo_service.exe [2013-09-10 19792]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2013-05-12 733696]
R2 Intel(R) ME Service;Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [2013-09-04 131544]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2013-09-04 169432]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2013-09-04 390616]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2013-08-09 920864]
R2 STacSV;@%SystemRoot%\system32\stlang64.dll,-10101; C:\Program Files\IDT\WDM\STacSV64.exe [2013-08-16 339456]
R3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2012-04-25 169752]
S2 MBAMService;MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [2015-06-18 1133880]
S3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2013-09-20 279024]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2013-08-22 43696]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2013-05-12 822232]
S4 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2013-08-27 2155296]
S4 TMachInfo;TMachInfo; C:\Program Files\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe [2013-07-31 53864]

-----------------EOF-----------------






Zde mate ten log, ale mam pocit ze potrebuji spise nejak zablokovat internet pro vsechno krome Lol, wot klientu a firefox

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Neco mi krade pripojeni

#12 Příspěvek od Márty84 »

GrambiczeQ píše:kdyz zmacknete ctrl+f a nasledne napisete FRST, budete na zacatku logu
Ja ale potrebuju nove, aktualni. Nekolik dni stare jsou knicemu.

GrambiczeQ píše:Zde mate ten log, ale mam pocit ze potrebuji spise nejak zablokovat internet pro vsechno krome Lol, wot klientu a firefox
No tak si to nastavte ve Firewallu :-)
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

GrambiczeQ
Návštěvník
Návštěvník
Příspěvky: 10
Registrován: 19 srp 2015 08:50

Re: Neco mi krade pripojeni

#13 Příspěvek od GrambiczeQ »

:boxed: nj, uz jsem zkouel WSA i sunbelt a v obou pripadech se ten download nezastavil a ani to nenaslo nic divneho...
existuje nejaka uzivatelsky privetiva alternativa k wiresharku ??

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Neco mi krade pripojeni

#14 Příspěvek od Márty84 »

Jak casto k tomu dochazi a jak dlouho to trva. Myslim jestli to stahovani bezi par vterin a pak se zastavi, nebo treba bezi nepretrzite a zastavi ho treba az restart...

GrambiczeQ píše:existuje nejaka uzivatelsky privetiva alternativa k wiresharku ??
Podobne programy nepouzivam, takze nevim, nemam zadny vyzkouseny.
http://www.stahuj.centrum.cz/internet_a ... ring_site/
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

GrambiczeQ
Návštěvník
Návštěvník
Příspěvky: 10
Registrován: 19 srp 2015 08:50

Re: Neco mi krade pripojeni

#15 Příspěvek od GrambiczeQ »

stahovani je nepretrzite, jenom kdyz zapnu a vypnu wifi, tak na chvilku vsechno jede tak jak ma, pak e ten smejd asi probudi a zas nemuzu ani na net, jenom prohlizeni tohoto fora je zalezitost pul hodiny... [nacteni]

Zamčeno