Stránka: 1 z 1
| [ Príspevkov: 9 ] | |
Autor | Správa |
---|
|
Stale mi mrzne WIn7 ,hlavne pri starte. Ide pohybat mysou,klavesy reaguju. Musim stlacit crtl+alt+del. Dalej mi toto robi aj u Crysis 2(niekedy na 10s). (oT:keby som mal taku silu ako crysis2 tak ten PC by bol asi na srot ). Casto to robi u Googlechrome. Bude to nieco s HW alebo v SW OS2? *Lebo ma to uz zacina hnevat . *A najviac ma vie vytocit to dlhe startovanie OS2. ? Virus?
|
|
Registrovaný: 09.05.11 Prihlásený: 20.12.18 Príspevky: 618 Témy: 2 | 2 | |
|
log Kód: Logfile of random's system information tool 1.09 (written by random/random) Run by MarekMedved at 2012-12-09 20:40:00 Microsoft Windows 7 Professional Service Pack 1 System drive C: has 276 GB (58%) free of 477 GB Total RAM: 8147 MB (73% free)
Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 20:40:06, on 9. 12. 2012 Platform: Windows 7 SP1 (WinNT 6.00.3505) MSIE: Internet Explorer v9.00 (9.00.8112.16455) Boot mode: Normal
Running processes: E:\_nainstalovane programy\Internet Download Manager\idman.exe C:\Program Files (x86)\AVG Secure Search\vprot.exe C:\Program Files (x86)\PowerISO\PWRISOVM.EXE E:\_nainstalovane programy\Internet Download Manager\IEMonitor.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Users\MarekMedved\Downloads\RSIT (1).exe C:\Program Files (x86)\trend micro\MarekMedved.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = F2 - REG:system.ini: UserInit=userinit.exe O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll O2 - BHO: AVG Security Toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG Secure Search\13.2.0.4\AVG Secure Search_toolbar.dll O3 - Toolbar: AVG Security Toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG Secure Search\13.2.0.4\AVG Secure Search_toolbar.dll O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe" O4 - HKLM\..\Run: [vProt] "C:\Program Files (x86)\AVG Secure Search\vprot.exe" O4 - HKLM\..\Run: [ROC_roc_ssl_v12] "C:\Program Files (x86)\AVG Secure Search\ROC_roc_ssl_v12.exe" / /PROMPT /CMPID=roc_ssl_v12 O4 - HKLM\..\Run: [PWRISOVM.EXE] C:\Program Files (x86)\PowerISO\PWRISOVM.EXE -startup O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun O4 - HKCU\..\Run: [IDMan] E:\_nainstalovane programy\Internet Download Manager\idman.exe /onboot O4 - HKCU\..\Run: [Comrade.exe] C:\Program Files (x86)\GameSpy\Comrade\Comrade.exe O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE') O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE') O4 - HKUS\S-1-5-21-2150537740-2270024768-3259585903-1003\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'UpdatusUser') O4 - HKUS\S-1-5-21-2150537740-2270024768-3259585903-1003\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'UpdatusUser') O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000 O8 - Extra context menu item: Stiahnuť s IDM - E:\_nainstalovane programy\Internet Download Manager\IEExt.htm O8 - Extra context menu item: Stiahnuť s IDM všetky prepojenia - E:\_nainstalovane programy\Internet Download Manager\IEGetAll.htm O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll O18 - Protocol: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files (x86)\Common Files\AVG Secure Search\ViProtocolInstaller\13.2.0\ViProtocol.dll O20 - AppInit_DLLs: C:\Windows\data.dll O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing) O23 - Service: Creative Audio Engine Licensing Service - Creative Labs - C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe O23 - Service: Creative Audio Service (CTAudSvcService) - Creative Technology Ltd - C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing) O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing) O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: Intel(R) PROSet Monitoring Service - Unknown owner - C:\Windows\system32\IProsetMonitor.exe (file missing) O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing) O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing) O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe O23 - Service: O&O Defrag (OODefragAgent) - O&O Software GmbH - C:\Program Files\OO Software\Defrag\oodag.exe O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe O23 - Service: PnkBstrB - Unknown owner - C:\Windows\system32\PnkBstrB.exe O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing) O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing) O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing) O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing) O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing) O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing) O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing) O23 - Service: vToolbarUpdater13.2.0 - Unknown owner - C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\13.2.0\ToolbarUpdater.exe O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing) O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing) O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing) O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
-- End of file - 9724 bytes
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}] Groove GFS Browser Helper - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}] AVG Security Toolbar - C:\Program Files (x86)\AVG Secure Search\13.2.0.4\AVG Secure Search_toolbar.dll [2012-12-09 1796552]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar] {95B7759C-8C7F-4BF1-B163-73684A933233} - AVG Security Toolbar - C:\Program Files (x86)\AVG Secure Search\13.2.0.4\AVG Secure Search_toolbar.dll [2012-12-09 1796552]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run] "GrooveMonitor"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040] "vProt"=C:\Program Files (x86)\AVG Secure Search\vprot.exe [2012-12-09 997320] "ROC_roc_ssl_v12"=C:\Program Files (x86)\AVG Secure Search\ROC_roc_ssl_v12.exe [2012-12-09 1020512] "PWRISOVM.EXE"=C:\Program Files (x86)\PowerISO\PWRISOVM.EXE [2012-08-24 336992]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-21 1475584] "IDMan"=E:\_nainstalovane programy\Internet Download Manager\idman.exe [2011-07-18 3405208] "Comrade.exe"=C:\Program Files (x86)\GameSpy\Comrade\Comrade.exe [2007-06-29 36864]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] "AppInit_DLLs"="C:\Windows\data.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad] WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks] "{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders] "SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System] "ConsentPromptBehaviorAdmin"=5 "ConsentPromptBehaviorUser"=3 "EnableUIADesktopToggle"=0 "dontdisplaylastusername"=0 "legalnoticecaption"= "legalnoticetext"= "shutdownwithoutlogon"=1 "undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer] "NoActiveDesktop"=1 "NoActiveDesktopChanges"=1 "ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32] "vidc.mrle"=msrle32.dll "vidc.msvc"=msvidc32.dll "msacm.imaadpcm"=imaadp32.acm "msacm.msg711"=msg711.acm "msacm.msgsm610"=msgsm32.acm "msacm.msadpcm"=msadp32.acm "midimapper"=midimap.dll "wavemapper"=msacm32.drv "vidc.uyvy"=msyuv.dll "vidc.yuy2"=msyuv.dll "vidc.yvyu"=msyuv.dll "vidc.iyuv"=iyuv_32.dll "vidc.i420"=iyuv_32.dll "vidc.yvu9"=tsbyuv.dll "msacm.l3acm"=C:\Windows\SysWOW64\l3codeca.acm "vidc.cvid"=iccvid.dll "wave"=wdmaud.drv "midi"=wdmaud.drv "mixer"=wdmaud.drv "aux"=wdmaud.drv "wave1"=wdmaud.drv "midi1"=wdmaud.drv "mixer1"=wdmaud.drv "wave2"=wdmaud.drv "midi2"=wdmaud.drv "mixer2"=wdmaud.drv "wave3"=wdmaud.drv "midi3"=wdmaud.drv "mixer3"=wdmaud.drv "wave4"=wdmaud.drv "midi4"=wdmaud.drv "mixer4"=wdmaud.drv "wave5"=wdmaud.drv "midi5"=wdmaud.drv "mixer5"=wdmaud.drv "VIDC.FPS1"=frapsvid.dll "VIDC.FMVC"=fmcodec.dll
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1 .js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2012-12-09 20:40:01 ----D---- C:\Program Files (x86)\trend micro 2012-12-09 20:40:00 ----D---- C:\rsit 2012-12-09 20:06:57 ----D---- C:\Program Files (x86)\GameSpy 2012-12-09 20:05:56 ----D---- C:\Windows\SysWOW64\URTTEMP 2012-12-09 20:05:43 ----RHD---- C:\Users\MarekMedved\AppData\Roaming\SecuROM 2012-12-09 20:04:48 ----A---- C:\Windows\SysWOW64\PnkBstrB.exe 2012-12-09 20:04:47 ----A---- C:\Windows\SysWOW64\PnkBstrA.exe 2012-12-09 20:04:47 ----A---- C:\Windows\SysWOW64\pbsvc.exe 2012-12-09 19:43:28 ----A---- C:\Windows\SysWOW64\CmdLineExt_x64.dll 2012-12-09 19:43:09 ----HDC---- C:\ProgramData\{0691F710-1ECA-4B5A-9727-25554F1BFDC6} 2012-12-09 19:37:05 ----D---- C:\Windows\SysWOW64\Macromed 2012-12-09 19:29:35 ----D---- C:\Users\MarekMedved\AppData\Roaming\PowerISO 2012-12-09 19:28:55 ----D---- C:\ProgramData\AVG Secure Search 2012-12-09 19:28:46 ----D---- C:\Program Files (x86)\Common Files\AVG Secure Search 2012-12-09 19:28:45 ----D---- C:\Program Files (x86)\AVG Secure Search 2012-12-09 19:28:19 ----D---- C:\Program Files (x86)\PowerISO 2012-12-07 13:40:26 ----A---- C:\Windows\SysWOW64\drivers\Mac606a.sys 2012-12-07 13:40:26 ----A---- C:\Windows\SysWOW64\drivers\HidNt.sys 2012-12-07 13:40:25 ----A---- C:\Windows\SysWOW64\ivl807a.dll 2012-12-07 13:40:25 ----A---- C:\Windows\SysWOW64\Hidhlp.dll 2012-12-07 13:40:24 ----D---- C:\Program Files (x86)\FTQ5C1 2012-12-05 15:30:06 ----D---- C:\Program Files (x86)\Crysis 2.Limited Edition.v 1.1.0.0 2012-12-04 21:15:59 ----D---- C:\Program Files (x86)\DsNET Corp 2012-12-03 13:23:47 ----A---- C:\Windows\SysWOW64\VB6STKIT.DLL 2012-12-03 13:23:47 ----A---- C:\Windows\SysWOW64\VB6FR.DLL 2012-12-03 13:23:46 ----D---- C:\Users\MarekMedved\AppData\Roaming\TFP 2012-12-03 13:23:46 ----A---- C:\Windows\SysWOW64\MSCMCFR.DLL 2012-12-03 13:23:46 ----A---- C:\Windows\SysWOW64\CMDLGFR.DLL 2012-12-02 16:28:46 ----D---- C:\CRYSIS EDITOR 2012-12-02 15:04:22 ----D---- C:\Program Files (x86)\Microsoft Silverlight 2012-12-02 01:02:34 ----D---- C:\Users\MarekMedved\AppData\Roaming\IDM 2012-12-02 01:02:33 ----D---- C:\Users\MarekMedved\AppData\Roaming\DMCache 2012-12-01 20:50:00 ----D---- C:\Fraps 2012-11-29 21:08:25 ----D---- C:\vylucenia 2012-11-28 11:07:23 ----SH---- C:\Windows\data.dll 2012-11-28 00:23:46 ----D---- C:\ProgramData\Solidshield 2012-11-27 23:57:47 ----D---- C:\Program Files (x86)\Electronic Arts 2012-11-27 23:52:25 ----D---- C:\Users\MarekMedved\AppData\Roaming\IObit 2012-11-26 20:09:00 ----A---- C:\Windows\SysWOW64\bassmod.dll 2012-11-26 18:57:53 ----D---- C:\ProgramData\Electronic Arts 2012-11-26 18:57:53 ----D---- C:\ProgramData\EA Core 2012-11-26 18:48:18 ----A---- C:\Windows\SysWOW64\XAudio2_7.dll 2012-11-26 18:48:18 ----A---- C:\Windows\SysWOW64\XAPOFX1_5.dll 2012-11-26 18:48:18 ----A---- C:\Windows\SysWOW64\xactengine3_7.dll 2012-11-26 18:48:17 ----A---- C:\Windows\SysWOW64\D3DCompiler_43.dll 2012-11-26 18:48:16 ----A---- C:\Windows\SysWOW64\D3DX9_43.dll 2012-11-26 18:48:16 ----A---- C:\Windows\SysWOW64\d3dx11_43.dll 2012-11-26 18:48:16 ----A---- C:\Windows\SysWOW64\d3dx10_43.dll 2012-11-26 18:48:16 ----A---- C:\Windows\SysWOW64\d3dcsx_43.dll 2012-11-26 18:48:15 ----A---- C:\Windows\SysWOW64\XAudio2_6.dll 2012-11-26 18:48:15 ----A---- C:\Windows\SysWOW64\XAPOFX1_4.dll 2012-11-26 18:48:15 ----A---- C:\Windows\SysWOW64\xactengine3_6.dll 2012-11-26 18:48:15 ----A---- C:\Windows\SysWOW64\X3DAudio1_7.dll 2012-11-26 18:48:14 ----A---- C:\Windows\SysWOW64\XAudio2_5.dll 2012-11-26 18:48:13 ----A---- C:\Windows\SysWOW64\xactengine3_5.dll 2012-11-26 18:48:13 ----A---- C:\Windows\SysWOW64\D3DCompiler_42.dll 2012-11-26 18:48:12 ----A---- C:\Windows\SysWOW64\D3DX9_42.dll 2012-11-26 18:48:12 ----A---- C:\Windows\SysWOW64\d3dx11_42.dll 2012-11-26 18:48:12 ----A---- C:\Windows\SysWOW64\d3dx10_42.dll 2012-11-26 18:48:12 ----A---- C:\Windows\SysWOW64\d3dcsx_42.dll 2012-11-26 18:48:11 ----A---- C:\Windows\SysWOW64\D3DX9_41.dll 2012-11-26 18:48:11 ----A---- C:\Windows\SysWOW64\d3dx10_41.dll 2012-11-26 18:48:11 ----A---- C:\Windows\SysWOW64\D3DCompiler_41.dll 2012-11-26 18:48:10 ----A---- C:\Windows\SysWOW64\XAudio2_4.dll 2012-11-26 18:48:10 ----A---- C:\Windows\SysWOW64\XAPOFX1_3.dll 2012-11-26 18:48:10 ----A---- C:\Windows\SysWOW64\xactengine3_4.dll 2012-11-26 18:48:09 ----A---- C:\Windows\SysWOW64\X3DAudio1_6.dll 2012-11-26 18:48:09 ----A---- C:\Windows\SysWOW64\d3dx10_40.dll 2012-11-26 18:48:09 ----A---- C:\Windows\SysWOW64\D3DCompiler_40.dll 2012-11-26 18:48:08 ----A---- C:\Windows\SysWOW64\XAudio2_3.dll 2012-11-26 18:48:08 ----A---- C:\Windows\SysWOW64\XAPOFX1_2.dll 2012-11-26 18:48:08 ----A---- C:\Windows\SysWOW64\D3DX9_40.dll 2012-11-26 18:48:07 ----A---- C:\Windows\SysWOW64\xactengine3_3.dll 2012-11-26 18:48:06 ----A---- C:\Windows\SysWOW64\X3DAudio1_5.dll 2012-11-26 18:48:05 ----A---- C:\Windows\SysWOW64\XAudio2_2.dll 2012-11-26 18:48:05 ----A---- C:\Windows\SysWOW64\XAPOFX1_1.dll 2012-11-26 18:48:05 ----A---- C:\Windows\SysWOW64\xactengine3_2.dll 2012-11-26 18:48:05 ----A---- C:\Windows\SysWOW64\d3dx10_39.dll 2012-11-26 18:48:05 ----A---- C:\Windows\SysWOW64\D3DCompiler_39.dll 2012-11-26 18:48:04 ----A---- C:\Windows\SysWOW64\XAudio2_1.dll 2012-11-26 18:48:04 ----A---- C:\Windows\SysWOW64\XAPOFX1_0.dll 2012-11-26 18:48:04 ----A---- C:\Windows\SysWOW64\xactengine3_1.dll 2012-11-26 18:48:04 ----A---- C:\Windows\SysWOW64\X3DAudio1_4.dll 2012-11-26 18:48:04 ----A---- C:\Windows\SysWOW64\D3DX9_39.dll 2012-11-26 18:48:02 ----A---- C:\Windows\SysWOW64\XAudio2_0.dll 2012-11-26 18:48:02 ----A---- C:\Windows\SysWOW64\D3DX9_38.dll 2012-11-26 18:48:02 ----A---- C:\Windows\SysWOW64\d3dx10_38.dll 2012-11-26 18:48:02 ----A---- C:\Windows\SysWOW64\D3DCompiler_38.dll 2012-11-26 18:48:01 ----A---- C:\Windows\SysWOW64\xactengine3_0.dll 2012-11-26 18:48:01 ----A---- C:\Windows\SysWOW64\X3DAudio1_3.dll 2012-11-26 18:47:55 ----A---- C:\Windows\SysWOW64\d3dx10_37.dll 2012-11-26 18:47:55 ----A---- C:\Windows\SysWOW64\D3DCompiler_37.dll 2012-11-26 18:47:54 ----A---- C:\Windows\SysWOW64\D3DX9_37.dll 2012-11-26 18:47:53 ----A---- C:\Windows\SysWOW64\xactengine2_10.dll 2012-11-26 18:47:50 ----A---- C:\Windows\SysWOW64\d3dx10_36.dll 2012-11-26 18:47:50 ----A---- C:\Windows\SysWOW64\D3DCompiler_36.dll 2012-11-26 18:47:49 ----A---- C:\Windows\SysWOW64\d3dx9_36.dll 2012-11-26 18:47:48 ----A---- C:\Windows\SysWOW64\xactengine2_9.dll 2012-11-26 18:47:48 ----A---- C:\Windows\SysWOW64\d3dx10_35.dll 2012-11-26 18:47:48 ----A---- C:\Windows\SysWOW64\D3DCompiler_35.dll 2012-11-26 18:47:47 ----A---- C:\Windows\SysWOW64\d3dx9_35.dll 2012-11-26 18:47:46 ----A---- C:\Windows\SysWOW64\xactengine2_8.dll 2012-11-26 18:47:46 ----A---- C:\Windows\SysWOW64\X3DAudio1_2.dll 2012-11-26 18:47:43 ----A---- C:\Windows\SysWOW64\d3dx10_34.dll 2012-11-26 18:47:43 ----A---- C:\Windows\SysWOW64\D3DCompiler_34.dll 2012-11-26 18:47:42 ----A---- C:\Windows\SysWOW64\xinput1_3.dll 2012-11-26 18:47:42 ----A---- C:\Windows\SysWOW64\d3dx9_34.dll 2012-11-26 18:47:40 ----A---- C:\Windows\SysWOW64\xactengine2_7.dll 2012-11-26 18:47:40 ----A---- C:\Windows\SysWOW64\d3dx10_33.dll 2012-11-26 18:47:40 ----A---- C:\Windows\SysWOW64\D3DCompiler_33.dll 2012-11-26 18:47:39 ----A---- C:\Windows\SysWOW64\d3dx9_33.dll 2012-11-26 18:47:38 ----A---- C:\Windows\SysWOW64\xactengine2_6.dll 2012-11-26 18:47:35 ----A---- C:\Windows\SysWOW64\xactengine2_5.dll 2012-11-26 18:47:35 ----A---- C:\Windows\SysWOW64\d3dx10.dll 2012-11-26 18:47:34 ----A---- C:\Windows\SysWOW64\xactengine2_4.dll 2012-11-26 18:47:34 ----A---- C:\Windows\SysWOW64\x3daudio1_1.dll 2012-11-26 18:47:34 ----A---- C:\Windows\SysWOW64\d3dx9_32.dll 2012-11-26 18:47:33 ----A---- C:\Windows\SysWOW64\xactengine2_3.dll 2012-11-26 18:47:33 ----A---- C:\Windows\SysWOW64\d3dx9_31.dll 2012-11-26 18:47:32 ----A---- C:\Windows\SysWOW64\xinput1_2.dll 2012-11-26 18:47:31 ----A---- C:\Windows\SysWOW64\xinput1_1.dll 2012-11-26 18:47:31 ----A---- C:\Windows\SysWOW64\xactengine2_2.dll 2012-11-26 18:47:28 ----A---- C:\Windows\SysWOW64\xactengine2_1.dll 2012-11-26 18:47:26 ----A---- C:\Windows\SysWOW64\d3dx9_30.dll 2012-11-26 18:47:25 ----A---- C:\Windows\SysWOW64\xactengine2_0.dll 2012-11-26 18:47:25 ----A---- C:\Windows\SysWOW64\x3daudio1_0.dll 2012-11-26 18:47:15 ----A---- C:\Windows\SysWOW64\d3dx9_29.dll 2012-11-26 18:47:14 ----A---- C:\Windows\SysWOW64\d3dx9_28.dll 2012-11-26 18:47:13 ----A---- C:\Windows\SysWOW64\d3dx9_27.dll 2012-11-26 18:47:12 ----A---- C:\Windows\SysWOW64\d3dx9_26.dll 2012-11-26 18:47:09 ----A---- C:\Windows\SysWOW64\d3dx9_25.dll 2012-11-26 18:47:09 ----A---- C:\Windows\SysWOW64\d3dx9_24.dll 2012-11-26 18:26:19 ----D---- C:\Windows\SysWOW64\directx 2012-11-25 21:14:28 ----D---- C:\Program Files (x86)\Microsoft Works 2012-11-25 21:13:57 ----D---- C:\Program Files (x86)\Microsoft Visual Studio 2012-11-25 21:13:57 ----D---- C:\Program Files (x86)\Common Files\DESIGNER 2012-11-25 21:13:37 ----D---- C:\Windows\PCHEALTH 2012-11-25 21:11:08 ----D---- C:\Program Files (x86)\Microsoft Visual Studio 8 2012-11-25 21:09:17 ----D---- C:\Program Files (x86)\Microsoft Office 2012-11-25 21:09:16 ----D---- C:\ProgramData\Microsoft Help 2012-11-24 21:19:32 ----D---- C:\finished torrents 2012-11-24 15:28:55 ----D---- C:\ProgramData\OO Software 2012-11-24 15:14:00 ----D---- C:\ProgramData\IObit 2012-11-24 15:13:59 ----D---- C:\Program Files (x86)\IObit 2012-11-24 14:28:04 ----D---- C:\Program Files (x86)\Abyssmedia 2012-11-24 13:33:56 ----D---- C:\_stare subory 2012-11-24 13:17:20 ----D---- C:\starting torrent files 2012-11-24 13:16:03 ----D---- C:\Program Files (x86)\uTorrent 2012-11-24 13:15:28 ----D---- C:\Users\MarekMedved\AppData\Roaming\uTorrent 2012-11-23 16:36:27 ----D---- C:\Program Files (x86)\CPU Speed Pro 2012-11-23 14:59:36 ----D---- C:\Users\MarekMedved\AppData\Roaming\QuickStoresToolbar 2012-11-23 14:59:34 ----D---- C:\Program Files (x86)\Unlocker 2012-11-22 21:22:40 ----A---- C:\Windows\SysWOW64\wksprtPS.dll 2012-11-22 21:22:40 ----A---- C:\Windows\SysWOW64\tsgqec.dll 2012-11-22 21:22:40 ----A---- C:\Windows\SysWOW64\rdpendp_winip.dll 2012-11-22 21:22:40 ----A---- C:\Windows\SysWOW64\mstscax.dll 2012-11-22 21:22:40 ----A---- C:\Windows\SysWOW64\mstsc.exe 2012-11-22 21:22:40 ----A---- C:\Windows\SysWOW64\MsRdpWebAccess.dll 2012-11-22 21:22:40 ----A---- C:\Windows\SysWOW64\aaclient.dll 2012-11-22 17:39:43 ----D---- C:\Program Files (x86)\Lavalys 2012-11-22 12:50:43 ----D---- C:\Users\MarekMedved\AppData\Roaming\NVIDIA 2012-11-21 16:26:23 ----D---- C:\benzin_plyn 2012-11-21 16:23:20 ----A---- C:\Windows\SysWOW64\PerfStringBackup.INI 2012-11-21 15:27:55 ----A---- C:\Windows\UC.PIF 2012-11-21 15:27:55 ----A---- C:\Windows\RAR.PIF 2012-11-21 15:27:55 ----A---- C:\Windows\PKZIP.PIF 2012-11-21 15:27:55 ----A---- C:\Windows\PKUNZIP.PIF 2012-11-21 15:27:55 ----A---- C:\Windows\LHA.PIF 2012-11-21 15:27:55 ----A---- C:\Windows\ARJ.PIF 2012-11-21 15:27:54 ----D---- C:\Users\MarekMedved\AppData\Roaming\GHISLER 2012-11-21 13:54:26 ----A---- C:\Windows\SysWOW64\fsutil.exe 2012-11-21 13:54:26 ----A---- C:\Windows\SysWOW64\esent.dll 2012-11-21 13:50:56 ----D---- C:\Program Files (x86)\Microsoft.NET 2012-11-20 21:42:39 ----D---- C:\Windows\SysWOW64\Wat 2012-11-20 20:53:57 ----D---- C:\Users\MarekMedved\AppData\Roaming\ESET 2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\wininet.dll 2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\urlmon.dll 2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\url.dll 2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\SetIEInstalledDate.exe 2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\msrating.dll 2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\msls31.dll 2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\mshtmler.dll 2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\msfeedssync.exe 2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\msfeedsbs.dll 2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\licmgr10.dll 2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\jsproxy.dll 2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\jscript9.dll 2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\jscript.dll 2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\inseng.dll 2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\ieui.dll 2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\iesysprep.dll 2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\iesetup.dll 2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\iertutil.dll 2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\iernonce.dll 2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\iepeers.dll 2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\ieframe.dll 2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\iedkcs32.dll 2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\ieapfltr.dll 2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\ieapfltr.dat 2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\ieakeng.dll 2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\IEAdvpack.dll 2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\ie4uinit.exe 2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\icardie.dll 2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\dxtrans.dll 2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\dxtmsft.dll 2012-11-20 20:50:08 ----A---- C:\Windows\SysWOW64\wextract.exe 2012-11-20 20:50:08 ----A---- C:\Windows\SysWOW64\webcheck.dll 2012-11-20 20:50:08 ----A---- C:\Windows\SysWOW64\vbscript.dll 2012-11-20 20:50:08 ----A---- C:\Windows\SysWOW64\pngfilt.dll 2012-11-20 20:50:08 ----A---- C:\Windows\SysWOW64\occache.dll 2012-11-20 20:50:08 ----A---- C:\Windows\SysWOW64\mshtmled.dll 2012-11-20 20:50:08 ----A---- C:\Windows\SysWOW64\mshtml.dll 2012-11-20 20:50:08 ----A---- C:\Windows\SysWOW64\mshta.exe 2012-11-20 20:50:08 ----A---- C:\Windows\SysWOW64\msfeeds.dll 2012-11-20 20:50:08 ----A---- C:\Windows\SysWOW64\imgutil.dll 2012-11-20 20:50:08 ----A---- C:\Windows\SysWOW64\iexpress.exe 2012-11-20 20:50:08 ----A---- C:\Windows\SysWOW64\ieUnatt.exe 2012-11-20 20:50:08 ----A---- C:\Windows\SysWOW64\ieakui.dll 2012-11-20 20:50:08 ----A---- C:\Windows\SysWOW64\ieaksie.dll 2012-11-20 20:50:08 ----A---- C:\Windows\SysWOW64\admparse.dll 2012-11-20 20:40:21 ----A---- C:\Windows\SysWOW64\wmi.dll 2012-11-20 20:40:21 ----A---- C:\Windows\SysWOW64\imagehlp.dll 2012-11-20 20:39:59 ----D---- C:\ProgramData\ESET 2012-11-20 20:31:54 ----A---- C:\Windows\SysWOW64\qdvd.dll 2012-11-20 20:31:53 ----A---- C:\Windows\SysWOW64\sspicli.dll 2012-11-20 20:31:53 ----A---- C:\Windows\SysWOW64\schannel.dll 2012-11-20 20:31:53 ----A---- C:\Windows\SysWOW64\secur32.dll 2012-11-20 20:31:53 ----A---- C:\Windows\SysWOW64\ncrypt.dll 2012-11-20 20:31:41 ----A---- C:\Windows\SysWOW64\d2d1.dll 2012-11-20 20:30:47 ----A---- C:\Windows\SysWOW64\xmllite.dll 2012-11-20 20:30:43 ----A---- C:\Windows\SysWOW64\odbctrac.dll 2012-11-20 20:30:43 ----A---- C:\Windows\SysWOW64\odbcjt32.dll 2012-11-20 20:30:43 ----A---- C:\Windows\SysWOW64\odbccu32.dll 2012-11-20 20:30:43 ----A---- C:\Windows\SysWOW64\odbccr32.dll 2012-11-20 20:30:43 ----A---- C:\Windows\SysWOW64\odbccp32.dll 2012-11-20 20:30:42 ----A---- C:\Windows\SysWOW64\DWrite.dll 2012-11-20 20:30:32 ----A---- C:\Windows\SysWOW64\poqexec.exe 2012-11-20 20:30:31 ----A---- C:\Windows\SysWOW64\dhcpcsvc6.dll 2012-11-20 20:30:31 ----A---- C:\Windows\SysWOW64\dhcpcore6.dll 2012-11-20 20:30:29 ----A---- C:\Windows\SysWOW64\explorer.exe 2012-11-20 20:30:29 ----A---- C:\Windows\explorer.exe 2012-11-20 20:30:27 ----A---- C:\Windows\SysWOW64\sbe.dll 2012-11-20 20:30:27 ----A---- C:\Windows\SysWOW64\CPFilters.dll 2012-11-20 20:30:25 ----A---- C:\Windows\SysWOW64\quartz.dll 2012-11-20 20:30:19 ----A---- C:\Windows\SysWOW64\ntshrui.dll 2012-11-20 20:30:05 ----A---- C:\Windows\SysWOW64\tquery.dll 2012-11-20 20:30:05 ----A---- C:\Windows\SysWOW64\SearchProtocolHost.exe 2012-11-20 20:30:05 ----A---- C:\Windows\SysWOW64\SearchIndexer.exe 2012-11-20 20:30:05 ----A---- C:\Windows\SysWOW64\mssvp.dll 2012-11-20 20:30:05 ----A---- C:\Windows\SysWOW64\mssrch.dll 2012-11-20 20:30:05 ----A---- C:\Windows\SysWOW64\mssph.dll 2012-11-20 20:30:04 ----A---- C:\Windows\SysWOW64\SearchFilterHost.exe 2012-11-20 20:30:04 ----A---- C:\Windows\SysWOW64\mssphtb.dll 2012-11-20 20:30:04 ----A---- C:\Windows\SysWOW64\msscntrs.dll 2012-11-20 20:27:51 ----A---- C:\Windows\SysWOW64\webio.dll 2012-11-20 20:27:48 ----A---- C:\Windows\SysWOW64\msxml6.dll 2012-11-20 20:27:48 ----A---- C:\Windows\SysWOW64\msxml3r.dll 2012-11-20 20:27:48 ----A---- C:\Windows\SysWOW64\msxml3.dll 2012-11-20 20:27:36 ----A---- C:\Windows\SysWOW64\XpsGdiConverter.dll 2012-11-20 20:27:06 ----D---- C:\Program Files (x86)\Common Files\Creative Labs Shared 2012-11-20 20:27:05 ----A---- C:\Windows\SysWOW64\ntoskrnl.exe 2012-11-20 20:27:05 ----A---- C:\Windows\SysWOW64\ntkrnlpa.exe 2012-11-20 20:26:57 ----A---- C:\Windows\SysWOW64\XpsPrint.dll 2012-11-20 20:26:49 ----A---- C:\Windows\SysWOW64\mfc42u.dll 2012-11-20 20:26:49 ----A---- C:\Windows\SysWOW64\mfc42.dll 2012-11-20 20:26:31 ----A---- C:\Windows\SysWOW64\shell32.dll 2012-11-20 20:25:10 ----A---- C:\Windows\SysWOW64\KernelBase.dll 2012-11-20 20:25:10 ----A---- C:\Windows\SysWOW64\kernel32.dll 2012-11-20 20:25:09 ----AH---- C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll 2012-11-20 20:25:09 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll 2012-11-20 20:25:09 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll 2012-11-20 20:25:09 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll 2012-11-20 20:25:09 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll 2012-11-20 20:25:09 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll 2012-11-20 20:25:09 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll 2012-11-20 20:25:09 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll 2012-11-20 20:25:09 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll 2012-11-20 20:25:09 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll 2012-11-20 20:25:09 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll 2012-11-20 20:25:09 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll 2012-11-20 20:25:09 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll 2012-11-20 20:25:09 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll 2012-11-20 20:25:09 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll 2012-11-20 20:25:09 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll 2012-11-20 20:25:09 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll 2012-11-20 20:25:09 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll 2012-11-20 20:25:09 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll 2012-11-20 20:25:09 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll 2012-11-20 20:25:09 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll 2012-11-20 20:25:09 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll 2012-11-20 20:25:09 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll 2012-11-20 20:25:09 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll 2012-11-20 20:25:09 ----A---- C:\Windows\SysWOW64\wow32.dll 2012-11-20 20:25:09 ----A---- C:\Windows\SysWOW64\setup16.exe 2012-11-20 20:25:09 ----A---- C:\Windows\SysWOW64\ntvdm64.dll 2012-11-20 20:25:09 ----A---- C:\Windows\SysWOW64\instnm.exe 2012-11-20 20:25:08 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll 2012-11-20 20:25:08 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll 2012-11-20 20:25:08 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll 2012-11-20 20:25:08 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll 2012-11-20 20:25:08 ----A---- C:\Windows\SysWOW64\user.exe 2012-11-20 20:24:58 ----D---- C:\ProgramData\Creative 2012-11-20 20:24:48 ----A---- C:\Windows\SysWOW64\d3d10level9.dll 2012-11-20 20:24:19 ----A---- C:\Windows\SysWOW64\CmdRtr.DLL 2012-11-20 20:24:19 ----A---- C:\Windows\SysWOW64\APOMngr.DLL 2012-11-20 20:24:01 ----A---- C:\Windows\SysWOW64\atmfd.dll 2012-11-20 20:24:00 ----A---- C:\Windows\SysWOW64\atmlib.dll 2012-11-20 20:23:56 ----A---- C:\Windows\SysWOW64\fontsub.dll 2012-11-20 20:23:51 ----A---- C:\Windows\SysWOW64\ncsi.dll 2012-11-20 20:23:50 ----A---- C:\Windows\SysWOW64\nlaapi.dll 2012-11-20 20:23:50 ----A---- C:\Windows\SysWOW64\netevent.dll 2012-11-20 20:23:50 ----A---- C:\Windows\SysWOW64\netcorehc.dll 2012-11-20 20:22:42 ----A---- C:\Windows\SysWOW64\dnscacheugc.exe 2012-11-20 20:22:42 ----A---- C:\Windows\SysWOW64\dnsapi.dll 2012-11-20 20:22:35 ----A---- C:\Windows\SysWOW64\wintrust.dll 2012-11-20 20:22:31 ----A---- C:\Windows\SysWOW64\tzres.dll 2012-11-20 20:22:29 ----A---- C:\Windows\SysWOW64\INRES.DLL 2012-11-20 20:22:27 ----D---- C:\Program Files (x86)\Creative 2012-11-20 20:22:09 ----D---- C:\Program Files (x86)\Common Files\InstallShield 2012-11-20 20:21:33 ----A---- C:\Windows\SysWOW64\d3d10_1.dll 2012-11-20 20:21:30 ----A---- C:\Windows\SysWOW64\psisdecd.dll 2012-11-20 20:20:54 ----A---- C:\Windows\SysWOW64\kerberos.dll 2012-11-20 20:20:53 ----A---- C:\Windows\SysWOW64\msi.dll 2012-11-20 20:20:50 ----A---- C:\Windows\SysWOW64\synceng.dll 2012-11-20 20:20:37 ----A---- C:\Windows\SysWOW64\drvinst.exe 2012-11-20 20:20:37 ----A---- C:\Windows\SysWOW64\devrtl.dll 2012-11-20 20:20:37 ----A---- C:\Windows\SysWOW64\devobj.dll 2012-11-20 20:20:37 ----A---- C:\Windows\SysWOW64\cfgmgr32.dll 2012-11-20 20:20:36 ----A---- C:\Windows\SysWOW64\netapi32.dll 2012-11-20 20:20:36 ----A---- C:\Windows\SysWOW64\browcli.dll 2012-11-20 20:20:35 ----A---- C:\Windows\SysWOW64\prevhost.exe 2012-11-20 20:20:34 ----A---- C:\Windows\SysWOW64\srclient.dll 2012-11-20 20:20:17 ----A---- C:\Windows\SysWOW64\inetcomm.dll 2012-11-20 20:20:16 ----A---- C:\Windows\SysWOW64\msvcrt.dll 2012-11-20 20:19:40 ----A---- C:\Windows\SysWOW64\oleaut32.dll 2012-11-20 20:19:40 ----A---- C:\Windows\SysWOW64\oleacc.dll 2012-11-20 20:19:36 ----A---- C:\Windows\SysWOW64\EncDec.dll 2012-11-20 20:17:49 ----A---- C:\Windows\SysWOW64\cdosys.dll 2012-11-20 20:17:46 ----A---- C:\Windows\SysWOW64\ntdll.dll 2012-11-20 20:17:44 ----A---- C:\Windows\SysWOW64\win32spl.dll 2012-11-20 20:17:44 ----A---- C:\Windows\splwow64.exe 2012-11-20 20:17:40 ----A---- C:\Windows\SysWOW64\cryptsvc.dll 2012-11-20 20:17:40 ----A---- C:\Windows\SysWOW64\cryptnet.dll 2012-11-20 20:17:40 ----A---- C:\Windows\SysWOW64\crypt32.dll 2012-11-20 20:17:15 ----A---- C:\Windows\SysWOW64\packager.dll 2012-11-20 19:54:11 ----HD---- C:\ProgramData\Common Files 2012-11-20 19:54:11 ----D---- C:\ProgramData\MFAData 2012-11-20 19:47:42 ----D---- C:\Users\MarekMedved\AppData\Roaming\WinRAR 2012-11-20 19:37:40 ----D---- C:\ProgramData\NVIDIA 2012-11-20 19:37:27 ----D---- C:\Program Files (x86)\NVIDIA Corporation 2012-11-20 19:37:07 ----D---- C:\ProgramData\NVIDIA Corporation 2012-11-20 19:36:52 ----A---- C:\Windows\SysWOW64\OpenCL.dll 2012-11-20 19:36:52 ----A---- C:\Windows\SysWOW64\nvd3dum.dll 2012-11-20 19:36:52 ----A---- C:\Windows\SysWOW64\nvapi.dll 2012-11-20 19:35:40 ----A---- C:\Windows\SysWOW64\drivers\TBPanelx64.sys 2012-11-20 19:30:25 ----RA---- C:\Windows\SysWOW64\CSVer.dll 2012-11-20 19:30:25 ----D---- C:\Program Files (x86)\Intel 2012-11-20 19:30:08 ----D---- C:\Intel 2012-11-20 19:27:19 ----D---- C:\Users\MarekMedved\AppData\Roaming\Macromedia 2012-11-20 19:27:19 ----D---- C:\Users\MarekMedved\AppData\Roaming\Adobe 2012-11-20 19:26:57 ----D---- C:\Windows\Chipset 2012-11-20 19:26:57 ----A---- C:\Windows\AsTaskSched.dll 2012-11-20 19:26:52 ----A---- C:\Windows\SysWOW64\rdpcore.dll 2012-11-20 19:25:52 ----D---- C:\Program Files (x86)\ASM104xUSB3 2012-11-20 19:24:54 ----D---- C:\Program Files (x86)\Qualcomm Atheros WiFi Driver Installation 2012-11-20 19:24:46 ----HD---- C:\Program Files (x86)\InstallShield Installation Information 2012-11-20 19:21:55 ----D---- C:\ProgramData\Qualcomm Atheros 2012-11-20 19:17:33 ----SHD---- C:\Windows\Installer 2012-11-20 19:17:29 ----D---- C:\Program Files (x86)\Google 2012-11-20 19:13:30 ----A---- C:\Windows\Language_trs.ini 2012-11-20 19:13:21 ----A---- C:\Windows\Ascd_tmp.ini 2012-11-20 19:11:32 ----D---- C:\Users\MarekMedved\AppData\Roaming\Identities 2012-11-20 19:11:14 ----SD---- C:\Users\MarekMedved\AppData\Roaming\Microsoft 2012-11-20 19:11:14 ----D---- C:\Users\MarekMedved\AppData\Roaming\Media Center Programs 2012-11-20 01:58:28 ----D---- C:\Windows\SoftwareDistribution 2012-11-20 01:56:12 ----D---- C:\Windows\Prefetch 2012-11-20 01:50:57 ----D---- C:\Windows\Panther 2012-11-20 01:40:40 ----D---- C:\Windows.old.001
======List of files/folders modified in the last 1 month======
2012-12-09 20:40:04 ----D---- C:\Windows\Temp 2012-12-09 20:40:01 ----RD---- C:\Program Files (x86) 2012-12-09 20:06:42 ----SHD---- C:\System Volume Information 2012-12-09 20:06:37 ----D---- C:\Windows\Registration 2012-12-09 20:06:34 ----D---- C:\Windows 2012-12-09 20:06:24 ----RSD---- C:\Windows\assembly 2012-12-09 20:06:21 ----D---- C:\Windows\SysWOW64 2012-12-09 20:06:16 ----D---- C:\Windows\inf 2012-12-09 20:05:56 ----D---- C:\Program Files (x86)\Internet Explorer 2012-12-09 19:43:09 ----HD---- C:\ProgramData 2012-12-09 19:35:11 ----D---- C:\Windows\winsxs 2012-12-09 19:28:46 ----D---- C:\Program Files (x86)\Common Files 2012-12-09 19:17:54 ----D---- C:\torrent files 2012-12-07 13:40:26 ----D---- C:\Windows\SysWOW64\drivers 2012-12-07 13:40:26 ----D---- C:\Windows\System32 2012-12-06 13:55:35 ----D---- C:\Windows\Tasks 2012-12-02 22:42:44 ----SD---- C:\ProgramData\Microsoft 2012-12-02 15:04:22 ----RD---- C:\Program Files 2012-11-30 11:29:34 ----D---- C:\Windows\rescache 2012-11-29 00:30:30 ----D---- C:\Windows\AppPatch 2012-11-26 22:14:00 ----A---- C:\Windows\win.ini 2012-11-26 22:13:59 ----D---- C:\Program Files (x86)\Common Files\System 2012-11-26 18:47:07 ----D---- C:\Windows\Microsoft.NET 2012-11-26 18:26:19 ----D---- C:\Windows\Logs 2012-11-25 23:16:07 ----RSD---- C:\Windows\Fonts 2012-11-25 23:15:51 ----D---- C:\Program Files (x86)\Common Files\microsoft shared 2012-11-25 21:14:17 ----D---- C:\Program Files (x86)\MSBuild 2012-11-25 21:13:56 ----D---- C:\Windows\ShellNew 2012-11-23 15:06:56 ----D---- C:\Windows\debug 2012-11-23 14:56:34 ----D---- C:\mp3s 2012-11-22 21:25:39 ----D---- C:\Windows\SysWOW64\wbem 2012-11-22 21:25:39 ----D---- C:\Windows\SysWOW64\sk-SK 2012-11-22 21:25:39 ----D---- C:\Windows\SysWOW64\en-US 2012-11-22 21:25:39 ----D---- C:\Windows\PolicyDefinitions 2012-11-20 21:42:58 ----D---- C:\Windows\ehome 2012-11-20 21:42:47 ----D---- C:\Windows\SysWOW64\migration 2012-11-20 21:06:35 ----D---- C:\temp 2012-11-20 19:37:40 ----RD---- C:\Users 2012-11-20 19:37:11 ----D---- C:\Windows\Help 2012-11-20 19:11:28 ----SHD---- C:\$Recycle.Bin 2012-11-20 19:11:01 ----SHD---- C:\Recovery 2012-11-20 01:56:04 ----D---- C:\Windows\CSC 2012-11-20 01:50:46 ----RASH---- C:\BOOTSECT.BAK 2012-11-20 01:50:44 ----SHD---- C:\Boot
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 epfwwfp;epfwwfp; C:\Windows\system32\DRIVERS\epfwwfp.sys [] R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [] R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [] R1 avgtp;avgtp; \??\C:\Windows\system32\drivers\avgtpx64.sys [] R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [] R1 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys [] R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [] R1 EpfwLWF;Epfw NDIS LightWeight Filter; C:\Windows\system32\DRIVERS\EpfwLWF.sys [] R1 SCDEmu;SCDEmu; C:\Windows\SysWOW64\drivers\SCDEmu.sys [] R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [] R2 epfw;epfw; C:\Windows\system32\DRIVERS\epfw.sys [] R2 IDMWFP;IDMWFP; C:\Windows\system32\DRIVERS\idmwfp.sys [] R3 asmthub3;ASMedia USB3 Hub Service; C:\Windows\system32\DRIVERS\asmthub3.sys [] R3 asmtxhci;ASMEDIA XHCI Service; C:\Windows\system32\DRIVERS\asmtxhci.sys [] R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athrx.sys [] R3 e1cexpress;Intel(R) PRO/1000 PCI Express Network Connection Driver C; C:\Windows\system32\DRIVERS\e1c62x64.sys [] R3 Mac606;Mac606 Filter; C:\Windows\system32\DRIVERS\Mac606a.sys [2008-04-08 10600] R3 MEIx64;Intel(R) Management Engine Interface ; C:\Windows\system32\DRIVERS\HECIx64.sys [] R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda64v.sys [] R3 P17;SB Live! 24-bit; C:\Windows\system32\drivers\P17.sys [] S3 dmvsc;dmvsc; C:\Windows\system32\drivers\dmvsc.sys [] S3 IObitUnlocker;IObitUnlocker; \??\C:\Program Files (x86)\IObit\IObit Unlocker\IObitUnlocker.sys [2011-03-09 33184] S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [] S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [] S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [] S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [] S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [] S3 TBPanel;TBPanel; C:\Windows\SysWOW64\drivers\TBPanel.sys [] S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [] S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [] S3 vmbus;vmbus; C:\Windows\system32\drivers\vmbus.sys [] S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 20992] R2 CTAudSvcService;Creative Audio Service; C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe [2008-11-18 307200] R2 ekrn;ESET Service; C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe [2012-11-14 1329304] R2 Intel(R) PROSet Monitoring Service;Intel(R) PROSet Monitoring Service; C:\Windows\system32\IProsetMonitor.exe [] R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [] R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2012-10-10 1258856] R2 OODefragAgent;O&O Defrag; C:\Program Files\OO Software\Defrag\oodag.exe [2012-06-06 3293552] R2 PnkBstrA;PnkBstrA; C:\Windows\system32\PnkBstrA.exe [2012-12-09 66872] R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2012-10-02 382824] R2 vToolbarUpdater13.2.0;vToolbarUpdater13.2.0; C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\13.2.0\ToolbarUpdater.exe [2012-12-09 711112] S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2012-07-09 104912] S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2012-07-08 123856] S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-11-20 136176] S2 PnkBstrB;PnkBstrB; C:\Windows\system32\PnkBstrB.exe [2012-12-09 103736] S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 20992] S3 Creative Audio Engine Licensing Service;Creative Audio Engine Licensing Service; C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe [2012-11-20 79360] S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-11-20 136176] S3 IDriverT;InstallDriver Table Manager; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632] S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856] S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696] S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184] S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 20992] S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 20992] S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 20992] S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [] S4 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [] S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2012-07-09 139696] S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2012-07-09 139696] S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2012-07-09 139696]
-----------------EOF-----------------
|
|
Registrovaný: 09.05.11 Prihlásený: 20.12.18 Príspevky: 618 Témy: 2 | 2 | |
|
Kód: ComboFix 12-12-07.01 - MarekMedved . 12. 2012 20:51:32.1.4 - x64 Microsoft Windows 7 Professional 6.1.7601.1.1250.421.1051.18.8147.5957 [GMT 1:00] Running from: c:\users\MarekMedved\Downloads\ComboFix.exe AV: ESET Smart Security 6.0 *Enabled/Updated* {77DEAFED-8149-104B-25A1-21771CA47CD1} FW: ESET personal firewall *Enabled* {4FE52EC8-CB26-1113-0EFE-8842E2773BAA} SP: ESET Smart Security 6.0 *Enabled/Updated* {CCBF4E09-A773-1FC5-1F11-1A056723366C} SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} * Resident AV is active . . . ((((((((((((((((((((((((((((((((((((((( Other Deletions ))))))))))))))))))))))))))))))))))))))))))))))))) . . C:\nautoup.log c:\windows\pkunzip.pif c:\windows\pkzip.pif c:\windows\SysWow64\URTTemp c:\windows\SysWow64\URTTemp\regtlib.exe . . ((((((((((((((((((((((((( Files Created from 2012-11-09 to 2012-12-09 ))))))))))))))))))))))))))))))) . . 2012-12-09 19:59 . 2012-12-09 19:59 -------- d-----w- c:\users\Default\AppData\Local\temp 2012-12-09 19:40 . 2012-12-09 19:40 -------- d-----w- c:\program files (x86)\trend micro 2012-12-09 19:40 . 2012-12-09 19:40 -------- d-----w- C:\rsit 2012-12-09 19:06 . 2012-12-09 19:06 -------- d-----w- c:\program files (x86)\GameSpy 2012-12-09 19:04 . 2012-12-09 19:04 103736 ----a-w- c:\windows\SysWow64\PnkBstrB.exe 2012-12-09 19:04 . 2012-12-09 19:04 669184 ----a-w- c:\windows\SysWow64\pbsvc.exe 2012-12-09 19:04 . 2012-12-09 19:04 66872 ----a-w- c:\windows\SysWow64\PnkBstrA.exe 2012-12-09 18:43 . 2012-12-09 18:43 76232 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{D6837F05-2427-4677-AF6F-F7DD3C802702}\offreg.dll 2012-12-09 18:43 . 2012-12-09 18:43 178800 ----a-w- c:\windows\SysWow64\CmdLineExt_x64.dll 2012-12-09 18:43 . 2012-12-09 18:43 -------- dc-h--w- c:\programdata\{0691F710-1ECA-4B5A-9727-25554F1BFDC6} 2012-12-09 18:37 . 2012-12-09 18:37 1312 ----a-w- c:\windows\SysWow64\ealregsnapshot1.reg 2012-12-09 18:37 . 2012-12-09 18:37 -------- d-----w- c:\windows\SysWow64\Macromed 2012-12-09 18:28 . 2012-12-09 18:28 -------- d-----w- c:\programdata\AVG Secure Search 2012-12-09 18:28 . 2012-12-09 18:28 30568 ----a-w- c:\windows\system32\drivers\avgtpx64.sys 2012-12-09 18:28 . 2012-12-09 18:28 -------- d-----w- c:\program files (x86)\Common Files\AVG Secure Search 2012-12-09 18:28 . 2012-12-09 18:28 -------- d-----w- c:\program files (x86)\AVG Secure Search 2012-12-09 18:28 . 2012-12-09 18:29 -------- d-----w- c:\program files (x86)\PowerISO 2012-12-09 18:28 . 2012-08-24 07:56 126944 ----a-w- c:\windows\system32\drivers\scdemu.sys 2012-12-08 15:05 . 2012-11-08 17:24 9125352 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{D6837F05-2427-4677-AF6F-F7DD3C802702}\mpengine.dll 2012-12-07 12:40 . 2008-10-31 07:38 22576 ----a-w- c:\windows\system32\drivers\HidNt.sys 2012-12-07 12:40 . 2008-04-08 02:20 12776 ----a-w- c:\windows\system32\drivers\Mac606a.sys 2012-12-07 12:40 . 2009-03-29 06:38 47104 ----a-w- c:\windows\system32\ivl807a.dll 2012-12-07 12:40 . 2008-11-10 03:38 65072 ----a-w- c:\windows\system32\Hidhlp.dll 2012-12-07 12:40 . 2008-10-31 07:38 18992 ----a-w- c:\windows\SysWow64\drivers\HidNt.sys 2012-12-07 12:40 . 2008-04-08 02:20 10600 ----a-w- c:\windows\SysWow64\drivers\Mac606a.sys 2012-12-07 12:40 . 2009-03-29 06:38 49152 ----a-w- c:\windows\SysWow64\ivl807a.dll 2012-12-07 12:40 . 2008-11-10 03:38 64048 ----a-w- c:\windows\SysWow64\Hidhlp.dll 2012-12-07 12:40 . 2012-12-07 12:41 -------- d-----w- c:\program files (x86)\FTQ5C1 2012-12-05 14:30 . 2012-12-05 14:40 -------- d-----w- c:\program files (x86)\Crysis 2.Limited Edition.v 1.1.0.0 2012-12-04 20:15 . 2012-12-04 20:15 -------- d-----w- c:\program files (x86)\DsNET Corp 2012-12-03 12:23 . 2012-05-11 14:47 119568 ----a-w- c:\windows\SysWow64\VB6FR.DLL 2012-12-03 12:23 . 2012-05-11 14:47 101888 ----a-w- c:\windows\SysWow64\VB6STKIT.DLL 2012-12-03 12:23 . 2012-05-11 14:47 32768 ----a-w- c:\windows\SysWow64\CMDLGFR.DLL 2012-12-03 12:23 . 2012-05-11 14:47 152848 ----a-w- c:\windows\SysWow64\COMDLG32.OCX 2012-12-03 12:23 . 2012-05-11 14:47 141312 ----a-w- c:\windows\SysWow64\MSCMCFR.DLL 2012-12-02 15:28 . 2012-12-02 15:30 -------- d-----w- C:\CRYSIS EDITOR 2012-12-02 14:04 . 2012-12-02 14:04 -------- d-----w- c:\program files\Microsoft Silverlight 2012-12-02 14:04 . 2012-12-02 14:04 -------- d-----w- c:\program files (x86)\Microsoft Silverlight 2012-12-01 19:50 . 2012-12-06 12:43 -------- d-----w- C:\Fraps 2012-11-29 20:08 . 2012-11-29 20:24 -------- d-----w- C:\vylucenia 2012-11-28 10:07 . 2011-04-09 15:37 182272 --sh--w- c:\windows\data.dll 2012-11-27 23:23 . 2012-11-27 23:24 -------- d-----w- c:\programdata\Solidshield 2012-11-27 22:57 . 2012-11-27 22:57 -------- d-----w- c:\program files (x86)\Electronic Arts 2012-11-26 17:57 . 2012-11-26 17:57 -------- d-----w- c:\programdata\Electronic Arts 2012-11-26 17:57 . 2012-11-26 17:57 -------- d-----w- c:\programdata\EA Core 2012-11-26 17:47 . 2008-03-05 14:56 1860120 ----a-w- c:\windows\system32\D3DCompiler_37.dll 2012-11-26 16:11 . 2012-11-26 16:11 530488 ----a-w- c:\windows\system32\drivers\sptd.sys 2012-11-25 22:15 . 2012-11-25 22:15 -------- d-----w- c:\users\Default\AppData\Local\Microsoft Help 2012-11-25 20:14 . 2012-11-25 22:15 -------- d-----w- c:\program files (x86)\Microsoft Works 2012-11-25 20:13 . 2012-11-25 20:13 -------- d-----w- c:\windows\PCHEALTH 2012-11-25 20:11 . 2012-11-25 20:11 -------- d-----w- c:\program files\Microsoft Office 2012-11-25 20:11 . 2012-11-25 20:11 -------- d-----w- c:\program files (x86)\Microsoft Visual Studio 8 2012-11-25 20:09 . 2012-11-26 21:17 -------- d-----w- c:\programdata\Microsoft Help 2012-11-25 19:40 . 2012-11-25 19:43 -------- d-----w- c:\windows\system32\appmgmt 2012-11-24 20:19 . 2012-12-09 18:17 -------- d-----w- C:\finished torrents 2012-11-24 14:33 . 2012-11-24 14:33 -------- d-----w- c:\windows\system32\oodag 2012-11-24 14:29 . 2012-11-25 19:44 -------- d-----w- c:\program files\OO Software 2012-11-24 14:28 . 2012-11-24 14:30 -------- d-----w- c:\programdata\OO Software 2012-11-24 14:14 . 2012-11-24 14:14 -------- d-----w- c:\programdata\IObit 2012-11-24 14:13 . 2012-11-24 14:13 -------- d-----w- c:\program files (x86)\IObit 2012-11-24 13:28 . 2012-11-24 13:28 -------- d-----w- c:\program files (x86)\Abyssmedia 2012-11-24 12:33 . 2012-11-26 16:13 -------- d-----w- C:\_stare subory 2012-11-24 12:17 . 2012-12-09 18:17 -------- d-----w- C:\starting torrent files 2012-11-24 12:16 . 2012-11-24 12:16 -------- d-----w- c:\program files (x86)\uTorrent 2012-11-23 15:36 . 2012-11-23 15:38 -------- d-----w- c:\program files (x86)\CPU Speed Pro 2012-11-23 14:03 . 2012-11-23 14:05 -------- d-----w- c:\program files\CCleaner 2012-11-23 13:59 . 2012-11-23 13:59 -------- d-----w- c:\program files (x86)\Unlocker 2012-11-22 16:39 . 2012-11-22 16:39 -------- d-----w- c:\program files (x86)\Lavalys 2012-11-21 15:26 . 2012-11-21 15:26 -------- d-----w- C:\benzin_plyn 2012-11-21 14:39 . 2012-11-21 14:39 -------- d-----w- c:\program files\WinRAR 2012-11-21 14:27 . 2012-08-03 07:01 545 ----a-w- c:\windows\UC.PIF 2012-11-21 14:27 . 2012-08-03 07:01 545 ----a-w- c:\windows\RAR.PIF 2012-11-21 14:27 . 2012-08-03 07:01 545 ----a-w- c:\windows\LHA.PIF 2012-11-21 14:27 . 2012-08-03 07:01 545 ----a-w- c:\windows\ARJ.PIF 2012-11-21 14:02 . 2012-11-22 16:33 -------- d-----w- c:\program files\CPUID 2012-11-21 12:50 . 2012-11-25 20:13 -------- d-----w- c:\program files (x86)\Microsoft.NET 2012-11-20 20:42 . 2012-11-20 20:42 -------- d-----w- c:\windows\SysWow64\Wat 2012-11-20 20:42 . 2012-11-20 20:42 -------- d-----w- c:\windows\system32\Wat 2012-11-20 20:34 . 2012-07-26 04:55 785512 ----a-w- c:\windows\system32\drivers\Wdf01000.sys 2012-11-20 20:34 . 2012-07-26 04:55 54376 ----a-w- c:\windows\system32\drivers\WdfLdr.sys 2012-11-20 20:34 . 2012-07-26 04:47 2560 ----a-w- c:\windows\system32\drivers\en-US\wdf01000.sys.mui 2012-11-20 20:34 . 2012-07-26 02:36 9728 ----a-w- c:\windows\system32\Wdfres.dll 2012-11-20 20:06 . 2012-10-02 19:51 3536817 ----a-w- c:\windows\system32\nvcoproc.bin 2012-11-20 19:51 . 2010-02-23 08:16 294912 ----a-w- c:\windows\system32\browserchoice.exe 2012-11-20 19:44 . 2012-10-29 20:04 66395536 ----a-w- c:\windows\system32\MRT.exe 2012-11-20 19:44 . 2012-07-26 02:26 87040 ----a-w- c:\windows\system32\drivers\WUDFPf.sys 2012-11-20 19:44 . 2012-07-26 02:26 198656 ----a-w- c:\windows\system32\drivers\WUDFRd.sys 2012-11-20 19:43 . 2012-07-26 03:08 84992 ----a-w- c:\windows\system32\WUDFSvc.dll 2012-11-20 19:43 . 2012-07-26 03:08 194048 ----a-w- c:\windows\system32\WUDFPlatform.dll 2012-11-20 19:43 . 2012-07-26 03:08 229888 ----a-w- c:\windows\system32\WUDFHost.exe 2012-11-20 19:43 . 2012-07-26 03:08 744448 ----a-w- c:\windows\system32\WUDFx.dll 2012-11-20 19:43 . 2012-07-26 03:08 45056 ----a-w- c:\windows\system32\WUDFCoinstaller.dll 2012-11-20 19:40 . 2012-03-01 06:46 23408 ----a-w- c:\windows\system32\drivers\fs_rec.sys 2012-11-20 19:40 . 2012-03-01 06:33 81408 ----a-w- c:\windows\system32\imagehlp.dll 2012-11-20 19:40 . 2012-03-01 06:28 5120 ----a-w- c:\windows\system32\wmi.dll 2012-11-20 19:40 . 2012-03-01 05:33 159232 ----a-w- c:\windows\SysWow64\imagehlp.dll 2012-11-20 19:40 . 2012-03-01 05:29 5120 ----a-w- c:\windows\SysWow64\wmi.dll 2012-11-20 19:39 . 2012-11-20 19:39 -------- d-----w- c:\program files\ESET 2012-11-20 19:30 . 2012-08-31 18:19 1659760 ----a-w- c:\windows\system32\drivers\ntfs.sys 2012-11-20 19:27 . 2011-07-09 02:46 288768 ----a-w- c:\windows\system32\drivers\mrxsmb10.sys 2012-11-20 19:26 . 2011-03-12 12:08 1465344 ----a-w- c:\windows\system32\XpsPrint.dll 2012-11-20 19:26 . 2011-03-12 11:23 870912 ----a-w- c:\windows\SysWow64\XpsPrint.dll 2012-11-20 19:26 . 2012-11-20 19:26 -------- d-----w- c:\program files\Creative 2012-11-20 19:26 . 2011-03-11 06:34 1359872 ----a-w- c:\windows\system32\mfc42u.dll 2012-11-20 19:26 . 2011-03-11 06:34 1395712 ----a-w- c:\windows\system32\mfc42.dll 2012-11-20 19:26 . 2011-03-11 05:33 1164288 ----a-w- c:\windows\SysWow64\mfc42u.dll 2012-11-20 19:26 . 2011-03-11 05:33 1137664 ----a-w- c:\windows\SysWow64\mfc42.dll 2012-11-20 19:26 . 2012-06-09 05:43 14172672 ----a-w- c:\windows\system32\shell32.dll 2012-11-20 19:24 . 2012-11-20 19:24 -------- d-----w- c:\programdata\Creative 2012-11-20 19:23 . 2010-09-30 06:47 70656 ----a-w- c:\windows\SysWow64\fontsub.dll 2012-11-20 19:22 . 2011-04-22 22:15 27520 ----a-w- c:\windows\system32\drivers\Diskdump.sys 2012-11-20 19:21 . 2011-01-17 11:09 197120 ----a-w- c:\windows\system32\d3d10_1.dll 2012-11-20 19:21 . 2011-01-17 05:47 161792 ----a-w- c:\windows\SysWow64\d3d10_1.dll 2012-11-20 19:21 . 2011-04-29 03:06 467456 ----a-w- c:\windows\system32\drivers\srv.sys 2012-11-20 19:21 . 2011-04-29 03:05 410112 ----a-w- c:\windows\system32\drivers\srv2.sys 2012-11-20 19:21 . 2011-04-29 03:05 168448 ----a-w- c:\windows\system32\drivers\srvnet.sys 2012-11-20 19:21 . 2011-08-17 05:26 613888 ----a-w- c:\windows\system32\psisdecd.dll 2012-11-20 19:21 . 2011-08-17 05:25 108032 ----a-w- c:\windows\system32\psisrndr.ax 2012-11-20 19:21 . 2011-08-17 04:24 465408 ----a-w- c:\windows\SysWow64\psisdecd.dll 2012-11-20 19:21 . 2011-08-17 04:19 75776 ----a-w- c:\windows\SysWow64\psisrndr.ax 2012-11-20 19:21 . 2012-04-28 03:55 210944 ----a-w- c:\windows\system32\drivers\rdpwd.sys 2012-11-20 19:19 . 2012-05-14 05:26 956928 ----a-w- c:\windows\system32\localspl.dll 2012-11-20 19:19 . 2011-02-23 04:55 90624 ----a-w- c:\windows\system32\drivers\bowser.sys 2012-11-20 19:19 . 2011-08-27 05:37 861696 ----a-w- c:\windows\system32\oleaut32.dll 2012-11-20 19:19 . 2011-08-27 05:37 331776 ----a-w- c:\windows\system32\oleacc.dll . . (((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))))) . 2012-10-16 08:38 . 2012-11-28 20:49 135168 ----a-w- c:\windows\apppatch\AppPatch64\AcXtrnal.dll 2012-10-16 08:38 . 2012-11-28 20:49 350208 ----a-w- c:\windows\apppatch\AppPatch64\AcLayers.dll 2012-10-16 07:39 . 2012-11-28 20:49 561664 ----a-w- c:\windows\apppatch\AcLayers.dll 2012-10-10 20:23 . 2012-10-10 20:23 247144 ----a-w- c:\windows\system32\nvinitx.dll 2012-10-10 20:23 . 2012-10-10 20:23 1867112 ----a-w- c:\windows\SysWow64\nvcuvenc.dll 2012-10-10 20:23 . 2012-10-10 20:23 18252136 ----a-w- c:\windows\system32\nvd3dumx.dll 2012-10-10 20:23 . 2012-10-10 20:23 1482600 ----a-w- c:\windows\system32\nvdispgenco64.dll 2012-10-10 20:23 . 2012-10-10 20:23 6127464 ----a-w- c:\windows\SysWow64\nvopencl.dll 2012-10-10 20:23 . 2012-10-10 20:23 2574696 ----a-w- c:\windows\SysWow64\nvcuvid.dll 2012-10-10 20:23 . 2012-10-10 20:23 25256296 ----a-w- c:\windows\system32\nvcompiler.dll 2012-10-10 20:23 . 2012-10-10 20:23 831848 ----a-w- c:\windows\SysWow64\nvumdshim.dll 2012-10-10 20:23 . 2012-10-10 20:23 202600 ----a-w- c:\windows\SysWow64\nvinit.dll 2012-10-10 20:23 . 2012-10-10 20:23 7414632 ----a-w- c:\windows\system32\nvopencl.dll 2012-10-10 20:23 . 2012-10-10 20:23 973672 ----a-w- c:\windows\system32\nvumdshimx.dll 2012-10-10 20:23 . 2012-10-10 20:23 14922600 ----a-w- c:\windows\system32\nvwgf2umx.dll 2012-10-10 20:23 . 2012-10-10 20:23 9146728 ----a-w- c:\windows\system32\nvcuda.dll 2012-10-10 20:23 . 2012-10-10 20:23 7697768 ----a-w- c:\windows\SysWow64\nvcuda.dll 2012-10-10 20:23 . 2012-10-10 20:23 2218344 ----a-w- c:\windows\system32\nvcuvenc.dll 2012-10-10 20:23 . 2012-10-10 20:23 12501352 ----a-w- c:\windows\SysWow64\nvwgf2um.dll 2012-10-10 20:22 . 2012-10-10 20:22 26331496 ----a-w- c:\windows\system32\nvoglv64.dll 2012-10-10 20:22 . 2012-10-10 20:22 1760104 ----a-w- c:\windows\system32\nvdispco64.dll 2012-10-10 20:22 . 2012-10-10 20:22 2747240 ----a-w- c:\windows\system32\nvcuvid.dll 2012-10-10 20:22 . 2012-10-10 20:22 19906920 ----a-w- c:\windows\SysWow64\nvoglv32.dll 2012-10-10 20:22 . 2012-10-10 20:22 13443944 ----a-w- c:\windows\system32\drivers\nvlddmkm.sys 2012-10-10 20:22 . 2012-10-10 20:22 17559912 ----a-w- c:\windows\SysWow64\nvcompiler.dll 2012-10-08 07:21 . 2012-10-08 07:21 64072 ----a-w- c:\windows\system32\drivers\epfwwfp.sys 2012-10-08 07:21 . 2012-10-08 07:21 59440 ----a-w- c:\windows\system32\drivers\EpfwLWF.sys 2012-10-08 07:21 . 2012-10-08 07:21 189208 ----a-w- c:\windows\system32\drivers\epfw.sys 2012-10-08 07:21 . 2012-10-08 07:21 149592 ----a-w- c:\windows\system32\drivers\ehdrv.sys 2012-10-08 07:21 . 2012-10-08 07:21 211344 ----a-w- c:\windows\system32\drivers\eamonm.sys 2012-10-02 12:15 . 2012-10-02 12:15 430952 ----a-w- c:\windows\SysWow64\nvStreaming.exe 2012-09-19 15:57 . 2012-09-19 15:57 17896 ----a-w- c:\windows\system32\msvcr100_clr0400.dll 2011-04-09 15:37 182272 --sh--w- c:\windows\data.dll . . ((((((((((((((((((((((((((((((((((((( Reg Loading Points )))))))))))))))))))))))))))))))))))))))))))))))))) . . *Note* empty entries & legit default entries are not shown REGEDIT4 . [HKEY_LOCAL_MACHINE\Wow6432Node\~\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}] 2012-12-09 18:28 1796552 ----a-w- c:\program files (x86)\AVG Secure Search\13.2.0.4\AVG Secure Search_toolbar.dll . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar] "{95B7759C-8C7F-4BF1-B163-73684A933233}"= "c:\program files (x86)\AVG Secure Search\13.2.0.4\AVG Secure Search_toolbar.dll" [2012-12-09 1796552] . [HKEY_CLASSES_ROOT\clsid\{95b7759c-8c7f-4bf1-b163-73684a933233}] [HKEY_CLASSES_ROOT\AVG Secure Search.PugiObj.1] [HKEY_CLASSES_ROOT\AVG Secure Search.PugiObj] . [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2010-11-21 1475584] "IDMan"="e:\_nainstalovane programy\Internet Download Manager\idman.exe" [2011-07-18 3405208] "Comrade.exe"="c:\program files (x86)\GameSpy\Comrade\Comrade.exe" [2007-06-29 36864] . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run] "GrooveMonitor"="c:\program files (x86)\Microsoft Office\Office12\GrooveMonitor.exe" [2009-02-26 30040] "vProt"="c:\program files (x86)\AVG Secure Search\vprot.exe" [2012-12-09 997320] "ROC_roc_ssl_v12"="c:\program files (x86)\AVG Secure Search\ROC_roc_ssl_v12.exe" [2012-12-09 1020512] "PWRISOVM.EXE"="c:\program files (x86)\PowerISO\PWRISOVM.EXE" [2012-08-24 336992] . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "ConsentPromptBehaviorAdmin"= 5 (0x5) "ConsentPromptBehaviorUser"= 3 (0x3) "EnableUIADesktopToggle"= 0 (0x0) . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows] "LoadAppInit_DLLs"=1 (0x1) . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32] "mixer5"=wdmaud.drv . [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager] BootExecute REG_MULTI_SZ autocheck autochk *\0OODBS . R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2012-07-08 123856] R3 Creative Audio Engine Licensing Service;Creative Audio Engine Licensing Service;c:\program files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe [2012-11-20 79360] R3 dmvsc;dmvsc;c:\windows\system32\drivers\dmvsc.sys [2010-11-21 71168] R3 IObitUnlocker;IObitUnlocker;c:\program files (x86)\IObit\IObit Unlocker\IObitUnlocker.sys [2011-03-09 33184] R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys [2012-08-23 19456] R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2012-08-23 57856] R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys [2012-08-23 30208] R3 WatAdminSvc;Služba Windows Activation Technologies;c:\windows\system32\Wat\WatAdminSvc.exe [2012-11-20 1255736] S0 epfwwfp;epfwwfp;c:\windows\system32\DRIVERS\epfwwfp.sys [2012-10-08 64072] S0 sptd;sptd;c:\windows\\SystemRoot\System32\Drivers\sptd.sys [x] S1 avgtp;avgtp;c:\windows\system32\drivers\avgtpx64.sys [2012-12-09 30568] S1 eamonm;eamonm;c:\windows\system32\DRIVERS\eamonm.sys [2012-10-08 211344] S1 ehdrv;ehdrv;c:\windows\system32\DRIVERS\ehdrv.sys [2012-10-08 149592] S1 EpfwLWF;Epfw NDIS LightWeight Filter;c:\windows\system32\DRIVERS\EpfwLWF.sys [2012-10-08 59440] S2 ekrn;ESET Service;c:\program files\ESET\ESET Smart Security\x86\ekrn.exe [2012-11-14 1329304] S2 IDMWFP;IDMWFP;c:\windows\system32\DRIVERS\idmwfp.sys [2011-07-06 145008] S2 Intel(R) PROSet Monitoring Service;Intel(R) PROSet Monitoring Service;c:\windows\system32\IProsetMonitor.exe [2011-11-09 189608] S2 OODefragAgent;O&O Defrag;c:\program files\OO Software\Defrag\oodag.exe [2012-06-06 3293552] S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2012-10-02 382824] S2 vToolbarUpdater13.2.0;vToolbarUpdater13.2.0;c:\program files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\13.2.0\ToolbarUpdater.exe [2012-12-09 711112] S3 asmthub3;ASMedia USB3 Hub Service;c:\windows\system32\DRIVERS\asmthub3.sys [2011-11-03 130536] S3 asmtxhci;ASMEDIA XHCI Service;c:\windows\system32\DRIVERS\asmtxhci.sys [2011-11-03 395752] S3 Mac606;Mac606 Filter;c:\windows\system32\DRIVERS\Mac606a.sys [2008-04-08 12776] . . --- Other Services/Drivers In Memory --- . *NewlyCreated* - SCDEMU . . --------- X64 Entries ----------- . . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\IDM Shell Extension] @="{CDC95B92-E27C-4745-A8C5-64A52A78855D}" [HKEY_CLASSES_ROOT\CLSID\{CDC95B92-E27C-4745-A8C5-64A52A78855D}] 2011-05-30 16:50 22408 ----a-w- e:\_nainstalovane programy\Internet Download Manager\IDMShellExt64.dll . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "egui"="c:\program files\ESET\ESET Smart Security\egui.exe" [2012-11-14 6325424] "OODefragTray"="c:\program files\OO Software\Defrag\oodtray.exe" [2012-06-06 3998064] . ------- Supplementary Scan ------- . uLocal Page = c:\windows\system32\blank.htm mLocal Page = c:\windows\SysWOW64\blank.htm IE: E&xportovat do aplikace Microsoft Excel - c:\progra~2\MICROS~1\Office12\EXCEL.EXE/3000 IE: Stiahnuť s IDM - e:\_nainstalovane programy\Internet Download Manager\IEExt.htm IE: Stiahnuť s IDM všetky prepojenia - e:\_nainstalovane programy\Internet Download Manager\IEGetAll.htm TCP: DhcpNameServer = 192.168.0.1 Handler: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - c:\program files (x86)\Common Files\AVG Secure Search\ViProtocolInstaller\13.2.0\ViProtocol.dll . - - - - ORPHANS REMOVED - - - - . AddRemove-FTQ5C1 - c:\program files (x86)\FTQ5C1\uninst.exe AddRemove-PunkBusterSvc - c:\windows\system32\pbsvc.exe . . . --------------------- LOCKED REGISTRY KEYS --------------------- . [HKEY_USERS\S-1-5-21-2150537740-2270024768-3259585903-1000_Classes\Wow6432Node\CLSID\{28547fc3-0bb1-4c27-80a3-40c8eb722965}] @Denied: (Full) (Everyone) @Allowed: (Read) (RestrictedCode) "Model"=dword:00000157 "Therad"=dword:00000008 . [HKEY_USERS\S-1-5-21-2150537740-2270024768-3259585903-1000_Classes\Wow6432Node\CLSID\{5ED60779-4DE2-4E07-B862-974CA4FF2E9C}] @Denied: (Full) (Everyone) @Allowed: (Read) (RestrictedCode) "scansk"=hex(0):c6,60,86,77,07,9d,5c,49,a4,87,0e,09,0c,28,d9,82,50,49,25,db,8f, e8,87,fe,15,82,1e,63,b7,ca,0a,14,f3,4a,4a,68,fe,3f,00,a6,00,00,00,00,00,00,\ . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Shockwave Flash Object" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash9f.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus] @="0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID] @="ShockwaveFlash.ShockwaveFlash.9" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash9f.ocx, 1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="ShockwaveFlash.ShockwaveFlash" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Macromedia Flash Factory Object" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash9f.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID] @="FlashFactory.FlashFactory.1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash9f.ocx, 1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="FlashFactory.FlashFactory" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D4304BCF-B8E9-4B35-BEA0-DC5B522670C2}] @Denied: (A 2) (Everyone) @="FlashBroker" "LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil9f.exe,-101" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D4304BCF-B8E9-4B35-BEA0-DC5B522670C2}\Elevation] "Enabled"=dword:00000001 . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D4304BCF-B8E9-4B35-BEA0-DC5B522670C2}\LocalServer32] @="c:\\Windows\\SysWow64\\Macromed\\Flash\\FlashUtil9f.exe" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D4304BCF-B8E9-4B35-BEA0-DC5B522670C2}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{2E4BB6BE-A75F-4DC0-9500-68203655A2C4}] @Denied: (A 2) (Everyone) @="IFlashBroker" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{2E4BB6BE-A75F-4DC0-9500-68203655A2C4}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{2E4BB6BE-A75F-4DC0-9500-68203655A2C4}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" "Version"="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\System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ontrolSet001\Control\PCW\Security] @Denied: (Full) (Everyone) . Completion time: 2012-12-09 21:00:44 ComboFix-quarantined-files.txt 2012-12-09 20:00 . Pre-Run: 288 838 512 640 bytes free Post-Run: 288 799 707 136 bytes free . - - End Of File - - B18BD25BAF03EFBD26D3AA3E1A177E6B
|
|
Registrovaný: 09.05.11 Prihlásený: 20.12.18 Príspevky: 618 Témy: 2 | 2 | |
|
vypis z posledneho : http://uloz.to/xjYBNGM/killer-txtnedavno som odinstaloval claro search,driver detect Niektore veci sa mi podarili odstranit(malware) s ESET Rogue Applications Remover 1.0.2 64-bit. *Nebude to chyba aj v Biose?
|
|
Registrovaný: 09.05.11 Prihlásený: 20.12.18 Príspevky: 618 Témy: 2 | 2 |
a co combofix a MBAM kde sú vysledky
|
|
|
Tuto temu povazujem za vyriesenu. Dovod , v Biose bola vypnuta funkcia EIST (Intel chipset),a preto to zamrzalo(male napatie,nizky takt).Preto mi mrzol system pri starte(asi 20sec uvodne logo),dialo sa to semtam aj pri hrani Crysis2,vystrelil som a hra Freeze,aj OS. Po 20sec vsetko bezalo normalne.
|
|
Stránka: 1 z 1
| [ Príspevkov: 9 ] | |
|