[ Príspevkov: 9 ] 
AutorSpráva
Offline

Zmazaný užívateľ
Zmazaný užívateľ
Obrázok užívateľa
NapísalOffline : 08.12.2012 19:40 | Mrznutie Systemu

Stale mi mrzne WIn7 ,hlavne pri starte. Ide pohybat mysou,klavesy reaguju. Musim stlacit crtl+alt+del.
Dalej mi toto robi aj u Crysis 2(niekedy na 10s).
(oT:keby som mal taku silu ako crysis2 tak ten PC by bol asi na srot :-D ).
Casto to robi u Googlechrome.
Bude to nieco s HW alebo v SW OS2?
*Lebo ma to uz zacina hnevat :jaw: .
*A najviac ma vie vytocit to dlhe startovanie OS2.

? Virus?


Offline

Užívateľ
Užívateľ
Obrázok užívateľa

Registrovaný: 09.05.11
Prihlásený: 20.12.18
Príspevky: 618
Témy: 2 | 2
NapísalOffline : 08.12.2012 20:07 | Mrznutie Systemu

vlož log z rsit http://en.kioskea.net/download/download-11416-rsit


Offline

Zmazaný užívateľ
Zmazaný užívateľ
Obrázok užívateľa
Napísal autor témyOffline : 08.12.2012 20:40 | Mrznutie Systemu

log

Kód:
Logfile of random's system information tool 1.09 (written by random/random)
Run by MarekMedved at 2012-12-09 20:40:00
Microsoft Windows 7 Professional  Service Pack 1
System drive C: has 276 GB (58%) free of 477 GB
Total RAM: 8147 MB (73% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:40:06, on 9. 12. 2012
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16455)
Boot mode: Normal

Running processes:
E:\_nainstalovane programy\Internet Download Manager\idman.exe
C:\Program Files (x86)\AVG Secure Search\vprot.exe
C:\Program Files (x86)\PowerISO\PWRISOVM.EXE
E:\_nainstalovane programy\Internet Download Manager\IEMonitor.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\MarekMedved\Downloads\RSIT (1).exe
C:\Program Files (x86)\trend micro\MarekMedved.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: AVG Security Toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG Secure Search\13.2.0.4\AVG Secure Search_toolbar.dll
O3 - Toolbar: AVG Security Toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG Secure Search\13.2.0.4\AVG Secure Search_toolbar.dll
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [vProt] "C:\Program Files (x86)\AVG Secure Search\vprot.exe"
O4 - HKLM\..\Run: [ROC_roc_ssl_v12] "C:\Program Files (x86)\AVG Secure Search\ROC_roc_ssl_v12.exe" / /PROMPT /CMPID=roc_ssl_v12
O4 - HKLM\..\Run: [PWRISOVM.EXE] C:\Program Files (x86)\PowerISO\PWRISOVM.EXE -startup
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [IDMan] E:\_nainstalovane programy\Internet Download Manager\idman.exe /onboot
O4 - HKCU\..\Run: [Comrade.exe] C:\Program Files (x86)\GameSpy\Comrade\Comrade.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-21-2150537740-2270024768-3259585903-1003\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-2150537740-2270024768-3259585903-1003\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'UpdatusUser')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Stiahnuť s IDM - E:\_nainstalovane programy\Internet Download Manager\IEExt.htm
O8 - Extra context menu item: Stiahnuť s IDM všetky prepojenia - E:\_nainstalovane programy\Internet Download Manager\IEGetAll.htm
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files (x86)\Common Files\AVG Secure Search\ViProtocolInstaller\13.2.0\ViProtocol.dll
O20 - AppInit_DLLs: C:\Windows\data.dll
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Creative Audio Engine Licensing Service - Creative Labs - C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe
O23 - Service: Creative Audio Service (CTAudSvcService) - Creative Technology Ltd - C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Intel(R) PROSet Monitoring Service - Unknown owner - C:\Windows\system32\IProsetMonitor.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: O&O Defrag (OODefragAgent) - O&O Software GmbH - C:\Program Files\OO Software\Defrag\oodag.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: PnkBstrB - Unknown owner - C:\Windows\system32\PnkBstrB.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: vToolbarUpdater13.2.0 - Unknown owner - C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\13.2.0\ToolbarUpdater.exe
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 9724 bytes

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}]
AVG Security Toolbar - C:\Program Files (x86)\AVG Secure Search\13.2.0.4\AVG Secure Search_toolbar.dll [2012-12-09 1796552]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{95B7759C-8C7F-4BF1-B163-73684A933233} - AVG Security Toolbar - C:\Program Files (x86)\AVG Secure Search\13.2.0.4\AVG Secure Search_toolbar.dll [2012-12-09 1796552]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"GrooveMonitor"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040]
"vProt"=C:\Program Files (x86)\AVG Secure Search\vprot.exe [2012-12-09 997320]
"ROC_roc_ssl_v12"=C:\Program Files (x86)\AVG Secure Search\ROC_roc_ssl_v12.exe [2012-12-09 1020512]
"PWRISOVM.EXE"=C:\Program Files (x86)\PowerISO\PWRISOVM.EXE [2012-08-24 336992]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-21 1475584]
"IDMan"=E:\_nainstalovane programy\Internet Download Manager\idman.exe [2011-07-18 3405208]
"Comrade.exe"=C:\Program Files (x86)\GameSpy\Comrade\Comrade.exe [2007-06-29 36864]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\Windows\data.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\SysWOW64\l3codeca.acm
"vidc.cvid"=iccvid.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave5"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer5"=wdmaud.drv
"VIDC.FPS1"=frapsvid.dll
"VIDC.FMVC"=fmcodec.dll

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2012-12-09 20:40:01 ----D---- C:\Program Files (x86)\trend micro
2012-12-09 20:40:00 ----D---- C:\rsit
2012-12-09 20:06:57 ----D---- C:\Program Files (x86)\GameSpy
2012-12-09 20:05:56 ----D---- C:\Windows\SysWOW64\URTTEMP
2012-12-09 20:05:43 ----RHD---- C:\Users\MarekMedved\AppData\Roaming\SecuROM
2012-12-09 20:04:48 ----A---- C:\Windows\SysWOW64\PnkBstrB.exe
2012-12-09 20:04:47 ----A---- C:\Windows\SysWOW64\PnkBstrA.exe
2012-12-09 20:04:47 ----A---- C:\Windows\SysWOW64\pbsvc.exe
2012-12-09 19:43:28 ----A---- C:\Windows\SysWOW64\CmdLineExt_x64.dll
2012-12-09 19:43:09 ----HDC---- C:\ProgramData\{0691F710-1ECA-4B5A-9727-25554F1BFDC6}
2012-12-09 19:37:05 ----D---- C:\Windows\SysWOW64\Macromed
2012-12-09 19:29:35 ----D---- C:\Users\MarekMedved\AppData\Roaming\PowerISO
2012-12-09 19:28:55 ----D---- C:\ProgramData\AVG Secure Search
2012-12-09 19:28:46 ----D---- C:\Program Files (x86)\Common Files\AVG Secure Search
2012-12-09 19:28:45 ----D---- C:\Program Files (x86)\AVG Secure Search
2012-12-09 19:28:19 ----D---- C:\Program Files (x86)\PowerISO
2012-12-07 13:40:26 ----A---- C:\Windows\SysWOW64\drivers\Mac606a.sys
2012-12-07 13:40:26 ----A---- C:\Windows\SysWOW64\drivers\HidNt.sys
2012-12-07 13:40:25 ----A---- C:\Windows\SysWOW64\ivl807a.dll
2012-12-07 13:40:25 ----A---- C:\Windows\SysWOW64\Hidhlp.dll
2012-12-07 13:40:24 ----D---- C:\Program Files (x86)\FTQ5C1
2012-12-05 15:30:06 ----D---- C:\Program Files (x86)\Crysis 2.Limited Edition.v 1.1.0.0
2012-12-04 21:15:59 ----D---- C:\Program Files (x86)\DsNET Corp
2012-12-03 13:23:47 ----A---- C:\Windows\SysWOW64\VB6STKIT.DLL
2012-12-03 13:23:47 ----A---- C:\Windows\SysWOW64\VB6FR.DLL
2012-12-03 13:23:46 ----D---- C:\Users\MarekMedved\AppData\Roaming\TFP
2012-12-03 13:23:46 ----A---- C:\Windows\SysWOW64\MSCMCFR.DLL
2012-12-03 13:23:46 ----A---- C:\Windows\SysWOW64\CMDLGFR.DLL
2012-12-02 16:28:46 ----D---- C:\CRYSIS EDITOR
2012-12-02 15:04:22 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2012-12-02 01:02:34 ----D---- C:\Users\MarekMedved\AppData\Roaming\IDM
2012-12-02 01:02:33 ----D---- C:\Users\MarekMedved\AppData\Roaming\DMCache
2012-12-01 20:50:00 ----D---- C:\Fraps
2012-11-29 21:08:25 ----D---- C:\vylucenia
2012-11-28 11:07:23 ----SH---- C:\Windows\data.dll
2012-11-28 00:23:46 ----D---- C:\ProgramData\Solidshield
2012-11-27 23:57:47 ----D---- C:\Program Files (x86)\Electronic Arts
2012-11-27 23:52:25 ----D---- C:\Users\MarekMedved\AppData\Roaming\IObit
2012-11-26 20:09:00 ----A---- C:\Windows\SysWOW64\bassmod.dll
2012-11-26 18:57:53 ----D---- C:\ProgramData\Electronic Arts
2012-11-26 18:57:53 ----D---- C:\ProgramData\EA Core
2012-11-26 18:48:18 ----A---- C:\Windows\SysWOW64\XAudio2_7.dll
2012-11-26 18:48:18 ----A---- C:\Windows\SysWOW64\XAPOFX1_5.dll
2012-11-26 18:48:18 ----A---- C:\Windows\SysWOW64\xactengine3_7.dll
2012-11-26 18:48:17 ----A---- C:\Windows\SysWOW64\D3DCompiler_43.dll
2012-11-26 18:48:16 ----A---- C:\Windows\SysWOW64\D3DX9_43.dll
2012-11-26 18:48:16 ----A---- C:\Windows\SysWOW64\d3dx11_43.dll
2012-11-26 18:48:16 ----A---- C:\Windows\SysWOW64\d3dx10_43.dll
2012-11-26 18:48:16 ----A---- C:\Windows\SysWOW64\d3dcsx_43.dll
2012-11-26 18:48:15 ----A---- C:\Windows\SysWOW64\XAudio2_6.dll
2012-11-26 18:48:15 ----A---- C:\Windows\SysWOW64\XAPOFX1_4.dll
2012-11-26 18:48:15 ----A---- C:\Windows\SysWOW64\xactengine3_6.dll
2012-11-26 18:48:15 ----A---- C:\Windows\SysWOW64\X3DAudio1_7.dll
2012-11-26 18:48:14 ----A---- C:\Windows\SysWOW64\XAudio2_5.dll
2012-11-26 18:48:13 ----A---- C:\Windows\SysWOW64\xactengine3_5.dll
2012-11-26 18:48:13 ----A---- C:\Windows\SysWOW64\D3DCompiler_42.dll
2012-11-26 18:48:12 ----A---- C:\Windows\SysWOW64\D3DX9_42.dll
2012-11-26 18:48:12 ----A---- C:\Windows\SysWOW64\d3dx11_42.dll
2012-11-26 18:48:12 ----A---- C:\Windows\SysWOW64\d3dx10_42.dll
2012-11-26 18:48:12 ----A---- C:\Windows\SysWOW64\d3dcsx_42.dll
2012-11-26 18:48:11 ----A---- C:\Windows\SysWOW64\D3DX9_41.dll
2012-11-26 18:48:11 ----A---- C:\Windows\SysWOW64\d3dx10_41.dll
2012-11-26 18:48:11 ----A---- C:\Windows\SysWOW64\D3DCompiler_41.dll
2012-11-26 18:48:10 ----A---- C:\Windows\SysWOW64\XAudio2_4.dll
2012-11-26 18:48:10 ----A---- C:\Windows\SysWOW64\XAPOFX1_3.dll
2012-11-26 18:48:10 ----A---- C:\Windows\SysWOW64\xactengine3_4.dll
2012-11-26 18:48:09 ----A---- C:\Windows\SysWOW64\X3DAudio1_6.dll
2012-11-26 18:48:09 ----A---- C:\Windows\SysWOW64\d3dx10_40.dll
2012-11-26 18:48:09 ----A---- C:\Windows\SysWOW64\D3DCompiler_40.dll
2012-11-26 18:48:08 ----A---- C:\Windows\SysWOW64\XAudio2_3.dll
2012-11-26 18:48:08 ----A---- C:\Windows\SysWOW64\XAPOFX1_2.dll
2012-11-26 18:48:08 ----A---- C:\Windows\SysWOW64\D3DX9_40.dll
2012-11-26 18:48:07 ----A---- C:\Windows\SysWOW64\xactengine3_3.dll
2012-11-26 18:48:06 ----A---- C:\Windows\SysWOW64\X3DAudio1_5.dll
2012-11-26 18:48:05 ----A---- C:\Windows\SysWOW64\XAudio2_2.dll
2012-11-26 18:48:05 ----A---- C:\Windows\SysWOW64\XAPOFX1_1.dll
2012-11-26 18:48:05 ----A---- C:\Windows\SysWOW64\xactengine3_2.dll
2012-11-26 18:48:05 ----A---- C:\Windows\SysWOW64\d3dx10_39.dll
2012-11-26 18:48:05 ----A---- C:\Windows\SysWOW64\D3DCompiler_39.dll
2012-11-26 18:48:04 ----A---- C:\Windows\SysWOW64\XAudio2_1.dll
2012-11-26 18:48:04 ----A---- C:\Windows\SysWOW64\XAPOFX1_0.dll
2012-11-26 18:48:04 ----A---- C:\Windows\SysWOW64\xactengine3_1.dll
2012-11-26 18:48:04 ----A---- C:\Windows\SysWOW64\X3DAudio1_4.dll
2012-11-26 18:48:04 ----A---- C:\Windows\SysWOW64\D3DX9_39.dll
2012-11-26 18:48:02 ----A---- C:\Windows\SysWOW64\XAudio2_0.dll
2012-11-26 18:48:02 ----A---- C:\Windows\SysWOW64\D3DX9_38.dll
2012-11-26 18:48:02 ----A---- C:\Windows\SysWOW64\d3dx10_38.dll
2012-11-26 18:48:02 ----A---- C:\Windows\SysWOW64\D3DCompiler_38.dll
2012-11-26 18:48:01 ----A---- C:\Windows\SysWOW64\xactengine3_0.dll
2012-11-26 18:48:01 ----A---- C:\Windows\SysWOW64\X3DAudio1_3.dll
2012-11-26 18:47:55 ----A---- C:\Windows\SysWOW64\d3dx10_37.dll
2012-11-26 18:47:55 ----A---- C:\Windows\SysWOW64\D3DCompiler_37.dll
2012-11-26 18:47:54 ----A---- C:\Windows\SysWOW64\D3DX9_37.dll
2012-11-26 18:47:53 ----A---- C:\Windows\SysWOW64\xactengine2_10.dll
2012-11-26 18:47:50 ----A---- C:\Windows\SysWOW64\d3dx10_36.dll
2012-11-26 18:47:50 ----A---- C:\Windows\SysWOW64\D3DCompiler_36.dll
2012-11-26 18:47:49 ----A---- C:\Windows\SysWOW64\d3dx9_36.dll
2012-11-26 18:47:48 ----A---- C:\Windows\SysWOW64\xactengine2_9.dll
2012-11-26 18:47:48 ----A---- C:\Windows\SysWOW64\d3dx10_35.dll
2012-11-26 18:47:48 ----A---- C:\Windows\SysWOW64\D3DCompiler_35.dll
2012-11-26 18:47:47 ----A---- C:\Windows\SysWOW64\d3dx9_35.dll
2012-11-26 18:47:46 ----A---- C:\Windows\SysWOW64\xactengine2_8.dll
2012-11-26 18:47:46 ----A---- C:\Windows\SysWOW64\X3DAudio1_2.dll
2012-11-26 18:47:43 ----A---- C:\Windows\SysWOW64\d3dx10_34.dll
2012-11-26 18:47:43 ----A---- C:\Windows\SysWOW64\D3DCompiler_34.dll
2012-11-26 18:47:42 ----A---- C:\Windows\SysWOW64\xinput1_3.dll
2012-11-26 18:47:42 ----A---- C:\Windows\SysWOW64\d3dx9_34.dll
2012-11-26 18:47:40 ----A---- C:\Windows\SysWOW64\xactengine2_7.dll
2012-11-26 18:47:40 ----A---- C:\Windows\SysWOW64\d3dx10_33.dll
2012-11-26 18:47:40 ----A---- C:\Windows\SysWOW64\D3DCompiler_33.dll
2012-11-26 18:47:39 ----A---- C:\Windows\SysWOW64\d3dx9_33.dll
2012-11-26 18:47:38 ----A---- C:\Windows\SysWOW64\xactengine2_6.dll
2012-11-26 18:47:35 ----A---- C:\Windows\SysWOW64\xactengine2_5.dll
2012-11-26 18:47:35 ----A---- C:\Windows\SysWOW64\d3dx10.dll
2012-11-26 18:47:34 ----A---- C:\Windows\SysWOW64\xactengine2_4.dll
2012-11-26 18:47:34 ----A---- C:\Windows\SysWOW64\x3daudio1_1.dll
2012-11-26 18:47:34 ----A---- C:\Windows\SysWOW64\d3dx9_32.dll
2012-11-26 18:47:33 ----A---- C:\Windows\SysWOW64\xactengine2_3.dll
2012-11-26 18:47:33 ----A---- C:\Windows\SysWOW64\d3dx9_31.dll
2012-11-26 18:47:32 ----A---- C:\Windows\SysWOW64\xinput1_2.dll
2012-11-26 18:47:31 ----A---- C:\Windows\SysWOW64\xinput1_1.dll
2012-11-26 18:47:31 ----A---- C:\Windows\SysWOW64\xactengine2_2.dll
2012-11-26 18:47:28 ----A---- C:\Windows\SysWOW64\xactengine2_1.dll
2012-11-26 18:47:26 ----A---- C:\Windows\SysWOW64\d3dx9_30.dll
2012-11-26 18:47:25 ----A---- C:\Windows\SysWOW64\xactengine2_0.dll
2012-11-26 18:47:25 ----A---- C:\Windows\SysWOW64\x3daudio1_0.dll
2012-11-26 18:47:15 ----A---- C:\Windows\SysWOW64\d3dx9_29.dll
2012-11-26 18:47:14 ----A---- C:\Windows\SysWOW64\d3dx9_28.dll
2012-11-26 18:47:13 ----A---- C:\Windows\SysWOW64\d3dx9_27.dll
2012-11-26 18:47:12 ----A---- C:\Windows\SysWOW64\d3dx9_26.dll
2012-11-26 18:47:09 ----A---- C:\Windows\SysWOW64\d3dx9_25.dll
2012-11-26 18:47:09 ----A---- C:\Windows\SysWOW64\d3dx9_24.dll
2012-11-26 18:26:19 ----D---- C:\Windows\SysWOW64\directx
2012-11-25 21:14:28 ----D---- C:\Program Files (x86)\Microsoft Works
2012-11-25 21:13:57 ----D---- C:\Program Files (x86)\Microsoft Visual Studio
2012-11-25 21:13:57 ----D---- C:\Program Files (x86)\Common Files\DESIGNER
2012-11-25 21:13:37 ----D---- C:\Windows\PCHEALTH
2012-11-25 21:11:08 ----D---- C:\Program Files (x86)\Microsoft Visual Studio 8
2012-11-25 21:09:17 ----D---- C:\Program Files (x86)\Microsoft Office
2012-11-25 21:09:16 ----D---- C:\ProgramData\Microsoft Help
2012-11-24 21:19:32 ----D---- C:\finished torrents
2012-11-24 15:28:55 ----D---- C:\ProgramData\OO Software
2012-11-24 15:14:00 ----D---- C:\ProgramData\IObit
2012-11-24 15:13:59 ----D---- C:\Program Files (x86)\IObit
2012-11-24 14:28:04 ----D---- C:\Program Files (x86)\Abyssmedia
2012-11-24 13:33:56 ----D---- C:\_stare subory
2012-11-24 13:17:20 ----D---- C:\starting torrent files
2012-11-24 13:16:03 ----D---- C:\Program Files (x86)\uTorrent
2012-11-24 13:15:28 ----D---- C:\Users\MarekMedved\AppData\Roaming\uTorrent
2012-11-23 16:36:27 ----D---- C:\Program Files (x86)\CPU Speed Pro
2012-11-23 14:59:36 ----D---- C:\Users\MarekMedved\AppData\Roaming\QuickStoresToolbar
2012-11-23 14:59:34 ----D---- C:\Program Files (x86)\Unlocker
2012-11-22 21:22:40 ----A---- C:\Windows\SysWOW64\wksprtPS.dll
2012-11-22 21:22:40 ----A---- C:\Windows\SysWOW64\tsgqec.dll
2012-11-22 21:22:40 ----A---- C:\Windows\SysWOW64\rdpendp_winip.dll
2012-11-22 21:22:40 ----A---- C:\Windows\SysWOW64\mstscax.dll
2012-11-22 21:22:40 ----A---- C:\Windows\SysWOW64\mstsc.exe
2012-11-22 21:22:40 ----A---- C:\Windows\SysWOW64\MsRdpWebAccess.dll
2012-11-22 21:22:40 ----A---- C:\Windows\SysWOW64\aaclient.dll
2012-11-22 17:39:43 ----D---- C:\Program Files (x86)\Lavalys
2012-11-22 12:50:43 ----D---- C:\Users\MarekMedved\AppData\Roaming\NVIDIA
2012-11-21 16:26:23 ----D---- C:\benzin_plyn
2012-11-21 16:23:20 ----A---- C:\Windows\SysWOW64\PerfStringBackup.INI
2012-11-21 15:27:55 ----A---- C:\Windows\UC.PIF
2012-11-21 15:27:55 ----A---- C:\Windows\RAR.PIF
2012-11-21 15:27:55 ----A---- C:\Windows\PKZIP.PIF
2012-11-21 15:27:55 ----A---- C:\Windows\PKUNZIP.PIF
2012-11-21 15:27:55 ----A---- C:\Windows\LHA.PIF
2012-11-21 15:27:55 ----A---- C:\Windows\ARJ.PIF
2012-11-21 15:27:54 ----D---- C:\Users\MarekMedved\AppData\Roaming\GHISLER
2012-11-21 13:54:26 ----A---- C:\Windows\SysWOW64\fsutil.exe
2012-11-21 13:54:26 ----A---- C:\Windows\SysWOW64\esent.dll
2012-11-21 13:50:56 ----D---- C:\Program Files (x86)\Microsoft.NET
2012-11-20 21:42:39 ----D---- C:\Windows\SysWOW64\Wat
2012-11-20 20:53:57 ----D---- C:\Users\MarekMedved\AppData\Roaming\ESET
2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\wininet.dll
2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\urlmon.dll
2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\url.dll
2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\SetIEInstalledDate.exe
2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\msrating.dll
2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\msls31.dll
2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\mshtmler.dll
2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\msfeedssync.exe
2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\msfeedsbs.dll
2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\licmgr10.dll
2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\jsproxy.dll
2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\jscript9.dll
2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\jscript.dll
2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\inseng.dll
2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\ieui.dll
2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\iesysprep.dll
2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\iesetup.dll
2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\iertutil.dll
2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\iernonce.dll
2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\iepeers.dll
2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\ieframe.dll
2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\iedkcs32.dll
2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\ieapfltr.dll
2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\ieapfltr.dat
2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\ieakeng.dll
2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\IEAdvpack.dll
2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\ie4uinit.exe
2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\icardie.dll
2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\dxtrans.dll
2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\dxtmsft.dll
2012-11-20 20:50:08 ----A---- C:\Windows\SysWOW64\wextract.exe
2012-11-20 20:50:08 ----A---- C:\Windows\SysWOW64\webcheck.dll
2012-11-20 20:50:08 ----A---- C:\Windows\SysWOW64\vbscript.dll
2012-11-20 20:50:08 ----A---- C:\Windows\SysWOW64\pngfilt.dll
2012-11-20 20:50:08 ----A---- C:\Windows\SysWOW64\occache.dll
2012-11-20 20:50:08 ----A---- C:\Windows\SysWOW64\mshtmled.dll
2012-11-20 20:50:08 ----A---- C:\Windows\SysWOW64\mshtml.dll
2012-11-20 20:50:08 ----A---- C:\Windows\SysWOW64\mshta.exe
2012-11-20 20:50:08 ----A---- C:\Windows\SysWOW64\msfeeds.dll
2012-11-20 20:50:08 ----A---- C:\Windows\SysWOW64\imgutil.dll
2012-11-20 20:50:08 ----A---- C:\Windows\SysWOW64\iexpress.exe
2012-11-20 20:50:08 ----A---- C:\Windows\SysWOW64\ieUnatt.exe
2012-11-20 20:50:08 ----A---- C:\Windows\SysWOW64\ieakui.dll
2012-11-20 20:50:08 ----A---- C:\Windows\SysWOW64\ieaksie.dll
2012-11-20 20:50:08 ----A---- C:\Windows\SysWOW64\admparse.dll
2012-11-20 20:40:21 ----A---- C:\Windows\SysWOW64\wmi.dll
2012-11-20 20:40:21 ----A---- C:\Windows\SysWOW64\imagehlp.dll
2012-11-20 20:39:59 ----D---- C:\ProgramData\ESET
2012-11-20 20:31:54 ----A---- C:\Windows\SysWOW64\qdvd.dll
2012-11-20 20:31:53 ----A---- C:\Windows\SysWOW64\sspicli.dll
2012-11-20 20:31:53 ----A---- C:\Windows\SysWOW64\schannel.dll
2012-11-20 20:31:53 ----A---- C:\Windows\SysWOW64\secur32.dll
2012-11-20 20:31:53 ----A---- C:\Windows\SysWOW64\ncrypt.dll
2012-11-20 20:31:41 ----A---- C:\Windows\SysWOW64\d2d1.dll
2012-11-20 20:30:47 ----A---- C:\Windows\SysWOW64\xmllite.dll
2012-11-20 20:30:43 ----A---- C:\Windows\SysWOW64\odbctrac.dll
2012-11-20 20:30:43 ----A---- C:\Windows\SysWOW64\odbcjt32.dll
2012-11-20 20:30:43 ----A---- C:\Windows\SysWOW64\odbccu32.dll
2012-11-20 20:30:43 ----A---- C:\Windows\SysWOW64\odbccr32.dll
2012-11-20 20:30:43 ----A---- C:\Windows\SysWOW64\odbccp32.dll
2012-11-20 20:30:42 ----A---- C:\Windows\SysWOW64\DWrite.dll
2012-11-20 20:30:32 ----A---- C:\Windows\SysWOW64\poqexec.exe
2012-11-20 20:30:31 ----A---- C:\Windows\SysWOW64\dhcpcsvc6.dll
2012-11-20 20:30:31 ----A---- C:\Windows\SysWOW64\dhcpcore6.dll
2012-11-20 20:30:29 ----A---- C:\Windows\SysWOW64\explorer.exe
2012-11-20 20:30:29 ----A---- C:\Windows\explorer.exe
2012-11-20 20:30:27 ----A---- C:\Windows\SysWOW64\sbe.dll
2012-11-20 20:30:27 ----A---- C:\Windows\SysWOW64\CPFilters.dll
2012-11-20 20:30:25 ----A---- C:\Windows\SysWOW64\quartz.dll
2012-11-20 20:30:19 ----A---- C:\Windows\SysWOW64\ntshrui.dll
2012-11-20 20:30:05 ----A---- C:\Windows\SysWOW64\tquery.dll
2012-11-20 20:30:05 ----A---- C:\Windows\SysWOW64\SearchProtocolHost.exe
2012-11-20 20:30:05 ----A---- C:\Windows\SysWOW64\SearchIndexer.exe
2012-11-20 20:30:05 ----A---- C:\Windows\SysWOW64\mssvp.dll
2012-11-20 20:30:05 ----A---- C:\Windows\SysWOW64\mssrch.dll
2012-11-20 20:30:05 ----A---- C:\Windows\SysWOW64\mssph.dll
2012-11-20 20:30:04 ----A---- C:\Windows\SysWOW64\SearchFilterHost.exe
2012-11-20 20:30:04 ----A---- C:\Windows\SysWOW64\mssphtb.dll
2012-11-20 20:30:04 ----A---- C:\Windows\SysWOW64\msscntrs.dll
2012-11-20 20:27:51 ----A---- C:\Windows\SysWOW64\webio.dll
2012-11-20 20:27:48 ----A---- C:\Windows\SysWOW64\msxml6.dll
2012-11-20 20:27:48 ----A---- C:\Windows\SysWOW64\msxml3r.dll
2012-11-20 20:27:48 ----A---- C:\Windows\SysWOW64\msxml3.dll
2012-11-20 20:27:36 ----A---- C:\Windows\SysWOW64\XpsGdiConverter.dll
2012-11-20 20:27:06 ----D---- C:\Program Files (x86)\Common Files\Creative Labs Shared
2012-11-20 20:27:05 ----A---- C:\Windows\SysWOW64\ntoskrnl.exe
2012-11-20 20:27:05 ----A---- C:\Windows\SysWOW64\ntkrnlpa.exe
2012-11-20 20:26:57 ----A---- C:\Windows\SysWOW64\XpsPrint.dll
2012-11-20 20:26:49 ----A---- C:\Windows\SysWOW64\mfc42u.dll
2012-11-20 20:26:49 ----A---- C:\Windows\SysWOW64\mfc42.dll
2012-11-20 20:26:31 ----A---- C:\Windows\SysWOW64\shell32.dll
2012-11-20 20:25:10 ----A---- C:\Windows\SysWOW64\KernelBase.dll
2012-11-20 20:25:10 ----A---- C:\Windows\SysWOW64\kernel32.dll
2012-11-20 20:25:09 ----AH---- C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
2012-11-20 20:25:09 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
2012-11-20 20:25:09 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2012-11-20 20:25:09 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2012-11-20 20:25:09 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2012-11-20 20:25:09 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2012-11-20 20:25:09 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
2012-11-20 20:25:09 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2012-11-20 20:25:09 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2012-11-20 20:25:09 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2012-11-20 20:25:09 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2012-11-20 20:25:09 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2012-11-20 20:25:09 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2012-11-20 20:25:09 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2012-11-20 20:25:09 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
2012-11-20 20:25:09 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2012-11-20 20:25:09 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2012-11-20 20:25:09 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
2012-11-20 20:25:09 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2012-11-20 20:25:09 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
2012-11-20 20:25:09 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2012-11-20 20:25:09 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
2012-11-20 20:25:09 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
2012-11-20 20:25:09 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
2012-11-20 20:25:09 ----A---- C:\Windows\SysWOW64\wow32.dll
2012-11-20 20:25:09 ----A---- C:\Windows\SysWOW64\setup16.exe
2012-11-20 20:25:09 ----A---- C:\Windows\SysWOW64\ntvdm64.dll
2012-11-20 20:25:09 ----A---- C:\Windows\SysWOW64\instnm.exe
2012-11-20 20:25:08 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
2012-11-20 20:25:08 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2012-11-20 20:25:08 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2012-11-20 20:25:08 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
2012-11-20 20:25:08 ----A---- C:\Windows\SysWOW64\user.exe
2012-11-20 20:24:58 ----D---- C:\ProgramData\Creative
2012-11-20 20:24:48 ----A---- C:\Windows\SysWOW64\d3d10level9.dll
2012-11-20 20:24:19 ----A---- C:\Windows\SysWOW64\CmdRtr.DLL
2012-11-20 20:24:19 ----A---- C:\Windows\SysWOW64\APOMngr.DLL
2012-11-20 20:24:01 ----A---- C:\Windows\SysWOW64\atmfd.dll
2012-11-20 20:24:00 ----A---- C:\Windows\SysWOW64\atmlib.dll
2012-11-20 20:23:56 ----A---- C:\Windows\SysWOW64\fontsub.dll
2012-11-20 20:23:51 ----A---- C:\Windows\SysWOW64\ncsi.dll
2012-11-20 20:23:50 ----A---- C:\Windows\SysWOW64\nlaapi.dll
2012-11-20 20:23:50 ----A---- C:\Windows\SysWOW64\netevent.dll
2012-11-20 20:23:50 ----A---- C:\Windows\SysWOW64\netcorehc.dll
2012-11-20 20:22:42 ----A---- C:\Windows\SysWOW64\dnscacheugc.exe
2012-11-20 20:22:42 ----A---- C:\Windows\SysWOW64\dnsapi.dll
2012-11-20 20:22:35 ----A---- C:\Windows\SysWOW64\wintrust.dll
2012-11-20 20:22:31 ----A---- C:\Windows\SysWOW64\tzres.dll
2012-11-20 20:22:29 ----A---- C:\Windows\SysWOW64\INRES.DLL
2012-11-20 20:22:27 ----D---- C:\Program Files (x86)\Creative
2012-11-20 20:22:09 ----D---- C:\Program Files (x86)\Common Files\InstallShield
2012-11-20 20:21:33 ----A---- C:\Windows\SysWOW64\d3d10_1.dll
2012-11-20 20:21:30 ----A---- C:\Windows\SysWOW64\psisdecd.dll
2012-11-20 20:20:54 ----A---- C:\Windows\SysWOW64\kerberos.dll
2012-11-20 20:20:53 ----A---- C:\Windows\SysWOW64\msi.dll
2012-11-20 20:20:50 ----A---- C:\Windows\SysWOW64\synceng.dll
2012-11-20 20:20:37 ----A---- C:\Windows\SysWOW64\drvinst.exe
2012-11-20 20:20:37 ----A---- C:\Windows\SysWOW64\devrtl.dll
2012-11-20 20:20:37 ----A---- C:\Windows\SysWOW64\devobj.dll
2012-11-20 20:20:37 ----A---- C:\Windows\SysWOW64\cfgmgr32.dll
2012-11-20 20:20:36 ----A---- C:\Windows\SysWOW64\netapi32.dll
2012-11-20 20:20:36 ----A---- C:\Windows\SysWOW64\browcli.dll
2012-11-20 20:20:35 ----A---- C:\Windows\SysWOW64\prevhost.exe
2012-11-20 20:20:34 ----A---- C:\Windows\SysWOW64\srclient.dll
2012-11-20 20:20:17 ----A---- C:\Windows\SysWOW64\inetcomm.dll
2012-11-20 20:20:16 ----A---- C:\Windows\SysWOW64\msvcrt.dll
2012-11-20 20:19:40 ----A---- C:\Windows\SysWOW64\oleaut32.dll
2012-11-20 20:19:40 ----A---- C:\Windows\SysWOW64\oleacc.dll
2012-11-20 20:19:36 ----A---- C:\Windows\SysWOW64\EncDec.dll
2012-11-20 20:17:49 ----A---- C:\Windows\SysWOW64\cdosys.dll
2012-11-20 20:17:46 ----A---- C:\Windows\SysWOW64\ntdll.dll
2012-11-20 20:17:44 ----A---- C:\Windows\SysWOW64\win32spl.dll
2012-11-20 20:17:44 ----A---- C:\Windows\splwow64.exe
2012-11-20 20:17:40 ----A---- C:\Windows\SysWOW64\cryptsvc.dll
2012-11-20 20:17:40 ----A---- C:\Windows\SysWOW64\cryptnet.dll
2012-11-20 20:17:40 ----A---- C:\Windows\SysWOW64\crypt32.dll
2012-11-20 20:17:15 ----A---- C:\Windows\SysWOW64\packager.dll
2012-11-20 19:54:11 ----HD---- C:\ProgramData\Common Files
2012-11-20 19:54:11 ----D---- C:\ProgramData\MFAData
2012-11-20 19:47:42 ----D---- C:\Users\MarekMedved\AppData\Roaming\WinRAR
2012-11-20 19:37:40 ----D---- C:\ProgramData\NVIDIA
2012-11-20 19:37:27 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2012-11-20 19:37:07 ----D---- C:\ProgramData\NVIDIA Corporation
2012-11-20 19:36:52 ----A---- C:\Windows\SysWOW64\OpenCL.dll
2012-11-20 19:36:52 ----A---- C:\Windows\SysWOW64\nvd3dum.dll
2012-11-20 19:36:52 ----A---- C:\Windows\SysWOW64\nvapi.dll
2012-11-20 19:35:40 ----A---- C:\Windows\SysWOW64\drivers\TBPanelx64.sys
2012-11-20 19:30:25 ----RA---- C:\Windows\SysWOW64\CSVer.dll
2012-11-20 19:30:25 ----D---- C:\Program Files (x86)\Intel
2012-11-20 19:30:08 ----D---- C:\Intel
2012-11-20 19:27:19 ----D---- C:\Users\MarekMedved\AppData\Roaming\Macromedia
2012-11-20 19:27:19 ----D---- C:\Users\MarekMedved\AppData\Roaming\Adobe
2012-11-20 19:26:57 ----D---- C:\Windows\Chipset
2012-11-20 19:26:57 ----A---- C:\Windows\AsTaskSched.dll
2012-11-20 19:26:52 ----A---- C:\Windows\SysWOW64\rdpcore.dll
2012-11-20 19:25:52 ----D---- C:\Program Files (x86)\ASM104xUSB3
2012-11-20 19:24:54 ----D---- C:\Program Files (x86)\Qualcomm Atheros WiFi Driver Installation
2012-11-20 19:24:46 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2012-11-20 19:21:55 ----D---- C:\ProgramData\Qualcomm Atheros
2012-11-20 19:17:33 ----SHD---- C:\Windows\Installer
2012-11-20 19:17:29 ----D---- C:\Program Files (x86)\Google
2012-11-20 19:13:30 ----A---- C:\Windows\Language_trs.ini
2012-11-20 19:13:21 ----A---- C:\Windows\Ascd_tmp.ini
2012-11-20 19:11:32 ----D---- C:\Users\MarekMedved\AppData\Roaming\Identities
2012-11-20 19:11:14 ----SD---- C:\Users\MarekMedved\AppData\Roaming\Microsoft
2012-11-20 19:11:14 ----D---- C:\Users\MarekMedved\AppData\Roaming\Media Center Programs
2012-11-20 01:58:28 ----D---- C:\Windows\SoftwareDistribution
2012-11-20 01:56:12 ----D---- C:\Windows\Prefetch
2012-11-20 01:50:57 ----D---- C:\Windows\Panther
2012-11-20 01:40:40 ----D---- C:\Windows.old.001

======List of files/folders modified in the last 1 month======

2012-12-09 20:40:04 ----D---- C:\Windows\Temp
2012-12-09 20:40:01 ----RD---- C:\Program Files (x86)
2012-12-09 20:06:42 ----SHD---- C:\System Volume Information
2012-12-09 20:06:37 ----D---- C:\Windows\Registration
2012-12-09 20:06:34 ----D---- C:\Windows
2012-12-09 20:06:24 ----RSD---- C:\Windows\assembly
2012-12-09 20:06:21 ----D---- C:\Windows\SysWOW64
2012-12-09 20:06:16 ----D---- C:\Windows\inf
2012-12-09 20:05:56 ----D---- C:\Program Files (x86)\Internet Explorer
2012-12-09 19:43:09 ----HD---- C:\ProgramData
2012-12-09 19:35:11 ----D---- C:\Windows\winsxs
2012-12-09 19:28:46 ----D---- C:\Program Files (x86)\Common Files
2012-12-09 19:17:54 ----D---- C:\torrent files
2012-12-07 13:40:26 ----D---- C:\Windows\SysWOW64\drivers
2012-12-07 13:40:26 ----D---- C:\Windows\System32
2012-12-06 13:55:35 ----D---- C:\Windows\Tasks
2012-12-02 22:42:44 ----SD---- C:\ProgramData\Microsoft
2012-12-02 15:04:22 ----RD---- C:\Program Files
2012-11-30 11:29:34 ----D---- C:\Windows\rescache
2012-11-29 00:30:30 ----D---- C:\Windows\AppPatch
2012-11-26 22:14:00 ----A---- C:\Windows\win.ini
2012-11-26 22:13:59 ----D---- C:\Program Files (x86)\Common Files\System
2012-11-26 18:47:07 ----D---- C:\Windows\Microsoft.NET
2012-11-26 18:26:19 ----D---- C:\Windows\Logs
2012-11-25 23:16:07 ----RSD---- C:\Windows\Fonts
2012-11-25 23:15:51 ----D---- C:\Program Files (x86)\Common Files\microsoft shared
2012-11-25 21:14:17 ----D---- C:\Program Files (x86)\MSBuild
2012-11-25 21:13:56 ----D---- C:\Windows\ShellNew
2012-11-23 15:06:56 ----D---- C:\Windows\debug
2012-11-23 14:56:34 ----D---- C:\mp3s
2012-11-22 21:25:39 ----D---- C:\Windows\SysWOW64\wbem
2012-11-22 21:25:39 ----D---- C:\Windows\SysWOW64\sk-SK
2012-11-22 21:25:39 ----D---- C:\Windows\SysWOW64\en-US
2012-11-22 21:25:39 ----D---- C:\Windows\PolicyDefinitions
2012-11-20 21:42:58 ----D---- C:\Windows\ehome
2012-11-20 21:42:47 ----D---- C:\Windows\SysWOW64\migration
2012-11-20 21:06:35 ----D---- C:\temp
2012-11-20 19:37:40 ----RD---- C:\Users
2012-11-20 19:37:11 ----D---- C:\Windows\Help
2012-11-20 19:11:28 ----SHD---- C:\$Recycle.Bin
2012-11-20 19:11:01 ----SHD---- C:\Recovery
2012-11-20 01:56:04 ----D---- C:\Windows\CSC
2012-11-20 01:50:46 ----RASH---- C:\BOOTSECT.BAK
2012-11-20 01:50:44 ----SHD---- C:\Boot

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 epfwwfp;epfwwfp; C:\Windows\system32\DRIVERS\epfwwfp.sys []
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys []
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys []
R1 avgtp;avgtp; \??\C:\Windows\system32\drivers\avgtpx64.sys []
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys []
R1 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys []
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys []
R1 EpfwLWF;Epfw NDIS LightWeight Filter; C:\Windows\system32\DRIVERS\EpfwLWF.sys []
R1 SCDEmu;SCDEmu; C:\Windows\SysWOW64\drivers\SCDEmu.sys []
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys []
R2 epfw;epfw; C:\Windows\system32\DRIVERS\epfw.sys []
R2 IDMWFP;IDMWFP; C:\Windows\system32\DRIVERS\idmwfp.sys []
R3 asmthub3;ASMedia USB3 Hub Service; C:\Windows\system32\DRIVERS\asmthub3.sys []
R3 asmtxhci;ASMEDIA XHCI Service; C:\Windows\system32\DRIVERS\asmtxhci.sys []
R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athrx.sys []
R3 e1cexpress;Intel(R) PRO/1000 PCI Express Network Connection Driver C; C:\Windows\system32\DRIVERS\e1c62x64.sys []
R3 Mac606;Mac606 Filter; C:\Windows\system32\DRIVERS\Mac606a.sys [2008-04-08 10600]
R3 MEIx64;Intel(R) Management Engine Interface ; C:\Windows\system32\DRIVERS\HECIx64.sys []
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda64v.sys []
R3 P17;SB Live! 24-bit; C:\Windows\system32\drivers\P17.sys []
S3 dmvsc;dmvsc; C:\Windows\system32\drivers\dmvsc.sys []
S3 IObitUnlocker;IObitUnlocker; \??\C:\Program Files (x86)\IObit\IObit Unlocker\IObitUnlocker.sys [2011-03-09 33184]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys []
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys []
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys []
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys []
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys []
S3 TBPanel;TBPanel; C:\Windows\SysWOW64\drivers\TBPanel.sys []
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys []
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys []
S3 vmbus;vmbus; C:\Windows\system32\drivers\vmbus.sys []
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys []

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 CTAudSvcService;Creative Audio Service; C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe [2008-11-18 307200]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe [2012-11-14 1329304]
R2 Intel(R) PROSet Monitoring Service;Intel(R) PROSet Monitoring Service; C:\Windows\system32\IProsetMonitor.exe []
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe []
R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2012-10-10 1258856]
R2 OODefragAgent;O&O Defrag; C:\Program Files\OO Software\Defrag\oodag.exe [2012-06-06 3293552]
R2 PnkBstrA;PnkBstrA; C:\Windows\system32\PnkBstrA.exe [2012-12-09 66872]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2012-10-02 382824]
R2 vToolbarUpdater13.2.0;vToolbarUpdater13.2.0; C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\13.2.0\ToolbarUpdater.exe [2012-12-09 711112]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2012-07-09 104912]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2012-07-08 123856]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-11-20 136176]
S2 PnkBstrB;PnkBstrB; C:\Windows\system32\PnkBstrB.exe [2012-12-09 103736]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 Creative Audio Engine Licensing Service;Creative Audio Engine Licensing Service; C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe [2012-11-20 79360]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-11-20 136176]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe []
S4 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe []
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2012-07-09 139696]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2012-07-09 139696]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2012-07-09 139696]

-----------------EOF-----------------


Offline

Užívateľ
Užívateľ
Obrázok užívateľa

Registrovaný: 09.05.11
Prihlásený: 20.12.18
Príspevky: 618
Témy: 2 | 2
NapísalOffline : 08.12.2012 20:46 | Mrznutie Systemu

stihni si combofix http://www.bleepingcomputer.com/download/combofix/ vypni avg spust combofix davaj yes ok agree ako ta combofix vyzve keď skonči vybehne poznámkový blok budeš ho mať na C:combofix.txt sem ho upni


Offline

Zmazaný užívateľ
Zmazaný užívateľ
Obrázok užívateľa
Napísal autor témyOffline : 08.12.2012 21:02 | Mrznutie Systemu

Kód:
ComboFix 12-12-07.01 - MarekMedved . 12. 2012  20:51:32.1.4 - x64
Microsoft Windows 7 Professional   6.1.7601.1.1250.421.1051.18.8147.5957 [GMT 1:00]
Running from: c:\users\MarekMedved\Downloads\ComboFix.exe
AV: ESET Smart Security 6.0 *Enabled/Updated* {77DEAFED-8149-104B-25A1-21771CA47CD1}
FW: ESET personal firewall *Enabled* {4FE52EC8-CB26-1113-0EFE-8842E2773BAA}
SP: ESET Smart Security 6.0 *Enabled/Updated* {CCBF4E09-A773-1FC5-1F11-1A056723366C}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
 * Resident AV is active
.
.
.
(((((((((((((((((((((((((((((((((((((((   Other Deletions   )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
C:\nautoup.log
c:\windows\pkunzip.pif
c:\windows\pkzip.pif
c:\windows\SysWow64\URTTemp
c:\windows\SysWow64\URTTemp\regtlib.exe
.
.
(((((((((((((((((((((((((   Files Created from 2012-11-09 to 2012-12-09  )))))))))))))))))))))))))))))))
.
.
2012-12-09 19:59 . 2012-12-09 19:59   --------   d-----w-   c:\users\Default\AppData\Local\temp
2012-12-09 19:40 . 2012-12-09 19:40   --------   d-----w-   c:\program files (x86)\trend micro
2012-12-09 19:40 . 2012-12-09 19:40   --------   d-----w-   C:\rsit
2012-12-09 19:06 . 2012-12-09 19:06   --------   d-----w-   c:\program files (x86)\GameSpy
2012-12-09 19:04 . 2012-12-09 19:04   103736   ----a-w-   c:\windows\SysWow64\PnkBstrB.exe
2012-12-09 19:04 . 2012-12-09 19:04   669184   ----a-w-   c:\windows\SysWow64\pbsvc.exe
2012-12-09 19:04 . 2012-12-09 19:04   66872   ----a-w-   c:\windows\SysWow64\PnkBstrA.exe
2012-12-09 18:43 . 2012-12-09 18:43   76232   ----a-w-   c:\programdata\Microsoft\Windows Defender\Definition Updates\{D6837F05-2427-4677-AF6F-F7DD3C802702}\offreg.dll
2012-12-09 18:43 . 2012-12-09 18:43   178800   ----a-w-   c:\windows\SysWow64\CmdLineExt_x64.dll
2012-12-09 18:43 . 2012-12-09 18:43   --------   dc-h--w-   c:\programdata\{0691F710-1ECA-4B5A-9727-25554F1BFDC6}
2012-12-09 18:37 . 2012-12-09 18:37   1312   ----a-w-   c:\windows\SysWow64\ealregsnapshot1.reg
2012-12-09 18:37 . 2012-12-09 18:37   --------   d-----w-   c:\windows\SysWow64\Macromed
2012-12-09 18:28 . 2012-12-09 18:28   --------   d-----w-   c:\programdata\AVG Secure Search
2012-12-09 18:28 . 2012-12-09 18:28   30568   ----a-w-   c:\windows\system32\drivers\avgtpx64.sys
2012-12-09 18:28 . 2012-12-09 18:28   --------   d-----w-   c:\program files (x86)\Common Files\AVG Secure Search
2012-12-09 18:28 . 2012-12-09 18:28   --------   d-----w-   c:\program files (x86)\AVG Secure Search
2012-12-09 18:28 . 2012-12-09 18:29   --------   d-----w-   c:\program files (x86)\PowerISO
2012-12-09 18:28 . 2012-08-24 07:56   126944   ----a-w-   c:\windows\system32\drivers\scdemu.sys
2012-12-08 15:05 . 2012-11-08 17:24   9125352   ----a-w-   c:\programdata\Microsoft\Windows Defender\Definition Updates\{D6837F05-2427-4677-AF6F-F7DD3C802702}\mpengine.dll
2012-12-07 12:40 . 2008-10-31 07:38   22576   ----a-w-   c:\windows\system32\drivers\HidNt.sys
2012-12-07 12:40 . 2008-04-08 02:20   12776   ----a-w-   c:\windows\system32\drivers\Mac606a.sys
2012-12-07 12:40 . 2009-03-29 06:38   47104   ----a-w-   c:\windows\system32\ivl807a.dll
2012-12-07 12:40 . 2008-11-10 03:38   65072   ----a-w-   c:\windows\system32\Hidhlp.dll
2012-12-07 12:40 . 2008-10-31 07:38   18992   ----a-w-   c:\windows\SysWow64\drivers\HidNt.sys
2012-12-07 12:40 . 2008-04-08 02:20   10600   ----a-w-   c:\windows\SysWow64\drivers\Mac606a.sys
2012-12-07 12:40 . 2009-03-29 06:38   49152   ----a-w-   c:\windows\SysWow64\ivl807a.dll
2012-12-07 12:40 . 2008-11-10 03:38   64048   ----a-w-   c:\windows\SysWow64\Hidhlp.dll
2012-12-07 12:40 . 2012-12-07 12:41   --------   d-----w-   c:\program files (x86)\FTQ5C1
2012-12-05 14:30 . 2012-12-05 14:40   --------   d-----w-   c:\program files (x86)\Crysis 2.Limited Edition.v 1.1.0.0
2012-12-04 20:15 . 2012-12-04 20:15   --------   d-----w-   c:\program files (x86)\DsNET Corp
2012-12-03 12:23 . 2012-05-11 14:47   119568   ----a-w-   c:\windows\SysWow64\VB6FR.DLL
2012-12-03 12:23 . 2012-05-11 14:47   101888   ----a-w-   c:\windows\SysWow64\VB6STKIT.DLL
2012-12-03 12:23 . 2012-05-11 14:47   32768   ----a-w-   c:\windows\SysWow64\CMDLGFR.DLL
2012-12-03 12:23 . 2012-05-11 14:47   152848   ----a-w-   c:\windows\SysWow64\COMDLG32.OCX
2012-12-03 12:23 . 2012-05-11 14:47   141312   ----a-w-   c:\windows\SysWow64\MSCMCFR.DLL
2012-12-02 15:28 . 2012-12-02 15:30   --------   d-----w-   C:\CRYSIS EDITOR
2012-12-02 14:04 . 2012-12-02 14:04   --------   d-----w-   c:\program files\Microsoft Silverlight
2012-12-02 14:04 . 2012-12-02 14:04   --------   d-----w-   c:\program files (x86)\Microsoft Silverlight
2012-12-01 19:50 . 2012-12-06 12:43   --------   d-----w-   C:\Fraps
2012-11-29 20:08 . 2012-11-29 20:24   --------   d-----w-   C:\vylucenia
2012-11-28 10:07 . 2011-04-09 15:37   182272   --sh--w-   c:\windows\data.dll
2012-11-27 23:23 . 2012-11-27 23:24   --------   d-----w-   c:\programdata\Solidshield
2012-11-27 22:57 . 2012-11-27 22:57   --------   d-----w-   c:\program files (x86)\Electronic Arts
2012-11-26 17:57 . 2012-11-26 17:57   --------   d-----w-   c:\programdata\Electronic Arts
2012-11-26 17:57 . 2012-11-26 17:57   --------   d-----w-   c:\programdata\EA Core
2012-11-26 17:47 . 2008-03-05 14:56   1860120   ----a-w-   c:\windows\system32\D3DCompiler_37.dll
2012-11-26 16:11 . 2012-11-26 16:11   530488   ----a-w-   c:\windows\system32\drivers\sptd.sys
2012-11-25 22:15 . 2012-11-25 22:15   --------   d-----w-   c:\users\Default\AppData\Local\Microsoft Help
2012-11-25 20:14 . 2012-11-25 22:15   --------   d-----w-   c:\program files (x86)\Microsoft Works
2012-11-25 20:13 . 2012-11-25 20:13   --------   d-----w-   c:\windows\PCHEALTH
2012-11-25 20:11 . 2012-11-25 20:11   --------   d-----w-   c:\program files\Microsoft Office
2012-11-25 20:11 . 2012-11-25 20:11   --------   d-----w-   c:\program files (x86)\Microsoft Visual Studio 8
2012-11-25 20:09 . 2012-11-26 21:17   --------   d-----w-   c:\programdata\Microsoft Help
2012-11-25 19:40 . 2012-11-25 19:43   --------   d-----w-   c:\windows\system32\appmgmt
2012-11-24 20:19 . 2012-12-09 18:17   --------   d-----w-   C:\finished torrents
2012-11-24 14:33 . 2012-11-24 14:33   --------   d-----w-   c:\windows\system32\oodag
2012-11-24 14:29 . 2012-11-25 19:44   --------   d-----w-   c:\program files\OO Software
2012-11-24 14:28 . 2012-11-24 14:30   --------   d-----w-   c:\programdata\OO Software
2012-11-24 14:14 . 2012-11-24 14:14   --------   d-----w-   c:\programdata\IObit
2012-11-24 14:13 . 2012-11-24 14:13   --------   d-----w-   c:\program files (x86)\IObit
2012-11-24 13:28 . 2012-11-24 13:28   --------   d-----w-   c:\program files (x86)\Abyssmedia
2012-11-24 12:33 . 2012-11-26 16:13   --------   d-----w-   C:\_stare subory
2012-11-24 12:17 . 2012-12-09 18:17   --------   d-----w-   C:\starting torrent files
2012-11-24 12:16 . 2012-11-24 12:16   --------   d-----w-   c:\program files (x86)\uTorrent
2012-11-23 15:36 . 2012-11-23 15:38   --------   d-----w-   c:\program files (x86)\CPU Speed Pro
2012-11-23 14:03 . 2012-11-23 14:05   --------   d-----w-   c:\program files\CCleaner
2012-11-23 13:59 . 2012-11-23 13:59   --------   d-----w-   c:\program files (x86)\Unlocker
2012-11-22 16:39 . 2012-11-22 16:39   --------   d-----w-   c:\program files (x86)\Lavalys
2012-11-21 15:26 . 2012-11-21 15:26   --------   d-----w-   C:\benzin_plyn
2012-11-21 14:39 . 2012-11-21 14:39   --------   d-----w-   c:\program files\WinRAR
2012-11-21 14:27 . 2012-08-03 07:01   545   ----a-w-   c:\windows\UC.PIF
2012-11-21 14:27 . 2012-08-03 07:01   545   ----a-w-   c:\windows\RAR.PIF
2012-11-21 14:27 . 2012-08-03 07:01   545   ----a-w-   c:\windows\LHA.PIF
2012-11-21 14:27 . 2012-08-03 07:01   545   ----a-w-   c:\windows\ARJ.PIF
2012-11-21 14:02 . 2012-11-22 16:33   --------   d-----w-   c:\program files\CPUID
2012-11-21 12:50 . 2012-11-25 20:13   --------   d-----w-   c:\program files (x86)\Microsoft.NET
2012-11-20 20:42 . 2012-11-20 20:42   --------   d-----w-   c:\windows\SysWow64\Wat
2012-11-20 20:42 . 2012-11-20 20:42   --------   d-----w-   c:\windows\system32\Wat
2012-11-20 20:34 . 2012-07-26 04:55   785512   ----a-w-   c:\windows\system32\drivers\Wdf01000.sys
2012-11-20 20:34 . 2012-07-26 04:55   54376   ----a-w-   c:\windows\system32\drivers\WdfLdr.sys
2012-11-20 20:34 . 2012-07-26 04:47   2560   ----a-w-   c:\windows\system32\drivers\en-US\wdf01000.sys.mui
2012-11-20 20:34 . 2012-07-26 02:36   9728   ----a-w-   c:\windows\system32\Wdfres.dll
2012-11-20 20:06 . 2012-10-02 19:51   3536817   ----a-w-   c:\windows\system32\nvcoproc.bin
2012-11-20 19:51 . 2010-02-23 08:16   294912   ----a-w-   c:\windows\system32\browserchoice.exe
2012-11-20 19:44 . 2012-10-29 20:04   66395536   ----a-w-   c:\windows\system32\MRT.exe
2012-11-20 19:44 . 2012-07-26 02:26   87040   ----a-w-   c:\windows\system32\drivers\WUDFPf.sys
2012-11-20 19:44 . 2012-07-26 02:26   198656   ----a-w-   c:\windows\system32\drivers\WUDFRd.sys
2012-11-20 19:43 . 2012-07-26 03:08   84992   ----a-w-   c:\windows\system32\WUDFSvc.dll
2012-11-20 19:43 . 2012-07-26 03:08   194048   ----a-w-   c:\windows\system32\WUDFPlatform.dll
2012-11-20 19:43 . 2012-07-26 03:08   229888   ----a-w-   c:\windows\system32\WUDFHost.exe
2012-11-20 19:43 . 2012-07-26 03:08   744448   ----a-w-   c:\windows\system32\WUDFx.dll
2012-11-20 19:43 . 2012-07-26 03:08   45056   ----a-w-   c:\windows\system32\WUDFCoinstaller.dll
2012-11-20 19:40 . 2012-03-01 06:46   23408   ----a-w-   c:\windows\system32\drivers\fs_rec.sys
2012-11-20 19:40 . 2012-03-01 06:33   81408   ----a-w-   c:\windows\system32\imagehlp.dll
2012-11-20 19:40 . 2012-03-01 06:28   5120   ----a-w-   c:\windows\system32\wmi.dll
2012-11-20 19:40 . 2012-03-01 05:33   159232   ----a-w-   c:\windows\SysWow64\imagehlp.dll
2012-11-20 19:40 . 2012-03-01 05:29   5120   ----a-w-   c:\windows\SysWow64\wmi.dll
2012-11-20 19:39 . 2012-11-20 19:39   --------   d-----w-   c:\program files\ESET
2012-11-20 19:30 . 2012-08-31 18:19   1659760   ----a-w-   c:\windows\system32\drivers\ntfs.sys
2012-11-20 19:27 . 2011-07-09 02:46   288768   ----a-w-   c:\windows\system32\drivers\mrxsmb10.sys
2012-11-20 19:26 . 2011-03-12 12:08   1465344   ----a-w-   c:\windows\system32\XpsPrint.dll
2012-11-20 19:26 . 2011-03-12 11:23   870912   ----a-w-   c:\windows\SysWow64\XpsPrint.dll
2012-11-20 19:26 . 2012-11-20 19:26   --------   d-----w-   c:\program files\Creative
2012-11-20 19:26 . 2011-03-11 06:34   1359872   ----a-w-   c:\windows\system32\mfc42u.dll
2012-11-20 19:26 . 2011-03-11 06:34   1395712   ----a-w-   c:\windows\system32\mfc42.dll
2012-11-20 19:26 . 2011-03-11 05:33   1164288   ----a-w-   c:\windows\SysWow64\mfc42u.dll
2012-11-20 19:26 . 2011-03-11 05:33   1137664   ----a-w-   c:\windows\SysWow64\mfc42.dll
2012-11-20 19:26 . 2012-06-09 05:43   14172672   ----a-w-   c:\windows\system32\shell32.dll
2012-11-20 19:24 . 2012-11-20 19:24   --------   d-----w-   c:\programdata\Creative
2012-11-20 19:23 . 2010-09-30 06:47   70656   ----a-w-   c:\windows\SysWow64\fontsub.dll
2012-11-20 19:22 . 2011-04-22 22:15   27520   ----a-w-   c:\windows\system32\drivers\Diskdump.sys
2012-11-20 19:21 . 2011-01-17 11:09   197120   ----a-w-   c:\windows\system32\d3d10_1.dll
2012-11-20 19:21 . 2011-01-17 05:47   161792   ----a-w-   c:\windows\SysWow64\d3d10_1.dll
2012-11-20 19:21 . 2011-04-29 03:06   467456   ----a-w-   c:\windows\system32\drivers\srv.sys
2012-11-20 19:21 . 2011-04-29 03:05   410112   ----a-w-   c:\windows\system32\drivers\srv2.sys
2012-11-20 19:21 . 2011-04-29 03:05   168448   ----a-w-   c:\windows\system32\drivers\srvnet.sys
2012-11-20 19:21 . 2011-08-17 05:26   613888   ----a-w-   c:\windows\system32\psisdecd.dll
2012-11-20 19:21 . 2011-08-17 05:25   108032   ----a-w-   c:\windows\system32\psisrndr.ax
2012-11-20 19:21 . 2011-08-17 04:24   465408   ----a-w-   c:\windows\SysWow64\psisdecd.dll
2012-11-20 19:21 . 2011-08-17 04:19   75776   ----a-w-   c:\windows\SysWow64\psisrndr.ax
2012-11-20 19:21 . 2012-04-28 03:55   210944   ----a-w-   c:\windows\system32\drivers\rdpwd.sys
2012-11-20 19:19 . 2012-05-14 05:26   956928   ----a-w-   c:\windows\system32\localspl.dll
2012-11-20 19:19 . 2011-02-23 04:55   90624   ----a-w-   c:\windows\system32\drivers\bowser.sys
2012-11-20 19:19 . 2011-08-27 05:37   861696   ----a-w-   c:\windows\system32\oleaut32.dll
2012-11-20 19:19 . 2011-08-27 05:37   331776   ----a-w-   c:\windows\system32\oleacc.dll
.
.
((((((((((((((((((((((((((((((((((((((((   Find3M Report   ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-10-16 08:38 . 2012-11-28 20:49   135168   ----a-w-   c:\windows\apppatch\AppPatch64\AcXtrnal.dll
2012-10-16 08:38 . 2012-11-28 20:49   350208   ----a-w-   c:\windows\apppatch\AppPatch64\AcLayers.dll
2012-10-16 07:39 . 2012-11-28 20:49   561664   ----a-w-   c:\windows\apppatch\AcLayers.dll
2012-10-10 20:23 . 2012-10-10 20:23   247144   ----a-w-   c:\windows\system32\nvinitx.dll
2012-10-10 20:23 . 2012-10-10 20:23   1867112   ----a-w-   c:\windows\SysWow64\nvcuvenc.dll
2012-10-10 20:23 . 2012-10-10 20:23   18252136   ----a-w-   c:\windows\system32\nvd3dumx.dll
2012-10-10 20:23 . 2012-10-10 20:23   1482600   ----a-w-   c:\windows\system32\nvdispgenco64.dll
2012-10-10 20:23 . 2012-10-10 20:23   6127464   ----a-w-   c:\windows\SysWow64\nvopencl.dll
2012-10-10 20:23 . 2012-10-10 20:23   2574696   ----a-w-   c:\windows\SysWow64\nvcuvid.dll
2012-10-10 20:23 . 2012-10-10 20:23   25256296   ----a-w-   c:\windows\system32\nvcompiler.dll
2012-10-10 20:23 . 2012-10-10 20:23   831848   ----a-w-   c:\windows\SysWow64\nvumdshim.dll
2012-10-10 20:23 . 2012-10-10 20:23   202600   ----a-w-   c:\windows\SysWow64\nvinit.dll
2012-10-10 20:23 . 2012-10-10 20:23   7414632   ----a-w-   c:\windows\system32\nvopencl.dll
2012-10-10 20:23 . 2012-10-10 20:23   973672   ----a-w-   c:\windows\system32\nvumdshimx.dll
2012-10-10 20:23 . 2012-10-10 20:23   14922600   ----a-w-   c:\windows\system32\nvwgf2umx.dll
2012-10-10 20:23 . 2012-10-10 20:23   9146728   ----a-w-   c:\windows\system32\nvcuda.dll
2012-10-10 20:23 . 2012-10-10 20:23   7697768   ----a-w-   c:\windows\SysWow64\nvcuda.dll
2012-10-10 20:23 . 2012-10-10 20:23   2218344   ----a-w-   c:\windows\system32\nvcuvenc.dll
2012-10-10 20:23 . 2012-10-10 20:23   12501352   ----a-w-   c:\windows\SysWow64\nvwgf2um.dll
2012-10-10 20:22 . 2012-10-10 20:22   26331496   ----a-w-   c:\windows\system32\nvoglv64.dll
2012-10-10 20:22 . 2012-10-10 20:22   1760104   ----a-w-   c:\windows\system32\nvdispco64.dll
2012-10-10 20:22 . 2012-10-10 20:22   2747240   ----a-w-   c:\windows\system32\nvcuvid.dll
2012-10-10 20:22 . 2012-10-10 20:22   19906920   ----a-w-   c:\windows\SysWow64\nvoglv32.dll
2012-10-10 20:22 . 2012-10-10 20:22   13443944   ----a-w-   c:\windows\system32\drivers\nvlddmkm.sys
2012-10-10 20:22 . 2012-10-10 20:22   17559912   ----a-w-   c:\windows\SysWow64\nvcompiler.dll
2012-10-08 07:21 . 2012-10-08 07:21   64072   ----a-w-   c:\windows\system32\drivers\epfwwfp.sys
2012-10-08 07:21 . 2012-10-08 07:21   59440   ----a-w-   c:\windows\system32\drivers\EpfwLWF.sys
2012-10-08 07:21 . 2012-10-08 07:21   189208   ----a-w-   c:\windows\system32\drivers\epfw.sys
2012-10-08 07:21 . 2012-10-08 07:21   149592   ----a-w-   c:\windows\system32\drivers\ehdrv.sys
2012-10-08 07:21 . 2012-10-08 07:21   211344   ----a-w-   c:\windows\system32\drivers\eamonm.sys
2012-10-02 12:15 . 2012-10-02 12:15   430952   ----a-w-   c:\windows\SysWow64\nvStreaming.exe
2012-09-19 15:57 . 2012-09-19 15:57   17896   ----a-w-   c:\windows\system32\msvcr100_clr0400.dll
2011-04-09 15:37   182272   --sh--w-   c:\windows\data.dll
.
.
(((((((((((((((((((((((((((((((((((((   Reg Loading Points   ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_LOCAL_MACHINE\Wow6432Node\~\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}]
2012-12-09 18:28   1796552   ----a-w-   c:\program files (x86)\AVG Secure Search\13.2.0.4\AVG Secure Search_toolbar.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar]
"{95B7759C-8C7F-4BF1-B163-73684A933233}"= "c:\program files (x86)\AVG Secure Search\13.2.0.4\AVG Secure Search_toolbar.dll" [2012-12-09 1796552]
.
[HKEY_CLASSES_ROOT\clsid\{95b7759c-8c7f-4bf1-b163-73684a933233}]
[HKEY_CLASSES_ROOT\AVG Secure Search.PugiObj.1]
[HKEY_CLASSES_ROOT\AVG Secure Search.PugiObj]
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2010-11-21 1475584]
"IDMan"="e:\_nainstalovane programy\Internet Download Manager\idman.exe" [2011-07-18 3405208]
"Comrade.exe"="c:\program files (x86)\GameSpy\Comrade\Comrade.exe" [2007-06-29 36864]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"GrooveMonitor"="c:\program files (x86)\Microsoft Office\Office12\GrooveMonitor.exe" [2009-02-26 30040]
"vProt"="c:\program files (x86)\AVG Secure Search\vprot.exe" [2012-12-09 997320]
"ROC_roc_ssl_v12"="c:\program files (x86)\AVG Secure Search\ROC_roc_ssl_v12.exe" [2012-12-09 1020512]
"PWRISOVM.EXE"="c:\program files (x86)\PowerISO\PWRISOVM.EXE" [2012-08-24 336992]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows]
"LoadAppInit_DLLs"=1 (0x1)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32]
"mixer5"=wdmaud.drv
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute   REG_MULTI_SZ      autocheck autochk *\0OODBS
.
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2012-07-08 123856]
R3 Creative Audio Engine Licensing Service;Creative Audio Engine Licensing Service;c:\program files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe [2012-11-20 79360]
R3 dmvsc;dmvsc;c:\windows\system32\drivers\dmvsc.sys [2010-11-21 71168]
R3 IObitUnlocker;IObitUnlocker;c:\program files (x86)\IObit\IObit Unlocker\IObitUnlocker.sys [2011-03-09 33184]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys [2012-08-23 19456]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2012-08-23 57856]
R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys [2012-08-23 30208]
R3 WatAdminSvc;Služba Windows Activation Technologies;c:\windows\system32\Wat\WatAdminSvc.exe [2012-11-20 1255736]
S0 epfwwfp;epfwwfp;c:\windows\system32\DRIVERS\epfwwfp.sys [2012-10-08 64072]
S0 sptd;sptd;c:\windows\\SystemRoot\System32\Drivers\sptd.sys [x]
S1 avgtp;avgtp;c:\windows\system32\drivers\avgtpx64.sys [2012-12-09 30568]
S1 eamonm;eamonm;c:\windows\system32\DRIVERS\eamonm.sys [2012-10-08 211344]
S1 ehdrv;ehdrv;c:\windows\system32\DRIVERS\ehdrv.sys [2012-10-08 149592]
S1 EpfwLWF;Epfw NDIS LightWeight Filter;c:\windows\system32\DRIVERS\EpfwLWF.sys [2012-10-08 59440]
S2 ekrn;ESET Service;c:\program files\ESET\ESET Smart Security\x86\ekrn.exe [2012-11-14 1329304]
S2 IDMWFP;IDMWFP;c:\windows\system32\DRIVERS\idmwfp.sys [2011-07-06 145008]
S2 Intel(R) PROSet Monitoring Service;Intel(R) PROSet Monitoring Service;c:\windows\system32\IProsetMonitor.exe [2011-11-09 189608]
S2 OODefragAgent;O&O Defrag;c:\program files\OO Software\Defrag\oodag.exe [2012-06-06 3293552]
S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2012-10-02 382824]
S2 vToolbarUpdater13.2.0;vToolbarUpdater13.2.0;c:\program files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\13.2.0\ToolbarUpdater.exe [2012-12-09 711112]
S3 asmthub3;ASMedia USB3 Hub Service;c:\windows\system32\DRIVERS\asmthub3.sys [2011-11-03 130536]
S3 asmtxhci;ASMEDIA XHCI Service;c:\windows\system32\DRIVERS\asmtxhci.sys [2011-11-03 395752]
S3 Mac606;Mac606 Filter;c:\windows\system32\DRIVERS\Mac606a.sys [2008-04-08 12776]
.
.
--- Other Services/Drivers In Memory ---
.
*NewlyCreated* - SCDEMU
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\IDM Shell Extension]
@="{CDC95B92-E27C-4745-A8C5-64A52A78855D}"
[HKEY_CLASSES_ROOT\CLSID\{CDC95B92-E27C-4745-A8C5-64A52A78855D}]
2011-05-30 16:50   22408   ----a-w-   e:\_nainstalovane programy\Internet Download Manager\IDMShellExt64.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"egui"="c:\program files\ESET\ESET Smart Security\egui.exe" [2012-11-14 6325424]
"OODefragTray"="c:\program files\OO Software\Defrag\oodtray.exe" [2012-06-06 3998064]
.
------- Supplementary Scan -------
.
uLocal Page = c:\windows\system32\blank.htm
mLocal Page = c:\windows\SysWOW64\blank.htm
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~2\MICROS~1\Office12\EXCEL.EXE/3000
IE: Stiahnuť s IDM - e:\_nainstalovane programy\Internet Download Manager\IEExt.htm
IE: Stiahnuť s IDM všetky prepojenia - e:\_nainstalovane programy\Internet Download Manager\IEGetAll.htm
TCP: DhcpNameServer = 192.168.0.1
Handler: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - c:\program files (x86)\Common Files\AVG Secure Search\ViProtocolInstaller\13.2.0\ViProtocol.dll
.
- - - - ORPHANS REMOVED - - - -
.
AddRemove-FTQ5C1 - c:\program files (x86)\FTQ5C1\uninst.exe
AddRemove-PunkBusterSvc - c:\windows\system32\pbsvc.exe
.
.
.
--------------------- LOCKED REGISTRY KEYS ---------------------
.
[HKEY_USERS\S-1-5-21-2150537740-2270024768-3259585903-1000_Classes\Wow6432Node\CLSID\{28547fc3-0bb1-4c27-80a3-40c8eb722965}]
@Denied: (Full) (Everyone)
@Allowed: (Read) (RestrictedCode)
"Model"=dword:00000157
"Therad"=dword:00000008
.
[HKEY_USERS\S-1-5-21-2150537740-2270024768-3259585903-1000_Classes\Wow6432Node\CLSID\{5ED60779-4DE2-4E07-B862-974CA4FF2E9C}]
@Denied: (Full) (Everyone)
@Allowed: (Read) (RestrictedCode)
"scansk"=hex(0):c6,60,86,77,07,9d,5c,49,a4,87,0e,09,0c,28,d9,82,50,49,25,db,8f,
   e8,87,fe,15,82,1e,63,b7,ca,0a,14,f3,4a,4a,68,fe,3f,00,a6,00,00,00,00,00,00,\
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Shockwave Flash Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash9f.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
@="0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
@="ShockwaveFlash.ShockwaveFlash.9"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash9f.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="ShockwaveFlash.ShockwaveFlash"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Macromedia Flash Factory Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash9f.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
@="FlashFactory.FlashFactory.1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash9f.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="FlashFactory.FlashFactory"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D4304BCF-B8E9-4B35-BEA0-DC5B522670C2}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil9f.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D4304BCF-B8E9-4B35-BEA0-DC5B522670C2}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D4304BCF-B8E9-4B35-BEA0-DC5B522670C2}\LocalServer32]
@="c:\\Windows\\SysWow64\\Macromed\\Flash\\FlashUtil9f.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D4304BCF-B8E9-4B35-BEA0-DC5B522670C2}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{2E4BB6BE-A75F-4DC0-9500-68203655A2C4}]
@Denied: (A 2) (Everyone)
@="IFlashBroker"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{2E4BB6BE-A75F-4DC0-9500-68203655A2C4}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{2E4BB6BE-A75F-4DC0-9500-68203655A2C4}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\System*]
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
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Completion time: 2012-12-09  21:00:44
ComboFix-quarantined-files.txt  2012-12-09 20:00
.
Pre-Run: 288 838 512 640 bytes free
Post-Run: 288 799 707 136 bytes free
.
- - End Of File - - B18BD25BAF03EFBD26D3AA3E1A177E6B


Offline

Užívateľ
Užívateľ
Obrázok užívateľa

Registrovaný: 09.05.11
Prihlásený: 20.12.18
Príspevky: 618
Témy: 2 | 2
NapísalOffline : 08.12.2012 21:24 | Mrznutie Systemu

1.presun combofix na plochu stiahni si cfscript z http://uloz.to/xijMUQP/cfscript-txt ulož ho na plochu pretiahni cfsript cez combofix aplikuje sa script pošli log
2. Stiahni si TDSSKiller http://support.kaspersky.com/downloads/ ... killer.exe spusť daj scan predom nič nemaž pošli report z C:
3.Stiahni si MBAM z http://fileforum.betanews.com/detail/Ma ... 86760019/1 nainštaluj daj plnú kontrolu predom nič nemaž pošli log
4.nastala nejaká zmena


Offline

Zmazaný užívateľ
Zmazaný užívateľ
Obrázok užívateľa
Napísal autor témyOffline : 02.01.2013 13:27 | Mrznutie Systemu

vypis z posledneho : http://uloz.to/xjYBNGM/killer-txt

nedavno som odinstaloval claro search,driver detect
Niektore veci sa mi podarili odstranit(malware) s ESET Rogue Applications Remover 1.0.2 64-bit.

*Nebude to chyba aj v Biose?


Offline

Užívateľ
Užívateľ
Obrázok užívateľa

Registrovaný: 09.05.11
Prihlásený: 20.12.18
Príspevky: 618
Témy: 2 | 2
NapísalOffline : 02.01.2013 13:42 | Mrznutie Systemu

a co combofix a MBAM kde sú vysledky


Offline

Zmazaný užívateľ
Zmazaný užívateľ
Obrázok užívateľa
Napísal autor témyOffline : 09.02.2013 18:05 | Mrznutie Systemu

Tuto temu povazujem za vyriesenu. Dovod , v Biose bola vypnuta funkcia EIST (Intel chipset),a preto to zamrzalo(male napatie,nizky takt).Preto mi mrzol system pri starte(asi 20sec uvodne logo),dialo sa to semtam aj pri hrani Crysis2,vystrelil som a hra Freeze,aj OS. Po 20sec vsetko bezalo normalne.


 [ Príspevkov: 9 ] 


Mrznutie Systemu



Podobné témy

 Témy  Odpovede  Zobrazenia  Posledný príspevok 
V tomto fóre nie sú ďalšie neprečítané témy.

Mrznutie systému

v Operačné systémy Microsoft

2

449

25.06.2008 22:50

Radian

V tomto fóre nie sú ďalšie neprečítané témy.

mrznutie systému XP

v Operačné systémy Microsoft

2

191

13.04.2013 9:20

stanoj

V tomto fóre nie sú ďalšie neprečítané témy.

mrznutie pc aj pocas instalacie systemu (?)

v Ostatné

13

646

30.03.2010 18:41

lubosst

V tomto fóre nie sú ďalšie neprečítané témy.

mrznutie

v Ostatné

8

1087

17.04.2007 17:32

Tomas1

V tomto fóre nie sú ďalšie neprečítané témy.

Mrznutie

v Ostatné

7

750

30.08.2010 14:39

petos

V tomto fóre nie sú ďalšie neprečítané témy.

Mrznutie

v Operačné systémy Microsoft

3

608

08.08.2008 20:20

jaroslav hruška

V tomto fóre nie sú ďalšie neprečítané témy.

Mrznutie PC

v Ostatné

10

727

24.06.2011 21:23

Millfox

V tomto fóre nie sú ďalšie neprečítané témy.

Mrznutie notebooku

v Ostatné

8

739

18.03.2009 23:19

stefan-s

V tomto fóre nie sú ďalšie neprečítané témy.

mrznutie nb

v Notebooky a netbooky

7

324

10.02.2013 21:46

macisko1

V tomto fóre nie sú ďalšie neprečítané témy.

mrznutie PC

v Ostatné

8

1032

13.11.2007 23:48

NR-Miroo

V tomto fóre nie sú ďalšie neprečítané témy.

Mrznutie PC

v Operačné systémy Microsoft

0

344

22.11.2016 22:39

Marek01

V tomto fóre nie sú ďalšie neprečítané témy.

Mrznutie PC

v AMD - Advanced Micro Devices

4

638

11.08.2009 13:57

slavix

V tomto fóre nie sú ďalšie neprečítané témy.

mrznutie aplikacii

v Notebooky a netbooky

1

406

09.08.2010 14:44

rezystor

V tomto fóre nie sú ďalšie neprečítané témy.

Mrznutie pc

v Antivíry a antispywary

14

1511

12.02.2010 18:02

stancoj

V tomto fóre nie sú ďalšie neprečítané témy.

Mrznutie hier

v Počítačové hry

13

1057

11.10.2009 15:24

Snajper2

V tomto fóre nie sú ďalšie neprečítané témy.

Mrznutie počítača

[ Choď na stránku:Choď na stránku: 1, 2 ]

v Operačné systémy Microsoft

31

1360

11.12.2010 20:21

emeron



© 2005 - 2024 PCforum, edited by JanoF