Obsah fóra
PravidláRegistrovaťPrihlásenie




Odpovedať na tému [ Príspevkov: 9 ] 
AutorSpráva
Offline

Zmazaný užívateľ
Zmazaný užívateľ
Obrázok užívateľa
Príspevok NapísalOffline : 08.12.2012 19:40

Stale mi mrzne WIn7 ,hlavne pri starte. Ide pohybat mysou,klavesy reaguju. Musim stlacit crtl+alt+del.
Dalej mi toto robi aj u Crysis 2(niekedy na 10s).
(oT:keby som mal taku silu ako crysis2 tak ten PC by bol asi na srot :-D ).
Casto to robi u Googlechrome.
Bude to nieco s HW alebo v SW OS2?
*Lebo ma to uz zacina hnevat :jaw: .
*A najviac ma vie vytocit to dlhe startovanie OS2.

? Virus?


Offline

Užívateľ
Užívateľ
Obrázok užívateľa

Registrovaný: 09.05.11
Prihlásený: 20.12.18
Príspevky: 618
Témy: 2
Príspevok NapísalOffline : 08.12.2012 20:07

vlož log z rsit http://en.kioskea.net/download/download-11416-rsit


Offline

Zmazaný užívateľ
Zmazaný užívateľ
Obrázok užívateľa
Príspevok Napísal autor témyOffline : 08.12.2012 20:40

log

Kód:
Logfile of random's system information tool 1.09 (written by random/random)
Run by MarekMedved at 2012-12-09 20:40:00
Microsoft Windows 7 Professional  Service Pack 1
System drive C: has 276 GB (58%) free of 477 GB
Total RAM: 8147 MB (73% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:40:06, on 9. 12. 2012
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16455)
Boot mode: Normal

Running processes:
E:\_nainstalovane programy\Internet Download Manager\idman.exe
C:\Program Files (x86)\AVG Secure Search\vprot.exe
C:\Program Files (x86)\PowerISO\PWRISOVM.EXE
E:\_nainstalovane programy\Internet Download Manager\IEMonitor.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\MarekMedved\Downloads\RSIT (1).exe
C:\Program Files (x86)\trend micro\MarekMedved.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: AVG Security Toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG Secure Search\13.2.0.4\AVG Secure Search_toolbar.dll
O3 - Toolbar: AVG Security Toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG Secure Search\13.2.0.4\AVG Secure Search_toolbar.dll
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [vProt] "C:\Program Files (x86)\AVG Secure Search\vprot.exe"
O4 - HKLM\..\Run: [ROC_roc_ssl_v12] "C:\Program Files (x86)\AVG Secure Search\ROC_roc_ssl_v12.exe" / /PROMPT /CMPID=roc_ssl_v12
O4 - HKLM\..\Run: [PWRISOVM.EXE] C:\Program Files (x86)\PowerISO\PWRISOVM.EXE -startup
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [IDMan] E:\_nainstalovane programy\Internet Download Manager\idman.exe /onboot
O4 - HKCU\..\Run: [Comrade.exe] C:\Program Files (x86)\GameSpy\Comrade\Comrade.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-21-2150537740-2270024768-3259585903-1003\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-2150537740-2270024768-3259585903-1003\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'UpdatusUser')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Stiahnuť s IDM - E:\_nainstalovane programy\Internet Download Manager\IEExt.htm
O8 - Extra context menu item: Stiahnuť s IDM všetky prepojenia - E:\_nainstalovane programy\Internet Download Manager\IEGetAll.htm
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files (x86)\Common Files\AVG Secure Search\ViProtocolInstaller\13.2.0\ViProtocol.dll
O20 - AppInit_DLLs: C:\Windows\data.dll
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Creative Audio Engine Licensing Service - Creative Labs - C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe
O23 - Service: Creative Audio Service (CTAudSvcService) - Creative Technology Ltd - C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Intel(R) PROSet Monitoring Service - Unknown owner - C:\Windows\system32\IProsetMonitor.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: O&O Defrag (OODefragAgent) - O&O Software GmbH - C:\Program Files\OO Software\Defrag\oodag.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: PnkBstrB - Unknown owner - C:\Windows\system32\PnkBstrB.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: vToolbarUpdater13.2.0 - Unknown owner - C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\13.2.0\ToolbarUpdater.exe
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 9724 bytes

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}]
AVG Security Toolbar - C:\Program Files (x86)\AVG Secure Search\13.2.0.4\AVG Secure Search_toolbar.dll [2012-12-09 1796552]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{95B7759C-8C7F-4BF1-B163-73684A933233} - AVG Security Toolbar - C:\Program Files (x86)\AVG Secure Search\13.2.0.4\AVG Secure Search_toolbar.dll [2012-12-09 1796552]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"GrooveMonitor"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040]
"vProt"=C:\Program Files (x86)\AVG Secure Search\vprot.exe [2012-12-09 997320]
"ROC_roc_ssl_v12"=C:\Program Files (x86)\AVG Secure Search\ROC_roc_ssl_v12.exe [2012-12-09 1020512]
"PWRISOVM.EXE"=C:\Program Files (x86)\PowerISO\PWRISOVM.EXE [2012-08-24 336992]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-21 1475584]
"IDMan"=E:\_nainstalovane programy\Internet Download Manager\idman.exe [2011-07-18 3405208]
"Comrade.exe"=C:\Program Files (x86)\GameSpy\Comrade\Comrade.exe [2007-06-29 36864]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\Windows\data.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\SysWOW64\l3codeca.acm
"vidc.cvid"=iccvid.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave5"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer5"=wdmaud.drv
"VIDC.FPS1"=frapsvid.dll
"VIDC.FMVC"=fmcodec.dll

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2012-12-09 20:40:01 ----D---- C:\Program Files (x86)\trend micro
2012-12-09 20:40:00 ----D---- C:\rsit
2012-12-09 20:06:57 ----D---- C:\Program Files (x86)\GameSpy
2012-12-09 20:05:56 ----D---- C:\Windows\SysWOW64\URTTEMP
2012-12-09 20:05:43 ----RHD---- C:\Users\MarekMedved\AppData\Roaming\SecuROM
2012-12-09 20:04:48 ----A---- C:\Windows\SysWOW64\PnkBstrB.exe
2012-12-09 20:04:47 ----A---- C:\Windows\SysWOW64\PnkBstrA.exe
2012-12-09 20:04:47 ----A---- C:\Windows\SysWOW64\pbsvc.exe
2012-12-09 19:43:28 ----A---- C:\Windows\SysWOW64\CmdLineExt_x64.dll
2012-12-09 19:43:09 ----HDC---- C:\ProgramData\{0691F710-1ECA-4B5A-9727-25554F1BFDC6}
2012-12-09 19:37:05 ----D---- C:\Windows\SysWOW64\Macromed
2012-12-09 19:29:35 ----D---- C:\Users\MarekMedved\AppData\Roaming\PowerISO
2012-12-09 19:28:55 ----D---- C:\ProgramData\AVG Secure Search
2012-12-09 19:28:46 ----D---- C:\Program Files (x86)\Common Files\AVG Secure Search
2012-12-09 19:28:45 ----D---- C:\Program Files (x86)\AVG Secure Search
2012-12-09 19:28:19 ----D---- C:\Program Files (x86)\PowerISO
2012-12-07 13:40:26 ----A---- C:\Windows\SysWOW64\drivers\Mac606a.sys
2012-12-07 13:40:26 ----A---- C:\Windows\SysWOW64\drivers\HidNt.sys
2012-12-07 13:40:25 ----A---- C:\Windows\SysWOW64\ivl807a.dll
2012-12-07 13:40:25 ----A---- C:\Windows\SysWOW64\Hidhlp.dll
2012-12-07 13:40:24 ----D---- C:\Program Files (x86)\FTQ5C1
2012-12-05 15:30:06 ----D---- C:\Program Files (x86)\Crysis 2.Limited Edition.v 1.1.0.0
2012-12-04 21:15:59 ----D---- C:\Program Files (x86)\DsNET Corp
2012-12-03 13:23:47 ----A---- C:\Windows\SysWOW64\VB6STKIT.DLL
2012-12-03 13:23:47 ----A---- C:\Windows\SysWOW64\VB6FR.DLL
2012-12-03 13:23:46 ----D---- C:\Users\MarekMedved\AppData\Roaming\TFP
2012-12-03 13:23:46 ----A---- C:\Windows\SysWOW64\MSCMCFR.DLL
2012-12-03 13:23:46 ----A---- C:\Windows\SysWOW64\CMDLGFR.DLL
2012-12-02 16:28:46 ----D---- C:\CRYSIS EDITOR
2012-12-02 15:04:22 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2012-12-02 01:02:34 ----D---- C:\Users\MarekMedved\AppData\Roaming\IDM
2012-12-02 01:02:33 ----D---- C:\Users\MarekMedved\AppData\Roaming\DMCache
2012-12-01 20:50:00 ----D---- C:\Fraps
2012-11-29 21:08:25 ----D---- C:\vylucenia
2012-11-28 11:07:23 ----SH---- C:\Windows\data.dll
2012-11-28 00:23:46 ----D---- C:\ProgramData\Solidshield
2012-11-27 23:57:47 ----D---- C:\Program Files (x86)\Electronic Arts
2012-11-27 23:52:25 ----D---- C:\Users\MarekMedved\AppData\Roaming\IObit
2012-11-26 20:09:00 ----A---- C:\Windows\SysWOW64\bassmod.dll
2012-11-26 18:57:53 ----D---- C:\ProgramData\Electronic Arts
2012-11-26 18:57:53 ----D---- C:\ProgramData\EA Core
2012-11-26 18:48:18 ----A---- C:\Windows\SysWOW64\XAudio2_7.dll
2012-11-26 18:48:18 ----A---- C:\Windows\SysWOW64\XAPOFX1_5.dll
2012-11-26 18:48:18 ----A---- C:\Windows\SysWOW64\xactengine3_7.dll
2012-11-26 18:48:17 ----A---- C:\Windows\SysWOW64\D3DCompiler_43.dll
2012-11-26 18:48:16 ----A---- C:\Windows\SysWOW64\D3DX9_43.dll
2012-11-26 18:48:16 ----A---- C:\Windows\SysWOW64\d3dx11_43.dll
2012-11-26 18:48:16 ----A---- C:\Windows\SysWOW64\d3dx10_43.dll
2012-11-26 18:48:16 ----A---- C:\Windows\SysWOW64\d3dcsx_43.dll
2012-11-26 18:48:15 ----A---- C:\Windows\SysWOW64\XAudio2_6.dll
2012-11-26 18:48:15 ----A---- C:\Windows\SysWOW64\XAPOFX1_4.dll
2012-11-26 18:48:15 ----A---- C:\Windows\SysWOW64\xactengine3_6.dll
2012-11-26 18:48:15 ----A---- C:\Windows\SysWOW64\X3DAudio1_7.dll
2012-11-26 18:48:14 ----A---- C:\Windows\SysWOW64\XAudio2_5.dll
2012-11-26 18:48:13 ----A---- C:\Windows\SysWOW64\xactengine3_5.dll
2012-11-26 18:48:13 ----A---- C:\Windows\SysWOW64\D3DCompiler_42.dll
2012-11-26 18:48:12 ----A---- C:\Windows\SysWOW64\D3DX9_42.dll
2012-11-26 18:48:12 ----A---- C:\Windows\SysWOW64\d3dx11_42.dll
2012-11-26 18:48:12 ----A---- C:\Windows\SysWOW64\d3dx10_42.dll
2012-11-26 18:48:12 ----A---- C:\Windows\SysWOW64\d3dcsx_42.dll
2012-11-26 18:48:11 ----A---- C:\Windows\SysWOW64\D3DX9_41.dll
2012-11-26 18:48:11 ----A---- C:\Windows\SysWOW64\d3dx10_41.dll
2012-11-26 18:48:11 ----A---- C:\Windows\SysWOW64\D3DCompiler_41.dll
2012-11-26 18:48:10 ----A---- C:\Windows\SysWOW64\XAudio2_4.dll
2012-11-26 18:48:10 ----A---- C:\Windows\SysWOW64\XAPOFX1_3.dll
2012-11-26 18:48:10 ----A---- C:\Windows\SysWOW64\xactengine3_4.dll
2012-11-26 18:48:09 ----A---- C:\Windows\SysWOW64\X3DAudio1_6.dll
2012-11-26 18:48:09 ----A---- C:\Windows\SysWOW64\d3dx10_40.dll
2012-11-26 18:48:09 ----A---- C:\Windows\SysWOW64\D3DCompiler_40.dll
2012-11-26 18:48:08 ----A---- C:\Windows\SysWOW64\XAudio2_3.dll
2012-11-26 18:48:08 ----A---- C:\Windows\SysWOW64\XAPOFX1_2.dll
2012-11-26 18:48:08 ----A---- C:\Windows\SysWOW64\D3DX9_40.dll
2012-11-26 18:48:07 ----A---- C:\Windows\SysWOW64\xactengine3_3.dll
2012-11-26 18:48:06 ----A---- C:\Windows\SysWOW64\X3DAudio1_5.dll
2012-11-26 18:48:05 ----A---- C:\Windows\SysWOW64\XAudio2_2.dll
2012-11-26 18:48:05 ----A---- C:\Windows\SysWOW64\XAPOFX1_1.dll
2012-11-26 18:48:05 ----A---- C:\Windows\SysWOW64\xactengine3_2.dll
2012-11-26 18:48:05 ----A---- C:\Windows\SysWOW64\d3dx10_39.dll
2012-11-26 18:48:05 ----A---- C:\Windows\SysWOW64\D3DCompiler_39.dll
2012-11-26 18:48:04 ----A---- C:\Windows\SysWOW64\XAudio2_1.dll
2012-11-26 18:48:04 ----A---- C:\Windows\SysWOW64\XAPOFX1_0.dll
2012-11-26 18:48:04 ----A---- C:\Windows\SysWOW64\xactengine3_1.dll
2012-11-26 18:48:04 ----A---- C:\Windows\SysWOW64\X3DAudio1_4.dll
2012-11-26 18:48:04 ----A---- C:\Windows\SysWOW64\D3DX9_39.dll
2012-11-26 18:48:02 ----A---- C:\Windows\SysWOW64\XAudio2_0.dll
2012-11-26 18:48:02 ----A---- C:\Windows\SysWOW64\D3DX9_38.dll
2012-11-26 18:48:02 ----A---- C:\Windows\SysWOW64\d3dx10_38.dll
2012-11-26 18:48:02 ----A---- C:\Windows\SysWOW64\D3DCompiler_38.dll
2012-11-26 18:48:01 ----A---- C:\Windows\SysWOW64\xactengine3_0.dll
2012-11-26 18:48:01 ----A---- C:\Windows\SysWOW64\X3DAudio1_3.dll
2012-11-26 18:47:55 ----A---- C:\Windows\SysWOW64\d3dx10_37.dll
2012-11-26 18:47:55 ----A---- C:\Windows\SysWOW64\D3DCompiler_37.dll
2012-11-26 18:47:54 ----A---- C:\Windows\SysWOW64\D3DX9_37.dll
2012-11-26 18:47:53 ----A---- C:\Windows\SysWOW64\xactengine2_10.dll
2012-11-26 18:47:50 ----A---- C:\Windows\SysWOW64\d3dx10_36.dll
2012-11-26 18:47:50 ----A---- C:\Windows\SysWOW64\D3DCompiler_36.dll
2012-11-26 18:47:49 ----A---- C:\Windows\SysWOW64\d3dx9_36.dll
2012-11-26 18:47:48 ----A---- C:\Windows\SysWOW64\xactengine2_9.dll
2012-11-26 18:47:48 ----A---- C:\Windows\SysWOW64\d3dx10_35.dll
2012-11-26 18:47:48 ----A---- C:\Windows\SysWOW64\D3DCompiler_35.dll
2012-11-26 18:47:47 ----A---- C:\Windows\SysWOW64\d3dx9_35.dll
2012-11-26 18:47:46 ----A---- C:\Windows\SysWOW64\xactengine2_8.dll
2012-11-26 18:47:46 ----A---- C:\Windows\SysWOW64\X3DAudio1_2.dll
2012-11-26 18:47:43 ----A---- C:\Windows\SysWOW64\d3dx10_34.dll
2012-11-26 18:47:43 ----A---- C:\Windows\SysWOW64\D3DCompiler_34.dll
2012-11-26 18:47:42 ----A---- C:\Windows\SysWOW64\xinput1_3.dll
2012-11-26 18:47:42 ----A---- C:\Windows\SysWOW64\d3dx9_34.dll
2012-11-26 18:47:40 ----A---- C:\Windows\SysWOW64\xactengine2_7.dll
2012-11-26 18:47:40 ----A---- C:\Windows\SysWOW64\d3dx10_33.dll
2012-11-26 18:47:40 ----A---- C:\Windows\SysWOW64\D3DCompiler_33.dll
2012-11-26 18:47:39 ----A---- C:\Windows\SysWOW64\d3dx9_33.dll
2012-11-26 18:47:38 ----A---- C:\Windows\SysWOW64\xactengine2_6.dll
2012-11-26 18:47:35 ----A---- C:\Windows\SysWOW64\xactengine2_5.dll
2012-11-26 18:47:35 ----A---- C:\Windows\SysWOW64\d3dx10.dll
2012-11-26 18:47:34 ----A---- C:\Windows\SysWOW64\xactengine2_4.dll
2012-11-26 18:47:34 ----A---- C:\Windows\SysWOW64\x3daudio1_1.dll
2012-11-26 18:47:34 ----A---- C:\Windows\SysWOW64\d3dx9_32.dll
2012-11-26 18:47:33 ----A---- C:\Windows\SysWOW64\xactengine2_3.dll
2012-11-26 18:47:33 ----A---- C:\Windows\SysWOW64\d3dx9_31.dll
2012-11-26 18:47:32 ----A---- C:\Windows\SysWOW64\xinput1_2.dll
2012-11-26 18:47:31 ----A---- C:\Windows\SysWOW64\xinput1_1.dll
2012-11-26 18:47:31 ----A---- C:\Windows\SysWOW64\xactengine2_2.dll
2012-11-26 18:47:28 ----A---- C:\Windows\SysWOW64\xactengine2_1.dll
2012-11-26 18:47:26 ----A---- C:\Windows\SysWOW64\d3dx9_30.dll
2012-11-26 18:47:25 ----A---- C:\Windows\SysWOW64\xactengine2_0.dll
2012-11-26 18:47:25 ----A---- C:\Windows\SysWOW64\x3daudio1_0.dll
2012-11-26 18:47:15 ----A---- C:\Windows\SysWOW64\d3dx9_29.dll
2012-11-26 18:47:14 ----A---- C:\Windows\SysWOW64\d3dx9_28.dll
2012-11-26 18:47:13 ----A---- C:\Windows\SysWOW64\d3dx9_27.dll
2012-11-26 18:47:12 ----A---- C:\Windows\SysWOW64\d3dx9_26.dll
2012-11-26 18:47:09 ----A---- C:\Windows\SysWOW64\d3dx9_25.dll
2012-11-26 18:47:09 ----A---- C:\Windows\SysWOW64\d3dx9_24.dll
2012-11-26 18:26:19 ----D---- C:\Windows\SysWOW64\directx
2012-11-25 21:14:28 ----D---- C:\Program Files (x86)\Microsoft Works
2012-11-25 21:13:57 ----D---- C:\Program Files (x86)\Microsoft Visual Studio
2012-11-25 21:13:57 ----D---- C:\Program Files (x86)\Common Files\DESIGNER
2012-11-25 21:13:37 ----D---- C:\Windows\PCHEALTH
2012-11-25 21:11:08 ----D---- C:\Program Files (x86)\Microsoft Visual Studio 8
2012-11-25 21:09:17 ----D---- C:\Program Files (x86)\Microsoft Office
2012-11-25 21:09:16 ----D---- C:\ProgramData\Microsoft Help
2012-11-24 21:19:32 ----D---- C:\finished torrents
2012-11-24 15:28:55 ----D---- C:\ProgramData\OO Software
2012-11-24 15:14:00 ----D---- C:\ProgramData\IObit
2012-11-24 15:13:59 ----D---- C:\Program Files (x86)\IObit
2012-11-24 14:28:04 ----D---- C:\Program Files (x86)\Abyssmedia
2012-11-24 13:33:56 ----D---- C:\_stare subory
2012-11-24 13:17:20 ----D---- C:\starting torrent files
2012-11-24 13:16:03 ----D---- C:\Program Files (x86)\uTorrent
2012-11-24 13:15:28 ----D---- C:\Users\MarekMedved\AppData\Roaming\uTorrent
2012-11-23 16:36:27 ----D---- C:\Program Files (x86)\CPU Speed Pro
2012-11-23 14:59:36 ----D---- C:\Users\MarekMedved\AppData\Roaming\QuickStoresToolbar
2012-11-23 14:59:34 ----D---- C:\Program Files (x86)\Unlocker
2012-11-22 21:22:40 ----A---- C:\Windows\SysWOW64\wksprtPS.dll
2012-11-22 21:22:40 ----A---- C:\Windows\SysWOW64\tsgqec.dll
2012-11-22 21:22:40 ----A---- C:\Windows\SysWOW64\rdpendp_winip.dll
2012-11-22 21:22:40 ----A---- C:\Windows\SysWOW64\mstscax.dll
2012-11-22 21:22:40 ----A---- C:\Windows\SysWOW64\mstsc.exe
2012-11-22 21:22:40 ----A---- C:\Windows\SysWOW64\MsRdpWebAccess.dll
2012-11-22 21:22:40 ----A---- C:\Windows\SysWOW64\aaclient.dll
2012-11-22 17:39:43 ----D---- C:\Program Files (x86)\Lavalys
2012-11-22 12:50:43 ----D---- C:\Users\MarekMedved\AppData\Roaming\NVIDIA
2012-11-21 16:26:23 ----D---- C:\benzin_plyn
2012-11-21 16:23:20 ----A---- C:\Windows\SysWOW64\PerfStringBackup.INI
2012-11-21 15:27:55 ----A---- C:\Windows\UC.PIF
2012-11-21 15:27:55 ----A---- C:\Windows\RAR.PIF
2012-11-21 15:27:55 ----A---- C:\Windows\PKZIP.PIF
2012-11-21 15:27:55 ----A---- C:\Windows\PKUNZIP.PIF
2012-11-21 15:27:55 ----A---- C:\Windows\LHA.PIF
2012-11-21 15:27:55 ----A---- C:\Windows\ARJ.PIF
2012-11-21 15:27:54 ----D---- C:\Users\MarekMedved\AppData\Roaming\GHISLER
2012-11-21 13:54:26 ----A---- C:\Windows\SysWOW64\fsutil.exe
2012-11-21 13:54:26 ----A---- C:\Windows\SysWOW64\esent.dll
2012-11-21 13:50:56 ----D---- C:\Program Files (x86)\Microsoft.NET
2012-11-20 21:42:39 ----D---- C:\Windows\SysWOW64\Wat
2012-11-20 20:53:57 ----D---- C:\Users\MarekMedved\AppData\Roaming\ESET
2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\wininet.dll
2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\urlmon.dll
2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\url.dll
2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\SetIEInstalledDate.exe
2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\msrating.dll
2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\msls31.dll
2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\mshtmler.dll
2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\msfeedssync.exe
2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\msfeedsbs.dll
2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\licmgr10.dll
2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\jsproxy.dll
2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\jscript9.dll
2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\jscript.dll
2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\inseng.dll
2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\ieui.dll
2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\iesysprep.dll
2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\iesetup.dll
2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\iertutil.dll
2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\iernonce.dll
2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\iepeers.dll
2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\ieframe.dll
2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\iedkcs32.dll
2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\ieapfltr.dll
2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\ieapfltr.dat
2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\ieakeng.dll
2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\IEAdvpack.dll
2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\ie4uinit.exe
2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\icardie.dll
2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\dxtrans.dll
2012-11-20 20:50:09 ----A---- C:\Windows\SysWOW64\dxtmsft.dll
2012-11-20 20:50:08 ----A---- C:\Windows\SysWOW64\wextract.exe
2012-11-20 20:50:08 ----A---- C:\Windows\SysWOW64\webcheck.dll
2012-11-20 20:50:08 ----A---- C:\Windows\SysWOW64\vbscript.dll
2012-11-20 20:50:08 ----A---- C:\Windows\SysWOW64\pngfilt.dll
2012-11-20 20:50:08 ----A---- C:\Windows\SysWOW64\occache.dll
2012-11-20 20:50:08 ----A---- C:\Windows\SysWOW64\mshtmled.dll
2012-11-20 20:50:08 ----A---- C:\Windows\SysWOW64\mshtml.dll
2012-11-20 20:50:08 ----A---- C:\Windows\SysWOW64\mshta.exe
2012-11-20 20:50:08 ----A---- C:\Windows\SysWOW64\msfeeds.dll
2012-11-20 20:50:08 ----A---- C:\Windows\SysWOW64\imgutil.dll
2012-11-20 20:50:08 ----A---- C:\Windows\SysWOW64\iexpress.exe
2012-11-20 20:50:08 ----A---- C:\Windows\SysWOW64\ieUnatt.exe
2012-11-20 20:50:08 ----A---- C:\Windows\SysWOW64\ieakui.dll
2012-11-20 20:50:08 ----A---- C:\Windows\SysWOW64\ieaksie.dll
2012-11-20 20:50:08 ----A---- C:\Windows\SysWOW64\admparse.dll
2012-11-20 20:40:21 ----A---- C:\Windows\SysWOW64\wmi.dll
2012-11-20 20:40:21 ----A---- C:\Windows\SysWOW64\imagehlp.dll
2012-11-20 20:39:59 ----D---- C:\ProgramData\ESET
2012-11-20 20:31:54 ----A---- C:\Windows\SysWOW64\qdvd.dll
2012-11-20 20:31:53 ----A---- C:\Windows\SysWOW64\sspicli.dll
2012-11-20 20:31:53 ----A---- C:\Windows\SysWOW64\schannel.dll
2012-11-20 20:31:53 ----A---- C:\Windows\SysWOW64\secur32.dll
2012-11-20 20:31:53 ----A---- C:\Windows\SysWOW64\ncrypt.dll
2012-11-20 20:31:41 ----A---- C:\Windows\SysWOW64\d2d1.dll
2012-11-20 20:30:47 ----A---- C:\Windows\SysWOW64\xmllite.dll
2012-11-20 20:30:43 ----A---- C:\Windows\SysWOW64\odbctrac.dll
2012-11-20 20:30:43 ----A---- C:\Windows\SysWOW64\odbcjt32.dll
2012-11-20 20:30:43 ----A---- C:\Windows\SysWOW64\odbccu32.dll
2012-11-20 20:30:43 ----A---- C:\Windows\SysWOW64\odbccr32.dll
2012-11-20 20:30:43 ----A---- C:\Windows\SysWOW64\odbccp32.dll
2012-11-20 20:30:42 ----A---- C:\Windows\SysWOW64\DWrite.dll
2012-11-20 20:30:32 ----A---- C:\Windows\SysWOW64\poqexec.exe
2012-11-20 20:30:31 ----A---- C:\Windows\SysWOW64\dhcpcsvc6.dll
2012-11-20 20:30:31 ----A---- C:\Windows\SysWOW64\dhcpcore6.dll
2012-11-20 20:30:29 ----A---- C:\Windows\SysWOW64\explorer.exe
2012-11-20 20:30:29 ----A---- C:\Windows\explorer.exe
2012-11-20 20:30:27 ----A---- C:\Windows\SysWOW64\sbe.dll
2012-11-20 20:30:27 ----A---- C:\Windows\SysWOW64\CPFilters.dll
2012-11-20 20:30:25 ----A---- C:\Windows\SysWOW64\quartz.dll
2012-11-20 20:30:19 ----A---- C:\Windows\SysWOW64\ntshrui.dll
2012-11-20 20:30:05 ----A---- C:\Windows\SysWOW64\tquery.dll
2012-11-20 20:30:05 ----A---- C:\Windows\SysWOW64\SearchProtocolHost.exe
2012-11-20 20:30:05 ----A---- C:\Windows\SysWOW64\SearchIndexer.exe
2012-11-20 20:30:05 ----A---- C:\Windows\SysWOW64\mssvp.dll
2012-11-20 20:30:05 ----A---- C:\Windows\SysWOW64\mssrch.dll
2012-11-20 20:30:05 ----A---- C:\Windows\SysWOW64\mssph.dll
2012-11-20 20:30:04 ----A---- C:\Windows\SysWOW64\SearchFilterHost.exe
2012-11-20 20:30:04 ----A---- C:\Windows\SysWOW64\mssphtb.dll
2012-11-20 20:30:04 ----A---- C:\Windows\SysWOW64\msscntrs.dll
2012-11-20 20:27:51 ----A---- C:\Windows\SysWOW64\webio.dll
2012-11-20 20:27:48 ----A---- C:\Windows\SysWOW64\msxml6.dll
2012-11-20 20:27:48 ----A---- C:\Windows\SysWOW64\msxml3r.dll
2012-11-20 20:27:48 ----A---- C:\Windows\SysWOW64\msxml3.dll
2012-11-20 20:27:36 ----A---- C:\Windows\SysWOW64\XpsGdiConverter.dll
2012-11-20 20:27:06 ----D---- C:\Program Files (x86)\Common Files\Creative Labs Shared
2012-11-20 20:27:05 ----A---- C:\Windows\SysWOW64\ntoskrnl.exe
2012-11-20 20:27:05 ----A---- C:\Windows\SysWOW64\ntkrnlpa.exe
2012-11-20 20:26:57 ----A---- C:\Windows\SysWOW64\XpsPrint.dll
2012-11-20 20:26:49 ----A---- C:\Windows\SysWOW64\mfc42u.dll
2012-11-20 20:26:49 ----A---- C:\Windows\SysWOW64\mfc42.dll
2012-11-20 20:26:31 ----A---- C:\Windows\SysWOW64\shell32.dll
2012-11-20 20:25:10 ----A---- C:\Windows\SysWOW64\KernelBase.dll
2012-11-20 20:25:10 ----A---- C:\Windows\SysWOW64\kernel32.dll
2012-11-20 20:25:09 ----AH---- C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
2012-11-20 20:25:09 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
2012-11-20 20:25:09 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2012-11-20 20:25:09 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2012-11-20 20:25:09 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2012-11-20 20:25:09 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2012-11-20 20:25:09 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
2012-11-20 20:25:09 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2012-11-20 20:25:09 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2012-11-20 20:25:09 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2012-11-20 20:25:09 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2012-11-20 20:25:09 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2012-11-20 20:25:09 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2012-11-20 20:25:09 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2012-11-20 20:25:09 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
2012-11-20 20:25:09 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2012-11-20 20:25:09 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2012-11-20 20:25:09 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
2012-11-20 20:25:09 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2012-11-20 20:25:09 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
2012-11-20 20:25:09 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2012-11-20 20:25:09 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
2012-11-20 20:25:09 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
2012-11-20 20:25:09 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
2012-11-20 20:25:09 ----A---- C:\Windows\SysWOW64\wow32.dll
2012-11-20 20:25:09 ----A---- C:\Windows\SysWOW64\setup16.exe
2012-11-20 20:25:09 ----A---- C:\Windows\SysWOW64\ntvdm64.dll
2012-11-20 20:25:09 ----A---- C:\Windows\SysWOW64\instnm.exe
2012-11-20 20:25:08 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
2012-11-20 20:25:08 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2012-11-20 20:25:08 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2012-11-20 20:25:08 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
2012-11-20 20:25:08 ----A---- C:\Windows\SysWOW64\user.exe
2012-11-20 20:24:58 ----D---- C:\ProgramData\Creative
2012-11-20 20:24:48 ----A---- C:\Windows\SysWOW64\d3d10level9.dll
2012-11-20 20:24:19 ----A---- C:\Windows\SysWOW64\CmdRtr.DLL
2012-11-20 20:24:19 ----A---- C:\Windows\SysWOW64\APOMngr.DLL
2012-11-20 20:24:01 ----A---- C:\Windows\SysWOW64\atmfd.dll
2012-11-20 20:24:00 ----A---- C:\Windows\SysWOW64\atmlib.dll
2012-11-20 20:23:56 ----A---- C:\Windows\SysWOW64\fontsub.dll
2012-11-20 20:23:51 ----A---- C:\Windows\SysWOW64\ncsi.dll
2012-11-20 20:23:50 ----A---- C:\Windows\SysWOW64\nlaapi.dll
2012-11-20 20:23:50 ----A---- C:\Windows\SysWOW64\netevent.dll
2012-11-20 20:23:50 ----A---- C:\Windows\SysWOW64\netcorehc.dll
2012-11-20 20:22:42 ----A---- C:\Windows\SysWOW64\dnscacheugc.exe
2012-11-20 20:22:42 ----A---- C:\Windows\SysWOW64\dnsapi.dll
2012-11-20 20:22:35 ----A---- C:\Windows\SysWOW64\wintrust.dll
2012-11-20 20:22:31 ----A---- C:\Windows\SysWOW64\tzres.dll
2012-11-20 20:22:29 ----A---- C:\Windows\SysWOW64\INRES.DLL
2012-11-20 20:22:27 ----D---- C:\Program Files (x86)\Creative
2012-11-20 20:22:09 ----D---- C:\Program Files (x86)\Common Files\InstallShield
2012-11-20 20:21:33 ----A---- C:\Windows\SysWOW64\d3d10_1.dll
2012-11-20 20:21:30 ----A---- C:\Windows\SysWOW64\psisdecd.dll
2012-11-20 20:20:54 ----A---- C:\Windows\SysWOW64\kerberos.dll
2012-11-20 20:20:53 ----A---- C:\Windows\SysWOW64\msi.dll
2012-11-20 20:20:50 ----A---- C:\Windows\SysWOW64\synceng.dll
2012-11-20 20:20:37 ----A---- C:\Windows\SysWOW64\drvinst.exe
2012-11-20 20:20:37 ----A---- C:\Windows\SysWOW64\devrtl.dll
2012-11-20 20:20:37 ----A---- C:\Windows\SysWOW64\devobj.dll
2012-11-20 20:20:37 ----A---- C:\Windows\SysWOW64\cfgmgr32.dll
2012-11-20 20:20:36 ----A---- C:\Windows\SysWOW64\netapi32.dll
2012-11-20 20:20:36 ----A---- C:\Windows\SysWOW64\browcli.dll
2012-11-20 20:20:35 ----A---- C:\Windows\SysWOW64\prevhost.exe
2012-11-20 20:20:34 ----A---- C:\Windows\SysWOW64\srclient.dll
2012-11-20 20:20:17 ----A---- C:\Windows\SysWOW64\inetcomm.dll
2012-11-20 20:20:16 ----A---- C:\Windows\SysWOW64\msvcrt.dll
2012-11-20 20:19:40 ----A---- C:\Windows\SysWOW64\oleaut32.dll
2012-11-20 20:19:40 ----A---- C:\Windows\SysWOW64\oleacc.dll
2012-11-20 20:19:36 ----A---- C:\Windows\SysWOW64\EncDec.dll
2012-11-20 20:17:49 ----A---- C:\Windows\SysWOW64\cdosys.dll
2012-11-20 20:17:46 ----A---- C:\Windows\SysWOW64\ntdll.dll
2012-11-20 20:17:44 ----A---- C:\Windows\SysWOW64\win32spl.dll
2012-11-20 20:17:44 ----A---- C:\Windows\splwow64.exe
2012-11-20 20:17:40 ----A---- C:\Windows\SysWOW64\cryptsvc.dll
2012-11-20 20:17:40 ----A---- C:\Windows\SysWOW64\cryptnet.dll
2012-11-20 20:17:40 ----A---- C:\Windows\SysWOW64\crypt32.dll
2012-11-20 20:17:15 ----A---- C:\Windows\SysWOW64\packager.dll
2012-11-20 19:54:11 ----HD---- C:\ProgramData\Common Files
2012-11-20 19:54:11 ----D---- C:\ProgramData\MFAData
2012-11-20 19:47:42 ----D---- C:\Users\MarekMedved\AppData\Roaming\WinRAR
2012-11-20 19:37:40 ----D---- C:\ProgramData\NVIDIA
2012-11-20 19:37:27 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2012-11-20 19:37:07 ----D---- C:\ProgramData\NVIDIA Corporation
2012-11-20 19:36:52 ----A---- C:\Windows\SysWOW64\OpenCL.dll
2012-11-20 19:36:52 ----A---- C:\Windows\SysWOW64\nvd3dum.dll
2012-11-20 19:36:52 ----A---- C:\Windows\SysWOW64\nvapi.dll
2012-11-20 19:35:40 ----A---- C:\Windows\SysWOW64\drivers\TBPanelx64.sys
2012-11-20 19:30:25 ----RA---- C:\Windows\SysWOW64\CSVer.dll
2012-11-20 19:30:25 ----D---- C:\Program Files (x86)\Intel
2012-11-20 19:30:08 ----D---- C:\Intel
2012-11-20 19:27:19 ----D---- C:\Users\MarekMedved\AppData\Roaming\Macromedia
2012-11-20 19:27:19 ----D---- C:\Users\MarekMedved\AppData\Roaming\Adobe
2012-11-20 19:26:57 ----D---- C:\Windows\Chipset
2012-11-20 19:26:57 ----A---- C:\Windows\AsTaskSched.dll
2012-11-20 19:26:52 ----A---- C:\Windows\SysWOW64\rdpcore.dll
2012-11-20 19:25:52 ----D---- C:\Program Files (x86)\ASM104xUSB3
2012-11-20 19:24:54 ----D---- C:\Program Files (x86)\Qualcomm Atheros WiFi Driver Installation
2012-11-20 19:24:46 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2012-11-20 19:21:55 ----D---- C:\ProgramData\Qualcomm Atheros
2012-11-20 19:17:33 ----SHD---- C:\Windows\Installer
2012-11-20 19:17:29 ----D---- C:\Program Files (x86)\Google
2012-11-20 19:13:30 ----A---- C:\Windows\Language_trs.ini
2012-11-20 19:13:21 ----A---- C:\Windows\Ascd_tmp.ini
2012-11-20 19:11:32 ----D---- C:\Users\MarekMedved\AppData\Roaming\Identities
2012-11-20 19:11:14 ----SD---- C:\Users\MarekMedved\AppData\Roaming\Microsoft
2012-11-20 19:11:14 ----D---- C:\Users\MarekMedved\AppData\Roaming\Media Center Programs
2012-11-20 01:58:28 ----D---- C:\Windows\SoftwareDistribution
2012-11-20 01:56:12 ----D---- C:\Windows\Prefetch
2012-11-20 01:50:57 ----D---- C:\Windows\Panther
2012-11-20 01:40:40 ----D---- C:\Windows.old.001

======List of files/folders modified in the last 1 month======

2012-12-09 20:40:04 ----D---- C:\Windows\Temp
2012-12-09 20:40:01 ----RD---- C:\Program Files (x86)
2012-12-09 20:06:42 ----SHD---- C:\System Volume Information
2012-12-09 20:06:37 ----D---- C:\Windows\Registration
2012-12-09 20:06:34 ----D---- C:\Windows
2012-12-09 20:06:24 ----RSD---- C:\Windows\assembly
2012-12-09 20:06:21 ----D---- C:\Windows\SysWOW64
2012-12-09 20:06:16 ----D---- C:\Windows\inf
2012-12-09 20:05:56 ----D---- C:\Program Files (x86)\Internet Explorer
2012-12-09 19:43:09 ----HD---- C:\ProgramData
2012-12-09 19:35:11 ----D---- C:\Windows\winsxs
2012-12-09 19:28:46 ----D---- C:\Program Files (x86)\Common Files
2012-12-09 19:17:54 ----D---- C:\torrent files
2012-12-07 13:40:26 ----D---- C:\Windows\SysWOW64\drivers
2012-12-07 13:40:26 ----D---- C:\Windows\System32
2012-12-06 13:55:35 ----D---- C:\Windows\Tasks
2012-12-02 22:42:44 ----SD---- C:\ProgramData\Microsoft
2012-12-02 15:04:22 ----RD---- C:\Program Files
2012-11-30 11:29:34 ----D---- C:\Windows\rescache
2012-11-29 00:30:30 ----D---- C:\Windows\AppPatch
2012-11-26 22:14:00 ----A---- C:\Windows\win.ini
2012-11-26 22:13:59 ----D---- C:\Program Files (x86)\Common Files\System
2012-11-26 18:47:07 ----D---- C:\Windows\Microsoft.NET
2012-11-26 18:26:19 ----D---- C:\Windows\Logs
2012-11-25 23:16:07 ----RSD---- C:\Windows\Fonts
2012-11-25 23:15:51 ----D---- C:\Program Files (x86)\Common Files\microsoft shared
2012-11-25 21:14:17 ----D---- C:\Program Files (x86)\MSBuild
2012-11-25 21:13:56 ----D---- C:\Windows\ShellNew
2012-11-23 15:06:56 ----D---- C:\Windows\debug
2012-11-23 14:56:34 ----D---- C:\mp3s
2012-11-22 21:25:39 ----D---- C:\Windows\SysWOW64\wbem
2012-11-22 21:25:39 ----D---- C:\Windows\SysWOW64\sk-SK
2012-11-22 21:25:39 ----D---- C:\Windows\SysWOW64\en-US
2012-11-22 21:25:39 ----D---- C:\Windows\PolicyDefinitions
2012-11-20 21:42:58 ----D---- C:\Windows\ehome
2012-11-20 21:42:47 ----D---- C:\Windows\SysWOW64\migration
2012-11-20 21:06:35 ----D---- C:\temp
2012-11-20 19:37:40 ----RD---- C:\Users
2012-11-20 19:37:11 ----D---- C:\Windows\Help
2012-11-20 19:11:28 ----SHD---- C:\$Recycle.Bin
2012-11-20 19:11:01 ----SHD---- C:\Recovery
2012-11-20 01:56:04 ----D---- C:\Windows\CSC
2012-11-20 01:50:46 ----RASH---- C:\BOOTSECT.BAK
2012-11-20 01:50:44 ----SHD---- C:\Boot

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 epfwwfp;epfwwfp; C:\Windows\system32\DRIVERS\epfwwfp.sys []
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys []
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys []
R1 avgtp;avgtp; \??\C:\Windows\system32\drivers\avgtpx64.sys []
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys []
R1 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys []
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys []
R1 EpfwLWF;Epfw NDIS LightWeight Filter; C:\Windows\system32\DRIVERS\EpfwLWF.sys []
R1 SCDEmu;SCDEmu; C:\Windows\SysWOW64\drivers\SCDEmu.sys []
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys []
R2 epfw;epfw; C:\Windows\system32\DRIVERS\epfw.sys []
R2 IDMWFP;IDMWFP; C:\Windows\system32\DRIVERS\idmwfp.sys []
R3 asmthub3;ASMedia USB3 Hub Service; C:\Windows\system32\DRIVERS\asmthub3.sys []
R3 asmtxhci;ASMEDIA XHCI Service; C:\Windows\system32\DRIVERS\asmtxhci.sys []
R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athrx.sys []
R3 e1cexpress;Intel(R) PRO/1000 PCI Express Network Connection Driver C; C:\Windows\system32\DRIVERS\e1c62x64.sys []
R3 Mac606;Mac606 Filter; C:\Windows\system32\DRIVERS\Mac606a.sys [2008-04-08 10600]
R3 MEIx64;Intel(R) Management Engine Interface ; C:\Windows\system32\DRIVERS\HECIx64.sys []
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda64v.sys []
R3 P17;SB Live! 24-bit; C:\Windows\system32\drivers\P17.sys []
S3 dmvsc;dmvsc; C:\Windows\system32\drivers\dmvsc.sys []
S3 IObitUnlocker;IObitUnlocker; \??\C:\Program Files (x86)\IObit\IObit Unlocker\IObitUnlocker.sys [2011-03-09 33184]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys []
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys []
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys []
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys []
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys []
S3 TBPanel;TBPanel; C:\Windows\SysWOW64\drivers\TBPanel.sys []
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys []
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys []
S3 vmbus;vmbus; C:\Windows\system32\drivers\vmbus.sys []
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys []

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 CTAudSvcService;Creative Audio Service; C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe [2008-11-18 307200]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe [2012-11-14 1329304]
R2 Intel(R) PROSet Monitoring Service;Intel(R) PROSet Monitoring Service; C:\Windows\system32\IProsetMonitor.exe []
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe []
R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2012-10-10 1258856]
R2 OODefragAgent;O&O Defrag; C:\Program Files\OO Software\Defrag\oodag.exe [2012-06-06 3293552]
R2 PnkBstrA;PnkBstrA; C:\Windows\system32\PnkBstrA.exe [2012-12-09 66872]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2012-10-02 382824]
R2 vToolbarUpdater13.2.0;vToolbarUpdater13.2.0; C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\13.2.0\ToolbarUpdater.exe [2012-12-09 711112]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2012-07-09 104912]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2012-07-08 123856]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-11-20 136176]
S2 PnkBstrB;PnkBstrB; C:\Windows\system32\PnkBstrB.exe [2012-12-09 103736]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 Creative Audio Engine Licensing Service;Creative Audio Engine Licensing Service; C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe [2012-11-20 79360]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-11-20 136176]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe []
S4 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe []
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2012-07-09 139696]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2012-07-09 139696]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2012-07-09 139696]

-----------------EOF-----------------


Offline

Užívateľ
Užívateľ
Obrázok užívateľa

Registrovaný: 09.05.11
Prihlásený: 20.12.18
Príspevky: 618
Témy: 2
Príspevok NapísalOffline : 08.12.2012 20:46

stihni si combofix http://www.bleepingcomputer.com/download/combofix/ vypni avg spust combofix davaj yes ok agree ako ta combofix vyzve keď skonči vybehne poznámkový blok budeš ho mať na C:combofix.txt sem ho upni


Offline

Zmazaný užívateľ
Zmazaný užívateľ
Obrázok užívateľa
Príspevok Napísal autor témyOffline : 08.12.2012 21:02

Kód:
ComboFix 12-12-07.01 - MarekMedved . 12. 2012  20:51:32.1.4 - x64
Microsoft Windows 7 Professional   6.1.7601.1.1250.421.1051.18.8147.5957 [GMT 1:00]
Running from: c:\users\MarekMedved\Downloads\ComboFix.exe
AV: ESET Smart Security 6.0 *Enabled/Updated* {77DEAFED-8149-104B-25A1-21771CA47CD1}
FW: ESET personal firewall *Enabled* {4FE52EC8-CB26-1113-0EFE-8842E2773BAA}
SP: ESET Smart Security 6.0 *Enabled/Updated* {CCBF4E09-A773-1FC5-1F11-1A056723366C}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
 * Resident AV is active
.
.
.
(((((((((((((((((((((((((((((((((((((((   Other Deletions   )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
C:\nautoup.log
c:\windows\pkunzip.pif
c:\windows\pkzip.pif
c:\windows\SysWow64\URTTemp
c:\windows\SysWow64\URTTemp\regtlib.exe
.
.
(((((((((((((((((((((((((   Files Created from 2012-11-09 to 2012-12-09  )))))))))))))))))))))))))))))))
.
.
2012-12-09 19:59 . 2012-12-09 19:59   --------   d-----w-   c:\users\Default\AppData\Local\temp
2012-12-09 19:40 . 2012-12-09 19:40   --------   d-----w-   c:\program files (x86)\trend micro
2012-12-09 19:40 . 2012-12-09 19:40   --------   d-----w-   C:\rsit
2012-12-09 19:06 . 2012-12-09 19:06   --------   d-----w-   c:\program files (x86)\GameSpy
2012-12-09 19:04 . 2012-12-09 19:04   103736   ----a-w-   c:\windows\SysWow64\PnkBstrB.exe
2012-12-09 19:04 . 2012-12-09 19:04   669184   ----a-w-   c:\windows\SysWow64\pbsvc.exe
2012-12-09 19:04 . 2012-12-09 19:04   66872   ----a-w-   c:\windows\SysWow64\PnkBstrA.exe
2012-12-09 18:43 . 2012-12-09 18:43   76232   ----a-w-   c:\programdata\Microsoft\Windows Defender\Definition Updates\{D6837F05-2427-4677-AF6F-F7DD3C802702}\offreg.dll
2012-12-09 18:43 . 2012-12-09 18:43   178800   ----a-w-   c:\windows\SysWow64\CmdLineExt_x64.dll
2012-12-09 18:43 . 2012-12-09 18:43   --------   dc-h--w-   c:\programdata\{0691F710-1ECA-4B5A-9727-25554F1BFDC6}
2012-12-09 18:37 . 2012-12-09 18:37   1312   ----a-w-   c:\windows\SysWow64\ealregsnapshot1.reg
2012-12-09 18:37 . 2012-12-09 18:37   --------   d-----w-   c:\windows\SysWow64\Macromed
2012-12-09 18:28 . 2012-12-09 18:28   --------   d-----w-   c:\programdata\AVG Secure Search
2012-12-09 18:28 . 2012-12-09 18:28   30568   ----a-w-   c:\windows\system32\drivers\avgtpx64.sys
2012-12-09 18:28 . 2012-12-09 18:28   --------   d-----w-   c:\program files (x86)\Common Files\AVG Secure Search
2012-12-09 18:28 . 2012-12-09 18:28   --------   d-----w-   c:\program files (x86)\AVG Secure Search
2012-12-09 18:28 . 2012-12-09 18:29   --------   d-----w-   c:\program files (x86)\PowerISO
2012-12-09 18:28 . 2012-08-24 07:56   126944   ----a-w-   c:\windows\system32\drivers\scdemu.sys
2012-12-08 15:05 . 2012-11-08 17:24   9125352   ----a-w-   c:\programdata\Microsoft\Windows Defender\Definition Updates\{D6837F05-2427-4677-AF6F-F7DD3C802702}\mpengine.dll
2012-12-07 12:40 . 2008-10-31 07:38   22576   ----a-w-   c:\windows\system32\drivers\HidNt.sys
2012-12-07 12:40 . 2008-04-08 02:20   12776   ----a-w-   c:\windows\system32\drivers\Mac606a.sys
2012-12-07 12:40 . 2009-03-29 06:38   47104   ----a-w-   c:\windows\system32\ivl807a.dll
2012-12-07 12:40 . 2008-11-10 03:38   65072   ----a-w-   c:\windows\system32\Hidhlp.dll
2012-12-07 12:40 . 2008-10-31 07:38   18992   ----a-w-   c:\windows\SysWow64\drivers\HidNt.sys
2012-12-07 12:40 . 2008-04-08 02:20   10600   ----a-w-   c:\windows\SysWow64\drivers\Mac606a.sys
2012-12-07 12:40 . 2009-03-29 06:38   49152   ----a-w-   c:\windows\SysWow64\ivl807a.dll
2012-12-07 12:40 . 2008-11-10 03:38   64048   ----a-w-   c:\windows\SysWow64\Hidhlp.dll
2012-12-07 12:40 . 2012-12-07 12:41   --------   d-----w-   c:\program files (x86)\FTQ5C1
2012-12-05 14:30 . 2012-12-05 14:40   --------   d-----w-   c:\program files (x86)\Crysis 2.Limited Edition.v 1.1.0.0
2012-12-04 20:15 . 2012-12-04 20:15   --------   d-----w-   c:\program files (x86)\DsNET Corp
2012-12-03 12:23 . 2012-05-11 14:47   119568   ----a-w-   c:\windows\SysWow64\VB6FR.DLL
2012-12-03 12:23 . 2012-05-11 14:47   101888   ----a-w-   c:\windows\SysWow64\VB6STKIT.DLL
2012-12-03 12:23 . 2012-05-11 14:47   32768   ----a-w-   c:\windows\SysWow64\CMDLGFR.DLL
2012-12-03 12:23 . 2012-05-11 14:47   152848   ----a-w-   c:\windows\SysWow64\COMDLG32.OCX
2012-12-03 12:23 . 2012-05-11 14:47   141312   ----a-w-   c:\windows\SysWow64\MSCMCFR.DLL
2012-12-02 15:28 . 2012-12-02 15:30   --------   d-----w-   C:\CRYSIS EDITOR
2012-12-02 14:04 . 2012-12-02 14:04   --------   d-----w-   c:\program files\Microsoft Silverlight
2012-12-02 14:04 . 2012-12-02 14:04   --------   d-----w-   c:\program files (x86)\Microsoft Silverlight
2012-12-01 19:50 . 2012-12-06 12:43   --------   d-----w-   C:\Fraps
2012-11-29 20:08 . 2012-11-29 20:24   --------   d-----w-   C:\vylucenia
2012-11-28 10:07 . 2011-04-09 15:37   182272   --sh--w-   c:\windows\data.dll
2012-11-27 23:23 . 2012-11-27 23:24   --------   d-----w-   c:\programdata\Solidshield
2012-11-27 22:57 . 2012-11-27 22:57   --------   d-----w-   c:\program files (x86)\Electronic Arts
2012-11-26 17:57 . 2012-11-26 17:57   --------   d-----w-   c:\programdata\Electronic Arts
2012-11-26 17:57 . 2012-11-26 17:57   --------   d-----w-   c:\programdata\EA Core
2012-11-26 17:47 . 2008-03-05 14:56   1860120   ----a-w-   c:\windows\system32\D3DCompiler_37.dll
2012-11-26 16:11 . 2012-11-26 16:11   530488   ----a-w-   c:\windows\system32\drivers\sptd.sys
2012-11-25 22:15 . 2012-11-25 22:15   --------   d-----w-   c:\users\Default\AppData\Local\Microsoft Help
2012-11-25 20:14 . 2012-11-25 22:15   --------   d-----w-   c:\program files (x86)\Microsoft Works
2012-11-25 20:13 . 2012-11-25 20:13   --------   d-----w-   c:\windows\PCHEALTH
2012-11-25 20:11 . 2012-11-25 20:11   --------   d-----w-   c:\program files\Microsoft Office
2012-11-25 20:11 . 2012-11-25 20:11   --------   d-----w-   c:\program files (x86)\Microsoft Visual Studio 8
2012-11-25 20:09 . 2012-11-26 21:17   --------   d-----w-   c:\programdata\Microsoft Help
2012-11-25 19:40 . 2012-11-25 19:43   --------   d-----w-   c:\windows\system32\appmgmt
2012-11-24 20:19 . 2012-12-09 18:17   --------   d-----w-   C:\finished torrents
2012-11-24 14:33 . 2012-11-24 14:33   --------   d-----w-   c:\windows\system32\oodag
2012-11-24 14:29 . 2012-11-25 19:44   --------   d-----w-   c:\program files\OO Software
2012-11-24 14:28 . 2012-11-24 14:30   --------   d-----w-   c:\programdata\OO Software
2012-11-24 14:14 . 2012-11-24 14:14   --------   d-----w-   c:\programdata\IObit
2012-11-24 14:13 . 2012-11-24 14:13   --------   d-----w-   c:\program files (x86)\IObit
2012-11-24 13:28 . 2012-11-24 13:28   --------   d-----w-   c:\program files (x86)\Abyssmedia
2012-11-24 12:33 . 2012-11-26 16:13   --------   d-----w-   C:\_stare subory
2012-11-24 12:17 . 2012-12-09 18:17   --------   d-----w-   C:\starting torrent files
2012-11-24 12:16 . 2012-11-24 12:16   --------   d-----w-   c:\program files (x86)\uTorrent
2012-11-23 15:36 . 2012-11-23 15:38   --------   d-----w-   c:\program files (x86)\CPU Speed Pro
2012-11-23 14:03 . 2012-11-23 14:05   --------   d-----w-   c:\program files\CCleaner
2012-11-23 13:59 . 2012-11-23 13:59   --------   d-----w-   c:\program files (x86)\Unlocker
2012-11-22 16:39 . 2012-11-22 16:39   --------   d-----w-   c:\program files (x86)\Lavalys
2012-11-21 15:26 . 2012-11-21 15:26   --------   d-----w-   C:\benzin_plyn
2012-11-21 14:39 . 2012-11-21 14:39   --------   d-----w-   c:\program files\WinRAR
2012-11-21 14:27 . 2012-08-03 07:01   545   ----a-w-   c:\windows\UC.PIF
2012-11-21 14:27 . 2012-08-03 07:01   545   ----a-w-   c:\windows\RAR.PIF
2012-11-21 14:27 . 2012-08-03 07:01   545   ----a-w-   c:\windows\LHA.PIF
2012-11-21 14:27 . 2012-08-03 07:01   545   ----a-w-   c:\windows\ARJ.PIF
2012-11-21 14:02 . 2012-11-22 16:33   --------   d-----w-   c:\program files\CPUID
2012-11-21 12:50 . 2012-11-25 20:13   --------   d-----w-   c:\program files (x86)\Microsoft.NET
2012-11-20 20:42 . 2012-11-20 20:42   --------   d-----w-   c:\windows\SysWow64\Wat
2012-11-20 20:42 . 2012-11-20 20:42   --------   d-----w-   c:\windows\system32\Wat
2012-11-20 20:34 . 2012-07-26 04:55   785512   ----a-w-   c:\windows\system32\drivers\Wdf01000.sys
2012-11-20 20:34 . 2012-07-26 04:55   54376   ----a-w-   c:\windows\system32\drivers\WdfLdr.sys
2012-11-20 20:34 . 2012-07-26 04:47   2560   ----a-w-   c:\windows\system32\drivers\en-US\wdf01000.sys.mui
2012-11-20 20:34 . 2012-07-26 02:36   9728   ----a-w-   c:\windows\system32\Wdfres.dll
2012-11-20 20:06 . 2012-10-02 19:51   3536817   ----a-w-   c:\windows\system32\nvcoproc.bin
2012-11-20 19:51 . 2010-02-23 08:16   294912   ----a-w-   c:\windows\system32\browserchoice.exe
2012-11-20 19:44 . 2012-10-29 20:04   66395536   ----a-w-   c:\windows\system32\MRT.exe
2012-11-20 19:44 . 2012-07-26 02:26   87040   ----a-w-   c:\windows\system32\drivers\WUDFPf.sys
2012-11-20 19:44 . 2012-07-26 02:26   198656   ----a-w-   c:\windows\system32\drivers\WUDFRd.sys
2012-11-20 19:43 . 2012-07-26 03:08   84992   ----a-w-   c:\windows\system32\WUDFSvc.dll
2012-11-20 19:43 . 2012-07-26 03:08   194048   ----a-w-   c:\windows\system32\WUDFPlatform.dll
2012-11-20 19:43 . 2012-07-26 03:08   229888   ----a-w-   c:\windows\system32\WUDFHost.exe
2012-11-20 19:43 . 2012-07-26 03:08   744448   ----a-w-   c:\windows\system32\WUDFx.dll
2012-11-20 19:43 . 2012-07-26 03:08   45056   ----a-w-   c:\windows\system32\WUDFCoinstaller.dll
2012-11-20 19:40 . 2012-03-01 06:46   23408   ----a-w-   c:\windows\system32\drivers\fs_rec.sys
2012-11-20 19:40 . 2012-03-01 06:33   81408   ----a-w-   c:\windows\system32\imagehlp.dll
2012-11-20 19:40 . 2012-03-01 06:28   5120   ----a-w-   c:\windows\system32\wmi.dll
2012-11-20 19:40 . 2012-03-01 05:33   159232   ----a-w-   c:\windows\SysWow64\imagehlp.dll
2012-11-20 19:40 . 2012-03-01 05:29   5120   ----a-w-   c:\windows\SysWow64\wmi.dll
2012-11-20 19:39 . 2012-11-20 19:39   --------   d-----w-   c:\program files\ESET
2012-11-20 19:30 . 2012-08-31 18:19   1659760   ----a-w-   c:\windows\system32\drivers\ntfs.sys
2012-11-20 19:27 . 2011-07-09 02:46   288768   ----a-w-   c:\windows\system32\drivers\mrxsmb10.sys
2012-11-20 19:26 . 2011-03-12 12:08   1465344   ----a-w-   c:\windows\system32\XpsPrint.dll
2012-11-20 19:26 . 2011-03-12 11:23   870912   ----a-w-   c:\windows\SysWow64\XpsPrint.dll
2012-11-20 19:26 . 2012-11-20 19:26   --------   d-----w-   c:\program files\Creative
2012-11-20 19:26 . 2011-03-11 06:34   1359872   ----a-w-   c:\windows\system32\mfc42u.dll
2012-11-20 19:26 . 2011-03-11 06:34   1395712   ----a-w-   c:\windows\system32\mfc42.dll
2012-11-20 19:26 . 2011-03-11 05:33   1164288   ----a-w-   c:\windows\SysWow64\mfc42u.dll
2012-11-20 19:26 . 2011-03-11 05:33   1137664   ----a-w-   c:\windows\SysWow64\mfc42.dll
2012-11-20 19:26 . 2012-06-09 05:43   14172672   ----a-w-   c:\windows\system32\shell32.dll
2012-11-20 19:24 . 2012-11-20 19:24   --------   d-----w-   c:\programdata\Creative
2012-11-20 19:23 . 2010-09-30 06:47   70656   ----a-w-   c:\windows\SysWow64\fontsub.dll
2012-11-20 19:22 . 2011-04-22 22:15   27520   ----a-w-   c:\windows\system32\drivers\Diskdump.sys
2012-11-20 19:21 . 2011-01-17 11:09   197120   ----a-w-   c:\windows\system32\d3d10_1.dll
2012-11-20 19:21 . 2011-01-17 05:47   161792   ----a-w-   c:\windows\SysWow64\d3d10_1.dll
2012-11-20 19:21 . 2011-04-29 03:06   467456   ----a-w-   c:\windows\system32\drivers\srv.sys
2012-11-20 19:21 . 2011-04-29 03:05   410112   ----a-w-   c:\windows\system32\drivers\srv2.sys
2012-11-20 19:21 . 2011-04-29 03:05   168448   ----a-w-   c:\windows\system32\drivers\srvnet.sys
2012-11-20 19:21 . 2011-08-17 05:26   613888   ----a-w-   c:\windows\system32\psisdecd.dll
2012-11-20 19:21 . 2011-08-17 05:25   108032   ----a-w-   c:\windows\system32\psisrndr.ax
2012-11-20 19:21 . 2011-08-17 04:24   465408   ----a-w-   c:\windows\SysWow64\psisdecd.dll
2012-11-20 19:21 . 2011-08-17 04:19   75776   ----a-w-   c:\windows\SysWow64\psisrndr.ax
2012-11-20 19:21 . 2012-04-28 03:55   210944   ----a-w-   c:\windows\system32\drivers\rdpwd.sys
2012-11-20 19:19 . 2012-05-14 05:26   956928   ----a-w-   c:\windows\system32\localspl.dll
2012-11-20 19:19 . 2011-02-23 04:55   90624   ----a-w-   c:\windows\system32\drivers\bowser.sys
2012-11-20 19:19 . 2011-08-27 05:37   861696   ----a-w-   c:\windows\system32\oleaut32.dll
2012-11-20 19:19 . 2011-08-27 05:37   331776   ----a-w-   c:\windows\system32\oleacc.dll
.
.
((((((((((((((((((((((((((((((((((((((((   Find3M Report   ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-10-16 08:38 . 2012-11-28 20:49   135168   ----a-w-   c:\windows\apppatch\AppPatch64\AcXtrnal.dll
2012-10-16 08:38 . 2012-11-28 20:49   350208   ----a-w-   c:\windows\apppatch\AppPatch64\AcLayers.dll
2012-10-16 07:39 . 2012-11-28 20:49   561664   ----a-w-   c:\windows\apppatch\AcLayers.dll
2012-10-10 20:23 . 2012-10-10 20:23   247144   ----a-w-   c:\windows\system32\nvinitx.dll
2012-10-10 20:23 . 2012-10-10 20:23   1867112   ----a-w-   c:\windows\SysWow64\nvcuvenc.dll
2012-10-10 20:23 . 2012-10-10 20:23   18252136   ----a-w-   c:\windows\system32\nvd3dumx.dll
2012-10-10 20:23 . 2012-10-10 20:23   1482600   ----a-w-   c:\windows\system32\nvdispgenco64.dll
2012-10-10 20:23 . 2012-10-10 20:23   6127464   ----a-w-   c:\windows\SysWow64\nvopencl.dll
2012-10-10 20:23 . 2012-10-10 20:23   2574696   ----a-w-   c:\windows\SysWow64\nvcuvid.dll
2012-10-10 20:23 . 2012-10-10 20:23   25256296   ----a-w-   c:\windows\system32\nvcompiler.dll
2012-10-10 20:23 . 2012-10-10 20:23   831848   ----a-w-   c:\windows\SysWow64\nvumdshim.dll
2012-10-10 20:23 . 2012-10-10 20:23   202600   ----a-w-   c:\windows\SysWow64\nvinit.dll
2012-10-10 20:23 . 2012-10-10 20:23   7414632   ----a-w-   c:\windows\system32\nvopencl.dll
2012-10-10 20:23 . 2012-10-10 20:23   973672   ----a-w-   c:\windows\system32\nvumdshimx.dll
2012-10-10 20:23 . 2012-10-10 20:23   14922600   ----a-w-   c:\windows\system32\nvwgf2umx.dll
2012-10-10 20:23 . 2012-10-10 20:23   9146728   ----a-w-   c:\windows\system32\nvcuda.dll
2012-10-10 20:23 . 2012-10-10 20:23   7697768   ----a-w-   c:\windows\SysWow64\nvcuda.dll
2012-10-10 20:23 . 2012-10-10 20:23   2218344   ----a-w-   c:\windows\system32\nvcuvenc.dll
2012-10-10 20:23 . 2012-10-10 20:23   12501352   ----a-w-   c:\windows\SysWow64\nvwgf2um.dll
2012-10-10 20:22 . 2012-10-10 20:22   26331496   ----a-w-   c:\windows\system32\nvoglv64.dll
2012-10-10 20:22 . 2012-10-10 20:22   1760104   ----a-w-   c:\windows\system32\nvdispco64.dll
2012-10-10 20:22 . 2012-10-10 20:22   2747240   ----a-w-   c:\windows\system32\nvcuvid.dll
2012-10-10 20:22 . 2012-10-10 20:22   19906920   ----a-w-   c:\windows\SysWow64\nvoglv32.dll
2012-10-10 20:22 . 2012-10-10 20:22   13443944   ----a-w-   c:\windows\system32\drivers\nvlddmkm.sys
2012-10-10 20:22 . 2012-10-10 20:22   17559912   ----a-w-   c:\windows\SysWow64\nvcompiler.dll
2012-10-08 07:21 . 2012-10-08 07:21   64072   ----a-w-   c:\windows\system32\drivers\epfwwfp.sys
2012-10-08 07:21 . 2012-10-08 07:21   59440   ----a-w-   c:\windows\system32\drivers\EpfwLWF.sys
2012-10-08 07:21 . 2012-10-08 07:21   189208   ----a-w-   c:\windows\system32\drivers\epfw.sys
2012-10-08 07:21 . 2012-10-08 07:21   149592   ----a-w-   c:\windows\system32\drivers\ehdrv.sys
2012-10-08 07:21 . 2012-10-08 07:21   211344   ----a-w-   c:\windows\system32\drivers\eamonm.sys
2012-10-02 12:15 . 2012-10-02 12:15   430952   ----a-w-   c:\windows\SysWow64\nvStreaming.exe
2012-09-19 15:57 . 2012-09-19 15:57   17896   ----a-w-   c:\windows\system32\msvcr100_clr0400.dll
2011-04-09 15:37   182272   --sh--w-   c:\windows\data.dll
.
.
(((((((((((((((((((((((((((((((((((((   Reg Loading Points   ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_LOCAL_MACHINE\Wow6432Node\~\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}]
2012-12-09 18:28   1796552   ----a-w-   c:\program files (x86)\AVG Secure Search\13.2.0.4\AVG Secure Search_toolbar.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar]
"{95B7759C-8C7F-4BF1-B163-73684A933233}"= "c:\program files (x86)\AVG Secure Search\13.2.0.4\AVG Secure Search_toolbar.dll" [2012-12-09 1796552]
.
[HKEY_CLASSES_ROOT\clsid\{95b7759c-8c7f-4bf1-b163-73684a933233}]
[HKEY_CLASSES_ROOT\AVG Secure Search.PugiObj.1]
[HKEY_CLASSES_ROOT\AVG Secure Search.PugiObj]
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2010-11-21 1475584]
"IDMan"="e:\_nainstalovane programy\Internet Download Manager\idman.exe" [2011-07-18 3405208]
"Comrade.exe"="c:\program files (x86)\GameSpy\Comrade\Comrade.exe" [2007-06-29 36864]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"GrooveMonitor"="c:\program files (x86)\Microsoft Office\Office12\GrooveMonitor.exe" [2009-02-26 30040]
"vProt"="c:\program files (x86)\AVG Secure Search\vprot.exe" [2012-12-09 997320]
"ROC_roc_ssl_v12"="c:\program files (x86)\AVG Secure Search\ROC_roc_ssl_v12.exe" [2012-12-09 1020512]
"PWRISOVM.EXE"="c:\program files (x86)\PowerISO\PWRISOVM.EXE" [2012-08-24 336992]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows]
"LoadAppInit_DLLs"=1 (0x1)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32]
"mixer5"=wdmaud.drv
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute   REG_MULTI_SZ      autocheck autochk *\0OODBS
.
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2012-07-08 123856]
R3 Creative Audio Engine Licensing Service;Creative Audio Engine Licensing Service;c:\program files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe [2012-11-20 79360]
R3 dmvsc;dmvsc;c:\windows\system32\drivers\dmvsc.sys [2010-11-21 71168]
R3 IObitUnlocker;IObitUnlocker;c:\program files (x86)\IObit\IObit Unlocker\IObitUnlocker.sys [2011-03-09 33184]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys [2012-08-23 19456]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2012-08-23 57856]
R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys [2012-08-23 30208]
R3 WatAdminSvc;Služba Windows Activation Technologies;c:\windows\system32\Wat\WatAdminSvc.exe [2012-11-20 1255736]
S0 epfwwfp;epfwwfp;c:\windows\system32\DRIVERS\epfwwfp.sys [2012-10-08 64072]
S0 sptd;sptd;c:\windows\\SystemRoot\System32\Drivers\sptd.sys [x]
S1 avgtp;avgtp;c:\windows\system32\drivers\avgtpx64.sys [2012-12-09 30568]
S1 eamonm;eamonm;c:\windows\system32\DRIVERS\eamonm.sys [2012-10-08 211344]
S1 ehdrv;ehdrv;c:\windows\system32\DRIVERS\ehdrv.sys [2012-10-08 149592]
S1 EpfwLWF;Epfw NDIS LightWeight Filter;c:\windows\system32\DRIVERS\EpfwLWF.sys [2012-10-08 59440]
S2 ekrn;ESET Service;c:\program files\ESET\ESET Smart Security\x86\ekrn.exe [2012-11-14 1329304]
S2 IDMWFP;IDMWFP;c:\windows\system32\DRIVERS\idmwfp.sys [2011-07-06 145008]
S2 Intel(R) PROSet Monitoring Service;Intel(R) PROSet Monitoring Service;c:\windows\system32\IProsetMonitor.exe [2011-11-09 189608]
S2 OODefragAgent;O&O Defrag;c:\program files\OO Software\Defrag\oodag.exe [2012-06-06 3293552]
S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2012-10-02 382824]
S2 vToolbarUpdater13.2.0;vToolbarUpdater13.2.0;c:\program files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\13.2.0\ToolbarUpdater.exe [2012-12-09 711112]
S3 asmthub3;ASMedia USB3 Hub Service;c:\windows\system32\DRIVERS\asmthub3.sys [2011-11-03 130536]
S3 asmtxhci;ASMEDIA XHCI Service;c:\windows\system32\DRIVERS\asmtxhci.sys [2011-11-03 395752]
S3 Mac606;Mac606 Filter;c:\windows\system32\DRIVERS\Mac606a.sys [2008-04-08 12776]
.
.
--- Other Services/Drivers In Memory ---
.
*NewlyCreated* - SCDEMU
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\IDM Shell Extension]
@="{CDC95B92-E27C-4745-A8C5-64A52A78855D}"
[HKEY_CLASSES_ROOT\CLSID\{CDC95B92-E27C-4745-A8C5-64A52A78855D}]
2011-05-30 16:50   22408   ----a-w-   e:\_nainstalovane programy\Internet Download Manager\IDMShellExt64.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"egui"="c:\program files\ESET\ESET Smart Security\egui.exe" [2012-11-14 6325424]
"OODefragTray"="c:\program files\OO Software\Defrag\oodtray.exe" [2012-06-06 3998064]
.
------- Supplementary Scan -------
.
uLocal Page = c:\windows\system32\blank.htm
mLocal Page = c:\windows\SysWOW64\blank.htm
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~2\MICROS~1\Office12\EXCEL.EXE/3000
IE: Stiahnuť s IDM - e:\_nainstalovane programy\Internet Download Manager\IEExt.htm
IE: Stiahnuť s IDM všetky prepojenia - e:\_nainstalovane programy\Internet Download Manager\IEGetAll.htm
TCP: DhcpNameServer = 192.168.0.1
Handler: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - c:\program files (x86)\Common Files\AVG Secure Search\ViProtocolInstaller\13.2.0\ViProtocol.dll
.
- - - - ORPHANS REMOVED - - - -
.
AddRemove-FTQ5C1 - c:\program files (x86)\FTQ5C1\uninst.exe
AddRemove-PunkBusterSvc - c:\windows\system32\pbsvc.exe
.
.
.
--------------------- LOCKED REGISTRY KEYS ---------------------
.
[HKEY_USERS\S-1-5-21-2150537740-2270024768-3259585903-1000_Classes\Wow6432Node\CLSID\{28547fc3-0bb1-4c27-80a3-40c8eb722965}]
@Denied: (Full) (Everyone)
@Allowed: (Read) (RestrictedCode)
"Model"=dword:00000157
"Therad"=dword:00000008
.
[HKEY_USERS\S-1-5-21-2150537740-2270024768-3259585903-1000_Classes\Wow6432Node\CLSID\{5ED60779-4DE2-4E07-B862-974CA4FF2E9C}]
@Denied: (Full) (Everyone)
@Allowed: (Read) (RestrictedCode)
"scansk"=hex(0):c6,60,86,77,07,9d,5c,49,a4,87,0e,09,0c,28,d9,82,50,49,25,db,8f,
   e8,87,fe,15,82,1e,63,b7,ca,0a,14,f3,4a,4a,68,fe,3f,00,a6,00,00,00,00,00,00,\
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Shockwave Flash Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash9f.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
@="0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
@="ShockwaveFlash.ShockwaveFlash.9"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash9f.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="ShockwaveFlash.ShockwaveFlash"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Macromedia Flash Factory Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash9f.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
@="FlashFactory.FlashFactory.1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash9f.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="FlashFactory.FlashFactory"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D4304BCF-B8E9-4B35-BEA0-DC5B522670C2}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil9f.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D4304BCF-B8E9-4B35-BEA0-DC5B522670C2}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D4304BCF-B8E9-4B35-BEA0-DC5B522670C2}\LocalServer32]
@="c:\\Windows\\SysWow64\\Macromed\\Flash\\FlashUtil9f.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D4304BCF-B8E9-4B35-BEA0-DC5B522670C2}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{2E4BB6BE-A75F-4DC0-9500-68203655A2C4}]
@Denied: (A 2) (Everyone)
@="IFlashBroker"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{2E4BB6BE-A75F-4DC0-9500-68203655A2C4}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{2E4BB6BE-A75F-4DC0-9500-68203655A2C4}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\System*]
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
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Completion time: 2012-12-09  21:00:44
ComboFix-quarantined-files.txt  2012-12-09 20:00
.
Pre-Run: 288 838 512 640 bytes free
Post-Run: 288 799 707 136 bytes free
.
- - End Of File - - B18BD25BAF03EFBD26D3AA3E1A177E6B


Offline

Užívateľ
Užívateľ
Obrázok užívateľa

Registrovaný: 09.05.11
Prihlásený: 20.12.18
Príspevky: 618
Témy: 2
Príspevok NapísalOffline : 08.12.2012 21:24

1.presun combofix na plochu stiahni si cfscript z http://uloz.to/xijMUQP/cfscript-txt ulož ho na plochu pretiahni cfsript cez combofix aplikuje sa script pošli log
2. Stiahni si TDSSKiller http://support.kaspersky.com/downloads/ ... killer.exe spusť daj scan predom nič nemaž pošli report z C:
3.Stiahni si MBAM z http://fileforum.betanews.com/detail/Ma ... 86760019/1 nainštaluj daj plnú kontrolu predom nič nemaž pošli log
4.nastala nejaká zmena


Offline

Zmazaný užívateľ
Zmazaný užívateľ
Obrázok užívateľa
Príspevok Napísal autor témyOffline : 02.01.2013 13:27

vypis z posledneho : http://uloz.to/xjYBNGM/killer-txt

nedavno som odinstaloval claro search,driver detect
Niektore veci sa mi podarili odstranit(malware) s ESET Rogue Applications Remover 1.0.2 64-bit.

*Nebude to chyba aj v Biose?


Offline

Užívateľ
Užívateľ
Obrázok užívateľa

Registrovaný: 09.05.11
Prihlásený: 20.12.18
Príspevky: 618
Témy: 2
Príspevok NapísalOffline : 02.01.2013 13:42

a co combofix a MBAM kde sú vysledky


Offline

Zmazaný užívateľ
Zmazaný užívateľ
Obrázok užívateľa
Príspevok Napísal autor témyOffline : 09.02.2013 18:05

Tuto temu povazujem za vyriesenu. Dovod , v Biose bola vypnuta funkcia EIST (Intel chipset),a preto to zamrzalo(male napatie,nizky takt).Preto mi mrzol system pri starte(asi 20sec uvodne logo),dialo sa to semtam aj pri hrani Crysis2,vystrelil som a hra Freeze,aj OS. Po 20sec vsetko bezalo normalne.


Odpovedať na tému [ Príspevkov: 9 ] 


Podobné témy

 Témy  Odpovede  Zobrazenia  Posledný príspevok 
V tomto fóre nie sú ďalšie neprečítané témy. Mrznutie systému

v Operačné systémy Microsoft

2

411

25.06.2008 22:50

Radian Zobrazenie posledných príspevkov

V tomto fóre nie sú ďalšie neprečítané témy. mrznutie systému XP

v Operačné systémy Microsoft

2

172

13.04.2013 9:20

stanoj Zobrazenie posledných príspevkov

V tomto fóre nie sú ďalšie neprečítané témy. mrznutie pc aj pocas instalacie systemu (?)

v Ostatné

13

612

30.03.2010 18:41

lubosst Zobrazenie posledných príspevkov

V tomto fóre nie sú ďalšie neprečítané témy. Mrznutie

v Operačné systémy Microsoft

3

582

08.08.2008 20:20

jaroslav hruška Zobrazenie posledných príspevkov

V tomto fóre nie sú ďalšie neprečítané témy. mrznutie

v Ostatné

8

1051

17.04.2007 17:32

Tomas1 Zobrazenie posledných príspevkov

V tomto fóre nie sú ďalšie neprečítané témy. Mrznutie

v Ostatné

7

704

30.08.2010 14:39

petos Zobrazenie posledných príspevkov

V tomto fóre nie sú ďalšie neprečítané témy. Mrznutie PC

v Operačné systémy Microsoft

0

277

22.11.2016 22:39

Marek01 Zobrazenie posledných príspevkov

V tomto fóre nie sú ďalšie neprečítané témy. Mrznutie PC

v AMD - Advanced Micro Devices

4

935

21.10.2009 19:41

predator666 Zobrazenie posledných príspevkov

V tomto fóre nie sú ďalšie neprečítané témy. Mrznutie PC

v Ostatné

3

437

26.02.2011 23:55

mato59 Zobrazenie posledných príspevkov

V tomto fóre nie sú ďalšie neprečítané témy. Mrznutie PC

v Ovládače

0

380

23.02.2010 22:49

psm Zobrazenie posledných príspevkov

V tomto fóre nie sú ďalšie neprečítané témy. MRZNUTIE NOTEBOOKU

v Notebooky a netbooky

1

568

05.03.2009 19:38

server Zobrazenie posledných príspevkov

V tomto fóre nie sú ďalšie neprečítané témy. Mrznutie PC

v Ostatné

14

412

05.02.2014 22:00

kllr007 Zobrazenie posledných príspevkov

V tomto fóre nie sú ďalšie neprečítané témy. mrznutie pc

v Ostatné

15

883

10.06.2010 19:57

tomass61 Zobrazenie posledných príspevkov

V tomto fóre nie sú ďalšie neprečítané témy. Mrznutie Grafiky

v nVidia grafické karty

7

571

21.09.2007 0:06

fuco Zobrazenie posledných príspevkov

V tomto fóre nie sú ďalšie neprečítané témy. mrznutie pocitaca

v Ostatné

3

528

21.09.2009 20:45

Jaro Zobrazenie posledných príspevkov

V tomto fóre nie sú ďalšie neprečítané témy. Mrznutie notebooku

v Notebooky a netbooky

7

318

12.01.2014 16:09

AsuSmaNiaK Zobrazenie posledných príspevkov


Nemôžete zakladať nové témy v tomto fóre
Nemôžete odpovedať na témy v tomto fóre
Nemôžete upravovať svoje príspevky v tomto fóre
Nemôžete mazať svoje príspevky v tomto fóre

Skočiť na:  

Powered by phpBB Jarvis © 2005 - 2024 PCforum, webhosting by WebSupport, secured by GeoTrust, edited by JanoF
Ako väčšina webových stránok aj my používame cookies. Zotrvaním na webovej stránke súhlasíte, že ich môžeme používať.
Všeobecné podmienky, spracovanie osobných údajov a pravidlá fóra