Obsah fóra
PravidláRegistrovaťPrihlásenie




Odpovedať na tému [ Príspevkov: 40 ] Choď na stránku: 1, 2 ďalšia
AutorSpráva
Offline

Užívateľ
Užívateľ
Obrázok užívateľa

Registrovaný: 28.03.12
Prihlásený: 05.06.14
Príspevky: 133
Témy: 26
Príspevok NapísalOffline : 08.12.2012 19:07

Tak ... mám taký problém : Program updater service prestal pracovať ... vypisuje mi ti hneď po zapnutí pc po tom čo nabehne plocha ... už mi to raz robilo a musel som potom preinštalovať windows lebo padol ... preto píšte čo viete kým nebude neskoro.

Popis problému:
Názov problémovej udalosti: APPCRASH
Názov aplikácie: igfxupdate.exe
Verzia aplikácie: 8.15.10.2622
Časová pečiatka aplikácie: 507f309d
Názov chybného modulu: igfxupdate.exe
Verzia chybného modulu: 8.15.10.2622
Časová pečiatka chybného modulu: 507f309d
Kód výnimky: c0000005
Odsadenie výnimky: 00009092
Verzia OS: 6.1.7600.2.0.0.256.1
Identifikácia miestneho nastavenia: 1051
Ďalšie informácie 1: 0a9e
Ďalšie informácie 2: 0a9e372d3b4ad19135b953a78882e789
Ďalšie informácie 3: 0a9e
Ďalšie informácie 4: 0a9e372d3b4ad19135b953a78882e789







_________________
CPU:AMD FX8350 4GHz total 16Mb cache/COOLER: Arctic Freezer Pro 13/MB: GIGABYTE 990FXA-UD3/GPU: AMD Radeon 7950 (Gigabyte) @ 1100MHz/6GHz 3GB 384bit/RAM:8GB (2x4) Corsair CL9 XMS3 DDR3 1900MHz/PSU: Corsair CX750/CASE: Zalman Z11 Plus/HDD: 1TB WD 64MB cache/
NB1:Lenovo Z510 /Pentium,GT740m
NB2: Dell Inspiron 15 7537/ i5
MB: LG Optimus P970 Black
Offline

Užívateľ
Užívateľ
Program Updater service prestal pracovať

Registrovaný: 12.10.06
Prihlásený: 28.03.24
Príspevky: 20283
Témy: 79
Bydlisko: Banska Byst...
Príspevok NapísalOffline : 08.12.2012 22:49

podla nazvu suboru sa to moze tykat grafiky od intelu ktoru mas v pc/booku. updatuj si ovladac a skus.







_________________
Ryzen 7 3700X | SilentiumPC Fera 3 | Asrock X570M Pro4 | Patriot Viper 4 Blackout 16GB DDR4-3600 CL17 | Gainward RTX4060 Ti Pegasus 8GB | Samsung 970evo Plus 250GB NVMe | Corsair MP510 1TB NVMe | Samsung 980 Pro 2TB NVMe | Corsair RM550x | 24" BenQ GW2470H | 3x Noctua NF-S12B redux 1200 PWM
Xiaomi Mi 9 Lite 64GB
Offline

Užívateľ
Užívateľ
Obrázok užívateľa

Registrovaný: 28.03.12
Prihlásený: 05.06.14
Príspevky: 133
Témy: 26
Príspevok Napísal autor témyOffline : 09.12.2012 8:59

Tak to je riadna somarina ... je to pc a intel tam nie je nic ... grafika je AMD







_________________
CPU:AMD FX8350 4GHz total 16Mb cache/COOLER: Arctic Freezer Pro 13/MB: GIGABYTE 990FXA-UD3/GPU: AMD Radeon 7950 (Gigabyte) @ 1100MHz/6GHz 3GB 384bit/RAM:8GB (2x4) Corsair CL9 XMS3 DDR3 1900MHz/PSU: Corsair CX750/CASE: Zalman Z11 Plus/HDD: 1TB WD 64MB cache/
NB1:Lenovo Z510 /Pentium,GT740m
NB2: Dell Inspiron 15 7537/ i5
MB: LG Optimus P970 Black
Offline

Užívateľ
Užívateľ
Program Updater service prestal pracovať

Registrovaný: 12.10.06
Prihlásený: 28.03.24
Príspevky: 20283
Témy: 79
Bydlisko: Banska Byst...
Príspevok NapísalOffline : 09.12.2012 11:12

tak ti tam dakto nahodil ovladace intel grafiky, alebo daco podobne. najdi ten subor a mazni ho, alebo zisti kde je, v ktorom adresari.







_________________
Ryzen 7 3700X | SilentiumPC Fera 3 | Asrock X570M Pro4 | Patriot Viper 4 Blackout 16GB DDR4-3600 CL17 | Gainward RTX4060 Ti Pegasus 8GB | Samsung 970evo Plus 250GB NVMe | Corsair MP510 1TB NVMe | Samsung 980 Pro 2TB NVMe | Corsair RM550x | 24" BenQ GW2470H | 3x Noctua NF-S12B redux 1200 PWM
Xiaomi Mi 9 Lite 64GB
Offline

Užívateľ
Užívateľ
Obrázok užívateľa

Registrovaný: 28.03.12
Prihlásený: 05.06.14
Príspevky: 133
Témy: 26
Príspevok Napísal autor témyOffline : 09.12.2012 11:22

Hej ... nainstalovalo mi to z instalacneho cd co som dostal ku zakladnej doske ... to je akoze co?????







_________________
CPU:AMD FX8350 4GHz total 16Mb cache/COOLER: Arctic Freezer Pro 13/MB: GIGABYTE 990FXA-UD3/GPU: AMD Radeon 7950 (Gigabyte) @ 1100MHz/6GHz 3GB 384bit/RAM:8GB (2x4) Corsair CL9 XMS3 DDR3 1900MHz/PSU: Corsair CX750/CASE: Zalman Z11 Plus/HDD: 1TB WD 64MB cache/
NB1:Lenovo Z510 /Pentium,GT740m
NB2: Dell Inspiron 15 7537/ i5
MB: LG Optimus P970 Black
Offline

Užívateľ
Užívateľ
Obrázok užívateľa

Registrovaný: 28.03.12
Prihlásený: 05.06.14
Príspevky: 133
Témy: 26
Príspevok Napísal autor témyOffline : 09.12.2012 12:22

Tak ... nové zistenie ... na inom fóre som našiel že sa môže jednať o vírus konkrétne červa ... ďalšia vec mám v PC asi 15 súborov obsahujúce frázu Intel ale nedajú sa zmazať pretože potrebujem povolenie, pričom som administrátor. Vypol som aj stahovanie updatov ale stále nič ... čítal som aj že treba zmazať ten súbor igfxupdate.exe ale na to mi tiež treba povolenie.







_________________
CPU:AMD FX8350 4GHz total 16Mb cache/COOLER: Arctic Freezer Pro 13/MB: GIGABYTE 990FXA-UD3/GPU: AMD Radeon 7950 (Gigabyte) @ 1100MHz/6GHz 3GB 384bit/RAM:8GB (2x4) Corsair CL9 XMS3 DDR3 1900MHz/PSU: Corsair CX750/CASE: Zalman Z11 Plus/HDD: 1TB WD 64MB cache/
NB1:Lenovo Z510 /Pentium,GT740m
NB2: Dell Inspiron 15 7537/ i5
MB: LG Optimus P970 Black
Offline

Užívateľ
Užívateľ
Program Updater service prestal pracovať

Registrovaný: 12.10.06
Prihlásený: 28.03.24
Príspevky: 20283
Témy: 79
Bydlisko: Banska Byst...
Príspevok NapísalOffline : 09.12.2012 12:41

homodel píše:
Hej ... nainstalovalo mi to z instalacneho cd co som dostal ku zakladnej doske ... to je akoze co?????

ty nevies co instalujes? omg, dobre si pobavil. ak si to mal na cd k doske, tak mas pravdepod. na doske intel grafiku integrovanu. ALe kedze vobec nenapises co mas za dosku, a ci je to ta z tvojho podpisu, tak to nik nezisti.

Ale to je jedno, vid nizsie:
homodel píše:
Tak ... nové zistenie ... na inom fóre som našiel že sa môže jednať o vírus konkrétne červa ... ďalšia vec mám v PC asi 15 súborov obsahujúce frázu Intel ale nedajú sa zmazať pretože potrebujem povolenie, pričom som administrátor. Vypol som aj stahovanie updatov ale stále nič ... čítal som aj že treba zmazať ten súbor igfxupdate.exe ale na to mi tiež treba povolenie.

to som nasiel aj ja, no ked ti antivir a antispyware nic nehlasi, tak to cerv nebude. Ked to od teba pyta povolenie, tak bud musis prevziat vlastnictvo, alebo sa ten subor pouziva, takze ho nezmazes. A ak to neni virus, tak by som sa s ostatnymi igfx.... subormi ani nehral, pretoze je to ovladac grafiky a ten musis normalne odinstalovat cez programy a sucasti v ovl. paneli.







_________________
Ryzen 7 3700X | SilentiumPC Fera 3 | Asrock X570M Pro4 | Patriot Viper 4 Blackout 16GB DDR4-3600 CL17 | Gainward RTX4060 Ti Pegasus 8GB | Samsung 970evo Plus 250GB NVMe | Corsair MP510 1TB NVMe | Samsung 980 Pro 2TB NVMe | Corsair RM550x | 24" BenQ GW2470H | 3x Noctua NF-S12B redux 1200 PWM
Xiaomi Mi 9 Lite 64GB
Offline

Užívateľ
Užívateľ
Obrázok užívateľa

Registrovaný: 28.03.12
Prihlásený: 05.06.14
Príspevky: 133
Témy: 26
Príspevok Napísal autor témyOffline : 09.12.2012 12:54

1. typ dosky je v podpise a doska neobsahuje ... neobsahuje ziadnu integrovanu graficku kartu
2. dalsia vec ... eset mi vyhadzuje problem potencionalne nechcena app auto kms a dalej je tam napisane hackkms.exe v zlozke win32
3. pc je velmi tichy ale nie teraz vsetky fany idu na plne obratky co nie je normalne
4. ked zapnem spavcu uloh ziadne okno mi nenaskakuje a fany sa daju do normalnych otacok
5. teraz som resetol pc a pocas vypinania mi naskoci tabulka kde pise ze daco nemoze precitat







_________________
CPU:AMD FX8350 4GHz total 16Mb cache/COOLER: Arctic Freezer Pro 13/MB: GIGABYTE 990FXA-UD3/GPU: AMD Radeon 7950 (Gigabyte) @ 1100MHz/6GHz 3GB 384bit/RAM:8GB (2x4) Corsair CL9 XMS3 DDR3 1900MHz/PSU: Corsair CX750/CASE: Zalman Z11 Plus/HDD: 1TB WD 64MB cache/
NB1:Lenovo Z510 /Pentium,GT740m
NB2: Dell Inspiron 15 7537/ i5
MB: LG Optimus P970 Black
Offline

Užívateľ
Užívateľ
Obrázok užívateľa

Registrovaný: 09.05.11
Prihlásený: 20.12.18
Príspevky: 618
Témy: 2
Príspevok NapísalOffline : 09.12.2012 12:56

vlož log z rsit http://en.kioskea.net/download/download-11416-rsit


Offline

Užívateľ
Užívateľ
Obrázok užívateľa

Registrovaný: 28.03.12
Prihlásený: 05.06.14
Príspevky: 133
Témy: 26
Príspevok Napísal autor témyOffline : 09.12.2012 13:08

LOG:
Logfile of random's system information tool 1.09 (written by random/random)
Run by Dávid at 2012-12-09 13:05:49
Microsoft Windows 7 Ultimate
System drive C: has 282 GB (59%) free of 477 GB
Total RAM: 8173 MB (73% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 13:06:03, on 9. 12. 2012
Platform: Windows 7 (WinNT 6.00.3504)
MSIE: Internet Explorer v9.00 (9.00.8112.16455)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Gigabyte\ET6\GUI.exe
C:\Users\Dávid\Downloads\RSIT.exe
C:\Program Files (x86)\trend micro\Dávid.exe
C:\Windows\SysWOW64\update\igfxupdate.exe
C:\Windows\SysWOW64\WerFault.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.sk/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [Dolby Home Theater v4] "C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe" -autostart
O4 - HKLM\..\Run: [JMB36X IDE Setup] C:\Windows\RaidTool\xInsIDE.exe
O4 - HKLM\..\Run: [BCSSync] "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices
O4 - HKLM\..\RunOnce: [EasyTuneVI] C:\Program Files (x86)\Gigabyte\ET6\ETCall.exe
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xportovať do programu Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&oslať do programu OneNote - res://C:\PROGRA~2\MICROS~1\Office14\ONBttnIE.dll/105
O9 - Extra button: Odoslať do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&oslať do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: &Prepojené poznámky programu OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: &Prepojené poznámky programu OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: AppleChargerSrv - Unknown owner - C:\Windows\system32\AppleChargerSrv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe
O23 - Service: ES lite Service for program management. (ES lite Service) - Unknown owner - C:\Program Files (x86)\Gigabyte\EasySaver\ESSVR.EXE
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: JMB36X - Unknown owner - C:\Windows\SysWOW64\XSrvSetup.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: TuneUp Utilities Service (TuneUp.UtilitiesSvc) - TuneUp Software - C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesService64.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 7723 bytes

======Scheduled tasks folder======

C:\Windows\tasks\HP Photo Creations Messager.job

=========Mozilla firefox=========

ProfilePath - C:\Users\Dávid\AppData\Roaming\Mozilla\Firefox\Profiles\0iz8d00y.default

prefs.js - "browser.startup.homepage" - "www.google.sk"

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.5.502.110 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_5_502_110.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll

C:\Program Files (x86)\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}

C:\Program Files (x86)\Mozilla Firefox\components\
binary.manifest
browsercomps.dll

C:\Program Files (x86)\Mozilla Firefox\searchplugins\
atlas-sk.xml
azet-sk.xml
dunaj-sk.xml
eBay.xml
google.xml
slovnik-sk.xml
wikipedia-sk.xml
zoznam-sk.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-09-23 60568]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2010-03-25 4222864]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL [2010-02-28 561552]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2011-04-19 336384]
"Dolby Home Theater v4"=C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe [2011-06-01 506712]
"JMB36X IDE Setup"=C:\Windows\RaidTool\xInsIDE.exe [2010-09-07 43608]
"BCSSync"=C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [2010-03-13 91520]
""= []

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"EasyTuneVI"=C:\Program Files (x86)\Gigabyte\ET6\ETCall.exe [2012-02-01 40960]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2009-07-14 1475072]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2010-03-25 4222864]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"LogonHoursAction"=2
"DontDisplayLogonHoursWarnings"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\SysWOW64\l3codeca.acm
"vidc.cvid"=iccvid.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux2"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2012-12-09 13:05:49 ----D---- C:\rsit
2012-12-09 13:05:49 ----D---- C:\Program Files (x86)\trend micro
2012-12-09 12:26:48 ----A---- C:\Windows\SysWOW64\authuitu.dll
2012-12-09 12:25:46 ----D---- C:\Users\Dávid\AppData\Roaming\TuneUp Software
2012-12-09 12:25:07 ----D---- C:\Program Files (x86)\TuneUp Utilities 2013
2012-12-09 12:24:14 ----D---- C:\ProgramData\TuneUp Software
2012-12-09 12:24:06 ----SHD---- C:\ProgramData\{C4ABDBC8-1C81-42C9-BFFC-4A68511E9E4F}
2012-12-09 12:24:06 ----HD---- C:\ProgramData\Common Files
2012-12-08 18:56:46 ----A---- C:\Windows\SysWOW64\wcncsvc.dll
2012-12-08 18:51:47 ----A---- C:\Windows\SysWOW64\XpsGdiConverter.dll
2012-12-08 18:51:20 ----A---- C:\Windows\SysWOW64\tquery.dll
2012-12-08 18:51:20 ----A---- C:\Windows\SysWOW64\SearchProtocolHost.exe
2012-12-08 18:51:20 ----A---- C:\Windows\SysWOW64\SearchIndexer.exe
2012-12-08 18:51:20 ----A---- C:\Windows\SysWOW64\SearchFilterHost.exe
2012-12-08 18:51:20 ----A---- C:\Windows\SysWOW64\mssvp.dll
2012-12-08 18:51:20 ----A---- C:\Windows\SysWOW64\mssrch.dll
2012-12-08 18:51:20 ----A---- C:\Windows\SysWOW64\mssphtb.dll
2012-12-08 18:51:20 ----A---- C:\Windows\SysWOW64\mssph.dll
2012-12-08 18:51:20 ----A---- C:\Windows\SysWOW64\msscntrs.dll
2012-12-08 18:51:12 ----A---- C:\Windows\SysWOW64\setup16.exe
2012-12-08 18:51:12 ----A---- C:\Windows\SysWOW64\ntvdm64.dll
2012-12-08 18:51:12 ----A---- C:\Windows\SysWOW64\KernelBase.dll
2012-12-08 18:51:12 ----A---- C:\Windows\SysWOW64\kernel32.dll
2012-12-08 18:51:11 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2012-12-08 18:51:11 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2012-12-08 18:51:11 ----A---- C:\Windows\SysWOW64\wow32.dll
2012-12-08 18:51:11 ----A---- C:\Windows\SysWOW64\instnm.exe
2012-12-08 18:51:10 ----AH---- C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
2012-12-08 18:51:10 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
2012-12-08 18:51:10 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
2012-12-08 18:51:10 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2012-12-08 18:51:10 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2012-12-08 18:51:10 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2012-12-08 18:51:10 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2012-12-08 18:51:10 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2012-12-08 18:51:10 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
2012-12-08 18:51:10 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2012-12-08 18:51:10 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2012-12-08 18:51:10 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2012-12-08 18:51:10 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2012-12-08 18:51:10 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2012-12-08 18:51:10 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2012-12-08 18:51:10 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2012-12-08 18:51:10 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
2012-12-08 18:51:10 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2012-12-08 18:51:10 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2012-12-08 18:51:10 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
2012-12-08 18:51:10 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
2012-12-08 18:51:10 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2012-12-08 18:51:10 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
2012-12-08 18:51:10 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
2012-12-08 18:51:10 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
2012-12-08 18:51:10 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
2012-12-08 18:51:10 ----A---- C:\Windows\SysWOW64\user.exe
2012-12-08 18:50:55 ----A---- C:\Windows\SysWOW64\ntshrui.dll
2012-12-08 18:50:48 ----A---- C:\Windows\SysWOW64\upnp.dll
2012-12-08 18:50:47 ----A---- C:\Windows\SysWOW64\wscapi.dll
2012-12-08 18:50:47 ----A---- C:\Windows\SysWOW64\winhttp.dll
2012-12-08 18:50:47 ----A---- C:\Windows\SysWOW64\WebClnt.dll
2012-12-08 18:50:47 ----A---- C:\Windows\SysWOW64\slwga.dll
2012-12-08 18:50:47 ----A---- C:\Windows\SysWOW64\davclnt.dll
2012-12-08 18:50:44 ----A---- C:\Windows\SysWOW64\explorer.exe
2012-12-08 18:50:44 ----A---- C:\Windows\explorer.exe
2012-12-08 18:50:41 ----A---- C:\Windows\SysWOW64\secproc_isv.dll
2012-12-08 18:50:41 ----A---- C:\Windows\SysWOW64\secproc.dll
2012-12-08 18:50:40 ----A---- C:\Windows\SysWOW64\secproc_ssp_isv.dll
2012-12-08 18:50:40 ----A---- C:\Windows\SysWOW64\secproc_ssp.dll
2012-12-08 18:50:40 ----A---- C:\Windows\SysWOW64\RMActivate_ssp_isv.exe
2012-12-08 18:50:40 ----A---- C:\Windows\SysWOW64\RMActivate_ssp.exe
2012-12-08 18:50:40 ----A---- C:\Windows\SysWOW64\RMActivate_isv.exe
2012-12-08 18:50:40 ----A---- C:\Windows\SysWOW64\RMActivate.exe
2012-12-08 18:50:33 ----A---- C:\Windows\SysWOW64\d3d10level9.dll
2012-12-08 18:50:32 ----A---- C:\Windows\SysWOW64\xmllite.dll
2012-12-08 18:50:29 ----A---- C:\Windows\SysWOW64\win32spl.dll
2012-12-08 18:50:29 ----A---- C:\Windows\splwow64.exe
2012-12-08 18:50:22 ----A---- C:\Windows\SysWOW64\XpsPrint.dll
2012-12-08 18:49:40 ----A---- C:\Windows\SysWOW64\srclient.dll
2012-12-08 18:49:14 ----A---- C:\Windows\SysWOW64\msi.dll
2012-12-08 18:47:37 ----A---- C:\Windows\SysWOW64\prevhost.exe
2012-12-08 17:44:51 ----D---- C:\ProgramData\Orbit
2012-12-08 17:34:52 ----A---- C:\Windows\SysWOW64\msv1_0.dll
2012-12-08 17:18:47 ----A---- C:\Windows\SysWOW64\PresentationHostProxy.dll
2012-12-08 17:18:47 ----A---- C:\Windows\SysWOW64\PresentationHost.exe
2012-12-08 17:18:47 ----A---- C:\Windows\SysWOW64\netfxperf.dll
2012-12-08 17:18:47 ----A---- C:\Windows\SysWOW64\mscoree.dll
2012-12-08 17:18:47 ----A---- C:\Windows\SysWOW64\dfshim.dll
2012-12-08 17:17:23 ----D---- C:\Far Cry 3
2012-12-08 17:14:02 ----A---- C:\Windows\SysWOW64\wininet.dll
2012-12-08 17:14:02 ----A---- C:\Windows\SysWOW64\urlmon.dll
2012-12-08 17:14:02 ----A---- C:\Windows\SysWOW64\url.dll
2012-12-08 17:14:02 ----A---- C:\Windows\SysWOW64\SetIEInstalledDate.exe
2012-12-08 17:14:02 ----A---- C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2012-12-08 17:14:02 ----A---- C:\Windows\SysWOW64\msrating.dll
2012-12-08 17:14:02 ----A---- C:\Windows\SysWOW64\msls31.dll
2012-12-08 17:14:02 ----A---- C:\Windows\SysWOW64\mshtmler.dll
2012-12-08 17:14:02 ----A---- C:\Windows\SysWOW64\msfeedssync.exe
2012-12-08 17:14:02 ----A---- C:\Windows\SysWOW64\msfeedsbs.dll
2012-12-08 17:14:02 ----A---- C:\Windows\SysWOW64\jsproxy.dll
2012-12-08 17:14:02 ----A---- C:\Windows\SysWOW64\jscript9.dll
2012-12-08 17:14:02 ----A---- C:\Windows\SysWOW64\jscript.dll
2012-12-08 17:14:02 ----A---- C:\Windows\SysWOW64\ieui.dll
2012-12-08 17:14:02 ----A---- C:\Windows\SysWOW64\iesysprep.dll
2012-12-08 17:14:02 ----A---- C:\Windows\SysWOW64\iesetup.dll
2012-12-08 17:14:02 ----A---- C:\Windows\SysWOW64\iertutil.dll
2012-12-08 17:14:02 ----A---- C:\Windows\SysWOW64\iernonce.dll
2012-12-08 17:14:02 ----A---- C:\Windows\SysWOW64\iepeers.dll
2012-12-08 17:14:02 ----A---- C:\Windows\SysWOW64\ieframe.dll
2012-12-08 17:14:02 ----A---- C:\Windows\SysWOW64\iedkcs32.dll
2012-12-08 17:14:02 ----A---- C:\Windows\SysWOW64\ieapfltr.dll
2012-12-08 17:14:02 ----A---- C:\Windows\SysWOW64\ieapfltr.dat
2012-12-08 17:14:02 ----A---- C:\Windows\SysWOW64\ieakeng.dll
2012-12-08 17:14:02 ----A---- C:\Windows\SysWOW64\IEAdvpack.dll
2012-12-08 17:14:02 ----A---- C:\Windows\SysWOW64\ie4uinit.exe
2012-12-08 17:14:02 ----A---- C:\Windows\SysWOW64\icardie.dll
2012-12-08 17:14:02 ----A---- C:\Windows\SysWOW64\dxtrans.dll
2012-12-08 17:14:02 ----A---- C:\Windows\SysWOW64\dxtmsft.dll
2012-12-08 17:14:01 ----A---- C:\Windows\SysWOW64\wextract.exe
2012-12-08 17:14:01 ----A---- C:\Windows\SysWOW64\webcheck.dll
2012-12-08 17:14:01 ----A---- C:\Windows\SysWOW64\vbscript.dll
2012-12-08 17:14:01 ----A---- C:\Windows\SysWOW64\pngfilt.dll
2012-12-08 17:14:01 ----A---- C:\Windows\SysWOW64\occache.dll
2012-12-08 17:14:01 ----A---- C:\Windows\SysWOW64\mshtmled.dll
2012-12-08 17:14:01 ----A---- C:\Windows\SysWOW64\mshtml.dll
2012-12-08 17:14:01 ----A---- C:\Windows\SysWOW64\mshta.exe
2012-12-08 17:14:01 ----A---- C:\Windows\SysWOW64\msfeeds.dll
2012-12-08 17:14:01 ----A---- C:\Windows\SysWOW64\licmgr10.dll
2012-12-08 17:14:01 ----A---- C:\Windows\SysWOW64\inseng.dll
2012-12-08 17:14:01 ----A---- C:\Windows\SysWOW64\imgutil.dll
2012-12-08 17:14:01 ----A---- C:\Windows\SysWOW64\iexpress.exe
2012-12-08 17:14:01 ----A---- C:\Windows\SysWOW64\ieUnatt.exe
2012-12-08 17:14:01 ----A---- C:\Windows\SysWOW64\ieakui.dll
2012-12-08 17:14:01 ----A---- C:\Windows\SysWOW64\ieaksie.dll
2012-12-08 17:14:01 ----A---- C:\Windows\SysWOW64\admparse.dll
2012-12-08 17:13:18 ----D---- C:\ProgramData\Electronic Arts
2012-12-08 17:13:18 ----D---- C:\ProgramData\EA Core
2012-12-08 17:12:34 ----A---- C:\Windows\SysWOW64\WMVDECOD.DLL
2012-12-08 17:12:32 ----A---- C:\Windows\SysWOW64\XpsRasterService.dll
2012-12-08 17:12:32 ----A---- C:\Windows\SysWOW64\ExplorerFrame.dll
2012-12-08 17:12:30 ----A---- C:\Windows\SysWOW64\mf.dll
2012-12-08 17:12:29 ----A---- C:\Windows\SysWOW64\mfreadwrite.dll
2012-12-08 17:08:50 ----D---- C:\Program Files (x86)\Euro Truck Simulator 2
2012-12-08 17:07:49 ----D---- C:\Users\Dávid\AppData\Roaming\WinRAR
2012-12-08 17:05:53 ----D---- C:\ProgramData\Solidshield
2012-12-08 17:01:14 ----A---- C:\Windows\SysWOW64\wmi.dll
2012-12-08 17:01:14 ----A---- C:\Windows\SysWOW64\imagehlp.dll
2012-12-08 16:58:17 ----A---- C:\Windows\SysWOW64\cabview.dll
2012-12-08 16:58:14 ----A---- C:\Windows\SysWOW64\tzres.dll
2012-12-08 16:57:29 ----A---- C:\Windows\SysWOW64\msvcrt.dll
2012-12-08 16:57:26 ----A---- C:\Windows\SysWOW64\CertEnroll.dll
2012-12-08 16:57:11 ----A---- C:\Windows\SysWOW64\shell32.dll
2012-12-08 16:57:07 ----A---- C:\Windows\SysWOW64\webio.dll
2012-12-08 16:56:59 ----A---- C:\Windows\SysWOW64\poqexec.exe
2012-12-08 16:56:56 ----A---- C:\Windows\SysWOW64\psisdecd.dll
2012-12-08 16:56:50 ----A---- C:\Windows\SysWOW64\DWrite.dll
2012-12-08 16:56:50 ----A---- C:\Windows\SysWOW64\d3d10warp.dll
2012-12-08 16:56:50 ----A---- C:\Windows\SysWOW64\d2d1.dll
2012-12-08 16:56:49 ----A---- C:\Windows\SysWOW64\d3d10_1core.dll
2012-12-08 16:56:49 ----A---- C:\Windows\SysWOW64\d3d10_1.dll
2012-12-08 16:56:49 ----A---- C:\Windows\SysWOW64\CPFilters.dll
2012-12-08 16:56:48 ----A---- C:\Windows\SysWOW64\sbe.dll
2012-12-08 16:56:39 ----A---- C:\Windows\SysWOW64\msxml6.dll
2012-12-08 16:56:39 ----A---- C:\Windows\SysWOW64\msxml3.dll
2012-12-08 16:56:37 ----A---- C:\Windows\SysWOW64\ntoskrnl.exe
2012-12-08 16:56:37 ----A---- C:\Windows\SysWOW64\ntkrnlpa.exe
2012-12-08 16:56:35 ----A---- C:\Windows\SysWOW64\sspicli.dll
2012-12-08 16:56:35 ----A---- C:\Windows\SysWOW64\schannel.dll
2012-12-08 16:56:35 ----A---- C:\Windows\SysWOW64\secur32.dll
2012-12-08 16:56:35 ----A---- C:\Windows\SysWOW64\ncrypt.dll
2012-12-08 16:56:34 ----A---- C:\Windows\SysWOW64\mfc40u.dll
2012-12-08 16:56:34 ----A---- C:\Windows\SysWOW64\mfc40.dll
2012-12-08 16:56:32 ----A---- C:\Windows\SysWOW64\taskschd.dll
2012-12-08 16:56:32 ----A---- C:\Windows\SysWOW64\taskeng.exe
2012-12-08 16:56:32 ----A---- C:\Windows\SysWOW64\taskcomp.dll
2012-12-08 16:56:32 ----A---- C:\Windows\SysWOW64\schtasks.exe
2012-12-08 16:56:28 ----A---- C:\Windows\SysWOW64\quartz.dll
2012-12-08 16:56:28 ----A---- C:\Windows\SysWOW64\qdvd.dll
2012-12-08 16:56:27 ----A---- C:\Windows\SysWOW64\rdpcore.dll
2012-12-08 16:56:21 ----A---- C:\Windows\SysWOW64\ole32.dll
2012-12-08 16:56:17 ----A---- C:\Windows\SysWOW64\mfc42u.dll
2012-12-08 16:56:17 ----A---- C:\Windows\SysWOW64\mfc42.dll
2012-12-08 16:56:08 ----A---- C:\Windows\SysWOW64\wmp.dll
2012-12-08 16:56:07 ----A---- C:\Windows\SysWOW64\wmploc.DLL
2012-12-08 16:55:59 ----A---- C:\Windows\SysWOW64\odbcjt32.dll
2012-12-08 16:55:59 ----A---- C:\Windows\SysWOW64\odbccu32.dll
2012-12-08 16:55:59 ----A---- C:\Windows\SysWOW64\odbccr32.dll
2012-12-08 16:55:59 ----A---- C:\Windows\SysWOW64\odbccp32.dll
2012-12-08 16:55:58 ----A---- C:\Windows\SysWOW64\odbctrac.dll
2012-12-08 16:55:55 ----A---- C:\Windows\SysWOW64\fontsub.dll
2012-12-08 16:55:55 ----A---- C:\Windows\SysWOW64\atmlib.dll
2012-12-08 16:55:55 ----A---- C:\Windows\SysWOW64\atmfd.dll
2012-12-08 16:55:54 ----A---- C:\Windows\SysWOW64\dnscacheugc.exe
2012-12-08 16:55:54 ----A---- C:\Windows\SysWOW64\dnsapi.dll
2012-12-08 16:55:51 ----A---- C:\Windows\SysWOW64\odbc32.dll
2012-12-08 16:55:48 ----A---- C:\Windows\SysWOW64\ntdll.dll
2012-12-08 16:55:32 ----A---- C:\Windows\SysWOW64\kerberos.dll
2012-12-08 16:55:31 ----A---- C:\Windows\SysWOW64\comctl32.dll
2012-12-08 16:55:29 ----A---- C:\Windows\SysWOW64\mstscax.dll
2012-12-08 16:55:29 ----A---- C:\Windows\SysWOW64\mstsc.exe
2012-12-08 16:55:25 ----A---- C:\Windows\SysWOW64\tsbyuv.dll
2012-12-08 16:55:25 ----A---- C:\Windows\SysWOW64\msyuv.dll
2012-12-08 16:55:25 ----A---- C:\Windows\SysWOW64\msvidc32.dll
2012-12-08 16:55:25 ----A---- C:\Windows\SysWOW64\msrle32.dll
2012-12-08 16:55:25 ----A---- C:\Windows\SysWOW64\mciavi32.dll
2012-12-08 16:55:25 ----A---- C:\Windows\SysWOW64\iyuv_32.dll
2012-12-08 16:55:25 ----A---- C:\Windows\SysWOW64\avifil32.dll
2012-12-08 16:55:21 ----A---- C:\Windows\SysWOW64\asycfilt.dll
2012-12-08 16:55:16 ----A---- C:\Windows\SysWOW64\StructuredQuery.dll
2012-12-08 16:55:13 ----A---- C:\Windows\SysWOW64\t2embed.dll
2012-12-08 16:55:09 ----A---- C:\Windows\SysWOW64\wmpmde.dll
2012-12-08 16:55:08 ----A---- C:\Windows\SysWOW64\rtutils.dll
2012-12-08 16:55:07 ----A---- C:\Windows\SysWOW64\wintrust.dll
2012-12-08 16:55:06 ----A---- C:\Windows\SysWOW64\drvinst.exe
2012-12-08 16:55:06 ----A---- C:\Windows\SysWOW64\devrtl.dll
2012-12-08 16:55:06 ----A---- C:\Windows\SysWOW64\devobj.dll
2012-12-08 16:55:06 ----A---- C:\Windows\SysWOW64\cfgmgr32.dll
2012-12-08 16:55:04 ----A---- C:\Windows\SysWOW64\iccvid.dll
2012-12-08 16:55:03 ----A---- C:\Windows\SysWOW64\EncDec.dll
2012-12-08 16:55:01 ----A---- C:\Windows\SysWOW64\netapi32.dll
2012-12-08 16:55:01 ----A---- C:\Windows\SysWOW64\browcli.dll
2012-12-08 16:54:59 ----A---- C:\Windows\SysWOW64\synceng.dll
2012-12-08 16:54:58 ----A---- C:\Windows\SysWOW64\oleaut32.dll
2012-12-08 16:54:58 ----A---- C:\Windows\SysWOW64\oleacc.dll
2012-12-08 16:54:57 ----A---- C:\Windows\SysWOW64\inetcomm.dll
2012-12-08 16:54:56 ----A---- C:\Windows\SysWOW64\msasn1.dll
2012-12-08 16:54:33 ----A---- C:\Windows\SysWOW64\sscore.dll
2012-12-08 16:51:14 ----D---- C:\Program Files (x86)\Mozilla Firefox
2012-12-08 16:48:45 ----D---- C:\eurotruckmoney
2012-12-08 16:40:48 ----D---- C:\Electronic Arts
2012-12-08 16:39:52 ----A---- C:\Windows\SysWOW64\cryptsvc.dll
2012-12-08 16:39:52 ----A---- C:\Windows\SysWOW64\cryptnet.dll
2012-12-08 16:39:52 ----A---- C:\Windows\SysWOW64\crypt32.dll
2012-12-08 16:39:39 ----A---- C:\Windows\SysWOW64\packager.dll
2012-12-08 16:32:57 ----A---- C:\Windows\SysWOW64\igfxupdate.exe
2012-12-04 15:20:23 ----A---- C:\Windows\game.ini
2012-12-04 15:16:25 ----D---- C:\Program Files (x86)\Activision
2012-12-03 19:24:08 ----D---- C:\Users\Dávid\AppData\Roaming\DAEMON Tools Pro
2012-12-03 19:23:47 ----D---- C:\ProgramData\DAEMON Tools Pro
2012-12-03 19:17:28 ----D---- C:\Windows\SysWOW64\update
2012-12-03 18:28:04 ----D---- C:\Program Files (x86)\Common Files\Adobe
2012-12-03 18:28:04 ----D---- C:\Program Files (x86)\Adobe
2012-12-03 18:27:20 ----D---- C:\ProgramData\Adobe
2012-12-02 15:14:17 ----D---- C:\Users\Dávid\AppData\Roaming\Theta
2012-11-28 17:48:20 ----A---- C:\Windows\SysWOW64\XAudio2_7.dll
2012-11-28 17:48:20 ----A---- C:\Windows\SysWOW64\XAPOFX1_5.dll
2012-11-28 17:48:20 ----A---- C:\Windows\SysWOW64\xactengine3_7.dll
2012-11-28 17:48:19 ----A---- C:\Windows\SysWOW64\D3DCompiler_43.dll
2012-11-28 17:48:18 ----A---- C:\Windows\SysWOW64\D3DX9_43.dll
2012-11-28 17:48:18 ----A---- C:\Windows\SysWOW64\d3dx11_43.dll
2012-11-28 17:48:18 ----A---- C:\Windows\SysWOW64\d3dx10_43.dll
2012-11-28 17:48:18 ----A---- C:\Windows\SysWOW64\d3dcsx_43.dll
2012-11-28 17:48:17 ----A---- C:\Windows\SysWOW64\XAudio2_6.dll
2012-11-28 17:48:17 ----A---- C:\Windows\SysWOW64\XAPOFX1_4.dll
2012-11-28 17:48:17 ----A---- C:\Windows\SysWOW64\xactengine3_6.dll
2012-11-28 17:48:17 ----A---- C:\Windows\SysWOW64\X3DAudio1_7.dll
2012-11-28 17:48:16 ----A---- C:\Windows\SysWOW64\XAudio2_5.dll
2012-11-28 17:48:15 ----A---- C:\Windows\SysWOW64\xactengine3_5.dll
2012-11-28 17:48:15 ----A---- C:\Windows\SysWOW64\D3DCompiler_42.dll
2012-11-28 17:48:13 ----A---- C:\Windows\SysWOW64\d3dx11_42.dll
2012-11-28 17:48:13 ----A---- C:\Windows\SysWOW64\d3dx10_42.dll
2012-11-28 17:48:13 ----A---- C:\Windows\SysWOW64\d3dcsx_42.dll
2012-11-28 17:48:12 ----A---- C:\Windows\SysWOW64\D3DX9_42.dll
2012-11-28 17:48:12 ----A---- C:\Windows\SysWOW64\d3dx10_41.dll
2012-11-28 17:48:12 ----A---- C:\Windows\SysWOW64\D3DCompiler_41.dll
2012-11-28 17:48:11 ----A---- C:\Windows\SysWOW64\D3DX9_41.dll
2012-11-28 17:48:10 ----A---- C:\Windows\SysWOW64\XAudio2_4.dll
2012-11-28 17:48:10 ----A---- C:\Windows\SysWOW64\XAPOFX1_3.dll
2012-11-28 17:48:09 ----A---- C:\Windows\SysWOW64\xactengine3_4.dll
2012-11-28 17:48:09 ----A---- C:\Windows\SysWOW64\X3DAudio1_6.dll
2012-11-28 17:48:09 ----A---- C:\Windows\SysWOW64\d3dx10_40.dll
2012-11-28 17:48:09 ----A---- C:\Windows\SysWOW64\D3DCompiler_40.dll
2012-11-28 17:48:08 ----A---- C:\Windows\SysWOW64\XAudio2_3.dll
2012-11-28 17:48:08 ----A---- C:\Windows\SysWOW64\XAPOFX1_2.dll
2012-11-28 17:48:08 ----A---- C:\Windows\SysWOW64\D3DX9_40.dll
2012-11-28 17:48:07 ----A---- C:\Windows\SysWOW64\xactengine3_3.dll
2012-11-28 17:48:07 ----A---- C:\Windows\SysWOW64\X3DAudio1_5.dll
2012-11-28 17:48:06 ----A---- C:\Windows\SysWOW64\XAudio2_2.dll
2012-11-28 17:48:06 ----A---- C:\Windows\SysWOW64\XAPOFX1_1.dll
2012-11-28 17:48:06 ----A---- C:\Windows\SysWOW64\xactengine3_2.dll
2012-11-28 17:48:05 ----A---- C:\Windows\SysWOW64\d3dx10_39.dll
2012-11-28 17:48:05 ----A---- C:\Windows\SysWOW64\D3DCompiler_39.dll
2012-11-28 17:48:04 ----A---- C:\Windows\SysWOW64\XAudio2_1.dll
2012-11-28 17:48:04 ----A---- C:\Windows\SysWOW64\XAPOFX1_0.dll
2012-11-28 17:48:04 ----A---- C:\Windows\SysWOW64\D3DX9_39.dll
2012-11-28 17:48:01 ----A---- C:\Windows\SysWOW64\xactengine3_1.dll
2012-11-28 17:48:00 ----A---- C:\Windows\SysWOW64\X3DAudio1_4.dll
2012-11-28 17:48:00 ----A---- C:\Windows\SysWOW64\d3dx10_38.dll
2012-11-28 17:48:00 ----A---- C:\Windows\SysWOW64\D3DCompiler_38.dll
2012-11-28 17:47:59 ----A---- C:\Windows\SysWOW64\XAudio2_0.dll
2012-11-28 17:47:59 ----A---- C:\Windows\SysWOW64\D3DX9_38.dll
2012-11-28 17:47:57 ----A---- C:\Windows\SysWOW64\xactengine3_0.dll
2012-11-28 17:47:56 ----A---- C:\Windows\SysWOW64\X3DAudio1_3.dll
2012-11-28 17:47:56 ----A---- C:\Windows\SysWOW64\d3dx10_37.dll
2012-11-28 17:47:56 ----A---- C:\Windows\SysWOW64\D3DCompiler_37.dll
2012-11-28 17:47:55 ----A---- C:\Windows\SysWOW64\xactengine2_10.dll
2012-11-28 17:47:55 ----A---- C:\Windows\SysWOW64\D3DX9_37.dll
2012-11-28 17:47:54 ----A---- C:\Windows\SysWOW64\d3dx10_36.dll
2012-11-28 17:47:54 ----A---- C:\Windows\SysWOW64\D3DCompiler_36.dll
2012-11-28 17:47:53 ----A---- C:\Windows\SysWOW64\d3dx9_36.dll
2012-11-28 17:47:52 ----A---- C:\Windows\SysWOW64\xactengine2_9.dll
2012-11-28 17:47:52 ----A---- C:\Windows\SysWOW64\d3dx10_35.dll
2012-11-28 17:47:52 ----A---- C:\Windows\SysWOW64\D3DCompiler_35.dll
2012-11-28 17:47:51 ----A---- C:\Windows\SysWOW64\d3dx9_35.dll
2012-11-28 17:47:50 ----A---- C:\Windows\SysWOW64\xactengine2_8.dll
2012-11-28 17:47:50 ----A---- C:\Windows\SysWOW64\X3DAudio1_2.dll
2012-11-28 17:47:50 ----A---- C:\Windows\SysWOW64\d3dx10_34.dll
2012-11-28 17:47:50 ----A---- C:\Windows\SysWOW64\D3DCompiler_34.dll
2012-11-28 17:47:49 ----A---- C:\Windows\SysWOW64\d3dx9_34.dll
2012-11-28 17:47:48 ----A---- C:\Windows\SysWOW64\xinput1_3.dll
2012-11-28 17:47:47 ----A---- C:\Windows\SysWOW64\xactengine2_7.dll
2012-11-28 17:47:47 ----A---- C:\Windows\SysWOW64\d3dx10_33.dll
2012-11-28 17:47:47 ----A---- C:\Windows\SysWOW64\D3DCompiler_33.dll
2012-11-28 17:47:46 ----A---- C:\Windows\SysWOW64\d3dx9_33.dll
2012-11-28 17:47:45 ----A---- C:\Windows\SysWOW64\xactengine2_6.dll
2012-11-28 17:47:44 ----A---- C:\Windows\SysWOW64\xactengine2_5.dll
2012-11-28 17:47:44 ----A---- C:\Windows\SysWOW64\d3dx10.dll
2012-11-28 17:47:43 ----A---- C:\Windows\SysWOW64\d3dx9_32.dll
2012-11-28 17:47:42 ----A---- C:\Windows\SysWOW64\xactengine2_4.dll
2012-11-28 17:47:42 ----A---- C:\Windows\SysWOW64\x3daudio1_1.dll
2012-11-28 17:47:42 ----A---- C:\Windows\SysWOW64\d3dx9_31.dll
2012-11-28 17:47:41 ----A---- C:\Windows\SysWOW64\xinput1_2.dll
2012-11-28 17:47:41 ----A---- C:\Windows\SysWOW64\xactengine2_3.dll
2012-11-28 17:47:40 ----A---- C:\Windows\SysWOW64\xactengine2_2.dll
2012-11-28 17:47:39 ----A---- C:\Windows\SysWOW64\xinput1_1.dll
2012-11-28 17:47:38 ----A---- C:\Windows\SysWOW64\xactengine2_1.dll
2012-11-28 17:47:35 ----A---- C:\Windows\SysWOW64\d3dx9_30.dll
2012-11-28 17:47:34 ----A---- C:\Windows\SysWOW64\xactengine2_0.dll
2012-11-28 17:47:34 ----A---- C:\Windows\SysWOW64\x3daudio1_0.dll
2012-11-28 17:47:34 ----A---- C:\Windows\SysWOW64\d3dx9_29.dll
2012-11-28 17:47:33 ----A---- C:\Windows\SysWOW64\d3dx9_28.dll
2012-11-28 17:47:33 ----A---- C:\Windows\SysWOW64\d3dx9_27.dll
2012-11-28 17:47:32 ----A---- C:\Windows\SysWOW64\d3dx9_26.dll
2012-11-28 17:47:29 ----A---- C:\Windows\SysWOW64\d3dx9_25.dll
2012-11-28 17:47:28 ----A---- C:\Windows\SysWOW64\d3dx9_24.dll
2012-11-28 17:45:21 ----HD---- C:\Windows\msdownld.tmp
2012-11-28 17:45:21 ----D---- C:\Windows\SysWOW64\directx
2012-11-28 17:33:42 ----D---- C:\Program Files (x86)\Assassins Creed III
2012-11-28 17:20:22 ----D---- C:\ProgramData\HP Photo Creations
2012-11-28 17:20:22 ----D---- C:\Program Files (x86)\HP Photo Creations
2012-11-28 17:19:56 ----D---- C:\Users\Dávid\AppData\Roaming\HpUpdate
2012-11-28 17:04:46 ----D---- C:\ProgramData\HP
2012-11-28 17:04:43 ----D---- C:\Program Files (x86)\HP
2012-11-28 17:03:05 ----D---- C:\Users\Dávid\AppData\Roaming\ESET
2012-11-28 16:58:59 ----A---- C:\ProgramData\Ament.ini
2012-11-28 16:57:19 ----D---- C:\ProgramData\ESET
2012-11-28 16:51:18 ----D---- C:\Program Files (x86)\Microsoft Synchronization Services
2012-11-28 16:51:18 ----D---- C:\Program Files (x86)\Common Files\DESIGNER
2012-11-28 16:50:52 ----D---- C:\Windows\PCHEALTH
2012-11-28 16:50:52 ----D---- C:\Program Files (x86)\Microsoft.NET
2012-11-28 16:50:52 ----D---- C:\Program Files (x86)\Microsoft Sync Framework
2012-11-28 16:50:52 ----D---- C:\Program Files (x86)\Microsoft SQL Server Compact Edition
2012-11-28 16:49:34 ----D---- C:\Users\Dávid\AppData\Roaming\Macromedia
2012-11-28 16:49:34 ----D---- C:\Users\Dávid\AppData\Roaming\Adobe
2012-11-28 16:49:23 ----D---- C:\Users\Dávid\AppData\Roaming\Mozilla
2012-11-28 16:49:14 ----A---- C:\Windows\SysWOW64\FlashPlayerApp.exe
2012-11-28 16:49:13 ----D---- C:\Windows\SysWOW64\Macromed
2012-11-28 16:48:09 ----D---- C:\ProgramData\Mozilla
2012-11-28 16:48:08 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2012-11-28 16:47:31 ----D---- C:\Program Files (x86)\Microsoft Visual Studio 8
2012-11-28 16:46:37 ----D---- C:\Program Files (x86)\Microsoft Analysis Services
2012-11-28 16:46:15 ----D---- C:\ProgramData\Microsoft Help
2012-11-28 16:46:15 ----D---- C:\Program Files (x86)\Microsoft Office
2012-11-28 16:41:50 ----A---- C:\Windows\GVTDrv64.sys
2012-11-28 16:41:28 ----A---- C:\Windows\gdrv.sys
2012-11-28 16:37:04 ----D---- C:\Program Files (x86)\AMD
2012-11-28 16:34:14 ----D---- C:\Program Files (x86)\Etron Technology
2012-11-28 16:34:00 ----R---- C:\Windows\SysWOW64\xRaidAPI.dll
2012-11-28 16:33:59 ----R---- C:\Windows\SysWOW64\XSrvSetup.exe
2012-11-28 16:33:59 ----R---- C:\Windows\SysWOW64\xRaidSetup.exe
2012-11-28 16:33:25 ----D---- C:\Windows\RaidTool
2012-11-28 16:29:30 ----D---- C:\Program Files (x86)\Dolby Home Theater v4
2012-11-28 16:29:08 ----D---- C:\Windows\SysWOW64\RTCOM
2012-11-28 16:28:47 ----A---- C:\Windows\SysWOW64\SFCOM.dll
2012-11-28 16:28:35 ----D---- C:\Program Files (x86)\Realtek
2012-11-28 16:28:34 ----HD---- C:\Program Files (x86)\Temp
2012-11-28 16:28:33 ----R---- C:\Windows\RtlExUpd.dll
2012-11-28 16:28:13 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2012-11-28 16:28:13 ----D---- C:\Program Files (x86)\Gigabyte
2012-11-28 16:27:55 ----D---- C:\Program Files (x86)\Common Files\InstallShield
2012-11-28 16:27:17 ----A---- C:\Windows\GSetup.ini
2012-11-28 16:26:38 ----D---- C:\Users\Dávid\AppData\Roaming\ATI
2012-11-28 16:26:38 ----D---- C:\ProgramData\ATI
2012-11-28 16:25:15 ----D---- C:\Program Files (x86)\AMD APP
2012-11-28 16:25:05 ----D---- C:\Program Files (x86)\Common Files\ATI Technologies
2012-11-28 16:23:58 ----D---- C:\ProgramData\AMD
2012-11-28 16:23:26 ----A---- C:\Windows\SysWOW64\atipblag.dat
2012-11-28 16:22:55 ----D---- C:\Program Files (x86)\ATI Technologies
2012-11-28 16:22:49 ----SHD---- C:\Windows\Installer
2012-11-28 16:19:52 ----D---- C:\Users\Dávid\AppData\Roaming\Identities
2012-11-28 16:19:36 ----SD---- C:\Users\Dávid\AppData\Roaming\Microsoft
2012-11-28 16:19:36 ----D---- C:\Users\Dávid\AppData\Roaming\Media Center Programs
2012-11-28 16:03:55 ----D---- C:\Windows\SoftwareDistribution
2012-11-28 16:01:22 ----D---- C:\Windows\Prefetch
2012-11-28 16:00:10 ----D---- C:\Windows\Panther
2012-11-28 15:59:57 ----RASH---- C:\BOOTSECT.BAK
2012-11-28 15:59:55 ----SHD---- C:\Boot
2012-11-28 15:48:21 ----D---- C:\Windows.old
2012-11-26 17:37:28 ----D---- C:\Games
2012-11-26 14:46:18 ----D---- C:\Záloha Zuzana kľúč
2012-11-23 17:59:22 ----ASH---- C:\hiberfil.sys
2012-11-20 18:08:04 ----A---- C:\TESTFILE.TMP

======List of files/folders modified in the last 1 month======

2012-12-09 13:06:00 ----D---- C:\Windows\Temp
2012-12-09 13:05:49 ----RD---- C:\Program Files (x86)
2012-12-09 13:01:30 ----D---- C:\Windows\SysWOW64
2012-12-09 12:58:24 ----D---- C:\Windows\winsxs
2012-12-09 12:56:47 ----D---- C:\Windows\Microsoft.NET
2012-12-09 12:56:38 ----RSD---- C:\Windows\assembly
2012-12-09 12:32:44 ----D---- C:\Windows
2012-12-09 12:26:50 ----D---- C:\Windows\System32
2012-12-09 12:24:29 ----SHD---- C:\System Volume Information
2012-12-09 12:24:14 ----HD---- C:\ProgramData
2012-12-09 11:52:43 ----D---- C:\Windows\inf
2012-12-09 11:46:20 ----D---- C:\Program Files (x86)\Common Files\System
2012-12-09 11:46:15 ----D---- C:\Windows\ehome
2012-12-08 18:59:49 ----RSD---- C:\Windows\Fonts
2012-12-08 18:59:48 ----D---- C:\Windows\SysWOW64\sk-SK
2012-12-08 18:59:47 ----D---- C:\Windows\AppPatch
2012-12-08 18:35:14 ----D---- C:\Program Files (x86)\Windows Mail
2012-12-08 18:35:05 ----D---- C:\Program Files (x86)\Internet Explorer
2012-12-08 18:35:03 ----D---- C:\Windows\SysWOW64\migration
2012-12-08 18:35:03 ----D---- C:\Windows\SysWOW64\en-US
2012-12-08 18:35:00 ----D---- C:\Windows\PolicyDefinitions
2012-12-08 18:34:41 ----D---- C:\Program Files (x86)\Windows Media Player
2012-12-08 17:15:59 ----D---- C:\Windows\Logs
2012-12-08 17:07:44 ----RD---- C:\Program Files
2012-12-08 17:05:24 ----D---- C:\Windows\debug
2012-12-03 18:28:04 ----D---- C:\Program Files (x86)\Common Files
2012-12-03 18:25:19 ----SHD---- C:\$Recycle.Bin
2012-12-03 17:51:21 ----RD---- C:\Users
2012-11-28 17:20:24 ----D---- C:\Windows\Tasks
2012-11-28 17:04:43 ----D---- C:\Windows\twain_32
2012-11-28 16:51:53 ----D---- C:\Windows\ShellNew
2012-11-28 16:51:52 ----D---- C:\Program Files (x86)\Common Files\microsoft shared
2012-11-28 16:51:44 ----D---- C:\Program Files (x86)\MSBuild
2012-11-28 16:50:52 ----SD---- C:\ProgramData\Microsoft
2012-11-28 16:49:34 ----D---- C:\Windows\Downloaded Program Files
2012-11-28 16:46:51 ----A---- C:\Windows\win.ini
2012-11-28 16:18:40 ----D---- C:\Windows\rescache
2012-11-28 16:18:10 ----SHD---- C:\Recovery
2012-11-28 16:01:43 ----D---- C:\Windows\CSC
2012-11-28 15:59:38 ----D---- C:\Windows\Setup

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 epfwwfp;epfwwfp; C:\Windows\system32\DRIVERS\epfwwfp.sys []
R0 JRAID;JRAID; C:\Windows\system32\DRIVERS\jraid.sys []
R0 pciide;pciide; C:\Windows\system32\DRIVERS\pciide.sys []
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys []
R1 AppleCharger;AppleCharger; C:\Windows\system32\DRIVERS\AppleCharger.sys []
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys []
R1 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys []
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys []
R1 EpfwLWF;Epfw NDIS LightWeight Filter; C:\Windows\system32\DRIVERS\EpfwLWF.sys []
R2 epfw;epfw; C:\Windows\system32\DRIVERS\epfw.sys []
R3 amdiox64;AMD IO Driver; C:\Windows\system32\DRIVERS\amdiox64.sys []
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys []
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys []
R3 AODDriver;AODDriver; \??\C:\Program Files (x86)\Gigabyte\ET6\amd64\AODDriver.sys [2010-03-12 52280]
R3 AtiHDAudioService;ATI Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdW76.sys []
R3 EtronHub3;Etron USB 3.0 Extensible Hub Driver; C:\Windows\System32\Drivers\EtronHub3.sys []
R3 EtronXHCI;Etron USB 3.0 Extensible Host Controller Driver; C:\Windows\System32\Drivers\EtronXHCI.sys []
R3 gdrv;gdrv; \??\C:\Windows\gdrv.sys [2012-12-09 25640]
R3 GVTDrv64;GVTDrv64; \??\C:\Windows\GVTDrv64.sys [2012-12-09 30528]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys []
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys []
R3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv; \??\C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesDriver64.sys [2012-09-19 11880]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys []
S3 RTHDMIAzAudService;Service for HDMI; C:\Windows\system32\drivers\RtHDMIVX.sys []
S3 s3cap;s3cap; C:\Windows\system32\DRIVERS\vms3cap.sys []
S3 storvsc;storvsc; C:\Windows\system32\DRIVERS\storvsc.sys []
S3 usbscan;USB Scanner Driver; C:\Windows\system32\DRIVERS\usbscan.sys []
S3 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\DRIVERS\vmbus.sys []
S3 VMBusHID;VMBusHID; C:\Windows\system32\DRIVERS\VMBusHID.sys []

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-09-23 65192]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe []
R2 AMD FUEL Service;AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [2011-04-19 365568]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe [2012-11-14 1329304]
R2 ES lite Service;ES lite Service for program management.; C:\Program Files (x86)\Gigabyte\EasySaver\ESSVR.EXE [2009-08-24 68136]
R2 JMB36X;JMB36X; C:\Windows\SysWOW64\XSrvSetup.exe [2010-09-07 72280]
R2 SearchIndexer;Search Indexer; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 TuneUp.UtilitiesSvc;TuneUp Utilities Service; C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesService64.exe [2012-11-02 2365792]
S3 AppleChargerSrv;AppleChargerSrv; C:\Windows\system32\AppleChargerSrv.exe []
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files (x86)\Microsoft Office\Office14\GROOVE.EXE [2010-03-25 30969208]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2012-12-08 115168]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 20992]

-----------------EOF-----------------







_________________
CPU:AMD FX8350 4GHz total 16Mb cache/COOLER: Arctic Freezer Pro 13/MB: GIGABYTE 990FXA-UD3/GPU: AMD Radeon 7950 (Gigabyte) @ 1100MHz/6GHz 3GB 384bit/RAM:8GB (2x4) Corsair CL9 XMS3 DDR3 1900MHz/PSU: Corsair CX750/CASE: Zalman Z11 Plus/HDD: 1TB WD 64MB cache/
NB1:Lenovo Z510 /Pentium,GT740m
NB2: Dell Inspiron 15 7537/ i5
MB: LG Optimus P970 Black
Offline

Užívateľ
Užívateľ
Obrázok užívateľa

Registrovaný: 28.03.12
Prihlásený: 05.06.14
Príspevky: 133
Témy: 26
Príspevok Napísal autor témyOffline : 09.12.2012 13:09

Bože ten comp je teraz taký spomalený že sa sním nedá robiť.







_________________
CPU:AMD FX8350 4GHz total 16Mb cache/COOLER: Arctic Freezer Pro 13/MB: GIGABYTE 990FXA-UD3/GPU: AMD Radeon 7950 (Gigabyte) @ 1100MHz/6GHz 3GB 384bit/RAM:8GB (2x4) Corsair CL9 XMS3 DDR3 1900MHz/PSU: Corsair CX750/CASE: Zalman Z11 Plus/HDD: 1TB WD 64MB cache/
NB1:Lenovo Z510 /Pentium,GT740m
NB2: Dell Inspiron 15 7537/ i5
MB: LG Optimus P970 Black
Offline

Užívateľ
Užívateľ
Obrázok užívateľa

Registrovaný: 09.05.11
Prihlásený: 20.12.18
Príspevky: 618
Témy: 2
Príspevok NapísalOffline : 09.12.2012 13:12

sprav scan combofixom http://www.bleepingcomputer.com/download/combofix/ spusť dávaj yes ok agree ako ťa combofix vyzve keď skonči vybehne poznámkový blok vlož ho sem budeš ho mať na C:combofix.txt keď to nepôjde tak to sprav v nudzovom režime


Offline

Užívateľ
Užívateľ
Obrázok užívateľa

Registrovaný: 28.03.12
Prihlásený: 05.06.14
Príspevky: 133
Témy: 26
Príspevok Napísal autor témyOffline : 09.12.2012 13:36

ComboFix 12-12-07.01 - Dávid . 12. 2012 13:17:11.1.4 - x64
Microsoft Windows 7 Ultimate 6.1.7600.0.1250.421.1051.18.8173.5916 [GMT 1:00]
Running from: c:\users\Dßvid\Downloads\ComboFix.exe
AV: ESET Smart Security 6.0 *Enabled/Updated* {77DEAFED-8149-104B-25A1-21771CA47CD1}
FW: ESET personal firewall *Enabled* {4FE52EC8-CB26-1113-0EFE-8842E2773BAA}
SP: ESET Smart Security 6.0 *Enabled/Updated* {CCBF4E09-A773-1FC5-1F11-1A056723366C}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
* Resident AV is active
.
.
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\windows\SysWow64\update
c:\windows\SysWow64\update\diablo121016.cl
c:\windows\SysWow64\update\diakgcn121016.cl
c:\windows\SysWow64\update\igfxupdate.exe
c:\windows\SysWow64\update\libcurl-4.dll
c:\windows\SysWow64\update\libeay32.dll
c:\windows\SysWow64\update\libidn-11.dll
c:\windows\SysWow64\update\libusb-1.0.dll
c:\windows\SysWow64\update\phatk121016.cl
c:\windows\SysWow64\update\poclbm121016.cl
c:\windows\SysWow64\update\pthreadGC2.dll
c:\windows\SysWow64\update\scrypt121016.cl
c:\windows\SysWow64\update\ssleay32.dll
c:\windows\SysWow64\update\zlib1.dll
.
c:\windows\system32\drivers\intelppm.sys was missing
Restored copy from - c:\windows\winsxs\amd64_cpu.inf_31bf3856ad364e35_6.1.7600.16385_none_b93f4c460912265a\intelppm.sys
.
.
((((((((((((((((((((((((( Files Created from 2012-11-09 to 2012-12-09 )))))))))))))))))))))))))))))))
.
.
2012-12-09 12:05 . 2012-12-09 12:06 -------- d-----w- C:\rsit
2012-12-09 12:05 . 2012-12-09 12:06 -------- d-----w- c:\program files (x86)\trend micro
2012-12-09 11:26 . 2012-11-02 14:57 34656 ----a-w- c:\windows\system32\TURegOpt.exe
2012-12-09 11:26 . 2012-11-02 14:57 25952 ----a-w- c:\windows\system32\authuitu.dll
2012-12-09 11:26 . 2012-11-02 14:57 21344 ----a-w- c:\windows\SysWow64\authuitu.dll
2012-12-09 11:25 . 2012-12-09 11:26 -------- d-----w- c:\program files (x86)\TuneUp Utilities 2013
2012-12-09 11:24 . 2012-12-09 11:25 -------- d-----w- c:\programdata\TuneUp Software
2012-12-09 11:24 . 2012-12-09 11:34 -------- d-sh--w- c:\programdata\{C4ABDBC8-1C81-42C9-BFFC-4A68511E9E4F}
2012-12-09 11:24 . 2012-12-09 11:24 -------- d--h--w- c:\programdata\Common Files
2012-12-08 17:56 . 2010-09-14 06:45 367104 ----a-w- c:\windows\system32\wcncsvc.dll
2012-12-08 17:56 . 2010-09-14 06:07 276992 ----a-w- c:\windows\SysWow64\wcncsvc.dll
2012-12-08 17:55 . 2012-07-26 04:55 785512 ----a-w- c:\windows\system32\drivers\Wdf01000.sys
2012-12-08 17:55 . 2012-07-26 04:55 54376 ----a-w- c:\windows\system32\drivers\WdfLdr.sys
2012-12-08 17:55 . 2012-07-26 04:47 2560 ----a-w- c:\windows\system32\drivers\en-US\wdf01000.sys.mui
2012-12-08 17:55 . 2012-07-26 02:36 9728 ----a-w- c:\windows\system32\Wdfres.dll
2012-12-08 17:53 . 2012-07-26 02:26 87040 ----a-w- c:\windows\system32\drivers\WUDFPf.sys
2012-12-08 17:53 . 2012-07-26 02:26 198656 ----a-w- c:\windows\system32\drivers\WUDFRd.sys
2012-12-08 17:53 . 2012-07-26 03:08 229888 ----a-w- c:\windows\system32\WUDFHost.exe
2012-12-08 17:53 . 2012-07-26 03:08 84992 ----a-w- c:\windows\system32\WUDFSvc.dll
2012-12-08 17:53 . 2012-07-26 03:08 744448 ----a-w- c:\windows\system32\WUDFx.dll
2012-12-08 17:53 . 2012-07-26 03:08 45056 ----a-w- c:\windows\system32\WUDFCoinstaller.dll
2012-12-08 17:53 . 2012-07-26 03:08 194048 ----a-w- c:\windows\system32\WUDFPlatform.dll
2012-12-08 17:52 . 2010-03-04 04:32 243712 ----a-w- c:\windows\system32\drivers\ks.sys
2012-12-08 17:50 . 2012-01-04 09:58 509952 ----a-w- c:\windows\system32\ntshrui.dll
2012-12-08 17:49 . 2012-05-05 08:30 503808 ----a-w- c:\windows\system32\srcore.dll
2012-12-08 17:49 . 2012-05-05 07:44 43008 ----a-w- c:\windows\SysWow64\srclient.dll
2012-12-08 17:49 . 2012-04-07 12:18 3213824 ----a-w- c:\windows\system32\msi.dll
2012-12-08 17:49 . 2012-04-07 11:34 2342400 ----a-w- c:\windows\SysWow64\msi.dll
2012-12-08 17:47 . 2011-04-22 20:18 27008 ----a-w- c:\windows\system32\drivers\Diskdump.sys
2012-12-08 17:47 . 2009-09-26 06:20 223448 ----a-w- c:\windows\system32\drivers\fvevol.sys
2012-12-08 17:47 . 2012-05-02 05:32 208896 ----a-w- c:\windows\system32\profsvc.dll
2012-12-08 17:47 . 2011-02-18 06:33 31232 ----a-w- c:\windows\system32\prevhost.exe
2012-12-08 17:47 . 2011-02-18 05:33 31232 ----a-w- c:\windows\SysWow64\prevhost.exe
2012-12-08 16:44 . 2012-12-08 16:44 -------- d-----w- c:\programdata\Orbit
2012-12-08 16:34 . 2009-09-10 06:28 311808 ----a-w- c:\windows\system32\msv1_0.dll
2012-12-08 16:34 . 2009-09-10 05:52 257024 ----a-w- c:\windows\SysWow64\msv1_0.dll
2012-12-08 16:18 . 2009-11-25 11:47 99176 ----a-w- c:\windows\SysWow64\PresentationHostProxy.dll
2012-12-08 16:18 . 2009-11-25 11:47 49472 ----a-w- c:\windows\SysWow64\netfxperf.dll
2012-12-08 16:18 . 2009-11-25 11:47 48960 ----a-w- c:\windows\system32\netfxperf.dll
2012-12-08 16:18 . 2009-11-25 11:47 297808 ----a-w- c:\windows\SysWow64\mscoree.dll
2012-12-08 16:18 . 2009-11-25 11:47 295264 ----a-w- c:\windows\SysWow64\PresentationHost.exe
2012-12-08 16:18 . 2009-11-25 11:47 1130824 ----a-w- c:\windows\SysWow64\dfshim.dll
2012-12-08 16:18 . 2009-11-25 11:47 109912 ----a-w- c:\windows\system32\PresentationHostProxy.dll
2012-12-08 16:18 . 2009-11-25 11:47 444752 ----a-w- c:\windows\system32\mscoree.dll
2012-12-08 16:18 . 2009-11-25 11:47 320352 ----a-w- c:\windows\system32\PresentationHost.exe
2012-12-08 16:18 . 2009-11-25 11:47 1942856 ----a-w- c:\windows\system32\dfshim.dll
2012-12-08 16:18 . 2012-11-19 00:01 9125352 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{8756E7E9-24D7-4DC4-97A0-4800E8FFF89E}\mpengine.dll
2012-12-08 16:17 . 2012-12-08 16:43 -------- d-----w- C:\Far Cry 3
2012-12-08 16:17 . 2010-02-23 08:16 294912 ----a-w- c:\windows\system32\browserchoice.exe
2012-12-08 16:13 . 2012-12-08 16:13 96768 ----a-w- c:\windows\system32\mshtmled.dll
2012-12-08 16:12 . 2012-12-08 16:12 1888256 ----a-w- c:\windows\system32\WMVDECOD.DLL
2012-12-08 16:08 . 2012-12-08 16:10 -------- d-----w- c:\program files (x86)\Euro Truck Simulator 2
2012-12-08 16:07 . 2012-12-08 16:07 -------- d-----w- c:\program files\WinRAR
2012-12-08 16:05 . 2012-12-08 16:05 -------- d-----w- c:\programdata\Solidshield
2012-12-08 16:05 . 2012-10-29 20:04 66395536 ----a-w- c:\windows\system32\MRT.exe
2012-12-08 16:01 . 2012-03-01 06:54 22896 ----a-w- c:\windows\system32\drivers\fs_rec.sys
2012-12-08 16:01 . 2012-03-01 06:40 80896 ----a-w- c:\windows\system32\imagehlp.dll
2012-12-08 16:01 . 2012-03-01 06:35 5120 ----a-w- c:\windows\system32\wmi.dll
2012-12-08 16:01 . 2012-03-01 05:45 158720 ----a-w- c:\windows\SysWow64\imagehlp.dll
2012-12-08 16:01 . 2012-03-01 05:40 5120 ----a-w- c:\windows\SysWow64\wmi.dll
2012-12-08 15:58 . 2010-01-09 07:19 139264 ----a-w- c:\windows\system32\cabview.dll
2012-12-08 15:58 . 2010-01-09 06:52 132608 ----a-w- c:\windows\SysWow64\cabview.dll
2012-12-08 15:58 . 2012-09-14 19:23 2048 ----a-w- c:\windows\system32\tzres.dll
2012-12-08 15:58 . 2012-09-14 18:30 2048 ----a-w- c:\windows\SysWow64\tzres.dll
2012-12-08 15:57 . 2012-06-06 05:50 1425408 ----a-w- c:\program files\Common Files\System\ado\msado15.dll
2012-12-08 15:57 . 2012-06-06 05:09 987136 ----a-w- c:\program files (x86)\Common Files\System\ado\msado15.dll
2012-12-08 15:57 . 2011-12-16 08:42 634368 ----a-w- c:\windows\system32\msvcrt.dll
2012-12-08 15:57 . 2011-12-16 07:59 690688 ----a-w- c:\windows\SysWow64\msvcrt.dll
2012-12-08 15:57 . 2009-09-03 07:36 1975296 ----a-w- c:\windows\system32\CertEnroll.dll
2012-12-08 15:57 . 2009-09-03 07:04 1320960 ----a-w- c:\windows\SysWow64\CertEnroll.dll
2012-12-08 15:57 . 2012-06-09 05:30 14165504 ----a-w- c:\windows\system32\shell32.dll
2012-12-08 15:57 . 2011-11-17 07:12 395776 ----a-w- c:\windows\system32\webio.dll
2012-12-08 15:57 . 2011-11-17 05:39 314368 ----a-w- c:\windows\SysWow64\webio.dll
2012-12-08 15:55 . 2011-06-15 09:58 212992 ----a-w- c:\windows\system32\odbctrac.dll
2012-12-08 15:54 . 2012-09-25 22:39 95744 ----a-w- c:\windows\system32\synceng.dll
2012-12-08 15:48 . 2012-12-08 15:48 -------- d-----w- C:\eurotruckmoney
2012-12-08 15:40 . 2012-12-08 15:40 -------- d-----w- C:\Electronic Arts
2012-12-08 15:39 . 2012-06-02 05:25 182272 ----a-w- c:\windows\system32\cryptsvc.dll
2012-12-08 15:39 . 2012-06-02 05:25 1462784 ----a-w- c:\windows\system32\crypt32.dll
2012-12-08 15:39 . 2012-06-02 05:25 140288 ----a-w- c:\windows\system32\cryptnet.dll
2012-12-08 15:39 . 2012-06-02 04:45 139264 ----a-w- c:\windows\SysWow64\cryptsvc.dll
2012-12-08 15:39 . 2012-06-02 04:45 1157632 ----a-w- c:\windows\SysWow64\crypt32.dll
2012-12-08 15:39 . 2012-06-02 04:45 103936 ----a-w- c:\windows\SysWow64\cryptnet.dll
2012-12-08 15:39 . 2011-11-19 15:07 77312 ----a-w- c:\windows\system32\packager.dll
2012-12-08 15:39 . 2011-11-19 14:06 67072 ----a-w- c:\windows\SysWow64\packager.dll
2012-12-08 15:32 . 2012-12-03 18:31 269824 ----a-w- c:\windows\SysWow64\igfxupdate.exe
2012-12-04 14:16 . 2012-12-04 14:16 -------- d-----w- c:\program files (x86)\Activision
2012-12-04 13:27 . 2012-06-02 22:19 2428952 ----a-w- c:\windows\system32\wuaueng.dll
2012-12-04 13:27 . 2012-06-02 22:19 57880 ----a-w- c:\windows\system32\wuauclt.exe
2012-12-04 13:27 . 2012-06-02 22:19 44056 ----a-w- c:\windows\system32\wups2.dll
2012-12-04 13:27 . 2012-06-02 22:15 2622464 ----a-w- c:\windows\system32\wucltux.dll
2012-12-04 13:27 . 2012-06-02 22:19 38424 ----a-w- c:\windows\system32\wups.dll
2012-12-04 13:27 . 2012-06-02 22:19 701976 ----a-w- c:\windows\system32\wuapi.dll
2012-12-04 13:27 . 2012-06-02 22:15 99840 ----a-w- c:\windows\system32\wudriver.dll
2012-12-04 13:26 . 2012-06-02 14:19 186752 ----a-w- c:\windows\system32\wuwebv.dll
2012-12-04 13:26 . 2012-06-02 14:15 36864 ----a-w- c:\windows\system32\wuapp.exe
2012-12-03 18:23 . 2012-12-03 18:30 -------- d-----w- c:\programdata\DAEMON Tools Pro
2012-12-03 18:17 . 2012-12-03 18:31 410112 ----a-w- c:\windows\system32\taskhost.rs
2012-12-03 18:17 . 2012-12-03 18:31 307712 ----a-w- c:\windows\system32\SearchIndexer.dll
2012-12-03 18:17 . 2012-12-03 18:31 269824 ----a-w- c:\windows\system32\SearchEngine.rs
2012-12-03 17:28 . 2012-12-03 17:28 -------- d-----w- c:\program files (x86)\Common Files\Adobe
2012-12-03 16:51 . 2012-12-03 16:51 -------- d-----w- c:\users\Filip
2012-12-03 16:48 . 2012-12-03 16:48 -------- d-----w- c:\users\Zuzana
2012-11-28 16:47 . 2008-05-30 13:11 4991496 ----a-w- c:\windows\system32\D3DX9_38.dll
2012-11-28 16:45 . 2012-12-08 16:43 -------- d--h--w- c:\windows\msdownld.tmp
2012-11-28 16:33 . 2012-11-28 16:52 -------- d-----w- c:\program files (x86)\Assassins Creed III
2012-11-28 16:20 . 2012-11-28 16:20 -------- d-----w- c:\program files (x86)\HP Photo Creations
2012-11-28 16:20 . 2012-11-28 16:20 -------- d-----w- c:\programdata\HP Photo Creations
2012-11-28 16:19 . 2011-08-16 12:13 778088 ------w- c:\windows\system32\HPDiscoPMb411.dll
2012-11-28 16:04 . 2012-11-28 16:04 -------- d-----w- c:\programdata\HP
2012-11-28 16:04 . 2012-11-28 16:20 -------- d-----w- c:\program files (x86)\HP
2012-11-28 16:04 . 2012-11-28 16:04 -------- d-----w- c:\program files\HP
2012-11-28 15:59 . 2012-05-31 10:25 279656 ------w- c:\windows\system32\MpSigStub.exe
2012-11-28 15:57 . 2012-11-28 15:57 -------- d-----w- c:\program files\ESET
2012-11-28 15:51 . 2012-11-28 15:51 -------- d-----w- c:\program files (x86)\Microsoft Synchronization Services
2012-11-28 15:50 . 2012-11-28 15:50 -------- d-----w- c:\windows\PCHEALTH
2012-11-28 15:50 . 2012-11-28 15:50 -------- d-----w- c:\program files (x86)\Microsoft.NET
2012-11-28 15:41 . 2012-12-09 12:01 30528 ----a-w- c:\windows\GVTDrv64.sys
2012-11-28 15:41 . 2012-12-09 12:24 25640 ----a-w- c:\windows\gdrv.sys
2012-11-28 15:37 . 2012-11-28 15:37 -------- d-----w- c:\program files (x86)\AMD
2012-11-28 15:34 . 2011-11-02 09:48 21616 ----a-w- c:\windows\system32\drivers\AppleCharger.sys
2012-11-28 15:34 . 2010-04-06 15:30 31272 ----a-w- c:\windows\system32\AppleChargerSrv.exe
2012-11-28 15:34 . 2012-11-28 15:34 -------- d-----w- c:\program files\GIGABYTE
2012-11-28 15:34 . 2012-11-28 15:34 -------- d-----w- c:\program files (x86)\Etron Technology
2012-11-28 15:34 . 2010-09-07 09:46 162392 ------r- c:\windows\SysWow64\xRaidAPI.dll
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-12-08 16:14 . 2012-12-08 16:14 203776 ----a-w- c:\windows\SysWow64\webcheck.dll
2012-12-08 16:13 . 2012-12-08 16:13 249344 ----a-w- c:\windows\system32\webcheck.dll
2012-10-16 21:20 . 2012-12-08 17:50 135168 ----a-w- c:\windows\apppatch\AppPatch64\AcXtrnal.dll
2012-10-16 21:20 . 2012-12-08 17:50 347648 ----a-w- c:\windows\apppatch\AppPatch64\AcLayers.dll
2012-10-16 20:34 . 2012-12-08 17:50 559104 ----a-w- c:\windows\apppatch\AcLayers.dll
2012-10-08 07:21 . 2012-10-08 07:21 64072 ----a-w- c:\windows\system32\drivers\epfwwfp.sys
2012-10-08 07:21 . 2012-10-08 07:21 59440 ----a-w- c:\windows\system32\drivers\EpfwLWF.sys
2012-10-08 07:21 . 2012-10-08 07:21 189208 ----a-w- c:\windows\system32\drivers\epfw.sys
2012-10-08 07:21 . 2012-10-08 07:21 149592 ----a-w- c:\windows\system32\drivers\ehdrv.sys
2012-10-08 07:21 . 2012-10-08 07:21 211344 ----a-w- c:\windows\system32\drivers\eamonm.sys
.
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2009-07-14 1475072]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"="c:\program files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2011-04-19 336384]
"Dolby Home Theater v4"="c:\program files (x86)\Dolby Home Theater v4\pcee4.exe" [2011-06-01 506712]
"JMB36X IDE Setup"="c:\windows\RaidTool\xInsIDE.exe" [2010-09-07 43608]
"BCSSync"="c:\program files (x86)\Microsoft Office\Office14\BCSSync.exe" [2010-03-13 91520]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\RunOnce]
"EasyTuneVI"="c:\program files (x86)\Gigabyte\ET6\ETCall.exe" [2012-02-01 40960]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\run-]
"HP Software Update"=c:\program files (x86)\Hp\HP Software Update\HPWuSchd2.exe
"Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
.
R3 AppleChargerSrv;AppleChargerSrv;c:\windows\system32\AppleChargerSrv.exe [2010-04-06 31272]
S0 epfwwfp;epfwwfp;c:\windows\system32\DRIVERS\epfwwfp.sys [2012-10-08 64072]
S1 AppleCharger;AppleCharger;c:\windows\system32\DRIVERS\AppleCharger.sys [2011-11-02 21616]
S1 eamonm;eamonm;c:\windows\system32\DRIVERS\eamonm.sys [2012-10-08 211344]
S1 ehdrv;ehdrv;c:\windows\system32\DRIVERS\ehdrv.sys [2012-10-08 149592]
S1 EpfwLWF;Epfw NDIS LightWeight Filter;c:\windows\system32\DRIVERS\EpfwLWF.sys [2012-10-08 59440]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [2011-04-20 203776]
S2 AMD FUEL Service;AMD FUEL Service;c:\program files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [2011-04-19 365568]
S2 ekrn;ESET Service;c:\program files\ESET\ESET Smart Security\x86\ekrn.exe [2012-11-14 1329304]
S2 ES lite Service;ES lite Service for program management.;c:\program files (x86)\Gigabyte\EasySaver\ESSVR.EXE [2009-08-24 68136]
S2 JMB36X;JMB36X;c:\windows\SysWOW64\XSrvSetup.exe [2010-09-07 72280]
S2 SearchIndexer;Search Indexer;c:\windows\system32\svchost.exe [2009-07-14 27136]
S2 TuneUp.UtilitiesSvc;TuneUp Utilities Service;c:\program files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesService64.exe [2012-11-02 2365792]
S3 amdiox64;AMD IO Driver;c:\windows\system32\DRIVERS\amdiox64.sys [2010-02-18 46136]
S3 AODDriver;AODDriver;c:\program files (x86)\Gigabyte\ET6\amd64\AODDriver.sys [2010-03-12 52280]
S3 AtiHDAudioService;ATI Function Driver for HD Audio Service;c:\windows\system32\drivers\AtihdW76.sys [2011-03-30 114704]
S3 EtronHub3;Etron USB 3.0 Extensible Hub Driver;c:\windows\system32\Drivers\EtronHub3.sys [2011-07-29 56960]
S3 EtronXHCI;Etron USB 3.0 Extensible Host Controller Driver;c:\windows\system32\Drivers\EtronXHCI.sys [2011-07-29 79104]
S3 GVTDrv64;GVTDrv64;c:\windows\GVTDrv64.sys [2012-12-09 30528]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys [2011-08-23 565352]
S3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv;c:\program files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesDriver64.sys [2012-09-19 11880]
.
.
--- Other Services/Drivers In Memory ---
.
*NewlyCreated* - AODDRIVER
*NewlyCreated* - WS2IFSL
.
Contents of the 'Scheduled Tasks' folder
.
2012-12-09 c:\windows\Tasks\HP Photo Creations Messager.job
- c:\programdata\HP Photo Creations\MessageCheck.exe [2011-02-15 10:11]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RTHDVCPL"="c:\program files\Realtek\Audio\HDA\RAVCpl64.exe" [2011-10-17 13307496]
"RtHDVBg_Dolby"="c:\program files\Realtek\Audio\HDA\RAVBg64.exe" [2011-10-14 2278504]
"egui"="c:\program files\ESET\ESET Smart Security\egui.exe" [2012-11-14 6325424]
.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs
SearchIndexer
SearchIndexer
SearchIndexer
SearchIndexer
SearchIndexer
SearchIndexer
SearchIndexer
SearchIndexer
SearchIndexer
SearchIndexer
.
------- Supplementary Scan -------
.
uLocal Page = c:\windows\system32\blank.htm
uStart Page = hxxp://www.google.sk/
mLocal Page = c:\windows\SysWOW64\blank.htm
IE: E&xportovať do programu Microsoft Excel - c:\progra~2\MICROS~1\Office14\EXCEL.EXE/3000
IE: Od&oslať do programu OneNote - c:\progra~2\MICROS~1\Office14\ONBttnIE.dll/105
TCP: DhcpNameServer = 195.34.133.21 192.168.0.1
FF - ProfilePath - c:\users\Dávid\AppData\Roaming\Mozilla\Firefox\Profiles\0iz8d00y.default\
FF - prefs.js: browser.startup.homepage - www.google.sk
.
- - - - ORPHANS REMOVED - - - -
.
Wow6432Node-HKLM-Run-<NO NAME> - (no file)
HKLM-Run-AutoKMS - c:\windows\AutoKMS.exe
.
.
.
--------------------- LOCKED REGISTRY KEYS ---------------------
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_11_5_502_110_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
@="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_11_5_502_110_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="IFlashBroker5"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_5_502_110_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_5_502_110_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Shockwave Flash Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_5_502_110.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
@="0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
@="ShockwaveFlash.ShockwaveFlash.11"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_5_502_110.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="ShockwaveFlash.ShockwaveFlash"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Macromedia Flash Factory Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_5_502_110.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
@="FlashFactory.FlashFactory.1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_5_502_110.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="FlashFactory.FlashFactory"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="IFlashBroker5"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Office\Common\Smart Tag\Actions\{B7EFF951-E52F-45CC-9EF7-57124F2177CC}]
@Denied: (A) (Everyone)
"Solution"="{15727DE6-F92D-4E46-ACB4-0E2C58B31A18}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Schema Library\ActionsPane3]
@Denied: (A) (Everyone)
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Schema Library\ActionsPane3\0]
"Key"="ActionsPane3"
"Location"="c:\\Program Files (x86)\\Common Files\\Microsoft Shared\\VSTO\\ActionsPane3.xsd"
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
------------------------ Other Running Processes ------------------------
.
c:\program files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
c:\windows\SysWOW64\igfxupdate.exe
c:\program files (x86)\Gigabyte\ET6\GUI.exe
c:\windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
.
**************************************************************************
.
Completion time: 2012-12-09 13:30:08 - machine was rebooted
ComboFix-quarantined-files.txt 2012-12-09 12:30
.
Pre-Run: 295 256 903 680 bytes free
Post-Run: 295 057 801 216 bytes free
.
- - End Of File - - BE8354417170FBA4A51991F309140422







_________________
CPU:AMD FX8350 4GHz total 16Mb cache/COOLER: Arctic Freezer Pro 13/MB: GIGABYTE 990FXA-UD3/GPU: AMD Radeon 7950 (Gigabyte) @ 1100MHz/6GHz 3GB 384bit/RAM:8GB (2x4) Corsair CL9 XMS3 DDR3 1900MHz/PSU: Corsair CX750/CASE: Zalman Z11 Plus/HDD: 1TB WD 64MB cache/
NB1:Lenovo Z510 /Pentium,GT740m
NB2: Dell Inspiron 15 7537/ i5
MB: LG Optimus P970 Black
Offline

Užívateľ
Užívateľ
Obrázok užívateľa

Registrovaný: 28.03.12
Prihlásený: 05.06.14
Príspevky: 133
Témy: 26
Príspevok Napísal autor témyOffline : 09.12.2012 13:40

Pri vypnutí PC:
http://imgupload.sk/viewer.php?file=g5ht7ignbpabwf3u5hpj.jpg







_________________
CPU:AMD FX8350 4GHz total 16Mb cache/COOLER: Arctic Freezer Pro 13/MB: GIGABYTE 990FXA-UD3/GPU: AMD Radeon 7950 (Gigabyte) @ 1100MHz/6GHz 3GB 384bit/RAM:8GB (2x4) Corsair CL9 XMS3 DDR3 1900MHz/PSU: Corsair CX750/CASE: Zalman Z11 Plus/HDD: 1TB WD 64MB cache/
NB1:Lenovo Z510 /Pentium,GT740m
NB2: Dell Inspiron 15 7537/ i5
MB: LG Optimus P970 Black
Offline

Užívateľ
Užívateľ
Obrázok užívateľa

Registrovaný: 28.03.12
Prihlásený: 05.06.14
Príspevky: 133
Témy: 26
Príspevok Napísal autor témyOffline : 09.12.2012 14:02

Tak, problém s programom updater je asi zažehnaný ale ide mi na nervy ten ventilátor ... bez spusteného správcu úloh ide ventilátor na CPU na plno (strašne hučí) ale keď zapnem správcu tak je to OK ... ????







_________________
CPU:AMD FX8350 4GHz total 16Mb cache/COOLER: Arctic Freezer Pro 13/MB: GIGABYTE 990FXA-UD3/GPU: AMD Radeon 7950 (Gigabyte) @ 1100MHz/6GHz 3GB 384bit/RAM:8GB (2x4) Corsair CL9 XMS3 DDR3 1900MHz/PSU: Corsair CX750/CASE: Zalman Z11 Plus/HDD: 1TB WD 64MB cache/
NB1:Lenovo Z510 /Pentium,GT740m
NB2: Dell Inspiron 15 7537/ i5
MB: LG Optimus P970 Black
Offline

Užívateľ
Užívateľ
Obrázok užívateľa

Registrovaný: 09.05.11
Prihlásený: 20.12.18
Príspevky: 618
Témy: 2
Príspevok NapísalOffline : 09.12.2012 14:35

ulož combofix na plochu stiahni si cfscript z http://uloz.to/xjqL8UA/cfscript-txt uloz ho na plochu pretiahni cfscript cez combofix aplikuje sa script posli log.


Offline

Užívateľ
Užívateľ
Obrázok užívateľa

Registrovaný: 28.03.12
Prihlásený: 05.06.14
Príspevky: 133
Témy: 26
Príspevok Napísal autor témyOffline : 09.12.2012 17:47

ComboFix 12-12-07.01 - Dávid . 12. 2012 17:38:39.2.4 - x64
Microsoft Windows 7 Ultimate 6.1.7600.0.1250.421.1051.18.8173.6520 [GMT 1:00]
Running from: c:\users\Dßvid\Desktop\ComboFix.exe
Command switches used :: c:\users\Dßvid\Desktop\cfscript.txt
AV: ESET Smart Security 6.0 *Enabled/Updated* {77DEAFED-8149-104B-25A1-21771CA47CD1}
FW: ESET personal firewall *Enabled* {4FE52EC8-CB26-1113-0EFE-8842E2773BAA}
SP: ESET Smart Security 6.0 *Enabled/Updated* {CCBF4E09-A773-1FC5-1F11-1A056723366C}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
* Resident AV is active
.
.
.
((((((((((((((((((((((((( Files Created from 2012-11-09 to 2012-12-09 )))))))))))))))))))))))))))))))
.
.
2012-12-09 16:44 . 2012-12-09 16:44 -------- d-----w- c:\users\Default\AppData\Local\temp
2012-12-09 12:05 . 2012-12-09 12:06 -------- d-----w- C:\rsit
2012-12-09 12:05 . 2012-12-09 12:06 -------- d-----w- c:\program files (x86)\trend micro
2012-12-09 11:26 . 2012-11-02 14:57 34656 ----a-w- c:\windows\system32\TURegOpt.exe
2012-12-09 11:26 . 2012-11-02 14:57 25952 ----a-w- c:\windows\system32\authuitu.dll
2012-12-09 11:26 . 2012-11-02 14:57 21344 ----a-w- c:\windows\SysWow64\authuitu.dll
2012-12-09 11:25 . 2012-12-09 11:26 -------- d-----w- c:\program files (x86)\TuneUp Utilities 2013
2012-12-09 11:24 . 2012-12-09 11:25 -------- d-----w- c:\programdata\TuneUp Software
2012-12-09 11:24 . 2012-12-09 11:34 -------- d-sh--w- c:\programdata\{C4ABDBC8-1C81-42C9-BFFC-4A68511E9E4F}
2012-12-09 11:24 . 2012-12-09 11:24 -------- d--h--w- c:\programdata\Common Files
2012-12-08 17:56 . 2010-09-14 06:45 367104 ----a-w- c:\windows\system32\wcncsvc.dll
2012-12-08 17:56 . 2010-09-14 06:07 276992 ----a-w- c:\windows\SysWow64\wcncsvc.dll
2012-12-08 17:55 . 2012-07-26 04:55 785512 ----a-w- c:\windows\system32\drivers\Wdf01000.sys
2012-12-08 17:55 . 2012-07-26 04:55 54376 ----a-w- c:\windows\system32\drivers\WdfLdr.sys
2012-12-08 17:55 . 2012-07-26 04:47 2560 ----a-w- c:\windows\system32\drivers\en-US\wdf01000.sys.mui
2012-12-08 17:55 . 2012-07-26 02:36 9728 ----a-w- c:\windows\system32\Wdfres.dll
2012-12-08 17:53 . 2012-07-26 02:26 87040 ----a-w- c:\windows\system32\drivers\WUDFPf.sys
2012-12-08 17:53 . 2012-07-26 02:26 198656 ----a-w- c:\windows\system32\drivers\WUDFRd.sys
2012-12-08 17:53 . 2012-07-26 03:08 229888 ----a-w- c:\windows\system32\WUDFHost.exe
2012-12-08 17:53 . 2012-07-26 03:08 84992 ----a-w- c:\windows\system32\WUDFSvc.dll
2012-12-08 17:53 . 2012-07-26 03:08 744448 ----a-w- c:\windows\system32\WUDFx.dll
2012-12-08 17:53 . 2012-07-26 03:08 45056 ----a-w- c:\windows\system32\WUDFCoinstaller.dll
2012-12-08 17:53 . 2012-07-26 03:08 194048 ----a-w- c:\windows\system32\WUDFPlatform.dll
2012-12-08 17:52 . 2010-03-04 04:32 243712 ----a-w- c:\windows\system32\drivers\ks.sys
2012-12-08 17:50 . 2012-01-04 09:58 509952 ----a-w- c:\windows\system32\ntshrui.dll
2012-12-08 17:49 . 2012-05-05 08:30 503808 ----a-w- c:\windows\system32\srcore.dll
2012-12-08 17:49 . 2012-05-05 07:44 43008 ----a-w- c:\windows\SysWow64\srclient.dll
2012-12-08 17:49 . 2012-04-07 12:18 3213824 ----a-w- c:\windows\system32\msi.dll
2012-12-08 17:49 . 2012-04-07 11:34 2342400 ----a-w- c:\windows\SysWow64\msi.dll
2012-12-08 17:47 . 2011-04-22 20:18 27008 ----a-w- c:\windows\system32\drivers\Diskdump.sys
2012-12-08 17:47 . 2009-09-26 06:20 223448 ----a-w- c:\windows\system32\drivers\fvevol.sys
2012-12-08 17:47 . 2012-05-02 05:32 208896 ----a-w- c:\windows\system32\profsvc.dll
2012-12-08 17:47 . 2011-02-18 06:33 31232 ----a-w- c:\windows\system32\prevhost.exe
2012-12-08 17:47 . 2011-02-18 05:33 31232 ----a-w- c:\windows\SysWow64\prevhost.exe
2012-12-08 16:44 . 2012-12-08 16:44 -------- d-----w- c:\programdata\Orbit
2012-12-08 16:34 . 2009-09-10 06:28 311808 ----a-w- c:\windows\system32\msv1_0.dll
2012-12-08 16:34 . 2009-09-10 05:52 257024 ----a-w- c:\windows\SysWow64\msv1_0.dll
2012-12-08 16:18 . 2009-11-25 11:47 99176 ----a-w- c:\windows\SysWow64\PresentationHostProxy.dll
2012-12-08 16:18 . 2009-11-25 11:47 49472 ----a-w- c:\windows\SysWow64\netfxperf.dll
2012-12-08 16:18 . 2009-11-25 11:47 48960 ----a-w- c:\windows\system32\netfxperf.dll
2012-12-08 16:18 . 2009-11-25 11:47 297808 ----a-w- c:\windows\SysWow64\mscoree.dll
2012-12-08 16:18 . 2009-11-25 11:47 295264 ----a-w- c:\windows\SysWow64\PresentationHost.exe
2012-12-08 16:18 . 2009-11-25 11:47 1130824 ----a-w- c:\windows\SysWow64\dfshim.dll
2012-12-08 16:18 . 2009-11-25 11:47 109912 ----a-w- c:\windows\system32\PresentationHostProxy.dll
2012-12-08 16:18 . 2009-11-25 11:47 444752 ----a-w- c:\windows\system32\mscoree.dll
2012-12-08 16:18 . 2009-11-25 11:47 320352 ----a-w- c:\windows\system32\PresentationHost.exe
2012-12-08 16:18 . 2009-11-25 11:47 1942856 ----a-w- c:\windows\system32\dfshim.dll
2012-12-08 16:18 . 2012-11-19 00:01 9125352 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{8756E7E9-24D7-4DC4-97A0-4800E8FFF89E}\mpengine.dll
2012-12-08 16:17 . 2012-12-08 16:43 -------- d-----w- C:\Far Cry 3
2012-12-08 16:17 . 2010-02-23 08:16 294912 ----a-w- c:\windows\system32\browserchoice.exe
2012-12-08 16:13 . 2012-12-08 16:13 96768 ----a-w- c:\windows\system32\mshtmled.dll
2012-12-08 16:12 . 2012-12-08 16:12 1888256 ----a-w- c:\windows\system32\WMVDECOD.DLL
2012-12-08 16:08 . 2012-12-08 16:10 -------- d-----w- c:\program files (x86)\Euro Truck Simulator 2
2012-12-08 16:07 . 2012-12-08 16:07 -------- d-----w- c:\program files\WinRAR
2012-12-08 16:05 . 2012-12-08 16:05 -------- d-----w- c:\programdata\Solidshield
2012-12-08 16:05 . 2012-10-29 20:04 66395536 ----a-w- c:\windows\system32\MRT.exe
2012-12-08 16:01 . 2012-03-01 06:54 22896 ----a-w- c:\windows\system32\drivers\fs_rec.sys
2012-12-08 16:01 . 2012-03-01 06:40 80896 ----a-w- c:\windows\system32\imagehlp.dll
2012-12-08 16:01 . 2012-03-01 06:35 5120 ----a-w- c:\windows\system32\wmi.dll
2012-12-08 16:01 . 2012-03-01 05:45 158720 ----a-w- c:\windows\SysWow64\imagehlp.dll
2012-12-08 16:01 . 2012-03-01 05:40 5120 ----a-w- c:\windows\SysWow64\wmi.dll
2012-12-08 15:58 . 2010-01-09 07:19 139264 ----a-w- c:\windows\system32\cabview.dll
2012-12-08 15:58 . 2010-01-09 06:52 132608 ----a-w- c:\windows\SysWow64\cabview.dll
2012-12-08 15:58 . 2012-09-14 19:23 2048 ----a-w- c:\windows\system32\tzres.dll
2012-12-08 15:58 . 2012-09-14 18:30 2048 ----a-w- c:\windows\SysWow64\tzres.dll
2012-12-08 15:57 . 2012-06-06 05:50 1425408 ----a-w- c:\program files\Common Files\System\ado\msado15.dll
2012-12-08 15:57 . 2012-06-06 05:09 987136 ----a-w- c:\program files (x86)\Common Files\System\ado\msado15.dll
2012-12-08 15:57 . 2011-12-16 08:42 634368 ----a-w- c:\windows\system32\msvcrt.dll
2012-12-08 15:57 . 2011-12-16 07:59 690688 ----a-w- c:\windows\SysWow64\msvcrt.dll
2012-12-08 15:57 . 2009-09-03 07:36 1975296 ----a-w- c:\windows\system32\CertEnroll.dll
2012-12-08 15:57 . 2009-09-03 07:04 1320960 ----a-w- c:\windows\SysWow64\CertEnroll.dll
2012-12-08 15:57 . 2012-06-09 05:30 14165504 ----a-w- c:\windows\system32\shell32.dll
2012-12-08 15:57 . 2011-11-17 07:12 395776 ----a-w- c:\windows\system32\webio.dll
2012-12-08 15:57 . 2011-11-17 05:39 314368 ----a-w- c:\windows\SysWow64\webio.dll
2012-12-08 15:55 . 2011-06-15 09:58 212992 ----a-w- c:\windows\system32\odbctrac.dll
2012-12-08 15:54 . 2012-09-25 22:39 95744 ----a-w- c:\windows\system32\synceng.dll
2012-12-08 15:48 . 2012-12-08 15:48 -------- d-----w- C:\eurotruckmoney
2012-12-08 15:40 . 2012-12-08 15:40 -------- d-----w- C:\Electronic Arts
2012-12-08 15:39 . 2012-06-02 05:25 182272 ----a-w- c:\windows\system32\cryptsvc.dll
2012-12-08 15:39 . 2012-06-02 05:25 1462784 ----a-w- c:\windows\system32\crypt32.dll
2012-12-08 15:39 . 2012-06-02 05:25 140288 ----a-w- c:\windows\system32\cryptnet.dll
2012-12-08 15:39 . 2012-06-02 04:45 139264 ----a-w- c:\windows\SysWow64\cryptsvc.dll
2012-12-08 15:39 . 2012-06-02 04:45 1157632 ----a-w- c:\windows\SysWow64\crypt32.dll
2012-12-08 15:39 . 2012-06-02 04:45 103936 ----a-w- c:\windows\SysWow64\cryptnet.dll
2012-12-08 15:39 . 2011-11-19 15:07 77312 ----a-w- c:\windows\system32\packager.dll
2012-12-08 15:39 . 2011-11-19 14:06 67072 ----a-w- c:\windows\SysWow64\packager.dll
2012-12-08 15:32 . 2012-12-03 18:31 269824 ----a-w- c:\windows\SysWow64\igfxupdate.exe
2012-12-04 14:16 . 2012-12-04 14:16 -------- d-----w- c:\program files (x86)\Activision
2012-12-04 13:27 . 2012-06-02 22:19 2428952 ----a-w- c:\windows\system32\wuaueng.dll
2012-12-04 13:27 . 2012-06-02 22:19 57880 ----a-w- c:\windows\system32\wuauclt.exe
2012-12-04 13:27 . 2012-06-02 22:19 44056 ----a-w- c:\windows\system32\wups2.dll
2012-12-04 13:27 . 2012-06-02 22:15 2622464 ----a-w- c:\windows\system32\wucltux.dll
2012-12-04 13:27 . 2012-06-02 22:19 38424 ----a-w- c:\windows\system32\wups.dll
2012-12-04 13:27 . 2012-06-02 22:19 701976 ----a-w- c:\windows\system32\wuapi.dll
2012-12-04 13:27 . 2012-06-02 22:15 99840 ----a-w- c:\windows\system32\wudriver.dll
2012-12-04 13:26 . 2012-06-02 14:19 186752 ----a-w- c:\windows\system32\wuwebv.dll
2012-12-04 13:26 . 2012-06-02 14:15 36864 ----a-w- c:\windows\system32\wuapp.exe
2012-12-03 18:23 . 2012-12-03 18:30 -------- d-----w- c:\programdata\DAEMON Tools Pro
2012-12-03 18:17 . 2012-12-03 18:31 410112 ----a-w- c:\windows\system32\taskhost.rs
2012-12-03 18:17 . 2012-12-03 18:31 307712 ----a-w- c:\windows\system32\SearchIndexer.dll
2012-12-03 18:17 . 2012-12-03 18:31 269824 ----a-w- c:\windows\system32\SearchEngine.rs
2012-12-03 17:28 . 2012-12-03 17:28 -------- d-----w- c:\program files (x86)\Common Files\Adobe
2012-12-03 16:51 . 2012-12-03 16:51 -------- d-----w- c:\users\Filip
2012-12-03 16:48 . 2012-12-03 16:48 -------- d-----w- c:\users\Zuzana
2012-11-28 16:47 . 2008-05-30 13:11 4991496 ----a-w- c:\windows\system32\D3DX9_38.dll
2012-11-28 16:45 . 2012-12-08 16:43 -------- d--h--w- c:\windows\msdownld.tmp
2012-11-28 16:33 . 2012-11-28 16:52 -------- d-----w- c:\program files (x86)\Assassins Creed III
2012-11-28 16:20 . 2012-11-28 16:20 -------- d-----w- c:\program files (x86)\HP Photo Creations
2012-11-28 16:20 . 2012-11-28 16:20 -------- d-----w- c:\programdata\HP Photo Creations
2012-11-28 16:19 . 2011-08-16 12:13 778088 ------w- c:\windows\system32\HPDiscoPMb411.dll
2012-11-28 16:04 . 2012-11-28 16:04 -------- d-----w- c:\programdata\HP
2012-11-28 16:04 . 2012-11-28 16:20 -------- d-----w- c:\program files (x86)\HP
2012-11-28 16:04 . 2012-11-28 16:04 -------- d-----w- c:\program files\HP
2012-11-28 15:59 . 2012-05-31 10:25 279656 ------w- c:\windows\system32\MpSigStub.exe
2012-11-28 15:57 . 2012-11-28 15:57 -------- d-----w- c:\program files\ESET
2012-11-28 15:51 . 2012-11-28 15:51 -------- d-----w- c:\program files (x86)\Microsoft Synchronization Services
2012-11-28 15:50 . 2012-11-28 15:50 -------- d-----w- c:\windows\PCHEALTH
2012-11-28 15:50 . 2012-11-28 15:50 -------- d-----w- c:\program files (x86)\Microsoft.NET
2012-11-28 15:41 . 2012-12-09 16:33 30528 ----a-w- c:\windows\GVTDrv64.sys
2012-11-28 15:41 . 2012-12-09 16:33 25640 ----a-w- c:\windows\gdrv.sys
2012-11-28 15:37 . 2012-11-28 15:37 -------- d-----w- c:\program files (x86)\AMD
2012-11-28 15:34 . 2011-11-02 09:48 21616 ----a-w- c:\windows\system32\drivers\AppleCharger.sys
2012-11-28 15:34 . 2010-04-06 15:30 31272 ----a-w- c:\windows\system32\AppleChargerSrv.exe
2012-11-28 15:34 . 2012-11-28 15:34 -------- d-----w- c:\program files\GIGABYTE
2012-11-28 15:34 . 2012-11-28 15:34 -------- d-----w- c:\program files (x86)\Etron Technology
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-12-08 16:14 . 2012-12-08 16:14 203776 ----a-w- c:\windows\SysWow64\webcheck.dll
2012-12-08 16:13 . 2012-12-08 16:13 249344 ----a-w- c:\windows\system32\webcheck.dll
2012-10-16 21:20 . 2012-12-08 17:50 135168 ----a-w- c:\windows\apppatch\AppPatch64\AcXtrnal.dll
2012-10-16 21:20 . 2012-12-08 17:50 347648 ----a-w- c:\windows\apppatch\AppPatch64\AcLayers.dll
2012-10-16 20:34 . 2012-12-08 17:50 559104 ----a-w- c:\windows\apppatch\AcLayers.dll
2012-10-08 07:21 . 2012-10-08 07:21 64072 ----a-w- c:\windows\system32\drivers\epfwwfp.sys
2012-10-08 07:21 . 2012-10-08 07:21 59440 ----a-w- c:\windows\system32\drivers\EpfwLWF.sys
2012-10-08 07:21 . 2012-10-08 07:21 189208 ----a-w- c:\windows\system32\drivers\epfw.sys
2012-10-08 07:21 . 2012-10-08 07:21 149592 ----a-w- c:\windows\system32\drivers\ehdrv.sys
2012-10-08 07:21 . 2012-10-08 07:21 211344 ----a-w- c:\windows\system32\drivers\eamonm.sys
.
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2009-07-14 1475072]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"="c:\program files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2011-04-19 336384]
"Dolby Home Theater v4"="c:\program files (x86)\Dolby Home Theater v4\pcee4.exe" [2011-06-01 506712]
"JMB36X IDE Setup"="c:\windows\RaidTool\xInsIDE.exe" [2010-09-07 43608]
"BCSSync"="c:\program files (x86)\Microsoft Office\Office14\BCSSync.exe" [2010-03-13 91520]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\RunOnce]
"EasyTuneVI"="c:\program files (x86)\Gigabyte\ET6\ETCall.exe" [2012-02-01 40960]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\run-]
"HP Software Update"=c:\program files (x86)\Hp\HP Software Update\HPWuSchd2.exe
"Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
.
R3 AppleChargerSrv;AppleChargerSrv;c:\windows\system32\AppleChargerSrv.exe [2010-04-06 31272]
R3 GVTDrv64;GVTDrv64;c:\windows\GVTDrv64.sys [2012-12-09 30528]
S0 epfwwfp;epfwwfp;c:\windows\system32\DRIVERS\epfwwfp.sys [2012-10-08 64072]
S1 AppleCharger;AppleCharger;c:\windows\system32\DRIVERS\AppleCharger.sys [2011-11-02 21616]
S1 eamonm;eamonm;c:\windows\system32\DRIVERS\eamonm.sys [2012-10-08 211344]
S1 ehdrv;ehdrv;c:\windows\system32\DRIVERS\ehdrv.sys [2012-10-08 149592]
S1 EpfwLWF;Epfw NDIS LightWeight Filter;c:\windows\system32\DRIVERS\EpfwLWF.sys [2012-10-08 59440]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [2011-04-20 203776]
S2 AMD FUEL Service;AMD FUEL Service;c:\program files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [2011-04-19 365568]
S2 ekrn;ESET Service;c:\program files\ESET\ESET Smart Security\x86\ekrn.exe [2012-11-14 1329304]
S2 ES lite Service;ES lite Service for program management.;c:\program files (x86)\Gigabyte\EasySaver\ESSVR.EXE [2009-08-24 68136]
S2 JMB36X;JMB36X;c:\windows\SysWOW64\XSrvSetup.exe [2010-09-07 72280]
S2 SearchIndexer;Search Indexer;c:\windows\system32\svchost.exe [2009-07-14 27136]
S2 TuneUp.UtilitiesSvc;TuneUp Utilities Service;c:\program files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesService64.exe [2012-11-02 2365792]
S3 amdiox64;AMD IO Driver;c:\windows\system32\DRIVERS\amdiox64.sys [2010-02-18 46136]
S3 AtiHDAudioService;ATI Function Driver for HD Audio Service;c:\windows\system32\drivers\AtihdW76.sys [2011-03-30 114704]
S3 EtronHub3;Etron USB 3.0 Extensible Hub Driver;c:\windows\system32\Drivers\EtronHub3.sys [2011-07-29 56960]
S3 EtronXHCI;Etron USB 3.0 Extensible Host Controller Driver;c:\windows\system32\Drivers\EtronXHCI.sys [2011-07-29 79104]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys [2011-08-23 565352]
S3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv;c:\program files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesDriver64.sys [2012-09-19 11880]
.
.
Contents of the 'Scheduled Tasks' folder
.
2012-12-09 c:\windows\Tasks\HP Photo Creations Messager.job
- c:\programdata\HP Photo Creations\MessageCheck.exe [2011-02-15 10:11]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RTHDVCPL"="c:\program files\Realtek\Audio\HDA\RAVCpl64.exe" [2011-10-17 13307496]
"RtHDVBg_Dolby"="c:\program files\Realtek\Audio\HDA\RAVBg64.exe" [2011-10-14 2278504]
"egui"="c:\program files\ESET\ESET Smart Security\egui.exe" [2012-11-14 6325424]
.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs
SearchIndexer
SearchIndexer
SearchIndexer
SearchIndexer
SearchIndexer
SearchIndexer
SearchIndexer
SearchIndexer
SearchIndexer
SearchIndexer
.
------- Supplementary Scan -------
.
uLocal Page = c:\windows\system32\blank.htm
uStart Page = hxxp://www.google.sk/
mLocal Page = c:\windows\SysWOW64\blank.htm
IE: E&xportovať do programu Microsoft Excel - c:\progra~2\MICROS~1\Office14\EXCEL.EXE/3000
IE: Od&oslať do programu OneNote - c:\progra~2\MICROS~1\Office14\ONBttnIE.dll/105
TCP: DhcpNameServer = 195.34.133.21 192.168.0.1
FF - ProfilePath - c:\users\Dávid\AppData\Roaming\Mozilla\Firefox\Profiles\0iz8d00y.default\
FF - prefs.js: browser.startup.homepage - www.google.sk
.
- - - - ORPHANS REMOVED - - - -
.
Wow6432Node-HKLM-Run-<NO NAME> - (no file)
.
.
.
--------------------- LOCKED REGISTRY KEYS ---------------------
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_11_5_502_110_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
@="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_11_5_502_110_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="IFlashBroker5"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_5_502_110_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_5_502_110_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Shockwave Flash Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_5_502_110.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
@="0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
@="ShockwaveFlash.ShockwaveFlash.11"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_5_502_110.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="ShockwaveFlash.ShockwaveFlash"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Macromedia Flash Factory Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_5_502_110.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
@="FlashFactory.FlashFactory.1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_5_502_110.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="FlashFactory.FlashFactory"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="IFlashBroker5"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Office\Common\Smart Tag\Actions\{B7EFF951-E52F-45CC-9EF7-57124F2177CC}]
@Denied: (A) (Everyone)
"Solution"="{15727DE6-F92D-4E46-ACB4-0E2C58B31A18}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Schema Library\ActionsPane3]
@Denied: (A) (Everyone)
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Schema Library\ActionsPane3\0]
"Key"="ActionsPane3"
"Location"="c:\\Program Files (x86)\\Common Files\\Microsoft Shared\\VSTO\\ActionsPane3.xsd"
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Completion time: 2012-12-09 17:46:17
ComboFix-quarantined-files.txt 2012-12-09 16:46
ComboFix2.txt 2012-12-09 12:30
.
Pre-Run: 295 168 200 704 bytes free
Post-Run: 295 053 582 336 bytes free
.
- - End Of File - - 4F0CC96E4826C7A31DD1F719D11860D3







_________________
CPU:AMD FX8350 4GHz total 16Mb cache/COOLER: Arctic Freezer Pro 13/MB: GIGABYTE 990FXA-UD3/GPU: AMD Radeon 7950 (Gigabyte) @ 1100MHz/6GHz 3GB 384bit/RAM:8GB (2x4) Corsair CL9 XMS3 DDR3 1900MHz/PSU: Corsair CX750/CASE: Zalman Z11 Plus/HDD: 1TB WD 64MB cache/
NB1:Lenovo Z510 /Pentium,GT740m
NB2: Dell Inspiron 15 7537/ i5
MB: LG Optimus P970 Black
Offline

Užívateľ
Užívateľ
Obrázok užívateľa

Registrovaný: 09.05.11
Prihlásený: 20.12.18
Príspevky: 618
Témy: 2
Príspevok NapísalOffline : 09.12.2012 18:06

presun combofix a cfscript na C: combofix nezniesol gramatiku a tam to sprav


Offline

Užívateľ
Užívateľ
Obrázok užívateľa

Registrovaný: 28.03.12
Prihlásený: 05.06.14
Príspevky: 133
Témy: 26
Príspevok Napísal autor témyOffline : 09.12.2012 19:33

Dnes to uz nestihnem ... možem sa spytat o co sa jedna v tom combofixe ... mam v pc virus ? Obednal som si novy chladic na CPU Artic freezer 13 pro je to dobry chladic keby som chcel svoj procak taktovat?







_________________
CPU:AMD FX8350 4GHz total 16Mb cache/COOLER: Arctic Freezer Pro 13/MB: GIGABYTE 990FXA-UD3/GPU: AMD Radeon 7950 (Gigabyte) @ 1100MHz/6GHz 3GB 384bit/RAM:8GB (2x4) Corsair CL9 XMS3 DDR3 1900MHz/PSU: Corsair CX750/CASE: Zalman Z11 Plus/HDD: 1TB WD 64MB cache/
NB1:Lenovo Z510 /Pentium,GT740m
NB2: Dell Inspiron 15 7537/ i5
MB: LG Optimus P970 Black
Offline

Užívateľ
Užívateľ
Obrázok užívateľa

Registrovaný: 28.03.12
Prihlásený: 05.06.14
Príspevky: 133
Témy: 26
Príspevok Napísal autor témyOffline : 09.12.2012 20:08

ComboFix 12-12-07.01 - Dávid . 12. 2012 19:51:48.3.4 - x64
Microsoft Windows 7 Ultimate 6.1.7600.0.1250.421.1051.18.8173.6534 [GMT 1:00]
Running from: C:\ComboFix.exe
Command switches used :: C:\cfscript.txt
AV: ESET Smart Security 6.0 *Enabled/Updated* {77DEAFED-8149-104B-25A1-21771CA47CD1}
FW: ESET personal firewall *Enabled* {4FE52EC8-CB26-1113-0EFE-8842E2773BAA}
SP: ESET Smart Security 6.0 *Enabled/Updated* {CCBF4E09-A773-1FC5-1F11-1A056723366C}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
* Resident AV is active
.
.
FILE ::
"c:\windows\SysWOW64\igfxupdate.exe"
"c:\windows\Tasks\HP Photo Creations Messager.job"
.
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\programdata\{C4ABDBC8-1C81-42C9-BFFC-4A68511E9E4F}
c:\windows\SysWOW64\igfxupdate.exe
c:\windows\Tasks\HP Photo Creations Messager.job
.
.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Service_SearchIndexer
.
.
((((((((((((((((((((((((( Files Created from 2012-11-09 to 2012-12-09 )))))))))))))))))))))))))))))))
.
.
2012-12-09 18:57 . 2012-12-09 18:57 -------- d-----w- c:\users\Default\AppData\Local\temp
2012-12-09 12:53 . 2012-12-09 17:00 -------- d-----w- c:\program files (x86)\SpeedFan
2012-12-09 12:22 . 2009-07-13 23:19 62464 ----a-w- c:\windows\system32\drivers\intelppm.sys
2012-12-09 12:05 . 2012-12-09 12:06 -------- d-----w- C:\rsit
2012-12-09 12:05 . 2012-12-09 12:06 -------- d-----w- c:\program files (x86)\trend micro
2012-12-09 11:26 . 2012-11-02 14:57 34656 ----a-w- c:\windows\system32\TURegOpt.exe
2012-12-09 11:26 . 2012-11-02 14:57 25952 ----a-w- c:\windows\system32\authuitu.dll
2012-12-09 11:26 . 2012-11-02 14:57 21344 ----a-w- c:\windows\SysWow64\authuitu.dll
2012-12-09 11:25 . 2012-12-09 11:26 -------- d-----w- c:\program files (x86)\TuneUp Utilities 2013
2012-12-09 11:24 . 2012-12-09 11:25 -------- d-----w- c:\programdata\TuneUp Software
2012-12-09 11:24 . 2012-12-09 11:24 -------- d--h--w- c:\programdata\Common Files
2012-12-08 17:56 . 2010-09-14 06:45 367104 ----a-w- c:\windows\system32\wcncsvc.dll
2012-12-08 17:56 . 2010-09-14 06:07 276992 ----a-w- c:\windows\SysWow64\wcncsvc.dll
2012-12-08 17:55 . 2012-07-26 04:55 785512 ----a-w- c:\windows\system32\drivers\Wdf01000.sys
2012-12-08 17:55 . 2012-07-26 04:55 54376 ----a-w- c:\windows\system32\drivers\WdfLdr.sys
2012-12-08 17:55 . 2012-07-26 04:47 2560 ----a-w- c:\windows\system32\drivers\en-US\wdf01000.sys.mui
2012-12-08 17:55 . 2012-07-26 02:36 9728 ----a-w- c:\windows\system32\Wdfres.dll
2012-12-08 17:53 . 2012-07-26 02:26 87040 ----a-w- c:\windows\system32\drivers\WUDFPf.sys
2012-12-08 17:53 . 2012-07-26 02:26 198656 ----a-w- c:\windows\system32\drivers\WUDFRd.sys
2012-12-08 17:53 . 2012-07-26 03:08 229888 ----a-w- c:\windows\system32\WUDFHost.exe
2012-12-08 17:53 . 2012-07-26 03:08 84992 ----a-w- c:\windows\system32\WUDFSvc.dll
2012-12-08 17:53 . 2012-07-26 03:08 744448 ----a-w- c:\windows\system32\WUDFx.dll
2012-12-08 17:53 . 2012-07-26 03:08 45056 ----a-w- c:\windows\system32\WUDFCoinstaller.dll
2012-12-08 17:53 . 2012-07-26 03:08 194048 ----a-w- c:\windows\system32\WUDFPlatform.dll
2012-12-08 17:52 . 2010-03-04 04:32 243712 ----a-w- c:\windows\system32\drivers\ks.sys
2012-12-08 17:50 . 2012-01-04 09:58 509952 ----a-w- c:\windows\system32\ntshrui.dll
2012-12-08 17:49 . 2012-05-05 08:30 503808 ----a-w- c:\windows\system32\srcore.dll
2012-12-08 17:49 . 2012-05-05 07:44 43008 ----a-w- c:\windows\SysWow64\srclient.dll
2012-12-08 17:49 . 2012-04-07 12:18 3213824 ----a-w- c:\windows\system32\msi.dll
2012-12-08 17:49 . 2012-04-07 11:34 2342400 ----a-w- c:\windows\SysWow64\msi.dll
2012-12-08 17:47 . 2011-04-22 20:18 27008 ----a-w- c:\windows\system32\drivers\Diskdump.sys
2012-12-08 17:47 . 2009-09-26 06:20 223448 ----a-w- c:\windows\system32\drivers\fvevol.sys
2012-12-08 17:47 . 2012-05-02 05:32 208896 ----a-w- c:\windows\system32\profsvc.dll
2012-12-08 17:47 . 2011-02-18 06:33 31232 ----a-w- c:\windows\system32\prevhost.exe
2012-12-08 17:47 . 2011-02-18 05:33 31232 ----a-w- c:\windows\SysWow64\prevhost.exe
2012-12-08 16:44 . 2012-12-08 16:44 -------- d-----w- c:\programdata\Orbit
2012-12-08 16:34 . 2009-09-10 06:28 311808 ----a-w- c:\windows\system32\msv1_0.dll
2012-12-08 16:34 . 2009-09-10 05:52 257024 ----a-w- c:\windows\SysWow64\msv1_0.dll
2012-12-08 16:18 . 2009-11-25 11:47 99176 ----a-w- c:\windows\SysWow64\PresentationHostProxy.dll
2012-12-08 16:18 . 2009-11-25 11:47 49472 ----a-w- c:\windows\SysWow64\netfxperf.dll
2012-12-08 16:18 . 2009-11-25 11:47 48960 ----a-w- c:\windows\system32\netfxperf.dll
2012-12-08 16:18 . 2009-11-25 11:47 297808 ----a-w- c:\windows\SysWow64\mscoree.dll
2012-12-08 16:18 . 2009-11-25 11:47 295264 ----a-w- c:\windows\SysWow64\PresentationHost.exe
2012-12-08 16:18 . 2009-11-25 11:47 1130824 ----a-w- c:\windows\SysWow64\dfshim.dll
2012-12-08 16:18 . 2009-11-25 11:47 109912 ----a-w- c:\windows\system32\PresentationHostProxy.dll
2012-12-08 16:18 . 2009-11-25 11:47 444752 ----a-w- c:\windows\system32\mscoree.dll
2012-12-08 16:18 . 2009-11-25 11:47 320352 ----a-w- c:\windows\system32\PresentationHost.exe
2012-12-08 16:18 . 2009-11-25 11:47 1942856 ----a-w- c:\windows\system32\dfshim.dll
2012-12-08 16:18 . 2012-11-19 00:01 9125352 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{8756E7E9-24D7-4DC4-97A0-4800E8FFF89E}\mpengine.dll
2012-12-08 16:17 . 2012-12-08 16:43 -------- d-----w- C:\Far Cry 3
2012-12-08 16:17 . 2010-02-23 08:16 294912 ----a-w- c:\windows\system32\browserchoice.exe
2012-12-08 16:13 . 2012-12-08 16:13 96768 ----a-w- c:\windows\system32\mshtmled.dll
2012-12-08 16:12 . 2012-12-08 16:12 1888256 ----a-w- c:\windows\system32\WMVDECOD.DLL
2012-12-08 16:08 . 2012-12-08 16:10 -------- d-----w- c:\program files (x86)\Euro Truck Simulator 2
2012-12-08 16:07 . 2012-12-08 16:07 -------- d-----w- c:\program files\WinRAR
2012-12-08 16:05 . 2012-12-08 16:05 -------- d-----w- c:\programdata\Solidshield
2012-12-08 16:05 . 2012-10-29 20:04 66395536 ----a-w- c:\windows\system32\MRT.exe
2012-12-08 16:01 . 2012-03-01 06:54 22896 ----a-w- c:\windows\system32\drivers\fs_rec.sys
2012-12-08 16:01 . 2012-03-01 06:40 80896 ----a-w- c:\windows\system32\imagehlp.dll
2012-12-08 16:01 . 2012-03-01 06:35 5120 ----a-w- c:\windows\system32\wmi.dll
2012-12-08 16:01 . 2012-03-01 05:45 158720 ----a-w- c:\windows\SysWow64\imagehlp.dll
2012-12-08 16:01 . 2012-03-01 05:40 5120 ----a-w- c:\windows\SysWow64\wmi.dll
2012-12-08 15:58 . 2010-01-09 07:19 139264 ----a-w- c:\windows\system32\cabview.dll
2012-12-08 15:58 . 2010-01-09 06:52 132608 ----a-w- c:\windows\SysWow64\cabview.dll
2012-12-08 15:58 . 2012-09-14 19:23 2048 ----a-w- c:\windows\system32\tzres.dll
2012-12-08 15:58 . 2012-09-14 18:30 2048 ----a-w- c:\windows\SysWow64\tzres.dll
2012-12-08 15:57 . 2012-06-06 05:50 1425408 ----a-w- c:\program files\Common Files\System\ado\msado15.dll
2012-12-08 15:57 . 2012-06-06 05:09 987136 ----a-w- c:\program files (x86)\Common Files\System\ado\msado15.dll
2012-12-08 15:57 . 2011-12-16 08:42 634368 ----a-w- c:\windows\system32\msvcrt.dll
2012-12-08 15:57 . 2011-12-16 07:59 690688 ----a-w- c:\windows\SysWow64\msvcrt.dll
2012-12-08 15:57 . 2009-09-03 07:36 1975296 ----a-w- c:\windows\system32\CertEnroll.dll
2012-12-08 15:57 . 2009-09-03 07:04 1320960 ----a-w- c:\windows\SysWow64\CertEnroll.dll
2012-12-08 15:57 . 2012-06-09 05:30 14165504 ----a-w- c:\windows\system32\shell32.dll
2012-12-08 15:57 . 2011-11-17 07:12 395776 ----a-w- c:\windows\system32\webio.dll
2012-12-08 15:57 . 2011-11-17 05:39 314368 ----a-w- c:\windows\SysWow64\webio.dll
2012-12-08 15:55 . 2011-06-15 09:58 212992 ----a-w- c:\windows\system32\odbctrac.dll
2012-12-08 15:54 . 2012-09-25 22:39 95744 ----a-w- c:\windows\system32\synceng.dll
2012-12-08 15:48 . 2012-12-08 15:48 -------- d-----w- C:\eurotruckmoney
2012-12-08 15:40 . 2012-12-08 15:40 -------- d-----w- C:\Electronic Arts
2012-12-08 15:39 . 2012-06-02 05:25 182272 ----a-w- c:\windows\system32\cryptsvc.dll
2012-12-08 15:39 . 2012-06-02 05:25 1462784 ----a-w- c:\windows\system32\crypt32.dll
2012-12-08 15:39 . 2012-06-02 05:25 140288 ----a-w- c:\windows\system32\cryptnet.dll
2012-12-08 15:39 . 2012-06-02 04:45 139264 ----a-w- c:\windows\SysWow64\cryptsvc.dll
2012-12-08 15:39 . 2012-06-02 04:45 1157632 ----a-w- c:\windows\SysWow64\crypt32.dll
2012-12-08 15:39 . 2012-06-02 04:45 103936 ----a-w- c:\windows\SysWow64\cryptnet.dll
2012-12-08 15:39 . 2011-11-19 15:07 77312 ----a-w- c:\windows\system32\packager.dll
2012-12-08 15:39 . 2011-11-19 14:06 67072 ----a-w- c:\windows\SysWow64\packager.dll
2012-12-04 14:16 . 2012-12-04 14:16 -------- d-----w- c:\program files (x86)\Activision
2012-12-04 13:27 . 2012-06-02 22:19 2428952 ----a-w- c:\windows\system32\wuaueng.dll
2012-12-04 13:27 . 2012-06-02 22:19 57880 ----a-w- c:\windows\system32\wuauclt.exe
2012-12-04 13:27 . 2012-06-02 22:19 44056 ----a-w- c:\windows\system32\wups2.dll
2012-12-04 13:27 . 2012-06-02 22:15 2622464 ----a-w- c:\windows\system32\wucltux.dll
2012-12-04 13:27 . 2012-06-02 22:19 38424 ----a-w- c:\windows\system32\wups.dll
2012-12-04 13:27 . 2012-06-02 22:19 701976 ----a-w- c:\windows\system32\wuapi.dll
2012-12-04 13:27 . 2012-06-02 22:15 99840 ----a-w- c:\windows\system32\wudriver.dll
2012-12-04 13:26 . 2012-06-02 14:19 186752 ----a-w- c:\windows\system32\wuwebv.dll
2012-12-04 13:26 . 2012-06-02 14:15 36864 ----a-w- c:\windows\system32\wuapp.exe
2012-12-03 18:23 . 2012-12-03 18:30 -------- d-----w- c:\programdata\DAEMON Tools Pro
2012-12-03 18:17 . 2012-12-03 18:31 410112 ----a-w- c:\windows\system32\taskhost.rs
2012-12-03 18:17 . 2012-12-03 18:31 307712 ----a-w- c:\windows\system32\SearchIndexer.dll
2012-12-03 18:17 . 2012-12-03 18:31 269824 ----a-w- c:\windows\system32\SearchEngine.rs
2012-12-03 17:28 . 2012-12-03 17:28 -------- d-----w- c:\program files (x86)\Common Files\Adobe
2012-12-03 16:51 . 2012-12-03 16:51 -------- d-----w- c:\users\Filip
2012-12-03 16:48 . 2012-12-03 16:48 -------- d-----w- c:\users\Zuzana
2012-11-28 16:47 . 2008-05-30 13:11 4991496 ----a-w- c:\windows\system32\D3DX9_38.dll
2012-11-28 16:45 . 2012-12-08 16:43 -------- d--h--w- c:\windows\msdownld.tmp
2012-11-28 16:33 . 2012-11-28 16:52 -------- d-----w- c:\program files (x86)\Assassins Creed III
2012-11-28 16:20 . 2012-11-28 16:20 -------- d-----w- c:\program files (x86)\HP Photo Creations
2012-11-28 16:20 . 2012-11-28 16:20 -------- d-----w- c:\programdata\HP Photo Creations
2012-11-28 16:19 . 2011-08-16 12:13 778088 ------w- c:\windows\system32\HPDiscoPMb411.dll
2012-11-28 16:04 . 2012-11-28 16:04 -------- d-----w- c:\programdata\HP
2012-11-28 16:04 . 2012-11-28 16:20 -------- d-----w- c:\program files (x86)\HP
2012-11-28 16:04 . 2012-11-28 16:04 -------- d-----w- c:\program files\HP
2012-11-28 15:59 . 2012-05-31 10:25 279656 ------w- c:\windows\system32\MpSigStub.exe
2012-11-28 15:57 . 2012-11-28 15:57 -------- d-----w- c:\program files\ESET
2012-11-28 15:51 . 2012-11-28 15:51 -------- d-----w- c:\program files (x86)\Microsoft Synchronization Services
2012-11-28 15:50 . 2012-11-28 15:50 -------- d-----w- c:\windows\PCHEALTH
2012-11-28 15:50 . 2012-11-28 15:50 -------- d-----w- c:\program files (x86)\Microsoft.NET
2012-11-28 15:41 . 2012-12-09 18:45 30528 ----a-w- c:\windows\GVTDrv64.sys
2012-11-28 15:41 . 2012-12-09 18:59 25640 ----a-w- c:\windows\gdrv.sys
2012-11-28 15:37 . 2012-11-28 15:37 -------- d-----w- c:\program files (x86)\AMD
2012-11-28 15:34 . 2011-11-02 09:48 21616 ----a-w- c:\windows\system32\drivers\AppleCharger.sys
2012-11-28 15:34 . 2010-04-06 15:30 31272 ----a-w- c:\windows\system32\AppleChargerSrv.exe
2012-11-28 15:34 . 2012-11-28 15:34 -------- d-----w- c:\program files\GIGABYTE
2012-11-28 15:34 . 2012-11-28 15:34 -------- d-----w- c:\program files (x86)\Etron Technology
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-12-08 16:14 . 2012-12-08 16:14 203776 ----a-w- c:\windows\SysWow64\webcheck.dll
2012-12-08 16:13 . 2012-12-08 16:13 249344 ----a-w- c:\windows\system32\webcheck.dll
2012-10-16 21:20 . 2012-12-08 17:50 135168 ----a-w- c:\windows\apppatch\AppPatch64\AcXtrnal.dll
2012-10-16 21:20 . 2012-12-08 17:50 347648 ----a-w- c:\windows\apppatch\AppPatch64\AcLayers.dll
2012-10-16 20:34 . 2012-12-08 17:50 559104 ----a-w- c:\windows\apppatch\AcLayers.dll
2012-10-08 07:21 . 2012-10-08 07:21 64072 ----a-w- c:\windows\system32\drivers\epfwwfp.sys
2012-10-08 07:21 . 2012-10-08 07:21 59440 ----a-w- c:\windows\system32\drivers\EpfwLWF.sys
2012-10-08 07:21 . 2012-10-08 07:21 189208 ----a-w- c:\windows\system32\drivers\epfw.sys
2012-10-08 07:21 . 2012-10-08 07:21 149592 ----a-w- c:\windows\system32\drivers\ehdrv.sys
2012-10-08 07:21 . 2012-10-08 07:21 211344 ----a-w- c:\windows\system32\drivers\eamonm.sys
.
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"="c:\program files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2011-04-19 336384]
"Dolby Home Theater v4"="c:\program files (x86)\Dolby Home Theater v4\pcee4.exe" [2011-06-01 506712]
"JMB36X IDE Setup"="c:\windows\RaidTool\xInsIDE.exe" [2010-09-07 43608]
"BCSSync"="c:\program files (x86)\Microsoft Office\Office14\BCSSync.exe" [2010-03-13 91520]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\RunOnce]
"EasyTuneVI"="c:\program files (x86)\Gigabyte\ET6\ETCall.exe" [2012-02-01 40960]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
R3 AppleChargerSrv;AppleChargerSrv;c:\windows\system32\AppleChargerSrv.exe [2010-04-06 31272]
S0 epfwwfp;epfwwfp;c:\windows\system32\DRIVERS\epfwwfp.sys [2012-10-08 64072]
S1 AppleCharger;AppleCharger;c:\windows\system32\DRIVERS\AppleCharger.sys [2011-11-02 21616]
S1 eamonm;eamonm;c:\windows\system32\DRIVERS\eamonm.sys [2012-10-08 211344]
S1 ehdrv;ehdrv;c:\windows\system32\DRIVERS\ehdrv.sys [2012-10-08 149592]
S1 EpfwLWF;Epfw NDIS LightWeight Filter;c:\windows\system32\DRIVERS\EpfwLWF.sys [2012-10-08 59440]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [2011-04-20 203776]
S2 AMD FUEL Service;AMD FUEL Service;c:\program files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [2011-04-19 365568]
S2 ekrn;ESET Service;c:\program files\ESET\ESET Smart Security\x86\ekrn.exe [2012-11-14 1329304]
S2 ES lite Service;ES lite Service for program management.;c:\program files (x86)\Gigabyte\EasySaver\ESSVR.EXE [2009-08-24 68136]
S2 JMB36X;JMB36X;c:\windows\SysWOW64\XSrvSetup.exe [2010-09-07 72280]
S2 TuneUp.UtilitiesSvc;TuneUp Utilities Service;c:\program files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesService64.exe [2012-11-02 2365792]
S3 amdiox64;AMD IO Driver;c:\windows\system32\DRIVERS\amdiox64.sys [2010-02-18 46136]
S3 AODDriver;AODDriver;c:\program files (x86)\Gigabyte\ET6\amd64\AODDriver.sys [2010-03-12 52280]
S3 AtiHDAudioService;ATI Function Driver for HD Audio Service;c:\windows\system32\drivers\AtihdW76.sys [2011-03-30 114704]
S3 EtronHub3;Etron USB 3.0 Extensible Hub Driver;c:\windows\system32\Drivers\EtronHub3.sys [2011-07-29 56960]
S3 EtronXHCI;Etron USB 3.0 Extensible Host Controller Driver;c:\windows\system32\Drivers\EtronXHCI.sys [2011-07-29 79104]
S3 GVTDrv64;GVTDrv64;c:\windows\GVTDrv64.sys [2012-12-09 30528]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys [2011-08-23 565352]
S3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv;c:\program files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesDriver64.sys [2012-09-19 11880]
.
.
--- Other Services/Drivers In Memory ---
.
*NewlyCreated* - AODDRIVER
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RTHDVCPL"="c:\program files\Realtek\Audio\HDA\RAVCpl64.exe" [2011-10-17 13307496]
"RtHDVBg_Dolby"="c:\program files\Realtek\Audio\HDA\RAVBg64.exe" [2011-10-14 2278504]
"egui"="c:\program files\ESET\ESET Smart Security\egui.exe" [2012-11-14 6325424]
.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs
SearchIndexer
SearchIndexer
SearchIndexer
SearchIndexer
SearchIndexer
SearchIndexer
SearchIndexer
SearchIndexer
SearchIndexer
SearchIndexer
.
------- Supplementary Scan -------
.
uLocal Page = %SystemRoot%\system32\blank.htm
mLocal Page = c:\windows\SysWOW64\blank.htm
IE: E&xportovať do programu Microsoft Excel - c:\progra~2\MICROS~1\Office14\EXCEL.EXE/3000
IE: Od&oslať do programu OneNote - c:\progra~2\MICROS~1\Office14\ONBttnIE.dll/105
TCP: DhcpNameServer = 195.34.133.21 192.168.0.1
FF - ProfilePath - c:\users\Dávid\AppData\Roaming\Mozilla\Firefox\Profiles\0iz8d00y.default\
.
- - - - ORPHANS REMOVED - - - -
.
Wow6432Node-HKLM-Run-<NO NAME> - (no file)
.
.
.
--------------------- LOCKED REGISTRY KEYS ---------------------
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_11_5_502_110_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
@="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_11_5_502_110_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="IFlashBroker5"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
------------------------ Other Running Processes ------------------------
.
c:\program files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
c:\program files (x86)\Gigabyte\ET6\GUI.exe
.
**************************************************************************
.
Completion time: 2012-12-09 20:04:11 - machine was rebooted
ComboFix-quarantined-files.txt 2012-12-09 19:04
ComboFix2.txt 2012-12-09 16:46
ComboFix3.txt 2012-12-09 12:30
.
Pre-Run: 294 615 838 720 bytes free
Post-Run: 294 352 302 080 bytes free
.
- - End Of File - - 78FB12523AE950160378C469B6AD1BE5







_________________
CPU:AMD FX8350 4GHz total 16Mb cache/COOLER: Arctic Freezer Pro 13/MB: GIGABYTE 990FXA-UD3/GPU: AMD Radeon 7950 (Gigabyte) @ 1100MHz/6GHz 3GB 384bit/RAM:8GB (2x4) Corsair CL9 XMS3 DDR3 1900MHz/PSU: Corsair CX750/CASE: Zalman Z11 Plus/HDD: 1TB WD 64MB cache/
NB1:Lenovo Z510 /Pentium,GT740m
NB2: Dell Inspiron 15 7537/ i5
MB: LG Optimus P970 Black
Offline

Užívateľ
Užívateľ
Obrázok užívateľa

Registrovaný: 09.05.11
Prihlásený: 20.12.18
Príspevky: 618
Témy: 2
Príspevok NapísalOffline : 10.12.2012 13:46

v pc máš čisto premenuj combofix na uninstall a spusť nastala nejaká zmena


Offline

Užívateľ
Užívateľ
Obrázok užívateľa

Registrovaný: 28.03.12
Prihlásený: 05.06.14
Príspevky: 133
Témy: 26
Príspevok Napísal autor témyOffline : 10.12.2012 14:36

To ma robit len raz .... lebo mne s to spustilo uz asi 10x.







_________________
CPU:AMD FX8350 4GHz total 16Mb cache/COOLER: Arctic Freezer Pro 13/MB: GIGABYTE 990FXA-UD3/GPU: AMD Radeon 7950 (Gigabyte) @ 1100MHz/6GHz 3GB 384bit/RAM:8GB (2x4) Corsair CL9 XMS3 DDR3 1900MHz/PSU: Corsair CX750/CASE: Zalman Z11 Plus/HDD: 1TB WD 64MB cache/
NB1:Lenovo Z510 /Pentium,GT740m
NB2: Dell Inspiron 15 7537/ i5
MB: LG Optimus P970 Black
Offline

Užívateľ
Užívateľ
Obrázok užívateľa

Registrovaný: 09.05.11
Prihlásený: 20.12.18
Príspevky: 618
Témy: 2
Príspevok NapísalOffline : 10.12.2012 15:03

dobre si to napísal ma písať že je odinštalovaný keď nejde stiahni si OTM http://www.geekstogo.com/forum/files/fi ... s-move-it/ spusť daj clean up
Nastala nejaka zmena


Offline

Užívateľ
Užívateľ
Obrázok užívateľa

Registrovaný: 28.03.12
Prihlásený: 05.06.14
Príspevky: 133
Témy: 26
Príspevok Napísal autor témyOffline : 10.12.2012 15:49

Tak ... nenapísalo mi nič tak som stiahol ten OTM ... zmena: ventilátor ide normálne , pc už beží tak ako má.







_________________
CPU:AMD FX8350 4GHz total 16Mb cache/COOLER: Arctic Freezer Pro 13/MB: GIGABYTE 990FXA-UD3/GPU: AMD Radeon 7950 (Gigabyte) @ 1100MHz/6GHz 3GB 384bit/RAM:8GB (2x4) Corsair CL9 XMS3 DDR3 1900MHz/PSU: Corsair CX750/CASE: Zalman Z11 Plus/HDD: 1TB WD 64MB cache/
NB1:Lenovo Z510 /Pentium,GT740m
NB2: Dell Inspiron 15 7537/ i5
MB: LG Optimus P970 Black
Offline

Užívateľ
Užívateľ
Obrázok užívateľa

Registrovaný: 09.05.11
Prihlásený: 20.12.18
Príspevky: 618
Témy: 2
Príspevok NapísalOffline : 10.12.2012 16:23

dobre čiže si dal na otm clean up tak to bude z mojej strany všetko potrebuješ ešte niečo


Offline

Užívateľ
Užívateľ
Obrázok užívateľa

Registrovaný: 28.03.12
Prihlásený: 05.06.14
Príspevky: 133
Témy: 26
Príspevok Napísal autor témyOffline : 10.12.2012 16:42

Nie to je všetko .... ďakujem za pomoc .... len mam otazku: co to bolo?







_________________
CPU:AMD FX8350 4GHz total 16Mb cache/COOLER: Arctic Freezer Pro 13/MB: GIGABYTE 990FXA-UD3/GPU: AMD Radeon 7950 (Gigabyte) @ 1100MHz/6GHz 3GB 384bit/RAM:8GB (2x4) Corsair CL9 XMS3 DDR3 1900MHz/PSU: Corsair CX750/CASE: Zalman Z11 Plus/HDD: 1TB WD 64MB cache/
NB1:Lenovo Z510 /Pentium,GT740m
NB2: Dell Inspiron 15 7537/ i5
MB: LG Optimus P970 Black
Offline

Užívateľ
Užívateľ
Obrázok užívateľa

Registrovaný: 09.05.11
Prihlásený: 20.12.18
Príspevky: 618
Témy: 2
Príspevok NapísalOffline : 10.12.2012 17:21

pc infiltracia


Offline

Užívateľ
Užívateľ
Obrázok užívateľa

Registrovaný: 28.03.12
Prihlásený: 05.06.14
Príspevky: 133
Témy: 26
Príspevok Napísal autor témyOffline : 12.12.2012 15:15

Zlá správa ... znova mi vyskakuje to okno že prestal pracovať. :jaw: :jaw: :jaw: :jaw:







_________________
CPU:AMD FX8350 4GHz total 16Mb cache/COOLER: Arctic Freezer Pro 13/MB: GIGABYTE 990FXA-UD3/GPU: AMD Radeon 7950 (Gigabyte) @ 1100MHz/6GHz 3GB 384bit/RAM:8GB (2x4) Corsair CL9 XMS3 DDR3 1900MHz/PSU: Corsair CX750/CASE: Zalman Z11 Plus/HDD: 1TB WD 64MB cache/
NB1:Lenovo Z510 /Pentium,GT740m
NB2: Dell Inspiron 15 7537/ i5
MB: LG Optimus P970 Black
Offline

Užívateľ
Užívateľ
Obrázok užívateľa

Registrovaný: 09.05.11
Prihlásený: 20.12.18
Príspevky: 618
Témy: 2
Príspevok NapísalOffline : 12.12.2012 15:30

vlož novy log z rsit http://en.kioskea.net/download/download-11416-rsit


Offline

Užívateľ
Užívateľ
Obrázok užívateľa

Registrovaný: 28.03.12
Prihlásený: 05.06.14
Príspevky: 133
Témy: 26
Príspevok Napísal autor témyOffline : 12.12.2012 15:47

Logfile of random's system information tool 1.09 (written by random/random)
Run by Dávid at 2012-12-12 15:46:02
Microsoft Windows 7 Ultimate
System drive C: has 320 GB (67%) free of 477 GB
Total RAM: 8173 MB (77% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 15:46:06, on 12. 12. 2012
Platform: Windows 7 (WinNT 6.00.3504)
MSIE: Internet Explorer v9.00 (9.00.8112.16455)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Gigabyte\ET6\GUI.exe
C:\Windows\SysWOW64\update\igfxupdate.exe
C:\Windows\SysWOW64\WerFault.exe
C:\Users\Dávid\Downloads\RSIT.exe
C:\Program Files (x86)\trend micro\Dávid.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL
O2 - BHO: Pomocník pri prihlasovaní v konte Microsoft - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [Dolby Home Theater v4] "C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe" -autostart
O4 - HKLM\..\Run: [JMB36X IDE Setup] C:\Windows\RaidTool\xInsIDE.exe
O4 - HKLM\..\Run: [BCSSync] "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices
O4 - HKLM\..\RunOnce: [EasyTuneVI] C:\Program Files (x86)\Gigabyte\ET6\ETCall.exe
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O8 - Extra context menu item: E&xportovať do programu Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&oslať do programu OneNote - res://C:\PROGRA~2\MICROS~1\Office14\ONBttnIE.dll/105
O9 - Extra button: Odoslať do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&oslať do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: &Prepojené poznámky programu OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: &Prepojené poznámky programu OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: AppleChargerSrv - Unknown owner - C:\Windows\system32\AppleChargerSrv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe
O23 - Service: ES lite Service for program management. (ES lite Service) - Unknown owner - C:\Program Files (x86)\Gigabyte\EasySaver\ESSVR.EXE
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: JMB36X - Unknown owner - C:\Windows\SysWOW64\XSrvSetup.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: TuneUp Utilities Service (TuneUp.UtilitiesSvc) - TuneUp Software - C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesService64.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 7869 bytes

=========Mozilla firefox=========

ProfilePath - C:\Users\Dávid\AppData\Roaming\Mozilla\Firefox\Profiles\0iz8d00y.default

prefs.js - "browser.startup.homepage" - "www.google.sk"

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.5.502.110 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_5_502_110.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WLPG,version=16.4.3505.0912]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll

C:\Program Files (x86)\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}

C:\Program Files (x86)\Mozilla Firefox\components\
binary.manifest
browsercomps.dll

C:\Program Files (x86)\Mozilla Firefox\searchplugins\
atlas-sk.xml
azet-sk.xml
dunaj-sk.xml
eBay.xml
google.xml
slovnik-sk.xml
wikipedia-sk.xml
zoznam-sk.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-09-23 60568]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2012-08-16 4171424]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocník pri prihlasovaní v konte Microsoft - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17 441592]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL [2010-12-21 561552]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2011-04-19 336384]
"Dolby Home Theater v4"=C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe [2011-06-01 506712]
"JMB36X IDE Setup"=C:\Windows\RaidTool\xInsIDE.exe [2010-09-07 43608]
"BCSSync"=C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [2010-03-13 91520]
""= []

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"EasyTuneVI"=C:\Program Files (x86)\Gigabyte\ET6\ETCall.exe [2012-02-01 40960]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2009-07-14 1475072]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2012-08-16 4171424]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PEVSystemStart]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\procexp90.Sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PEVSystemStart]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\procexp90.Sys]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"LogonHoursAction"=2
"DontDisplayLogonHoursWarnings"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\SysWOW64\l3codeca.acm
"vidc.cvid"=iccvid.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux2"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1

======List of files/folders created in the last 1 month======

2012-12-12 15:46:02 ----D---- C:\rsit
2012-12-12 13:48:47 ----A---- C:\Windows\SysWOW64\igfxupdate.exe
2012-12-11 20:12:00 ----D---- C:\Windows\SysWOW64\update
2012-12-11 19:13:44 ----A---- C:\Windows\ntbtlog.txt
2012-12-11 14:17:33 ----D---- C:\Windows\SysWOW64\Wat
2012-12-10 16:15:56 ----A---- C:\Windows\SysWOW64\fsutil.exe
2012-12-10 16:15:56 ----A---- C:\Windows\SysWOW64\esent.dll
2012-12-10 16:08:59 ----D---- C:\Windows\sk
2012-12-10 16:06:13 ----D---- C:\Program Files (x86)\Windows Live
2012-12-10 16:01:31 ----A---- C:\Windows\SysWOW64\PerfStringBackup.INI
2012-12-10 15:55:22 ----A---- C:\Windows\SysWOW64\UIRibbonRes.dll
2012-12-10 15:55:21 ----A---- C:\Windows\SysWOW64\UIRibbon.dll
2012-12-10 15:51:33 ----D---- C:\Program Files (x86)\Common Files\Windows Live
2012-12-10 15:42:19 ----SHD---- C:\$RECYCLE.BIN
2012-12-10 14:22:43 ----SD---- C:\32788R22FWJFW
2012-12-09 19:57:36 ----D---- C:\Windows\temp
2012-12-09 13:53:20 ----D---- C:\Program Files (x86)\SpeedFan
2012-12-09 13:14:26 ----D---- C:\Windows\erdnt
2012-12-09 13:05:49 ----D---- C:\Program Files (x86)\trend micro
2012-12-09 12:26:48 ----A---- C:\Windows\SysWOW64\authuitu.dll
2012-12-09 12:25:46 ----D---- C:\Users\Dávid\AppData\Roaming\TuneUp Software
2012-12-09 12:25:07 ----D---- C:\Program Files (x86)\TuneUp Utilities 2013
2012-12-09 12:24:14 ----D---- C:\ProgramData\TuneUp Software
2012-12-09 12:24:06 ----HD---- C:\ProgramData\Common Files
2012-12-08 18:56:46 ----A---- C:\Windows\SysWOW64\wcncsvc.dll
2012-12-08 18:51:47 ----A---- C:\Windows\SysWOW64\XpsGdiConverter.dll
2012-12-08 18:51:20 ----A---- C:\Windows\SysWOW64\tquery.dll
2012-12-08 18:51:20 ----A---- C:\Windows\SysWOW64\SearchProtocolHost.exe
2012-12-08 18:51:20 ----A---- C:\Windows\SysWOW64\SearchIndexer.exe
2012-12-08 18:51:20 ----A---- C:\Windows\SysWOW64\SearchFilterHost.exe
2012-12-08 18:51:20 ----A---- C:\Windows\SysWOW64\mssvp.dll
2012-12-08 18:51:20 ----A---- C:\Windows\SysWOW64\mssrch.dll
2012-12-08 18:51:20 ----A---- C:\Windows\SysWOW64\mssphtb.dll
2012-12-08 18:51:20 ----A---- C:\Windows\SysWOW64\mssph.dll
2012-12-08 18:51:20 ----A---- C:\Windows\SysWOW64\msscntrs.dll
2012-12-08 18:51:12 ----A---- C:\Windows\SysWOW64\setup16.exe
2012-12-08 18:51:12 ----A---- C:\Windows\SysWOW64\ntvdm64.dll
2012-12-08 18:51:12 ----A---- C:\Windows\SysWOW64\KernelBase.dll
2012-12-08 18:51:12 ----A---- C:\Windows\SysWOW64\kernel32.dll
2012-12-08 18:51:11 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2012-12-08 18:51:11 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2012-12-08 18:51:11 ----A---- C:\Windows\SysWOW64\wow32.dll
2012-12-08 18:51:11 ----A---- C:\Windows\SysWOW64\instnm.exe
2012-12-08 18:51:10 ----AH---- C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
2012-12-08 18:51:10 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
2012-12-08 18:51:10 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
2012-12-08 18:51:10 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2012-12-08 18:51:10 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2012-12-08 18:51:10 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2012-12-08 18:51:10 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2012-12-08 18:51:10 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2012-12-08 18:51:10 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
2012-12-08 18:51:10 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2012-12-08 18:51:10 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2012-12-08 18:51:10 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2012-12-08 18:51:10 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2012-12-08 18:51:10 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2012-12-08 18:51:10 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2012-12-08 18:51:10 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2012-12-08 18:51:10 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
2012-12-08 18:51:10 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2012-12-08 18:51:10 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2012-12-08 18:51:10 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
2012-12-08 18:51:10 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
2012-12-08 18:51:10 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2012-12-08 18:51:10 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
2012-12-08 18:51:10 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
2012-12-08 18:51:10 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
2012-12-08 18:51:10 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
2012-12-08 18:51:10 ----A---- C:\Windows\SysWOW64\user.exe
2012-12-08 18:50:55 ----A---- C:\Windows\SysWOW64\ntshrui.dll
2012-12-08 18:50:48 ----A---- C:\Windows\SysWOW64\upnp.dll
2012-12-08 18:50:47 ----A---- C:\Windows\SysWOW64\wscapi.dll
2012-12-08 18:50:47 ----A---- C:\Windows\SysWOW64\winhttp.dll
2012-12-08 18:50:47 ----A---- C:\Windows\SysWOW64\WebClnt.dll
2012-12-08 18:50:47 ----A---- C:\Windows\SysWOW64\slwga.dll
2012-12-08 18:50:47 ----A---- C:\Windows\SysWOW64\davclnt.dll
2012-12-08 18:50:44 ----A---- C:\Windows\SysWOW64\explorer.exe
2012-12-08 18:50:44 ----A---- C:\Windows\explorer.exe
2012-12-08 18:50:41 ----A---- C:\Windows\SysWOW64\secproc_isv.dll
2012-12-08 18:50:41 ----A---- C:\Windows\SysWOW64\secproc.dll
2012-12-08 18:50:40 ----A---- C:\Windows\SysWOW64\secproc_ssp_isv.dll
2012-12-08 18:50:40 ----A---- C:\Windows\SysWOW64\secproc_ssp.dll
2012-12-08 18:50:40 ----A---- C:\Windows\SysWOW64\RMActivate_ssp_isv.exe
2012-12-08 18:50:40 ----A---- C:\Windows\SysWOW64\RMActivate_ssp.exe
2012-12-08 18:50:40 ----A---- C:\Windows\SysWOW64\RMActivate_isv.exe
2012-12-08 18:50:40 ----A---- C:\Windows\SysWOW64\RMActivate.exe
2012-12-08 18:50:33 ----A---- C:\Windows\SysWOW64\d3d10level9.dll
2012-12-08 18:50:32 ----A---- C:\Windows\SysWOW64\xmllite.dll
2012-12-08 18:50:29 ----A---- C:\Windows\SysWOW64\win32spl.dll
2012-12-08 18:50:29 ----A---- C:\Windows\splwow64.exe
2012-12-08 18:50:22 ----A---- C:\Windows\SysWOW64\XpsPrint.dll
2012-12-08 18:49:40 ----A---- C:\Windows\SysWOW64\srclient.dll
2012-12-08 18:49:14 ----A---- C:\Windows\SysWOW64\msi.dll
2012-12-08 18:47:37 ----A---- C:\Windows\SysWOW64\prevhost.exe
2012-12-08 17:44:51 ----D---- C:\ProgramData\Orbit
2012-12-08 17:34:52 ----A---- C:\Windows\SysWOW64\msv1_0.dll
2012-12-08 17:18:47 ----A---- C:\Windows\SysWOW64\PresentationHostProxy.dll
2012-12-08 17:18:47 ----A---- C:\Windows\SysWOW64\PresentationHost.exe
2012-12-08 17:18:47 ----A---- C:\Windows\SysWOW64\netfxperf.dll
2012-12-08 17:18:47 ----A---- C:\Windows\SysWOW64\mscoree.dll
2012-12-08 17:18:47 ----A---- C:\Windows\SysWOW64\dfshim.dll
2012-12-08 17:17:23 ----D---- C:\Program Files (x86)\Far Cry 3
2012-12-08 17:14:02 ----A---- C:\Windows\SysWOW64\wininet.dll
2012-12-08 17:14:02 ----A---- C:\Windows\SysWOW64\urlmon.dll
2012-12-08 17:14:02 ----A---- C:\Windows\SysWOW64\url.dll
2012-12-08 17:14:02 ----A---- C:\Windows\SysWOW64\SetIEInstalledDate.exe
2012-12-08 17:14:02 ----A---- C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2012-12-08 17:14:02 ----A---- C:\Windows\SysWOW64\msrating.dll
2012-12-08 17:14:02 ----A---- C:\Windows\SysWOW64\msls31.dll
2012-12-08 17:14:02 ----A---- C:\Windows\SysWOW64\mshtmler.dll
2012-12-08 17:14:02 ----A---- C:\Windows\SysWOW64\msfeedssync.exe
2012-12-08 17:14:02 ----A---- C:\Windows\SysWOW64\msfeedsbs.dll
2012-12-08 17:14:02 ----A---- C:\Windows\SysWOW64\jsproxy.dll
2012-12-08 17:14:02 ----A---- C:\Windows\SysWOW64\jscript9.dll
2012-12-08 17:14:02 ----A---- C:\Windows\SysWOW64\jscript.dll
2012-12-08 17:14:02 ----A---- C:\Windows\SysWOW64\ieui.dll
2012-12-08 17:14:02 ----A---- C:\Windows\SysWOW64\iesysprep.dll
2012-12-08 17:14:02 ----A---- C:\Windows\SysWOW64\iesetup.dll
2012-12-08 17:14:02 ----A---- C:\Windows\SysWOW64\iertutil.dll
2012-12-08 17:14:02 ----A---- C:\Windows\SysWOW64\iernonce.dll
2012-12-08 17:14:02 ----A---- C:\Windows\SysWOW64\iepeers.dll
2012-12-08 17:14:02 ----A---- C:\Windows\SysWOW64\ieframe.dll
2012-12-08 17:14:02 ----A---- C:\Windows\SysWOW64\iedkcs32.dll
2012-12-08 17:14:02 ----A---- C:\Windows\SysWOW64\ieapfltr.dll
2012-12-08 17:14:02 ----A---- C:\Windows\SysWOW64\ieapfltr.dat
2012-12-08 17:14:02 ----A---- C:\Windows\SysWOW64\ieakeng.dll
2012-12-08 17:14:02 ----A---- C:\Windows\SysWOW64\IEAdvpack.dll
2012-12-08 17:14:02 ----A---- C:\Windows\SysWOW64\ie4uinit.exe
2012-12-08 17:14:02 ----A---- C:\Windows\SysWOW64\icardie.dll
2012-12-08 17:14:02 ----A---- C:\Windows\SysWOW64\dxtrans.dll
2012-12-08 17:14:02 ----A---- C:\Windows\SysWOW64\dxtmsft.dll
2012-12-08 17:14:01 ----A---- C:\Windows\SysWOW64\wextract.exe
2012-12-08 17:14:01 ----A---- C:\Windows\SysWOW64\webcheck.dll
2012-12-08 17:14:01 ----A---- C:\Windows\SysWOW64\vbscript.dll
2012-12-08 17:14:01 ----A---- C:\Windows\SysWOW64\pngfilt.dll
2012-12-08 17:14:01 ----A---- C:\Windows\SysWOW64\occache.dll
2012-12-08 17:14:01 ----A---- C:\Windows\SysWOW64\mshtmled.dll
2012-12-08 17:14:01 ----A---- C:\Windows\SysWOW64\mshtml.dll
2012-12-08 17:14:01 ----A---- C:\Windows\SysWOW64\mshta.exe
2012-12-08 17:14:01 ----A---- C:\Windows\SysWOW64\msfeeds.dll
2012-12-08 17:14:01 ----A---- C:\Windows\SysWOW64\licmgr10.dll
2012-12-08 17:14:01 ----A---- C:\Windows\SysWOW64\inseng.dll
2012-12-08 17:14:01 ----A---- C:\Windows\SysWOW64\imgutil.dll
2012-12-08 17:14:01 ----A---- C:\Windows\SysWOW64\iexpress.exe
2012-12-08 17:14:01 ----A---- C:\Windows\SysWOW64\ieUnatt.exe
2012-12-08 17:14:01 ----A---- C:\Windows\SysWOW64\ieakui.dll
2012-12-08 17:14:01 ----A---- C:\Windows\SysWOW64\ieaksie.dll
2012-12-08 17:14:01 ----A---- C:\Windows\SysWOW64\admparse.dll
2012-12-08 17:13:18 ----D---- C:\ProgramData\Electronic Arts
2012-12-08 17:13:18 ----D---- C:\ProgramData\EA Core
2012-12-08 17:12:34 ----A---- C:\Windows\SysWOW64\WMVDECOD.DLL
2012-12-08 17:12:32 ----A---- C:\Windows\SysWOW64\XpsRasterService.dll
2012-12-08 17:12:32 ----A---- C:\Windows\SysWOW64\ExplorerFrame.dll
2012-12-08 17:12:30 ----A---- C:\Windows\SysWOW64\mf.dll
2012-12-08 17:12:29 ----A---- C:\Windows\SysWOW64\mfreadwrite.dll
2012-12-08 17:08:50 ----D---- C:\Program Files (x86)\Euro Truck Simulator 2
2012-12-08 17:07:49 ----D---- C:\Users\Dávid\AppData\Roaming\WinRAR
2012-12-08 17:05:53 ----D---- C:\ProgramData\Solidshield
2012-12-08 17:01:14 ----A---- C:\Windows\SysWOW64\wmi.dll
2012-12-08 17:01:14 ----A---- C:\Windows\SysWOW64\imagehlp.dll
2012-12-08 16:58:17 ----A---- C:\Windows\SysWOW64\cabview.dll
2012-12-08 16:58:14 ----A---- C:\Windows\SysWOW64\tzres.dll
2012-12-08 16:57:29 ----A---- C:\Windows\SysWOW64\msvcrt.dll
2012-12-08 16:57:26 ----A---- C:\Windows\SysWOW64\CertEnroll.dll
2012-12-08 16:57:11 ----A---- C:\Windows\SysWOW64\shell32.dll
2012-12-08 16:57:07 ----A---- C:\Windows\SysWOW64\webio.dll
2012-12-08 16:56:59 ----A---- C:\Windows\SysWOW64\poqexec.exe
2012-12-08 16:56:56 ----A---- C:\Windows\SysWOW64\psisdecd.dll
2012-12-08 16:56:50 ----A---- C:\Windows\SysWOW64\DWrite.dll
2012-12-08 16:56:50 ----A---- C:\Windows\SysWOW64\d3d10warp.dll
2012-12-08 16:56:50 ----A---- C:\Windows\SysWOW64\d2d1.dll
2012-12-08 16:56:49 ----A---- C:\Windows\SysWOW64\d3d10_1core.dll
2012-12-08 16:56:49 ----A---- C:\Windows\SysWOW64\d3d10_1.dll
2012-12-08 16:56:49 ----A---- C:\Windows\SysWOW64\CPFilters.dll
2012-12-08 16:56:48 ----A---- C:\Windows\SysWOW64\sbe.dll
2012-12-08 16:56:39 ----A---- C:\Windows\SysWOW64\msxml6.dll
2012-12-08 16:56:39 ----A---- C:\Windows\SysWOW64\msxml3.dll
2012-12-08 16:56:37 ----A---- C:\Windows\SysWOW64\ntoskrnl.exe
2012-12-08 16:56:37 ----A---- C:\Windows\SysWOW64\ntkrnlpa.exe
2012-12-08 16:56:35 ----A---- C:\Windows\SysWOW64\sspicli.dll
2012-12-08 16:56:35 ----A---- C:\Windows\SysWOW64\schannel.dll
2012-12-08 16:56:35 ----A---- C:\Windows\SysWOW64\secur32.dll
2012-12-08 16:56:35 ----A---- C:\Windows\SysWOW64\ncrypt.dll
2012-12-08 16:56:34 ----A---- C:\Windows\SysWOW64\mfc40u.dll
2012-12-08 16:56:34 ----A---- C:\Windows\SysWOW64\mfc40.dll
2012-12-08 16:56:32 ----A---- C:\Windows\SysWOW64\taskschd.dll
2012-12-08 16:56:32 ----A---- C:\Windows\SysWOW64\taskeng.exe
2012-12-08 16:56:32 ----A---- C:\Windows\SysWOW64\taskcomp.dll
2012-12-08 16:56:32 ----A---- C:\Windows\SysWOW64\schtasks.exe
2012-12-08 16:56:28 ----A---- C:\Windows\SysWOW64\quartz.dll
2012-12-08 16:56:28 ----A---- C:\Windows\SysWOW64\qdvd.dll
2012-12-08 16:56:27 ----A---- C:\Windows\SysWOW64\rdpcore.dll
2012-12-08 16:56:21 ----A---- C:\Windows\SysWOW64\ole32.dll
2012-12-08 16:56:17 ----A---- C:\Windows\SysWOW64\mfc42u.dll
2012-12-08 16:56:17 ----A---- C:\Windows\SysWOW64\mfc42.dll
2012-12-08 16:56:08 ----A---- C:\Windows\SysWOW64\wmp.dll
2012-12-08 16:56:07 ----A---- C:\Windows\SysWOW64\wmploc.DLL
2012-12-08 16:55:59 ----A---- C:\Windows\SysWOW64\odbcjt32.dll
2012-12-08 16:55:59 ----A---- C:\Windows\SysWOW64\odbccu32.dll
2012-12-08 16:55:59 ----A---- C:\Windows\SysWOW64\odbccr32.dll
2012-12-08 16:55:59 ----A---- C:\Windows\SysWOW64\odbccp32.dll
2012-12-08 16:55:58 ----A---- C:\Windows\SysWOW64\odbctrac.dll
2012-12-08 16:55:55 ----A---- C:\Windows\SysWOW64\fontsub.dll
2012-12-08 16:55:55 ----A---- C:\Windows\SysWOW64\atmlib.dll
2012-12-08 16:55:55 ----A---- C:\Windows\SysWOW64\atmfd.dll
2012-12-08 16:55:54 ----A---- C:\Windows\SysWOW64\dnscacheugc.exe
2012-12-08 16:55:54 ----A---- C:\Windows\SysWOW64\dnsapi.dll
2012-12-08 16:55:51 ----A---- C:\Windows\SysWOW64\odbc32.dll
2012-12-08 16:55:48 ----A---- C:\Windows\SysWOW64\ntdll.dll
2012-12-08 16:55:32 ----A---- C:\Windows\SysWOW64\kerberos.dll
2012-12-08 16:55:31 ----A---- C:\Windows\SysWOW64\comctl32.dll
2012-12-08 16:55:29 ----A---- C:\Windows\SysWOW64\mstscax.dll
2012-12-08 16:55:29 ----A---- C:\Windows\SysWOW64\mstsc.exe
2012-12-08 16:55:25 ----A---- C:\Windows\SysWOW64\tsbyuv.dll
2012-12-08 16:55:25 ----A---- C:\Windows\SysWOW64\msyuv.dll
2012-12-08 16:55:25 ----A---- C:\Windows\SysWOW64\msvidc32.dll
2012-12-08 16:55:25 ----A---- C:\Windows\SysWOW64\msrle32.dll
2012-12-08 16:55:25 ----A---- C:\Windows\SysWOW64\mciavi32.dll
2012-12-08 16:55:25 ----A---- C:\Windows\SysWOW64\iyuv_32.dll
2012-12-08 16:55:25 ----A---- C:\Windows\SysWOW64\avifil32.dll
2012-12-08 16:55:21 ----A---- C:\Windows\SysWOW64\asycfilt.dll
2012-12-08 16:55:16 ----A---- C:\Windows\SysWOW64\StructuredQuery.dll
2012-12-08 16:55:13 ----A---- C:\Windows\SysWOW64\t2embed.dll
2012-12-08 16:55:09 ----A---- C:\Windows\SysWOW64\wmpmde.dll
2012-12-08 16:55:08 ----A---- C:\Windows\SysWOW64\rtutils.dll
2012-12-08 16:55:07 ----A---- C:\Windows\SysWOW64\wintrust.dll
2012-12-08 16:55:06 ----A---- C:\Windows\SysWOW64\drvinst.exe
2012-12-08 16:55:06 ----A---- C:\Windows\SysWOW64\devrtl.dll
2012-12-08 16:55:06 ----A---- C:\Windows\SysWOW64\devobj.dll
2012-12-08 16:55:06 ----A---- C:\Windows\SysWOW64\cfgmgr32.dll
2012-12-08 16:55:04 ----A---- C:\Windows\SysWOW64\iccvid.dll
2012-12-08 16:55:03 ----A---- C:\Windows\SysWOW64\EncDec.dll
2012-12-08 16:55:01 ----A---- C:\Windows\SysWOW64\netapi32.dll
2012-12-08 16:55:01 ----A---- C:\Windows\SysWOW64\browcli.dll
2012-12-08 16:54:59 ----A---- C:\Windows\SysWOW64\synceng.dll
2012-12-08 16:54:58 ----A---- C:\Windows\SysWOW64\oleaut32.dll
2012-12-08 16:54:58 ----A---- C:\Windows\SysWOW64\oleacc.dll
2012-12-08 16:54:57 ----A---- C:\Windows\SysWOW64\inetcomm.dll
2012-12-08 16:54:56 ----A---- C:\Windows\SysWOW64\msasn1.dll
2012-12-08 16:54:33 ----A---- C:\Windows\SysWOW64\sscore.dll
2012-12-08 16:51:14 ----D---- C:\Program Files (x86)\Mozilla Firefox
2012-12-08 16:48:45 ----D---- C:\eurotruckmoney
2012-12-08 16:40:48 ----D---- C:\Electronic Arts
2012-12-08 16:39:52 ----A---- C:\Windows\SysWOW64\cryptsvc.dll
2012-12-08 16:39:52 ----A---- C:\Windows\SysWOW64\cryptnet.dll
2012-12-08 16:39:52 ----A---- C:\Windows\SysWOW64\crypt32.dll
2012-12-08 16:39:39 ----A---- C:\Windows\SysWOW64\packager.dll
2012-12-04 15:20:23 ----A---- C:\Windows\game.ini
2012-12-04 15:16:25 ----D---- C:\Program Files (x86)\Activision
2012-12-03 19:24:08 ----D---- C:\Users\Dávid\AppData\Roaming\DAEMON Tools Pro
2012-12-03 19:23:47 ----D---- C:\ProgramData\DAEMON Tools Pro
2012-12-03 18:28:04 ----D---- C:\Program Files (x86)\Common Files\Adobe
2012-12-03 18:28:04 ----D---- C:\Program Files (x86)\Adobe
2012-12-03 18:27:20 ----D---- C:\ProgramData\Adobe
2012-12-02 15:14:17 ----D---- C:\Users\Dávid\AppData\Roaming\Theta
2012-11-28 17:48:20 ----A---- C:\Windows\SysWOW64\XAudio2_7.dll
2012-11-28 17:48:20 ----A---- C:\Windows\SysWOW64\XAPOFX1_5.dll
2012-11-28 17:48:20 ----A---- C:\Windows\SysWOW64\xactengine3_7.dll
2012-11-28 17:48:19 ----A---- C:\Windows\SysWOW64\D3DCompiler_43.dll
2012-11-28 17:48:18 ----A---- C:\Windows\SysWOW64\D3DX9_43.dll
2012-11-28 17:48:18 ----A---- C:\Windows\SysWOW64\d3dx11_43.dll
2012-11-28 17:48:18 ----A---- C:\Windows\SysWOW64\d3dx10_43.dll
2012-11-28 17:48:18 ----A---- C:\Windows\SysWOW64\d3dcsx_43.dll
2012-11-28 17:48:17 ----A---- C:\Windows\SysWOW64\XAudio2_6.dll
2012-11-28 17:48:17 ----A---- C:\Windows\SysWOW64\XAPOFX1_4.dll
2012-11-28 17:48:17 ----A---- C:\Windows\SysWOW64\xactengine3_6.dll
2012-11-28 17:48:17 ----A---- C:\Windows\SysWOW64\X3DAudio1_7.dll
2012-11-28 17:48:16 ----A---- C:\Windows\SysWOW64\XAudio2_5.dll
2012-11-28 17:48:15 ----A---- C:\Windows\SysWOW64\xactengine3_5.dll
2012-11-28 17:48:15 ----A---- C:\Windows\SysWOW64\D3DCompiler_42.dll
2012-11-28 17:48:13 ----A---- C:\Windows\SysWOW64\d3dx11_42.dll
2012-11-28 17:48:13 ----A---- C:\Windows\SysWOW64\d3dx10_42.dll
2012-11-28 17:48:13 ----A---- C:\Windows\SysWOW64\d3dcsx_42.dll
2012-11-28 17:48:12 ----A---- C:\Windows\SysWOW64\D3DX9_42.dll
2012-11-28 17:48:12 ----A---- C:\Windows\SysWOW64\d3dx10_41.dll
2012-11-28 17:48:12 ----A---- C:\Windows\SysWOW64\D3DCompiler_41.dll
2012-11-28 17:48:11 ----A---- C:\Windows\SysWOW64\D3DX9_41.dll
2012-11-28 17:48:10 ----A---- C:\Windows\SysWOW64\XAudio2_4.dll
2012-11-28 17:48:10 ----A---- C:\Windows\SysWOW64\XAPOFX1_3.dll
2012-11-28 17:48:09 ----A---- C:\Windows\SysWOW64\xactengine3_4.dll
2012-11-28 17:48:09 ----A---- C:\Windows\SysWOW64\X3DAudio1_6.dll
2012-11-28 17:48:09 ----A---- C:\Windows\SysWOW64\d3dx10_40.dll
2012-11-28 17:48:09 ----A---- C:\Windows\SysWOW64\D3DCompiler_40.dll
2012-11-28 17:48:08 ----A---- C:\Windows\SysWOW64\XAudio2_3.dll
2012-11-28 17:48:08 ----A---- C:\Windows\SysWOW64\XAPOFX1_2.dll
2012-11-28 17:48:08 ----A---- C:\Windows\SysWOW64\D3DX9_40.dll
2012-11-28 17:48:07 ----A---- C:\Windows\SysWOW64\xactengine3_3.dll
2012-11-28 17:48:07 ----A---- C:\Windows\SysWOW64\X3DAudio1_5.dll
2012-11-28 17:48:06 ----A---- C:\Windows\SysWOW64\XAudio2_2.dll
2012-11-28 17:48:06 ----A---- C:\Windows\SysWOW64\XAPOFX1_1.dll
2012-11-28 17:48:06 ----A---- C:\Windows\SysWOW64\xactengine3_2.dll
2012-11-28 17:48:05 ----A---- C:\Windows\SysWOW64\d3dx10_39.dll
2012-11-28 17:48:05 ----A---- C:\Windows\SysWOW64\D3DCompiler_39.dll
2012-11-28 17:48:04 ----A---- C:\Windows\SysWOW64\XAudio2_1.dll
2012-11-28 17:48:04 ----A---- C:\Windows\SysWOW64\XAPOFX1_0.dll
2012-11-28 17:48:04 ----A---- C:\Windows\SysWOW64\D3DX9_39.dll
2012-11-28 17:48:01 ----A---- C:\Windows\SysWOW64\xactengine3_1.dll
2012-11-28 17:48:00 ----A---- C:\Windows\SysWOW64\X3DAudio1_4.dll
2012-11-28 17:48:00 ----A---- C:\Windows\SysWOW64\d3dx10_38.dll
2012-11-28 17:48:00 ----A---- C:\Windows\SysWOW64\D3DCompiler_38.dll
2012-11-28 17:47:59 ----A---- C:\Windows\SysWOW64\XAudio2_0.dll
2012-11-28 17:47:59 ----A---- C:\Windows\SysWOW64\D3DX9_38.dll
2012-11-28 17:47:57 ----A---- C:\Windows\SysWOW64\xactengine3_0.dll
2012-11-28 17:47:56 ----A---- C:\Windows\SysWOW64\X3DAudio1_3.dll
2012-11-28 17:47:56 ----A---- C:\Windows\SysWOW64\d3dx10_37.dll
2012-11-28 17:47:56 ----A---- C:\Windows\SysWOW64\D3DCompiler_37.dll
2012-11-28 17:47:55 ----A---- C:\Windows\SysWOW64\xactengine2_10.dll
2012-11-28 17:47:55 ----A---- C:\Windows\SysWOW64\D3DX9_37.dll
2012-11-28 17:47:54 ----A---- C:\Windows\SysWOW64\d3dx10_36.dll
2012-11-28 17:47:54 ----A---- C:\Windows\SysWOW64\D3DCompiler_36.dll
2012-11-28 17:47:53 ----A---- C:\Windows\SysWOW64\d3dx9_36.dll
2012-11-28 17:47:52 ----A---- C:\Windows\SysWOW64\xactengine2_9.dll
2012-11-28 17:47:52 ----A---- C:\Windows\SysWOW64\d3dx10_35.dll
2012-11-28 17:47:52 ----A---- C:\Windows\SysWOW64\D3DCompiler_35.dll
2012-11-28 17:47:51 ----A---- C:\Windows\SysWOW64\d3dx9_35.dll
2012-11-28 17:47:50 ----A---- C:\Windows\SysWOW64\xactengine2_8.dll
2012-11-28 17:47:50 ----A---- C:\Windows\SysWOW64\X3DAudio1_2.dll
2012-11-28 17:47:50 ----A---- C:\Windows\SysWOW64\d3dx10_34.dll
2012-11-28 17:47:50 ----A---- C:\Windows\SysWOW64\D3DCompiler_34.dll
2012-11-28 17:47:49 ----A---- C:\Windows\SysWOW64\d3dx9_34.dll
2012-11-28 17:47:48 ----A---- C:\Windows\SysWOW64\xinput1_3.dll
2012-11-28 17:47:47 ----A---- C:\Windows\SysWOW64\xactengine2_7.dll
2012-11-28 17:47:47 ----A---- C:\Windows\SysWOW64\d3dx10_33.dll
2012-11-28 17:47:47 ----A---- C:\Windows\SysWOW64\D3DCompiler_33.dll
2012-11-28 17:47:46 ----A---- C:\Windows\SysWOW64\d3dx9_33.dll
2012-11-28 17:47:45 ----A---- C:\Windows\SysWOW64\xactengine2_6.dll
2012-11-28 17:47:44 ----A---- C:\Windows\SysWOW64\xactengine2_5.dll
2012-11-28 17:47:44 ----A---- C:\Windows\SysWOW64\d3dx10.dll
2012-11-28 17:47:43 ----A---- C:\Windows\SysWOW64\d3dx9_32.dll
2012-11-28 17:47:42 ----A---- C:\Windows\SysWOW64\xactengine2_4.dll
2012-11-28 17:47:42 ----A---- C:\Windows\SysWOW64\x3daudio1_1.dll
2012-11-28 17:47:42 ----A---- C:\Windows\SysWOW64\d3dx9_31.dll
2012-11-28 17:47:41 ----A---- C:\Windows\SysWOW64\xinput1_2.dll
2012-11-28 17:47:41 ----A---- C:\Windows\SysWOW64\xactengine2_3.dll
2012-11-28 17:47:40 ----A---- C:\Windows\SysWOW64\xactengine2_2.dll
2012-11-28 17:47:39 ----A---- C:\Windows\SysWOW64\xinput1_1.dll
2012-11-28 17:47:38 ----A---- C:\Windows\SysWOW64\xactengine2_1.dll
2012-11-28 17:47:35 ----A---- C:\Windows\SysWOW64\d3dx9_30.dll
2012-11-28 17:47:34 ----A---- C:\Windows\SysWOW64\xactengine2_0.dll
2012-11-28 17:47:34 ----A---- C:\Windows\SysWOW64\x3daudio1_0.dll
2012-11-28 17:47:34 ----A---- C:\Windows\SysWOW64\d3dx9_29.dll
2012-11-28 17:47:33 ----A---- C:\Windows\SysWOW64\d3dx9_28.dll
2012-11-28 17:47:33 ----A---- C:\Windows\SysWOW64\d3dx9_27.dll
2012-11-28 17:47:32 ----A---- C:\Windows\SysWOW64\d3dx9_26.dll
2012-11-28 17:47:29 ----A---- C:\Windows\SysWOW64\d3dx9_25.dll
2012-11-28 17:47:28 ----A---- C:\Windows\SysWOW64\d3dx9_24.dll
2012-11-28 17:45:21 ----HD---- C:\Windows\msdownld.tmp
2012-11-28 17:45:21 ----D---- C:\Windows\SysWOW64\directx
2012-11-28 17:33:42 ----D---- C:\Program Files (x86)\Assassins Creed III
2012-11-28 17:20:22 ----D---- C:\ProgramData\HP Photo Creations
2012-11-28 17:20:22 ----D---- C:\Program Files (x86)\HP Photo Creations
2012-11-28 17:19:56 ----D---- C:\Users\Dávid\AppData\Roaming\HpUpdate
2012-11-28 17:04:46 ----D---- C:\ProgramData\HP
2012-11-28 17:04:43 ----D---- C:\Program Files (x86)\HP
2012-11-28 17:03:05 ----D---- C:\Users\Dávid\AppData\Roaming\ESET
2012-11-28 16:58:59 ----A---- C:\ProgramData\Ament.ini
2012-11-28 16:57:19 ----D---- C:\ProgramData\ESET
2012-11-28 16:51:18 ----D---- C:\Program Files (x86)\Microsoft Synchronization Services
2012-11-28 16:51:18 ----D---- C:\Program Files (x86)\Common Files\DESIGNER
2012-11-28 16:50:52 ----D---- C:\Windows\PCHEALTH
2012-11-28 16:50:52 ----D---- C:\Program Files (x86)\Microsoft.NET
2012-11-28 16:50:52 ----D---- C:\Program Files (x86)\Microsoft Sync Framework
2012-11-28 16:50:52 ----D---- C:\Program Files (x86)\Microsoft SQL Server Compact Edition
2012-11-28 16:49:34 ----D---- C:\Users\Dávid\AppData\Roaming\Macromedia
2012-11-28 16:49:34 ----D---- C:\Users\Dávid\AppData\Roaming\Adobe
2012-11-28 16:49:23 ----D---- C:\Users\Dávid\AppData\Roaming\Mozilla
2012-11-28 16:49:14 ----A---- C:\Windows\SysWOW64\FlashPlayerApp.exe
2012-11-28 16:49:13 ----D---- C:\Windows\SysWOW64\Macromed
2012-11-28 16:48:09 ----D---- C:\ProgramData\Mozilla
2012-11-28 16:48:08 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2012-11-28 16:47:31 ----D---- C:\Program Files (x86)\Microsoft Visual Studio 8
2012-11-28 16:46:37 ----D---- C:\Program Files (x86)\Microsoft Analysis Services
2012-11-28 16:46:15 ----D---- C:\ProgramData\Microsoft Help
2012-11-28 16:46:15 ----D---- C:\Program Files (x86)\Microsoft Office
2012-11-28 16:41:50 ----A---- C:\Windows\GVTDrv64.sys
2012-11-28 16:41:28 ----A---- C:\Windows\gdrv.sys
2012-11-28 16:37:04 ----D---- C:\Program Files (x86)\AMD
2012-11-28 16:34:14 ----D---- C:\Program Files (x86)\Etron Technology
2012-11-28 16:34:00 ----R---- C:\Windows\SysWOW64\xRaidAPI.dll
2012-11-28 16:33:59 ----R---- C:\Windows\SysWOW64\XSrvSetup.exe
2012-11-28 16:33:59 ----R---- C:\Windows\SysWOW64\xRaidSetup.exe
2012-11-28 16:33:25 ----D---- C:\Windows\RaidTool
2012-11-28 16:29:30 ----D---- C:\Program Files (x86)\Dolby Home Theater v4
2012-11-28 16:29:08 ----D---- C:\Windows\SysWOW64\RTCOM
2012-11-28 16:28:47 ----A---- C:\Windows\SysWOW64\SFCOM.dll
2012-11-28 16:28:35 ----D---- C:\Program Files (x86)\Realtek
2012-11-28 16:28:34 ----HD---- C:\Program Files (x86)\Temp
2012-11-28 16:28:33 ----R---- C:\Windows\RtlExUpd.dll
2012-11-28 16:28:13 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2012-11-28 16:28:13 ----D---- C:\Program Files (x86)\Gigabyte
2012-11-28 16:27:55 ----D---- C:\Program Files (x86)\Common Files\InstallShield
2012-11-28 16:27:17 ----A---- C:\Windows\GSetup.ini
2012-11-28 16:26:38 ----D---- C:\Users\Dávid\AppData\Roaming\ATI
2012-11-28 16:26:38 ----D---- C:\ProgramData\ATI
2012-11-28 16:25:15 ----D---- C:\Program Files (x86)\AMD APP
2012-11-28 16:25:05 ----D---- C:\Program Files (x86)\Common Files\ATI Technologies
2012-11-28 16:23:58 ----D---- C:\ProgramData\AMD
2012-11-28 16:23:26 ----A---- C:\Windows\SysWOW64\atipblag.dat
2012-11-28 16:22:55 ----D---- C:\Program Files (x86)\ATI Technologies
2012-11-28 16:22:49 ----SHD---- C:\Windows\Installer
2012-11-28 16:19:52 ----D---- C:\Users\Dávid\AppData\Roaming\Identities
2012-11-28 16:19:36 ----SD---- C:\Users\Dávid\AppData\Roaming\Microsoft
2012-11-28 16:19:36 ----D---- C:\Users\Dávid\AppData\Roaming\Media Center Programs
2012-11-28 16:03:55 ----D---- C:\Windows\SoftwareDistribution
2012-11-28 16:01:22 ----D---- C:\Windows\Prefetch
2012-11-28 16:00:10 ----D---- C:\Windows\Panther
2012-11-28 15:59:57 ----RASH---- C:\BOOTSECT.BAK
2012-11-28 15:59:55 ----D---- C:\Boot
2012-11-26 17:37:28 ----D---- C:\Games
2012-11-26 14:46:18 ----D---- C:\Záloha Zuzana kľúč
2012-11-23 17:59:22 ----ASH---- C:\hiberfil.sys
2012-11-20 18:08:04 ----A---- C:\TESTFILE.TMP

======List of files/folders modified in the last 1 month======

2012-12-12 15:19:44 ----RD---- C:\Program Files (x86)
2012-12-12 15:13:16 ----D---- C:\Windows\SysWOW64
2012-12-11 20:15:56 ----SHD---- C:\System Volume Information
2012-12-11 19:57:46 ----D---- C:\Windows\Microsoft.NET
2012-12-11 19:57:45 ----RSD---- C:\Windows\assembly
2012-12-11 19:31:31 ----D---- C:\Windows\System32
2012-12-11 19:31:31 ----D---- C:\Windows\inf
2012-12-11 19:13:44 ----D---- C:\Windows
2012-12-11 14:25:11 ----D---- C:\Program Files (x86)\Common Files\System
2012-12-11 14:25:11 ----A---- C:\Windows\win.ini
2012-12-11 14:20:12 ----D---- C:\Windows\winsxs
2012-12-11 14:17:32 ----D---- C:\Windows\SysWOW64\en-US
2012-12-10 20:45:56 ----D---- C:\Program Files (x86)\Common Files\microsoft shared
2012-12-10 16:07:13 ----SD---- C:\ProgramData\Microsoft
2012-12-10 15:51:33 ----D---- C:\Program Files (x86)\Common Files
2012-12-09 19:59:49 ----A---- C:\Windows\system.ini
2012-12-09 19:56:50 ----D---- C:\Windows\Tasks
2012-12-09 19:56:50 ----D---- C:\ProgramData
2012-12-09 19:54:44 ----D---- C:\Windows\SysWOW64\drivers
2012-12-09 19:54:44 ----D---- C:\Windows\AppPatch
2012-12-09 11:46:15 ----D---- C:\Windows\ehome
2012-12-08 18:59:49 ----RSD---- C:\Windows\Fonts
2012-12-08 18:59:48 ----D---- C:\Windows\SysWOW64\sk-SK
2012-12-08 18:35:14 ----D---- C:\Program Files (x86)\Windows Mail
2012-12-08 18:35:05 ----D---- C:\Program Files (x86)\Internet Explorer
2012-12-08 18:35:03 ----D---- C:\Windows\SysWOW64\migration
2012-12-08 18:35:00 ----D---- C:\Windows\PolicyDefinitions
2012-12-08 18:34:41 ----D---- C:\Program Files (x86)\Windows Media Player
2012-12-08 17:15:59 ----D---- C:\Windows\Logs
2012-12-08 17:07:44 ----RD---- C:\Program Files
2012-12-08 17:05:24 ----D---- C:\Windows\debug
2012-12-03 17:51:21 ----RD---- C:\Users
2012-11-28 17:04:43 ----D---- C:\Windows\twain_32
2012-11-28 16:51:53 ----D---- C:\Windows\ShellNew
2012-11-28 16:51:44 ----D---- C:\Program Files (x86)\MSBuild
2012-11-28 16:49:34 ----D---- C:\Windows\Downloaded Program Files
2012-11-28 16:18:40 ----D---- C:\Windows\rescache
2012-11-28 16:18:10 ----D---- C:\Recovery
2012-11-28 16:01:43 ----D---- C:\Windows\CSC
2012-11-28 15:59:38 ----D---- C:\Windows\Setup

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 epfwwfp;epfwwfp; C:\Windows\system32\DRIVERS\epfwwfp.sys []
R0 JRAID;JRAID; C:\Windows\system32\DRIVERS\jraid.sys []
R0 pciide;pciide; C:\Windows\system32\DRIVERS\pciide.sys []
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys []
R0 speedfan;speedfan; C:\Windows\SysWOW64\speedfan.sys [2011-03-18 29592]
R1 AppleCharger;AppleCharger; C:\Windows\system32\DRIVERS\AppleCharger.sys []
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys []
R1 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys []
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys []
R1 EpfwLWF;Epfw NDIS LightWeight Filter; C:\Windows\system32\DRIVERS\EpfwLWF.sys []
R2 epfw;epfw; C:\Windows\system32\DRIVERS\epfw.sys []
R3 amdiox64;AMD IO Driver; C:\Windows\system32\DRIVERS\amdiox64.sys []
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys []
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys []
R3 AODDriver;AODDriver; \??\C:\Program Files (x86)\Gigabyte\ET6\amd64\AODDriver.sys [2010-03-12 52280]
R3 AtiHDAudioService;ATI Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdW76.sys []
R3 EtronHub3;Etron USB 3.0 Extensible Hub Driver; C:\Windows\System32\Drivers\EtronHub3.sys []
R3 EtronXHCI;Etron USB 3.0 Extensible Host Controller Driver; C:\Windows\System32\Drivers\EtronXHCI.sys []
R3 gdrv;gdrv; \??\C:\Windows\gdrv.sys [2012-12-12 25640]
R3 GVTDrv64;GVTDrv64; \??\C:\Windows\GVTDrv64.sys [2012-12-12 30528]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys []
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys []
R3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv; \??\C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesDriver64.sys [2012-09-19 11880]
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys []
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys []
S3 RTHDMIAzAudService;Service for HDMI; C:\Windows\system32\drivers\RtHDMIVX.sys []
S3 s3cap;s3cap; C:\Windows\system32\DRIVERS\vms3cap.sys []
S3 storvsc;storvsc; C:\Windows\system32\DRIVERS\storvsc.sys []
S3 usbscan;USB Scanner Driver; C:\Windows\system32\DRIVERS\usbscan.sys []
S3 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\DRIVERS\vmbus.sys []
S3 VMBusHID;VMBusHID; C:\Windows\system32\DRIVERS\VMBusHID.sys []

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-09-23 65192]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe []
R2 AMD FUEL Service;AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [2011-04-19 365568]
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe [2012-11-14 1329304]
R2 ES lite Service;ES lite Service for program management.; C:\Program Files (x86)\Gigabyte\EasySaver\ESSVR.EXE [2009-08-24 68136]
R2 JMB36X;JMB36X; C:\Windows\SysWOW64\XSrvSetup.exe [2010-09-07 72280]
R2 SearchIndexer;Search Indexer; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 TuneUp.UtilitiesSvc;TuneUp Utilities Service; C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesService64.exe [2012-11-02 2365792]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2012-07-17 2292480]
S3 AppleChargerSrv;AppleChargerSrv; C:\Windows\system32\AppleChargerSrv.exe []
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2010-03-18 44376]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files (x86)\Microsoft Office\Office14\GROOVE.EXE [2012-09-20 30785672]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2012-12-08 115168]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe []
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]

-----------------EOF-----------------







_________________
CPU:AMD FX8350 4GHz total 16Mb cache/COOLER: Arctic Freezer Pro 13/MB: GIGABYTE 990FXA-UD3/GPU: AMD Radeon 7950 (Gigabyte) @ 1100MHz/6GHz 3GB 384bit/RAM:8GB (2x4) Corsair CL9 XMS3 DDR3 1900MHz/PSU: Corsair CX750/CASE: Zalman Z11 Plus/HDD: 1TB WD 64MB cache/
NB1:Lenovo Z510 /Pentium,GT740m
NB2: Dell Inspiron 15 7537/ i5
MB: LG Optimus P970 Black
Odpovedať na tému [ Príspevkov: 40 ] Choď na stránku: 1, 2 ďalšia


Podobné témy

 Témy  Odpovede  Zobrazenia  Posledný príspevok 
V tomto fóre nie sú ďalšie neprečítané témy. Program prestal pracovat

v Ostatné programy

7

2566

25.05.2009 21:55

Caliente Zobrazenie posledných príspevkov

V tomto fóre nie sú ďalšie neprečítané témy. Program prestal pracovať

v Notebooky a netbooky

2

631

31.05.2014 18:31

wow Zobrazenie posledných príspevkov

V tomto fóre nie sú ďalšie neprečítané témy. Program prestal pracovať

v Operačné systémy Microsoft

1

520

07.05.2009 23:46

shiro Zobrazenie posledných príspevkov

V tomto fóre nie sú ďalšie neprečítané témy. Program dcgmncvphqte.exe prestal pracovať

v Operačné systémy Microsoft

2

383

13.02.2015 10:18

skanzen Zobrazenie posledných príspevkov

V tomto fóre nie sú ďalšie neprečítané témy. Windows7-program windows prieskumník prestal pracovať

v Operačné systémy Microsoft

6

2956

22.03.2012 13:40

segedin Zobrazenie posledných príspevkov

V tomto fóre nie sú ďalšie neprečítané témy. Program Windows Desktop Gadgets prestal pracovať.

[ Choď na stránku:Choď na stránku: 1, 2 ]

v Operačné systémy Microsoft

33

4615

31.01.2011 9:16

marpo22 Zobrazenie posledných príspevkov

V tomto fóre nie sú ďalšie neprečítané témy. program windows host process(Rundll32) prestal pracovat

v Operačné systémy Microsoft

0

1017

04.10.2009 16:33

miro19 Zobrazenie posledných príspevkov

V tomto fóre nie sú ďalšie neprečítané témy. VISTA: Program windows Host (Rundll32) prestal pracovať

v Operačné systémy Microsoft

5

1327

15.03.2009 12:58

Googler1 Zobrazenie posledných príspevkov

V tomto fóre nie sú ďalšie neprečítané témy. windows 7 - program COM Surrogate prestal pracovať

v Operačné systémy Microsoft

4

595

11.02.2015 21:30

jjjano1 Zobrazenie posledných príspevkov

V tomto fóre nie sú ďalšie neprečítané témy. windows 10 oznam program xInsIDE.exe prestal pracovať

v Operačné systémy Microsoft

2

433

05.08.2015 0:07

mamigos Zobrazenie posledných príspevkov

V tomto fóre nie sú ďalšie neprečítané témy. Program Quick Launch Buttons prestal pracovat na HP 6730s

v Notebooky a netbooky

0

1271

24.04.2009 11:44

maly1 Zobrazenie posledných príspevkov

Táto téma je zamknutá, nemôžete posielať nové príspevky alebo odpovedať na staršie. GTA V "Program prestal pracovať"

v Počítačové hry

8

927

08.10.2015 21:24

Miso122 Zobrazenie posledných príspevkov

V tomto fóre nie sú ďalšie neprečítané témy. Prestal spravne pracovat

v Ostatné

4

516

13.03.2010 19:28

Ma3xko_PN Zobrazenie posledných príspevkov

V tomto fóre nie sú ďalšie neprečítané témy. HDD prestal pracovať

v Ostatné zariadenia

1

596

08.10.2011 1:51

FocusX Zobrazenie posledných príspevkov

V tomto fóre nie sú ďalšie neprečítané témy. Driver prestal pracovat

v nVidia grafické karty

11

567

28.12.2017 8:13

tarezni Zobrazenie posledných príspevkov

V tomto fóre nie sú ďalšie neprečítané témy. Ovladač prestal pracovať

v ATI/AMD grafické karty

2

449

05.02.2013 21:52

FanatiKKK Zobrazenie posledných príspevkov


Nemôžete zakladať nové témy v tomto fóre
Nemôžete odpovedať na témy v tomto fóre
Nemôžete upravovať svoje príspevky v tomto fóre
Nemôžete mazať svoje príspevky v tomto fóre

Skočiť na:  
cron

Powered by phpBB Jarvis © 2005 - 2024 PCforum, webhosting by WebSupport, secured by GeoTrust, edited by JanoF
Ako väčšina webových stránok aj my používame cookies. Zotrvaním na webovej stránke súhlasíte, že ich môžeme používať.
Všeobecné podmienky, spracovanie osobných údajov a pravidlá fóra