08:47:05.0284 4400 [ 759a9eeb0fa9ed79da1fb7d4ef78866d ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
08:47:05.0300 4400 MsRPC - ok
08:47:05.0300 4400 [ 0eed230e37515a0eaee3c2e1bc97b288 ] mssmbios C:\Windows\system32\drivers\mssmbios.sys
08:47:05.0316 4400 mssmbios - ok
08:47:05.0316 4400 [ 2e66f9ecb30b4221a318c92ac2250779 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
08:47:05.0316 4400 MSTEE - ok
08:47:05.0347 4400 [ 7ea404308934e675bffde8edf0757bcd ] MTConfig C:\Windows\system32\drivers\MTConfig.sys
08:47:05.0347 4400 MTConfig - ok
08:47:05.0362 4400 [ f9a18612fd3526fe473c1bda678d61c8 ] Mup C:\Windows\system32\Drivers\mup.sys
08:47:05.0362 4400 Mup - ok
08:47:05.0362 4400 [ c009123b206c56854f4e88596035231d ] mwlPSDFilter C:\Windows\system32\DRIVERS\mwlPSDFilter.sys
08:47:05.0362 4400 mwlPSDFilter - ok
08:47:05.0378 4400 [ bf3739eeb9f008b1debac115089a53f8 ] mwlPSDNServ C:\Windows\system32\DRIVERS\mwlPSDNServ.sys
08:47:05.0378 4400 mwlPSDNServ - ok
08:47:05.0394 4400 [ 38dd143d95e7a01b86f219dda9c28779 ] mwlPSDVDisk C:\Windows\system32\DRIVERS\mwlPSDVDisk.sys
08:47:05.0394 4400 mwlPSDVDisk - ok
08:47:05.0425 4400 [ 582ac6d9873e31dfa28a4547270862dd ] napagent C:\Windows\system32\qagentRT.dll
08:47:05.0425 4400 napagent - ok
08:47:05.0472 4400 [ 1ea3749c4114db3e3161156ffffa6b33 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
08:47:05.0487 4400 NativeWifiP - ok
08:47:05.0518 4400 [ 79b47fd40d9a817e932f9d26fac0a81c ] NDIS C:\Windows\system32\drivers\ndis.sys
08:47:05.0518 4400 NDIS - ok
08:47:05.0534 4400 [ 9f9a1f53aad7da4d6fef5bb73ab811ac ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
08:47:05.0534 4400 NdisCap - ok
08:47:05.0550 4400 [ 30639c932d9fef22b31268fe25a1b6e5 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
08:47:05.0550 4400 NdisTapi - ok
08:47:05.0565 4400 [ 136185f9fb2cc61e573e676aa5402356 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
08:47:05.0565 4400 Ndisuio - ok
08:47:05.0581 4400 [ 53f7305169863f0a2bddc49e116c2e11 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
08:47:05.0581 4400 NdisWan - ok
08:47:05.0581 4400 [ 015c0d8e0e0421b4cfd48cffe2825879 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
08:47:05.0581 4400 NDProxy - ok
08:47:05.0581 4400 [ 86743d9f5d2b1048062b14b1d84501c4 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
08:47:05.0581 4400 NetBIOS - ok
08:47:05.0596 4400 [ 09594d1089c523423b32a4229263f068 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
08:47:05.0596 4400 NetBT - ok
08:47:05.0674 4400 [ c118a82cd78818c29ab228366ebf81c3 ] Netlogon C:\Windows\system32\lsass.exe
08:47:05.0674 4400 Netlogon - ok
08:47:05.0706 4400 [ 847d3ae376c0817161a14a82c8922a9e ] Netman C:\Windows\System32\netman.dll
08:47:05.0721 4400 Netman - ok
08:47:05.0784 4400 [ 5f28111c648f1e24f7dbc87cdeb091b8 ] netprofm C:\Windows\System32\netprofm.dll
08:47:05.0784 4400 netprofm - ok
08:47:05.0815 4400 [ 3e5a36127e201ddf663176b66828fafe ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe
08:47:05.0815 4400 NetTcpPortSharing - ok
08:47:05.0846 4400 [ 77889813be4d166cdab78ddba990da92 ] nfrd960 C:\Windows\system32\drivers\nfrd960.sys
08:47:05.0846 4400 nfrd960 - ok
08:47:05.0893 4400 [ 91b4e0273d2f6c24ef845f2b41311289 ] NisDrv C:\Windows\system32\DRIVERS\NisDrvWFP.sys
08:47:05.0893 4400 NisDrv - ok
08:47:05.0924 4400 [ 10a43829a9e606af3eef25a1c1665923 ] NisSrv c:\Program Files\Microsoft Security Client\NisSrv.exe
08:47:05.0940 4400 NisSrv - ok
08:47:06.0033 4400 [ 1ee99a89cc788ada662441d1e9830529 ] NlaSvc C:\Windows\System32\nlasvc.dll
08:47:06.0049 4400 NlaSvc - ok
08:47:06.0064 4400 [ 1e4c4ab5c9b8dd13179bbdc75a2a01f7 ] Npfs C:\Windows\system32\drivers\Npfs.sys
08:47:06.0064 4400 Npfs - ok
08:47:06.0080 4400 [ d54bfdf3e0c953f823b3d0bfe4732528 ] nsi C:\Windows\system32\nsisvc.dll
08:47:06.0080 4400 nsi - ok
08:47:06.0096 4400 [ e7f5ae18af4168178a642a9247c63001 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
08:47:06.0096 4400 nsiproxy - ok
08:47:06.0283 4400 [ a2f74975097f52a00745f9637451fdd8 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
08:47:06.0314 4400 Ntfs - ok
08:47:06.0454 4400 [ 1873214666f6f0a883742df91fbc48c9 ] NTI IScheduleSvc C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe
08:47:06.0454 4400 NTI IScheduleSvc - ok
08:47:06.0470 4400 [ ee3ba1024594d5d09e314f206b94069e ] NTIDrvr C:\Windows\system32\drivers\NTIDrvr.sys
08:47:06.0470 4400 NTIDrvr - ok
08:47:06.0486 4400 [ 9899284589f75fa8724ff3d16aed75c1 ] Null C:\Windows\system32\drivers\Null.sys
08:47:06.0486 4400 Null - ok
08:47:06.0548 4400 [ 0a92cb65770442ed0dc44834632f66ad ] nvraid C:\Windows\system32\drivers\nvraid.sys
08:47:06.0548 4400 nvraid - ok
08:47:06.0579 4400 [ dab0e87525c10052bf65f06152f37e4a ] nvstor C:\Windows\system32\drivers\nvstor.sys
08:47:06.0579 4400 nvstor - ok
08:47:06.0610 4400 [ 270d7cd42d6e3979f6dd0146650f0e05 ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
08:47:06.0626 4400 nv_agp - ok
08:47:06.0798 4400 [ 785f487a64950f3cb8e9f16253ba3b7b ] odserv C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
08:47:06.0798 4400 odserv - ok
08:47:06.0829 4400 [ 3589478e4b22ce21b41fa1bfc0b8b8a0 ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys
08:47:06.0829 4400 ohci1394 - ok
08:47:06.0891 4400 [ 5a432a042dae460abe7199b758e8606c ] ose C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
08:47:06.0891 4400 ose - ok
08:47:06.0954 4400 [ 3eac4455472cc2c97107b5291e0dcafe ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
08:47:06.0954 4400 p2pimsvc - ok
08:47:06.0985 4400 [ 927463ecb02179f88e4b9a17568c63c3 ] p2psvc C:\Windows\system32\p2psvc.dll
08:47:07.0000 4400 p2psvc - ok
08:47:07.0016 4400 [ 0086431c29c35be1dbc43f52cc273887 ] Parport C:\Windows\system32\drivers\parport.sys
08:47:07.0032 4400 Parport - ok
08:47:07.0047 4400 [ e9766131eeade40a27dc27d2d68fba9c ] partmgr C:\Windows\system32\drivers\partmgr.sys
08:47:07.0047 4400 partmgr - ok
08:47:07.0063 4400 [ 3aeaa8b561e63452c655dc0584922257 ] PcaSvc C:\Windows\System32\pcasvc.dll
08:47:07.0063 4400 PcaSvc - ok
08:47:07.0141 4400 [ 94575c0571d1462a0f70bde6bd6ee6b3 ] pci C:\Windows\system32\drivers\pci.sys
08:47:07.0141 4400 pci - ok
08:47:07.0156 4400 [ b5b8b5ef2e5cb34df8dcf8831e3534fa ] pciide C:\Windows\system32\drivers\pciide.sys
08:47:07.0172 4400 pciide - ok
08:47:07.0219 4400 [ b2e81d4e87ce48589f98cb8c05b01f2f ] pcmcia C:\Windows\system32\drivers\pcmcia.sys
08:47:07.0219 4400 pcmcia - ok
08:47:07.0234 4400 [ d6b9c2e1a11a3a4b26a182ffef18f603 ] pcw C:\Windows\system32\drivers\pcw.sys
08:47:07.0234 4400 pcw - ok
08:47:07.0297 4400 [ 68769c3356b3be5d1c732c97b9a80d6e ] PEAUTH C:\Windows\system32\drivers\peauth.sys
08:47:07.0297 4400 PEAUTH - ok
08:47:07.0578 4400 [ e495e408c93141e8fc72dc0c6046ddfa ] PerfHost C:\Windows\SysWow64\perfhost.exe
08:47:07.0578 4400 PerfHost - ok
08:47:07.0687 4400 [ c7cf6a6e137463219e1259e3f0f0dd6c ] pla C:\Windows\system32\pla.dll
08:47:07.0734 4400 pla - ok
08:47:07.0796 4400 [ 25fbdef06c4d92815b353f6e792c8129 ] PlugPlay C:\Windows\system32\umpnpmgr.dll
08:47:07.0812 4400 PlugPlay - ok
08:47:07.0905 4400 [ 7195581cec9bb7d12abe54036acc2e38 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll
08:47:07.0905 4400 PNRPAutoReg - ok
08:47:07.0952 4400 [ 3eac4455472cc2c97107b5291e0dcafe ] PNRPsvc C:\Windows\system32\pnrpsvc.dll
08:47:07.0952 4400 PNRPsvc - ok
08:47:08.0077 4400 [ 4f15d75adf6156bf56eced6d4a55c389 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
08:47:08.0077 4400 PolicyAgent - ok
08:47:08.0186 4400 [ 6ba9d927dded70bd1a9caded45f8b184 ] Power C:\Windows\system32\umpo.dll
08:47:08.0202 4400 Power - ok
08:47:08.0264 4400 [ f92a2c41117a11a00be01ca01a7fcde9 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
08:47:08.0264 4400 PptpMiniport - ok
08:47:08.0280 4400 [ 0d922e23c041efb1c3fac2a6f943c9bf ] Processor C:\Windows\system32\drivers\processr.sys
08:47:08.0280 4400 Processor - ok
08:47:08.0358 4400 [ 53e83f1f6cf9d62f32801cf66d8352a8 ] ProfSvc C:\Windows\system32\profsvc.dll
08:47:08.0358 4400 ProfSvc - ok
08:47:08.0373 4400 [ c118a82cd78818c29ab228366ebf81c3 ] ProtectedStorage C:\Windows\system32\lsass.exe
08:47:08.0389 4400 ProtectedStorage - ok
08:47:08.0404 4400 [ 0557cf5a2556bd58e26384169d72438d ] Psched C:\Windows\system32\DRIVERS\pacer.sys
08:47:08.0420 4400 Psched - ok
08:47:08.0529 4400 [ a53a15a11ebfd21077463ee2c7afeef0 ] ql2300 C:\Windows\system32\drivers\ql2300.sys
08:47:08.0545 4400 ql2300 - ok
08:47:08.0576 4400 [ 4f6d12b51de1aaeff7dc58c4d75423c8 ] ql40xx C:\Windows\system32\drivers\ql40xx.sys
08:47:08.0576 4400 ql40xx - ok
08:47:08.0654 4400 [ 906191634e99aea92c4816150bda3732 ] QWAVE C:\Windows\system32\qwave.dll
08:47:08.0654 4400 QWAVE - ok
08:47:08.0670 4400 [ 76707bb36430888d9ce9d705398adb6c ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
08:47:08.0670 4400 QWAVEdrv - ok
08:47:08.0670 4400 [ 5a0da8ad5762fa2d91678a8a01311704 ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
08:47:08.0670 4400 RasAcd - ok
08:47:08.0763 4400 [ 7ecff9b22276b73f43a99a15a6094e90 ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys
08:47:08.0763 4400 RasAgileVpn - ok
08:47:08.0794 4400 [ 8f26510c5383b8dbe976de1cd00fc8c7 ] RasAuto C:\Windows\System32\rasauto.dll
08:47:08.0794 4400 RasAuto - ok
08:47:08.0841 4400 [ 471815800ae33e6f1c32fb1b97c490ca ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
08:47:08.0841 4400 Rasl2tp - ok
08:47:08.0857 4400 [ ee867a0870fc9e4972ba9eaad35651e2 ] RasMan C:\Windows\System32\rasmans.dll
08:47:08.0872 4400 RasMan - ok
08:47:08.0872 4400 [ 855c9b1cd4756c5e9a2aa58a15f58c25 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
08:47:08.0872 4400 RasPppoe - ok
08:47:08.0888 4400 [ e8b1e447b008d07ff47d016c2b0eeecb ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
08:47:08.0888 4400 RasSstp - ok
08:47:08.0904 4400 [ 77f665941019a1594d887a74f301fa2f ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
08:47:08.0904 4400 rdbss - ok
08:47:08.0950 4400 [ 302da2a0539f2cf54d7c6cc30c1f2d8d ] rdpbus C:\Windows\system32\drivers\rdpbus.sys
08:47:08.0950 4400 rdpbus - ok
08:47:08.0966 4400 [ cea6cc257fc9b7715f1c2b4849286d24 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
08:47:08.0966 4400 RDPCDD - ok
08:47:08.0982 4400 [ bb5971a4f00659529a5c44831af22365 ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
08:47:08.0982 4400 RDPENCDD - ok
08:47:08.0997 4400 [ 216f3fa57533d98e1f74ded70113177a ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys
08:47:08.0997 4400 RDPREFMP - ok
08:47:09.0091 4400 [ e61608aa35e98999af9aaeeea6114b0a ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
08:47:09.0091 4400 RDPWD - ok
08:47:09.0106 4400 [ 34ed295fa0121c241bfef24764fc4520 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys
08:47:09.0106 4400 rdyboost - ok
08:47:09.0169 4400 [ 254fb7a22d74e5511c73a3f6d802f192 ] RemoteAccess C:\Windows\System32\mprdim.dll
08:47:09.0169 4400 RemoteAccess - ok
08:47:09.0200 4400 [ e4d94f24081440b5fc5aa556c7c62702 ] RemoteRegistry C:\Windows\system32\regsvc.dll
08:47:09.0216 4400 RemoteRegistry - ok
08:47:09.0216 4400 [ e4dc58cf7b3ea515ae917ff0d402a7bb ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll
08:47:09.0216 4400 RpcEptMapper - ok
08:47:09.0247 4400 [ d5ba242d4cf8e384db90e6a8ed850b8c ] RpcLocator C:\Windows\system32\locator.exe
08:47:09.0262 4400 RpcLocator - ok
08:47:09.0278 4400 [ 5c627d1b1138676c0a7ab2c2c190d123 ] RpcSs C:\Windows\system32\rpcss.dll
08:47:09.0294 4400 RpcSs - ok
08:47:09.0372 4400 [ ddc86e4f8e7456261e637e3552e804ff ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
08:47:09.0372 4400 rspndr - ok
08:47:09.0418 4400 [ 0e3dcf76f11dc431b088a2dfd7265cda ] RSUSBSTOR C:\Windows\System32\Drivers\RtsUStor.sys
08:47:09.0418 4400 RSUSBSTOR - ok
08:47:09.0450 4400 [ c118a82cd78818c29ab228366ebf81c3 ] SamSs C:\Windows\system32\lsass.exe
08:47:09.0465 4400 SamSs - ok
08:47:09.0481 4400 [ ac03af3329579fffb455aa2daabbe22b ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
08:47:09.0481 4400 sbp2port - ok
08:47:09.0559 4400 [ 9b7395789e3791a3b6d000fe6f8b131e ] SCardSvr C:\Windows\System32\SCardSvr.dll
08:47:09.0559 4400 SCardSvr - ok
08:47:09.0590 4400 [ 253f38d0d7074c02ff8deb9836c97d2b ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys
08:47:09.0590 4400 scfilter - ok
08:47:09.0637 4400 [ 262f6592c3299c005fd6bec90fc4463a ] Schedule C:\Windows\system32\schedsvc.dll
08:47:09.0668 4400 Schedule - ok
08:47:09.0730 4400 [ f17d1d393bbc69c5322fbfafaca28c7f ] SCPolicySvc C:\Windows\System32\certprop.dll
08:47:09.0730 4400 SCPolicySvc - ok
08:47:09.0746 4400 [ 6ea4234dc55346e0709560fe7c2c1972 ] SDRSVC C:\Windows\System32\SDRSVC.dll
08:47:09.0746 4400 SDRSVC - ok
08:47:09.0777 4400 [ 3ea8a16169c26afbeb544e0e48421186 ] secdrv C:\Windows\system32\drivers\secdrv.sys
08:47:09.0777 4400 secdrv - ok
08:47:09.0793 4400 [ bc617a4e1b4fa8df523a061739a0bd87 ] seclogon C:\Windows\system32\seclogon.dll
08:47:09.0793 4400 seclogon - ok
08:47:09.0808 4400 [ c32ab8fa018ef34c0f113bd501436d21 ] SENS C:\Windows\System32\sens.dll
08:47:09.0808 4400 SENS - ok
08:47:09.0824 4400 [ 0336cffafaab87a11541f1cf1594b2b2 ] SensrSvc C:\Windows\system32\sensrsvc.dll
08:47:09.0840 4400 SensrSvc - ok
08:47:09.0855 4400 [ cb624c0035412af0debec78c41f5ca1b ] Serenum C:\Windows\system32\drivers\serenum.sys
08:47:09.0871 4400 Serenum - ok
08:47:09.0886 4400 [ c1d8e28b2c2adfaec4ba89e9fda69bd6 ] Serial C:\Windows\system32\drivers\serial.sys
08:47:09.0886 4400 Serial - ok
08:47:09.0902 4400 [ 1c545a7d0691cc4a027396535691c3e3 ] sermouse C:\Windows\system32\drivers\sermouse.sys
08:47:09.0902 4400 sermouse - ok
08:47:09.0980 4400 [ 0b6231bf38174a1628c4ac812cc75804 ] SessionEnv C:\Windows\system32\sessenv.dll
08:47:09.0980 4400 SessionEnv - ok
08:47:09.0996 4400 [ a554811bcd09279536440c964ae35bbf ] sffdisk C:\Windows\system32\drivers\sffdisk.sys
08:47:09.0996 4400 sffdisk - ok
08:47:09.0996 4400 [ ff414f0baefeba59bc6c04b3db0b87bf ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys
08:47:09.0996 4400 sffp_mmc - ok
08:47:10.0011 4400 [ dd85b78243a19b59f0637dcf284da63c ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys
08:47:10.0011 4400 sffp_sd - ok
08:47:10.0011 4400 [ a9d601643a1647211a1ee2ec4e433ff4 ] sfloppy C:\Windows\system32\drivers\sfloppy.sys
08:47:10.0011 4400 sfloppy - ok
08:47:10.0074 4400 [ b95f6501a2f8b2e78c697fec401970ce ] SharedAccess C:\Windows\System32\ipnathlp.dll
08:47:10.0089 4400 SharedAccess - ok
08:47:10.0105 4400 [ aaf932b4011d14052955d4b212a4da8d ] ShellHWDetection C:\Windows\System32\shsvcs.dll
08:47:10.0105 4400 ShellHWDetection - ok
08:47:10.0120 4400 [ 843caf1e5fde1ffd5ff768f23a51e2e1 ] SiSRaid2 C:\Windows\system32\drivers\SiSRaid2.sys
08:47:10.0120 4400 SiSRaid2 - ok
08:47:10.0120 4400 [ 6a6c106d42e9ffff8b9fcb4f754f6da4 ] SiSRaid4 C:\Windows\system32\drivers\sisraid4.sys
08:47:10.0136 4400 SiSRaid4 - ok
08:47:10.0198 4400 [ ddaa5f4a6b958fc313ebd02dd925752f ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe
08:47:10.0198 4400 SkypeUpdate - ok
08:47:10.0214 4400 [ 548260a7b8654e024dc30bf8a7c5baa4 ] Smb C:\Windows\system32\DRIVERS\smb.sys
08:47:10.0214 4400 Smb - ok
08:47:10.0230 4400 [ 6313f223e817cc09aa41811daa7f541d ] SNMPTRAP C:\Windows\System32\snmptrap.exe
08:47:10.0245 4400 SNMPTRAP - ok
08:47:10.0261 4400 [ b9e31e5cacdfe584f34f730a677803f9 ] spldr C:\Windows\system32\drivers\spldr.sys
08:47:10.0261 4400 spldr - ok
08:47:10.0370 4400 [ b96c17b5dc1424d56eea3a99e97428cd ] Spooler C:\Windows\System32\spoolsv.exe
08:47:10.0386 4400 Spooler - ok
08:47:10.0620 4400 [ e17e0188bb90fae42d83e98707efa59c ] sppsvc C:\Windows\system32\sppsvc.exe
08:47:10.0698 4400 sppsvc - ok
08:47:10.0713 4400 [ 93d7d61317f3d4bc4f4e9f8a96a7de45 ] sppuinotify C:\Windows\system32\sppuinotify.dll
08:47:10.0713 4400 sppuinotify - ok
08:47:10.0822 4400 [ 441fba48bff01fdb9d5969ebc1838f0b ] srv C:\Windows\system32\DRIVERS\srv.sys
08:47:10.0822 4400 srv - ok
08:47:11.0025 4400 [ b4adebbf5e3677cce9651e0f01f7cc28 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
08:47:11.0025 4400 srv2 - ok
08:47:11.0088 4400 [ 27e461f0be5bff5fc737328f749538c3 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
08:47:11.0103 4400 srvnet - ok
08:47:11.0181 4400 [ 51b52fbd583cde8aa9ba62b8b4298f33 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
08:47:11.0181 4400 SSDPSRV - ok
08:47:11.0197 4400 [ ab7aebf58dad8daab7a6c45e6a8885cb ] SstpSvc C:\Windows\system32\sstpsvc.dll
08:47:11.0197 4400 SstpSvc - ok
08:47:11.0228 4400 [ f3817967ed533d08327dc73bc4d5542a ] stexstor C:\Windows\system32\drivers\stexstor.sys
08:47:11.0228 4400 stexstor - ok
08:47:11.0275 4400 [ 8dd52e8e6128f4b2da92ce27402871c1 ] stisvc C:\Windows\System32\wiaservc.dll
08:47:11.0290 4400 stisvc - ok
08:47:11.0322 4400 [ d01ec09b6711a5f8e7e6564a4d0fbc90 ] swenum C:\Windows\system32\drivers\swenum.sys
08:47:11.0322 4400 swenum - ok
08:47:11.0337 4400 [ e08e46fdd841b7184194011ca1955a0b ] swprv C:\Windows\System32\swprv.dll
08:47:11.0337 4400 swprv - ok
08:47:11.0400 4400 [ bf9ccc0bf39b418c8d0ae8b05cf95b7d ] SysMain C:\Windows\system32\sysmain.dll
08:47:11.0493 4400 SysMain - ok
08:47:11.0493 4400 [ e3c61fd7b7c2557e1f1b0b4cec713585 ] TabletInputService C:\Windows\System32\TabSvc.dll
08:47:11.0493 4400 TabletInputService - ok
08:47:11.0509 4400 [ 40f0849f65d13ee87b9a9ae3c1dd6823 ] TapiSrv C:\Windows\System32\tapisrv.dll
08:47:11.0524 4400 TapiSrv - ok
08:47:11.0540 4400 [ 1be03ac720f4d302ea01d40f588162f6 ] TBS C:\Windows\System32\tbssvc.dll
08:47:11.0540 4400 TBS - ok
08:47:11.0914 4400 [ acb82bda8f46c84f465c1afa517dc4b9 ] Tcpip C:\Windows\system32\drivers\tcpip.sys
08:47:11.0946 4400 Tcpip - ok
08:47:12.0024 4400 [ acb82bda8f46c84f465c1afa517dc4b9 ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys
08:47:12.0039 4400 TCPIP6 - ok
08:47:12.0117 4400 [ df687e3d8836bfb04fcc0615bf15a519 ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
08:47:12.0117 4400 tcpipreg - ok
08:47:12.0148 4400 [ 3371d21011695b16333a3934340c4e7c ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
08:47:12.0148 4400 TDPIPE - ok
08:47:12.0211 4400 [ 51c5eceb1cdee2468a1748be550cfbc8 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
08:47:12.0211 4400 TDTCP - ok
08:47:12.0226 4400 [ ddad5a7ab24d8b65f8d724f5c20fd806 ] tdx C:\Windows\system32\DRIVERS\tdx.sys
08:47:12.0226 4400 tdx - ok
08:47:12.0226 4400 [ 561e7e1f06895d78de991e01dd0fb6e5 ] TermDD C:\Windows\system32\drivers\termdd.sys
08:47:12.0242 4400 TermDD - ok
08:47:12.0445 4400 [ 2e648163254233755035b46dd7b89123 ] TermService C:\Windows\System32\termsrv.dll
08:47:12.0460 4400 TermService - ok
08:47:12.0460 4400 [ f0344071948d1a1fa732231785a0664c ] Themes C:\Windows\system32\themeservice.dll
08:47:12.0476 4400 Themes - ok
08:47:12.0492 4400 [ e40e80d0304a73e8d269f7141d77250b ] THREADORDER C:\Windows\system32\mmcss.dll
08:47:12.0492 4400 THREADORDER - ok
08:47:12.0523 4400 [ 7e7afd841694f6ac397e99d75cead49d ] TrkWks C:\Windows\System32\trkwks.dll
08:47:12.0523 4400 TrkWks - ok
08:47:12.0726 4400 [ 773212b2aaa24c1e31f10246b15b276c ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
08:47:12.0726 4400 TrustedInstaller - ok
08:47:12.0741 4400 [ ce18b2cdfc837c99e5fae9ca6cba5d30 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
08:47:12.0741 4400 tssecsrv - ok
08:47:12.0804 4400 [ d11c783e3ef9a3c52c0ebe83cc5000e9 ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys
08:47:12.0804 4400 TsUsbFlt - ok
08:47:12.0804 4400 [ 9cc2ccae8a84820eaecb886d477cbcb8 ] TsUsbGD C:\Windows\system32\drivers\TsUsbGD.sys
08:47:12.0804 4400 TsUsbGD - ok
08:47:12.0835 4400 [ 3566a8daafa27af944f5d705eaa64894 ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
08:47:12.0835 4400 tunnel - ok
08:47:12.0850 4400 [ b4dd609bd7e282bfc683cec7eaaaad67 ] uagp35 C:\Windows\system32\drivers\uagp35.sys
08:47:12.0850 4400 uagp35 - ok
08:47:12.0866 4400 [ a17d5e1a6df4eab0a480f2c490de4c9d ] UBHelper C:\Windows\system32\drivers\UBHelper.sys
08:47:12.0866 4400 UBHelper - ok
08:47:12.0882 4400 [ ff4232a1a64012baa1fd97c7b67df593 ] udfs C:\Windows\system32\DRIVERS\udfs.sys
08:47:12.0882 4400 udfs - ok
08:47:13.0006 4400 [ 3cbdec8d06b9968aba702eba076364a1 ] UI0Detect C:\Windows\system32\UI0Detect.exe
08:47:13.0006 4400 UI0Detect - ok
08:47:13.0084 4400 [ 4bfe1bc28391222894cbf1e7d0e42320 ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys
08:47:13.0084 4400 uliagpkx - ok
08:47:13.0100 4400 [ dc54a574663a895c8763af0fa1ff7561 ] umbus C:\Windows\system32\DRIVERS\umbus.sys
08:47:13.0100 4400 umbus - ok
08:47:13.0116 4400 [ b2e8e8cb557b156da5493bbddcc1474d ] UmPass C:\Windows\system32\drivers\umpass.sys
08:47:13.0116 4400 UmPass - ok
08:47:13.0646 4400 [ 7466809e6da561d60c2f1ce8ede3c73f ] UNS C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
08:47:13.0693 4400 UNS - ok
08:47:13.0849 4400 [ d47ec6a8e81633dd18d2436b19baf6de ] upnphost C:\Windows\System32\upnphost.dll
08:47:13.0849 4400 upnphost - ok
08:47:13.0911 4400 [ 6f1a3157a1c89435352ceb543cdb359c ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys
08:47:13.0927 4400 usbccgp - ok
08:47:13.0958 4400 [ af0892a803fdda7492f595368e3b68e7 ] usbcir C:\Windows\system32\drivers\usbcir.sys
08:47:13.0958 4400 usbcir - ok
08:47:13.0974 4400 [ c025055fe7b87701eb042095df1a2d7b ] usbehci C:\Windows\system32\drivers\usbehci.sys
08:47:13.0974 4400 usbehci - ok
08:47:14.0005 4400 [ 287c6c9410b111b68b52ca298f7b8c24 ] usbhub C:\Windows\system32\drivers\usbhub.sys
08:47:14.0005 4400 usbhub - ok
08:47:14.0036 4400 [ 9840fc418b4cbd632d3d0a667a725c31 ] usbohci C:\Windows\system32\drivers\usbohci.sys
08:47:14.0036 4400 usbohci - ok
08:47:14.0083 4400 [ 73188f58fb384e75c4063d29413cee3d ] usbprint C:\Windows\system32\drivers\usbprint.sys
08:47:14.0083 4400 usbprint - ok
08:47:14.0114 4400 [ fed648b01349a3c8395a5169db5fb7d6 ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS
08:47:14.0114 4400 USBSTOR - ok
08:47:14.0145 4400 [ 62069a34518bcf9c1fd9e74b3f6db7cd ] usbuhci C:\Windows\system32\drivers\usbuhci.sys
08:47:14.0145 4400 usbuhci - ok
08:47:14.0161 4400 [ 454800c2bc7f3927ce030141ee4f4c50 ] usbvideo C:\Windows\system32\Drivers\usbvideo.sys
08:47:14.0161 4400 usbvideo - ok
08:47:14.0208 4400 [ 70d05ee263568a742d14e1876df80532 ] usb_rndisx C:\Windows\system32\DRIVERS\usb8023x.sys
08:47:14.0208 4400 usb_rndisx - ok
08:47:14.0239 4400 [ edbb23cbcf2cdf727d64ff9b51a6070e ] UxSms C:\Windows\System32\uxsms.dll
08:47:14.0254 4400 UxSms - ok
08:47:14.0270 4400 [ c118a82cd78818c29ab228366ebf81c3 ] VaultSvc C:\Windows\system32\lsass.exe
08:47:14.0270 4400 VaultSvc - ok
08:47:14.0286 4400 [ c5c876ccfc083ff3b128f933823e87bd ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys
08:47:14.0286 4400 vdrvroot - ok
08:47:14.0332 4400 [ 8d6b481601d01a456e75c3210f1830be ] vds C:\Windows\System32\vds.exe
08:47:14.0332 4400 vds - ok
08:47:14.0364 4400 [ da4da3f5e02943c2dc8c6ed875de68dd ] vga C:\Windows\system32\DRIVERS\vgapnp.sys
08:47:14.0364 4400 vga - ok
08:47:14.0410 4400 [ 53e92a310193cb3c03bea963de7d9cfc ] VgaSave C:\Windows\System32\drivers\vga.sys
08:47:14.0410 4400 VgaSave - ok
08:47:14.0410 4400 [ 2ce2df28c83aeaf30084e1b1eb253cbb ] vhdmp C:\Windows\system32\drivers\vhdmp.sys
08:47:14.0410 4400 vhdmp - ok
08:47:14.0426 4400 [ e5689d93ffe4e5d66c0178761240dd54 ] viaide C:\Windows\system32\drivers\viaide.sys
08:47:14.0426 4400 viaide - ok
08:47:14.0442 4400 [ d2aafd421940f640b407aefaaebd91b0 ] volmgr C:\Windows\system32\drivers\volmgr.sys
08:47:14.0442 4400 volmgr - ok
08:47:14.0457 4400 [ a255814907c89be58b79ef2f189b843b ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
08:47:14.0457 4400 volmgrx - ok
08:47:14.0473 4400 [ 0d08d2f3b3ff84e433346669b5e0f639 ] volsnap C:\Windows\system32\drivers\volsnap.sys
08:47:14.0473 4400 volsnap - ok
08:47:14.0644 4400 [ 5e2016ea6ebaca03c04feac5f330d997 ] vsmraid C:\Windows\system32\drivers\vsmraid.sys
08:47:14.0644 4400 vsmraid - ok
08:47:15.0144 4400 [ b60ba0bc31b0cb414593e169f6f21cc2 ] VSS C:\Windows\system32\vssvc.exe
08:47:15.0190 4400 VSS - ok
08:47:15.0237 4400 [ 36d4720b72b5c5d9cb2b9c29e9df67a1 ] vwifibus C:\Windows\system32\DRIVERS\vwifibus.sys
08:47:15.0237 4400 vwifibus - ok
08:47:15.0253 4400 [ 6a3d66263414ff0d6fa754c646612f3f ] vwififlt C:\Windows\system32\DRIVERS\vwififlt.sys
08:47:15.0253 4400 vwififlt - ok
08:47:15.0315 4400 [ 6a638fc4bfddc4d9b186c28c91bd1a01 ] vwifimp C:\Windows\system32\DRIVERS\vwifimp.sys
08:47:15.0315 4400 vwifimp - ok
08:47:15.0378 4400 [ 1c9d80cc3849b3788048078c26486e1a ] W32Time C:\Windows\system32\w32time.dll
08:47:15.0378 4400 W32Time - ok
08:47:15.0409 4400 [ 4e9440f4f152a7b944cb1663d3935a3e ] WacomPen C:\Windows\system32\drivers\wacompen.sys
08:47:15.0409 4400 WacomPen - ok
08:47:15.0424 4400 [ 356afd78a6ed4457169241ac3965230c ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys
08:47:15.0424 4400 WANARP - ok
08:47:15.0440 4400 [ 356afd78a6ed4457169241ac3965230c ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
08:47:15.0440 4400 Wanarpv6 - ok
08:47:15.0721 4400 [ 3cec96de223e49eaae3651fcf8faea6c ] WatAdminSvc C:\Windows\system32\Wat\WatAdminSvc.exe
08:47:15.0799 4400 WatAdminSvc - ok
08:47:16.0126 4400 [ 78f4e7f5c56cb9716238eb57da4b6a75 ] wbengine C:\Windows\system32\wbengine.exe
08:47:16.0158 4400 wbengine - ok
08:47:16.0173 4400 [ 3aa101e8edab2db4131333f4325c76a3 ] WbioSrvc C:\Windows\System32\wbiosrvc.dll
08:47:16.0173 4400 WbioSrvc - ok
08:47:16.0189 4400 [ 7368a2afd46e5a4481d1de9d14848edd ] wcncsvc C:\Windows\System32\wcncsvc.dll
08:47:16.0189 4400 wcncsvc - ok
08:47:16.0189 4400 [ 20f7441334b18cee52027661df4a6129 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
08:47:16.0204 4400 WcsPlugInService - ok
08:47:16.0220 4400 [ 72889e16ff12ba0f235467d6091b17dc ] Wd C:\Windows\system32\drivers\wd.sys
08:47:16.0220 4400 Wd - ok
08:47:16.0251 4400 [ 441bd2d7b4f98134c3a4f9fa570fd250 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
08:47:16.0267 4400 Wdf01000 - ok
08:47:16.0267 4400 [ bf1fc3f79b863c914687a737c2f3d681 ] WdiServiceHost C:\Windows\system32\wdi.dll
08:47:16.0267 4400 WdiServiceHost - ok
08:47:16.0282 4400 [ bf1fc3f79b863c914687a737c2f3d681 ] WdiSystemHost C:\Windows\system32\wdi.dll
08:47:16.0282 4400 WdiSystemHost - ok
08:47:16.0298 4400 [ 3db6d04e1c64272f8b14eb8bc4616280 ] WebClient C:\Windows\System32\webclnt.dll
08:47:16.0298 4400 WebClient - ok
08:47:16.0329 4400 [ c749025a679c5103e575e3b48e092c43 ] Wecsvc C:\Windows\system32\wecsvc.dll
08:47:16.0329 4400 Wecsvc - ok
08:47:16.0345 4400 [ 7e591867422dc788b9e5bd337a669a08 ] wercplsupport C:\Windows\System32\wercplsupport.dll
08:47:16.0345 4400 wercplsupport - ok
08:47:16.0360 4400 [ 6d137963730144698cbd10f202e9f251 ] WerSvc C:\Windows\System32\WerSvc.dll
08:47:16.0360 4400 WerSvc - ok
08:47:16.0376 4400 [ 611b23304bf067451a9fdee01fbdd725 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys
08:47:16.0376 4400 WfpLwf - ok
08:47:16.0392 4400 [ 05ecaec3e4529a7153b3136ceb49f0ec ] WIMMount C:\Windows\system32\drivers\wimmount.sys
08:47:16.0392 4400 WIMMount - ok
08:47:16.0407 4400 WinDefend - ok
08:47:16.0423 4400 WinHttpAutoProxySvc - ok
08:47:16.0501 4400 [ 19b07e7e8915d701225da41cb3877306 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
08:47:16.0516 4400 Winmgmt - ok
08:47:16.0594 4400 [ bcb1310604aa415c4508708975b3931e ] WinRM C:\Windows\system32\WsmSvc.dll
08:47:16.0657 4400 WinRM - ok
08:47:16.0735 4400 [ 4fada86e62f18a1b2f42ba18ae24e6aa ] Wlansvc C:\Windows\System32\wlansvc.dll
08:47:16.0766 4400 Wlansvc - ok
08:47:16.0844 4400 [ 06c8fa1cf39de6a735b54d906ba791c6 ] wlcrasvc C:\Program Files\Windows Live\Mesh\wlcrasvc.exe
08:47:16.0844 4400 wlcrasvc - ok
08:47:17.0000 4400 [ 2bacd71123f42cea603f4e205e1ae337 ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
08:47:17.0078 4400 wlidsvc - ok
08:47:17.0109 4400 [ f6ff8944478594d0e414d3f048f0d778 ] WmiAcpi C:\Windows\system32\drivers\wmiacpi.sys
08:47:17.0109 4400 WmiAcpi - ok
08:47:17.0172 4400 [ 38b84c94c5a8af291adfea478ae54f93 ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
08:47:17.0172 4400 wmiApSrv - ok
08:47:17.0218 4400 WMPNetworkSvc - ok
08:47:17.0250 4400 [ 96c6e7100d724c69fcf9e7bf590d1dca ] WPCSvc C:\Windows\System32\wpcsvc.dll
08:47:17.0250 4400 WPCSvc - ok
08:47:17.0265 4400 [ 93221146d4ebbf314c29b23cd6cc391d ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
08:47:17.0281 4400 WPDBusEnum - ok
08:47:17.0281 4400 [ 6bcc1d7d2fd2453957c5479a32364e52 ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
08:47:17.0281 4400 ws2ifsl - ok
08:47:17.0312 4400 [ e8b1fe6669397d1772d8196df0e57a9e ] wscsvc C:\Windows\System32\wscsvc.dll
08:47:17.0312 4400 wscsvc - ok
08:47:17.0328 4400 WSearch - ok
08:47:17.0421 4400 [ d9ef901dca379cfe914e9fa13b73b4c4 ] wuauserv C:\Windows\system32\wuaueng.dll
08:47:17.0499 4400 wuauserv - ok
08:47:17.0530 4400 [ d3381dc54c34d79b22cee0d65ba91b7c ] WudfPf C:\Windows\system32\drivers\WudfPf.sys
08:47:17.0530 4400 WudfPf - ok
08:47:17.0562 4400 [ cf8d590be3373029d57af80914190682 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys
08:47:17.0562 4400 WUDFRd - ok
08:47:17.0593 4400 [ 7a95c95b6c4cf292d689106bcae49543 ] wudfsvc C:\Windows\System32\WUDFSvc.dll
08:47:17.0593 4400 wudfsvc - ok
08:47:17.0624 4400 [ 9a3452b3c2a46c073166c5cf49fad1ae ] WwanSvc C:\Windows\System32\wwansvc.dll
08:47:17.0624 4400 WwanSvc - ok
08:47:17.0702 4400 ================ Scan global ===============================
08:47:17.0718 4400 (ba0cd8c393e8c9f83354106093832c7b) C:\Windows\system32\basesrv.dll
08:47:17.0749 4400 (eb6a48cc998e1090e44e8e7f1009a640) C:\Windows\system32\winsrv.dll
08:47:17.0764 4400 (eb6a48cc998e1090e44e8e7f1009a640) C:\Windows\system32\winsrv.dll
08:47:17.0796 4400 (d6160f9d869ba3af0b787f971db56368) C:\Windows\system32\sxssrv.dll
08:47:17.0827 4400 (24acb7e5be595468e3b9aa488b9b4fcb) C:\Windows\system32\services.exe
08:47:17.0827 4400 [Global] - ok
08:47:17.0827 4400 ================ Scan MBR ==================================
08:47:17.0842 4400 MBR (0x1B8) (a36c5e4f47e84449ff07ed3517b43a31) \Device\Harddisk0\DR0
08:47:18.0482 4400 \Device\Harddisk0\DR0 - ok
08:47:18.0482 4400 ================ Scan VBR ==================================
08:47:18.0498 4400 Boot (0x1200) (0dc2013d3ab816bc88963f50e8c33276) \Device\Harddisk0\DR0\Partition1
08:47:18.0513 4400 \Device\Harddisk0\DR0\Partition1 - ok
08:47:18.0529 4400 Boot (0x1200) (01293c2658c5eca306c5525e4d24b971) \Device\Harddisk0\DR0\Partition2
08:47:18.0529 4400 \Device\Harddisk0\DR0\Partition2 - ok
08:47:18.0529 4400 ============================================================
08:47:18.0529 4400 Scan finished
08:47:18.0529 4400 ============================================================
08:47:18.0544 1624 Detected object count: 0
08:47:18.0544 1624 Actual detected object count: 0
Mladyho notas vylozene na hry se pry sam vypina Vyřešeno
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43298
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: Mladyho notas vylozene na hry se pry sam vypina
Vypni rez. ochranu u antiviru a antispywaru,příp. firewall..
Stáhni si ComboFix (by sUBs)
a ulož si ho na plochu.
Ukonči všechna aktivní okna a spusť ho.
- Po spuštění se zobrazí podmínky užití, potvrď je stiskem tlačítka Ano
- Dále postupuj dle pokynů, během aplikování ComboFixu neklikej do zobrazujícího se okna
- Po dokončení skenování by měl program vytvořit log - C:\ComboFix.txt - zkopíruj sem prosím celý jeho obsah
Pokud budou problémy , spusť ho v nouz. režimu.
Upozornění : Může se stát, že po aplikaci Combofixu a restartu počítače, Windows nenaběhnou , nebo nenajede plocha , budou problémy s připojením, pak znovu restartuj počítač, pokud to nepomůže , po restartu mačkej klávesu F8 a pak zvol poslední známou funkční konfiguraci. , či použij bod obnovy.
Stáhni si aswMBR
na svojí plochu. Uzavři všechna okna , programy a prohlížeče. Poklepej na aswMBR.exe. Pokud se objeví hláška o možnosti stáhnutí databáze Avastu , klikni na NE. Poté klikni na „Scan“ . Po skenu klikni na „Save Log“ a ulož si log na plochu .Zkopíruj sem celý obsah toho logu. Pak klikni na „Exit“ k zavření programu.
Stáhni si SiSoft Sandra 2012
Sandra je software pro kompletní diagnostiku software a hardware. SiSoft Sandra
je stále více oblíbeným programem. Je to kvalitní diagnostická a testovací utilita.
Nabízí řadu různých nástrojů určených k diagnostice, testování spolehlivosti a výkonu,
získání podrobných informací o hardware i software Vašeho systému a periferií.
Informace lze exportovat do řady formátů, tisknout, uložit
na FTP/http server, importovat do ADO, OLEDB nebo ODBC databáze,
apod.
Stáhni si ComboFix (by sUBs)
a ulož si ho na plochu.
Ukonči všechna aktivní okna a spusť ho.
- Po spuštění se zobrazí podmínky užití, potvrď je stiskem tlačítka Ano
- Dále postupuj dle pokynů, během aplikování ComboFixu neklikej do zobrazujícího se okna
- Po dokončení skenování by měl program vytvořit log - C:\ComboFix.txt - zkopíruj sem prosím celý jeho obsah
Pokud budou problémy , spusť ho v nouz. režimu.
Upozornění : Může se stát, že po aplikaci Combofixu a restartu počítače, Windows nenaběhnou , nebo nenajede plocha , budou problémy s připojením, pak znovu restartuj počítač, pokud to nepomůže , po restartu mačkej klávesu F8 a pak zvol poslední známou funkční konfiguraci. , či použij bod obnovy.
Stáhni si aswMBR
na svojí plochu. Uzavři všechna okna , programy a prohlížeče. Poklepej na aswMBR.exe. Pokud se objeví hláška o možnosti stáhnutí databáze Avastu , klikni na NE. Poté klikni na „Scan“ . Po skenu klikni na „Save Log“ a ulož si log na plochu .Zkopíruj sem celý obsah toho logu. Pak klikni na „Exit“ k zavření programu.
Stáhni si SiSoft Sandra 2012
Sandra je software pro kompletní diagnostiku software a hardware. SiSoft Sandra
je stále více oblíbeným programem. Je to kvalitní diagnostická a testovací utilita.
Nabízí řadu různých nástrojů určených k diagnostice, testování spolehlivosti a výkonu,
získání podrobných informací o hardware i software Vašeho systému a periferií.
Informace lze exportovat do řady formátů, tisknout, uložit
na FTP/http server, importovat do ADO, OLEDB nebo ODBC databáze,
apod.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Re: Mladyho notas vylozene na hry se pry sam vypina
ComboFix 12-08-18.03 - minipechy 19.08.2012 10:14:02.1.2 - x64
Microsoft Windows 7 Home Premium 6.1.7601.1.1250.420.1029.18.3767.2023 [GMT 2:00]
Spuštěný z: c:\users\minipechy\Desktop\ComboFix.exe
AV: Microsoft Security Essentials *Disabled/Updated* {9765EA51-0D3C-7DFB-6091-10E4E1F341F6}
SP: Microsoft Security Essentials *Disabled/Updated* {2C040BB5-2B06-7275-5A21-2B969A740B4B}
SP: Windows Defender *Disabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
* Vytvořen nový Bod Obnovení
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
C:\install.exe
c:\program files (x86)\intellidownload\gunzip.exe
c:\program files (x86)\intellidownload\search.exe
c:\program files (x86)\SSearch
c:\programdata\TheBflix
c:\programdata\TheBflix\background.html
c:\programdata\TheBflix\bhoclass.dll
c:\programdata\TheBflix\content.js
c:\programdata\TheBflix\data\content.js
c:\programdata\TheBflix\data\jsondb.js
c:\programdata\TheBflix\epohjfbhajfojachcgdhgegmaadodlcd.crx
c:\programdata\TheBflix\settings.ini
c:\users\minipechy\AppData\Roaming\Microsoft\Windows\Recent\callofduty2.url
c:\users\Public\Documents\NTILiveUpdateV9.dll
c:\users\Public\Documents\NTIMMV9Acer.dll
c:\windows\security\Database\tmp.edb
c:\windows\SysWow64\DEBUG.log
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2012-07-19 do 2012-08-19 )))))))))))))))))))))))))))))))
.
.
2012-08-19 08:20 . 2012-08-19 08:20 -------- d-----w- c:\users\Default\AppData\Local\temp
2012-08-18 08:25 . 2012-06-29 10:04 9133488 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{67802C03-C742-4255-92AF-90783C3DF1C0}\mpengine.dll
2012-08-17 07:03 . 2012-06-29 10:04 9133488 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpengine.dll
2012-08-17 06:43 . 2012-06-29 04:55 17809920 ----a-w- c:\windows\system32\mshtml.dll
2012-08-17 06:43 . 2012-06-29 04:09 10925568 ----a-w- c:\windows\system32\ieframe.dll
2012-08-09 14:12 . 2012-08-09 14:12 -------- d-----w- c:\windows\cs
2012-08-09 14:09 . 2012-08-09 14:09 -------- d-----w- c:\windows\pt-pt
2012-08-09 14:09 . 2012-08-09 14:09 -------- d-----w- c:\windows\ar
2012-08-09 14:09 . 2012-08-09 14:09 -------- d-----w- c:\windows\bg
2012-08-09 14:09 . 2012-08-09 14:09 -------- d-----w- c:\windows\da
2012-08-09 14:09 . 2012-08-09 14:09 -------- d-----w- c:\windows\de
2012-08-09 14:09 . 2012-08-09 14:09 -------- d-----w- c:\windows\el
2012-08-09 14:09 . 2012-08-09 14:09 -------- d-----w- c:\windows\en
2012-08-09 14:08 . 2012-08-09 14:08 -------- d-----w- c:\windows\es
2012-08-09 14:08 . 2012-08-09 14:08 -------- d-----w- c:\windows\fi
2012-08-09 14:08 . 2012-08-09 14:08 -------- d-----w- c:\windows\fr
2012-08-09 14:08 . 2012-08-09 14:08 -------- d-----w- c:\windows\he
2012-08-09 14:08 . 2012-08-09 14:08 -------- d-----w- c:\windows\hr
2012-08-09 14:08 . 2012-08-09 14:08 -------- d-----w- c:\windows\hu
2012-08-09 14:08 . 2012-08-09 14:08 -------- d-----w- c:\windows\it
2012-08-09 14:08 . 2012-08-09 14:08 -------- d-----w- c:\windows\nl
2012-08-09 14:08 . 2012-08-09 14:08 -------- d-----w- c:\windows\no
2012-08-09 14:08 . 2012-08-09 14:08 -------- d-----w- c:\windows\pl
2012-08-09 14:08 . 2012-08-09 14:08 -------- d-----w- c:\windows\pt-br
2012-08-09 14:07 . 2012-08-09 14:07 -------- d-----w- c:\windows\ro
2012-08-09 14:07 . 2012-08-09 14:07 -------- d-----w- c:\windows\ru
2012-08-09 14:07 . 2012-08-09 14:07 -------- d-----w- c:\windows\sk
2012-08-09 14:07 . 2012-08-09 14:07 -------- d-----w- c:\windows\sl
2012-08-09 14:07 . 2012-08-09 14:07 -------- d-----w- c:\windows\sv
2012-08-09 14:07 . 2012-08-09 14:07 -------- d-----w- c:\windows\th
2012-08-09 14:07 . 2012-08-09 14:07 -------- d-----w- c:\windows\tr
2012-08-09 14:07 . 2012-08-09 14:07 -------- d-----w- c:\windows\zh-tw
2012-08-09 14:07 . 2012-08-09 14:07 -------- d-----w- c:\windows\ca
2012-08-09 14:07 . 2012-08-09 14:07 -------- d-----w- c:\windows\eu
2012-08-09 13:54 . 2012-08-09 13:54 19720 ----a-w- c:\programdata\Microsoft\IdentityCRL\production\ppcrlconfig600.dll
2012-08-09 13:50 . 2012-08-09 13:50 15712 ----a-w- c:\program files (x86)\Common Files\Windows Live\.cache\f58ab98f1cd763502\MeshBetaRemover.exe
2012-08-09 13:50 . 2012-08-09 13:50 89944 ----a-w- c:\program files (x86)\Common Files\Windows Live\.cache\f53ce68b1cd763501\DSETUP.dll
2012-08-09 13:50 . 2012-08-09 13:50 537432 ----a-w- c:\program files (x86)\Common Files\Windows Live\.cache\f53ce68b1cd763501\DXSETUP.exe
2012-08-09 13:50 . 2012-08-09 13:50 1801048 ----a-w- c:\program files (x86)\Common Files\Windows Live\.cache\f53ce68b1cd763501\dsetup32.dll
2012-08-05 14:07 . 2012-08-05 14:07 -------- d-----w- c:\users\minipechy\AppData\Local\Acer
2012-08-04 20:39 . 2012-08-04 20:39 -------- d-----w- c:\program files\CPUID
2012-08-04 20:39 . 2011-09-21 08:25 21992 ----a-w- c:\windows\system32\drivers\cpuz135_x64.sys
2012-08-04 19:43 . 2012-08-04 19:43 -------- d-----w- c:\users\minipechy\AppData\Roaming\Malwarebytes
2012-08-04 19:43 . 2012-08-04 19:43 -------- d-----w- c:\programdata\Malwarebytes
2012-08-04 19:43 . 2012-08-04 19:43 -------- d-----w- c:\program files (x86)\Malwarebytes' Anti-Malware
2012-08-04 19:43 . 2012-07-03 11:46 24904 ----a-w- c:\windows\system32\drivers\mbam.sys
2012-08-04 10:31 . 2012-08-04 10:32 -------- d-----w- c:\program files (x86)\CrystalDiskInfo
2012-07-25 10:18 . 2010-02-23 08:16 294912 ----a-w- c:\windows\system32\browserchoice.exe
2012-07-23 07:38 . 2012-07-23 07:38 2106216 ----a-w- c:\program files (x86)\Mozilla Firefox\D3DCompiler_43.dll
2012-07-23 07:38 . 2012-07-23 07:38 18912 ----a-w- c:\program files (x86)\Mozilla Firefox\AccessibleMarshal.dll
2012-07-23 07:38 . 2012-07-23 07:38 917984 ----a-w- c:\program files (x86)\Mozilla Firefox\firefox.exe
2012-07-23 07:38 . 2012-07-23 07:38 73696 ----a-w- c:\program files (x86)\Mozilla Firefox\breakpadinjector.dll
2012-07-23 07:38 . 2012-07-23 07:38 266720 ----a-w- c:\program files (x86)\Mozilla Firefox\components\browsercomps.dll
2012-07-23 07:38 . 2012-07-23 07:38 258528 ----a-w- c:\program files (x86)\Mozilla Firefox\freebl3.dll
2012-07-23 07:38 . 2012-07-23 07:38 1998168 ----a-w- c:\program files (x86)\Mozilla Firefox\d3dx9_43.dll
2012-07-23 07:38 . 2012-07-23 07:38 118240 ----a-w- c:\program files (x86)\Mozilla Firefox\crashreporter.exe
2012-07-23 07:38 . 2012-07-23 07:38 2288608 ----a-w- c:\program files (x86)\Mozilla Firefox\gkmedias.dll
2012-07-23 07:38 . 2012-07-23 07:38 82400 ----a-w- c:\program files (x86)\Mozilla Firefox\libEGL.dll
2012-07-23 07:38 . 2012-07-23 07:38 425952 ----a-w- c:\program files (x86)\Mozilla Firefox\libGLESv2.dll
2012-07-23 07:38 . 2012-07-23 07:38 114144 ----a-w- c:\program files (x86)\Mozilla Firefox\maintenanceservice.exe
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-08-17 06:39 . 2011-12-28 13:25 62134624 ----a-w- c:\windows\system32\MRT.exe
2012-08-15 18:33 . 2012-04-26 15:36 426184 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe
2012-08-15 18:33 . 2011-07-20 08:00 70344 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2012-07-05 18:13 . 2012-07-05 18:14 772592 ----a-w- c:\windows\SysWow64\npDeployJava1.dll
2012-06-09 05:43 . 2012-07-19 08:05 14172672 ----a-w- c:\windows\system32\shell32.dll
2012-06-06 18:59 . 2012-06-06 18:59 1070152 ----a-w- c:\windows\SysWow64\MSCOMCTL.OCX
2012-06-06 06:06 . 2012-07-19 08:05 2004480 ----a-w- c:\windows\system32\msxml6.dll
2012-06-06 06:06 . 2012-07-19 08:05 1881600 ----a-w- c:\windows\system32\msxml3.dll
2012-06-06 06:02 . 2012-07-19 08:05 1133568 ----a-w- c:\windows\system32\cdosys.dll
2012-06-06 05:05 . 2012-07-19 08:05 1390080 ----a-w- c:\windows\SysWow64\msxml6.dll
2012-06-06 05:05 . 2012-07-19 08:05 1236992 ----a-w- c:\windows\SysWow64\msxml3.dll
2012-06-06 05:03 . 2012-07-19 08:05 805376 ----a-w- c:\windows\SysWow64\cdosys.dll
2012-06-02 22:19 . 2012-06-19 12:34 38424 ----a-w- c:\windows\system32\wups.dll
2012-06-02 22:19 . 2012-06-19 12:35 2428952 ----a-w- c:\windows\system32\wuaueng.dll
2012-06-02 22:19 . 2012-06-19 12:35 57880 ----a-w- c:\windows\system32\wuauclt.exe
2012-06-02 22:19 . 2012-06-19 12:35 44056 ----a-w- c:\windows\system32\wups2.dll
2012-06-02 22:19 . 2012-06-19 12:34 701976 ----a-w- c:\windows\system32\wuapi.dll
2012-06-02 22:15 . 2012-06-19 12:35 2622464 ----a-w- c:\windows\system32\wucltux.dll
2012-06-02 22:15 . 2012-06-19 12:34 99840 ----a-w- c:\windows\system32\wudriver.dll
2012-06-02 13:19 . 2012-06-19 12:34 186752 ----a-w- c:\windows\system32\wuwebv.dll
2012-06-02 13:15 . 2012-06-19 12:34 36864 ----a-w- c:\windows\system32\wuapp.exe
2012-06-02 05:50 . 2012-07-19 08:05 458704 ----a-w- c:\windows\system32\drivers\cng.sys
2012-06-02 05:48 . 2012-07-19 08:05 95600 ----a-w- c:\windows\system32\drivers\ksecdd.sys
2012-06-02 05:48 . 2012-07-19 08:05 151920 ----a-w- c:\windows\system32\drivers\ksecpkg.sys
2012-06-02 05:45 . 2012-07-19 08:05 340992 ----a-w- c:\windows\system32\schannel.dll
2012-06-02 05:44 . 2012-07-19 08:05 307200 ----a-w- c:\windows\system32\ncrypt.dll
2012-06-02 04:40 . 2012-07-19 08:05 22016 ----a-w- c:\windows\SysWow64\secur32.dll
2012-06-02 04:40 . 2012-07-19 08:05 225280 ----a-w- c:\windows\SysWow64\schannel.dll
2012-06-02 04:39 . 2012-07-19 08:05 219136 ----a-w- c:\windows\SysWow64\ncrypt.dll
2012-06-02 04:34 . 2012-07-19 08:05 96768 ----a-w- c:\windows\SysWow64\sspicli.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\Wow6432Node\~\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}]
2012-05-04 13:43 1519272 ----a-w- c:\program files (x86)\Ask.com\GenericAskToolbar.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar]
"{D4027C7F-154A-4066-A1AD-4243D8127440}"= "c:\program files (x86)\Ask.com\GenericAskToolbar.dll" [2012-05-04 1519272]
.
[HKEY_CLASSES_ROOT\clsid\{d4027c7f-154a-4066-a1ad-4243d8127440}]
[HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd.1]
[HKEY_CLASSES_ROOT\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}]
[HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd]
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Skype"="c:\program files (x86)\Skype\Phone\Skype.exe" [2012-07-13 17418928]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"SuiteTray"="c:\program files (x86)\EgisTec MyWinLockerSuite\x86\SuiteTray.exe" [2011-04-02 340848]
"EgisTecPMMUpdate"="c:\program files (x86)\EgisTec IPS\PmmUpdate.exe" [2011-03-29 408432]
"EgisUpdate"="c:\program files (x86)\EgisTec IPS\EgisUpdate.exe" [2011-03-29 202608]
"BackupManagerTray"="c:\program files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe" [2011-04-24 297280]
"LManager"="c:\program files (x86)\Launch Manager\LManager.exe" [2011-07-01 1103440]
"ArcadeMovieService"="c:\program files (x86)\Acer\clear.fi\Movie\clear.fiMovieService.exe" [2011-05-10 177448]
"GrooveMonitor"="c:\program files (x86)\Microsoft Office\Office12\GrooveMonitor.exe" [2009-02-26 30040]
"Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-07-27 919008]
"4StoryPrePatch"="c:\program files (x86)\Gameforge4D\4Story_CZ\PrePatch.exe" [2012-05-08 327680]
"SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2012-01-17 252296]
"ApnUpdater"="c:\program files (x86)\Ask.com\Updater\Updater.exe" [2012-05-04 1561768]
"Malwarebytes' Anti-Malware"="c:\program files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe" [2012-07-03 462920]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"IsMyWinLockerReboot"="msiexec.exe" [2010-11-21 73216]
.
c:\users\minipechy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
Facebook Messenger.lnk - c:\users\minipechy\AppData\Local\Facebook\Messenger\2.1.4590.0\FacebookMessenger.exe [2012-7-26 244656]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32]
"aux"=wdmaud.drv
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
Security Packages REG_MULTI_SZ kerberos msv1_0 schannel wdigest tspkg pku2u livessp
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
@=""
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
@="Service"
.
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe [2012-06-07 160944]
R3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-08-15 250056]
R3 EagleX64;EagleX64;c:\windows\system32\drivers\EagleX64.sys [x]
R3 EgisTec Ticket Service;EgisTec Ticket Service;c:\program files (x86)\Common Files\EgisTec\Services\EgisTicketService.exe [2011-04-02 173424]
R3 GamesAppService;GamesAppService;c:\program files (x86)\WildTangent Games\App\GamesAppService.exe [2010-10-12 206072]
R3 MozillaMaintenance;Mozilla Maintenance Service;c:\program files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2012-07-23 114144]
R3 NisDrv;Microsoft Network Inspection System;c:\windows\system32\DRIVERS\NisDrvWFP.sys [2012-03-20 98688]
R3 NisSrv;Kontrola sítě Microsoft;c:\program files\Microsoft Security Client\NisSrv.exe [2012-03-26 291696]
R3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;c:\windows\System32\Drivers\RtsUStor.sys [2010-09-22 243712]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2010-11-21 59392]
R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys [2010-11-21 31232]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe [2011-12-28 1255736]
R4 wlcrasvc;Windows Live Mesh remote connections service;c:\program files\Windows Live\Mesh\wlcrasvc.exe [2010-09-23 57184]
S1 mwlPSDFilter;mwlPSDFilter;c:\windows\system32\DRIVERS\mwlPSDFilter.sys [2011-07-20 22648]
S1 mwlPSDNServ;mwlPSDNServ;c:\windows\system32\DRIVERS\mwlPSDNServ.sys [2011-07-20 20520]
S1 mwlPSDVDisk;mwlPSDVDisk;c:\windows\system32\DRIVERS\mwlPSDVDisk.sys [2011-07-20 62776]
S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
S2 AdobeARMservice;Adobe Acrobat Update Service;c:\program files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-07-27 63960]
S2 cpuz135;cpuz135;c:\windows\system32\drivers\cpuz135_x64.sys [2011-09-21 21992]
S2 DsiWMIService;Dritek WMI Service;c:\program files (x86)\Launch Manager\dsiwmis.exe [2011-07-01 353360]
S2 ePowerSvc;Acer ePower Service;c:\program files\Acer\Acer ePower Management\ePowerSvc.exe [2011-05-10 872552]
S2 GREGService;GREGService;c:\program files (x86)\Acer\Registration\GREGsvc.exe [2011-05-26 29696]
S2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology;c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2010-04-13 13336]
S2 Live Updater Service;Live Updater Service;c:\program files\Acer\Acer Updater\UpdaterService.exe [2011-04-22 244624]
S2 MBAMService;MBAMService;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [2012-07-03 655944]
S2 NTI IScheduleSvc;NTI IScheduleSvc;c:\program files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe [2011-04-24 256832]
S2 UNS;Intel(R) Management & Security Application User Notification Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2010-03-18 2320920]
S3 ETD;ELAN PS/2 Port Input Device;c:\windows\system32\DRIVERS\ETD.sys [2011-04-05 142632]
S3 HECIx64;Intel(R) Management Engine Interface;c:\windows\system32\drivers\HECIx64.sys [2009-09-17 56344]
S3 Impcd;Impcd;c:\windows\system32\DRIVERS\Impcd.sys [2010-02-26 158976]
S3 k57nd60a;Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0;c:\windows\system32\DRIVERS\k57nd60a.sys [2011-01-17 412712]
S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [2012-07-03 24904]
S3 vwifimp;Microsoft Virtual WiFi Miniport Service;c:\windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
.
.
--- Ostatní služby/ovladače v paměti ---
.
*NewlyCreated* - WS2IFSL
.
Obsah adresáře 'Naplánované úlohy'
.
2012-08-19 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-04-26 18:33]
.
2012-08-19 c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1628672026-3414894350-2627105239-1000Core.job
- c:\users\minipechy\AppData\Local\Facebook\Update\FacebookUpdate.exe [2011-12-30 20:36]
.
2012-08-19 c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1628672026-3414894350-2627105239-1000UA.job
- c:\users\minipechy\AppData\Local\Facebook\Update\FacebookUpdate.exe [2011-12-30 20:36]
.
2012-08-18 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1628672026-3414894350-2627105239-1000Core.job
- c:\users\minipechy\AppData\Local\Google\Update\GoogleUpdate.exe [2012-07-23 14:16]
.
2012-08-19 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1628672026-3414894350-2627105239-1000UA.job
- c:\users\minipechy\AppData\Local\Google\Update\GoogleUpdate.exe [2012-07-23 14:16]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"="c:\program files\Realtek\Audio\HDA\RAVCpl64.exe" [2011-02-18 11779176]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2010-07-23 161304]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2010-07-23 386584]
"Persistence"="c:\windows\system32\igfxpers.exe" [2010-07-23 415256]
"Power Management"="c:\program files\Acer\Acer ePower Management\ePowerTray.exe" [2011-05-10 1831528]
"MSC"="c:\program files\Microsoft Security Client\msseces.exe" [2012-03-26 1271168]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"LoadAppInit_DLLs"=0x1
.
------- Doplňkový sken -------
.
uLocal Page = c:\windows\system32\blank.htm
mStart Page = hxxp://www.startsearcher.com
mLocal Page = c:\windows\SysWOW64\blank.htm
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~2\MICROS~4\Office12\EXCEL.EXE/3000
IE: Od&eslat do aplikace OneNote - c:\progra~1\MICROS~2\Office14\ONBttnIE.dll/105
TCP: DhcpNameServer = 213.46.172.36 213.46.172.37
FF - ProfilePath - c:\users\minipechy\AppData\Roaming\Mozilla\Firefox\Profiles\1qlzto1n.default\
FF - prefs.js: browser.search.selectedEngine - Google
FF - prefs.js: browser.startup.homepage - hxxp://mafia.goodgamestudios.com/
FF - prefs.js: keyword.URL - hxxp://search.mywebsearch.com/mywebsear ... searchfor=
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
Toolbar-Locked - (no file)
Toolbar-10 - (no file)
Toolbar-Locked - (no file)
Toolbar-10 - (no file)
HKLM-Run-ETDCtrl - c:\program files (x86)\Elantech\ETDCtrl.exe
.
.
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_USERS\S-1-5-21-1628672026-3414894350-2627105239-1000\Software\SecuROM\License information*]
"datasecu"=hex:23,08,f6,ea,7d,47,52,be,41,37,50,50,cd,a6,67,3a,0c,23,00,f6,af,
bc,ae,2c,bf,be,23,8b,3b,a9,41,5b,73,a8,11,96,95,ed,da,4b,b4,26,43,09,f4,17,\
"rkeysecu"=hex:9f,18,d3,9a,0c,52,dd,96,0d,b4,cc,cb,a6,7e,f0,1a
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_3_300_271_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_3_300_271_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Shockwave Flash Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_3_300_271.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
@="0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
@="ShockwaveFlash.ShockwaveFlash.11"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_3_300_271.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="ShockwaveFlash.ShockwaveFlash"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Macromedia Flash Factory Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_3_300_271.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
@="FlashFactory.FlashFactory.1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_3_300_271.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="FlashFactory.FlashFactory"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}]
@Denied: (A 2) (Everyone)
@="IFlashBroker4"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee]
"SymbolicLinkValue"=hex(6):5c,00,72,00,65,00,67,00,69,00,73,00,74,00,72,00,79,
00,5c,00,6d,00,61,00,63,00,68,00,69,00,6e,00,65,00,5c,00,53,00,6f,00,66,00,\
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\program files (x86)\Launch Manager\LMworker.exe
c:\program files (x86)\Launch Manager\LMutilps32.exe
c:\program files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
.
**************************************************************************
.
Celkový čas: 2012-08-19 10:26:40 - počítač byl restartován
ComboFix-quarantined-files.txt 2012-08-19 08:26
.
Před spuštěním: Volných bajtů: 644 372 221 952
Po spuštění: Volných bajtů: 643 894 530 048
.
- - End Of File - - 7801ECC0C1A64134A183C50AF1C08554
Microsoft Windows 7 Home Premium 6.1.7601.1.1250.420.1029.18.3767.2023 [GMT 2:00]
Spuštěný z: c:\users\minipechy\Desktop\ComboFix.exe
AV: Microsoft Security Essentials *Disabled/Updated* {9765EA51-0D3C-7DFB-6091-10E4E1F341F6}
SP: Microsoft Security Essentials *Disabled/Updated* {2C040BB5-2B06-7275-5A21-2B969A740B4B}
SP: Windows Defender *Disabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
* Vytvořen nový Bod Obnovení
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
C:\install.exe
c:\program files (x86)\intellidownload\gunzip.exe
c:\program files (x86)\intellidownload\search.exe
c:\program files (x86)\SSearch
c:\programdata\TheBflix
c:\programdata\TheBflix\background.html
c:\programdata\TheBflix\bhoclass.dll
c:\programdata\TheBflix\content.js
c:\programdata\TheBflix\data\content.js
c:\programdata\TheBflix\data\jsondb.js
c:\programdata\TheBflix\epohjfbhajfojachcgdhgegmaadodlcd.crx
c:\programdata\TheBflix\settings.ini
c:\users\minipechy\AppData\Roaming\Microsoft\Windows\Recent\callofduty2.url
c:\users\Public\Documents\NTILiveUpdateV9.dll
c:\users\Public\Documents\NTIMMV9Acer.dll
c:\windows\security\Database\tmp.edb
c:\windows\SysWow64\DEBUG.log
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2012-07-19 do 2012-08-19 )))))))))))))))))))))))))))))))
.
.
2012-08-19 08:20 . 2012-08-19 08:20 -------- d-----w- c:\users\Default\AppData\Local\temp
2012-08-18 08:25 . 2012-06-29 10:04 9133488 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{67802C03-C742-4255-92AF-90783C3DF1C0}\mpengine.dll
2012-08-17 07:03 . 2012-06-29 10:04 9133488 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpengine.dll
2012-08-17 06:43 . 2012-06-29 04:55 17809920 ----a-w- c:\windows\system32\mshtml.dll
2012-08-17 06:43 . 2012-06-29 04:09 10925568 ----a-w- c:\windows\system32\ieframe.dll
2012-08-09 14:12 . 2012-08-09 14:12 -------- d-----w- c:\windows\cs
2012-08-09 14:09 . 2012-08-09 14:09 -------- d-----w- c:\windows\pt-pt
2012-08-09 14:09 . 2012-08-09 14:09 -------- d-----w- c:\windows\ar
2012-08-09 14:09 . 2012-08-09 14:09 -------- d-----w- c:\windows\bg
2012-08-09 14:09 . 2012-08-09 14:09 -------- d-----w- c:\windows\da
2012-08-09 14:09 . 2012-08-09 14:09 -------- d-----w- c:\windows\de
2012-08-09 14:09 . 2012-08-09 14:09 -------- d-----w- c:\windows\el
2012-08-09 14:09 . 2012-08-09 14:09 -------- d-----w- c:\windows\en
2012-08-09 14:08 . 2012-08-09 14:08 -------- d-----w- c:\windows\es
2012-08-09 14:08 . 2012-08-09 14:08 -------- d-----w- c:\windows\fi
2012-08-09 14:08 . 2012-08-09 14:08 -------- d-----w- c:\windows\fr
2012-08-09 14:08 . 2012-08-09 14:08 -------- d-----w- c:\windows\he
2012-08-09 14:08 . 2012-08-09 14:08 -------- d-----w- c:\windows\hr
2012-08-09 14:08 . 2012-08-09 14:08 -------- d-----w- c:\windows\hu
2012-08-09 14:08 . 2012-08-09 14:08 -------- d-----w- c:\windows\it
2012-08-09 14:08 . 2012-08-09 14:08 -------- d-----w- c:\windows\nl
2012-08-09 14:08 . 2012-08-09 14:08 -------- d-----w- c:\windows\no
2012-08-09 14:08 . 2012-08-09 14:08 -------- d-----w- c:\windows\pl
2012-08-09 14:08 . 2012-08-09 14:08 -------- d-----w- c:\windows\pt-br
2012-08-09 14:07 . 2012-08-09 14:07 -------- d-----w- c:\windows\ro
2012-08-09 14:07 . 2012-08-09 14:07 -------- d-----w- c:\windows\ru
2012-08-09 14:07 . 2012-08-09 14:07 -------- d-----w- c:\windows\sk
2012-08-09 14:07 . 2012-08-09 14:07 -------- d-----w- c:\windows\sl
2012-08-09 14:07 . 2012-08-09 14:07 -------- d-----w- c:\windows\sv
2012-08-09 14:07 . 2012-08-09 14:07 -------- d-----w- c:\windows\th
2012-08-09 14:07 . 2012-08-09 14:07 -------- d-----w- c:\windows\tr
2012-08-09 14:07 . 2012-08-09 14:07 -------- d-----w- c:\windows\zh-tw
2012-08-09 14:07 . 2012-08-09 14:07 -------- d-----w- c:\windows\ca
2012-08-09 14:07 . 2012-08-09 14:07 -------- d-----w- c:\windows\eu
2012-08-09 13:54 . 2012-08-09 13:54 19720 ----a-w- c:\programdata\Microsoft\IdentityCRL\production\ppcrlconfig600.dll
2012-08-09 13:50 . 2012-08-09 13:50 15712 ----a-w- c:\program files (x86)\Common Files\Windows Live\.cache\f58ab98f1cd763502\MeshBetaRemover.exe
2012-08-09 13:50 . 2012-08-09 13:50 89944 ----a-w- c:\program files (x86)\Common Files\Windows Live\.cache\f53ce68b1cd763501\DSETUP.dll
2012-08-09 13:50 . 2012-08-09 13:50 537432 ----a-w- c:\program files (x86)\Common Files\Windows Live\.cache\f53ce68b1cd763501\DXSETUP.exe
2012-08-09 13:50 . 2012-08-09 13:50 1801048 ----a-w- c:\program files (x86)\Common Files\Windows Live\.cache\f53ce68b1cd763501\dsetup32.dll
2012-08-05 14:07 . 2012-08-05 14:07 -------- d-----w- c:\users\minipechy\AppData\Local\Acer
2012-08-04 20:39 . 2012-08-04 20:39 -------- d-----w- c:\program files\CPUID
2012-08-04 20:39 . 2011-09-21 08:25 21992 ----a-w- c:\windows\system32\drivers\cpuz135_x64.sys
2012-08-04 19:43 . 2012-08-04 19:43 -------- d-----w- c:\users\minipechy\AppData\Roaming\Malwarebytes
2012-08-04 19:43 . 2012-08-04 19:43 -------- d-----w- c:\programdata\Malwarebytes
2012-08-04 19:43 . 2012-08-04 19:43 -------- d-----w- c:\program files (x86)\Malwarebytes' Anti-Malware
2012-08-04 19:43 . 2012-07-03 11:46 24904 ----a-w- c:\windows\system32\drivers\mbam.sys
2012-08-04 10:31 . 2012-08-04 10:32 -------- d-----w- c:\program files (x86)\CrystalDiskInfo
2012-07-25 10:18 . 2010-02-23 08:16 294912 ----a-w- c:\windows\system32\browserchoice.exe
2012-07-23 07:38 . 2012-07-23 07:38 2106216 ----a-w- c:\program files (x86)\Mozilla Firefox\D3DCompiler_43.dll
2012-07-23 07:38 . 2012-07-23 07:38 18912 ----a-w- c:\program files (x86)\Mozilla Firefox\AccessibleMarshal.dll
2012-07-23 07:38 . 2012-07-23 07:38 917984 ----a-w- c:\program files (x86)\Mozilla Firefox\firefox.exe
2012-07-23 07:38 . 2012-07-23 07:38 73696 ----a-w- c:\program files (x86)\Mozilla Firefox\breakpadinjector.dll
2012-07-23 07:38 . 2012-07-23 07:38 266720 ----a-w- c:\program files (x86)\Mozilla Firefox\components\browsercomps.dll
2012-07-23 07:38 . 2012-07-23 07:38 258528 ----a-w- c:\program files (x86)\Mozilla Firefox\freebl3.dll
2012-07-23 07:38 . 2012-07-23 07:38 1998168 ----a-w- c:\program files (x86)\Mozilla Firefox\d3dx9_43.dll
2012-07-23 07:38 . 2012-07-23 07:38 118240 ----a-w- c:\program files (x86)\Mozilla Firefox\crashreporter.exe
2012-07-23 07:38 . 2012-07-23 07:38 2288608 ----a-w- c:\program files (x86)\Mozilla Firefox\gkmedias.dll
2012-07-23 07:38 . 2012-07-23 07:38 82400 ----a-w- c:\program files (x86)\Mozilla Firefox\libEGL.dll
2012-07-23 07:38 . 2012-07-23 07:38 425952 ----a-w- c:\program files (x86)\Mozilla Firefox\libGLESv2.dll
2012-07-23 07:38 . 2012-07-23 07:38 114144 ----a-w- c:\program files (x86)\Mozilla Firefox\maintenanceservice.exe
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-08-17 06:39 . 2011-12-28 13:25 62134624 ----a-w- c:\windows\system32\MRT.exe
2012-08-15 18:33 . 2012-04-26 15:36 426184 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe
2012-08-15 18:33 . 2011-07-20 08:00 70344 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2012-07-05 18:13 . 2012-07-05 18:14 772592 ----a-w- c:\windows\SysWow64\npDeployJava1.dll
2012-06-09 05:43 . 2012-07-19 08:05 14172672 ----a-w- c:\windows\system32\shell32.dll
2012-06-06 18:59 . 2012-06-06 18:59 1070152 ----a-w- c:\windows\SysWow64\MSCOMCTL.OCX
2012-06-06 06:06 . 2012-07-19 08:05 2004480 ----a-w- c:\windows\system32\msxml6.dll
2012-06-06 06:06 . 2012-07-19 08:05 1881600 ----a-w- c:\windows\system32\msxml3.dll
2012-06-06 06:02 . 2012-07-19 08:05 1133568 ----a-w- c:\windows\system32\cdosys.dll
2012-06-06 05:05 . 2012-07-19 08:05 1390080 ----a-w- c:\windows\SysWow64\msxml6.dll
2012-06-06 05:05 . 2012-07-19 08:05 1236992 ----a-w- c:\windows\SysWow64\msxml3.dll
2012-06-06 05:03 . 2012-07-19 08:05 805376 ----a-w- c:\windows\SysWow64\cdosys.dll
2012-06-02 22:19 . 2012-06-19 12:34 38424 ----a-w- c:\windows\system32\wups.dll
2012-06-02 22:19 . 2012-06-19 12:35 2428952 ----a-w- c:\windows\system32\wuaueng.dll
2012-06-02 22:19 . 2012-06-19 12:35 57880 ----a-w- c:\windows\system32\wuauclt.exe
2012-06-02 22:19 . 2012-06-19 12:35 44056 ----a-w- c:\windows\system32\wups2.dll
2012-06-02 22:19 . 2012-06-19 12:34 701976 ----a-w- c:\windows\system32\wuapi.dll
2012-06-02 22:15 . 2012-06-19 12:35 2622464 ----a-w- c:\windows\system32\wucltux.dll
2012-06-02 22:15 . 2012-06-19 12:34 99840 ----a-w- c:\windows\system32\wudriver.dll
2012-06-02 13:19 . 2012-06-19 12:34 186752 ----a-w- c:\windows\system32\wuwebv.dll
2012-06-02 13:15 . 2012-06-19 12:34 36864 ----a-w- c:\windows\system32\wuapp.exe
2012-06-02 05:50 . 2012-07-19 08:05 458704 ----a-w- c:\windows\system32\drivers\cng.sys
2012-06-02 05:48 . 2012-07-19 08:05 95600 ----a-w- c:\windows\system32\drivers\ksecdd.sys
2012-06-02 05:48 . 2012-07-19 08:05 151920 ----a-w- c:\windows\system32\drivers\ksecpkg.sys
2012-06-02 05:45 . 2012-07-19 08:05 340992 ----a-w- c:\windows\system32\schannel.dll
2012-06-02 05:44 . 2012-07-19 08:05 307200 ----a-w- c:\windows\system32\ncrypt.dll
2012-06-02 04:40 . 2012-07-19 08:05 22016 ----a-w- c:\windows\SysWow64\secur32.dll
2012-06-02 04:40 . 2012-07-19 08:05 225280 ----a-w- c:\windows\SysWow64\schannel.dll
2012-06-02 04:39 . 2012-07-19 08:05 219136 ----a-w- c:\windows\SysWow64\ncrypt.dll
2012-06-02 04:34 . 2012-07-19 08:05 96768 ----a-w- c:\windows\SysWow64\sspicli.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\Wow6432Node\~\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}]
2012-05-04 13:43 1519272 ----a-w- c:\program files (x86)\Ask.com\GenericAskToolbar.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar]
"{D4027C7F-154A-4066-A1AD-4243D8127440}"= "c:\program files (x86)\Ask.com\GenericAskToolbar.dll" [2012-05-04 1519272]
.
[HKEY_CLASSES_ROOT\clsid\{d4027c7f-154a-4066-a1ad-4243d8127440}]
[HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd.1]
[HKEY_CLASSES_ROOT\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}]
[HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd]
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Skype"="c:\program files (x86)\Skype\Phone\Skype.exe" [2012-07-13 17418928]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"SuiteTray"="c:\program files (x86)\EgisTec MyWinLockerSuite\x86\SuiteTray.exe" [2011-04-02 340848]
"EgisTecPMMUpdate"="c:\program files (x86)\EgisTec IPS\PmmUpdate.exe" [2011-03-29 408432]
"EgisUpdate"="c:\program files (x86)\EgisTec IPS\EgisUpdate.exe" [2011-03-29 202608]
"BackupManagerTray"="c:\program files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe" [2011-04-24 297280]
"LManager"="c:\program files (x86)\Launch Manager\LManager.exe" [2011-07-01 1103440]
"ArcadeMovieService"="c:\program files (x86)\Acer\clear.fi\Movie\clear.fiMovieService.exe" [2011-05-10 177448]
"GrooveMonitor"="c:\program files (x86)\Microsoft Office\Office12\GrooveMonitor.exe" [2009-02-26 30040]
"Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-07-27 919008]
"4StoryPrePatch"="c:\program files (x86)\Gameforge4D\4Story_CZ\PrePatch.exe" [2012-05-08 327680]
"SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2012-01-17 252296]
"ApnUpdater"="c:\program files (x86)\Ask.com\Updater\Updater.exe" [2012-05-04 1561768]
"Malwarebytes' Anti-Malware"="c:\program files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe" [2012-07-03 462920]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"IsMyWinLockerReboot"="msiexec.exe" [2010-11-21 73216]
.
c:\users\minipechy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
Facebook Messenger.lnk - c:\users\minipechy\AppData\Local\Facebook\Messenger\2.1.4590.0\FacebookMessenger.exe [2012-7-26 244656]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32]
"aux"=wdmaud.drv
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
Security Packages REG_MULTI_SZ kerberos msv1_0 schannel wdigest tspkg pku2u livessp
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
@=""
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
@="Service"
.
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe [2012-06-07 160944]
R3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-08-15 250056]
R3 EagleX64;EagleX64;c:\windows\system32\drivers\EagleX64.sys [x]
R3 EgisTec Ticket Service;EgisTec Ticket Service;c:\program files (x86)\Common Files\EgisTec\Services\EgisTicketService.exe [2011-04-02 173424]
R3 GamesAppService;GamesAppService;c:\program files (x86)\WildTangent Games\App\GamesAppService.exe [2010-10-12 206072]
R3 MozillaMaintenance;Mozilla Maintenance Service;c:\program files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2012-07-23 114144]
R3 NisDrv;Microsoft Network Inspection System;c:\windows\system32\DRIVERS\NisDrvWFP.sys [2012-03-20 98688]
R3 NisSrv;Kontrola sítě Microsoft;c:\program files\Microsoft Security Client\NisSrv.exe [2012-03-26 291696]
R3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;c:\windows\System32\Drivers\RtsUStor.sys [2010-09-22 243712]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2010-11-21 59392]
R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys [2010-11-21 31232]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe [2011-12-28 1255736]
R4 wlcrasvc;Windows Live Mesh remote connections service;c:\program files\Windows Live\Mesh\wlcrasvc.exe [2010-09-23 57184]
S1 mwlPSDFilter;mwlPSDFilter;c:\windows\system32\DRIVERS\mwlPSDFilter.sys [2011-07-20 22648]
S1 mwlPSDNServ;mwlPSDNServ;c:\windows\system32\DRIVERS\mwlPSDNServ.sys [2011-07-20 20520]
S1 mwlPSDVDisk;mwlPSDVDisk;c:\windows\system32\DRIVERS\mwlPSDVDisk.sys [2011-07-20 62776]
S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
S2 AdobeARMservice;Adobe Acrobat Update Service;c:\program files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-07-27 63960]
S2 cpuz135;cpuz135;c:\windows\system32\drivers\cpuz135_x64.sys [2011-09-21 21992]
S2 DsiWMIService;Dritek WMI Service;c:\program files (x86)\Launch Manager\dsiwmis.exe [2011-07-01 353360]
S2 ePowerSvc;Acer ePower Service;c:\program files\Acer\Acer ePower Management\ePowerSvc.exe [2011-05-10 872552]
S2 GREGService;GREGService;c:\program files (x86)\Acer\Registration\GREGsvc.exe [2011-05-26 29696]
S2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology;c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2010-04-13 13336]
S2 Live Updater Service;Live Updater Service;c:\program files\Acer\Acer Updater\UpdaterService.exe [2011-04-22 244624]
S2 MBAMService;MBAMService;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [2012-07-03 655944]
S2 NTI IScheduleSvc;NTI IScheduleSvc;c:\program files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe [2011-04-24 256832]
S2 UNS;Intel(R) Management & Security Application User Notification Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2010-03-18 2320920]
S3 ETD;ELAN PS/2 Port Input Device;c:\windows\system32\DRIVERS\ETD.sys [2011-04-05 142632]
S3 HECIx64;Intel(R) Management Engine Interface;c:\windows\system32\drivers\HECIx64.sys [2009-09-17 56344]
S3 Impcd;Impcd;c:\windows\system32\DRIVERS\Impcd.sys [2010-02-26 158976]
S3 k57nd60a;Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0;c:\windows\system32\DRIVERS\k57nd60a.sys [2011-01-17 412712]
S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [2012-07-03 24904]
S3 vwifimp;Microsoft Virtual WiFi Miniport Service;c:\windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
.
.
--- Ostatní služby/ovladače v paměti ---
.
*NewlyCreated* - WS2IFSL
.
Obsah adresáře 'Naplánované úlohy'
.
2012-08-19 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-04-26 18:33]
.
2012-08-19 c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1628672026-3414894350-2627105239-1000Core.job
- c:\users\minipechy\AppData\Local\Facebook\Update\FacebookUpdate.exe [2011-12-30 20:36]
.
2012-08-19 c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1628672026-3414894350-2627105239-1000UA.job
- c:\users\minipechy\AppData\Local\Facebook\Update\FacebookUpdate.exe [2011-12-30 20:36]
.
2012-08-18 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1628672026-3414894350-2627105239-1000Core.job
- c:\users\minipechy\AppData\Local\Google\Update\GoogleUpdate.exe [2012-07-23 14:16]
.
2012-08-19 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1628672026-3414894350-2627105239-1000UA.job
- c:\users\minipechy\AppData\Local\Google\Update\GoogleUpdate.exe [2012-07-23 14:16]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"="c:\program files\Realtek\Audio\HDA\RAVCpl64.exe" [2011-02-18 11779176]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2010-07-23 161304]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2010-07-23 386584]
"Persistence"="c:\windows\system32\igfxpers.exe" [2010-07-23 415256]
"Power Management"="c:\program files\Acer\Acer ePower Management\ePowerTray.exe" [2011-05-10 1831528]
"MSC"="c:\program files\Microsoft Security Client\msseces.exe" [2012-03-26 1271168]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"LoadAppInit_DLLs"=0x1
.
------- Doplňkový sken -------
.
uLocal Page = c:\windows\system32\blank.htm
mStart Page = hxxp://www.startsearcher.com
mLocal Page = c:\windows\SysWOW64\blank.htm
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~2\MICROS~4\Office12\EXCEL.EXE/3000
IE: Od&eslat do aplikace OneNote - c:\progra~1\MICROS~2\Office14\ONBttnIE.dll/105
TCP: DhcpNameServer = 213.46.172.36 213.46.172.37
FF - ProfilePath - c:\users\minipechy\AppData\Roaming\Mozilla\Firefox\Profiles\1qlzto1n.default\
FF - prefs.js: browser.search.selectedEngine - Google
FF - prefs.js: browser.startup.homepage - hxxp://mafia.goodgamestudios.com/
FF - prefs.js: keyword.URL - hxxp://search.mywebsearch.com/mywebsear ... searchfor=
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
Toolbar-Locked - (no file)
Toolbar-10 - (no file)
Toolbar-Locked - (no file)
Toolbar-10 - (no file)
HKLM-Run-ETDCtrl - c:\program files (x86)\Elantech\ETDCtrl.exe
.
.
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_USERS\S-1-5-21-1628672026-3414894350-2627105239-1000\Software\SecuROM\License information*]
"datasecu"=hex:23,08,f6,ea,7d,47,52,be,41,37,50,50,cd,a6,67,3a,0c,23,00,f6,af,
bc,ae,2c,bf,be,23,8b,3b,a9,41,5b,73,a8,11,96,95,ed,da,4b,b4,26,43,09,f4,17,\
"rkeysecu"=hex:9f,18,d3,9a,0c,52,dd,96,0d,b4,cc,cb,a6,7e,f0,1a
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_3_300_271_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_3_300_271_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Shockwave Flash Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_3_300_271.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
@="0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
@="ShockwaveFlash.ShockwaveFlash.11"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_3_300_271.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="ShockwaveFlash.ShockwaveFlash"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Macromedia Flash Factory Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_3_300_271.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
@="FlashFactory.FlashFactory.1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_3_300_271.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="FlashFactory.FlashFactory"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}]
@Denied: (A 2) (Everyone)
@="IFlashBroker4"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee]
"SymbolicLinkValue"=hex(6):5c,00,72,00,65,00,67,00,69,00,73,00,74,00,72,00,79,
00,5c,00,6d,00,61,00,63,00,68,00,69,00,6e,00,65,00,5c,00,53,00,6f,00,66,00,\
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\program files (x86)\Launch Manager\LMworker.exe
c:\program files (x86)\Launch Manager\LMutilps32.exe
c:\program files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
.
**************************************************************************
.
Celkový čas: 2012-08-19 10:26:40 - počítač byl restartován
ComboFix-quarantined-files.txt 2012-08-19 08:26
.
Před spuštěním: Volných bajtů: 644 372 221 952
Po spuštění: Volných bajtů: 643 894 530 048
.
- - End Of File - - 7801ECC0C1A64134A183C50AF1C08554
Re: Mladyho notas vylozene na hry se pry sam vypina
aswMBR version 0.9.9.1665 Copyright(c) 2011 AVAST Software
Run date: 2012-08-19 10:37:03
-----------------------------
10:37:03.391 OS Version: Windows x64 6.1.7601 Service Pack 1
10:37:03.391 Number of processors: 2 586 0x2505
10:37:03.391 ComputerName: MINIPECHY-PC UserName: minipechy
10:37:05.794 Initialize success
10:37:46.962 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IAAStorageDevice-1
10:37:46.978 Disk 0 Vendor: WDC_WD75 01.0 Size: 715404MB BusType: 3
10:37:46.993 Disk 0 MBR read successfully
10:37:46.993 Disk 0 MBR scan
10:37:46.993 Disk 0 Windows 7 default MBR code
10:37:46.993 Disk 0 Partition 1 00 27 Hidden NTFS WinRE NTFS 18432 MB offset 2048
10:37:47.009 Disk 0 Partition 2 80 (A) 07 HPFS/NTFS NTFS 100 MB offset 37750784
10:37:47.040 Disk 0 Partition 3 00 07 HPFS/NTFS NTFS 696870 MB offset 37955584
10:37:47.056 Disk 0 scanning C:\Windows\system32\drivers
10:37:51.330 Service scanning
10:38:43.372 Modules scanning
10:38:43.372 Disk 0 trace - called modules:
10:38:43.419 ntoskrnl.exe CLASSPNP.SYS disk.sys iaStor.sys
10:38:43.419 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0xfffffa80068a5660]
10:38:43.434 3 CLASSPNP.SYS[fffff88001b6d43f] -> nt!IofCallDriver -> \Device\Ide\IAAStorageDevice-1[0xfffffa8004975050]
10:38:43.434 Scan finished successfully
10:38:57.864 Disk 0 MBR has been saved successfully to "C:\Users\minipechy\Desktop\MBR.dat"
10:38:57.864 The log file has been saved successfully to "C:\Users\minipechy\Desktop\aswMBR.txt"
Run date: 2012-08-19 10:37:03
-----------------------------
10:37:03.391 OS Version: Windows x64 6.1.7601 Service Pack 1
10:37:03.391 Number of processors: 2 586 0x2505
10:37:03.391 ComputerName: MINIPECHY-PC UserName: minipechy
10:37:05.794 Initialize success
10:37:46.962 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IAAStorageDevice-1
10:37:46.978 Disk 0 Vendor: WDC_WD75 01.0 Size: 715404MB BusType: 3
10:37:46.993 Disk 0 MBR read successfully
10:37:46.993 Disk 0 MBR scan
10:37:46.993 Disk 0 Windows 7 default MBR code
10:37:46.993 Disk 0 Partition 1 00 27 Hidden NTFS WinRE NTFS 18432 MB offset 2048
10:37:47.009 Disk 0 Partition 2 80 (A) 07 HPFS/NTFS NTFS 100 MB offset 37750784
10:37:47.040 Disk 0 Partition 3 00 07 HPFS/NTFS NTFS 696870 MB offset 37955584
10:37:47.056 Disk 0 scanning C:\Windows\system32\drivers
10:37:51.330 Service scanning
10:38:43.372 Modules scanning
10:38:43.372 Disk 0 trace - called modules:
10:38:43.419 ntoskrnl.exe CLASSPNP.SYS disk.sys iaStor.sys
10:38:43.419 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0xfffffa80068a5660]
10:38:43.434 3 CLASSPNP.SYS[fffff88001b6d43f] -> nt!IofCallDriver -> \Device\Ide\IAAStorageDevice-1[0xfffffa8004975050]
10:38:43.434 Scan finished successfully
10:38:57.864 Disk 0 MBR has been saved successfully to "C:\Users\minipechy\Desktop\MBR.dat"
10:38:57.864 The log file has been saved successfully to "C:\Users\minipechy\Desktop\aswMBR.txt"
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43298
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: Mladyho notas vylozene na hry se pry sam vypina
Otevři si Poznámkový blok (Start -> Spustit... a napiš do okna Notepad a dej Ok.
Zkopíruj do něj následující celý text označený zeleně:
Zvol možnost Soubor -> Uložit jako... a nastav tyto parametry:
Název souboru: zde napiš: CFScript.txt
Uložit jako typ: tak tam vyber Všechny soubory
Ulož soubor na plochu.
Ukonči všechna aktivní okna.
Uchop myší vytvořený skript CFScript.txt, přemísti ho nad stažený program ComboFix.exe a když se oba soubory překryjí, skript upusť.
- Automaticky se spustí ComboFix
- Vlož sem log, který vyběhne v závěru čistícího procesu + nový log z HJT
Upozornění : Může se stát, že po aplikaci Combofixu a restartu počítače, Windows nenaběhnou , nebo nenajede plocha , budou problémy s připojením, pak znovu restartuj počítač, pokud to nepomůže , po restartu mačkej klávesu F8 a pak zvol poslední známou funkční konfiguraci. , či použij bod obnovy.
Zkopíruj do něj následující celý text označený zeleně:
Kód: Vybrat vše
ClearJavaCache::
KillAll::
File::
c:\program files (x86)\Ask.com\GenericAskToolbar.dll
c:\program files (x86)\Skype\Updater\Updater.exe
c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1628672026-3414894350-2627105239-1000Core.job
c:\users\minipechy\AppData\Local\Facebook\Update\FacebookUpdate.exe
c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1628672026-3414894350-2627105239-1000Core.job
c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1628672026-3414894350-2627105239-1000UA.job
Folder::
c:\program files (x86)\Ask.com
c:\program files (x86)\Skype\Updater
c:\users\minipechy\AppData\Local\Facebook\Update
Registry::
[-HKEY_LOCAL_MACHINE\Wow6432Node\~\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar]
"{D4027C7F-154A-4066-A1AD-4243D8127440}"=-
[-HKEY_CLASSES_ROOT\clsid\{d4027c7f-154a-4066-a1ad-4243d8127440}]
[-HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd.1]
[-HKEY_CLASSES_ROOT\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}]
[-HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd]
Driver::
SkypeUpdate
DDS::
uLocal Page = c:\windows\system32\blank.htm
mStart Page = hxxp://www.startsearcher.com
mLocal Page = c:\windows\SysWOW64\blank.htm
Firefox::
FF - ProfilePath - c:\users\minipechy\AppData\Roaming\Mozilla\Firefox\Profiles\1qlzto1n.default\
FF - prefs.js: browser.startup.homepage - hxxp://mafia.goodgamestudios.com/
FF - prefs.js: keyword.URL - hxxp://search.mywebsearch.com/mywebsear ... searchfor=
RegNull::
[HKEY_USERS\S-1-5-21-1628672026-3414894350-2627105239-1000\Software\SecuROM\License information*]
RegLock::
[HKEY_USERS\S-1-5-21-1628672026-3414894350-2627105239-1000\Software\SecuROM\License information*]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib]
[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
Zvol možnost Soubor -> Uložit jako... a nastav tyto parametry:
Název souboru: zde napiš: CFScript.txt
Uložit jako typ: tak tam vyber Všechny soubory
Ulož soubor na plochu.
Ukonči všechna aktivní okna.
Uchop myší vytvořený skript CFScript.txt, přemísti ho nad stažený program ComboFix.exe a když se oba soubory překryjí, skript upusť.
- Automaticky se spustí ComboFix
- Vlož sem log, který vyběhne v závěru čistícího procesu + nový log z HJT
Upozornění : Může se stát, že po aplikaci Combofixu a restartu počítače, Windows nenaběhnou , nebo nenajede plocha , budou problémy s připojením, pak znovu restartuj počítač, pokud to nepomůže , po restartu mačkej klávesu F8 a pak zvol poslední známou funkční konfiguraci. , či použij bod obnovy.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Re: Mladyho notas vylozene na hry se pry sam vypina
Malwarebytes Anti-Malware 1.62.0.1300
www.malwarebytes.org
Verze databáze: v2012.08.18.02
Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 9.0.8112.16421
minipechy :: MINIPECHY-PC [administrátor]
Ochrana: Povolena
24.8.2012 8:52:26
mbam-log-2012-08-24 (08-56-00).txt
Typ: Rychlá kontrola
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 200478
Uplynulý čas: 3 minut, 15 sekund
Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené klíče v registru: 15
HKCR\CLSID\{965B9DBE-B104-44AC-950A-8A5F97AFF439} (PUP.Funmoods) -> Žádná instrukce nebyla provedena.
HKCR\CLSID\{A9DB719C-7156-415E-B49D-BAD039DE4F13} (PUP.Funmoods) -> Žádná instrukce nebyla provedena.
HKCR\funmoodsApp.appCore.1 (PUP.Funmoods) -> Žádná instrukce nebyla provedena.
HKCR\funmoodsApp.appCore (PUP.Funmoods) -> Žádná instrukce nebyla provedena.
HKCR\CLSID\{F03FD9D0-4F2B-497C-8A71-DD41D70B07D9} (PUP.Funmoods) -> Žádná instrukce nebyla provedena.
HKCR\f (PUP.Funmoods) -> Žádná instrukce nebyla provedena.
HKCR\Typelib\{1D085C0A-E4F4-4F66-BDBF-4BE51015BFC3} (PUP.Funmoods) -> Žádná instrukce nebyla provedena.
HKCR\Interface\{0D80F1C5-D17B-4177-AC68-955F3EF9F191} (PUP.Funmoods) -> Žádná instrukce nebyla provedena.
HKCR\Interface\{66666666-6666-6666-6666-660066226658} (Adware.GamePlayLab) -> Žádná instrukce nebyla provedena.
HKCR\TypeLib\{44444444-4444-4444-4444-440044224458} (Adware.GamePlayLab) -> Žádná instrukce nebyla provedena.
HKCU\SOFTWARE\INSTALLEDBROWSEREXTENSIONS\215 APPS (PUP.CrossFire.SA) -> Žádná instrukce nebyla provedena.
HKLM\SOFTWARE\Google\Chrome\Extensions\kincjchfokkeneeofpeefomkikfkiedl (PUP.FCTPlugin) -> Žádná instrukce nebyla provedena.
HKLM\SOFTWARE\Google\Chrome\Extensions\mpfapcdfbbledbojijcbcclmlieaoogk (PUP.GamesPlayLab) -> Žádná instrukce nebyla provedena.
HKLM\SOFTWARE\Google\chrome\Extensions\fdloijijlkoblmigdofommgnheckmaki (PUP.Funmoods) -> Žádná instrukce nebyla provedena.
HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\mpfapcdfbbledbojijcbcclmlieaoogk (PUP.GamesPlayLab) -> Žádná instrukce nebyla provedena.
Nalezené hodnoty v registru: 1
HKCU\Software\InstalledBrowserExtensions\215 Apps|2258 (PUP.CrossFire.SA) -> Data: I Want This -> Žádná instrukce nebyla provedena.
Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené složky: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené soubory: 2
C:\ProgramData\ADDICT-THING\bhoclass.dll (PUP.DownloadnSave) -> Žádná instrukce nebyla provedena.
C:\Users\minipechy\AppData\Local\funmoods.crx (PUP.Funmoods) -> Žádná instrukce nebyla provedena.
(konec)
www.malwarebytes.org
Verze databáze: v2012.08.18.02
Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 9.0.8112.16421
minipechy :: MINIPECHY-PC [administrátor]
Ochrana: Povolena
24.8.2012 8:52:26
mbam-log-2012-08-24 (08-56-00).txt
Typ: Rychlá kontrola
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 200478
Uplynulý čas: 3 minut, 15 sekund
Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené klíče v registru: 15
HKCR\CLSID\{965B9DBE-B104-44AC-950A-8A5F97AFF439} (PUP.Funmoods) -> Žádná instrukce nebyla provedena.
HKCR\CLSID\{A9DB719C-7156-415E-B49D-BAD039DE4F13} (PUP.Funmoods) -> Žádná instrukce nebyla provedena.
HKCR\funmoodsApp.appCore.1 (PUP.Funmoods) -> Žádná instrukce nebyla provedena.
HKCR\funmoodsApp.appCore (PUP.Funmoods) -> Žádná instrukce nebyla provedena.
HKCR\CLSID\{F03FD9D0-4F2B-497C-8A71-DD41D70B07D9} (PUP.Funmoods) -> Žádná instrukce nebyla provedena.
HKCR\f (PUP.Funmoods) -> Žádná instrukce nebyla provedena.
HKCR\Typelib\{1D085C0A-E4F4-4F66-BDBF-4BE51015BFC3} (PUP.Funmoods) -> Žádná instrukce nebyla provedena.
HKCR\Interface\{0D80F1C5-D17B-4177-AC68-955F3EF9F191} (PUP.Funmoods) -> Žádná instrukce nebyla provedena.
HKCR\Interface\{66666666-6666-6666-6666-660066226658} (Adware.GamePlayLab) -> Žádná instrukce nebyla provedena.
HKCR\TypeLib\{44444444-4444-4444-4444-440044224458} (Adware.GamePlayLab) -> Žádná instrukce nebyla provedena.
HKCU\SOFTWARE\INSTALLEDBROWSEREXTENSIONS\215 APPS (PUP.CrossFire.SA) -> Žádná instrukce nebyla provedena.
HKLM\SOFTWARE\Google\Chrome\Extensions\kincjchfokkeneeofpeefomkikfkiedl (PUP.FCTPlugin) -> Žádná instrukce nebyla provedena.
HKLM\SOFTWARE\Google\Chrome\Extensions\mpfapcdfbbledbojijcbcclmlieaoogk (PUP.GamesPlayLab) -> Žádná instrukce nebyla provedena.
HKLM\SOFTWARE\Google\chrome\Extensions\fdloijijlkoblmigdofommgnheckmaki (PUP.Funmoods) -> Žádná instrukce nebyla provedena.
HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\mpfapcdfbbledbojijcbcclmlieaoogk (PUP.GamesPlayLab) -> Žádná instrukce nebyla provedena.
Nalezené hodnoty v registru: 1
HKCU\Software\InstalledBrowserExtensions\215 Apps|2258 (PUP.CrossFire.SA) -> Data: I Want This -> Žádná instrukce nebyla provedena.
Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené složky: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené soubory: 2
C:\ProgramData\ADDICT-THING\bhoclass.dll (PUP.DownloadnSave) -> Žádná instrukce nebyla provedena.
C:\Users\minipechy\AppData\Local\funmoods.crx (PUP.Funmoods) -> Žádná instrukce nebyla provedena.
(konec)
Re: Mladyho notas vylozene na hry se pry sam vypina
ComboFix 12-08-18.03 - minipechy 24.08.2012 8:31.2.2 - x64
Microsoft Windows 7 Home Premium 6.1.7601.1.1250.420.1029.18.3767.2545 [GMT 2:00]
Spuštěný z: c:\users\minipechy\Desktop\ComboFix.exe
Použité ovládací přepínače :: c:\users\minipechy\Desktop\CFScript.txt
AV: Microsoft Security Essentials *Disabled/Updated* {9765EA51-0D3C-7DFB-6091-10E4E1F341F6}
SP: Microsoft Security Essentials *Disabled/Updated* {2C040BB5-2B06-7275-5A21-2B969A740B4B}
SP: Windows Defender *Disabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
* Vytvořen nový Bod Obnovení
.
FILE ::
"c:\program files (x86)\Ask.com\GenericAskToolbar.dll"
"c:\program files (x86)\Skype\Updater\Updater.exe"
"c:\users\minipechy\AppData\Local\Facebook\Update\FacebookUpdate.exe"
"c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1628672026-3414894350-2627105239-1000Core.job"
"c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1628672026-3414894350-2627105239-1000Core.job"
"c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1628672026-3414894350-2627105239-1000UA.job"
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\program files (x86)\Ask.com
c:\program files (x86)\Ask.com\assets\oobe\b.png
c:\program files (x86)\Ask.com\assets\oobe\bl.png
c:\program files (x86)\Ask.com\assets\oobe\br.png
c:\program files (x86)\Ask.com\assets\oobe\l.png
c:\program files (x86)\Ask.com\assets\oobe\pointer.png
c:\program files (x86)\Ask.com\assets\oobe\r.png
c:\program files (x86)\Ask.com\assets\oobe\t.png
c:\program files (x86)\Ask.com\assets\oobe\tl.png
c:\program files (x86)\Ask.com\assets\oobe\tr.png
c:\program files (x86)\Ask.com\cobrand.ico
c:\program files (x86)\Ask.com\config.xml
c:\program files (x86)\Ask.com\favicon.ico
c:\program files (x86)\Ask.com\GenericAskToolbar.dll
c:\program files (x86)\Ask.com\mupcfg.xml
c:\program files (x86)\Ask.com\precache.exe
c:\program files (x86)\Ask.com\SaUpdate.exe
c:\program files (x86)\Ask.com\Updater\config.xml
c:\program files (x86)\Ask.com\Updater\Updater.exe
c:\program files (x86)\Ask.com\UpdateTask.exe
c:\program files (x86)\Skype\Updater
c:\program files (x86)\Skype\Updater\Updater.dll
c:\program files (x86)\Skype\Updater\Updater.exe
c:\users\minipechy\AppData\Local\Facebook\Update
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\FacebookCrashHandler.exe
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\FacebookUpdate.exe
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\FacebookUpdateHelper.msi
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdate.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_ar.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_bg.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_bn.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_ca.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_cs.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_da.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_de.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_el.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_en-GB.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_en.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_es-419.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_es.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_et.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_fa.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_fi.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_fil.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_fr.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_gu.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_hi.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_hr.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_hu.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_id.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_is.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_it.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_iw.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_ja.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_kn.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_ko.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_lt.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_lv.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_ml.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_mr.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_ms.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_nl.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_no.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_or.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_pl.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_pt-BR.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_pt-PT.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_ro.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_ru.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_sk.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_sl.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_sr.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_sv.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_ta.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_te.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_th.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_tr.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_uk.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_ur.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_vi.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_zh-CN.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_zh-TW.dll
c:\users\minipechy\AppData\Local\Facebook\Update\FacebookUpdate.exe
c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1628672026-3414894350-2627105239-1000Core.job
c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1628672026-3414894350-2627105239-1000Core.job
c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1628672026-3414894350-2627105239-1000UA.job
.
.
((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Service_SkypeUpdate
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2012-07-24 do 2012-08-24 )))))))))))))))))))))))))))))))
.
.
2012-08-24 06:38 . 2012-08-24 06:38 -------- d-----w- c:\users\Default\AppData\Local\temp
2012-08-19 08:51 . 2005-03-18 15:19 3823312 ----a-w- c:\windows\system32\d3dx9_25.dll
2012-08-19 08:51 . 2005-02-05 17:45 3544272 ----a-w- c:\windows\system32\d3dx9_24.dll
2012-08-19 08:49 . 2012-08-19 08:51 -------- d--h--w- c:\windows\msdownld.tmp
2012-08-19 08:42 . 2012-06-29 10:04 9133488 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{D7D8A8D9-F89E-4CAC-BC7D-41395EEFAB31}\mpengine.dll
2012-08-18 08:25 . 2012-06-29 10:04 9133488 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpengine.dll
2012-08-17 06:43 . 2012-06-29 04:55 17809920 ----a-w- c:\windows\system32\mshtml.dll
2012-08-17 06:43 . 2012-06-29 04:09 10925568 ----a-w- c:\windows\system32\ieframe.dll
2012-08-09 14:12 . 2012-08-09 14:12 -------- d-----w- c:\windows\cs
2012-08-09 14:09 . 2012-08-09 14:09 -------- d-----w- c:\windows\pt-pt
2012-08-09 14:09 . 2012-08-09 14:09 -------- d-----w- c:\windows\ar
2012-08-09 14:09 . 2012-08-09 14:09 -------- d-----w- c:\windows\bg
2012-08-09 14:09 . 2012-08-09 14:09 -------- d-----w- c:\windows\da
2012-08-09 14:09 . 2012-08-09 14:09 -------- d-----w- c:\windows\de
2012-08-09 14:09 . 2012-08-09 14:09 -------- d-----w- c:\windows\el
2012-08-09 14:09 . 2012-08-09 14:09 -------- d-----w- c:\windows\en
2012-08-09 14:08 . 2012-08-09 14:08 -------- d-----w- c:\windows\es
2012-08-09 14:08 . 2012-08-09 14:08 -------- d-----w- c:\windows\fi
2012-08-09 14:08 . 2012-08-09 14:08 -------- d-----w- c:\windows\fr
2012-08-09 14:08 . 2012-08-09 14:08 -------- d-----w- c:\windows\he
2012-08-09 14:08 . 2012-08-09 14:08 -------- d-----w- c:\windows\hr
2012-08-09 14:08 . 2012-08-09 14:08 -------- d-----w- c:\windows\hu
2012-08-09 14:08 . 2012-08-09 14:08 -------- d-----w- c:\windows\it
2012-08-09 14:08 . 2012-08-09 14:08 -------- d-----w- c:\windows\nl
2012-08-09 14:08 . 2012-08-09 14:08 -------- d-----w- c:\windows\no
2012-08-09 14:08 . 2012-08-09 14:08 -------- d-----w- c:\windows\pl
2012-08-09 14:08 . 2012-08-09 14:08 -------- d-----w- c:\windows\pt-br
2012-08-09 14:07 . 2012-08-09 14:07 -------- d-----w- c:\windows\ro
2012-08-09 14:07 . 2012-08-09 14:07 -------- d-----w- c:\windows\ru
2012-08-09 14:07 . 2012-08-09 14:07 -------- d-----w- c:\windows\sk
2012-08-09 14:07 . 2012-08-09 14:07 -------- d-----w- c:\windows\sl
2012-08-09 14:07 . 2012-08-09 14:07 -------- d-----w- c:\windows\sv
2012-08-09 14:07 . 2012-08-09 14:07 -------- d-----w- c:\windows\th
2012-08-09 14:07 . 2012-08-09 14:07 -------- d-----w- c:\windows\tr
2012-08-09 14:07 . 2012-08-09 14:07 -------- d-----w- c:\windows\zh-tw
2012-08-09 14:07 . 2012-08-09 14:07 -------- d-----w- c:\windows\ca
2012-08-09 14:07 . 2012-08-09 14:07 -------- d-----w- c:\windows\eu
2012-08-09 13:54 . 2012-08-09 13:54 19720 ----a-w- c:\programdata\Microsoft\IdentityCRL\production\ppcrlconfig600.dll
2012-08-09 13:50 . 2012-08-09 13:50 15712 ----a-w- c:\program files (x86)\Common Files\Windows Live\.cache\f58ab98f1cd763502\MeshBetaRemover.exe
2012-08-09 13:50 . 2012-08-09 13:50 89944 ----a-w- c:\program files (x86)\Common Files\Windows Live\.cache\f53ce68b1cd763501\DSETUP.dll
2012-08-09 13:50 . 2012-08-09 13:50 537432 ----a-w- c:\program files (x86)\Common Files\Windows Live\.cache\f53ce68b1cd763501\DXSETUP.exe
2012-08-09 13:50 . 2012-08-09 13:50 1801048 ----a-w- c:\program files (x86)\Common Files\Windows Live\.cache\f53ce68b1cd763501\dsetup32.dll
2012-08-05 14:07 . 2012-08-05 14:07 -------- d-----w- c:\users\minipechy\AppData\Local\Acer
2012-08-04 20:39 . 2012-08-04 20:39 -------- d-----w- c:\program files\CPUID
2012-08-04 20:39 . 2011-09-21 08:25 21992 ----a-w- c:\windows\system32\drivers\cpuz135_x64.sys
2012-08-04 19:43 . 2012-08-04 19:43 -------- d-----w- c:\users\minipechy\AppData\Roaming\Malwarebytes
2012-08-04 19:43 . 2012-08-04 19:43 -------- d-----w- c:\programdata\Malwarebytes
2012-08-04 19:43 . 2012-08-04 19:43 -------- d-----w- c:\program files (x86)\Malwarebytes' Anti-Malware
2012-08-04 19:43 . 2012-07-03 11:46 24904 ----a-w- c:\windows\system32\drivers\mbam.sys
2012-08-04 10:31 . 2012-08-04 10:32 -------- d-----w- c:\program files (x86)\CrystalDiskInfo
2012-07-25 10:18 . 2010-02-23 08:16 294912 ----a-w- c:\windows\system32\browserchoice.exe
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-08-17 06:39 . 2011-12-28 13:25 62134624 ----a-w- c:\windows\system32\MRT.exe
2012-08-15 18:33 . 2012-04-26 15:36 426184 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe
2012-08-15 18:33 . 2011-07-20 08:00 70344 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2012-07-05 18:13 . 2012-07-05 18:14 772592 ----a-w- c:\windows\SysWow64\npDeployJava1.dll
2012-06-09 05:43 . 2012-07-19 08:05 14172672 ----a-w- c:\windows\system32\shell32.dll
2012-06-06 18:59 . 2012-06-06 18:59 1070152 ----a-w- c:\windows\SysWow64\MSCOMCTL.OCX
2012-06-06 06:06 . 2012-07-19 08:05 2004480 ----a-w- c:\windows\system32\msxml6.dll
2012-06-06 06:06 . 2012-07-19 08:05 1881600 ----a-w- c:\windows\system32\msxml3.dll
2012-06-06 06:02 . 2012-07-19 08:05 1133568 ----a-w- c:\windows\system32\cdosys.dll
2012-06-06 05:05 . 2012-07-19 08:05 1390080 ----a-w- c:\windows\SysWow64\msxml6.dll
2012-06-06 05:05 . 2012-07-19 08:05 1236992 ----a-w- c:\windows\SysWow64\msxml3.dll
2012-06-06 05:03 . 2012-07-19 08:05 805376 ----a-w- c:\windows\SysWow64\cdosys.dll
2012-06-02 22:19 . 2012-06-19 12:34 38424 ----a-w- c:\windows\system32\wups.dll
2012-06-02 22:19 . 2012-06-19 12:35 2428952 ----a-w- c:\windows\system32\wuaueng.dll
2012-06-02 22:19 . 2012-06-19 12:35 57880 ----a-w- c:\windows\system32\wuauclt.exe
2012-06-02 22:19 . 2012-06-19 12:35 44056 ----a-w- c:\windows\system32\wups2.dll
2012-06-02 22:19 . 2012-06-19 12:34 701976 ----a-w- c:\windows\system32\wuapi.dll
2012-06-02 22:15 . 2012-06-19 12:35 2622464 ----a-w- c:\windows\system32\wucltux.dll
2012-06-02 22:15 . 2012-06-19 12:34 99840 ----a-w- c:\windows\system32\wudriver.dll
2012-06-02 13:19 . 2012-06-19 12:34 186752 ----a-w- c:\windows\system32\wuwebv.dll
2012-06-02 13:15 . 2012-06-19 12:34 36864 ----a-w- c:\windows\system32\wuapp.exe
2012-06-02 05:50 . 2012-07-19 08:05 458704 ----a-w- c:\windows\system32\drivers\cng.sys
2012-06-02 05:48 . 2012-07-19 08:05 95600 ----a-w- c:\windows\system32\drivers\ksecdd.sys
2012-06-02 05:48 . 2012-07-19 08:05 151920 ----a-w- c:\windows\system32\drivers\ksecpkg.sys
2012-06-02 05:45 . 2012-07-19 08:05 340992 ----a-w- c:\windows\system32\schannel.dll
2012-06-02 05:44 . 2012-07-19 08:05 307200 ----a-w- c:\windows\system32\ncrypt.dll
2012-06-02 04:40 . 2012-07-19 08:05 22016 ----a-w- c:\windows\SysWow64\secur32.dll
2012-06-02 04:40 . 2012-07-19 08:05 225280 ----a-w- c:\windows\SysWow64\schannel.dll
2012-06-02 04:39 . 2012-07-19 08:05 219136 ----a-w- c:\windows\SysWow64\ncrypt.dll
2012-06-02 04:34 . 2012-07-19 08:05 96768 ----a-w- c:\windows\SysWow64\sspicli.dll
.
.
((((((((((((((((((((((((((((( SnapShot@2012-08-19_08.21.54 )))))))))))))))))))))))))))))))))))))))))
.
+ 2012-08-19 08:52 . 2007-04-04 16:53 81768 c:\windows\SysWOW64\xinput1_3.dll
+ 2012-08-19 08:52 . 2006-07-28 07:30 62744 c:\windows\SysWOW64\xinput1_2.dll
+ 2012-08-19 08:52 . 2006-03-31 10:39 62672 c:\windows\SysWOW64\xinput1_1.dll
+ 2012-08-19 08:52 . 2010-06-02 02:55 74072 c:\windows\SysWOW64\XAPOFX1_5.dll
+ 2012-08-19 08:52 . 2010-02-04 08:01 74072 c:\windows\SysWOW64\XAPOFX1_4.dll
+ 2012-08-19 08:52 . 2008-10-27 08:04 70992 c:\windows\SysWOW64\XAPOFX1_2.dll
+ 2012-08-19 08:52 . 2008-07-31 08:41 68616 c:\windows\SysWOW64\XAPOFX1_1.dll
+ 2012-08-19 08:52 . 2008-05-30 12:17 65032 c:\windows\SysWOW64\XAPOFX1_0.dll
+ 2012-08-19 08:52 . 2010-02-04 08:01 22360 c:\windows\SysWOW64\X3DAudio1_7.dll
+ 2012-08-19 08:52 . 2009-03-16 12:18 22360 c:\windows\SysWOW64\X3DAudio1_6.dll
+ 2012-08-19 08:52 . 2008-10-27 08:04 23376 c:\windows\SysWOW64\X3DAudio1_5.dll
+ 2012-08-19 08:52 . 2008-05-30 12:17 25608 c:\windows\SysWOW64\X3DAudio1_4.dll
+ 2012-08-19 08:52 . 2008-03-05 14:00 25608 c:\windows\SysWOW64\X3DAudio1_3.dll
+ 2012-08-19 08:52 . 2007-10-22 01:37 17928 c:\windows\SysWOW64\X3DAudio1_2.dll
+ 2012-08-19 08:52 . 2007-03-05 10:42 15128 c:\windows\SysWOW64\x3daudio1_1.dll
+ 2012-08-19 08:52 . 2006-02-03 06:41 14032 c:\windows\SysWOW64\x3daudio1_0.dll
+ 2009-07-14 04:54 . 2012-08-19 19:39 16384 c:\windows\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
- 2009-07-14 04:54 . 2012-08-15 18:33 16384 c:\windows\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
- 2009-07-14 04:54 . 2012-08-15 18:33 32768 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
+ 2009-07-14 04:54 . 2012-08-19 19:39 32768 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
- 2009-07-14 04:54 . 2012-08-15 18:33 32768 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
+ 2009-07-14 04:54 . 2012-08-19 19:39 32768 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
+ 2012-08-19 08:52 . 2006-07-28 07:31 83736 c:\windows\system32\xinput1_2.dll
+ 2012-08-19 08:52 . 2006-03-31 10:39 83664 c:\windows\system32\xinput1_1.dll
+ 2012-08-19 08:52 . 2010-06-02 02:55 77656 c:\windows\system32\XAPOFX1_5.dll
+ 2012-08-19 08:52 . 2010-02-04 08:01 78680 c:\windows\system32\XAPOFX1_4.dll
+ 2012-08-19 08:52 . 2009-09-04 15:44 73544 c:\windows\system32\XAPOFX1_3.dll
+ 2012-08-19 08:52 . 2008-10-27 08:04 74576 c:\windows\system32\XAPOFX1_2.dll
+ 2012-08-19 08:52 . 2008-07-31 08:41 72200 c:\windows\system32\XAPOFX1_1.dll
+ 2012-08-19 08:52 . 2008-05-30 12:17 68104 c:\windows\system32\XAPOFX1_0.dll
+ 2012-08-19 08:52 . 2010-02-04 08:01 24920 c:\windows\system32\X3DAudio1_7.dll
+ 2012-08-19 08:52 . 2009-03-16 12:18 24920 c:\windows\system32\X3DAudio1_6.dll
+ 2012-08-19 08:52 . 2008-10-27 08:04 25936 c:\windows\system32\X3DAudio1_5.dll
+ 2012-08-19 08:52 . 2008-05-30 12:16 28168 c:\windows\system32\X3DAudio1_4.dll
+ 2012-08-19 08:52 . 2008-03-05 14:00 28168 c:\windows\system32\X3DAudio1_3.dll
+ 2012-08-19 08:52 . 2007-10-22 01:37 21000 c:\windows\system32\X3DAudio1_2.dll
+ 2012-08-19 08:52 . 2007-03-05 10:42 17688 c:\windows\system32\x3daudio1_1.dll
+ 2012-08-19 08:52 . 2006-02-03 06:41 16592 c:\windows\system32\x3daudio1_0.dll
+ 2010-11-21 03:09 . 2012-08-19 08:31 52680 c:\windows\system32\wdi\ShutdownPerformanceDiagnostics_SystemData.bin
+ 2009-07-14 05:10 . 2012-08-19 19:40 42370 c:\windows\system32\wdi\BootPerformanceDiagnostics_SystemData.bin
+ 2011-12-24 16:49 . 2012-08-19 19:40 15152 c:\windows\system32\wdi\{86432a0b-3c7d-4ddf-a89c-172faa90485d}\S-1-5-21-1628672026-3414894350-2627105239-1000_UserData.bin
+ 2012-08-19 08:52 . 2005-03-18 14:23 12800 c:\windows\Microsoft.NET\DirectX for Managed Code\1.0.2902.0\Microsoft.DirectX.Diagnostics.dll
+ 2012-08-19 08:52 . 2005-03-18 14:23 53248 c:\windows\Microsoft.NET\DirectX for Managed Code\1.0.2902.0\Microsoft.DirectX.AudioVideoPlayback.dll
+ 2012-08-19 08:52 . 2012-08-19 08:52 12800 c:\windows\assembly\GAC\Microsoft.DirectX.Diagnostics\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Diagnostics.dll
+ 2012-08-19 08:52 . 2012-08-19 08:52 53248 c:\windows\assembly\GAC\Microsoft.DirectX.AudioVideoPlayback\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.AudioVideoPlayback.dll
- 2012-08-19 08:21 . 2012-08-19 08:21 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat
+ 2012-08-24 06:39 . 2012-08-24 06:39 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat
- 2012-08-19 08:21 . 2012-08-19 08:21 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat
+ 2012-08-24 06:39 . 2012-08-24 06:39 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat
+ 2012-08-19 08:52 . 2010-06-02 02:55 527192 c:\windows\SysWOW64\XAudio2_7.dll
+ 2012-08-19 08:52 . 2010-02-04 08:01 528216 c:\windows\SysWOW64\XAudio2_6.dll
+ 2012-08-19 08:52 . 2009-03-16 12:18 517448 c:\windows\SysWOW64\XAudio2_4.dll
+ 2012-08-19 08:52 . 2008-10-27 08:04 514384 c:\windows\SysWOW64\XAudio2_3.dll
+ 2012-08-19 08:52 . 2008-07-31 08:40 509448 c:\windows\SysWOW64\XAudio2_2.dll
+ 2012-08-19 08:52 . 2008-05-30 12:19 507400 c:\windows\SysWOW64\XAudio2_1.dll
+ 2012-08-19 08:52 . 2008-03-05 14:03 479752 c:\windows\SysWOW64\XAudio2_0.dll
+ 2012-08-19 08:52 . 2010-06-02 02:55 239960 c:\windows\SysWOW64\xactengine3_7.dll
+ 2012-08-19 08:52 . 2010-02-04 08:01 238936 c:\windows\SysWOW64\xactengine3_6.dll
+ 2012-08-19 08:52 . 2009-09-04 15:44 238936 c:\windows\SysWOW64\xactengine3_5.dll
+ 2012-08-19 08:52 . 2009-03-16 12:18 235352 c:\windows\SysWOW64\xactengine3_4.dll
+ 2012-08-19 08:52 . 2008-10-27 08:04 235856 c:\windows\SysWOW64\xactengine3_3.dll
+ 2012-08-19 08:52 . 2008-07-31 08:41 238088 c:\windows\SysWOW64\xactengine3_2.dll
+ 2012-08-19 08:52 . 2008-05-30 12:18 238088 c:\windows\SysWOW64\xactengine3_1.dll
+ 2012-08-19 08:52 . 2008-03-05 14:03 238088 c:\windows\SysWOW64\xactengine3_0.dll
+ 2012-08-19 08:52 . 2007-07-19 22:57 267112 c:\windows\SysWOW64\xactengine2_9.dll
+ 2012-08-19 08:52 . 2007-06-20 18:46 266088 c:\windows\SysWOW64\xactengine2_8.dll
+ 2012-08-19 08:52 . 2007-04-04 16:55 261480 c:\windows\SysWOW64\xactengine2_7.dll
+ 2012-08-19 08:52 . 2007-01-24 13:27 255848 c:\windows\SysWOW64\xactengine2_6.dll
+ 2012-08-19 08:52 . 2006-12-08 10:02 251672 c:\windows\SysWOW64\xactengine2_5.dll
+ 2012-08-19 08:52 . 2006-09-28 14:05 237848 c:\windows\SysWOW64\xactengine2_4.dll
+ 2012-08-19 08:52 . 2006-07-28 07:30 236824 c:\windows\SysWOW64\xactengine2_3.dll
+ 2012-08-19 08:52 . 2006-05-31 05:24 230168 c:\windows\SysWOW64\xactengine2_2.dll
+ 2012-08-19 08:52 . 2007-10-22 01:39 267272 c:\windows\SysWOW64\xactengine2_10.dll
+ 2012-08-19 08:52 . 2006-03-31 10:39 229584 c:\windows\SysWOW64\xactengine2_1.dll
+ 2012-08-19 08:52 . 2006-02-03 06:42 230096 c:\windows\SysWOW64\xactengine2_0.dll
+ 2012-08-19 08:52 . 2010-05-26 09:41 248672 c:\windows\SysWOW64\d3dx11_43.dll
+ 2012-08-19 08:52 . 2009-09-04 15:29 235344 c:\windows\SysWOW64\d3dx11_42.dll
+ 2012-08-19 08:52 . 2010-05-26 09:41 470880 c:\windows\SysWOW64\d3dx10_43.dll
+ 2012-08-19 08:52 . 2008-10-10 02:52 452440 c:\windows\SysWOW64\d3dx10_40.dll
+ 2012-08-19 08:52 . 2008-07-10 09:01 467984 c:\windows\SysWOW64\d3dx10_39.dll
+ 2012-08-19 08:52 . 2008-05-30 12:11 467984 c:\windows\SysWOW64\d3dx10_38.dll
+ 2012-08-19 08:52 . 2008-02-05 21:07 462864 c:\windows\SysWOW64\d3dx10_37.dll
+ 2012-08-19 08:52 . 2007-10-02 07:56 444776 c:\windows\SysWOW64\d3dx10_36.dll
+ 2012-08-19 08:52 . 2007-07-19 16:14 444776 c:\windows\SysWOW64\d3dx10_35.dll
+ 2012-08-19 08:52 . 2007-05-16 14:45 443752 c:\windows\SysWOW64\d3dx10_34.dll
+ 2012-08-19 08:52 . 2007-03-15 14:57 443752 c:\windows\SysWOW64\d3dx10_33.dll
+ 2012-08-19 08:52 . 2006-11-29 11:06 440080 c:\windows\SysWOW64\d3dx10.dll
+ 2012-08-19 08:52 . 2007-04-04 16:54 107368 c:\windows\system32\xinput1_3.dll
+ 2012-08-19 08:52 . 2010-06-02 02:55 518488 c:\windows\system32\XAudio2_7.dll
+ 2012-08-19 08:52 . 2010-02-04 08:01 530776 c:\windows\system32\XAudio2_6.dll
+ 2012-08-19 08:52 . 2009-09-04 15:44 517960 c:\windows\system32\XAudio2_5.dll
+ 2012-08-19 08:52 . 2009-03-16 12:18 521560 c:\windows\system32\XAudio2_4.dll
+ 2012-08-19 08:52 . 2008-10-27 08:04 518480 c:\windows\system32\XAudio2_3.dll
+ 2012-08-19 08:52 . 2008-07-31 08:40 513544 c:\windows\system32\XAudio2_2.dll
+ 2012-08-19 08:52 . 2008-05-30 12:19 511496 c:\windows\system32\XAudio2_1.dll
+ 2012-08-19 08:52 . 2008-03-05 14:04 489480 c:\windows\system32\XAudio2_0.dll
+ 2012-08-19 08:52 . 2010-06-02 02:55 176984 c:\windows\system32\xactengine3_7.dll
+ 2012-08-19 08:52 . 2010-02-04 08:01 176984 c:\windows\system32\xactengine3_6.dll
+ 2012-08-19 08:52 . 2009-09-04 15:44 176968 c:\windows\system32\xactengine3_5.dll
+ 2012-08-19 08:52 . 2009-03-16 12:18 174936 c:\windows\system32\xactengine3_4.dll
+ 2012-08-19 08:52 . 2008-10-27 08:04 175440 c:\windows\system32\xactengine3_3.dll
+ 2012-08-19 08:52 . 2008-07-31 08:41 177672 c:\windows\system32\xactengine3_2.dll
+ 2012-08-19 08:52 . 2008-05-30 12:18 177672 c:\windows\system32\xactengine3_1.dll
+ 2012-08-19 08:52 . 2008-03-05 14:03 177672 c:\windows\system32\xactengine3_0.dll
+ 2012-08-19 08:52 . 2007-07-19 22:57 411496 c:\windows\system32\xactengine2_9.dll
+ 2012-08-19 08:52 . 2007-06-20 18:49 409960 c:\windows\system32\xactengine2_8.dll
+ 2012-08-19 08:52 . 2007-04-04 16:55 403304 c:\windows\system32\xactengine2_7.dll
+ 2012-08-19 08:52 . 2007-01-24 13:27 393576 c:\windows\system32\xactengine2_6.dll
+ 2012-08-19 08:52 . 2006-12-08 10:00 390424 c:\windows\system32\xactengine2_5.dll
+ 2012-08-19 08:52 . 2006-09-28 14:04 364824 c:\windows\system32\xactengine2_4.dll
+ 2012-08-19 08:52 . 2006-07-28 07:30 363288 c:\windows\system32\xactengine2_3.dll
+ 2012-08-19 08:52 . 2006-05-31 05:22 354072 c:\windows\system32\xactengine2_2.dll
+ 2012-08-19 08:52 . 2007-10-22 01:40 411656 c:\windows\system32\xactengine2_10.dll
+ 2012-08-19 08:52 . 2006-03-31 10:40 352464 c:\windows\system32\xactengine2_1.dll
+ 2012-08-19 08:52 . 2006-02-03 06:42 355536 c:\windows\system32\xactengine2_0.dll
+ 2011-12-24 17:28 . 2012-08-20 07:59 234324 c:\windows\system32\wdi\SuspendPerformanceDiagnostics_SystemData_S3.bin
+ 2012-08-19 08:52 . 2010-05-26 09:41 276832 c:\windows\system32\d3dx11_43.dll
+ 2012-08-19 08:52 . 2009-09-04 15:29 285024 c:\windows\system32\d3dx11_42.dll
+ 2012-08-19 08:52 . 2010-05-26 09:41 511328 c:\windows\system32\d3dx10_43.dll
+ 2012-08-19 08:52 . 2009-03-09 13:27 520544 c:\windows\system32\d3dx10_41.dll
+ 2012-08-19 08:52 . 2008-10-10 02:52 519000 c:\windows\system32\d3dx10_40.dll
+ 2012-08-19 08:52 . 2008-07-10 09:00 540688 c:\windows\system32\d3dx10_39.dll
+ 2012-08-19 08:52 . 2008-05-30 12:11 540688 c:\windows\system32\d3dx10_38.dll
+ 2012-08-19 08:52 . 2008-02-05 21:07 529424 c:\windows\system32\d3dx10_37.dll
+ 2012-08-19 08:52 . 2007-10-02 07:56 508264 c:\windows\system32\d3dx10_36.dll
+ 2012-08-19 08:52 . 2007-07-19 16:14 508264 c:\windows\system32\d3dx10_35.dll
+ 2012-08-19 08:52 . 2007-05-16 14:45 506728 c:\windows\system32\d3dx10_34.dll
+ 2012-08-19 08:52 . 2007-03-15 14:57 506728 c:\windows\system32\d3dx10_33.dll
+ 2012-08-19 08:52 . 2006-11-29 11:06 469264 c:\windows\system32\d3dx10.dll
- 2009-07-14 05:01 . 2012-08-19 08:20 405112 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-System.dat
+ 2009-07-14 05:01 . 2012-08-24 06:38 405112 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-System.dat
+ 2012-08-19 08:52 . 2006-03-31 09:27 578560 c:\windows\Microsoft.NET\DirectX for Managed Code\1.0.2911.0\Microsoft.DirectX.Direct3DX.dll
+ 2012-08-19 08:51 . 2006-02-03 05:40 578560 c:\windows\Microsoft.NET\DirectX for Managed Code\1.0.2910.0\Microsoft.DirectX.Direct3DX.dll
+ 2012-08-19 08:51 . 2005-12-05 15:20 577536 c:\windows\Microsoft.NET\DirectX for Managed Code\1.0.2909.0\Microsoft.DirectX.Direct3DX.dll
+ 2012-08-19 08:51 . 2005-09-28 12:11 577536 c:\windows\Microsoft.NET\DirectX for Managed Code\1.0.2908.0\Microsoft.DirectX.Direct3DX.dll
+ 2012-08-19 08:51 . 2005-07-22 15:21 577024 c:\windows\Microsoft.NET\DirectX for Managed Code\1.0.2907.0\Microsoft.DirectX.Direct3DX.dll
+ 2012-08-19 08:51 . 2005-05-26 13:15 576000 c:\windows\Microsoft.NET\DirectX for Managed Code\1.0.2906.0\Microsoft.DirectX.Direct3DX.dll
+ 2012-08-19 08:51 . 2005-03-18 15:23 567296 c:\windows\Microsoft.NET\DirectX for Managed Code\1.0.2905.0\Microsoft.DirectX.Direct3DX.dll
+ 2012-08-19 08:51 . 2005-02-05 17:32 563712 c:\windows\Microsoft.NET\DirectX for Managed Code\1.0.2904.0\Microsoft.DirectX.Direct3DX.dll
+ 2012-08-19 08:52 . 2005-03-18 14:23 223232 c:\windows\Microsoft.NET\DirectX for Managed Code\1.0.2902.0\Microsoft.DirectX.dll
+ 2012-08-19 08:52 . 2005-03-18 14:23 178176 c:\windows\Microsoft.NET\DirectX for Managed Code\1.0.2902.0\Microsoft.DirectX.DirectSound.dll
+ 2012-08-19 08:52 . 2005-03-18 14:23 364544 c:\windows\Microsoft.NET\DirectX for Managed Code\1.0.2902.0\Microsoft.DirectX.DirectPlay.dll
+ 2012-08-19 08:52 . 2005-03-18 14:23 159232 c:\windows\Microsoft.NET\DirectX for Managed Code\1.0.2902.0\Microsoft.DirectX.DirectInput.dll
+ 2012-08-19 08:52 . 2005-03-18 14:23 145920 c:\windows\Microsoft.NET\DirectX for Managed Code\1.0.2902.0\Microsoft.DirectX.DirectDraw.dll
+ 2012-08-19 08:52 . 2005-03-18 14:23 473600 c:\windows\Microsoft.NET\DirectX for Managed Code\1.0.2902.0\Microsoft.DirectX.Direct3D.dll
+ 2012-02-13 19:30 . 2012-02-13 19:30 475136 c:\windows\Installer\156645.msi
+ 2012-08-19 08:52 . 2012-08-19 08:52 223232 c:\windows\assembly\GAC\Microsoft.DirectX\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.dll
+ 2012-08-19 08:52 . 2012-08-19 08:52 178176 c:\windows\assembly\GAC\Microsoft.DirectX.DirectSound\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectSound.dll
+ 2012-08-19 08:52 . 2012-08-19 08:52 364544 c:\windows\assembly\GAC\Microsoft.DirectX.DirectPlay\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectPlay.dll
+ 2012-08-19 08:52 . 2012-08-19 08:52 159232 c:\windows\assembly\GAC\Microsoft.DirectX.DirectInput\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectInput.dll
+ 2012-08-19 08:52 . 2012-08-19 08:52 145920 c:\windows\assembly\GAC\Microsoft.DirectX.DirectDraw\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectDraw.dll
+ 2012-08-19 08:52 . 2012-08-19 08:52 578560 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2911.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2012-08-19 08:51 . 2012-08-19 08:51 578560 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2910.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2012-08-19 08:51 . 2012-08-19 08:51 577536 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2909.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2012-08-19 08:51 . 2012-08-19 08:51 577536 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2908.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2012-08-19 08:51 . 2012-08-19 08:51 577024 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2907.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2012-08-19 08:51 . 2012-08-19 08:51 576000 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2906.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2012-08-19 08:51 . 2012-08-19 08:51 567296 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2905.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2012-08-19 08:51 . 2012-08-19 08:51 563712 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2904.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2012-08-19 08:52 . 2012-08-19 08:52 473600 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3D\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Direct3D.dll
+ 2012-08-19 08:52 . 2010-05-26 09:41 1998168 c:\windows\SysWOW64\D3DX9_43.dll
+ 2012-08-19 08:52 . 2009-09-04 15:29 1892184 c:\windows\SysWOW64\D3DX9_42.dll
+ 2012-08-19 08:52 . 2009-03-09 13:27 4178264 c:\windows\SysWOW64\D3DX9_41.dll
+ 2012-08-19 08:52 . 2008-10-10 02:52 4379984 c:\windows\SysWOW64\D3DX9_40.dll
+ 2012-08-19 08:52 . 2008-07-10 09:00 3851784 c:\windows\SysWOW64\D3DX9_39.dll
+ 2012-08-19 08:52 . 2008-05-30 12:11 3850760 c:\windows\SysWOW64\D3DX9_38.dll
+ 2012-08-19 08:52 . 2008-03-05 13:56 3786760 c:\windows\SysWOW64\D3DX9_37.dll
+ 2012-08-19 08:52 . 2007-10-12 13:14 3734536 c:\windows\SysWOW64\d3dx9_36.dll
+ 2012-08-19 08:52 . 2007-07-19 16:14 3727720 c:\windows\SysWOW64\d3dx9_35.dll
+ 2012-08-19 08:52 . 2007-05-16 14:45 3497832 c:\windows\SysWOW64\d3dx9_34.dll
+ 2012-08-19 08:52 . 2007-03-12 14:42 3495784 c:\windows\SysWOW64\d3dx9_33.dll
+ 2012-08-19 08:52 . 2006-09-28 14:05 2414360 c:\windows\SysWOW64\d3dx9_31.dll
+ 2012-08-19 08:52 . 2006-03-31 10:40 2388176 c:\windows\SysWOW64\d3dx9_30.dll
+ 2012-08-19 08:52 . 2006-02-03 06:43 2332368 c:\windows\SysWOW64\d3dx9_29.dll
+ 2012-08-19 08:52 . 2005-12-05 16:09 2323664 c:\windows\SysWOW64\d3dx9_28.dll
+ 2012-08-19 08:52 . 2005-07-22 17:59 2319568 c:\windows\SysWOW64\d3dx9_27.dll
+ 2012-08-19 08:52 . 2005-05-26 13:34 2297552 c:\windows\SysWOW64\d3dx9_26.dll
+ 2012-08-19 08:51 . 2005-02-05 17:45 2222800 c:\windows\SysWOW64\d3dx9_24.dll
+ 2012-08-19 08:52 . 2010-05-26 09:41 1868128 c:\windows\SysWOW64\d3dcsx_43.dll
+ 2012-08-19 08:52 . 2009-09-04 15:29 5501792 c:\windows\SysWOW64\d3dcsx_42.dll
+ 2012-08-19 08:52 . 2010-05-26 09:41 2106216 c:\windows\SysWOW64\D3DCompiler_43.dll
+ 2012-08-19 08:52 . 2009-09-04 15:29 1974616 c:\windows\SysWOW64\D3DCompiler_42.dll
+ 2012-08-19 08:52 . 2008-10-10 02:52 2036576 c:\windows\SysWOW64\D3DCompiler_40.dll
+ 2012-08-19 08:52 . 2008-07-10 09:00 1493528 c:\windows\SysWOW64\D3DCompiler_39.dll
+ 2012-08-19 08:52 . 2008-05-30 12:11 1491992 c:\windows\SysWOW64\D3DCompiler_38.dll
+ 2012-08-19 08:52 . 2008-03-05 13:56 1420824 c:\windows\SysWOW64\D3DCompiler_37.dll
+ 2012-08-19 08:52 . 2007-10-12 13:14 1374232 c:\windows\SysWOW64\D3DCompiler_36.dll
+ 2012-08-19 08:52 . 2007-07-19 16:14 1358192 c:\windows\SysWOW64\D3DCompiler_35.dll
+ 2012-08-19 08:52 . 2007-05-16 14:45 1124720 c:\windows\SysWOW64\D3DCompiler_34.dll
+ 2012-08-19 08:52 . 2007-03-12 14:42 1123696 c:\windows\SysWOW64\D3DCompiler_33.dll
+ 2009-07-14 02:36 . 2012-08-24 06:27 3206030 c:\windows\system32\perfh009.dat
+ 2011-09-24 06:23 . 2012-08-24 06:27 7922710 c:\windows\system32\perfh005.dat
+ 2009-07-14 02:36 . 2012-08-24 06:27 2583426 c:\windows\system32\perfc009.dat
+ 2011-09-24 06:23 . 2012-08-24 06:27 2671654 c:\windows\system32\perfc005.dat
+ 2012-08-19 08:52 . 2010-05-26 09:41 2401112 c:\windows\system32\D3DX9_43.dll
+ 2012-08-19 08:52 . 2009-09-04 15:29 2475352 c:\windows\system32\D3DX9_42.dll
+ 2012-08-19 08:52 . 2009-03-09 13:27 5425496 c:\windows\system32\D3DX9_41.dll
+ 2012-08-19 08:52 . 2008-10-10 02:52 5631312 c:\windows\system32\D3DX9_40.dll
+ 2012-08-19 08:52 . 2008-07-10 09:00 4992520 c:\windows\system32\D3DX9_39.dll
+ 2012-08-19 08:52 . 2008-05-30 12:11 4991496 c:\windows\system32\D3DX9_38.dll
+ 2012-08-19 08:52 . 2008-03-05 13:56 4910088 c:\windows\system32\D3DX9_37.dll
+ 2012-08-19 08:52 . 2007-10-12 13:14 5081608 c:\windows\system32\d3dx9_36.dll
+ 2012-08-19 08:52 . 2007-07-19 16:14 5073256 c:\windows\system32\d3dx9_35.dll
+ 2012-08-19 08:52 . 2007-05-16 14:45 4496232 c:\windows\system32\d3dx9_34.dll
+ 2012-08-19 08:52 . 2007-03-12 14:42 4494184 c:\windows\system32\d3dx9_33.dll
+ 2012-08-19 08:52 . 2006-09-28 14:05 3977496 c:\windows\system32\d3dx9_31.dll
+ 2012-08-19 08:52 . 2006-03-31 10:41 3927248 c:\windows\system32\d3dx9_30.dll
+ 2012-08-19 08:52 . 2006-02-03 06:43 3830992 c:\windows\system32\d3dx9_29.dll
+ 2012-08-19 08:52 . 2005-12-05 16:09 3815120 c:\windows\system32\d3dx9_28.dll
+ 2012-08-19 08:52 . 2005-07-22 17:59 3807440 c:\windows\system32\d3dx9_27.dll
+ 2012-08-19 08:52 . 2005-05-26 13:34 3767504 c:\windows\system32\d3dx9_26.dll
+ 2012-08-19 08:52 . 2010-05-26 09:41 1907552 c:\windows\system32\d3dcsx_43.dll
+ 2012-08-19 08:52 . 2009-09-04 15:29 5554512 c:\windows\system32\d3dcsx_42.dll
+ 2012-08-19 08:52 . 2010-05-26 09:41 2526056 c:\windows\system32\D3DCompiler_43.dll
+ 2012-08-19 08:52 . 2009-09-04 15:29 2582888 c:\windows\system32\D3DCompiler_42.dll
+ 2012-08-19 08:52 . 2009-03-09 13:27 2430312 c:\windows\system32\D3DCompiler_41.dll
+ 2012-08-19 08:52 . 2008-10-10 02:52 2605920 c:\windows\system32\D3DCompiler_40.dll
+ 2012-08-19 08:52 . 2008-07-10 09:00 1942552 c:\windows\system32\D3DCompiler_39.dll
+ 2012-08-19 08:52 . 2008-05-30 12:11 1941528 c:\windows\system32\D3DCompiler_38.dll
+ 2012-08-19 08:52 . 2008-03-05 13:56 1860120 c:\windows\system32\D3DCompiler_37.dll
+ 2012-08-19 08:52 . 2007-10-12 13:14 2006552 c:\windows\system32\D3DCompiler_36.dll
+ 2012-08-19 08:52 . 2007-07-19 16:14 1985904 c:\windows\system32\D3DCompiler_35.dll
+ 2012-08-19 08:52 . 2007-05-16 14:45 1401200 c:\windows\system32\D3DCompiler_34.dll
+ 2012-08-19 08:52 . 2007-03-12 14:42 1400176 c:\windows\system32\D3DCompiler_33.dll
+ 2011-12-24 23:10 . 2012-08-24 06:38 1005752 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-S-1-5-21-1628672026-3414894350-2627105239-1000-8192.dat
- 2011-12-24 23:10 . 2012-08-19 08:20 1005752 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-S-1-5-21-1628672026-3414894350-2627105239-1000-8192.dat
+ 2012-08-19 08:51 . 2004-12-01 13:53 2846720 c:\windows\Microsoft.NET\DirectX for Managed Code\1.0.2903.0\Microsoft.DirectX.Direct3DX.dll
+ 2012-08-19 08:51 . 2004-09-29 10:38 2676224 c:\windows\Microsoft.NET\DirectX for Managed Code\1.0.2902.0\Microsoft.DirectX.Direct3DX.dll
+ 2012-08-19 08:51 . 2012-08-19 08:51 2846720 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2903.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2012-08-19 08:51 . 2012-08-19 08:51 2676224 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
.
-- Snímek resetován k současnému datu --
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Skype"="c:\program files (x86)\Skype\Phone\Skype.exe" [2012-07-13 17418928]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"SuiteTray"="c:\program files (x86)\EgisTec MyWinLockerSuite\x86\SuiteTray.exe" [2011-04-02 340848]
"EgisTecPMMUpdate"="c:\program files (x86)\EgisTec IPS\PmmUpdate.exe" [2011-03-29 408432]
"EgisUpdate"="c:\program files (x86)\EgisTec IPS\EgisUpdate.exe" [2011-03-29 202608]
"BackupManagerTray"="c:\program files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe" [2011-04-24 297280]
"LManager"="c:\program files (x86)\Launch Manager\LManager.exe" [2011-07-01 1103440]
"ArcadeMovieService"="c:\program files (x86)\Acer\clear.fi\Movie\clear.fiMovieService.exe" [2011-05-10 177448]
"GrooveMonitor"="c:\program files (x86)\Microsoft Office\Office12\GrooveMonitor.exe" [2009-02-26 30040]
"Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-07-27 919008]
"4StoryPrePatch"="c:\program files (x86)\Gameforge4D\4Story_CZ\PrePatch.exe" [2012-05-08 327680]
"SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2012-01-17 252296]
"Malwarebytes' Anti-Malware"="c:\program files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe" [2012-07-03 462920]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"IsMyWinLockerReboot"="msiexec.exe" [2010-11-21 73216]
.
c:\users\minipechy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
Facebook Messenger.lnk - c:\users\minipechy\AppData\Local\Facebook\Messenger\2.1.4590.0\FacebookMessenger.exe [2012-7-26 244656]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32]
"aux"=wdmaud.drv
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
Security Packages REG_MULTI_SZ kerberos msv1_0 schannel wdigest tspkg pku2u livessp
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
@=""
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
@="Service"
.
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
R3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-08-15 250056]
R3 BBUpdate;BBUpdate;c:\program files (x86)\Microsoft\BingBar\7.1.362.0\SeaPort.exe [2012-02-13 240408]
R3 EagleX64;EagleX64;c:\windows\system32\drivers\EagleX64.sys [x]
R3 EgisTec Ticket Service;EgisTec Ticket Service;c:\program files (x86)\Common Files\EgisTec\Services\EgisTicketService.exe [2011-04-02 173424]
R3 GamesAppService;GamesAppService;c:\program files (x86)\WildTangent Games\App\GamesAppService.exe [2010-10-12 206072]
R3 MozillaMaintenance;Mozilla Maintenance Service;c:\program files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2012-07-23 114144]
R3 NisDrv;Microsoft Network Inspection System;c:\windows\system32\DRIVERS\NisDrvWFP.sys [2012-03-20 98688]
R3 NisSrv;Kontrola sítě Microsoft;c:\program files\Microsoft Security Client\NisSrv.exe [2012-03-26 291696]
R3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;c:\windows\System32\Drivers\RtsUStor.sys [2010-09-22 243712]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2010-11-21 59392]
R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys [2010-11-21 31232]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe [2011-12-28 1255736]
R4 wlcrasvc;Windows Live Mesh remote connections service;c:\program files\Windows Live\Mesh\wlcrasvc.exe [2010-09-23 57184]
S1 mwlPSDFilter;mwlPSDFilter;c:\windows\system32\DRIVERS\mwlPSDFilter.sys [2011-07-20 22648]
S1 mwlPSDNServ;mwlPSDNServ;c:\windows\system32\DRIVERS\mwlPSDNServ.sys [2011-07-20 20520]
S1 mwlPSDVDisk;mwlPSDVDisk;c:\windows\system32\DRIVERS\mwlPSDVDisk.sys [2011-07-20 62776]
S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
S2 AdobeARMservice;Adobe Acrobat Update Service;c:\program files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-07-27 63960]
S2 BBSvc;BingBar Service;c:\program files (x86)\Microsoft\BingBar\7.1.362.0\BBSvc.exe [2012-02-13 193816]
S2 cpuz135;cpuz135;c:\windows\system32\drivers\cpuz135_x64.sys [2011-09-21 21992]
S2 DsiWMIService;Dritek WMI Service;c:\program files (x86)\Launch Manager\dsiwmis.exe [2011-07-01 353360]
S2 ePowerSvc;Acer ePower Service;c:\program files\Acer\Acer ePower Management\ePowerSvc.exe [2011-05-10 872552]
S2 GREGService;GREGService;c:\program files (x86)\Acer\Registration\GREGsvc.exe [2011-05-26 29696]
S2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology;c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2010-04-13 13336]
S2 Live Updater Service;Live Updater Service;c:\program files\Acer\Acer Updater\UpdaterService.exe [2011-04-22 244624]
S2 MBAMService;MBAMService;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [2012-07-03 655944]
S2 NTI IScheduleSvc;NTI IScheduleSvc;c:\program files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe [2011-04-24 256832]
S2 UNS;Intel(R) Management & Security Application User Notification Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2010-03-18 2320920]
S3 ETD;ELAN PS/2 Port Input Device;c:\windows\system32\DRIVERS\ETD.sys [2011-04-05 142632]
S3 HECIx64;Intel(R) Management Engine Interface;c:\windows\system32\drivers\HECIx64.sys [2009-09-17 56344]
S3 Impcd;Impcd;c:\windows\system32\DRIVERS\Impcd.sys [2010-02-26 158976]
S3 k57nd60a;Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0;c:\windows\system32\DRIVERS\k57nd60a.sys [2011-01-17 412712]
S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [2012-07-03 24904]
S3 vwifimp;Microsoft Virtual WiFi Miniport Service;c:\windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
.
.
Obsah adresáře 'Naplánované úlohy'
.
2012-08-24 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-04-26 18:33]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"="c:\program files\Realtek\Audio\HDA\RAVCpl64.exe" [2011-02-18 11779176]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2010-07-23 161304]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2010-07-23 386584]
"Persistence"="c:\windows\system32\igfxpers.exe" [2010-07-23 415256]
"ETDCtrl"="c:\program files (x86)\Elantech\ETDCtrl.exe" [BU]
"Power Management"="c:\program files\Acer\Acer ePower Management\ePowerTray.exe" [2011-05-10 1831528]
"MSC"="c:\program files\Microsoft Security Client\msseces.exe" [2012-03-26 1271168]
"combofix"="c:\combofix\CF4471.3XE" [2010-11-21 345088]
.
------- Doplňkový sken -------
.
uLocal Page = %SystemRoot%\system32\blank.htm
mLocal Page = %SystemRoot%\system32\blank.htm
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~2\MICROS~4\Office12\EXCEL.EXE/3000
IE: Od&eslat do aplikace OneNote - c:\progra~1\MICROS~2\Office14\ONBttnIE.dll/105
TCP: DhcpNameServer = 213.46.172.36 213.46.172.37
FF - ProfilePath - c:\users\minipechy\AppData\Roaming\Mozilla\Firefox\Profiles\1qlzto1n.default\
FF - prefs.js: browser.search.selectedEngine - Google
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
Toolbar-Locked - (no file)
Toolbar-10 - (no file)
Wow6432Node-HKLM-Run-ApnUpdater - c:\program files (x86)\Ask.com\Updater\Updater.exe
AddRemove-{79A765E1-C399-405B-85AF-466F52E918B0} - c:\program files (x86)\Ask.com\Updater\Updater.exe
.
.
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee]
"SymbolicLinkValue"=hex(6):5c,00,72,00,65,00,67,00,69,00,73,00,74,00,72,00,79,
00,5c,00,6d,00,61,00,63,00,68,00,69,00,6e,00,65,00,5c,00,53,00,6f,00,66,00,\
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\program files (x86)\Launch Manager\LMworker.exe
c:\program files (x86)\Launch Manager\LMutilps32.exe
c:\program files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
.
**************************************************************************
.
Celkový čas: 2012-08-24 08:44:08 - počítač byl restartován
ComboFix-quarantined-files.txt 2012-08-24 06:44
ComboFix2.txt 2012-08-19 08:26
.
Před spuštěním: Volných bajtů: 644 438 880 256
Po spuštění: Volných bajtů: 643 825 659 904
.
- - End Of File - - 6D00739302384579AD61F2195F0ECA1A
Microsoft Windows 7 Home Premium 6.1.7601.1.1250.420.1029.18.3767.2545 [GMT 2:00]
Spuštěný z: c:\users\minipechy\Desktop\ComboFix.exe
Použité ovládací přepínače :: c:\users\minipechy\Desktop\CFScript.txt
AV: Microsoft Security Essentials *Disabled/Updated* {9765EA51-0D3C-7DFB-6091-10E4E1F341F6}
SP: Microsoft Security Essentials *Disabled/Updated* {2C040BB5-2B06-7275-5A21-2B969A740B4B}
SP: Windows Defender *Disabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
* Vytvořen nový Bod Obnovení
.
FILE ::
"c:\program files (x86)\Ask.com\GenericAskToolbar.dll"
"c:\program files (x86)\Skype\Updater\Updater.exe"
"c:\users\minipechy\AppData\Local\Facebook\Update\FacebookUpdate.exe"
"c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1628672026-3414894350-2627105239-1000Core.job"
"c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1628672026-3414894350-2627105239-1000Core.job"
"c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1628672026-3414894350-2627105239-1000UA.job"
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\program files (x86)\Ask.com
c:\program files (x86)\Ask.com\assets\oobe\b.png
c:\program files (x86)\Ask.com\assets\oobe\bl.png
c:\program files (x86)\Ask.com\assets\oobe\br.png
c:\program files (x86)\Ask.com\assets\oobe\l.png
c:\program files (x86)\Ask.com\assets\oobe\pointer.png
c:\program files (x86)\Ask.com\assets\oobe\r.png
c:\program files (x86)\Ask.com\assets\oobe\t.png
c:\program files (x86)\Ask.com\assets\oobe\tl.png
c:\program files (x86)\Ask.com\assets\oobe\tr.png
c:\program files (x86)\Ask.com\cobrand.ico
c:\program files (x86)\Ask.com\config.xml
c:\program files (x86)\Ask.com\favicon.ico
c:\program files (x86)\Ask.com\GenericAskToolbar.dll
c:\program files (x86)\Ask.com\mupcfg.xml
c:\program files (x86)\Ask.com\precache.exe
c:\program files (x86)\Ask.com\SaUpdate.exe
c:\program files (x86)\Ask.com\Updater\config.xml
c:\program files (x86)\Ask.com\Updater\Updater.exe
c:\program files (x86)\Ask.com\UpdateTask.exe
c:\program files (x86)\Skype\Updater
c:\program files (x86)\Skype\Updater\Updater.dll
c:\program files (x86)\Skype\Updater\Updater.exe
c:\users\minipechy\AppData\Local\Facebook\Update
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\FacebookCrashHandler.exe
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\FacebookUpdate.exe
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\FacebookUpdateHelper.msi
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdate.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_ar.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_bg.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_bn.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_ca.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_cs.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_da.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_de.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_el.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_en-GB.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_en.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_es-419.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_es.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_et.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_fa.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_fi.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_fil.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_fr.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_gu.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_hi.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_hr.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_hu.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_id.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_is.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_it.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_iw.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_ja.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_kn.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_ko.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_lt.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_lv.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_ml.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_mr.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_ms.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_nl.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_no.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_or.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_pl.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_pt-BR.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_pt-PT.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_ro.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_ru.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_sk.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_sl.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_sr.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_sv.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_ta.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_te.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_th.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_tr.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_uk.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_ur.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_vi.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_zh-CN.dll
c:\users\minipechy\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_zh-TW.dll
c:\users\minipechy\AppData\Local\Facebook\Update\FacebookUpdate.exe
c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1628672026-3414894350-2627105239-1000Core.job
c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1628672026-3414894350-2627105239-1000Core.job
c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1628672026-3414894350-2627105239-1000UA.job
.
.
((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Service_SkypeUpdate
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2012-07-24 do 2012-08-24 )))))))))))))))))))))))))))))))
.
.
2012-08-24 06:38 . 2012-08-24 06:38 -------- d-----w- c:\users\Default\AppData\Local\temp
2012-08-19 08:51 . 2005-03-18 15:19 3823312 ----a-w- c:\windows\system32\d3dx9_25.dll
2012-08-19 08:51 . 2005-02-05 17:45 3544272 ----a-w- c:\windows\system32\d3dx9_24.dll
2012-08-19 08:49 . 2012-08-19 08:51 -------- d--h--w- c:\windows\msdownld.tmp
2012-08-19 08:42 . 2012-06-29 10:04 9133488 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{D7D8A8D9-F89E-4CAC-BC7D-41395EEFAB31}\mpengine.dll
2012-08-18 08:25 . 2012-06-29 10:04 9133488 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpengine.dll
2012-08-17 06:43 . 2012-06-29 04:55 17809920 ----a-w- c:\windows\system32\mshtml.dll
2012-08-17 06:43 . 2012-06-29 04:09 10925568 ----a-w- c:\windows\system32\ieframe.dll
2012-08-09 14:12 . 2012-08-09 14:12 -------- d-----w- c:\windows\cs
2012-08-09 14:09 . 2012-08-09 14:09 -------- d-----w- c:\windows\pt-pt
2012-08-09 14:09 . 2012-08-09 14:09 -------- d-----w- c:\windows\ar
2012-08-09 14:09 . 2012-08-09 14:09 -------- d-----w- c:\windows\bg
2012-08-09 14:09 . 2012-08-09 14:09 -------- d-----w- c:\windows\da
2012-08-09 14:09 . 2012-08-09 14:09 -------- d-----w- c:\windows\de
2012-08-09 14:09 . 2012-08-09 14:09 -------- d-----w- c:\windows\el
2012-08-09 14:09 . 2012-08-09 14:09 -------- d-----w- c:\windows\en
2012-08-09 14:08 . 2012-08-09 14:08 -------- d-----w- c:\windows\es
2012-08-09 14:08 . 2012-08-09 14:08 -------- d-----w- c:\windows\fi
2012-08-09 14:08 . 2012-08-09 14:08 -------- d-----w- c:\windows\fr
2012-08-09 14:08 . 2012-08-09 14:08 -------- d-----w- c:\windows\he
2012-08-09 14:08 . 2012-08-09 14:08 -------- d-----w- c:\windows\hr
2012-08-09 14:08 . 2012-08-09 14:08 -------- d-----w- c:\windows\hu
2012-08-09 14:08 . 2012-08-09 14:08 -------- d-----w- c:\windows\it
2012-08-09 14:08 . 2012-08-09 14:08 -------- d-----w- c:\windows\nl
2012-08-09 14:08 . 2012-08-09 14:08 -------- d-----w- c:\windows\no
2012-08-09 14:08 . 2012-08-09 14:08 -------- d-----w- c:\windows\pl
2012-08-09 14:08 . 2012-08-09 14:08 -------- d-----w- c:\windows\pt-br
2012-08-09 14:07 . 2012-08-09 14:07 -------- d-----w- c:\windows\ro
2012-08-09 14:07 . 2012-08-09 14:07 -------- d-----w- c:\windows\ru
2012-08-09 14:07 . 2012-08-09 14:07 -------- d-----w- c:\windows\sk
2012-08-09 14:07 . 2012-08-09 14:07 -------- d-----w- c:\windows\sl
2012-08-09 14:07 . 2012-08-09 14:07 -------- d-----w- c:\windows\sv
2012-08-09 14:07 . 2012-08-09 14:07 -------- d-----w- c:\windows\th
2012-08-09 14:07 . 2012-08-09 14:07 -------- d-----w- c:\windows\tr
2012-08-09 14:07 . 2012-08-09 14:07 -------- d-----w- c:\windows\zh-tw
2012-08-09 14:07 . 2012-08-09 14:07 -------- d-----w- c:\windows\ca
2012-08-09 14:07 . 2012-08-09 14:07 -------- d-----w- c:\windows\eu
2012-08-09 13:54 . 2012-08-09 13:54 19720 ----a-w- c:\programdata\Microsoft\IdentityCRL\production\ppcrlconfig600.dll
2012-08-09 13:50 . 2012-08-09 13:50 15712 ----a-w- c:\program files (x86)\Common Files\Windows Live\.cache\f58ab98f1cd763502\MeshBetaRemover.exe
2012-08-09 13:50 . 2012-08-09 13:50 89944 ----a-w- c:\program files (x86)\Common Files\Windows Live\.cache\f53ce68b1cd763501\DSETUP.dll
2012-08-09 13:50 . 2012-08-09 13:50 537432 ----a-w- c:\program files (x86)\Common Files\Windows Live\.cache\f53ce68b1cd763501\DXSETUP.exe
2012-08-09 13:50 . 2012-08-09 13:50 1801048 ----a-w- c:\program files (x86)\Common Files\Windows Live\.cache\f53ce68b1cd763501\dsetup32.dll
2012-08-05 14:07 . 2012-08-05 14:07 -------- d-----w- c:\users\minipechy\AppData\Local\Acer
2012-08-04 20:39 . 2012-08-04 20:39 -------- d-----w- c:\program files\CPUID
2012-08-04 20:39 . 2011-09-21 08:25 21992 ----a-w- c:\windows\system32\drivers\cpuz135_x64.sys
2012-08-04 19:43 . 2012-08-04 19:43 -------- d-----w- c:\users\minipechy\AppData\Roaming\Malwarebytes
2012-08-04 19:43 . 2012-08-04 19:43 -------- d-----w- c:\programdata\Malwarebytes
2012-08-04 19:43 . 2012-08-04 19:43 -------- d-----w- c:\program files (x86)\Malwarebytes' Anti-Malware
2012-08-04 19:43 . 2012-07-03 11:46 24904 ----a-w- c:\windows\system32\drivers\mbam.sys
2012-08-04 10:31 . 2012-08-04 10:32 -------- d-----w- c:\program files (x86)\CrystalDiskInfo
2012-07-25 10:18 . 2010-02-23 08:16 294912 ----a-w- c:\windows\system32\browserchoice.exe
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-08-17 06:39 . 2011-12-28 13:25 62134624 ----a-w- c:\windows\system32\MRT.exe
2012-08-15 18:33 . 2012-04-26 15:36 426184 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe
2012-08-15 18:33 . 2011-07-20 08:00 70344 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2012-07-05 18:13 . 2012-07-05 18:14 772592 ----a-w- c:\windows\SysWow64\npDeployJava1.dll
2012-06-09 05:43 . 2012-07-19 08:05 14172672 ----a-w- c:\windows\system32\shell32.dll
2012-06-06 18:59 . 2012-06-06 18:59 1070152 ----a-w- c:\windows\SysWow64\MSCOMCTL.OCX
2012-06-06 06:06 . 2012-07-19 08:05 2004480 ----a-w- c:\windows\system32\msxml6.dll
2012-06-06 06:06 . 2012-07-19 08:05 1881600 ----a-w- c:\windows\system32\msxml3.dll
2012-06-06 06:02 . 2012-07-19 08:05 1133568 ----a-w- c:\windows\system32\cdosys.dll
2012-06-06 05:05 . 2012-07-19 08:05 1390080 ----a-w- c:\windows\SysWow64\msxml6.dll
2012-06-06 05:05 . 2012-07-19 08:05 1236992 ----a-w- c:\windows\SysWow64\msxml3.dll
2012-06-06 05:03 . 2012-07-19 08:05 805376 ----a-w- c:\windows\SysWow64\cdosys.dll
2012-06-02 22:19 . 2012-06-19 12:34 38424 ----a-w- c:\windows\system32\wups.dll
2012-06-02 22:19 . 2012-06-19 12:35 2428952 ----a-w- c:\windows\system32\wuaueng.dll
2012-06-02 22:19 . 2012-06-19 12:35 57880 ----a-w- c:\windows\system32\wuauclt.exe
2012-06-02 22:19 . 2012-06-19 12:35 44056 ----a-w- c:\windows\system32\wups2.dll
2012-06-02 22:19 . 2012-06-19 12:34 701976 ----a-w- c:\windows\system32\wuapi.dll
2012-06-02 22:15 . 2012-06-19 12:35 2622464 ----a-w- c:\windows\system32\wucltux.dll
2012-06-02 22:15 . 2012-06-19 12:34 99840 ----a-w- c:\windows\system32\wudriver.dll
2012-06-02 13:19 . 2012-06-19 12:34 186752 ----a-w- c:\windows\system32\wuwebv.dll
2012-06-02 13:15 . 2012-06-19 12:34 36864 ----a-w- c:\windows\system32\wuapp.exe
2012-06-02 05:50 . 2012-07-19 08:05 458704 ----a-w- c:\windows\system32\drivers\cng.sys
2012-06-02 05:48 . 2012-07-19 08:05 95600 ----a-w- c:\windows\system32\drivers\ksecdd.sys
2012-06-02 05:48 . 2012-07-19 08:05 151920 ----a-w- c:\windows\system32\drivers\ksecpkg.sys
2012-06-02 05:45 . 2012-07-19 08:05 340992 ----a-w- c:\windows\system32\schannel.dll
2012-06-02 05:44 . 2012-07-19 08:05 307200 ----a-w- c:\windows\system32\ncrypt.dll
2012-06-02 04:40 . 2012-07-19 08:05 22016 ----a-w- c:\windows\SysWow64\secur32.dll
2012-06-02 04:40 . 2012-07-19 08:05 225280 ----a-w- c:\windows\SysWow64\schannel.dll
2012-06-02 04:39 . 2012-07-19 08:05 219136 ----a-w- c:\windows\SysWow64\ncrypt.dll
2012-06-02 04:34 . 2012-07-19 08:05 96768 ----a-w- c:\windows\SysWow64\sspicli.dll
.
.
((((((((((((((((((((((((((((( SnapShot@2012-08-19_08.21.54 )))))))))))))))))))))))))))))))))))))))))
.
+ 2012-08-19 08:52 . 2007-04-04 16:53 81768 c:\windows\SysWOW64\xinput1_3.dll
+ 2012-08-19 08:52 . 2006-07-28 07:30 62744 c:\windows\SysWOW64\xinput1_2.dll
+ 2012-08-19 08:52 . 2006-03-31 10:39 62672 c:\windows\SysWOW64\xinput1_1.dll
+ 2012-08-19 08:52 . 2010-06-02 02:55 74072 c:\windows\SysWOW64\XAPOFX1_5.dll
+ 2012-08-19 08:52 . 2010-02-04 08:01 74072 c:\windows\SysWOW64\XAPOFX1_4.dll
+ 2012-08-19 08:52 . 2008-10-27 08:04 70992 c:\windows\SysWOW64\XAPOFX1_2.dll
+ 2012-08-19 08:52 . 2008-07-31 08:41 68616 c:\windows\SysWOW64\XAPOFX1_1.dll
+ 2012-08-19 08:52 . 2008-05-30 12:17 65032 c:\windows\SysWOW64\XAPOFX1_0.dll
+ 2012-08-19 08:52 . 2010-02-04 08:01 22360 c:\windows\SysWOW64\X3DAudio1_7.dll
+ 2012-08-19 08:52 . 2009-03-16 12:18 22360 c:\windows\SysWOW64\X3DAudio1_6.dll
+ 2012-08-19 08:52 . 2008-10-27 08:04 23376 c:\windows\SysWOW64\X3DAudio1_5.dll
+ 2012-08-19 08:52 . 2008-05-30 12:17 25608 c:\windows\SysWOW64\X3DAudio1_4.dll
+ 2012-08-19 08:52 . 2008-03-05 14:00 25608 c:\windows\SysWOW64\X3DAudio1_3.dll
+ 2012-08-19 08:52 . 2007-10-22 01:37 17928 c:\windows\SysWOW64\X3DAudio1_2.dll
+ 2012-08-19 08:52 . 2007-03-05 10:42 15128 c:\windows\SysWOW64\x3daudio1_1.dll
+ 2012-08-19 08:52 . 2006-02-03 06:41 14032 c:\windows\SysWOW64\x3daudio1_0.dll
+ 2009-07-14 04:54 . 2012-08-19 19:39 16384 c:\windows\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
- 2009-07-14 04:54 . 2012-08-15 18:33 16384 c:\windows\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
- 2009-07-14 04:54 . 2012-08-15 18:33 32768 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
+ 2009-07-14 04:54 . 2012-08-19 19:39 32768 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
- 2009-07-14 04:54 . 2012-08-15 18:33 32768 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
+ 2009-07-14 04:54 . 2012-08-19 19:39 32768 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
+ 2012-08-19 08:52 . 2006-07-28 07:31 83736 c:\windows\system32\xinput1_2.dll
+ 2012-08-19 08:52 . 2006-03-31 10:39 83664 c:\windows\system32\xinput1_1.dll
+ 2012-08-19 08:52 . 2010-06-02 02:55 77656 c:\windows\system32\XAPOFX1_5.dll
+ 2012-08-19 08:52 . 2010-02-04 08:01 78680 c:\windows\system32\XAPOFX1_4.dll
+ 2012-08-19 08:52 . 2009-09-04 15:44 73544 c:\windows\system32\XAPOFX1_3.dll
+ 2012-08-19 08:52 . 2008-10-27 08:04 74576 c:\windows\system32\XAPOFX1_2.dll
+ 2012-08-19 08:52 . 2008-07-31 08:41 72200 c:\windows\system32\XAPOFX1_1.dll
+ 2012-08-19 08:52 . 2008-05-30 12:17 68104 c:\windows\system32\XAPOFX1_0.dll
+ 2012-08-19 08:52 . 2010-02-04 08:01 24920 c:\windows\system32\X3DAudio1_7.dll
+ 2012-08-19 08:52 . 2009-03-16 12:18 24920 c:\windows\system32\X3DAudio1_6.dll
+ 2012-08-19 08:52 . 2008-10-27 08:04 25936 c:\windows\system32\X3DAudio1_5.dll
+ 2012-08-19 08:52 . 2008-05-30 12:16 28168 c:\windows\system32\X3DAudio1_4.dll
+ 2012-08-19 08:52 . 2008-03-05 14:00 28168 c:\windows\system32\X3DAudio1_3.dll
+ 2012-08-19 08:52 . 2007-10-22 01:37 21000 c:\windows\system32\X3DAudio1_2.dll
+ 2012-08-19 08:52 . 2007-03-05 10:42 17688 c:\windows\system32\x3daudio1_1.dll
+ 2012-08-19 08:52 . 2006-02-03 06:41 16592 c:\windows\system32\x3daudio1_0.dll
+ 2010-11-21 03:09 . 2012-08-19 08:31 52680 c:\windows\system32\wdi\ShutdownPerformanceDiagnostics_SystemData.bin
+ 2009-07-14 05:10 . 2012-08-19 19:40 42370 c:\windows\system32\wdi\BootPerformanceDiagnostics_SystemData.bin
+ 2011-12-24 16:49 . 2012-08-19 19:40 15152 c:\windows\system32\wdi\{86432a0b-3c7d-4ddf-a89c-172faa90485d}\S-1-5-21-1628672026-3414894350-2627105239-1000_UserData.bin
+ 2012-08-19 08:52 . 2005-03-18 14:23 12800 c:\windows\Microsoft.NET\DirectX for Managed Code\1.0.2902.0\Microsoft.DirectX.Diagnostics.dll
+ 2012-08-19 08:52 . 2005-03-18 14:23 53248 c:\windows\Microsoft.NET\DirectX for Managed Code\1.0.2902.0\Microsoft.DirectX.AudioVideoPlayback.dll
+ 2012-08-19 08:52 . 2012-08-19 08:52 12800 c:\windows\assembly\GAC\Microsoft.DirectX.Diagnostics\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Diagnostics.dll
+ 2012-08-19 08:52 . 2012-08-19 08:52 53248 c:\windows\assembly\GAC\Microsoft.DirectX.AudioVideoPlayback\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.AudioVideoPlayback.dll
- 2012-08-19 08:21 . 2012-08-19 08:21 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat
+ 2012-08-24 06:39 . 2012-08-24 06:39 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat
- 2012-08-19 08:21 . 2012-08-19 08:21 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat
+ 2012-08-24 06:39 . 2012-08-24 06:39 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat
+ 2012-08-19 08:52 . 2010-06-02 02:55 527192 c:\windows\SysWOW64\XAudio2_7.dll
+ 2012-08-19 08:52 . 2010-02-04 08:01 528216 c:\windows\SysWOW64\XAudio2_6.dll
+ 2012-08-19 08:52 . 2009-03-16 12:18 517448 c:\windows\SysWOW64\XAudio2_4.dll
+ 2012-08-19 08:52 . 2008-10-27 08:04 514384 c:\windows\SysWOW64\XAudio2_3.dll
+ 2012-08-19 08:52 . 2008-07-31 08:40 509448 c:\windows\SysWOW64\XAudio2_2.dll
+ 2012-08-19 08:52 . 2008-05-30 12:19 507400 c:\windows\SysWOW64\XAudio2_1.dll
+ 2012-08-19 08:52 . 2008-03-05 14:03 479752 c:\windows\SysWOW64\XAudio2_0.dll
+ 2012-08-19 08:52 . 2010-06-02 02:55 239960 c:\windows\SysWOW64\xactengine3_7.dll
+ 2012-08-19 08:52 . 2010-02-04 08:01 238936 c:\windows\SysWOW64\xactengine3_6.dll
+ 2012-08-19 08:52 . 2009-09-04 15:44 238936 c:\windows\SysWOW64\xactengine3_5.dll
+ 2012-08-19 08:52 . 2009-03-16 12:18 235352 c:\windows\SysWOW64\xactengine3_4.dll
+ 2012-08-19 08:52 . 2008-10-27 08:04 235856 c:\windows\SysWOW64\xactengine3_3.dll
+ 2012-08-19 08:52 . 2008-07-31 08:41 238088 c:\windows\SysWOW64\xactengine3_2.dll
+ 2012-08-19 08:52 . 2008-05-30 12:18 238088 c:\windows\SysWOW64\xactengine3_1.dll
+ 2012-08-19 08:52 . 2008-03-05 14:03 238088 c:\windows\SysWOW64\xactengine3_0.dll
+ 2012-08-19 08:52 . 2007-07-19 22:57 267112 c:\windows\SysWOW64\xactengine2_9.dll
+ 2012-08-19 08:52 . 2007-06-20 18:46 266088 c:\windows\SysWOW64\xactengine2_8.dll
+ 2012-08-19 08:52 . 2007-04-04 16:55 261480 c:\windows\SysWOW64\xactengine2_7.dll
+ 2012-08-19 08:52 . 2007-01-24 13:27 255848 c:\windows\SysWOW64\xactengine2_6.dll
+ 2012-08-19 08:52 . 2006-12-08 10:02 251672 c:\windows\SysWOW64\xactengine2_5.dll
+ 2012-08-19 08:52 . 2006-09-28 14:05 237848 c:\windows\SysWOW64\xactengine2_4.dll
+ 2012-08-19 08:52 . 2006-07-28 07:30 236824 c:\windows\SysWOW64\xactengine2_3.dll
+ 2012-08-19 08:52 . 2006-05-31 05:24 230168 c:\windows\SysWOW64\xactengine2_2.dll
+ 2012-08-19 08:52 . 2007-10-22 01:39 267272 c:\windows\SysWOW64\xactengine2_10.dll
+ 2012-08-19 08:52 . 2006-03-31 10:39 229584 c:\windows\SysWOW64\xactengine2_1.dll
+ 2012-08-19 08:52 . 2006-02-03 06:42 230096 c:\windows\SysWOW64\xactengine2_0.dll
+ 2012-08-19 08:52 . 2010-05-26 09:41 248672 c:\windows\SysWOW64\d3dx11_43.dll
+ 2012-08-19 08:52 . 2009-09-04 15:29 235344 c:\windows\SysWOW64\d3dx11_42.dll
+ 2012-08-19 08:52 . 2010-05-26 09:41 470880 c:\windows\SysWOW64\d3dx10_43.dll
+ 2012-08-19 08:52 . 2008-10-10 02:52 452440 c:\windows\SysWOW64\d3dx10_40.dll
+ 2012-08-19 08:52 . 2008-07-10 09:01 467984 c:\windows\SysWOW64\d3dx10_39.dll
+ 2012-08-19 08:52 . 2008-05-30 12:11 467984 c:\windows\SysWOW64\d3dx10_38.dll
+ 2012-08-19 08:52 . 2008-02-05 21:07 462864 c:\windows\SysWOW64\d3dx10_37.dll
+ 2012-08-19 08:52 . 2007-10-02 07:56 444776 c:\windows\SysWOW64\d3dx10_36.dll
+ 2012-08-19 08:52 . 2007-07-19 16:14 444776 c:\windows\SysWOW64\d3dx10_35.dll
+ 2012-08-19 08:52 . 2007-05-16 14:45 443752 c:\windows\SysWOW64\d3dx10_34.dll
+ 2012-08-19 08:52 . 2007-03-15 14:57 443752 c:\windows\SysWOW64\d3dx10_33.dll
+ 2012-08-19 08:52 . 2006-11-29 11:06 440080 c:\windows\SysWOW64\d3dx10.dll
+ 2012-08-19 08:52 . 2007-04-04 16:54 107368 c:\windows\system32\xinput1_3.dll
+ 2012-08-19 08:52 . 2010-06-02 02:55 518488 c:\windows\system32\XAudio2_7.dll
+ 2012-08-19 08:52 . 2010-02-04 08:01 530776 c:\windows\system32\XAudio2_6.dll
+ 2012-08-19 08:52 . 2009-09-04 15:44 517960 c:\windows\system32\XAudio2_5.dll
+ 2012-08-19 08:52 . 2009-03-16 12:18 521560 c:\windows\system32\XAudio2_4.dll
+ 2012-08-19 08:52 . 2008-10-27 08:04 518480 c:\windows\system32\XAudio2_3.dll
+ 2012-08-19 08:52 . 2008-07-31 08:40 513544 c:\windows\system32\XAudio2_2.dll
+ 2012-08-19 08:52 . 2008-05-30 12:19 511496 c:\windows\system32\XAudio2_1.dll
+ 2012-08-19 08:52 . 2008-03-05 14:04 489480 c:\windows\system32\XAudio2_0.dll
+ 2012-08-19 08:52 . 2010-06-02 02:55 176984 c:\windows\system32\xactengine3_7.dll
+ 2012-08-19 08:52 . 2010-02-04 08:01 176984 c:\windows\system32\xactengine3_6.dll
+ 2012-08-19 08:52 . 2009-09-04 15:44 176968 c:\windows\system32\xactengine3_5.dll
+ 2012-08-19 08:52 . 2009-03-16 12:18 174936 c:\windows\system32\xactengine3_4.dll
+ 2012-08-19 08:52 . 2008-10-27 08:04 175440 c:\windows\system32\xactengine3_3.dll
+ 2012-08-19 08:52 . 2008-07-31 08:41 177672 c:\windows\system32\xactengine3_2.dll
+ 2012-08-19 08:52 . 2008-05-30 12:18 177672 c:\windows\system32\xactengine3_1.dll
+ 2012-08-19 08:52 . 2008-03-05 14:03 177672 c:\windows\system32\xactengine3_0.dll
+ 2012-08-19 08:52 . 2007-07-19 22:57 411496 c:\windows\system32\xactengine2_9.dll
+ 2012-08-19 08:52 . 2007-06-20 18:49 409960 c:\windows\system32\xactengine2_8.dll
+ 2012-08-19 08:52 . 2007-04-04 16:55 403304 c:\windows\system32\xactengine2_7.dll
+ 2012-08-19 08:52 . 2007-01-24 13:27 393576 c:\windows\system32\xactengine2_6.dll
+ 2012-08-19 08:52 . 2006-12-08 10:00 390424 c:\windows\system32\xactengine2_5.dll
+ 2012-08-19 08:52 . 2006-09-28 14:04 364824 c:\windows\system32\xactengine2_4.dll
+ 2012-08-19 08:52 . 2006-07-28 07:30 363288 c:\windows\system32\xactengine2_3.dll
+ 2012-08-19 08:52 . 2006-05-31 05:22 354072 c:\windows\system32\xactengine2_2.dll
+ 2012-08-19 08:52 . 2007-10-22 01:40 411656 c:\windows\system32\xactengine2_10.dll
+ 2012-08-19 08:52 . 2006-03-31 10:40 352464 c:\windows\system32\xactengine2_1.dll
+ 2012-08-19 08:52 . 2006-02-03 06:42 355536 c:\windows\system32\xactengine2_0.dll
+ 2011-12-24 17:28 . 2012-08-20 07:59 234324 c:\windows\system32\wdi\SuspendPerformanceDiagnostics_SystemData_S3.bin
+ 2012-08-19 08:52 . 2010-05-26 09:41 276832 c:\windows\system32\d3dx11_43.dll
+ 2012-08-19 08:52 . 2009-09-04 15:29 285024 c:\windows\system32\d3dx11_42.dll
+ 2012-08-19 08:52 . 2010-05-26 09:41 511328 c:\windows\system32\d3dx10_43.dll
+ 2012-08-19 08:52 . 2009-03-09 13:27 520544 c:\windows\system32\d3dx10_41.dll
+ 2012-08-19 08:52 . 2008-10-10 02:52 519000 c:\windows\system32\d3dx10_40.dll
+ 2012-08-19 08:52 . 2008-07-10 09:00 540688 c:\windows\system32\d3dx10_39.dll
+ 2012-08-19 08:52 . 2008-05-30 12:11 540688 c:\windows\system32\d3dx10_38.dll
+ 2012-08-19 08:52 . 2008-02-05 21:07 529424 c:\windows\system32\d3dx10_37.dll
+ 2012-08-19 08:52 . 2007-10-02 07:56 508264 c:\windows\system32\d3dx10_36.dll
+ 2012-08-19 08:52 . 2007-07-19 16:14 508264 c:\windows\system32\d3dx10_35.dll
+ 2012-08-19 08:52 . 2007-05-16 14:45 506728 c:\windows\system32\d3dx10_34.dll
+ 2012-08-19 08:52 . 2007-03-15 14:57 506728 c:\windows\system32\d3dx10_33.dll
+ 2012-08-19 08:52 . 2006-11-29 11:06 469264 c:\windows\system32\d3dx10.dll
- 2009-07-14 05:01 . 2012-08-19 08:20 405112 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-System.dat
+ 2009-07-14 05:01 . 2012-08-24 06:38 405112 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-System.dat
+ 2012-08-19 08:52 . 2006-03-31 09:27 578560 c:\windows\Microsoft.NET\DirectX for Managed Code\1.0.2911.0\Microsoft.DirectX.Direct3DX.dll
+ 2012-08-19 08:51 . 2006-02-03 05:40 578560 c:\windows\Microsoft.NET\DirectX for Managed Code\1.0.2910.0\Microsoft.DirectX.Direct3DX.dll
+ 2012-08-19 08:51 . 2005-12-05 15:20 577536 c:\windows\Microsoft.NET\DirectX for Managed Code\1.0.2909.0\Microsoft.DirectX.Direct3DX.dll
+ 2012-08-19 08:51 . 2005-09-28 12:11 577536 c:\windows\Microsoft.NET\DirectX for Managed Code\1.0.2908.0\Microsoft.DirectX.Direct3DX.dll
+ 2012-08-19 08:51 . 2005-07-22 15:21 577024 c:\windows\Microsoft.NET\DirectX for Managed Code\1.0.2907.0\Microsoft.DirectX.Direct3DX.dll
+ 2012-08-19 08:51 . 2005-05-26 13:15 576000 c:\windows\Microsoft.NET\DirectX for Managed Code\1.0.2906.0\Microsoft.DirectX.Direct3DX.dll
+ 2012-08-19 08:51 . 2005-03-18 15:23 567296 c:\windows\Microsoft.NET\DirectX for Managed Code\1.0.2905.0\Microsoft.DirectX.Direct3DX.dll
+ 2012-08-19 08:51 . 2005-02-05 17:32 563712 c:\windows\Microsoft.NET\DirectX for Managed Code\1.0.2904.0\Microsoft.DirectX.Direct3DX.dll
+ 2012-08-19 08:52 . 2005-03-18 14:23 223232 c:\windows\Microsoft.NET\DirectX for Managed Code\1.0.2902.0\Microsoft.DirectX.dll
+ 2012-08-19 08:52 . 2005-03-18 14:23 178176 c:\windows\Microsoft.NET\DirectX for Managed Code\1.0.2902.0\Microsoft.DirectX.DirectSound.dll
+ 2012-08-19 08:52 . 2005-03-18 14:23 364544 c:\windows\Microsoft.NET\DirectX for Managed Code\1.0.2902.0\Microsoft.DirectX.DirectPlay.dll
+ 2012-08-19 08:52 . 2005-03-18 14:23 159232 c:\windows\Microsoft.NET\DirectX for Managed Code\1.0.2902.0\Microsoft.DirectX.DirectInput.dll
+ 2012-08-19 08:52 . 2005-03-18 14:23 145920 c:\windows\Microsoft.NET\DirectX for Managed Code\1.0.2902.0\Microsoft.DirectX.DirectDraw.dll
+ 2012-08-19 08:52 . 2005-03-18 14:23 473600 c:\windows\Microsoft.NET\DirectX for Managed Code\1.0.2902.0\Microsoft.DirectX.Direct3D.dll
+ 2012-02-13 19:30 . 2012-02-13 19:30 475136 c:\windows\Installer\156645.msi
+ 2012-08-19 08:52 . 2012-08-19 08:52 223232 c:\windows\assembly\GAC\Microsoft.DirectX\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.dll
+ 2012-08-19 08:52 . 2012-08-19 08:52 178176 c:\windows\assembly\GAC\Microsoft.DirectX.DirectSound\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectSound.dll
+ 2012-08-19 08:52 . 2012-08-19 08:52 364544 c:\windows\assembly\GAC\Microsoft.DirectX.DirectPlay\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectPlay.dll
+ 2012-08-19 08:52 . 2012-08-19 08:52 159232 c:\windows\assembly\GAC\Microsoft.DirectX.DirectInput\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectInput.dll
+ 2012-08-19 08:52 . 2012-08-19 08:52 145920 c:\windows\assembly\GAC\Microsoft.DirectX.DirectDraw\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectDraw.dll
+ 2012-08-19 08:52 . 2012-08-19 08:52 578560 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2911.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2012-08-19 08:51 . 2012-08-19 08:51 578560 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2910.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2012-08-19 08:51 . 2012-08-19 08:51 577536 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2909.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2012-08-19 08:51 . 2012-08-19 08:51 577536 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2908.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2012-08-19 08:51 . 2012-08-19 08:51 577024 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2907.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2012-08-19 08:51 . 2012-08-19 08:51 576000 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2906.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2012-08-19 08:51 . 2012-08-19 08:51 567296 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2905.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2012-08-19 08:51 . 2012-08-19 08:51 563712 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2904.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2012-08-19 08:52 . 2012-08-19 08:52 473600 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3D\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Direct3D.dll
+ 2012-08-19 08:52 . 2010-05-26 09:41 1998168 c:\windows\SysWOW64\D3DX9_43.dll
+ 2012-08-19 08:52 . 2009-09-04 15:29 1892184 c:\windows\SysWOW64\D3DX9_42.dll
+ 2012-08-19 08:52 . 2009-03-09 13:27 4178264 c:\windows\SysWOW64\D3DX9_41.dll
+ 2012-08-19 08:52 . 2008-10-10 02:52 4379984 c:\windows\SysWOW64\D3DX9_40.dll
+ 2012-08-19 08:52 . 2008-07-10 09:00 3851784 c:\windows\SysWOW64\D3DX9_39.dll
+ 2012-08-19 08:52 . 2008-05-30 12:11 3850760 c:\windows\SysWOW64\D3DX9_38.dll
+ 2012-08-19 08:52 . 2008-03-05 13:56 3786760 c:\windows\SysWOW64\D3DX9_37.dll
+ 2012-08-19 08:52 . 2007-10-12 13:14 3734536 c:\windows\SysWOW64\d3dx9_36.dll
+ 2012-08-19 08:52 . 2007-07-19 16:14 3727720 c:\windows\SysWOW64\d3dx9_35.dll
+ 2012-08-19 08:52 . 2007-05-16 14:45 3497832 c:\windows\SysWOW64\d3dx9_34.dll
+ 2012-08-19 08:52 . 2007-03-12 14:42 3495784 c:\windows\SysWOW64\d3dx9_33.dll
+ 2012-08-19 08:52 . 2006-09-28 14:05 2414360 c:\windows\SysWOW64\d3dx9_31.dll
+ 2012-08-19 08:52 . 2006-03-31 10:40 2388176 c:\windows\SysWOW64\d3dx9_30.dll
+ 2012-08-19 08:52 . 2006-02-03 06:43 2332368 c:\windows\SysWOW64\d3dx9_29.dll
+ 2012-08-19 08:52 . 2005-12-05 16:09 2323664 c:\windows\SysWOW64\d3dx9_28.dll
+ 2012-08-19 08:52 . 2005-07-22 17:59 2319568 c:\windows\SysWOW64\d3dx9_27.dll
+ 2012-08-19 08:52 . 2005-05-26 13:34 2297552 c:\windows\SysWOW64\d3dx9_26.dll
+ 2012-08-19 08:51 . 2005-02-05 17:45 2222800 c:\windows\SysWOW64\d3dx9_24.dll
+ 2012-08-19 08:52 . 2010-05-26 09:41 1868128 c:\windows\SysWOW64\d3dcsx_43.dll
+ 2012-08-19 08:52 . 2009-09-04 15:29 5501792 c:\windows\SysWOW64\d3dcsx_42.dll
+ 2012-08-19 08:52 . 2010-05-26 09:41 2106216 c:\windows\SysWOW64\D3DCompiler_43.dll
+ 2012-08-19 08:52 . 2009-09-04 15:29 1974616 c:\windows\SysWOW64\D3DCompiler_42.dll
+ 2012-08-19 08:52 . 2008-10-10 02:52 2036576 c:\windows\SysWOW64\D3DCompiler_40.dll
+ 2012-08-19 08:52 . 2008-07-10 09:00 1493528 c:\windows\SysWOW64\D3DCompiler_39.dll
+ 2012-08-19 08:52 . 2008-05-30 12:11 1491992 c:\windows\SysWOW64\D3DCompiler_38.dll
+ 2012-08-19 08:52 . 2008-03-05 13:56 1420824 c:\windows\SysWOW64\D3DCompiler_37.dll
+ 2012-08-19 08:52 . 2007-10-12 13:14 1374232 c:\windows\SysWOW64\D3DCompiler_36.dll
+ 2012-08-19 08:52 . 2007-07-19 16:14 1358192 c:\windows\SysWOW64\D3DCompiler_35.dll
+ 2012-08-19 08:52 . 2007-05-16 14:45 1124720 c:\windows\SysWOW64\D3DCompiler_34.dll
+ 2012-08-19 08:52 . 2007-03-12 14:42 1123696 c:\windows\SysWOW64\D3DCompiler_33.dll
+ 2009-07-14 02:36 . 2012-08-24 06:27 3206030 c:\windows\system32\perfh009.dat
+ 2011-09-24 06:23 . 2012-08-24 06:27 7922710 c:\windows\system32\perfh005.dat
+ 2009-07-14 02:36 . 2012-08-24 06:27 2583426 c:\windows\system32\perfc009.dat
+ 2011-09-24 06:23 . 2012-08-24 06:27 2671654 c:\windows\system32\perfc005.dat
+ 2012-08-19 08:52 . 2010-05-26 09:41 2401112 c:\windows\system32\D3DX9_43.dll
+ 2012-08-19 08:52 . 2009-09-04 15:29 2475352 c:\windows\system32\D3DX9_42.dll
+ 2012-08-19 08:52 . 2009-03-09 13:27 5425496 c:\windows\system32\D3DX9_41.dll
+ 2012-08-19 08:52 . 2008-10-10 02:52 5631312 c:\windows\system32\D3DX9_40.dll
+ 2012-08-19 08:52 . 2008-07-10 09:00 4992520 c:\windows\system32\D3DX9_39.dll
+ 2012-08-19 08:52 . 2008-05-30 12:11 4991496 c:\windows\system32\D3DX9_38.dll
+ 2012-08-19 08:52 . 2008-03-05 13:56 4910088 c:\windows\system32\D3DX9_37.dll
+ 2012-08-19 08:52 . 2007-10-12 13:14 5081608 c:\windows\system32\d3dx9_36.dll
+ 2012-08-19 08:52 . 2007-07-19 16:14 5073256 c:\windows\system32\d3dx9_35.dll
+ 2012-08-19 08:52 . 2007-05-16 14:45 4496232 c:\windows\system32\d3dx9_34.dll
+ 2012-08-19 08:52 . 2007-03-12 14:42 4494184 c:\windows\system32\d3dx9_33.dll
+ 2012-08-19 08:52 . 2006-09-28 14:05 3977496 c:\windows\system32\d3dx9_31.dll
+ 2012-08-19 08:52 . 2006-03-31 10:41 3927248 c:\windows\system32\d3dx9_30.dll
+ 2012-08-19 08:52 . 2006-02-03 06:43 3830992 c:\windows\system32\d3dx9_29.dll
+ 2012-08-19 08:52 . 2005-12-05 16:09 3815120 c:\windows\system32\d3dx9_28.dll
+ 2012-08-19 08:52 . 2005-07-22 17:59 3807440 c:\windows\system32\d3dx9_27.dll
+ 2012-08-19 08:52 . 2005-05-26 13:34 3767504 c:\windows\system32\d3dx9_26.dll
+ 2012-08-19 08:52 . 2010-05-26 09:41 1907552 c:\windows\system32\d3dcsx_43.dll
+ 2012-08-19 08:52 . 2009-09-04 15:29 5554512 c:\windows\system32\d3dcsx_42.dll
+ 2012-08-19 08:52 . 2010-05-26 09:41 2526056 c:\windows\system32\D3DCompiler_43.dll
+ 2012-08-19 08:52 . 2009-09-04 15:29 2582888 c:\windows\system32\D3DCompiler_42.dll
+ 2012-08-19 08:52 . 2009-03-09 13:27 2430312 c:\windows\system32\D3DCompiler_41.dll
+ 2012-08-19 08:52 . 2008-10-10 02:52 2605920 c:\windows\system32\D3DCompiler_40.dll
+ 2012-08-19 08:52 . 2008-07-10 09:00 1942552 c:\windows\system32\D3DCompiler_39.dll
+ 2012-08-19 08:52 . 2008-05-30 12:11 1941528 c:\windows\system32\D3DCompiler_38.dll
+ 2012-08-19 08:52 . 2008-03-05 13:56 1860120 c:\windows\system32\D3DCompiler_37.dll
+ 2012-08-19 08:52 . 2007-10-12 13:14 2006552 c:\windows\system32\D3DCompiler_36.dll
+ 2012-08-19 08:52 . 2007-07-19 16:14 1985904 c:\windows\system32\D3DCompiler_35.dll
+ 2012-08-19 08:52 . 2007-05-16 14:45 1401200 c:\windows\system32\D3DCompiler_34.dll
+ 2012-08-19 08:52 . 2007-03-12 14:42 1400176 c:\windows\system32\D3DCompiler_33.dll
+ 2011-12-24 23:10 . 2012-08-24 06:38 1005752 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-S-1-5-21-1628672026-3414894350-2627105239-1000-8192.dat
- 2011-12-24 23:10 . 2012-08-19 08:20 1005752 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-S-1-5-21-1628672026-3414894350-2627105239-1000-8192.dat
+ 2012-08-19 08:51 . 2004-12-01 13:53 2846720 c:\windows\Microsoft.NET\DirectX for Managed Code\1.0.2903.0\Microsoft.DirectX.Direct3DX.dll
+ 2012-08-19 08:51 . 2004-09-29 10:38 2676224 c:\windows\Microsoft.NET\DirectX for Managed Code\1.0.2902.0\Microsoft.DirectX.Direct3DX.dll
+ 2012-08-19 08:51 . 2012-08-19 08:51 2846720 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2903.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2012-08-19 08:51 . 2012-08-19 08:51 2676224 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
.
-- Snímek resetován k současnému datu --
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Skype"="c:\program files (x86)\Skype\Phone\Skype.exe" [2012-07-13 17418928]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"SuiteTray"="c:\program files (x86)\EgisTec MyWinLockerSuite\x86\SuiteTray.exe" [2011-04-02 340848]
"EgisTecPMMUpdate"="c:\program files (x86)\EgisTec IPS\PmmUpdate.exe" [2011-03-29 408432]
"EgisUpdate"="c:\program files (x86)\EgisTec IPS\EgisUpdate.exe" [2011-03-29 202608]
"BackupManagerTray"="c:\program files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe" [2011-04-24 297280]
"LManager"="c:\program files (x86)\Launch Manager\LManager.exe" [2011-07-01 1103440]
"ArcadeMovieService"="c:\program files (x86)\Acer\clear.fi\Movie\clear.fiMovieService.exe" [2011-05-10 177448]
"GrooveMonitor"="c:\program files (x86)\Microsoft Office\Office12\GrooveMonitor.exe" [2009-02-26 30040]
"Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-07-27 919008]
"4StoryPrePatch"="c:\program files (x86)\Gameforge4D\4Story_CZ\PrePatch.exe" [2012-05-08 327680]
"SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2012-01-17 252296]
"Malwarebytes' Anti-Malware"="c:\program files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe" [2012-07-03 462920]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"IsMyWinLockerReboot"="msiexec.exe" [2010-11-21 73216]
.
c:\users\minipechy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
Facebook Messenger.lnk - c:\users\minipechy\AppData\Local\Facebook\Messenger\2.1.4590.0\FacebookMessenger.exe [2012-7-26 244656]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32]
"aux"=wdmaud.drv
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
Security Packages REG_MULTI_SZ kerberos msv1_0 schannel wdigest tspkg pku2u livessp
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
@=""
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
@="Service"
.
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
R3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-08-15 250056]
R3 BBUpdate;BBUpdate;c:\program files (x86)\Microsoft\BingBar\7.1.362.0\SeaPort.exe [2012-02-13 240408]
R3 EagleX64;EagleX64;c:\windows\system32\drivers\EagleX64.sys [x]
R3 EgisTec Ticket Service;EgisTec Ticket Service;c:\program files (x86)\Common Files\EgisTec\Services\EgisTicketService.exe [2011-04-02 173424]
R3 GamesAppService;GamesAppService;c:\program files (x86)\WildTangent Games\App\GamesAppService.exe [2010-10-12 206072]
R3 MozillaMaintenance;Mozilla Maintenance Service;c:\program files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2012-07-23 114144]
R3 NisDrv;Microsoft Network Inspection System;c:\windows\system32\DRIVERS\NisDrvWFP.sys [2012-03-20 98688]
R3 NisSrv;Kontrola sítě Microsoft;c:\program files\Microsoft Security Client\NisSrv.exe [2012-03-26 291696]
R3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;c:\windows\System32\Drivers\RtsUStor.sys [2010-09-22 243712]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2010-11-21 59392]
R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys [2010-11-21 31232]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe [2011-12-28 1255736]
R4 wlcrasvc;Windows Live Mesh remote connections service;c:\program files\Windows Live\Mesh\wlcrasvc.exe [2010-09-23 57184]
S1 mwlPSDFilter;mwlPSDFilter;c:\windows\system32\DRIVERS\mwlPSDFilter.sys [2011-07-20 22648]
S1 mwlPSDNServ;mwlPSDNServ;c:\windows\system32\DRIVERS\mwlPSDNServ.sys [2011-07-20 20520]
S1 mwlPSDVDisk;mwlPSDVDisk;c:\windows\system32\DRIVERS\mwlPSDVDisk.sys [2011-07-20 62776]
S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
S2 AdobeARMservice;Adobe Acrobat Update Service;c:\program files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-07-27 63960]
S2 BBSvc;BingBar Service;c:\program files (x86)\Microsoft\BingBar\7.1.362.0\BBSvc.exe [2012-02-13 193816]
S2 cpuz135;cpuz135;c:\windows\system32\drivers\cpuz135_x64.sys [2011-09-21 21992]
S2 DsiWMIService;Dritek WMI Service;c:\program files (x86)\Launch Manager\dsiwmis.exe [2011-07-01 353360]
S2 ePowerSvc;Acer ePower Service;c:\program files\Acer\Acer ePower Management\ePowerSvc.exe [2011-05-10 872552]
S2 GREGService;GREGService;c:\program files (x86)\Acer\Registration\GREGsvc.exe [2011-05-26 29696]
S2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology;c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2010-04-13 13336]
S2 Live Updater Service;Live Updater Service;c:\program files\Acer\Acer Updater\UpdaterService.exe [2011-04-22 244624]
S2 MBAMService;MBAMService;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [2012-07-03 655944]
S2 NTI IScheduleSvc;NTI IScheduleSvc;c:\program files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe [2011-04-24 256832]
S2 UNS;Intel(R) Management & Security Application User Notification Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2010-03-18 2320920]
S3 ETD;ELAN PS/2 Port Input Device;c:\windows\system32\DRIVERS\ETD.sys [2011-04-05 142632]
S3 HECIx64;Intel(R) Management Engine Interface;c:\windows\system32\drivers\HECIx64.sys [2009-09-17 56344]
S3 Impcd;Impcd;c:\windows\system32\DRIVERS\Impcd.sys [2010-02-26 158976]
S3 k57nd60a;Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0;c:\windows\system32\DRIVERS\k57nd60a.sys [2011-01-17 412712]
S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [2012-07-03 24904]
S3 vwifimp;Microsoft Virtual WiFi Miniport Service;c:\windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
.
.
Obsah adresáře 'Naplánované úlohy'
.
2012-08-24 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-04-26 18:33]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"="c:\program files\Realtek\Audio\HDA\RAVCpl64.exe" [2011-02-18 11779176]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2010-07-23 161304]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2010-07-23 386584]
"Persistence"="c:\windows\system32\igfxpers.exe" [2010-07-23 415256]
"ETDCtrl"="c:\program files (x86)\Elantech\ETDCtrl.exe" [BU]
"Power Management"="c:\program files\Acer\Acer ePower Management\ePowerTray.exe" [2011-05-10 1831528]
"MSC"="c:\program files\Microsoft Security Client\msseces.exe" [2012-03-26 1271168]
"combofix"="c:\combofix\CF4471.3XE" [2010-11-21 345088]
.
------- Doplňkový sken -------
.
uLocal Page = %SystemRoot%\system32\blank.htm
mLocal Page = %SystemRoot%\system32\blank.htm
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~2\MICROS~4\Office12\EXCEL.EXE/3000
IE: Od&eslat do aplikace OneNote - c:\progra~1\MICROS~2\Office14\ONBttnIE.dll/105
TCP: DhcpNameServer = 213.46.172.36 213.46.172.37
FF - ProfilePath - c:\users\minipechy\AppData\Roaming\Mozilla\Firefox\Profiles\1qlzto1n.default\
FF - prefs.js: browser.search.selectedEngine - Google
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
Toolbar-Locked - (no file)
Toolbar-10 - (no file)
Wow6432Node-HKLM-Run-ApnUpdater - c:\program files (x86)\Ask.com\Updater\Updater.exe
AddRemove-{79A765E1-C399-405B-85AF-466F52E918B0} - c:\program files (x86)\Ask.com\Updater\Updater.exe
.
.
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee]
"SymbolicLinkValue"=hex(6):5c,00,72,00,65,00,67,00,69,00,73,00,74,00,72,00,79,
00,5c,00,6d,00,61,00,63,00,68,00,69,00,6e,00,65,00,5c,00,53,00,6f,00,66,00,\
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\program files (x86)\Launch Manager\LMworker.exe
c:\program files (x86)\Launch Manager\LMutilps32.exe
c:\program files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
.
**************************************************************************
.
Celkový čas: 2012-08-24 08:44:08 - počítač byl restartován
ComboFix-quarantined-files.txt 2012-08-24 06:44
ComboFix2.txt 2012-08-19 08:26
.
Před spuštěním: Volných bajtů: 644 438 880 256
Po spuštění: Volných bajtů: 643 825 659 904
.
- - End Of File - - 6D00739302384579AD61F2195F0ECA1A
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43298
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: Mladyho notas vylozene na hry se pry sam vypina
ComboFix se odinstaluje takto:
Start-Spustit a zadej ComboFix /Uninstall
Stáhni si OTC
na plochu. Poklepej na něj. Potom klikni na Clean up!.
Restartuj PC , pokud Ti bude doporučeno.
Vlož nový log z HJT.
Jak to vypadá nyní?
Start-Spustit a zadej ComboFix /Uninstall
Stáhni si OTC
na plochu. Poklepej na něj. Potom klikni na Clean up!.
Restartuj PC , pokud Ti bude doporučeno.
Vlož nový log z HJT.
Jak to vypadá nyní?
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Kdo je online
Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 72 hostů