„Farbar Recovery Scan Tool“ (FRST.txt) (x64) versijos nuskaitymo rezultatas: 2014-10-30
Bėgo per HPQUAD, kurį pateikė Mike'as (vadybininkas) 2014-10-29 22:00:15
Veikia iš C: \ Users \ Mike \ Desktop
Įkeltas profilis: Mike (Dabartiniai profiliai: Mike & Patty)
Platforma: „Windows 7 Home Premium“ 1 pakeitimų paketas (X64) Operacinės sistemos kalba: anglų (JAV)
„Internet Explorer 11“ versija
Įkrovos režimas: įprastas
„Farbar Recovery“ nuskaitymo įrankio pamoka:
==================== Procesai (įtraukti į baltąjį sąrašą) =================
(Jei įrašas įtraukiamas į taisymų sąrašą, procesas uždaromas. Failas nėra perkeltas.)
(„IBM Corp.“) C: \ Program Files (x86) \ Trusteer \ Rapport \ bin \ RapportMgmtService.exe
(„Apple Inc.“) C: \ Program Files (x86) \ Common Files \ Apple \ Mobile Device Support \ AppleMobileDeviceService.exe
(„Apple Inc.“) C: \ Program Files \ Bonjour \ mDNSResponder.exe
(„Microsoft Corporation“) C: \ Windows \ SysWOW64 \ svchost.exe
(„Hewlett-Packard Company“) C: \ Program Files (x86) \ Common Files \ LightScribe \ LSSrvc.exe
(„Malwarebytes Corporation“) C: \ Program Dosyaları (x86) \ Malwarebytes Anti-Malware \ mbamscheduler.exe
(„Malwarebytes Corporation“) C: \ Program Dosyaları (x86) \ Malwarebytes Anti-Malware \ mbamservice.exe
(„Symantec Corporation“) C: \ Program Dosyaları (x86) \ Norton Internet Security \ Engine \ 21.6.0.32 \ nis.exe
(Symantec) C: \ Program Dosyaları (x86) \ Symantec \ Norton Utilities 16 \ sMonitor \ StartManSvc.exe
(„Microsoft Corporation“) C: \ Program Files (x86) \ Microsoft \ Search Enhancement Package \ SeaPort \ SeaPort.exe
(„Microsoft Corp.“) C: \ Program Files \ Common Files \ Microsoft Shared \ Windows Live \ WLIDSVC.EXE
(„Microsoft Corp.“) C: \ Program Files \ Common Files \ Microsoft Shared \ Windows Live \ WLIDSVCM.EXE
(„Malwarebytes Corporation“) C: \ Program Dosyaları (x86) \ Malwarebytes Anti-Malware \ mbam.exe
(„Symantec Corporation“) C: \ Program Dosyaları (x86) \ Norton Internet Security \ Engine \ 21.6.0.32 \ nis.exe
(„Hewlett-Packard“) C: \ Program Files \ Hewlett-Packard \ HP MediaSmart \ SmartMenu.exe
(„Intel Corporation“) C: \ Windows \ System32 \ igfxtray.exe
(„Intel Corporation“) C: \ Windows \ System32 \ hkcmd.exe
(„Intel Corporation“) C: \ Windows \ System32 \ igfxpers.exe
() C: \ Program Files \ Hewlett-Packard \ HP Remote \ HP REMOTE V1.0.5.exe
(„Microsoft Corporation“) C: \ Program Files \ Windows Sidebar \ sidebar.exe
(„Apple Inc.“) C: \ Program Files (x86) \ Common Files \ Apple \ Internet Services \ ApplePhotoStreams.exe
(„Samsung“ C: \ Program Files (x86) \ Samsung \ Kies \ Kies.exe
(„Hewlett-Packard Co.“) C: \ Program Files (x86) \ HP \ Digital Imaging \ bin \ hpqtra08.exe
(„Virgin HealthMiles Inc.“) C: \ Program Dosyaları (x86) \ GoZone \ GoZone_iSync.exe
(„D-Link Corporation“) C: \ Program Dosyaları \ D-Link \ SharePort İzlencesi \ Connect.exe
(„Hewlett-Packard“) C: \ Program Files (x86) \ Hewlett-Packard \ HP Odometer \ hpsysdrv.exe
(„CyberLink“) C: \ Program Files (x86) \ Hewlett-Packard \ TouchSmart \ Media \ Kernel \ CLML \ CLMLSvc.exe
(„CyberLink Corp.“) C: \ Program Files (x86) \ Hewlett-Packard \ Media \ DVD \ DVDAgent.exe
() C: \ Program Files (x86) \ Hewlett-Packard \ HP Remote Solution \ HP_Remote_Solution.exe
(„Hewlett-Packard“) C: \ Program Files (x86) \ HP \ HP Software Update \ hpwuschd2.exe
(„Samsung Electronics Co., Ltd.“) C: \ Program Dosyaları (x86) \ Samsung \ Kies \ KiesTrayAgent.exe
(„Symantec Corporation“) C: \ Program Dosyaları (x86) \ Symantec \ Norton Utilities 16 \ sMonitor \ SSDMonitor.exe
(„Oracle Corporation“) C: \ Program Files (x86) \ Common Files \ Java \ Java Update \ jusched.exe
(„Apple Inc.“) C: \ Program Files (x86) \ iTunes \ iTunesHelper.exe
(„Apple Inc.“) C: \ Program Files (x86) \ Common Files \ Apple \ Internet Services \ APSDaemon.exe
(„Apple Inc.“) C: \ Program Files \ iPod \ bin \ iPodService.exe
(„Microsoft Corporation“) C: \ Windows \ Microsoft.NET \ Framework64 \ v3.0 \ WPF \ PresentationFontCache.exe
(Hewlett-Packard) C: \ Program Dosyaları (x86) \ Hewlett-Packard \ HP sveikatos tikrinimas \ HPHC_Service.exe
(„Hewlett-Packard Company“) C: \ Program Dosyaları (x86) \ Hewlett-Packard \ KBD \ kbd.exe
(„Microsoft Corporation“) C: \ Program Files \ Internet Explorer \ iexplore.exe
(„Hewlett-Packard Co.“) C: \ Program Files (x86) \ HP \ Digital Imaging \ smart web printing \ hpswp_clipbook.exe
==================== Registracija (įtraukta į baltąjį sąrašą) ==================
(Jei įrašas įtraukiamas į pataisų sąrašą, registro elementas atkuriamas pagal numatytuosius nustatymus arba pašalinamas. Failas nėra perkeltas.)
HKLM \ ... \ Run: [HP Remote Software] => C: \ Program Files \ Hewlett-Packard \ HP Remote \ HP REMOTE V1.0.5.exe [172032 2009-02-06] ()
HKLM \ ... \ Run: [SmartMenu] => C: \ Program Dosyaları \ Hewlett-Packard \ HP MediaSmart \ SmartMenu.exe [915512 2009-03-05] („Hewlett-Packard“)
HKLM-x32 \ ... \ Run: [GrooveMonitor] => C: \ Program Dosyaları (x86) \ Microsoft Office \ Office12 \ GrooveMonitor.exe [30040 2009-02-26] („Microsoft Corporation“)
HKLM-x32 \ ... \ Run: [HP būklės patikrinimo tvarkaraštis] => c: \ Program Files (x86) \ Hewlett-Packard \ HP Health Check \ HPHC_Scheduler.exe [75016 2008-12-04] („Hewlett-Packard“) )
HKLM-x32 \ ... \ Run: [hpsysdrv] => c: \ program files (x86) \ hewlett-packard \ HP odometer \ hpsysdrv.exe [62768 2008-11-20] („Hewlett-Packard“)
HKLM-x32 \ ... \ Run: [Microsoft Default Admin] => c: \ Program Files (x86) \ Microsoft \ Search Enhancement Package \ Default Admin \ DefMgr.exe [224616 2009-02-06] („Microsoft Corp.“ )
HKLM-x32 \ ... \ Run: [UpdateLBPShortCut] => c: \ Program Files (x86) \ CyberLink \ LabelPrint \ MUITransfer \ MUIStartMenu.exe [218408 2008-12-04] (CyberLink Corp.)
HKLM-x32 \ ... \ Run: [UpdateP2GoShortCut] => c: \ Program Files (x86) \ CyberLink \ Power2Go \ MUITransfer \ MUIStartMenu.exe [218408 2008-12-04] (CyberLink Corp.)
HKLM-x32 \ ... \ Run: [UpdatePDIRShortCut] => c: \ Program Files (x86) \ CyberLink \ PowerDirector \ MUITransfer \ MUIStartMenu.exe [218408 2008-12-04] (CyberLink Corp.)
HKLM-x32 \ ... \ Run: [UpdatePSTShortCut] => c: \ Program Files (x86) \ CyberLink \ CyberLink DVD Suite Deluxe \ MUITransfer \ MUIStartMenu.exe [210216 2009-02-02] (CyberLink Corp.)
HKLM-x32 \ ... \ Run: [KBD] => C: \ Program Files (x86) \ Hewlett-Packard \ KBD \ KbdStub.EXE [12288 2008-07-21] („Microsoft“)
HKLM-x32 \ ... \ Run: [HP Remote Solution] => C: \ Program Files (x86) \ Hewlett-Packard \ HP Remote Solution \ HP_Remote_Solution.exe [656896 2009-05-26] ()
HKLM-x32 \ ... \ Run: [AppleSyncNotifier] => C: \ Program Dosyaları (x86) \ Ortak Dosyalar \ Apple \ Mobile Device Support \ AppleSyncNotifier.exe [59240 2011-09-27] („Apple Inc.“)
HKLM-x32 \ ... \ Run: [APSDaemon] => C: \ Program Files (x86) \ Common Files \ Apple \ Apple Application Support \ APSDaemon.exe [43816 2014-07-31] („Apple Inc.“)
HKLM-x32 \ ... \ Run: [HP Software Update] => C: \ Program Files (x86) \ HP \ HP Software Update \ HPWuSchd2.exe [49208 2011-10-28] („Hewlett-Packard“)
HKLM-x32 \ ... \ Run: [] => [X]
HKLM-x32 \ ... \ Run: [SelectTrayAgent] => C: \ Program File (x86) \ Samsung \ Select \ SelectTrayAgent.exe [311152 2013-09-04] („Samsung Electronics Co., Ltd.“)
HKLM-x32 \ ... \ Run: [QuickTime Task] => C: \ Program Files (x86) \ QuickTime \ QTTask.exe [421888 2014-01-17] („Apple Inc.“)
HKLM-x32 \ ... \ Run: [SSDMonitor] => C: \ Program Dosyaları (x86) \ Symantec \ Norton Utilities 16 \ sMonitor \ SSDMonitor.exe [106112 2014-06-20] (Symantec Corporation)
HKLM-x32 \ ... \ Run: [SunJavaUpdateSched] => C: \ Program Files (x86) \ Common Files \ Java \ Java Update \ jusched.exe [256896 2014-07-25] („Oracle Corporation“)
HKLM-x32 \ ... \ Run: [iTunesHelper] => C: \ Program Dosyaları (x86) \ iTunes \ iTunesHelper.exe [152392 2014-09-01] („Apple Inc.“)
HKLM-x32 \ ... \ Run: [Adobe ARM] => C: \ Program Files (x86) \ Common Files \ Adobe \ ARM \ 1.0 \ AdobeARM.exe [959176 2014-09-12] („Adobe Systems Incorporated“)
Winlogon \ Notify \ igfxcui: C: \ Windows \ system32 \ igfxdev.dll („Intel Corporation“)
HKU \ S-1-5-21-3103007187-1603492967-1574566053-1000 \ ... \ Run: [ehTray.exe] => C: \ Windows \ ehome \ ehTray.exe [163328 2010-11-20] ( „Microsoft“ įmonė)
HKU \ S-1-5-21-3103007187-1603492967-1574566053-1000 \ ... \ Run: [ApplePhotoStreams] => C: \ Program Files (x86) \ Common Files \ Apple \ Internet Services \ ApplePhotoStreams.exe [ 59720 2013-11-20] („Apple Inc.“)
HKU \ S-1-5-21-3103007187-1603492967-1574566053-1000 \ ... \ Run: [KiesPreload] => C: \ Program Files (x86) \ Samsung \ Kies \ Kies.exe [1564528 2013-09 -04) („Samsung“)
HKU \ S-1-5-21-3103007187-1603492967-1574566053-1000 \ ... \ Policies \ Explorer: [NoInstrumentation] 1
Paleidimas: C: \ ProgramData \ Microsoft \ Windows \ Start Menu \ Programs \ Startup \ AtHomeConnect.lnk
„ShortcutTarget“: AtHomeConnect.lnk -> C: \ Program Dosyaları (x86) \ AtHomeConnect \ AtHomeConnect.exe (HR blokas)
Paleidimas: C: \ ProgramData \ Microsoft \ Windows \ Start Menu \ Programs \ Startup \ HP Digital Imaging Monitor.lnk
Spartusis klavišas: „HP Digital Imaging Monitor.lnk“ -> C: \ Program Files (x86) \ HP \ Digital Imaging \ bin \ hpqtra08.exe („Hewlett-Packard Co.“)
Paleidimas: C: \ ProgramData \ Microsoft \ Windows \ Start Menu \ Programs \ Startup \ PictureMover.lnk
„ShortcutTarget“: PictureMover.lnk -> C: \ Program Dosyaları (x86) \ PictureMover \ Bin \ PictureMover.exe („Hewlett-Packard Company“)
Paleidimas: C: \ Users \ Mike \ AppData \ Roaming \ Microsoft \ Windows \ Start Menu \ Programs \ Startup \ GoZone iSync.lnk
Spartusis klavišas: GoZone iSync.lnk -> C: \ Program Files (x86) \ GoZone \ GoZone_iSync.exe („Virgin HealthMiles Inc.“)
Paleidimas: C: \ Users \ Mike \ AppData \ Roaming \ Microsoft \ Windows \ Start Menu \ Programs \ Startup \ SharePort Utility.lnk
„ShortcutTarget“: „SharePort İzlencesi.lnk“ -> C: „Programos Dosyaları“ „D-Link“ „SharePort İzlencesi“ Connect.exe („D-Link Corporation“)
==================== Internetas (įtrauktas į baltąjį sąrašą) =====================
(Jei elementas yra įtrauktas į taisymų sąrašą, jei jis yra registro elementas, jis pašalinamas arba atkuriamas pagal numatytuosius nustatymus.)
HKCU \ Software \ Microsoft \ Internet Explorer \ Main, Search Page =
http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKCU \ Software \ Microsoft \ Internet Explorer \ Main, Pradinis puslapis =
http://my.earthlink.net/
StartMenuInternet: IEXPLORE.EXE - C: \ Program Files (x86) \ Internet Explorer \ iexplore.exe
Paieškos sritys: HKLM - {5CB22BE2-BB73-48D4-9018-B333D3F78B0C} URL =
http://search.live.com/results.aspx?q= Pasirinkite SpecysearchTerms & FORM = HPDTDF
Paieškos sritys: HKLM - {9CE308C2-69C5-4CD7-B89C-957A8D7D3ADD} URL =
http://www.ask.com/web?q= paieškos terminai / 02 & l = dis & o = ushpd
Paieškos sritys: HKCU - numatytasis taikymo sritis {18A41CA2-0F12-40F9-8AAB-2A93D6590791} URL =
http://www.google.com/search?q= nurodyti jūrą ... tIndex? ... && StartPage = anclasta & PageCIP & rlz = 1I7ADRA_tr
Paieškos sritys: HKCU - URL = {18A41CA2-0F12-40F9-8AAB-2A93D6590791}
http://www.google.com/search?q= nurodyti jūrą ... tIndex? ... && StartPage = anclasta & PageCIP & rlz = 1I7ADRA_tr
BHO: „Windows Live“ šeimos saugos naršyklės pagalbininkų klasė -> (4f3ed5cd-0726-42a9-87f5-d13f3d2976ac} -> C: \ Program Files \ Windows Live \ Family Safety \ fssbho.dll („Microsoft Corporation“)
BHO: „Norton Identity Protection“ -> (602ADB0E-4AFF-4217-8AA1-95DAC4DFA408) -> C: \ Program Files (x86) \ Norton Internet Security \ Engine64 \ 21.6.0.32 \ coIEPlg.dll (Symantec Corporation)
BHO: „Windows Live ID“ prisijungimo padėjėjas -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C: \ Program Files \ Common Files \ Microsoft Shared \ Windows Live \ WindowsLiveLogin.dll („Microsoft Corp.“)
BHO: „Google“ įrankių juostos pagalbininkas -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C: \ Program Files (x86) \ Google \ Google Toolbar \ GoogleToolbar_64.dll („Google Inc.“)
BHO-x32: „HP Print Developer“ -> (0347C33E-8762-4905-BF09-768834316C61) -> C: \ Program Files (x86) \ HP \ Digital Imaging \ Smart Web Printing \ hpswp_printenhancer.dll („Hewlett-Packard Co.“)
BHO-x32: „Norton“ tapatybės apsauga -> (602ADB0E-4AFF-4217-8AA1-95DAC4DFA408) -> C: \ Program Files (x86) \ Norton Internet Security \ Engine \ 21.6.0.32 \ coIEPlg.dll („Symantec Corporation“)
BHO-x32: „Norton“ pažeidžiamumo apsauga -> {6D53EC84-6AAE-4787-AEEE-F4628F01010C} -> C: \ Program Files (x86) \ Norton Internet Security \ Engine \ 21.6.0.32 \ IPS \ IPSBHO.DLL („Symantec Corporation“) )
BHO-x32: Paieškos padėjėjas -> {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} -> C: \ Program Files (x86) \ Microsoft \ Search Improvement Package \ Search Assistant \ SEPsearchhelperie.dll („Microsoft Corporation“)
BHO-x32: „Groove GFS“ naršyklės padėjėjas -> (72853161-30C5-4D22-B7F9-0BBC1D38A37E) -> C: \ Program Files (x86) \ Microsoft Office \ Office12 \ GrooveShellExtensions.dll („Microsoft Corporation“)
BHO-x32: „Java“ (tm) papildinys SSV pagalbininkas -> (761497BB-D6F0-462C-B6EB-D4DAF1D92D43) -> C: „Program Files“ (x86) „Java“ jre7 \ bin \ ssv.dll („Oracle Corporation“)
BHO-x32: „Windows Live ID“ prisijungimo padėjėjas -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C: \ Program Files (x86) \ Common Files \ Microsoft Shared \ Windows Live \ WindowsLiveLogin.dll („Microsoft Corp.“) )
BHO-x32: „Google“ įrankių juostos pagalbininkas -> (AA58ED58-01DD-4d91-8333-CF10577473F7) -> C: „Program Files“ (x86) „Google“ „Google“ įrankių juosta „GoogleToolbar_32.dll“ („Google Inc.“)
BHO-x32: „Microsoft Live Search“ įrankių juostos pagalbininkas -> (d2ce3e00-f94a-4740-988e-03dc2f38c34f) -> c: \ Program Files (x86) \ MSN \ Toolbar \ 3.0.0552.0 \ msneshellx.dll („Microsoft Corp.“)
BHO-x32: „Java“ (tm) 2 papildinio SSV pagalbininkas -> (DBC80044-A445-435b-BC74-9C25C1C588A9) -> C: \ Program Files (x86) \ Java \ jre7 \ bin \ jp2ssv.dll („Oracle Corporation“)
BHO-x32: „Windows Live“ įrankių juostos pagalbininkas -> (E15A8DC0-8516-42A1-81EA-DC94EC1ACF10) -> C: \ Program Files (x86) \ Windows Live \ Toolbar \ wltcore.dll („Microsoft Corporation“)
BHO-x32: „HP Smart BHO“ klasė -> {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} -> C: \ Program Files (x86) \ HP \ Digital Imaging \ Smart Web Printing \ hpswp_BHO.dll („Hewlett-Packard Co.“ )
Įrankių juosta: HKLM - „Norton“ įrankių juosta - (7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA) - C: \ Program Files (x86) \ Norton Internet Security \ Engine64 \ 21.6.0.32 \ coIEPlg.dll (Symantec Corporation)
Įrankių juosta: HKLM - „Google“ įrankių juosta - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C: \ Program Files (x86) \ Google \ Google Toolbar \ GoogleToolbar_64.dll (Google Inc.)
Įrankių juosta: HKLM-x32 - „Microsoft Live Search“ įrankių juosta - (1E61ED7C-7CB8-49d6-B9E9-AB4C880C8414) - c: \ Program Files (x86) \ MSN \ Toolbar \ 3.0.0552.0 \ msneshellx.dll („Microsoft Corp.“)
Įrankių juosta: HKLM-x32 - „Windows Live“ įrankių juosta - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C: \ Program Files (x86) \ Windows Live \ Toolbar \ wltcore.dll („Microsoft Corporation“)
Įrankių juosta: HKLM-x32 - „Norton“ įrankių juosta - (7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA) - C: \ Program Files (x86) \ Norton Internet Security \ Engine \ 21.6.0.32 \ coIEPlg.dll (Symantec Corporation)
Įrankių juosta: HKLM-x32 - „Google“ įrankių juosta - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C: \ Program Files (x86) \ Google \ Google Toolbar \ GoogleToolbar_32.dll (Google Inc.)
Įrankių juosta: HKCU - be pavadinimo - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - be failo
Įrankių juosta: HKCU - „Google“ įrankių juosta - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C: \ Program Files (x86) \ Google \ Google Toolbar \ GoogleToolbar_64.dll (Google Inc.)
Įrankių juosta: HKCU - „Norton“ įrankių juosta - (7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA) - C: \ Program Files (x86) \ Norton Internet Security \ Engine64 \ 21.6.0.32 \ coIEPlg.dll (Symantec Corporation)
DPF: HKLM-x32 {02BCC737-B171-4746-94C9-0D8A0B2C0089}
http://office.microsoft.com/_layouts/ClientBin/ieawsdc32.cab
DPF: HKLM-x32 {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B}
http://appldnld.apple.com.edgesuite.net/content.info.apple.com/QuickTime/qtactivex/qtplugin.cab
DPF: HKLM-x32 {16F67783-7E72-4C39-99C4-4780A8335484}
http://www.syncmyride.com/Own/Modules/UpdateCenter/applets/sync.cab
DPF: HKLM-x32 {36299202-09EF-4ABF-ADB9-47C599DBE778}
https://www.hpwindows7upgrade.arvato.com/north_america/Endcustomer/HPProdDetect.cab
DPF: HKLM-x32 {E2883E8F-472F-4FB0-9522-AC9BF37916A7}
http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
DPF: HKLM-x32 {F27237D7-93C8-44C2-AC6E-D6057B9A918F}
https://lmpassage3.external.lmco.com/dana-cached/sc/JuniperSetupClient.cab
„Tcpip \ Parameters“: [DhcpNameServer] 192.168.0.2
„Firefox“:
========
FF papildinys: @ microsoft.com / GENUINE -> išjungtas „No File“
FF papildinys: @ Microsoft.com / NpCtrl, versija = 1.0 -> c: \ Program Files \ Microsoft Silverlight \ 5.1.30514.0 \ npctrl.dll („Microsoft Corporation“)
„FF Plugin-x32“: @ Apple.com / iTunes, versija = 1.0 -> C: \ Program Files (x86) \ iTunes \ Mozilla Plugins \ npitunes.dll ()
„FF Plugin-x32“: @ java.com / DTPlugin, version = 10.67.2 -> C: \ Program Files (x86) \ Java \ jre7 \ bin \ dtplugin \ npDeployJava1.dll (Oracle Corporation)
„FF Plugin-x32“: @ java.com / JavaPlugin, version = 10.67.2 -> C: \ Program Files (x86) \ Java \ jre7 \ bin \ plugin2 \ npjp2.dll („Oracle Corporation“)
„FF Plugin-x32“: @ microsoft.com / GENUINE -> išjungtas „No File“
„FF Plugin-x32“: @ Microsoft.com / NpCtrl, versija = 1.0 -> c: \ Program Files (x86) \ Microsoft Silverlight \ 5.1.30514.0 \ npctrl.dll („Microsoft Corporation“)
„FF Plugin-x32“: @ microsoft.com / OfficeLive, version = 1.5 -> C: \ Program Files (x86) \ Microsoft \ Office Live \ npOLW.dll („Microsoft Corp.“)
„FF Plugin-x32“: @ microsoft.com / WLPG, version = 14.0.8081.0709 -> C: \ Program Files (x86) \ Windows Live \ Photo Gallery \ NPWLPG.dll („Microsoft Corporation“)
„FF Plugin-x32“: @ microsoft.com / WPF, versija = 3.5 -> c: \ Windows \ Microsoft.NET \ Framework \ v3.5 \ Windows Presentation Foundation \ NPWPF.dll („Microsoft Corporation“)
„FF Plugin-x32“: @ tools.google.com / „Google Update“; version = 3 -> C: \ Program Files (x86) \ Google \ Update \ 1.3.25.5 \ npGoogleUpdate3.dll („Google Inc.“)
„FF Plugin-x32“: @ tools.google.com / „Google Update“; version = 9 -> C: \ Program Files (x86) \ Google \ Update \ 1.3.25.5 \ npGoogleUpdate3.dll („Google Inc.“)
„FF Plugin-x32“: „Adobe Reader“ -> C: \ Program Files (x86) \ Adobe \ Reader 11.0 \ Reader \ AIR \ nppdf32.dll („Adobe Systems Inc.“)
FF HKLM-x32 \ ... \ Firefox \ Uzantılar: [{20a82645-c095-46ed-80e3-08825760534b}] - c: \ Windows \ Microsoft.NET \ Framework \ v3.5 \ Windows Presentation Foundation \ DotNetAssistantExtension
FF „Uzantısı“: „Microsoft .NET Framework Assistant“ - c: \ Windows \ Microsoft.NET \ Framework \ v3.5 \ Windows Presentation Foundation \ DotNetAssistantExtension [2009-09-01]
FF HKLM-x32 \ ... \ Firefox \ Uzantılar: [{2D3F3651-74B9-4795-BDEC-6DA2F431CB62}] - C: \ ProgramData \ Norton \ {0C55C096-0F1D-4F28-AAA2-85EF591126E7.0 \ NIS_2 18 \ coFFPlgn
FF plėtinys: „Norton“ įrankių juosta - C: \ ProgramData \ Norton \ (0C55C096-0F1D-4F28-AAA2-85EF591126E7) \ NIS_21.1.0.18 \ coFFPlgn [2014-10-29]
FF HKLM-x32 \ ... \ Firefox \ Extensions: [
smartwebprinting@hp.com] - C: \ Program Files (x86) \ HP \ Digital Imaging \ Smart Web Printing \ MozillaAddOn3
FF plėtinys: „HP Smart Web Printing“ - C: \ Program Files (x86) \ HP \ Digital Imaging \ Smart Web Printing \ MozillaAddOn3 [2010-10-24]
FF HKCU \ ... \ Firefox \ Extensions: [
smartwebprinting@hp.com] - C: \ Program Files (x86) \ HP \ Digital Imaging \ Smart Web Printing \ MozillaAddOn3
Išskyrus:
=======
==================== Paslaugos (įtrauktos į baltąjį sąrašą) =================
(Jei įrašas įtraukiamas į pataisų sąrašą, paslauga pašalinama iš registro. Failas nebus perkeltas, nebent jis būtų nurodytas atskirai.)
S3 DiskDoctorService; C: \ Program Dosyaları (x86) \ Symantec \ Norton Utilities 16 \ Tools \ Disk Doctor \ DiskDoctorSrv.exe [1147424 2012-09-29] („Symantec Corporation“)
R2 HP sveikatos patikrinimo tarnyba; c: \ Program Files (x86) \ Hewlett-Packard \ HP Health Check \ hphc_service.exe [94208 2008-12-04] (Hewlett-Packard) [Failas nepasirašytas]
R3 hpqcx508; C: \ Program Files (x86) \ HP \ Digital Imaging \ bin \ hpqcxs08.dll [249344 2009-09-23] („Hewlett-Packard Co.“) [Failas nepasirašytas]
R2 hpqddsvc; C: \ Program Files (x86) \ HP \ Digital Imaging \ bin \ hpqddsvc.dll [133120 2009-09-23] („Hewlett-Packard Co.“) [Failas nepasirašytas]
R2 HPSLPSVC; C: \ Program Files (x86) \ HP \ Digital Imaging \ bin \ HPSLPSVC64.DLL [1039360 2010-10-22] („Hewlett-Packard Co.“) [Failas nepasirašytas]
R2 „LightScribeService“; c: \ Program Files (x86) \ Common Files \ LightScribe \ LSSrvc.exe [73728 2009-03-17] („Hewlett-Packard Company“) [Failas nepasirašytas]
R2 MBAMScheduler; C: \ Program Dosyaları (x86) \ Malwarebytes Anti-Malware \ mbamscheduler.exe [1871160 2014-10-01] („Malwarebytes Corporation“)
R2 MBAM „Hizmeti“; C: \ Program Dosyaları (x86) \ Malwarebytes Anti-Malware \ mbamservice.exe [968504 2014-10-01] („Malwarebytes Corporation“)
R2 tinklo diskas HPZ12; C: \ Windows \ system32 \ HPZinw12.dll [71680 2010-08-06] („Hewlett-Packard“) [Failas nepasirašytas]
R2 yra NIS; C: \ Program Files (x86) \ Norton Internet Security \ Engine \ 21.6.0.32 \ NIS.exe [276376 2014-09-21] („Symantec Corporation“)
R2 NU16StartManagerSvc; C: \ Program Dosyaları (x86) \ Symantec \ Norton Utilities 16 \ sMonitor \ StartManSvc.exe [792608 2012-09-29] (Symantec)
R2 Pml tvarkyklė HPZ12; C: \ Windows \ system32 \ HPZipm12.dll [89600 2010-08-06] („Hewlett-Packard“) [Failas nepasirašytas]
R2 ReportMgmtService; C: \ Program Dosyaları (x86) \ Trusteer \ Rapport \ bin \ RapportMgmtService.exe [1919256 2014-07-31] („IBM Corp.“)
S3 „SpeedDiskService“; C: \ Program Dosyaları (x86) \ Symantec \ Norton Utilities 16 \ Tools \ SpeedDisk \ SpeedDiskSrv.exe [1160224 2012-09-29] („Symantec Corporation“)
S3 „Symantec RemoteAssist“; C: \ Program Files (x86) \ Common Files \ Symantec Shared \ Support Controls \ ssrc.exe [394704 2008-01-29] (Symantec, Inc.)
==================== Tvarkyklės (įtrauktos į baltąjį sąrašą) ====================
(Jei įrašas įtraukiamas į pataisų sąrašą, paslauga pašalinama iš registro. Failas nebus perkeltas, nebent jis būtų nurodytas atskirai.)
R1 stiprintuvas; C: \ Windows \ System32 \ DRIVERS \ Amfltx64.sys [12288 2007-10-15] ((Standartiniai pelių tipai))
R3 Amusbprt; C: \ Windows \ System32 \ DRIVERS \ Amusbx64.sys [17920 2008-02-13] (A4Tech Co., Ltd.)
U5 „AppMgmt“; C: \ Windows \ system32 \ svchost.exe [27136 2009-07-13] („Microsoft Corporation“)
R1BHDrvx64; C: \ Program Files (x86) \ Norton Internet Security \ NortonData \ 21.1.0.18 \ Definitions \ BASHDefs \ 20141024.001 \ BHDrvx64.sys [1587416 2014-10-03] („Symantec Corporation“)
R1 ccSet_NIS; C: \ Windows \ system32 \ drivers \ NISx64 \ 1506000.020 \ ccSetx64.sys [162392 2013-09-25] („Symantec Corporation“)
R1 yra eeCtrl; C: \ Program Files (x86) \ Common Files \ Symantec Shared \ EENGINE \ eeCtrl64.sys [487216 2014-09-11] („Symantec Corporation“)
R3 „EraserUtilRebootDrv“; C: \ Program Files (x86) \ Common Files \ Symantec Shared \ EENGINE \ EraserUtilRebootDrv.sys [142640 2014-09-11] („Symantec Corporation“)
R1 yra IDSVia64; C: \ Program Files (x86) \ Norton Internet Security \ NortonData \ 21.1.0.18 \ Definitions \ IPSDefs \ 20141028.001 \ IDSvia64.sys [633560 2014-08-30] („Symantec Corporation“)
R3 MBAMProtektör; C: \ Windows \ system32 \ drivers \ mbam.sys [25816 2014-10-01] („Malwarebytes Corporation“)
R3 MBAMSwissArmy; C: \ Windows \ system32 \ drivers \ MBAMSwissArmy.sys [129752 2014-10-29] („Malwarebytes Corporation“)
S3 MBAMWebAccessControl; C: \ Windows \ system32 \ drivers \ mwac.sys [63704 2014-10-01] („Malwarebytes Corporation“)
R3 NAVENG; C: \ Program Files (x86) \ Norton Internet Security \ NortonData \ 21.1.0.18 \ Definitions \ VirusDefs \ 20141028.025 \ ENG64.SYS [129752 2014-08-21] („Symantec Corporation“)
R3 NAVEX15; C: \ Program Files (x86) \ Norton Internet Security \ NortonData \ 21.1.0.18 \ Definitions \ VirusDefs \ 20141028.025 \ EX64.SYS [2137304 2014-08-21] („Symantec Corporation“)
R1 RapportCerberus_80049; C: \ ProgramData \ Trusteer \ Report \ store \ exts \ ReportCerberus \ baseline \ ReportCerberus64_80049.sys [768184 2014-09-01] ()
R1 RapportEI64; C: \ Program Dosyaları (x86) \ Trusteer \ Rapport \ bin \ x64 \ RapportEI64.sys [444184 2014-07-31] („IBM Corp.“)
R0 RapportKE64; C: \ Windows \ System32 \ Drivers \ RapportKE64.sys [536984 2014-07-31] („IBM Corp.“)
R1 RapportPG64; C: \ Program Dosyaları (x86) \ Trusteer \ Rapport \ bin \ x64 \ RapportPG64.sys [562136 2014-07-31] („IBM Corp.“)
R3 SRTSP; C: \ Windows \ System32 \ Drivers \ NISx64 \ 1506000.020 \ SRTSP64.SYS [876248 2014-08-25] („Symantec Corporation“)
R1 SRTSPX; C: \ Windows \ system32 \ drivers \ NISx64 \ 1506000.020 \ SRTSPX64.SYS [37592 2014-08-25] („Symantec Corporation“)
R2 sxuptp; C: \ Windows \ System32 \ DRIVERS \ sxuptp.sys [290824 2009-04-12] („Silex Technology, Inc.“)
R0 SymDS; C: \ Windows \ System32 \ drivers \ NISx64 \ 1506000.020 \ SYMDS64.SYS [493656 2013-09-09] („Symantec Corporation“)
R0 „SymEFA“; C: \ Windows \ System32 \ drivers \ NISx64 \ 1506000.020 \ SYMEFA64.SYS [1148120 2014-03-04] („Symantec Corporation“)
R3 „SymEvent“; C: \ Windows \ system32 \ Sürücüler \ SYMEVENT64x86.SYS [177752 2013-11-16] („Symantec Corporation“)
R1 SymIM; C: \ Windows \ System32 \ DRIVERS \ SymIMv.sys [78936 2013-09-09] („Symantec Corporation“)
R1 SymIRON; C: \ Windows \ system32 \ drivers \ NISx64 \ 1506000.020 \ Ironx64.SYS [266968 2014-08-06] („Symantec Corporation“)
R1 SymNetS; C: \ Windows \ System32 \ Drivers \ NISx64 \ 1506000.020 \ SYMNETS.SYS [593112 2014-02-17] („Symantec Corporation“)
U3 „TrueSight“; C: \ Windows \ System32 \ drivers \ TrueSight.sys [34808 2014-10-27] ()
S3 USBAAPL64; C: \ Windows \ System32 \ Drivers \ usbaapl64.sys [54784 2012-12-13] („Apple, Inc.“) [Failas nepasirašytas]
==================== „NetSvcs“ (baltasis sąrašas) ===================
(Jei elementas pridedamas prie taisymų sąrašo, jis pašalinamas iš registro. Bet kurį susietą failą galima perkelti atskirai.)
==================== Failai ir aplankai sukurti per mėnesį ========
(Jei įrašas bus įtrauktas į taisymų sąrašą, failas \ aplankas bus perkeltas.)
2014-10-29 22:00 - 2014-10-29 22:00 - 00023934 _____ () C: \ Users \ Mike \ Desktop \ FRST.txt
2014-10-29 22:00 - 2014-10-29 22:00 - 00000000 ____D () C: \ FRST
2014-10-29 21:59 - 2014-10-29 21:59 - 02113536 _____ (Farbar) C: \ Users \ Mike \ Desktop \ FRST64.exe
2014-10-29 21:57 - 2014-10-29 21:58 - 00001652 _____ () C: \ Users \ Mike \ Desktop \ JRT.txt
2014-10-29 21:51 - 2014-10-29 21:51 - 00000000 ____D () 100: \ Windows \ grąžinta;
2014-10-29 21:45 - 2014-10-29 21:45 - 00002228 _____ () C: \ Users \ Mike \ Desktop \ AdwCleaner [S0] .txt
2014-10-29 21:37 - 2014-10-29 21:42 - 00000000 ____D () C: \ AdwCleaner
2014-10-29 21:37 - 2014-10-29 21:37 - 01706144 _____ (Thisisu) C: \ Users \ Mike \ Desktop \ JRT.exe
2014-10-29 21:36 - 2014-10-29 21:36 - 01375089 _____ () C: \ Users \ Mike \ Desktop \ adwcleaner_3.311.exe
2014-10-29 18:41 - 2011-06-26 02:45 - 00256000 _____ () C: \ Windows \ PEV.exe
2014-10-29 18:41 - 2010-11-07 13:20 - 00208896 _____ () C: \ Windows \ MBR.exe
2014-10-29 18:41 - 2009-04-20 00:56 - 00060416 _____ (NirSoft) C: \ Windows \ NIRCMD.exe
2014-10-29 18:41 - 2000-08-30 20:00 - 00518144 _____ (SteelWerX) C: \ Windows \ SWREG.exe
2014-10-29 18:41 - 2000-08-30 20:00 - 00406528 _____ („SteelWerX“) C: \ Windows \ SWSC.exe
2014/10/29 18:41 - 2000-08-30 20:00 - 00.098.816 _ () C: \ WINDOWS \ sed.exe
2014-10-29 18:41 - 2000-08-30 20:00 - 00080412 _____ () C: \ Windows \ grep.exe
2014-10-29 18:41 - 2000-08-30 20:00 - 00068096 _____ () C: \ Windows \ zip.exe
2014-10-29 18:25 - 2014-10-29 19:59 - 00000000 ____D () C: \ Qoobox
2014-10-29 18:25 - 2014-10-29 19:45 - 00000000 ____D () C: \ Windows \ erdnt
2014-10-29 18:15 - 2014-10-29 18:15 - 05591672 ____R („Swearware“) C: \ Kullanıcılar \ Mike \ Desktop \ ComboFix.exe
2014-10-29 18:13 - 2014-10-29 21:33 - 00000000 ____D () C: \ Users \ Mike \ Desktop \ virusremoval
2014-10-27 19:43 - 2014-10-27 21:11 - 00000000 ____D () C: \ ProgramData \ Malwarebytes 'Anti-Malware (portable)
2014-10-27 19:22 - 2014-10-27 19:22 - 00034808 _____ () C: \ Windows \ system32 \ Drivers \ TrueSight.sys
2014-10-27 19:22 - 2014-10-27 19:22 - 00000000 ____D () C: \ ProgramData \ RogueKiller
2014-10-26 21:11 - 2014-10-29 21:46 - 00129752 _____ („Malwarebytes Corporation“) C: \ Windows \ system32 \ Sürücüler \ MBAMSwissArmy.sys
2014-10-26 21:10 - 2014-10-27 19:40 - 00092888 _____ („Malwarebytes Corporation“) C: \ Windows \ system32 \ Sürücüler \ mbamchameleon.sys
2014-10-26 21:10 - 2014-10-26 21:10 - 00000000 ____D () C: \ ProgramData \ Microsoft \ Windows \ Start Menu \ Programs \ Malwarebytes Anti-Malware
2014-10-26 21:10 - 2014-10-26 21:10 - 00000000 ____D () C: \ ProgramData \ Malwarebytes
2014-10-26 21:10 - 2014-10-26 21:10 - 00000000 ____D () C: \ Program Dosyaları (x86) \ Malwarebytes Anti-Malware
2014-10-26 21:10 - 2014-10-01 11:11 - 00063704 _____ („Malwarebytes Corporation“) C: \ Windows \ system32 \ Sürücüler \ mwac.sys
2014-10-26 21:10 - 2014-10-01 11:11 - 00025816 _____ („Malwarebytes Corporation“) C: \ Windows \ system32 \ Sürücüler \ mbam.sys
2014-10-18 15:30 - 2014-10-18 15:30 - 00920152 _____ () C: \ Windows \ Minidump \ 101814-27175-01.dmp
2014-10-18 12:19 - 2014-10-18 12:19 - 00000165 ____H () C: \ Users \ Mike \ Desktop \ ~ $ 2014 Medical Bills.xlsx
2014-10-18 11:55 - 2014-10-09 22:05 - 00507392 _____ („Microsoft Corporation“) C: \ Windows \ system32 \ aepdu.dll
2014-10-18 11:55 - 2014-10-09 22:05 - 00276480 _____ („Microsoft Corporation“) C: \ Windows \ system32 \ generaltel.dll
2014-10-18 11:55 - 2014-10-09 22:00 - 00424448 _____ („Microsoft Corporation“) C: \ Windows \ system32 \ aeinv.dll
2014-10-18 11:55 - 2014-10-06 22:54 - 00378552 _____ („Microsoft Corporation“) C: \ Windows \ system32 \ iedkcs32.dll
2014-10-18 11:55 - 2014-10-06 22:04 - 00331448 _____ („Microsoft Corporation“) C: \ Windows \ SysWOW64 \ iedkcs32.dll
2014-10-18 11:55 - 2014-09-28 20:58 - 03198976 _____ („Microsoft Corporation“) C: \ Windows \ system32 \ win32k.sys
2014-10-18 11:55 - 2014-09-25 18:46 - 00365056 _____ („Microsoft Corporation“) C: \ Windows \ SysWOW64 \ dxtmsft.dll
2014-10-18 11:55 - 2014-09-25 18:46 - 00069632 _____ („Microsoft Corporation“) C: \ Windows \ SysWOW64 \ mshtmled.dll
2014-10-18 11:55 - 2014-09-25 18:32 - 02017280 _____ („Microsoft Corporation“) C: \ Windows \ SysWOW64 \ inetcpl.cpl
2014-10-18 11:55 - 2014-09-18 21:56 - 02724864 _____ („Microsoft Corporation“) C: \ Windows \ system32 \ mshtml.tlb
2014-10-18 11:55 - 2014-09-18 21:55 - 00004096 _____ („Microsoft Corporation“) C: \ Windows \ system32 \ ieetwcollectorres.dll
2014-10-18 11:55 - 2014-09-18 21:44 - 17484800 _____ („Microsoft Corporation“) C: \ Windows \ SysWOW64 \ mshtml.dll
2014-10-18 11:55 - 2014-09-18 21:39 - 00048640 _____ („Microsoft Corporation“) C: \ Windows \ system32 \ ieetwproxystub.dll
2014-10-18 11:55 - 2014-09-18 21:30 - 00033792 _____ („Microsoft Corporation“) C: \ Windows \ system32 \ iernonce.dll
2014-10-18 11:55 - 2014-09-18 21:14 - 02724864 _____ („Microsoft Corporation“) C: \ Windows \ SysWOW64 \ mshtml.tlb
2014-10-18 11:55 - 2014-09-18 21:06 - 00072704 _____ („Microsoft Corporation“) C: \ Windows \ system32 \ JavaScriptCollectionAgent.dll
2014-10-18 11:55 - 2014-09-18 21:01 - 00061952 _____ („Microsoft Corporation“) C: \ Windows \ SysWOW64 \ iesetup.dll
2014-10-18 11:55 - 2014-09-18 21:01 - 00051200 _____ („Microsoft Corporation“) C: \ Windows \ SysWOW64 \ ieetwproxystub.dll
2014-10-18 11:55 - 2014-09-18 20:55 - 02187264 _____ („Microsoft Corporation“) C: \ Windows \ SysWOW64 \ iertutil.dll
2014-10-18 11:55 - 2014-09-18 20:54 - 00043008 _____ („Microsoft Corporation“) C: \ Windows \ SysWOW64 \ jsproxy.dll
2014-10-18 11:55 - 2014-09-18 20:53 - 00032768 _____ („Microsoft Corporation“) C: \ Windows \ SysWOW64 \ iernonce.dll
2014-10-18 11:55 - 2014-09-18 20:49 - 00597504 _____ („Microsoft Corporation“) C: \ Windows \ SysWOW64 \ jscript9diag.dll
2014-10-18 11:55 - 2014-09-18 20:42 - 00710656 _____ („Microsoft Corporation“) C: \ Windows \ system32 \ ie4uinit.exe
2014-10-18 11:55 - 2014-09-18 20:36 - 00060416 _____ („Microsoft Corporation“) C: \ Windows \ SysWOW64 \ JavaScriptCollectionAgent.dll
2014-10-18 11:55 - 2014-09-18 20:20 - 00607744 _____ („Microsoft Corporation“) C: \ Windows \ SysWOW64 \ msfeeds.dll
2014-10-18 11:55 - 2014-09-18 20:14 - 01447936 _____ („Microsoft Corporation“) C: \ Windows \ system32 \ urlmon.dll
2014-10-18 11:55 - 2014-09-18 19:53 - 01190400 _____ („Microsoft Corporation“) C: \ Windows \ SysWOW64 \ urlmon.dll
2014-10-18 11:55 - 2014-06-18 18:23 - 01943696 _____ („Microsoft Corporation“) C: \ Windows \ system32 \ dfshim.dll
2014-10-18 11:55 - 2014-06-18 18:23 - 01131664 _____ („Microsoft Corporation“) C: \ Windows \ SysWOW64 \ dfshim.dll
2014-10-18 11:55 - 2014-06-18 18:23 - 00156824 _____ („Microsoft Corporation“) C: \ Windows \ SysWOW64 \ mscorier.dll
2014-10-18 11:55 - 2014-06-18 18:23 - 00156312 _____ („Microsoft Corporation“) C: \ Windows \ system32 \ mscorier.dll
2014-10-18 11:55 - 2014-06-18 18:23 - 00081560 _____ („Microsoft Corporation“) C: \ Windows \ SysWOW64 \ mscories.dll
2014-10-18 11:55 - 2014-06-18 18:23 - 00073880 _____ („Microsoft Corporation“) C: \ Windows \ system32 \ mscories.dll
2014-10-18 11:54 - 2014-09-25 18:50 - 13619200 _____ („Microsoft Corporation“) C: \ Windows \ system32 \ ieframe.dll
2014-10-18 11:54 - 2014-09-25 18:46 - 00243200 _____ („Microsoft Corporation“) C: \ Windows \ SysWOW64 \ dxtrans.dll
2014-10-18 11:54 - 2014-09-25 18:43 - 11807232 _____ („Microsoft Corporation“) C: \ Windows \ SysWOW64 \ ieframe.dll
2014-10-18 11:54 - 2014-09-25 18:31 - 02108416 _____ („Microsoft Corporation“) C: \ Windows \ system32 \ inetcpl.cpl
2014-10-18 11:54 - 2014-09-18 22:25 - 23631360 _____ („Microsoft Corporation“) C: \ Windows \ system32 \ mshtml.dll
2014-10-18 11:54 - 2014-09-18 21:41 - 02796032 _____ („Microsoft Corporation“) C: \ Windows \ system32 \ iertutil.dll
2014-10-18 11:54 - 2014-09-18 21:40 - 00547328 _____ („Microsoft Corporation“) C: \ Windows \ system32 \ vbscript.dll
2014-10-18 11:54 - 2014-09-18 21:40 - 00066048 _____ („Microsoft Corporation“) C: \ Windows \ system32 \ iesetup.dll
2014-10-18 11:54 - 2014-09-18 21:38 - 00083968 _____ („Microsoft Corporation“) C: \ Windows \ system32 \ MshtmlDac.dll
2014-10-18 11:54 - 2014-09-18 21:36 - 05829632 _____ („Microsoft Corporation“) C: \ Windows \ system32 \ jscript9.dll
2014-10-18 11:54 - 2014-09-18 21:31 - 00051200 _____ („Microsoft Corporation“) C: \ Windows \ system32 \ jsproxy.dll
2014-10-18 11:54 - 2014-09-18 21:27 - 00595968 _____ („Microsoft Corporation“) C: \ Windows \ system32 \ ieui.dll
2014-10-18 11:54 - 2014-09-18 21:26 - 00139264 _____ („Microsoft Corporation“) C: \ Windows \ system32 \ ieUnatt.exe
2014-10-18 11:54 - 2014-09-18 21:25 - 04201472 _____ („Microsoft Corporation“) C: \ Windows \ SysWOW64 \ jscript9.dll
2014-10-18 11:54 - 2014-09-18 21:25 - 00758272 _____ („Microsoft Corporation“) C: \ Windows \ system32 \ jscript9diag.dll
2014-10-18 11:54 - 2014-09-18 21:25 - 00111616 _____ („Microsoft Corporation“) C: \ Windows \ system32 \ ieetwcollector.exe
2014-10-18 11:54 - 2014-09-18 21:18 - 00940032 _____ („Microsoft Corporation“) C: \ Windows \ system32 \ MsSpellCheckingFacility.exe
2014-10-18 11:54 - 2014-09-18 21:14 - 00446464 _____ („Microsoft Corporation“) C: \ Windows \ system32 \ dxtmsft.dll
2014-10-18 11:54 - 2014-09-18 21:02 - 00454656 _____ („Microsoft Corporation“) C: \ Windows \ SysWOW64 \ vbscript.dll
2014-10-18 11:54 - 2014-09-18 21:01 - 00195584 _____ („Microsoft Corporation“) C: \ Windows \ system32 \ msrating.dll
2014-10-18 11:54 - 2014-09-18 21:00 - 00085504 _____ („Microsoft Corporation“) C: \ Windows \ system32 \ mshtmled.dll
2014-10-18 11:54 - 2014-09-18 20:59 - 00061952 _____ („Microsoft Corporation“) C: \ Windows \ SysWOW64 \ MshtmlDac.dll
2014-10-18 11:54 - 2014-09-18 20:58 - 00289280 _____ („Microsoft Corporation“) C: \ Windows \ system32 \ dxtrans.dll
2014-10-18 11:54 - 2014-09-18 20:51 - 00440320 _____ („Microsoft Corporation“) C: \ Windows \ SysWOW64 \ ieui.dll
2014-10-18 11:54 - 2014-09-18 20:50 - 00112128 _____ („Microsoft Corporation“) C: \ Windows \ SysWOW64 \ ieUnatt.exe
2014-10-18 11:54 - 2014-09-18 20:42 - 00731136 _____ („Microsoft Corporation“) C: \ Windows \ system32 \ msfeeds.dll
2014-10-18 11:54 - 2014-09-18 20:40 - 01249280 _____ („Microsoft Corporation“) C: \ Windows \ system32 \ mshtmlmedia.dll
2014-10-18 11:54 - 2014-09-18 20:33 - 02309632 _____ („Microsoft Corporation“) C: \ Windows \ system32 \ wininet.dll
2014-10-18 11:54 - 2014-09-18 20:32 - 00164864 _____ („Microsoft Corporation“) C: \ Windows \ SysWOW64 \ msrating.dll
2014-10-18 11:54 - 2014-09-18 20:18 - 01068032 _____ („Microsoft Corporation“) C: \ Windows \ SysWOW64 \ mshtmlmedia.dll
2014-10-18 11:54 - 2014-09-18 19:59 - 01810944 _____ („Microsoft Corporation“) C: \ Windows \ SysWOW64 \ wininet.dll
2014-10-18 11:54 - 2014-09-18 19:59 - 00775168 _____ („Microsoft Corporation“) C: \ Windows \ system32 \ ieapfltr.dll
2014-10-18 11:54 - 2014-09-18 19:52 - 00678400 _____ („Microsoft Corporation“) C: \ Windows \ SysWOW64 \ ieapfltr.dll
2014-10-18 11:54 - 2014-09-17 22:00 - 03241472 _____ („Microsoft Corporation“) C: \ Windows \ system32 \ msi.dll
2014-10-18 11:54 - 2014-09-17 21:32 - 02363904 _____ („Microsoft Corporation“) C: \ Windows \ SysWOW64 \ msi.dll
2014-10-18 11:54 - 2014-08-28 22:07 - 03179520 _____ („Microsoft Corporation“) C: \ Windows \ system32 \ rdpcorets.dll
2014-10-18 11:53 - 2014-09-12 21:58 - 00077312 _____ („Microsoft Corporation“) C: \ Windows \ system32 \ packager.dll
2014-10-18 11:53 - 2014-09-12 21:40 - 00067072 _____ („Microsoft Corporation“) C: \ Windows \ SysWOW64 \ packager.dll
2014-10-18 11:53 - 2014-09-04 22:11 - 06584320 _____ („Microsoft Corporation“) C: \ Windows \ system32 \ mstscax.dll
2014-10-18 11:53 - 2014-09-04 21:52 - 05703168 _____ („Microsoft Corporation“) C: \ Windows \ SysWOW64 \ mstscax.dll
2014-10-18 11:53 - 2014-09-04 01:23 - 00424448 _____ („Microsoft Corporation“) C: \ Windows \ system32 \ rastls.dll
2014-10-18 11:53 - 2014-09-04 01:04 - 00372736 _____ („Microsoft Corporation“) C: \ Windows \ SysWOW64 \ rastls.dll
2014-10-18 11:53 - 2014-07-16 22:07 - 00681984 _____ („Microsoft Corporation“) C: \ Windows \ system32 \ termsrv.dll
2014-10-18 11:53 - 2014-07-16 22:07 - 00455168 _____ („Microsoft Corporation“) C: \ Windows \ system32 \ winlogon.exe
2014-10-18 11:53 - 2014-07-16 22:07 - 00235520 _____ („Microsoft Corporation“) C: \ Windows \ system32 \ winsta.dll
2014-10-18 11:53 - 2014-07-16 22:07 - 00150528 _____ („Microsoft Corporation“) C: \ Windows \ system32 \ rdpcorekmts.dll
2014-10-18 11:53 - 2014-07-16 22:07 - 00086528 _____ („Microsoft Corporation“) C: \ Windows \ system32 \ TSpkg.dll
2014-10-18 11:53 - 2014-07-16 22:07 - 00022016 _____ („Microsoft Corporation“) C: \ Windows \ system32 \ credssp.dll
2014-10-18 11:53 - 2014-07-16 21:40 - 00157696 _____ („Microsoft Corporation“) C: \ Windows \ SysWOW64 \ winsta.dll
2014-10-18 11:53 - 2014-07-16 21:39 - 00065536 _____ („Microsoft Corporation“) C: \ Windows \ SysWOW64 \ TSpkg.dll
2014-10-18 11:53 - 2014-07-16 21:39 - 00017408 _____ („Microsoft Corporation“) C: \ Windows \ SysWOW64 \ credssp.dll
2014-10-18 11:53 - 2014-07-16 21:21 - 00212480 _____ („Microsoft Corporation“) C: \ Windows \ system32 \ Sürücüler \ rdpwd.sys
2014-10-18 11:53 - 2014-07-16 21:21 - 00039936 _____ („Microsoft Corporation“) C: \ Windows \ system32 \ Sürücüler \ tssecsrv.sys
2014-10-10 10:14 - 2014-10-10 10:14 - 00002471 _____ () C: \ ProgramData \ Microsoft \ Windows \ Start Menu \ Programs \ Adobe Reader XI.lnk
2014-10-10 10:14 - 2014-10-10 10:14 - 00001981 _____ () C: \ Users \ Public \ Desktop \ Adobe Reader XI.lnk
2014-10-04 14:59 - 2014-09-24 22:08 - 00371712 _____ („Microsoft Corporation“) C: \ Windows \ system32 \ qdvd.dll
2014-10-04 14:59 - 2014-09-24 21:40 - 00519680 _____ („Microsoft Corporation“) C: \ Windows \ SysWOW64 \ qdvd.dll
2014-09-29 18:06 - 2014-09-29 18:06 - 00126884 _____ () C: \ Users \ Mike \ Downloads \ PHR.html
==================== Vieną mėnesį pakeisti failai ir aplankai =======
(Jei įrašas bus įtrauktas į taisymų sąrašą, failas \ aplankas bus perkeltas.)
2014-10-29 21:57 - 2012-03-30 15:10 - 00000830 _____ () C: \ Windows \ Tasks \ Adobe Flash Player Updater.job
2014-10-29 21:51 - 2009-12-28 14:41 - 00019664 ____H () C: \ Windows \ system32 \ 7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115 -601632D005A0
2014-10-29 21:51 - 2009-12-28 14:41 - 00019664 ____H () C: \ Windows \ system32 \ 7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115 -601632D005A0
2014-10-29 21:48 - 2009-12-28 15:14 - 01360498 _____ () C: \ Windows \ WindowsUpdate.log
2014-10-29 21:48 - 2009-08-25 19:10 - 00003658 _____ () C: \ Windows \ System32 \ Tasks \ HP būklės patikrinimas
2014-10-29 21:47 - 2009-12-27 19:05 - 00000000 ____D () C: \ Users \ Mike \ AppData \ Local \ CrashDumps
2014-10-29 21:46 - 2012-09-29 13:35 - 00000000 ____D () C: \ Kullanıcılar \ Mike \ AppData \ Local \ 5FCAE700-C814-4F8B-A3EC-396533DE3E30.aplzod
2014-10-29 21:45 - 2014-06-20 13:49 - 00000286 _____ () C: \ Windows \ Tasks \ NUAutoUpdate.job
2014-10-29 21:45 - 2009-08-25 18:51 - 00000000 ____D () C: \ ProgramData \ Temp
2014-10-29 21:44 - 2014-08-21 20:55 - 00000894 _____ () C: \ Windows \ Tasks \ GoogleUpdateTaskMachineCore.job
2014-10-29 21:44 - 2012-04-29 12:10 - 03638635 _____ () C: \ Windows \ setupact.log
2014-10-29 21:44 - 2009-12-28 15:02 - 00289832 _____ () C: \ Windows \ PFRO.log
2014-10-29 21:44 - 2009-07-14 01:08 - 00000006 ____H () C: \ Windows \ Tasks \ SA.DAT
2014-10-29 20:13 - 2014-08-21 20:55 - 00000898 _____ () C: \ Windows \ Tasks \ GoogleUpdateTaskMachineUA.job
2014-10-29 19:59 - 2009-07-13 23:20 - 00000000 __RHD () C: \ Users \ Default
2014-10-29 19:44 - 2009-07-13 22:34 - 00000215 _____ () C: \ Windows \ system.ini
2014-10-29 17:53 - 2009-12-29 16:52 - 00003914 _____ () C: \ Windows \ System32 \ Tasks \ User_Feed_Synchronization- {4A36EB0E-D3DB-4D28-B05E-7B6189B0A328}
2014-10-26 20:12 - 2012-03-25 16:46 - 00002645 _____ () C: \ Users \ Mike \ Documents \ OURBONDS.SBW.bak
2014-10-26 20:12 - 2012-03-25 16:25 - 00002645 _____ () C: \ Users \ Mike \ Documents \ OurBonds.sbw
2014-10-26 14:09 - 2010-10-24 16:04 - 00000000 ____D () C: \ Users \ Mike \ ScannedImages
2014-10-26 13:00 - 2014-06-20 14:33 - 00000328 _____ () C: \ Windows \ Tasks \ SpeedDiskSchedule.job
2014-10-24 08:44 - 2009-07-14 00:45 - 00440072 _____ () C: \ Windows \ system32 \ FNTCACHE.DAT
2014-10-24 08:41 - 2014-05-09 12:55 - 00000000 ___SD () C: \ Windows \ system32 \ CompatTel
2014-10-18 17:44 - 2009-09-01 20:54 - 00000000 ____D () C: \ ProgramData \ Microsoft Pagalba
2014-10-18 17:40 - 2009-07-13 23:20 - 00000000 ____D () C: \ Program Files \ Common Files \ Microsoft Shared
2014-10-18 17:38 - 2013-08-14 21:46 - 00000000 ____D () C: \ Windows \ system32 \ MRT
2014-10-18 17:35 - 2010-01-16 18:06 - 103265616 _____ („Microsoft Corporation“) C: \ Windows \ system32 \ MRT.exe
2014-10-18 17:08 - 2014-08-21 20:55 - 00003894 _____ () C: \ Windows \ System32 \ Tasks \ GoogleUpdateTaskMachineUA
2014-10-18 17:08 - 2014-08-21 20:55 - 00003642 _____ () C: \ Windows \ System32 \ Tasks \ GoogleUpdateTaskMachineCore
2014-10-18 15:30 - 2012-10-02 19:51 - 1019826576 _____ () C: \ Windows \ MEMORY.DMP
2014-10-18 15:30 - 2010-04-25 12:39 - 00000000 ____D () C: \ Windows \ Minidump
2014-10-18 14:07 - 2009-08-25 19:20 - 00000000 ____D () C: \ Program Files (x86) \ SMINST
2014-10-18 13:41 - 2013-02-01 18:15 - 00000000 ____D () C: \ Program Files (x86) \ AtHomeConnect
2014-10-10 10:14 - 2009-09-11 17:19 - 00000000 ____D () C: \ ProgramData \ Adobe
2014-10-10 10:14 - 2009-09-11 17:18 - 00000000 ____D () C: \ Program Files (x86) \ Adobe
2014-10-04 21:45 - 2014-03-06 09:30 - 00019679 _____ () C: \ Users \ Mike \ Desktop \ 2014 Medical Bills.xlsx
2014-10-04 20:23 - 2011-01-29 09:23 - 00003182 _____ () C: \ Windows \ System32 \ Tasks \ HPCeeScheduleForMike
2014-10-04 20:23 - 2011-01-29 09:23 - 00000330 _____ () C: \ Windows \ Tasks \ HPCeeScheduleForMike.job
2014-09-30 06:48 - 2009-07-13 23:20 - 00000000 ____D () C: \ Windows \ rescache
2014-09-29 18:18 - 2009-07-14 01:13 - 00788704 _____ () C: \ Windows \ system32 \ PerfStringBackup.INI
2014-09-29 18:11 - 2011-12-18 10:52 - 00000000 ____D () C: \ Users \ Mike \ AppData \ Local \ CutePDF Author
Kai kurie TEMP turiniai:
====================
C: \ Users \ Mike \ AppData \ Local \ Temp \ Quarantine.exe
===================== Bamital and volsnap Control =================
(Nėra automatinio taisymo failams, kurie neišlaiko patvirtinimo.)
C: \ Windows \ System32 \ winlogon.exe => Failas pasirašytas skaitmeniniu parašu
C: \ Windows \ System32 \ wininit.exe => Failas pasirašytas skaitmeniniu parašu
C: \ Windows \ SysWOW64 \ wininit.exe => Failas pasirašytas skaitmeniniu būdu
C: \ Windows \ explorer.exe => Failas pasirašytas skaitmeniniu būdu
C: \ Windows \ SysWOW64 \ explorer.exe => Failas pasirašytas skaitmeniniu būdu
C: \ Windows \ System32 \ svchost.exe => Failas pasirašytas skaitmeniniu parašu
C: \ Windows \ SysWOW64 \ svchost.exe => Failas pasirašytas skaitmeniniu būdu
C: \ Windows \ System32 \ services.exe => Failas pasirašytas skaitmeniniu būdu
C: \ Windows \ System32 \ User32.dll => Failas pasirašytas skaitmeniniu parašu
C: \ Windows \ SysWOW64 \ User32.dll => Failas pasirašytas skaitmeniniu būdu
C: \ Windows \ System32 \ userinit.exe => Failas pasirašytas skaitmeniniu parašu
C: \ Windows \ SysWOW64 \ userinit.exe => Failas pasirašytas skaitmeniniu būdu
C: \ Windows \ System32 \ rpcss.dll => Failas pasirašytas skaitmeniniu parašu
C: \ Windows \ System32 \ Drivers \ volsnap.sys => Failas pasirašytas skaitmeniniu būdu
SonKaynak: 2014-10-18 16:52
==================== Žurnalo pabaiga ============================= =