Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Zamrzá Pc (Rudy)

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
Uživatelský avatar
PredyP
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 1227
Registrován: 24 kvě 2007 21:52
Bydliště: Východ Čech

Zamrzá Pc (Rudy)

#1 Příspěvek od PredyP »

Dobrý den,
cca před měsícem jsme to tu spolu řešili. Počítač zamrzá po nějaké době se zase rozjede. Tehdy si tu syn nainstaloval cosi již nevím a po odinstalování vše OK. Teď tu nic neinstaloval. Spustil jsem tedy adwcleaner restartoval a při obrazovce vypínání to tak zůstalo 15min. restartoval jsem tedy tlačítkem na bedně a po najíždění se spustila kontrola některé ho z disku.

# AdwCleaner v5.115 - Logfile created 06/05/2016 at 18:37:37
# Updated 01/05/2016 by Xplode
# Database : 2016-05-04.2 [Server]
# Operating system : Windows 7 Professional Service Pack 1 (X64)
# Username : Petr - PETR-PC
# Running from : C:\Users\Petr\Desktop\adwcleaner_5.115.exe
# Option : Scan
# Support : http://toolslib.net/forum

***** [ Services ] *****


***** [ Folders ] *****

Folder Found : C:\ProgramData\SlimWare Utilities, Inc
Folder Found : C:\ProgramData\Application Data\SlimWare Utilities, Inc
Folder Found : C:\Users\Public\Documents\Downloaded Installers

***** [ Files ] *****


***** [ DLL ] *****


***** [ WMI ] *****


***** [ Shortcuts ] *****


***** [ Scheduled tasks ] *****


***** [ Registry ] *****


***** [ Web browsers ] *****


*************************

C:\AdwCleaner\AdwCleaner[C1].txt - [1331 bytes] - [22/03/2016 20:31:52]
C:\AdwCleaner\AdwCleaner[S1].txt - [1138 bytes] - [22/03/2016 20:18:24]
C:\AdwCleaner\AdwCleaner[S2].txt - [978 bytes] - [06/05/2016 18:37:37]

########## EOF - C:\AdwCleaner\AdwCleaner[S2].txt - [1050 bytes] ##########

Uživatelský avatar
PredyP
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 1227
Registrován: 24 kvě 2007 21:52
Bydliště: Východ Čech

Re: Zamrzá Pc (Rudy)

#2 Příspěvek od PredyP »

Logfile of random's system information tool 1.10 (written by random/random)
Run by Petr at 2016-05-06 19:20:54
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 53 GB (35%) free of 150 GB
Total RAM: 8191 MB (60% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 19:20:55, on 6.5.2016
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.18283)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
D:\ConMet.exe
C:\Program Files (x86)\Secunia\PSI\psi_tray.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\MSI\Super-Charger\Super-Charger.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\Windows Live\Mail\wlmail.exe
C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe
C:\Program Files\trend micro\Petr.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = Preserve
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe,
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_91\bin\ssv.dll
O2 - BHO: Pomocná služba pro přihlášení k účtu Microsoft - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_91\bin\jp2ssv.dll
O4 - HKLM\..\Run: [Super-Charger] C:\Program Files (x86)\MSI\Super-Charger\StartSuperCharger.exe
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [HDAudDeck] C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe -r
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [NBAgent] "C:\Program Files (x86)\Nero\Nero 10\Nero BackItUp\NBAgent.exe" /WinStart
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [ConMet] D:\ConMet.exe
O4 - HKCU\..\Run: [DAEMON Tools Lite Automount] "C:\Program Files\DAEMON Tools Lite\DTAgent.exe" -autorun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'Default user')
O4 - Global Startup: Secunia PSI Tray.lnk = C:\Program Files (x86)\Secunia\PSI\psi_tray.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~1\MICROS~1\Office14\ONBttnIE.dll/105
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: COMODO Internet Security Helper Service (CmdAgent) - COMODO - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
O23 - Service: COMODO Virtual Service Manager (cmdvirth) - COMODO - C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe
O23 - Service: Disc Soft Lite Bus Service - Disc Soft Ltd - C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @C:\Program Files (x86)\Nero\Update\NASvc.exe,-200 (NAUpdate) - Nero AG - C:\Program Files (x86)\Nero\Update\NASvc.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Network Service (NvStreamNetworkSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Secunia PSI Agent - Secunia - C:\Program Files (x86)\Secunia\PSI\PSIA.exe
O23 - Service: Secunia Update Agent - Secunia - C:\Program Files (x86)\Secunia\PSI\sua.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: TeamViewer 11 (TeamViewer) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: VIA Karaoke digital mixer Service (VIAKaraokeService) - Unknown owner - C:\Windows\system32\viakaraokesrv.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 11475 bytes

======Listing Processes======



\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
"C:\Windows\system32\nvvsvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
C:\Windows\system32\svchost.exe -k RPCSS
"C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe"
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
"C:\Windows\system32\Dwm.exe"
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1"
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
C:\Windows\Explorer.EXE
C:\Windows\System32\spoolsv.exe
taskeng.exe {7C4CC8D9-1EDA-46C5-9B91-C3A1BFF074D9}
"taskhost.exe"
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
taskeng.exe {DDA5D433-5EA2-473B-90D1-AFEB83BBC320}
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files\COMODO\COMODO Internet Security\cistray.exe"
"C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe" /launchService
C:\Windows\System32\svchost.exe -k utcsvc
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"D:\ConMet.exe"
"C:\Program Files (x86)\Secunia\PSI\psi_tray.exe"
"C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe"
"C:\Program Files (x86)\Secunia\PSI\PSIA.exe" --start-service
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe"
C:\Windows\system32\viakaraokesrv.exe
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
WLIDSvcM.exe 3484
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
"C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe" -r
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe" serviceapp
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
\??\C:\Windows\system32\conhost.exe "-1060690631975331267-8102497691992191868-1749135788-549310728-13477735641205593756
"C:\Program Files (x86)\MSI\Super-Charger\Super-Charger.exe"
"C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe"
"C:\Program Files\COMODO\COMODO Internet Security\cavwp.exe" /ModeAvMonitor -Embedding
"C:\Program Files\COMODO\COMODO Internet Security\cis.exe" --alertsUI
C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
"C:\Program Files (x86)\Nero\Update\NASvc.exe"
C:\Windows\servicing\TrustedInstaller.exe
C:\Windows\system32\svchost.exe -k SDRSVC
"C:\Program Files (x86)\Skype\Phone\Skype.exe"
"C:\Program Files (x86)\Windows Live\Mail\wlmail.exe"
"C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe" -Embedding
"C:\Windows\system32\wuauclt.exe"
C:\Windows\system32\vssvc.exe
C:\Windows\System32\svchost.exe -k swprv
C:\Windows\system32\msiexec.exe /V
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe1_ Global\UsGthrCtrlFltPipeMssGthrPipe1 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\NOTEPAD.EXE" C:\AdwCleaner\AdwCleaner[S2].txt

C:\Windows\System32\svchost.exe -k WerSvcGroup
"C:\Windows\system32\SearchFilterHost.exe" 0 884 888 896 65536 892
C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
"C:\RSITx64.exe"

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~1\Office14\GROOVEEX.DLL [2013-12-19 6671064]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17 529664]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~1\Office14\URLREDIR.DLL [2013-03-06 690392]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2013-12-19 4171480]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_91\bin\ssv.dll [2016-04-25 462400]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocná služba pro přihlášení k účtu Microsoft - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17 441592]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL [2013-03-06 562904]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_91\bin\jp2ssv.dll [2016-04-25 173120]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"COMODO Internet Security"=C:\Program Files\COMODO\COMODO Internet Security\cistray.exe [2016-04-29 1610936]
"BCSSync"=C:\Program Files\Microsoft Office\Office14\BCSSync.exe [2012-11-05 108144]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2016-05-06 2398776]
"ShadowPlay"=C:\Windows\system32\nvspcap64.dll [2016-05-02 1767944]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ConMet"=D:\ConMet.exe [2016-01-21 4483584]
"DAEMON Tools Lite Automount"=C:\Program Files\DAEMON Tools Lite\DTAgent.exe [2016-02-14 4177784]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"Super-Charger"=C:\Program Files (x86)\MSI\Super-Charger\StartSuperCharger.exe [2011-07-06 303104]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2016-05-05 7391632]
"HDAudDeck"=C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe [2011-06-24 5199984]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [2016-02-06 767200]
"NBAgent"=C:\Program Files (x86)\Nero\Nero 10\Nero BackItUp\NBAgent.exe [2016-02-09 1234216]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2016-04-25 596504]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Secunia PSI Tray.lnk - C:\Program Files (x86)\Secunia\PSI\psi_tray.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~1\Office14\GROOVEEX.DLL [2013-12-19 6671064]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2013-12-19 4171480]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"SoftwareSASGeneration"=1
"EnableLinkedConnections"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave5"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer5"=wdmaud.drv
"aux5"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave8"=wdmaud.drv
"midi8"=wdmaud.drv
"mixer8"=wdmaud.drv
"wave9"=wdmaud.drv
"midi9"=wdmaud.drv
"mixer9"=wdmaud.drv
"wave6"=wdmaud.drv
"midi6"=wdmaud.drv
"mixer6"=wdmaud.drv
"wave7"=wdmaud.drv
"midi7"=wdmaud.drv
"mixer7"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2016-05-06 19:19:23 ----D---- C:\rsit
2016-05-06 19:01:16 ----N---- C:\bootsqm.dat
2016-05-06 18:58:33 ----SHD---- C:\found.000
2016-05-06 18:18:55 ----A---- C:\Windows\SYSWOW64\nvStreaming.exe
2016-05-06 18:16:34 ----A---- C:\Windows\SYSWOW64\vulkaninfo.exe
2016-05-06 18:16:34 ----A---- C:\Windows\SYSWOW64\vulkan-1.dll
2016-05-06 18:16:34 ----A---- C:\Windows\system32\vulkaninfo.exe
2016-05-06 18:16:34 ----A---- C:\Windows\system32\vulkan-1.dll
2016-05-06 18:16:29 ----D---- C:\Program Files (x86)\VulkanRT
2016-05-06 18:16:09 ----A---- C:\Windows\system32\nvsvc64.dll
2016-05-06 18:16:09 ----A---- C:\Windows\system32\nvshext.dll
2016-05-06 18:16:09 ----A---- C:\Windows\system32\nv3dappshextr.dll
2016-05-06 18:16:09 ----A---- C:\Windows\system32\nv3dappshext.dll
2016-05-06 18:15:47 ----A---- C:\Windows\system32\nvvsvc.exe
2016-05-06 18:15:47 ----A---- C:\Windows\system32\nvsvcr.dll
2016-05-06 18:15:47 ----A---- C:\Windows\system32\nvcpl.dll
2016-05-06 18:12:36 ----A---- C:\Windows\system32\nvmctray.dll
2016-05-06 17:47:49 ----A---- C:\Windows\system32\nvhdap64.dll
2016-05-06 17:47:49 ----A---- C:\Windows\system32\drivers\nvhda64v.sys
2016-05-06 16:59:37 ----A---- C:\Windows\SYSWOW64\OpenCL.dll
2016-05-06 16:59:37 ----A---- C:\Windows\system32\OpenCL.dll
2016-05-06 16:52:47 ----A---- C:\Windows\SYSWOW64\nvwgf2um.dll
2016-05-06 16:52:47 ----A---- C:\Windows\SYSWOW64\nvumdshim.dll
2016-05-06 16:52:47 ----A---- C:\Windows\SYSWOW64\nvptxJitCompiler.dll
2016-05-06 16:52:47 ----A---- C:\Windows\SYSWOW64\nvopencl.dll
2016-05-06 16:52:47 ----A---- C:\Windows\SYSWOW64\nvoglv32.dll
2016-05-06 16:52:47 ----A---- C:\Windows\SYSWOW64\nvoglshim32.dll
2016-05-06 16:52:47 ----A---- C:\Windows\SYSWOW64\nvinit.dll
2016-05-06 16:52:47 ----A---- C:\Windows\SYSWOW64\NvIFR.dll
2016-05-06 16:52:47 ----A---- C:\Windows\SYSWOW64\NvFBC.dll
2016-05-06 16:52:47 ----A---- C:\Windows\SYSWOW64\nvfatbinaryLoader.dll
2016-05-06 16:52:47 ----A---- C:\Windows\SYSWOW64\nvd3dum.dll
2016-05-06 16:52:47 ----A---- C:\Windows\SYSWOW64\nvcuvid.dll
2016-05-06 16:52:47 ----A---- C:\Windows\SYSWOW64\nvcuda.dll
2016-05-06 16:52:47 ----A---- C:\Windows\SYSWOW64\nvcompiler.dll
2016-05-06 16:52:47 ----A---- C:\Windows\SYSWOW64\nvapi.dll
2016-05-06 16:52:47 ----A---- C:\Windows\system32\nvwgf2umx.dll
2016-05-06 16:52:47 ----A---- C:\Windows\system32\nvumdshimx.dll
2016-05-06 16:52:47 ----A---- C:\Windows\system32\nvptxJitCompiler.dll
2016-05-06 16:52:47 ----A---- C:\Windows\system32\nvopencl.dll
2016-05-06 16:52:47 ----A---- C:\Windows\system32\nvoglv64.dll
2016-05-06 16:52:47 ----A---- C:\Windows\system32\nvoglshim64.dll
2016-05-06 16:52:47 ----A---- C:\Windows\system32\nvinitx.dll
2016-05-06 16:52:47 ----A---- C:\Windows\system32\NvIFR64.dll
2016-05-06 16:52:47 ----A---- C:\Windows\system32\NvFBC64.dll
2016-05-06 16:52:47 ----A---- C:\Windows\system32\nvfatbinaryLoader.dll
2016-05-06 16:52:47 ----A---- C:\Windows\system32\nvd3dumx.dll
2016-05-06 16:52:47 ----A---- C:\Windows\system32\nvcuvid.dll
2016-05-06 16:52:47 ----A---- C:\Windows\system32\nvcuda.dll
2016-05-06 16:52:47 ----A---- C:\Windows\system32\nvcompiler.dll
2016-05-06 16:52:47 ----A---- C:\Windows\system32\nvapi64.dll
2016-05-06 16:52:47 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2016-05-06 16:52:19 ----A---- C:\Windows\SYSWOW64\samlib.dll
2016-05-06 16:52:19 ----A---- C:\Windows\system32\samsrv.dll
2016-05-06 16:52:19 ----A---- C:\Windows\system32\samlib.dll
2016-05-06 16:52:09 ----A---- C:\Windows\system32\win32k.sys
2016-05-06 16:52:00 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2016-05-06 16:52:00 ----A---- C:\Windows\system32\mtxoci.dll
2016-05-06 16:52:00 ----A---- C:\Windows\system32\lsasrv.dll
2016-05-06 16:51:59 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2016-05-06 16:51:59 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2016-05-06 16:51:59 ----A---- C:\Windows\system32\ntdll.dll
2016-05-06 16:51:46 ----A---- C:\Windows\SYSWOW64\mtxoci.dll
2016-05-06 16:51:46 ----A---- C:\Windows\SYSWOW64\msorcl32.dll
2016-05-06 16:51:46 ----A---- C:\Windows\system32\ntoskrnl.exe
2016-05-06 16:51:46 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2016-05-06 16:51:46 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2016-05-06 16:51:46 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2016-05-06 16:51:46 ----A---- C:\Windows\system32\certcli.dll
2016-05-06 16:51:45 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2016-05-06 16:51:45 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2016-05-06 16:51:45 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2016-05-06 16:51:45 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-05-06 16:51:45 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2016-05-06 16:51:45 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2016-05-06 16:51:45 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2016-05-06 16:51:45 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2016-05-06 16:51:45 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2016-05-06 16:51:45 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2016-05-06 16:51:45 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2016-05-06 16:51:45 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2016-05-06 16:51:45 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2016-05-06 16:51:45 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2016-05-06 16:51:45 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2016-05-06 16:51:45 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2016-05-06 16:51:45 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2016-05-06 16:51:45 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2016-05-06 16:51:45 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-05-06 16:51:45 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2016-05-06 16:51:45 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2016-05-06 16:51:45 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2016-05-06 16:51:45 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2016-05-06 16:51:45 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2016-05-06 16:51:45 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2016-05-06 16:51:45 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2016-05-06 16:51:45 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2016-05-06 16:51:45 ----A---- C:\Windows\SYSWOW64\wow32.dll
2016-05-06 16:51:45 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2016-05-06 16:51:45 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2016-05-06 16:51:45 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2016-05-06 16:51:45 ----A---- C:\Windows\SYSWOW64\srclient.dll
2016-05-06 16:51:45 ----A---- C:\Windows\SYSWOW64\schannel.dll
2016-05-06 16:51:45 ----A---- C:\Windows\SYSWOW64\secur32.dll
2016-05-06 16:51:45 ----A---- C:\Windows\SYSWOW64\rpchttp.dll
2016-05-06 16:51:45 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2016-05-06 16:51:45 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2016-05-06 16:51:45 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2016-05-06 16:51:45 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2016-05-06 16:51:45 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2016-05-06 16:51:45 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2016-05-06 16:51:45 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2016-05-06 16:51:45 ----A---- C:\Windows\SYSWOW64\cryptbase.dll
2016-05-06 16:51:45 ----A---- C:\Windows\SYSWOW64\credssp.dll
2016-05-06 16:51:45 ----A---- C:\Windows\SYSWOW64\certcli.dll
2016-05-06 16:51:45 ----A---- C:\Windows\SYSWOW64\auditpol.exe
2016-05-06 16:51:45 ----A---- C:\Windows\SYSWOW64\appidapi.dll
2016-05-06 16:51:45 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2016-05-06 16:51:45 ----A---- C:\Windows\system32\wow64win.dll
2016-05-06 16:51:45 ----A---- C:\Windows\system32\wow64cpu.dll
2016-05-06 16:51:45 ----A---- C:\Windows\system32\wow64.dll
2016-05-06 16:51:45 ----A---- C:\Windows\system32\winsrv.dll
2016-05-06 16:51:45 ----A---- C:\Windows\system32\wdigest.dll
2016-05-06 16:51:45 ----A---- C:\Windows\system32\TSpkg.dll
2016-05-06 16:51:45 ----A---- C:\Windows\system32\sspisrv.dll
2016-05-06 16:51:45 ----A---- C:\Windows\system32\sspicli.dll
2016-05-06 16:51:45 ----A---- C:\Windows\system32\srcore.dll
2016-05-06 16:51:45 ----A---- C:\Windows\system32\srclient.dll
2016-05-06 16:51:45 ----A---- C:\Windows\system32\smss.exe
2016-05-06 16:51:45 ----A---- C:\Windows\system32\schannel.dll
2016-05-06 16:51:45 ----A---- C:\Windows\system32\setbcdlocale.dll
2016-05-06 16:51:45 ----A---- C:\Windows\system32\secur32.dll
2016-05-06 16:51:45 ----A---- C:\Windows\system32\rstrui.exe
2016-05-06 16:51:45 ----A---- C:\Windows\system32\rpchttp.dll
2016-05-06 16:51:45 ----A---- C:\Windows\system32\rpcrt4.dll
2016-05-06 16:51:45 ----A---- C:\Windows\system32\ntvdm64.dll
2016-05-06 16:51:45 ----A---- C:\Windows\system32\ncrypt.dll
2016-05-06 16:51:45 ----A---- C:\Windows\system32\msv1_0.dll
2016-05-06 16:51:45 ----A---- C:\Windows\system32\lsass.exe
2016-05-06 16:51:45 ----A---- C:\Windows\system32\KernelBase.dll
2016-05-06 16:51:45 ----A---- C:\Windows\system32\kernel32.dll
2016-05-06 16:51:45 ----A---- C:\Windows\system32\kerberos.dll
2016-05-06 16:51:45 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2016-05-06 16:51:45 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2016-05-06 16:51:45 ----A---- C:\Windows\system32\drivers\appid.sys
2016-05-06 16:51:45 ----A---- C:\Windows\system32\csrsrv.dll
2016-05-06 16:51:45 ----A---- C:\Windows\system32\cryptbase.dll
2016-05-06 16:51:45 ----A---- C:\Windows\system32\credssp.dll
2016-05-06 16:51:45 ----A---- C:\Windows\system32\conhost.exe
2016-05-06 16:51:45 ----A---- C:\Windows\system32\auditpol.exe
2016-05-06 16:51:45 ----A---- C:\Windows\system32\appidsvc.dll
2016-05-06 16:51:45 ----A---- C:\Windows\system32\appidpolicyconverter.exe
2016-05-06 16:51:45 ----A---- C:\Windows\system32\appidcertstorecheck.exe
2016-05-06 16:51:45 ----A---- C:\Windows\system32\appidapi.dll
2016-05-06 16:51:45 ----A---- C:\Windows\system32\advapi32.dll
2016-05-06 16:51:44 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2016-05-06 16:51:44 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2016-05-06 16:51:44 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2016-05-06 16:51:44 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2016-05-06 16:51:44 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2016-05-06 16:51:44 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2016-05-06 16:51:44 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2016-05-06 16:51:44 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2016-05-06 16:51:44 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2016-05-06 16:51:44 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2016-05-06 16:51:44 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2016-05-06 16:51:44 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2016-05-06 16:51:44 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2016-05-06 16:51:44 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2016-05-06 16:51:44 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2016-05-06 16:51:44 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2016-05-06 16:51:44 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2016-05-06 16:51:44 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2016-05-06 16:51:44 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2016-05-06 16:51:44 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2016-05-06 16:51:44 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2016-05-06 16:51:44 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2016-05-06 16:51:44 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2016-05-06 16:51:44 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2016-05-06 16:51:44 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2016-05-06 16:51:44 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2016-05-06 16:51:44 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2016-05-06 16:51:44 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2016-05-06 16:51:44 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2016-05-06 16:51:44 ----A---- C:\Windows\SYSWOW64\user.exe
2016-05-06 16:51:44 ----A---- C:\Windows\SYSWOW64\setup16.exe
2016-05-06 16:51:44 ----A---- C:\Windows\SYSWOW64\instnm.exe
2016-05-06 16:51:44 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2016-05-06 16:51:44 ----A---- C:\Windows\system32\apisetschema.dll
2016-05-06 16:51:43 ----A---- C:\Windows\SYSWOW64\adtschema.dll
2016-05-06 16:51:43 ----A---- C:\Windows\system32\msaudite.dll
2016-05-06 16:51:43 ----A---- C:\Windows\system32\adtschema.dll
2016-05-06 16:51:42 ----A---- C:\Windows\SYSWOW64\msaudite.dll
2016-05-06 16:51:40 ----A---- C:\Windows\SYSWOW64\msobjs.dll
2016-05-06 16:51:40 ----A---- C:\Windows\system32\msobjs.dll
2016-05-06 16:50:41 ----A---- C:\Windows\SYSWOW64\InkEd.dll
2016-05-06 16:50:41 ----A---- C:\Windows\system32\InkEd.dll
2016-05-06 16:48:12 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2016-05-06 16:48:12 ----A---- C:\Windows\SYSWOW64\inseng.dll
2016-05-06 16:48:12 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2016-05-06 16:48:12 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2016-05-06 16:48:12 ----A---- C:\Windows\system32\iernonce.dll
2016-05-06 16:48:12 ----A---- C:\Windows\system32\ieetwproxystub.dll
2016-05-06 16:48:12 ----A---- C:\Windows\system32\ieetwcollector.exe
2016-05-06 16:48:11 ----A---- C:\Windows\SYSWOW64\occache.dll
2016-05-06 16:48:11 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2016-05-06 16:46:58 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2016-05-06 16:46:58 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2016-05-06 16:46:58 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2016-05-06 16:46:58 ----A---- C:\Windows\system32\inseng.dll
2016-05-06 16:46:58 ----A---- C:\Windows\system32\ie4uinit.exe
2016-05-06 16:46:57 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2016-05-06 16:46:57 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2016-05-06 16:46:57 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2016-05-06 16:46:57 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2016-05-06 16:46:57 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2016-05-06 16:46:56 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2016-05-06 16:46:56 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2016-05-06 16:46:56 ----A---- C:\Windows\system32\urlmon.dll
2016-05-06 16:46:56 ----A---- C:\Windows\system32\occache.dll
2016-05-06 16:46:56 ----A---- C:\Windows\system32\iedkcs32.dll
2016-05-06 16:46:55 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2016-05-06 16:46:45 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2016-05-06 16:46:45 ----A---- C:\Windows\SYSWOW64\jscript.dll
2016-05-06 16:46:45 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2016-05-06 16:46:44 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2016-05-06 16:46:44 ----A---- C:\Windows\SYSWOW64\ieui.dll
2016-05-06 16:46:44 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2016-05-06 16:46:44 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2016-05-06 16:46:44 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2016-05-06 16:46:44 ----A---- C:\Windows\system32\msfeeds.dll
2016-05-06 16:46:44 ----A---- C:\Windows\system32\dxtrans.dll
2016-05-06 16:46:34 ----A---- C:\Windows\system32\iesetup.dll
2016-05-06 16:46:34 ----A---- C:\Windows\system32\iertutil.dll
2016-05-06 16:46:34 ----A---- C:\Windows\system32\ieapfltr.dll
2016-05-06 16:45:38 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2016-05-06 16:45:38 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2016-05-06 16:45:37 ----A---- C:\Windows\SYSWOW64\wininet.dll
2016-05-06 16:45:37 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2016-05-06 16:45:37 ----A---- C:\Windows\SYSWOW64\msrating.dll
2016-05-06 16:45:37 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2016-05-06 16:45:37 ----A---- C:\Windows\system32\vbscript.dll
2016-05-06 16:45:37 ----A---- C:\Windows\system32\jsproxy.dll
2016-05-06 16:45:37 ----A---- C:\Windows\system32\dxtmsft.dll
2016-05-06 16:45:36 ----A---- C:\Windows\system32\ieui.dll
2016-05-06 16:44:56 ----A---- C:\Windows\system32\mshtmled.dll
2016-05-06 16:44:56 ----A---- C:\Windows\system32\ieframe.dll
2016-05-06 16:44:55 ----A---- C:\Windows\system32\mshtmlmedia.dll
2016-05-06 16:44:28 ----A---- C:\Windows\system32\wininet.dll
2016-05-06 16:44:28 ----A---- C:\Windows\system32\webcheck.dll
2016-05-06 16:44:28 ----A---- C:\Windows\system32\jscript9diag.dll
2016-05-06 16:44:28 ----A---- C:\Windows\system32\jscript9.dll
2016-05-06 16:44:28 ----A---- C:\Windows\system32\jscript.dll
2016-05-06 16:44:28 ----A---- C:\Windows\system32\ieUnatt.exe
2016-05-06 16:44:27 ----A---- C:\Windows\system32\MshtmlDac.dll
2016-05-06 16:44:26 ----A---- C:\Windows\system32\msrating.dll
2016-05-06 16:44:26 ----A---- C:\Windows\system32\mshtml.dll
2016-05-06 16:38:31 ----A---- C:\Windows\SYSWOW64\tzres.dll
2016-05-06 16:38:31 ----A---- C:\Windows\system32\tzres.dll
2016-05-06 16:25:24 ----A---- C:\Windows\SYSWOW64\winhttp.dll
2016-05-06 16:25:24 ----A---- C:\Windows\SYSWOW64\webio.dll
2016-05-06 16:25:24 ----A---- C:\Windows\system32\winhttp.dll
2016-05-06 16:25:24 ----A---- C:\Windows\system32\webio.dll
2016-05-05 21:53:10 ----A---- C:\Windows\system32\nvdispgenco6436510.dll
2016-05-05 21:53:10 ----A---- C:\Windows\system32\nvdispco6436510.dll
2016-05-05 21:13:03 ----A---- C:\Windows\SYSWOW64\nvaudcap32v.dll
2016-05-05 21:13:03 ----A---- C:\Windows\system32\nvaudcap64v.dll
2016-05-05 21:13:03 ----A---- C:\Windows\system32\drivers\nvvad64v.sys
2016-05-05 16:14:45 ----A---- C:\Windows\system32\aswBoot.exe
2016-05-05 16:14:20 ----A---- C:\Windows\avastSS.scr
2016-04-25 10:03:44 ----D---- C:\Users\Petr\AppData\Roaming\Oracle
2016-04-16 00:53:42 ----A---- C:\Windows\SYSWOW64\vulkan-1-1-0-8-1.dll
2016-04-16 00:53:06 ----A---- C:\Windows\SYSWOW64\vulkaninfo-1-1-0-8-1.exe
2016-04-16 00:52:48 ----A---- C:\Windows\system32\vulkan-1-1-0-8-1.dll
2016-04-16 00:52:10 ----A---- C:\Windows\system32\vulkaninfo-1-1-0-8-1.exe
2016-04-14 11:58:47 ----D---- C:\Saves

======List of files/folders modified in the last 1 month======

2016-05-06 19:20:55 ----D---- C:\Program Files\trend micro
2016-05-06 19:19:34 ----D---- C:\Windows\Temp
2016-05-06 19:18:38 ----D---- C:\Windows\winsxs
2016-05-06 19:17:33 ----SHD---- C:\Windows\Installer
2016-05-06 19:17:28 ----D---- C:\ProgramData\Microsoft Help
2016-05-06 19:15:39 ----SHD---- C:\System Volume Information
2016-05-06 19:12:13 ----D---- C:\Users\Petr\AppData\Roaming\Skype
2016-05-06 19:09:38 ----D---- C:\Windows\System32
2016-05-06 19:09:38 ----D---- C:\Windows\inf
2016-05-06 19:09:38 ----A---- C:\Windows\system32\PerfStringBackup.INI
2016-05-06 19:09:21 ----D---- C:\Windows\Microsoft.NET
2016-05-06 19:06:03 ----D---- C:\Windows\Prefetch
2016-05-06 19:05:59 ----D---- C:\Windows\system32\config
2016-05-06 19:03:08 ----D---- C:\Users\Petr\AppData\Roaming\ConMet
2016-05-06 19:02:04 ----D---- C:\ProgramData\NVIDIA
2016-05-06 18:41:48 ----D---- C:\AdwCleaner
2016-05-06 18:41:01 ----D---- C:\Windows\system32\catroot2
2016-05-06 18:31:28 ----D---- C:\Windows
2016-05-06 18:22:02 ----D---- C:\ProgramData\NVIDIA Corporation
2016-05-06 18:21:21 ----D---- C:\Windows\SysWOW64
2016-05-06 18:18:19 ----D---- C:\Temp
2016-05-06 18:18:17 ----D---- C:\Windows\system32\DriverStore
2016-05-06 18:17:08 ----D---- C:\Windows\system32\drivers
2016-05-06 18:16:58 ----A---- C:\Windows\system32\nvhdagenco6420103.dll
2016-05-06 18:16:29 ----RD---- C:\Program Files (x86)
2016-05-06 18:12:35 ----D---- C:\Windows\Help
2016-05-06 17:59:53 ----RSD---- C:\Windows\assembly
2016-05-06 17:16:50 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2016-05-06 17:14:50 ----D---- C:\Windows\SYSWOW64\cs-CZ
2016-05-06 17:14:50 ----D---- C:\Windows\system32\cs-CZ
2016-05-06 17:14:49 ----D---- C:\Windows\system32\en-US
2016-05-06 17:14:49 ----D---- C:\Windows\system32\Boot
2016-05-06 17:14:49 ----D---- C:\Windows\AppPatch
2016-05-06 17:14:48 ----D---- C:\Program Files\Internet Explorer
2016-05-06 17:14:47 ----D---- C:\Windows\SYSWOW64\en-US
2016-05-06 17:14:47 ----D---- C:\Program Files (x86)\Internet Explorer
2016-05-06 17:10:47 ----D---- C:\Windows\system32\MRT
2016-05-06 17:06:27 ----D---- C:\Windows\debug
2016-05-06 17:06:22 ----A---- C:\Windows\system32\MRT.exe
2016-05-06 16:59:25 ----D---- C:\Program Files\NVIDIA Corporation
2016-05-06 16:59:22 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2016-05-05 22:24:24 ----D---- C:\Program Files (x86)\Common Files
2016-05-05 21:06:18 ----D---- C:\Windows\system32\Tasks
2016-05-05 20:23:17 ----D---- C:\Users\Petr\AppData\Roaming\vlc
2016-05-05 18:18:21 ----HD---- C:\ProgramData
2016-05-02 07:39:01 ----A---- C:\Windows\SYSWOW64\nvspcap.dll
2016-05-02 07:39:01 ----A---- C:\Windows\SYSWOW64\nvspbridge.dll
2016-05-02 07:38:42 ----A---- C:\Windows\system32\nvspcap64.dll
2016-05-02 07:38:42 ----A---- C:\Windows\system32\nvspbridge64.dll
2016-05-02 07:38:42 ----A---- C:\Windows\system32\NvRtmpStreamer64.dll
2016-04-27 23:05:11 ----A---- C:\Windows\system32\cmdcsr.dll
2016-04-27 23:04:47 ----A---- C:\Windows\SYSWOW64\guard32.dll
2016-04-27 23:04:35 ----A---- C:\Windows\system32\guard64.dll
2016-04-27 23:00:47 ----A---- C:\Windows\system32\cmdvrt64.dll
2016-04-27 22:58:59 ----A---- C:\Windows\system32\cmdkbd64.dll
2016-04-27 22:55:10 ----A---- C:\Windows\SYSWOW64\cmdvrt32.dll
2016-04-27 22:53:23 ----A---- C:\Windows\SYSWOW64\cmdkbd32.dll
2016-04-26 16:47:39 ----D---- C:\Windows\system32\NDF
2016-04-26 16:37:54 ----D---- C:\Users\Petr\AppData\Roaming\TeamViewer
2016-04-26 16:37:54 ----D---- C:\Users\Petr\AppData\Roaming\DAEMON Tools Lite
2016-04-26 16:37:27 ----D---- C:\Windows\Logs
2016-04-25 10:05:24 ----D---- C:\ProgramData\Skype
2016-04-25 10:05:20 ----RD---- C:\Program Files (x86)\Skype
2016-04-25 10:03:36 ----D---- C:\ProgramData\Oracle
2016-04-25 10:03:16 ----D---- C:\Program Files (x86)\Java
2016-04-25 10:02:08 ----A---- C:\Windows\SYSWOW64\WindowsAccessBridge-32.dll
2016-04-08 06:44:13 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2016-05-05 74544]
R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2016-05-05 287528]
R0 AtiPcie;AMD PCI Express (3GIO) Filter; C:\Windows\system32\DRIVERS\AtiPcie64.sys [2010-06-16 16440]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2016-02-06 213888]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\drivers\vmbus.sys [2016-02-06 199552]
R1 aswKbd;aswKbd; C:\Windows\system32\drivers\aswKbd.sys [2016-05-05 37144]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2016-05-05 103064]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2016-05-05 1070904]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2016-05-05 465792]
R1 cmderd;COMODO Internet Security Eradication Driver; C:\Windows\System32\DRIVERS\cmderd.sys [2016-04-27 31648]
R1 cmdGuard;COMODO Internet Security Sandbox Driver; C:\Windows\system32\DRIVERS\cmdguard.sys [2016-04-27 829608]
R1 cmdHlp;COMODO Internet Security Helper Driver; C:\Windows\System32\DRIVERS\cmdhlp.sys [2016-04-27 56472]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2016-02-06 514560]
R1 inspect;COMODO Internet Security Firewall Driver; C:\Windows\system32\DRIVERS\inspect.sys [2016-04-27 116248]
R2 AODDriver4.01;AODDriver4.01; \??\C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [2014-02-11 59616]
R2 aswHwid;avast! HardwareID; C:\Windows\system32\drivers\aswHwid.sys [2016-05-05 37656]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2016-05-05 107792]
R2 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2016-05-05 166432]
R3 dtlitescsibus;DAEMON Tools Lite Virtual SCSI Bus; C:\Windows\system32\DRIVERS\dtlitescsibus.sys [2016-02-07 30264]
R3 dtliteusbbus;DAEMON Tools Lite Virtual USB Bus; C:\Windows\system32\DRIVERS\dtliteusbbus.sys [2016-02-07 47672]
R3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller; C:\Windows\system32\DRIVERS\L1C62x64.sys [2011-08-11 104560]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda64v.sys [2016-05-06 205456]
R3 NvStreamKms;NvStreamKms; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2016-05-02 28216]
R3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\Windows\system32\drivers\nvvad64v.sys [2016-05-05 56384]
R3 PSI;PSI; C:\Windows\system32\DRIVERS\psi_mf_amd64.sys [2016-02-09 18456]
R3 usbfilter;AMD USB Filter Driver; C:\Windows\system32\DRIVERS\usbfilter.sys [2016-02-06 60640]
R3 usbscan;Ovladač skeneru USB; C:\Windows\system32\drivers\usbscan.sys [2013-07-03 42496]
R3 VIAHdAudAddService;VIA High Definition Audio Driver Service; C:\Windows\system32\drivers\viahduaa.sys [2016-02-06 2159728]
S2 AODDriver4.3;AODDriver4.3; \??\C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [2014-02-11 59616]
S3 amdiox64;AMD IO Driver; C:\Windows\system32\DRIVERS\amdiox64.sys [2010-02-18 46136]
S3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudbus.sys [2016-02-11 122160]
S3 NTIOLib_1_0_C;NTIOLib_1_0_C; \??\F:\NTIOLib_X64.sys []
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2016-02-06 165888]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2016-02-09 19456]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2016-02-06 6656]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2016-02-06 34688]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2016-02-09 56832]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2016-02-06 21760]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2016-02-06 41984]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2016-02-07 82128]
R2 AMD FUEL Service;AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [2016-02-06 344064]
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2016-05-05 243296]
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2016-02-10 105144]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2016-02-10 125112]
R2 CmdAgent;COMODO Internet Security Helper Service; C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe [2016-04-29 5817200]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 GfExperienceService;NVIDIA GeForce Experience Service; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [2016-05-06 1165368]
R2 NAUpdate;@C:\Program Files (x86)\Nero\Update\NASvc.exe,-200; C:\Program Files (x86)\Nero\Update\NASvc.exe [2016-02-09 490280]
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2016-05-06 1881144]
R2 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [2016-05-06 2522680]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2016-05-06 1264064]
R2 Secunia PSI Agent;Secunia PSI Agent; C:\Program Files (x86)\Secunia\PSI\PSIA.exe [2016-02-09 1227800]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2016-05-06 426040]
R2 TeamViewer;TeamViewer 11; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [2016-03-14 6942480]
R2 VIAKaraokeService;VIA Karaoke digital mixer Service; C:\Windows\system32\viakaraokesrv.exe [2011-06-14 27760]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2016-03-01 2292480]
R3 Disc Soft Lite Bus Service;Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe [2016-02-14 1369464]
R3 NvStreamNetworkSvc;NVIDIA Streamer Network Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [2016-05-06 3634232]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-02-07 154440]
S2 Secunia Update Agent;Secunia Update Agent; C:\Program Files (x86)\Secunia\PSI\sua.exe [2016-02-09 659992]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2016-03-23 327808]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-04-08 269504]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2016-02-10 51376]
S3 cmdvirth;COMODO Virtual Service Manager; C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe [2016-04-29 2271928]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-02-07 154440]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2016-05-06 114688]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files\Microsoft Office\Office14\GROOVE.EXE [2016-03-03 50942144]
S3 ose64;Office 64 Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2016-03-02 174440]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2016-03-02 4925184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2016-02-08 1255736]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2016-02-10 135848]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2016-02-10 135848]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2016-02-10 135848]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118275
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Zamrzá Pc (Rudy)

#3 Příspěvek od Rudy »

Zdravím!
V ADW jste neklikl na >cleaning<. Zkuste ještě jednou a dejte log.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Uživatelský avatar
PredyP
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 1227
Registrován: 24 kvě 2007 21:52
Bydliště: Východ Čech

Re: Zamrzá Pc (Rudy)

#4 Příspěvek od PredyP »

Klikl ale asi to vyrušil ten restart tlačítkem.

# AdwCleaner v5.115 - Logfile created 06/05/2016 at 20:20:09
# Updated 01/05/2016 by Xplode
# Database : 2016-05-04.2 [Server]
# Operating system : Windows 7 Professional Service Pack 1 (X64)
# Username : Petr - PETR-PC
# Running from : C:\Users\Petr\Desktop\adwcleaner_5.115.exe
# Option : Clean
# Support : http://toolslib.net/forum

***** [ Services ] *****


***** [ Folders ] *****


***** [ Files ] *****


***** [ DLLs ] *****


***** [ WMI ] *****


***** [ Shortcuts ] *****


***** [ Scheduled tasks ] *****


***** [ Registry ] *****


***** [ Web browsers ] *****


*************************

:: "Tracing" keys deleted
:: Winsock settings cleared

*************************

C:\AdwCleaner\AdwCleaner[C1].txt - [1331 bytes] - [22/03/2016 20:31:52]
C:\AdwCleaner\AdwCleaner[C2].txt - [1310 bytes] - [06/05/2016 18:41:48]
C:\AdwCleaner\AdwCleaner[C3].txt - [876 bytes] - [06/05/2016 20:20:09]
C:\AdwCleaner\AdwCleaner[S1].txt - [1138 bytes] - [22/03/2016 20:18:24]
C:\AdwCleaner\AdwCleaner[S2].txt - [1129 bytes] - [06/05/2016 18:37:37]
C:\AdwCleaner\AdwCleaner[S3].txt - [1084 bytes] - [06/05/2016 20:17:48]

########## EOF - C:\AdwCleaner\AdwCleaner[C3].txt - [1167 bytes] ##########

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118275
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Zamrzá Pc (Rudy)

#5 Příspěvek od Rudy »

OK. Stáhněte OTM: http://oldtimer.geekstogo.com/OTM.exe a uložte na plochu. Spusťte a do levého okna zkopírujte:
:reg
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"SunJavaUpdateSched"=-

:commands
[Purity]
[Emptytemp]
[Emptyflash]
a klikněte na >MoveIt!<. Před skenem vypněte antivir a po něm restartujte PC. Dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Uživatelský avatar
PredyP
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 1227
Registrován: 24 kvě 2007 21:52
Bydliště: Východ Čech

Re: Zamrzá Pc (Rudy)

#6 Příspěvek od PredyP »

Logfile of random's system information tool 1.10 (written by random/random)
Run by Petr at 2016-05-06 20:51:03
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 54 GB (36%) free of 150 GB
Total RAM: 8191 MB (71% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:51:06, on 6.5.2016
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.18283)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Users\Petr\AppData\Local\NVIDIA\NvBackend\ApplicationOntology\NvOAWrapperCache.exe
D:\ConMet.exe
C:\Program Files (x86)\Secunia\PSI\psi_tray.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\MSI\Super-Charger\Super-Charger.exe
C:\Program Files\trend micro\Petr.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = Preserve
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe,
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_91\bin\ssv.dll
O2 - BHO: Pomocná služba pro přihlášení k účtu Microsoft - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_91\bin\jp2ssv.dll
O4 - HKLM\..\Run: [Super-Charger] C:\Program Files (x86)\MSI\Super-Charger\StartSuperCharger.exe
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [HDAudDeck] C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe -r
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [NBAgent] "C:\Program Files (x86)\Nero\Nero 10\Nero BackItUp\NBAgent.exe" /WinStart
O4 - HKCU\..\Run: [ConMet] D:\ConMet.exe
O4 - HKCU\..\Run: [DAEMON Tools Lite Automount] "C:\Program Files\DAEMON Tools Lite\DTAgent.exe" -autorun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'Default user')
O4 - Global Startup: Secunia PSI Tray.lnk = C:\Program Files (x86)\Secunia\PSI\psi_tray.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~1\MICROS~1\Office14\ONBttnIE.dll/105
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: COMODO Internet Security Helper Service (CmdAgent) - COMODO - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
O23 - Service: COMODO Virtual Service Manager (cmdvirth) - COMODO - C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe
O23 - Service: Disc Soft Lite Bus Service - Disc Soft Ltd - C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @C:\Program Files (x86)\Nero\Update\NASvc.exe,-200 (NAUpdate) - Nero AG - C:\Program Files (x86)\Nero\Update\NASvc.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Network Service (NvStreamNetworkSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Secunia PSI Agent - Secunia - C:\Program Files (x86)\Secunia\PSI\PSIA.exe
O23 - Service: Secunia Update Agent - Secunia - C:\Program Files (x86)\Secunia\PSI\sua.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: TeamViewer 11 (TeamViewer) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: VIA Karaoke digital mixer Service (VIAKaraokeService) - Unknown owner - C:\Windows\system32\viakaraokesrv.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 11233 bytes

======Listing Processes======



\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
"C:\Windows\system32\nvvsvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
C:\Windows\system32\svchost.exe -k RPCSS
"C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe"
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs

C:\Windows\system32\svchost.exe -k GPSvcGroup
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
"C:\Windows\system32\Dwm.exe"
C:\Windows\System32\spoolsv.exe
taskeng.exe {082C17F6-45B5-4320-8191-100E2D60A5BD}
"taskhost.exe"
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\Windows\Explorer.EXE
taskeng.exe {DAF196D0-CA50-436A-A82D-6F9678EABD49}
"C:\Program Files\COMODO\COMODO Internet Security\cistray.exe"
C:\Windows\System32\svchost.exe -k utcsvc
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe"
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe"
"C:\Program Files (x86)\Secunia\PSI\PSIA.exe" --start-service
"C:\Program Files (x86)\Skype\Updater\Updater.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe"
C:\Windows\system32\viakaraokesrv.exe
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
WLIDSvcM.exe 2836
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe" serviceapp
\??\C:\Windows\system32\conhost.exe "6614243561877006956-49545853-1754587268729095123-165292926714432552671699073056
"C:\Program Files\COMODO\COMODO Internet Security\cavwp.exe" /ModeAvMonitor -Embedding
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1"
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Users\Petr\AppData\Local\NVIDIA\NvBackend\ApplicationOntology\NvOAWrapperCache.exe"
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe1_ Global\UsGthrCtrlFltPipeMssGthrPipe1 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 880 884 892 65536 888
"D:\ConMet.exe"
"C:\Program Files\COMODO\COMODO Internet Security\cis.exe" --alertsUI
"C:\Program Files (x86)\Secunia\PSI\psi_tray.exe"
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe"
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
"C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe" -r
"C:\Program Files (x86)\MSI\Super-Charger\Super-Charger.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\RSITx64.exe"
C:\Windows\system32\DllHost.exe /Processid:{F9717507-6651-4EDB-BFF7-AE615179BCCF}

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~1\Office14\GROOVEEX.DLL [2013-12-19 6671064]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17 529664]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~1\Office14\URLREDIR.DLL [2013-03-06 690392]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2013-12-19 4171480]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_91\bin\ssv.dll [2016-04-25 462400]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocná služba pro přihlášení k účtu Microsoft - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17 441592]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL [2013-03-06 562904]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_91\bin\jp2ssv.dll [2016-04-25 173120]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"COMODO Internet Security"=C:\Program Files\COMODO\COMODO Internet Security\cistray.exe [2016-04-29 1610936]
"BCSSync"=C:\Program Files\Microsoft Office\Office14\BCSSync.exe [2012-11-05 108144]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2016-05-06 2398776]
"ShadowPlay"=C:\Windows\system32\nvspcap64.dll [2016-05-02 1767944]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ConMet"=D:\ConMet.exe [2016-01-21 4483584]
"DAEMON Tools Lite Automount"=C:\Program Files\DAEMON Tools Lite\DTAgent.exe [2016-02-14 4177784]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"Super-Charger"=C:\Program Files (x86)\MSI\Super-Charger\StartSuperCharger.exe [2011-07-06 303104]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2016-05-05 7391632]
"HDAudDeck"=C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe [2011-06-24 5199984]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [2016-02-06 767200]
"NBAgent"=C:\Program Files (x86)\Nero\Nero 10\Nero BackItUp\NBAgent.exe [2016-02-09 1234216]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Secunia PSI Tray.lnk - C:\Program Files (x86)\Secunia\PSI\psi_tray.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~1\Office14\GROOVEEX.DLL [2013-12-19 6671064]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2013-12-19 4171480]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"SoftwareSASGeneration"=1
"EnableLinkedConnections"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave5"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer5"=wdmaud.drv
"aux5"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave8"=wdmaud.drv
"midi8"=wdmaud.drv
"mixer8"=wdmaud.drv
"wave9"=wdmaud.drv
"midi9"=wdmaud.drv
"mixer9"=wdmaud.drv
"wave6"=wdmaud.drv
"midi6"=wdmaud.drv
"mixer6"=wdmaud.drv
"wave7"=wdmaud.drv
"midi7"=wdmaud.drv
"mixer7"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2016-05-06 20:47:38 ----D---- C:\_OTM
2016-05-06 19:19:23 ----D---- C:\rsit
2016-05-06 19:15:11 ----A---- C:\Windows\SYSWOW64\ole32.dll
2016-05-06 19:15:11 ----A---- C:\Windows\system32\ole32.dll
2016-05-06 19:15:11 ----A---- C:\Windows\system32\lsasrv.dll
2016-05-06 19:15:07 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2016-05-06 19:15:07 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2016-05-06 19:14:56 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2016-05-06 19:14:56 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2016-05-06 19:14:56 ----A---- C:\Windows\SYSWOW64\certcli.dll
2016-05-06 19:14:56 ----A---- C:\Windows\system32\winsrv.dll
2016-05-06 19:14:56 ----A---- C:\Windows\system32\smss.exe
2016-05-06 19:14:56 ----A---- C:\Windows\system32\schannel.dll
2016-05-06 19:14:56 ----A---- C:\Windows\system32\rpcrt4.dll
2016-05-06 19:14:56 ----A---- C:\Windows\system32\ntoskrnl.exe
2016-05-06 19:14:56 ----A---- C:\Windows\system32\ntdll.dll
2016-05-06 19:14:56 ----A---- C:\Windows\system32\msv1_0.dll
2016-05-06 19:14:56 ----A---- C:\Windows\system32\KernelBase.dll
2016-05-06 19:14:56 ----A---- C:\Windows\system32\kernel32.dll
2016-05-06 19:14:56 ----A---- C:\Windows\system32\kerberos.dll
2016-05-06 19:14:56 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2016-05-06 19:14:56 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2016-05-06 19:14:56 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2016-05-06 19:14:56 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2016-05-06 19:14:56 ----A---- C:\Windows\system32\certcli.dll
2016-05-06 19:14:56 ----A---- C:\Windows\system32\advapi32.dll
2016-05-06 19:14:52 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2016-05-06 19:14:52 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2016-05-06 19:14:52 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2016-05-06 19:14:52 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-05-06 19:14:52 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2016-05-06 19:14:52 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2016-05-06 19:14:52 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2016-05-06 19:14:52 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2016-05-06 19:14:52 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2016-05-06 19:14:52 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2016-05-06 19:14:52 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2016-05-06 19:14:52 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2016-05-06 19:14:52 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2016-05-06 19:14:52 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-05-06 19:14:52 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2016-05-06 19:14:52 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2016-05-06 19:14:52 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2016-05-06 19:14:52 ----A---- C:\Windows\SYSWOW64\wow32.dll
2016-05-06 19:14:52 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2016-05-06 19:14:52 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2016-05-06 19:14:52 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2016-05-06 19:14:52 ----A---- C:\Windows\SYSWOW64\srclient.dll
2016-05-06 19:14:52 ----A---- C:\Windows\SYSWOW64\schannel.dll
2016-05-06 19:14:52 ----A---- C:\Windows\SYSWOW64\secur32.dll
2016-05-06 19:14:52 ----A---- C:\Windows\SYSWOW64\rpchttp.dll
2016-05-06 19:14:52 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2016-05-06 19:14:52 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2016-05-06 19:14:52 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2016-05-06 19:14:52 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2016-05-06 19:14:52 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2016-05-06 19:14:52 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2016-05-06 19:14:52 ----A---- C:\Windows\SYSWOW64\cryptbase.dll
2016-05-06 19:14:52 ----A---- C:\Windows\SYSWOW64\credssp.dll
2016-05-06 19:14:52 ----A---- C:\Windows\SYSWOW64\auditpol.exe
2016-05-06 19:14:52 ----A---- C:\Windows\SYSWOW64\appidapi.dll
2016-05-06 19:14:52 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2016-05-06 19:14:52 ----A---- C:\Windows\system32\wow64win.dll
2016-05-06 19:14:52 ----A---- C:\Windows\system32\wow64cpu.dll
2016-05-06 19:14:52 ----A---- C:\Windows\system32\wow64.dll
2016-05-06 19:14:52 ----A---- C:\Windows\system32\wdigest.dll
2016-05-06 19:14:52 ----A---- C:\Windows\system32\TSpkg.dll
2016-05-06 19:14:52 ----A---- C:\Windows\system32\sspisrv.dll
2016-05-06 19:14:52 ----A---- C:\Windows\system32\sspicli.dll
2016-05-06 19:14:52 ----A---- C:\Windows\system32\srcore.dll
2016-05-06 19:14:52 ----A---- C:\Windows\system32\srclient.dll
2016-05-06 19:14:52 ----A---- C:\Windows\system32\setbcdlocale.dll
2016-05-06 19:14:52 ----A---- C:\Windows\system32\secur32.dll
2016-05-06 19:14:52 ----A---- C:\Windows\system32\rstrui.exe
2016-05-06 19:14:52 ----A---- C:\Windows\system32\rpchttp.dll
2016-05-06 19:14:52 ----A---- C:\Windows\system32\ntvdm64.dll
2016-05-06 19:14:52 ----A---- C:\Windows\system32\ncrypt.dll
2016-05-06 19:14:52 ----A---- C:\Windows\system32\lsass.exe
2016-05-06 19:14:52 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2016-05-06 19:14:52 ----A---- C:\Windows\system32\drivers\appid.sys
2016-05-06 19:14:52 ----A---- C:\Windows\system32\csrsrv.dll
2016-05-06 19:14:52 ----A---- C:\Windows\system32\cryptbase.dll
2016-05-06 19:14:52 ----A---- C:\Windows\system32\credssp.dll
2016-05-06 19:14:52 ----A---- C:\Windows\system32\conhost.exe
2016-05-06 19:14:52 ----A---- C:\Windows\system32\auditpol.exe
2016-05-06 19:14:52 ----A---- C:\Windows\system32\appidsvc.dll
2016-05-06 19:14:52 ----A---- C:\Windows\system32\appidpolicyconverter.exe
2016-05-06 19:14:52 ----A---- C:\Windows\system32\appidcertstorecheck.exe
2016-05-06 19:14:52 ----A---- C:\Windows\system32\appidapi.dll
2016-05-06 19:14:44 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2016-05-06 19:14:44 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2016-05-06 19:14:44 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2016-05-06 19:14:44 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2016-05-06 19:14:44 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2016-05-06 19:14:44 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2016-05-06 19:14:44 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2016-05-06 19:14:44 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2016-05-06 19:14:44 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2016-05-06 19:14:44 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2016-05-06 19:14:44 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2016-05-06 19:14:44 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2016-05-06 19:14:44 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2016-05-06 19:14:44 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2016-05-06 19:14:44 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2016-05-06 19:14:44 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2016-05-06 19:14:44 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2016-05-06 19:14:44 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2016-05-06 19:14:44 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2016-05-06 19:14:44 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2016-05-06 19:14:44 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2016-05-06 19:14:44 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2016-05-06 19:14:44 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2016-05-06 19:14:44 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2016-05-06 19:14:44 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2016-05-06 19:14:44 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2016-05-06 19:14:44 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2016-05-06 19:14:44 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2016-05-06 19:14:44 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2016-05-06 19:14:44 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2016-05-06 19:14:44 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2016-05-06 19:14:44 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2016-05-06 19:14:44 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2016-05-06 19:14:44 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2016-05-06 19:14:44 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2016-05-06 19:14:44 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2016-05-06 19:14:44 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2016-05-06 19:14:44 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2016-05-06 19:14:44 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2016-05-06 19:14:44 ----A---- C:\Windows\SYSWOW64\user.exe
2016-05-06 19:14:44 ----A---- C:\Windows\SYSWOW64\setup16.exe
2016-05-06 19:14:44 ----A---- C:\Windows\SYSWOW64\instnm.exe
2016-05-06 19:14:44 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2016-05-06 19:14:44 ----A---- C:\Windows\SYSWOW64\adtschema.dll
2016-05-06 19:14:44 ----A---- C:\Windows\system32\apisetschema.dll
2016-05-06 19:14:44 ----A---- C:\Windows\system32\adtschema.dll
2016-05-06 19:14:43 ----A---- C:\Windows\system32\msaudite.dll
2016-05-06 19:14:37 ----A---- C:\Windows\SYSWOW64\msobjs.dll
2016-05-06 19:14:37 ----A---- C:\Windows\SYSWOW64\msaudite.dll
2016-05-06 19:14:37 ----A---- C:\Windows\system32\msobjs.dll
2016-05-06 19:14:27 ----A---- C:\Windows\SYSWOW64\msxml3r.dll
2016-05-06 19:14:27 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2016-05-06 19:14:27 ----A---- C:\Windows\system32\msxml3r.dll
2016-05-06 19:14:27 ----A---- C:\Windows\system32\msxml3.dll
2016-05-06 19:13:07 ----A---- C:\Windows\system32\generaltel.dll
2016-05-06 19:13:00 ----A---- C:\Windows\system32\invagent.dll
2016-05-06 19:13:00 ----A---- C:\Windows\system32\devinv.dll
2016-05-06 19:13:00 ----A---- C:\Windows\system32\CompatTelRunner.exe
2016-05-06 19:13:00 ----A---- C:\Windows\system32\appraiser.dll
2016-05-06 19:13:00 ----A---- C:\Windows\system32\aepic.dll
2016-05-06 19:13:00 ----A---- C:\Windows\system32\aeinv.dll
2016-05-06 19:13:00 ----A---- C:\Windows\system32\acmigration.dll
2016-05-06 19:01:16 ----N---- C:\bootsqm.dat
2016-05-06 18:58:33 ----SHD---- C:\found.000
2016-05-06 18:18:55 ----A---- C:\Windows\SYSWOW64\nvStreaming.exe
2016-05-06 18:16:34 ----A---- C:\Windows\SYSWOW64\vulkaninfo.exe
2016-05-06 18:16:34 ----A---- C:\Windows\SYSWOW64\vulkan-1.dll
2016-05-06 18:16:34 ----A---- C:\Windows\system32\vulkaninfo.exe
2016-05-06 18:16:34 ----A---- C:\Windows\system32\vulkan-1.dll
2016-05-06 18:16:29 ----D---- C:\Program Files (x86)\VulkanRT
2016-05-06 18:16:09 ----A---- C:\Windows\system32\nvsvc64.dll
2016-05-06 18:16:09 ----A---- C:\Windows\system32\nvshext.dll
2016-05-06 18:16:09 ----A---- C:\Windows\system32\nv3dappshextr.dll
2016-05-06 18:16:09 ----A---- C:\Windows\system32\nv3dappshext.dll
2016-05-06 18:15:47 ----A---- C:\Windows\system32\nvvsvc.exe
2016-05-06 18:15:47 ----A---- C:\Windows\system32\nvsvcr.dll
2016-05-06 18:15:47 ----A---- C:\Windows\system32\nvcpl.dll
2016-05-06 18:12:36 ----A---- C:\Windows\system32\nvmctray.dll
2016-05-06 17:47:49 ----A---- C:\Windows\system32\nvhdap64.dll
2016-05-06 17:47:49 ----A---- C:\Windows\system32\drivers\nvhda64v.sys
2016-05-06 16:59:37 ----A---- C:\Windows\SYSWOW64\OpenCL.dll
2016-05-06 16:59:37 ----A---- C:\Windows\system32\OpenCL.dll
2016-05-06 16:52:47 ----A---- C:\Windows\SYSWOW64\nvwgf2um.dll
2016-05-06 16:52:47 ----A---- C:\Windows\SYSWOW64\nvumdshim.dll
2016-05-06 16:52:47 ----A---- C:\Windows\SYSWOW64\nvptxJitCompiler.dll
2016-05-06 16:52:47 ----A---- C:\Windows\SYSWOW64\nvopencl.dll
2016-05-06 16:52:47 ----A---- C:\Windows\SYSWOW64\nvoglv32.dll
2016-05-06 16:52:47 ----A---- C:\Windows\SYSWOW64\nvoglshim32.dll
2016-05-06 16:52:47 ----A---- C:\Windows\SYSWOW64\nvinit.dll
2016-05-06 16:52:47 ----A---- C:\Windows\SYSWOW64\NvIFR.dll
2016-05-06 16:52:47 ----A---- C:\Windows\SYSWOW64\NvFBC.dll
2016-05-06 16:52:47 ----A---- C:\Windows\SYSWOW64\nvfatbinaryLoader.dll
2016-05-06 16:52:47 ----A---- C:\Windows\SYSWOW64\nvd3dum.dll
2016-05-06 16:52:47 ----A---- C:\Windows\SYSWOW64\nvcuvid.dll
2016-05-06 16:52:47 ----A---- C:\Windows\SYSWOW64\nvcuda.dll
2016-05-06 16:52:47 ----A---- C:\Windows\SYSWOW64\nvcompiler.dll
2016-05-06 16:52:47 ----A---- C:\Windows\SYSWOW64\nvapi.dll
2016-05-06 16:52:47 ----A---- C:\Windows\system32\nvwgf2umx.dll
2016-05-06 16:52:47 ----A---- C:\Windows\system32\nvumdshimx.dll
2016-05-06 16:52:47 ----A---- C:\Windows\system32\nvptxJitCompiler.dll
2016-05-06 16:52:47 ----A---- C:\Windows\system32\nvopencl.dll
2016-05-06 16:52:47 ----A---- C:\Windows\system32\nvoglv64.dll
2016-05-06 16:52:47 ----A---- C:\Windows\system32\nvoglshim64.dll
2016-05-06 16:52:47 ----A---- C:\Windows\system32\nvinitx.dll
2016-05-06 16:52:47 ----A---- C:\Windows\system32\NvIFR64.dll
2016-05-06 16:52:47 ----A---- C:\Windows\system32\NvFBC64.dll
2016-05-06 16:52:47 ----A---- C:\Windows\system32\nvfatbinaryLoader.dll
2016-05-06 16:52:47 ----A---- C:\Windows\system32\nvd3dumx.dll
2016-05-06 16:52:47 ----A---- C:\Windows\system32\nvcuvid.dll
2016-05-06 16:52:47 ----A---- C:\Windows\system32\nvcuda.dll
2016-05-06 16:52:47 ----A---- C:\Windows\system32\nvcompiler.dll
2016-05-06 16:52:47 ----A---- C:\Windows\system32\nvapi64.dll
2016-05-06 16:52:47 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2016-05-06 16:52:19 ----A---- C:\Windows\SYSWOW64\samlib.dll
2016-05-06 16:52:19 ----A---- C:\Windows\system32\samsrv.dll
2016-05-06 16:52:19 ----A---- C:\Windows\system32\samlib.dll
2016-05-06 16:52:09 ----A---- C:\Windows\system32\win32k.sys
2016-05-06 16:52:00 ----A---- C:\Windows\system32\mtxoci.dll
2016-05-06 16:51:46 ----A---- C:\Windows\SYSWOW64\mtxoci.dll
2016-05-06 16:51:46 ----A---- C:\Windows\SYSWOW64\msorcl32.dll
2016-05-06 16:50:41 ----A---- C:\Windows\SYSWOW64\InkEd.dll
2016-05-06 16:50:41 ----A---- C:\Windows\system32\InkEd.dll
2016-05-06 16:48:12 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2016-05-06 16:48:12 ----A---- C:\Windows\SYSWOW64\inseng.dll
2016-05-06 16:48:12 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2016-05-06 16:48:12 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2016-05-06 16:48:12 ----A---- C:\Windows\system32\iernonce.dll
2016-05-06 16:48:12 ----A---- C:\Windows\system32\ieetwproxystub.dll
2016-05-06 16:48:12 ----A---- C:\Windows\system32\ieetwcollector.exe
2016-05-06 16:48:11 ----A---- C:\Windows\SYSWOW64\occache.dll
2016-05-06 16:48:11 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2016-05-06 16:46:58 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2016-05-06 16:46:58 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2016-05-06 16:46:58 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2016-05-06 16:46:58 ----A---- C:\Windows\system32\inseng.dll
2016-05-06 16:46:58 ----A---- C:\Windows\system32\ie4uinit.exe
2016-05-06 16:46:57 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2016-05-06 16:46:57 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2016-05-06 16:46:57 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2016-05-06 16:46:57 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2016-05-06 16:46:57 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2016-05-06 16:46:56 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2016-05-06 16:46:56 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2016-05-06 16:46:56 ----A---- C:\Windows\system32\urlmon.dll
2016-05-06 16:46:56 ----A---- C:\Windows\system32\occache.dll
2016-05-06 16:46:56 ----A---- C:\Windows\system32\iedkcs32.dll
2016-05-06 16:46:55 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2016-05-06 16:46:45 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2016-05-06 16:46:45 ----A---- C:\Windows\SYSWOW64\jscript.dll
2016-05-06 16:46:45 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2016-05-06 16:46:44 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2016-05-06 16:46:44 ----A---- C:\Windows\SYSWOW64\ieui.dll
2016-05-06 16:46:44 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2016-05-06 16:46:44 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2016-05-06 16:46:44 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2016-05-06 16:46:44 ----A---- C:\Windows\system32\msfeeds.dll
2016-05-06 16:46:44 ----A---- C:\Windows\system32\dxtrans.dll
2016-05-06 16:46:34 ----A---- C:\Windows\system32\iesetup.dll
2016-05-06 16:46:34 ----A---- C:\Windows\system32\iertutil.dll
2016-05-06 16:46:34 ----A---- C:\Windows\system32\ieapfltr.dll
2016-05-06 16:45:38 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2016-05-06 16:45:38 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2016-05-06 16:45:37 ----A---- C:\Windows\SYSWOW64\wininet.dll
2016-05-06 16:45:37 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2016-05-06 16:45:37 ----A---- C:\Windows\SYSWOW64\msrating.dll
2016-05-06 16:45:37 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2016-05-06 16:45:37 ----A---- C:\Windows\system32\vbscript.dll
2016-05-06 16:45:37 ----A---- C:\Windows\system32\jsproxy.dll
2016-05-06 16:45:37 ----A---- C:\Windows\system32\dxtmsft.dll
2016-05-06 16:45:36 ----A---- C:\Windows\system32\ieui.dll
2016-05-06 16:44:56 ----A---- C:\Windows\system32\mshtmled.dll
2016-05-06 16:44:56 ----A---- C:\Windows\system32\ieframe.dll
2016-05-06 16:44:55 ----A---- C:\Windows\system32\mshtmlmedia.dll
2016-05-06 16:44:28 ----A---- C:\Windows\system32\wininet.dll
2016-05-06 16:44:28 ----A---- C:\Windows\system32\webcheck.dll
2016-05-06 16:44:28 ----A---- C:\Windows\system32\jscript9diag.dll
2016-05-06 16:44:28 ----A---- C:\Windows\system32\jscript9.dll
2016-05-06 16:44:28 ----A---- C:\Windows\system32\jscript.dll
2016-05-06 16:44:28 ----A---- C:\Windows\system32\ieUnatt.exe
2016-05-06 16:44:27 ----A---- C:\Windows\system32\MshtmlDac.dll
2016-05-06 16:44:26 ----A---- C:\Windows\system32\msrating.dll
2016-05-06 16:44:26 ----A---- C:\Windows\system32\mshtml.dll
2016-05-06 16:38:31 ----A---- C:\Windows\SYSWOW64\tzres.dll
2016-05-06 16:38:31 ----A---- C:\Windows\system32\tzres.dll
2016-05-06 16:25:24 ----A---- C:\Windows\SYSWOW64\winhttp.dll
2016-05-06 16:25:24 ----A---- C:\Windows\SYSWOW64\webio.dll
2016-05-06 16:25:24 ----A---- C:\Windows\system32\winhttp.dll
2016-05-06 16:25:24 ----A---- C:\Windows\system32\webio.dll
2016-05-05 21:53:10 ----A---- C:\Windows\system32\nvdispgenco6436510.dll
2016-05-05 21:53:10 ----A---- C:\Windows\system32\nvdispco6436510.dll
2016-05-05 21:13:03 ----A---- C:\Windows\SYSWOW64\nvaudcap32v.dll
2016-05-05 21:13:03 ----A---- C:\Windows\system32\nvaudcap64v.dll
2016-05-05 21:13:03 ----A---- C:\Windows\system32\drivers\nvvad64v.sys
2016-05-05 16:14:45 ----A---- C:\Windows\system32\aswBoot.exe
2016-05-05 16:14:20 ----A---- C:\Windows\avastSS.scr
2016-04-25 10:03:44 ----D---- C:\Users\Petr\AppData\Roaming\Oracle
2016-04-16 00:53:42 ----A---- C:\Windows\SYSWOW64\vulkan-1-1-0-8-1.dll
2016-04-16 00:53:06 ----A---- C:\Windows\SYSWOW64\vulkaninfo-1-1-0-8-1.exe
2016-04-16 00:52:48 ----A---- C:\Windows\system32\vulkan-1-1-0-8-1.dll
2016-04-16 00:52:10 ----A---- C:\Windows\system32\vulkaninfo-1-1-0-8-1.exe
2016-04-14 11:58:47 ----D---- C:\Saves

======List of files/folders modified in the last 1 month======

2016-05-06 20:51:05 ----D---- C:\Windows\Temp
2016-05-06 20:51:05 ----D---- C:\Program Files\trend micro
2016-05-06 20:50:46 ----D---- C:\Users\Petr\AppData\Roaming\ConMet
2016-05-06 20:49:46 ----D---- C:\ProgramData\NVIDIA
2016-05-06 20:44:03 ----D---- C:\Windows\Microsoft.NET
2016-05-06 20:29:21 ----D---- C:\Windows\System32
2016-05-06 20:29:21 ----A---- C:\Windows\system32\PerfStringBackup.INI
2016-05-06 20:29:20 ----D---- C:\Windows\inf
2016-05-06 20:25:30 ----D---- C:\Windows\system32\config
2016-05-06 20:20:09 ----D---- C:\AdwCleaner
2016-05-06 20:19:18 ----SHD---- C:\System Volume Information
2016-05-06 20:16:41 ----D---- C:\Windows\winsxs
2016-05-06 19:57:08 ----RSD---- C:\Windows\assembly
2016-05-06 19:42:33 ----D---- C:\Windows\Prefetch
2016-05-06 19:30:46 ----D---- C:\Windows\SysWOW64
2016-05-06 19:30:45 ----D---- C:\Windows\SYSWOW64\cs-CZ
2016-05-06 19:30:44 ----D---- C:\Windows\system32\en-US
2016-05-06 19:30:44 ----D---- C:\Windows\system32\drivers
2016-05-06 19:30:44 ----D---- C:\Windows\system32\cs-CZ
2016-05-06 19:30:44 ----D---- C:\Windows\system32\Boot
2016-05-06 19:30:44 ----D---- C:\Windows\system32\appraiser
2016-05-06 19:30:44 ----D---- C:\Windows\AppPatch
2016-05-06 19:17:33 ----SHD---- C:\Windows\Installer
2016-05-06 19:17:28 ----D---- C:\ProgramData\Microsoft Help
2016-05-06 19:12:13 ----D---- C:\Users\Petr\AppData\Roaming\Skype
2016-05-06 18:41:01 ----D---- C:\Windows\system32\catroot2
2016-05-06 18:31:28 ----D---- C:\Windows
2016-05-06 18:22:02 ----D---- C:\ProgramData\NVIDIA Corporation
2016-05-06 18:18:19 ----D---- C:\Temp
2016-05-06 18:18:17 ----D---- C:\Windows\system32\DriverStore
2016-05-06 18:16:58 ----A---- C:\Windows\system32\nvhdagenco6420103.dll
2016-05-06 18:16:29 ----RD---- C:\Program Files (x86)
2016-05-06 18:12:35 ----D---- C:\Windows\Help
2016-05-06 17:16:50 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2016-05-06 17:14:48 ----D---- C:\Program Files\Internet Explorer
2016-05-06 17:14:47 ----D---- C:\Windows\SYSWOW64\en-US
2016-05-06 17:14:47 ----D---- C:\Program Files (x86)\Internet Explorer
2016-05-06 17:10:47 ----D---- C:\Windows\system32\MRT
2016-05-06 17:06:27 ----D---- C:\Windows\debug
2016-05-06 17:06:22 ----A---- C:\Windows\system32\MRT.exe
2016-05-06 16:59:25 ----D---- C:\Program Files\NVIDIA Corporation
2016-05-06 16:59:22 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2016-05-05 22:24:24 ----D---- C:\Program Files (x86)\Common Files
2016-05-05 21:06:18 ----D---- C:\Windows\system32\Tasks
2016-05-05 20:23:17 ----D---- C:\Users\Petr\AppData\Roaming\vlc
2016-05-05 18:18:21 ----HD---- C:\ProgramData
2016-05-02 07:39:01 ----A---- C:\Windows\SYSWOW64\nvspcap.dll
2016-05-02 07:39:01 ----A---- C:\Windows\SYSWOW64\nvspbridge.dll
2016-05-02 07:38:42 ----A---- C:\Windows\system32\nvspcap64.dll
2016-05-02 07:38:42 ----A---- C:\Windows\system32\nvspbridge64.dll
2016-05-02 07:38:42 ----A---- C:\Windows\system32\NvRtmpStreamer64.dll
2016-04-27 23:05:11 ----A---- C:\Windows\system32\cmdcsr.dll
2016-04-27 23:04:47 ----A---- C:\Windows\SYSWOW64\guard32.dll
2016-04-27 23:04:35 ----A---- C:\Windows\system32\guard64.dll
2016-04-27 23:00:47 ----A---- C:\Windows\system32\cmdvrt64.dll
2016-04-27 22:58:59 ----A---- C:\Windows\system32\cmdkbd64.dll
2016-04-27 22:55:10 ----A---- C:\Windows\SYSWOW64\cmdvrt32.dll
2016-04-27 22:53:23 ----A---- C:\Windows\SYSWOW64\cmdkbd32.dll
2016-04-26 16:47:39 ----D---- C:\Windows\system32\NDF
2016-04-26 16:37:54 ----D---- C:\Users\Petr\AppData\Roaming\TeamViewer
2016-04-26 16:37:54 ----D---- C:\Users\Petr\AppData\Roaming\DAEMON Tools Lite
2016-04-26 16:37:27 ----D---- C:\Windows\Logs
2016-04-25 10:05:24 ----D---- C:\ProgramData\Skype
2016-04-25 10:05:20 ----RD---- C:\Program Files (x86)\Skype
2016-04-25 10:03:36 ----D---- C:\ProgramData\Oracle
2016-04-25 10:03:16 ----D---- C:\Program Files (x86)\Java
2016-04-25 10:02:08 ----A---- C:\Windows\SYSWOW64\WindowsAccessBridge-32.dll
2016-04-08 06:44:13 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2016-05-05 74544]
R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2016-05-05 287528]
R0 AtiPcie;AMD PCI Express (3GIO) Filter; C:\Windows\system32\DRIVERS\AtiPcie64.sys [2010-06-16 16440]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2016-02-06 213888]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\drivers\vmbus.sys [2016-02-06 199552]
R1 aswKbd;aswKbd; C:\Windows\system32\drivers\aswKbd.sys [2016-05-05 37144]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2016-05-05 103064]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2016-05-05 1070904]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2016-05-05 465792]
R1 cmderd;COMODO Internet Security Eradication Driver; C:\Windows\System32\DRIVERS\cmderd.sys [2016-04-27 31648]
R1 cmdGuard;COMODO Internet Security Sandbox Driver; C:\Windows\system32\DRIVERS\cmdguard.sys [2016-04-27 829608]
R1 cmdHlp;COMODO Internet Security Helper Driver; C:\Windows\System32\DRIVERS\cmdhlp.sys [2016-04-27 56472]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2016-02-06 514560]
R1 inspect;COMODO Internet Security Firewall Driver; C:\Windows\system32\DRIVERS\inspect.sys [2016-04-27 116248]
R2 AODDriver4.01;AODDriver4.01; \??\C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [2014-02-11 59616]
R2 aswHwid;avast! HardwareID; C:\Windows\system32\drivers\aswHwid.sys [2016-05-05 37656]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2016-05-05 107792]
R2 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2016-05-05 166432]
R3 dtlitescsibus;DAEMON Tools Lite Virtual SCSI Bus; C:\Windows\system32\DRIVERS\dtlitescsibus.sys [2016-02-07 30264]
R3 dtliteusbbus;DAEMON Tools Lite Virtual USB Bus; C:\Windows\system32\DRIVERS\dtliteusbbus.sys [2016-02-07 47672]
R3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller; C:\Windows\system32\DRIVERS\L1C62x64.sys [2011-08-11 104560]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda64v.sys [2016-05-06 205456]
R3 NvStreamKms;NvStreamKms; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2016-05-02 28216]
R3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\Windows\system32\drivers\nvvad64v.sys [2016-05-05 56384]
R3 PSI;PSI; C:\Windows\system32\DRIVERS\psi_mf_amd64.sys [2016-02-09 18456]
R3 usbfilter;AMD USB Filter Driver; C:\Windows\system32\DRIVERS\usbfilter.sys [2016-02-06 60640]
R3 usbscan;Ovladač skeneru USB; C:\Windows\system32\drivers\usbscan.sys [2013-07-03 42496]
R3 VIAHdAudAddService;VIA High Definition Audio Driver Service; C:\Windows\system32\drivers\viahduaa.sys [2016-02-06 2159728]
S2 AODDriver4.3;AODDriver4.3; \??\C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [2014-02-11 59616]
S3 amdiox64;AMD IO Driver; C:\Windows\system32\DRIVERS\amdiox64.sys [2010-02-18 46136]
S3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudbus.sys [2016-02-11 122160]
S3 NTIOLib_1_0_C;NTIOLib_1_0_C; \??\F:\NTIOLib_X64.sys []
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2016-02-06 165888]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2016-02-09 19456]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2016-02-06 6656]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2016-02-06 34688]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2016-02-09 56832]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2016-02-06 21760]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2016-02-06 41984]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2016-02-07 82128]
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2016-05-05 243296]
R2 CmdAgent;COMODO Internet Security Helper Service; C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe [2016-04-29 5817200]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 GfExperienceService;NVIDIA GeForce Experience Service; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [2016-05-06 1165368]
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2016-05-06 1881144]
R2 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [2016-05-06 2522680]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2016-05-06 1264064]
R2 Secunia PSI Agent;Secunia PSI Agent; C:\Program Files (x86)\Secunia\PSI\PSIA.exe [2016-02-09 1227800]
R2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2016-03-23 327808]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2016-05-06 426040]
R2 TeamViewer;TeamViewer 11; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [2016-03-14 6942480]
R2 VIAKaraokeService;VIA Karaoke digital mixer Service; C:\Windows\system32\viakaraokesrv.exe [2011-06-14 27760]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2016-03-01 2292480]
R3 Disc Soft Lite Bus Service;Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe [2016-02-14 1369464]
R3 NvStreamNetworkSvc;NVIDIA Streamer Network Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [2016-05-06 3634232]
S2 AMD FUEL Service;AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [2016-02-06 344064]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2016-02-10 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2016-02-10 125112]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-02-07 154440]
S2 NAUpdate;@C:\Program Files (x86)\Nero\Update\NASvc.exe,-200; C:\Program Files (x86)\Nero\Update\NASvc.exe [2016-02-09 490280]
S2 Secunia Update Agent;Secunia Update Agent; C:\Program Files (x86)\Secunia\PSI\sua.exe [2016-02-09 659992]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-04-08 269504]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2016-02-10 51376]
S3 cmdvirth;COMODO Virtual Service Manager; C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe [2016-04-29 2271928]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-02-07 154440]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2016-05-06 114688]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files\Microsoft Office\Office14\GROOVE.EXE [2016-03-03 50942144]
S3 ose64;Office 64 Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2016-03-02 174440]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2016-03-02 4925184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2016-02-08 1255736]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2016-02-10 135848]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2016-02-10 135848]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2016-02-10 135848]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118275
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Zamrzá Pc (Rudy)

#7 Příspěvek od Rudy »

Smazáno. Znovu spusťte OTM a klikněte na >CleanUp!<. OTM po sobě uklidí. Nakonec restartujte PC. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Uživatelský avatar
PredyP
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 1227
Registrován: 24 kvě 2007 21:52
Bydliště: Východ Čech

Re: Zamrzá Pc (Rudy)

#8 Příspěvek od PredyP »

Systém najíždí svižněji. Při odstraňování OTM psal neodpovídá asi minutu potom se zase rozjel. Tak si myslím že toto tomu zamrzání nepomohlo.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118275
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Zamrzá Pc (Rudy)

#9 Příspěvek od Rudy »

Zkusíme ještě kompletní sken MBAM: http://www.malwarebytes.org/mbam.php . Dejte log, předem nic nemažte. Dál (pokud bude log čistý) byste mohl defragmentovat disk.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Uživatelský avatar
PredyP
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 1227
Registrován: 24 kvě 2007 21:52
Bydliště: Východ Čech

Re: Zamrzá Pc (Rudy)

#10 Příspěvek od PredyP »

Disky jsou defragmentovány asi před měsícem.

Uživatelský avatar
PredyP
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 1227
Registrován: 24 kvě 2007 21:52
Bydliště: Východ Čech

Re: Zamrzá Pc (Rudy)

#11 Příspěvek od PredyP »

Log je čistý.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118275
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Zamrzá Pc (Rudy)

#12 Příspěvek od Rudy »

Co bylo instalováno těsně před tím, než se problém objevil?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Uživatelský avatar
PredyP
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 1227
Registrován: 24 kvě 2007 21:52
Bydliště: Východ Čech

Re: Zamrzá Pc (Rudy)

#13 Příspěvek od PredyP »

Prý nic. Omlouvám se ale musíme to doložit dnes jsem odjel na čtrnáct dní na ryby. Ozvu se.
Děkuji

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118275
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Zamrzá Pc (Rudy)

#14 Příspěvek od Rudy »

OK. Budu tu. Jako první tedy proveďte obnovu systému k datu, kdy korketně fungoval.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Uživatelský avatar
PredyP
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 1227
Registrován: 24 kvě 2007 21:52
Bydliště: Východ Čech

Re: Zamrzá Pc (Rudy)

#15 Příspěvek od PredyP »

To bude těžké syn mi říkal že to je tak měsíce. :(

Zamčeno