Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

BSOD - ntoskrnl.exe

V tomto fóru se řeší problematika modré smrti - BSOD

Moderátor: Moderátoři

Pravidla fóra
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
Zamčeno
Zpráva
Autor
Marduk
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 62
Registrován: 07 úno 2011 01:07

BSOD - ntoskrnl.exe

#1 Příspěvek od Marduk »

Dobry den,

Dnes mne zacala trapit modra smrt bohuzel. Vsechny BSODy se staly vzdy pri hrani her, v mem dnesnim pripade 3x pri hrani world of warcraft, zadnou zvlastni cinnost ve hre sem neprovadel, ktera by mohla byt pricinnou.

Zacal sem tedy patrat, stahnul sem si program WhoCrashed na analyzu minidumpu a toto je vysledek:

Kód: Vybrat vše

On Tue 26.3.2013 12:08:24 GMT your computer crashed
crash dump file: C:\Windows\Minidump\032613-29156-01.dmp
This was probably caused by the following module: ntoskrnl.exe (nt+0x75C40) 
Bugcheck code: 0x3B (0xC0000005, 0xFFFFF800032F0711, 0xFFFFF8800ABC3AA0, 0x0)
Error: SYSTEM_SERVICE_EXCEPTION
file path: C:\Windows\system32\ntoskrnl.exe
product: Microsoft® Windows® Operating System
company: Microsoft Corporation
description: NT Kernel & System
Bug check description: This indicates that an exception happened while executing a routine that transitions from non-privileged code to privileged code. 
This appears to be a typical software driver bug and is not likely to be caused by a hardware problem. 
The crash took place in the Windows kernel. Possibly this problem is caused by another driver that cannot be identified at this time.
Posleze sem dale trosku googlil a nasel postup na overeni ovladacu v systemu Windows pomoci nastroje verifier. Provedl jsem tedy podle navodu viz:
pustit->napište "verifier"->OK->Vytvořit uživatelské nastavení->Vybrat individuální nastavení z úplného seznamu->mimo "Simulace nedostatku prostředků" zatrhněte vše->vybrat ovladače ze seznamu->vyberte vše, co není od Microsoftu->Dokončit->restartujte PC

Pokud verifier narazí na nějaký problém, objeví se BSOD a dojde k restartu počítače. Ve složce Windows\Minidump by se měl vytvořit nový výpis paměti, který mi upněte.
Pokud by k BSOD docházelo už při startu OS a nedařilo se i po několika restartech zavést systém,
spusťte nouzový režim (mačkání F8 při startu PC)
Tam spusťte Verifier a zvolte "Odstranit existující nastavení->Dokončit->restart PC.
Detekce chyby může trvat několik hodin i dní
Po restartu pocitac do Windows nenabehl a objevil se BSOD a vytvoril se minidump, toto se opakovalo jeste jednou tak sem v nouzovem rezimu vypnul nastroj verifier a sytem naskocil. Vysledek minidumpu po pouziti nastroje verifier je tento:

Kód: Vybrat vše

On Tue 26.3.2013 12:34:55 GMT your computer crashed
crash dump file: C:\Windows\memory.dmp
This was probably caused by the following module: gearaspiwdm.sys (GEARAspiWDM+0x7202) 
Bugcheck code: 0xC9 (0x23E, 0xFFFFFA800AFA92C0, 0xFFFFF9800413AEE0, 0x0)
Error: DRIVER_VERIFIER_IOMANAGER_VIOLATION 
file path: C:\Windows\system32\drivers\gearaspiwdm.sys
product: CD DVD Filter
company: GEAR Software Inc.
description: CD DVD Filter
Bug check description: This is the bug check code for all Driver Verifier 
This appears to be a typical software driver bug and is not likely to be caused by a hardware problem. 
A third party driver was identified as the probable root cause of this system error. It is suggested you look for an update for the following driver: gearaspiwdm.sys (CD DVD Filter, GEAR Software Inc.). 
Google query: GEAR Software Inc. DRIVER_VERIFIER_IOMANAGER_VIOLATION
Prosim tedy o pomoc ve veci co mam delat dal? Jak problem vyresit a odstranit BSODy?

Minidumpy jsou prilozeny v raru.

Moje specifikace PC:
OS: Windows 7 64bit Home Premium
Procesor: Intel Core i7-3770K
MotherBoard: ASUS P8Z77-V - Intel Z77
RAM: Corsair Vengeance Black 8GB (2x4GB) DDR3 1600
Mechanika: ASUS DRW-24B5ST černá Bulk
Graficka karta: GIGABYTE GTX 660 Ti OC 2GB
Skrin: CoolerMaster HAF X (RC-942-KKN1), černá
HDD: 2x Western Digital Caviar Black 500GB (jsou to starsi disky, pouze 32MB cache a umi jenom SATA I, aspon myslim)
Přílohy
Minidump.rar
Minidumpy BSOD
(68.99 KiB) Staženo 147 x
Naposledy upravil(a) Marduk dne 26 bře 2013 14:24, celkem upraveno 3 x.

Marduk
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 62
Registrován: 07 úno 2011 01:07

Re: BSOD - ntoskrnl.exe

#2 Příspěvek od Marduk »

Prikladam vysledky z programu CrystalDiskInfo:

----------------------------------------------------------------------------
CrystalDiskInfo 4.0.2 (C) 2008-2011 hiyohiyo
Crystal Dew World : http://crystalmark.info/
----------------------------------------------------------------------------

OS : Windows 7 Home Premium Edition SP1 [6.1 Build 7601] (x64)
Date : 2013/03/26 14:18:03

-- Controller Map ----------------------------------------------------------
- ATA Channel 0 (0) [ATA]
- ATA Channel 1 (1) [ATA]
+ Intel(R) 7 Series/C216 Chipset Family SATA AHCI Controller [ATA]
- WDC WD5000AAKS-00A7B2
- WDC WD5001AALS-00L3B2
- ASUS DRW-24B5ST
+ Asmedia 106x SATA Controller [ATA]
- ATA Channel 0 (0)
- ATA Channel 1 (1)

-- Disk List ---------------------------------------------------------------
(1) WDC WD5000AAKS-00A7B2 : 500.1 GB [0-0-0, pd1]
(2) WDC WD5001AALS-00L3B2 : 500.1 GB [1-0-1, pd1]
(3) WDC WD20EARX-00PASB0 : 2000.3 GB [2-X-X, sa1] (V=1058, P=1021)

----------------------------------------------------------------------------
(1) WDC WD5000AAKS-00A7B2
----------------------------------------------------------------------------
Model : WDC WD5000AAKS-00A7B2
Firmware : 01.03B01
Serial Number : WD-WCAT00150782
Disk Size : 500.1 GB (8.4/137.4/500.1)
Buffer Size : 16384 KB
Queue Depth : 32
# of Sectors : 976773168
Rotation Rate : Neznámy údaj
Interface : Serial ATA
Major Version : ATA8-ACS
Minor Version : ----
Transfer Mode : SATA/300
Power On Hours : 10338 hod.
Power On Count : 1542 krát
Temparature : 37 C (98 F)
Health Status : Dobrý
Features : S.M.A.R.T., AAM, 48bit LBA, NCQ
APM Level : ----
AAM Level : 80FEh [OFF]

-- S.M.A.R.T. --------------------------------------------------------------
ID Cur Wor Thr RawValues(6) Attribute Name
01 200 200 _51 000000000000 Počet chyb čtení
03 162 161 _21 000000001324 Čas na roztočení ploten
04 _99 _99 __0 000000000677 Počet spuštění/zastavení
05 200 200 140 000000000000 Počet přemapovaných sektorů
07 100 253 __0 000000000000 Počet chybných hledání
09 _86 _86 __0 000000002862 Hodin v činnosti
0A 100 100 __0 000000000000 Počet opakovaných pokusů o roztočení ploten
0B 100 100 __0 000000000000 Počet pokusů o překalibrování
0C _99 _99 __0 000000000606 Počet cyklů zapnutí zařízení
C0 200 200 __0 00000000003D Počet vypnutí disku
C1 200 200 __0 000000000672 Počet cyklů načítání/vymazání
C2 110 _95 __0 000000000025 Teplota
C4 200 200 __0 000000000000 Počet udalostí s číslem realokování sektorů
C5 200 200 __0 000000000000 Počet podezřelých sektorů
C6 200 200 __0 000000000000 Počet neopravitelných sektorů
C7 200 200 __0 000000000000 Počet chyb v kontrolním součtu UltraDMA
C8 200 200 __0 000000000000 Počet chyb při zápisu sektorů

-- IDENTIFY_DEVICE ---------------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 42 7A 3F FF C8 37 00 10 00 00 00 00 00 3F 00 00
010: 00 00 00 00 20 20 20 20 20 57 44 2D 57 43 41 54
020: 30 30 31 35 30 37 38 32 00 00 80 00 00 32 30 31
030: 2E 30 33 42 30 31 57 44 43 20 57 44 35 30 30 30
040: 41 41 4B 53 2D 30 30 41 37 42 32 20 20 20 20 20
050: 20 20 20 20 20 20 20 20 20 20 20 20 20 20 80 10
060: 00 00 2F 00 40 01 00 00 00 00 00 07 3F FF 00 10
070: 00 3F FC 10 00 FB 01 10 FF FF 0F FF 00 00 00 07
080: 00 03 00 78 00 78 00 78 00 78 00 00 00 00 00 00
090: 00 00 00 00 00 00 00 1F 07 06 00 00 00 44 00 44
0A0: 01 FE 00 00 74 6B 7F 61 41 23 74 69 BC 41 41 23
0B0: 40 7F 00 2D 00 2D 00 00 FF FE 00 00 80 FE 00 00
0C0: 00 00 00 00 00 00 00 00 60 30 3A 38 00 00 00 00
0D0: 00 00 00 00 00 00 00 00 50 01 4E E1 57 1F 20 11
0E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 40 10
0F0: 40 10 00 00 00 00 00 00 00 00 00 00 00 00 00 00
100: 00 29 00 00 00 00 00 00 00 00 16 9D 00 00 00 00
110: 00 00 00 00 00 00 00 00 00 00 00 00 00 04 00 00
120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
170: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
180: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
190: 00 00 00 00 00 00 00 00 00 00 00 00 30 3F 00 00
1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1B0: 00 00 00 00 00 00 00 00 00 00 00 00 10 0E 00 00
1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1D0: 00 00 00 00 00 01 10 00 00 00 00 00 00 00 00 00
1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 B6 A5

----------------------------------------------------------------------------
(2) WDC WD5001AALS-00L3B2
----------------------------------------------------------------------------
Model : WDC WD5001AALS-00L3B2
Firmware : 01.03B01
Serial Number : WD-WCASYC177278
Disk Size : 500.1 GB (8.4/137.4/500.1)
Buffer Size : 32767 KB
Queue Depth : 32
# of Sectors : 976773168
Rotation Rate : Neznámy údaj
Interface : Serial ATA
Major Version : ATA8-ACS
Minor Version : ----
Transfer Mode : SATA/300
Power On Hours : 8534 hod.
Power On Count : 1325 krát
Temparature : 37 C (98 F)
Health Status : Dobrý
Features : S.M.A.R.T., AAM, 48bit LBA, NCQ
APM Level : ----
AAM Level : 80FEh [OFF]

-- S.M.A.R.T. --------------------------------------------------------------
ID Cur Wor Thr RawValues(6) Attribute Name
01 200 200 _51 000000000000 Počet chyb čtení
03 159 157 _21 000000001390 Čas na roztočení ploten
04 _99 _99 __0 000000000545 Počet spuštění/zastavení
05 200 200 140 000000000000 Počet přemapovaných sektorů
07 100 253 __0 000000000000 Počet chybných hledání
09 _89 _89 __0 000000002156 Hodin v činnosti
0A 100 100 __0 000000000000 Počet opakovaných pokusů o roztočení ploten
0B 100 100 __0 000000000000 Počet pokusů o překalibrování
0C _99 _99 __0 00000000052D Počet cyklů zapnutí zařízení
C0 200 200 __0 000000000034 Počet vypnutí disku
C1 200 200 __0 000000000540 Počet cyklů načítání/vymazání
C2 110 105 __0 000000000025 Teplota
C4 200 200 __0 000000000000 Počet udalostí s číslem realokování sektorů
C5 200 200 __0 000000000000 Počet podezřelých sektorů
C6 200 200 __0 000000000000 Počet neopravitelných sektorů
C7 200 200 __0 000000000000 Počet chyb v kontrolním součtu UltraDMA
C8 200 200 __0 000000000000 Počet chyb při zápisu sektorů

-- IDENTIFY_DEVICE ---------------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 42 7A 3F FF C8 37 00 10 00 00 00 00 00 3F 00 00
010: 00 00 00 00 20 20 20 20 20 57 44 2D 57 43 41 53
020: 59 43 31 37 37 32 37 38 00 00 FF FF 00 32 30 31
030: 2E 30 33 42 30 31 57 44 43 20 57 44 35 30 30 31
040: 41 41 4C 53 2D 30 30 4C 33 42 32 20 20 20 20 20
050: 20 20 20 20 20 20 20 20 20 20 20 20 20 20 80 10
060: 00 00 2F 00 40 01 00 00 00 00 00 07 3F FF 00 10
070: 00 3F FC 10 00 FB 01 10 FF FF 0F FF 00 00 00 07
080: 00 03 00 78 00 78 00 78 00 78 00 00 00 00 00 00
090: 00 00 00 00 00 00 00 1F 07 06 00 00 00 44 00 44
0A0: 01 FE 00 00 74 6B 7F 61 41 23 74 69 BC 41 41 23
0B0: 40 7F 00 39 00 39 00 00 FF FE 00 00 80 FE 00 00
0C0: 00 00 00 00 00 00 00 00 60 30 3A 38 00 00 00 00
0D0: 00 00 00 00 00 00 00 00 50 01 4E E2 04 40 07 23
0E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 40 10
0F0: 40 10 00 00 00 00 00 00 00 00 00 00 00 00 00 00
100: 00 29 00 00 00 00 00 00 00 00 16 9D 00 00 00 00
110: 00 00 00 00 00 00 00 00 00 00 00 00 00 04 00 00
120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
170: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
180: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
190: 00 00 00 00 00 00 00 00 00 00 00 00 30 37 00 00
1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1B0: 00 00 00 00 00 00 00 00 00 00 00 00 10 0E 00 00
1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1D0: 00 00 00 00 00 01 10 00 00 00 00 00 00 00 00 00
1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 13 A5

----------------------------------------------------------------------------
(3) WDC WD20EARX-00PASB0
----------------------------------------------------------------------------
Enclosure : WD Ext HDD 1021 USB Device (V=1058, P=1021, sa1)
Model : WDC WD20EARX-00PASB0
Firmware : 51.0AB51
Serial Number : WD-WCAZAA238764
Disk Size : 2000.3 GB (8.4/137.4/2000.3)
Buffer Size : Neznámy údaj
Queue Depth : 32
# of Sectors : 3907029168
Rotation Rate : Neznámy údaj
Interface : USB (Serial ATA)
Major Version : ATA8-ACS
Minor Version : ----
Transfer Mode : SATA/600
Power On Hours : 2430 hod.
Power On Count : 1215 krát
Temparature : 36 C (96 F)
Health Status : Dobrý
Features : S.M.A.R.T., 48bit LBA, NCQ
APM Level : ----
AAM Level : ----

-- S.M.A.R.T. --------------------------------------------------------------
ID Cur Wor Thr RawValues(6) Attribute Name
01 200 200 _51 000000000000 Počet chyb čtení
03 168 165 _21 0000000019BF Čas na roztočení ploten
04 _96 _96 __0 000000001034 Počet spuštění/zastavení
05 200 200 140 000000000000 Počet přemapovaných sektorů
07 183 180 __0 0000000000A0 Počet chybných hledání
09 _97 _97 __0 00000000097E Hodin v činnosti
0A 100 100 __0 000000000000 Počet opakovaných pokusů o roztočení ploten
0B 100 100 __0 000000000000 Počet pokusů o překalibrování
0C _99 _99 __0 0000000004BF Počet cyklů zapnutí zařízení
C0 200 200 __0 0000000001E4 Počet vypnutí disku
C1 196 196 __0 0000000031C3 Počet cyklů načítání/vymazání
C2 114 100 __0 000000000024 Teplota
C4 200 200 __0 000000000000 Počet udalostí s číslem realokování sektorů
C5 200 200 __0 000000000000 Počet podezřelých sektorů
C6 200 200 __0 000000000000 Počet neopravitelných sektorů
C7 200 200 __0 000000000000 Počet chyb v kontrolním součtu UltraDMA
C8 200 200 __0 000000000000 Počet chyb při zápisu sektorů

-- IDENTIFY_DEVICE ---------------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 42 7A 3F FF C8 37 00 10 00 00 00 00 00 3F 00 00
010: 00 00 00 00 20 20 20 20 20 57 44 2D 57 43 41 5A
020: 41 41 32 33 38 37 36 34 00 00 00 00 00 32 35 31
030: 2E 30 41 42 35 31 57 44 43 20 57 44 32 30 45 41
040: 52 58 2D 30 30 50 41 53 42 30 20 20 20 20 20 20
050: 20 20 20 20 20 20 20 20 20 20 20 20 20 20 80 10
060: 00 00 2F 00 40 01 00 00 00 00 00 07 3F FF 00 10
070: 00 3F FC 10 00 FB 01 00 FF FF 0F FF 00 00 01 07
080: 00 03 00 78 00 78 00 78 00 78 00 00 00 00 00 00
090: 00 00 00 00 00 00 00 1F 17 0E 00 02 00 44 00 40
0A0: 01 FE 00 00 74 6B 7D 61 41 23 74 69 BC 41 41 23
0B0: 00 7F 00 CC 00 CC 00 00 FF FE 00 00 00 00 00 00
0C0: 00 00 00 00 00 00 00 00 88 B0 E8 E0 00 00 00 00
0D0: 00 00 00 00 60 03 00 00 50 01 4E E2 B0 FA 13 1B
0E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 40 1C
0F0: 40 1C 00 00 00 00 00 00 00 00 00 00 00 00 00 00
100: 00 21 00 00 00 00 00 00 00 00 00 00 00 00 00 00
110: 00 00 00 00 00 00 00 00 00 00 00 00 00 04 00 00
120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
170: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
180: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
190: 00 00 00 00 00 00 00 00 00 00 00 00 30 35 00 00
1A0: 00 00 40 00 00 00 00 00 00 00 00 00 00 00 00 00
1B0: 00 00 00 00 00 00 00 00 00 00 00 00 10 3E 00 00
1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1D0: 00 00 00 00 00 01 10 00 00 00 00 00 00 00 00 00
1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 DD A5


Disk (2) je systemovy disk
Disk (1) je datovy disk
Disk (3) je externi disk slouzici k zalohovani
Naposledy upravil(a) Marduk dne 29 bře 2013 15:00, celkem upraveno 1 x.

Marduk
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 62
Registrován: 07 úno 2011 01:07

Re: BSOD - ntoskrnl.exe

#3 Příspěvek od Marduk »

Jeste prikladam LOG z RSITu:
Logfile of random's system information tool 1.08 (written by random/random)
Run by Petr at 2013-03-26 14:41:06
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 370 GB (78%) free of 477 GB
Total RAM: 8138 MB (60% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 14:41:16, on 26.3.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v10.0 (10.00.9200.16521)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\ComUpdatus.exe
C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe
D:\Utility\AllShare Play\utils\AllShare Play Launcher.exe
D:\Utility\Spybot - Search & Destroy\TeaTimer.exe
D:\Utility\Kies\External\FirmwareUpdate\KiesPDLR.exe
D:\Utility\Kies\Kies.exe
C:\Program Files (x86)\Google\Drive\googledrivesync.exe
C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files (x86)\Google\Drive\googledrivesync.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
C:\Program Files (x86)\Western Digital Technologies\Spindown\ExSpinDn.exe
C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSTE08.exe
C:\Program Files (x86)\HP\Digital Imaging\bin\hpqbam08.exe
C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Microsoft Office\Office12\OUTLOOK.EXE
C:\Users\Petr\Desktop\Petr.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: (no name) - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - (no file)
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - D:\Utility\SPYBOT~1\SDHelper.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - c:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O2 - BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [Nástroj WD Quick View] C:\Program Files (x86)\Western Digital\WD Quick View\WDDMStatus.exe
O4 - HKLM\..\Run: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe "C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" 60
O4 - HKLM\..\Run: [WD Spindown Utility] "C:\Program Files (x86)\Western Digital Technologies\Spindown\ExSpinDn.exe"
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [SpybotSD TeaTimer] D:\Utility\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [KiesPDLR] D:\Utility\Kies\External\FirmwareUpdate\KiesPDLR.exe
O4 - HKCU\..\Run: [KiesPreload] D:\Utility\Kies\Kies.exe /preload
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [GoogleDriveSync] "C:\Program Files (x86)\Google\Drive\googledrivesync.exe" /autostart
O4 - HKCU\..\Run: [] D:\Utility\Kies\External\FirmwareUpdate\KiesPDLR.exe
O4 - HKCU\..\Run: [Akamai NetSession Interface] "C:\Users\Petr\AppData\Local\Akamai\netsession_win.exe"
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-21-3581426771-2652166189-4152530351-1009\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-3581426771-2652166189-4152530351-1009\..\Run: [] D:\Utility\Kies\External\FirmwareUpdate\KiesPDLR.exe (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-3581426771-2652166189-4152530351-1009\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'UpdatusUser')
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: WDDMStatus.lnk = C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMStatus.exe
O4 - Global Startup: WDSmartWare.lnk = C:\Program Files (x86)\Western Digital\WD SmartWare\Front Parlor\WDSmartWare.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O9 - Extra button: Zobrazit nebo skrýt HP Smart Web Printing - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - D:\Utility\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - D:\Utility\SPYBOT~1\SDHelper.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: *.clonewarsadventures.com
O15 - Trusted Zone: *.freerealms.com
O15 - Trusted Zone: *.soe.com
O15 - Trusted Zone: *.sony.com
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O20 - AppInit_DLLs:
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AllShare Framework DMS - Samsung - C:\Program Files\Samsung\AllShare Framework DMS\1.3.06\AllShareFrameworkManagerDMS.exe
O23 - Service: AllShare Play Service - Copyright 2013 SAMSUNG - D:\Utility\AllShare Play\AllShare Play Service.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: avast! Firewall - AVAST Software - C:\Program Files\AVAST Software\Avast\afwServ.exe
O23 - Service: DTSAudioSvc - DTS, Inc - C:\Program Files\Realtek\Audio\HDA\DTSU2PAuSrv64.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Hi-Rez Studios Authenticate and Update Service (HiPatchService) - Hi-Rez Studios - D:\Hry\Tribes Ascend\HiPatchService.exe
O23 - Service: Úložná technologie Intel(R) Rapid (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) PROSet Monitoring Service - Unknown owner - C:\Windows\system32\IProsetMonitor.exe (file missing)
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: Služba DTC (Distributed Transaction Coordinator) (MSDTC) - Unknown owner - C:\Windows\system32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: PDAgent - Raxco Software, Inc. - D:\Utility\PerfectDisk 10\PDAgent.exe
O23 - Service: PDEngine - Raxco Software, Inc. - D:\Utility\PerfectDisk 10\PDEngine.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: SBSD Security Center Service (SBSDWSCService) - Safer Networking Ltd. - D:\Utility\Spybot - Search & Destroy\SDWinSec.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: TomTomHOMEService - TomTom - D:\Utility\TomTom HOME 2\TomTomHOMEService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: WD Backup (WDBackup) - Western Digital - C:\Program Files (x86)\Western Digital\WD SmartWare\WDBackupEngine.exe
O23 - Service: WD SmartWare Drive Manager Service (WDDMService) - WDC - C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMService.exe
O23 - Service: WD Drive Manager (WDDriveService) - Western Digital - C:\Program Files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe
O23 - Service: WD Rules (WDRulesService) - Western Digital - C:\Program Files (x86)\Western Digital\WD SmartWare\WDRulesEngine.exe
O23 - Service: WD SmartWare Background Service (WDSmartWareBackgroundService) - Memeo - C:\Program Files (x86)\Western Digital\WD SmartWare\Front Parlor\WDSmartWareBackgroundService.exe
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: Služba Windows Media Player Network Sharing (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 15425 bytes

======Listing Processes======

\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
"C:\Windows\system32\nvvsvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
winlogon.exe
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
"C:\Program Files\AVAST Software\Avast\afwServ.exe"
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"taskhost.exe"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Windows\system32\Dwm.exe"
"C:\Program Files\Samsung\AllShare Framework DMS\1.3.06\AllShareFrameworkManagerDMS.exe"
C:\Windows\Explorer.EXE
"C:\Program Files\Samsung\AllShare Framework DMS\1.3.06\AllShareFrameworkDMS.exe"
\??\C:\Windows\system32\conhost.exe "-1322877517-794257183276272451350970081293297901-2075243247-1083755443128217773
"D:\Utility\AllShare Play\AllShare Play Service.exe"
"D:\Utility\AllShare Play\AllShare Play Service.exe" "AllShare Play Service" __i4j_restart
"C:\Program Files\Realtek\Audio\HDA\DTSU2PAuSrv64.exe"
"D:\Hry\Tribes Ascend\HiPatchService.exe"
C:\Windows\SysWOW64\svchost.exe -k hpdevmgmt
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
C:\Windows\system32\IProsetMonitor.exe
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
C:\Windows\system32\msdtc.exe
C:\Windows\System32\svchost.exe -k HPZ12
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe"
"D:\Utility\PerfectDisk 10\PDAgent.exe"
C:\Windows\System32\svchost.exe -k HPZ12
C:\Windows\SysWOW64\PnkBstrA.exe
C:\Windows\system32\svchost.exe -k imgsvc
"D:\Utility\TomTom HOME 2\TomTomHOMEService.exe"
"C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMService.exe"
"C:\Program Files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe"
"C:\Program Files (x86)\Western Digital\WD SmartWare\WDRulesEngine.exe"
"C:\Program Files (x86)\Western Digital\WD SmartWare\Front Parlor\WDSmartWareBackgroundService.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\ComUpdatus.exe" -Embedding
"c:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
"C:\Program Files\Logitech\SetPointP\SetPoint.exe" /launchGaming
"C:\Program Files\Logitech\GamePanel Software\LGDevAgt.exe"
"C:\Program Files\Logitech\GamePanel Software\G-series Software\LGDCore.exe" /SHOWHIDE
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe" -f "C:\ProgramData\NVIDIA\Updatus\NvTmru\nvtmru.dat"
"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /DTSU2P
"D:\Utility\AllShare Play\utils\AllShare Play Launcher.exe"
"D:\Utility\Spybot - Search & Destroy\TeaTimer.exe"
"D:\Utility\Kies\External\FirmwareUpdate\KiesPDLR.exe"
"D:\Utility\Kies\Kies.exe" /preload
"C:\Program Files\Windows Sidebar\sidebar.exe" /autoRun
"C:\Program Files (x86)\Google\Drive\googledrivesync.exe" /autostart
"C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe"
"C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMStatus.exe"
"C:\Program Files (x86)\Western Digital\WD SmartWare\Front Parlor\WDSmartWare.exe" View=show_in_tray
"D:\Utility\AllShare Play\AllShare Play.exe"
"C:\Program Files (x86)\Google\Drive\googledrivesync.exe" /autostart
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
"C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Program Files (x86)\Western Digital Technologies\Spindown\ExSpinDn.exe"
"C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe"
KHALMNPR.EXE /API
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Program Files (x86)\Western Digital\WD SmartWare\WDBackupEngine.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
WLIDSvcM.exe 3452
C:\Windows\system32\svchost.exe -k HPService
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"D:\Utility\PerfectDisk 10\PDAgentS1.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
"C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSTE08.exe" -CtxID "#Hewlett-Packard#HP Photosmart Wireless B109n-z#1357234548" -Startup
"C:\Program Files (x86)\HP\Digital Imaging\bin\hpqbam08.exe" -Embedding
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe" -Embedding
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
C:\Windows\System32\svchost.exe -k secsvcs
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
C:\Windows\system32\svchost.exe -k SDRSVC
"C:\Program Files (x86)\Microsoft Office\Office12\OUTLOOK.EXE"
C:\Windows\system32\msiexec.exe /V
C:\Windows\System32\svchost.exe -k swprv
C:\Windows\servicing\TrustedInstaller.exe
C:\Windows\system32\sppsvc.exe
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe9_ Global\UsGthrCtrlFltPipeMssGthrPipe9 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 556 560 568 65536 564
"C:\Users\Petr\Downloads\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{318A227B-5E9F-45bd-8999-7F8F10CA4CF5}]
avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2013-03-07 1497560]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - c:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 532336]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0347C33E-8762-4905-BF09-768834316C61}]
HP Print Enhancer - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll [2009-10-22 328248]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-12-18 66280]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{318A227B-5E9F-45bd-8999-7F8F10CA4CF5}]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{53707962-6F74-2D53-2644-206D7942484F}]
Spybot-S&D IE Protection - D:\Utility\SPYBOT~1\SDHelper.dll [2009-01-26 1879896]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2013-03-06 461216]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2013-03-07 1224568]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - c:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 403840]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2013-03-06 170912]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856}]
HP Smart BHO Class - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll [2009-10-22 517688]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2013-03-07 1497560]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2013-03-07 1224568]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"EvtMgr6"=C:\Program Files\Logitech\SetPointP\SetPoint.exe [2011-10-07 1744152]
"Launch LgDeviceAgent"=C:\Program Files\Logitech\GamePanel Software\LgDevAgt.exe [2010-08-03 415816]
"Launch LGDCore"=C:\Program Files\Logitech\GamePanel Software\G-series Software\LGDCore.exe [2010-08-03 4725320]
"Nvtmru"=C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe [2013-03-24 976672]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2012-06-12 6548112]
"RtHDVBg_DTS"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2012-06-07 1212048]
"AllShare Play"=D:\Utility\AllShare Play\utils\AllShare Play Launcher.exe [2013-02-21 407384]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"SpybotSD TeaTimer"=D:\Utility\Spybot - Search & Destroy\TeaTimer.exe [2009-03-05 2260480]
"KiesPDLR"=D:\Utility\Kies\External\FirmwareUpdate\KiesPDLR.exe [2013-02-13 844144]
"KiesPreload"=D:\Utility\Kies\Kies.exe [2013-02-13 1509232]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-20 1475584]
"GoogleDriveSync"=C:\Program Files (x86)\Google\Drive\googledrivesync.exe [2012-12-17 16328976]
""=D:\Utility\Kies\External\FirmwareUpdate\KiesPDLR.exe [2013-02-13 844144]
"Akamai NetSession Interface"=C:\Users\Petr\AppData\Local\Akamai\netsession_win.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesPreload]
D:\Utility\Kies\Kies.exe [2013-02-13 1509232]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesTrayAgent]
D:\Utility\Kies\KiesTrayAgent.exe [2013-02-13 310128]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Pando Media Booster]
C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe [2011-06-29 3077528]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TomTomHOME.exe]
D:\Utility\TomTom HOME 2\TomTomHOMERunner.exe [2012-08-28 247768]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"avast"=C:\Program Files\AVAST Software\Avast\avastUI.exe [2013-03-07 4767304]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-12-03 946352]
"GrooveMonitor"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040]
"Nástroj WD Quick View"=C:\Program Files (x86)\Western Digital\WD Quick View\WDDMStatus.exe [2012-06-14 5235128]
"USB3MON"=C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [2012-05-20 291648]
"IAStorIcon"=C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe [2012-02-29 56088]
"WD Spindown Utility"=C:\Program Files (x86)\Western Digital Technologies\Spindown\ExSpinDn.exe [2004-08-09 278528]
"HP Software Update"=C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [2009-11-18 54576]
""= []
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2012-07-03 252848]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
HP Digital Imaging Monitor.lnk - C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
WDDMStatus.lnk - C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMStatus.exe
WDSmartWare.lnk - C:\Program Files (x86)\Western Digital\WD SmartWare\Front Parlor\WDSmartWare.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=" "

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\LBTWlgn]
c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll [2011-09-27 68376]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\!SASCORE]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\!SASCORE]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=0x91000000

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 months======

2013-03-26 14:41:06 ----D---- C:\rsit
2013-03-26 14:35:49 ----A---- C:\Windows\system32\drivers\GEARAspiWDM.sys
2013-03-26 14:35:47 ----D---- C:\ProgramData\9223B3E6-70DD-4e2f-965B-DD8E02D2E20B
2013-03-26 14:35:03 ----D---- C:\Users\Petr\AppData\Roaming\Downloaded Installations
2013-03-26 13:46:53 ----A---- C:\Windows\ntbtlog.txt
2013-03-26 13:18:24 ----A---- C:\Windows\SYSWOW64\nvumdshim.dll
2013-03-26 13:18:24 ----A---- C:\Windows\SYSWOW64\nvopencl.dll
2013-03-26 13:18:24 ----A---- C:\Windows\SYSWOW64\nvoglv32.dll
2013-03-26 13:18:24 ----A---- C:\Windows\SYSWOW64\nvinit.dll
2013-03-26 13:18:24 ----A---- C:\Windows\SYSWOW64\nvEncodeAPI.dll
2013-03-26 13:18:24 ----A---- C:\Windows\SYSWOW64\nvcuvid.dll
2013-03-26 13:18:24 ----A---- C:\Windows\SYSWOW64\nvcuvenc.dll
2013-03-26 13:18:24 ----A---- C:\Windows\SYSWOW64\nvcuda.dll
2013-03-26 13:18:24 ----A---- C:\Windows\SYSWOW64\nvcompiler.dll
2013-03-26 13:18:24 ----A---- C:\Windows\system32\nvopencl.dll
2013-03-26 13:18:24 ----A---- C:\Windows\system32\nvoglv64.dll
2013-03-26 13:18:24 ----A---- C:\Windows\system32\nvinitx.dll
2013-03-26 13:18:24 ----A---- C:\Windows\system32\nvEncodeAPI64.dll
2013-03-26 13:18:24 ----A---- C:\Windows\system32\nvdispgenco6431422.dll
2013-03-26 13:18:24 ----A---- C:\Windows\system32\nvdispco6431422.dll
2013-03-26 13:18:24 ----A---- C:\Windows\system32\nvd3dumx.dll
2013-03-26 13:18:24 ----A---- C:\Windows\system32\nvcuvid.dll
2013-03-26 13:18:24 ----A---- C:\Windows\system32\nvcuvenc.dll
2013-03-26 13:18:24 ----A---- C:\Windows\system32\nvcuda.dll
2013-03-26 13:18:24 ----A---- C:\Windows\system32\nvcompiler.dll
2013-03-26 13:18:24 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2013-03-17 21:44:55 ----D---- C:\Program Files\Samsung
2013-03-17 21:12:38 ----D---- C:\Upload
2013-03-17 21:12:06 ----D---- C:\AllShare Play
2013-03-17 10:35:39 ----A---- C:\Windows\SYSWOW64\nvwgf2um.dll
2013-03-17 10:35:39 ----A---- C:\Windows\system32\nvdispgenco6431421.dll
2013-03-17 10:35:39 ----A---- C:\Windows\system32\nvdispco6431421.dll
2013-03-14 22:07:52 ----A---- C:\Windows\SYSWOW64\nvStreaming.exe
2013-03-14 21:10:21 ----A---- C:\Windows\system32\drivers\aswVmm.sys
2013-03-14 21:10:21 ----A---- C:\Windows\system32\drivers\aswRvrt.sys
2013-03-14 20:55:08 ----A---- C:\Windows\SYSWOW64\wininet.dll
2013-03-14 20:55:08 ----A---- C:\Windows\SYSWOW64\wextract.exe
2013-03-14 20:55:08 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2013-03-14 20:55:08 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2013-03-14 20:55:08 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2013-03-14 20:55:08 ----A---- C:\Windows\SYSWOW64\url.dll
2013-03-14 20:55:08 ----A---- C:\Windows\SYSWOW64\SetIEInstalledDate.exe
2013-03-14 20:55:08 ----A---- C:\Windows\SYSWOW64\RegisterIEPKEYs.exe
2013-03-14 20:55:08 ----A---- C:\Windows\SYSWOW64\pngfilt.dll
2013-03-14 20:55:08 ----A---- C:\Windows\SYSWOW64\occache.dll
2013-03-14 20:55:08 ----A---- C:\Windows\SYSWOW64\msrating.dll
2013-03-14 20:55:08 ----A---- C:\Windows\SYSWOW64\msls31.dll
2013-03-14 20:55:08 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2013-03-14 20:55:08 ----A---- C:\Windows\SYSWOW64\mshtmler.dll
2013-03-14 20:55:08 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2013-03-14 20:55:08 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2013-03-14 20:55:08 ----A---- C:\Windows\SYSWOW64\mshta.exe
2013-03-14 20:55:08 ----A---- C:\Windows\SYSWOW64\msfeedssync.exe
2013-03-14 20:55:08 ----A---- C:\Windows\SYSWOW64\msfeedsbs.dll
2013-03-14 20:55:08 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2013-03-14 20:55:08 ----A---- C:\Windows\SYSWOW64\licmgr10.dll
2013-03-14 20:55:08 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2013-03-14 20:55:08 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2013-03-14 20:55:08 ----A---- C:\Windows\SYSWOW64\jscript.dll
2013-03-14 20:55:08 ----A---- C:\Windows\SYSWOW64\inseng.dll
2013-03-14 20:55:08 ----A---- C:\Windows\SYSWOW64\imgutil.dll
2013-03-14 20:55:08 ----A---- C:\Windows\SYSWOW64\iexpress.exe
2013-03-14 20:55:08 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2013-03-14 20:55:08 ----A---- C:\Windows\SYSWOW64\ieui.dll
2013-03-14 20:55:08 ----A---- C:\Windows\SYSWOW64\iesysprep.dll
2013-03-14 20:55:08 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2013-03-14 20:55:08 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2013-03-14 20:55:08 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2013-03-14 20:55:08 ----A---- C:\Windows\SYSWOW64\iepeers.dll
2013-03-14 20:55:08 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2013-03-14 20:55:08 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2013-03-14 20:55:08 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2013-03-14 20:55:08 ----A---- C:\Windows\SYSWOW64\IEAdvpack.dll
2013-03-14 20:55:08 ----A---- C:\Windows\SYSWOW64\icardie.dll
2013-03-14 20:55:08 ----A---- C:\Windows\SYSWOW64\elshyph.dll
2013-03-14 20:55:08 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2013-03-14 20:55:08 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2013-03-14 20:55:08 ----A---- C:\Windows\system32\wininet.dll
2013-03-14 20:55:08 ----A---- C:\Windows\system32\wextract.exe
2013-03-14 20:55:08 ----A---- C:\Windows\system32\webcheck.dll
2013-03-14 20:55:08 ----A---- C:\Windows\system32\vbscript.dll
2013-03-14 20:55:08 ----A---- C:\Windows\system32\urlmon.dll
2013-03-14 20:55:08 ----A---- C:\Windows\system32\url.dll
2013-03-14 20:55:08 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2013-03-14 20:55:08 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2013-03-14 20:55:08 ----A---- C:\Windows\system32\pngfilt.dll
2013-03-14 20:55:08 ----A---- C:\Windows\system32\occache.dll
2013-03-14 20:55:08 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2013-03-14 20:55:08 ----A---- C:\Windows\system32\msrating.dll
2013-03-14 20:55:08 ----A---- C:\Windows\system32\msls31.dll
2013-03-14 20:55:08 ----A---- C:\Windows\system32\mshtmlmedia.dll
2013-03-14 20:55:08 ----A---- C:\Windows\system32\mshtmler.dll
2013-03-14 20:55:08 ----A---- C:\Windows\system32\mshtmled.dll
2013-03-14 20:55:08 ----A---- C:\Windows\system32\mshtml.dll
2013-03-14 20:55:08 ----A---- C:\Windows\system32\mshta.exe
2013-03-14 20:55:08 ----A---- C:\Windows\system32\msfeedssync.exe
2013-03-14 20:55:08 ----A---- C:\Windows\system32\msfeedsbs.dll
2013-03-14 20:55:08 ----A---- C:\Windows\system32\msfeeds.dll
2013-03-14 20:55:08 ----A---- C:\Windows\system32\licmgr10.dll
2013-03-14 20:55:08 ----A---- C:\Windows\system32\jsproxy.dll
2013-03-14 20:55:08 ----A---- C:\Windows\system32\jscript9.dll
2013-03-14 20:55:08 ----A---- C:\Windows\system32\jscript.dll
2013-03-14 20:55:08 ----A---- C:\Windows\system32\inseng.dll
2013-03-14 20:55:08 ----A---- C:\Windows\system32\imgutil.dll
2013-03-14 20:55:08 ----A---- C:\Windows\system32\iexpress.exe
2013-03-14 20:55:08 ----A---- C:\Windows\system32\ieUnatt.exe
2013-03-14 20:55:08 ----A---- C:\Windows\system32\ieui.dll
2013-03-14 20:55:08 ----A---- C:\Windows\system32\iesysprep.dll
2013-03-14 20:55:08 ----A---- C:\Windows\system32\iesetup.dll
2013-03-14 20:55:08 ----A---- C:\Windows\system32\iertutil.dll
2013-03-14 20:55:08 ----A---- C:\Windows\system32\iernonce.dll
2013-03-14 20:55:08 ----A---- C:\Windows\system32\iepeers.dll
2013-03-14 20:55:08 ----A---- C:\Windows\system32\ieframe.dll
2013-03-14 20:55:08 ----A---- C:\Windows\system32\iedkcs32.dll
2013-03-14 20:55:08 ----A---- C:\Windows\system32\ieapfltr.dll
2013-03-14 20:55:08 ----A---- C:\Windows\system32\IEAdvpack.dll
2013-03-14 20:55:08 ----A---- C:\Windows\system32\ie4uinit.exe
2013-03-14 20:55:08 ----A---- C:\Windows\system32\icardie.dll
2013-03-14 20:55:08 ----A---- C:\Windows\system32\elshyph.dll
2013-03-14 20:55:08 ----A---- C:\Windows\system32\dxtrans.dll
2013-03-14 20:55:08 ----A---- C:\Windows\system32\dxtmsft.dll
2013-03-14 20:53:00 ----A---- C:\Windows\system32\drivers\usb8023.sys
2013-03-08 18:34:11 ----D---- C:\Program Files (x86)\Mozilla Firefox
2013-03-06 21:18:44 ----D---- C:\Program Files (x86)\Adobe
2013-03-06 20:57:12 ----D---- C:\Windows\SYSWOW64\RTCOM
2013-03-06 20:56:52 ----A---- C:\Windows\system32\WavesGUILib.dll
2013-03-06 20:56:51 ----A---- C:\Windows\system32\tosade.dll
2013-03-06 20:56:51 ----A---- C:\Windows\system32\tepeqapo64.dll
2013-03-06 20:56:51 ----A---- C:\Windows\system32\tadefxapo264.dll
2013-03-06 20:56:50 ----A---- C:\Windows\system32\tadefxapo.dll
2013-03-06 20:56:50 ----A---- C:\Windows\system32\SRSWOW64.dll
2013-03-06 20:56:50 ----A---- C:\Windows\system32\SRSTSX64.dll
2013-03-06 20:56:50 ----A---- C:\Windows\system32\SRSTSH64.dll
2013-03-06 20:56:50 ----A---- C:\Windows\system32\SRSHP64.dll
2013-03-06 20:56:41 ----A---- C:\Windows\system32\SFSS_APO.dll
2013-03-06 20:56:40 ----A---- C:\Windows\system32\SFNHK64.dll
2013-03-06 20:56:39 ----A---- C:\Windows\SYSWOW64\SFCOM.dll
2013-03-06 20:56:39 ----A---- C:\Windows\system32\SFCOM64.dll
2013-03-06 20:56:39 ----A---- C:\Windows\system32\SFAPO64.dll
2013-03-06 20:56:36 ----A---- C:\Windows\system32\RtPgEx64.dll
2013-03-06 20:56:35 ----A---- C:\Windows\system32\RtlCPAPI64.dll
2013-03-06 20:56:34 ----A---- C:\Windows\system32\drivers\RTKVHD64.sys
2013-03-06 20:56:31 ----A---- C:\Windows\system32\RtkCoLDR64.dll
2013-03-06 20:56:31 ----A---- C:\Windows\system32\RtkCfg64.dll
2013-03-06 20:56:30 ----A---- C:\Windows\system32\RtkAPO64.dll
2013-03-06 20:56:29 ----A---- C:\Windows\system32\RtkApi64.dll
2013-03-06 20:56:29 ----A---- C:\Windows\system32\RTEEP64A.dll
2013-03-06 20:56:29 ----A---- C:\Windows\system32\RTEEL64A.dll
2013-03-06 20:56:29 ----A---- C:\Windows\system32\RTEEG64A.dll
2013-03-06 20:56:29 ----A---- C:\Windows\system32\RTEED64A.dll
2013-03-06 20:56:27 ----A---- C:\Windows\system32\RTCOM64.dll
2013-03-06 20:56:27 ----A---- C:\Windows\system32\RP3DHT64.dll
2013-03-06 20:56:26 ----A---- C:\Windows\system32\RP3DAA64.dll
2013-03-06 20:56:20 ----A---- C:\Windows\system32\RCoInstII64.dll
2013-03-06 20:56:13 ----A---- C:\Windows\system32\R4EEP64A.dll
2013-03-06 20:56:13 ----A---- C:\Windows\system32\R4EEL64A.dll
2013-03-06 20:56:13 ----A---- C:\Windows\system32\R4EEG64A.dll
2013-03-06 20:56:12 ----A---- C:\Windows\system32\R4EED64A.dll
2013-03-06 20:56:12 ----A---- C:\Windows\system32\R4EEA64A.dll
2013-03-06 20:56:09 ----A---- C:\Windows\system32\MaxxVolumeSDAPO.dll
2013-03-06 20:56:08 ----A---- C:\Windows\system32\MaxxAudioRealtek264.dll
2013-03-06 20:56:04 ----A---- C:\Windows\system32\MaxxAudioRealtek.dll
2013-03-06 20:56:02 ----A---- C:\Windows\system32\MaxxAudioEQ.dll
2013-03-06 20:56:00 ----A---- C:\Windows\system32\MaxxAudioAPOShell64.dll
2013-03-06 20:55:59 ----A---- C:\Windows\system32\MaxxAudioAPO30.dll
2013-03-06 20:55:59 ----A---- C:\Windows\system32\MaxxAudioAPO20.dll
2013-03-06 20:55:58 ----A---- C:\Windows\system32\KAAPORT64.dll
2013-03-06 20:55:43 ----A---- C:\Windows\system32\FMAPO64.dll
2013-03-06 20:55:43 ----A---- C:\Windows\system32\DTSVoiceClarityDLL64.dll
2013-03-06 20:55:42 ----A---- C:\Windows\system32\DTSU2PREC64.dll
2013-03-06 20:55:41 ----A---- C:\Windows\system32\DTSU2PLFX64.dll
2013-03-06 20:55:41 ----A---- C:\Windows\system32\DTSU2PGFX64.dll
2013-03-06 20:55:41 ----A---- C:\Windows\system32\DTSSymmetryDLL64.dll
2013-03-06 20:55:39 ----A---- C:\Windows\system32\DTSS2SpeakerDLL64.dll
2013-03-06 20:55:39 ----A---- C:\Windows\system32\DTSS2HeadphoneDLL64.dll
2013-03-06 20:55:38 ----A---- C:\Windows\system32\DTSNeoPCDLL64.dll
2013-03-06 20:55:38 ----A---- C:\Windows\system32\DTSLimiterDLL64.dll
2013-03-06 20:55:38 ----A---- C:\Windows\system32\DTSLFXAPO64.dll
2013-03-06 20:55:37 ----A---- C:\Windows\system32\DTSGFXAPONS64.dll
2013-03-06 20:55:37 ----A---- C:\Windows\system32\DTSGFXAPO64.dll
2013-03-06 20:55:37 ----A---- C:\Windows\system32\DTSGainCompensatorDLL64.dll
2013-03-06 20:55:37 ----A---- C:\Windows\system32\DTSBoostDLL64.dll
2013-03-06 20:55:36 ----A---- C:\Windows\system32\DTSBassEnhancementDLL64.dll
2013-03-06 20:55:32 ----A---- C:\Windows\system32\AERTAR64.dll
2013-03-06 20:55:31 ----A---- C:\Windows\system32\AERTAC64.dll
2013-03-06 13:31:18 ----A---- C:\Windows\SYSWOW64\javaws.exe
2013-03-06 13:31:08 ----A---- C:\Windows\SYSWOW64\WindowsAccessBridge-32.dll
2013-03-06 13:31:08 ----A---- C:\Windows\SYSWOW64\javaw.exe
2013-03-06 13:31:08 ----A---- C:\Windows\SYSWOW64\java.exe
2013-03-06 13:31:04 ----D---- C:\Program Files (x86)\Java
2013-03-05 13:56:06 ----A---- C:\Windows\system32\nvdispgenco6431414.dll
2013-03-05 13:56:06 ----A---- C:\Windows\system32\nvdispco6431414.dll
2013-03-05 13:14:38 ----A---- C:\Windows\SYSWOW64\FsUsbExService.Exe
2013-03-05 13:14:38 ----A---- C:\Windows\SYSWOW64\FsUsbExDisk.Sys
2013-03-05 13:14:38 ----A---- C:\Windows\SYSWOW64\FsUsbExDevice.Dll
2013-02-27 22:28:01 ----A---- C:\Windows\SYSWOW64\UIAnimation.dll
2013-02-27 22:28:01 ----A---- C:\Windows\SYSWOW64\msmpeg2vdec.dll
2013-02-27 22:28:01 ----A---- C:\Windows\system32\UIAnimation.dll
2013-02-27 22:28:01 ----A---- C:\Windows\system32\msmpeg2vdec.dll
2013-02-27 22:27:53 ----A---- C:\Windows\SYSWOW64\WMPhoto.dll
2013-02-27 22:27:53 ----A---- C:\Windows\system32\WMPhoto.dll
2013-02-27 22:27:50 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-version-l1-1-0.dll
2013-02-27 22:27:50 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2013-02-27 22:27:50 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll
2013-02-27 22:27:50 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2013-02-27 22:27:50 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll
2013-02-27 22:27:50 ----AH---- C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2013-02-27 22:27:50 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2013-02-27 22:27:50 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2013-02-27 22:27:50 ----AH---- C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2013-02-27 22:27:50 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2013-02-27 22:27:50 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2013-02-27 22:27:50 ----A---- C:\Windows\SYSWOW64\XpsGdiConverter.dll
2013-02-27 22:27:50 ----A---- C:\Windows\SYSWOW64\d3d10warp.dll
2013-02-27 22:27:50 ----A---- C:\Windows\SYSWOW64\d3d10_1.dll
2013-02-27 22:27:50 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2013-02-27 22:27:50 ----A---- C:\Windows\system32\d3d10warp.dll
2013-02-27 22:27:50 ----A---- C:\Windows\system32\d3d10_1.dll
2013-02-27 22:27:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-user32-l1-1-0.dll
2013-02-27 22:27:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2013-02-27 22:27:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
2013-02-27 22:27:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll
2013-02-27 22:27:49 ----AH---- C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2013-02-27 22:27:49 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2013-02-27 22:27:49 ----AH---- C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2013-02-27 22:27:49 ----A---- C:\Windows\SYSWOW64\dxgi.dll
2013-02-27 22:27:49 ----A---- C:\Windows\SYSWOW64\d3d11.dll
2013-02-27 22:27:49 ----A---- C:\Windows\SYSWOW64\d3d10level9.dll
2013-02-27 22:27:49 ----A---- C:\Windows\SYSWOW64\d3d10core.dll
2013-02-27 22:27:49 ----A---- C:\Windows\SYSWOW64\d3d10_1core.dll
2013-02-27 22:27:49 ----A---- C:\Windows\SYSWOW64\d3d10.dll
2013-02-27 22:27:49 ----A---- C:\Windows\system32\dxgi.dll
2013-02-27 22:27:49 ----A---- C:\Windows\system32\d3d11.dll
2013-02-27 22:27:49 ----A---- C:\Windows\system32\d3d10level9.dll
2013-02-27 22:27:49 ----A---- C:\Windows\system32\d3d10core.dll
2013-02-27 22:27:49 ----A---- C:\Windows\system32\d3d10_1core.dll
2013-02-27 22:27:48 ----A---- C:\Windows\SYSWOW64\XpsPrint.dll
2013-02-27 22:27:48 ----A---- C:\Windows\SYSWOW64\WindowsCodecsExt.dll
2013-02-27 22:27:48 ----A---- C:\Windows\SYSWOW64\WindowsCodecs.dll
2013-02-27 22:27:48 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2013-02-27 22:27:48 ----A---- C:\Windows\system32\XpsPrint.dll
2013-02-27 22:27:48 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
2013-02-27 22:27:48 ----A---- C:\Windows\system32\WindowsCodecs.dll
2013-02-27 22:27:48 ----A---- C:\Windows\system32\FntCache.dll
2013-02-27 22:27:48 ----A---- C:\Windows\system32\DWrite.dll
2013-02-27 22:27:48 ----A---- C:\Windows\system32\d3d10.dll
2013-02-27 22:27:48 ----A---- C:\Windows\system32\d2d1.dll
2013-02-27 22:27:47 ----A---- C:\Windows\SYSWOW64\d2d1.dll

======List of files/folders modified in the last 1 months======

2013-03-26 14:41:10 ----D---- C:\Windows\Temp
2013-03-26 14:38:26 ----D---- C:\Windows\system32\config
2013-03-26 14:35:51 ----SHD---- C:\Windows\Installer
2013-03-26 14:35:51 ----HD---- C:\Config.Msi
2013-03-26 14:35:51 ----D---- C:\Windows\SysWOW64
2013-03-26 14:35:50 ----D---- C:\Windows\System32
2013-03-26 14:35:49 ----DC---- C:\Windows\system32\DRVSTORE
2013-03-26 14:35:49 ----D---- C:\Windows\system32\drivers
2013-03-26 14:35:49 ----D---- C:\Windows\system32\catroot
2013-03-26 14:35:47 ----HD---- C:\ProgramData
2013-03-26 14:35:46 ----SHD---- C:\System Volume Information
2013-03-26 14:16:35 ----D---- C:\Windows\system32\Tasks
2013-03-26 13:59:38 ----D---- C:\Windows\Minidump
2013-03-26 13:53:10 ----A---- C:\Windows\SYSWOW64\log.txt
2013-03-26 13:51:34 ----D---- C:\Windows
2013-03-26 13:49:25 ----D---- C:\Windows\inf
2013-03-26 13:49:24 ----D---- C:\ProgramData\NVIDIA
2013-03-26 13:35:59 ----D---- C:\Windows\system32\LogFiles
2013-03-26 13:20:31 ----D---- C:\Windows\system32\DriverStore
2013-03-26 13:20:00 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2013-03-26 13:18:56 ----D---- C:\Windows\system32\catroot2
2013-03-26 13:17:07 ----D---- C:\ProgramData\NVIDIA Corporation
2013-03-26 13:17:06 ----D---- C:\Windows\Microsoft.NET
2013-03-26 09:23:14 ----D---- C:\Users\Petr\AppData\Roaming\Media Player Classic
2013-03-25 23:19:37 ----D---- C:\Users\Petr\AppData\Roaming\uTorrent
2013-03-25 08:17:40 ----D---- C:\Windows\Prefetch
2013-03-18 11:15:07 ----D---- C:\ProgramData\Blizzard Entertainment
2013-03-17 21:44:55 ----RD---- C:\Program Files
2013-03-16 01:47:20 ----D---- C:\Windows\rescache
2013-03-15 18:58:07 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2013-03-15 06:53:06 ----A---- C:\Windows\SYSWOW64\nvd3dum.dll
2013-03-15 06:53:06 ----A---- C:\Windows\SYSWOW64\nvapi.dll
2013-03-15 06:53:06 ----A---- C:\Windows\system32\nvwgf2umx.dll
2013-03-15 06:53:06 ----A---- C:\Windows\system32\nvumdshimx.dll
2013-03-15 06:53:06 ----A---- C:\Windows\system32\nvapi64.dll
2013-03-15 05:16:18 ----A---- C:\Windows\system32\nvsvc64.dll
2013-03-15 05:16:17 ----A---- C:\Windows\system32\nvcpl.dll
2013-03-15 05:16:10 ----A---- C:\Windows\system32\nvvsvc.exe
2013-03-15 05:16:10 ----A---- C:\Windows\system32\nvsvcr.dll
2013-03-15 05:16:10 ----A---- C:\Windows\system32\nvshext.dll
2013-03-15 05:16:10 ----A---- C:\Windows\system32\nvmctray.dll
2013-03-14 21:03:50 ----D---- C:\Windows\winsxs
2013-03-14 21:03:04 ----D---- C:\Windows\Panther
2013-03-14 21:00:59 ----D---- C:\Windows\SYSWOW64\migration
2013-03-14 21:00:59 ----D---- C:\Windows\SYSWOW64\en-US
2013-03-14 21:00:59 ----D---- C:\Windows\SYSWOW64\cs-CZ
2013-03-14 21:00:59 ----D---- C:\Windows\system32\cs-CZ
2013-03-14 21:00:59 ----D---- C:\Program Files\Internet Explorer
2013-03-14 21:00:59 ----D---- C:\Program Files (x86)\Internet Explorer
2013-03-14 21:00:58 ----D---- C:\Windows\system32\migration
2013-03-14 21:00:58 ----D---- C:\Windows\system32\en-US
2013-03-14 21:00:58 ----D---- C:\Windows\PolicyDefinitions
2013-03-14 21:00:58 ----D---- C:\Windows\AppPatch
2013-03-14 20:58:27 ----D---- C:\Windows\debug
2013-03-14 20:58:25 ----A---- C:\Windows\system32\MRT.exe
2013-03-14 20:58:06 ----D---- C:\Windows\Logs
2013-03-09 09:04:48 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2013-03-08 22:56:51 ----RD---- C:\Program Files (x86)
2013-03-07 00:32:22 ----A---- C:\Windows\system32\aswBoot.exe
2013-03-06 21:18:47 ----D---- C:\Users\Petr\AppData\Roaming\Adobe
2013-03-06 21:16:21 ----D---- C:\Users\Petr\AppData\Roaming\DAEMON Tools Lite
2013-03-06 20:57:40 ----HD---- C:\Program Files (x86)\Temp
2013-03-06 20:55:25 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2013-03-06 20:52:24 ----D---- C:\Program Files (x86)\Realtek
2013-03-06 18:38:47 ----D---- C:\ProgramData\Adobe
2013-03-06 17:58:59 ----D---- C:\Windows\Resources
2013-03-06 13:31:04 ----A---- C:\Windows\SYSWOW64\npdeployJava1.dll
2013-03-06 13:31:04 ----A---- C:\Windows\SYSWOW64\deployJava1.dll
2013-03-05 23:27:27 ----D---- C:\ProgramData\PMB Files
2013-03-05 13:50:49 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-03-01 19:47:03 ----D---- C:\ProgramData\Microsoft Help
2013-03-01 19:47:02 ----RSD---- C:\Windows\assembly
2013-02-28 16:38:08 ----D---- C:\Windows\SYSWOW64\zh-HK
2013-02-28 16:38:08 ----D---- C:\Windows\SYSWOW64\tr-TR
2013-02-28 16:38:08 ----D---- C:\Windows\SYSWOW64\pt-PT
2013-02-28 16:38:08 ----D---- C:\Windows\SYSWOW64\pt-BR
2013-02-28 16:38:08 ----D---- C:\Windows\SYSWOW64\pl-PL
2013-02-28 16:38:08 ----D---- C:\Windows\SYSWOW64\nl-NL
2013-02-28 16:38:08 ----D---- C:\Windows\SYSWOW64\ko-KR
2013-02-28 16:38:08 ----D---- C:\Windows\SYSWOW64\it-IT
2013-02-28 16:38:08 ----D---- C:\Windows\SYSWOW64\hu-HU
2013-02-28 16:38:08 ----D---- C:\Windows\SYSWOW64\fr-FR
2013-02-28 16:38:08 ----D---- C:\Windows\SYSWOW64\fi-FI
2013-02-28 16:38:08 ----D---- C:\Windows\SYSWOW64\el-GR
2013-02-28 16:38:07 ----D---- C:\Windows\SYSWOW64\zh-TW
2013-02-28 16:38:07 ----D---- C:\Windows\SYSWOW64\zh-CN
2013-02-28 16:38:07 ----D---- C:\Windows\SYSWOW64\sv-SE
2013-02-28 16:38:07 ----D---- C:\Windows\SYSWOW64\ru-RU
2013-02-28 16:38:07 ----D---- C:\Windows\SYSWOW64\nb-NO
2013-02-28 16:38:07 ----D---- C:\Windows\SYSWOW64\ja-JP
2013-02-28 16:38:07 ----D---- C:\Windows\SYSWOW64\es-ES
2013-02-28 16:38:07 ----D---- C:\Windows\SYSWOW64\de-DE
2013-02-28 16:38:07 ----D---- C:\Windows\SYSWOW64\da-DK
2013-02-28 16:38:06 ----D---- C:\Windows\system32\zh-HK
2013-02-28 16:38:06 ----D---- C:\Windows\system32\pt-PT
2013-02-28 16:38:06 ----D---- C:\Windows\system32\pt-BR
2013-02-28 16:38:06 ----D---- C:\Windows\system32\pl-PL
2013-02-28 16:38:06 ----D---- C:\Windows\system32\nl-NL
2013-02-28 16:38:06 ----D---- C:\Windows\system32\ko-KR
2013-02-28 16:38:06 ----D---- C:\Windows\system32\it-IT
2013-02-28 16:38:06 ----D---- C:\Windows\system32\hu-HU
2013-02-28 16:38:06 ----D---- C:\Windows\system32\el-GR
2013-02-28 16:38:05 ----D---- C:\Windows\system32\zh-TW
2013-02-28 16:38:05 ----D---- C:\Windows\system32\zh-CN
2013-02-28 16:38:05 ----D---- C:\Windows\system32\tr-TR
2013-02-28 16:38:05 ----D---- C:\Windows\system32\sv-SE
2013-02-28 16:38:05 ----D---- C:\Windows\system32\ru-RU
2013-02-28 16:38:05 ----D---- C:\Windows\system32\nb-NO
2013-02-28 16:38:05 ----D---- C:\Windows\system32\ja-JP
2013-02-28 16:38:05 ----D---- C:\Windows\system32\fr-FR
2013-02-28 16:38:05 ----D---- C:\Windows\system32\fi-FI
2013-02-28 16:38:05 ----D---- C:\Windows\system32\es-ES
2013-02-28 16:38:05 ----D---- C:\Windows\system32\de-DE
2013-02-28 16:38:04 ----D---- C:\Windows\system32\da-DK

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 asahci64;asahci64; C:\Windows\system32\DRIVERS\asahci64.sys [2012-01-06 49760]
R0 aswKbd;aswKbd; C:\Windows\system32\drivers\aswKbd.sys [2013-03-07 22600]
R0 aswNdis;avast! Firewall NDIS Filter Service; C:\Windows\system32\DRIVERS\aswNdis.sys [2011-11-28 12368]
R0 aswNdis2;avast! Firewall Core Firewall Service; C:\Windows\system32\drivers\aswNdis2.sys [2013-03-07 263096]
R0 aswRvrt;aswRvrt; C:\Windows\system32\drivers\aswRvrt.sys [2013-03-07 65336]
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2012-02-01 568600]
R0 iusb3hcs;Ovladač přepínání hostitelského řadiče Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3hcs.sys [2012-05-20 19264]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 speedfan;speedfan; C:\Windows\SysWOW64\speedfan.sys [2011-03-18 29592]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2012-06-13 560184]
R1 aswFW;avast! TDI Firewall driver; C:\Windows\system32\drivers\aswFW.sys [2013-03-07 127136]
R1 aswRdr;aswRdr; C:\Windows\System32\Drivers\aswrdr2.sys [2013-03-07 70992]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2013-03-07 1025808]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2013-03-07 377920]
R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2013-03-07 68920]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2012-10-10 283200]
R2 aswFsBlk;aswFsBlk; C:\Windows\system32\drivers\aswFsBlk.sys [2013-03-07 33400]
R2 aswMonFlt;aswMonFlt; \??\C:\Windows\system32\drivers\aswMonFlt.sys [2013-03-07 80816]
R2 DefragFS;DefragFS; C:\Windows\system32\drivers\DefragFS.sys [2009-08-20 101904]
R2 NPF;NetGroup Packet Filter Driver; C:\Windows\system32\drivers\npf.sys [2010-06-25 35344]
R3 asmthub3;ASMedia USB3 Hub Service; C:\Windows\system32\DRIVERS\asmthub3.sys [2011-11-03 130536]
R3 asmtxhci;ASMEDIA XHCI Service; C:\Windows\system32\DRIVERS\asmtxhci.sys [2011-11-03 395752]
R3 e1cexpress;Intel(R) PRO/1000 PCI Express Network Connection Driver C; C:\Windows\system32\DRIVERS\e1c62x64.sys [2012-03-15 514736]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\Windows\system32\DRIVERS\GEARAspiWDM.sys [2012-08-21 33240]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2012-06-12 4060560]
R3 iusb3hub;Ovladač rozbočovače Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3hub.sys [2012-05-20 357184]
R3 iusb3xhc;Ovladač rozšiřitelného hostitelského řadiče Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3xhc.sys [2012-05-20 789824]
R3 LGBusEnum;Logitech GamePanel Virtual Bus Enumerator Driver; C:\Windows\system32\drivers\LGBusEnum.sys [2009-11-23 22408]
R3 LGVirHid;Logitech Gamepanel Virtual HID Device Driver; C:\Windows\system32\drivers\LGVirHid.sys [2009-11-23 16008]
R3 LHidFilt;Logitech SetPoint KMDF HID Filter Driver; C:\Windows\system32\DRIVERS\LHidFilt.Sys [2011-09-02 66840]
R3 LMouFilt;Logitech SetPoint KMDF Mouse Filter Driver; C:\Windows\system32\DRIVERS\LMouFilt.Sys [2011-09-02 60696]
R3 LUsbFilt;Logitech SetPoint KMDF USB Filter; C:\Windows\System32\Drivers\LUsbFilt.Sys [2011-09-02 42776]
R3 MEIx64;Intel(R) Management Engine Interface ; C:\Windows\system32\DRIVERS\HECIx64.sys [2012-07-02 62784]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda64v.sys [2013-01-28 194488]
R3 StillCam;Ovladač digitálního fotoaparátu pro sériový port; C:\Windows\system32\DRIVERS\serscan.sys [2009-07-14 12288]
S3 androidusb;SAMSUNG Android Composite ADB Interface Driver; C:\Windows\System32\Drivers\ssadadb.sys [2010-12-21 36328]
S3 aswVmm;aswVmm; C:\Windows\system32\drivers\aswVmm.sys [2013-03-07 178624]
S3 Dot4;MS IEEE-1284.4 Driver; C:\Windows\system32\DRIVERS\Dot4.sys [2009-07-14 145920]
S3 Dot4Print;Print Class Driver for IEEE-1284.4; C:\Windows\system32\DRIVERS\Dot4Prt.sys [2010-11-20 19968]
S3 dot4usb;MS Dot4USB Filter Dot4USB Filter; C:\Windows\system32\DRIVERS\dot4usb.sys [2009-07-14 43008]
S3 FsUsbExDisk;FsUsbExDisk; \??\C:\Windows\SysWOW64\FsUsbExDisk.SYS [2013-02-05 37344]
S3 GenericMount;Generic Mount Driver; C:\Windows\system32\DRIVERS\GenericMount.sys [2010-02-12 66608]
S3 IT9135BDA;IT9135 BDA Devices; C:\Windows\System32\Drivers\IT9135BDA.sys [2013-02-10 165504]
S3 LEqdUsb;Logitech SetPoint Unifying KMDF USB Filter; C:\Windows\system32\drivers\LEqdUsb.Sys [2011-09-02 76056]
S3 LHidEqd;Logitech SetPoint Unifying KMDF HID Filter; C:\Windows\system32\drivers\LHidEqd.Sys [2011-09-02 15128]
S3 MBAMProtector;MBAMProtector; \??\C:\Windows\system32\drivers\mbam.sys [2012-04-04 24904]
S3 MEMSWEEP2;MEMSWEEP2; \??\C:\Windows\syswow64\A054.tmp []
S3 NvStUSB;NVIDIA Stereoscopic 3D USB driver; C:\Windows\system32\drivers\nvstusb.sys [2012-03-01 398144]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2009-03-01 187392]
S3 secubus;Samsung Mobile USB Modem driver (WDM); C:\Windows\system32\drivers\secubus.sys [2010-12-21 118784]
S3 shspusb;Samsung High Speed USB Driver disks; C:\Windows\system32\drivers\HSPUSB.sys [2010-12-21 24064]
S3 ss_bbus;SAMSUNG USB Mobile Device (WDM); C:\Windows\system32\drivers\ss_bbus.sys [2010-12-21 127488]
S3 ss_bserd;SAMSUNG USB Mobile Logging Driver; C:\Windows\system32\drivers\ss_bserd.sys [2010-12-21 128000]
S3 ss_bus;SAMSUNG Mobile USB Device 1.0 driver (WDM); C:\Windows\system32\drivers\ss_bus.sys [2010-12-21 127488]
S3 ssadbus;SAMSUNG Android USB Composite Device driver (WDM); C:\Windows\system32\DRIVERS\ssadbus.sys [2011-06-02 157672]
S3 ssadmdfl;SAMSUNG Android USB Modem (Filter); C:\Windows\system32\DRIVERS\ssadmdfl.sys [2011-06-02 16872]
S3 ssadmdm;SAMSUNG Android USB Modem Drivers; C:\Windows\system32\DRIVERS\ssadmdm.sys [2011-06-02 177640]
S3 ssadserd;SAMSUNG Android USB Diagnostic Serial Port (WDM); C:\Windows\system32\DRIVERS\ssadserd.sys [2011-06-02 146920]
S3 ssaebus;SAMSUNG Android Composite Device driver (WDM); C:\Windows\system32\drivers\ssaebus.sys [2010-12-21 136264]
S3 ssaeunic;SAMSUNG Android Networking (CDC/EEM Ethernet) Drivers (WDM); C:\Windows\system32\drivers\ssaeunic.sys [2010-12-21 178760]
S3 ssbcbus;SAMSUNG Mobile Composite Device (WDM); C:\Windows\system32\drivers\ssbcbus.sys [2010-12-21 108032]
S3 sscdbus;SAMSUNG USB Composite Device driver (WDM); C:\Windows\system32\drivers\sscdbus.sys [2010-12-21 136264]
S3 sscdserd;SAMSUNG Mobile Modem Diagnostic Serial Port (WDM); C:\Windows\system32\drivers\sscdserd.sys [2010-12-21 141384]
S3 sscebus;SAMSUNG USB Composite Device V2 driver (WDM); C:\Windows\system32\drivers\sscebus.sys [2010-12-21 127488]
S3 ssceserd;SAMSUNG Mobile Modem Diagnostic Serial Port V2 (WDM); C:\Windows\system32\drivers\ssceserd.sys [2010-12-21 129024]
S3 ssdudfu;SAMSUNG Mobile USB DFU2 Device; C:\Windows\system32\drivers\ssdudfu.sys [2011-07-13 101960]
S3 ssecbus;Samsung Mobile Modem Device driver (WDM); C:\Windows\system32\drivers\ssecbus.sys [2010-12-21 113664]
S3 ssecmgmt;Samsung Mobile Device Management Drivers (WDM); C:\Windows\system32\drivers\ssecmgmt.sys [2010-12-21 132096]
S3 ssecobex;Samsung Mobile OBEX Interface; C:\Windows\system32\drivers\ssecobex.sys [2010-12-21 127488]
S3 ssecunic;Samsung Mobile Ethernet (WDM); C:\Windows\system32\drivers\ssecunic.sys [2010-12-21 145408]
S3 ssm_bus;SAMSUNG Mobile USB Device II 1.0 driver (WDM); C:\Windows\system32\drivers\ssm_bus.sys [2010-12-21 136192]
S3 ssm_mdm;SAMSUNG Mobile USB Port II 1.0 Drivers; C:\Windows\system32\drivers\ssm_mdm.sys [2010-12-21 172032]
S3 sssdbus;SAMSUNG WMC Composite Device driver (WDM); C:\Windows\system32\drivers\sssdbus.sys [2010-12-21 129352]
S3 sssdmgmt;SAMSUNG AT command Port Drivers (WDM); C:\Windows\system32\drivers\sssdmgmt.sys [2010-12-21 142664]
S3 sssdobex;SAMSUNG OBEX Port Drivers (WDM); C:\Windows\system32\drivers\sssdobex.sys [2010-12-21 138056]
S3 terminpt;Microsoft Remote Desktop Input Driver; C:\Windows\system32\drivers\terminpt.sys [2012-08-23 29696]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2012-08-23 57856]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2012-08-23 30208]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2009-07-14 41984]
S3 usbser;USB Virtual COM Driver; C:\Windows\system32\drivers\usbser.sys [2010-11-20 32768]
S3 VIA_USB_ETS;VIA Telecom USB ETS Driver; C:\Windows\system32\drivers\VIA_USB_ETS.sys [2010-12-21 21760]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-12-18 65192]
R2 AllShare Framework DMS;AllShare Framework DMS; C:\Program Files\Samsung\AllShare Framework DMS\1.3.06\AllShareFrameworkManagerDMS.exe [2012-10-23 408184]
R2 AllShare Play Service;AllShare Play Service; D:\Utility\AllShare Play\AllShare Play Service.exe [2013-02-21 662600]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2013-03-07 45248]
R2 avast! Firewall;avast! Firewall; C:\Program Files\AVAST Software\Avast\afwServ.exe [2013-03-07 136912]
R2 DTSAudioSvc;DTSAudioSvc; C:\Program Files\Realtek\Audio\HDA\DTSU2PAuSrv64.exe [2012-01-23 233328]
R2 HiPatchService;Hi-Rez Studios Authenticate and Update Service; D:\Hry\Tribes Ascend\HiPatchService.exe [2012-12-04 8704]
R2 hpqddsvc;Služba HP CUE DeviceDiscovery; C:\Windows\system32\svchost.exe [2009-07-14 27136]
R2 HPSLPSVC;HP Network Devices Support; C:\Windows\system32\svchost.exe [2009-07-14 27136]
R2 IAStorDataMgrSvc;Úložná technologie Intel(R) Rapid; C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2012-02-01 13592]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-04-20 635104]
R2 Intel(R) PROSet Monitoring Service;Intel(R) PROSet Monitoring Service; C:\Windows\system32\IProsetMonitor.exe [2012-06-05 190824]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2012-06-25 166720]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-07-17 277824]
R2 Net Driver HPZ12;Net Driver HPZ12; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2013-03-15 877856]
R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2013-03-24 1927968]
R2 PDAgent;PDAgent; D:\Utility\PerfectDisk 10\PDAgent.exe [2010-01-26 1503496]
R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 PnkBstrA;PnkBstrA; C:\Windows\syswow64\PnkBstrA.exe [2013-02-13 76888]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2013-03-14 383264]
R2 TomTomHOMEService;TomTomHOMEService; D:\Utility\TomTom HOME 2\TomTomHOMEService.exe [2012-08-28 92632]
R2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2012-07-17 365376]
R3 hpqcxs08;hpqcxs08; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2012-07-09 104912]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2012-07-08 123856]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-06-13 116648]
S2 SBSDWSCService;SBSD Security Center Service; D:\Utility\Spybot - Search & Destroy\SDWinSec.exe [2009-01-26 1153368]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-03-15 253656]
S3 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2012-07-08 51648]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-06-13 116648]
S3 LBTServ;Logitech Bluetooth Service; C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe [2011-09-27 359192]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2013-03-08 115608]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 PDEngine;PDEngine; D:\Utility\PerfectDisk 10\PDEngine.exe [2010-01-26 1486088]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2013-02-15 543144]
S4 MBAMService;MBAMService; D:\Utility\Malwarebytes' Anti-Malware\mbamservice.exe [2012-04-04 654408]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2012-07-09 139696]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2012-07-09 139696]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2012-07-09 139696]

-----------------EOF-----------------

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: BSOD - ntoskrnl.exe

#4 Příspěvek od motji »

Zdravím :) ,
disky jsou v pořádku :) .

Na výpisy minidumpu jsem se dívala, ale raději to zkonzultuji s kolegou. Teď to s pc vypadá jak?
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

MiliNess
Přítel fóra
Přítel fóra
Příspěvky: 4144
Registrován: 15 říj 2009 18:15
Bydliště: Cheb

Re: BSOD - ntoskrnl.exe

#5 Příspěvek od MiliNess »

Jdu na to
Pokud jste s naší pomocí spokojeni, můžete nás podpořit. Informace zde

Marduk
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 62
Registrován: 07 úno 2011 01:07

Re: BSOD - ntoskrnl.exe

#6 Příspěvek od Marduk »

Ahoj,

Problem se uz pres dva tydny neobjevil. BSOD prestal pote co sem aktualizoval ve svem pocitaci ovladace DVD/CD z techto stranek: http://www.gearsoftware.com/wiki/index. ... ons%2C_etc.

Tyhle ovladace sem nasel podle linku ktery byl zobrazenej v programu WhoCrashed v analyze minidumpu. Zatim vse nasvedcuje tomu ze je vse v poradku ale opravdu si nejsem si jisty a doufam ze nevyrazim jenom klin klinem.

MiliNess
Přítel fóra
Přítel fóra
Příspěvky: 4144
Registrován: 15 říj 2009 18:15
Bydliště: Cheb

Re: BSOD - ntoskrnl.exe

#7 Příspěvek od MiliNess »

Docela mě překvapilo, že to způsoboval ovladač gearaspiwdm.sys, ale pokud po je po aktualizaci klid, patrně tomu tak bylo.
Chybu sice obsahoval, nebyla ale zase tak kritická. Udělal bych raději i test paměti.
Pokud jste s naší pomocí spokojeni, můžete nás podpořit. Informace zde

Zamčeno