Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prosím o kontrolu PC podivně funguje Skype, E-mail a windows

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zamčeno
Zpráva
Autor
Antusek
Návštěvník
Návštěvník
Příspěvky: 488
Registrován: 17 úno 2007 20:54

Prosím o kontrolu PC podivně funguje Skype, E-mail a windows

#1 Příspěvek od Antusek »

Dobrý den mám takový problém na PC na chalupě
začalo to programem Skype, kdy se aktualizoval na novou verzi a chtěl kromě jména a hesla ještě ověřovací kód. Po aktualizaci se nějak ztratily kontakty. Pak několikrát při spouštění chtěl opět i ověřovací kód. Tak jsme jej pro zatím odinstalovali. Pak se děli podivné věci na E-mailu centrum.cz, kdy chodily podivné e-maily jako že si sám sobě něco posílám přitom se nic neposílalo. E-maily byly smazaly bez otevření ale neobjevily se v koši. Změnili jsme pro jistotu heslo. Pak se každý den objevují aktualizace Windows 7. A když to necháme při vypnutí PC na jindy tak tam třeba už nejsou a pak jsou jiné. Na druhém PC doma se mi toto neděje ani u Skype to nechtělo novou verzi a aktualizace Windows 7 nejsou tak často jako u tohoto PC. Máme podezření, že se nám tam mohl někdo dostat. proto prosím o kontrolu PC není li tam nějaká potvora. K netu jsem zde připojen přes pevnou linku po drátě od O2. Posílám log z RSIT a moc děkuji za prověření. :)

Logfile of random's system information tool 1.09 (written by random/random)
Run by User at 2018-08-03 20:37:59
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 2 GB (5%) free of 50 GB
Total RAM: 2047 MB (68% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:40:00, on 3.8.2018
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.19081)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskhost.exe
C:\Program Files\Microsoft Security Client\msseces.exe
D:\Web kamera\Web Kamera Logitech\LWS\Webcam Software\LWS.exe
C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
C:\Program Files\CCleaner\CCleaner.exe
D:\Aviry\Secunia\PSI\psi_tray.exe
D:\Web kamera\Web Kamera Logitech\LWS\Webcam Software\CameraHelperShell.exe
C:\Windows\system32\taskeng.exe
C:\Windows\System32\mshta.exe
C:\Windows\System32\cmd.exe
C:\Windows\system32\conhost.exe
C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe
D:\Aviry\RSIT\RSIT.exe
C:\Program Files\trend micro\User.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkI ... id=UE12DHP
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - D:\Programy\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll
O2 - BHO: Zonealarm Helper Object - {2A841F7A-A014-4DA5-B6D9-8B913DFB7A8C} - C:\Program Files\Check Point Software Technologies LTD\zonealarm\1.8.29.17\bh\zonealarm.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.8.0_151\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre1.8.0_151\bin\jp2ssv.dll
O2 - BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - D:\Programy\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O3 - Toolbar: (no name) - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - (no file)
O4 - HKLM\..\Run: [AdobeAAMUpdater-1.0] "C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
O4 - HKLM\..\Run: [MSC] "C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
O4 - HKLM\..\Run: [LWS] D:\Web kamera\Web Kamera Logitech\LWS\Webcam Software\LWS.exe -hide
O4 - HKLM\..\Run: [RTHDVCPL] "C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe" -s
O4 - HKLM\..\Run: [ZoneAlarm] "D:\Aviry\CheckPoint\ZoneAlarm\zatray.exe"
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner.exe" /MONITOR
O4 - HKUS\S-1-5-18\..\Run: [ZoneAlarm Windows 10 Upgrader] "C:\ProgramData\CheckPoint\ZoneAlarm\Data\Updates\unpacked==win10=update_win10.zip\upgrade.exe" /delay (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [ZoneAlarm Windows 10 Upgrader] "C:\ProgramData\CheckPoint\ZoneAlarm\Data\Updates\unpacked==win10=update_win10.zip\upgrade.exe" /delay (User 'Default user')
O4 - Startup: AutorunsDisabled
O4 - Global Startup: Secunia PSI Tray.lnk = ?
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://D:\Programy\MICROS~1\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Free YouTube to MP3 Converter - C:\Users\User\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm
O9 - Extra button: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - D:\Programy\MICROS~1\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Zobrazit nebo skrýt HP Smart Web Printing - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - D:\Programy\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: ArcSoft Connect Daemon (ACDaemon) - ArcSoft Inc. - C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
O23 - Service: Adobe Active File Monitor V10 (AdobeActiveFileMonitor10.0) - Adobe Systems Incorporated - D:\Fotoeditory\Adobe Photoshop Elements 10\Elements 10 Organizer\PhotoshopElementsFileAgent.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Secunia PSI Agent - Secunia - D:\Aviry\Secunia\PSI\PSIA.exe
O23 - Service: Secunia Update Agent - Secunia - D:\Aviry\Secunia\PSI\sua.exe
O23 - Service: Ulead Burning Helper (UleadBurningHelper) - Ulead Systems, Inc. - C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Check Point Software Technologies Ltd. - D:\Aviry\CheckPoint\ZoneAlarm\vsmon.exe
O23 - Service: ZoneAlarm Privacy Service (ZAPrivacyService) - Check Point Software Technologies, Ltd. - D:\Aviry\CheckPoint\ZoneAlarm\ZaPrivacyService.exe
O23 - Service: ZoneAlarm ICM Service - Check Point Software Technologies Ltd. - D:\Aviry\CheckPoint\ZoneAlarm\ICM-Service.exe

--
End of file - 7101 bytes

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0347C33E-8762-4905-BF09-768834316C61}]
HP Print Enhancer - D:\Programy\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll [2009-09-20 328248]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2A841F7A-A014-4DA5-B6D9-8B913DFB7A8C}]
Zonealarm Helper Object - C:\Program Files\Check Point Software Technologies LTD\zonealarm\1.8.29.17\bh\zonealarm.dll [2014-02-26 279952]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre1.8.0_151\bin\ssv.dll [2017-11-05 473664]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre1.8.0_151\bin\jp2ssv.dll [2017-11-05 187968]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856}]
HP Smart BHO Class - D:\Programy\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll [2009-09-20 509496]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107}

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"AdobeAAMUpdater-1.0"=C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2013-12-10 472984]
"MSC"=C:\Program Files\Microsoft Security Client\msseces.exe [2016-11-14 1002984]
"LWS"=D:\Web kamera\Web Kamera Logitech\LWS\Webcam Software\LWS.exe [2012-09-13 204136]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [2016-03-15 14737664]
"ZoneAlarm"=D:\Aviry\CheckPoint\ZoneAlarm\zatray.exe [2017-02-14 144696]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2009-09-23 141848]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2009-09-23 173592]
"Persistence"=C:\Windows\system32\igfxpers.exe [2009-09-23 150552]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner.exe [2018-07-20 13684416]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Creative Cloud]
C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2014-02-11 2239376]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\APSDaemon]
C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CCleaner Monitoring]
C:\Program Files\CCleaner\CCleaner.exe [2018-07-20 13684416]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DriverPack Notifier]
C:\Program Files\DriverPack Notifier\DriverPackNotifier.exe [2015-12-18 258560]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\hpqSRMon]
D:\Programy\HP\Digital Imaging\bin\hpqSRMon.exe [2008-07-22 150528]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]
C:\Program Files\iTunes\iTunesHelper.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LifeCam]
C:\Program Files\Microsoft LifeCam\LifeExp.exe [2010-12-13 135536]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PDFPrint]
D:\Prográmky\PDF24\pdf24.exe [2014-02-06 189480]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
C:\Program Files\QuickTime\QTTask.exe [2014-01-17 421888]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RTHDVCPL]
C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [2016-03-15 14737664]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RunUVC]
D:\Web kamera\UVC Video Camera\EffectDir\UVCtray.exe [2010-08-23 7548928]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype]
C:\Program Files\Skype\Phone\Skype.exe /minimized /regrun []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files\Common Files\Java\Java Update\jusched.exe [2017-09-05 587288]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\UVCSti]
D:\Web kamera\UVC Video Camera\UVCSti.exe [2010-08-23 245760]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WinFast Schedule]
C:\Program Files\WinFast\WFDTV\WFWIZ.exe [2010-08-11 2920448]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WinFastDTV]
C:\Program Files\WinFast\WFDTV\DTVSchdl.exe [2011-01-12 101888]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^HP Digital Imaging Monitor.lnk]
D:\Programy\HP\DIGITA~1\bin\hpqtra08.exe [2009-09-20 270336]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^WinZip Quick Pick.lnk]
D:\ARCHIV~1\WinZip\WZQKPICK.EXE [2011-05-27 610120]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Secunia PSI Tray.lnk - D:\Aviry\Secunia\PSI\psi_tray.exe

C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
AutorunsDisabled

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2009-09-23 218112]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - C:\Windows\system32\webcheck.dll [2018-06-16 230400]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\Windows\system32\wpdshserviceobj.dll [2010-11-20 105984]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vsmon]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"SoftwareSASGeneration"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=lvcodec2.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux1"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"aux2"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"aux3"=wdmaud.drv
"wave5"=wdmaud.drv
"mixer5"=wdmaud.drv
"msacm.siren"=sirenacm.dll
"wave6"=wdmaud.drv
"mixer6"=wdmaud.drv
"MSVideo"=vfwwdm32.dll
"wave7"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer7"=wdmaud.drv
"aux4"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave8"=wdmaud.drv
"mixer8"=wdmaud.drv
"wave9"=wdmaud.drv
"midi6"=wdmaud.drv
"mixer9"=wdmaud.drv
"aux5"=wdmaud.drv
"midi7"=wdmaud.drv
"aux6"=wdmaud.drv
"midi8"=wdmaud.drv
"aux7"=wdmaud.drv
"midi9"=wdmaud.drv
"aux8"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1

======List of files/folders created in the last 1 month======

2018-07-11 08:26:50 ----A---- C:\Windows\system32\mshtml.dll
2018-07-11 08:26:47 ----A---- C:\Windows\system32\ieframe.dll
2018-07-11 08:26:45 ----A---- C:\Windows\system32\shell32.dll
2018-07-11 08:26:45 ----A---- C:\Windows\system32\jscript9.dll
2018-07-11 08:26:44 ----A---- C:\Windows\system32\vbscript.dll
2018-07-11 08:26:44 ----A---- C:\Windows\system32\urlmon.dll
2018-07-11 08:26:44 ----A---- C:\Windows\system32\ucrtbase.dll
2018-07-11 08:26:44 ----A---- C:\Windows\system32\drivers\tcpip.sys
2018-07-11 08:26:43 ----A---- C:\Windows\system32\win32k.sys
2018-07-11 08:26:43 ----A---- C:\Windows\system32\iertutil.dll
2018-07-11 08:26:43 ----A---- C:\Windows\system32\ExplorerFrame.dll
2018-07-11 08:26:42 ----A---- C:\Windows\system32\zipfldr.dll
2018-07-11 08:26:42 ----A---- C:\Windows\system32\wkssvc.dll
2018-07-11 08:26:42 ----A---- C:\Windows\system32\drivers\usbport.sys
2018-07-11 08:26:42 ----A---- C:\Windows\system32\drivers\usbhub.sys
2018-07-11 08:26:42 ----A---- C:\Windows\system32\drivers\dfsc.sys
2018-07-11 08:26:41 ----A---- C:\Windows\system32\ntdll.dll
2018-07-11 08:26:40 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2018-07-11 08:26:40 ----A---- C:\Windows\system32\mshtmlmedia.dll
2018-07-11 08:26:40 ----A---- C:\Windows\system32\iedkcs32.dll
2018-07-11 08:26:40 ----A---- C:\Windows\system32\drivers\netio.sys
2018-07-11 08:26:40 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2018-07-11 08:26:40 ----A---- C:\Windows\system32\dnsapi.dll
2018-07-11 08:26:40 ----A---- C:\Windows\system32\api-ms-win-crt-time-l1-1-0.dll
2018-07-11 08:26:40 ----A---- C:\Windows\system32\api-ms-win-crt-string-l1-1-0.dll
2018-07-11 08:26:40 ----A---- C:\Windows\system32\api-ms-win-crt-stdio-l1-1-0.dll
2018-07-11 08:26:40 ----A---- C:\Windows\system32\api-ms-win-crt-process-l1-1-0.dll
2018-07-11 08:26:40 ----A---- C:\Windows\system32\api-ms-win-crt-private-l1-1-0.dll
2018-07-11 08:26:40 ----A---- C:\Windows\system32\api-ms-win-crt-multibyte-l1-1-0.dll
2018-07-11 08:26:40 ----A---- C:\Windows\system32\api-ms-win-crt-math-l1-1-0.dll
2018-07-11 08:26:40 ----A---- C:\Windows\system32\api-ms-win-crt-locale-l1-1-0.dll
2018-07-11 08:26:40 ----A---- C:\Windows\system32\api-ms-win-crt-heap-l1-1-0.dll
2018-07-11 08:26:40 ----A---- C:\Windows\system32\api-ms-win-crt-filesystem-l1-1-0.dll
2018-07-11 08:26:40 ----A---- C:\Windows\system32\api-ms-win-crt-environment-l1-1-0.dll
2018-07-11 08:26:40 ----A---- C:\Windows\system32\api-ms-win-crt-convert-l1-1-0.dll
2018-07-11 08:26:40 ----A---- C:\Windows\system32\api-ms-win-crt-conio-l1-1-0.dll
2018-07-11 08:26:40 ----A---- C:\Windows\system32\api-ms-win-core-xstate-l2-1-0.dll
2018-07-11 08:26:40 ----A---- C:\Windows\system32\api-ms-win-core-timezone-l1-1-0.dll
2018-07-11 08:26:40 ----A---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-1.dll
2018-07-11 08:26:40 ----A---- C:\Windows\system32\api-ms-win-core-file-l2-1-0.dll
2018-07-11 08:26:40 ----A---- C:\Windows\system32\api-ms-win-core-file-l1-2-0.dll
2018-07-11 08:26:39 ----A---- C:\Windows\system32\ntoskrnl.exe
2018-07-11 08:26:39 ----A---- C:\Windows\system32\ntkrnlpa.exe
2018-07-11 08:26:39 ----A---- C:\Windows\system32\halmacpi.dll
2018-07-11 08:26:39 ----A---- C:\Windows\system32\halacpi.dll
2018-07-11 08:26:39 ----A---- C:\Windows\system32\hal.dll
2018-07-11 08:26:39 ----A---- C:\Windows\system32\api-ms-win-crt-utility-l1-1-0.dll
2018-07-11 08:26:39 ----A---- C:\Windows\system32\api-ms-win-crt-runtime-l1-1-0.dll
2018-07-11 08:26:39 ----A---- C:\Windows\system32\api-ms-win-core-synch-l1-2-0.dll
2018-07-11 08:26:39 ----A---- C:\Windows\system32\api-ms-win-core-localization-l1-2-0.dll
2018-07-11 08:26:38 ----A---- C:\Windows\system32\wininet.dll
2018-07-11 08:26:38 ----A---- C:\Windows\system32\msrating.dll
2018-07-11 08:26:38 ----A---- C:\Windows\system32\dxtmsft.dll
2018-07-11 08:26:38 ----A---- C:\Windows\system32\drivers\usbuhci.sys
2018-07-11 08:26:38 ----A---- C:\Windows\system32\drivers\usbehci.sys
2018-07-11 08:26:38 ----A---- C:\Windows\system32\drivers\mpsdrv.sys
2018-07-11 08:26:38 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2018-07-11 08:26:38 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2018-07-11 08:26:38 ----A---- C:\Windows\system32\dnsrslvr.dll
2018-07-11 08:26:38 ----A---- C:\Windows\system32\dnscacheugc.exe
2018-07-11 08:26:37 ----A---- C:\Windows\system32\webcheck.dll
2018-07-11 08:26:37 ----A---- C:\Windows\system32\ole32.dll
2018-07-11 08:26:37 ----A---- C:\Windows\system32\dxtrans.dll
2018-07-11 08:26:36 ----A---- C:\Windows\system32\msfeeds.dll
2018-07-11 08:26:36 ----A---- C:\Windows\system32\drivers\usbccgp.sys
2018-07-11 08:26:35 ----A---- C:\Windows\system32\winsrv.dll
2018-07-11 08:26:35 ----A---- C:\Windows\system32\rstrui.exe
2018-07-11 08:26:35 ----A---- C:\Windows\system32\ieui.dll
2018-07-11 08:26:35 ----A---- C:\Windows\system32\ie4uinit.exe
2018-07-11 08:26:35 ----A---- C:\Windows\system32\drivers\usbohci.sys
2018-07-11 08:26:35 ----A---- C:\Windows\system32\conhost.exe
2018-07-11 08:26:34 ----A---- C:\Windows\system32\wdigest.dll
2018-07-11 08:26:34 ----A---- C:\Windows\system32\srcore.dll
2018-07-11 08:26:34 ----A---- C:\Windows\system32\schannel.dll
2018-07-11 08:26:34 ----A---- C:\Windows\system32\rpcrt4.dll
2018-07-11 08:26:34 ----A---- C:\Windows\system32\mshtmled.dll
2018-07-11 08:26:34 ----A---- C:\Windows\system32\lsasrv.dll
2018-07-11 08:26:34 ----A---- C:\Windows\system32\kerberos.dll
2018-07-11 08:26:34 ----A---- C:\Windows\system32\iesetup.dll
2018-07-11 08:26:34 ----A---- C:\Windows\system32\advapi32.dll
2018-07-11 08:26:33 ----A---- C:\Windows\system32\TSpkg.dll
2018-07-11 08:26:33 ----A---- C:\Windows\system32\smss.exe
2018-07-11 08:26:33 ----A---- C:\Windows\system32\rpchttp.dll
2018-07-11 08:26:33 ----A---- C:\Windows\system32\occache.dll
2018-07-11 08:26:33 ----A---- C:\Windows\system32\ncrypt.dll
2018-07-11 08:26:33 ----A---- C:\Windows\system32\msv1_0.dll
2018-07-11 08:26:33 ----A---- C:\Windows\system32\KernelBase.dll
2018-07-11 08:26:33 ----A---- C:\Windows\system32\kernel32.dll
2018-07-11 08:26:33 ----A---- C:\Windows\system32\jscript9diag.dll
2018-07-11 08:26:33 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2018-07-11 08:26:33 ----A---- C:\Windows\system32\inseng.dll
2018-07-11 08:26:33 ----A---- C:\Windows\system32\ieUnatt.exe
2018-07-11 08:26:33 ----A---- C:\Windows\system32\iernonce.dll
2018-07-11 08:26:32 ----A---- C:\Windows\system32\rpcss.dll
2018-07-11 08:26:32 ----A---- C:\Windows\system32\jsproxy.dll
2018-07-11 08:26:32 ----A---- C:\Windows\system32\drivers\videoprt.sys
2018-07-11 08:26:32 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2018-07-11 08:26:32 ----A---- C:\Windows\system32\csrsrv.dll
2018-07-11 08:26:32 ----A---- C:\Windows\system32\auditpol.exe
2018-07-11 08:26:32 ----A---- C:\Windows\system32\appidsvc.dll
2018-07-11 08:26:32 ----A---- C:\Windows\system32\appidapi.dll
2018-07-11 08:26:31 ----A---- C:\Windows\system32\MshtmlDac.dll
2018-07-11 08:26:31 ----A---- C:\Windows\system32\ieetwproxystub.dll
2018-07-11 08:26:31 ----A---- C:\Windows\system32\ieetwcollector.exe
2018-07-11 08:26:31 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2018-07-11 08:26:31 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2018-07-11 08:26:31 ----A---- C:\Windows\system32\apisetschema.dll
2018-07-11 08:26:30 ----A---- C:\Windows\system32\sspisrv.dll
2018-07-11 08:26:30 ----A---- C:\Windows\system32\sspicli.dll
2018-07-11 08:26:30 ----A---- C:\Windows\system32\srclient.dll
2018-07-11 08:26:30 ----A---- C:\Windows\system32\setbcdlocale.dll
2018-07-11 08:26:30 ----A---- C:\Windows\system32\secur32.dll
2018-07-11 08:26:30 ----A---- C:\Windows\system32\msobjs.dll
2018-07-11 08:26:30 ----A---- C:\Windows\system32\msaudite.dll
2018-07-11 08:26:30 ----A---- C:\Windows\system32\lsass.exe
2018-07-11 08:26:30 ----A---- C:\Windows\system32\jscript.dll
2018-07-11 08:26:30 ----A---- C:\Windows\system32\ieapfltr.dll
2018-07-11 08:26:30 ----A---- C:\Windows\system32\FirewallAPI.dll
2018-07-11 08:26:30 ----A---- C:\Windows\system32\drivers\appid.sys
2018-07-11 08:26:30 ----A---- C:\Windows\system32\cryptbase.dll
2018-07-11 08:26:30 ----A---- C:\Windows\system32\credssp.dll
2018-07-11 08:26:30 ----A---- C:\Windows\system32\comcat.dll
2018-07-11 08:26:30 ----A---- C:\Windows\system32\bcrypt.dll
2018-07-11 08:26:30 ----A---- C:\Windows\system32\appidpolicyconverter.exe
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2018-07-11 08:26:29 ----A---- C:\Windows\system32\oleres.dll
2018-07-11 08:26:29 ----A---- C:\Windows\system32\MPSSVC.dll
2018-07-11 08:26:29 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2018-07-11 08:26:29 ----A---- C:\Windows\system32\icfupgd.dll
2018-07-11 08:26:29 ----A---- C:\Windows\system32\appidcertstorecheck.exe
2018-07-11 08:26:29 ----A---- C:\Windows\system32\adtschema.dll
2018-07-11 08:26:28 ----A---- C:\Windows\system32\wfapigp.dll
2018-07-11 08:26:28 ----A---- C:\Windows\system32\drivers\usbd.sys
2018-07-11 08:23:08 ----A---- C:\Windows\system32\aitstatic.exe
2018-07-11 08:23:08 ----A---- C:\Windows\system32\aeinv.dll
2018-07-11 08:23:07 ----A---- C:\Windows\system32\appraiser.dll
2018-07-11 08:23:06 ----A---- C:\Windows\system32\invagent.dll
2018-07-11 08:23:06 ----A---- C:\Windows\system32\generaltel.dll
2018-07-11 08:23:06 ----A---- C:\Windows\system32\devinv.dll
2018-07-11 08:23:06 ----A---- C:\Windows\system32\CompatTelRunner.exe
2018-07-11 08:23:06 ----A---- C:\Windows\system32\centel.dll
2018-07-11 08:23:06 ----A---- C:\Windows\system32\aepic.dll
2018-07-11 08:23:06 ----A---- C:\Windows\system32\acmigration.dll

======List of files/folders modified in the last 1 month======

2018-08-03 20:38:21 ----D---- C:\Windows\Temp
2018-08-03 20:38:12 ----D---- C:\Program Files\trend micro
2018-08-03 17:59:13 ----D---- C:\Windows\tracing
2018-08-03 14:26:06 ----D---- C:\Windows\system32\config
2018-08-03 07:37:53 ----D---- C:\Windows
2018-08-02 11:58:14 ----D---- C:\Windows\system32\Tasks
2018-08-02 10:56:21 ----D---- C:\Program Files\Microsoft
2018-08-01 14:24:03 ----SHD---- C:\System Volume Information
2018-07-30 16:55:08 ----D---- C:\Program Files\Opera
2018-07-29 12:25:40 ----AD---- C:\Windows\System32
2018-07-29 12:25:40 ----A---- C:\Windows\system32\PerfStringBackup.INI
2018-07-29 12:25:39 ----D---- C:\Windows\inf
2018-07-29 08:23:02 ----D---- C:\Windows\system32\Macromed
2018-07-24 08:57:13 ----SD---- C:\Users\User\AppData\Roaming\Microsoft
2018-07-24 08:56:26 ----SHD---- C:\Windows\Installer
2018-07-24 08:56:24 ----D---- C:\Config.Msi
2018-07-24 08:56:15 ----RD---- C:\Program Files\Skype
2018-07-24 08:56:09 ----D---- C:\ProgramData\Skype
2018-07-24 08:53:07 ----D---- C:\Users\User\AppData\Roaming\Skype
2018-07-20 10:11:26 ----D---- C:\Windows\system32\NDF
2018-07-17 00:02:15 ----N---- C:\Windows\system32\MpSigStub.exe
2018-07-15 16:21:12 ----D---- C:\Windows\Microsoft.NET
2018-07-15 16:14:21 ----RSD---- C:\Windows\assembly
2018-07-11 22:52:32 ----D---- C:\Windows\debug
2018-07-11 15:26:19 ----A---- C:\Windows\system32\FlashPlayerApp.exe
2018-07-11 15:15:49 ----D---- C:\Windows\winsxs
2018-07-11 15:10:55 ----D---- C:\Program Files\Internet Explorer
2018-07-11 15:10:54 ----D---- C:\Windows\system32\drivers\cs-CZ
2018-07-11 15:10:54 ----D---- C:\Windows\system32\drivers
2018-07-11 15:10:54 ----D---- C:\Windows\system32\cs-CZ
2018-07-11 15:10:53 ----D---- C:\Windows\system32\en-US
2018-07-11 15:10:45 ----RSD---- C:\Windows\Fonts
2018-07-11 15:10:45 ----D---- C:\Windows\AppPatch
2018-07-11 15:10:38 ----D---- C:\Windows\system32\appraiser
2018-07-11 15:10:31 ----D---- C:\Windows\system32\DriverStore
2018-07-11 09:40:18 ----D---- C:\Windows\system32\MRT
2018-07-11 09:39:58 ----AC---- C:\Windows\system32\MRT.exe
2018-07-11 08:17:58 ----D---- C:\Windows\system32\catroot2

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 KL1;kl1; C:\Windows\system32\DRIVERS\kl1.sys [2012-01-09 133208]
R0 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2016-08-25 252808]
R0 pciide;pciide; C:\Windows\system32\DRIVERS\pciide.sys [2009-07-14 12368]
R0 PxHelp20;PxHelp20; C:\Windows\System32\Drivers\PxHelp20.sys [2010-03-19 45648]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2018-01-01 173288]
R1 kl2;kl2; C:\Windows\system32\DRIVERS\kl2.sys [2012-01-09 11352]
R1 KLIF;Kaspersky Lab Driver; C:\Windows\system32\DRIVERS\klif.sys [2012-01-09 468272]
R1 Vsdatant;Zone Alarm Firewall Driver; C:\Windows\system32\DRIVERS\vsdatant.sys [2017-03-21 365496]
R2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
R3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2009-07-14 4194816]
R3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2016-03-15 3795712]
R3 LVRS;Logitech RightSound Filter Driver; C:\Windows\system32\DRIVERS\lvrs.sys [2012-09-21 310504]
R3 LVUVC;Logitech HD Webcam C270(UVC); C:\Windows\system32\DRIVERS\lvuvc.sys [2012-09-21 4261224]
R3 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2016-08-25 105696]
S1 wfcxacap;WinFast TV PCI Audio Capture Driver; C:\Windows\system32\DRIVERS\wfcxacap.sys [2007-09-19 9856]
S2 wfcxatun;WinFast TV Analog Tuner Driver; C:\Windows\system32\drivers\wfcxatun.sys [2007-09-19 31744]
S2 WFCXVCAP;WinFast TV Video Capture Driver; C:\Windows\system32\drivers\wfcxvcap.sys [2007-09-19 167040]
S3 adusbmdm6501;AnyDATA CDMA USB Modem Driver (PID 6501); C:\Windows\system32\DRIVERS\adusbmdm65.sys [2005-05-02 65408]
S3 adusbser;AnyDATA USB Device for Legacy Serial Communication; C:\Windows\system32\DRIVERS\adusbser.sys [2006-12-20 97920]
S3 adusbser6501;AnyDATA CDMA USB Serial Port (PID 6501); C:\Windows\system32\DRIVERS\adusbser65.sys [2005-05-02 65408]
S3 aic78xx;aic78xx; C:\Windows\system32\drivers\djsvs.sys [2009-07-14 70720]
S3 amdagp;Ovladač filtru AMD portu AGP; C:\Windows\system32\drivers\amdagp.sys [2018-02-10 52928]
S3 aswTap;avast! SecureLine TAP Adapter v3; C:\Windows\system32\DRIVERS\aswTap.sys [2014-07-05 38984]
S3 AtcL001;NDIS Miniport Driver for Atheros L1 Gigabit Ethernet - adaptér; C:\Windows\system32\DRIVERS\l160x86.sys [2009-07-14 47104]
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 78336]
S3 Cam3820;Cam3820 PC Camera Driver; C:\Windows\System32\Drivers\cam3820a.sys [2010-08-25 369024]
S3 catchme;catchme; \??\C:\Users\User\AppData\Local\Temp\catchme.sys []
S3 Dot4;MS IEEE-1284.4 Driver; C:\Windows\system32\DRIVERS\Dot4.sys [2009-07-14 131072]
S3 Dot4Print;Print Class Driver for IEEE-1284.4; C:\Windows\system32\DRIVERS\Dot4Prt.sys [2010-11-20 16384]
S3 dot4usb;MS Dot4USB Filter Dot4USB Filter; C:\Windows\system32\DRIVERS\dot4usb.sys [2009-07-14 36864]
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2012-07-28 49088]
S3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd32.sys [2009-09-23 4808192]
S3 int0800;Intel 28F320C3 Flash Update Device Driver v6.4; C:\Windows\system32\DRIVERS\flashud.sys [2009-09-09 42496]
S3 MSHUSBVideo;NX6000/NX3000/VX2000/VX5000/VX5500/VX7000/Cinema Filter Driver; C:\Windows\System32\Drivers\nx6000.sys [2010-12-13 30576]
S3 MTsensor;ATK0110 ACPI UTILITY; C:\Windows\system32\DRIVERS\ASACPI.sys [2009-07-16 13216]
S3 PSI;PSI; C:\Windows\system32\DRIVERS\psi_mf.sys [2010-09-01 15544]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-11-10 14848]
S3 sisagp;Filtr SIS sběrnice AGP; C:\Windows\system32\drivers\sisagp.sys [2018-02-10 51904]
S3 teamviewervpn;TeamViewer VPN Adapter; C:\Windows\system32\DRIVERS\teamviewervpn.sys [2011-03-30 25088]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2013-10-02 49152]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2012-11-10 27136]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\drivers\usbscan.sys [2013-07-03 36352]
S3 viaagp;Filtr VIA sběrnice AGP; C:\Windows\system32\drivers\viaagp.sys [2018-02-10 52928]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\drivers\viac7.sys [2009-07-14 52736]
S3 wfcxdtun;WinFast DTV BDA Tuner/Demod Driver; C:\Windows\system32\drivers\wfcxdtun.sys [2007-09-19 21248]
S3 wfcxtcap;WinFast DTV BDA Transport Stream Capture Driver; C:\Windows\system32\drivers\wfcxtcap.sys [2007-09-19 15872]
S3 wfcxxbar;WinFast TV Crossbar Driver; C:\Windows\system32\drivers\wfcxxbar.sys [2007-09-19 10496]
S3 wind502u;ASUS USB 2.0 Wireless Network Adapter; C:\Windows\system32\DRIVERS\wind502u.sys [2004-03-25 336256]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 35968]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 ACDaemon;ArcSoft Connect Daemon; C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [2010-03-18 113152]
R2 AdobeActiveFileMonitor10.0;Adobe Active File Monitor V10; D:\Fotoeditory\Adobe Photoshop Elements 10\Elements 10 Organizer\PhotoshopElementsFileAgent.exe [2011-09-14 169624]
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2018-03-21 83984]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 hpqddsvc;Služba HP CUE DeviceDiscovery; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 MSCamSvc;MSCamSvc; C:\Program Files\Microsoft LifeCam\MSCamS32.exe [2010-12-13 135536]
R2 MsMpSvc;Microsoft Antimalware Service; C:\Program Files\Microsoft Security Client\MsMpEng.exe [2016-11-14 103696]
R2 Secunia PSI Agent;Secunia PSI Agent; D:\Aviry\Secunia\PSI\PSIA.exe [2011-04-19 993848]
R2 Secunia Update Agent;Secunia Update Agent; D:\Aviry\Secunia\PSI\sua.exe [2011-04-19 399416]
R2 UleadBurningHelper;Ulead Burning Helper; C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe [2004-12-13 49152]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2012-07-17 1713904]
R2 ZoneAlarm ICM Service;ZoneAlarm ICM Service; D:\Aviry\CheckPoint\ZoneAlarm\ICM-Service.exe [2017-02-14 1037624]
R3 hpqcxs08;hpqcxs08; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R3 NisSrv;@C:\Program Files\Microsoft Security Client\MpAsDesc.dll,-243; C:\Program Files\Microsoft Security Client\NisSrv.exe [2016-11-14 280864]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2017-10-04 107624]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2015-08-28 144200]
S2 Net Driver HPZ12;Net Driver HPZ12; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S2 Pml Driver HPZ12;Pml Driver HPZ12; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S2 vsmon;TrueVector Internet Monitor; D:\Aviry\CheckPoint\ZoneAlarm\vsmon.exe [2017-02-14 4076744]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2018-07-11 335872]
S3 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2017-10-04 47200]
S3 fsssvc;Windows Live Family Safety Service; C:\Program Files\Windows Live\Family Safety\fsssvc.exe [2012-09-12 1512448]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2015-08-28 144200]
S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2013-12-19 136120]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2018-06-16 104960]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2011-06-08 1343400]
S3 ZAPrivacyService;ZoneAlarm Privacy Service; D:\Aviry\CheckPoint\ZoneAlarm\ZaPrivacyService.exe [2016-11-01 114936]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2017-10-04 136288]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2017-10-04 136288]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2017-10-04 136288]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118275
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu PC podivně funguje Skype, E-mail a win

#2 Příspěvek od Rudy »

Zdravím!
Máte téměř plný systémový disk. Spusťte tuto utilitu:
Ulozte na plochu AdwCleaner https://malwarebytes.com/adwcleaner/ nebo http://www.bleepingcomputer.com/download/adwcleaner/

ukoncete vsechny programy
odsouhlaste licencni podmiky (EULA) klikem na Souhlasim
kliknete pravym na ikonu AdwCleaneru a vyberte Spustit jako spravce (v pripade Win XP spustte obycejne dvojklikem)
kliknete na Skenovat nyni (Scan now), pote na Cisteni a opravy (Clean and Repair)
po restartu na Vas vyskoci log (pripadne jej najdete v C:\AdwCleaner\Logs\AdwCleaner[Cxx].txt), jehoz obsah zkopirujte do pristi odpovedi
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Antusek
Návštěvník
Návštěvník
Příspěvky: 488
Registrován: 17 úno 2007 20:54

Re: Prosím o kontrolu PC podivně funguje Skype, E-mail a win

#3 Příspěvek od Antusek »

Provedeno. Našlo to 117 hrozeb a smazalo je. Posílám Protokol. Díky za další rady. :)

# -------------------------------
# Malwarebytes AdwCleaner 7.2.2.0
# -------------------------------
# Build: 07-17-2018
# Database: 2018-07-25.1
# Support: https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Clean
# -------------------------------
# Start: 08-03-2018
# Duration: 00:00:33
# OS: Windows 7 Home Premium
# Cleaned: 117
# Failed: 0


***** [ Services ] *****

No malicious services cleaned.

***** [ Folders ] *****

Deleted C:\Users\User\AppData\Roaming\IObit\Advanced SystemCare
Deleted C:\Users\User\AppData\LocalLow\Conduit
Deleted C:\Users\User\AppData\Roaming\DRPSu
Deleted C:\Program Files\DriverPack Notifier
Deleted C:\Users\User\AppData\Roaming\DriverPack Notifier
Deleted C:\Users\User\AppData\Local\FileViewPro
Deleted C:\ProgramData\IObit\ASCDownloader
Deleted C:\Program Files\advanced registry optimizer
Deleted C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Free FLV Converter
Deleted C:\Program Files\icqtoolbar
Deleted C:\Users\User\AppData\Roaming\dvdvideosoftiehelpers
Deleted C:\Users\User\AppData\Roaming\CheckPoint\ZoneAlarm LTD Toolbar
Deleted C:\Program Files\Check Point Software Technologies LTD
Deleted C:\Users\User\AppData\LocalLow\Check Point Software Technologies LTD
Deleted C:\Users\User\AppData\Roaming\Check Point Software Technologies LTD
Deleted C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Zrychleni Pocitace
Deleted C:\Program Files\Zrychleni Pocitace
Deleted C:\Windows\System32\config\systemprofile\AppData\LocalLow\Application Updater
Deleted C:\Users\User\AppData\Local\OpenCandy
Deleted C:\Users\User\AppData\Roaming\OpenCandy
Deleted C:\Users\User\AppData\Roaming\Solvusoft

***** [ Files ] *****

Deleted C:\Windows\System32\REGISTRYDEFRAGBOOTTIME.EXE
Deleted C:\Windows\System32\roboot.exe

***** [ DLL ] *****

No malicious DLLs cleaned.

***** [ WMI ] *****

No malicious WMI cleaned.

***** [ Shortcuts ] *****

No malicious shortcuts cleaned.

***** [ Tasks ] *****

Deleted C:\Windows\System32\Tasks\DriverPack Notifier

***** [ Registry ] *****

Deleted HKLM\Software\Classes\Interface\{BA935377-E17C-4475-B1BF-DE3110613A99}
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\defaultsearch.com
Deleted HKLM\Software\Microsoft\Shared Tools\MSConfig\startupreg\DriverPack Notifier
Deleted HKCU\Software\drpsu
Deleted HKLM\Software\drpsu
Deleted HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\DriverPack Notifier
Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{5FBE96EA-F8D7-4423-9704-FD5F2C40D5C6}
Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5FBE96EA-F8D7-4423-9704-FD5F2C40D5C6}
Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\DriverPack Notifier
Deleted HKLM\Software\Microsoft\Shared Tools\MSConfig\startupreg\WinFast Schedule
Deleted HKCU\Software\Check Point Software Technologies LTD
Deleted HKLM\Software\Check Point Software Technologies LTD
Deleted HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\Free FLV Converter_is1
Deleted HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\{1AE46C09-2AB8-4EE5-88FB-08CD0FF7F2DF}
Deleted HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\ZoneAlarm Toolbar
Deleted HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\68E4BF4B11615E03C97732FD581AB607
Deleted HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\00E944CB89111313EAF35A0553F547F9
Deleted HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\53F55AF3F4049ED3FA6EA6F88E414E24
Deleted HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FB1E44269B58F433A8C8E671E37CFDCF
Deleted HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AF6CE16AFEA5C9A39B766468A8B35C21
Deleted HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8CE3DDAB2D152683FBCEB4866BCD2B0F
Deleted HKLM\SOFTWARE\Classes\AppID\esrv.EXE
Deleted HKLM\SOFTWARE\Classes\AppID\escortEng.DLL
Deleted HKLM\SOFTWARE\Classes\AppID\escortApp.DLL
Deleted HKLM\SOFTWARE\Classes\AppID\escort.DLL
Deleted HKLM\Software\Classes\TypeLib\{DC97D932-ED6C-4AD3-A0D6-AA03C4C76A97}
Deleted HKLM\Software\Classes\CLSID\{F4288797-CB12-49CE-9DF8-7CDFA1143BEA}
Deleted HKLM\Software\Classes\CLSID\{F1963E76-845B-474C-8C7F-D69A96D8AA34}
Deleted HKLM\Software\Classes\CLSID\{E0722BEB-FDA1-4AA1-A2A8-15A74A5B3F70}
Deleted HKLM\Software\Classes\TypeLib\{E00DE9B9-B128-4C39-B732-B5D85013FA48}
Deleted HKLM\Software\Classes\CLSID\{9F0F16DD-4E76-4049-A9B1-7A91E48F0323}
Deleted HKLM\Software\Classes\TypeLib\{99DF8440-814E-497F-BDDD-FB93E9E9DF96}
Deleted HKLM\Software\Classes\CLSID\{987D9269-F8A1-408F-BF62-4397D2F5363E}
Deleted HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{83CAD530-387D-40FD-82EA-B9E863D92A9B}
Deleted HKLM\Software\Classes\Interface\{744E0E81-BC79-4719-A58B-C98F7E78EE5D}
Deleted HKLM\Software\Classes\CLSID\{744E0E81-BC79-4719-A58B-C98F7E78EE5D}
Deleted HKLM\Software\Classes\CLSID\{6E45F3E8-2683-4824-A6BE-08108022FB36}
Deleted HKLM\Software\Classes\TypeLib\{4A115D8A-6A7B-4C72-92B1-2E2D01F36979}
Deleted HKLM\Software\Classes\TypeLib\{3C5D1D57-16C8-473C-A552-37B8D88596FE}
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{2A841F7A-A014-4DA5-B6D9-8B913DFB7A8C}
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{2A841F7A-A014-4DA5-B6D9-8B913DFB7A8C}
Deleted HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2A841F7A-A014-4DA5-B6D9-8B913DFB7A8C}
Deleted HKLM\Software\Classes\CLSID\{2A841F7A-A014-4DA5-B6D9-8B913DFB7A8C}
Deleted HKLM\Software\Classes\TypeLib\{212C2C4F-C845-4FBC-9561-C833A13D8DCE}
Deleted HKLM\Software\Classes\CLSID\{19D2F415-D58B-46BC-9390-C03DCBC21EB2}
Deleted HKLM\Software\Classes\TypeLib\{06DEB529-DE09-43EC-B6E2-451AAB0FF000}
Deleted HKLM\Software\Classes\AppID\{06DEB529-DE09-43EC-B6E2-451AAB0FF000}
Deleted HKLM\Software\Classes\AppID\{B12E99ED-69BD-437C-86BE-C862B9E5444D}
Deleted HKLM\Software\Classes\AppID\{09C554C3-109B-483C-A06B-F14172F1A947}
Deleted HKLM\Software\Classes\TypeLib\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
Deleted HKLM\Software\Classes\AppID\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\mywebsearch.net
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\searchnow.ws
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\mysearchnow.com
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\youfindall.net
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\youfindall.com
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\hotbar.com
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\isearch.com
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\get-search.cc
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\yoursearchresults.net
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\yoursearcher.com
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\yoursearchbar.com
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\yoursearch247.com
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\whatsyoursearch.com
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\resultsyoursearch.com
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\crawlermachine.com
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\nicecodec.com
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\niceblowjob.info
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\fucknicepics.com
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\codecnice.net
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\ifinditall.com
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\icanfindit.net
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\findit-now.com
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\clearask.com
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\searchengine2000.com
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\best-searchengine.com
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\adultdatingsearchengine.com
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\http602.com
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\you-search.com
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\bestcrawler.com
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\tangounion.com
Deleted HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{2D713BD4-3CA5-4F6F-B7E9-7A6673C9FB98}
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\search-web.us
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\searchoutlaw.com
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\digistreamsa.com
Deleted HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{FC16970D-D309-4E46-9206-8A304B754A05}
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\searchable-sex.com
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\securesurface.com
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\easy-search.net
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\startravelsnp.com
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\searchproject.net
Deleted HKCU\Software\Speedchecker Limited

***** [ Chromium (and derivatives) ] *****

No malicious Chromium entries cleaned.

***** [ Chromium URLs ] *****

Deleted Search By ZoneAlarm

***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries cleaned.

***** [ Firefox URLs ] *****

No malicious Firefox URLs cleaned.


*************************

[+] Delete Tracing Keys
[+] Reset Winsock

*************************

AdwCleaner[S00].txt - [13996 octets] - [03/08/2018 21:03:58]

########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C00].txt ##########

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118275
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu PC podivně funguje Skype, E-mail a win

#4 Příspěvek od Rudy »

Dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Antusek
Návštěvník
Návštěvník
Příspěvky: 488
Registrován: 17 úno 2007 20:54

Re: Prosím o kontrolu PC podivně funguje Skype, E-mail a win

#5 Příspěvek od Antusek »

Posílám log. Ještě jsem těch 117 smazaných odstranil z karantény.
Dík za další postup.

Logfile of random's system information tool 1.09 (written by random/random)
Run by User at 2018-08-03 22:09:22
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 2 GB (5%) free of 50 GB
Total RAM: 2047 MB (67% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22:11:02, on 3.8.2018
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.19081)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskhost.exe
C:\Program Files\Microsoft Security Client\msseces.exe
D:\Web kamera\Web Kamera Logitech\LWS\Webcam Software\LWS.exe
C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
C:\Program Files\CCleaner\CCleaner.exe
D:\Aviry\Secunia\PSI\psi_tray.exe
D:\Web kamera\Web Kamera Logitech\LWS\Webcam Software\CameraHelperShell.exe
D:\Aviry\RSIT\RSIT.exe
C:\Program Files\trend micro\User.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkI ... id=UE12DHP
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - D:\Programy\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.8.0_151\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre1.8.0_151\bin\jp2ssv.dll
O2 - BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - D:\Programy\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O3 - Toolbar: (no name) - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - (no file)
O4 - HKLM\..\Run: [AdobeAAMUpdater-1.0] "C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
O4 - HKLM\..\Run: [MSC] "C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
O4 - HKLM\..\Run: [LWS] D:\Web kamera\Web Kamera Logitech\LWS\Webcam Software\LWS.exe -hide
O4 - HKLM\..\Run: [RTHDVCPL] "C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe" -s
O4 - HKLM\..\Run: [ZoneAlarm] "D:\Aviry\CheckPoint\ZoneAlarm\zatray.exe"
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner.exe" /MONITOR
O4 - HKUS\S-1-5-18\..\Run: [ZoneAlarm Windows 10 Upgrader] "C:\ProgramData\CheckPoint\ZoneAlarm\Data\Updates\unpacked==win10=update_win10.zip\upgrade.exe" /delay (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [ZoneAlarm Windows 10 Upgrader] "C:\ProgramData\CheckPoint\ZoneAlarm\Data\Updates\unpacked==win10=update_win10.zip\upgrade.exe" /delay (User 'Default user')
O4 - Startup: AutorunsDisabled
O4 - Global Startup: Secunia PSI Tray.lnk = ?
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://D:\Programy\MICROS~1\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Free YouTube to MP3 Converter - C:\Users\User\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm
O9 - Extra button: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - D:\Programy\MICROS~1\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Zobrazit nebo skrýt HP Smart Web Printing - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - D:\Programy\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: ArcSoft Connect Daemon (ACDaemon) - ArcSoft Inc. - C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
O23 - Service: Adobe Active File Monitor V10 (AdobeActiveFileMonitor10.0) - Adobe Systems Incorporated - D:\Fotoeditory\Adobe Photoshop Elements 10\Elements 10 Organizer\PhotoshopElementsFileAgent.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Secunia PSI Agent - Secunia - D:\Aviry\Secunia\PSI\PSIA.exe
O23 - Service: Secunia Update Agent - Secunia - D:\Aviry\Secunia\PSI\sua.exe
O23 - Service: Ulead Burning Helper (UleadBurningHelper) - Ulead Systems, Inc. - C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Check Point Software Technologies Ltd. - D:\Aviry\CheckPoint\ZoneAlarm\vsmon.exe
O23 - Service: ZoneAlarm Privacy Service (ZAPrivacyService) - Check Point Software Technologies, Ltd. - D:\Aviry\CheckPoint\ZoneAlarm\ZaPrivacyService.exe
O23 - Service: ZoneAlarm ICM Service - Check Point Software Technologies Ltd. - D:\Aviry\CheckPoint\ZoneAlarm\ICM-Service.exe

--
End of file - 6746 bytes

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0347C33E-8762-4905-BF09-768834316C61}]
HP Print Enhancer - D:\Programy\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll [2009-09-20 328248]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre1.8.0_151\bin\ssv.dll [2017-11-05 473664]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre1.8.0_151\bin\jp2ssv.dll [2017-11-05 187968]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856}]
HP Smart BHO Class - D:\Programy\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll [2009-09-20 509496]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107}

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"AdobeAAMUpdater-1.0"=C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2013-12-10 472984]
"MSC"=C:\Program Files\Microsoft Security Client\msseces.exe [2016-11-14 1002984]
"LWS"=D:\Web kamera\Web Kamera Logitech\LWS\Webcam Software\LWS.exe [2012-09-13 204136]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [2016-03-15 14737664]
"ZoneAlarm"=D:\Aviry\CheckPoint\ZoneAlarm\zatray.exe [2017-02-14 144696]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2009-09-23 141848]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2009-09-23 173592]
"Persistence"=C:\Windows\system32\igfxpers.exe [2009-09-23 150552]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner.exe [2018-07-20 13684416]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Creative Cloud]
C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2014-02-11 2239376]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\APSDaemon]
C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CCleaner Monitoring]
C:\Program Files\CCleaner\CCleaner.exe [2018-07-20 13684416]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\hpqSRMon]
D:\Programy\HP\Digital Imaging\bin\hpqSRMon.exe [2008-07-22 150528]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]
C:\Program Files\iTunes\iTunesHelper.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LifeCam]
C:\Program Files\Microsoft LifeCam\LifeExp.exe [2010-12-13 135536]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PDFPrint]
D:\Prográmky\PDF24\pdf24.exe [2014-02-06 189480]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
C:\Program Files\QuickTime\QTTask.exe [2014-01-17 421888]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RTHDVCPL]
C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [2016-03-15 14737664]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RunUVC]
D:\Web kamera\UVC Video Camera\EffectDir\UVCtray.exe [2010-08-23 7548928]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype]
C:\Program Files\Skype\Phone\Skype.exe /minimized /regrun []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files\Common Files\Java\Java Update\jusched.exe [2017-09-05 587288]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\UVCSti]
D:\Web kamera\UVC Video Camera\UVCSti.exe [2010-08-23 245760]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WinFastDTV]
C:\Program Files\WinFast\WFDTV\DTVSchdl.exe [2011-01-12 101888]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^HP Digital Imaging Monitor.lnk]
D:\Programy\HP\DIGITA~1\bin\hpqtra08.exe [2009-09-20 270336]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^WinZip Quick Pick.lnk]
D:\ARCHIV~1\WinZip\WZQKPICK.EXE [2011-05-27 610120]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Secunia PSI Tray.lnk - D:\Aviry\Secunia\PSI\psi_tray.exe

C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
AutorunsDisabled

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2009-09-23 218112]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - C:\Windows\system32\webcheck.dll [2018-06-16 230400]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\Windows\system32\wpdshserviceobj.dll [2010-11-20 105984]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vsmon]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"SoftwareSASGeneration"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=lvcodec2.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux1"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"aux2"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"aux3"=wdmaud.drv
"wave5"=wdmaud.drv
"mixer5"=wdmaud.drv
"msacm.siren"=sirenacm.dll
"wave6"=wdmaud.drv
"mixer6"=wdmaud.drv
"MSVideo"=vfwwdm32.dll
"wave7"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer7"=wdmaud.drv
"aux4"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave8"=wdmaud.drv
"mixer8"=wdmaud.drv
"wave9"=wdmaud.drv
"midi6"=wdmaud.drv
"mixer9"=wdmaud.drv
"aux5"=wdmaud.drv
"midi7"=wdmaud.drv
"aux6"=wdmaud.drv
"midi8"=wdmaud.drv
"aux7"=wdmaud.drv
"midi9"=wdmaud.drv
"aux8"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1

======List of files/folders created in the last 1 month======

2018-08-03 21:01:07 ----D---- C:\AdwCleaner
2018-07-11 08:26:50 ----A---- C:\Windows\system32\mshtml.dll
2018-07-11 08:26:47 ----A---- C:\Windows\system32\ieframe.dll
2018-07-11 08:26:45 ----A---- C:\Windows\system32\shell32.dll
2018-07-11 08:26:45 ----A---- C:\Windows\system32\jscript9.dll
2018-07-11 08:26:44 ----A---- C:\Windows\system32\vbscript.dll
2018-07-11 08:26:44 ----A---- C:\Windows\system32\urlmon.dll
2018-07-11 08:26:44 ----A---- C:\Windows\system32\ucrtbase.dll
2018-07-11 08:26:44 ----A---- C:\Windows\system32\drivers\tcpip.sys
2018-07-11 08:26:43 ----A---- C:\Windows\system32\win32k.sys
2018-07-11 08:26:43 ----A---- C:\Windows\system32\iertutil.dll
2018-07-11 08:26:43 ----A---- C:\Windows\system32\ExplorerFrame.dll
2018-07-11 08:26:42 ----A---- C:\Windows\system32\zipfldr.dll
2018-07-11 08:26:42 ----A---- C:\Windows\system32\wkssvc.dll
2018-07-11 08:26:42 ----A---- C:\Windows\system32\drivers\usbport.sys
2018-07-11 08:26:42 ----A---- C:\Windows\system32\drivers\usbhub.sys
2018-07-11 08:26:42 ----A---- C:\Windows\system32\drivers\dfsc.sys
2018-07-11 08:26:41 ----A---- C:\Windows\system32\ntdll.dll
2018-07-11 08:26:40 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2018-07-11 08:26:40 ----A---- C:\Windows\system32\mshtmlmedia.dll
2018-07-11 08:26:40 ----A---- C:\Windows\system32\iedkcs32.dll
2018-07-11 08:26:40 ----A---- C:\Windows\system32\drivers\netio.sys
2018-07-11 08:26:40 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2018-07-11 08:26:40 ----A---- C:\Windows\system32\dnsapi.dll
2018-07-11 08:26:40 ----A---- C:\Windows\system32\api-ms-win-crt-time-l1-1-0.dll
2018-07-11 08:26:40 ----A---- C:\Windows\system32\api-ms-win-crt-string-l1-1-0.dll
2018-07-11 08:26:40 ----A---- C:\Windows\system32\api-ms-win-crt-stdio-l1-1-0.dll
2018-07-11 08:26:40 ----A---- C:\Windows\system32\api-ms-win-crt-process-l1-1-0.dll
2018-07-11 08:26:40 ----A---- C:\Windows\system32\api-ms-win-crt-private-l1-1-0.dll
2018-07-11 08:26:40 ----A---- C:\Windows\system32\api-ms-win-crt-multibyte-l1-1-0.dll
2018-07-11 08:26:40 ----A---- C:\Windows\system32\api-ms-win-crt-math-l1-1-0.dll
2018-07-11 08:26:40 ----A---- C:\Windows\system32\api-ms-win-crt-locale-l1-1-0.dll
2018-07-11 08:26:40 ----A---- C:\Windows\system32\api-ms-win-crt-heap-l1-1-0.dll
2018-07-11 08:26:40 ----A---- C:\Windows\system32\api-ms-win-crt-filesystem-l1-1-0.dll
2018-07-11 08:26:40 ----A---- C:\Windows\system32\api-ms-win-crt-environment-l1-1-0.dll
2018-07-11 08:26:40 ----A---- C:\Windows\system32\api-ms-win-crt-convert-l1-1-0.dll
2018-07-11 08:26:40 ----A---- C:\Windows\system32\api-ms-win-crt-conio-l1-1-0.dll
2018-07-11 08:26:40 ----A---- C:\Windows\system32\api-ms-win-core-xstate-l2-1-0.dll
2018-07-11 08:26:40 ----A---- C:\Windows\system32\api-ms-win-core-timezone-l1-1-0.dll
2018-07-11 08:26:40 ----A---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-1.dll
2018-07-11 08:26:40 ----A---- C:\Windows\system32\api-ms-win-core-file-l2-1-0.dll
2018-07-11 08:26:40 ----A---- C:\Windows\system32\api-ms-win-core-file-l1-2-0.dll
2018-07-11 08:26:39 ----A---- C:\Windows\system32\ntoskrnl.exe
2018-07-11 08:26:39 ----A---- C:\Windows\system32\ntkrnlpa.exe
2018-07-11 08:26:39 ----A---- C:\Windows\system32\halmacpi.dll
2018-07-11 08:26:39 ----A---- C:\Windows\system32\halacpi.dll
2018-07-11 08:26:39 ----A---- C:\Windows\system32\hal.dll
2018-07-11 08:26:39 ----A---- C:\Windows\system32\api-ms-win-crt-utility-l1-1-0.dll
2018-07-11 08:26:39 ----A---- C:\Windows\system32\api-ms-win-crt-runtime-l1-1-0.dll
2018-07-11 08:26:39 ----A---- C:\Windows\system32\api-ms-win-core-synch-l1-2-0.dll
2018-07-11 08:26:39 ----A---- C:\Windows\system32\api-ms-win-core-localization-l1-2-0.dll
2018-07-11 08:26:38 ----A---- C:\Windows\system32\wininet.dll
2018-07-11 08:26:38 ----A---- C:\Windows\system32\msrating.dll
2018-07-11 08:26:38 ----A---- C:\Windows\system32\dxtmsft.dll
2018-07-11 08:26:38 ----A---- C:\Windows\system32\drivers\usbuhci.sys
2018-07-11 08:26:38 ----A---- C:\Windows\system32\drivers\usbehci.sys
2018-07-11 08:26:38 ----A---- C:\Windows\system32\drivers\mpsdrv.sys
2018-07-11 08:26:38 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2018-07-11 08:26:38 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2018-07-11 08:26:38 ----A---- C:\Windows\system32\dnsrslvr.dll
2018-07-11 08:26:38 ----A---- C:\Windows\system32\dnscacheugc.exe
2018-07-11 08:26:37 ----A---- C:\Windows\system32\webcheck.dll
2018-07-11 08:26:37 ----A---- C:\Windows\system32\ole32.dll
2018-07-11 08:26:37 ----A---- C:\Windows\system32\dxtrans.dll
2018-07-11 08:26:36 ----A---- C:\Windows\system32\msfeeds.dll
2018-07-11 08:26:36 ----A---- C:\Windows\system32\drivers\usbccgp.sys
2018-07-11 08:26:35 ----A---- C:\Windows\system32\winsrv.dll
2018-07-11 08:26:35 ----A---- C:\Windows\system32\rstrui.exe
2018-07-11 08:26:35 ----A---- C:\Windows\system32\ieui.dll
2018-07-11 08:26:35 ----A---- C:\Windows\system32\ie4uinit.exe
2018-07-11 08:26:35 ----A---- C:\Windows\system32\drivers\usbohci.sys
2018-07-11 08:26:35 ----A---- C:\Windows\system32\conhost.exe
2018-07-11 08:26:34 ----A---- C:\Windows\system32\wdigest.dll
2018-07-11 08:26:34 ----A---- C:\Windows\system32\srcore.dll
2018-07-11 08:26:34 ----A---- C:\Windows\system32\schannel.dll
2018-07-11 08:26:34 ----A---- C:\Windows\system32\rpcrt4.dll
2018-07-11 08:26:34 ----A---- C:\Windows\system32\mshtmled.dll
2018-07-11 08:26:34 ----A---- C:\Windows\system32\lsasrv.dll
2018-07-11 08:26:34 ----A---- C:\Windows\system32\kerberos.dll
2018-07-11 08:26:34 ----A---- C:\Windows\system32\iesetup.dll
2018-07-11 08:26:34 ----A---- C:\Windows\system32\advapi32.dll
2018-07-11 08:26:33 ----A---- C:\Windows\system32\TSpkg.dll
2018-07-11 08:26:33 ----A---- C:\Windows\system32\smss.exe
2018-07-11 08:26:33 ----A---- C:\Windows\system32\rpchttp.dll
2018-07-11 08:26:33 ----A---- C:\Windows\system32\occache.dll
2018-07-11 08:26:33 ----A---- C:\Windows\system32\ncrypt.dll
2018-07-11 08:26:33 ----A---- C:\Windows\system32\msv1_0.dll
2018-07-11 08:26:33 ----A---- C:\Windows\system32\KernelBase.dll
2018-07-11 08:26:33 ----A---- C:\Windows\system32\kernel32.dll
2018-07-11 08:26:33 ----A---- C:\Windows\system32\jscript9diag.dll
2018-07-11 08:26:33 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2018-07-11 08:26:33 ----A---- C:\Windows\system32\inseng.dll
2018-07-11 08:26:33 ----A---- C:\Windows\system32\ieUnatt.exe
2018-07-11 08:26:33 ----A---- C:\Windows\system32\iernonce.dll
2018-07-11 08:26:32 ----A---- C:\Windows\system32\rpcss.dll
2018-07-11 08:26:32 ----A---- C:\Windows\system32\jsproxy.dll
2018-07-11 08:26:32 ----A---- C:\Windows\system32\drivers\videoprt.sys
2018-07-11 08:26:32 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2018-07-11 08:26:32 ----A---- C:\Windows\system32\csrsrv.dll
2018-07-11 08:26:32 ----A---- C:\Windows\system32\auditpol.exe
2018-07-11 08:26:32 ----A---- C:\Windows\system32\appidsvc.dll
2018-07-11 08:26:32 ----A---- C:\Windows\system32\appidapi.dll
2018-07-11 08:26:31 ----A---- C:\Windows\system32\MshtmlDac.dll
2018-07-11 08:26:31 ----A---- C:\Windows\system32\ieetwproxystub.dll
2018-07-11 08:26:31 ----A---- C:\Windows\system32\ieetwcollector.exe
2018-07-11 08:26:31 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2018-07-11 08:26:31 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2018-07-11 08:26:31 ----A---- C:\Windows\system32\apisetschema.dll
2018-07-11 08:26:30 ----A---- C:\Windows\system32\sspisrv.dll
2018-07-11 08:26:30 ----A---- C:\Windows\system32\sspicli.dll
2018-07-11 08:26:30 ----A---- C:\Windows\system32\srclient.dll
2018-07-11 08:26:30 ----A---- C:\Windows\system32\setbcdlocale.dll
2018-07-11 08:26:30 ----A---- C:\Windows\system32\secur32.dll
2018-07-11 08:26:30 ----A---- C:\Windows\system32\msobjs.dll
2018-07-11 08:26:30 ----A---- C:\Windows\system32\msaudite.dll
2018-07-11 08:26:30 ----A---- C:\Windows\system32\lsass.exe
2018-07-11 08:26:30 ----A---- C:\Windows\system32\jscript.dll
2018-07-11 08:26:30 ----A---- C:\Windows\system32\ieapfltr.dll
2018-07-11 08:26:30 ----A---- C:\Windows\system32\FirewallAPI.dll
2018-07-11 08:26:30 ----A---- C:\Windows\system32\drivers\appid.sys
2018-07-11 08:26:30 ----A---- C:\Windows\system32\cryptbase.dll
2018-07-11 08:26:30 ----A---- C:\Windows\system32\credssp.dll
2018-07-11 08:26:30 ----A---- C:\Windows\system32\comcat.dll
2018-07-11 08:26:30 ----A---- C:\Windows\system32\bcrypt.dll
2018-07-11 08:26:30 ----A---- C:\Windows\system32\appidpolicyconverter.exe
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2018-07-11 08:26:29 ----A---- C:\Windows\system32\oleres.dll
2018-07-11 08:26:29 ----A---- C:\Windows\system32\MPSSVC.dll
2018-07-11 08:26:29 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2018-07-11 08:26:29 ----A---- C:\Windows\system32\icfupgd.dll
2018-07-11 08:26:29 ----A---- C:\Windows\system32\appidcertstorecheck.exe
2018-07-11 08:26:29 ----A---- C:\Windows\system32\adtschema.dll
2018-07-11 08:26:28 ----A---- C:\Windows\system32\wfapigp.dll
2018-07-11 08:26:28 ----A---- C:\Windows\system32\drivers\usbd.sys
2018-07-11 08:23:08 ----A---- C:\Windows\system32\aitstatic.exe
2018-07-11 08:23:08 ----A---- C:\Windows\system32\aeinv.dll
2018-07-11 08:23:07 ----A---- C:\Windows\system32\appraiser.dll
2018-07-11 08:23:06 ----A---- C:\Windows\system32\invagent.dll
2018-07-11 08:23:06 ----A---- C:\Windows\system32\generaltel.dll
2018-07-11 08:23:06 ----A---- C:\Windows\system32\devinv.dll
2018-07-11 08:23:06 ----A---- C:\Windows\system32\CompatTelRunner.exe
2018-07-11 08:23:06 ----A---- C:\Windows\system32\centel.dll
2018-07-11 08:23:06 ----A---- C:\Windows\system32\aepic.dll
2018-07-11 08:23:06 ----A---- C:\Windows\system32\acmigration.dll

======List of files/folders modified in the last 1 month======

2018-08-03 22:09:53 ----D---- C:\Windows\Temp
2018-08-03 22:09:32 ----D---- C:\Program Files\trend micro
2018-08-03 21:09:37 ----D---- C:\Windows\system32\Tasks
2018-08-03 21:05:59 ----D---- C:\Windows\system32\config
2018-08-03 21:05:24 ----RD---- C:\Program Files
2018-08-03 21:05:07 ----D---- C:\ProgramData\IObit
2018-08-03 21:05:07 ----AD---- C:\Windows\System32
2018-08-03 21:05:06 ----D---- C:\Users\User\AppData\Roaming\CheckPoint
2018-08-03 21:05:03 ----D---- C:\Users\User\AppData\Roaming\IObit
2018-08-03 17:59:13 ----D---- C:\Windows\tracing
2018-08-03 07:37:53 ----D---- C:\Windows
2018-08-02 10:56:21 ----D---- C:\Program Files\Microsoft
2018-08-01 14:24:03 ----SHD---- C:\System Volume Information
2018-07-30 16:55:08 ----D---- C:\Program Files\Opera
2018-07-29 12:25:40 ----A---- C:\Windows\system32\PerfStringBackup.INI
2018-07-29 12:25:39 ----D---- C:\Windows\inf
2018-07-29 08:23:02 ----D---- C:\Windows\system32\Macromed
2018-07-24 08:57:13 ----SD---- C:\Users\User\AppData\Roaming\Microsoft
2018-07-24 08:56:26 ----SHD---- C:\Windows\Installer
2018-07-24 08:56:25 ----D---- C:\ProgramData\Skype
2018-07-24 08:56:24 ----D---- C:\Config.Msi
2018-07-24 08:56:15 ----RD---- C:\Program Files\Skype
2018-07-24 08:53:07 ----D---- C:\Users\User\AppData\Roaming\Skype
2018-07-20 10:11:26 ----D---- C:\Windows\system32\NDF
2018-07-17 00:02:15 ----N---- C:\Windows\system32\MpSigStub.exe
2018-07-15 16:21:12 ----D---- C:\Windows\Microsoft.NET
2018-07-15 16:14:21 ----RSD---- C:\Windows\assembly
2018-07-11 22:52:32 ----D---- C:\Windows\debug
2018-07-11 15:26:19 ----A---- C:\Windows\system32\FlashPlayerApp.exe
2018-07-11 15:15:49 ----D---- C:\Windows\winsxs
2018-07-11 15:10:55 ----D---- C:\Program Files\Internet Explorer
2018-07-11 15:10:54 ----D---- C:\Windows\system32\drivers\cs-CZ
2018-07-11 15:10:54 ----D---- C:\Windows\system32\drivers
2018-07-11 15:10:54 ----D---- C:\Windows\system32\cs-CZ
2018-07-11 15:10:53 ----D---- C:\Windows\system32\en-US
2018-07-11 15:10:45 ----RSD---- C:\Windows\Fonts
2018-07-11 15:10:45 ----D---- C:\Windows\AppPatch
2018-07-11 15:10:38 ----D---- C:\Windows\system32\appraiser
2018-07-11 15:10:31 ----D---- C:\Windows\system32\DriverStore
2018-07-11 09:40:18 ----D---- C:\Windows\system32\MRT
2018-07-11 09:39:58 ----AC---- C:\Windows\system32\MRT.exe
2018-07-11 08:17:58 ----D---- C:\Windows\system32\catroot2

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 KL1;kl1; C:\Windows\system32\DRIVERS\kl1.sys [2012-01-09 133208]
R0 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2016-08-25 252808]
R0 pciide;pciide; C:\Windows\system32\DRIVERS\pciide.sys [2009-07-14 12368]
R0 PxHelp20;PxHelp20; C:\Windows\System32\Drivers\PxHelp20.sys [2010-03-19 45648]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2018-01-01 173288]
R1 kl2;kl2; C:\Windows\system32\DRIVERS\kl2.sys [2012-01-09 11352]
R1 KLIF;Kaspersky Lab Driver; C:\Windows\system32\DRIVERS\klif.sys [2012-01-09 468272]
R1 Vsdatant;Zone Alarm Firewall Driver; C:\Windows\system32\DRIVERS\vsdatant.sys [2017-03-21 365496]
R2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
R3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2009-07-14 4194816]
R3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2016-03-15 3795712]
R3 LVRS;Logitech RightSound Filter Driver; C:\Windows\system32\DRIVERS\lvrs.sys [2012-09-21 310504]
R3 LVUVC;Logitech HD Webcam C270(UVC); C:\Windows\system32\DRIVERS\lvuvc.sys [2012-09-21 4261224]
R3 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2016-08-25 105696]
S1 wfcxacap;WinFast TV PCI Audio Capture Driver; C:\Windows\system32\DRIVERS\wfcxacap.sys [2007-09-19 9856]
S2 wfcxatun;WinFast TV Analog Tuner Driver; C:\Windows\system32\drivers\wfcxatun.sys [2007-09-19 31744]
S2 WFCXVCAP;WinFast TV Video Capture Driver; C:\Windows\system32\drivers\wfcxvcap.sys [2007-09-19 167040]
S3 adusbmdm6501;AnyDATA CDMA USB Modem Driver (PID 6501); C:\Windows\system32\DRIVERS\adusbmdm65.sys [2005-05-02 65408]
S3 adusbser;AnyDATA USB Device for Legacy Serial Communication; C:\Windows\system32\DRIVERS\adusbser.sys [2006-12-20 97920]
S3 adusbser6501;AnyDATA CDMA USB Serial Port (PID 6501); C:\Windows\system32\DRIVERS\adusbser65.sys [2005-05-02 65408]
S3 aic78xx;aic78xx; C:\Windows\system32\drivers\djsvs.sys [2009-07-14 70720]
S3 amdagp;Ovladač filtru AMD portu AGP; C:\Windows\system32\drivers\amdagp.sys [2018-02-10 52928]
S3 aswTap;avast! SecureLine TAP Adapter v3; C:\Windows\system32\DRIVERS\aswTap.sys [2014-07-05 38984]
S3 AtcL001;NDIS Miniport Driver for Atheros L1 Gigabit Ethernet - adaptér; C:\Windows\system32\DRIVERS\l160x86.sys [2009-07-14 47104]
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 78336]
S3 Cam3820;Cam3820 PC Camera Driver; C:\Windows\System32\Drivers\cam3820a.sys [2010-08-25 369024]
S3 catchme;catchme; \??\C:\Users\User\AppData\Local\Temp\catchme.sys []
S3 Dot4;MS IEEE-1284.4 Driver; C:\Windows\system32\DRIVERS\Dot4.sys [2009-07-14 131072]
S3 Dot4Print;Print Class Driver for IEEE-1284.4; C:\Windows\system32\DRIVERS\Dot4Prt.sys [2010-11-20 16384]
S3 dot4usb;MS Dot4USB Filter Dot4USB Filter; C:\Windows\system32\DRIVERS\dot4usb.sys [2009-07-14 36864]
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2012-07-28 49088]
S3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd32.sys [2009-09-23 4808192]
S3 int0800;Intel 28F320C3 Flash Update Device Driver v6.4; C:\Windows\system32\DRIVERS\flashud.sys [2009-09-09 42496]
S3 MSHUSBVideo;NX6000/NX3000/VX2000/VX5000/VX5500/VX7000/Cinema Filter Driver; C:\Windows\System32\Drivers\nx6000.sys [2010-12-13 30576]
S3 MTsensor;ATK0110 ACPI UTILITY; C:\Windows\system32\DRIVERS\ASACPI.sys [2009-07-16 13216]
S3 PSI;PSI; C:\Windows\system32\DRIVERS\psi_mf.sys [2010-09-01 15544]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-11-10 14848]
S3 sisagp;Filtr SIS sběrnice AGP; C:\Windows\system32\drivers\sisagp.sys [2018-02-10 51904]
S3 teamviewervpn;TeamViewer VPN Adapter; C:\Windows\system32\DRIVERS\teamviewervpn.sys [2011-03-30 25088]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2013-10-02 49152]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2012-11-10 27136]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\drivers\usbscan.sys [2013-07-03 36352]
S3 viaagp;Filtr VIA sběrnice AGP; C:\Windows\system32\drivers\viaagp.sys [2018-02-10 52928]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\drivers\viac7.sys [2009-07-14 52736]
S3 wfcxdtun;WinFast DTV BDA Tuner/Demod Driver; C:\Windows\system32\drivers\wfcxdtun.sys [2007-09-19 21248]
S3 wfcxtcap;WinFast DTV BDA Transport Stream Capture Driver; C:\Windows\system32\drivers\wfcxtcap.sys [2007-09-19 15872]
S3 wfcxxbar;WinFast TV Crossbar Driver; C:\Windows\system32\drivers\wfcxxbar.sys [2007-09-19 10496]
S3 wind502u;ASUS USB 2.0 Wireless Network Adapter; C:\Windows\system32\DRIVERS\wind502u.sys [2004-03-25 336256]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 35968]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 ACDaemon;ArcSoft Connect Daemon; C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [2010-03-18 113152]
R2 AdobeActiveFileMonitor10.0;Adobe Active File Monitor V10; D:\Fotoeditory\Adobe Photoshop Elements 10\Elements 10 Organizer\PhotoshopElementsFileAgent.exe [2011-09-14 169624]
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2018-03-21 83984]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 hpqddsvc;Služba HP CUE DeviceDiscovery; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 MSCamSvc;MSCamSvc; C:\Program Files\Microsoft LifeCam\MSCamS32.exe [2010-12-13 135536]
R2 MsMpSvc;Microsoft Antimalware Service; C:\Program Files\Microsoft Security Client\MsMpEng.exe [2016-11-14 103696]
R2 Net Driver HPZ12;Net Driver HPZ12; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 Secunia PSI Agent;Secunia PSI Agent; D:\Aviry\Secunia\PSI\PSIA.exe [2011-04-19 993848]
R2 Secunia Update Agent;Secunia Update Agent; D:\Aviry\Secunia\PSI\sua.exe [2011-04-19 399416]
R2 UleadBurningHelper;Ulead Burning Helper; C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe [2004-12-13 49152]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2012-07-17 1713904]
R2 ZoneAlarm ICM Service;ZoneAlarm ICM Service; D:\Aviry\CheckPoint\ZoneAlarm\ICM-Service.exe [2017-02-14 1037624]
R3 hpqcxs08;hpqcxs08; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R3 NisSrv;@C:\Program Files\Microsoft Security Client\MpAsDesc.dll,-243; C:\Program Files\Microsoft Security Client\NisSrv.exe [2016-11-14 280864]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2017-10-04 107624]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2015-08-28 144200]
S2 vsmon;TrueVector Internet Monitor; D:\Aviry\CheckPoint\ZoneAlarm\vsmon.exe [2017-02-14 4076744]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2018-07-11 335872]
S3 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2017-10-04 47200]
S3 fsssvc;Windows Live Family Safety Service; C:\Program Files\Windows Live\Family Safety\fsssvc.exe [2012-09-12 1512448]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2015-08-28 144200]
S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2013-12-19 136120]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2018-06-16 104960]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2011-06-08 1343400]
S3 ZAPrivacyService;ZoneAlarm Privacy Service; D:\Aviry\CheckPoint\ZoneAlarm\ZaPrivacyService.exe [2016-11-01 114936]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2017-10-04 136288]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2017-10-04 136288]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2017-10-04 136288]

-----------------EOF-----------------

Antusek
Návštěvník
Návštěvník
Příspěvky: 488
Registrován: 17 úno 2007 20:54

Re: Prosím o kontrolu PC podivně funguje Skype, E-mail a win

#6 Příspěvek od Antusek »

Další krok dle Vaší rady udělám zítra. :)

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118275
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu PC podivně funguje Skype, E-mail a win

#7 Příspěvek od Rudy »

Stáhněte OTM: http://oldtimer.geekstogo.com/OTM.exe a uložte na plochu. Spusťte a do levého okna zkopírujte:
:reg
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]

:commands
[Purity]
[Emptytemp]
[Emptyflash]
a klikněte na >MoveIt!<. Po skenu restartujte PC a dejte nový log RSIT.

V systému jsou zbytky po předchozích nainstalovaných antivirech (Kasperski a Avast). Proskenujte čistícími utilitami: https://www.avast.com/cs-cz/uninstall-utility a https://www.instalki.pl/programy/downlo ... mover.html .
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Antusek
Návštěvník
Návštěvník
Příspěvky: 488
Registrován: 17 úno 2007 20:54

Re: Prosím o kontrolu PC podivně funguje Skype, E-mail a win

#8 Příspěvek od Antusek »

Díky. Jdu na to. :)

Antusek
Návštěvník
Návštěvník
Příspěvky: 488
Registrován: 17 úno 2007 20:54

Re: Prosím o kontrolu PC podivně funguje Skype, E-mail a win

#9 Příspěvek od Antusek »

Vkládám log z OTM. ještě to pročistím těma dvěma programy a pak vložím log z RSIT. Ráno byla další aktualizace Windows (ikona vpravo dole). Neinstalovali jsme to. Odpoledne už tam nebyla. Takže uvidíme až to budeme vypínat. :)

Antusek
Návštěvník
Návštěvník
Příspěvky: 488
Registrován: 17 úno 2007 20:54

Re: Prosím o kontrolu PC podivně funguje Skype, E-mail a win

#10 Příspěvek od Antusek »

Posílám log z RSIT a dík za další rady. :)

Logfile of random's system information tool 1.09 (written by random/random)
Run by User at 2018-08-04 16:31:05
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 2 GB (3%) free of 50 GB
Total RAM: 2047 MB (63% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 16:32:49, on 4.8.2018
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.19081)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskhost.exe
C:\Program Files\Microsoft Security Client\msseces.exe
D:\Web kamera\Web Kamera Logitech\LWS\Webcam Software\LWS.exe
C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
C:\Program Files\CCleaner\CCleaner.exe
D:\Aviry\Secunia\PSI\psi_tray.exe
D:\Web kamera\Web Kamera Logitech\LWS\Webcam Software\CameraHelperShell.exe
C:\Windows\system32\DllHost.exe
C:\Windows\system32\SearchFilterHost.exe
D:\Aviry\RSIT\RSIT.exe
C:\Program Files\trend micro\User.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkI ... id=UE12DHP
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - D:\Programy\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.8.0_151\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre1.8.0_151\bin\jp2ssv.dll
O2 - BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - D:\Programy\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O4 - HKLM\..\Run: [AdobeAAMUpdater-1.0] "C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
O4 - HKLM\..\Run: [MSC] "C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
O4 - HKLM\..\Run: [LWS] D:\Web kamera\Web Kamera Logitech\LWS\Webcam Software\LWS.exe -hide
O4 - HKLM\..\Run: [RTHDVCPL] "C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe" -s
O4 - HKLM\..\Run: [ZoneAlarm] "D:\Aviry\CheckPoint\ZoneAlarm\zatray.exe"
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner.exe" /MONITOR
O4 - HKUS\S-1-5-18\..\Run: [ZoneAlarm Windows 10 Upgrader] "C:\ProgramData\CheckPoint\ZoneAlarm\Data\Updates\unpacked==win10=update_win10.zip\upgrade.exe" /delay (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [ZoneAlarm Windows 10 Upgrader] "C:\ProgramData\CheckPoint\ZoneAlarm\Data\Updates\unpacked==win10=update_win10.zip\upgrade.exe" /delay (User 'Default user')
O4 - Startup: AutorunsDisabled
O4 - Global Startup: Secunia PSI Tray.lnk = ?
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://D:\Programy\MICROS~1\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Free YouTube to MP3 Converter - C:\Users\User\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm
O9 - Extra button: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - D:\Programy\MICROS~1\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Zobrazit nebo skrýt HP Smart Web Printing - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - D:\Programy\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: ArcSoft Connect Daemon (ACDaemon) - ArcSoft Inc. - C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
O23 - Service: Adobe Active File Monitor V10 (AdobeActiveFileMonitor10.0) - Adobe Systems Incorporated - D:\Fotoeditory\Adobe Photoshop Elements 10\Elements 10 Organizer\PhotoshopElementsFileAgent.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Secunia PSI Agent - Secunia - D:\Aviry\Secunia\PSI\PSIA.exe
O23 - Service: Secunia Update Agent - Secunia - D:\Aviry\Secunia\PSI\sua.exe
O23 - Service: Ulead Burning Helper (UleadBurningHelper) - Ulead Systems, Inc. - C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Check Point Software Technologies Ltd. - D:\Aviry\CheckPoint\ZoneAlarm\vsmon.exe
O23 - Service: ZoneAlarm Privacy Service (ZAPrivacyService) - Check Point Software Technologies, Ltd. - D:\Aviry\CheckPoint\ZoneAlarm\ZaPrivacyService.exe
O23 - Service: ZoneAlarm ICM Service - Check Point Software Technologies Ltd. - D:\Aviry\CheckPoint\ZoneAlarm\ICM-Service.exe

--
End of file - 6743 bytes

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0347C33E-8762-4905-BF09-768834316C61}]
HP Print Enhancer - D:\Programy\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll [2009-09-20 328248]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre1.8.0_151\bin\ssv.dll [2017-11-05 473664]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre1.8.0_151\bin\jp2ssv.dll [2017-11-05 187968]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856}]
HP Smart BHO Class - D:\Programy\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll [2009-09-20 509496]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"AdobeAAMUpdater-1.0"=C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2013-12-10 472984]
"MSC"=C:\Program Files\Microsoft Security Client\msseces.exe [2016-11-14 1002984]
"LWS"=D:\Web kamera\Web Kamera Logitech\LWS\Webcam Software\LWS.exe [2012-09-13 204136]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [2016-03-15 14737664]
"ZoneAlarm"=D:\Aviry\CheckPoint\ZoneAlarm\zatray.exe [2017-02-14 144696]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2009-09-23 141848]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2009-09-23 173592]
"Persistence"=C:\Windows\system32\igfxpers.exe [2009-09-23 150552]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner.exe [2018-07-20 13684416]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Creative Cloud]
C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2014-02-11 2239376]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\APSDaemon]
C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CCleaner Monitoring]
C:\Program Files\CCleaner\CCleaner.exe [2018-07-20 13684416]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\hpqSRMon]
D:\Programy\HP\Digital Imaging\bin\hpqSRMon.exe [2008-07-22 150528]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]
C:\Program Files\iTunes\iTunesHelper.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LifeCam]
C:\Program Files\Microsoft LifeCam\LifeExp.exe [2010-12-13 135536]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PDFPrint]
D:\Prográmky\PDF24\pdf24.exe [2014-02-06 189480]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
C:\Program Files\QuickTime\QTTask.exe [2014-01-17 421888]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RTHDVCPL]
C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [2016-03-15 14737664]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RunUVC]
D:\Web kamera\UVC Video Camera\EffectDir\UVCtray.exe [2010-08-23 7548928]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype]
C:\Program Files\Skype\Phone\Skype.exe /minimized /regrun []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files\Common Files\Java\Java Update\jusched.exe [2017-09-05 587288]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\UVCSti]
D:\Web kamera\UVC Video Camera\UVCSti.exe [2010-08-23 245760]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WinFastDTV]
C:\Program Files\WinFast\WFDTV\DTVSchdl.exe [2011-01-12 101888]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^HP Digital Imaging Monitor.lnk]
D:\Programy\HP\DIGITA~1\bin\hpqtra08.exe [2009-09-20 270336]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^WinZip Quick Pick.lnk]
D:\ARCHIV~1\WinZip\WZQKPICK.EXE [2011-05-27 610120]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Secunia PSI Tray.lnk - D:\Aviry\Secunia\PSI\psi_tray.exe

C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
AutorunsDisabled

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2009-09-23 218112]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - C:\Windows\system32\webcheck.dll [2018-06-16 230400]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\Windows\system32\wpdshserviceobj.dll [2010-11-20 105984]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vsmon]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"SoftwareSASGeneration"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=lvcodec2.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux1"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"aux2"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"aux3"=wdmaud.drv
"wave5"=wdmaud.drv
"mixer5"=wdmaud.drv
"msacm.siren"=sirenacm.dll
"wave6"=wdmaud.drv
"mixer6"=wdmaud.drv
"MSVideo"=vfwwdm32.dll
"wave7"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer7"=wdmaud.drv
"aux4"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave8"=wdmaud.drv
"mixer8"=wdmaud.drv
"wave9"=wdmaud.drv
"midi6"=wdmaud.drv
"mixer9"=wdmaud.drv
"aux5"=wdmaud.drv
"midi7"=wdmaud.drv
"aux6"=wdmaud.drv
"midi8"=wdmaud.drv
"aux7"=wdmaud.drv
"midi9"=wdmaud.drv
"aux8"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1

======List of files/folders created in the last 1 month======

2018-08-04 16:22:02 ----A---- C:\Windows\ntbtlog.txt
2018-08-04 16:19:26 ----A---- C:\ProgramData\ntuser.dat
2018-08-04 15:57:04 ----D---- C:\_OTM
2018-08-03 21:01:07 ----D---- C:\AdwCleaner
2018-07-11 08:26:50 ----A---- C:\Windows\system32\mshtml.dll
2018-07-11 08:26:47 ----A---- C:\Windows\system32\ieframe.dll
2018-07-11 08:26:45 ----A---- C:\Windows\system32\shell32.dll
2018-07-11 08:26:45 ----A---- C:\Windows\system32\jscript9.dll
2018-07-11 08:26:44 ----A---- C:\Windows\system32\vbscript.dll
2018-07-11 08:26:44 ----A---- C:\Windows\system32\urlmon.dll
2018-07-11 08:26:44 ----A---- C:\Windows\system32\ucrtbase.dll
2018-07-11 08:26:44 ----A---- C:\Windows\system32\drivers\tcpip.sys
2018-07-11 08:26:43 ----A---- C:\Windows\system32\win32k.sys
2018-07-11 08:26:43 ----A---- C:\Windows\system32\iertutil.dll
2018-07-11 08:26:43 ----A---- C:\Windows\system32\ExplorerFrame.dll
2018-07-11 08:26:42 ----A---- C:\Windows\system32\zipfldr.dll
2018-07-11 08:26:42 ----A---- C:\Windows\system32\wkssvc.dll
2018-07-11 08:26:42 ----A---- C:\Windows\system32\drivers\usbport.sys
2018-07-11 08:26:42 ----A---- C:\Windows\system32\drivers\usbhub.sys
2018-07-11 08:26:42 ----A---- C:\Windows\system32\drivers\dfsc.sys
2018-07-11 08:26:41 ----A---- C:\Windows\system32\ntdll.dll
2018-07-11 08:26:40 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2018-07-11 08:26:40 ----A---- C:\Windows\system32\mshtmlmedia.dll
2018-07-11 08:26:40 ----A---- C:\Windows\system32\iedkcs32.dll
2018-07-11 08:26:40 ----A---- C:\Windows\system32\drivers\netio.sys
2018-07-11 08:26:40 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2018-07-11 08:26:40 ----A---- C:\Windows\system32\dnsapi.dll
2018-07-11 08:26:40 ----A---- C:\Windows\system32\api-ms-win-crt-time-l1-1-0.dll
2018-07-11 08:26:40 ----A---- C:\Windows\system32\api-ms-win-crt-string-l1-1-0.dll
2018-07-11 08:26:40 ----A---- C:\Windows\system32\api-ms-win-crt-stdio-l1-1-0.dll
2018-07-11 08:26:40 ----A---- C:\Windows\system32\api-ms-win-crt-process-l1-1-0.dll
2018-07-11 08:26:40 ----A---- C:\Windows\system32\api-ms-win-crt-private-l1-1-0.dll
2018-07-11 08:26:40 ----A---- C:\Windows\system32\api-ms-win-crt-multibyte-l1-1-0.dll
2018-07-11 08:26:40 ----A---- C:\Windows\system32\api-ms-win-crt-math-l1-1-0.dll
2018-07-11 08:26:40 ----A---- C:\Windows\system32\api-ms-win-crt-locale-l1-1-0.dll
2018-07-11 08:26:40 ----A---- C:\Windows\system32\api-ms-win-crt-heap-l1-1-0.dll
2018-07-11 08:26:40 ----A---- C:\Windows\system32\api-ms-win-crt-filesystem-l1-1-0.dll
2018-07-11 08:26:40 ----A---- C:\Windows\system32\api-ms-win-crt-environment-l1-1-0.dll
2018-07-11 08:26:40 ----A---- C:\Windows\system32\api-ms-win-crt-convert-l1-1-0.dll
2018-07-11 08:26:40 ----A---- C:\Windows\system32\api-ms-win-crt-conio-l1-1-0.dll
2018-07-11 08:26:40 ----A---- C:\Windows\system32\api-ms-win-core-xstate-l2-1-0.dll
2018-07-11 08:26:40 ----A---- C:\Windows\system32\api-ms-win-core-timezone-l1-1-0.dll
2018-07-11 08:26:40 ----A---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-1.dll
2018-07-11 08:26:40 ----A---- C:\Windows\system32\api-ms-win-core-file-l2-1-0.dll
2018-07-11 08:26:40 ----A---- C:\Windows\system32\api-ms-win-core-file-l1-2-0.dll
2018-07-11 08:26:39 ----A---- C:\Windows\system32\ntoskrnl.exe
2018-07-11 08:26:39 ----A---- C:\Windows\system32\ntkrnlpa.exe
2018-07-11 08:26:39 ----A---- C:\Windows\system32\halmacpi.dll
2018-07-11 08:26:39 ----A---- C:\Windows\system32\halacpi.dll
2018-07-11 08:26:39 ----A---- C:\Windows\system32\hal.dll
2018-07-11 08:26:39 ----A---- C:\Windows\system32\api-ms-win-crt-utility-l1-1-0.dll
2018-07-11 08:26:39 ----A---- C:\Windows\system32\api-ms-win-crt-runtime-l1-1-0.dll
2018-07-11 08:26:39 ----A---- C:\Windows\system32\api-ms-win-core-synch-l1-2-0.dll
2018-07-11 08:26:39 ----A---- C:\Windows\system32\api-ms-win-core-localization-l1-2-0.dll
2018-07-11 08:26:38 ----A---- C:\Windows\system32\wininet.dll
2018-07-11 08:26:38 ----A---- C:\Windows\system32\msrating.dll
2018-07-11 08:26:38 ----A---- C:\Windows\system32\dxtmsft.dll
2018-07-11 08:26:38 ----A---- C:\Windows\system32\drivers\usbuhci.sys
2018-07-11 08:26:38 ----A---- C:\Windows\system32\drivers\usbehci.sys
2018-07-11 08:26:38 ----A---- C:\Windows\system32\drivers\mpsdrv.sys
2018-07-11 08:26:38 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2018-07-11 08:26:38 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2018-07-11 08:26:38 ----A---- C:\Windows\system32\dnsrslvr.dll
2018-07-11 08:26:38 ----A---- C:\Windows\system32\dnscacheugc.exe
2018-07-11 08:26:37 ----A---- C:\Windows\system32\webcheck.dll
2018-07-11 08:26:37 ----A---- C:\Windows\system32\ole32.dll
2018-07-11 08:26:37 ----A---- C:\Windows\system32\dxtrans.dll
2018-07-11 08:26:36 ----A---- C:\Windows\system32\msfeeds.dll
2018-07-11 08:26:36 ----A---- C:\Windows\system32\drivers\usbccgp.sys
2018-07-11 08:26:35 ----A---- C:\Windows\system32\winsrv.dll
2018-07-11 08:26:35 ----A---- C:\Windows\system32\rstrui.exe
2018-07-11 08:26:35 ----A---- C:\Windows\system32\ieui.dll
2018-07-11 08:26:35 ----A---- C:\Windows\system32\ie4uinit.exe
2018-07-11 08:26:35 ----A---- C:\Windows\system32\drivers\usbohci.sys
2018-07-11 08:26:35 ----A---- C:\Windows\system32\conhost.exe
2018-07-11 08:26:34 ----A---- C:\Windows\system32\wdigest.dll
2018-07-11 08:26:34 ----A---- C:\Windows\system32\srcore.dll
2018-07-11 08:26:34 ----A---- C:\Windows\system32\schannel.dll
2018-07-11 08:26:34 ----A---- C:\Windows\system32\rpcrt4.dll
2018-07-11 08:26:34 ----A---- C:\Windows\system32\mshtmled.dll
2018-07-11 08:26:34 ----A---- C:\Windows\system32\lsasrv.dll
2018-07-11 08:26:34 ----A---- C:\Windows\system32\kerberos.dll
2018-07-11 08:26:34 ----A---- C:\Windows\system32\iesetup.dll
2018-07-11 08:26:34 ----A---- C:\Windows\system32\advapi32.dll
2018-07-11 08:26:33 ----A---- C:\Windows\system32\TSpkg.dll
2018-07-11 08:26:33 ----A---- C:\Windows\system32\smss.exe
2018-07-11 08:26:33 ----A---- C:\Windows\system32\rpchttp.dll
2018-07-11 08:26:33 ----A---- C:\Windows\system32\occache.dll
2018-07-11 08:26:33 ----A---- C:\Windows\system32\ncrypt.dll
2018-07-11 08:26:33 ----A---- C:\Windows\system32\msv1_0.dll
2018-07-11 08:26:33 ----A---- C:\Windows\system32\KernelBase.dll
2018-07-11 08:26:33 ----A---- C:\Windows\system32\kernel32.dll
2018-07-11 08:26:33 ----A---- C:\Windows\system32\jscript9diag.dll
2018-07-11 08:26:33 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2018-07-11 08:26:33 ----A---- C:\Windows\system32\inseng.dll
2018-07-11 08:26:33 ----A---- C:\Windows\system32\ieUnatt.exe
2018-07-11 08:26:33 ----A---- C:\Windows\system32\iernonce.dll
2018-07-11 08:26:32 ----A---- C:\Windows\system32\rpcss.dll
2018-07-11 08:26:32 ----A---- C:\Windows\system32\jsproxy.dll
2018-07-11 08:26:32 ----A---- C:\Windows\system32\drivers\videoprt.sys
2018-07-11 08:26:32 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2018-07-11 08:26:32 ----A---- C:\Windows\system32\csrsrv.dll
2018-07-11 08:26:32 ----A---- C:\Windows\system32\auditpol.exe
2018-07-11 08:26:32 ----A---- C:\Windows\system32\appidsvc.dll
2018-07-11 08:26:32 ----A---- C:\Windows\system32\appidapi.dll
2018-07-11 08:26:31 ----A---- C:\Windows\system32\MshtmlDac.dll
2018-07-11 08:26:31 ----A---- C:\Windows\system32\ieetwproxystub.dll
2018-07-11 08:26:31 ----A---- C:\Windows\system32\ieetwcollector.exe
2018-07-11 08:26:31 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2018-07-11 08:26:31 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2018-07-11 08:26:31 ----A---- C:\Windows\system32\apisetschema.dll
2018-07-11 08:26:30 ----A---- C:\Windows\system32\sspisrv.dll
2018-07-11 08:26:30 ----A---- C:\Windows\system32\sspicli.dll
2018-07-11 08:26:30 ----A---- C:\Windows\system32\srclient.dll
2018-07-11 08:26:30 ----A---- C:\Windows\system32\setbcdlocale.dll
2018-07-11 08:26:30 ----A---- C:\Windows\system32\secur32.dll
2018-07-11 08:26:30 ----A---- C:\Windows\system32\msobjs.dll
2018-07-11 08:26:30 ----A---- C:\Windows\system32\msaudite.dll
2018-07-11 08:26:30 ----A---- C:\Windows\system32\lsass.exe
2018-07-11 08:26:30 ----A---- C:\Windows\system32\jscript.dll
2018-07-11 08:26:30 ----A---- C:\Windows\system32\ieapfltr.dll
2018-07-11 08:26:30 ----A---- C:\Windows\system32\FirewallAPI.dll
2018-07-11 08:26:30 ----A---- C:\Windows\system32\drivers\appid.sys
2018-07-11 08:26:30 ----A---- C:\Windows\system32\cryptbase.dll
2018-07-11 08:26:30 ----A---- C:\Windows\system32\credssp.dll
2018-07-11 08:26:30 ----A---- C:\Windows\system32\comcat.dll
2018-07-11 08:26:30 ----A---- C:\Windows\system32\bcrypt.dll
2018-07-11 08:26:30 ----A---- C:\Windows\system32\appidpolicyconverter.exe
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2018-07-11 08:26:29 ----A---- C:\Windows\system32\oleres.dll
2018-07-11 08:26:29 ----A---- C:\Windows\system32\MPSSVC.dll
2018-07-11 08:26:29 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2018-07-11 08:26:29 ----A---- C:\Windows\system32\icfupgd.dll
2018-07-11 08:26:29 ----A---- C:\Windows\system32\appidcertstorecheck.exe
2018-07-11 08:26:29 ----A---- C:\Windows\system32\adtschema.dll
2018-07-11 08:26:28 ----A---- C:\Windows\system32\wfapigp.dll
2018-07-11 08:26:28 ----A---- C:\Windows\system32\drivers\usbd.sys
2018-07-11 08:23:08 ----A---- C:\Windows\system32\aitstatic.exe
2018-07-11 08:23:08 ----A---- C:\Windows\system32\aeinv.dll
2018-07-11 08:23:07 ----A---- C:\Windows\system32\appraiser.dll
2018-07-11 08:23:06 ----A---- C:\Windows\system32\invagent.dll
2018-07-11 08:23:06 ----A---- C:\Windows\system32\generaltel.dll
2018-07-11 08:23:06 ----A---- C:\Windows\system32\devinv.dll
2018-07-11 08:23:06 ----A---- C:\Windows\system32\CompatTelRunner.exe
2018-07-11 08:23:06 ----A---- C:\Windows\system32\centel.dll
2018-07-11 08:23:06 ----A---- C:\Windows\system32\aepic.dll
2018-07-11 08:23:06 ----A---- C:\Windows\system32\acmigration.dll

======List of files/folders modified in the last 1 month======

2018-08-04 16:31:50 ----D---- C:\Windows\Temp
2018-08-04 16:31:12 ----D---- C:\Program Files\trend micro
2018-08-04 16:25:21 ----D---- C:\ProgramData\AVAST Software
2018-08-04 16:25:19 ----RD---- C:\Program Files
2018-08-04 16:22:03 ----D---- C:\Windows
2018-08-04 16:20:46 ----D---- C:\Windows\system32\config
2018-08-04 16:19:54 ----AD---- C:\Windows\System32
2018-08-04 16:19:37 ----D---- C:\ProgramData
2018-08-04 16:19:35 ----D---- C:\Windows\system32\drivers
2018-08-04 16:18:41 ----SHD---- C:\System Volume Information
2018-08-04 16:17:00 ----D---- C:\Windows\system32\Macromed
2018-08-03 21:09:37 ----D---- C:\Windows\system32\Tasks
2018-08-03 21:05:07 ----D---- C:\ProgramData\IObit
2018-08-03 21:05:06 ----D---- C:\Users\User\AppData\Roaming\CheckPoint
2018-08-03 21:05:03 ----D---- C:\Users\User\AppData\Roaming\IObit
2018-08-03 17:59:13 ----D---- C:\Windows\tracing
2018-08-02 10:56:21 ----D---- C:\Program Files\Microsoft
2018-07-30 16:55:08 ----D---- C:\Program Files\Opera
2018-07-29 12:25:40 ----A---- C:\Windows\system32\PerfStringBackup.INI
2018-07-29 12:25:39 ----D---- C:\Windows\inf
2018-07-24 08:57:13 ----SD---- C:\Users\User\AppData\Roaming\Microsoft
2018-07-24 08:56:26 ----SHD---- C:\Windows\Installer
2018-07-24 08:56:25 ----D---- C:\ProgramData\Skype
2018-07-24 08:56:24 ----D---- C:\Config.Msi
2018-07-24 08:56:15 ----RD---- C:\Program Files\Skype
2018-07-24 08:53:07 ----D---- C:\Users\User\AppData\Roaming\Skype
2018-07-20 10:11:26 ----D---- C:\Windows\system32\NDF
2018-07-17 00:02:15 ----N---- C:\Windows\system32\MpSigStub.exe
2018-07-15 16:21:12 ----D---- C:\Windows\Microsoft.NET
2018-07-15 16:14:21 ----RSD---- C:\Windows\assembly
2018-07-11 22:52:32 ----D---- C:\Windows\debug
2018-07-11 15:26:19 ----A---- C:\Windows\system32\FlashPlayerApp.exe
2018-07-11 15:15:49 ----D---- C:\Windows\winsxs
2018-07-11 15:10:55 ----D---- C:\Program Files\Internet Explorer
2018-07-11 15:10:54 ----D---- C:\Windows\system32\drivers\cs-CZ
2018-07-11 15:10:54 ----D---- C:\Windows\system32\cs-CZ
2018-07-11 15:10:53 ----D---- C:\Windows\system32\en-US
2018-07-11 15:10:45 ----RSD---- C:\Windows\Fonts
2018-07-11 15:10:45 ----D---- C:\Windows\AppPatch
2018-07-11 15:10:38 ----D---- C:\Windows\system32\appraiser
2018-07-11 15:10:31 ----D---- C:\Windows\system32\DriverStore
2018-07-11 09:40:18 ----D---- C:\Windows\system32\MRT
2018-07-11 09:39:58 ----AC---- C:\Windows\system32\MRT.exe
2018-07-11 08:17:58 ----D---- C:\Windows\system32\catroot2

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2016-08-25 252808]
R0 pciide;pciide; C:\Windows\system32\DRIVERS\pciide.sys [2009-07-14 12368]
R0 PxHelp20;PxHelp20; C:\Windows\System32\Drivers\PxHelp20.sys [2010-03-19 45648]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2018-01-01 173288]
R1 kl2;kl2; C:\Windows\system32\DRIVERS\kl2.sys [2012-01-09 11352]
R1 Vsdatant;Zone Alarm Firewall Driver; C:\Windows\system32\DRIVERS\vsdatant.sys [2017-03-21 365496]
R2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
R3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2009-07-14 4194816]
R3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2016-03-15 3795712]
R3 LVRS;Logitech RightSound Filter Driver; C:\Windows\system32\DRIVERS\lvrs.sys [2012-09-21 310504]
R3 LVUVC;Logitech HD Webcam C270(UVC); C:\Windows\system32\DRIVERS\lvuvc.sys [2012-09-21 4261224]
R3 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2016-08-25 105696]
S1 KLIF;Kaspersky Lab Driver; C:\Windows\system32\DRIVERS\klif.sys []
S1 wfcxacap;WinFast TV PCI Audio Capture Driver; C:\Windows\system32\DRIVERS\wfcxacap.sys [2007-09-19 9856]
S2 wfcxatun;WinFast TV Analog Tuner Driver; C:\Windows\system32\drivers\wfcxatun.sys [2007-09-19 31744]
S2 WFCXVCAP;WinFast TV Video Capture Driver; C:\Windows\system32\drivers\wfcxvcap.sys [2007-09-19 167040]
S3 adusbmdm6501;AnyDATA CDMA USB Modem Driver (PID 6501); C:\Windows\system32\DRIVERS\adusbmdm65.sys [2005-05-02 65408]
S3 adusbser;AnyDATA USB Device for Legacy Serial Communication; C:\Windows\system32\DRIVERS\adusbser.sys [2006-12-20 97920]
S3 adusbser6501;AnyDATA CDMA USB Serial Port (PID 6501); C:\Windows\system32\DRIVERS\adusbser65.sys [2005-05-02 65408]
S3 aic78xx;aic78xx; C:\Windows\system32\drivers\djsvs.sys [2009-07-14 70720]
S3 amdagp;Ovladač filtru AMD portu AGP; C:\Windows\system32\drivers\amdagp.sys [2018-02-10 52928]
S3 aswTap;avast! SecureLine TAP Adapter v3; C:\Windows\system32\DRIVERS\aswTap.sys [2014-07-05 38984]
S3 AtcL001;NDIS Miniport Driver for Atheros L1 Gigabit Ethernet - adaptér; C:\Windows\system32\DRIVERS\l160x86.sys [2009-07-14 47104]
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 78336]
S3 Cam3820;Cam3820 PC Camera Driver; C:\Windows\System32\Drivers\cam3820a.sys [2010-08-25 369024]
S3 catchme;catchme; \??\C:\Users\User\AppData\Local\Temp\catchme.sys []
S3 Dot4;MS IEEE-1284.4 Driver; C:\Windows\system32\DRIVERS\Dot4.sys [2009-07-14 131072]
S3 Dot4Print;Print Class Driver for IEEE-1284.4; C:\Windows\system32\DRIVERS\Dot4Prt.sys [2010-11-20 16384]
S3 dot4usb;MS Dot4USB Filter Dot4USB Filter; C:\Windows\system32\DRIVERS\dot4usb.sys [2009-07-14 36864]
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2012-07-28 49088]
S3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd32.sys [2009-09-23 4808192]
S3 int0800;Intel 28F320C3 Flash Update Device Driver v6.4; C:\Windows\system32\DRIVERS\flashud.sys [2009-09-09 42496]
S3 MSHUSBVideo;NX6000/NX3000/VX2000/VX5000/VX5500/VX7000/Cinema Filter Driver; C:\Windows\System32\Drivers\nx6000.sys [2010-12-13 30576]
S3 MTsensor;ATK0110 ACPI UTILITY; C:\Windows\system32\DRIVERS\ASACPI.sys [2009-07-16 13216]
S3 PSI;PSI; C:\Windows\system32\DRIVERS\psi_mf.sys [2010-09-01 15544]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-11-10 14848]
S3 sisagp;Filtr SIS sběrnice AGP; C:\Windows\system32\drivers\sisagp.sys [2018-02-10 51904]
S3 teamviewervpn;TeamViewer VPN Adapter; C:\Windows\system32\DRIVERS\teamviewervpn.sys [2011-03-30 25088]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2013-10-02 49152]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2012-11-10 27136]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\drivers\usbscan.sys [2013-07-03 36352]
S3 viaagp;Filtr VIA sběrnice AGP; C:\Windows\system32\drivers\viaagp.sys [2018-02-10 52928]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\drivers\viac7.sys [2009-07-14 52736]
S3 wfcxdtun;WinFast DTV BDA Tuner/Demod Driver; C:\Windows\system32\drivers\wfcxdtun.sys [2007-09-19 21248]
S3 wfcxtcap;WinFast DTV BDA Transport Stream Capture Driver; C:\Windows\system32\drivers\wfcxtcap.sys [2007-09-19 15872]
S3 wfcxxbar;WinFast TV Crossbar Driver; C:\Windows\system32\drivers\wfcxxbar.sys [2007-09-19 10496]
S3 wind502u;ASUS USB 2.0 Wireless Network Adapter; C:\Windows\system32\DRIVERS\wind502u.sys [2004-03-25 336256]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 35968]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 ACDaemon;ArcSoft Connect Daemon; C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [2010-03-18 113152]
R2 AdobeActiveFileMonitor10.0;Adobe Active File Monitor V10; D:\Fotoeditory\Adobe Photoshop Elements 10\Elements 10 Organizer\PhotoshopElementsFileAgent.exe [2011-09-14 169624]
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2018-03-21 83984]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 hpqddsvc;Služba HP CUE DeviceDiscovery; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 MSCamSvc;MSCamSvc; C:\Program Files\Microsoft LifeCam\MSCamS32.exe [2010-12-13 135536]
R2 MsMpSvc;Microsoft Antimalware Service; C:\Program Files\Microsoft Security Client\MsMpEng.exe [2016-11-14 103696]
R2 Net Driver HPZ12;Net Driver HPZ12; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 Secunia PSI Agent;Secunia PSI Agent; D:\Aviry\Secunia\PSI\PSIA.exe [2011-04-19 993848]
R2 Secunia Update Agent;Secunia Update Agent; D:\Aviry\Secunia\PSI\sua.exe [2011-04-19 399416]
R2 UleadBurningHelper;Ulead Burning Helper; C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe [2004-12-13 49152]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2012-07-17 1713904]
R2 ZoneAlarm ICM Service;ZoneAlarm ICM Service; D:\Aviry\CheckPoint\ZoneAlarm\ICM-Service.exe [2017-02-14 1037624]
R3 hpqcxs08;hpqcxs08; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R3 NisSrv;@C:\Program Files\Microsoft Security Client\MpAsDesc.dll,-243; C:\Program Files\Microsoft Security Client\NisSrv.exe [2016-11-14 280864]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2017-10-04 107624]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2015-08-28 144200]
S2 vsmon;TrueVector Internet Monitor; D:\Aviry\CheckPoint\ZoneAlarm\vsmon.exe [2017-02-14 4076744]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2018-07-11 335872]
S3 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2017-10-04 47200]
S3 fsssvc;Windows Live Family Safety Service; C:\Program Files\Windows Live\Family Safety\fsssvc.exe [2012-09-12 1512448]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2015-08-28 144200]
S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2013-12-19 136120]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2018-06-16 104960]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2011-06-08 1343400]
S3 ZAPrivacyService;ZoneAlarm Privacy Service; D:\Aviry\CheckPoint\ZoneAlarm\ZaPrivacyService.exe [2016-11-01 114936]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2017-10-04 136288]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2017-10-04 136288]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2017-10-04 136288]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118275
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu PC podivně funguje Skype, E-mail a win

#11 Příspěvek od Rudy »

Jak to bude s vypínáním, vám předem nepovím. Faktem je, že 2GB volného místa na disku je dost málo a může způsobovat vámi popisované problémy. Přesuňte někatrá svá data na jiné úložiště, případně odinstalujte nepoužívané programy tak, aby jste měl na systémovém disku minimálně 6-8GB volného místa.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Antusek
Návštěvník
Návštěvník
Příspěvky: 488
Registrován: 17 úno 2007 20:54

Re: Prosím o kontrolu PC podivně funguje Skype, E-mail a win

#12 Příspěvek od Antusek »

Disk je rozdělen na dvě části, C: - Systémový disk (Windows, program files, aj.) a D: (Data) Ostatní programy. Co mám ještě udělat. Nebo to je již o.k? Díky za rady.
:)

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118275
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu PC podivně funguje Skype, E-mail a win

#13 Příspěvek od Rudy »

Tak log je OK, pouze na systémovém disku je málo volného místa. Aktuálně 2GB a z důvodu umístění stránkovacího souboru (má proměnnou velikost) musí zbývat na syst. disku volné místo 6-8GB. Z toho důvodu je nutné přesunout některá vaše data (dokumenty, apod.) na jiné úložiště, nebo odinstalovat nepoužívané programy.
System drive C: has 2 GB (3%) free of 50 GB
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Antusek
Návštěvník
Návštěvník
Příspěvky: 488
Registrován: 17 úno 2007 20:54

Re: Prosím o kontrolu PC podivně funguje Skype, E-mail a win

#14 Příspěvek od Antusek »

Děkuji za pomoc. S diskem C se pokusím něco udělat.
:closed:

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118275
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu PC podivně funguje Skype, E-mail a win

#15 Příspěvek od Rudy »

Nemáte zač! :)
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Zamčeno