Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prosím o kontrolu logu. Pomalý počítač.

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zamčeno
Zpráva
Autor
lukykostka
Návštěvník
Návštěvník
Příspěvky: 13
Registrován: 10 bře 2013 21:04

Prosím o kontrolu logu. Pomalý počítač.

#1 Příspěvek od lukykostka »

Moc prosím o kontrolu logu. Poslední dobou mám strašně pomalý počítač.

Díky



Logfile of random's system information tool 1.09 (written by random/random)
Run by Uživatel at 2013-03-10 21:06:34
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 61 GB (59%) free of 102 GB
Total RAM: 2038 MB (32% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 21:06:48, on 10.3.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16464)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\iDisplay\iDisplay.exe
C:\Program Files (x86)\GoforFiles\GFFUpdater.exe
C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Program Files (x86)\iDisplay\adb.exe
C:\Users\Uživatel\AppData\Roaming\Yontoo\YontooDesktop.exe
C:\Users\Uživatel\AppData\Roaming\Dropbox\biAn\Dropbox.exe
C:\Users\Uživatel\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
C:\Program Files (x86)\SweetIM\Messenger\SweetIM.exe
C:\Program Files (x86)\SweetIM\Communicator\SweetPacksUpdateManager.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Ask.com\Updater\Updater.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Uživatel.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.delta-search.com/?affID=1192 ... 5d6089ef30
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://home.sweetim.com/?crg=3.1010000. ... AEC50937A5}
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: UrlSearchHook Class - {00000000-6E41-4FD3-8538-502F5495E5FC} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~2\Office14\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: Pomocná služba pro přihlášení k účtu Microsoft - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~2\Office14\URLREDIR.DLL
O2 - BHO: Ask Toolbar BHO - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O2 - BHO: SWEETIE - {EEE6C35C-6118-11DC-9C72-001320C79847} - C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll
O3 - Toolbar: SweetPacks Toolbar for Internet Explorer - {EEE6C35B-6118-11DC-9C72-001320C79847} - C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll
O3 - Toolbar: Ask Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll
O4 - HKLM\..\Run: [HotkeyMon] AsusSender.exe C:\Program Files (x86)\ASUS\HotkeyService\HotKeyMon.exe
O4 - HKLM\..\Run: [HotkeyService] AsusSender.exe C:\Program Files (x86)\ASUS\HotkeyService\HotkeyService.exe
O4 - HKLM\..\Run: [NUSB3MON] "C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe"
O4 - HKLM\..\Run: [BCSSync] "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices
O4 - HKLM\..\Run: [SweetIM] C:\Program Files (x86)\SweetIM\Messenger\SweetIM.exe
O4 - HKLM\..\Run: [Sweetpacks Communicator] C:\Program Files (x86)\SweetIM\Communicator\SweetPacksUpdateManager.exe
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [ApnUpdater] "C:\Program Files (x86)\Ask.com\Updater\Updater.exe"
O4 - HKLM\..\Run: [Smart File Advisor] "C:\Program Files (x86)\Smart File Advisor\sfa.exe" /checkassoc
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [Air Display Support] "C:\Program Files\Avatron\Air Display\AirDisplay.exe"
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "C:\Users\Uživatel\AppData\Roaming\Seznam.cz\szninstall.exe" -c
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "C:\Users\Uživatel\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
O4 - HKCU\..\Run: [Yontoo Desktop] "C:\Users\Uživatel\AppData\Roaming\Yontoo\YontooDesktop.exe"
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-21-2004717480-3392484521-2237306682-1001\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-2004717480-3392484521-2237306682-1001\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'UpdatusUser')
O4 - Startup: Dropbox.lnk = ?
O8 - Extra context menu item: Add to Evernote 4.0 - res://C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll/204
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~2\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~2\MICROS~2\Office14\ONBttnIE.dll/105
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - res://C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll/204 (file missing)
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - res://C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll/204 (file missing)
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O20 - AppInit_DLLs: c:\progra~3\browse~1\261095~1.52\{c16c1~1\browse~1.dll C:\Windows\SysWOW64\nvinit.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Asus Launcher Service (AsusService) - Unknown owner - C:\Windows\SysWOW64\AsusService.exe
O23 - Service: AVTHelper - Avatron Software - C:\Program Files\Avatron\Air Display\AVTHelper.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files (x86)\Bonjour\mDNSResponder.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: MyPublicWiFi Service (MyPublicWiFiService) - Unknown owner - C:\Program Files (x86)\MyPublicWiFi\PublicWiFiService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - CACE Technologies, Inc. - C:\Program Files (x86)\WinPcap\rpcapd.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: rtpMIDIService - Tobias Erichsen - C:\Program Files (x86)\Tobias Erichsen\rtpMIDI\rtpMIDISvc.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype C2C Service - Skype Technologies S.A. - C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: TeamViewer 8 (TeamViewer8) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 14587 bytes

======Listing Processes======

\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
winlogon.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\nvvsvc.exe
C:\Windows\system32\svchost.exe -k RPCSS
"C:\Program Files\Microsoft Security Client\MsMpEng.exe"
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
"C:\Program Files\NVIDIA Corporation\Display\NvXDSync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\WLANExt.exe 31151984
\??\C:\Windows\system32\conhost.exe "1241077966-99622821911144242774195628692449605232013349002-8114536781085012307
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"taskhost.exe"
C:\Windows\SysWOW64\AsusService.exe
"C:\Program Files\Avatron\Air Display\AVTHelper.exe"
taskeng.exe {6C596344-6F86-47BA-ADD8-6ACE285A6F30}
"C:\Program Files (x86)\Bonjour\mDNSResponder.exe"
"C:\Windows\system32\Dwm.exe"
"C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe"
C:\Windows\Explorer.EXE
taskeng.exe {F53584C4-E84E-49E1-A9AF-DFA16EB486D4}
"C:\Program Files (x86)\iDisplay\iDisplay.exe" -startup
"C:\Program Files (x86)\GoforFiles\GFFUpdater.exe"
"C:\Program Files (x86)\MyPublicWiFi\PublicWiFiService.exe"
"C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
C:\Windows\system32\igfxsrvc.exe -Embedding
"C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
"C:\Program Files (x86)\Tobias Erichsen\rtpMIDI\rtpMIDISvc.exe"
"C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe"
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe"
adb.exe fork-server server
\??\C:\Windows\system32\conhost.exe "-122237254317647663311327069637-1139153104-958837133-15047181511017541179-1232920518
"C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide /waitservice
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
"C:\Program Files\Avatron\Air Display\AirDisplay.exe"
"C:\Program Files (x86)\Yontoo\Y2Desktop.Updater.exe" "C:\Users\U×ivatel\AppData\Roaming\Yontoo\YontooDesktop.exe"
WLIDSvcM.exe 2116
"C:\Users\Uživatel\AppData\Roaming\Yontoo\YontooDesktop.exe"
"C:\Users\Uživatel\AppData\Roaming\Dropbox\bin\Dropbox.exe" /systemstartup
"C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe"
szndesktop.exe default start
"C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe"
"C:\Program Files (x86)\ASUS\HotkeyService\HotKeyMon.exe"
"C:\Program Files (x86)\ASUS\HotkeyService\HotkeyService.exe"
"C:\Program Files (x86)\SweetIM\Messenger\SweetIM.exe"
"C:\Program Files (x86)\SweetIM\Communicator\SweetPacksUpdateManager.exe"
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Program Files (x86)\Ask.com\Updater\Updater.exe"
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files\Microsoft Security Client\NisSrv.exe"
C:\Windows\system32\svchost.exe -k bthsvcs
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files\Synaptics\SynTP\SynTPHelper.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Windows\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --restore-last-session
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="3660.0.560394228\99817173" --supports-dual-gpus=false --gpu-vendor-id=0x8086 --gpu-device-id=0xa001 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=8.14.10.2230 --ignored=" --type=renderer " /prefetch:12
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=ForceCompositingMode/thread/InfiniteCache/No/OmniboxSearchSuggestTrialStarted2013Q1/9/OneClickSignIn/Standard/OverlappedReadImpact/OverlappedReadDisabled/Prerender/PrerenderEnabled/PrerenderLocalPredictor/Disabled/SideloadWipeout/Enabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_09/UMA-Uniformity-Trial-1-Percent/group_79/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-20-Percent/group_04/UMA-Uniformity-Trial-5-Percent/group_19/UMA-Uniformity-Trial-50-Percent/default/ --extension-process --renderer-print-preview --enable-threaded-compositing --channel="3660.1.1529291210\1333564747" /prefetch:3
"C:\Windows\system32\cmd.exe" /S/C "C:\Users\UIVATE~1\AppData\Local\LOGMEI~1\LMIR0001.tmp.bat"
\??\C:\Windows\system32\conhost.exe "105042828268914774-294223611-9498850034296226721677264781645414704-702968430
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=ppapi --channel="3660.6.453097760\905256381" --lang=cs --ignored=" --type=renderer " /prefetch:13
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=ForceCompositingMode/thread/InfiniteCache/No/NewTabButton/default/OmniboxHQPNewScoringMax1400/Standard/OmniboxHQPOnlyCountMatchesAtWordBoundaries/Standard/OmniboxHQPReplaceHUPRearrangeNumComponents/Standard/OmniboxHUPCreateShorterMatch/Standard/OmniboxHUPCullRedirects/Standard/OmniboxSearchSuggestTrialStarted2013Q1/9/OneClickSignIn/Standard/OverlappedReadImpact/OverlappedReadDisabled/Prerender/PrerenderEnabled/PrerenderLocalPredictor/Disabled/SideloadWipeout/Enabled/SpdyCwnd/cwnd16/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_09/UMA-Uniformity-Trial-1-Percent/group_79/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-20-Percent/group_04/UMA-Uniformity-Trial-5-Percent/group_19/UMA-Uniformity-Trial-50-Percent/default/ --renderer-print-preview --enable-threaded-compositing --channel="3660.14.461471794\2096247653" /prefetch:3
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=ForceCompositingMode/thread/InfiniteCache/No/NewTabButton/default/OmniboxHQPNewScoringMax1400/Standard/OmniboxHQPOnlyCountMatchesAtWordBoundaries/Standard/OmniboxHQPReplaceHUPRearrangeNumComponents/Standard/OmniboxHUPCreateShorterMatch/Standard/OmniboxHUPCullRedirects/Standard/OmniboxSearchSuggestTrialStarted2013Q1/9/OneClickSignIn/Standard/OverlappedReadImpact/OverlappedReadDisabled/Prerender/PrerenderEnabled/PrerenderLocalPredictor/Disabled/SideloadWipeout/Enabled/SpdyCwnd/cwnd16/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_09/UMA-Uniformity-Trial-1-Percent/group_79/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-20-Percent/group_04/UMA-Uniformity-Trial-5-Percent/group_19/UMA-Uniformity-Trial-50-Percent/default/ --renderer-print-preview --enable-threaded-compositing --channel="3660.15.1388160821\1313765274" /prefetch:3
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=ForceCompositingMode/thread/InfiniteCache/No/NewTabButton/default/OmniboxHQPNewScoringMax1400/Standard/OmniboxHQPOnlyCountMatchesAtWordBoundaries/Standard/OmniboxHQPReplaceHUPRearrangeNumComponents/Standard/OmniboxHUPCreateShorterMatch/Standard/OmniboxHUPCullRedirects/Standard/OmniboxSearchSuggestTrialStarted2013Q1/9/OneClickSignIn/Standard/OverlappedReadImpact/OverlappedReadDisabled/Prerender/PrerenderEnabled/PrerenderLocalPredictor/Disabled/SideloadWipeout/Enabled/SpdyCwnd/cwnd16/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_09/UMA-Uniformity-Trial-1-Percent/group_79/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-20-Percent/group_04/UMA-Uniformity-Trial-5-Percent/group_19/UMA-Uniformity-Trial-50-Percent/default/ --renderer-print-preview --enable-threaded-compositing --channel="3660.17.2115244035\1339429142" /prefetch:3
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=ForceCompositingMode/thread/InfiniteCache/No/NewTabButton/default/OmniboxHQPNewScoringMax1400/Standard/OmniboxHQPOnlyCountMatchesAtWordBoundaries/Standard/OmniboxHQPReplaceHUPRearrangeNumComponents/Standard/OmniboxHUPCreateShorterMatch/Standard/OmniboxHUPCullRedirects/Standard/OmniboxSearchSuggestTrialStarted2013Q1/9/OneClickSignIn/Standard/OverlappedReadImpact/OverlappedReadDisabled/Prerender/PrerenderEnabled/PrerenderLocalPredictor/Disabled/SideloadWipeout/Enabled/SpdyCwnd/cwnd16/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_09/UMA-Uniformity-Trial-1-Percent/group_79/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-20-Percent/group_04/UMA-Uniformity-Trial-5-Percent/group_19/UMA-Uniformity-Trial-50-Percent/default/ --renderer-print-preview --enable-threaded-compositing --channel="3660.18.2130665563\845585081" /prefetch:3
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe11_ Global\UsGthrCtrlFltPipeMssGthrPipe11 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 520 524 532 65536 528
"C:\Users\Uživatel\Downloads\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe
timeout /T 3

======Scheduled tasks folder======

C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~3\Office14\GROOVEEX.DLL [2012-08-16 6670496]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17 529664]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype add-on for Internet Explorer - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2013-01-31 6304888]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~3\Office14\URLREDIR.DLL [2010-12-21 689040]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-07-27 63944]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~2\MICROS~2\Office14\GROOVEEX.DLL [2012-08-16 4171424]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2013-03-10 461216]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocná služba pro přihlášení k účtu Microsoft - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17 441592]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Browser Helper - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2013-01-31 4528760]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~2\Office14\URLREDIR.DLL [2010-12-21 561552]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}]
Ask Toolbar - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll [2013-02-08 1520776]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2013-03-10 170912]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EEE6C35C-6118-11DC-9C72-001320C79847}]
SweetPacks Browser Helper - C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll [2012-07-04 1310040]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{EEE6C35B-6118-11DC-9C72-001320C79847} - SweetPacks Toolbar for Internet Explorer - C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll [2012-07-04 1310040]
{D4027C7F-154A-4066-A1AD-4243D8127440} - Ask Toolbar - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll [2013-02-08 1520776]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IAAnotif"=C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\iaanotif.exe [2009-06-04 186904]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2011-03-30 11447912]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2011-03-30 1886504]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2011-03-30 165912]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2011-03-30 385560]
"Persistence"=C:\Windows\system32\igfxpers.exe [2011-03-30 364056]
"SynAsusAcpi"=C:\Program Files\Synaptics\SynTP\SynAsusAcpi.exe [2011-03-30 92456]
"MSC"=C:\Program Files\Microsoft Security Client\msseces.exe [2013-01-27 1281512]
"egui"=C:\Program Files\ESET\ESET Smart Security\egui.exe [2012-11-26 6325936]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"310_2041191652054"=C:\Users\UIVATE~1\AppData\Local\LOGMEI~1\LMIR0001.tmp_r.bat [2013-03-10 285]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2012-11-09 17878704]
"Air Display Support"=C:\Program Files\Avatron\Air Display\AirDisplay.exe [2012-09-24 2750912]
"cz.seznam.software.autoupdate"=C:\Users\Uživatel\AppData\Roaming\Seznam.cz\szninstall.exe [2012-09-13 1009288]
"cz.seznam.software.szndesktop"=C:\Users\Uživatel\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [2013-01-22 92152]
"Yontoo Desktop"=C:\Users\Uživatel\AppData\Roaming\Yontoo\YontooDesktop.exe [2013-03-06 42784]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IJNetworkScanUtility]
C:\Program Files (x86)\Canon\Canon IJ Network Scan Utility\CNMNSUT.exe [2010-08-24 206240]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Uživatel^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^EvernoteClipper.lnk]
C:\PROGRA~2\Evernote\Evernote\EVERNO~2.EXE [2012-12-03 1044320]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"HotkeyMon"=AsusSender.exe C:\Program Files (x86)\ASUS\HotkeyService\HotKeyMon.exe []
"HotkeyService"=AsusSender.exe C:\Program Files (x86)\ASUS\HotkeyService\HotkeyService.exe []
"NUSB3MON"=C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [2010-04-27 113288]
"BCSSync"=C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [2010-03-13 91520]
"SweetIM"=C:\Program Files (x86)\SweetIM\Messenger\SweetIM.exe [2012-10-04 115032]
"Sweetpacks Communicator"=C:\Program Files (x86)\SweetIM\Communicator\SweetPacksUpdateManager.exe [2012-08-15 231768]
"seznam-listicka-distribuce"=C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [2012-09-13 1009288]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2012-07-03 252848]
""= []
"ApnUpdater"=C:\Program Files (x86)\Ask.com\Updater\Updater.exe [2013-02-08 1644680]
"Smart File Advisor"=C:\Program Files (x86)\Smart File Advisor\sfa.exe [2011-04-04 280824]

C:\Users\Uživatel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Dropbox.lnk - C:\Users\Uživatel\AppData\Roaming\Dropbox\bin\Dropbox.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\Windows\system32\nvinitx.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2011-03-30 261120]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~3\Office14\GROOVEEX.DLL [2012-08-16 6670496]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~2\MICROS~2\Office14\GROOVEEX.DLL [2012-08-16 4171424]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"midi1"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 3 months======

2013-03-10 21:06:35 ----D---- C:\Program Files\trend micro
2013-03-10 21:06:34 ----D---- C:\rsit
2013-03-10 20:14:36 ----D---- C:\Program Files (x86)\Smart File Advisor
2013-03-10 20:14:21 ----D---- C:\Program Files (x86)\Smart Projects
2013-03-10 17:40:19 ----D---- C:\Program Files (x86)\Tobias Erichsen
2013-03-10 17:30:57 ----D---- C:\Program Files (x86)\humatic
2013-03-10 16:49:56 ----HDC---- C:\ProgramData\{A97DA822-7B29-4F18-A64A-BF94FFFE77FB}
2013-03-10 16:49:25 ----D---- C:\Program Files (x86)\Lexicon
2013-03-10 16:41:06 ----D---- C:\Lexicon
2013-03-10 12:21:51 ----D---- C:\Lexicon Alpha
2013-03-10 12:18:32 ----A---- C:\Windows\SYSWOW64\SYNSOAIR.DLL
2013-03-10 12:18:32 ----A---- C:\Windows\SYSWOW64\Rex Shared Library.dll
2013-03-10 12:18:31 ----A---- C:\Windows\SYSWOW64\ReWire.dll
2013-03-10 10:15:09 ----D---- C:\Program Files (x86)\Ask.com
2013-03-10 10:05:32 ----D---- C:\Users\Uživatel\AppData\Roaming\TouchDAW thru
2013-03-10 10:04:48 ----D---- C:\ProgramData\Ask
2013-03-10 10:04:20 ----A---- C:\Windows\SYSWOW64\javaws.exe
2013-03-10 10:03:50 ----A---- C:\Windows\SYSWOW64\WindowsAccessBridge-32.dll
2013-03-10 10:03:50 ----A---- C:\Windows\SYSWOW64\javaw.exe
2013-03-10 10:03:50 ----A---- C:\Windows\SYSWOW64\java.exe
2013-03-10 10:03:11 ----D---- C:\Program Files (x86)\Java
2013-03-10 09:58:05 ----D---- C:\Program Files\humatic
2013-03-10 09:56:30 ----D---- C:\TOUCHDAW
2013-03-10 09:56:09 ----D---- C:\BlueCove_license
2013-03-09 22:24:58 ----D---- C:\PROJEKTY
2013-03-09 22:21:06 ----A---- C:\Windows\SYSWOW64\SYNSOEMU.DLL
2013-03-09 22:20:59 ----A---- C:\HALionOne.dll
2013-03-09 22:12:48 ----D---- C:\Program Files (x86)\Steinberg
2013-03-09 22:01:03 ----D---- C:\Cubase 5 Full
2013-03-09 21:31:39 ----D---- C:\Users\Uživatel\AppData\Roaming\VST3 Presets
2013-03-09 21:31:37 ----D---- C:\ProgramData\Steinberg
2013-03-09 21:25:17 ----D---- C:\Users\Uživatel\AppData\Roaming\Steinberg
2013-03-09 21:24:06 ----RD---- C:\Steinberg Cubase 5.1.2 Final 32 & 64bit by Antony_GR
2013-03-09 18:55:49 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2013-03-09 18:55:30 ----D---- C:\Windows\system32\Macromed
2013-03-09 10:45:16 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2013-03-09 10:44:46 ----D---- C:\Windows\SYSWOW64\searchplugins
2013-03-09 10:44:46 ----D---- C:\Windows\SYSWOW64\Extensions
2013-03-09 10:44:35 ----D---- C:\ProgramData\BrowserProtect
2013-03-09 10:44:34 ----D---- C:\Users\Uživatel\AppData\Roaming\Yontoo
2013-03-09 10:44:31 ----D---- C:\Program Files (x86)\Yontoo
2013-03-09 10:44:26 ----D---- C:\Users\Uživatel\AppData\Roaming\BabSolution
2013-03-09 10:44:00 ----D---- C:\ProgramData\Babylon
2013-03-09 10:43:59 ----D---- C:\Users\Uživatel\AppData\Roaming\Babylon
2013-03-09 10:43:56 ----D---- C:\ProgramData\Tarma Installer
2013-03-09 10:43:33 ----D---- C:\Users\Uživatel\AppData\Roaming\GoforFiles
2013-03-09 10:43:33 ----D---- C:\Program Files (x86)\GoforFiles
2013-03-08 21:48:03 ----HDC---- C:\ProgramData\{E51ADF6A-7916-46B4-96C1-40D98D096077}
2013-03-08 21:47:54 ----D---- C:\Program Files\Lexicon
2013-03-08 20:18:04 ----A---- C:\reaper432-install.exe
2013-03-08 19:54:08 ----D---- C:\Users\Uživatel\AppData\Roaming\TeamViewer
2013-03-08 19:52:09 ----D---- C:\Program Files (x86)\TeamViewer
2013-03-06 15:53:35 ----D---- C:\Program Files (x86)\Seznam.cz
2013-03-06 15:52:54 ----D---- C:\Users\Uživatel\AppData\Roaming\Seznam.cz
2013-03-06 15:52:35 ----D---- C:\Users\Uživatel\AppData\Roaming\GHISLER
2013-03-06 15:52:35 ----D---- C:\totalcmd
2013-02-28 18:03:18 ----D---- C:\Users\Uživatel\AppData\Roaming\.BitTornado
2013-02-28 18:02:13 ----D---- C:\Program Files (x86)\BitTornado
2013-02-27 21:15:36 ----D---- C:\Users\Uživatel\AppData\Roaming\Dropbox
2013-02-27 19:48:36 ----D---- C:\Android
2013-02-22 18:12:03 ----D---- C:\ProgramData\Google
2013-02-22 18:12:02 ----D---- C:\Users\Uživatel\AppData\Roaming\Google
2013-02-22 16:59:57 ----D---- C:\Program Files (x86)\ImageMagick-6.8.0-Q8
2013-02-20 17:41:34 ----D---- C:\circuits
2013-02-19 18:25:51 ----D---- C:\Windows\pss
2013-02-18 19:40:32 ----D---- C:\Users\Uživatel\AppData\Roaming\Fritzing
2013-02-18 19:37:54 ----D---- C:\Fritzing
2013-02-17 12:52:59 ----D---- C:\Windows\cs
2013-02-17 12:49:20 ----A---- C:\Windows\system32\drivers\fssfltr.sys
2013-02-17 12:49:19 ----DC---- C:\Windows\system32\DRVSTORE
2013-02-17 12:49:09 ----D---- C:\Program Files\Windows Live
2013-02-17 12:48:08 ----D---- C:\Program Files (x86)\Windows Live
2013-02-17 12:46:57 ----A---- C:\Windows\SYSWOW64\XAudio2_7.dll
2013-02-17 12:46:57 ----A---- C:\Windows\SYSWOW64\XAPOFX1_5.dll
2013-02-17 12:46:57 ----A---- C:\Windows\system32\XAudio2_7.dll
2013-02-17 12:46:57 ----A---- C:\Windows\system32\XAPOFX1_5.dll
2013-02-17 12:46:54 ----A---- C:\Windows\SYSWOW64\D3DCompiler_43.dll
2013-02-17 12:46:54 ----A---- C:\Windows\system32\D3DCompiler_43.dll
2013-02-17 12:46:52 ----A---- C:\Windows\SYSWOW64\d3dx11_43.dll
2013-02-17 12:46:52 ----A---- C:\Windows\system32\d3dx11_43.dll
2013-02-17 12:45:49 ----A---- C:\Windows\SYSWOW64\d3dx10_42.dll
2013-02-17 12:45:49 ----A---- C:\Windows\system32\d3dx10_42.dll
2013-02-17 12:44:20 ----A---- C:\Windows\SYSWOW64\d3dx9_32.dll
2013-02-17 12:44:20 ----A---- C:\Windows\system32\d3dx9_32.dll
2013-02-17 12:41:34 ----D---- C:\Program Files (x86)\Microsoft SkyDrive
2013-02-17 12:40:20 ----D---- C:\ProgramData\Microsoft SkyDrive
2013-02-17 12:35:18 ----A---- C:\Windows\SYSWOW64\picn20.dll
2013-02-17 12:35:17 ----A---- C:\Windows\SYSWOW64\imagx5.dll
2013-02-17 12:35:17 ----A---- C:\Windows\SYSWOW64\imagr5.dll
2013-02-17 12:35:16 ----A---- C:\Windows\SYSWOW64\ImagXpr5.dll
2013-02-17 12:35:16 ----A---- C:\Windows\SYSWOW64\CapPRO.dll
2013-02-17 12:34:42 ----D---- C:\Program Files (x86)\CoffeeCup Software
2013-02-16 19:21:33 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2013-02-16 19:21:33 ----A---- C:\Windows\system32\mshtmled.dll
2013-02-16 19:21:31 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2013-02-16 19:21:28 ----A---- C:\Windows\SYSWOW64\ieui.dll
2013-02-16 19:21:27 ----A---- C:\Windows\system32\ieui.dll
2013-02-16 19:21:26 ----A---- C:\Windows\system32\ieUnatt.exe
2013-02-16 19:21:24 ----A---- C:\Windows\SYSWOW64\url.dll
2013-02-16 19:21:24 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2013-02-16 19:21:23 ----A---- C:\Windows\system32\url.dll
2013-02-16 19:21:21 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2013-02-16 19:21:21 ----A---- C:\Windows\system32\urlmon.dll
2013-02-16 19:21:19 ----A---- C:\Windows\system32\msfeeds.dll
2013-02-16 19:21:19 ----A---- C:\Windows\system32\jscript9.dll
2013-02-16 19:21:18 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2013-02-16 19:21:17 ----A---- C:\Windows\SYSWOW64\wininet.dll
2013-02-16 19:21:15 ----A---- C:\Windows\system32\wininet.dll
2013-02-16 19:21:14 ----A---- C:\Windows\system32\jsproxy.dll
2013-02-16 19:21:13 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2013-02-16 19:21:13 ----A---- C:\Windows\SYSWOW64\jscript.dll
2013-02-16 19:21:12 ----A---- C:\Windows\system32\vbscript.dll
2013-02-16 19:21:12 ----A---- C:\Windows\system32\jscript.dll
2013-02-16 19:21:11 ----A---- C:\Windows\system32\iertutil.dll
2013-02-16 19:21:10 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2013-02-16 19:21:09 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2013-02-16 19:21:05 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2013-02-16 19:20:58 ----A---- C:\Windows\system32\mshtml.dll
2013-02-16 19:20:56 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2013-02-16 19:20:56 ----A---- C:\Windows\system32\ieframe.dll
2013-02-14 18:20:39 ----A---- C:\Windows\system32\winsrv.dll
2013-02-14 18:20:37 ----A---- C:\Windows\SYSWOW64\wow32.dll
2013-02-14 18:20:37 ----A---- C:\Windows\SYSWOW64\setup16.exe
2013-02-14 18:20:37 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2013-02-14 18:20:37 ----A---- C:\Windows\SYSWOW64\instnm.exe
2013-02-14 18:20:33 ----A---- C:\Windows\SYSWOW64\user.exe
2013-02-14 18:17:19 ----A---- C:\Windows\system32\ntoskrnl.exe
2013-02-14 18:17:17 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2013-02-14 18:17:16 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2013-02-14 18:00:44 ----A---- C:\Windows\system32\win32k.sys
2013-02-14 17:24:52 ----A---- C:\Windows\system32\drivers\tcpip.sys
2013-02-14 17:24:50 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2013-02-13 20:50:12 ----D---- C:\Users\Uživatel\AppData\Roaming\Dev-Cpp
2013-02-13 20:41:51 ----D---- C:\Users\Uživatel\AppData\Roaming\Wireshark
2013-02-13 20:26:40 ----D---- C:\Program Files (x86)\WinPcap
2013-02-13 20:26:09 ----D---- C:\Program Files (x86)\Wireshark
2013-02-09 18:48:37 ----A---- C:\Windows\SYSWOW64\drivers\ISODisk.sys
2013-02-09 18:48:33 ----D---- C:\Program Files (x86)\ISODisk
2013-02-09 12:53:51 ----D---- C:\Users\Uživatel\AppData\Roaming\ESET
2013-02-09 12:48:27 ----D---- C:\ProgramData\ESET
2013-02-09 12:48:27 ----D---- C:\Program Files\ESET
2013-02-09 10:04:48 ----D---- C:\Users\Uživatel\AppData\Roaming\AVG
2013-02-09 10:03:22 ----D---- C:\ProgramData\AVG
2013-02-09 10:03:02 ----SHD---- C:\ProgramData\{D1D4879F-2279-49C9-AEBF-3B95C84EAA8F}
2013-02-08 22:46:42 ----D---- C:\Users\Uživatel\AppData\Roaming\PapiiiClock
2013-02-08 22:46:40 ----D---- C:\Program Files (x86)\PapíííClock
2013-02-08 22:36:41 ----D---- C:\Users\Uživatel\AppData\Roaming\TuneUp Software
2013-02-08 22:28:42 ----HD---- C:\ProgramData\Common Files
2013-02-08 22:28:42 ----D---- C:\ProgramData\MFAData
2013-02-08 22:02:22 ----SHD---- C:\found.000
2013-02-08 15:46:31 ----D---- C:\Users\Uživatel\AppData\Roaming\MCS Electronics
2013-02-08 15:42:18 ----A---- C:\Windows\SYSWOW64\drivers\TVicPort64.sys
2013-02-08 15:42:00 ----D---- C:\Program Files (x86)\MCS Electronics
2013-02-08 15:36:30 ----A---- C:\Stk500.exe
2013-02-07 21:03:55 ----A---- C:\Windows\system32\drivers\ser2at64.sys
2013-02-07 20:59:30 ----A---- C:\Windows\SYSWOW64\wdapi921.dll
2013-02-07 20:59:30 ----A---- C:\Windows\SYSWOW64\wdapi811.dll
2013-02-07 20:59:30 ----A---- C:\Windows\SYSWOW64\wdapi1002.dll
2013-02-07 20:59:30 ----A---- C:\Windows\SYSWOW64\wdapi1001.dll
2013-02-07 20:59:28 ----D---- C:\Program Files (x86)\Microsoft Visual Studio 9.0
2013-02-07 20:59:28 ----A---- C:\Windows\SYSWOW64\wdapi1010.dll
2013-02-07 20:59:27 ----A---- C:\Windows\SYSWOW64\wdapi1011.dll
2013-02-07 20:57:33 ----A---- C:\Windows\SYSWOW64\BCGCBPRO103090.dll
2013-02-07 20:57:32 ----A---- C:\Windows\SYSWOW64\vc6-re200l.dll
2013-02-07 20:57:32 ----A---- C:\Windows\SYSWOW64\RWUXThemeS.dll
2013-02-07 20:57:32 ----A---- C:\Windows\SYSWOW64\BCGCBPRO10180.dll
2013-02-07 19:12:51 ----D---- C:\WinAVR-20100110
2013-02-07 18:34:15 ----D---- C:\appicc
2013-02-07 18:34:15 ----D---- C:\app
2013-02-07 18:34:15 ----AD---- C:\Archive
2013-02-07 16:52:41 ----D---- C:\Mikroelektronika
2013-02-07 12:43:06 ----D---- C:\Program Files (x86)\Aten International Co., Ltd
2013-02-07 10:39:21 ----D---- C:\ProgramData\Atmel
2013-02-04 22:16:02 ----D---- C:\Users\Uživatel\AppData\Roaming\VisualAssist
2013-02-04 21:57:43 ----D---- C:\Users\Uživatel\AppData\Roaming\Atmel
2013-02-04 21:54:25 ----D---- C:\Program Files\DIFX
2013-02-04 21:54:22 ----D---- C:\Program Files\Seggger
2013-02-04 21:52:01 ----A---- C:\Windows\system32\drivers\windrvr6.sys
2013-02-04 21:51:59 ----D---- C:\Program Files (x86)\Atmel
2013-02-04 21:45:30 ----D---- C:\Program Files\Microsoft Help Viewer
2013-02-04 21:44:57 ----D---- C:\Program Files (x86)\Microsoft SQL Server
2013-02-04 21:42:23 ----D---- C:\Windows\SYSWOW64\1033
2013-02-04 21:41:19 ----D---- C:\Program Files (x86)\Microsoft SDKs
2013-02-04 21:40:57 ----D---- C:\Program Files (x86)\Microsoft Visual Studio 10.0
2013-02-04 21:00:46 ----D---- C:\Dev-Cpp
2013-01-23 20:40:44 ----D---- C:\Program Files (x86)\EAGLE-6.4.0
2013-01-23 20:40:32 ----D---- C:\Users\Uživatel\AppData\Roaming\CadSoft
2013-01-20 15:59:04 ----A---- C:\Windows\system32\drivers\MpFilter.sys
2013-01-12 13:09:23 ----A---- C:\Windows\system32\win32spl.dll
2013-01-12 13:09:22 ----A---- C:\Windows\SYSWOW64\win32spl.dll
2013-01-12 13:09:04 ----A---- C:\Windows\system32\msxml6.dll
2013-01-12 13:09:03 ----A---- C:\Windows\system32\msxml3.dll
2013-01-12 13:09:02 ----A---- C:\Windows\SYSWOW64\msxml6.dll
2013-01-12 13:09:02 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2013-01-12 13:09:00 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2013-01-12 13:09:00 ----A---- C:\Windows\system32\ncrypt.dll
2013-01-12 13:08:59 ----A---- C:\Windows\system32\usp10.dll
2013-01-12 13:08:58 ----A---- C:\Windows\SYSWOW64\usp10.dll
2013-01-12 13:08:52 ----A---- C:\Windows\system32\Wpc.dll
2013-01-12 13:08:52 ----A---- C:\Windows\system32\gameux.dll
2013-01-12 13:08:51 ----A---- C:\Windows\SYSWOW64\gameux.dll
2013-01-12 13:08:50 ----A---- C:\Windows\SYSWOW64\Wpc.dll
2013-01-12 13:07:59 ----A---- C:\Windows\system32\KernelBase.dll
2013-01-12 13:07:58 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2013-01-12 13:07:58 ----A---- C:\Windows\system32\kernel32.dll
2013-01-12 13:07:57 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2013-01-12 13:07:57 ----A---- C:\Windows\system32\wow64win.dll
2013-01-12 13:07:57 ----A---- C:\Windows\system32\wow64cpu.dll
2013-01-12 13:07:57 ----A---- C:\Windows\system32\wow64.dll
2013-01-12 13:07:57 ----A---- C:\Windows\system32\conhost.exe
2013-01-12 13:07:56 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2013-01-12 13:07:56 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2013-01-12 13:07:56 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2013-01-12 13:07:56 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2013-01-12 13:07:56 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2013-01-12 13:07:56 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2013-01-12 13:07:56 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2013-01-12 13:07:56 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2013-01-12 13:07:56 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2013-01-12 13:07:56 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2013-01-12 13:07:56 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2013-01-12 13:07:56 ----A---- C:\Windows\system32\ntvdm64.dll
2013-01-12 13:07:55 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2013-01-12 13:07:55 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2013-01-12 13:07:55 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2013-01-12 13:07:55 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2013-01-12 13:07:55 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2013-01-12 13:07:55 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2013-01-12 13:07:55 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2013-01-12 13:07:55 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2013-01-12 13:07:55 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2013-01-12 13:07:55 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2013-01-12 13:07:55 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2013-01-12 13:07:55 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2013-01-12 13:07:55 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2013-01-12 13:07:54 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2013-01-12 13:07:54 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2013-01-12 13:07:54 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2013-01-12 13:07:54 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2013-01-12 13:07:54 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2013-01-12 13:07:54 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2013-01-12 13:07:54 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2013-01-12 13:07:54 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2013-01-12 13:07:54 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2013-01-12 13:07:54 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2013-01-12 13:07:54 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2013-01-12 13:07:54 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2013-01-12 13:07:54 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2013-01-12 13:07:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2013-01-12 13:07:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2013-01-12 13:07:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2013-01-12 13:07:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2013-01-12 13:07:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2013-01-12 13:07:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2013-01-12 13:07:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2013-01-12 13:07:53 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2013-01-12 13:07:53 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2013-01-12 13:07:53 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2013-01-12 13:07:53 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2013-01-12 13:07:53 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2013-01-12 13:07:53 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2013-01-12 13:07:52 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2013-01-12 13:07:52 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2013-01-12 13:07:52 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2013-01-12 13:07:52 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2013-01-12 13:07:52 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2013-01-12 13:07:52 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2013-01-12 13:07:26 ----A---- C:\Windows\system32\taskhost.exe
2013-01-04 17:48:39 ----D---- C:\ProgramData\AirDisplay
2013-01-04 17:40:28 ----D---- C:\Program Files\Avatron
2013-01-04 17:12:40 ----D---- C:\Windows\Minidump
2013-01-04 17:10:01 ----D---- C:\ProgramData\Apple
2013-01-04 17:10:01 ----D---- C:\Program Files\Bonjour
2013-01-04 17:10:01 ----D---- C:\Program Files (x86)\Bonjour
2013-01-04 17:09:45 ----A---- C:\Windows\system32\idisplay.dll
2013-01-04 17:09:45 ----A---- C:\Windows\system32\drivers\idisplayminiport.sys
2013-01-04 17:09:41 ----D---- C:\Program Files (x86)\iDisplay
2013-01-04 17:09:40 ----D---- C:\Users\Uživatel\AppData\Roaming\SHAPE
2012-12-30 18:37:19 ----D---- C:\Program Files (x86)\Virtual Router
2012-12-28 20:13:07 ----A---- C:\Windows\system32\drivers\ndisrd.sys
2012-12-28 20:13:00 ----D---- C:\Program Files (x86)\MyPublicWiFi
2012-12-21 16:36:50 ----D---- C:\Program Files (x86)\Evernote
2012-12-21 13:46:35 ----A---- C:\Windows\system32\WinUSBCoInstaller.dll
2012-12-21 13:46:35 ----A---- C:\Windows\system32\WdfCoInstaller01007.dll
2012-12-21 13:46:28 ----D---- C:\Program Files (x86)\PdaNet for Android
2012-12-21 13:25:39 ----D---- C:\Program Files (x86)\WugFresh Development
2012-12-20 21:50:12 ----A---- C:\Windows\SYSWOW64\atmlib.dll
2012-12-20 21:50:12 ----A---- C:\Windows\system32\atmlib.dll
2012-12-20 21:50:09 ----A---- C:\Windows\system32\atmfd.dll
2012-12-20 21:50:06 ----A---- C:\Windows\SYSWOW64\atmfd.dll
2012-12-20 09:48:23 ----D---- C:\Users\Uživatel\AppData\Roaming\dvdcss
2012-12-18 20:03:37 ----D---- C:\Program Files (x86)\Havij
2012-12-18 17:36:01 ----A---- C:\Windows\system32\FntCache.dll
2012-12-18 17:36:00 ----A---- C:\Windows\system32\d2d1.dll
2012-12-18 17:35:59 ----A---- C:\Windows\SYSWOW64\d2d1.dll
2012-12-17 19:02:01 ----D---- C:\Users\Uživatel\AppData\Roaming\VMware
2012-12-17 18:52:06 ----D---- C:\ProgramData\VMware
2012-12-17 18:46:50 ----D---- C:\Program Files (x86)\Cain
2012-12-17 18:07:26 ----D---- C:\Program Files (x86)\FreeTime
2012-12-17 17:02:47 ----D---- C:\Users\Uživatel\AppData\Roaming\Audacity
2012-12-17 17:02:03 ----D---- C:\Program Files (x86)\Audacity
2012-12-17 16:06:23 ----D---- C:\Users\Uživatel\AppData\Roaming\Opera
2012-12-17 16:06:06 ----D---- C:\Program Files (x86)\Opera
2012-12-15 11:00:44 ----A---- C:\Windows\SYSWOW64\tzres.dll
2012-12-15 11:00:44 ----A---- C:\Windows\system32\tzres.dll
2012-12-15 10:59:11 ----A---- C:\Windows\system32\dpnet.dll
2012-12-15 10:59:10 ----A---- C:\Windows\SYSWOW64\dpnet.dll
2012-12-11 11:05:13 ----D---- C:\Program Files (x86)\SweetIM
2012-12-11 11:05:12 ----D---- C:\ProgramData\SweetIM

======List of files/folders modified in the last 3 months======

2013-03-10 21:06:35 ----RD---- C:\Program Files
2013-03-10 21:06:23 ----D---- C:\Windows\Temp
2013-03-10 20:45:38 ----D---- C:\Users\Uživatel\AppData\Roaming\Skype
2013-03-10 20:34:44 ----D---- C:\Windows\inf
2013-03-10 20:34:37 ----D---- C:\Windows
2013-03-10 20:22:21 ----D---- C:\Windows\tracing
2013-03-10 20:14:36 ----RD---- C:\Program Files (x86)
2013-03-10 20:02:11 ----D---- C:\Windows\system32\config
2013-03-10 19:51:08 ----D---- C:\Windows\System32
2013-03-10 19:51:07 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-03-10 19:45:23 ----D---- C:\ProgramData\NVIDIA
2013-03-10 17:41:38 ----SHD---- C:\Windows\Installer
2013-03-10 17:41:00 ----D---- C:\Windows\SysWOW64
2013-03-10 17:40:59 ----D---- C:\Windows\system32\drivers
2013-03-10 17:40:52 ----D---- C:\Windows\system32\catroot
2013-03-10 17:40:50 ----D---- C:\Windows\system32\DriverStore
2013-03-10 17:40:07 ----SHD---- C:\System Volume Information
2013-03-10 16:49:56 ----HD---- C:\ProgramData
2013-03-10 14:16:22 ----D---- C:\Windows\Prefetch
2013-03-10 12:15:23 ----D---- C:\Program Files (x86)\Common Files
2013-03-10 10:15:21 ----D---- C:\Windows\system32\Tasks
2013-03-10 10:03:17 ----A---- C:\Windows\SYSWOW64\npdeployJava1.dll
2013-03-10 10:03:17 ----A---- C:\Windows\SYSWOW64\deployJava1.dll
2013-03-10 09:57:54 ----D---- C:\Windows\system32\catroot2
2013-03-09 22:49:47 ----D---- C:\Windows\Tasks
2013-03-09 22:14:53 ----SD---- C:\Users\Uživatel\AppData\Roaming\Microsoft
2013-03-09 10:46:36 ----SD---- C:\ProgramData\Microsoft
2013-03-08 19:52:38 ----RSD---- C:\Windows\Fonts
2013-02-22 16:53:21 ----D---- C:\Windows\winsxs
2013-02-22 16:52:02 ----D---- C:\Program Files (x86)\Google
2013-02-18 22:09:26 ----D---- C:\Program Files\Microsoft Security Client
2013-02-18 22:09:20 ----D---- C:\Program Files (x86)\Microsoft Security Client
2013-02-18 21:24:27 ----D---- C:\Windows\Logs
2013-02-18 21:24:25 ----D---- C:\Windows\debug
2013-02-17 18:30:35 ----D---- C:\Windows\Microsoft.NET
2013-02-17 12:57:32 ----RSD---- C:\Windows\assembly
2013-02-17 12:51:15 ----D---- C:\Program Files (x86)\Microsoft SQL Server Compact Edition
2013-02-17 12:49:03 ----D---- C:\Program Files\Common Files\Microsoft Shared
2013-02-17 09:23:50 ----D---- C:\Windows\SYSWOW64\migration
2013-02-17 09:23:50 ----D---- C:\Program Files (x86)\Internet Explorer
2013-02-17 09:23:49 ----D---- C:\Windows\system32\migration
2013-02-17 09:23:47 ----D---- C:\Program Files\Internet Explorer
2013-02-16 19:46:28 ----D---- C:\ProgramData\Microsoft Help
2013-02-16 19:40:15 ----A---- C:\Windows\system32\MRT.exe
2013-02-16 19:12:10 ----D---- C:\Windows\AppPatch
2013-02-14 18:40:42 ----D---- C:\Windows\rescache
2013-02-13 20:38:32 ----D---- C:\Windows\system32\NDF
2013-02-13 20:21:34 ----D---- C:\ProgramData\Skype
2013-02-09 18:48:38 ----D---- C:\Windows\SYSWOW64\drivers
2013-02-08 11:39:20 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2013-02-07 21:55:25 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2013-02-07 20:59:27 ----D---- C:\Program Files (x86)\MSBuild
2013-02-07 20:35:10 ----D---- C:\Program Files\CCleaner
2013-02-07 19:37:12 ----D---- C:\Windows\system32\wfp
2013-02-07 19:37:07 ----D---- C:\Windows\system32\wbem
2013-02-07 19:35:36 ----D---- C:\Windows\system32\CodeIntegrity
2013-02-07 19:34:52 ----D---- C:\Windows\registration
2013-02-07 19:31:59 ----RHD---- C:\MSOCache
2013-02-04 21:18:09 ----D---- C:\Windows\SoftwareDistribution
2013-01-30 11:53:22 ----N---- C:\Windows\system32\MpSigStub.exe
2013-01-23 20:28:24 ----D---- C:\Windows\SYSWOW64\cs-CZ
2013-01-23 20:28:23 ----D---- C:\Windows\system32\cs-CZ
2013-01-04 17:53:08 ----D---- C:\Windows\ModemLogs
2012-12-30 18:43:24 ----D---- C:\Program Files\Common Files
2012-12-28 20:01:35 ----D---- C:\Windows\system32\drivers\etc
2012-12-21 11:50:05 ----D---- C:\Users\Uživatel\AppData\Roaming\vlc
2012-12-20 08:24:34 ----D---- C:\Windows\system32\drivers\UMDF
2012-12-16 17:14:48 ----D---- C:\Windows\system32\wdi

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 epfwwfp;epfwwfp; C:\Windows\system32\DRIVERS\epfwwfp.sys [2012-11-28 57904]
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2009-06-04 408600]
R0 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2013-01-20 230320]
R0 nvpciflt;nvpciflt; C:\Windows\system32\DRIVERS\nvpciflt.sys [2011-09-14 25960]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R1 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys [2012-10-08 211344]
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2012-10-08 149592]
R1 EpfwLWF;Epfw NDIS LightWeight Filter; C:\Windows\system32\DRIVERS\EpfwLWF.sys [2012-10-08 59440]
R1 ndisrd;WinpkFilter LightWeight Filter; C:\Windows\system32\DRIVERS\ndisrd.sys [2011-02-22 30816]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 epfw;epfw; C:\Windows\system32\DRIVERS\epfw.sys [2012-10-08 189208]
R2 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2013-01-20 130008]
R2 NPF;NetGroup Packet Filter Driver; C:\Windows\system32\drivers\npf.sys [2010-06-25 35344]
R3 AirDisplay;Air Display Support; C:\Windows\system32\DRIVERS\AVVideoCard.sys [2012-09-24 15808]
R3 AirDisplayMirror;Air Display Mirror Support; C:\Windows\system32\DRIVERS\AVVideoCardMirror.sys [2012-09-24 15808]
R3 BCM43XX;Ovladač síťového adaptéru Broadcom 802.11; C:\Windows\system32\DRIVERS\bcmwl664.sys [2010-05-08 3063360]
R3 BthEnum;Služba Bluetooth Enumerator; C:\Windows\system32\DRIVERS\BthEnum.sys [2009-07-14 41984]
R3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
R3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
R3 iDispService;iDispService; C:\Windows\system32\DRIVERS\idisplayminiport.sys [2012-08-31 14248]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2011-03-30 6180480]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2011-03-30 2472680]
R3 kbfiltr;Keyboard Filter; C:\Windows\system32\DRIVERS\kbfiltr.sys [2009-07-21 15416]
R3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller; C:\Windows\system32\DRIVERS\L1C62x64.sys [2011-03-30 76912]
R3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2011-03-30 299568]
R3 teVirtualMIDI64;teVirtualMIDI - Virtual MIDI Driver x64; C:\Windows\system32\DRIVERS\teVirtualMIDI64.sys [2012-08-15 30208]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
R3 WinDriver6;WinDriver6; C:\Windows\system32\drivers\windrvr6.sys [2012-02-27 260608]
S1 ISODisk;ISODisk; C:\Windows\system32\drivers\ISODisk.sys []
S2 TVicPort;TVicPort; C:\Windows\system32\drivers\TVicPort.sys []
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudbus.sys [2012-09-19 102368]
S3 DxkgFilter;Filtering Dxkg; \??\C:\Program Files (x86)\iDisplay\idisplay.sys [2012-08-31 55720]
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2012-09-12 57856]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 ser2at;ATEN USB to Serial port driver; C:\Windows\system32\DRIVERS\ser2at64.sys [2009-10-15 96256]
S3 ssudmdm;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudmdm.sys [2012-09-19 203104]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-21 59392]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2010-11-21 31232]
S3 vmci;VMware VMCI Bus Driver; C:\Windows\system32\DRIVERS\vmci.sys []
S3 VMnetAdapter;VMware Virtual Ethernet Adapter Driver; C:\Windows\system32\DRIVERS\vmnetadapter.sys []
S3 WinUSB;SAMSUNG Android USB Driver; C:\Windows\system32\DRIVERS\WinUSB.sys [2010-11-21 41984]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-07-27 63960]
R2 AsusService;Asus Launcher Service; C:\Windows\SysWOW64\AsusService.exe [2010-12-07 224680]
R2 AVTHelper;AVTHelper; C:\Program Files\Avatron\Air Display\AVTHelper.exe [2012-09-24 216000]
R2 Bonjour Service;Bonjour Service; C:\Program Files (x86)\Bonjour\mDNSResponder.exe [2010-10-07 345376]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe [2012-11-26 1329304]
R2 IAANTMON;Intel(R) Matrix Storage Event Monitor; C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe [2009-06-04 354840]
R2 MsMpSvc;Microsoft Antimalware Service; C:\Program Files\Microsoft Security Client\MsMpEng.exe [2013-01-27 22056]
R2 MyPublicWiFiService;MyPublicWiFi Service; C:\Program Files (x86)\MyPublicWiFi\PublicWiFiService.exe [2011-12-02 597504]
R2 NVSvc;NVIDIA Driver Helper Service; C:\Windows\system32\nvvsvc.exe [2011-03-06 993896]
R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe [2011-09-14 2009704]
R2 rtpMIDIService;rtpMIDIService; C:\Program Files (x86)\Tobias Erichsen\rtpMIDI\rtpMIDISvc.exe [2012-08-24 1142272]
R2 Skype C2C Service;Skype C2C Service; C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe [2013-01-31 3289208]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2011-03-06 378472]
R2 TeamViewer8;TeamViewer 8; C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe [2013-02-26 3560800]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2012-07-17 2292480]
R2 Yontoo Desktop Updater;Yontoo Desktop Updater; C:\Program Files (x86)\Yontoo\Y2Desktop.Updater.exe [2013-03-06 23552]
R3 NisSrv;@C:\Program Files\Microsoft Security Client\MpAsDesc.dll,-243; C:\Program Files\Microsoft Security Client\NisSrv.exe [2013-01-27 379360]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-12-07 116648]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2012-11-09 160944]
S3 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2010-03-18 44376]
S3 fsssvc;Windows Live Family Safety Service; C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2012-09-12 1512448]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-12-07 116648]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files (x86)\Microsoft Office\Office14\GROOVE.EXE [2012-09-20 30785672]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S3 rpcapd;Remote Packet Capture Protocol v.0 (experimental); C:\Program Files (x86)\WinPcap\rpcapd.exe [2010-06-25 117264]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2012-12-05 1255736]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]

-----------------EOF-----------------

lukykostka
Návštěvník
Návštěvník
Příspěvky: 13
Registrován: 10 bře 2013 21:04

Re: Prosím o kontrolu logu. Pomalý počítač.

#2 Příspěvek od lukykostka »

A tady je ještě DDS.




DDS (Ver_2012-11-20.01) - NTFS_AMD64
Internet Explorer: 9.0.8112.16464 BrowserJavaVersion: 10.17.2
Run by Uživatel at 21:13:29 on 2013-03-10
Microsoft Windows 7 Home Premium 6.1.7601.1.1250.420.1029.18.2038.561 [GMT 1:00]
.
AV: ESET Smart Security 6.0 *Enabled/Updated* {77DEAFED-8149-104B-25A1-21771CA47CD1}
AV: Microsoft Security Essentials *Enabled/Updated* {3F839487-C7A2-C958-E30C-E2825BA31FB5}
SP: ESET Smart Security 6.0 *Enabled/Updated* {CCBF4E09-A773-1FC5-1F11-1A056723366C}
SP: Windows Defender *Disabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: Microsoft Security Essentials *Enabled/Updated* {84E27563-E198-C6D6-D9BC-D9F020245508}
FW: ESET personal firewall *Enabled* {4FE52EC8-CB26-1113-0EFE-8842E2773BAA}
.
============== Running Processes ===============
.
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\nvvsvc.exe
C:\Windows\system32\svchost.exe -k RPCSS
C:\Program Files\Microsoft Security Client\MsMpEng.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Program Files\NVIDIA Corporation\Display\NvXDSync.exe
C:\Windows\system32\nvvsvc.exe
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\WLANExt.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
C:\Windows\system32\taskhost.exe
C:\Windows\SysWOW64\AsusService.exe
C:\Program Files\Avatron\Air Display\AVTHelper.exe
C:\Windows\system32\taskeng.exe
C:\Program Files (x86)\Bonjour\mDNSResponder.exe
C:\Windows\system32\Dwm.exe
C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Program Files (x86)\iDisplay\iDisplay.exe
C:\Program Files (x86)\GoforFiles\GFFUpdater.exe
C:\Program Files (x86)\MyPublicWiFi\PublicWiFiService.exe
C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Windows\System32\igfxtray.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Windows\system32\igfxsrvc.exe
C:\Program Files\Microsoft Security Client\msseces.exe
C:\Program Files (x86)\Tobias Erichsen\rtpMIDI\rtpMIDISvc.exe
C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
C:\Windows\system32\svchost.exe -k imgsvc
C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe
C:\Program Files (x86)\iDisplay\adb.exe
C:\Program Files\ESET\ESET Smart Security\egui.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
C:\Program Files\Avatron\Air Display\AirDisplay.exe
C:\Program Files (x86)\Yontoo\Y2Desktop.Updater.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
C:\Users\Uživatel\AppData\Roaming\Yontoo\YontooDesktop.exe
C:\Users\Uživatel\AppData\Roaming\Dropbox\bin\Dropbox.exe
C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe
C:\Users\Uživatel\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
C:\Program Files (x86)\ASUS\HotkeyService\HotKeyMon.exe
C:\Program Files (x86)\ASUS\HotkeyService\HotkeyService.exe
C:\Program Files (x86)\SweetIM\Messenger\SweetIM.exe
C:\Program Files (x86)\SweetIM\Communicator\SweetPacksUpdateManager.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Ask.com\Updater\Updater.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Program Files\Microsoft Security Client\NisSrv.exe
C:\Windows\system32\svchost.exe -k bthsvcs
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
C:\Windows\system32\SearchIndexer.exe
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Windows\SysWOW64\cmd.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Windows\system32\NOTEPAD.EXE
C:\Windows\system32\NOTEPAD.EXE
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\Uživatel\Downloads\dds.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\SysWOW64\timeout.exe
C:\Windows\System32\cscript.exe
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://www.delta-search.com/?affID=119292&babs ... 5d6089ef30
mStart Page = hxxp://home.sweetim.com/?crg=3.1010000.10005&barid={48AFAF9B-437A-11E2-A024-BCAEC50937A5}
uURLSearchHooks: UrlSearchHook Class: {00000000-6E41-4FD3-8538-502F5495E5FC} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll
mWinlogon: Userinit = userinit.exe
BHO: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
BHO: Groove GFS Browser Helper: {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL
BHO: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
BHO: Pomocná služba pro přihlášení k účtu Microsoft: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
BHO: Skype Browser Helper: {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
BHO: Office Document Cache Handler: {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL
BHO: Ask Toolbar: {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
BHO: SweetPacks Browser Helper: {EEE6C35C-6118-11DC-9C72-001320C79847} - C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll
TB: SweetPacks Toolbar for Internet Explorer: {EEE6C35B-6118-11DC-9C72-001320C79847} - C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll
TB: Ask Toolbar: {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll
uRun: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
uRun: [Air Display Support] "C:\Program Files\Avatron\Air Display\AirDisplay.exe"
uRun: [cz.seznam.software.autoupdate] "C:\Users\Uživatel\AppData\Roaming\Seznam.cz\szninstall.exe" -c
uRun: [cz.seznam.software.szndesktop] "C:\Users\Uživatel\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
uRun: [Yontoo Desktop] "C:\Users\Uživatel\AppData\Roaming\Yontoo\YontooDesktop.exe"
mRun: [HotkeyMon] AsusSender.exe C:\Program Files (x86)\ASUS\HotkeyService\HotKeyMon.exe
mRun: [HotkeyService] AsusSender.exe C:\Program Files (x86)\ASUS\HotkeyService\HotkeyService.exe
mRun: [NUSB3MON] "C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe"
mRun: [BCSSync] "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices
mRun: [SweetIM] C:\Program Files (x86)\SweetIM\Messenger\SweetIM.exe
mRun: [Sweetpacks Communicator] C:\Program Files (x86)\SweetIM\Communicator\SweetPacksUpdateManager.exe
mRun: [seznam-listicka-distribuce] "C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
mRun: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
mRun: [ApnUpdater] "C:\Program Files (x86)\Ask.com\Updater\Updater.exe"
mRun: [Smart File Advisor] "C:\Program Files (x86)\Smart File Advisor\sfa.exe" /checkassoc
StartupFolder: C:\Users\UIVATE~1\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\Dropbox.lnk - C:\Users\Uživatel\AppData\Roaming\Dropbox\bin\Dropbox.exe
mPolicies-Explorer: NoActiveDesktop = dword:1
mPolicies-Explorer: NoActiveDesktopChanges = dword:1
mPolicies-System: ConsentPromptBehaviorAdmin = dword:5
mPolicies-System: ConsentPromptBehaviorUser = dword:3
mPolicies-System: EnableUIADesktopToggle = dword:0
IE: Add to Evernote 4.0 - C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll/204
IE: E&xportovat do aplikace Microsoft Excel - C:\PROGRA~2\MICROS~2\Office14\EXCEL.EXE/3000
IE: Od&eslat do aplikace OneNote - C:\PROGRA~2\MICROS~2\Office14\ONBttnIE.dll/105
IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
IE: {A95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll/204
TCP: NameServer = 10.0.0.138
TCP: Interfaces\{0780C84A-2094-49AF-B446-CBF047AE9534} : DHCPNameServer = 10.0.0.138
TCP: Interfaces\{0780C84A-2094-49AF-B446-CBF047AE9534}\14050333354565 : DHCPNameServer = 192.168.1.1
TCP: Interfaces\{0780C84A-2094-49AF-B446-CBF047AE9534}\3535944443 : DHCPNameServer = 10.0.0.138
TCP: Interfaces\{0780C84A-2094-49AF-B446-CBF047AE9534}\84F64756C602552716E6021305 : DHCPNameServer = 10.10.26.1 195.168.1.2 193.86.13.67
TCP: Interfaces\{0780C84A-2094-49AF-B446-CBF047AE9534}\84F64756C602552716E6021413 : DHCPNameServer = 10.10.26.1 195.168.1.2 193.86.13.67
TCP: Interfaces\{0780C84A-2094-49AF-B446-CBF047AE9534}\84F64756C602552716E6025305 : DHCPNameServer = 10.10.26.1 195.168.1.2 193.86.13.67
TCP: Interfaces\{0780C84A-2094-49AF-B446-CBF047AE9534}\C457B61637 : DHCPNameServer = 10.0.0.138
TCP: Interfaces\{B6112005-08EE-4A59-A383-8D5D25E7FFE9} : DHCPNameServer = 10.0.0.138
Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll
Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
AppInit_DLLs= c:\progra~3\browse~1\261095~1.52\{c16c1~1\browse~1.dll C:\Windows\SysWOW64\nvinit.dll
SSODL: WebCheck - <orphaned>
SEH: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL
mASetup: {8A69D345-D564-463c-AFF1-A69D9E530F96} - "C:\Program Files (x86)\Google\Chrome\Application\25.0.1364.152\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --multi-install --chrome
x64-BHO: Groove GFS Browser Helper: {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL
x64-BHO: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
x64-BHO: Skype add-on for Internet Explorer: {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll
x64-BHO: Office Document Cache Handler: {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL
x64-Run: [IAAnotif] C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\iaanotif.exe
x64-Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s
x64-Run: [SynTPEnh] C:\Program Files (x86)\Synaptics\SynTP\SynTPEnh.exe
x64-Run: [IgfxTray] C:\Windows\System32\igfxtray.exe
x64-Run: [HotKeysCmds] C:\Windows\System32\hkcmd.exe
x64-Run: [Persistence] C:\Windows\System32\igfxpers.exe
x64-Run: [SynAsusAcpi] C:\Program Files (x86)\Synaptics\SynTP\SynAsusAcpi.exe
x64-Run: [MSC] "C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
x64-Run: [egui] "C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide /waitservice
x64-RunOnce: [310_2041191652054] "C:\Users\UIVATE~1\AppData\Local\LOGMEI~1\LMIR0001.tmp_r.bat"
x64-IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll
x64-IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
x64-IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll
x64-Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
x64-Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll
x64-Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - <orphaned>
x64-Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - <orphaned>
x64-Notify: igfxcui - igfxdev.dll
x64-SSODL: WebCheck - <orphaned>
x64-SEH: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL
.
============= SERVICES / DRIVERS ===============
.
R0 epfwwfp;epfwwfp;C:\Windows\System32\drivers\epfwwfp.sys [2012-11-28 57904]
R0 MpFilter;Microsoft Malware Protection Driver;C:\Windows\System32\drivers\MpFilter.sys [2013-1-20 230320]
R0 nvpciflt;nvpciflt;C:\Windows\System32\drivers\nvpciflt.sys [2012-12-4 25960]
R1 eamonm;eamonm;C:\Windows\System32\drivers\eamonm.sys [2012-10-8 211344]
R1 EpfwLWF;Epfw NDIS LightWeight Filter;C:\Windows\System32\drivers\EpfwLWF.sys [2012-10-8 59440]
R1 ndisrd;WinpkFilter LightWeight Filter;C:\Windows\System32\drivers\ndisrd.sys [2012-12-28 30816]
R2 NisDrv;Microsoft Network Inspection System;C:\Windows\System32\drivers\NisDrvWFP.sys [2012-3-20 130008]
R3 AirDisplay;Air Display Support;C:\Windows\System32\drivers\AVVideoCard.sys [2012-9-24 15808]
R3 AirDisplayMirror;Air Display Mirror Support;C:\Windows\System32\drivers\AVVideoCardMirror.sys [2012-9-24 15808]
R3 iDispService;iDispService;C:\Windows\System32\drivers\idisplayminiport.sys [2013-1-4 14248]
R3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller;C:\Windows\System32\drivers\L1C62x64.sys [2012-12-4 76912]
R3 teVirtualMIDI64;teVirtualMIDI - Virtual MIDI Driver x64;C:\Windows\System32\drivers\teVirtualMIDI64.sys [2012-8-15 30208]
S3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.);C:\Windows\System32\drivers\ssudbus.sys [2012-9-19 102368]
S3 DxkgFilter;Filtering Dxkg;C:\Program Files (x86)\iDisplay\idisplay.sys [2013-1-4 55720]
S3 fssfltr;fssfltr;C:\Windows\System32\drivers\fssfltr.sys [2013-2-17 57856]
S3 ser2at;ATEN USB to Serial port driver;C:\Windows\System32\drivers\ser2at64.sys [2013-2-7 96256]
S3 ssudmdm;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.);C:\Windows\System32\drivers\ssudmdm.sys [2012-9-19 203104]
S3 TsUsbFlt;TsUsbFlt;C:\Windows\System32\drivers\TsUsbFlt.sys [2010-11-21 59392]
S3 TsUsbGD;Remote Desktop Generic USB Device;C:\Windows\System32\drivers\TsUsbGD.sys [2010-11-21 31232]
.
=============== Created Last 30 ================
.
2013-03-10 20:13:31 -------- d-----w- C:\Users\U×ivatel\AppData\Local\Microsoft
2013-03-10 20:06:35 -------- d-----w- C:\Program Files\trend micro
2013-03-10 19:14:36 -------- d-----w- C:\Program Files (x86)\Smart File Advisor
2013-03-10 19:14:01 76232 ----a-w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{360D00B1-F61F-4781-B042-3DDC7E2FAEEA}\offreg.dll
2013-03-10 16:40:19 -------- d-----w- C:\Program Files (x86)\Tobias Erichsen
2013-03-10 16:30:57 -------- d-----w- C:\Program Files (x86)\humatic
2013-03-10 15:49:56 -------- dc-h--w- C:\ProgramData\{A97DA822-7B29-4F18-A64A-BF94FFFE77FB}
2013-03-10 15:49:25 -------- d-----w- C:\Program Files (x86)\Lexicon
2013-03-10 15:41:06 -------- d-----w- C:\Lexicon
2013-03-10 11:21:51 -------- d-----w- C:\Lexicon Alpha
2013-03-10 11:18:32 233472 ----a-w- C:\Windows\SysWow64\Rex Shared Library.dll
2013-03-10 11:18:32 1324544 ----a-w- C:\Windows\SysWow64\SYNSOAIR.DLL
2013-03-10 11:18:31 368640 ----a-w- C:\Windows\SysWow64\ReWire.dll
2013-03-10 11:15:23 -------- d-----w- C:\Program Files (x86)\Common Files\Steinberg
2013-03-10 09:15:09 -------- d-----w- C:\Program Files (x86)\Ask.com
2013-03-10 09:05:32 -------- d-----w- C:\Users\Uživatel\AppData\Roaming\TouchDAW thru
2013-03-10 09:04:48 -------- d-----w- C:\ProgramData\Ask
2013-03-10 09:03:50 95648 ----a-w- C:\Windows\SysWow64\WindowsAccessBridge-32.dll
2013-03-10 08:58:54 9162192 ----a-w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{360D00B1-F61F-4781-B042-3DDC7E2FAEEA}\mpengine.dll
2013-03-10 08:58:05 -------- d-----w- C:\Program Files\humatic
2013-03-10 08:56:30 -------- d-----w- C:\TOUCHDAW
2013-03-10 08:56:09 -------- d-----w- C:\BlueCove_license
2013-03-09 21:24:58 -------- d-----w- C:\PROJEKTY
2013-03-09 21:21:06 1177600 ----a-w- C:\Windows\SysWow64\SYNSOEMU.DLL
2013-03-09 21:20:59 16138240 ----a-w- C:\HALionOne.dll
2013-03-09 21:20:27 -------- d-----w- C:\Program Files (x86)\Common Files\VST3
2013-03-09 21:12:48 -------- d-----w- C:\Program Files (x86)\Steinberg
2013-03-09 21:01:03 -------- d-----w- C:\Cubase 5 Full
2013-03-09 20:31:39 -------- d-----w- C:\Users\Uživatel\AppData\Roaming\VST3 Presets
2013-03-09 20:31:37 -------- d-----w- C:\ProgramData\Steinberg
2013-03-09 20:25:17 -------- d-----w- C:\Users\Uživatel\AppData\Roaming\Steinberg
2013-03-09 20:24:06 -------- d-----r- C:\Steinberg Cubase 5.1.2 Final 32 & 64bit by Antony_GR
2013-03-09 17:55:49 71024 ----a-w- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
2013-03-09 17:55:49 691568 ----a-w- C:\Windows\SysWow64\FlashPlayerApp.exe
2013-03-09 09:44:46 -------- d-----w- C:\Windows\SysWow64\searchplugins
2013-03-09 09:44:46 -------- d-----w- C:\Windows\SysWow64\Extensions
2013-03-09 09:44:35 -------- d-----w- C:\ProgramData\BrowserProtect
2013-03-09 09:44:34 -------- d-----w- C:\Users\Uživatel\AppData\Roaming\Yontoo
2013-03-09 09:44:31 -------- d-----w- C:\Program Files (x86)\Yontoo
2013-03-09 09:44:26 -------- d-----w- C:\Users\Uživatel\AppData\Roaming\BabSolution
2013-03-09 09:44:00 -------- d-----w- C:\ProgramData\Babylon
2013-03-09 09:43:59 -------- d-----w- C:\Users\Uživatel\AppData\Roaming\Babylon
2013-03-09 09:43:56 -------- d-----w- C:\ProgramData\Tarma Installer
2013-03-09 09:43:33 -------- d-----w- C:\Users\Uživatel\AppData\Roaming\GoforFiles
2013-03-09 09:43:33 -------- d-----w- C:\Program Files (x86)\GoforFiles
2013-03-08 20:48:03 -------- dc-h--w- C:\ProgramData\{E51ADF6A-7916-46B4-96C1-40D98D096077}
2013-03-08 20:47:54 -------- d-----w- C:\Program Files\Lexicon
2013-03-08 19:18:04 6785488 ----a-w- C:\reaper432-install.exe
2013-03-08 18:54:08 -------- d-----w- C:\Users\Uživatel\AppData\Roaming\TeamViewer
2013-03-08 18:52:09 -------- d-----w- C:\Program Files (x86)\TeamViewer
2013-03-08 18:44:18 9162192 ------w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpengine.dll
2013-03-06 14:53:35 -------- d-----w- C:\Program Files (x86)\Seznam.cz
2013-03-06 14:52:54 -------- d-----w- C:\Users\Uživatel\AppData\Roaming\Seznam.cz
2013-03-06 14:52:35 -------- d-----w- C:\Users\Uživatel\AppData\Roaming\GHISLER
2013-03-06 14:52:35 -------- d-----w- C:\totalcmd
2013-02-28 17:03:18 -------- d-----w- C:\Users\Uživatel\AppData\Roaming\.BitTornado
2013-02-28 17:02:13 -------- d-----w- C:\Program Files (x86)\BitTornado
2013-02-27 20:19:21 -------- d-----r- C:\Users\Uživatel\Dropbox
2013-02-27 20:15:36 -------- d-----w- C:\Users\Uživatel\AppData\Roaming\Dropbox
2013-02-27 18:48:36 -------- d-----w- C:\Android
2013-02-22 17:12:02 -------- d-----w- C:\Users\Uživatel\AppData\Roaming\Google
2013-02-22 15:59:57 -------- d-----w- C:\Program Files (x86)\ImageMagick-6.8.0-Q8
2013-02-20 16:41:34 -------- d-----w- C:\circuits
2013-02-19 17:25:51 -------- d-----w- C:\Windows\pss
2013-02-18 18:40:32 -------- d-----w- C:\Users\Uživatel\AppData\Roaming\Fritzing
2013-02-18 18:37:54 -------- d-----w- C:\Fritzing
2013-02-17 12:12:48 -------- d-----w- C:\Users\Uživatel\Tracing
2013-02-17 11:52:59 -------- d-----w- C:\Windows\cs
2013-02-17 11:49:20 57856 ----a-w- C:\Windows\System32\drivers\fssfltr.sys
2013-02-17 11:46:57 77656 ----a-w- C:\Windows\System32\XAPOFX1_5.dll
2013-02-17 11:46:57 74072 ----a-w- C:\Windows\SysWow64\XAPOFX1_5.dll
2013-02-17 11:46:57 527192 ----a-w- C:\Windows\SysWow64\XAudio2_7.dll
2013-02-17 11:46:57 518488 ----a-w- C:\Windows\System32\XAudio2_7.dll
2013-02-17 11:46:54 2526056 ----a-w- C:\Windows\System32\D3DCompiler_43.dll
2013-02-17 11:46:54 2106216 ----a-w- C:\Windows\SysWow64\D3DCompiler_43.dll
2013-02-17 11:46:52 276832 ----a-w- C:\Windows\System32\d3dx11_43.dll
2013-02-17 11:46:52 248672 ----a-w- C:\Windows\SysWow64\d3dx11_43.dll
2013-02-17 11:45:49 523088 ----a-w- C:\Windows\System32\d3dx10_42.dll
2013-02-17 11:45:49 453456 ----a-w- C:\Windows\SysWow64\d3dx10_42.dll
2013-02-17 11:44:20 4398360 ----a-w- C:\Windows\System32\d3dx9_32.dll
2013-02-17 11:44:20 3426072 ----a-w- C:\Windows\SysWow64\d3dx9_32.dll
2013-02-17 11:41:34 5659096 -c--a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\6da286dc1ce0d0305\skydrivesetup.exe
2013-02-17 11:41:34 -------- d-----w- C:\Program Files (x86)\Microsoft SkyDrive
2013-02-17 11:41:32 -------- d-----r- C:\Users\Uživatel\SkyDrive
2013-02-17 11:40:20 -------- d-----w- C:\ProgramData\Microsoft SkyDrive
2013-02-17 11:39:16 89944 -c--a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\68945ad91ce0d0303\DSETUP.dll
2013-02-17 11:39:16 537432 -c--a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\68945ad91ce0d0303\DXSETUP.exe
2013-02-17 11:39:16 1801048 -c--a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\68945ad91ce0d0303\dsetup32.dll
2013-02-17 11:39:11 525656 -c--a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\64438e2c1ce0d0302\DXSETUP.exe
2013-02-17 11:39:10 94040 -c--a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\64438e2c1ce0d0302\DSETUP.dll
2013-02-17 11:39:10 1691480 -c--a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\64438e2c1ce0d0302\dsetup32.dll
2013-02-17 11:38:59 537432 -c--a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\5de4733a1ce0d0301\DXSETUP.exe
2013-02-17 11:38:59 1801048 -c--a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\5de4733a1ce0d0301\dsetup32.dll
2013-02-17 11:38:58 89944 -c--a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\5de4733a1ce0d0301\DSETUP.dll
2013-02-17 11:38:02 -------- d-----w- C:\Program Files (x86)\Common Files\Windows Live
2013-02-17 11:35:18 35328 ----a-w- C:\Windows\SysWow64\picn20.dll
2013-02-17 11:35:17 532480 ----a-w- C:\Windows\SysWow64\imagx5.dll
2013-02-17 11:35:17 503808 ----a-w- C:\Windows\SysWow64\imagr5.dll
2013-02-17 11:35:16 275312 ----a-w- C:\Windows\SysWow64\ImagXpr5.dll
2013-02-17 11:35:16 201568 ----a-w- C:\Windows\SysWow64\CapPRO.dll
2013-02-17 11:35:16 16896 ----a-w- C:\Windows\SysWow64\temp.002
2013-02-17 11:35:15 626960 ----a-w- C:\Windows\SysWow64\temp.001
2013-02-17 11:35:14 290869 ----a-w- C:\Windows\SysWow64\temp.000
2013-02-17 11:34:42 -------- d-----w- C:\Program Files (x86)\CoffeeCup Software
2013-02-14 21:15:19 996352 ----a-w- C:\Program Files\Common Files\Microsoft Shared\VGX\VGX.dll
2013-02-14 21:15:19 768000 ----a-w- C:\Program Files (x86)\Common Files\Microsoft Shared\VGX\VGX.dll
2013-02-14 17:20:39 215040 ----a-w- C:\Windows\System32\winsrv.dll
2013-02-14 17:20:37 7680 ----a-w- C:\Windows\SysWow64\instnm.exe
2013-02-14 17:20:37 5120 ----a-w- C:\Windows\SysWow64\wow32.dll
2013-02-14 17:20:37 25600 ----a-w- C:\Windows\SysWow64\setup16.exe
2013-02-14 17:20:37 14336 ----a-w- C:\Windows\SysWow64\ntvdm64.dll
2013-02-14 17:20:33 2048 ----a-w- C:\Windows\SysWow64\user.exe
2013-02-14 17:17:19 5553512 ----a-w- C:\Windows\System32\ntoskrnl.exe
2013-02-14 17:17:17 3967848 ----a-w- C:\Windows\SysWow64\ntkrnlpa.exe
2013-02-14 17:17:16 3913064 ----a-w- C:\Windows\SysWow64\ntoskrnl.exe
2013-02-14 17:00:44 3153408 ----a-w- C:\Windows\System32\win32k.sys
2013-02-14 16:24:52 1913192 ----a-w- C:\Windows\System32\drivers\tcpip.sys
2013-02-14 16:24:50 288088 ----a-w- C:\Windows\System32\drivers\FWPKCLNT.SYS
2013-02-13 19:50:12 -------- d-----w- C:\Users\Uživatel\AppData\Roaming\Dev-Cpp
2013-02-13 19:41:51 -------- d-----w- C:\Users\Uživatel\AppData\Roaming\Wireshark
2013-02-13 19:26:40 -------- d-----w- C:\Program Files (x86)\WinPcap
2013-02-13 19:26:09 -------- d-----w- C:\Program Files (x86)\Wireshark
2013-02-11 14:51:37 -------- d-----w- C:\Users\Uživatel\.swt
2013-02-09 17:48:37 9600 ----a-w- C:\Windows\SysWow64\drivers\ISODisk.sys
2013-02-09 17:48:33 -------- d-----w- C:\Program Files (x86)\ISODisk
2013-02-09 11:53:51 -------- d-----w- C:\Users\Uživatel\AppData\Roaming\ESET
2013-02-09 11:48:27 -------- d-----w- C:\Program Files\ESET
2013-02-09 09:04:48 -------- d-----w- C:\Users\Uživatel\AppData\Roaming\AVG
2013-02-09 09:03:22 -------- d-----w- C:\ProgramData\AVG
2013-02-09 09:03:02 -------- d-sh--w- C:\ProgramData\{D1D4879F-2279-49C9-AEBF-3B95C84EAA8F}
2013-02-08 21:46:42 -------- d-----w- C:\Users\Uživatel\AppData\Roaming\PapiiiClock
2013-02-08 21:46:40 -------- d-----w- C:\Program Files (x86)\PapíííClock
2013-02-08 21:36:41 -------- d-----w- C:\Users\Uživatel\AppData\Roaming\TuneUp Software
2013-02-08 21:28:42 -------- d--h--w- C:\ProgramData\Common Files
2013-02-08 21:28:42 -------- d-----w- C:\ProgramData\MFAData
2013-02-08 21:02:22 -------- d-sh--w- C:\found.000
.
==================== Find3M ====================
.
2013-03-10 09:03:17 861088 ----a-w- C:\Windows\SysWow64\npdeployJava1.dll
2013-03-10 09:03:17 782240 ----a-w- C:\Windows\SysWow64\deployJava1.dll
2013-01-30 10:53:22 273840 ------w- C:\Windows\System32\MpSigStub.exe
2013-01-20 14:59:04 230320 ----a-w- C:\Windows\System32\drivers\MpFilter.sys
2013-01-20 14:59:04 130008 ----a-w- C:\Windows\System32\drivers\NisDrvWFP.sys
2013-01-09 01:19:09 2312704 ----a-w- C:\Windows\System32\jscript9.dll
2013-01-09 01:12:03 1392128 ----a-w- C:\Windows\System32\wininet.dll
2013-01-09 01:11:06 1494528 ----a-w- C:\Windows\System32\inetcpl.cpl
2013-01-09 01:07:51 173056 ----a-w- C:\Windows\System32\ieUnatt.exe
2013-01-09 01:07:47 599040 ----a-w- C:\Windows\System32\vbscript.dll
2013-01-09 01:04:42 2382848 ----a-w- C:\Windows\System32\mshtml.tlb
2013-01-08 22:11:21 1800704 ----a-w- C:\Windows\SysWow64\jscript9.dll
2013-01-08 22:03:20 1129472 ----a-w- C:\Windows\SysWow64\wininet.dll
2013-01-08 22:03:12 1427968 ----a-w- C:\Windows\SysWow64\inetcpl.cpl
2013-01-08 21:59:02 142848 ----a-w- C:\Windows\SysWow64\ieUnatt.exe
2013-01-08 21:58:29 420864 ----a-w- C:\Windows\SysWow64\vbscript.dll
2013-01-08 21:56:23 2382848 ----a-w- C:\Windows\SysWow64\mshtml.tlb
2013-01-04 04:43:21 44032 ----a-w- C:\Windows\apppatch\acwow64.dll
2012-12-16 17:11:22 46080 ----a-w- C:\Windows\System32\atmlib.dll
2012-12-16 14:45:03 367616 ----a-w- C:\Windows\System32\atmfd.dll
2012-12-16 14:13:28 295424 ----a-w- C:\Windows\SysWow64\atmfd.dll
2012-12-16 14:13:20 34304 ----a-w- C:\Windows\SysWow64\atmlib.dll
.
============= FINISH: 21:15:03,25 ===============

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119524
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu logu. Pomalý počítač.

#3 Příspěvek od Rudy »

Zdravím!
Spusťte nejprve tuto utilitu:
Stáhněte AdwCleaner http://stahnu.cz/tag/adw-cleaner-free-download
Uložte na plochu
Ukončete všechny programy
Klikněte na Search
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

lukykostka
Návštěvník
Návštěvník
Příspěvky: 13
Registrován: 10 bře 2013 21:04

Re: Prosím o kontrolu logu. Pomalý počítač.

#4 Příspěvek od lukykostka »

# AdwCleaner v2.109 - Logfile created 03/10/2013 at 21:43:14
# Updated 26/01/2013 by Xplode
# Operating system : Windows 7 Home Premium Service Pack 1 (64 bits)
# User : Uživatel - PC
# Boot Mode : Normal
# Running from : C:\Users\Uživatel\Downloads\adwcleaner_2.110.exe
# Option [Search]


***** [Services] *****


***** [Files / Folders] *****

Folder Found : C:\Program Files (x86)\Ask.com
Folder Found : C:\Program Files (x86)\SweetIM
Folder Found : C:\Program Files (x86)\Yontoo
Folder Found : C:\ProgramData\Ask
Folder Found : C:\ProgramData\Babylon
Folder Found : C:\ProgramData\BrowserProtect
Folder Found : C:\ProgramData\SweetIM
Folder Found : C:\ProgramData\Tarma Installer
Folder Found : C:\Users\Uživatel\AppData\Local\APN
Folder Found : C:\Users\Uživatel\AppData\LocalLow\AskToolbar
Folder Found : C:\Users\Uživatel\AppData\Roaming\BabSolution
Folder Found : C:\Users\Uživatel\AppData\Roaming\Babylon
Folder Found : C:\Users\Uživatel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BrowserProtect
Folder Found : C:\Users\Uživatel\AppData\Roaming\Yontoo
Folder Found : C:\Windows\Installer\{86D4B82A-ABED-442A-BE86-96357B70F4FE}
Folder Found : C:\Windows\Installer\{A0C9DF2B-89B5-4483-8983-18A68200F1B4}
Folder Found : C:\Windows\Installer\{A0C9DF2B-89B5-4483-8983-18A68200F1B4}
Folder Found : C:\Windows\Installer\{C3E85EE9-5892-4142-B537-BCEB3DAC4C3D}

***** [Registry] *****

Data Found : HKLM\..\Windows [AppInit_DLLs] = c:\progra~3\browse~1\261095~1.52\{c16c1~1\browse~1.dll
Key Found : HKCU\Software\APN
Key Found : HKCU\Software\APN PIP
Key Found : HKCU\Software\AppDataLow\Software\AskToolbar
Key Found : HKCU\Software\Ask.com
Key Found : HKCU\Software\BabylonToolbar
Key Found : HKCU\Software\DataMngr
Key Found : HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\bProtectSettings
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EEE6C35B-6118-11DC-9C72-001320C79847}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EEE6C35C-6118-11DC-9C72-001320C79847}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EEE6C35B-6118-11DC-9C72-001320C79847}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EEE6C35C-6118-11DC-9C72-001320C79847}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\{79A765E1-C399-405B-85AF-466F52E918B0}
Key Found : HKCU\Software\PIP
Key Found : HKCU\Software\530d9d9b73fed41
Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9}
Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847}
Key Found : HKLM\Software\APN
Key Found : HKLM\Software\AskToolbar
Key Found : HKLM\Software\Babylon
Key Found : HKLM\SOFTWARE\Classes\AppID\{9B0CB95C-933A-4B8C-B6D4-EDCD19A43874}
Key Found : HKLM\SOFTWARE\Classes\AppID\{CFDAFE39-20CE-451D-BD45-A37452F39CF0}
Key Found : HKLM\SOFTWARE\Classes\AppID\GenericAskToolbar.DLL
Key Found : HKLM\SOFTWARE\Classes\AppID\YontooIEClient.DLL
Key Found : HKLM\SOFTWARE\Classes\GenericAskToolbar.ToolbarWnd
Key Found : HKLM\SOFTWARE\Classes\GenericAskToolbar.ToolbarWnd.1
Key Found : HKLM\Software\Classes\Installer\Features\9EE58E3C298524145B73CBBED3CAC4D3
Key Found : HKLM\Software\Classes\Installer\Features\A28B4D68DEBAA244EB686953B7074FEF
Key Found : HKLM\Software\Classes\Installer\Features\B2FD9C0A5B9838449838816A28001F4B
Key Found : HKLM\Software\Classes\Installer\Features\EB6AF8AEEB922FA4392548F13812E50B
Key Found : HKLM\Software\Classes\Installer\Products\9EE58E3C298524145B73CBBED3CAC4D3
Key Found : HKLM\Software\Classes\Installer\Products\A28B4D68DEBAA244EB686953B7074FEF
Key Found : HKLM\Software\Classes\Installer\Products\B2FD9C0A5B9838449838816A28001F4B
Key Found : HKLM\Software\Classes\Installer\Products\EB6AF8AEEB922FA4392548F13812E50B
Key Found : HKLM\SOFTWARE\Classes\MediaPlayer.GraphicsUtils
Key Found : HKLM\SOFTWARE\Classes\MediaPlayer.GraphicsUtils.1
Key Found : HKLM\SOFTWARE\Classes\MgMediaPlayer.GifAnimator
Key Found : HKLM\SOFTWARE\Classes\MgMediaPlayer.GifAnimator.1
Key Found : HKLM\SOFTWARE\Classes\Prod.cap
Key Found : HKLM\SOFTWARE\Classes\sim-packages
Key Found : HKLM\SOFTWARE\Classes\SWEETIE.IEToolbar
Key Found : HKLM\SOFTWARE\Classes\SWEETIE.IEToolbar.1
Key Found : HKLM\SOFTWARE\Classes\sweetim_urlsearchhook.toolbarurlsearchhook
Key Found : HKLM\SOFTWARE\Classes\sweetim_urlsearchhook.toolbarurlsearchhook.1
Key Found : HKLM\SOFTWARE\Classes\Toolbar3.sweetie
Key Found : HKLM\SOFTWARE\Classes\Toolbar3.sweetie.1
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{4D3B167E-5FD8-4276-8FD7-9DF19C1E4D19}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{D372567D-67C1-4B29-B3F0-159B52B3E967}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{EEE6C35E-6118-11DC-9C72-001320C79847}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{EEE6C35F-6118-11DC-9C72-001320C79847}
Key Found : HKLM\Software\DataMngr
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\SweetIM_RASAPI32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\SweetIM_RASMANCS
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\SweetIM.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{DF7770F7-832F-4BDF-B144-100EDDD0C3AE}
Key Found : HKLM\Software\PIP
Key Found : HKLM\SOFTWARE\Wow6432Node\530d9d9b73fed41
Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{00000000-6E41-4FD3-8538-502F5495E5FC}
Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D}
Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{82AC53B4-164C-4B07-A016-437A8388B81A}
Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{99066096-8989-4612-841F-621A01D54AD7}
Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{A4A0CB15-8465-4F58-A7E5-73084EA2A064}
Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440}
Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{EEE6C35B-6118-11DC-9C72-001320C79847}
Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{EEE6C35C-6118-11DC-9C72-001320C79847}
Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{EEE6C35D-6118-11DC-9C72-001320C79847}
Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{FE9271F2-6EFD-44B0-A826-84C829536E93}
Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{10DE7085-6A1E-4D41-A7BF-9AF93E351401}
Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{1AD27395-1659-4DFF-A319-2CFA243861A5}
Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{6C434537-053E-486D-B62A-160059D9D456}
Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{79FB5FC8-44B9-4AF5-BADD-CCE547F953E5}
Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{91CF619A-4686-4CA4-9232-3B2E6B63AA92}
Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{A439801C-961D-452C-AB42-7848E9CBD289}
Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{AC71B60E-94C9-4EDE-BA46-E146747BB67E}
Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{EEE6C358-6118-11DC-9C72-001320C79847}
Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{EEE6C359-6118-11DC-9C72-001320C79847}
Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{EEE6C35A-6118-11DC-9C72-001320C79847}
Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{F4EBB1E2-21F3-4786-8CF4-16EC5925867F}
Key Found : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\jcdgjdiieiljkfkdcloehkohchhpekkn
Key Found : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\niapdbllcanepiiimjjndipklodoedlc
Key Found : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\ogccgbmabaphcakpiclgcnmcnimhokcj
Key Found : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A}
Key Found : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EEE6C367-6118-11DC-9C72-001320C79847}
Key Found : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847}
Key Found : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}
Key Found : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EEE6C35C-6118-11DC-9C72-001320C79847}
Key Found : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{15D2D75C-9CB2-4EFD-BAD7-B9B4CB4BC693}
Key Found : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{86D4B82A-ABED-442A-BE86-96357B70F4FE}
Key Found : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{953AA732-9AFB-49C9-84A4-7F96CA0A08DA}
Key Found : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{A0C9DF2B-89B5-4483-8983-18A68200F1B4}
Key Found : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{C3E85EE9-5892-4142-B537-BCEB3DAC4C3D}
Key Found : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{EA8FA6BE-29BE-4AF2-9352-841F83215EB0}
Key Found : HKLM\SOFTWARE\Classes\Interface\{10DE7085-6A1E-4D41-A7BF-9AF93E351401}
Key Found : HKLM\SOFTWARE\Classes\Interface\{1AD27395-1659-4DFF-A319-2CFA243861A5}
Key Found : HKLM\SOFTWARE\Classes\Interface\{6C434537-053E-486D-B62A-160059D9D456}
Key Found : HKLM\SOFTWARE\Classes\Interface\{91CF619A-4686-4CA4-9232-3B2E6B63AA92}
Key Found : HKLM\SOFTWARE\Classes\Interface\{AC71B60E-94C9-4EDE-BA46-E146747BB67E}
Key Found : HKLM\SOFTWARE\Classes\Interface\{EEE6C358-6118-11DC-9C72-001320C79847}
Key Found : HKLM\SOFTWARE\Classes\Interface\{EEE6C359-6118-11DC-9C72-001320C79847}
Key Found : HKLM\SOFTWARE\Classes\Interface\{EEE6C35A-6118-11DC-9C72-001320C79847}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\A28B4D68DEBAA244EB686953B7074FEF
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{889DF117-14D1-44EE-9F31-C5FB5D47F68B}
Key Found : HKLM\SOFTWARE\Tarma Installer
Key Found : HKU\S-1-5-21-2004717480-3392484521-2237306682-1000\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9}
Key Found : HKU\S-1-5-21-2004717480-3392484521-2237306682-1000\Software\Microsoft\Internet Explorer\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847}
Value Found : HKCU\Software\Microsoft\Internet Explorer\Main [bprotector start page]
Value Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes [bProtectorDefaultScope]
Value Found : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{00000000-6E41-4FD3-8538-502F5495E5FC}]
Value Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [ApnUpdater]
Value Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [SweetIM]
Value Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [Sweetpacks Communicator]
Value Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs [C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgHelperApp.exe]
Value Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs [C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgToolbarProxy.dll]
Value Found : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [{D4027C7F-154A-4066-A1AD-4243D8127440}]
Value Found : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [{EEE6C35B-6118-11DC-9C72-001320C79847}]

***** [Internet Browsers] *****

-\\ Internet Explorer v9.0.8112.16464

[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main - Start Page] = hxxp://home.sweetim.com/?crg=3.1010000.10005&barid={48AFAF9B-437A-11E2-A024-BCAEC50937A5}

-\\ Google Chrome v25.0.1364.152

File : C:\Users\Uživatel\AppData\Local\Google\Chrome\User Data\Default\Preferences

Found [l.37] : icon_url = "hxxp://www.ask.com/favicon.ico",
Found [l.40] : keyword = "ask.com",
Found [l.43] : search_url = "hxxp://websearch.ask.com/redirect?client=cr&src=kw&tb=ORJ&o=&locale=&apn_uid=225E9C66-E4E2-48DA-A614-21ADB6B59DC0&apn_ptnrs=U3&apn_sauid=EBD2469D-CB44-4B49-9289-F1BED7D9C5A5&apn_dtid=OSJ000YYCZ&q={searchTerms}",
Found [l.44] : suggest_url = "hxxp://ss.websearch.ask.com/query?qsrc=2922&li=ff&sstype=prefix&q={searchTerms}",

-\\ Opera v12.11.1661.0

File : C:\Users\Uživatel\AppData\Roaming\Opera\Opera\operaprefs.ini

[OK] File is clean.

*************************

AdwCleaner[R1].txt - [12595 octets] - [10/03/2013 21:43:14]

########## EOF - C:\AdwCleaner[R1].txt - [12656 octets] ##########

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119524
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu logu. Pomalý počítač.

#5 Příspěvek od Rudy »

Spusťte znovu ADWCleaner a klikněte na >Delete<. Vložte nový log.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

lukykostka
Návštěvník
Návštěvník
Příspěvky: 13
Registrován: 10 bře 2013 21:04

Re: Prosím o kontrolu logu. Pomalý počítač.

#6 Příspěvek od lukykostka »

Toto se mi zobrazilo po startu notebooku.




# AdwCleaner v2.109 - Logfile created 03/11/2013 at 14:56:02
# Updated 26/01/2013 by Xplode
# Operating system : Windows 7 Home Premium Service Pack 1 (64 bits)
# User : Uživatel - PC
# Boot Mode : Normal
# Running from : C:\Users\Uživatel\Downloads\adwcleaner_2.110.exe
# Option [Delete]


***** [Services] *****


***** [Files / Folders] *****

Deleted on reboot : C:\Program Files (x86)\Yontoo
Folder Deleted : C:\Program Files (x86)\Ask.com
Folder Deleted : C:\Program Files (x86)\SweetIM
Folder Deleted : C:\ProgramData\Ask
Folder Deleted : C:\ProgramData\Babylon
Folder Deleted : C:\ProgramData\BrowserProtect
Folder Deleted : C:\ProgramData\SweetIM
Folder Deleted : C:\ProgramData\Tarma Installer
Folder Deleted : C:\Users\Uživatel\AppData\Local\APN
Folder Deleted : C:\Users\Uživatel\AppData\LocalLow\AskToolbar
Folder Deleted : C:\Users\Uživatel\AppData\Roaming\BabSolution
Folder Deleted : C:\Users\Uživatel\AppData\Roaming\Babylon
Folder Deleted : C:\Users\Uživatel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BrowserProtect
Folder Deleted : C:\Users\Uživatel\AppData\Roaming\Yontoo
Folder Deleted : C:\Windows\Installer\{86D4B82A-ABED-442A-BE86-96357B70F4FE}
Folder Deleted : C:\Windows\Installer\{A0C9DF2B-89B5-4483-8983-18A68200F1B4}
Folder Deleted : C:\Windows\Installer\{C3E85EE9-5892-4142-B537-BCEB3DAC4C3D}

***** [Registry] *****

Data Deleted : HKLM\..\Windows [AppInit_DLLs] = c:\progra~3\browse~1\261095~1.52\{c16c1~1\browse~1.dll
Key Deleted : HKCU\Software\APN
Key Deleted : HKCU\Software\APN PIP
Key Deleted : HKCU\Software\AppDataLow\Software\AskToolbar
Key Deleted : HKCU\Software\Ask.com
Key Deleted : HKCU\Software\BabylonToolbar
Key Deleted : HKCU\Software\DataMngr
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\bProtectSettings
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EEE6C35B-6118-11DC-9C72-001320C79847}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EEE6C35C-6118-11DC-9C72-001320C79847}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EEE6C35B-6118-11DC-9C72-001320C79847}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EEE6C35C-6118-11DC-9C72-001320C79847}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\{79A765E1-C399-405B-85AF-466F52E918B0}
Key Deleted : HKCU\Software\PIP
Key Deleted : HKCU\Software\530d9d9b73fed41
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847}
Key Deleted : HKLM\Software\APN
Key Deleted : HKLM\Software\AskToolbar
Key Deleted : HKLM\Software\Babylon
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{9B0CB95C-933A-4B8C-B6D4-EDCD19A43874}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{CFDAFE39-20CE-451D-BD45-A37452F39CF0}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\GenericAskToolbar.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\YontooIEClient.DLL
Key Deleted : HKLM\SOFTWARE\Classes\GenericAskToolbar.ToolbarWnd
Key Deleted : HKLM\SOFTWARE\Classes\GenericAskToolbar.ToolbarWnd.1
Key Deleted : HKLM\Software\Classes\Installer\Features\9EE58E3C298524145B73CBBED3CAC4D3
Key Deleted : HKLM\Software\Classes\Installer\Features\A28B4D68DEBAA244EB686953B7074FEF
Key Deleted : HKLM\Software\Classes\Installer\Features\B2FD9C0A5B9838449838816A28001F4B
Key Deleted : HKLM\Software\Classes\Installer\Features\EB6AF8AEEB922FA4392548F13812E50B
Key Deleted : HKLM\Software\Classes\Installer\Products\9EE58E3C298524145B73CBBED3CAC4D3
Key Deleted : HKLM\Software\Classes\Installer\Products\A28B4D68DEBAA244EB686953B7074FEF
Key Deleted : HKLM\Software\Classes\Installer\Products\B2FD9C0A5B9838449838816A28001F4B
Key Deleted : HKLM\Software\Classes\Installer\Products\EB6AF8AEEB922FA4392548F13812E50B
Key Deleted : HKLM\SOFTWARE\Classes\MediaPlayer.GraphicsUtils
Key Deleted : HKLM\SOFTWARE\Classes\MediaPlayer.GraphicsUtils.1
Key Deleted : HKLM\SOFTWARE\Classes\MgMediaPlayer.GifAnimator
Key Deleted : HKLM\SOFTWARE\Classes\MgMediaPlayer.GifAnimator.1
Key Deleted : HKLM\SOFTWARE\Classes\Prod.cap
Key Deleted : HKLM\SOFTWARE\Classes\sim-packages
Key Deleted : HKLM\SOFTWARE\Classes\SWEETIE.IEToolbar
Key Deleted : HKLM\SOFTWARE\Classes\SWEETIE.IEToolbar.1
Key Deleted : HKLM\SOFTWARE\Classes\sweetim_urlsearchhook.toolbarurlsearchhook
Key Deleted : HKLM\SOFTWARE\Classes\sweetim_urlsearchhook.toolbarurlsearchhook.1
Key Deleted : HKLM\SOFTWARE\Classes\Toolbar3.sweetie
Key Deleted : HKLM\SOFTWARE\Classes\Toolbar3.sweetie.1
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{4D3B167E-5FD8-4276-8FD7-9DF19C1E4D19}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{D372567D-67C1-4B29-B3F0-159B52B3E967}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{EEE6C35E-6118-11DC-9C72-001320C79847}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{EEE6C35F-6118-11DC-9C72-001320C79847}
Key Deleted : HKLM\Software\DataMngr
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SweetIM_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SweetIM_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\SweetIM.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{DF7770F7-832F-4BDF-B144-100EDDD0C3AE}
Key Deleted : HKLM\Software\PIP
Key Deleted : HKLM\SOFTWARE\Wow6432Node\530d9d9b73fed41
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{00000000-6E41-4FD3-8538-502F5495E5FC}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{82AC53B4-164C-4B07-A016-437A8388B81A}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{99066096-8989-4612-841F-621A01D54AD7}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{A4A0CB15-8465-4F58-A7E5-73084EA2A064}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{EEE6C35B-6118-11DC-9C72-001320C79847}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{EEE6C35C-6118-11DC-9C72-001320C79847}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{EEE6C35D-6118-11DC-9C72-001320C79847}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{FE9271F2-6EFD-44B0-A826-84C829536E93}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{10DE7085-6A1E-4D41-A7BF-9AF93E351401}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{1AD27395-1659-4DFF-A319-2CFA243861A5}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{6C434537-053E-486D-B62A-160059D9D456}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{79FB5FC8-44B9-4AF5-BADD-CCE547F953E5}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{91CF619A-4686-4CA4-9232-3B2E6B63AA92}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{A439801C-961D-452C-AB42-7848E9CBD289}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{AC71B60E-94C9-4EDE-BA46-E146747BB67E}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{EEE6C358-6118-11DC-9C72-001320C79847}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{EEE6C359-6118-11DC-9C72-001320C79847}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{EEE6C35A-6118-11DC-9C72-001320C79847}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{F4EBB1E2-21F3-4786-8CF4-16EC5925867F}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\jcdgjdiieiljkfkdcloehkohchhpekkn
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\niapdbllcanepiiimjjndipklodoedlc
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\ogccgbmabaphcakpiclgcnmcnimhokcj
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EEE6C367-6118-11DC-9C72-001320C79847}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EEE6C35C-6118-11DC-9C72-001320C79847}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{15D2D75C-9CB2-4EFD-BAD7-B9B4CB4BC693}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{86D4B82A-ABED-442A-BE86-96357B70F4FE}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{953AA732-9AFB-49C9-84A4-7F96CA0A08DA}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{A0C9DF2B-89B5-4483-8983-18A68200F1B4}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{C3E85EE9-5892-4142-B537-BCEB3DAC4C3D}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{EA8FA6BE-29BE-4AF2-9352-841F83215EB0}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{10DE7085-6A1E-4D41-A7BF-9AF93E351401}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{1AD27395-1659-4DFF-A319-2CFA243861A5}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{6C434537-053E-486D-B62A-160059D9D456}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{91CF619A-4686-4CA4-9232-3B2E6B63AA92}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{AC71B60E-94C9-4EDE-BA46-E146747BB67E}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{EEE6C358-6118-11DC-9C72-001320C79847}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{EEE6C359-6118-11DC-9C72-001320C79847}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{EEE6C35A-6118-11DC-9C72-001320C79847}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\A28B4D68DEBAA244EB686953B7074FEF
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{889DF117-14D1-44EE-9F31-C5FB5D47F68B}
Key Deleted : HKLM\SOFTWARE\Tarma Installer
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Main [bprotector start page]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes [bProtectorDefaultScope]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{00000000-6E41-4FD3-8538-502F5495E5FC}]
Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [ApnUpdater]
Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [SweetIM]
Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [Sweetpacks Communicator]
Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs [C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgHelperApp.exe]
Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs [C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgToolbarProxy.dll]
Value Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [{D4027C7F-154A-4066-A1AD-4243D8127440}]
Value Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [{EEE6C35B-6118-11DC-9C72-001320C79847}]

***** [Internet Browsers] *****

-\\ Internet Explorer v9.0.8112.16464

Replaced : [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main - Start Page] = hxxp://home.sweetim.com/?crg=3.1010000.10005&barid={48AFAF9B-437A-11E2-A024-BCAEC50937A5} --> hxxp://www.google.com

-\\ Google Chrome v25.0.1364.152

File : C:\Users\Uživatel\AppData\Local\Google\Chrome\User Data\Default\Preferences

Deleted [l.37] : icon_url = "hxxp://www.ask.com/favicon.ico",
Deleted [l.40] : keyword = "ask.com",
Deleted [l.43] : search_url = "hxxp://websearch.ask.com/redirect?client=cr&src=kw&tb=ORJ&o=&locale=&apn_uid=22[...]
Deleted [l.44] : suggest_url = "hxxp://ss.websearch.ask.com/query?qsrc=2922&li=ff&sstype=prefix&q={searchTerms[...]

-\\ Opera v12.11.1661.0

File : C:\Users\Uživatel\AppData\Roaming\Opera\Opera\operaprefs.ini

[OK] File is clean.

*************************

AdwCleaner[R1].txt - [12698 octets] - [10/03/2013 21:43:14]
AdwCleaner[S1].txt - [12461 octets] - [11/03/2013 14:56:02]

########## EOF - C:\AdwCleaner[S1].txt - [12522 octets] ##########

lukykostka
Návštěvník
Návštěvník
Příspěvky: 13
Registrován: 10 bře 2013 21:04

Re: Prosím o kontrolu logu. Pomalý počítač.

#7 Příspěvek od lukykostka »

A toto je nový log.





# AdwCleaner v2.109 - Logfile created 03/11/2013 at 15:04:44
# Updated 26/01/2013 by Xplode
# Operating system : Windows 7 Home Premium Service Pack 1 (64 bits)
# User : Uživatel - PC
# Boot Mode : Normal
# Running from : C:\Users\Uživatel\Downloads\adwcleaner_2.110.exe
# Option [Search]


***** [Services] *****


***** [Files / Folders] *****

Folder Found : C:\Program Files (x86)\Yontoo

***** [Registry] *****


***** [Internet Browsers] *****

-\\ Internet Explorer v9.0.8112.16464

[OK] Registry is clean.

-\\ Google Chrome v25.0.1364.152

File : C:\Users\Uživatel\AppData\Local\Google\Chrome\User Data\Default\Preferences

Found [l.22] : icon_url = "hxxp://www.ask.com/favicon.ico",
Found [l.25] : keyword = "ask.com",
Found [l.28] : search_url = "hxxp://websearch.ask.com/redirect?client=cr&src=kw&tb=ORJ&o=&locale=&apn_uid=225E9C66-E4E2-48DA-A614-21ADB6B59DC0&apn_ptnrs=U3&apn_sauid=EBD2469D-CB44-4B49-9289-F1BED7D9C5A5&apn_dtid=OSJ000YYCZ&q={searchTerms}",
Found [l.29] : suggest_url = "hxxp://ss.websearch.ask.com/query?qsrc=2922&li=ff&sstype=prefix&q={searchTerms}"

-\\ Opera v12.11.1661.0

File : C:\Users\Uživatel\AppData\Roaming\Opera\Opera\operaprefs.ini

[OK] File is clean.

*************************

AdwCleaner[R1].txt - [12698 octets] - [10/03/2013 21:43:14]
AdwCleaner[R2].txt - [1327 octets] - [11/03/2013 15:04:44]
AdwCleaner[S1].txt - [12564 octets] - [11/03/2013 14:56:02]

########## EOF - C:\AdwCleaner[R2].txt - [1448 octets] ##########

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119524
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu logu. Pomalý počítač.

#8 Příspěvek od Rudy »

Dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

lukykostka
Návštěvník
Návštěvník
Příspěvky: 13
Registrován: 10 bře 2013 21:04

Re: Prosím o kontrolu logu. Pomalý počítač.

#9 Příspěvek od lukykostka »

Logfile of random's system information tool 1.09 (written by random/random)
Run by Uživatel at 2013-03-11 17:32:01
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 62 GB (60%) free of 102 GB
Total RAM: 2038 MB (30% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 17:32:20, on 11.3.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16464)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\iDisplay\adb.exe
C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Users\Uživatel\AppData\Roaming\Dropbox\bin\Dropbox.exe
C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Uživatel.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.delta-search.com/?affID=1192 ... 5d6089ef30
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~2\Office14\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: Pomocná služba pro přihlášení k účtu Microsoft - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~2\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O4 - HKLM\..\Run: [HotkeyMon] AsusSender.exe C:\Program Files (x86)\ASUS\HotkeyService\HotKeyMon.exe
O4 - HKLM\..\Run: [HotkeyService] AsusSender.exe C:\Program Files (x86)\ASUS\HotkeyService\HotkeyService.exe
O4 - HKLM\..\Run: [NUSB3MON] "C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe"
O4 - HKLM\..\Run: [BCSSync] "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [Smart File Advisor] "C:\Program Files (x86)\Smart File Advisor\sfa.exe" /checkassoc
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [Air Display Support] "C:\Program Files\Avatron\Air Display\AirDisplay.exe"
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "C:\Users\Uživatel\AppData\Roaming\Seznam.cz\szninstall.exe" -c
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "C:\Users\Uživatel\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
O4 - HKCU\..\Run: [Yontoo Desktop] "C:\Users\Uživatel\AppData\Roaming\Yontoo\YontooDesktop.exe"
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-21-2004717480-3392484521-2237306682-1001\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-2004717480-3392484521-2237306682-1001\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'UpdatusUser')
O4 - Startup: Dropbox.lnk = ?
O8 - Extra context menu item: Add to Evernote 4.0 - res://C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll/204
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~2\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~2\MICROS~2\Office14\ONBttnIE.dll/105
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - res://C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll/204 (file missing)
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - res://C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll/204 (file missing)
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O20 - AppInit_DLLs: C:\Windows\SysWOW64\nvinit.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Asus Launcher Service (AsusService) - Unknown owner - C:\Windows\SysWOW64\AsusService.exe
O23 - Service: AVTHelper - Avatron Software - C:\Program Files\Avatron\Air Display\AVTHelper.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files (x86)\Bonjour\mDNSResponder.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: MyPublicWiFi Service (MyPublicWiFiService) - Unknown owner - C:\Program Files (x86)\MyPublicWiFi\PublicWiFiService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - CACE Technologies, Inc. - C:\Program Files (x86)\WinPcap\rpcapd.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: rtpMIDIService - Tobias Erichsen - C:\Program Files (x86)\Tobias Erichsen\rtpMIDI\rtpMIDISvc.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype C2C Service - Skype Technologies S.A. - C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: TeamViewer 8 (TeamViewer8) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 13068 bytes

======Listing Processes======

\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
winlogon.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\nvvsvc.exe
C:\Windows\system32\svchost.exe -k RPCSS
"C:\Program Files\Microsoft Security Client\MsMpEng.exe"
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\NVIDIA Corporation\Display\NvXDSync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
C:\Windows\system32\WLANExt.exe 3320112
\??\C:\Windows\system32\conhost.exe "-3205978691278189976-1003985033164961568026131965054141814183654458-1993628010
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Windows\system32\Dwm.exe"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\Windows\SysWOW64\AsusService.exe
"C:\Program Files\Avatron\Air Display\AVTHelper.exe"
"C:\Program Files (x86)\Bonjour\mDNSResponder.exe"
"C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe"
"C:\Program Files (x86)\MyPublicWiFi\PublicWiFiService.exe"
"C:\Program Files (x86)\Tobias Erichsen\rtpMIDI\rtpMIDISvc.exe"
"C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe"
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe"
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
"C:\Program Files (x86)\Yontoo\Y2Desktop.Updater.exe" "C:\Users\U×ivatel\AppData\Roaming\Yontoo\YontooDesktop.exe"
WLIDSvcM.exe 2672
"C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe"
"C:\Program Files\Microsoft Security Client\NisSrv.exe"
C:\Windows\system32\svchost.exe -k bthsvcs
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\System32\rundll32.exe shell32.dll,SHCreateLocalServerRunDll {995C996E-D918-4a8c-A302-45719A6F4EA7} -Embedding
adb.exe fork-server server
\??\C:\Windows\system32\conhost.exe "1280229831004394279-298956625-1036869334569572709-68262342520968275011139481186
"C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
"C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide /waitservice
"C:\Program Files\Synaptics\SynTP\SynTPHelper.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Users\Uživatel\AppData\Roaming\Dropbox\bin\Dropbox.exe" /systemstartup
"C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe"
"C:\Program Files (x86)\ASUS\HotkeyService\HotKeyMon.exe"
"C:\Program Files (x86)\ASUS\HotkeyService\HotkeyService.exe"
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
C:\Windows\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe"
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
explorer.exe
"C:\Windows\system32\calc.exe"
"C:\Program Files\WinRAR\WinRAR.exe" "C:\Users\Uživatel\Downloads\scarlett-8i6-ipad-mappings.zip"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --restore-last-session
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="3276.0.1626941555\759201742" --supports-dual-gpus=false --gpu-vendor-id=0x8086 --gpu-device-id=0xa001 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=8.14.10.2230 --ignored=" --type=renderer " /prefetch:12
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=ForceCompositingMode/thread/InfiniteCache/No/OmniboxSearchSuggestTrialStarted2013Q1/9/OneClickSignIn/Standard/OverlappedReadImpact/OverlappedReadEnabled/Prerender/PrerenderEnabled/PrerenderLocalPredictor/Disabled/SideloadWipeout/Enabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_11/UMA-Uniformity-Trial-1-Percent/group_79/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-20-Percent/group_04/UMA-Uniformity-Trial-5-Percent/group_19/UMA-Uniformity-Trial-50-Percent/default/ --extension-process --renderer-print-preview --enable-threaded-compositing --channel="3276.1.1987913627\1807153060" /prefetch:3
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=ppapi --channel="3276.10.35918745\1097594960" --lang=cs --ignored=" --type=renderer " /prefetch:13
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=ForceCompositingMode/thread/InfiniteCache/No/NewTabButton/default/OmniboxHQPNewScoringMax1400/Standard/OmniboxHQPOnlyCountMatchesAtWordBoundaries/Standard/OmniboxHQPReplaceHUPRearrangeNumComponents/Standard/OmniboxHUPCreateShorterMatch/Standard/OmniboxHUPCullRedirects/Standard/OmniboxSearchSuggestTrialStarted2013Q1/9/OneClickSignIn/Standard/OverlappedReadImpact/OverlappedReadEnabled/Prerender/PrerenderEnabled/PrerenderLocalPredictor/Disabled/SideloadWipeout/Enabled/SpdyCwnd/cwnd10/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_11/UMA-Uniformity-Trial-1-Percent/group_79/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-20-Percent/group_04/UMA-Uniformity-Trial-5-Percent/group_19/UMA-Uniformity-Trial-50-Percent/default/ --renderer-print-preview --enable-threaded-compositing --channel="3276.11.1598204958\1280408598" /prefetch:3
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=ForceCompositingMode/thread/InfiniteCache/No/NewTabButton/default/OmniboxHQPNewScoringMax1400/Standard/OmniboxHQPOnlyCountMatchesAtWordBoundaries/Standard/OmniboxHQPReplaceHUPRearrangeNumComponents/Standard/OmniboxHUPCreateShorterMatch/Standard/OmniboxHUPCullRedirects/Standard/OmniboxSearchSuggestTrialStarted2013Q1/9/OneClickSignIn/Standard/OverlappedReadImpact/OverlappedReadEnabled/Prerender/PrerenderEnabled/PrerenderLocalPredictor/Disabled/SideloadWipeout/Enabled/SpdyCwnd/cwnd10/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_11/UMA-Uniformity-Trial-1-Percent/group_79/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-20-Percent/group_04/UMA-Uniformity-Trial-5-Percent/group_19/UMA-Uniformity-Trial-50-Percent/default/ --renderer-print-preview --enable-threaded-compositing --channel="3276.20.1501061185\1214811112" /prefetch:3
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=ForceCompositingMode/thread/InfiniteCache/No/NewTabButton/default/OmniboxHQPNewScoringMax1400/Standard/OmniboxHQPOnlyCountMatchesAtWordBoundaries/Standard/OmniboxHQPReplaceHUPRearrangeNumComponents/Standard/OmniboxHUPCreateShorterMatch/Standard/OmniboxHUPCullRedirects/Standard/OmniboxSearchSuggestTrialStarted2013Q1/9/OneClickSignIn/Standard/OverlappedReadImpact/OverlappedReadEnabled/Prerender/PrerenderEnabled/PrerenderLocalPredictor/Disabled/SideloadWipeout/Enabled/SpdyCwnd/cwnd10/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_11/UMA-Uniformity-Trial-1-Percent/group_79/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-20-Percent/group_04/UMA-Uniformity-Trial-5-Percent/group_19/UMA-Uniformity-Trial-50-Percent/default/ --renderer-print-preview --enable-threaded-compositing --channel="3276.26.1579381356\1472366223" /prefetch:3
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=ForceCompositingMode/thread/InfiniteCache/No/NewTabButton/default/OmniboxHQPNewScoringMax1400/Standard/OmniboxHQPOnlyCountMatchesAtWordBoundaries/Standard/OmniboxHQPReplaceHUPRearrangeNumComponents/Standard/OmniboxHUPCreateShorterMatch/Standard/OmniboxHUPCullRedirects/Standard/OmniboxSearchSuggestTrialStarted2013Q1/9/OneClickSignIn/Standard/OverlappedReadImpact/OverlappedReadEnabled/Prerender/PrerenderEnabled/PrerenderLocalPredictor/Disabled/SideloadWipeout/Enabled/SpdyCwnd/cwnd10/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_11/UMA-Uniformity-Trial-1-Percent/group_79/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-20-Percent/group_04/UMA-Uniformity-Trial-5-Percent/group_19/UMA-Uniformity-Trial-50-Percent/default/ --renderer-print-preview --enable-threaded-compositing --channel="3276.27.94052019\1414227962" /prefetch:3
"C:\Users\Uživatel\Downloads\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe

======Scheduled tasks folder======

C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~3\Office14\GROOVEEX.DLL [2012-08-16 6670496]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17 529664]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype add-on for Internet Explorer - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2013-01-31 6304888]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~3\Office14\URLREDIR.DLL [2010-12-21 689040]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-07-27 63944]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~2\MICROS~2\Office14\GROOVEEX.DLL [2012-08-16 4171424]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2013-03-10 461216]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocná služba pro přihlášení k účtu Microsoft - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17 441592]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Browser Helper - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2013-01-31 4528760]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~2\Office14\URLREDIR.DLL [2010-12-21 561552]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2013-03-10 170912]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IAAnotif"=C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\iaanotif.exe [2009-06-04 186904]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2011-03-30 11447912]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2011-03-30 1886504]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2011-03-30 165912]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2011-03-30 385560]
"Persistence"=C:\Windows\system32\igfxpers.exe [2011-03-30 364056]
"SynAsusAcpi"=C:\Program Files\Synaptics\SynTP\SynAsusAcpi.exe [2011-03-30 92456]
"MSC"=C:\Program Files\Microsoft Security Client\msseces.exe [2013-01-27 1281512]
"egui"=C:\Program Files\ESET\ESET Smart Security\egui.exe [2012-11-26 6325936]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2012-11-09 17878704]
"Air Display Support"=C:\Program Files\Avatron\Air Display\AirDisplay.exe [2012-09-24 2750912]
"cz.seznam.software.autoupdate"=C:\Users\Uživatel\AppData\Roaming\Seznam.cz\szninstall.exe [2012-09-13 1009288]
"cz.seznam.software.szndesktop"=C:\Users\Uživatel\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [2013-01-22 92152]
"Yontoo Desktop"=C:\Users\Uživatel\AppData\Roaming\Yontoo\YontooDesktop.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IJNetworkScanUtility]
C:\Program Files (x86)\Canon\Canon IJ Network Scan Utility\CNMNSUT.exe [2010-08-24 206240]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Uživatel^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^EvernoteClipper.lnk]
C:\PROGRA~2\Evernote\Evernote\EVERNO~2.EXE [2012-12-03 1044320]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"HotkeyMon"=AsusSender.exe C:\Program Files (x86)\ASUS\HotkeyService\HotKeyMon.exe []
"HotkeyService"=AsusSender.exe C:\Program Files (x86)\ASUS\HotkeyService\HotkeyService.exe []
"NUSB3MON"=C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [2010-04-27 113288]
"BCSSync"=C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [2010-03-13 91520]
"seznam-listicka-distribuce"=C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [2012-09-13 1009288]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2012-07-03 252848]
""= []
"Smart File Advisor"=C:\Program Files (x86)\Smart File Advisor\sfa.exe [2011-04-04 280824]

C:\Users\Uživatel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Dropbox.lnk - C:\Users\Uživatel\AppData\Roaming\Dropbox\bin\Dropbox.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\Windows\system32\nvinitx.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2011-03-30 261120]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~3\Office14\GROOVEEX.DLL [2012-08-16 6670496]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~2\MICROS~2\Office14\GROOVEEX.DLL [2012-08-16 4171424]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"midi1"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2013-03-11 17:07:47 ----D---- C:\Program Files (x86)\Gophoto.it
2013-03-11 17:07:42 ----D---- C:\Users\Uživatel\AppData\Roaming\Mozilla
2013-03-11 17:07:26 ----D---- C:\Program Files (x86)\TornTV.com
2013-03-11 16:46:42 ----D---- C:\Program Files (x86)\VSTPlugIns
2013-03-11 16:43:50 ----A---- C:\Windows\system32\ffusb2audio_coinst.dll
2013-03-11 16:43:49 ----D---- C:\Program Files\Focusrite
2013-03-11 16:43:28 ----D---- C:\Program Files (x86)\Focusrite
2013-03-11 15:04:44 ----A---- C:\AdwCleaner[R2].txt
2013-03-11 14:56:15 ----A---- C:\Windows\DeleteOnReboot.bat
2013-03-11 14:56:02 ----A---- C:\AdwCleaner[S1].txt
2013-03-10 21:43:14 ----A---- C:\AdwCleaner[R1].txt
2013-03-10 21:06:35 ----D---- C:\Program Files\trend micro
2013-03-10 21:06:34 ----D---- C:\rsit
2013-03-10 20:14:36 ----D---- C:\Program Files (x86)\Smart File Advisor
2013-03-10 20:14:21 ----D---- C:\Program Files (x86)\Smart Projects
2013-03-10 17:40:19 ----D---- C:\Program Files (x86)\Tobias Erichsen
2013-03-10 17:30:57 ----D---- C:\Program Files (x86)\humatic
2013-03-10 16:49:56 ----HDC---- C:\ProgramData\{A97DA822-7B29-4F18-A64A-BF94FFFE77FB}
2013-03-10 16:49:25 ----D---- C:\Program Files (x86)\Lexicon
2013-03-10 16:41:06 ----D---- C:\Lexicon
2013-03-10 12:21:51 ----D---- C:\Lexicon Alpha
2013-03-10 12:18:32 ----A---- C:\Windows\SYSWOW64\SYNSOAIR.DLL
2013-03-10 12:18:32 ----A---- C:\Windows\SYSWOW64\Rex Shared Library.dll
2013-03-10 12:18:31 ----A---- C:\Windows\SYSWOW64\ReWire.dll
2013-03-10 10:05:32 ----D---- C:\Users\Uživatel\AppData\Roaming\TouchDAW thru
2013-03-10 10:04:20 ----A---- C:\Windows\SYSWOW64\javaws.exe
2013-03-10 10:03:50 ----A---- C:\Windows\SYSWOW64\WindowsAccessBridge-32.dll
2013-03-10 10:03:50 ----A---- C:\Windows\SYSWOW64\javaw.exe
2013-03-10 10:03:50 ----A---- C:\Windows\SYSWOW64\java.exe
2013-03-10 10:03:11 ----D---- C:\Program Files (x86)\Java
2013-03-10 09:58:05 ----D---- C:\Program Files\humatic
2013-03-10 09:56:30 ----D---- C:\TOUCHDAW
2013-03-10 09:56:09 ----D---- C:\BlueCove_license
2013-03-09 22:24:58 ----D---- C:\PROJEKTY
2013-03-09 22:21:06 ----A---- C:\Windows\SYSWOW64\SYNSOEMU.DLL
2013-03-09 22:20:59 ----A---- C:\HALionOne.dll
2013-03-09 22:12:48 ----D---- C:\Program Files (x86)\Steinberg
2013-03-09 22:01:03 ----D---- C:\Cubase 5 Full
2013-03-09 21:31:39 ----D---- C:\Users\Uživatel\AppData\Roaming\VST3 Presets
2013-03-09 21:31:37 ----D---- C:\ProgramData\Steinberg
2013-03-09 21:25:17 ----D---- C:\Users\Uživatel\AppData\Roaming\Steinberg
2013-03-09 21:24:06 ----RD---- C:\Steinberg Cubase 5.1.2 Final 32 & 64bit by Antony_GR
2013-03-09 18:55:49 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2013-03-09 18:55:30 ----D---- C:\Windows\system32\Macromed
2013-03-09 10:45:16 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2013-03-09 10:44:46 ----D---- C:\Windows\SYSWOW64\searchplugins
2013-03-09 10:44:46 ----D---- C:\Windows\SYSWOW64\Extensions
2013-03-09 10:44:31 ----D---- C:\Program Files (x86)\Yontoo
2013-03-09 10:43:33 ----D---- C:\Users\Uživatel\AppData\Roaming\GoforFiles
2013-03-09 10:43:33 ----D---- C:\Program Files (x86)\GoforFiles
2013-03-08 21:48:03 ----HDC---- C:\ProgramData\{E51ADF6A-7916-46B4-96C1-40D98D096077}
2013-03-08 21:47:54 ----D---- C:\Program Files\Lexicon
2013-03-08 20:18:04 ----A---- C:\reaper432-install.exe
2013-03-08 19:54:08 ----D---- C:\Users\Uživatel\AppData\Roaming\TeamViewer
2013-03-08 19:52:09 ----D---- C:\Program Files (x86)\TeamViewer
2013-03-06 15:53:35 ----D---- C:\Program Files (x86)\Seznam.cz
2013-03-06 15:52:54 ----D---- C:\Users\Uživatel\AppData\Roaming\Seznam.cz
2013-03-06 15:52:35 ----D---- C:\Users\Uživatel\AppData\Roaming\GHISLER
2013-03-06 15:52:35 ----D---- C:\totalcmd
2013-02-28 18:03:18 ----D---- C:\Users\Uživatel\AppData\Roaming\.BitTornado
2013-02-28 18:02:13 ----D---- C:\Program Files (x86)\BitTornado
2013-02-27 21:15:36 ----D---- C:\Users\Uživatel\AppData\Roaming\Dropbox
2013-02-27 19:48:36 ----D---- C:\Android
2013-02-22 18:12:03 ----D---- C:\ProgramData\Google
2013-02-22 18:12:02 ----D---- C:\Users\Uživatel\AppData\Roaming\Google
2013-02-22 16:59:57 ----D---- C:\Program Files (x86)\ImageMagick-6.8.0-Q8
2013-02-20 17:41:34 ----D---- C:\circuits
2013-02-19 18:25:51 ----D---- C:\Windows\pss
2013-02-18 19:40:32 ----D---- C:\Users\Uživatel\AppData\Roaming\Fritzing
2013-02-18 19:37:54 ----D---- C:\Fritzing
2013-02-17 12:52:59 ----D---- C:\Windows\cs
2013-02-17 12:49:20 ----A---- C:\Windows\system32\drivers\fssfltr.sys
2013-02-17 12:49:19 ----DC---- C:\Windows\system32\DRVSTORE
2013-02-17 12:49:09 ----D---- C:\Program Files\Windows Live
2013-02-17 12:48:08 ----D---- C:\Program Files (x86)\Windows Live
2013-02-17 12:46:57 ----A---- C:\Windows\SYSWOW64\XAudio2_7.dll
2013-02-17 12:46:57 ----A---- C:\Windows\SYSWOW64\XAPOFX1_5.dll
2013-02-17 12:46:57 ----A---- C:\Windows\system32\XAudio2_7.dll
2013-02-17 12:46:57 ----A---- C:\Windows\system32\XAPOFX1_5.dll
2013-02-17 12:46:54 ----A---- C:\Windows\SYSWOW64\D3DCompiler_43.dll
2013-02-17 12:46:54 ----A---- C:\Windows\system32\D3DCompiler_43.dll
2013-02-17 12:46:52 ----A---- C:\Windows\SYSWOW64\d3dx11_43.dll
2013-02-17 12:46:52 ----A---- C:\Windows\system32\d3dx11_43.dll
2013-02-17 12:45:49 ----A---- C:\Windows\SYSWOW64\d3dx10_42.dll
2013-02-17 12:45:49 ----A---- C:\Windows\system32\d3dx10_42.dll
2013-02-17 12:44:20 ----A---- C:\Windows\SYSWOW64\d3dx9_32.dll
2013-02-17 12:44:20 ----A---- C:\Windows\system32\d3dx9_32.dll
2013-02-17 12:41:34 ----D---- C:\Program Files (x86)\Microsoft SkyDrive
2013-02-17 12:40:20 ----D---- C:\ProgramData\Microsoft SkyDrive
2013-02-17 12:35:18 ----A---- C:\Windows\SYSWOW64\picn20.dll
2013-02-17 12:35:17 ----A---- C:\Windows\SYSWOW64\imagx5.dll
2013-02-17 12:35:17 ----A---- C:\Windows\SYSWOW64\imagr5.dll
2013-02-17 12:35:16 ----A---- C:\Windows\SYSWOW64\ImagXpr5.dll
2013-02-17 12:35:16 ----A---- C:\Windows\SYSWOW64\CapPRO.dll
2013-02-17 12:34:42 ----D---- C:\Program Files (x86)\CoffeeCup Software
2013-02-16 19:21:33 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2013-02-16 19:21:33 ----A---- C:\Windows\system32\mshtmled.dll
2013-02-16 19:21:31 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2013-02-16 19:21:28 ----A---- C:\Windows\SYSWOW64\ieui.dll
2013-02-16 19:21:27 ----A---- C:\Windows\system32\ieui.dll
2013-02-16 19:21:26 ----A---- C:\Windows\system32\ieUnatt.exe
2013-02-16 19:21:24 ----A---- C:\Windows\SYSWOW64\url.dll
2013-02-16 19:21:24 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2013-02-16 19:21:23 ----A---- C:\Windows\system32\url.dll
2013-02-16 19:21:21 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2013-02-16 19:21:21 ----A---- C:\Windows\system32\urlmon.dll
2013-02-16 19:21:19 ----A---- C:\Windows\system32\msfeeds.dll
2013-02-16 19:21:19 ----A---- C:\Windows\system32\jscript9.dll
2013-02-16 19:21:18 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2013-02-16 19:21:17 ----A---- C:\Windows\SYSWOW64\wininet.dll
2013-02-16 19:21:15 ----A---- C:\Windows\system32\wininet.dll
2013-02-16 19:21:14 ----A---- C:\Windows\system32\jsproxy.dll
2013-02-16 19:21:13 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2013-02-16 19:21:13 ----A---- C:\Windows\SYSWOW64\jscript.dll
2013-02-16 19:21:12 ----A---- C:\Windows\system32\vbscript.dll
2013-02-16 19:21:12 ----A---- C:\Windows\system32\jscript.dll
2013-02-16 19:21:11 ----A---- C:\Windows\system32\iertutil.dll
2013-02-16 19:21:10 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2013-02-16 19:21:09 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2013-02-16 19:21:05 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2013-02-16 19:20:58 ----A---- C:\Windows\system32\mshtml.dll
2013-02-16 19:20:56 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2013-02-16 19:20:56 ----A---- C:\Windows\system32\ieframe.dll
2013-02-14 18:20:39 ----A---- C:\Windows\system32\winsrv.dll
2013-02-14 18:20:37 ----A---- C:\Windows\SYSWOW64\wow32.dll
2013-02-14 18:20:37 ----A---- C:\Windows\SYSWOW64\setup16.exe
2013-02-14 18:20:37 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2013-02-14 18:20:37 ----A---- C:\Windows\SYSWOW64\instnm.exe
2013-02-14 18:20:33 ----A---- C:\Windows\SYSWOW64\user.exe
2013-02-14 18:17:19 ----A---- C:\Windows\system32\ntoskrnl.exe
2013-02-14 18:17:17 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2013-02-14 18:17:16 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2013-02-14 18:00:44 ----A---- C:\Windows\system32\win32k.sys
2013-02-14 17:24:52 ----A---- C:\Windows\system32\drivers\tcpip.sys
2013-02-14 17:24:50 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2013-02-13 20:50:12 ----D---- C:\Users\Uživatel\AppData\Roaming\Dev-Cpp
2013-02-13 20:41:51 ----D---- C:\Users\Uživatel\AppData\Roaming\Wireshark
2013-02-13 20:26:40 ----D---- C:\Program Files (x86)\WinPcap
2013-02-13 20:26:09 ----D---- C:\Program Files (x86)\Wireshark

======List of files/folders modified in the last 1 month======

2013-03-11 17:30:30 ----D---- C:\Windows\Temp
2013-03-11 17:07:47 ----RD---- C:\Program Files (x86)
2013-03-11 16:57:55 ----D---- C:\Windows\tracing
2013-03-11 16:50:17 ----D---- C:\Windows\inf
2013-03-11 16:50:04 ----D---- C:\Windows\system32\catroot
2013-03-11 16:50:03 ----D---- C:\Windows\system32\DriverStore
2013-03-11 16:49:53 ----SHD---- C:\System Volume Information
2013-03-11 16:49:21 ----D---- C:\Windows\System32
2013-03-11 16:46:44 ----D---- C:\Program Files (x86)\Common Files
2013-03-11 16:45:08 ----D---- C:\Program Files\DIFX
2013-03-11 16:43:53 ----D---- C:\Windows
2013-03-11 16:43:49 ----RD---- C:\Program Files
2013-03-11 16:06:19 ----D---- C:\Windows\system32\config
2013-03-11 15:01:24 ----D---- C:\Users\Uživatel\AppData\Roaming\Skype
2013-03-11 14:59:05 ----D---- C:\ProgramData\NVIDIA
2013-03-11 14:57:19 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-03-11 14:56:16 ----SHD---- C:\Windows\Installer
2013-03-11 14:56:12 ----HD---- C:\ProgramData
2013-03-10 21:13:31 ----RD---- C:\Users
2013-03-10 17:41:00 ----D---- C:\Windows\SysWOW64
2013-03-10 17:40:59 ----D---- C:\Windows\system32\drivers
2013-03-10 14:16:22 ----D---- C:\Windows\Prefetch
2013-03-10 10:15:21 ----D---- C:\Windows\system32\Tasks
2013-03-10 10:03:17 ----A---- C:\Windows\SYSWOW64\npdeployJava1.dll
2013-03-10 10:03:17 ----A---- C:\Windows\SYSWOW64\deployJava1.dll
2013-03-10 09:57:54 ----D---- C:\Windows\system32\catroot2
2013-03-09 22:49:47 ----D---- C:\Windows\Tasks
2013-03-09 22:49:13 ----D---- C:\Program Files (x86)\Cain
2013-03-09 22:14:53 ----SD---- C:\Users\Uživatel\AppData\Roaming\Microsoft
2013-03-09 10:46:36 ----SD---- C:\ProgramData\Microsoft
2013-03-08 21:37:25 ----D---- C:\Windows\Minidump
2013-03-08 19:52:38 ----RSD---- C:\Windows\Fonts
2013-02-22 17:04:57 ----D---- C:\Program Files (x86)\EAGLE-6.4.0
2013-02-22 16:53:21 ----D---- C:\Windows\winsxs
2013-02-22 16:52:02 ----D---- C:\Program Files (x86)\Google
2013-02-18 22:09:26 ----D---- C:\Program Files\Microsoft Security Client
2013-02-18 22:09:20 ----D---- C:\Program Files (x86)\Microsoft Security Client
2013-02-18 21:24:27 ----D---- C:\Windows\Logs
2013-02-18 21:24:25 ----D---- C:\Windows\debug
2013-02-17 18:30:35 ----D---- C:\Windows\Microsoft.NET
2013-02-17 12:57:32 ----RSD---- C:\Windows\assembly
2013-02-17 12:51:15 ----D---- C:\Program Files (x86)\Microsoft SQL Server Compact Edition
2013-02-17 12:49:03 ----D---- C:\Program Files\Common Files\Microsoft Shared
2013-02-17 09:23:50 ----D---- C:\Windows\SYSWOW64\migration
2013-02-17 09:23:50 ----D---- C:\Program Files (x86)\Internet Explorer
2013-02-17 09:23:49 ----D---- C:\Windows\system32\migration
2013-02-17 09:23:47 ----D---- C:\Program Files\Internet Explorer
2013-02-16 19:46:28 ----D---- C:\ProgramData\Microsoft Help
2013-02-16 19:40:15 ----A---- C:\Windows\system32\MRT.exe
2013-02-16 19:12:10 ----D---- C:\Windows\AppPatch
2013-02-14 18:40:42 ----D---- C:\Windows\rescache
2013-02-13 20:38:32 ----D---- C:\Windows\system32\NDF
2013-02-13 20:21:34 ----D---- C:\ProgramData\Skype

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 epfwwfp;epfwwfp; C:\Windows\system32\DRIVERS\epfwwfp.sys [2012-11-28 57904]
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2009-06-04 408600]
R0 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2013-01-20 230320]
R0 nvpciflt;nvpciflt; C:\Windows\system32\DRIVERS\nvpciflt.sys [2011-09-14 25960]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R1 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys [2012-10-08 211344]
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2012-10-08 149592]
R1 EpfwLWF;Epfw NDIS LightWeight Filter; C:\Windows\system32\DRIVERS\EpfwLWF.sys [2012-10-08 59440]
R1 ndisrd;WinpkFilter LightWeight Filter; C:\Windows\system32\DRIVERS\ndisrd.sys [2011-02-22 30816]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 epfw;epfw; C:\Windows\system32\DRIVERS\epfw.sys [2012-10-08 189208]
R2 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2013-01-20 130008]
R2 NPF;NetGroup Packet Filter Driver; C:\Windows\system32\drivers\npf.sys [2010-06-25 35344]
R3 AirDisplay;Air Display Support; C:\Windows\system32\DRIVERS\AVVideoCard.sys [2012-09-24 15808]
R3 AirDisplayMirror;Air Display Mirror Support; C:\Windows\system32\DRIVERS\AVVideoCardMirror.sys [2012-09-24 15808]
R3 BCM43XX;Ovladač síťového adaptéru Broadcom 802.11; C:\Windows\system32\DRIVERS\bcmwl664.sys [2010-05-08 3063360]
R3 BthEnum;Služba Bluetooth Enumerator; C:\Windows\system32\DRIVERS\BthEnum.sys [2009-07-14 41984]
R3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
R3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
R3 iDispService;iDispService; C:\Windows\system32\DRIVERS\idisplayminiport.sys [2012-08-31 14248]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2011-03-30 6180480]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2011-03-30 2472680]
R3 kbfiltr;Keyboard Filter; C:\Windows\system32\DRIVERS\kbfiltr.sys [2009-07-21 15416]
R3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller; C:\Windows\system32\DRIVERS\L1C62x64.sys [2011-03-30 76912]
R3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2011-03-30 299568]
R3 teVirtualMIDI64;teVirtualMIDI - Virtual MIDI Driver x64; C:\Windows\system32\DRIVERS\teVirtualMIDI64.sys [2012-08-15 30208]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
R3 WinDriver6;WinDriver6; C:\Windows\system32\drivers\windrvr6.sys [2012-02-27 260608]
S1 ISODisk;ISODisk; C:\Windows\system32\drivers\ISODisk.sys []
S2 TVicPort;TVicPort; C:\Windows\system32\drivers\TVicPort.sys []
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudbus.sys [2012-09-19 102368]
S3 DxkgFilter;Filtering Dxkg; \??\C:\Program Files (x86)\iDisplay\idisplay.sys [2012-08-31 55720]
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2012-09-12 57856]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 ser2at;ATEN USB to Serial port driver; C:\Windows\system32\DRIVERS\ser2at64.sys [2009-10-15 96256]
S3 ssudmdm;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudmdm.sys [2012-09-19 203104]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-21 59392]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2010-11-21 31232]
S3 vmci;VMware VMCI Bus Driver; C:\Windows\system32\DRIVERS\vmci.sys []
S3 VMnetAdapter;VMware Virtual Ethernet Adapter Driver; C:\Windows\system32\DRIVERS\vmnetadapter.sys []
S3 WinUSB;SAMSUNG Android USB Driver; C:\Windows\system32\DRIVERS\WinUSB.sys [2010-11-21 41984]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-07-27 63960]
R2 AsusService;Asus Launcher Service; C:\Windows\SysWOW64\AsusService.exe [2010-12-07 224680]
R2 AVTHelper;AVTHelper; C:\Program Files\Avatron\Air Display\AVTHelper.exe [2012-09-24 216000]
R2 Bonjour Service;Bonjour Service; C:\Program Files (x86)\Bonjour\mDNSResponder.exe [2010-10-07 345376]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe [2012-11-26 1329304]
R2 IAANTMON;Intel(R) Matrix Storage Event Monitor; C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe [2009-06-04 354840]
R2 MsMpSvc;Microsoft Antimalware Service; C:\Program Files\Microsoft Security Client\MsMpEng.exe [2013-01-27 22056]
R2 MyPublicWiFiService;MyPublicWiFi Service; C:\Program Files (x86)\MyPublicWiFi\PublicWiFiService.exe [2011-12-02 597504]
R2 NVSvc;NVIDIA Driver Helper Service; C:\Windows\system32\nvvsvc.exe [2011-03-06 993896]
R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe [2011-09-14 2009704]
R2 rtpMIDIService;rtpMIDIService; C:\Program Files (x86)\Tobias Erichsen\rtpMIDI\rtpMIDISvc.exe [2012-08-24 1142272]
R2 Skype C2C Service;Skype C2C Service; C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe [2013-01-31 3289208]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2011-03-06 378472]
R2 TeamViewer8;TeamViewer 8; C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe [2013-02-26 3560800]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2012-07-17 2292480]
R2 Yontoo Desktop Updater;Yontoo Desktop Updater; C:\Program Files (x86)\Yontoo\Y2Desktop.Updater.exe [2013-03-06 23552]
R3 NisSrv;@C:\Program Files\Microsoft Security Client\MpAsDesc.dll,-243; C:\Program Files\Microsoft Security Client\NisSrv.exe [2013-01-27 379360]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-12-07 116648]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2012-11-09 160944]
S3 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2010-03-18 44376]
S3 fsssvc;Windows Live Family Safety Service; C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2012-09-12 1512448]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-12-07 116648]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files (x86)\Microsoft Office\Office14\GROOVE.EXE [2012-09-20 30785672]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S3 rpcapd;Remote Packet Capture Protocol v.0 (experimental); C:\Program Files (x86)\WinPcap\rpcapd.exe [2010-06-25 117264]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2012-12-05 1255736]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119524
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu logu. Pomalý počítač.

#10 Příspěvek od Rudy »

Stáhněte OTM: http://oldtimer.geekstogo.com/OTM.exe a uložte na plochu. Spusťte a do levého okna zkopírujte:
:files
C:\Program Files (x86)\Skype\Toolbars
C:\Users\Uživatel\AppData\Roaming\Yontoo
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\DeleteOnReboot.bat

:reg
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Yontoo Desktop"=-
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"SunJavaUpdateSched"=-

:services
Yontoo Desktop Updater

:commands
[Purity]
[Emptytemp]
[Emptyflash]
a klikněte na >MoveIt!<. Po skenu restartujte PC a dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

lukykostka
Návštěvník
Návštěvník
Příspěvky: 13
Registrován: 10 bře 2013 21:04

Re: Prosím o kontrolu logu. Pomalý počítač.

#11 Příspěvek od lukykostka »

Logfile of random's system information tool 1.09 (written by random/random)
Run by Uživatel at 2013-03-11 18:25:57
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 62 GB (61%) free of 102 GB
Total RAM: 2038 MB (33% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 18:26:11, on 11.3.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16464)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\iDisplay\iDisplay.exe
C:\Program Files (x86)\GoforFiles\GFFUpdater.exe
C:\Program Files (x86)\iDisplay\adb.exe
C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Users\Uživatel\AppData\Roaming\Seznam.cz\szninstall.exe
C:\Users\Uživatel\AppData\Roaming\Dropbox\bin\Dropbox.exe
C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
C:\Users\Uživatel\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
C:\Program Files (x86)\Internet Explorer\IELowutil.exe
C:\Program Files\trend micro\Uživatel.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.delta-search.com/?affID=1192 ... 5d6089ef30
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~2\Office14\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: Pomocná služba pro přihlášení k účtu Microsoft - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~2\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O4 - HKLM\..\Run: [HotkeyMon] AsusSender.exe C:\Program Files (x86)\ASUS\HotkeyService\HotKeyMon.exe
O4 - HKLM\..\Run: [HotkeyService] AsusSender.exe C:\Program Files (x86)\ASUS\HotkeyService\HotkeyService.exe
O4 - HKLM\..\Run: [NUSB3MON] "C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe"
O4 - HKLM\..\Run: [BCSSync] "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKLM\..\Run: [Smart File Advisor] "C:\Program Files (x86)\Smart File Advisor\sfa.exe" /checkassoc
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [Air Display Support] "C:\Program Files\Avatron\Air Display\AirDisplay.exe"
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "C:\Users\Uživatel\AppData\Roaming\Seznam.cz\szninstall.exe" -c
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "C:\Users\Uživatel\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Startup: Dropbox.lnk = ?
O8 - Extra context menu item: Add to Evernote 4.0 - res://C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll/204
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~2\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~2\MICROS~2\Office14\ONBttnIE.dll/105
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (file missing)
O9 - Extra button: @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - res://C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll/204 (file missing)
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - res://C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll/204 (file missing)
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (file missing)
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O20 - AppInit_DLLs: C:\Windows\SysWOW64\nvinit.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Asus Launcher Service (AsusService) - Unknown owner - C:\Windows\SysWOW64\AsusService.exe
O23 - Service: AVTHelper - Avatron Software - C:\Program Files\Avatron\Air Display\AVTHelper.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files (x86)\Bonjour\mDNSResponder.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: MyPublicWiFi Service (MyPublicWiFiService) - Unknown owner - C:\Program Files (x86)\MyPublicWiFi\PublicWiFiService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - CACE Technologies, Inc. - C:\Program Files (x86)\WinPcap\rpcapd.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: rtpMIDIService - Tobias Erichsen - C:\Program Files (x86)\Tobias Erichsen\rtpMIDI\rtpMIDISvc.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype C2C Service - Skype Technologies S.A. - C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: TeamViewer 8 (TeamViewer8) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 12167 bytes

======Listing Processes======

\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
winlogon.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\nvvsvc.exe
C:\Windows\system32\svchost.exe -k RPCSS
"C:\Program Files\Microsoft Security Client\MsMpEng.exe"
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\NVIDIA Corporation\Display\NvXDSync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
C:\Windows\system32\WLANExt.exe 39605792
\??\C:\Windows\system32\conhost.exe "-402357912-1210825812-78567718-1507984398194122112210978281917335621861367746485
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\Windows\SysWOW64\AsusService.exe
"C:\Program Files\Avatron\Air Display\AVTHelper.exe"
"C:\Program Files (x86)\Bonjour\mDNSResponder.exe"
"C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe"
taskeng.exe {8AA50E7A-52AB-4970-8919-5804E02454AC}
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
taskeng.exe {A249D6B5-60F6-4D4C-84A5-B169D4E620A2}
"C:\Program Files (x86)\iDisplay\iDisplay.exe" -startup
"C:\Program Files (x86)\GoforFiles\GFFUpdater.exe"
"C:\Program Files (x86)\MyPublicWiFi\PublicWiFiService.exe"
"C:\Program Files (x86)\Tobias Erichsen\rtpMIDI\rtpMIDISvc.exe"
"C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe"
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe"
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
"C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe"
WLIDSvcM.exe 2632
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files\Microsoft Security Client\NisSrv.exe"
C:\Windows\system32\svchost.exe -k bthsvcs
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
adb.exe fork-server server
\??\C:\Windows\system32\conhost.exe "-201148746-10375546246338696961491555713834983853761403361515604069-1285371931
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
C:\Windows\system32\igfxsrvc.exe -Embedding
"C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe1_ Global\UsGthrCtrlFltPipeMssGthrPipe1 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide /waitservice
"C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
"C:\Windows\system32\SearchFilterHost.exe" 0 516 520 528 65536 524
"C:\Program Files\Synaptics\SynTP\SynTPHelper.exe"
"C:\Program Files\Avatron\Air Display\AirDisplay.exe"
"C:\Users\Uživatel\AppData\Roaming\Seznam.cz\szninstall.exe" -c
"C:\Users\Uživatel\AppData\Roaming\Dropbox\bin\Dropbox.exe" /systemstartup
"C:\Program Files (x86)\ASUS\HotkeyService\HotKeyMon.exe"
"C:\Program Files (x86)\ASUS\HotkeyService\HotkeyService.exe"
"C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe"
C:\Windows\system32\wbem\wmiprvse.exe
szndesktop.exe default start
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files (x86)\Internet Explorer\IELowutil.exe" -embedding
C:\Windows\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
"C:\Users\Uživatel\Downloads\RSITx64.exe"
C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~3\Office14\GROOVEEX.DLL [2012-08-16 6670496]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17 529664]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype add-on for Internet Explorer - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll []

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~3\Office14\URLREDIR.DLL [2010-12-21 689040]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-07-27 63944]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~2\MICROS~2\Office14\GROOVEEX.DLL [2012-08-16 4171424]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2013-03-10 461216]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocná služba pro přihlášení k účtu Microsoft - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17 441592]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~2\Office14\URLREDIR.DLL [2010-12-21 561552]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2013-03-10 170912]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IAAnotif"=C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\iaanotif.exe [2009-06-04 186904]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2011-03-30 11447912]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2011-03-30 1886504]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2011-03-30 165912]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2011-03-30 385560]
"Persistence"=C:\Windows\system32\igfxpers.exe [2011-03-30 364056]
"SynAsusAcpi"=C:\Program Files\Synaptics\SynTP\SynAsusAcpi.exe [2011-03-30 92456]
"MSC"=C:\Program Files\Microsoft Security Client\msseces.exe [2013-01-27 1281512]
"egui"=C:\Program Files\ESET\ESET Smart Security\egui.exe [2012-11-26 6325936]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2012-11-09 17878704]
"Air Display Support"=C:\Program Files\Avatron\Air Display\AirDisplay.exe [2012-09-24 2750912]
"cz.seznam.software.autoupdate"=C:\Users\Uživatel\AppData\Roaming\Seznam.cz\szninstall.exe [2012-09-13 1009288]
"cz.seznam.software.szndesktop"=C:\Users\Uživatel\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [2013-01-22 92152]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IJNetworkScanUtility]
C:\Program Files (x86)\Canon\Canon IJ Network Scan Utility\CNMNSUT.exe [2010-08-24 206240]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Uživatel^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^EvernoteClipper.lnk]
C:\PROGRA~2\Evernote\Evernote\EVERNO~2.EXE [2012-12-03 1044320]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"HotkeyMon"=AsusSender.exe C:\Program Files (x86)\ASUS\HotkeyService\HotKeyMon.exe []
"HotkeyService"=AsusSender.exe C:\Program Files (x86)\ASUS\HotkeyService\HotkeyService.exe []
"NUSB3MON"=C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [2010-04-27 113288]
"BCSSync"=C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [2010-03-13 91520]
"seznam-listicka-distribuce"=C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [2012-09-13 1009288]
""= []
"Smart File Advisor"=C:\Program Files (x86)\Smart File Advisor\sfa.exe [2011-04-04 280824]

C:\Users\Uživatel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Dropbox.lnk - C:\Users\Uživatel\AppData\Roaming\Dropbox\bin\Dropbox.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\Windows\system32\nvinitx.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2011-03-30 261120]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~3\Office14\GROOVEEX.DLL [2012-08-16 6670496]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~2\MICROS~2\Office14\GROOVEEX.DLL [2012-08-16 4171424]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"midi1"=wdmaud.drv
"midi2"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2013-03-11 18:19:17 ----D---- C:\_OTM
2013-03-11 17:55:10 ----D---- C:\Program Files\Yamaha
2013-03-11 17:07:47 ----D---- C:\Program Files (x86)\Gophoto.it
2013-03-11 17:07:42 ----D---- C:\Users\Uživatel\AppData\Roaming\Mozilla
2013-03-11 17:07:26 ----D---- C:\Program Files (x86)\TornTV.com
2013-03-11 16:46:42 ----D---- C:\Program Files (x86)\VSTPlugIns
2013-03-11 16:43:50 ----A---- C:\Windows\system32\ffusb2audio_coinst.dll
2013-03-11 16:43:49 ----D---- C:\Program Files\Focusrite
2013-03-11 16:43:28 ----D---- C:\Program Files (x86)\Focusrite
2013-03-11 15:04:44 ----A---- C:\AdwCleaner[R2].txt
2013-03-11 14:56:02 ----A---- C:\AdwCleaner[S1].txt
2013-03-10 21:43:14 ----A---- C:\AdwCleaner[R1].txt
2013-03-10 21:06:35 ----D---- C:\Program Files\trend micro
2013-03-10 21:06:34 ----D---- C:\rsit
2013-03-10 20:14:36 ----D---- C:\Program Files (x86)\Smart File Advisor
2013-03-10 20:14:21 ----D---- C:\Program Files (x86)\Smart Projects
2013-03-10 17:40:19 ----D---- C:\Program Files (x86)\Tobias Erichsen
2013-03-10 17:30:57 ----D---- C:\Program Files (x86)\humatic
2013-03-10 16:49:56 ----HDC---- C:\ProgramData\{A97DA822-7B29-4F18-A64A-BF94FFFE77FB}
2013-03-10 16:49:25 ----D---- C:\Program Files (x86)\Lexicon
2013-03-10 16:41:06 ----D---- C:\Lexicon
2013-03-10 12:21:51 ----D---- C:\Lexicon Alpha
2013-03-10 12:18:32 ----A---- C:\Windows\SYSWOW64\SYNSOAIR.DLL
2013-03-10 12:18:32 ----A---- C:\Windows\SYSWOW64\Rex Shared Library.dll
2013-03-10 12:18:31 ----A---- C:\Windows\SYSWOW64\ReWire.dll
2013-03-10 10:05:32 ----D---- C:\Users\Uživatel\AppData\Roaming\TouchDAW thru
2013-03-10 10:04:20 ----A---- C:\Windows\SYSWOW64\javaws.exe
2013-03-10 10:03:50 ----A---- C:\Windows\SYSWOW64\WindowsAccessBridge-32.dll
2013-03-10 10:03:50 ----A---- C:\Windows\SYSWOW64\javaw.exe
2013-03-10 10:03:50 ----A---- C:\Windows\SYSWOW64\java.exe
2013-03-10 10:03:11 ----D---- C:\Program Files (x86)\Java
2013-03-10 09:58:05 ----D---- C:\Program Files\humatic
2013-03-10 09:56:30 ----D---- C:\TOUCHDAW
2013-03-10 09:56:09 ----D---- C:\BlueCove_license
2013-03-09 22:24:58 ----D---- C:\PROJEKTY
2013-03-09 22:21:06 ----A---- C:\Windows\SYSWOW64\SYNSOEMU.DLL
2013-03-09 22:20:59 ----A---- C:\HALionOne.dll
2013-03-09 22:12:48 ----D---- C:\Program Files (x86)\Steinberg
2013-03-09 22:01:03 ----D---- C:\Cubase 5 Full
2013-03-09 21:31:39 ----D---- C:\Users\Uživatel\AppData\Roaming\VST3 Presets
2013-03-09 21:31:37 ----D---- C:\ProgramData\Steinberg
2013-03-09 21:25:17 ----D---- C:\Users\Uživatel\AppData\Roaming\Steinberg
2013-03-09 21:24:06 ----RD---- C:\Steinberg Cubase 5.1.2 Final 32 & 64bit by Antony_GR
2013-03-09 18:55:49 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2013-03-09 18:55:30 ----D---- C:\Windows\system32\Macromed
2013-03-09 10:45:16 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2013-03-09 10:44:46 ----D---- C:\Windows\SYSWOW64\searchplugins
2013-03-09 10:44:46 ----D---- C:\Windows\SYSWOW64\Extensions
2013-03-09 10:44:31 ----D---- C:\Program Files (x86)\Yontoo
2013-03-09 10:43:33 ----D---- C:\Users\Uživatel\AppData\Roaming\GoforFiles
2013-03-09 10:43:33 ----D---- C:\Program Files (x86)\GoforFiles
2013-03-08 21:48:03 ----HDC---- C:\ProgramData\{E51ADF6A-7916-46B4-96C1-40D98D096077}
2013-03-08 21:47:54 ----D---- C:\Program Files\Lexicon
2013-03-08 20:18:04 ----A---- C:\reaper432-install.exe
2013-03-08 19:54:08 ----D---- C:\Users\Uživatel\AppData\Roaming\TeamViewer
2013-03-08 19:52:09 ----D---- C:\Program Files (x86)\TeamViewer
2013-03-06 15:53:35 ----D---- C:\Program Files (x86)\Seznam.cz
2013-03-06 15:52:54 ----D---- C:\Users\Uživatel\AppData\Roaming\Seznam.cz
2013-03-06 15:52:35 ----D---- C:\Users\Uživatel\AppData\Roaming\GHISLER
2013-03-06 15:52:35 ----D---- C:\totalcmd
2013-02-28 18:03:18 ----D---- C:\Users\Uživatel\AppData\Roaming\.BitTornado
2013-02-28 18:02:13 ----D---- C:\Program Files (x86)\BitTornado
2013-02-27 21:15:36 ----D---- C:\Users\Uživatel\AppData\Roaming\Dropbox
2013-02-27 19:48:36 ----D---- C:\Android
2013-02-22 18:12:03 ----D---- C:\ProgramData\Google
2013-02-22 18:12:02 ----D---- C:\Users\Uživatel\AppData\Roaming\Google
2013-02-22 16:59:57 ----D---- C:\Program Files (x86)\ImageMagick-6.8.0-Q8
2013-02-20 17:41:34 ----D---- C:\circuits
2013-02-19 18:25:51 ----D---- C:\Windows\pss
2013-02-18 19:40:32 ----D---- C:\Users\Uživatel\AppData\Roaming\Fritzing
2013-02-18 19:37:54 ----D---- C:\Fritzing
2013-02-17 12:52:59 ----D---- C:\Windows\cs
2013-02-17 12:49:20 ----A---- C:\Windows\system32\drivers\fssfltr.sys
2013-02-17 12:49:19 ----DC---- C:\Windows\system32\DRVSTORE
2013-02-17 12:49:09 ----D---- C:\Program Files\Windows Live
2013-02-17 12:48:08 ----D---- C:\Program Files (x86)\Windows Live
2013-02-17 12:46:57 ----A---- C:\Windows\SYSWOW64\XAudio2_7.dll
2013-02-17 12:46:57 ----A---- C:\Windows\SYSWOW64\XAPOFX1_5.dll
2013-02-17 12:46:57 ----A---- C:\Windows\system32\XAudio2_7.dll
2013-02-17 12:46:57 ----A---- C:\Windows\system32\XAPOFX1_5.dll
2013-02-17 12:46:54 ----A---- C:\Windows\SYSWOW64\D3DCompiler_43.dll
2013-02-17 12:46:54 ----A---- C:\Windows\system32\D3DCompiler_43.dll
2013-02-17 12:46:52 ----A---- C:\Windows\SYSWOW64\d3dx11_43.dll
2013-02-17 12:46:52 ----A---- C:\Windows\system32\d3dx11_43.dll
2013-02-17 12:45:49 ----A---- C:\Windows\SYSWOW64\d3dx10_42.dll
2013-02-17 12:45:49 ----A---- C:\Windows\system32\d3dx10_42.dll
2013-02-17 12:44:20 ----A---- C:\Windows\SYSWOW64\d3dx9_32.dll
2013-02-17 12:44:20 ----A---- C:\Windows\system32\d3dx9_32.dll
2013-02-17 12:41:34 ----D---- C:\Program Files (x86)\Microsoft SkyDrive
2013-02-17 12:40:20 ----D---- C:\ProgramData\Microsoft SkyDrive
2013-02-17 12:35:18 ----A---- C:\Windows\SYSWOW64\picn20.dll
2013-02-17 12:35:17 ----A---- C:\Windows\SYSWOW64\imagx5.dll
2013-02-17 12:35:17 ----A---- C:\Windows\SYSWOW64\imagr5.dll
2013-02-17 12:35:16 ----A---- C:\Windows\SYSWOW64\ImagXpr5.dll
2013-02-17 12:35:16 ----A---- C:\Windows\SYSWOW64\CapPRO.dll
2013-02-17 12:34:42 ----D---- C:\Program Files (x86)\CoffeeCup Software
2013-02-16 19:21:33 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2013-02-16 19:21:33 ----A---- C:\Windows\system32\mshtmled.dll
2013-02-16 19:21:31 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2013-02-16 19:21:28 ----A---- C:\Windows\SYSWOW64\ieui.dll
2013-02-16 19:21:27 ----A---- C:\Windows\system32\ieui.dll
2013-02-16 19:21:26 ----A---- C:\Windows\system32\ieUnatt.exe
2013-02-16 19:21:24 ----A---- C:\Windows\SYSWOW64\url.dll
2013-02-16 19:21:24 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2013-02-16 19:21:23 ----A---- C:\Windows\system32\url.dll
2013-02-16 19:21:21 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2013-02-16 19:21:21 ----A---- C:\Windows\system32\urlmon.dll
2013-02-16 19:21:19 ----A---- C:\Windows\system32\msfeeds.dll
2013-02-16 19:21:19 ----A---- C:\Windows\system32\jscript9.dll
2013-02-16 19:21:18 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2013-02-16 19:21:17 ----A---- C:\Windows\SYSWOW64\wininet.dll
2013-02-16 19:21:15 ----A---- C:\Windows\system32\wininet.dll
2013-02-16 19:21:14 ----A---- C:\Windows\system32\jsproxy.dll
2013-02-16 19:21:13 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2013-02-16 19:21:13 ----A---- C:\Windows\SYSWOW64\jscript.dll
2013-02-16 19:21:12 ----A---- C:\Windows\system32\vbscript.dll
2013-02-16 19:21:12 ----A---- C:\Windows\system32\jscript.dll
2013-02-16 19:21:11 ----A---- C:\Windows\system32\iertutil.dll
2013-02-16 19:21:10 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2013-02-16 19:21:09 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2013-02-16 19:21:05 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2013-02-16 19:20:58 ----A---- C:\Windows\system32\mshtml.dll
2013-02-16 19:20:56 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2013-02-16 19:20:56 ----A---- C:\Windows\system32\ieframe.dll
2013-02-14 18:20:39 ----A---- C:\Windows\system32\winsrv.dll
2013-02-14 18:20:37 ----A---- C:\Windows\SYSWOW64\wow32.dll
2013-02-14 18:20:37 ----A---- C:\Windows\SYSWOW64\setup16.exe
2013-02-14 18:20:37 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2013-02-14 18:20:37 ----A---- C:\Windows\SYSWOW64\instnm.exe
2013-02-14 18:20:33 ----A---- C:\Windows\SYSWOW64\user.exe
2013-02-14 18:17:19 ----A---- C:\Windows\system32\ntoskrnl.exe
2013-02-14 18:17:17 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2013-02-14 18:17:16 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2013-02-14 18:00:44 ----A---- C:\Windows\system32\win32k.sys
2013-02-14 17:24:52 ----A---- C:\Windows\system32\drivers\tcpip.sys
2013-02-14 17:24:50 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2013-02-13 20:50:12 ----D---- C:\Users\Uživatel\AppData\Roaming\Dev-Cpp
2013-02-13 20:41:51 ----D---- C:\Users\Uživatel\AppData\Roaming\Wireshark
2013-02-13 20:26:40 ----D---- C:\Program Files (x86)\WinPcap
2013-02-13 20:26:09 ----D---- C:\Program Files (x86)\Wireshark

======List of files/folders modified in the last 1 month======

2013-03-11 18:25:32 ----D---- C:\Users\Uživatel\AppData\Roaming\Skype
2013-03-11 18:25:11 ----D---- C:\Windows\tracing
2013-03-11 18:24:47 ----D---- C:\Windows\Temp
2013-03-11 18:23:55 ----D---- C:\ProgramData\NVIDIA
2013-03-11 18:19:24 ----RD---- C:\Program Files (x86)\Skype
2013-03-11 18:19:24 ----D---- C:\Windows\Tasks
2013-03-11 18:19:24 ----D---- C:\Windows
2013-03-11 17:56:12 ----SHD---- C:\Windows\Installer
2013-03-11 17:56:12 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2013-03-11 17:56:00 ----D---- C:\Windows\system32\drivers
2013-03-11 17:56:00 ----D---- C:\Windows\System32
2013-03-11 17:55:57 ----D---- C:\Windows\inf
2013-03-11 17:55:54 ----D---- C:\Windows\system32\catroot
2013-03-11 17:55:50 ----D---- C:\Windows\system32\DriverStore
2013-03-11 17:55:10 ----RD---- C:\Program Files
2013-03-11 17:54:42 ----SHD---- C:\System Volume Information
2013-03-11 17:07:47 ----RD---- C:\Program Files (x86)
2013-03-11 16:46:44 ----D---- C:\Program Files (x86)\Common Files
2013-03-11 16:45:08 ----D---- C:\Program Files\DIFX
2013-03-11 16:06:19 ----D---- C:\Windows\system32\config
2013-03-11 14:57:19 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-03-11 14:56:12 ----HD---- C:\ProgramData
2013-03-10 21:13:31 ----RD---- C:\Users
2013-03-10 17:41:00 ----D---- C:\Windows\SysWOW64
2013-03-10 14:16:22 ----D---- C:\Windows\Prefetch
2013-03-10 10:15:21 ----D---- C:\Windows\system32\Tasks
2013-03-10 10:03:17 ----A---- C:\Windows\SYSWOW64\npdeployJava1.dll
2013-03-10 10:03:17 ----A---- C:\Windows\SYSWOW64\deployJava1.dll
2013-03-10 09:57:54 ----D---- C:\Windows\system32\catroot2
2013-03-09 22:49:13 ----D---- C:\Program Files (x86)\Cain
2013-03-09 22:14:53 ----SD---- C:\Users\Uživatel\AppData\Roaming\Microsoft
2013-03-09 10:46:36 ----SD---- C:\ProgramData\Microsoft
2013-03-08 21:37:25 ----D---- C:\Windows\Minidump
2013-03-08 19:52:38 ----RSD---- C:\Windows\Fonts
2013-02-22 17:04:57 ----D---- C:\Program Files (x86)\EAGLE-6.4.0
2013-02-22 16:53:21 ----D---- C:\Windows\winsxs
2013-02-22 16:52:02 ----D---- C:\Program Files (x86)\Google
2013-02-18 22:09:26 ----D---- C:\Program Files\Microsoft Security Client
2013-02-18 22:09:20 ----D---- C:\Program Files (x86)\Microsoft Security Client
2013-02-18 21:24:27 ----D---- C:\Windows\Logs
2013-02-18 21:24:25 ----D---- C:\Windows\debug
2013-02-17 18:30:35 ----D---- C:\Windows\Microsoft.NET
2013-02-17 12:57:32 ----RSD---- C:\Windows\assembly
2013-02-17 12:51:15 ----D---- C:\Program Files (x86)\Microsoft SQL Server Compact Edition
2013-02-17 12:49:03 ----D---- C:\Program Files\Common Files\Microsoft Shared
2013-02-17 09:23:50 ----D---- C:\Windows\SYSWOW64\migration
2013-02-17 09:23:50 ----D---- C:\Program Files (x86)\Internet Explorer
2013-02-17 09:23:49 ----D---- C:\Windows\system32\migration
2013-02-17 09:23:47 ----D---- C:\Program Files\Internet Explorer
2013-02-16 19:46:28 ----D---- C:\ProgramData\Microsoft Help
2013-02-16 19:40:15 ----A---- C:\Windows\system32\MRT.exe
2013-02-16 19:12:10 ----D---- C:\Windows\AppPatch
2013-02-14 18:40:42 ----D---- C:\Windows\rescache
2013-02-13 20:38:32 ----D---- C:\Windows\system32\NDF
2013-02-13 20:21:34 ----D---- C:\ProgramData\Skype

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 epfwwfp;epfwwfp; C:\Windows\system32\DRIVERS\epfwwfp.sys [2012-11-28 57904]
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2009-06-04 408600]
R0 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2013-01-20 230320]
R0 nvpciflt;nvpciflt; C:\Windows\system32\DRIVERS\nvpciflt.sys [2011-09-14 25960]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R1 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys [2012-10-08 211344]
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2012-10-08 149592]
R1 EpfwLWF;Epfw NDIS LightWeight Filter; C:\Windows\system32\DRIVERS\EpfwLWF.sys [2012-10-08 59440]
R1 ndisrd;WinpkFilter LightWeight Filter; C:\Windows\system32\DRIVERS\ndisrd.sys [2011-02-22 30816]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 epfw;epfw; C:\Windows\system32\DRIVERS\epfw.sys [2012-10-08 189208]
R2 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2013-01-20 130008]
R2 NPF;NetGroup Packet Filter Driver; C:\Windows\system32\drivers\npf.sys [2010-06-25 35344]
R3 AirDisplay;Air Display Support; C:\Windows\system32\DRIVERS\AVVideoCard.sys [2012-09-24 15808]
R3 AirDisplayMirror;Air Display Mirror Support; C:\Windows\system32\DRIVERS\AVVideoCardMirror.sys [2012-09-24 15808]
R3 BCM43XX;Ovladač síťového adaptéru Broadcom 802.11; C:\Windows\system32\DRIVERS\bcmwl664.sys [2010-05-08 3063360]
R3 BthEnum;Služba Bluetooth Enumerator; C:\Windows\system32\DRIVERS\BthEnum.sys [2009-07-14 41984]
R3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
R3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
R3 iDispService;iDispService; C:\Windows\system32\DRIVERS\idisplayminiport.sys [2012-08-31 14248]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2011-03-30 6180480]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2011-03-30 2472680]
R3 kbfiltr;Keyboard Filter; C:\Windows\system32\DRIVERS\kbfiltr.sys [2009-07-21 15416]
R3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller; C:\Windows\system32\DRIVERS\L1C62x64.sys [2011-03-30 76912]
R3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2011-03-30 299568]
R3 teVirtualMIDI64;teVirtualMIDI - Virtual MIDI Driver x64; C:\Windows\system32\DRIVERS\teVirtualMIDI64.sys [2012-08-15 30208]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
R3 WinDriver6;WinDriver6; C:\Windows\system32\drivers\windrvr6.sys [2012-02-27 260608]
R3 YMIDUSBW;Yamaha USB-MIDI Driver (WDM); C:\Windows\system32\drivers\ymidusbx64.sys [2011-11-01 51016]
S1 ISODisk;ISODisk; C:\Windows\system32\drivers\ISODisk.sys []
S2 TVicPort;TVicPort; C:\Windows\system32\drivers\TVicPort.sys []
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudbus.sys [2012-09-19 102368]
S3 DxkgFilter;Filtering Dxkg; \??\C:\Program Files (x86)\iDisplay\idisplay.sys [2012-08-31 55720]
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2012-09-12 57856]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 ser2at;ATEN USB to Serial port driver; C:\Windows\system32\DRIVERS\ser2at64.sys [2009-10-15 96256]
S3 ssudmdm;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudmdm.sys [2012-09-19 203104]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-21 59392]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2010-11-21 31232]
S3 vmci;VMware VMCI Bus Driver; C:\Windows\system32\DRIVERS\vmci.sys []
S3 VMnetAdapter;VMware Virtual Ethernet Adapter Driver; C:\Windows\system32\DRIVERS\vmnetadapter.sys []
S3 WinUSB;SAMSUNG Android USB Driver; C:\Windows\system32\DRIVERS\WinUSB.sys [2010-11-21 41984]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-07-27 63960]
R2 AsusService;Asus Launcher Service; C:\Windows\SysWOW64\AsusService.exe [2010-12-07 224680]
R2 AVTHelper;AVTHelper; C:\Program Files\Avatron\Air Display\AVTHelper.exe [2012-09-24 216000]
R2 Bonjour Service;Bonjour Service; C:\Program Files (x86)\Bonjour\mDNSResponder.exe [2010-10-07 345376]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe [2012-11-26 1329304]
R2 IAANTMON;Intel(R) Matrix Storage Event Monitor; C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe [2009-06-04 354840]
R2 MsMpSvc;Microsoft Antimalware Service; C:\Program Files\Microsoft Security Client\MsMpEng.exe [2013-01-27 22056]
R2 MyPublicWiFiService;MyPublicWiFi Service; C:\Program Files (x86)\MyPublicWiFi\PublicWiFiService.exe [2011-12-02 597504]
R2 NVSvc;NVIDIA Driver Helper Service; C:\Windows\system32\nvvsvc.exe [2011-03-06 993896]
R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe [2011-09-14 2009704]
R2 rtpMIDIService;rtpMIDIService; C:\Program Files (x86)\Tobias Erichsen\rtpMIDI\rtpMIDISvc.exe [2012-08-24 1142272]
R2 Skype C2C Service;Skype C2C Service; C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe [2013-01-31 3289208]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2011-03-06 378472]
R2 TeamViewer8;TeamViewer 8; C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe [2013-02-26 3560800]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2012-07-17 2292480]
R3 NisSrv;@C:\Program Files\Microsoft Security Client\MpAsDesc.dll,-243; C:\Program Files\Microsoft Security Client\NisSrv.exe [2013-01-27 379360]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-12-07 116648]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2012-11-09 160944]
S3 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2010-03-18 44376]
S3 fsssvc;Windows Live Family Safety Service; C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2012-09-12 1512448]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-12-07 116648]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files (x86)\Microsoft Office\Office14\GROOVE.EXE [2012-09-20 30785672]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S3 rpcapd;Remote Packet Capture Protocol v.0 (experimental); C:\Program Files (x86)\WinPcap\rpcapd.exe [2010-06-25 117264]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2012-12-05 1255736]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119524
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu logu. Pomalý počítač.

#12 Příspěvek od Rudy »

Dvouklikem na soubor C:\Program Files\trend micro\Uživatel.exe spusťte HijackThis. Klikněte na "Do a system scan only" a v otevřeném okně vlevo ve čtverečcích zaškrtněte:
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.delta-search.com/?affID=1192 ... 5d6089ef30
O9 - Extra button: @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - res://C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll/204 (file missing)
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - res://C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll/204 (file missing)
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (file missing)
Klikněte na >FixChecked<. Pak znovu spusťte OTM a klikněte na >CleanUp!<. OTM po sobě uklidí. Nakonec restartujte PC.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Zamčeno