Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

zamrznutí ntb

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
jamet
Návštěvník
Návštěvník
Příspěvky: 116
Registrován: 10 pro 2008 21:08

zamrznutí ntb

#1 Příspěvek od jamet »

Dobrý den,

rád bych Vás požádal o pomoc s mým NTB. Po určitém čase zamrzne a pomůže až vypnutí "na tvrdo". Čas než ntb zamrzne je pokaždé jiný a dělá to při různě spuštěných aplikacích. Prosím o kontrolu jestli se mi v ntb nehromadí nějaký balast, abych s tím nešel zbytečně do servisu. Děkuji.

Logfile of random's system information tool 1.08 (written by random/random)
Run by JamET at 2013-06-05 15:18:22
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 63 GB (43%) free of 146 GB
Total RAM: 3067 MB (46% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 15:20:10, on 5.6.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v10.0 (10.00.9200.16576)
Boot mode: Normal

Running processes:
D:\programy\Smart Defrag 2\SmartDefrag.exe
C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe
C:\Program Files\trend micro\JamET.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
F2 - REG:system.ini: UserInit=userinit.exe
O1 - Hosts: 93.170.19.78 moje IP
O1 - Hosts: 93.170.16.176 cobra host
O1 - Hosts: 93.170.19.78 admin.culinariatravel.cz
O1 - Hosts: 93.170.19.78 culinariatravel.cz
O1 - Hosts: 93.170.19.78 www.culinariatravel.cz
O1 - Hosts: 93.170.19.78 http://admin:62382@pracovni43.cd/
O1 - Hosts: 93.170.19.78 admin.vakciny.cz
O1 - Hosts: 93.170.19.78 http://admin.vakciny.cz
O1 - Hosts: 93.170.19.78 www.pracovni1.cd
O1 - Hosts: 93.170.19.78 pracovni1.cd
O1 - Hosts: 93.170.19.78 www.pracovni2.cd
O1 - Hosts: 93.170.19.78 pracovni2.cd
O1 - Hosts: 93.170.19.78 www.pracovni3.cd
O1 - Hosts: 93.170.19.78 pracovni3.cd
O1 - Hosts: 93.170.19.78 www.pracovni4.cd
O1 - Hosts: 93.170.19.78 pracovni4.cd
O1 - Hosts: 93.170.19.78 www.pracovni5.cd
O1 - Hosts: 93.170.19.78 pracovni5.cd
O1 - Hosts: 93.170.19.78 www.pracovni6.cd
O1 - Hosts: 93.170.19.78 pracovni6.cd
O1 - Hosts: 93.170.19.78 www.pracovni7.cd
O1 - Hosts: 93.170.19.78 pracovni7.cd
O1 - Hosts: 93.170.19.78 www.pracovni8.cd
O1 - Hosts: 93.170.19.78 pracovni8.cd
O1 - Hosts: 93.170.19.78 www.pracovni9.cd
O1 - Hosts: 93.170.19.78 pracovni9.cd
O1 - Hosts: 93.170.19.78 www.pracovni10.cd
O1 - Hosts: 93.170.19.78 pracovni10.cd
O1 - Hosts: 93.170.19.78 www.pracovni11.cd
O1 - Hosts: 93.170.19.78 pracovni11.cd
O1 - Hosts: 93.170.19.78 www.pracovni12.cd
O1 - Hosts: 93.170.19.78 pracovni12.cd
O1 - Hosts: 93.170.19.78 www.pracovni13.cd
O1 - Hosts: 93.170.19.78 pracovni13.cd
O1 - Hosts: 93.170.19.78 www.pracovni14.cd
O1 - Hosts: 93.170.19.78 pracovni14.cd
O1 - Hosts: 93.170.19.78 www.pracovni15.cd
O1 - Hosts: 93.170.19.78 pracovni15.cd
O1 - Hosts: 93.170.19.78 www.pracovni16.cd
O1 - Hosts: 93.170.19.78 pracovni16.cd
O1 - Hosts: 93.170.19.78 www.pracovni17.cd
O1 - Hosts: 93.170.19.78 pracovni17.cd
O1 - Hosts: 93.170.19.78 www.pracovni18.cd
O1 - Hosts: 93.170.19.78 pracovni18.cd
O1 - Hosts: 93.170.19.78 www.pracovni19.cd
O1 - Hosts: 93.170.19.78 pracovni19.cd
O1 - Hosts: 93.170.19.78 www.pracovni20.cd
O1 - Hosts: 93.170.19.78 pracovni20.cd
O1 - Hosts: 93.170.19.78 www.pracovni21.cd
O1 - Hosts: 93.170.19.78 pracovni21.cd
O1 - Hosts: 93.170.19.78 www.pracovni22.cd
O1 - Hosts: 93.170.19.78 pracovni22.cd
O1 - Hosts: 93.170.19.78 www.pracovni23.cd
O1 - Hosts: 93.170.19.78 pracovni23.cd
O1 - Hosts: 93.170.19.78 www.pracovni24.cd
O1 - Hosts: 93.170.19.78 pracovni24.cd
O1 - Hosts: 93.170.19.78 www.pracovni25.cd
O1 - Hosts: 93.170.19.78 pracovni25.cd
O1 - Hosts: 93.170.19.78 www.pracovni26.cd
O1 - Hosts: 93.170.19.78 pracovni26.cd
O1 - Hosts: 93.170.19.78 www.pracovni27.cd
O1 - Hosts: 93.170.19.78 pracovni27.cd
O1 - Hosts: 93.170.19.78 www.pracovni28.cd
O1 - Hosts: 93.170.19.78 pracovni28.cd
O1 - Hosts: 93.170.19.78 www.pracovni29.cd
O1 - Hosts: 93.170.19.78 pracovni29.cd
O1 - Hosts: 93.170.19.78 www.pracovni30.cd
O1 - Hosts: 93.170.19.78 pracovni30.cd
O1 - Hosts: 93.170.19.78 www.pracovni31.cd
O1 - Hosts: 93.170.19.78 pracovni31.cd
O1 - Hosts: 93.170.19.78 www.pracovni32.cd
O1 - Hosts: 93.170.19.78 pracovni32.cd
O1 - Hosts: 93.170.19.78 www.pracovni33.cd
O1 - Hosts: 93.170.19.78 pracovni33.cd
O1 - Hosts: 93.170.19.78 www.pracovni34.cd
O1 - Hosts: 93.170.19.78 pracovni34.cd
O1 - Hosts: 93.170.19.78 www.pracovni35.cd
O1 - Hosts: 93.170.19.78 pracovni35.cd
O1 - Hosts: 93.170.19.78 www.pracovni36.cd
O1 - Hosts: 93.170.19.78 pracovni36.cd
O1 - Hosts: 93.170.19.78 www.pracovni37.cd
O1 - Hosts: 93.170.19.78 pracovni37.cd
O1 - Hosts: 93.170.19.78 www.pracovni38.cd
O1 - Hosts: 93.170.19.78 pracovni38.cd
O1 - Hosts: 93.170.19.78 www.pracovni39.cd
O1 - Hosts: 93.170.19.78 pracovni39.cd
O1 - Hosts: 93.170.19.78 www.pracovni40.cd
O1 - Hosts: 93.170.19.78 pracovni40.cd
O1 - Hosts: 93.170.19.78 www.pracovni41.cd
O1 - Hosts: 93.170.19.78 pracovni41.cd
O1 - Hosts: 93.170.19.78 www.pracovni42.cd
O1 - Hosts: 93.170.19.78 pracovni42.cd
O1 - Hosts: 93.170.19.78 www.pracovni43.cd
O1 - Hosts: 93.170.19.78 pracovni43.cd
O1 - Hosts: 93.170.19.78 www.pracovni44.cd
O1 - Hosts: 93.170.19.78 pracovni44.cd
O1 - Hosts: 93.170.19.78 www.pracovni45.cd
O1 - Hosts: 93.170.19.78 pracovni45.cd
O1 - Hosts: 93.170.19.78 www.pracovni46.cd
O1 - Hosts: 93.170.19.78 pracovni46.cd
O1 - Hosts: 93.170.19.78 www.pracovni47.cd
O2 - BHO: Increase performance and video formats for your HTML5 <video> - {326E768D-4182-46FD-9C16-1449A49795F4} - D:\programy\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll
O2 - BHO: BrowSee2saivE - {3333066E-A3A5-14C3-66E3-145F29F6ABA0} - C:\ProgramData\BrowSee2saivE\517edafbcf10b.dll
O2 - BHO: PDF Architect Helper - {3A2D5EBA-F86D-4BD3-A177-019765996711} - C:\Program Files (x86)\PDF Architect\PDFIEHelper.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O2 - BHO: Logitech Flow Scroll - {E11DB59D-5008-42ff-9069-535843BC0BE1} - C:\Program Files\Logitech\FlowScroll\32-bit\LogiSmooth.dll
O3 - Toolbar: PDF Architect Toolbar - {25A3A431-30BB-47C8-AD6A-E1063801134F} - C:\Program Files (x86)\PDF Architect\PDFIEPlugin.dll
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [Google Update] "C:\Users\JamET\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKUS\S-1-5-21-1544630241-1377359107-3311767665-1011\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-1544630241-1377359107-3311767665-1011\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'UpdatusUser')
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: c:\progra~2\browse~1\sprote~1.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe
O23 - Service: Live Updater Service - Acer Incorporated - C:\Program Files\Acer\Acer Updater\UpdaterService.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: PandoraService (PanService) - Pandora.TV - C:\Program Files (x86)\PANDORA.TV\PanService\PandoraService.exe
O23 - Service: PDF Architect Helper Service - pdfforge GbR - C:\Program Files (x86)\PDF Architect\HelperService.exe
O23 - Service: PDF Architect Service - pdfforge GbR - C:\Program Files (x86)\PDF Architect\ConversionService.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: WDDMService - WDC - C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMService.exe
O23 - Service: WD File Management Engine (WDFME) - Unknown owner - C:\Program Files (x86)\Western Digital\WD Smartware\Front Parlor\WDFME\WDFME.exe
O23 - Service: WD File Management Shadow Engine (WDSC) - Unknown owner - C:\Program Files (x86)\Western Digital\WD Smartware\Front Parlor\WDSC.exe
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 13908 bytes

======Listing Processes======

\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
winlogon.exe
"C:\Windows\system32\nvvsvc.exe"
C:\Windows\system32\svchost.exe -k RPCSS
"c:\Program Files\Microsoft Security Client\MsMpEng.exe"
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files\Acer\Acer Updater\UpdaterService.exe"
"c:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\sqlservr.exe" -sSQLEXPRESS
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
taskeng.exe {655FE068-1E81-4C8F-A2F9-3911F995AD43}
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe"
"D:\programy\Smart Defrag 2\SmartDefrag.exe" /STARTUP
"C:\Program Files\Core Temp\Core Temp.exe"
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\PANDORA.TV\PanService\PandoraService.exe"
"C:\Program Files (x86)\PDF Architect\HelperService.exe"
"C:\Program Files (x86)\PDF Architect\ConversionService.exe"
"c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMService.exe"
"C:\Program Files (x86)\Western Digital\WD Smartware\Front Parlor\WDFME\WDFME.exe"
"C:\Program Files (x86)\Western Digital\WD Smartware\Front Parlor\WDSC.exe"
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"c:\Program Files\Microsoft Security Client\NisSrv.exe"
C:\Windows\System32\rundll32.exe shell32.dll,SHCreateLocalServerRunDll {995C996E-D918-4a8c-A302-45719A6F4EA7} -Embedding
"C:\Program Files\Logitech\FlowScroll\KhalScroll.exe"
"C:\Program Files\Logitech\SetPointP\SetPoint.exe" /launchGaming
"C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe"
KHALMNPR.EXE /API
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-52f87943-f511-4215-96c9-c3029b65414a -SystemEventPortName:HostProcess-bb5551db-f53f-4496-892f-8a70a6c4f2b6 -IoCancelEventPortName:HostProcess-cbcece5a-dcb7-4122-b9b4-e2b3fb1aed0a -NonStateChangingEventPortName:HostProcess-20601d17-accd-428a-8df5-f5a5e1f4c2b7 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:466567c1-419f-4516-bb61-d02d5634c26b -DeviceGroupId:WpdFsGroup
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe"
"C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="4920.0.1837439989\933690308" --supports-dual-gpus=false --gpu-vendor-id=0x10de --gpu-device-id=0x0649 --gpu-driver-vendor=NVIDIA --gpu-driver-version=9.18.13.2018 --ignored=" --type=renderer " /prefetch:822062411
"C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_1/Reserved2/ForceCompositingMode/thread/InfiniteCache/No/InstantDummy/DummyPadding channel:stable/InstantExtended/Padding2 channel:stable/OmniboxHQPReplaceHUPProhibitTrumpingInlineableResult/Standard/OmniboxSearchSuggestTrialStarted2013Q1/10/OneClickSignIn/Standard/OverlappedReadImpact/OverlappedReadEnabled/Prerender/PrerenderEnabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_04/UMA-Uniformity-Trial-1-Percent/group_43/UMA-Uniformity-Trial-10-Percent/group_09/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-50-Percent/group_01/" --renderer-print-preview --instant-process --enable-threaded-compositing --channel="4920.2.2055736840\688583311" /prefetch:673131151
"C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_1/Reserved2/ForceCompositingMode/thread/InfiniteCache/No/InstantDummy/DummyPadding channel:stable/InstantExtended/Padding2 channel:stable/OmniboxHQPReplaceHUPProhibitTrumpingInlineableResult/Standard/OmniboxSearchSuggestTrialStarted2013Q1/10/OneClickSignIn/Standard/OverlappedReadImpact/OverlappedReadEnabled/Prerender/PrerenderEnabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_04/UMA-Uniformity-Trial-1-Percent/group_43/UMA-Uniformity-Trial-10-Percent/group_09/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-50-Percent/group_01/" --extension-process --renderer-print-preview --enable-threaded-compositing --channel="4920.3.709175407\1529347833" /prefetch:673131151
"C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_1/Reserved2/ForceCompositingMode/thread/InfiniteCache/No/InstantDummy/DummyPadding channel:stable/InstantExtended/Padding2 channel:stable/OmniboxHQPReplaceHUPProhibitTrumpingInlineableResult/Standard/OmniboxSearchSuggestTrialStarted2013Q1/10/OneClickSignIn/Standard/OverlappedReadImpact/OverlappedReadEnabled/Prerender/PrerenderEnabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_04/UMA-Uniformity-Trial-1-Percent/group_43/UMA-Uniformity-Trial-10-Percent/group_09/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-50-Percent/group_01/" --extension-process --renderer-print-preview --enable-threaded-compositing --channel="4920.4.1304288883\358985626" /prefetch:673131151
"C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_1/Reserved2/ForceCompositingMode/thread/InfiniteCache/No/InstantDummy/DummyPadding channel:stable/InstantExtended/Padding2 channel:stable/OmniboxHQPReplaceHUPProhibitTrumpingInlineableResult/Standard/OmniboxSearchSuggestTrialStarted2013Q1/10/OneClickSignIn/Standard/OverlappedReadImpact/OverlappedReadEnabled/Prerender/PrerenderEnabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_04/UMA-Uniformity-Trial-1-Percent/group_43/UMA-Uniformity-Trial-10-Percent/group_09/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-50-Percent/group_01/" --extension-process --renderer-print-preview --enable-threaded-compositing --channel="4920.5.464913971\1479094817" /prefetch:673131151
"C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_1/Reserved2/ForceCompositingMode/thread/InfiniteCache/No/InstantDummy/DummyPadding channel:stable/InstantExtended/Padding2 channel:stable/OmniboxHQPReplaceHUPProhibitTrumpingInlineableResult/Standard/OmniboxSearchSuggestTrialStarted2013Q1/10/OneClickSignIn/Standard/OverlappedReadImpact/OverlappedReadEnabled/Prerender/PrerenderEnabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_04/UMA-Uniformity-Trial-1-Percent/group_43/UMA-Uniformity-Trial-10-Percent/group_09/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-50-Percent/group_01/" --extension-process --renderer-print-preview --enable-threaded-compositing --channel="4920.6.517679436\188946549" /prefetch:673131151
"C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_1/Reserved2/ForceCompositingMode/thread/InfiniteCache/No/InstantDummy/DummyPadding channel:stable/InstantExtended/Padding2 channel:stable/OmniboxHQPReplaceHUPProhibitTrumpingInlineableResult/Standard/OmniboxSearchSuggestTrialStarted2013Q1/10/OneClickSignIn/Standard/OverlappedReadImpact/OverlappedReadEnabled/Prerender/PrerenderEnabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_04/UMA-Uniformity-Trial-1-Percent/group_43/UMA-Uniformity-Trial-10-Percent/group_09/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-50-Percent/group_01/" --renderer-print-preview --enable-threaded-compositing --channel="4920.7.532240439\738790253" /prefetch:673131151
"C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_1/Reserved2/ForceCompositingMode/thread/InfiniteCache/No/InstantDummy/DummyPadding channel:stable/InstantExtended/Padding2 channel:stable/OmniboxHQPReplaceHUPProhibitTrumpingInlineableResult/Standard/OmniboxSearchSuggestTrialStarted2013Q1/10/OneClickSignIn/Standard/OverlappedReadImpact/OverlappedReadEnabled/Prerender/PrerenderEnabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_04/UMA-Uniformity-Trial-1-Percent/group_43/UMA-Uniformity-Trial-10-Percent/group_09/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-50-Percent/group_01/" --renderer-print-preview --enable-threaded-compositing --channel="4920.8.1548163656\1129290661" /prefetch:673131151
"C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_1/Reserved2/ForceCompositingMode/thread/InfiniteCache/No/InstantDummy/DummyPadding channel:stable/InstantExtended/Padding2 channel:stable/OmniboxHQPReplaceHUPProhibitTrumpingInlineableResult/Standard/OmniboxSearchSuggestTrialStarted2013Q1/10/OneClickSignIn/Standard/OverlappedReadImpact/OverlappedReadEnabled/Prerender/PrerenderEnabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_04/UMA-Uniformity-Trial-1-Percent/group_43/UMA-Uniformity-Trial-10-Percent/group_09/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-50-Percent/group_01/" --renderer-print-preview --enable-threaded-compositing --channel="4920.9.29049855\1184512515" /prefetch:673131151
"C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_1/Reserved2/ForceCompositingMode/thread/InfiniteCache/No/InstantDummy/DummyPadding channel:stable/InstantExtended/Padding2 channel:stable/OmniboxHQPReplaceHUPProhibitTrumpingInlineableResult/Standard/OmniboxSearchSuggestTrialStarted2013Q1/10/OneClickSignIn/Standard/OverlappedReadImpact/OverlappedReadEnabled/Prerender/PrerenderEnabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_04/UMA-Uniformity-Trial-1-Percent/group_43/UMA-Uniformity-Trial-10-Percent/group_09/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-50-Percent/group_01/" --renderer-print-preview --enable-threaded-compositing --channel="4920.10.570898014\985089438" /prefetch:673131151
"C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_1/Reserved2/ForceCompositingMode/thread/InfiniteCache/No/InstantDummy/DummyPadding channel:stable/InstantExtended/Padding2 channel:stable/OmniboxHQPReplaceHUPProhibitTrumpingInlineableResult/Standard/OmniboxSearchSuggestTrialStarted2013Q1/10/OneClickSignIn/Standard/OverlappedReadImpact/OverlappedReadEnabled/Prerender/PrerenderEnabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_04/UMA-Uniformity-Trial-1-Percent/group_43/UMA-Uniformity-Trial-10-Percent/group_09/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-50-Percent/group_01/" --renderer-print-preview --enable-threaded-compositing --channel="4920.11.747476375\475331435" /prefetch:673131151
"C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe" --type=ppapi --channel="4920.14.1477385225\1456641642" --lang=cs --ignored=" --type=renderer " /prefetch:-632637702
"C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe" --type=plugin --plugin-path="C:\Users\JamET\AppData\Local\Facebook\Messenger\2.1.4814.0\npFbDesktopPlugin.dll" --lang=cs --channel="4920.17.1350886682\766746771" /prefetch:-390060480
"C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_1/Reserved2/ForceCompositingMode/thread/InfiniteCache/No/InstantDummy/DummyPadding channel:stable/InstantExtended/Padding2 channel:stable/OmniboxHQPReplaceHUPProhibitTrumpingInlineableResult/Standard/OmniboxSearchSuggestTrialStarted2013Q1/10/OneClickSignIn/Standard/OverlappedReadImpact/OverlappedReadEnabled/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/SpdyCwnd/cwnd16/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_04/UMA-Uniformity-Trial-1-Percent/group_43/UMA-Uniformity-Trial-10-Percent/group_09/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-50-Percent/group_01/" --renderer-print-preview --enable-threaded-compositing --channel="4920.18.1606743749\1800473812" /prefetch:673131151
taskeng.exe {EF2C37ED-38FB-46FD-BA0A-D0FE1C76CD25}
"C:\Windows\system32\wuauclt.exe"
"C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe" -auto -critical
"c:\Program Files\Microsoft Security Client\MpCmdRun.exe" SpyNetService -RestrictPrivileges -AccessKey 40901800-627C-C6BF-6F0B-01506770266C -Reinvoke
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Users\JamET\Desktop\RSITx64.exe"
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe2_ Global\UsGthrCtrlFltPipeMssGthrPipe2 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 508 512 520 65536 516

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-1544630241-1377359107-3311767665-1001Core.job
C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-1544630241-1377359107-3311767665-1001UA.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1544630241-1377359107-3311767665-1001Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1544630241-1377359107-3311767665-1001UA.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E11DB59D-5008-42ff-9069-535843BC0BE1}]
Logitech Flow Scroll - C:\Program Files\Logitech\FlowScroll\LogiSmooth.dll [2012-02-08 435992]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{326E768D-4182-46FD-9C16-1449A49795F4}]
DivX Plus Web Player HTML5 <video> - D:\programy\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll [2011-12-12 194432]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3333066E-A3A5-14C3-66E3-145F29F6ABA0}]
BrowSee2saivE - C:\ProgramData\BrowSee2saivE\517edafbcf10b.dll [2013-04-29 118272]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3A2D5EBA-F86D-4BD3-A177-019765996711}]
PDF Architect Helper - C:\Program Files (x86)\PDF Architect\PDFIEHelper.dll [2013-01-09 92232]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2013-03-06 461216]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2013-03-06 170912]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E11DB59D-5008-42ff-9069-535843BC0BE1}]
Logitech Flow Scroll - C:\Program Files\Logitech\FlowScroll\32-bit\LogiSmooth.dll [2012-02-08 367384]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{25A3A431-30BB-47C8-AD6A-E1063801134F} - PDF Architect Toolbar - C:\Program Files (x86)\PDF Architect\PDFIEPlugin.dll [2013-01-09 609864]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
""= []
"LogiScrollApp"=C:\Program Files\Logitech\FlowScroll\KhalScroll.exe [2012-02-08 166680]
"EvtMgr6"=C:\Program Files\Logitech\SetPointP\SetPoint.exe [2011-10-07 1744152]
"MSC"=c:\Program Files\Microsoft Security Client\msseces.exe [2013-01-27 1281512]
"Logitech Download Assistant"=C:\Windows\System32\LogiLDA.dll [2010-11-03 1580368]
"Nvtmru"=C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe [2013-05-16 1012000]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Google Update"=C:\Users\JamET\AppData\Local\Google\Update\GoogleUpdate.exe [2012-03-26 116648]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Sync Loader]
C:\Program Files (x86)\ASUS\ASUS Sync\asusUPCTLoader.exe [2011-12-12 638976]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUSWebStorage]
C:\Program Files (x86)\ASUS\ASUS WebStorage\3.0.130.270\AsusWSPanel.exe [2012-01-18 740192]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2011-08-02 4910912]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DivXUpdate]
C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe [2011-07-29 1259376]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Facebook Update]
C:\Users\JamET\AppData\Local\Facebook\Update\FacebookUpdate.exe [2012-08-07 138096]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Update]
C:\Users\JamET\AppData\Local\Google\Update\GoogleUpdate.exe [2012-03-26 116648]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GrooveMonitor]
C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Logitech Download Assistant]
C:\Windows\System32\LogiLDA.dll [2010-11-03 1580368]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Mobile Partner]
C:\Program Files (x86)\HiSuite\HiSuite.exe -s []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NokiaPCInternetAccess]
C:\Program Files (x86)\Nokia\PC Internet Access\NPCIA.exe /b []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\OscarEditor]
C:\Program Files (x86)\OSCAR Editor X7\OscarEditor.exe Minimum []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PC Suite Tray]
C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe -onlytray []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PCSpeedUp]
C:\Program Files (x86)\Zrychleni Pocitace\PCSUNotifier.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
C:\Program Files (x86)\QuickTime\QTTask.exe [2011-07-05 421888]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RtHDVCpl]
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2011-02-24 11780712]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Sidebar]
C:\Program Files (x86)\Windows Sidebar\sidebar.exe [2010-11-21 1174016]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Sony Ericsson PC Companion]
C:\Program Files (x86)\Sony Ericsson\Sony Ericsson PC Companion\PCCompanion.exe /Background []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SpywareTerminatorShield]
C:\Program Files (x86)\Spyware Terminator\SpywareTerminatorShield.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SpywareTerminatorUpdater]
C:\Program Files (x86)\Spyware Terminator\SpywareTerminatorUpdate.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SynTPEnh]
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2010-02-18 2057000]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\T-Mobile Communication Centre]
D:\programy\Web'n'walk Manager\Manager.exe -autorun []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Torrent2Exe]
C:\Users\JamET\AppData\Local\Temp\Torrent2Exe\T2E.exe --autorun []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WinampAgent]
D:\programy\Winamp\winampa.exe [2012-06-28 74752]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\XboxStat]
C:\Program Files\Microsoft Xbox 360 Accessories\XboxStat.exe [2009-09-30 825184]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Rainmeter.lnk]
D:\programy\RAINME~1\RAINME~1.EXE []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^WD Quick View.lnk]
C:\PROGRA~1\WESTER~1\WDSMAR~1\WDDMST~1.EXE [2011-08-01 4221840]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^JamET^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^AnthariaMU.lnk]
D:\hry\ANTHAR~1\ANTHAR~1.EXE []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^JamET^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Dropbox.lnk]
C:\Users\JamET\AppData\Roaming\Dropbox\bin\Dropbox.exe [2013-03-12 29106336]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^JamET^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Facebook Messenger.lnk]
C:\Users\JamET\AppData\Local\Facebook\MESSEN~1\214814~1.0\FACEBO~1.EXE [2013-03-07 248240]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-04-04 958576]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2012-07-03 252848]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\LBTWlgn]
c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll [2011-09-27 68376]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
"NoResolveSearch"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 months======

2013-06-05 10:03:17 ----A---- C:\Windows\system32\RtkAPO64.dll
2013-06-05 10:02:56 ----A---- C:\Windows\system32\FMAPO64.dll
2013-06-05 09:57:08 ----D---- C:\Program Files (x86)\Realtek
2013-06-05 09:56:34 ----HD---- C:\Program Files (x86)\Temp
2013-05-27 12:31:43 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2013-05-27 12:31:43 ----D---- C:\Program Files (x86)\AGEIA Technologies
2013-05-27 12:30:41 ----A---- C:\Windows\system32\nvshext.dll
2013-05-27 12:30:40 ----A---- C:\Windows\system32\nvvsvc.exe
2013-05-27 12:30:40 ----A---- C:\Windows\system32\nvsvcr.dll
2013-05-27 12:30:40 ----A---- C:\Windows\system32\nvsvc64.dll
2013-05-27 12:30:40 ----A---- C:\Windows\system32\nvmctray.dll
2013-05-27 12:30:40 ----A---- C:\Windows\system32\nvcpl.dll
2013-05-27 12:30:00 ----A---- C:\Windows\SYSWOW64\OpenCL.dll
2013-05-27 12:30:00 ----A---- C:\Windows\system32\OpenCL.dll
2013-05-27 12:29:42 ----D---- C:\ProgramData\NVIDIA Corporation
2013-05-27 12:27:29 ----A---- C:\Windows\system32\nvhdap64.dll
2013-05-27 12:27:29 ----A---- C:\Windows\system32\nvapo64v.dll
2013-05-27 12:27:29 ----A---- C:\Windows\system32\drivers\nvhda64v.sys
2013-05-27 12:27:28 ----A---- C:\Windows\SYSWOW64\nvwgf2um.dll
2013-05-27 12:27:28 ----A---- C:\Windows\SYSWOW64\nvopencl.dll
2013-05-27 12:27:28 ----A---- C:\Windows\SYSWOW64\nvoglv32.dll
2013-05-27 12:27:28 ----A---- C:\Windows\SYSWOW64\NvIFR.dll
2013-05-27 12:27:28 ----A---- C:\Windows\system32\nvwgf2umx.dll
2013-05-27 12:27:28 ----A---- C:\Windows\system32\nvopencl.dll
2013-05-27 12:27:28 ----A---- C:\Windows\system32\nvoglv64.dll
2013-05-27 12:27:28 ----A---- C:\Windows\system32\NvIFR64.dll
2013-05-27 12:27:28 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2013-05-27 12:27:27 ----A---- C:\Windows\SYSWOW64\NvFBC.dll
2013-05-27 12:27:27 ----A---- C:\Windows\SYSWOW64\nvd3dum.dll
2013-05-27 12:27:27 ----A---- C:\Windows\SYSWOW64\nvcuvid.dll
2013-05-27 12:27:27 ----A---- C:\Windows\SYSWOW64\nvcuvenc.dll
2013-05-27 12:27:27 ----A---- C:\Windows\SYSWOW64\nvcuda.dll
2013-05-27 12:27:27 ----A---- C:\Windows\system32\NvFBC64.dll
2013-05-27 12:27:27 ----A---- C:\Windows\system32\nvdispgenco6432018.dll
2013-05-27 12:27:27 ----A---- C:\Windows\system32\nvdispco6432018.dll
2013-05-27 12:27:27 ----A---- C:\Windows\system32\nvd3dumx.dll
2013-05-27 12:27:27 ----A---- C:\Windows\system32\nvcuvid.dll
2013-05-27 12:27:27 ----A---- C:\Windows\system32\nvcuvenc.dll
2013-05-27 12:27:27 ----A---- C:\Windows\system32\nvcuda.dll
2013-05-27 12:27:24 ----A---- C:\Windows\SYSWOW64\nvcompiler.dll
2013-05-27 12:27:24 ----A---- C:\Windows\SYSWOW64\nvapi.dll
2013-05-27 12:27:24 ----A---- C:\Windows\system32\nvcompiler.dll
2013-05-27 12:27:24 ----A---- C:\Windows\system32\nvapi64.dll
2013-05-17 15:10:35 ----D---- C:\Program Files\Microsoft Xbox 360 Accessories
2013-05-16 14:47:37 ----D---- C:\Users\JamET\AppData\Roaming\Theta
2013-05-15 23:01:11 ----A---- C:\Windows\SYSWOW64\ieui.dll
2013-05-15 23:01:11 ----A---- C:\Windows\system32\ieui.dll
2013-05-15 23:01:10 ----A---- C:\Windows\system32\ie4uinit.exe
2013-05-15 23:01:09 ----A---- C:\Windows\SYSWOW64\RegisterIEPKEYs.exe
2013-05-15 23:01:09 ----A---- C:\Windows\SYSWOW64\iesysprep.dll
2013-05-15 23:01:09 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2013-05-15 23:01:09 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2013-05-15 23:01:09 ----A---- C:\Windows\system32\iesetup.dll
2013-05-15 23:01:09 ----A---- C:\Windows\system32\iernonce.dll
2013-05-15 23:01:08 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2013-05-15 23:01:08 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2013-05-15 23:01:08 ----A---- C:\Windows\system32\msfeeds.dll
2013-05-15 23:01:08 ----A---- C:\Windows\system32\iesysprep.dll
2013-05-15 23:01:07 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2013-05-15 23:01:07 ----A---- C:\Windows\system32\iertutil.dll
2013-05-15 23:01:06 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2013-05-15 23:01:06 ----A---- C:\Windows\system32\urlmon.dll
2013-05-15 23:01:05 ----A---- C:\Windows\SYSWOW64\jscript.dll
2013-05-15 23:01:05 ----A---- C:\Windows\system32\jscript.dll
2013-05-15 23:01:04 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2013-05-15 23:01:04 ----A---- C:\Windows\system32\jscript9.dll
2013-05-15 23:01:02 ----A---- C:\Windows\SYSWOW64\wininet.dll
2013-05-15 23:01:02 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2013-05-15 23:01:02 ----A---- C:\Windows\system32\jsproxy.dll
2013-05-15 23:01:00 ----A---- C:\Windows\system32\wininet.dll
2013-05-15 23:00:58 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2013-05-15 23:00:56 ----A---- C:\Windows\system32\mshtml.dll
2013-05-15 23:00:54 ----A---- C:\Windows\system32\ieframe.dll
2013-05-15 23:00:53 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2013-05-15 22:02:17 ----A---- C:\Windows\system32\drivers\dxgmms1.sys
2013-05-15 22:02:17 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2013-05-15 22:02:17 ----A---- C:\Windows\system32\cdd.dll
2013-05-15 22:02:05 ----A---- C:\Windows\system32\shell32.dll
2013-05-15 22:02:03 ----A---- C:\Windows\system32\shdocvw.dll
2013-05-15 22:02:03 ----A---- C:\Windows\system32\authui.dll
2013-05-15 22:02:02 ----A---- C:\Windows\SYSWOW64\shell32.dll
2013-05-15 22:02:01 ----A---- C:\Windows\SYSWOW64\shdocvw.dll
2013-05-15 22:02:01 ----A---- C:\Windows\SYSWOW64\authui.dll
2013-05-15 22:02:01 ----A---- C:\Windows\system32\consent.exe
2013-05-15 22:02:01 ----A---- C:\Windows\system32\appinfo.dll
2013-05-15 22:01:50 ----A---- C:\Windows\system32\wwansvc.dll
2013-05-15 22:01:50 ----A---- C:\Windows\system32\wwanprotdim.dll
2013-05-15 22:01:48 ----A---- C:\Windows\system32\win32k.sys
2013-05-15 16:31:15 ----A---- C:\Windows\SYSWOW64\FlashPlayerInstaller.exe
2013-05-09 08:50:00 ----D---- C:\Program Files (x86)\AC3Filter
2013-05-06 15:08:48 ----A---- C:\Windows\system32\binkw32.dll

======List of files/folders modified in the last 1 months======

2013-06-05 15:18:24 ----D---- C:\Program Files\trend micro
2013-06-05 15:17:46 ----D---- C:\Windows\Prefetch
2013-06-05 15:17:14 ----D---- C:\Windows\Temp
2013-06-05 15:01:27 ----D---- C:\Windows\SoftwareDistribution
2013-06-05 15:00:40 ----D---- C:\Windows
2013-06-05 15:00:40 ----D---- C:\Users\JamET\AppData\Roaming\TS3Client
2013-06-05 14:58:53 ----D---- C:\Users\JamET\AppData\Roaming\Winamp
2013-06-05 14:18:56 ----D---- C:\Users\JamET\AppData\Roaming\uTorrent
2013-06-05 11:44:05 ----D---- C:\Windows\system32\config
2013-06-05 11:32:37 ----SHD---- C:\System Volume Information
2013-06-05 11:26:20 ----D---- C:\Windows\System32
2013-06-05 11:26:20 ----D---- C:\Windows\inf
2013-06-05 11:26:20 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-06-05 11:22:38 ----D---- C:\Windows\tracing
2013-06-05 11:21:21 ----D---- C:\Windows\Tasks
2013-06-05 11:21:21 ----D---- C:\Windows\system32\wfp
2013-06-05 11:21:16 ----D---- C:\Windows\system32\wbem
2013-06-05 11:20:09 ----D---- C:\Windows\SYSWOW64\RTCOM
2013-06-05 11:20:09 ----D---- C:\Windows\SysWOW64
2013-06-05 11:20:09 ----D---- C:\Windows\system32\DriverStore
2013-06-05 11:20:09 ----D---- C:\Windows\system32\catroot2
2013-06-05 11:20:05 ----D---- C:\Windows\system32\drivers
2013-06-05 11:20:05 ----D---- C:\Windows\system32\CodeIntegrity
2013-06-05 11:20:05 ----D---- C:\Windows\security
2013-06-05 11:20:04 ----D---- C:\Windows\AppCompat
2013-06-05 11:20:03 ----RD---- C:\Program Files
2013-06-05 11:20:03 ----D---- C:\Program Files\Realtek
2013-06-05 11:19:59 ----D---- C:\Windows\registration
2013-06-05 11:19:48 ----D---- C:\Windows\system32\catroot
2013-06-05 11:19:37 ----RD---- C:\Program Files (x86)
2013-06-01 18:25:28 ----D---- C:\Users\JamET\AppData\Roaming\eM Client
2013-05-28 11:16:58 ----SD---- C:\Users\JamET\AppData\Roaming\Microsoft
2013-05-27 12:54:43 ----SHD---- C:\Windows\Installer
2013-05-27 12:54:42 ----SHD---- C:\Config.Msi
2013-05-27 12:52:46 ----HD---- C:\ProgramData
2013-05-27 12:48:10 ----D---- C:\Windows\Logs
2013-05-27 12:33:41 ----RSD---- C:\Windows\assembly
2013-05-27 12:32:02 ----D---- C:\ProgramData\NVIDIA
2013-05-27 12:31:58 ----RD---- C:\Users
2013-05-27 12:31:52 ----D---- C:\Program Files\NVIDIA Corporation
2013-05-27 12:30:32 ----D---- C:\Windows\Help
2013-05-25 13:27:01 ----D---- C:\Users\JamET\AppData\Roaming\Skype
2013-05-19 13:59:49 ----D---- C:\Windows\rescache
2013-05-17 15:12:03 ----D---- C:\Windows\system32\Tasks
2013-05-16 13:44:18 ----D---- C:\Windows\Microsoft.NET
2013-05-16 11:02:05 ----D---- C:\Windows\winsxs
2013-05-16 10:58:37 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2013-05-16 10:53:27 ----D---- C:\Windows\SYSWOW64\en-US
2013-05-16 10:53:27 ----D---- C:\Windows\system32\en-US
2013-05-16 10:49:21 ----D---- C:\Windows\SYSWOW64\directx
2013-05-16 08:28:19 ----D---- C:\Windows\AppPatch
2013-05-16 08:28:17 ----D---- C:\Program Files\Internet Explorer
2013-05-16 08:28:17 ----D---- C:\Program Files (x86)\Internet Explorer
2013-05-15 23:10:17 ----D---- C:\ProgramData\Microsoft Help
2013-05-15 16:31:25 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2013-05-15 11:11:11 ----D---- C:\Windows\system32\NDF
2013-05-07 23:42:07 ----D---- C:\Windows\pss
2013-05-07 23:39:22 ----D---- C:\Users\JamET\AppData\Roaming\DAEMON Tools Lite

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2010-11-06 438808]
R0 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2013-01-20 230320]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R0 SmartDefragDriver;SmartDefragDriver; C:\Windows\System32\Drivers\SmartDefragDriver.sys [2010-11-26 17720]
R0 speedfan;speedfan; C:\Windows\SysWOW64\speedfan.sys [2011-03-18 29592]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2012-02-07 503352]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-21 514560]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2011-09-21 270912]
R1 MpKsl91d50be9;MpKsl91d50be9; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{C492F4D9-A136-4459-8703-E9BE6F80D979}\MpKsl91d50be9.sys [2013-06-05 35664]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2013-01-20 130008]
R3 AgereSoftModem;Agere Systems Soft Modem; C:\Windows\system32\DRIVERS\agrsm64.sys [2009-06-10 1146880]
R3 ALSysIO;ALSysIO; \??\C:\Users\JamET\AppData\Local\Temp\ALSysIO64.sys []
R3 ATSwpWDF;AuthenTec TruePrint USB WBF WDF Driver; C:\Windows\System32\Drivers\ATSwpWDF.sys [2009-12-03 716872]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2011-02-24 2753512]
R3 LEqdUsb;Logitech SetPoint Unifying KMDF USB Filter; C:\Windows\system32\DRIVERS\LEqdUsb.Sys [2011-09-02 76056]
R3 LHidEqd;Logitech SetPoint Unifying KMDF HID Filter; C:\Windows\system32\DRIVERS\LHidEqd.Sys [2011-09-02 15128]
R3 LHidFilt;Logitech SetPoint KMDF HID Filter Driver; C:\Windows\system32\DRIVERS\LHidFilt.Sys [2011-09-02 66840]
R3 LMouFilt;Logitech SetPoint KMDF Mouse Filter Driver; C:\Windows\system32\DRIVERS\LMouFilt.Sys [2011-09-02 60696]
R3 Ltn_stk7070P;PCTV LITEON TT1260 based TV tuner device; C:\Windows\system32\DRIVERS\Ltn_stk7070P.sys [2009-05-22 625152]
R3 NETwNs64;___ Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows 7 - 64 Bit; C:\Windows\system32\DRIVERS\NETwNs64.sys [2010-11-09 8500736]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda64v.sys [2013-02-25 194848]
R3 seehcri;Sony Ericsson seehcri Device Driver; C:\Windows\system32\DRIVERS\seehcri.sys [2011-11-13 34032]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2010-02-18 316464]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S2 NEWDRIVER;NEWDRIVER; \??\C:\Windows\SysWow64\WinVDEdrv6.sys []
S3 BthEnum;Bluetooth Request Block Driver; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
S3 BthPan;Bluetooth Device (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
S3 BTHPORT;Bluetooth Port Driver; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 BTHUSB;Bluetooth Radio USB Driver; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
S3 dmvsc;dmvsc; C:\Windows\system32\drivers\dmvsc.sys [2010-11-21 71168]
S3 ggflt;SEMC USB Flash Driver Filter; C:\Windows\system32\DRIVERS\ggflt.sys [2011-11-13 13352]
S3 GGSAFERDriver;GGSAFER Driver; \??\C:\Program Files (x86)\Garena Classic\safedrv.sys []
S3 ggsemc;SEMC USB Flash Driver; C:\Windows\system32\DRIVERS\ggsemc.sys [2011-11-13 27176]
S3 HTCAND64;HTC Device Driver; C:\Windows\System32\Drivers\ANDROIDUSB.sys [2009-11-02 33736]
S3 JMCR;JMCR; C:\Windows\system32\DRIVERS\jmcr.sys [2008-04-11 125328]
S3 LUsbFilt;Logitech SetPoint KMDF USB Filter; C:\Windows\System32\Drivers\LUsbFilt.Sys [2011-09-02 42776]
S3 massfilter;Mass Storage Filter Driver; C:\Windows\system32\drivers\massfilter.sys []
S3 NANMp50;NANMp50 NDIS Protocol Driver; C:\Windows\System32\Drivers\NANMp50.sys [2010-03-25 46776]
S3 NANSp50;NANSp50 NDIS Protocol Driver; C:\Windows\System32\Drivers\NANSp50.sys [2010-03-25 45752]
S3 netw5v64;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 64 Bit; C:\Windows\system32\DRIVERS\netw5v64.sys [2009-06-10 5434368]
S3 NSNDIS5;NSNDIS5 NDIS Protocol Driver; \??\C:\Windows\syswow64\NSNDIS5.SYS []
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfdx64.sys [2008-08-28 25600]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-21 165888]
S3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-21 6656]
S3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2010-11-21 109056]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-21 34688]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-21 59392]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2010-11-21 31232]
S3 usb_rndisx;USB RNDIS Adapter; C:\Windows\system32\drivers\usb8023x.sys [2013-02-12 19968]
S3 USBAAPL64;Apple Mobile USB Driver; C:\Windows\System32\Drivers\usbaapl64.sys [2011-05-10 51712]
S3 usbscan;USB Scanner Driver; C:\Windows\system32\DRIVERS\usbscan.sys [2009-07-14 41984]
S3 usbser;USB Modem Driver; C:\Windows\system32\drivers\usbser.sys [2010-11-21 32768]
S3 vmbus;vmbus; C:\Windows\system32\drivers\vmbus.sys [2010-11-21 199552]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-21 21760]
S4 RsFx0103;RsFx0103 Driver; C:\Windows\system32\DRIVERS\RsFx0103.sys [2009-03-30 311656]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-05-10 65640]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 Live Updater Service;Live Updater Service; C:\Program Files\Acer\Acer Updater\UpdaterService.exe [2012-04-05 255376]
R2 MsMpSvc;Microsoft Antimalware Service; c:\Program Files\Microsoft Security Client\MsMpEng.exe [2013-01-27 22056]
R2 MSSQL$SQLEXPRESS;SQL Server (SQLEXPRESS); c:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\sqlservr.exe [2009-03-30 57617752]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2013-05-12 884512]
R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2013-05-16 1826592]
R2 PanService;PandoraService; C:\Program Files (x86)\PANDORA.TV\PanService\PandoraService.exe [2011-12-21 578264]
R2 PDF Architect Helper Service;PDF Architect Helper Service; C:\Program Files (x86)\PDF Architect\HelperService.exe [2013-01-09 1324104]
R2 PDF Architect Service;PDF Architect Service; C:\Program Files (x86)\PDF Architect\ConversionService.exe [2013-01-09 795208]
R2 SQLWriter;SQL Server VSS Writer; c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe [2008-07-10 157720]
R3 NisSrv;@c:\Program Files\Microsoft Security Client\MpAsDesc.dll,-243; c:\Program Files\Microsoft Security Client\NisSrv.exe [2013-01-27 379360]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-01-08 161536]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-05-15 256904]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2010-03-18 44376]
S3 gusvc;Google Updater Service; C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe [2011-05-10 136120]
S3 LBTServ;Logitech Bluetooth Service; C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe [2011-09-27 359192]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2012-06-01 113120]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2013-03-29 543656]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S4 Apple Mobile Device;Apple Mobile Device; C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2011-05-25 37664]
S4 Bonjour Service;Bonjour Service; C:\Program Files (x86)\Bonjour\mDNSResponder.exe [2011-07-12 387944]
S4 MSSQLServerADHelper100;SQL Active Directory Helper Service; c:\Program Files\Microsoft SQL Server\100\Shared\SQLADHLP.EXE [2009-07-22 61976]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 SplashtopRemoteService;Splashtop® Remote Service; C:\Program Files (x86)\Splashtop\Splashtop Remote\Server\SRService.exe [2012-02-09 531328]
S4 SQLAgent$SQLEXPRESS;SQL Server Agent (SQLEXPRESS); c:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE [2009-03-30 427880]
S4 SQLBrowser;SQL Server Browser; c:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe [2009-03-30 254808]
S4 SSUService;Splashtop Software Updater Service; C:\Program Files (x86)\Splashtop\Splashtop Software Updater\SSUService.exe [2011-11-10 370504]
S4 StarWindServiceAE;StarWind AE Service; D:\programy\Alcohol 120\StarWind\StarWindServiceAE.exe [2009-12-23 370688]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119526
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: zamrznutí ntb

#2 Příspěvek od Rudy »

Zdravím!
Spusťte nejprve tuto utilitu:
Stáhněte AdwCleaner http://www.stahuj.centrum.cz/utility_a_ ... dwcleaner/
Uložte na plochu
Ukončete všechny programy
Klikněte na Search (hledat)
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

jamet
Návštěvník
Návštěvník
Příspěvky: 116
Registrován: 10 pro 2008 21:08

Re: zamrznutí ntb

#3 Příspěvek od jamet »

Zde přikládám log.

# AdwCleaner v2.301 - Logfile created 06/05/2013 at 18:49:48
# Updated 16/05/2013 by Xplode
# Operating system : Windows 7 Professional Service Pack 1 (64 bits)
# User : JamET - JAMET-PC
# Boot Mode : Normal
# Running from : C:\Users\JamET\Desktop\adwcleaner.exe
# Option [Search]


***** [Services] *****


***** [Files / Folders] *****

Folder Found : C:\ProgramData\Ask
Folder Found : C:\ProgramData\Babylon
Folder Found : C:\ProgramData\boost_interprocess
Folder Found : C:\ProgramData\BrowSee2saivE
Folder Found : C:\ProgramData\InstallMate
Folder Found : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BrowSee2saivE
Folder Found : C:\ProgramData\SoftSafe
Folder Found : C:\Users\JamET\AppData\Local\APN
Folder Found : C:\Users\JamET\AppData\Local\Google\Chrome\User Data\Default\Extensions\omhpbimkhbdihebhpbgfdhocjlkanioe
Folder Found : C:\Users\JamET\AppData\LocalLow\boost_interprocess
Folder Found : C:\Users\JamET\AppData\LocalLow\BrowSee2saivE
Folder Found : C:\Users\JamET\AppData\Roaming\Babylon
Folder Found : C:\Users\JamET\AppData\Roaming\Mozilla\Firefox\Profiles\vjzqswzj.default\extensions\cfz@vaoqa.net
Folder Found : C:\Users\JamET\AppData\Roaming\OCS
Folder Found : C:\Users\JamET\AppData\Roaming\pdfforge
Folder Found : C:\Users\JamET\AppData\Roaming\yourfiledownloader

***** [Registry] *****

Key Found : HKCU\Software\APN PIP
Key Found : HKCU\Software\AppDataLow\SProtector
Key Found : HKCU\Software\IGearSettings
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{25A3A431-30BB-47C8-AD6A-E1063801134F}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{3333066E-A3A5-14C3-66E3-145F29F6ABA0}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{25A3A431-30BB-47C8-AD6A-E1063801134F}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3333066E-A3A5-14C3-66E3-145F29F6ABA0}
Key Found : HKCU\Software\OCS
Key Found : HKCU\Software\PIP
Key Found : HKCU\Software\Softonic
Key Found : HKCU\Software\YourFileDownloader
Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9}
Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Found : HKLM\Software\Babylon
Key Found : HKLM\Software\BabylonToolbar
Key Found : HKLM\SOFTWARE\Classes\Prod.cap
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{E2343056-CC08-46AC-B898-BFC7ACF4E755}
Key Found : HKLM\Software\PIP
Key Found : HKLM\Software\SP Global
Key Found : HKLM\Software\SProtector
Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{25A3A431-30BB-47C8-AD6A-E1063801134F}
Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{3333066E-A3A5-14C3-66E3-145F29F6ABA0}
Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
Key Found : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3333066E-A3A5-14C3-66E3-145F29F6ABA0}
Key Found : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{C3F3165C-74D3-6FDB-3274-14FDA8698CFA}
Key Found : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{C3F3165C-74D3-6FDB-3274-14FDA8698CFA}
Key Found : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\IM
Key Found : HKLM\Software\YourFileDownloader
Key Found : HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Key Found : HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
Key Found : HKU\S-1-5-21-1544630241-1377359107-3311767665-1001\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9}
Key Found : HKU\S-1-5-21-1544630241-1377359107-3311767665-1001\Software\Microsoft\Internet Explorer\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233}
Value Found : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [{25A3A431-30BB-47C8-AD6A-E1063801134F}]

***** [Internet Browsers] *****

-\\ Internet Explorer v10.0.9200.16576

[OK] Registry is clean.

-\\ Mozilla Firefox v20.0.1 (cs)

File : C:\Users\JamET\AppData\Roaming\Mozilla\Firefox\Profiles\vjzqswzj.default\prefs.js

Found : user_pref("aol_toolbar.default.homepage.check", false);
Found : user_pref("aol_toolbar.default.search.check", false);
Found : user_pref("browser.babylon.HPOnNewTab", "search.babylon.com");
Found : user_pref("browser.search.order.1", "Search the web (Babylon)");
Found : user_pref("browser.search.selectedEngine", "Search the web (Babylon)");
Found : user_pref("extensions.517edafbcf024.scode", "(function(){try{if('aol.com,mail.google.com,premiumrepo[...]
Found : user_pref("extensions.BabylonToolbar.prtkDS", 0);
Found : user_pref("extensions.BabylonToolbar.prtkHmpg", 0);
Found : user_pref("extensions.BabylonToolbar_i.newTab", true);
Found : user_pref("extensions.BabylonToolbar_i.newTabUrl", "hxxp://search.babylon.com/?affID=112555&tt=06061[...]
Found : user_pref("sweetim.toolbar.previous.browser.search.defaultenginename", "");
Found : user_pref("sweetim.toolbar.previous.browser.search.selectedEngine", "");
Found : user_pref("sweetim.toolbar.previous.browser.startup.homepage", "");
Found : user_pref("sweetim.toolbar.previous.keyword.URL", "");
Found : user_pref("sweetim.toolbar.scripts.1.domain-blacklist", "");
Found : user_pref("sweetim.toolbar.searchguard.UserRejectedGuard_DS", "");
Found : user_pref("sweetim.toolbar.searchguard.UserRejectedGuard_HP", "");
Found : user_pref("sweetim.toolbar.searchguard.enable", "");

-\\ Google Chrome v27.0.1453.94

File : C:\Users\JamET\AppData\Local\Google\Chrome\User Data\Default\Preferences

[OK] File is clean.

-\\ Opera v12.15.1748.0

File : C:\Users\JamET\AppData\Roaming\Opera\Opera\operaprefs.ini

[OK] File is clean.

*************************

AdwCleaner[R1].txt - [6142 octets] - [05/06/2013 18:49:48]

########## EOF - C:\AdwCleaner[R1].txt - [6202 octets] ##########

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119526
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: zamrznutí ntb

#4 Příspěvek od Rudy »

Spusťte znovu ADWCleaner a klikněte na >Delete< (smazat). Vložte nový log.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

jamet
Návštěvník
Návštěvník
Příspěvky: 116
Registrován: 10 pro 2008 21:08

Re: zamrznutí ntb

#5 Příspěvek od jamet »

Zde je log. Děkuji.

# AdwCleaner v2.301 - Logfile created 06/05/2013 at 19:16:11
# Updated 16/05/2013 by Xplode
# Operating system : Windows 7 Professional Service Pack 1 (64 bits)
# User : JamET - JAMET-PC
# Boot Mode : Normal
# Running from : C:\Users\JamET\Desktop\adwcleaner.exe
# Option [Delete]


***** [Services] *****


***** [Files / Folders] *****

Folder Deleted : C:\ProgramData\Ask
Folder Deleted : C:\ProgramData\Babylon
Folder Deleted : C:\ProgramData\boost_interprocess
Folder Deleted : C:\ProgramData\BrowSee2saivE
Folder Deleted : C:\ProgramData\InstallMate
Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BrowSee2saivE
Folder Deleted : C:\ProgramData\SoftSafe
Folder Deleted : C:\Users\JamET\AppData\Local\APN
Folder Deleted : C:\Users\JamET\AppData\Local\Google\Chrome\User Data\Default\Extensions\omhpbimkhbdihebhpbgfdhocjlkanioe
Folder Deleted : C:\Users\JamET\AppData\LocalLow\boost_interprocess
Folder Deleted : C:\Users\JamET\AppData\LocalLow\BrowSee2saivE
Folder Deleted : C:\Users\JamET\AppData\Roaming\Babylon
Folder Deleted : C:\Users\JamET\AppData\Roaming\Mozilla\Firefox\Profiles\vjzqswzj.default\extensions\cfz@vaoqa.net
Folder Deleted : C:\Users\JamET\AppData\Roaming\OCS
Folder Deleted : C:\Users\JamET\AppData\Roaming\pdfforge
Folder Deleted : C:\Users\JamET\AppData\Roaming\yourfiledownloader

***** [Registry] *****

Key Deleted : HKCU\Software\APN PIP
Key Deleted : HKCU\Software\AppDataLow\SProtector
Key Deleted : HKCU\Software\IGearSettings
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{25A3A431-30BB-47C8-AD6A-E1063801134F}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{3333066E-A3A5-14C3-66E3-145F29F6ABA0}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{25A3A431-30BB-47C8-AD6A-E1063801134F}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3333066E-A3A5-14C3-66E3-145F29F6ABA0}
Key Deleted : HKCU\Software\OCS
Key Deleted : HKCU\Software\PIP
Key Deleted : HKCU\Software\Softonic
Key Deleted : HKCU\Software\YourFileDownloader
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Deleted : HKLM\Software\Babylon
Key Deleted : HKLM\Software\BabylonToolbar
Key Deleted : HKLM\SOFTWARE\Classes\Prod.cap
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{E2343056-CC08-46AC-B898-BFC7ACF4E755}
Key Deleted : HKLM\Software\PIP
Key Deleted : HKLM\Software\SP Global
Key Deleted : HKLM\Software\SProtector
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{25A3A431-30BB-47C8-AD6A-E1063801134F}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{3333066E-A3A5-14C3-66E3-145F29F6ABA0}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3333066E-A3A5-14C3-66E3-145F29F6ABA0}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{C3F3165C-74D3-6FDB-3274-14FDA8698CFA}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\IM
Key Deleted : HKLM\Software\YourFileDownloader
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
Value Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [{25A3A431-30BB-47C8-AD6A-E1063801134F}]

***** [Internet Browsers] *****

-\\ Internet Explorer v10.0.9200.16576

[OK] Registry is clean.

-\\ Mozilla Firefox v20.0.1 (cs)

File : C:\Users\JamET\AppData\Roaming\Mozilla\Firefox\Profiles\vjzqswzj.default\prefs.js

Deleted : user_pref("aol_toolbar.default.homepage.check", false);
Deleted : user_pref("aol_toolbar.default.search.check", false);
Deleted : user_pref("browser.babylon.HPOnNewTab", "search.babylon.com");
Deleted : user_pref("browser.search.order.1", "Search the web (Babylon)");
Deleted : user_pref("browser.search.selectedEngine", "Search the web (Babylon)");
Deleted : user_pref("extensions.517edafbcf024.scode", "(function(){try{if('aol.com,mail.google.com,premiumrepo[...]
Deleted : user_pref("extensions.BabylonToolbar.prtkDS", 0);
Deleted : user_pref("extensions.BabylonToolbar.prtkHmpg", 0);
Deleted : user_pref("extensions.BabylonToolbar_i.newTab", true);
Deleted : user_pref("extensions.BabylonToolbar_i.newTabUrl", "hxxp://search.babylon.com/?affID=112555&tt=06061[...]
Deleted : user_pref("sweetim.toolbar.previous.browser.search.defaultenginename", "");
Deleted : user_pref("sweetim.toolbar.previous.browser.search.selectedEngine", "");
Deleted : user_pref("sweetim.toolbar.previous.browser.startup.homepage", "");
Deleted : user_pref("sweetim.toolbar.previous.keyword.URL", "");
Deleted : user_pref("sweetim.toolbar.scripts.1.domain-blacklist", "");
Deleted : user_pref("sweetim.toolbar.searchguard.UserRejectedGuard_DS", "");
Deleted : user_pref("sweetim.toolbar.searchguard.UserRejectedGuard_HP", "");
Deleted : user_pref("sweetim.toolbar.searchguard.enable", "");

-\\ Google Chrome v27.0.1453.94

File : C:\Users\JamET\AppData\Local\Google\Chrome\User Data\Default\Preferences

[OK] File is clean.

-\\ Opera v12.15.1748.0

File : C:\Users\JamET\AppData\Roaming\Opera\Opera\operaprefs.ini

[OK] File is clean.

*************************

AdwCleaner[R1].txt - [6263 octets] - [05/06/2013 18:49:48]
AdwCleaner[S1].txt - [5909 octets] - [05/06/2013 19:16:11]

########## EOF - C:\AdwCleaner[S1].txt - [5969 octets] ##########

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119526
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: zamrznutí ntb

#6 Příspěvek od Rudy »

Dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

jamet
Návštěvník
Návštěvník
Příspěvky: 116
Registrován: 10 pro 2008 21:08

Re: zamrznutí ntb

#7 Příspěvek od jamet »

Logfile of random's system information tool 1.08 (written by random/random)
Run by JamET at 2013-06-05 20:51:36
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 61 GB (42%) free of 146 GB
Total RAM: 3067 MB (28% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:51:52, on 5.6.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v10.0 (10.00.9200.16576)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Users\JamET\AppData\Local\TeamSpeak 3 Client\ts3client_win32.exe
D:\hry\Heroes of Newerth\hon.exe
D:\hry\Heroes of Newerth\AwesomiumProcess.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe
C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\JamET.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
F2 - REG:system.ini: UserInit=userinit.exe
O1 - Hosts: 93.170.19.78 moje IP
O1 - Hosts: 93.170.16.176 cobra host
O1 - Hosts: 93.170.19.78 admin.culinariatravel.cz
O1 - Hosts: 93.170.19.78 culinariatravel.cz
O1 - Hosts: 93.170.19.78 www.culinariatravel.cz
O1 - Hosts: 93.170.19.78 http://admin:62382@pracovni43.cd/
O1 - Hosts: 93.170.19.78 admin.vakciny.cz
O1 - Hosts: 93.170.19.78 http://admin.vakciny.cz
O1 - Hosts: 93.170.19.78 www.pracovni1.cd
O1 - Hosts: 93.170.19.78 pracovni1.cd
O1 - Hosts: 93.170.19.78 www.pracovni2.cd
O1 - Hosts: 93.170.19.78 pracovni2.cd
O1 - Hosts: 93.170.19.78 www.pracovni3.cd
O1 - Hosts: 93.170.19.78 pracovni3.cd
O1 - Hosts: 93.170.19.78 www.pracovni4.cd
O1 - Hosts: 93.170.19.78 pracovni4.cd
O1 - Hosts: 93.170.19.78 www.pracovni5.cd
O1 - Hosts: 93.170.19.78 pracovni5.cd
O1 - Hosts: 93.170.19.78 www.pracovni6.cd
O1 - Hosts: 93.170.19.78 pracovni6.cd
O1 - Hosts: 93.170.19.78 www.pracovni7.cd
O1 - Hosts: 93.170.19.78 pracovni7.cd
O1 - Hosts: 93.170.19.78 www.pracovni8.cd
O1 - Hosts: 93.170.19.78 pracovni8.cd
O1 - Hosts: 93.170.19.78 www.pracovni9.cd
O1 - Hosts: 93.170.19.78 pracovni9.cd
O1 - Hosts: 93.170.19.78 www.pracovni10.cd
O1 - Hosts: 93.170.19.78 pracovni10.cd
O1 - Hosts: 93.170.19.78 www.pracovni11.cd
O1 - Hosts: 93.170.19.78 pracovni11.cd
O1 - Hosts: 93.170.19.78 www.pracovni12.cd
O1 - Hosts: 93.170.19.78 pracovni12.cd
O1 - Hosts: 93.170.19.78 www.pracovni13.cd
O1 - Hosts: 93.170.19.78 pracovni13.cd
O1 - Hosts: 93.170.19.78 www.pracovni14.cd
O1 - Hosts: 93.170.19.78 pracovni14.cd
O1 - Hosts: 93.170.19.78 www.pracovni15.cd
O1 - Hosts: 93.170.19.78 pracovni15.cd
O1 - Hosts: 93.170.19.78 www.pracovni16.cd
O1 - Hosts: 93.170.19.78 pracovni16.cd
O1 - Hosts: 93.170.19.78 www.pracovni17.cd
O1 - Hosts: 93.170.19.78 pracovni17.cd
O1 - Hosts: 93.170.19.78 www.pracovni18.cd
O1 - Hosts: 93.170.19.78 pracovni18.cd
O1 - Hosts: 93.170.19.78 www.pracovni19.cd
O1 - Hosts: 93.170.19.78 pracovni19.cd
O1 - Hosts: 93.170.19.78 www.pracovni20.cd
O1 - Hosts: 93.170.19.78 pracovni20.cd
O1 - Hosts: 93.170.19.78 www.pracovni21.cd
O1 - Hosts: 93.170.19.78 pracovni21.cd
O1 - Hosts: 93.170.19.78 www.pracovni22.cd
O1 - Hosts: 93.170.19.78 pracovni22.cd
O1 - Hosts: 93.170.19.78 www.pracovni23.cd
O1 - Hosts: 93.170.19.78 pracovni23.cd
O1 - Hosts: 93.170.19.78 www.pracovni24.cd
O1 - Hosts: 93.170.19.78 pracovni24.cd
O1 - Hosts: 93.170.19.78 www.pracovni25.cd
O1 - Hosts: 93.170.19.78 pracovni25.cd
O1 - Hosts: 93.170.19.78 www.pracovni26.cd
O1 - Hosts: 93.170.19.78 pracovni26.cd
O1 - Hosts: 93.170.19.78 www.pracovni27.cd
O1 - Hosts: 93.170.19.78 pracovni27.cd
O1 - Hosts: 93.170.19.78 www.pracovni28.cd
O1 - Hosts: 93.170.19.78 pracovni28.cd
O1 - Hosts: 93.170.19.78 www.pracovni29.cd
O1 - Hosts: 93.170.19.78 pracovni29.cd
O1 - Hosts: 93.170.19.78 www.pracovni30.cd
O1 - Hosts: 93.170.19.78 pracovni30.cd
O1 - Hosts: 93.170.19.78 www.pracovni31.cd
O1 - Hosts: 93.170.19.78 pracovni31.cd
O1 - Hosts: 93.170.19.78 www.pracovni32.cd
O1 - Hosts: 93.170.19.78 pracovni32.cd
O1 - Hosts: 93.170.19.78 www.pracovni33.cd
O1 - Hosts: 93.170.19.78 pracovni33.cd
O1 - Hosts: 93.170.19.78 www.pracovni34.cd
O1 - Hosts: 93.170.19.78 pracovni34.cd
O1 - Hosts: 93.170.19.78 www.pracovni35.cd
O1 - Hosts: 93.170.19.78 pracovni35.cd
O1 - Hosts: 93.170.19.78 www.pracovni36.cd
O1 - Hosts: 93.170.19.78 pracovni36.cd
O1 - Hosts: 93.170.19.78 www.pracovni37.cd
O1 - Hosts: 93.170.19.78 pracovni37.cd
O1 - Hosts: 93.170.19.78 www.pracovni38.cd
O1 - Hosts: 93.170.19.78 pracovni38.cd
O1 - Hosts: 93.170.19.78 www.pracovni39.cd
O1 - Hosts: 93.170.19.78 pracovni39.cd
O1 - Hosts: 93.170.19.78 www.pracovni40.cd
O1 - Hosts: 93.170.19.78 pracovni40.cd
O1 - Hosts: 93.170.19.78 www.pracovni41.cd
O1 - Hosts: 93.170.19.78 pracovni41.cd
O1 - Hosts: 93.170.19.78 www.pracovni42.cd
O1 - Hosts: 93.170.19.78 pracovni42.cd
O1 - Hosts: 93.170.19.78 www.pracovni43.cd
O1 - Hosts: 93.170.19.78 pracovni43.cd
O1 - Hosts: 93.170.19.78 www.pracovni44.cd
O1 - Hosts: 93.170.19.78 pracovni44.cd
O1 - Hosts: 93.170.19.78 www.pracovni45.cd
O1 - Hosts: 93.170.19.78 pracovni45.cd
O1 - Hosts: 93.170.19.78 www.pracovni46.cd
O1 - Hosts: 93.170.19.78 pracovni46.cd
O1 - Hosts: 93.170.19.78 www.pracovni47.cd
O2 - BHO: Increase performance and video formats for your HTML5 <video> - {326E768D-4182-46FD-9C16-1449A49795F4} - D:\programy\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll
O2 - BHO: PDF Architect Helper - {3A2D5EBA-F86D-4BD3-A177-019765996711} - C:\Program Files (x86)\PDF Architect\PDFIEHelper.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O2 - BHO: Logitech Flow Scroll - {E11DB59D-5008-42ff-9069-535843BC0BE1} - C:\Program Files\Logitech\FlowScroll\32-bit\LogiSmooth.dll
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [Google Update] "C:\Users\JamET\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKUS\S-1-5-21-1544630241-1377359107-3311767665-1011\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-1544630241-1377359107-3311767665-1011\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'UpdatusUser')
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: c:\progra~2\browse~1\sprote~1.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe
O23 - Service: Live Updater Service - Acer Incorporated - C:\Program Files\Acer\Acer Updater\UpdaterService.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: PandoraService (PanService) - Pandora.TV - C:\Program Files (x86)\PANDORA.TV\PanService\PandoraService.exe
O23 - Service: PDF Architect Helper Service - pdfforge GbR - C:\Program Files (x86)\PDF Architect\HelperService.exe
O23 - Service: PDF Architect Service - pdfforge GbR - C:\Program Files (x86)\PDF Architect\ConversionService.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: WDDMService - WDC - C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMService.exe
O23 - Service: WD File Management Engine (WDFME) - Unknown owner - C:\Program Files (x86)\Western Digital\WD Smartware\Front Parlor\WDFME\WDFME.exe
O23 - Service: WD File Management Shadow Engine (WDSC) - Unknown owner - C:\Program Files (x86)\Western Digital\WD Smartware\Front Parlor\WDSC.exe
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 13431 bytes

======Listing Processes======

\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
"C:\Windows\system32\nvvsvc.exe"
C:\Windows\system32\svchost.exe -k RPCSS
"c:\Program Files\Microsoft Security Client\MsMpEng.exe"
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"taskhost.exe"
"C:\Program Files\Logitech\FlowScroll\KhalScroll.exe"
"C:\Program Files\Logitech\SetPointP\SetPoint.exe" /launchGaming
"C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe"
KHALMNPR.EXE /API
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
taskeng.exe {5745478D-73B7-4604-874C-08664EED95B6}
"C:\Program Files\Core Temp\Core Temp.exe"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files\Acer\Acer Updater\UpdaterService.exe"
"c:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\sqlservr.exe" -sSQLEXPRESS
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe"
"C:\Program Files (x86)\PANDORA.TV\PanService\PandoraService.exe"
"C:\Program Files (x86)\PDF Architect\HelperService.exe"
"C:\Program Files (x86)\PDF Architect\ConversionService.exe"
"c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMService.exe"
"C:\Program Files (x86)\Western Digital\WD Smartware\Front Parlor\WDFME\WDFME.exe"
"C:\Program Files (x86)\Western Digital\WD Smartware\Front Parlor\WDSC.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
"c:\Program Files\Microsoft Security Client\NisSrv.exe"
"C:\Users\JamET\AppData\Local\TeamSpeak 3 Client\ts3client_win32.exe"
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-4049d18b-51f7-42cb-ab5a-75395cdbcf81 -SystemEventPortName:HostProcess-9e52eb71-9cea-4e47-bc33-eba757d41613 -IoCancelEventPortName:HostProcess-20d824d5-8360-4632-ab9d-72ac0bbe33b6 -NonStateChangingEventPortName:HostProcess-a5ced3df-c48b-4a58-b790-321a4fe0c6ba -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:770e1da6-af75-484e-b123-ec2a636e318e -DeviceGroupId:WpdFsGroup
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"D:\hry\Heroes of Newerth\hon.exe"
"D:\hry\Heroes of Newerth\AwesomiumProcess.exe" --type=renderer --no-sandbox --disable-logging --disable-databases --lang=en-US --awesomium-package-path="D:\hry\Heroes of Newerth" --user-data-dir="c:/Users/JamET/Documents/Heroes of Newerth/game/awesomium/userdata" --awesomium-log-path="c:/Users/JamET/Documents/Heroes of Newerth/game/awesomium/logs" --channel=4016.040A9600.1488690088
"C:\Windows\system32\wuauclt.exe"
"C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe" -auto -critical
"C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe"
"C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="1268.0.219581294\423171434" --supports-dual-gpus=false --gpu-vendor-id=0x10de --gpu-device-id=0x0649 --gpu-driver-vendor=NVIDIA --gpu-driver-version=9.18.13.2018 --ignored=" --type=renderer " /prefetch:822062411
"C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_1/Reserved2/ForceCompositingMode/thread/InfiniteCache/No/InstantDummy/DummyPadding channel:stable/InstantExtended/Padding2 channel:stable/OmniboxSearchSuggestTrialStarted2013Q1/10/OneClickSignIn/Standard/OverlappedReadImpact/OverlappedReadDisabled/Prerender/PrerenderEnabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_11/UMA-Uniformity-Trial-1-Percent/group_43/UMA-Uniformity-Trial-10-Percent/group_09/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-50-Percent/group_01/" --extension-process --renderer-print-preview --enable-threaded-compositing --channel="1268.1.379527463\1195503149" /prefetch:673131151
"C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_1/Reserved2/ForceCompositingMode/thread/InfiniteCache/No/InstantDummy/DummyPadding channel:stable/InstantExtended/Padding2 channel:stable/OmniboxSearchSuggestTrialStarted2013Q1/10/OneClickSignIn/Standard/OverlappedReadImpact/OverlappedReadDisabled/Prerender/PrerenderEnabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_11/UMA-Uniformity-Trial-1-Percent/group_43/UMA-Uniformity-Trial-10-Percent/group_09/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-50-Percent/group_01/" --extension-process --renderer-print-preview --enable-threaded-compositing --channel="1268.2.1216983338\134513703" /prefetch:673131151
"C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_1/Reserved2/ForceCompositingMode/thread/InfiniteCache/No/InstantDummy/DummyPadding channel:stable/InstantExtended/Padding2 channel:stable/OmniboxSearchSuggestTrialStarted2013Q1/10/OneClickSignIn/Standard/OverlappedReadImpact/OverlappedReadDisabled/Prerender/PrerenderEnabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_11/UMA-Uniformity-Trial-1-Percent/group_43/UMA-Uniformity-Trial-10-Percent/group_09/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-50-Percent/group_01/" --extension-process --renderer-print-preview --enable-threaded-compositing --channel="1268.3.1391295985\1478524813" /prefetch:673131151
"C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_1/Reserved2/ForceCompositingMode/thread/InfiniteCache/No/InstantDummy/DummyPadding channel:stable/InstantExtended/Padding2 channel:stable/OmniboxHQPReplaceHUPProhibitTrumpingInlineableResult/Standard/OmniboxSearchSuggestTrialStarted2013Q1/10/OneClickSignIn/Standard/OverlappedReadImpact/OverlappedReadDisabled/Prerender/PrerenderEnabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_11/UMA-Uniformity-Trial-1-Percent/group_43/UMA-Uniformity-Trial-10-Percent/group_09/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-50-Percent/group_01/" --renderer-print-preview --enable-threaded-compositing --channel="1268.5.127302293\954381219" /prefetch:673131151
"C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_1/Reserved2/ForceCompositingMode/thread/InfiniteCache/No/InstantDummy/DummyPadding channel:stable/InstantExtended/Padding2 channel:stable/OmniboxHQPReplaceHUPProhibitTrumpingInlineableResult/Standard/OmniboxSearchSuggestTrialStarted2013Q1/10/OneClickSignIn/Standard/OverlappedReadImpact/OverlappedReadDisabled/Prerender/PrerenderEnabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_11/UMA-Uniformity-Trial-1-Percent/group_43/UMA-Uniformity-Trial-10-Percent/group_09/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-50-Percent/group_01/" --renderer-print-preview --enable-threaded-compositing --channel="1268.6.1474441702\72123452" /prefetch:673131151
"C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe" --type=plugin --plugin-path="C:\Users\JamET\AppData\Local\Facebook\Messenger\2.1.4814.0\npFbDesktopPlugin.dll" --lang=cs --channel="1268.7.1325039534\1736478645" /prefetch:-390060480
"C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe" --type=ppapi --channel="1268.8.1724995853\1427790178" --lang=cs --ignored=" --type=renderer " /prefetch:-632637702
"C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_1/Reserved2/ForceCompositingMode/thread/InfiniteCache/No/InstantDummy/DummyPadding channel:stable/InstantExtended/Padding2 channel:stable/OmniboxHQPReplaceHUPProhibitTrumpingInlineableResult/Standard/OmniboxSearchSuggestTrialStarted2013Q1/10/OneClickSignIn/Standard/OverlappedReadImpact/OverlappedReadDisabled/Prerender/PrerenderEnabled/SpdyCwnd/cwnd10/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_11/UMA-Uniformity-Trial-1-Percent/group_43/UMA-Uniformity-Trial-10-Percent/group_09/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-50-Percent/group_01/" --renderer-print-preview --instant-process --enable-threaded-compositing --channel="1268.9.312083083\1275527207" /prefetch:673131151
"C:\Users\JamET\Desktop\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-1544630241-1377359107-3311767665-1001Core.job
C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-1544630241-1377359107-3311767665-1001UA.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1544630241-1377359107-3311767665-1001Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1544630241-1377359107-3311767665-1001UA.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E11DB59D-5008-42ff-9069-535843BC0BE1}]
Logitech Flow Scroll - C:\Program Files\Logitech\FlowScroll\LogiSmooth.dll [2012-02-08 435992]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{326E768D-4182-46FD-9C16-1449A49795F4}]
DivX Plus Web Player HTML5 <video> - D:\programy\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll [2011-12-12 194432]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3A2D5EBA-F86D-4BD3-A177-019765996711}]
PDF Architect Helper - C:\Program Files (x86)\PDF Architect\PDFIEHelper.dll [2013-01-09 92232]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2013-03-06 461216]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2013-03-06 170912]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E11DB59D-5008-42ff-9069-535843BC0BE1}]
Logitech Flow Scroll - C:\Program Files\Logitech\FlowScroll\32-bit\LogiSmooth.dll [2012-02-08 367384]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
""= []
"LogiScrollApp"=C:\Program Files\Logitech\FlowScroll\KhalScroll.exe [2012-02-08 166680]
"EvtMgr6"=C:\Program Files\Logitech\SetPointP\SetPoint.exe [2011-10-07 1744152]
"MSC"=c:\Program Files\Microsoft Security Client\msseces.exe [2013-01-27 1281512]
"Logitech Download Assistant"=C:\Windows\System32\LogiLDA.dll [2010-11-03 1580368]
"Nvtmru"=C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe [2013-05-16 1012000]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Google Update"=C:\Users\JamET\AppData\Local\Google\Update\GoogleUpdate.exe [2012-03-26 116648]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Sync Loader]
C:\Program Files (x86)\ASUS\ASUS Sync\asusUPCTLoader.exe [2011-12-12 638976]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUSWebStorage]
C:\Program Files (x86)\ASUS\ASUS WebStorage\3.0.130.270\AsusWSPanel.exe [2012-01-18 740192]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2011-08-02 4910912]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DivXUpdate]
C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe [2011-07-29 1259376]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Facebook Update]
C:\Users\JamET\AppData\Local\Facebook\Update\FacebookUpdate.exe [2012-08-07 138096]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Update]
C:\Users\JamET\AppData\Local\Google\Update\GoogleUpdate.exe [2012-03-26 116648]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GrooveMonitor]
C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Logitech Download Assistant]
C:\Windows\System32\LogiLDA.dll [2010-11-03 1580368]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Mobile Partner]
C:\Program Files (x86)\HiSuite\HiSuite.exe -s []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NokiaPCInternetAccess]
C:\Program Files (x86)\Nokia\PC Internet Access\NPCIA.exe /b []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\OscarEditor]
C:\Program Files (x86)\OSCAR Editor X7\OscarEditor.exe Minimum []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PC Suite Tray]
C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe -onlytray []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PCSpeedUp]
C:\Program Files (x86)\Zrychleni Pocitace\PCSUNotifier.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
C:\Program Files (x86)\QuickTime\QTTask.exe [2011-07-05 421888]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RtHDVCpl]
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2011-02-24 11780712]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Sidebar]
C:\Program Files (x86)\Windows Sidebar\sidebar.exe [2010-11-21 1174016]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Sony Ericsson PC Companion]
C:\Program Files (x86)\Sony Ericsson\Sony Ericsson PC Companion\PCCompanion.exe /Background []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SpywareTerminatorShield]
C:\Program Files (x86)\Spyware Terminator\SpywareTerminatorShield.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SpywareTerminatorUpdater]
C:\Program Files (x86)\Spyware Terminator\SpywareTerminatorUpdate.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SynTPEnh]
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2010-02-18 2057000]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\T-Mobile Communication Centre]
D:\programy\Web'n'walk Manager\Manager.exe -autorun []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Torrent2Exe]
C:\Users\JamET\AppData\Local\Temp\Torrent2Exe\T2E.exe --autorun []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WinampAgent]
D:\programy\Winamp\winampa.exe [2012-06-28 74752]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\XboxStat]
C:\Program Files\Microsoft Xbox 360 Accessories\XboxStat.exe [2009-09-30 825184]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Rainmeter.lnk]
D:\programy\RAINME~1\RAINME~1.EXE []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^WD Quick View.lnk]
C:\PROGRA~1\WESTER~1\WDSMAR~1\WDDMST~1.EXE [2011-08-01 4221840]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^JamET^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^AnthariaMU.lnk]
D:\hry\ANTHAR~1\ANTHAR~1.EXE []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^JamET^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Dropbox.lnk]
C:\Users\JamET\AppData\Roaming\Dropbox\bin\Dropbox.exe [2013-03-12 29106336]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^JamET^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Facebook Messenger.lnk]
C:\Users\JamET\AppData\Local\Facebook\MESSEN~1\214814~1.0\FACEBO~1.EXE [2013-03-07 248240]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-04-04 958576]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2012-07-03 252848]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\LBTWlgn]
c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll [2011-09-27 68376]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
"NoResolveSearch"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 months======

2013-06-05 19:16:11 ----A---- C:\AdwCleaner[S1].txt
2013-06-05 18:49:48 ----A---- C:\AdwCleaner[R1].txt
2013-06-05 10:03:17 ----A---- C:\Windows\system32\RtkAPO64.dll
2013-06-05 10:02:56 ----A---- C:\Windows\system32\FMAPO64.dll
2013-06-05 09:57:08 ----D---- C:\Program Files (x86)\Realtek
2013-06-05 09:56:34 ----HD---- C:\Program Files (x86)\Temp
2013-05-27 12:31:43 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2013-05-27 12:31:43 ----D---- C:\Program Files (x86)\AGEIA Technologies
2013-05-27 12:30:41 ----A---- C:\Windows\system32\nvshext.dll
2013-05-27 12:30:40 ----A---- C:\Windows\system32\nvvsvc.exe
2013-05-27 12:30:40 ----A---- C:\Windows\system32\nvsvcr.dll
2013-05-27 12:30:40 ----A---- C:\Windows\system32\nvsvc64.dll
2013-05-27 12:30:40 ----A---- C:\Windows\system32\nvmctray.dll
2013-05-27 12:30:40 ----A---- C:\Windows\system32\nvcpl.dll
2013-05-27 12:30:00 ----A---- C:\Windows\SYSWOW64\OpenCL.dll
2013-05-27 12:30:00 ----A---- C:\Windows\system32\OpenCL.dll
2013-05-27 12:29:42 ----D---- C:\ProgramData\NVIDIA Corporation
2013-05-27 12:27:29 ----A---- C:\Windows\system32\nvhdap64.dll
2013-05-27 12:27:29 ----A---- C:\Windows\system32\nvapo64v.dll
2013-05-27 12:27:29 ----A---- C:\Windows\system32\drivers\nvhda64v.sys
2013-05-27 12:27:28 ----A---- C:\Windows\SYSWOW64\nvwgf2um.dll
2013-05-27 12:27:28 ----A---- C:\Windows\SYSWOW64\nvopencl.dll
2013-05-27 12:27:28 ----A---- C:\Windows\SYSWOW64\nvoglv32.dll
2013-05-27 12:27:28 ----A---- C:\Windows\SYSWOW64\NvIFR.dll
2013-05-27 12:27:28 ----A---- C:\Windows\system32\nvwgf2umx.dll
2013-05-27 12:27:28 ----A---- C:\Windows\system32\nvopencl.dll
2013-05-27 12:27:28 ----A---- C:\Windows\system32\nvoglv64.dll
2013-05-27 12:27:28 ----A---- C:\Windows\system32\NvIFR64.dll
2013-05-27 12:27:28 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2013-05-27 12:27:27 ----A---- C:\Windows\SYSWOW64\NvFBC.dll
2013-05-27 12:27:27 ----A---- C:\Windows\SYSWOW64\nvd3dum.dll
2013-05-27 12:27:27 ----A---- C:\Windows\SYSWOW64\nvcuvid.dll
2013-05-27 12:27:27 ----A---- C:\Windows\SYSWOW64\nvcuvenc.dll
2013-05-27 12:27:27 ----A---- C:\Windows\SYSWOW64\nvcuda.dll
2013-05-27 12:27:27 ----A---- C:\Windows\system32\NvFBC64.dll
2013-05-27 12:27:27 ----A---- C:\Windows\system32\nvdispgenco6432018.dll
2013-05-27 12:27:27 ----A---- C:\Windows\system32\nvdispco6432018.dll
2013-05-27 12:27:27 ----A---- C:\Windows\system32\nvd3dumx.dll
2013-05-27 12:27:27 ----A---- C:\Windows\system32\nvcuvid.dll
2013-05-27 12:27:27 ----A---- C:\Windows\system32\nvcuvenc.dll
2013-05-27 12:27:27 ----A---- C:\Windows\system32\nvcuda.dll
2013-05-27 12:27:24 ----A---- C:\Windows\SYSWOW64\nvcompiler.dll
2013-05-27 12:27:24 ----A---- C:\Windows\SYSWOW64\nvapi.dll
2013-05-27 12:27:24 ----A---- C:\Windows\system32\nvcompiler.dll
2013-05-27 12:27:24 ----A---- C:\Windows\system32\nvapi64.dll
2013-05-17 15:10:35 ----D---- C:\Program Files\Microsoft Xbox 360 Accessories
2013-05-16 14:47:37 ----D---- C:\Users\JamET\AppData\Roaming\Theta
2013-05-15 23:01:11 ----A---- C:\Windows\SYSWOW64\ieui.dll
2013-05-15 23:01:11 ----A---- C:\Windows\system32\ieui.dll
2013-05-15 23:01:10 ----A---- C:\Windows\system32\ie4uinit.exe
2013-05-15 23:01:09 ----A---- C:\Windows\SYSWOW64\RegisterIEPKEYs.exe
2013-05-15 23:01:09 ----A---- C:\Windows\SYSWOW64\iesysprep.dll
2013-05-15 23:01:09 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2013-05-15 23:01:09 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2013-05-15 23:01:09 ----A---- C:\Windows\system32\iesetup.dll
2013-05-15 23:01:09 ----A---- C:\Windows\system32\iernonce.dll
2013-05-15 23:01:08 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2013-05-15 23:01:08 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2013-05-15 23:01:08 ----A---- C:\Windows\system32\msfeeds.dll
2013-05-15 23:01:08 ----A---- C:\Windows\system32\iesysprep.dll
2013-05-15 23:01:07 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2013-05-15 23:01:07 ----A---- C:\Windows\system32\iertutil.dll
2013-05-15 23:01:06 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2013-05-15 23:01:06 ----A---- C:\Windows\system32\urlmon.dll
2013-05-15 23:01:05 ----A---- C:\Windows\SYSWOW64\jscript.dll
2013-05-15 23:01:05 ----A---- C:\Windows\system32\jscript.dll
2013-05-15 23:01:04 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2013-05-15 23:01:04 ----A---- C:\Windows\system32\jscript9.dll
2013-05-15 23:01:02 ----A---- C:\Windows\SYSWOW64\wininet.dll
2013-05-15 23:01:02 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2013-05-15 23:01:02 ----A---- C:\Windows\system32\jsproxy.dll
2013-05-15 23:01:00 ----A---- C:\Windows\system32\wininet.dll
2013-05-15 23:00:58 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2013-05-15 23:00:56 ----A---- C:\Windows\system32\mshtml.dll
2013-05-15 23:00:54 ----A---- C:\Windows\system32\ieframe.dll
2013-05-15 23:00:53 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2013-05-15 22:02:17 ----A---- C:\Windows\system32\drivers\dxgmms1.sys
2013-05-15 22:02:17 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2013-05-15 22:02:17 ----A---- C:\Windows\system32\cdd.dll
2013-05-15 22:02:05 ----A---- C:\Windows\system32\shell32.dll
2013-05-15 22:02:03 ----A---- C:\Windows\system32\shdocvw.dll
2013-05-15 22:02:03 ----A---- C:\Windows\system32\authui.dll
2013-05-15 22:02:02 ----A---- C:\Windows\SYSWOW64\shell32.dll
2013-05-15 22:02:01 ----A---- C:\Windows\SYSWOW64\shdocvw.dll
2013-05-15 22:02:01 ----A---- C:\Windows\SYSWOW64\authui.dll
2013-05-15 22:02:01 ----A---- C:\Windows\system32\consent.exe
2013-05-15 22:02:01 ----A---- C:\Windows\system32\appinfo.dll
2013-05-15 22:01:50 ----A---- C:\Windows\system32\wwansvc.dll
2013-05-15 22:01:50 ----A---- C:\Windows\system32\wwanprotdim.dll
2013-05-15 22:01:48 ----A---- C:\Windows\system32\win32k.sys
2013-05-15 16:31:15 ----A---- C:\Windows\SYSWOW64\FlashPlayerInstaller.exe
2013-05-09 08:50:00 ----D---- C:\Program Files (x86)\AC3Filter
2013-05-06 15:08:48 ----A---- C:\Windows\system32\binkw32.dll

======List of files/folders modified in the last 1 months======

2013-06-05 20:51:40 ----D---- C:\Program Files\trend micro
2013-06-05 20:50:54 ----D---- C:\Users\JamET\AppData\Roaming\TS3Client
2013-06-05 19:33:43 ----D---- C:\Windows\system32\config
2013-06-05 19:24:52 ----D---- C:\Windows\System32
2013-06-05 19:24:52 ----D---- C:\Windows\inf
2013-06-05 19:24:52 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-06-05 19:24:01 ----D---- C:\Windows\Temp
2013-06-05 19:20:14 ----D---- C:\Windows\Prefetch
2013-06-05 19:16:28 ----HD---- C:\ProgramData
2013-06-05 15:01:27 ----D---- C:\Windows\SoftwareDistribution
2013-06-05 15:00:40 ----D---- C:\Windows
2013-06-05 14:58:53 ----D---- C:\Users\JamET\AppData\Roaming\Winamp
2013-06-05 14:18:56 ----D---- C:\Users\JamET\AppData\Roaming\uTorrent
2013-06-05 11:32:37 ----SHD---- C:\System Volume Information
2013-06-05 11:22:38 ----D---- C:\Windows\tracing
2013-06-05 11:21:21 ----D---- C:\Windows\Tasks
2013-06-05 11:21:21 ----D---- C:\Windows\system32\wfp
2013-06-05 11:21:16 ----D---- C:\Windows\system32\wbem
2013-06-05 11:20:09 ----D---- C:\Windows\SYSWOW64\RTCOM
2013-06-05 11:20:09 ----D---- C:\Windows\SysWOW64
2013-06-05 11:20:09 ----D---- C:\Windows\system32\DriverStore
2013-06-05 11:20:09 ----D---- C:\Windows\system32\catroot2
2013-06-05 11:20:05 ----D---- C:\Windows\system32\drivers
2013-06-05 11:20:05 ----D---- C:\Windows\system32\CodeIntegrity
2013-06-05 11:20:05 ----D---- C:\Windows\security
2013-06-05 11:20:04 ----D---- C:\Windows\AppCompat
2013-06-05 11:20:03 ----RD---- C:\Program Files
2013-06-05 11:20:03 ----D---- C:\Program Files\Realtek
2013-06-05 11:19:59 ----D---- C:\Windows\registration
2013-06-05 11:19:48 ----D---- C:\Windows\system32\catroot
2013-06-05 11:19:37 ----RD---- C:\Program Files (x86)
2013-06-01 18:25:28 ----D---- C:\Users\JamET\AppData\Roaming\eM Client
2013-05-28 11:16:58 ----SD---- C:\Users\JamET\AppData\Roaming\Microsoft
2013-05-27 12:54:43 ----SHD---- C:\Windows\Installer
2013-05-27 12:54:42 ----SHD---- C:\Config.Msi
2013-05-27 12:48:10 ----D---- C:\Windows\Logs
2013-05-27 12:33:41 ----RSD---- C:\Windows\assembly
2013-05-27 12:32:02 ----D---- C:\ProgramData\NVIDIA
2013-05-27 12:31:58 ----RD---- C:\Users
2013-05-27 12:31:52 ----D---- C:\Program Files\NVIDIA Corporation
2013-05-27 12:30:32 ----D---- C:\Windows\Help
2013-05-25 13:27:01 ----D---- C:\Users\JamET\AppData\Roaming\Skype
2013-05-19 13:59:49 ----D---- C:\Windows\rescache
2013-05-17 15:12:03 ----D---- C:\Windows\system32\Tasks
2013-05-16 13:44:18 ----D---- C:\Windows\Microsoft.NET
2013-05-16 11:02:05 ----D---- C:\Windows\winsxs
2013-05-16 10:58:37 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2013-05-16 10:53:27 ----D---- C:\Windows\SYSWOW64\en-US
2013-05-16 10:53:27 ----D---- C:\Windows\system32\en-US
2013-05-16 10:49:21 ----D---- C:\Windows\SYSWOW64\directx
2013-05-16 08:28:19 ----D---- C:\Windows\AppPatch
2013-05-16 08:28:17 ----D---- C:\Program Files\Internet Explorer
2013-05-16 08:28:17 ----D---- C:\Program Files (x86)\Internet Explorer
2013-05-15 23:10:17 ----D---- C:\ProgramData\Microsoft Help
2013-05-15 16:31:25 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2013-05-15 11:11:11 ----D---- C:\Windows\system32\NDF
2013-05-07 23:42:07 ----D---- C:\Windows\pss
2013-05-07 23:39:22 ----D---- C:\Users\JamET\AppData\Roaming\DAEMON Tools Lite

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2010-11-06 438808]
R0 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2013-01-20 230320]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R0 SmartDefragDriver;SmartDefragDriver; C:\Windows\System32\Drivers\SmartDefragDriver.sys [2010-11-26 17720]
R0 speedfan;speedfan; C:\Windows\SysWOW64\speedfan.sys [2011-03-18 29592]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2012-02-07 503352]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-21 514560]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2011-09-21 270912]
R1 MpKsl91d50be9;MpKsl91d50be9; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{C492F4D9-A136-4459-8703-E9BE6F80D979}\MpKsl91d50be9.sys [2013-06-05 35664]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2013-01-20 130008]
R3 AgereSoftModem;Agere Systems Soft Modem; C:\Windows\system32\DRIVERS\agrsm64.sys [2009-06-10 1146880]
R3 ALSysIO;ALSysIO; \??\C:\Users\JamET\AppData\Local\Temp\ALSysIO64.sys []
R3 ATSwpWDF;AuthenTec TruePrint USB WBF WDF Driver; C:\Windows\System32\Drivers\ATSwpWDF.sys [2009-12-03 716872]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2011-02-24 2753512]
R3 LEqdUsb;Logitech SetPoint Unifying KMDF USB Filter; C:\Windows\system32\DRIVERS\LEqdUsb.Sys [2011-09-02 76056]
R3 LHidEqd;Logitech SetPoint Unifying KMDF HID Filter; C:\Windows\system32\DRIVERS\LHidEqd.Sys [2011-09-02 15128]
R3 LHidFilt;Logitech SetPoint KMDF HID Filter Driver; C:\Windows\system32\DRIVERS\LHidFilt.Sys [2011-09-02 66840]
R3 LMouFilt;Logitech SetPoint KMDF Mouse Filter Driver; C:\Windows\system32\DRIVERS\LMouFilt.Sys [2011-09-02 60696]
R3 Ltn_stk7070P;PCTV LITEON TT1260 based TV tuner device; C:\Windows\system32\DRIVERS\Ltn_stk7070P.sys [2009-05-22 625152]
R3 NETwNs64;___ Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows 7 - 64 Bit; C:\Windows\system32\DRIVERS\NETwNs64.sys [2010-11-09 8500736]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda64v.sys [2013-02-25 194848]
R3 seehcri;Sony Ericsson seehcri Device Driver; C:\Windows\system32\DRIVERS\seehcri.sys [2011-11-13 34032]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2010-02-18 316464]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S2 NEWDRIVER;NEWDRIVER; \??\C:\Windows\SysWow64\WinVDEdrv6.sys []
S3 BthEnum;Bluetooth Request Block Driver; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
S3 BthPan;Bluetooth Device (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
S3 BTHPORT;Bluetooth Port Driver; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 BTHUSB;Bluetooth Radio USB Driver; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
S3 dmvsc;dmvsc; C:\Windows\system32\drivers\dmvsc.sys [2010-11-21 71168]
S3 ggflt;SEMC USB Flash Driver Filter; C:\Windows\system32\DRIVERS\ggflt.sys [2011-11-13 13352]
S3 GGSAFERDriver;GGSAFER Driver; \??\C:\Program Files (x86)\Garena Classic\safedrv.sys []
S3 ggsemc;SEMC USB Flash Driver; C:\Windows\system32\DRIVERS\ggsemc.sys [2011-11-13 27176]
S3 HTCAND64;HTC Device Driver; C:\Windows\System32\Drivers\ANDROIDUSB.sys [2009-11-02 33736]
S3 JMCR;JMCR; C:\Windows\system32\DRIVERS\jmcr.sys [2008-04-11 125328]
S3 LUsbFilt;Logitech SetPoint KMDF USB Filter; C:\Windows\System32\Drivers\LUsbFilt.Sys [2011-09-02 42776]
S3 massfilter;Mass Storage Filter Driver; C:\Windows\system32\drivers\massfilter.sys []
S3 NANMp50;NANMp50 NDIS Protocol Driver; C:\Windows\System32\Drivers\NANMp50.sys [2010-03-25 46776]
S3 NANSp50;NANSp50 NDIS Protocol Driver; C:\Windows\System32\Drivers\NANSp50.sys [2010-03-25 45752]
S3 netw5v64;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 64 Bit; C:\Windows\system32\DRIVERS\netw5v64.sys [2009-06-10 5434368]
S3 NSNDIS5;NSNDIS5 NDIS Protocol Driver; \??\C:\Windows\syswow64\NSNDIS5.SYS []
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfdx64.sys [2008-08-28 25600]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-21 165888]
S3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-21 6656]
S3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2010-11-21 109056]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-21 34688]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-21 59392]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2010-11-21 31232]
S3 usb_rndisx;USB RNDIS Adapter; C:\Windows\system32\drivers\usb8023x.sys [2013-02-12 19968]
S3 USBAAPL64;Apple Mobile USB Driver; C:\Windows\System32\Drivers\usbaapl64.sys [2011-05-10 51712]
S3 usbscan;USB Scanner Driver; C:\Windows\system32\DRIVERS\usbscan.sys [2009-07-14 41984]
S3 usbser;USB Modem Driver; C:\Windows\system32\drivers\usbser.sys [2010-11-21 32768]
S3 vmbus;vmbus; C:\Windows\system32\drivers\vmbus.sys [2010-11-21 199552]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-21 21760]
S4 RsFx0103;RsFx0103 Driver; C:\Windows\system32\DRIVERS\RsFx0103.sys [2009-03-30 311656]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-05-10 65640]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 Live Updater Service;Live Updater Service; C:\Program Files\Acer\Acer Updater\UpdaterService.exe [2012-04-05 255376]
R2 MsMpSvc;Microsoft Antimalware Service; c:\Program Files\Microsoft Security Client\MsMpEng.exe [2013-01-27 22056]
R2 MSSQL$SQLEXPRESS;SQL Server (SQLEXPRESS); c:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\sqlservr.exe [2009-03-30 57617752]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2013-05-12 884512]
R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2013-05-16 1826592]
R2 PanService;PandoraService; C:\Program Files (x86)\PANDORA.TV\PanService\PandoraService.exe [2011-12-21 578264]
R2 PDF Architect Helper Service;PDF Architect Helper Service; C:\Program Files (x86)\PDF Architect\HelperService.exe [2013-01-09 1324104]
R2 PDF Architect Service;PDF Architect Service; C:\Program Files (x86)\PDF Architect\ConversionService.exe [2013-01-09 795208]
R2 SQLWriter;SQL Server VSS Writer; c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe [2008-07-10 157720]
R3 NisSrv;@c:\Program Files\Microsoft Security Client\MpAsDesc.dll,-243; c:\Program Files\Microsoft Security Client\NisSrv.exe [2013-01-27 379360]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-01-08 161536]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-05-15 256904]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2010-03-18 44376]
S3 gusvc;Google Updater Service; C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe [2011-05-10 136120]
S3 LBTServ;Logitech Bluetooth Service; C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe [2011-09-27 359192]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2012-06-01 113120]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2013-03-29 543656]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S4 Apple Mobile Device;Apple Mobile Device; C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2011-05-25 37664]
S4 Bonjour Service;Bonjour Service; C:\Program Files (x86)\Bonjour\mDNSResponder.exe [2011-07-12 387944]
S4 MSSQLServerADHelper100;SQL Active Directory Helper Service; c:\Program Files\Microsoft SQL Server\100\Shared\SQLADHLP.EXE [2009-07-22 61976]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 SplashtopRemoteService;Splashtop® Remote Service; C:\Program Files (x86)\Splashtop\Splashtop Remote\Server\SRService.exe [2012-02-09 531328]
S4 SQLAgent$SQLEXPRESS;SQL Server Agent (SQLEXPRESS); c:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE [2009-03-30 427880]
S4 SQLBrowser;SQL Server Browser; c:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe [2009-03-30 254808]
S4 SSUService;Splashtop Software Updater Service; C:\Program Files (x86)\Splashtop\Splashtop Software Updater\SSUService.exe [2011-11-10 370504]
S4 StarWindServiceAE;StarWind AE Service; D:\programy\Alcohol 120\StarWind\StarWindServiceAE.exe [2009-12-23 370688]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119526
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: zamrznutí ntb

#8 Příspěvek od Rudy »

Stáhněte OTM: http://oldtimer.geekstogo.com/OTM.exe a uložte na plochu. Spusťte a do levého okna zkopírujte:
:files
C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-1544630241-1377359107-3311767665-1001Core.job
C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-1544630241-1377359107-3311767665-1001UA.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1544630241-1377359107-3311767665-1001Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1544630241-1377359107-3311767665-1001UA.job
C:\Users\JamET\AppData\Local\Facebook\Update

:reg
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Facebook Update]

:commands
[Purity]
[Emptytemp]
[Emptyflash]
a klikněte na >MoveIt!<. Po skenu restartujte PC a dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

jamet
Návštěvník
Návštěvník
Příspěvky: 116
Registrován: 10 pro 2008 21:08

Re: zamrznutí ntb

#9 Příspěvek od jamet »

Děkuji, provedl jsem zde je log.

Logfile of random's system information tool 1.08 (written by random/random)
Run by JamET at 2013-06-06 06:09:57
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 61 GB (42%) free of 146 GB
Total RAM: 3067 MB (49% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 6:10:03, on 6.6.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v10.0 (10.00.9200.16576)
Boot mode: Normal

Running processes:
D:\programy\Smart Defrag 2\SmartDefrag.exe
C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe
C:\Users\JamET\AppData\Local\Google\Update\GoogleUpdate.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\JamET.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
F2 - REG:system.ini: UserInit=userinit.exe
O1 - Hosts: 93.170.19.78 moje IP
O1 - Hosts: 93.170.16.176 cobra host
O1 - Hosts: 93.170.19.78 admin.culinariatravel.cz
O1 - Hosts: 93.170.19.78 culinariatravel.cz
O1 - Hosts: 93.170.19.78 www.culinariatravel.cz
O1 - Hosts: 93.170.19.78 http://admin:62382@pracovni43.cd/
O1 - Hosts: 93.170.19.78 admin.vakciny.cz
O1 - Hosts: 93.170.19.78 http://admin.vakciny.cz
O1 - Hosts: 93.170.19.78 www.pracovni1.cd
O1 - Hosts: 93.170.19.78 pracovni1.cd
O1 - Hosts: 93.170.19.78 www.pracovni2.cd
O1 - Hosts: 93.170.19.78 pracovni2.cd
O1 - Hosts: 93.170.19.78 www.pracovni3.cd
O1 - Hosts: 93.170.19.78 pracovni3.cd
O1 - Hosts: 93.170.19.78 www.pracovni4.cd
O1 - Hosts: 93.170.19.78 pracovni4.cd
O1 - Hosts: 93.170.19.78 www.pracovni5.cd
O1 - Hosts: 93.170.19.78 pracovni5.cd
O1 - Hosts: 93.170.19.78 www.pracovni6.cd
O1 - Hosts: 93.170.19.78 pracovni6.cd
O1 - Hosts: 93.170.19.78 www.pracovni7.cd
O1 - Hosts: 93.170.19.78 pracovni7.cd
O1 - Hosts: 93.170.19.78 www.pracovni8.cd
O1 - Hosts: 93.170.19.78 pracovni8.cd
O1 - Hosts: 93.170.19.78 www.pracovni9.cd
O1 - Hosts: 93.170.19.78 pracovni9.cd
O1 - Hosts: 93.170.19.78 www.pracovni10.cd
O1 - Hosts: 93.170.19.78 pracovni10.cd
O1 - Hosts: 93.170.19.78 www.pracovni11.cd
O1 - Hosts: 93.170.19.78 pracovni11.cd
O1 - Hosts: 93.170.19.78 www.pracovni12.cd
O1 - Hosts: 93.170.19.78 pracovni12.cd
O1 - Hosts: 93.170.19.78 www.pracovni13.cd
O1 - Hosts: 93.170.19.78 pracovni13.cd
O1 - Hosts: 93.170.19.78 www.pracovni14.cd
O1 - Hosts: 93.170.19.78 pracovni14.cd
O1 - Hosts: 93.170.19.78 www.pracovni15.cd
O1 - Hosts: 93.170.19.78 pracovni15.cd
O1 - Hosts: 93.170.19.78 www.pracovni16.cd
O1 - Hosts: 93.170.19.78 pracovni16.cd
O1 - Hosts: 93.170.19.78 www.pracovni17.cd
O1 - Hosts: 93.170.19.78 pracovni17.cd
O1 - Hosts: 93.170.19.78 www.pracovni18.cd
O1 - Hosts: 93.170.19.78 pracovni18.cd
O1 - Hosts: 93.170.19.78 www.pracovni19.cd
O1 - Hosts: 93.170.19.78 pracovni19.cd
O1 - Hosts: 93.170.19.78 www.pracovni20.cd
O1 - Hosts: 93.170.19.78 pracovni20.cd
O1 - Hosts: 93.170.19.78 www.pracovni21.cd
O1 - Hosts: 93.170.19.78 pracovni21.cd
O1 - Hosts: 93.170.19.78 www.pracovni22.cd
O1 - Hosts: 93.170.19.78 pracovni22.cd
O1 - Hosts: 93.170.19.78 www.pracovni23.cd
O1 - Hosts: 93.170.19.78 pracovni23.cd
O1 - Hosts: 93.170.19.78 www.pracovni24.cd
O1 - Hosts: 93.170.19.78 pracovni24.cd
O1 - Hosts: 93.170.19.78 www.pracovni25.cd
O1 - Hosts: 93.170.19.78 pracovni25.cd
O1 - Hosts: 93.170.19.78 www.pracovni26.cd
O1 - Hosts: 93.170.19.78 pracovni26.cd
O1 - Hosts: 93.170.19.78 www.pracovni27.cd
O1 - Hosts: 93.170.19.78 pracovni27.cd
O1 - Hosts: 93.170.19.78 www.pracovni28.cd
O1 - Hosts: 93.170.19.78 pracovni28.cd
O1 - Hosts: 93.170.19.78 www.pracovni29.cd
O1 - Hosts: 93.170.19.78 pracovni29.cd
O1 - Hosts: 93.170.19.78 www.pracovni30.cd
O1 - Hosts: 93.170.19.78 pracovni30.cd
O1 - Hosts: 93.170.19.78 www.pracovni31.cd
O1 - Hosts: 93.170.19.78 pracovni31.cd
O1 - Hosts: 93.170.19.78 www.pracovni32.cd
O1 - Hosts: 93.170.19.78 pracovni32.cd
O1 - Hosts: 93.170.19.78 www.pracovni33.cd
O1 - Hosts: 93.170.19.78 pracovni33.cd
O1 - Hosts: 93.170.19.78 www.pracovni34.cd
O1 - Hosts: 93.170.19.78 pracovni34.cd
O1 - Hosts: 93.170.19.78 www.pracovni35.cd
O1 - Hosts: 93.170.19.78 pracovni35.cd
O1 - Hosts: 93.170.19.78 www.pracovni36.cd
O1 - Hosts: 93.170.19.78 pracovni36.cd
O1 - Hosts: 93.170.19.78 www.pracovni37.cd
O1 - Hosts: 93.170.19.78 pracovni37.cd
O1 - Hosts: 93.170.19.78 www.pracovni38.cd
O1 - Hosts: 93.170.19.78 pracovni38.cd
O1 - Hosts: 93.170.19.78 www.pracovni39.cd
O1 - Hosts: 93.170.19.78 pracovni39.cd
O1 - Hosts: 93.170.19.78 www.pracovni40.cd
O1 - Hosts: 93.170.19.78 pracovni40.cd
O1 - Hosts: 93.170.19.78 www.pracovni41.cd
O1 - Hosts: 93.170.19.78 pracovni41.cd
O1 - Hosts: 93.170.19.78 www.pracovni42.cd
O1 - Hosts: 93.170.19.78 pracovni42.cd
O1 - Hosts: 93.170.19.78 www.pracovni43.cd
O1 - Hosts: 93.170.19.78 pracovni43.cd
O1 - Hosts: 93.170.19.78 www.pracovni44.cd
O1 - Hosts: 93.170.19.78 pracovni44.cd
O1 - Hosts: 93.170.19.78 www.pracovni45.cd
O1 - Hosts: 93.170.19.78 pracovni45.cd
O1 - Hosts: 93.170.19.78 www.pracovni46.cd
O1 - Hosts: 93.170.19.78 pracovni46.cd
O1 - Hosts: 93.170.19.78 www.pracovni47.cd
O2 - BHO: Increase performance and video formats for your HTML5 <video> - {326E768D-4182-46FD-9C16-1449A49795F4} - D:\programy\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll
O2 - BHO: PDF Architect Helper - {3A2D5EBA-F86D-4BD3-A177-019765996711} - C:\Program Files (x86)\PDF Architect\PDFIEHelper.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O2 - BHO: Logitech Flow Scroll - {E11DB59D-5008-42ff-9069-535843BC0BE1} - C:\Program Files\Logitech\FlowScroll\32-bit\LogiSmooth.dll
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [Google Update] "C:\Users\JamET\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKUS\S-1-5-21-1544630241-1377359107-3311767665-1011\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-1544630241-1377359107-3311767665-1011\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'UpdatusUser')
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: c:\progra~2\browse~1\sprote~1.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe
O23 - Service: Live Updater Service - Acer Incorporated - C:\Program Files\Acer\Acer Updater\UpdaterService.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: PandoraService (PanService) - Pandora.TV - C:\Program Files (x86)\PANDORA.TV\PanService\PandoraService.exe
O23 - Service: PDF Architect Helper Service - pdfforge GbR - C:\Program Files (x86)\PDF Architect\HelperService.exe
O23 - Service: PDF Architect Service - pdfforge GbR - C:\Program Files (x86)\PDF Architect\ConversionService.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: WDDMService - WDC - C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMService.exe
O23 - Service: WD File Management Engine (WDFME) - Unknown owner - C:\Program Files (x86)\Western Digital\WD Smartware\Front Parlor\WDFME\WDFME.exe
O23 - Service: WD File Management Shadow Engine (WDSC) - Unknown owner - C:\Program Files (x86)\Western Digital\WD Smartware\Front Parlor\WDSC.exe
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 13252 bytes

======Listing Processes======

\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
winlogon.exe
"C:\Windows\system32\nvvsvc.exe"
C:\Windows\system32\svchost.exe -k RPCSS
"c:\Program Files\Microsoft Security Client\MsMpEng.exe"
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files\Acer\Acer Updater\UpdaterService.exe"
"c:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\sqlservr.exe" -sSQLEXPRESS
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe"
"C:\Program Files (x86)\PANDORA.TV\PanService\PandoraService.exe"
"C:\Program Files (x86)\PDF Architect\HelperService.exe"
"C:\Program Files (x86)\PDF Architect\ConversionService.exe"
"c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMService.exe"
taskeng.exe {6D851B75-0E38-444E-87D7-E788FE2A1A84}
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files\Core Temp\Core Temp.exe"
"C:\Program Files (x86)\Western Digital\WD Smartware\Front Parlor\WDFME\WDFME.exe"
"D:\programy\Smart Defrag 2\SmartDefrag.exe" /STARTUP
"C:\Program Files (x86)\Western Digital\WD Smartware\Front Parlor\WDSC.exe"
"c:\Program Files\Microsoft Security Client\NisSrv.exe"
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-198f2397-d54d-4110-8954-397ce19b2183 -SystemEventPortName:HostProcess-6d6eff14-6a87-4dc4-a1cb-6bfcdba43474 -IoCancelEventPortName:HostProcess-de051131-3706-4f64-928a-80288437fd27 -NonStateChangingEventPortName:HostProcess-44a91321-2d66-4cc5-b5ed-8e96f1fc6db6 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:8554091f-63b1-4c78-8f4e-c471891f4d7e -DeviceGroupId:WpdFsGroup
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files\Logitech\FlowScroll\KhalScroll.exe"
"C:\Program Files\Logitech\SetPointP\SetPoint.exe" /launchGaming
"C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe"
"C:\Users\JamET\AppData\Local\Google\Update\GoogleUpdate.exe" /c
KHALMNPR.EXE /API
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe"
"C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="4768.0.2057683308\2002082290" --supports-dual-gpus=false --gpu-vendor-id=0x10de --gpu-device-id=0x0649 --gpu-driver-vendor=NVIDIA --gpu-driver-version=9.18.13.2018 --ignored=" --type=renderer " /prefetch:822062411
"C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_1/Reserved2/ForceCompositingMode/thread/InfiniteCache/No/InstantDummy/DummyPadding channel:stable/InstantExtended/Padding2 channel:stable/OmniboxHQPReplaceHUPProhibitTrumpingInlineableResult/Standard/OmniboxSearchSuggestTrialStarted2013Q1/10/OneClickSignIn/Standard/OverlappedReadImpact/OverlappedReadDisabled/Prerender/PrerenderEnabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_10/UMA-Uniformity-Trial-1-Percent/group_43/UMA-Uniformity-Trial-10-Percent/group_09/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-50-Percent/group_01/" --extension-process --renderer-print-preview --enable-threaded-compositing --channel="4768.3.68335221\1286387363" /prefetch:673131151
"C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_1/Reserved2/ForceCompositingMode/thread/InfiniteCache/No/InstantDummy/DummyPadding channel:stable/InstantExtended/Padding2 channel:stable/OmniboxHQPReplaceHUPProhibitTrumpingInlineableResult/Standard/OmniboxSearchSuggestTrialStarted2013Q1/10/OneClickSignIn/Standard/OverlappedReadImpact/OverlappedReadDisabled/Prerender/PrerenderEnabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_10/UMA-Uniformity-Trial-1-Percent/group_43/UMA-Uniformity-Trial-10-Percent/group_09/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-50-Percent/group_01/" --extension-process --renderer-print-preview --enable-threaded-compositing --channel="4768.4.824027125\1812719722" /prefetch:673131151
"C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_1/Reserved2/ForceCompositingMode/thread/InfiniteCache/No/InstantDummy/DummyPadding channel:stable/InstantExtended/Padding2 channel:stable/OmniboxHQPReplaceHUPProhibitTrumpingInlineableResult/Standard/OmniboxSearchSuggestTrialStarted2013Q1/10/OneClickSignIn/Standard/OverlappedReadImpact/OverlappedReadDisabled/Prerender/PrerenderEnabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_10/UMA-Uniformity-Trial-1-Percent/group_43/UMA-Uniformity-Trial-10-Percent/group_09/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-50-Percent/group_01/" --extension-process --renderer-print-preview --enable-threaded-compositing --channel="4768.5.1055021224\2094215193" /prefetch:673131151
"C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_1/Reserved2/ForceCompositingMode/thread/InfiniteCache/No/InstantDummy/DummyPadding channel:stable/InstantExtended/Padding2 channel:stable/OmniboxHQPReplaceHUPProhibitTrumpingInlineableResult/Standard/OmniboxSearchSuggestTrialStarted2013Q1/10/OneClickSignIn/Standard/OverlappedReadImpact/OverlappedReadDisabled/Prerender/PrerenderEnabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_10/UMA-Uniformity-Trial-1-Percent/group_43/UMA-Uniformity-Trial-10-Percent/group_09/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-50-Percent/group_01/" --renderer-print-preview --enable-threaded-compositing --channel="4768.18.1449559893\2020818275" /prefetch:673131151
"C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_1/Reserved2/ForceCompositingMode/thread/InfiniteCache/No/InstantDummy/DummyPadding channel:stable/InstantExtended/Padding2 channel:stable/OmniboxHQPReplaceHUPProhibitTrumpingInlineableResult/Standard/OmniboxSearchSuggestTrialStarted2013Q1/10/OneClickSignIn/Standard/OverlappedReadImpact/OverlappedReadDisabled/Prerender/PrerenderEnabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_10/UMA-Uniformity-Trial-1-Percent/group_43/UMA-Uniformity-Trial-10-Percent/group_09/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-50-Percent/group_01/" --renderer-print-preview --enable-threaded-compositing --channel="4768.19.926263623\463240091" /prefetch:673131151
"C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe" --type=plugin --plugin-path="C:\Users\JamET\AppData\Local\Facebook\Messenger\2.1.4814.0\npFbDesktopPlugin.dll" --lang=cs --channel="4768.20.1232077814\78376516" /prefetch:-390060480
"C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe" --type=ppapi --channel="4768.21.1747809224\265090476" --lang=cs --ignored=" --type=renderer " /prefetch:-632637702
C:\Windows\system32\sppsvc.exe
"C:\Users\JamET\Desktop\RSITx64.exe"
C:\Windows\system32\DllHost.exe /Processid:{F9717507-6651-4EDB-BFF7-AE615179BCCF}

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E11DB59D-5008-42ff-9069-535843BC0BE1}]
Logitech Flow Scroll - C:\Program Files\Logitech\FlowScroll\LogiSmooth.dll [2012-02-08 435992]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{326E768D-4182-46FD-9C16-1449A49795F4}]
DivX Plus Web Player HTML5 <video> - D:\programy\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll [2011-12-12 194432]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3A2D5EBA-F86D-4BD3-A177-019765996711}]
PDF Architect Helper - C:\Program Files (x86)\PDF Architect\PDFIEHelper.dll [2013-01-09 92232]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2013-03-06 461216]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2013-03-06 170912]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E11DB59D-5008-42ff-9069-535843BC0BE1}]
Logitech Flow Scroll - C:\Program Files\Logitech\FlowScroll\32-bit\LogiSmooth.dll [2012-02-08 367384]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
""= []
"LogiScrollApp"=C:\Program Files\Logitech\FlowScroll\KhalScroll.exe [2012-02-08 166680]
"EvtMgr6"=C:\Program Files\Logitech\SetPointP\SetPoint.exe [2011-10-07 1744152]
"MSC"=c:\Program Files\Microsoft Security Client\msseces.exe [2013-01-27 1281512]
"Logitech Download Assistant"=C:\Windows\System32\LogiLDA.dll [2010-11-03 1580368]
"Nvtmru"=C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe [2013-05-16 1012000]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Google Update"=C:\Users\JamET\AppData\Local\Google\Update\GoogleUpdate.exe [2012-03-26 116648]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Sync Loader]
C:\Program Files (x86)\ASUS\ASUS Sync\asusUPCTLoader.exe [2011-12-12 638976]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUSWebStorage]
C:\Program Files (x86)\ASUS\ASUS WebStorage\3.0.130.270\AsusWSPanel.exe [2012-01-18 740192]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2011-08-02 4910912]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DivXUpdate]
C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe [2011-07-29 1259376]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Facebook Update]
C:\Users\JamET\AppData\Local\Facebook\Update\FacebookUpdate.exe /c /nocrashserver []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Update]
C:\Users\JamET\AppData\Local\Google\Update\GoogleUpdate.exe [2012-03-26 116648]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GrooveMonitor]
C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Logitech Download Assistant]
C:\Windows\System32\LogiLDA.dll [2010-11-03 1580368]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Mobile Partner]
C:\Program Files (x86)\HiSuite\HiSuite.exe -s []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NokiaPCInternetAccess]
C:\Program Files (x86)\Nokia\PC Internet Access\NPCIA.exe /b []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\OscarEditor]
C:\Program Files (x86)\OSCAR Editor X7\OscarEditor.exe Minimum []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PC Suite Tray]
C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe -onlytray []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PCSpeedUp]
C:\Program Files (x86)\Zrychleni Pocitace\PCSUNotifier.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
C:\Program Files (x86)\QuickTime\QTTask.exe [2011-07-05 421888]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RtHDVCpl]
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2011-02-24 11780712]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Sidebar]
C:\Program Files (x86)\Windows Sidebar\sidebar.exe [2010-11-21 1174016]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Sony Ericsson PC Companion]
C:\Program Files (x86)\Sony Ericsson\Sony Ericsson PC Companion\PCCompanion.exe /Background []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SpywareTerminatorShield]
C:\Program Files (x86)\Spyware Terminator\SpywareTerminatorShield.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SpywareTerminatorUpdater]
C:\Program Files (x86)\Spyware Terminator\SpywareTerminatorUpdate.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SynTPEnh]
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2010-02-18 2057000]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\T-Mobile Communication Centre]
D:\programy\Web'n'walk Manager\Manager.exe -autorun []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Torrent2Exe]
C:\Users\JamET\AppData\Local\Temp\Torrent2Exe\T2E.exe --autorun []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WinampAgent]
D:\programy\Winamp\winampa.exe [2012-06-28 74752]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\XboxStat]
C:\Program Files\Microsoft Xbox 360 Accessories\XboxStat.exe [2009-09-30 825184]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Rainmeter.lnk]
D:\programy\RAINME~1\RAINME~1.EXE []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^WD Quick View.lnk]
C:\PROGRA~1\WESTER~1\WDSMAR~1\WDDMST~1.EXE [2011-08-01 4221840]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^JamET^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^AnthariaMU.lnk]
D:\hry\ANTHAR~1\ANTHAR~1.EXE []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^JamET^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Dropbox.lnk]
C:\Users\JamET\AppData\Roaming\Dropbox\bin\Dropbox.exe [2013-03-12 29106336]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^JamET^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Facebook Messenger.lnk]
C:\Users\JamET\AppData\Local\Facebook\MESSEN~1\214814~1.0\FACEBO~1.EXE [2013-03-07 248240]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-04-04 958576]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2012-07-03 252848]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\LBTWlgn]
c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll [2011-09-27 68376]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
"NoResolveSearch"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 months======

2013-06-06 06:05:03 ----D---- C:\_OTM
2013-06-05 19:16:11 ----A---- C:\AdwCleaner[S1].txt
2013-06-05 18:49:48 ----A---- C:\AdwCleaner[R1].txt
2013-06-05 10:03:17 ----A---- C:\Windows\system32\RtkAPO64.dll
2013-06-05 10:02:56 ----A---- C:\Windows\system32\FMAPO64.dll
2013-06-05 09:57:08 ----D---- C:\Program Files (x86)\Realtek
2013-06-05 09:56:34 ----HD---- C:\Program Files (x86)\Temp
2013-05-27 12:31:43 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2013-05-27 12:31:43 ----D---- C:\Program Files (x86)\AGEIA Technologies
2013-05-27 12:30:41 ----A---- C:\Windows\system32\nvshext.dll
2013-05-27 12:30:40 ----A---- C:\Windows\system32\nvvsvc.exe
2013-05-27 12:30:40 ----A---- C:\Windows\system32\nvsvcr.dll
2013-05-27 12:30:40 ----A---- C:\Windows\system32\nvsvc64.dll
2013-05-27 12:30:40 ----A---- C:\Windows\system32\nvmctray.dll
2013-05-27 12:30:40 ----A---- C:\Windows\system32\nvcpl.dll
2013-05-27 12:30:00 ----A---- C:\Windows\SYSWOW64\OpenCL.dll
2013-05-27 12:30:00 ----A---- C:\Windows\system32\OpenCL.dll
2013-05-27 12:29:42 ----D---- C:\ProgramData\NVIDIA Corporation
2013-05-27 12:27:29 ----A---- C:\Windows\system32\nvhdap64.dll
2013-05-27 12:27:29 ----A---- C:\Windows\system32\nvapo64v.dll
2013-05-27 12:27:29 ----A---- C:\Windows\system32\drivers\nvhda64v.sys
2013-05-27 12:27:28 ----A---- C:\Windows\SYSWOW64\nvwgf2um.dll
2013-05-27 12:27:28 ----A---- C:\Windows\SYSWOW64\nvopencl.dll
2013-05-27 12:27:28 ----A---- C:\Windows\SYSWOW64\nvoglv32.dll
2013-05-27 12:27:28 ----A---- C:\Windows\SYSWOW64\NvIFR.dll
2013-05-27 12:27:28 ----A---- C:\Windows\system32\nvwgf2umx.dll
2013-05-27 12:27:28 ----A---- C:\Windows\system32\nvopencl.dll
2013-05-27 12:27:28 ----A---- C:\Windows\system32\nvoglv64.dll
2013-05-27 12:27:28 ----A---- C:\Windows\system32\NvIFR64.dll
2013-05-27 12:27:28 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2013-05-27 12:27:27 ----A---- C:\Windows\SYSWOW64\NvFBC.dll
2013-05-27 12:27:27 ----A---- C:\Windows\SYSWOW64\nvd3dum.dll
2013-05-27 12:27:27 ----A---- C:\Windows\SYSWOW64\nvcuvid.dll
2013-05-27 12:27:27 ----A---- C:\Windows\SYSWOW64\nvcuvenc.dll
2013-05-27 12:27:27 ----A---- C:\Windows\SYSWOW64\nvcuda.dll
2013-05-27 12:27:27 ----A---- C:\Windows\system32\NvFBC64.dll
2013-05-27 12:27:27 ----A---- C:\Windows\system32\nvdispgenco6432018.dll
2013-05-27 12:27:27 ----A---- C:\Windows\system32\nvdispco6432018.dll
2013-05-27 12:27:27 ----A---- C:\Windows\system32\nvd3dumx.dll
2013-05-27 12:27:27 ----A---- C:\Windows\system32\nvcuvid.dll
2013-05-27 12:27:27 ----A---- C:\Windows\system32\nvcuvenc.dll
2013-05-27 12:27:27 ----A---- C:\Windows\system32\nvcuda.dll
2013-05-27 12:27:24 ----A---- C:\Windows\SYSWOW64\nvcompiler.dll
2013-05-27 12:27:24 ----A---- C:\Windows\SYSWOW64\nvapi.dll
2013-05-27 12:27:24 ----A---- C:\Windows\system32\nvcompiler.dll
2013-05-27 12:27:24 ----A---- C:\Windows\system32\nvapi64.dll
2013-05-17 15:10:35 ----D---- C:\Program Files\Microsoft Xbox 360 Accessories
2013-05-16 14:47:37 ----D---- C:\Users\JamET\AppData\Roaming\Theta
2013-05-15 23:01:11 ----A---- C:\Windows\SYSWOW64\ieui.dll
2013-05-15 23:01:11 ----A---- C:\Windows\system32\ieui.dll
2013-05-15 23:01:10 ----A---- C:\Windows\system32\ie4uinit.exe
2013-05-15 23:01:09 ----A---- C:\Windows\SYSWOW64\RegisterIEPKEYs.exe
2013-05-15 23:01:09 ----A---- C:\Windows\SYSWOW64\iesysprep.dll
2013-05-15 23:01:09 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2013-05-15 23:01:09 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2013-05-15 23:01:09 ----A---- C:\Windows\system32\iesetup.dll
2013-05-15 23:01:09 ----A---- C:\Windows\system32\iernonce.dll
2013-05-15 23:01:08 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2013-05-15 23:01:08 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2013-05-15 23:01:08 ----A---- C:\Windows\system32\msfeeds.dll
2013-05-15 23:01:08 ----A---- C:\Windows\system32\iesysprep.dll
2013-05-15 23:01:07 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2013-05-15 23:01:07 ----A---- C:\Windows\system32\iertutil.dll
2013-05-15 23:01:06 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2013-05-15 23:01:06 ----A---- C:\Windows\system32\urlmon.dll
2013-05-15 23:01:05 ----A---- C:\Windows\SYSWOW64\jscript.dll
2013-05-15 23:01:05 ----A---- C:\Windows\system32\jscript.dll
2013-05-15 23:01:04 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2013-05-15 23:01:04 ----A---- C:\Windows\system32\jscript9.dll
2013-05-15 23:01:02 ----A---- C:\Windows\SYSWOW64\wininet.dll
2013-05-15 23:01:02 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2013-05-15 23:01:02 ----A---- C:\Windows\system32\jsproxy.dll
2013-05-15 23:01:00 ----A---- C:\Windows\system32\wininet.dll
2013-05-15 23:00:58 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2013-05-15 23:00:56 ----A---- C:\Windows\system32\mshtml.dll
2013-05-15 23:00:54 ----A---- C:\Windows\system32\ieframe.dll
2013-05-15 23:00:53 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2013-05-15 22:02:17 ----A---- C:\Windows\system32\drivers\dxgmms1.sys
2013-05-15 22:02:17 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2013-05-15 22:02:17 ----A---- C:\Windows\system32\cdd.dll
2013-05-15 22:02:05 ----A---- C:\Windows\system32\shell32.dll
2013-05-15 22:02:03 ----A---- C:\Windows\system32\shdocvw.dll
2013-05-15 22:02:03 ----A---- C:\Windows\system32\authui.dll
2013-05-15 22:02:02 ----A---- C:\Windows\SYSWOW64\shell32.dll
2013-05-15 22:02:01 ----A---- C:\Windows\SYSWOW64\shdocvw.dll
2013-05-15 22:02:01 ----A---- C:\Windows\SYSWOW64\authui.dll
2013-05-15 22:02:01 ----A---- C:\Windows\system32\consent.exe
2013-05-15 22:02:01 ----A---- C:\Windows\system32\appinfo.dll
2013-05-15 22:01:50 ----A---- C:\Windows\system32\wwansvc.dll
2013-05-15 22:01:50 ----A---- C:\Windows\system32\wwanprotdim.dll
2013-05-15 22:01:48 ----A---- C:\Windows\system32\win32k.sys
2013-05-15 16:31:15 ----A---- C:\Windows\SYSWOW64\FlashPlayerInstaller.exe
2013-05-09 08:50:00 ----D---- C:\Program Files (x86)\AC3Filter

======List of files/folders modified in the last 1 months======

2013-06-06 06:09:59 ----D---- C:\Program Files\trend micro
2013-06-06 06:09:10 ----D---- C:\Windows\Temp
2013-06-06 06:05:34 ----D---- C:\Windows\system32\config
2013-06-06 06:05:29 ----D---- C:\Windows\tracing
2013-06-06 06:05:17 ----D---- C:\Windows\SysWOW64
2013-06-06 06:05:04 ----D---- C:\Windows\Tasks
2013-06-05 21:24:39 ----D---- C:\Users\JamET\AppData\Roaming\TS3Client
2013-06-05 19:24:52 ----D---- C:\Windows\System32
2013-06-05 19:24:52 ----D---- C:\Windows\inf
2013-06-05 19:24:52 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-06-05 19:20:14 ----D---- C:\Windows\Prefetch
2013-06-05 19:16:28 ----HD---- C:\ProgramData
2013-06-05 15:01:27 ----D---- C:\Windows\SoftwareDistribution
2013-06-05 15:00:40 ----D---- C:\Windows
2013-06-05 14:58:53 ----D---- C:\Users\JamET\AppData\Roaming\Winamp
2013-06-05 14:18:56 ----D---- C:\Users\JamET\AppData\Roaming\uTorrent
2013-06-05 11:32:37 ----SHD---- C:\System Volume Information
2013-06-05 11:21:21 ----D---- C:\Windows\system32\wfp
2013-06-05 11:21:16 ----D---- C:\Windows\system32\wbem
2013-06-05 11:20:09 ----D---- C:\Windows\SYSWOW64\RTCOM
2013-06-05 11:20:09 ----D---- C:\Windows\system32\DriverStore
2013-06-05 11:20:09 ----D---- C:\Windows\system32\catroot2
2013-06-05 11:20:05 ----D---- C:\Windows\system32\drivers
2013-06-05 11:20:05 ----D---- C:\Windows\system32\CodeIntegrity
2013-06-05 11:20:05 ----D---- C:\Windows\security
2013-06-05 11:20:04 ----D---- C:\Windows\AppCompat
2013-06-05 11:20:03 ----RD---- C:\Program Files
2013-06-05 11:20:03 ----D---- C:\Program Files\Realtek
2013-06-05 11:19:59 ----D---- C:\Windows\registration
2013-06-05 11:19:48 ----D---- C:\Windows\system32\catroot
2013-06-05 11:19:37 ----RD---- C:\Program Files (x86)
2013-06-01 18:25:28 ----D---- C:\Users\JamET\AppData\Roaming\eM Client
2013-05-28 11:16:58 ----SD---- C:\Users\JamET\AppData\Roaming\Microsoft
2013-05-27 12:54:43 ----SHD---- C:\Windows\Installer
2013-05-27 12:54:42 ----SHD---- C:\Config.Msi
2013-05-27 12:48:10 ----D---- C:\Windows\Logs
2013-05-27 12:33:41 ----RSD---- C:\Windows\assembly
2013-05-27 12:32:02 ----D---- C:\ProgramData\NVIDIA
2013-05-27 12:31:58 ----RD---- C:\Users
2013-05-27 12:31:52 ----D---- C:\Program Files\NVIDIA Corporation
2013-05-27 12:30:32 ----D---- C:\Windows\Help
2013-05-25 13:27:01 ----D---- C:\Users\JamET\AppData\Roaming\Skype
2013-05-19 13:59:49 ----D---- C:\Windows\rescache
2013-05-17 15:12:03 ----D---- C:\Windows\system32\Tasks
2013-05-16 13:44:18 ----D---- C:\Windows\Microsoft.NET
2013-05-16 11:02:05 ----D---- C:\Windows\winsxs
2013-05-16 10:58:37 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2013-05-16 10:53:27 ----D---- C:\Windows\SYSWOW64\en-US
2013-05-16 10:53:27 ----D---- C:\Windows\system32\en-US
2013-05-16 10:49:21 ----D---- C:\Windows\SYSWOW64\directx
2013-05-16 08:28:19 ----D---- C:\Windows\AppPatch
2013-05-16 08:28:17 ----D---- C:\Program Files\Internet Explorer
2013-05-16 08:28:17 ----D---- C:\Program Files (x86)\Internet Explorer
2013-05-15 23:10:17 ----D---- C:\ProgramData\Microsoft Help
2013-05-15 16:31:25 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2013-05-15 11:11:11 ----D---- C:\Windows\system32\NDF
2013-05-07 23:42:07 ----D---- C:\Windows\pss
2013-05-07 23:39:22 ----D---- C:\Users\JamET\AppData\Roaming\DAEMON Tools Lite

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2010-11-06 438808]
R0 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2013-01-20 230320]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R0 SmartDefragDriver;SmartDefragDriver; C:\Windows\System32\Drivers\SmartDefragDriver.sys [2010-11-26 17720]
R0 speedfan;speedfan; C:\Windows\SysWOW64\speedfan.sys [2011-03-18 29592]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2012-02-07 503352]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-21 514560]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2011-09-21 270912]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2013-01-20 130008]
R3 AgereSoftModem;Agere Systems Soft Modem; C:\Windows\system32\DRIVERS\agrsm64.sys [2009-06-10 1146880]
R3 ALSysIO;ALSysIO; \??\C:\Users\JamET\AppData\Local\Temp\ALSysIO64.sys []
R3 ATSwpWDF;AuthenTec TruePrint USB WBF WDF Driver; C:\Windows\System32\Drivers\ATSwpWDF.sys [2009-12-03 716872]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2011-02-24 2753512]
R3 LEqdUsb;Logitech SetPoint Unifying KMDF USB Filter; C:\Windows\system32\DRIVERS\LEqdUsb.Sys [2011-09-02 76056]
R3 LHidEqd;Logitech SetPoint Unifying KMDF HID Filter; C:\Windows\system32\DRIVERS\LHidEqd.Sys [2011-09-02 15128]
R3 LHidFilt;Logitech SetPoint KMDF HID Filter Driver; C:\Windows\system32\DRIVERS\LHidFilt.Sys [2011-09-02 66840]
R3 LMouFilt;Logitech SetPoint KMDF Mouse Filter Driver; C:\Windows\system32\DRIVERS\LMouFilt.Sys [2011-09-02 60696]
R3 Ltn_stk7070P;PCTV LITEON TT1260 based TV tuner device; C:\Windows\system32\DRIVERS\Ltn_stk7070P.sys [2009-05-22 625152]
R3 NETwNs64;___ Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows 7 - 64 Bit; C:\Windows\system32\DRIVERS\NETwNs64.sys [2010-11-09 8500736]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda64v.sys [2013-02-25 194848]
R3 seehcri;Sony Ericsson seehcri Device Driver; C:\Windows\system32\DRIVERS\seehcri.sys [2011-11-13 34032]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2010-02-18 316464]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S2 NEWDRIVER;NEWDRIVER; \??\C:\Windows\SysWow64\WinVDEdrv6.sys []
S3 BthEnum;Bluetooth Request Block Driver; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
S3 BthPan;Bluetooth Device (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
S3 BTHPORT;Bluetooth Port Driver; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 BTHUSB;Bluetooth Radio USB Driver; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
S3 dmvsc;dmvsc; C:\Windows\system32\drivers\dmvsc.sys [2010-11-21 71168]
S3 ggflt;SEMC USB Flash Driver Filter; C:\Windows\system32\DRIVERS\ggflt.sys [2011-11-13 13352]
S3 GGSAFERDriver;GGSAFER Driver; \??\C:\Program Files (x86)\Garena Classic\safedrv.sys []
S3 ggsemc;SEMC USB Flash Driver; C:\Windows\system32\DRIVERS\ggsemc.sys [2011-11-13 27176]
S3 HTCAND64;HTC Device Driver; C:\Windows\System32\Drivers\ANDROIDUSB.sys [2009-11-02 33736]
S3 JMCR;JMCR; C:\Windows\system32\DRIVERS\jmcr.sys [2008-04-11 125328]
S3 LUsbFilt;Logitech SetPoint KMDF USB Filter; C:\Windows\System32\Drivers\LUsbFilt.Sys [2011-09-02 42776]
S3 massfilter;Mass Storage Filter Driver; C:\Windows\system32\drivers\massfilter.sys []
S3 NANMp50;NANMp50 NDIS Protocol Driver; C:\Windows\System32\Drivers\NANMp50.sys [2010-03-25 46776]
S3 NANSp50;NANSp50 NDIS Protocol Driver; C:\Windows\System32\Drivers\NANSp50.sys [2010-03-25 45752]
S3 netw5v64;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 64 Bit; C:\Windows\system32\DRIVERS\netw5v64.sys [2009-06-10 5434368]
S3 NSNDIS5;NSNDIS5 NDIS Protocol Driver; \??\C:\Windows\syswow64\NSNDIS5.SYS []
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfdx64.sys [2008-08-28 25600]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-21 165888]
S3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-21 6656]
S3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2010-11-21 109056]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-21 34688]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-21 59392]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2010-11-21 31232]
S3 usb_rndisx;USB RNDIS Adapter; C:\Windows\system32\drivers\usb8023x.sys [2013-02-12 19968]
S3 USBAAPL64;Apple Mobile USB Driver; C:\Windows\System32\Drivers\usbaapl64.sys [2011-05-10 51712]
S3 usbscan;USB Scanner Driver; C:\Windows\system32\DRIVERS\usbscan.sys [2009-07-14 41984]
S3 usbser;USB Modem Driver; C:\Windows\system32\drivers\usbser.sys [2010-11-21 32768]
S3 vmbus;vmbus; C:\Windows\system32\drivers\vmbus.sys [2010-11-21 199552]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-21 21760]
S4 RsFx0103;RsFx0103 Driver; C:\Windows\system32\DRIVERS\RsFx0103.sys [2009-03-30 311656]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-05-10 65640]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 Live Updater Service;Live Updater Service; C:\Program Files\Acer\Acer Updater\UpdaterService.exe [2012-04-05 255376]
R2 MsMpSvc;Microsoft Antimalware Service; c:\Program Files\Microsoft Security Client\MsMpEng.exe [2013-01-27 22056]
R2 MSSQL$SQLEXPRESS;SQL Server (SQLEXPRESS); c:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\sqlservr.exe [2009-03-30 57617752]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2013-05-12 884512]
R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2013-05-16 1826592]
R2 PanService;PandoraService; C:\Program Files (x86)\PANDORA.TV\PanService\PandoraService.exe [2011-12-21 578264]
R2 PDF Architect Helper Service;PDF Architect Helper Service; C:\Program Files (x86)\PDF Architect\HelperService.exe [2013-01-09 1324104]
R2 PDF Architect Service;PDF Architect Service; C:\Program Files (x86)\PDF Architect\ConversionService.exe [2013-01-09 795208]
R2 SQLWriter;SQL Server VSS Writer; c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe [2008-07-10 157720]
R3 NisSrv;@c:\Program Files\Microsoft Security Client\MpAsDesc.dll,-243; c:\Program Files\Microsoft Security Client\NisSrv.exe [2013-01-27 379360]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-01-08 161536]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-05-15 256904]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2010-03-18 44376]
S3 gusvc;Google Updater Service; C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe [2011-05-10 136120]
S3 LBTServ;Logitech Bluetooth Service; C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe [2011-09-27 359192]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2012-06-01 113120]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2013-03-29 543656]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2011-09-16 1255736]
S4 Apple Mobile Device;Apple Mobile Device; C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2011-05-25 37664]
S4 Bonjour Service;Bonjour Service; C:\Program Files (x86)\Bonjour\mDNSResponder.exe [2011-07-12 387944]
S4 MSSQLServerADHelper100;SQL Active Directory Helper Service; c:\Program Files\Microsoft SQL Server\100\Shared\SQLADHLP.EXE [2009-07-22 61976]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 SplashtopRemoteService;Splashtop® Remote Service; C:\Program Files (x86)\Splashtop\Splashtop Remote\Server\SRService.exe [2012-02-09 531328]
S4 SQLAgent$SQLEXPRESS;SQL Server Agent (SQLEXPRESS); c:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE [2009-03-30 427880]
S4 SQLBrowser;SQL Server Browser; c:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe [2009-03-30 254808]
S4 SSUService;Splashtop Software Updater Service; C:\Program Files (x86)\Splashtop\Splashtop Software Updater\SSUService.exe [2011-11-10 370504]
S4 StarWindServiceAE;StarWind AE Service; D:\programy\Alcohol 120\StarWind\StarWindServiceAE.exe [2009-12-23 370688]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119526
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: zamrznutí ntb

#10 Příspěvek od Rudy »

Ještě jednou spusťte OTM tímto skriptem:
:files
C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-1544630241-1377359107-3311767665-1001Core.job
C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-1544630241-1377359107-3311767665-1001UA.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1544630241-1377359107-3311767665-1001Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1544630241-1377359107-3311767665-1001UA.job
C:\Users\JamET\AppData\Local\Facebook\Update

:reg
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Facebook Update]

:commands
[Purity]
[Emptytemp]
[Emptyflash]
[ResetHosts]
a před skenem vypněte antivir. OTM před tím totiž nemazal.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

jamet
Návštěvník
Návštěvník
Příspěvky: 116
Registrován: 10 pro 2008 21:08

Re: zamrznutí ntb

#11 Příspěvek od jamet »

Zdravím Vás i dnes. Znovu děkuji za Váš čas i pomoc, zde přikládám log.

All processes killed
========== FILES ==========
File/Folder C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-1544630241-1377359107-3311767665-1001Core.job not found.
File/Folder C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-1544630241-1377359107-3311767665-1001UA.job not found.
File/Folder C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1544630241-1377359107-3311767665-1001Core.job not found.
File/Folder C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1544630241-1377359107-3311767665-1001UA.job not found.
File/Folder C:\Users\JamET\AppData\Local\Facebook\Update not found.
========== REGISTRY ==========
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Facebook Update\ not found.
========== COMMANDS ==========

[EMPTYTEMP]

User: All Users

User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 0 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 0 bytes

User: JamET
->Temp folder emptied: 2581 bytes
->Temporary Internet Files folder emptied: 128 bytes
->Java cache emptied: 0 bytes
->FireFox cache emptied: 0 bytes
->Google Chrome cache emptied: 7973547 bytes
->Opera cache emptied: 0 bytes
->Flash cache emptied: 0 bytes

User: Public

User: UpdatusUser

User: UpdatusUser.JamET-PC
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 0 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 13104 bytes
%systemroot%\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 0 bytes
%systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 0 bytes
RecycleBin emptied: 0 bytes

Total Files Cleaned = 8,00 mb


[EMPTYFLASH]

User: All Users

User: Default
->Flash cache emptied: 0 bytes

User: Default User
->Flash cache emptied: 0 bytes

User: JamET
->Flash cache emptied: 0 bytes

User: Public

User: UpdatusUser

User: UpdatusUser.JamET-PC
->Flash cache emptied: 0 bytes

Total Flash Files Cleaned = 0,00 mb

C:\Windows\System32\drivers\etc\Hosts moved successfully.
HOSTS file reset successfully

OTM by OldTimer - Version 3.1.21.0 log created on 06062013_173045

Files moved on Reboot...
C:\Users\JamET\AppData\Local\Temp\FXSAPIDebugLogFile.txt moved successfully.
C:\Users\JamET\AppData\Local\Microsoft\Windows\Temporary Internet Files\counters.dat moved successfully.

Registry entries deleted on Reboot...

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119526
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: zamrznutí ntb

#12 Příspěvek od Rudy »

Dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

jamet
Návštěvník
Návštěvník
Příspěvky: 116
Registrován: 10 pro 2008 21:08

Re: zamrznutí ntb

#13 Příspěvek od jamet »

Zde,prosím.

Logfile of random's system information tool 1.08 (written by random/random)
Run by JamET at 2013-06-06 17:50:28
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 61 GB (42%) free of 146 GB
Total RAM: 3067 MB (53% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 17:50:32, on 6.6.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v10.0 (10.00.9200.16576)
Boot mode: Normal

Running processes:
D:\programy\Smart Defrag 2\SmartDefrag.exe
C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe
C:\Users\JamET\AppData\Local\Google\Update\GoogleUpdate.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe
C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\JamET\AppData\Local\TeamSpeak 3 Client\ts3client_win32.exe
C:\Program Files (x86)\Internet Explorer\IELowutil.exe
C:\Program Files\trend micro\JamET.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
F2 - REG:system.ini: UserInit=userinit.exe
O1 - Hosts: ˙ţ127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: Increase performance and video formats for your HTML5 <video> - {326E768D-4182-46FD-9C16-1449A49795F4} - D:\programy\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll
O2 - BHO: PDF Architect Helper - {3A2D5EBA-F86D-4BD3-A177-019765996711} - C:\Program Files (x86)\PDF Architect\PDFIEHelper.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O2 - BHO: Logitech Flow Scroll - {E11DB59D-5008-42ff-9069-535843BC0BE1} - C:\Program Files\Logitech\FlowScroll\32-bit\LogiSmooth.dll
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [Google Update] "C:\Users\JamET\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKUS\S-1-5-21-1544630241-1377359107-3311767665-1011\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-1544630241-1377359107-3311767665-1011\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'UpdatusUser')
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: c:\progra~2\browse~1\sprote~1.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe
O23 - Service: Live Updater Service - Acer Incorporated - C:\Program Files\Acer\Acer Updater\UpdaterService.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: PandoraService (PanService) - Pandora.TV - C:\Program Files (x86)\PANDORA.TV\PanService\PandoraService.exe
O23 - Service: PDF Architect Helper Service - pdfforge GbR - C:\Program Files (x86)\PDF Architect\HelperService.exe
O23 - Service: PDF Architect Service - pdfforge GbR - C:\Program Files (x86)\PDF Architect\ConversionService.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: WDDMService - WDC - C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMService.exe
O23 - Service: WD File Management Engine (WDFME) - Unknown owner - C:\Program Files (x86)\Western Digital\WD Smartware\Front Parlor\WDFME\WDFME.exe
O23 - Service: WD File Management Shadow Engine (WDSC) - Unknown owner - C:\Program Files (x86)\Western Digital\WD Smartware\Front Parlor\WDSC.exe
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 9313 bytes

======Listing Processes======

\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
"C:\Windows\system32\nvvsvc.exe"
C:\Windows\system32\svchost.exe -k RPCSS
"c:\Program Files\Microsoft Security Client\MsMpEng.exe"
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
taskeng.exe {E1530707-AB72-44FD-8CF3-68038D25EF1C}
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
"C:\Program Files\Core Temp\Core Temp.exe"
"D:\programy\Smart Defrag 2\SmartDefrag.exe" /STARTUP
C:\Windows\Explorer.EXE
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files\Acer\Acer Updater\UpdaterService.exe"
"c:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\sqlservr.exe" -sSQLEXPRESS
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe"
"C:\Program Files (x86)\PANDORA.TV\PanService\PandoraService.exe"
"C:\Program Files (x86)\PDF Architect\HelperService.exe"
"C:\Program Files (x86)\PDF Architect\ConversionService.exe"
"c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMService.exe"
"C:\Program Files (x86)\Western Digital\WD Smartware\Front Parlor\WDFME\WDFME.exe"
"C:\Program Files (x86)\Western Digital\WD Smartware\Front Parlor\WDSC.exe"
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"c:\Program Files\Microsoft Security Client\NisSrv.exe"
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-a933929d-c3ef-42c3-9750-04b26abbd2a9 -SystemEventPortName:HostProcess-ba2172e8-63fe-48a9-8388-30671ecc67dc -IoCancelEventPortName:HostProcess-ed2a3d50-d61b-4797-9fb6-c0b4a6c33f9a -NonStateChangingEventPortName:HostProcess-37fa58aa-6936-4cad-8d5a-cfe85af74131 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:ec1f5edd-b059-43c9-aec7-de6a3eeb1edd -DeviceGroupId:WpdFsGroup
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files\Logitech\FlowScroll\KhalScroll.exe"
"C:\Program Files\Logitech\SetPointP\SetPoint.exe" /launchGaming
"C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe"
"C:\Users\JamET\AppData\Local\Google\Update\GoogleUpdate.exe" /c
KHALMNPR.EXE /API
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="4568.0.451032322\437476048" --supports-dual-gpus=false --gpu-vendor-id=0x10de --gpu-device-id=0x0649 --gpu-driver-vendor=NVIDIA --gpu-driver-version=9.18.13.2018 --ignored=" --type=renderer " /prefetch:822062411
"C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_1/Reserved2/ForceCompositingMode/thread/InfiniteCache/No/InstantDummy/DummyPadding channel:stable/InstantExtended/Padding2 channel:stable/OmniboxHQPReplaceHUPProhibitTrumpingInlineableResult/Standard/OmniboxSearchSuggestTrialStarted2013Q1/10/OneClickSignIn/Standard/OverlappedReadImpact/OverlappedReadEnabled/Prerender/PrerenderEnabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_09/UMA-Uniformity-Trial-1-Percent/group_43/UMA-Uniformity-Trial-10-Percent/group_09/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-50-Percent/group_01/" --extension-process --renderer-print-preview --enable-threaded-compositing --channel="4568.3.1229713199\68844188" /prefetch:673131151
"C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_1/Reserved2/ForceCompositingMode/thread/InfiniteCache/No/InstantDummy/DummyPadding channel:stable/InstantExtended/Padding2 channel:stable/OmniboxHQPReplaceHUPProhibitTrumpingInlineableResult/Standard/OmniboxSearchSuggestTrialStarted2013Q1/10/OneClickSignIn/Standard/OverlappedReadImpact/OverlappedReadEnabled/Prerender/PrerenderEnabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_09/UMA-Uniformity-Trial-1-Percent/group_43/UMA-Uniformity-Trial-10-Percent/group_09/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-50-Percent/group_01/" --extension-process --renderer-print-preview --enable-threaded-compositing --channel="4568.4.15613214\1489342735" /prefetch:673131151
"C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_1/Reserved2/ForceCompositingMode/thread/InfiniteCache/No/InstantDummy/DummyPadding channel:stable/InstantExtended/Padding2 channel:stable/OmniboxHQPReplaceHUPProhibitTrumpingInlineableResult/Standard/OmniboxSearchSuggestTrialStarted2013Q1/10/OneClickSignIn/Standard/OverlappedReadImpact/OverlappedReadEnabled/Prerender/PrerenderEnabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_09/UMA-Uniformity-Trial-1-Percent/group_43/UMA-Uniformity-Trial-10-Percent/group_09/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-50-Percent/group_01/" --extension-process --renderer-print-preview --enable-threaded-compositing --channel="4568.5.689498716\1685542558" /prefetch:673131151
"C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_1/Reserved2/ForceCompositingMode/thread/InfiniteCache/No/InstantDummy/DummyPadding channel:stable/InstantExtended/Padding2 channel:stable/OmniboxHQPReplaceHUPProhibitTrumpingInlineableResult/Standard/OmniboxSearchSuggestTrialStarted2013Q1/10/OneClickSignIn/Standard/OverlappedReadImpact/OverlappedReadEnabled/Prerender/PrerenderEnabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_09/UMA-Uniformity-Trial-1-Percent/group_43/UMA-Uniformity-Trial-10-Percent/group_09/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-50-Percent/group_01/" --renderer-print-preview --enable-threaded-compositing --channel="4568.6.1115409369\1815900070" /prefetch:673131151
"C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_1/Reserved2/ForceCompositingMode/thread/InfiniteCache/No/InstantDummy/DummyPadding channel:stable/InstantExtended/Padding2 channel:stable/OmniboxHQPReplaceHUPProhibitTrumpingInlineableResult/Standard/OmniboxSearchSuggestTrialStarted2013Q1/10/OneClickSignIn/Standard/OverlappedReadImpact/OverlappedReadEnabled/Prerender/PrerenderEnabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_09/UMA-Uniformity-Trial-1-Percent/group_43/UMA-Uniformity-Trial-10-Percent/group_09/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-50-Percent/group_01/" --renderer-print-preview --enable-threaded-compositing --channel="4568.7.2039660781\1644604189" /prefetch:673131151
"C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe" --type=plugin --plugin-path="C:\Users\JamET\AppData\Local\Facebook\Messenger\2.1.4814.0\npFbDesktopPlugin.dll" --lang=cs --channel="4568.20.2068595400\1173089561" /prefetch:-390060480
"C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe" --type=ppapi --channel="4568.21.850194366\2133221764" --lang=cs --ignored=" --type=renderer " /prefetch:-632637702
"C:\Windows\system32\wuauclt.exe"
"C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe" -auto -critical
C:\Windows\system32\DllHost.exe /Processid:{F9717507-6651-4EDB-BFF7-AE615179BCCF}
"C:\Users\JamET\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_1/Reserved2/ForceCompositingMode/thread/InfiniteCache/No/InstantDummy/DummyPadding channel:stable/InstantExtended/Padding2 channel:stable/OmniboxHQPReplaceHUPProhibitTrumpingInlineableResult/Standard/OmniboxSearchSuggestTrialStarted2013Q1/10/OneClickSignIn/Standard/OverlappedReadImpact/OverlappedReadEnabled/Prerender/PrerenderEnabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_09/UMA-Uniformity-Trial-1-Percent/group_43/UMA-Uniformity-Trial-10-Percent/group_09/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-50-Percent/group_01/" --renderer-print-preview --instant-process --enable-threaded-compositing --channel="4568.23.626764436\908000627" /prefetch:673131151
"C:\Users\JamET\AppData\Local\TeamSpeak 3 Client\ts3client_win32.exe"
"C:\Program Files (x86)\Internet Explorer\IELowutil.exe" -embedding
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Users\JamET\Desktop\RSITx64.exe"

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E11DB59D-5008-42ff-9069-535843BC0BE1}]
Logitech Flow Scroll - C:\Program Files\Logitech\FlowScroll\LogiSmooth.dll [2012-02-08 435992]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{326E768D-4182-46FD-9C16-1449A49795F4}]
DivX Plus Web Player HTML5 <video> - D:\programy\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll [2011-12-12 194432]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3A2D5EBA-F86D-4BD3-A177-019765996711}]
PDF Architect Helper - C:\Program Files (x86)\PDF Architect\PDFIEHelper.dll [2013-01-09 92232]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2013-03-06 461216]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2013-03-06 170912]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E11DB59D-5008-42ff-9069-535843BC0BE1}]
Logitech Flow Scroll - C:\Program Files\Logitech\FlowScroll\32-bit\LogiSmooth.dll [2012-02-08 367384]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
""= []
"LogiScrollApp"=C:\Program Files\Logitech\FlowScroll\KhalScroll.exe [2012-02-08 166680]
"EvtMgr6"=C:\Program Files\Logitech\SetPointP\SetPoint.exe [2011-10-07 1744152]
"MSC"=c:\Program Files\Microsoft Security Client\msseces.exe [2013-01-27 1281512]
"Logitech Download Assistant"=C:\Windows\System32\LogiLDA.dll [2010-11-03 1580368]
"Nvtmru"=C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe [2013-05-16 1012000]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Google Update"=C:\Users\JamET\AppData\Local\Google\Update\GoogleUpdate.exe [2012-03-26 116648]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Sync Loader]
C:\Program Files (x86)\ASUS\ASUS Sync\asusUPCTLoader.exe [2011-12-12 638976]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUSWebStorage]
C:\Program Files (x86)\ASUS\ASUS WebStorage\3.0.130.270\AsusWSPanel.exe [2012-01-18 740192]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2011-08-02 4910912]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DivXUpdate]
C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe [2011-07-29 1259376]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Facebook Update]
C:\Users\JamET\AppData\Local\Facebook\Update\FacebookUpdate.exe /c /nocrashserver []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Update]
C:\Users\JamET\AppData\Local\Google\Update\GoogleUpdate.exe [2012-03-26 116648]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GrooveMonitor]
C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Logitech Download Assistant]
C:\Windows\System32\LogiLDA.dll [2010-11-03 1580368]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Mobile Partner]
C:\Program Files (x86)\HiSuite\HiSuite.exe -s []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NokiaPCInternetAccess]
C:\Program Files (x86)\Nokia\PC Internet Access\NPCIA.exe /b []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\OscarEditor]
C:\Program Files (x86)\OSCAR Editor X7\OscarEditor.exe Minimum []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PC Suite Tray]
C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe -onlytray []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PCSpeedUp]
C:\Program Files (x86)\Zrychleni Pocitace\PCSUNotifier.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
C:\Program Files (x86)\QuickTime\QTTask.exe [2011-07-05 421888]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RtHDVCpl]
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2011-02-24 11780712]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Sidebar]
C:\Program Files (x86)\Windows Sidebar\sidebar.exe [2010-11-21 1174016]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Sony Ericsson PC Companion]
C:\Program Files (x86)\Sony Ericsson\Sony Ericsson PC Companion\PCCompanion.exe /Background []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SpywareTerminatorShield]
C:\Program Files (x86)\Spyware Terminator\SpywareTerminatorShield.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SpywareTerminatorUpdater]
C:\Program Files (x86)\Spyware Terminator\SpywareTerminatorUpdate.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SynTPEnh]
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2010-02-18 2057000]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\T-Mobile Communication Centre]
D:\programy\Web'n'walk Manager\Manager.exe -autorun []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Torrent2Exe]
C:\Users\JamET\AppData\Local\Temp\Torrent2Exe\T2E.exe --autorun []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WinampAgent]
D:\programy\Winamp\winampa.exe [2012-06-28 74752]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\XboxStat]
C:\Program Files\Microsoft Xbox 360 Accessories\XboxStat.exe [2009-09-30 825184]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Rainmeter.lnk]
D:\programy\RAINME~1\RAINME~1.EXE []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^WD Quick View.lnk]
C:\PROGRA~1\WESTER~1\WDSMAR~1\WDDMST~1.EXE [2011-08-01 4221840]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^JamET^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^AnthariaMU.lnk]
D:\hry\ANTHAR~1\ANTHAR~1.EXE []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^JamET^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Dropbox.lnk]
C:\Users\JamET\AppData\Roaming\Dropbox\bin\Dropbox.exe [2013-03-12 29106336]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^JamET^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Facebook Messenger.lnk]
C:\Users\JamET\AppData\Local\Facebook\MESSEN~1\214814~1.0\FACEBO~1.EXE [2013-03-07 248240]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-04-04 958576]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2012-07-03 252848]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\LBTWlgn]
c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll [2011-09-27 68376]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
"NoResolveSearch"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 months======

2013-06-06 06:05:03 ----D---- C:\_OTM
2013-06-05 19:16:11 ----A---- C:\AdwCleaner[S1].txt
2013-06-05 18:49:48 ----A---- C:\AdwCleaner[R1].txt
2013-06-05 10:03:17 ----A---- C:\Windows\system32\RtkAPO64.dll
2013-06-05 10:02:56 ----A---- C:\Windows\system32\FMAPO64.dll
2013-06-05 09:57:08 ----D---- C:\Program Files (x86)\Realtek
2013-06-05 09:56:34 ----HD---- C:\Program Files (x86)\Temp
2013-05-27 12:31:43 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2013-05-27 12:31:43 ----D---- C:\Program Files (x86)\AGEIA Technologies
2013-05-27 12:30:41 ----A---- C:\Windows\system32\nvshext.dll
2013-05-27 12:30:40 ----A---- C:\Windows\system32\nvvsvc.exe
2013-05-27 12:30:40 ----A---- C:\Windows\system32\nvsvcr.dll
2013-05-27 12:30:40 ----A---- C:\Windows\system32\nvsvc64.dll
2013-05-27 12:30:40 ----A---- C:\Windows\system32\nvmctray.dll
2013-05-27 12:30:40 ----A---- C:\Windows\system32\nvcpl.dll
2013-05-27 12:30:00 ----A---- C:\Windows\SYSWOW64\OpenCL.dll
2013-05-27 12:30:00 ----A---- C:\Windows\system32\OpenCL.dll
2013-05-27 12:29:42 ----D---- C:\ProgramData\NVIDIA Corporation
2013-05-27 12:27:29 ----A---- C:\Windows\system32\nvhdap64.dll
2013-05-27 12:27:29 ----A---- C:\Windows\system32\nvapo64v.dll
2013-05-27 12:27:29 ----A---- C:\Windows\system32\drivers\nvhda64v.sys
2013-05-27 12:27:28 ----A---- C:\Windows\SYSWOW64\nvwgf2um.dll
2013-05-27 12:27:28 ----A---- C:\Windows\SYSWOW64\nvopencl.dll
2013-05-27 12:27:28 ----A---- C:\Windows\SYSWOW64\nvoglv32.dll
2013-05-27 12:27:28 ----A---- C:\Windows\SYSWOW64\NvIFR.dll
2013-05-27 12:27:28 ----A---- C:\Windows\system32\nvwgf2umx.dll
2013-05-27 12:27:28 ----A---- C:\Windows\system32\nvopencl.dll
2013-05-27 12:27:28 ----A---- C:\Windows\system32\nvoglv64.dll
2013-05-27 12:27:28 ----A---- C:\Windows\system32\NvIFR64.dll
2013-05-27 12:27:28 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2013-05-27 12:27:27 ----A---- C:\Windows\SYSWOW64\NvFBC.dll
2013-05-27 12:27:27 ----A---- C:\Windows\SYSWOW64\nvd3dum.dll
2013-05-27 12:27:27 ----A---- C:\Windows\SYSWOW64\nvcuvid.dll
2013-05-27 12:27:27 ----A---- C:\Windows\SYSWOW64\nvcuvenc.dll
2013-05-27 12:27:27 ----A---- C:\Windows\SYSWOW64\nvcuda.dll
2013-05-27 12:27:27 ----A---- C:\Windows\system32\NvFBC64.dll
2013-05-27 12:27:27 ----A---- C:\Windows\system32\nvdispgenco6432018.dll
2013-05-27 12:27:27 ----A---- C:\Windows\system32\nvdispco6432018.dll
2013-05-27 12:27:27 ----A---- C:\Windows\system32\nvd3dumx.dll
2013-05-27 12:27:27 ----A---- C:\Windows\system32\nvcuvid.dll
2013-05-27 12:27:27 ----A---- C:\Windows\system32\nvcuvenc.dll
2013-05-27 12:27:27 ----A---- C:\Windows\system32\nvcuda.dll
2013-05-27 12:27:24 ----A---- C:\Windows\SYSWOW64\nvcompiler.dll
2013-05-27 12:27:24 ----A---- C:\Windows\SYSWOW64\nvapi.dll
2013-05-27 12:27:24 ----A---- C:\Windows\system32\nvcompiler.dll
2013-05-27 12:27:24 ----A---- C:\Windows\system32\nvapi64.dll
2013-05-17 15:10:35 ----D---- C:\Program Files\Microsoft Xbox 360 Accessories
2013-05-16 14:47:37 ----D---- C:\Users\JamET\AppData\Roaming\Theta
2013-05-15 23:01:11 ----A---- C:\Windows\SYSWOW64\ieui.dll
2013-05-15 23:01:11 ----A---- C:\Windows\system32\ieui.dll
2013-05-15 23:01:10 ----A---- C:\Windows\system32\ie4uinit.exe
2013-05-15 23:01:09 ----A---- C:\Windows\SYSWOW64\RegisterIEPKEYs.exe
2013-05-15 23:01:09 ----A---- C:\Windows\SYSWOW64\iesysprep.dll
2013-05-15 23:01:09 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2013-05-15 23:01:09 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2013-05-15 23:01:09 ----A---- C:\Windows\system32\iesetup.dll
2013-05-15 23:01:09 ----A---- C:\Windows\system32\iernonce.dll
2013-05-15 23:01:08 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2013-05-15 23:01:08 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2013-05-15 23:01:08 ----A---- C:\Windows\system32\msfeeds.dll
2013-05-15 23:01:08 ----A---- C:\Windows\system32\iesysprep.dll
2013-05-15 23:01:07 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2013-05-15 23:01:07 ----A---- C:\Windows\system32\iertutil.dll
2013-05-15 23:01:06 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2013-05-15 23:01:06 ----A---- C:\Windows\system32\urlmon.dll
2013-05-15 23:01:05 ----A---- C:\Windows\SYSWOW64\jscript.dll
2013-05-15 23:01:05 ----A---- C:\Windows\system32\jscript.dll
2013-05-15 23:01:04 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2013-05-15 23:01:04 ----A---- C:\Windows\system32\jscript9.dll
2013-05-15 23:01:02 ----A---- C:\Windows\SYSWOW64\wininet.dll
2013-05-15 23:01:02 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2013-05-15 23:01:02 ----A---- C:\Windows\system32\jsproxy.dll
2013-05-15 23:01:00 ----A---- C:\Windows\system32\wininet.dll
2013-05-15 23:00:58 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2013-05-15 23:00:56 ----A---- C:\Windows\system32\mshtml.dll
2013-05-15 23:00:54 ----A---- C:\Windows\system32\ieframe.dll
2013-05-15 23:00:53 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2013-05-15 22:02:17 ----A---- C:\Windows\system32\drivers\dxgmms1.sys
2013-05-15 22:02:17 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2013-05-15 22:02:17 ----A---- C:\Windows\system32\cdd.dll
2013-05-15 22:02:05 ----A---- C:\Windows\system32\shell32.dll
2013-05-15 22:02:03 ----A---- C:\Windows\system32\shdocvw.dll
2013-05-15 22:02:03 ----A---- C:\Windows\system32\authui.dll
2013-05-15 22:02:02 ----A---- C:\Windows\SYSWOW64\shell32.dll
2013-05-15 22:02:01 ----A---- C:\Windows\SYSWOW64\shdocvw.dll
2013-05-15 22:02:01 ----A---- C:\Windows\SYSWOW64\authui.dll
2013-05-15 22:02:01 ----A---- C:\Windows\system32\consent.exe
2013-05-15 22:02:01 ----A---- C:\Windows\system32\appinfo.dll
2013-05-15 22:01:50 ----A---- C:\Windows\system32\wwansvc.dll
2013-05-15 22:01:50 ----A---- C:\Windows\system32\wwanprotdim.dll
2013-05-15 22:01:48 ----A---- C:\Windows\system32\win32k.sys
2013-05-15 16:31:15 ----A---- C:\Windows\SYSWOW64\FlashPlayerInstaller.exe
2013-05-09 08:50:00 ----D---- C:\Program Files (x86)\AC3Filter

======List of files/folders modified in the last 1 months======

2013-06-06 17:50:29 ----D---- C:\Program Files\trend micro
2013-06-06 17:49:48 ----D---- C:\Users\JamET\AppData\Roaming\TS3Client
2013-06-06 17:48:56 ----D---- C:\Users\JamET\AppData\Roaming\Skype
2013-06-06 17:33:13 ----D---- C:\Windows\Temp
2013-06-06 17:31:17 ----D---- C:\Windows\system32\config
2013-06-06 17:30:52 ----D---- C:\Windows\system32\drivers\etc
2013-06-06 06:05:29 ----D---- C:\Windows\tracing
2013-06-06 06:05:17 ----D---- C:\Windows\SysWOW64
2013-06-06 06:05:04 ----D---- C:\Windows\Tasks
2013-06-05 19:24:52 ----D---- C:\Windows\System32
2013-06-05 19:24:52 ----D---- C:\Windows\inf
2013-06-05 19:24:52 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-06-05 19:20:14 ----D---- C:\Windows\Prefetch
2013-06-05 19:16:28 ----HD---- C:\ProgramData
2013-06-05 15:01:27 ----D---- C:\Windows\SoftwareDistribution
2013-06-05 15:00:40 ----D---- C:\Windows
2013-06-05 14:58:53 ----D---- C:\Users\JamET\AppData\Roaming\Winamp
2013-06-05 14:18:56 ----D---- C:\Users\JamET\AppData\Roaming\uTorrent
2013-06-05 11:32:37 ----SHD---- C:\System Volume Information
2013-06-05 11:21:21 ----D---- C:\Windows\system32\wfp
2013-06-05 11:21:16 ----D---- C:\Windows\system32\wbem
2013-06-05 11:20:09 ----D---- C:\Windows\SYSWOW64\RTCOM
2013-06-05 11:20:09 ----D---- C:\Windows\system32\DriverStore
2013-06-05 11:20:09 ----D---- C:\Windows\system32\catroot2
2013-06-05 11:20:05 ----D---- C:\Windows\system32\drivers
2013-06-05 11:20:05 ----D---- C:\Windows\system32\CodeIntegrity
2013-06-05 11:20:05 ----D---- C:\Windows\security
2013-06-05 11:20:04 ----D---- C:\Windows\AppCompat
2013-06-05 11:20:03 ----RD---- C:\Program Files
2013-06-05 11:20:03 ----D---- C:\Program Files\Realtek
2013-06-05 11:19:59 ----D---- C:\Windows\registration
2013-06-05 11:19:48 ----D---- C:\Windows\system32\catroot
2013-06-05 11:19:37 ----RD---- C:\Program Files (x86)
2013-06-01 18:25:28 ----D---- C:\Users\JamET\AppData\Roaming\eM Client
2013-05-28 11:16:58 ----SD---- C:\Users\JamET\AppData\Roaming\Microsoft
2013-05-27 12:54:43 ----SHD---- C:\Windows\Installer
2013-05-27 12:54:42 ----SHD---- C:\Config.Msi
2013-05-27 12:48:10 ----D---- C:\Windows\Logs
2013-05-27 12:33:41 ----RSD---- C:\Windows\assembly
2013-05-27 12:32:02 ----D---- C:\ProgramData\NVIDIA
2013-05-27 12:31:58 ----RD---- C:\Users
2013-05-27 12:31:52 ----D---- C:\Program Files\NVIDIA Corporation
2013-05-27 12:30:32 ----D---- C:\Windows\Help
2013-05-19 13:59:49 ----D---- C:\Windows\rescache
2013-05-17 15:12:03 ----D---- C:\Windows\system32\Tasks
2013-05-16 13:44:18 ----D---- C:\Windows\Microsoft.NET
2013-05-16 11:02:05 ----D---- C:\Windows\winsxs
2013-05-16 10:58:37 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2013-05-16 10:53:27 ----D---- C:\Windows\SYSWOW64\en-US
2013-05-16 10:53:27 ----D---- C:\Windows\system32\en-US
2013-05-16 10:49:21 ----D---- C:\Windows\SYSWOW64\directx
2013-05-16 08:28:19 ----D---- C:\Windows\AppPatch
2013-05-16 08:28:17 ----D---- C:\Program Files\Internet Explorer
2013-05-16 08:28:17 ----D---- C:\Program Files (x86)\Internet Explorer
2013-05-15 23:10:17 ----D---- C:\ProgramData\Microsoft Help
2013-05-15 16:31:25 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2013-05-15 11:11:11 ----D---- C:\Windows\system32\NDF
2013-05-07 23:42:07 ----D---- C:\Windows\pss
2013-05-07 23:39:22 ----D---- C:\Users\JamET\AppData\Roaming\DAEMON Tools Lite

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2010-11-06 438808]
R0 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2013-01-20 230320]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R0 SmartDefragDriver;SmartDefragDriver; C:\Windows\System32\Drivers\SmartDefragDriver.sys [2010-11-26 17720]
R0 speedfan;speedfan; C:\Windows\SysWOW64\speedfan.sys [2011-03-18 29592]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2012-02-07 503352]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-21 514560]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2011-09-21 270912]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2013-01-20 130008]
R3 AgereSoftModem;Agere Systems Soft Modem; C:\Windows\system32\DRIVERS\agrsm64.sys [2009-06-10 1146880]
R3 ALSysIO;ALSysIO; \??\C:\Users\JamET\AppData\Local\Temp\ALSysIO64.sys []
R3 ATSwpWDF;AuthenTec TruePrint USB WBF WDF Driver; C:\Windows\System32\Drivers\ATSwpWDF.sys [2009-12-03 716872]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2011-02-24 2753512]
R3 LEqdUsb;Logitech SetPoint Unifying KMDF USB Filter; C:\Windows\system32\DRIVERS\LEqdUsb.Sys [2011-09-02 76056]
R3 LHidEqd;Logitech SetPoint Unifying KMDF HID Filter; C:\Windows\system32\DRIVERS\LHidEqd.Sys [2011-09-02 15128]
R3 LHidFilt;Logitech SetPoint KMDF HID Filter Driver; C:\Windows\system32\DRIVERS\LHidFilt.Sys [2011-09-02 66840]
R3 LMouFilt;Logitech SetPoint KMDF Mouse Filter Driver; C:\Windows\system32\DRIVERS\LMouFilt.Sys [2011-09-02 60696]
R3 Ltn_stk7070P;PCTV LITEON TT1260 based TV tuner device; C:\Windows\system32\DRIVERS\Ltn_stk7070P.sys [2009-05-22 625152]
R3 NETwNs64;___ Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows 7 - 64 Bit; C:\Windows\system32\DRIVERS\NETwNs64.sys [2010-11-09 8500736]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda64v.sys [2013-02-25 194848]
R3 seehcri;Sony Ericsson seehcri Device Driver; C:\Windows\system32\DRIVERS\seehcri.sys [2011-11-13 34032]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2010-02-18 316464]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S2 NEWDRIVER;NEWDRIVER; \??\C:\Windows\SysWow64\WinVDEdrv6.sys []
S3 BthEnum;Bluetooth Request Block Driver; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
S3 BthPan;Bluetooth Device (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
S3 BTHPORT;Bluetooth Port Driver; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 BTHUSB;Bluetooth Radio USB Driver; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
S3 dmvsc;dmvsc; C:\Windows\system32\drivers\dmvsc.sys [2010-11-21 71168]
S3 ggflt;SEMC USB Flash Driver Filter; C:\Windows\system32\DRIVERS\ggflt.sys [2011-11-13 13352]
S3 GGSAFERDriver;GGSAFER Driver; \??\C:\Program Files (x86)\Garena Classic\safedrv.sys []
S3 ggsemc;SEMC USB Flash Driver; C:\Windows\system32\DRIVERS\ggsemc.sys [2011-11-13 27176]
S3 HTCAND64;HTC Device Driver; C:\Windows\System32\Drivers\ANDROIDUSB.sys [2009-11-02 33736]
S3 JMCR;JMCR; C:\Windows\system32\DRIVERS\jmcr.sys [2008-04-11 125328]
S3 LUsbFilt;Logitech SetPoint KMDF USB Filter; C:\Windows\System32\Drivers\LUsbFilt.Sys [2011-09-02 42776]
S3 massfilter;Mass Storage Filter Driver; C:\Windows\system32\drivers\massfilter.sys []
S3 NANMp50;NANMp50 NDIS Protocol Driver; C:\Windows\System32\Drivers\NANMp50.sys [2010-03-25 46776]
S3 NANSp50;NANSp50 NDIS Protocol Driver; C:\Windows\System32\Drivers\NANSp50.sys [2010-03-25 45752]
S3 netw5v64;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 64 Bit; C:\Windows\system32\DRIVERS\netw5v64.sys [2009-06-10 5434368]
S3 NSNDIS5;NSNDIS5 NDIS Protocol Driver; \??\C:\Windows\syswow64\NSNDIS5.SYS []
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfdx64.sys [2008-08-28 25600]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-21 165888]
S3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-21 6656]
S3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2010-11-21 109056]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-21 34688]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-21 59392]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2010-11-21 31232]
S3 usb_rndisx;USB RNDIS Adapter; C:\Windows\system32\drivers\usb8023x.sys [2013-02-12 19968]
S3 USBAAPL64;Apple Mobile USB Driver; C:\Windows\System32\Drivers\usbaapl64.sys [2011-05-10 51712]
S3 usbscan;USB Scanner Driver; C:\Windows\system32\DRIVERS\usbscan.sys [2009-07-14 41984]
S3 usbser;USB Modem Driver; C:\Windows\system32\drivers\usbser.sys [2010-11-21 32768]
S3 vmbus;vmbus; C:\Windows\system32\drivers\vmbus.sys [2010-11-21 199552]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-21 21760]
S4 RsFx0103;RsFx0103 Driver; C:\Windows\system32\DRIVERS\RsFx0103.sys [2009-03-30 311656]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-05-10 65640]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 Live Updater Service;Live Updater Service; C:\Program Files\Acer\Acer Updater\UpdaterService.exe [2012-04-05 255376]
R2 MsMpSvc;Microsoft Antimalware Service; c:\Program Files\Microsoft Security Client\MsMpEng.exe [2013-01-27 22056]
R2 MSSQL$SQLEXPRESS;SQL Server (SQLEXPRESS); c:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\sqlservr.exe [2009-03-30 57617752]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2013-05-12 884512]
R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2013-05-16 1826592]
R2 PanService;PandoraService; C:\Program Files (x86)\PANDORA.TV\PanService\PandoraService.exe [2011-12-21 578264]
R2 PDF Architect Helper Service;PDF Architect Helper Service; C:\Program Files (x86)\PDF Architect\HelperService.exe [2013-01-09 1324104]
R2 PDF Architect Service;PDF Architect Service; C:\Program Files (x86)\PDF Architect\ConversionService.exe [2013-01-09 795208]
R2 SQLWriter;SQL Server VSS Writer; c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe [2008-07-10 157720]
R3 NisSrv;@c:\Program Files\Microsoft Security Client\MpAsDesc.dll,-243; c:\Program Files\Microsoft Security Client\NisSrv.exe [2013-01-27 379360]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-01-08 161536]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-05-15 256904]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2010-03-18 44376]
S3 gusvc;Google Updater Service; C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe [2011-05-10 136120]
S3 LBTServ;Logitech Bluetooth Service; C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe [2011-09-27 359192]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2012-06-01 113120]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2013-03-29 543656]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2011-09-16 1255736]
S4 Apple Mobile Device;Apple Mobile Device; C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2011-05-25 37664]
S4 Bonjour Service;Bonjour Service; C:\Program Files (x86)\Bonjour\mDNSResponder.exe [2011-07-12 387944]
S4 MSSQLServerADHelper100;SQL Active Directory Helper Service; c:\Program Files\Microsoft SQL Server\100\Shared\SQLADHLP.EXE [2009-07-22 61976]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 SplashtopRemoteService;Splashtop® Remote Service; C:\Program Files (x86)\Splashtop\Splashtop Remote\Server\SRService.exe [2012-02-09 531328]
S4 SQLAgent$SQLEXPRESS;SQL Server Agent (SQLEXPRESS); c:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE [2009-03-30 427880]
S4 SQLBrowser;SQL Server Browser; c:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe [2009-03-30 254808]
S4 SSUService;Splashtop Software Updater Service; C:\Program Files (x86)\Splashtop\Splashtop Software Updater\SSUService.exe [2011-11-10 370504]
S4 StarWindServiceAE;StarWind AE Service; D:\programy\Alcohol 120\StarWind\StarWindServiceAE.exe [2009-12-23 370688]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119526
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: zamrznutí ntb

#14 Příspěvek od Rudy »

Jj. Teď je smazáno. Znovu spusťte OTM a klikněte na >CleanUp!<. OTM po sobě uklidí. Nakonec restartujte PC. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

jamet
Návštěvník
Návštěvník
Příspěvky: 116
Registrován: 10 pro 2008 21:08

Re: zamrznutí ntb

#15 Příspěvek od jamet »

Vypadá to, že zamrznutí je pryč, ale bohužel mi nyní přestal jít zvuk. Zkusím nainstalovat znovu ovladače. Každopádně hlavní problém je pryč ( snad ) za což moc děkuji.

Odpovědět