Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Nestandartní chovnání notebooku

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
Columboo
Návštěvník
Návštěvník
Příspěvky: 4
Registrován: 08 kvě 2014 13:00

Nestandartní chovnání notebooku

#1 Příspěvek od Columboo »

Vážení !

Chtěl bych vás uctivě požádat o kontrolu RSIT logu.

Notebook požívám výhradně já, ale jednou za 14 dní mám u sebe na víkend syny a ti tráví hodiny na internetu, hrají online hry a stahují vše možné :evil: .

Poslední dobou se notebook chová nestandartně, má velmi vytížený procesor a paměť, hřeje se, samovolně se často restartuje Firefox, kolísavé připojení k WiFi :x .

Rád bych požádal o radu a návod na odstranění případné havěti.
Předem děkuji za ochotu a váš čas.


RSIT LOG:

Logfile of random's system information tool 1.08 (written by random/random)
Run by Dan at 2014-05-16 19:12:48
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 10 GB (9%) free of 111 GB
Total RAM: 3892 MB (3% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 19:18:28, on 16.5.2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17041)
Boot mode: Normal

Running processes:
C:\Program Files\LENOVO\HOTKEY\tposdsvc.exe
C:\PROGRA~1\Lenovo\HOTKEY\tpnumlkd.exe
C:\Program Files\Lenovo\HOTKEY\TPONSCR.exe
C:\Program Files\Lenovo\Zoom\TpScrex.exe
C:\Program Files (x86)\Lenovo\Access Connections\AcDeskBandHlpr.exe
C:\Program Files\Lenovo\Communications Utility\TPKNRRES.exe
C:\Program Files (x86)\Internet Download Manager\IDMan.exe
C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE
C:\Windows\SysWOW64\rundll32.exe
C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Internet Download Manager\IEMonitor.exe
C:\Program Files (x86)\ThinkPad\Utilities\SCHTASK.exe
C:\Program Files (x86)\LENOVO\Message Center Plus\MCPLaunch.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Common Files\Lenovo\Scheduler\scheduler_proxy.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_13_0_0_214.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_13_0_0_214.exe
C:\Program Files\trend micro\Dan.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://lenovo.msn.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files (x86)\Internet Download Manager\IDMIECC.dll
O2 - BHO: Podpora odkazu pro Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: AcroIEToolbarHelper Class - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~4\Office14\URLREDIR.DLL
O2 - BHO: Password Manager Browser Helper Object - {BF468356-BB7E-42D7-9F15-4F3B9BCFCED2} - C:\Program Files (x86)\Lenovo\Client Security Solution\tvtpwm_ie_com.dll
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll
O4 - HKLM\..\Run: [PWMTRV] rundll32 "C:\Program Files (x86)\ThinkPad\Utilities\PWMTR64V.DLL",PwrMgrBkGndMonitor
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [RotateImage] C:\Program Files (x86)\Integrated Camera Driver\X64\RCIMGDIR.exe
O4 - HKLM\..\Run: [IMSS] "C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe"
O4 - HKLM\..\Run: [IJNetworkScannerSelectorEX] C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe /FORCE
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [IDMan] C:\Program Files (x86)\Internet Download Manager\IDMan.exe /onboot
O4 - HKCU\..\Run: [azog.exe] C:\Users\Dan\AppData\Roaming\Izalf\azog.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Startup: Výřezy obrazovky a spuštění aplikace OneNote 2010.lnk = C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~4\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~2\MICROS~4\Office14\ONBttnIE.dll/105
O8 - Extra context menu item: Převést cíl vazby do Adobe PDF - res://C:\Program Files (x86)\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Převést cíl vazby do existujícího PDF - res://C:\Program Files (x86)\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Převést do Adobe PDF - res://C:\Program Files (x86)\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Převést do existujícího PDF - res://C:\Program Files (x86)\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Převést vybrané vazby do Adobe PDF - res://C:\Program Files (x86)\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
O8 - Extra context menu item: Převést vybrané vazby do existujícího PDF - res://C:\Program Files (x86)\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
O8 - Extra context menu item: Převést výběr do Adobe PDF - res://C:\Program Files (x86)\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Převést výběr do existujícího PDF - res://C:\Program Files (x86)\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Stáhnout s IDM - C:\Program Files (x86)\Internet Download Manager\IEExt.htm
O8 - Extra context menu item: Stáhnout s IDM všechny odkazy - C:\Program Files (x86)\Internet Download Manager\IEGetAll.htm
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra button: (no name) - {F4F55DC8-0B69-4DFE-BA94-CB677B88B2A3} - C:\Program Files (x86)\Lenovo\Client Security Solution\tvtpwm_ie_com.dll
O9 - Extra 'Tools' menuitem: Lenovo Password Manager... - {F4F55DC8-0B69-4DFE-BA94-CB677B88B2A3} - C:\Program Files (x86)\Lenovo\Client Security Solution\tvtpwm_ie_com.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O20 - AppInit_DLLs: C:\PROGRA~2\Amazon\AMAZON~1\\AMAZON~3.DLL
O23 - Service: 602Updater (602XML Updater) - Software602 a.s. - C:\Program Files (x86)\Common Files\soft602\602updsvc\602updsvc.exe
O23 - Service: AcPrfMgrSvc - Lenovo - C:\Program Files (x86)\Lenovo\Access Connections\AcPrfMgrSvc.exe
O23 - Service: AcSvc - Lenovo - C:\Program Files (x86)\Lenovo\Access Connections\AcSvc.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\ThinkPad\Bluetooth Software\btwdins.exe
O23 - Service: Lenovo Doze Mode Service (DozeSvc) - Lenovo. - C:\Program Files (x86)\ThinkPad\Utilities\DZSVC64.EXE
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Lenovo PM Service (IBMPMSVC) - Unknown owner - C:\Windows\system32\ibmpmsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: IviRegMgr - InterVideo - C:\Program Files (x86)\Common Files\InterVideo\RegMgr\iviRegMgr.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Lenovo Camera Mute (LENOVO.CAMMUTE) - Lenovo Group Limited - C:\Program Files\Lenovo\Communications Utility\CAMMUTE.exe
O23 - Service: Lenovo Microphone Mute (LENOVO.MICMUTE) - Lenovo Group Limited - C:\Program Files\LENOVO\HOTKEY\MICMUTE.exe
O23 - Service: Lenovo Keyboard Noise Reduction (LENOVO.TPKNRSVC) - Lenovo Group Limited - C:\Program Files\Lenovo\Communications Utility\TPKNRSVC.exe
O23 - Service: Lenovo Auto Scroll (Lenovo.VIRTSCRLSVC) - Lenovo Group Limited - C:\Program Files\LENOVO\VIRTSCRL\lvvsst.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: NBService - Nero AG - C:\Program Files (x86)\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NMIndexingService - Nero AG - C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: Power Manager Service (Power Manager DBC Service) - Lenovo - C:\Program Files (x86)\ThinkPad\Utilities\PWMDBSVC.EXE
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Cisco EnergyWise Enabler (PwmEWSvc) - Lenovo Group Limited - C:\Program Files (x86)\ThinkPad\Utilities\PWMEWSVC.EXE
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: System Update (SUService) - Unknown owner - C:\Program Files (x86)\Lenovo\System Update\SUService.exe
O23 - Service: ThinkVantage Registry Monitor Service - Lenovo Group Limited - C:\Program Files (x86)\Common Files\Lenovo\tvt_reg_monitor_svc.exe
O23 - Service: ThinkPad HDD APS Logging Service (TPHDEXLGSVC) - Unknown owner - C:\Windows\System32\TPHDEXLG64.exe (file missing)
O23 - Service: Lenovo Hotkey Client Loader (TPHKLOAD) - Lenovo Group Limited - C:\Program Files\LENOVO\HOTKEY\TPHKLOAD.exe
O23 - Service: On Screen Display (TPHKSVC) - Lenovo Group Limited - C:\Program Files\LENOVO\HOTKEY\TPHKSVC.exe
O23 - Service: TVT Backup Service - Lenovo Group Limited - C:\Program Files (x86)\Lenovo\Rescue and Recovery\rrservice.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management & Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 15962 bytes

======Listing Processes======

\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\ibmpmsvc.exe
C:\Windows\system32\svchost.exe -k RPCSS
"c:\Program Files\Microsoft Security Client\MsMpEng.exe"
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-73f68c0a-bc8c-490a-99b1-62dc9d30de31 -SystemEventPortName:HostProcess-1d532286-c651-4ae1-958d-cfeaa2f54351 -IoCancelEventPortName:HostProcess-dcd363d7-c622-46cc-9094-c25b77bede31 -NonStateChangingEventPortName:HostProcess-417d93ff-1af2-4850-98fd-70726091cbea -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:8f5fbe47-d871-4912-b530-5c40b2e88136 -DeviceGroupId:
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\WLANExt.exe 2457120
\??\C:\Windows\system32\conhost.exe "73479990611658383301890503077-1438326830-1323067935-1615727967-1379304168218655385
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\LENOVO\HOTKEY\TPHKSVC.exe"
"C:\Program Files (x86)\Common Files\soft602\602updsvc\602updsvc.exe"
C:\PROGRA~1\Lenovo\HOTKEY\tpnumlk.exe
"C:\Program Files (x86)\Lenovo\Access Connections\AcPrfMgrSvc.exe"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\Windows\System32\alg.exe
"C:\Program Files\Bonjour\mDNSResponder.exe"
"C:\Program Files\ThinkPad\Bluetooth Software\btwdins.exe"
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
"C:\Program Files\Lenovo\Communications Utility\CAMMUTE.exe"
"C:\Program Files\Lenovo\Communications Utility\TPKNRSVC.exe"
"C:\Program Files\LENOVO\VIRTSCRL\lvvsst.exe"
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe"
C:\Windows\system32\svchost.exe -k regsvc
"C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe"
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
"C:\Program Files (x86)\Lenovo\Access Connections\AcSvc.exe"
WLIDSvcM.exe 2900
"C:\Program Files\Intel\WiFi\bin\EvtEng.exe"
"C:\Program Files\LENOVO\HOTKEY\MICMUTE.exe"
"C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe"
"C:\Program Files\LENOVO\HOTKEY\TPHKLOAD.exe"
"C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE"
"c:\Program Files\Microsoft Security Client\NisSrv.exe"
C:\Windows\system32\svchost.exe -k bthsvcs
C:\Windows\system32\wbem\unsecapp.exe -Embedding
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-8f2add50-b487-4c23-8a8c-45afffac4d48 -SystemEventPortName:HostProcess-e55950e4-3654-4602-b6b5-e91619881808 -IoCancelEventPortName:HostProcess-6fc47c0c-794c-4b4d-a71a-4d923681a18b -NonStateChangingEventPortName:HostProcess-78a7a2ed-bf00-429e-95d7-fae8f2b1f6f4 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:ff4a61ed-4f84-4392-960c-1a9c64894015 -DeviceGroupId:WpdFsGroup
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files\ThinkVantage Fingerprint Software\upeksvr.exe"
"taskhost.exe"
C:\PROGRA~1\LENOVO\VIRTSCRL\virtscrl.exe
C:\Program Files\LENOVO\HOTKEY\tposdsvc.exe
C:\Program Files\LENOVO\HOTKEY\shtctky.exe
C:\PROGRA~1\Lenovo\HOTKEY\tpnumlkd.exe
"C:\Windows\system32\Dwm.exe"
"C:\Program Files\Lenovo\HOTKEY\TPONSCR.exe"
C:\Windows\Explorer.EXE
"C:\Program Files\Lenovo\Zoom\TpScrex.exe"
taskeng.exe {FEAF549D-0AA0-4EEC-BDF2-25D9A34DA5B3}
"\Program Files\Synaptics\SynTP\SynTPEnh.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\Lenovo\Access Connections\AcDeskBandHlpr.exe" -Embedding
"C:\Windows\System32\TpShocks.exe"
"C:\Program Files\Lenovo\Communications Utility\TPKNRRES.exe"
"C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files\Lenovo\Client Security Solution\cssauth.exe" silent
"C:\Program Files (x86)\Lenovo\Access Connections\SvcGuiHlpr.exe" /IpNotifyInstance
"C:\Program Files (x86)\Internet Download Manager\IDMan.exe" /onboot
"C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE" /tsr
"C:\Windows\System32\rundll32.exe" "C:\Program Files (x86)\ThinkPad\Utilities\PWMTR64V.DLL",PwrMgrBkGndMonitor
"C:\Windows\System32\rundll32.exe" "C:\Program Files (x86)\ThinkPad\Utilities\PWMTR64V.DLL",PwrMgrBkGndMonitor
"C:\Program Files (x86)\Integrated Camera Driver\X64\RCIMGDIR.exe"
"C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe" /FORCE
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Program Files (x86)\Internet Download Manager\IEMonitor.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files (x86)\ThinkPad\Utilities\SCHTASK.exe"
C:\Windows\system32\igfxext.exe -Embedding
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
"C:\Program Files\Synaptics\SynTP\SynTPLpr.exe"
C:\Windows\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PrivacyIconClient.exe" -startup
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Program Files (x86)\Common Files\InterVideo\RegMgr\iviRegMgr.exe"
"C:\Program Files (x86)\Common Files\Lenovo\tvt_reg_monitor_svc.exe"
"C:\Program Files (x86)\LENOVO\Message Center Plus\MCPLaunch.exe" /start
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"taskhost.exe"
"C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE"
"C:\Program Files (x86)\Lenovo\Rescue and Recovery\rrservice.exe"
"C:\Program Files (x86)\Common Files\Lenovo\Scheduler\scheduler_proxy.exe"
taskmgr.exe /3
"C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe" --channel=4164.2ad70f20.621876025 "C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_214.dll" -greomni "C:\Program Files (x86)\Mozilla Firefox\omni.ja" -appomni "C:\Program Files (x86)\Mozilla Firefox\browser\omni.ja" -appdir "C:\Program Files (x86)\Mozilla Firefox\browser" E7CF176E110C211B 4164 "\\.\pipe\gecko-crash-server-pipe.4164" plugin
"C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_13_0_0_214.exe" --proxy-stub-channel=Flash5048.6EBD7F48.26002 --host-broker-channel=Flash5048.6EBD7F48.8115 --host-pid=5048 --host-npapi-version=27 --plugin-path="C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_214.dll"
"C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_13_0_0_214.exe" --channel=808.0028F330.925151075 --proxy-stub-channel=Flash5048.6EBD7F48.26002 --plugin-path="C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_214.dll" --host-npapi-version=27 --type=renderer
"C:\Users\Dan\Downloads\Programs\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\iWebar-firefoxinstaller.job
C:\Windows\tasks\PCDoctorBackgroundMonitorTask.job
C:\Windows\tasks\Registry Winner Schedule.job
C:\Windows\tasks\SystemToolsDailyTest.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0055C089-8582-441B-A0BF-17B458C2A3A8}]
IDM integration (IDMIEHlprObj Class) - C:\Program Files (x86)\Internet Download Manager\IDMIECC64.dll [2014-04-02 454680]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre8\bin\ssv.dll [2014-04-29 553384]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-22 529280]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL [2013-03-06 690392]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre8\bin\jp2ssv.dll [2014-04-29 211880]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0055C089-8582-441B-A0BF-17B458C2A3A8}]
IDM integration (IDMIEHlprObj Class) - C:\Program Files (x86)\Internet Download Manager\IDMIECC.dll [2014-04-02 403992]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Podpora odkazu pro Adobe PDF Reader - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2012-09-23 72336]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-22 439168]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE7CD045-E861-484f-8273-0445EE161910}]
AcroIEToolbarHelper Class - C:\Program Files (x86)\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll [2004-12-14 225280]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~4\Office14\URLREDIR.DLL [2013-03-06 562904]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BF468356-BB7E-42D7-9F15-4F3B9BCFCED2}]
IePasswordManagerHelper Class - C:\Program Files (x86)\Lenovo\Client Security Solution\tvtpwm_ie_com.dll [2011-06-10 767288]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{47833539-D0C5-4125-9FA8-0819E2EAAC93} - Adobe PDF - C:\Program Files (x86)\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll [2004-12-14 225280]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"TpShocks"=C:\Windows\SYSTEM32\TpShocks.exe [2010-07-02 380776]
"SmartAudio"=C:\Program Files\CONEXANT\SAII\SAIICpl.exe [2009-11-16 307768]
"LENOVO.TPKNRRES"=C:\Program Files\Lenovo\Communications Utility\TPKNRRES.exe [2010-07-27 62312]
"AcWin7Hlpr"=C:\Program Files (x86)\Lenovo\Access Connections\AcTBenabler.exe [2014-03-14 63832]
"MSC"=C:\Program Files\Microsoft Security Client\msseces.exe [2014-03-11 1271072]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2012-01-10 167704]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2012-01-10 392984]
"Persistence"=C:\Windows\system32\igfxpers.exe [2012-01-10 417560]
"cssauth"=C:\Program Files\Lenovo\Client Security Solution\cssauth.exe [2011-06-10 5990200]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"IDMan"=C:\Program Files (x86)\Internet Download Manager\IDMan.exe [2014-05-08 3829328]
"azog.exe"=C:\Users\Dan\AppData\Roaming\Izalf\azog.exe []

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"PWMTRV"=rundll32 C:\Program Files (x86)\ThinkPad\Utilities\PWMTR64V.DLL,PwrMgrBkGndMonitor []
"QuickTime Task"=C:\Program Files (x86)\QuickTime\QTTask.exe [2014-01-17 421888]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904]
"RotateImage"=C:\Program Files (x86)\Integrated Camera Driver\X64\RCIMGDIR.exe [2008-10-30 55808]
"IMSS"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe [2013-05-03 111928]
"IJNetworkScannerSelectorEX"=C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe [2013-02-19 453736]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2014-03-18 224128]

C:\Users\Dan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Výřezy obrazovky a spuštění aplikace OneNote 2010.lnk - C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\SYSTEM32\igfxdev.dll [2012-01-10 390656]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\psfus]
C:\Program Files\ThinkVantage Fingerprint Software\psqlpwd.dll [2013-03-05 136488]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"notification packages"=scecli
ACGina
C:\Program Files\ThinkPad\Bluetooth Software\BtwProximityCP.dll
C:\Program Files\ThinkVantage Fingerprint Software\psqlpwd.dll

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DisableTaskMgr"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=149

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 months======

2014-05-16 19:12:48 ----D---- C:\rsit
2014-05-16 19:12:48 ----D---- C:\Program Files\trend micro
2014-05-16 19:02:26 ----D---- C:\FRST
2014-05-15 03:06:52 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2014-05-15 03:06:52 ----A---- C:\Windows\system32\mshtmled.dll
2014-05-15 03:06:52 ----A---- C:\Windows\system32\mshtml.dll
2014-05-15 03:06:51 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2014-05-14 06:58:01 ----A---- C:\Windows\system32\aepdu.dll
2014-05-14 06:58:01 ----A---- C:\Windows\system32\aeinv.dll
2014-05-14 06:58:00 ----A---- C:\Windows\SYSWOW64\shell32.dll
2014-05-14 06:58:00 ----A---- C:\Windows\system32\shell32.dll
2014-05-14 06:57:56 ----A---- C:\Windows\system32\lsasrv.dll
2014-05-14 06:57:56 ----A---- C:\Windows\system32\kerberos.dll
2014-05-14 06:57:55 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2014-05-14 06:57:55 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2014-05-14 06:57:55 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2014-05-14 06:57:55 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2014-05-14 06:57:55 ----A---- C:\Windows\system32\winlogon.exe
2014-05-14 06:57:55 ----A---- C:\Windows\system32\objsel.dll
2014-05-14 06:57:55 ----A---- C:\Windows\system32\msv1_0.dll
2014-05-14 06:57:54 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2014-05-14 06:57:54 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2014-05-14 06:57:54 ----A---- C:\Windows\SYSWOW64\objsel.dll
2014-05-14 06:57:54 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2014-05-14 06:57:54 ----A---- C:\Windows\system32\wdigest.dll
2014-05-14 06:57:54 ----A---- C:\Windows\system32\TSpkg.dll
2014-05-14 06:57:54 ----A---- C:\Windows\system32\ntoskrnl.exe
2014-05-14 06:57:54 ----A---- C:\Windows\system32\KernelBase.dll
2014-05-14 06:57:54 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2014-05-14 06:57:53 ----A---- C:\Windows\SYSWOW64\wincredprovider.dll
2014-05-14 06:57:53 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2014-05-14 06:57:53 ----A---- C:\Windows\SYSWOW64\schannel.dll
2014-05-14 06:57:53 ----A---- C:\Windows\SYSWOW64\secur32.dll
2014-05-14 06:57:53 ----A---- C:\Windows\SYSWOW64\dpapiprovider.dll
2014-05-14 06:57:53 ----A---- C:\Windows\SYSWOW64\dimsroam.dll
2014-05-14 06:57:53 ----A---- C:\Windows\SYSWOW64\credssp.dll
2014-05-14 06:57:53 ----A---- C:\Windows\SYSWOW64\cngprovider.dll
2014-05-14 06:57:53 ----A---- C:\Windows\SYSWOW64\capiprovider.dll
2014-05-14 06:57:53 ----A---- C:\Windows\SYSWOW64\adprovider.dll
2014-05-14 06:57:53 ----A---- C:\Windows\system32\wincredprovider.dll
2014-05-14 06:57:53 ----A---- C:\Windows\system32\sspisrv.dll
2014-05-14 06:57:53 ----A---- C:\Windows\system32\sspicli.dll
2014-05-14 06:57:53 ----A---- C:\Windows\system32\schannel.dll
2014-05-14 06:57:53 ----A---- C:\Windows\system32\secur32.dll
2014-05-14 06:57:53 ----A---- C:\Windows\system32\lsass.exe
2014-05-14 06:57:53 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2014-05-14 06:57:53 ----A---- C:\Windows\system32\dpapiprovider.dll
2014-05-14 06:57:53 ----A---- C:\Windows\system32\dimsroam.dll
2014-05-14 06:57:53 ----A---- C:\Windows\system32\credssp.dll
2014-05-14 06:57:53 ----A---- C:\Windows\system32\cngprovider.dll
2014-05-14 06:57:53 ----A---- C:\Windows\system32\capiprovider.dll
2014-05-14 06:57:53 ----A---- C:\Windows\system32\adprovider.dll
2014-05-09 03:00:26 ----SD---- C:\Windows\system32\CompatTel
2014-05-08 15:10:43 ----D---- C:\ProgramData\IDM
2014-05-08 15:10:30 ----D---- C:\Program Files (x86)\Internet Download Manager
2014-05-08 11:22:07 ----D---- C:\ProgramData\Malwarebytes
2014-05-08 11:21:59 ----D---- C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2014-05-08 00:47:01 ----SHD---- C:\$RECYCLE.BIN
2014-05-08 00:45:40 ----D---- C:\Windows\Temp
2014-05-08 00:45:40 ----A---- C:\Windows\zoek-delete.exe
2014-05-08 00:45:36 ----A---- C:\folders.txt
2014-05-08 00:36:40 ----D---- C:\zoek
2014-05-08 00:24:57 ----D---- C:\zoek_backup
2014-05-08 00:10:45 ----D---- C:\Windows\ERUNT
2014-05-08 00:02:24 ----A---- C:\Windows\SYSWOW64\sqlite3.dll
2014-05-08 00:01:38 ----D---- C:\AdwCleaner
2014-05-07 23:24:03 ----D---- C:\ProgramData\AVAST Software
2014-05-07 15:49:23 ----D---- C:\Program Files (x86)\McAfee Security Scan
2014-05-07 15:47:43 ----D---- C:\Users\Dan\AppData\Roaming\AVG2014
2014-05-07 15:46:46 ----D---- C:\Users\Dan\AppData\Roaming\TuneUp Software
2014-05-07 15:43:20 ----HD---- C:\$AVG
2014-05-07 15:43:18 ----D---- C:\ProgramData\AVG2014
2014-05-07 15:41:44 ----D---- C:\Program Files (x86)\AVG
2014-05-07 15:40:24 ----HD---- C:\ProgramData\Common Files
2014-05-07 15:40:24 ----D---- C:\ProgramData\MFAData
2014-05-07 14:13:12 ----D---- C:\Program Files (x86)\Spybot - Search & Destroy 2
2014-05-03 13:30:40 ----D---- C:\ProgramData\Loaris
2014-05-03 13:30:37 ----D---- C:\Program Files\Loaris
2014-05-01 20:42:40 ----HD---- C:\ProgramData\CanonIJMIG
2014-05-01 20:05:29 ----HD---- C:\ProgramData\CanonIJMyPrinter
2014-04-29 23:33:04 ----D---- C:\Users\Dan\AppData\Roaming\Xavion
2014-04-29 23:31:22 ----D---- C:\Program Files\J7Z
2014-04-29 23:29:24 ----A---- C:\Windows\system32\javaws.exe
2014-04-29 23:28:46 ----A---- C:\Windows\system32\WindowsAccessBridge-64.dll
2014-04-29 23:28:46 ----A---- C:\Windows\system32\javaw.exe
2014-04-29 23:28:45 ----A---- C:\Windows\system32\java.exe
2014-04-29 23:28:25 ----D---- C:\Program Files\Java
2014-04-29 23:12:09 ----D---- C:\Profiles
2014-04-29 23:12:09 ----D---- C:\Output
2014-04-29 23:12:09 ----D---- C:\Lists
2014-04-29 23:08:29 ----D---- C:\Program Files\Archiving
2014-04-29 14:30:39 ----A---- C:\Windows\system32\drivers\idmwfp.sys
2014-04-24 20:29:53 ----HD---- C:\ProgramData\CanonIJEGV
2014-04-24 19:11:17 ----A---- C:\Windows\SYSWOW64\CNHMCA.dll
2014-04-24 19:11:17 ----A---- C:\Windows\SYSWOW64\CNC_BUL.dll
2014-04-24 19:10:11 ----D---- C:\Windows\system32\STRING
2014-04-24 19:10:11 ----A---- C:\Windows\system32\CNMN6UI.DLL
2014-04-24 19:10:11 ----A---- C:\Windows\system32\CNMN6PPM.DLL
2014-04-24 19:10:10 ----A---- C:\Windows\SYSWOW64\CNMNPPM.DLL
2014-04-24 19:09:35 ----D---- C:\ProgramData\CanonIJWSpt
2014-04-24 18:57:19 ----A---- C:\Windows\system32\CNMLMBU.DLL

======List of files/folders modified in the last 1 months======

2014-05-16 19:12:48 ----RD---- C:\Program Files
2014-05-16 19:03:22 ----D---- C:\Windows
2014-05-16 16:40:06 ----SHD---- C:\System Volume Information
2014-05-16 15:42:27 ----D---- C:\Windows\system32\config
2014-05-16 00:15:37 ----SHD---- C:\Windows\Installer
2014-05-16 00:15:34 ----D---- C:\Windows\SysWOW64
2014-05-15 22:01:16 ----D---- C:\Windows\System32
2014-05-15 22:01:16 ----D---- C:\Windows\inf
2014-05-15 22:01:16 ----A---- C:\Windows\system32\PerfStringBackup.INI
2014-05-15 04:01:48 ----D---- C:\Windows\rescache
2014-05-15 03:37:05 ----D---- C:\Windows\Microsoft.NET
2014-05-15 03:36:43 ----RSD---- C:\Windows\assembly
2014-05-15 03:26:36 ----A---- C:\Windows\SYSWOW64\log.txt
2014-05-15 03:25:44 ----D---- C:\Windows\system32\DriverStore
2014-05-15 03:25:18 ----D---- C:\Windows\winsxs
2014-05-15 03:24:07 ----D---- C:\Windows\system32\drivers
2014-05-15 03:24:07 ----D---- C:\Windows\system32\cs-CZ
2014-05-15 03:24:07 ----D---- C:\Windows\PolicyDefinitions
2014-05-15 03:23:57 ----D---- C:\Users\Dan\AppData\Roaming\DMCache
2014-05-15 03:08:50 ----SHD---- C:\Config.Msi
2014-05-15 03:08:49 ----D---- C:\ProgramData\Microsoft Help
2014-05-15 03:07:04 ----D---- C:\Windows\system32\catroot2
2014-05-15 03:07:04 ----D---- C:\Windows\system32\catroot
2014-05-15 03:05:29 ----D---- C:\Program Files (x86)\Common Files
2014-05-15 03:04:28 ----D---- C:\Windows\system32\MRT
2014-05-15 03:02:09 ----A---- C:\Windows\system32\MRT.exe
2014-05-14 12:22:39 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2014-05-08 19:53:16 ----D---- C:\Users\Dan\AppData\Roaming\IDM
2014-05-08 18:02:10 ----RD---- C:\Program Files (x86)
2014-05-08 15:10:43 ----HD---- C:\ProgramData
2014-05-08 11:57:15 ----D---- C:\Windows\system32\Tasks
2014-05-08 11:52:41 ----D---- C:\Windows\system32\wbem
2014-05-08 11:51:49 ----D---- C:\Windows\Tasks
2014-05-08 11:51:49 ----D---- C:\Windows\system32\wfp
2014-05-08 11:51:37 ----D---- C:\ProgramData\Lenovo
2014-05-08 11:51:33 ----D---- C:\Windows\registration
2014-05-08 11:51:13 ----D---- C:\Windows\AppCompat
2014-05-07 23:48:14 ----D---- C:\Program Files (x86)\Google
2014-05-07 23:16:40 ----AD---- C:\ProgramData\TEMP
2014-05-07 18:02:39 ----D---- C:\Windows\system32\drivers\UMDF
2014-05-07 18:02:39 ----D---- C:\Program Files\Windows Media Player
2014-05-07 18:02:39 ----D---- C:\Program Files\ThinkVantage Fingerprint Software
2014-05-07 18:02:39 ----D---- C:\Program Files\Microsoft Security Client
2014-05-07 18:02:39 ----D---- C:\Program Files\Internet Explorer
2014-05-07 18:01:08 ----D---- C:\Windows\SYSWOW64\wbem
2014-05-07 18:01:07 ----D---- C:\Windows\ehome
2014-05-07 18:01:07 ----D---- C:\Windows\AppPatch
2014-05-07 18:01:07 ----D---- C:\Program Files\Windows Portable Devices
2014-05-07 18:01:07 ----D---- C:\Program Files\Windows Photo Viewer
2014-05-07 17:59:03 ----D---- C:\Windows\SYSWOW64\Macromed
2014-05-07 17:58:59 ----D---- C:\Windows\system32\NDF
2014-05-07 17:58:52 ----D---- C:\Windows\system32\drivers\etc
2014-05-07 17:57:51 ----D---- C:\Program Files\WinRAR
2014-05-07 17:57:49 ----D---- C:\Program Files\PC-Doctor
2014-05-07 17:57:45 ----D---- C:\Program Files\Common Files\Lenovo
2014-05-07 17:57:44 ----D---- C:\Program Files\Bonjour
2014-05-07 17:57:42 ----D---- C:\Program Files (x86)\PowerISO
2014-05-07 17:57:40 ----D---- C:\Program Files (x86)\Mozilla Firefox
2014-05-07 17:57:39 ----D---- C:\Program Files (x86)\Microsoft Application Virtualization Client
2014-05-07 17:57:28 ----D---- C:\Program Files (x86)\Bonjour
2014-05-07 17:54:59 ----D---- C:\Windows\Web
2014-05-07 17:54:59 ----D---- C:\Windows\Vss
2014-05-07 17:54:59 ----D---- C:\Windows\twain_32
2014-05-07 17:54:59 ----D---- C:\Windows\SYSWOW64\XPSViewer
2014-05-07 17:54:37 ----D---- C:\Windows\SYSWOW64\winrm
2014-05-07 17:54:37 ----D---- C:\Windows\SYSWOW64\WindowsPowerShell
2014-05-07 17:54:37 ----D---- C:\Windows\SYSWOW64\wdi
2014-05-07 17:54:37 ----D---- C:\Windows\SYSWOW64\WCN
2014-05-07 17:54:37 ----D---- C:\Windows\SYSWOW64\spp
2014-05-07 17:54:37 ----D---- C:\Windows\SYSWOW64\spool
2014-05-07 17:54:37 ----D---- C:\Windows\SYSWOW64\Speech
2014-05-07 17:54:37 ----D---- C:\Windows\SYSWOW64\slmgr
2014-05-07 17:54:36 ----D---- C:\Windows\SYSWOW64\Printing_Admin_Scripts
2014-05-07 17:54:36 ----D---- C:\Windows\SYSWOW64\NetworkList
2014-05-07 17:54:36 ----D---- C:\Windows\SYSWOW64\MUI
2014-05-07 17:54:36 ----D---- C:\Windows\SYSWOW64\Msdtc
2014-05-07 17:54:36 ----D---- C:\Windows\SYSWOW64\migwiz
2014-05-07 17:54:36 ----D---- C:\Windows\SYSWOW64\migration
2014-05-07 17:54:36 ----D---- C:\Windows\SYSWOW64\InstallShield
2014-05-07 17:54:36 ----D---- C:\Windows\SYSWOW64\IME
2014-05-07 17:54:35 ----D---- C:\Windows\SYSWOW64\DriverStore
2014-05-07 17:54:35 ----D---- C:\Windows\SYSWOW64\drivers
2014-05-07 17:54:35 ----D---- C:\Windows\SYSWOW64\Dism
2014-05-07 17:54:28 ----D---- C:\Windows\SYSWOW64\cs-CZ
2014-05-07 17:54:28 ----D---- C:\Windows\SYSWOW64\config
2014-05-07 17:54:28 ----D---- C:\Windows\SYSWOW64\com
2014-05-07 17:53:17 ----D---- C:\Windows\system32\winrm
2014-05-07 17:53:17 ----D---- C:\Windows\system32\WindowsPowerShell
2014-05-07 17:53:16 ----D---- C:\Windows\system32\WinBioPlugIns
2014-05-07 17:53:16 ----D---- C:\Windows\system32\wdi
2014-05-07 17:53:16 ----D---- C:\Windows\system32\WCN
2014-05-07 17:53:15 ----D---- C:\Windows\system32\sysprep
2014-05-07 17:53:14 ----D---- C:\Windows\system32\SPReview
2014-05-07 17:53:14 ----D---- C:\Windows\system32\spp
2014-05-07 17:53:14 ----D---- C:\Windows\system32\spool
2014-05-07 17:52:50 ----D---- C:\Windows\system32\Speech
2014-05-07 17:52:50 ----D---- C:\Windows\system32\SMI
2014-05-07 17:52:50 ----D---- C:\Windows\system32\slmgr
2014-05-07 17:52:49 ----D---- C:\Windows\system32\Printing_Admin_Scripts
2014-05-07 17:52:49 ----D---- C:\Windows\system32\oobe
2014-05-07 17:52:48 ----D---- C:\Windows\system32\NetworkList
2014-05-07 17:52:48 ----D---- C:\Windows\system32\MUI
2014-05-07 17:52:48 ----D---- C:\Windows\system32\Msdtc
2014-05-07 17:52:47 ----SD---- C:\Windows\system32\Microsoft
2014-05-07 17:52:47 ----D---- C:\Windows\system32\migwiz
2014-05-07 17:52:47 ----D---- C:\Windows\system32\migration
2014-05-07 17:52:47 ----D---- C:\Windows\system32\Macromed
2014-05-07 17:52:47 ----D---- C:\Windows\system32\IME
2014-05-07 17:52:47 ----D---- C:\Windows\system32\EventProviders
2014-05-07 17:52:46 ----DC---- C:\Windows\system32\DRVSTORE
2014-05-07 17:52:11 ----HD---- C:\Windows\system32\CanonIJ Uninstaller Information
2014-05-07 17:52:11 ----D---- C:\Windows\system32\Dism
2014-05-07 17:52:11 ----D---- C:\Windows\system32\com
2014-05-07 17:52:10 ----D---- C:\Windows\system32\Boot
2014-05-07 17:52:10 ----D---- C:\Windows\Speech
2014-05-07 17:52:10 ----D---- C:\Windows\schemas
2014-05-07 17:52:10 ----D---- C:\Windows\Setup
2014-05-07 17:52:10 ----D---- C:\Windows\servicing
2014-05-07 17:52:10 ----D---- C:\Windows\ServiceProfiles
2014-05-07 17:52:10 ----D---- C:\Windows\security
2014-05-07 17:52:10 ----D---- C:\Windows\Resources
2014-05-07 17:52:10 ----D---- C:\Windows\PLA
2014-05-07 17:52:10 ----D---- C:\Windows\Performance
2014-05-07 17:52:10 ----D---- C:\Windows\Migration
2014-05-07 17:52:04 ----RSD---- C:\Windows\Media
2014-05-07 17:51:32 ----D---- C:\Windows\IME
2014-05-07 17:51:32 ----D---- C:\Windows\Help
2014-05-07 17:51:32 ----D---- C:\Windows\Globalization
2014-05-07 17:51:31 ----D---- C:\Windows\Downloaded Installations
2014-05-07 17:51:31 ----D---- C:\Windows\diagnostics
2014-05-07 17:51:31 ----D---- C:\Windows\Branding
2014-05-07 17:51:31 ----D---- C:\Windows\Boot
2014-05-07 17:51:22 ----RD---- C:\Users
2014-05-07 17:51:22 ----D---- C:\Users\Dan\AppData\Roaming\Update
2014-05-07 17:51:22 ----D---- C:\Users\Dan\AppData\Roaming\SoftGrid Client
2014-05-07 17:51:22 ----D---- C:\Users\Dan\AppData\Roaming\Riot Games
2014-05-07 17:51:21 ----SD---- C:\Users\Dan\AppData\Roaming\Microsoft
2014-05-07 17:51:21 ----D---- C:\Users\Dan\AppData\Roaming\Mozilla
2014-05-07 17:51:21 ----D---- C:\Users\Dan\AppData\Roaming\Intel
2014-05-07 17:51:21 ----D---- C:\Users\Dan\AppData\Roaming\Corel
2014-05-07 17:51:21 ----D---- C:\Users\Dan\AppData\Roaming\Adobe
2014-05-07 17:50:58 ----SD---- C:\ProgramData\Microsoft
2014-05-07 17:50:58 ----D---- C:\SWTOOLS
2014-05-07 17:50:58 ----D---- C:\swshare
2014-05-07 17:50:58 ----D---- C:\Riot Games
2014-05-07 17:50:58 ----D---- C:\ProgramData\PC-Doctor for Windows
2014-05-07 17:50:58 ----D---- C:\ProgramData\Norton
2014-05-07 17:50:58 ----D---- C:\ProgramData\Nero
2014-05-07 17:50:57 ----HD---- C:\ProgramData\CanonIJScan
2014-05-07 17:50:57 ----HD---- C:\ProgramData\CanonBJ
2014-05-07 17:50:57 ----D---- C:\ProgramData\Intel
2014-05-07 17:50:57 ----D---- C:\ProgramData\Apple Computer
2014-05-07 17:50:57 ----D---- C:\ProgramData\Apple
2014-05-07 17:50:57 ----D---- C:\ProgramData\Advanced
2014-05-07 17:50:57 ----D---- C:\ProgramData\Adobe
2014-05-07 17:50:57 ----D---- C:\Program Files\Windows Sidebar
2014-05-07 17:50:50 ----D---- C:\Program Files\Windows NT
2014-05-07 17:50:44 ----D---- C:\Program Files\Windows Mail
2014-05-07 17:50:41 ----D---- C:\Program Files\Windows Live
2014-05-07 17:50:41 ----D---- C:\Program Files\Windows Journal
2014-05-07 17:50:39 ----D---- C:\Program Files\Windows Defender
2014-05-07 17:50:39 ----D---- C:\Program Files\ThinkVantage
2014-05-07 17:50:21 ----D---- C:\Program Files\ThinkPad
2014-05-07 17:50:20 ----D---- C:\Program Files\Synaptics
2014-05-07 17:50:20 ----D---- C:\Program Files\Shark007
2014-05-07 17:50:20 ----D---- C:\Program Files\Reference Assemblies
2014-05-07 17:50:20 ----D---- C:\Program Files\Protector Suite
2014-05-07 17:50:20 ----D---- C:\Program Files\MSBuild
2014-05-07 17:50:20 ----D---- C:\Program Files\MLPS
2014-05-07 17:50:20 ----D---- C:\Program Files\Microsoft Silverlight
2014-05-07 17:50:20 ----D---- C:\Program Files\Microsoft Office
2014-05-07 17:50:20 ----D---- C:\Program Files\Microsoft Games
2014-05-07 17:50:20 ----D---- C:\Program Files\Lenovo
2014-05-07 17:50:20 ----D---- C:\Program Files\iTunes
2014-05-07 17:50:19 ----D---- C:\Program Files\Intel
2014-05-07 17:50:19 ----D---- C:\Program Files\DVD Maker
2014-05-07 17:50:19 ----D---- C:\Program Files\DIFX
2014-05-07 17:50:19 ----D---- C:\Program Files\CPUID
2014-05-07 17:50:19 ----D---- C:\Program Files\CONEXANT
2014-05-07 17:50:19 ----D---- C:\Program Files\Common Files\System
2014-05-07 17:50:19 ----D---- C:\Program Files\Common Files\SpeechEngines
2014-05-07 17:50:19 ----D---- C:\Program Files\Common Files\Microsoft Shared
2014-05-07 17:50:19 ----D---- C:\Program Files\Common Files
2014-05-07 17:50:00 ----D---- C:\Program Files\Common Files\Intel
2014-05-07 17:50:00 ----D---- C:\Program Files\Common Files\Canon
2014-05-07 17:49:59 ----HD---- C:\Program Files\CanonBJ
2014-05-07 17:49:59 ----D---- C:\Program Files\Common Files\Apple
2014-05-07 17:49:59 ----D---- C:\Program Files\Canon
2014-05-07 17:49:59 ----D---- C:\Program Files\AuthenTec
2014-05-07 17:49:59 ----D---- C:\Program Files (x86)\Windows Sidebar
2014-05-07 17:49:59 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2014-05-07 17:49:59 ----D---- C:\Program Files (x86)\Windows NT
2014-05-07 17:49:59 ----D---- C:\Program Files (x86)\Windows Media Player
2014-05-07 17:49:59 ----D---- C:\Program Files (x86)\Windows Mail
2014-05-07 17:49:59 ----D---- C:\Program Files (x86)\Windows Live
2014-05-07 17:49:59 ----D---- C:\Program Files (x86)\Windows Defender
2014-05-07 17:49:59 ----D---- C:\Program Files (x86)\VS Revo Group
2014-05-07 17:49:59 ----D---- C:\Program Files (x86)\ThinkPad
2014-05-07 17:49:58 ----D---- C:\Program Files (x86)\STORMWARE
2014-05-07 17:49:58 ----D---- C:\Program Files (x86)\Software602
2014-05-07 17:49:58 ----D---- C:\Program Files (x86)\Shark007
2014-05-07 17:49:58 ----D---- C:\Program Files (x86)\Reference Assemblies
2014-05-07 17:49:58 ----D---- C:\Program Files (x86)\QuickTime
2014-05-07 17:49:58 ----D---- C:\Program Files (x86)\Nero
2014-05-07 17:49:58 ----D---- C:\Program Files (x86)\MSBuild
2014-05-07 17:49:58 ----D---- C:\Program Files (x86)\Microsoft.NET
2014-05-07 17:49:58 ----D---- C:\Program Files (x86)\Microsoft SQL Server Compact Edition
2014-05-07 17:49:58 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2014-05-07 17:49:58 ----D---- C:\Program Files (x86)\Microsoft Security Client
2014-05-07 17:49:58 ----D---- C:\Program Files (x86)\Microsoft Office
2014-05-07 17:49:58 ----D---- C:\Program Files (x86)\Microsoft Analysis Services
2014-05-07 17:49:58 ----D---- C:\Program Files (x86)\Lenovo
2014-05-07 17:49:57 ----D---- C:\Program Files (x86)\InterVideo
2014-05-07 17:49:57 ----D---- C:\Program Files (x86)\Internet Explorer
2014-05-07 17:49:54 ----D---- C:\Program Files (x86)\Intel
2014-05-07 17:49:52 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2014-05-07 17:49:52 ----D---- C:\Program Files (x86)\Integrated Camera Driver
2014-05-07 17:49:52 ----D---- C:\Program Files (x86)\Creative
2014-05-07 17:49:50 ----D---- C:\Program Files (x86)\Cisco
2014-05-07 17:49:50 ----D---- C:\Program Files (x86)\CIGLER SOFTWARE
2014-05-07 17:49:50 ----D---- C:\Program Files (x86)\Canon
2014-05-07 17:49:49 ----SHD---- C:\Boot
2014-05-07 17:49:49 ----D---- C:\Program Files (x86)\Adobe
2014-05-07 17:49:49 ----D---- C:\Program Files (x86)\ACDSee32
2014-05-07 17:49:49 ----D---- C:\Intel
2014-05-07 17:49:49 ----D---- C:\DRIVERS
2014-05-07 15:13:54 ----D---- C:\ProgramData\Spybot - Search & Destroy
2014-05-01 20:42:03 ----D---- C:\Windows\system32\FxsTmp
2014-05-01 19:52:24 ----D---- C:\Users\Dan\AppData\Roaming\Canon
2014-04-25 21:01:06 ----D---- C:\ProgramData\PCDr
2014-04-23 11:39:00 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 DzHDD64;DzHDD64; C:\Windows\System32\DRIVERS\DzHDD64.sys [2014-03-07 29512]
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2010-03-03 540696]
R0 iaStorA;iaStorA; C:\Windows\system32\DRIVERS\iaStorA.sys [2013-11-16 632168]
R0 iaStorF;iaStorF; C:\Windows\system32\DRIVERS\iaStorF.sys [2013-11-16 28008]
R0 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2014-01-25 268512]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 Shockprf;Shockprf; C:\Windows\System32\DRIVERS\Apsx64.sys [2010-06-16 136816]
R0 TPDIGIMN;TPDIGIMN; C:\Windows\System32\DRIVERS\ApsHM64.sys [2010-06-16 23664]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 199552]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 514560]
R1 lenovo.smi;Lenovo System Interface Driver; C:\Windows\system32\DRIVERS\smiifx64.sys [2013-05-22 15472]
R1 SCDEmu;SCDEmu; C:\Windows\system32\drivers\SCDEmu.sys [2008-01-20 57776]
R1 TPPWRIF;TPPWRIF; C:\Windows\System32\drivers\Tppwr64v.sys [2014-03-07 20736]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 IDMWFP;IDMWFP; C:\Windows\system32\DRIVERS\idmwfp.sys [2013-11-28 175480]
R2 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2014-03-11 133928]
R2 regi;regi; \??\C:\Windows\system32\drivers\regi.sys [2007-01-15 14112]
R2 rimspci;rimspci; C:\Windows\system32\DRIVERS\rimspe64.sys [2009-10-26 61952]
R3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
R3 BthPan;Bluetooth Device (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
R3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
R3 btwampfl;btwampfl Bluetooth filter driver; \??\C:\Windows\system32\drivers\btwampfl.sys [2012-12-04 598808]
R3 btwaudio;Bluetooth Audio Device Service; C:\Windows\system32\drivers\btwaudio.sys [2012-05-02 184144]
R3 btwavdt;Bluetooth AVDT; C:\Windows\system32\drivers\btwavdt.sys [2012-03-06 210984]
R3 btwl2cap;Bluetooth L2CAP Service; C:\Windows\system32\DRIVERS\btwl2cap.sys [2011-09-18 39976]
R3 btwrchid;btwrchid; C:\Windows\system32\DRIVERS\btwrchid.sys [2012-03-06 21544]
R3 CnxtHdAudService;Conexant UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\CHDRT64.sys [2010-08-25 682624]
R3 e1kexpress;Intel(R) PRO/1000 PCI Express Network Connection Driver K; C:\Windows\system32\DRIVERS\e1k62x64.sys [2011-07-20 342704]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\Windows\system32\DRIVERS\GEARAspiWDM.sys [2012-08-21 33240]
R3 HECIx64;Intel(R) Management Engine Interface; C:\Windows\system32\DRIVERS\HECIx64.sys [2013-02-19 57848]
R3 IBMPMDRV;IBMPMDRV; C:\Windows\system32\DRIVERS\ibmpmdrv.sys [2014-02-27 57144]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2012-01-10 12311904]
R3 Impcd;Impcd; C:\Windows\system32\DRIVERS\Impcd.sys [2010-02-26 158976]
R3 IntcDAud;Intel(R) Display Audio; C:\Windows\system32\DRIVERS\IntcDAud.sys [2010-02-02 271872]
R3 NETwNs64;___ Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows 7 - 64 Bit; C:\Windows\system32\DRIVERS\NETwNs64.sys [2010-07-14 7821312]
R3 psadd;Lenovo Parties Service Access Device Driver; C:\Windows\system32\DRIVERS\psadd.sys [2014-04-13 40248]
R3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
R3 sdbus;sdbus; C:\Windows\system32\drivers\sdbus.sys [2010-11-20 109056]
R3 Sftfs;Sftfs; C:\Windows\system32\DRIVERS\Sftfslh.sys [2013-06-26 767144]
R3 Sftplay;Sftplay; C:\Windows\system32\DRIVERS\Sftplaylh.sys [2013-06-26 273576]
R3 Sftredir;Sftredir; C:\Windows\system32\DRIVERS\Sftredirlh.sys [2013-06-26 28840]
R3 Sftvol;Sftvol; C:\Windows\system32\DRIVERS\Sftvollh.sys [2013-06-26 23208]
R3 SmbDrvI;SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [2013-11-15 45296]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2013-11-15 461040]
R3 TPM;TPM; C:\Windows\system32\drivers\tpm.sys [2009-07-14 38400]
R3 TVTI2C;Lenovo SM bus driver; C:\Windows\system32\DRIVERS\Tvti2c.sys [2009-09-24 41536]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S2 smihlp2;SMI Helper Driver (smihlp2); \??\C:\Program Files\ThinkVantage Fingerprint Software\smihlp.sys []
S2 SPDRIVER_1.0.0.24;SPDRIVER_1.0.0.24; \??\C:\Program Files (x86)\ShopperPro\JSDriver\1.0.0.24\jsdrv.sys []
S2 SPDRIVER_1.35.1.155;SPDRIVER_1.35.1.155; \??\C:\Program Files (x86)\ShopperPro\JSDriver\1.35.1.155\jsdrv.sys []
S3 5U877;USB Video Device; C:\Windows\system32\DRIVERS\5U877.sys [2009-12-15 163072]
S3 adusbser;AnyDATA USB Device for Legacy Serial Communication; C:\Windows\system32\DRIVERS\adusbser.sys [2009-11-06 154112]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 btusbflt;Bluetooth USB Filter; C:\Windows\system32\drivers\btusbflt.sys [2014-02-27 54824]
S3 netw5v64;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 64 Bit; C:\Windows\system32\DRIVERS\netw5v64.sys [2009-06-10 5434368]
S3 PCDSRVC{127174DC-C366ED8B-06020101}_0;PCDSRVC{127174DC-C366ED8B-06020101}_0 - PCDR Kernel Mode Service Helper Driver; \??\c:\program files\pc-doctor\pcdsrvc_x64.pkms [2010-11-12 25072]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 pmxdrv;pmxdrv; \??\C:\Windows\system32\drivers\pmxdrv.sys [2010-12-10 31152]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 165888]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 6656]
S3 SrvHsfHDA;SrvHsfHDA; C:\Windows\system32\DRIVERS\VSTAZL6.SYS [2009-06-10 292864]
S3 SrvHsfV92;SrvHsfV92; C:\Windows\system32\DRIVERS\VSTDPV6.SYS [2009-06-10 1485312]
S3 SrvHsfWinac;SrvHsfWinac; C:\Windows\system32\DRIVERS\VSTCNXT6.SYS [2009-06-10 740864]
S3 StillCam;Ovladač digitálního fotoaparátu pro sériový port; C:\Windows\system32\drivers\serscan.sys [2009-07-14 12288]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 34688]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2013-10-02 56832]
S3 USBAAPL64;Apple Mobile USB Driver; C:\Windows\System32\Drivers\usbaapl64.sys [2011-02-18 51712]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2013-07-03 42496]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 21760]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 602XML Updater;602Updater; C:\Program Files (x86)\Common Files\soft602\602updsvc\602updsvc.exe [2010-04-14 73728]
R2 AcPrfMgrSvc;AcPrfMgrSvc; C:\Program Files (x86)\Lenovo\Access Connections\AcPrfMgrSvc.exe [2014-03-14 133464]
R2 AcSvc;AcSvc; C:\Program Files (x86)\Lenovo\Access Connections\AcSvc.exe [2014-03-14 272728]
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-12-21 65432]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-31 462184]
R2 btwdins;Bluetooth Service; C:\Program Files\ThinkPad\Bluetooth Software\btwdins.exe [2013-05-14 1008344]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 cvhsvc;Client Virtualization Handler; C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE [2013-04-22 822504]
R2 EvtEng;Intel(R) PROSet/Wireless Event Log; C:\Program Files\Intel\WiFi\bin\EvtEng.exe [2010-07-20 1429776]
R2 IBMPMSVC;Lenovo PM Service; C:\Windows\system32\ibmpmsvc.exe [2014-02-27 68440]
R2 IviRegMgr;IviRegMgr; C:\Program Files (x86)\Common Files\InterVideo\RegMgr\iviRegMgr.exe [2007-01-05 112152]
R2 LENOVO.CAMMUTE;Lenovo Camera Mute; C:\Program Files\Lenovo\Communications Utility\CAMMUTE.exe [2010-07-27 50536]
R2 LENOVO.MICMUTE;Lenovo Microphone Mute; C:\Program Files\LENOVO\HOTKEY\MICMUTE.exe [2010-04-07 45496]
R2 LENOVO.TPKNRSVC;Lenovo Keyboard Noise Reduction; C:\Program Files\Lenovo\Communications Utility\TPKNRSVC.exe [2010-07-27 74088]
R2 Lenovo.VIRTSCRLSVC;Lenovo Auto Scroll; C:\Program Files\LENOVO\VIRTSCRL\lvvsst.exe [2010-04-07 93032]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2013-05-03 325432]
R2 MsMpSvc;Microsoft Antimalware Service; c:\Program Files\Microsoft Security Client\MsMpEng.exe [2014-03-11 23808]
R2 RegSrvc;Intel(R) PROSet/Wireless Registry Service; C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe [2010-07-20 838928]
R2 sftlist;Application Virtualization Client; C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe [2013-06-26 523944]
R2 ThinkVantage Registry Monitor Service;ThinkVantage Registry Monitor Service; C:\Program Files (x86)\Common Files\Lenovo\tvt_reg_monitor_svc.exe [2009-08-29 1019904]
R2 TPHKLOAD;Lenovo Hotkey Client Loader; C:\Program Files\LENOVO\HOTKEY\TPHKLOAD.exe [2013-05-24 126456]
R2 TPHKSVC;On Screen Display; C:\Program Files\LENOVO\HOTKEY\TPHKSVC.exe [2010-04-07 63928]
R2 UNS;Intel(R) Management & Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2013-05-03 2497848]
R3 NisSrv;@C:\Program Files\Microsoft Security Client\MpAsDesc.dll,-243; c:\Program Files\Microsoft Security Client\NisSrv.exe [2014-03-11 347872]
R3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
R3 sftvsa;Application Virtualization Service Agent; C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe [2013-06-26 207528]
R3 TVT Backup Service;TVT Backup Service; C:\Program Files (x86)\Lenovo\Rescue and Recovery\rrservice.exe [2010-07-29 1475896]
S2 Apple Mobile Device;Apple Mobile Device; C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2014-02-12 43336]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-09-11 124088]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-05-07 116648]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-05-14 257712]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 DozeSvc;Lenovo Doze Mode Service; C:\Program Files (x86)\ThinkPad\Utilities\DZSVC64.EXE [2014-03-07 320560]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-05-07 116648]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2014-03-06 111616]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2014-03-29 119408]
S3 NBService;NBService; C:\Program Files (x86)\Nero\Nero 7\Nero BackItUp\NBService.exe [2007-06-29 800040]
S3 NMIndexingService;NMIndexingService; C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe [2007-06-27 279848]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 Power Manager DBC Service;Power Manager Service; C:\Program Files (x86)\ThinkPad\Utilities\PWMDBSVC.EXE [2014-03-07 1669976]
S3 PwmEWSvc;Cisco EnergyWise Enabler; C:\Program Files (x86)\ThinkPad\Utilities\PWMEWSVC.EXE [2014-03-07 1664856]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 SUService;System Update; C:\Program Files (x86)\Lenovo\System Update\SUService.exe [2014-02-21 24120]
S3 TPHDEXLGSVC;ThinkPad HDD APS Logging Service; C:\Windows\System32\TPHDEXLG64.exe [2010-06-16 47728]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2011-02-13 1255736]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-09-11 51808]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119541
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Nestandartní chovnání notebooku

#2 Příspěvek od Rudy »

Zdravím!
Spusťte nejprve tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Columboo
Návštěvník
Návštěvník
Příspěvky: 4
Registrován: 08 kvě 2014 13:00

Re: Nestandartní chovnání notebooku

#3 Příspěvek od Columboo »

Děkuji za rychlou odpověď.

Tak jsem udělal vše dle rady a tady je log:

# AdwCleaner v3.208 - Report created 16/05/2014 at 19:55:09
# Updated 11/05/2014 by Xplode
# Operating System : Windows 7 Professional Service Pack 1 (64 bits)
# Username : Dan - THINKPAD
# Running from : C:\Users\Dan\Desktop\adwcleaner_3.208.exe
# Option : Clean

***** [ Services ] *****


***** [ Files / Folders ] *****


***** [ Shortcuts ] *****


***** [ Registry ] *****


***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.17041


-\\ Mozilla Firefox v28.0 (cs)

[ File : C:\Users\Dan\AppData\Roaming\Mozilla\Firefox\Profiles\eeo3d587.default\prefs.js ]


-\\ Google Chrome v34.0.1847.137

[ File : C:\Users\Dan\AppData\Local\Google\Chrome\User Data\Default\preferences ]


*************************

AdwCleaner[R0].txt - [6466 octets] - [08/05/2014 00:01:43]
AdwCleaner[R1].txt - [1091 octets] - [08/05/2014 00:21:12]
AdwCleaner[R2].txt - [1291 octets] - [08/05/2014 12:38:29]
AdwCleaner[R3].txt - [1252 octets] - [16/05/2014 19:54:37]
AdwCleaner[S0].txt - [6464 octets] - [08/05/2014 00:03:03]
AdwCleaner[S1].txt - [1157 octets] - [08/05/2014 00:23:00]
AdwCleaner[S2].txt - [1354 octets] - [08/05/2014 12:41:45]
AdwCleaner[S3].txt - [1174 octets] - [16/05/2014 19:55:09]

########## EOF - C:\AdwCleaner\AdwCleaner[S3].txt - [1234 octets] ##########

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119541
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Nestandartní chovnání notebooku

#4 Příspěvek od Rudy »

Teď stáhněte OTM: http://oldtimer.geekstogo.com/OTM.exe a uložte na plochu. Spusťte a do levého okna zkopírujte:
:files
C:\Program Files (x86)\Internet Download Manager\IDMIECC.dll
C:\Users\Dan\AppData\Roaming\Izalf\azog.exe
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\iWebar-firefoxinstaller.job

:reg
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0055C089-8582-441B-A0BF-17B458C2A3A8}]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"azog.exe"=-
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"SunJavaUpdateSched"=-

:commands
[Purity]
[Emptytemp]
[Emptyflash]
a klikněte na >MoveIt!<. Po skenu restartujte PC a dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Columboo
Návštěvník
Návštěvník
Příspěvky: 4
Registrován: 08 kvě 2014 13:00

Re: Nestandartní chovnání notebooku

#5 Příspěvek od Columboo »

Děkuji za odpověď a radu.
Vše jsem učinil dle pokynů a tady je log:


Logfile of random's system information tool 1.08 (written by random/random)
Run by Dan at 2014-05-16 22:06:47
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 12 GB (11%) free of 111 GB
Total RAM: 3892 MB (59% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22:07:31, on 16.5.2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17041)
Boot mode: Normal

Running processes:
C:\PROGRA~1\Lenovo\HOTKEY\tpnumlkd.exe
C:\Program Files (x86)\Lenovo\Access Connections\AcDeskBandHlpr.exe
C:\Program Files\LENOVO\HOTKEY\tposdsvc.exe
C:\Program Files\Lenovo\HOTKEY\TPONSCR.exe
C:\Program Files\Lenovo\Zoom\TpScrex.exe
C:\Program Files\Lenovo\Communications Utility\TPKNRRES.exe
C:\Program Files (x86)\Internet Download Manager\IDMan.exe
C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE
C:\Windows\SysWOW64\rundll32.exe
C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe
C:\Program Files (x86)\Internet Download Manager\IEMonitor.exe
C:\Program Files (x86)\ThinkPad\Utilities\SCHTASK.exe
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
C:\Windows\syswow64\MsiExec.exe
C:\Program Files\trend micro\Dan.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://lenovo.msn.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files (x86)\Internet Download Manager\IDMIECC.dll
O2 - BHO: Podpora odkazu pro Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: AcroIEToolbarHelper Class - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~4\Office14\URLREDIR.DLL
O2 - BHO: Password Manager Browser Helper Object - {BF468356-BB7E-42D7-9F15-4F3B9BCFCED2} - C:\Program Files (x86)\Lenovo\Client Security Solution\tvtpwm_ie_com.dll
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll
O4 - HKLM\..\Run: [PWMTRV] rundll32 "C:\Program Files (x86)\ThinkPad\Utilities\PWMTR64V.DLL",PwrMgrBkGndMonitor
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [RotateImage] C:\Program Files (x86)\Integrated Camera Driver\X64\RCIMGDIR.exe
O4 - HKLM\..\Run: [IMSS] "C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe"
O4 - HKLM\..\Run: [IJNetworkScannerSelectorEX] C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe /FORCE
O4 - HKCU\..\Run: [IDMan] C:\Program Files (x86)\Internet Download Manager\IDMan.exe /onboot
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Startup: Výřezy obrazovky a spuštění aplikace OneNote 2010.lnk = C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~4\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~2\MICROS~4\Office14\ONBttnIE.dll/105
O8 - Extra context menu item: Převést cíl vazby do Adobe PDF - res://C:\Program Files (x86)\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Převést cíl vazby do existujícího PDF - res://C:\Program Files (x86)\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Převést do Adobe PDF - res://C:\Program Files (x86)\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Převést do existujícího PDF - res://C:\Program Files (x86)\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Převést vybrané vazby do Adobe PDF - res://C:\Program Files (x86)\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
O8 - Extra context menu item: Převést vybrané vazby do existujícího PDF - res://C:\Program Files (x86)\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
O8 - Extra context menu item: Převést výběr do Adobe PDF - res://C:\Program Files (x86)\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Převést výběr do existujícího PDF - res://C:\Program Files (x86)\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Stáhnout s IDM - C:\Program Files (x86)\Internet Download Manager\IEExt.htm
O8 - Extra context menu item: Stáhnout s IDM všechny odkazy - C:\Program Files (x86)\Internet Download Manager\IEGetAll.htm
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra button: (no name) - {F4F55DC8-0B69-4DFE-BA94-CB677B88B2A3} - C:\Program Files (x86)\Lenovo\Client Security Solution\tvtpwm_ie_com.dll
O9 - Extra 'Tools' menuitem: Lenovo Password Manager... - {F4F55DC8-0B69-4DFE-BA94-CB677B88B2A3} - C:\Program Files (x86)\Lenovo\Client Security Solution\tvtpwm_ie_com.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O20 - AppInit_DLLs: C:\PROGRA~2\Amazon\AMAZON~1\\AMAZON~3.DLL
O23 - Service: 602Updater (602XML Updater) - Software602 a.s. - C:\Program Files (x86)\Common Files\soft602\602updsvc\602updsvc.exe
O23 - Service: AcPrfMgrSvc - Lenovo - C:\Program Files (x86)\Lenovo\Access Connections\AcPrfMgrSvc.exe
O23 - Service: AcSvc - Lenovo - C:\Program Files (x86)\Lenovo\Access Connections\AcSvc.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\ThinkPad\Bluetooth Software\btwdins.exe
O23 - Service: Lenovo Doze Mode Service (DozeSvc) - Lenovo. - C:\Program Files (x86)\ThinkPad\Utilities\DZSVC64.EXE
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Lenovo PM Service (IBMPMSVC) - Unknown owner - C:\Windows\system32\ibmpmsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: IviRegMgr - InterVideo - C:\Program Files (x86)\Common Files\InterVideo\RegMgr\iviRegMgr.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Lenovo Camera Mute (LENOVO.CAMMUTE) - Lenovo Group Limited - C:\Program Files\Lenovo\Communications Utility\CAMMUTE.exe
O23 - Service: Lenovo Microphone Mute (LENOVO.MICMUTE) - Lenovo Group Limited - C:\Program Files\LENOVO\HOTKEY\MICMUTE.exe
O23 - Service: Lenovo Keyboard Noise Reduction (LENOVO.TPKNRSVC) - Lenovo Group Limited - C:\Program Files\Lenovo\Communications Utility\TPKNRSVC.exe
O23 - Service: Lenovo Auto Scroll (Lenovo.VIRTSCRLSVC) - Lenovo Group Limited - C:\Program Files\LENOVO\VIRTSCRL\lvvsst.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: NBService - Nero AG - C:\Program Files (x86)\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NMIndexingService - Nero AG - C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: Power Manager Service (Power Manager DBC Service) - Lenovo - C:\Program Files (x86)\ThinkPad\Utilities\PWMDBSVC.EXE
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Cisco EnergyWise Enabler (PwmEWSvc) - Lenovo Group Limited - C:\Program Files (x86)\ThinkPad\Utilities\PWMEWSVC.EXE
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: System Update (SUService) - Unknown owner - C:\Program Files (x86)\Lenovo\System Update\SUService.exe
O23 - Service: ThinkVantage Registry Monitor Service - Lenovo Group Limited - C:\Program Files (x86)\Common Files\Lenovo\tvt_reg_monitor_svc.exe
O23 - Service: ThinkPad HDD APS Logging Service (TPHDEXLGSVC) - Unknown owner - C:\Windows\System32\TPHDEXLG64.exe (file missing)
O23 - Service: Lenovo Hotkey Client Loader (TPHKLOAD) - Lenovo Group Limited - C:\Program Files\LENOVO\HOTKEY\TPHKLOAD.exe
O23 - Service: On Screen Display (TPHKSVC) - Lenovo Group Limited - C:\Program Files\LENOVO\HOTKEY\TPHKSVC.exe
O23 - Service: TVT Backup Service - Lenovo Group Limited - C:\Program Files (x86)\Lenovo\Rescue and Recovery\rrservice.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management & Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 15422 bytes

======Listing Processes======

\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\ibmpmsvc.exe
C:\Windows\system32\svchost.exe -k RPCSS
"c:\Program Files\Microsoft Security Client\MsMpEng.exe"
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-f56e2dda-266c-4a99-843e-8f3927104853 -SystemEventPortName:HostProcess-2eff3dc5-863e-4ee9-b41e-7d0f9e0ed0d4 -IoCancelEventPortName:HostProcess-f962ae28-95a5-4981-a3ce-1c70ee3d61f3 -NonStateChangingEventPortName:HostProcess-e3018817-860f-478b-a9f9-0817e6f908b4 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:69fba08d-84c5-4632-9ce6-3efab3ebdfde -DeviceGroupId:
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\ThinkVantage Fingerprint Software\upeksvr.exe"
C:\Windows\system32\WLANExt.exe 20362768
\??\C:\Windows\system32\conhost.exe "-179217389-2059947787338637319-1103498331-106822794-1249231187-14480986301052497228
taskeng.exe {31A4EDC9-3B0A-4C7C-BC88-E49AF5C3A883}
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\system32\svchost.exe -k WbioSvcGroup
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\Explorer.EXE
taskeng.exe {9944A5C1-2A36-4709-A8B4-5963FECF482B}
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
taskeng.exe {D5B2EC9D-B697-4F40-BD51-B8D282521369}
"\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Program Files\LENOVO\HOTKEY\TPHKSVC.exe"
"C:\Program Files (x86)\Common Files\soft602\602updsvc\602updsvc.exe"
C:\PROGRA~1\Lenovo\HOTKEY\tpnumlk.exe
C:\PROGRA~1\Lenovo\HOTKEY\tpnumlkd.exe
"C:\Program Files (x86)\Lenovo\Access Connections\AcPrfMgrSvc.exe"
"C:\Program Files (x86)\Lenovo\Access Connections\AcDeskBandHlpr.exe" -Embedding
C:\Windows\System32\alg.exe
"C:\Program Files\Bonjour\mDNSResponder.exe"
"C:\Program Files\ThinkPad\Bluetooth Software\btwdins.exe"
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
"C:\Program Files\Lenovo\Communications Utility\CAMMUTE.exe"
"C:\Program Files\Lenovo\Communications Utility\TPKNRSVC.exe"
"C:\Program Files\LENOVO\VIRTSCRL\lvvsst.exe"
C:\PROGRA~1\LENOVO\VIRTSCRL\virtscrl.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe"
C:\Windows\system32\svchost.exe -k regsvc
"C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe"
C:\Windows\system32\vssvc.exe
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
"C:\Program Files (x86)\Lenovo\Access Connections\AcSvc.exe"
WLIDSvcM.exe 3308
"C:\Program Files\Intel\WiFi\bin\EvtEng.exe"
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files\LENOVO\HOTKEY\MICMUTE.exe"
"C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe"
"C:\Program Files\LENOVO\HOTKEY\TPHKLOAD.exe"
C:\Program Files\LENOVO\HOTKEY\tposdsvc.exe
C:\Program Files\LENOVO\HOTKEY\shtctky.exe
"C:\Program Files\Lenovo\HOTKEY\TPONSCR.exe"
"C:\Program Files\Lenovo\Zoom\TpScrex.exe"
"C:\Windows\System32\TpShocks.exe"
"C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE"
"C:\Program Files\Lenovo\Communications Utility\TPKNRRES.exe"
C:\Windows\system32\wbem\unsecapp.exe -Embedding
"c:\Program Files\Microsoft Security Client\NisSrv.exe"
C:\Windows\system32\svchost.exe -k bthsvcs
"C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-6e2aa3cd-f602-47b6-867f-fe5d3fb60270 -SystemEventPortName:HostProcess-c3f5effc-3642-4b89-b891-8510f010c588 -IoCancelEventPortName:HostProcess-649c87ba-ae31-4a27-9651-25112bcfa845 -NonStateChangingEventPortName:HostProcess-d9b7c054-1b97-4a78-b13d-1fc68ee8beba -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:7b728e7a-9e07-47b0-84a4-cc01de6c436c -DeviceGroupId:WpdFsGroup
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files\Lenovo\Client Security Solution\cssauth.exe" silent
"C:\Program Files (x86)\Internet Download Manager\IDMan.exe" /onboot
"C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE" /tsr
"C:\Windows\System32\rundll32.exe" "C:\Program Files (x86)\ThinkPad\Utilities\PWMTR64V.DLL",PwrMgrBkGndMonitor
"C:\Windows\System32\rundll32.exe" "C:\Program Files (x86)\ThinkPad\Utilities\PWMTR64V.DLL",PwrMgrBkGndMonitor
"C:\Program Files (x86)\Integrated Camera Driver\X64\RCIMGDIR.exe"
"C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe" /FORCE
"C:\Program Files (x86)\Lenovo\Access Connections\SvcGuiHlpr.exe" /IpNotifyInstance
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files (x86)\Internet Download Manager\IEMonitor.exe"
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files (x86)\ThinkPad\Utilities\SCHTASK.exe"
C:\Windows\system32\igfxext.exe -Embedding
C:\Windows\servicing\TrustedInstaller.exe
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
"C:\Program Files\Synaptics\SynTP\SynTPLpr.exe"
C:\Windows\system32\msiexec.exe /V
C:\Windows\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PrivacyIconClient.exe" -startup
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
/Skip /ArmElevate /MODE:3 /PRODUCT:Reader /VERSION:11 /LANG:CZE
C:\Windows\syswow64\MsiExec.exe -Embedding 434057175D8131B61BF3515EFCC28129
C:\Windows\syswow64\MsiExec.exe -Embedding 525FF2DEB82085A4F158DC59CF8EDCBC M Global\MSI0000
"C:\Users\Dan\Desktop\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe_S-1-5-21-2796042957-1536676917-1516891552-10011_ Global\UsGthrCtrlFltPipeMssGthrPipe_S-1-5-21-2796042957-1536676917-1516891552-10011 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "1"
"C:\Windows\system32\SearchFilterHost.exe" 0 516 520 528 65536 524
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe2_ Global\UsGthrCtrlFltPipeMssGthrPipe2 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Program Files (x86)\Common Files\InterVideo\RegMgr\iviRegMgr.exe"
C:\Windows\system32\sppsvc.exe

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\PCDoctorBackgroundMonitorTask.job
C:\Windows\tasks\Registry Winner Schedule.job
C:\Windows\tasks\SystemToolsDailyTest.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0055C089-8582-441B-A0BF-17B458C2A3A8}]
IDM integration (IDMIEHlprObj Class) - C:\Program Files (x86)\Internet Download Manager\IDMIECC64.dll [2014-04-02 454680]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre8\bin\ssv.dll [2014-04-29 553384]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-22 529280]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL [2013-03-06 690392]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre8\bin\jp2ssv.dll [2014-04-29 211880]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0055C089-8582-441B-A0BF-17B458C2A3A8}]
IDM integration (IDMIEHlprObj Class) - C:\Program Files (x86)\Internet Download Manager\IDMIECC.dll [2014-04-02 403992]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Podpora odkazu pro Adobe PDF Reader - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2012-09-23 72336]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-09-23 60568]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-22 439168]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE7CD045-E861-484f-8273-0445EE161910}]
AcroIEToolbarHelper Class - C:\Program Files (x86)\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll [2004-12-14 225280]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~4\Office14\URLREDIR.DLL [2013-03-06 562904]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BF468356-BB7E-42D7-9F15-4F3B9BCFCED2}]
IePasswordManagerHelper Class - C:\Program Files (x86)\Lenovo\Client Security Solution\tvtpwm_ie_com.dll [2011-06-10 767288]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{47833539-D0C5-4125-9FA8-0819E2EAAC93} - Adobe PDF - C:\Program Files (x86)\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll [2004-12-14 225280]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"TpShocks"=C:\Windows\SYSTEM32\TpShocks.exe [2010-07-02 380776]
"SmartAudio"=C:\Program Files\CONEXANT\SAII\SAIICpl.exe [2009-11-16 307768]
"LENOVO.TPKNRRES"=C:\Program Files\Lenovo\Communications Utility\TPKNRRES.exe [2010-07-27 62312]
"AcWin7Hlpr"=C:\Program Files (x86)\Lenovo\Access Connections\AcTBenabler.exe [2014-03-14 63832]
"MSC"=C:\Program Files\Microsoft Security Client\msseces.exe [2014-03-11 1271072]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2012-01-10 167704]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2012-01-10 392984]
"Persistence"=C:\Windows\system32\igfxpers.exe [2012-01-10 417560]
"cssauth"=C:\Program Files\Lenovo\Client Security Solution\cssauth.exe [2011-06-10 5990200]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"IDMan"=C:\Program Files (x86)\Internet Download Manager\IDMan.exe [2014-05-16 3829328]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"PWMTRV"=rundll32 C:\Program Files (x86)\ThinkPad\Utilities\PWMTR64V.DLL,PwrMgrBkGndMonitor []
"QuickTime Task"=C:\Program Files (x86)\QuickTime\QTTask.exe [2014-01-17 421888]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904]
"RotateImage"=C:\Program Files (x86)\Integrated Camera Driver\X64\RCIMGDIR.exe [2008-10-30 55808]
"IMSS"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe [2013-05-03 111928]
"IJNetworkScannerSelectorEX"=C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe [2013-02-19 453736]

C:\Users\Dan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Výřezy obrazovky a spuštění aplikace OneNote 2010.lnk - C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\SYSTEM32\igfxdev.dll [2012-01-10 390656]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\psfus]
C:\Program Files\ThinkVantage Fingerprint Software\psqlpwd.dll [2013-03-05 136488]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"notification packages"=scecli
ACGina
C:\Program Files\ThinkPad\Bluetooth Software\BtwProximityCP.dll
C:\Program Files\ThinkVantage Fingerprint Software\psqlpwd.dll

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DisableTaskMgr"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=149

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 months======

2014-05-16 21:59:12 ----D---- C:\_OTM
2014-05-16 19:12:48 ----D---- C:\rsit
2014-05-16 19:12:48 ----D---- C:\Program Files\trend micro
2014-05-16 19:02:26 ----D---- C:\FRST
2014-05-15 03:06:52 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2014-05-15 03:06:52 ----A---- C:\Windows\system32\mshtmled.dll
2014-05-15 03:06:52 ----A---- C:\Windows\system32\mshtml.dll
2014-05-15 03:06:51 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2014-05-14 06:58:01 ----A---- C:\Windows\system32\aepdu.dll
2014-05-14 06:58:01 ----A---- C:\Windows\system32\aeinv.dll
2014-05-14 06:58:00 ----A---- C:\Windows\SYSWOW64\shell32.dll
2014-05-14 06:58:00 ----A---- C:\Windows\system32\shell32.dll
2014-05-14 06:57:56 ----A---- C:\Windows\system32\lsasrv.dll
2014-05-14 06:57:56 ----A---- C:\Windows\system32\kerberos.dll
2014-05-14 06:57:55 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2014-05-14 06:57:55 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2014-05-14 06:57:55 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2014-05-14 06:57:55 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2014-05-14 06:57:55 ----A---- C:\Windows\system32\winlogon.exe
2014-05-14 06:57:55 ----A---- C:\Windows\system32\objsel.dll
2014-05-14 06:57:55 ----A---- C:\Windows\system32\msv1_0.dll
2014-05-14 06:57:54 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2014-05-14 06:57:54 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2014-05-14 06:57:54 ----A---- C:\Windows\SYSWOW64\objsel.dll
2014-05-14 06:57:54 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2014-05-14 06:57:54 ----A---- C:\Windows\system32\wdigest.dll
2014-05-14 06:57:54 ----A---- C:\Windows\system32\TSpkg.dll
2014-05-14 06:57:54 ----A---- C:\Windows\system32\ntoskrnl.exe
2014-05-14 06:57:54 ----A---- C:\Windows\system32\KernelBase.dll
2014-05-14 06:57:54 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2014-05-14 06:57:53 ----A---- C:\Windows\SYSWOW64\wincredprovider.dll
2014-05-14 06:57:53 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2014-05-14 06:57:53 ----A---- C:\Windows\SYSWOW64\schannel.dll
2014-05-14 06:57:53 ----A---- C:\Windows\SYSWOW64\secur32.dll
2014-05-14 06:57:53 ----A---- C:\Windows\SYSWOW64\dpapiprovider.dll
2014-05-14 06:57:53 ----A---- C:\Windows\SYSWOW64\dimsroam.dll
2014-05-14 06:57:53 ----A---- C:\Windows\SYSWOW64\credssp.dll
2014-05-14 06:57:53 ----A---- C:\Windows\SYSWOW64\cngprovider.dll
2014-05-14 06:57:53 ----A---- C:\Windows\SYSWOW64\capiprovider.dll
2014-05-14 06:57:53 ----A---- C:\Windows\SYSWOW64\adprovider.dll
2014-05-14 06:57:53 ----A---- C:\Windows\system32\wincredprovider.dll
2014-05-14 06:57:53 ----A---- C:\Windows\system32\sspisrv.dll
2014-05-14 06:57:53 ----A---- C:\Windows\system32\sspicli.dll
2014-05-14 06:57:53 ----A---- C:\Windows\system32\schannel.dll
2014-05-14 06:57:53 ----A---- C:\Windows\system32\secur32.dll
2014-05-14 06:57:53 ----A---- C:\Windows\system32\lsass.exe
2014-05-14 06:57:53 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2014-05-14 06:57:53 ----A---- C:\Windows\system32\dpapiprovider.dll
2014-05-14 06:57:53 ----A---- C:\Windows\system32\dimsroam.dll
2014-05-14 06:57:53 ----A---- C:\Windows\system32\credssp.dll
2014-05-14 06:57:53 ----A---- C:\Windows\system32\cngprovider.dll
2014-05-14 06:57:53 ----A---- C:\Windows\system32\capiprovider.dll
2014-05-14 06:57:53 ----A---- C:\Windows\system32\adprovider.dll
2014-05-09 03:00:26 ----SD---- C:\Windows\system32\CompatTel
2014-05-08 15:10:43 ----D---- C:\ProgramData\IDM
2014-05-08 15:10:30 ----D---- C:\Program Files (x86)\Internet Download Manager
2014-05-08 11:22:07 ----D---- C:\ProgramData\Malwarebytes
2014-05-08 11:21:59 ----D---- C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2014-05-08 00:47:01 ----SHD---- C:\$RECYCLE.BIN
2014-05-08 00:45:40 ----D---- C:\Windows\Temp
2014-05-08 00:45:40 ----A---- C:\Windows\zoek-delete.exe
2014-05-08 00:45:36 ----A---- C:\folders.txt
2014-05-08 00:36:40 ----D---- C:\zoek
2014-05-08 00:24:57 ----D---- C:\zoek_backup
2014-05-08 00:10:45 ----D---- C:\Windows\ERUNT
2014-05-08 00:02:24 ----A---- C:\Windows\SYSWOW64\sqlite3.dll
2014-05-08 00:01:38 ----D---- C:\AdwCleaner
2014-05-07 23:24:03 ----D---- C:\ProgramData\AVAST Software
2014-05-07 15:49:23 ----D---- C:\Program Files (x86)\McAfee Security Scan
2014-05-07 15:47:43 ----D---- C:\Users\Dan\AppData\Roaming\AVG2014
2014-05-07 15:46:46 ----D---- C:\Users\Dan\AppData\Roaming\TuneUp Software
2014-05-07 15:43:20 ----HD---- C:\$AVG
2014-05-07 15:43:18 ----D---- C:\ProgramData\AVG2014
2014-05-07 15:41:44 ----D---- C:\Program Files (x86)\AVG
2014-05-07 15:40:24 ----HD---- C:\ProgramData\Common Files
2014-05-07 15:40:24 ----D---- C:\ProgramData\MFAData
2014-05-07 14:13:12 ----D---- C:\Program Files (x86)\Spybot - Search & Destroy 2
2014-05-03 13:30:40 ----D---- C:\ProgramData\Loaris
2014-05-03 13:30:37 ----D---- C:\Program Files\Loaris
2014-05-01 20:42:40 ----HD---- C:\ProgramData\CanonIJMIG
2014-05-01 20:05:29 ----HD---- C:\ProgramData\CanonIJMyPrinter
2014-04-29 23:33:04 ----D---- C:\Users\Dan\AppData\Roaming\Xavion
2014-04-29 23:31:22 ----D---- C:\Program Files\J7Z
2014-04-29 23:29:24 ----A---- C:\Windows\system32\javaws.exe
2014-04-29 23:28:46 ----A---- C:\Windows\system32\WindowsAccessBridge-64.dll
2014-04-29 23:28:46 ----A---- C:\Windows\system32\javaw.exe
2014-04-29 23:28:45 ----A---- C:\Windows\system32\java.exe
2014-04-29 23:28:25 ----D---- C:\Program Files\Java
2014-04-29 23:12:09 ----D---- C:\Profiles
2014-04-29 23:12:09 ----D---- C:\Output
2014-04-29 23:12:09 ----D---- C:\Lists
2014-04-29 23:08:29 ----D---- C:\Program Files\Archiving
2014-04-29 14:30:39 ----A---- C:\Windows\system32\drivers\idmwfp.sys
2014-04-24 20:29:53 ----HD---- C:\ProgramData\CanonIJEGV
2014-04-24 19:11:17 ----A---- C:\Windows\SYSWOW64\CNHMCA.dll
2014-04-24 19:11:17 ----A---- C:\Windows\SYSWOW64\CNC_BUL.dll
2014-04-24 19:10:11 ----D---- C:\Windows\system32\STRING
2014-04-24 19:10:11 ----A---- C:\Windows\system32\CNMN6UI.DLL
2014-04-24 19:10:11 ----A---- C:\Windows\system32\CNMN6PPM.DLL
2014-04-24 19:10:10 ----A---- C:\Windows\SYSWOW64\CNMNPPM.DLL
2014-04-24 19:09:35 ----D---- C:\ProgramData\CanonIJWSpt
2014-04-24 18:57:19 ----A---- C:\Windows\system32\CNMLMBU.DLL

======List of files/folders modified in the last 1 months======

2014-05-16 22:07:30 ----SHD---- C:\Config.Msi
2014-05-16 22:06:39 ----SHD---- C:\Windows\Installer
2014-05-16 22:06:30 ----D---- C:\Windows\SysWOW64
2014-05-16 22:06:23 ----A---- C:\Windows\SYSWOW64\log.txt
2014-05-16 22:05:56 ----D---- C:\Users\Dan\AppData\Roaming\DMCache
2014-05-16 22:05:47 ----D---- C:\Windows\system32\DriverStore
2014-05-16 22:05:36 ----D---- C:\Windows\system32\config
2014-05-16 22:03:27 ----D---- C:\Windows\system32\drivers
2014-05-16 21:59:25 ----D---- C:\Windows\System32
2014-05-16 21:59:13 ----D---- C:\Windows\Tasks
2014-05-16 20:02:28 ----D---- C:\Windows\inf
2014-05-16 20:02:28 ----A---- C:\Windows\system32\PerfStringBackup.INI
2014-05-16 19:35:09 ----SHD---- C:\System Volume Information
2014-05-16 19:12:48 ----RD---- C:\Program Files
2014-05-16 19:03:22 ----D---- C:\Windows
2014-05-15 04:01:48 ----D---- C:\Windows\rescache
2014-05-15 03:37:05 ----D---- C:\Windows\Microsoft.NET
2014-05-15 03:36:43 ----RSD---- C:\Windows\assembly
2014-05-15 03:25:18 ----D---- C:\Windows\winsxs
2014-05-15 03:24:07 ----D---- C:\Windows\system32\cs-CZ
2014-05-15 03:24:07 ----D---- C:\Windows\PolicyDefinitions
2014-05-15 03:08:49 ----D---- C:\ProgramData\Microsoft Help
2014-05-15 03:07:04 ----D---- C:\Windows\system32\catroot2
2014-05-15 03:07:04 ----D---- C:\Windows\system32\catroot
2014-05-15 03:05:29 ----D---- C:\Program Files (x86)\Common Files
2014-05-15 03:04:28 ----D---- C:\Windows\system32\MRT
2014-05-15 03:02:09 ----A---- C:\Windows\system32\MRT.exe
2014-05-14 12:22:39 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2014-05-08 19:53:16 ----D---- C:\Users\Dan\AppData\Roaming\IDM
2014-05-08 18:02:10 ----RD---- C:\Program Files (x86)
2014-05-08 15:10:43 ----HD---- C:\ProgramData
2014-05-08 11:57:15 ----D---- C:\Windows\system32\Tasks
2014-05-08 11:52:41 ----D---- C:\Windows\system32\wbem
2014-05-08 11:51:49 ----D---- C:\Windows\system32\wfp
2014-05-08 11:51:37 ----D---- C:\ProgramData\Lenovo
2014-05-08 11:51:33 ----D---- C:\Windows\registration
2014-05-08 11:51:13 ----D---- C:\Windows\AppCompat
2014-05-07 23:48:14 ----D---- C:\Program Files (x86)\Google
2014-05-07 23:16:40 ----AD---- C:\ProgramData\TEMP
2014-05-07 18:02:39 ----D---- C:\Windows\system32\drivers\UMDF
2014-05-07 18:02:39 ----D---- C:\Program Files\Windows Media Player
2014-05-07 18:02:39 ----D---- C:\Program Files\ThinkVantage Fingerprint Software
2014-05-07 18:02:39 ----D---- C:\Program Files\Microsoft Security Client
2014-05-07 18:02:39 ----D---- C:\Program Files\Internet Explorer
2014-05-07 18:01:08 ----D---- C:\Windows\SYSWOW64\wbem
2014-05-07 18:01:07 ----D---- C:\Windows\ehome
2014-05-07 18:01:07 ----D---- C:\Windows\AppPatch
2014-05-07 18:01:07 ----D---- C:\Program Files\Windows Portable Devices
2014-05-07 18:01:07 ----D---- C:\Program Files\Windows Photo Viewer
2014-05-07 17:59:03 ----D---- C:\Windows\SYSWOW64\Macromed
2014-05-07 17:58:59 ----D---- C:\Windows\system32\NDF
2014-05-07 17:58:52 ----D---- C:\Windows\system32\drivers\etc
2014-05-07 17:57:51 ----D---- C:\Program Files\WinRAR
2014-05-07 17:57:49 ----D---- C:\Program Files\PC-Doctor
2014-05-07 17:57:45 ----D---- C:\Program Files\Common Files\Lenovo
2014-05-07 17:57:44 ----D---- C:\Program Files\Bonjour
2014-05-07 17:57:42 ----D---- C:\Program Files (x86)\PowerISO
2014-05-07 17:57:40 ----D---- C:\Program Files (x86)\Mozilla Firefox
2014-05-07 17:57:39 ----D---- C:\Program Files (x86)\Microsoft Application Virtualization Client
2014-05-07 17:57:28 ----D---- C:\Program Files (x86)\Bonjour
2014-05-07 17:54:59 ----D---- C:\Windows\Web
2014-05-07 17:54:59 ----D---- C:\Windows\Vss
2014-05-07 17:54:59 ----D---- C:\Windows\twain_32
2014-05-07 17:54:59 ----D---- C:\Windows\SYSWOW64\XPSViewer
2014-05-07 17:54:37 ----D---- C:\Windows\SYSWOW64\winrm
2014-05-07 17:54:37 ----D---- C:\Windows\SYSWOW64\WindowsPowerShell
2014-05-07 17:54:37 ----D---- C:\Windows\SYSWOW64\wdi
2014-05-07 17:54:37 ----D---- C:\Windows\SYSWOW64\WCN
2014-05-07 17:54:37 ----D---- C:\Windows\SYSWOW64\spp
2014-05-07 17:54:37 ----D---- C:\Windows\SYSWOW64\spool
2014-05-07 17:54:37 ----D---- C:\Windows\SYSWOW64\Speech
2014-05-07 17:54:37 ----D---- C:\Windows\SYSWOW64\slmgr
2014-05-07 17:54:36 ----D---- C:\Windows\SYSWOW64\Printing_Admin_Scripts
2014-05-07 17:54:36 ----D---- C:\Windows\SYSWOW64\NetworkList
2014-05-07 17:54:36 ----D---- C:\Windows\SYSWOW64\MUI
2014-05-07 17:54:36 ----D---- C:\Windows\SYSWOW64\Msdtc
2014-05-07 17:54:36 ----D---- C:\Windows\SYSWOW64\migwiz
2014-05-07 17:54:36 ----D---- C:\Windows\SYSWOW64\migration
2014-05-07 17:54:36 ----D---- C:\Windows\SYSWOW64\InstallShield
2014-05-07 17:54:36 ----D---- C:\Windows\SYSWOW64\IME
2014-05-07 17:54:35 ----D---- C:\Windows\SYSWOW64\DriverStore
2014-05-07 17:54:35 ----D---- C:\Windows\SYSWOW64\drivers
2014-05-07 17:54:35 ----D---- C:\Windows\SYSWOW64\Dism
2014-05-07 17:54:28 ----D---- C:\Windows\SYSWOW64\cs-CZ
2014-05-07 17:54:28 ----D---- C:\Windows\SYSWOW64\config
2014-05-07 17:54:28 ----D---- C:\Windows\SYSWOW64\com
2014-05-07 17:53:17 ----D---- C:\Windows\system32\winrm
2014-05-07 17:53:17 ----D---- C:\Windows\system32\WindowsPowerShell
2014-05-07 17:53:16 ----D---- C:\Windows\system32\WinBioPlugIns
2014-05-07 17:53:16 ----D---- C:\Windows\system32\wdi
2014-05-07 17:53:16 ----D---- C:\Windows\system32\WCN
2014-05-07 17:53:15 ----D---- C:\Windows\system32\sysprep
2014-05-07 17:53:14 ----D---- C:\Windows\system32\SPReview
2014-05-07 17:53:14 ----D---- C:\Windows\system32\spp
2014-05-07 17:53:14 ----D---- C:\Windows\system32\spool
2014-05-07 17:52:50 ----D---- C:\Windows\system32\Speech
2014-05-07 17:52:50 ----D---- C:\Windows\system32\SMI
2014-05-07 17:52:50 ----D---- C:\Windows\system32\slmgr
2014-05-07 17:52:49 ----D---- C:\Windows\system32\Printing_Admin_Scripts
2014-05-07 17:52:49 ----D---- C:\Windows\system32\oobe
2014-05-07 17:52:48 ----D---- C:\Windows\system32\NetworkList
2014-05-07 17:52:48 ----D---- C:\Windows\system32\MUI
2014-05-07 17:52:48 ----D---- C:\Windows\system32\Msdtc
2014-05-07 17:52:47 ----SD---- C:\Windows\system32\Microsoft
2014-05-07 17:52:47 ----D---- C:\Windows\system32\migwiz
2014-05-07 17:52:47 ----D---- C:\Windows\system32\migration
2014-05-07 17:52:47 ----D---- C:\Windows\system32\Macromed
2014-05-07 17:52:47 ----D---- C:\Windows\system32\IME
2014-05-07 17:52:47 ----D---- C:\Windows\system32\EventProviders
2014-05-07 17:52:46 ----DC---- C:\Windows\system32\DRVSTORE
2014-05-07 17:52:11 ----HD---- C:\Windows\system32\CanonIJ Uninstaller Information
2014-05-07 17:52:11 ----D---- C:\Windows\system32\Dism
2014-05-07 17:52:11 ----D---- C:\Windows\system32\com
2014-05-07 17:52:10 ----D---- C:\Windows\system32\Boot
2014-05-07 17:52:10 ----D---- C:\Windows\Speech
2014-05-07 17:52:10 ----D---- C:\Windows\schemas
2014-05-07 17:52:10 ----D---- C:\Windows\Setup
2014-05-07 17:52:10 ----D---- C:\Windows\servicing
2014-05-07 17:52:10 ----D---- C:\Windows\ServiceProfiles
2014-05-07 17:52:10 ----D---- C:\Windows\security
2014-05-07 17:52:10 ----D---- C:\Windows\Resources
2014-05-07 17:52:10 ----D---- C:\Windows\PLA
2014-05-07 17:52:10 ----D---- C:\Windows\Performance
2014-05-07 17:52:10 ----D---- C:\Windows\Migration
2014-05-07 17:52:04 ----RSD---- C:\Windows\Media
2014-05-07 17:51:32 ----D---- C:\Windows\IME
2014-05-07 17:51:32 ----D---- C:\Windows\Help
2014-05-07 17:51:32 ----D---- C:\Windows\Globalization
2014-05-07 17:51:31 ----D---- C:\Windows\Downloaded Installations
2014-05-07 17:51:31 ----D---- C:\Windows\diagnostics
2014-05-07 17:51:31 ----D---- C:\Windows\Branding
2014-05-07 17:51:31 ----D---- C:\Windows\Boot
2014-05-07 17:51:22 ----RD---- C:\Users
2014-05-07 17:51:22 ----D---- C:\Users\Dan\AppData\Roaming\Update
2014-05-07 17:51:22 ----D---- C:\Users\Dan\AppData\Roaming\SoftGrid Client
2014-05-07 17:51:22 ----D---- C:\Users\Dan\AppData\Roaming\Riot Games
2014-05-07 17:51:21 ----SD---- C:\Users\Dan\AppData\Roaming\Microsoft
2014-05-07 17:51:21 ----D---- C:\Users\Dan\AppData\Roaming\Mozilla
2014-05-07 17:51:21 ----D---- C:\Users\Dan\AppData\Roaming\Intel
2014-05-07 17:51:21 ----D---- C:\Users\Dan\AppData\Roaming\Corel
2014-05-07 17:51:21 ----D---- C:\Users\Dan\AppData\Roaming\Adobe
2014-05-07 17:50:58 ----SD---- C:\ProgramData\Microsoft
2014-05-07 17:50:58 ----D---- C:\SWTOOLS
2014-05-07 17:50:58 ----D---- C:\swshare
2014-05-07 17:50:58 ----D---- C:\Riot Games
2014-05-07 17:50:58 ----D---- C:\ProgramData\PC-Doctor for Windows
2014-05-07 17:50:58 ----D---- C:\ProgramData\Norton
2014-05-07 17:50:58 ----D---- C:\ProgramData\Nero
2014-05-07 17:50:57 ----HD---- C:\ProgramData\CanonIJScan
2014-05-07 17:50:57 ----HD---- C:\ProgramData\CanonBJ
2014-05-07 17:50:57 ----D---- C:\ProgramData\Intel
2014-05-07 17:50:57 ----D---- C:\ProgramData\Apple Computer
2014-05-07 17:50:57 ----D---- C:\ProgramData\Apple
2014-05-07 17:50:57 ----D---- C:\ProgramData\Advanced
2014-05-07 17:50:57 ----D---- C:\ProgramData\Adobe
2014-05-07 17:50:57 ----D---- C:\Program Files\Windows Sidebar
2014-05-07 17:50:50 ----D---- C:\Program Files\Windows NT
2014-05-07 17:50:44 ----D---- C:\Program Files\Windows Mail
2014-05-07 17:50:41 ----D---- C:\Program Files\Windows Live
2014-05-07 17:50:41 ----D---- C:\Program Files\Windows Journal
2014-05-07 17:50:39 ----D---- C:\Program Files\Windows Defender
2014-05-07 17:50:39 ----D---- C:\Program Files\ThinkVantage
2014-05-07 17:50:21 ----D---- C:\Program Files\ThinkPad
2014-05-07 17:50:20 ----D---- C:\Program Files\Synaptics
2014-05-07 17:50:20 ----D---- C:\Program Files\Shark007
2014-05-07 17:50:20 ----D---- C:\Program Files\Reference Assemblies
2014-05-07 17:50:20 ----D---- C:\Program Files\Protector Suite
2014-05-07 17:50:20 ----D---- C:\Program Files\MSBuild
2014-05-07 17:50:20 ----D---- C:\Program Files\MLPS
2014-05-07 17:50:20 ----D---- C:\Program Files\Microsoft Silverlight
2014-05-07 17:50:20 ----D---- C:\Program Files\Microsoft Office
2014-05-07 17:50:20 ----D---- C:\Program Files\Microsoft Games
2014-05-07 17:50:20 ----D---- C:\Program Files\Lenovo
2014-05-07 17:50:20 ----D---- C:\Program Files\iTunes
2014-05-07 17:50:19 ----D---- C:\Program Files\Intel
2014-05-07 17:50:19 ----D---- C:\Program Files\DVD Maker
2014-05-07 17:50:19 ----D---- C:\Program Files\DIFX
2014-05-07 17:50:19 ----D---- C:\Program Files\CPUID
2014-05-07 17:50:19 ----D---- C:\Program Files\CONEXANT
2014-05-07 17:50:19 ----D---- C:\Program Files\Common Files\System
2014-05-07 17:50:19 ----D---- C:\Program Files\Common Files\SpeechEngines
2014-05-07 17:50:19 ----D---- C:\Program Files\Common Files\Microsoft Shared
2014-05-07 17:50:19 ----D---- C:\Program Files\Common Files
2014-05-07 17:50:00 ----D---- C:\Program Files\Common Files\Intel
2014-05-07 17:50:00 ----D---- C:\Program Files\Common Files\Canon
2014-05-07 17:49:59 ----HD---- C:\Program Files\CanonBJ
2014-05-07 17:49:59 ----D---- C:\Program Files\Common Files\Apple
2014-05-07 17:49:59 ----D---- C:\Program Files\Canon
2014-05-07 17:49:59 ----D---- C:\Program Files\AuthenTec
2014-05-07 17:49:59 ----D---- C:\Program Files (x86)\Windows Sidebar
2014-05-07 17:49:59 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2014-05-07 17:49:59 ----D---- C:\Program Files (x86)\Windows NT
2014-05-07 17:49:59 ----D---- C:\Program Files (x86)\Windows Media Player
2014-05-07 17:49:59 ----D---- C:\Program Files (x86)\Windows Mail
2014-05-07 17:49:59 ----D---- C:\Program Files (x86)\Windows Live
2014-05-07 17:49:59 ----D---- C:\Program Files (x86)\Windows Defender
2014-05-07 17:49:59 ----D---- C:\Program Files (x86)\VS Revo Group
2014-05-07 17:49:59 ----D---- C:\Program Files (x86)\ThinkPad
2014-05-07 17:49:58 ----D---- C:\Program Files (x86)\STORMWARE
2014-05-07 17:49:58 ----D---- C:\Program Files (x86)\Software602
2014-05-07 17:49:58 ----D---- C:\Program Files (x86)\Shark007
2014-05-07 17:49:58 ----D---- C:\Program Files (x86)\Reference Assemblies
2014-05-07 17:49:58 ----D---- C:\Program Files (x86)\QuickTime
2014-05-07 17:49:58 ----D---- C:\Program Files (x86)\Nero
2014-05-07 17:49:58 ----D---- C:\Program Files (x86)\MSBuild
2014-05-07 17:49:58 ----D---- C:\Program Files (x86)\Microsoft.NET
2014-05-07 17:49:58 ----D---- C:\Program Files (x86)\Microsoft SQL Server Compact Edition
2014-05-07 17:49:58 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2014-05-07 17:49:58 ----D---- C:\Program Files (x86)\Microsoft Security Client
2014-05-07 17:49:58 ----D---- C:\Program Files (x86)\Microsoft Office
2014-05-07 17:49:58 ----D---- C:\Program Files (x86)\Microsoft Analysis Services
2014-05-07 17:49:58 ----D---- C:\Program Files (x86)\Lenovo
2014-05-07 17:49:57 ----D---- C:\Program Files (x86)\InterVideo
2014-05-07 17:49:57 ----D---- C:\Program Files (x86)\Internet Explorer
2014-05-07 17:49:54 ----D---- C:\Program Files (x86)\Intel
2014-05-07 17:49:52 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2014-05-07 17:49:52 ----D---- C:\Program Files (x86)\Integrated Camera Driver
2014-05-07 17:49:52 ----D---- C:\Program Files (x86)\Creative
2014-05-07 17:49:50 ----D---- C:\Program Files (x86)\Cisco
2014-05-07 17:49:50 ----D---- C:\Program Files (x86)\CIGLER SOFTWARE
2014-05-07 17:49:50 ----D---- C:\Program Files (x86)\Canon
2014-05-07 17:49:49 ----SHD---- C:\Boot
2014-05-07 17:49:49 ----D---- C:\Program Files (x86)\Adobe
2014-05-07 17:49:49 ----D---- C:\Program Files (x86)\ACDSee32
2014-05-07 17:49:49 ----D---- C:\Intel
2014-05-07 17:49:49 ----D---- C:\DRIVERS
2014-05-07 15:13:54 ----D---- C:\ProgramData\Spybot - Search & Destroy
2014-05-01 20:42:03 ----D---- C:\Windows\system32\FxsTmp
2014-05-01 19:52:24 ----D---- C:\Users\Dan\AppData\Roaming\Canon
2014-04-25 21:01:06 ----D---- C:\ProgramData\PCDr
2014-04-23 11:39:00 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 DzHDD64;DzHDD64; C:\Windows\System32\DRIVERS\DzHDD64.sys [2014-03-07 29512]
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2010-03-03 540696]
R0 iaStorA;iaStorA; C:\Windows\system32\DRIVERS\iaStorA.sys [2013-11-16 632168]
R0 iaStorF;iaStorF; C:\Windows\system32\DRIVERS\iaStorF.sys [2013-11-16 28008]
R0 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2014-01-25 268512]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 Shockprf;Shockprf; C:\Windows\System32\DRIVERS\Apsx64.sys [2010-06-16 136816]
R0 TPDIGIMN;TPDIGIMN; C:\Windows\System32\DRIVERS\ApsHM64.sys [2010-06-16 23664]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 199552]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 514560]
R1 lenovo.smi;Lenovo System Interface Driver; C:\Windows\system32\DRIVERS\smiifx64.sys [2013-05-22 15472]
R1 SCDEmu;SCDEmu; C:\Windows\system32\drivers\SCDEmu.sys [2008-01-20 57776]
R1 TPPWRIF;TPPWRIF; C:\Windows\System32\drivers\Tppwr64v.sys [2014-03-07 20736]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 IDMWFP;IDMWFP; C:\Windows\system32\DRIVERS\idmwfp.sys [2013-11-28 175480]
R2 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2014-03-11 133928]
R2 regi;regi; \??\C:\Windows\system32\drivers\regi.sys [2007-01-15 14112]
R2 rimspci;rimspci; C:\Windows\system32\DRIVERS\rimspe64.sys [2009-10-26 61952]
R3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
R3 BthPan;Bluetooth Device (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
R3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
R3 btwampfl;btwampfl Bluetooth filter driver; \??\C:\Windows\system32\drivers\btwampfl.sys [2012-12-04 598808]
R3 btwaudio;Bluetooth Audio Device Service; C:\Windows\system32\drivers\btwaudio.sys [2012-05-02 184144]
R3 btwavdt;Bluetooth AVDT; C:\Windows\system32\drivers\btwavdt.sys [2012-03-06 210984]
R3 btwl2cap;Bluetooth L2CAP Service; C:\Windows\system32\DRIVERS\btwl2cap.sys [2011-09-18 39976]
R3 btwrchid;btwrchid; C:\Windows\system32\DRIVERS\btwrchid.sys [2012-03-06 21544]
R3 CnxtHdAudService;Conexant UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\CHDRT64.sys [2010-08-25 682624]
R3 e1kexpress;Intel(R) PRO/1000 PCI Express Network Connection Driver K; C:\Windows\system32\DRIVERS\e1k62x64.sys [2011-07-20 342704]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\Windows\system32\DRIVERS\GEARAspiWDM.sys [2012-08-21 33240]
R3 HECIx64;Intel(R) Management Engine Interface; C:\Windows\system32\DRIVERS\HECIx64.sys [2013-02-19 57848]
R3 IBMPMDRV;IBMPMDRV; C:\Windows\system32\DRIVERS\ibmpmdrv.sys [2014-02-27 57144]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2012-01-10 12311904]
R3 Impcd;Impcd; C:\Windows\system32\DRIVERS\Impcd.sys [2010-02-26 158976]
R3 IntcDAud;Intel(R) Display Audio; C:\Windows\system32\DRIVERS\IntcDAud.sys [2010-02-02 271872]
R3 NETwNs64;___ Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows 7 - 64 Bit; C:\Windows\system32\DRIVERS\NETwNs64.sys [2010-07-14 7821312]
R3 psadd;Lenovo Parties Service Access Device Driver; C:\Windows\system32\DRIVERS\psadd.sys [2014-04-13 40248]
R3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
R3 sdbus;sdbus; C:\Windows\system32\drivers\sdbus.sys [2010-11-20 109056]
R3 Sftfs;Sftfs; C:\Windows\system32\DRIVERS\Sftfslh.sys [2013-06-26 767144]
R3 Sftplay;Sftplay; C:\Windows\system32\DRIVERS\Sftplaylh.sys [2013-06-26 273576]
R3 Sftredir;Sftredir; C:\Windows\system32\DRIVERS\Sftredirlh.sys [2013-06-26 28840]
R3 Sftvol;Sftvol; C:\Windows\system32\DRIVERS\Sftvollh.sys [2013-06-26 23208]
R3 SmbDrvI;SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [2013-11-15 45296]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2013-11-15 461040]
R3 TPM;TPM; C:\Windows\system32\drivers\tpm.sys [2009-07-14 38400]
R3 TVTI2C;Lenovo SM bus driver; C:\Windows\system32\DRIVERS\Tvti2c.sys [2009-09-24 41536]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S2 smihlp2;SMI Helper Driver (smihlp2); \??\C:\Program Files\ThinkVantage Fingerprint Software\smihlp.sys []
S2 SPDRIVER_1.0.0.24;SPDRIVER_1.0.0.24; \??\C:\Program Files (x86)\ShopperPro\JSDriver\1.0.0.24\jsdrv.sys []
S2 SPDRIVER_1.35.1.155;SPDRIVER_1.35.1.155; \??\C:\Program Files (x86)\ShopperPro\JSDriver\1.35.1.155\jsdrv.sys []
S3 5U877;USB Video Device; C:\Windows\system32\DRIVERS\5U877.sys [2009-12-15 163072]
S3 adusbser;AnyDATA USB Device for Legacy Serial Communication; C:\Windows\system32\DRIVERS\adusbser.sys [2009-11-06 154112]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 btusbflt;Bluetooth USB Filter; C:\Windows\system32\drivers\btusbflt.sys [2014-02-27 54824]
S3 netw5v64;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 64 Bit; C:\Windows\system32\DRIVERS\netw5v64.sys [2009-06-10 5434368]
S3 PCDSRVC{127174DC-C366ED8B-06020101}_0;PCDSRVC{127174DC-C366ED8B-06020101}_0 - PCDR Kernel Mode Service Helper Driver; \??\c:\program files\pc-doctor\pcdsrvc_x64.pkms [2010-11-12 25072]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 pmxdrv;pmxdrv; \??\C:\Windows\system32\drivers\pmxdrv.sys [2010-12-10 31152]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 165888]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 6656]
S3 SrvHsfHDA;SrvHsfHDA; C:\Windows\system32\DRIVERS\VSTAZL6.SYS [2009-06-10 292864]
S3 SrvHsfV92;SrvHsfV92; C:\Windows\system32\DRIVERS\VSTDPV6.SYS [2009-06-10 1485312]
S3 SrvHsfWinac;SrvHsfWinac; C:\Windows\system32\DRIVERS\VSTCNXT6.SYS [2009-06-10 740864]
S3 StillCam;Ovladač digitálního fotoaparátu pro sériový port; C:\Windows\system32\drivers\serscan.sys [2009-07-14 12288]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 34688]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2013-10-02 56832]
S3 USBAAPL64;Apple Mobile USB Driver; C:\Windows\System32\Drivers\usbaapl64.sys [2011-02-18 51712]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2013-07-03 42496]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 21760]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 602XML Updater;602Updater; C:\Program Files (x86)\Common Files\soft602\602updsvc\602updsvc.exe [2010-04-14 73728]
R2 AcPrfMgrSvc;AcPrfMgrSvc; C:\Program Files (x86)\Lenovo\Access Connections\AcPrfMgrSvc.exe [2014-03-14 133464]
R2 AcSvc;AcSvc; C:\Program Files (x86)\Lenovo\Access Connections\AcSvc.exe [2014-03-14 272728]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-31 462184]
R2 btwdins;Bluetooth Service; C:\Program Files\ThinkPad\Bluetooth Software\btwdins.exe [2013-05-14 1008344]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 cvhsvc;Client Virtualization Handler; C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE [2013-04-22 822504]
R2 EvtEng;Intel(R) PROSet/Wireless Event Log; C:\Program Files\Intel\WiFi\bin\EvtEng.exe [2010-07-20 1429776]
R2 IBMPMSVC;Lenovo PM Service; C:\Windows\system32\ibmpmsvc.exe [2014-02-27 68440]
R2 IviRegMgr;IviRegMgr; C:\Program Files (x86)\Common Files\InterVideo\RegMgr\iviRegMgr.exe [2007-01-05 112152]
R2 LENOVO.CAMMUTE;Lenovo Camera Mute; C:\Program Files\Lenovo\Communications Utility\CAMMUTE.exe [2010-07-27 50536]
R2 LENOVO.MICMUTE;Lenovo Microphone Mute; C:\Program Files\LENOVO\HOTKEY\MICMUTE.exe [2010-04-07 45496]
R2 LENOVO.TPKNRSVC;Lenovo Keyboard Noise Reduction; C:\Program Files\Lenovo\Communications Utility\TPKNRSVC.exe [2010-07-27 74088]
R2 Lenovo.VIRTSCRLSVC;Lenovo Auto Scroll; C:\Program Files\LENOVO\VIRTSCRL\lvvsst.exe [2010-04-07 93032]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2013-05-03 325432]
R2 MsMpSvc;Microsoft Antimalware Service; c:\Program Files\Microsoft Security Client\MsMpEng.exe [2014-03-11 23808]
R2 RegSrvc;Intel(R) PROSet/Wireless Registry Service; C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe [2010-07-20 838928]
R2 sftlist;Application Virtualization Client; C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe [2013-06-26 523944]
R2 ThinkVantage Registry Monitor Service;ThinkVantage Registry Monitor Service; C:\Program Files (x86)\Common Files\Lenovo\tvt_reg_monitor_svc.exe [2009-08-29 1019904]
R2 TPHKLOAD;Lenovo Hotkey Client Loader; C:\Program Files\LENOVO\HOTKEY\TPHKLOAD.exe [2013-05-24 126456]
R2 TPHKSVC;On Screen Display; C:\Program Files\LENOVO\HOTKEY\TPHKSVC.exe [2010-04-07 63928]
R2 UNS;Intel(R) Management & Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2013-05-03 2497848]
R3 NisSrv;@C:\Program Files\Microsoft Security Client\MpAsDesc.dll,-243; c:\Program Files\Microsoft Security Client\NisSrv.exe [2014-03-11 347872]
R3 sftvsa;Application Virtualization Service Agent; C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe [2013-06-26 207528]
S2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-12-21 65432]
S2 Apple Mobile Device;Apple Mobile Device; C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2014-02-12 43336]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-09-11 124088]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-05-07 116648]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-05-14 257712]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 DozeSvc;Lenovo Doze Mode Service; C:\Program Files (x86)\ThinkPad\Utilities\DZSVC64.EXE [2014-03-07 320560]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-05-07 116648]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2014-03-06 111616]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2014-03-29 119408]
S3 NBService;NBService; C:\Program Files (x86)\Nero\Nero 7\Nero BackItUp\NBService.exe [2007-06-29 800040]
S3 NMIndexingService;NMIndexingService; C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe [2007-06-27 279848]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 Power Manager DBC Service;Power Manager Service; C:\Program Files (x86)\ThinkPad\Utilities\PWMDBSVC.EXE [2014-03-07 1669976]
S3 PwmEWSvc;Cisco EnergyWise Enabler; C:\Program Files (x86)\ThinkPad\Utilities\PWMEWSVC.EXE [2014-03-07 1664856]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 SUService;System Update; C:\Program Files (x86)\Lenovo\System Update\SUService.exe [2014-02-21 24120]
S3 TPHDEXLGSVC;ThinkPad HDD APS Logging Service; C:\Windows\System32\TPHDEXLG64.exe [2010-06-16 47728]
S3 TVT Backup Service;TVT Backup Service; C:\Program Files (x86)\Lenovo\Rescue and Recovery\rrservice.exe [2010-07-29 1475896]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2011-02-13 1255736]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-09-11 51808]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119541
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Nestandartní chovnání notebooku

#6 Příspěvek od Rudy »

Log již vypadá OK. Znovu spusťte OTM a klikněte na >CleanUp!<. OTM po sobě uklidí. Nakonec restartujte PC. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Odpovědět