Kontrola logu - pomale PC

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz


Vážení uživaterlé!
Ve dnech 4. - 6-9.2026 budou někteříí naši členové na každoročním srazu fóra. Žádáme vás, abyste měli strpení, nemusí se na na řešení vašeho problému dostat hned. Děkujeme za pochopení.
Zpráva
Autor
ed
Návštěvník
Návštěvník
Příspěvky: 73
Registrován: 14 Led 2005 18:27

Kontrola logu - pomale PC

#1 Příspěvek od ed »

Dobre dopoledne,

prosim o kontorolu logu z meho PC..Diky :)

Logfile of random's system information tool 1.10 (written by random/random)
Run by Vladimir at 2014-11-22 09:26:26
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 33 GB (14%) free of 238 GB
Total RAM: 4094 MB (58% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 9:26:37, on 22.11.2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17420)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files (x86)\Google\Drive\googledrivesync.exe
C:\Users\Vladimir\AppData\Roaming\uTorrent\uTorrent.exe
C:\Program Files\Zoner\Photo Studio 16\Program32\ZPSTray.exe
C:\Program Files (x86)\Google\Drive\googledrivesync.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Vladimir.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = Preserve
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O1 - Hosts: 127.0.0 sams.nikonimaging.com
O4 - HKLM\..\Run: [Nikon Message Center 2] C:\Program Files (x86)\Nikon\Nikon Message Center 2\NkMC2.exe -s
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [mobilegeni daemon] C:\Program Files (x86)\Mobogenie\DaemonProcess.exe
O4 - HKLM\..\Run: [PMBVolumeWatcher] C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [GoogleDriveSync] "C:\Program Files (x86)\Google\Drive\googledrivesync.exe" /autostart
O4 - HKCU\..\Run: [Zoner Photo Studio Service 16] "C:\Program Files\Zoner\Photo Studio 16\Program32\ZPSTRAY.EXEC:\Program Files\Zoner\Photo Studio 16\Program32\ZPSService.exe"
O4 - HKCU\..\Run: [GarminExpressTrayApp] "C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe"
O4 - HKCU\..\Run: [uTorrent] "C:\Users\Vladimir\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED
O4 - HKCU\..\Run: [Zoner Photo Studio Autoupdate] "C:\PROGRAM FILES\ZONER\PHOTO STUDIO 16\Program32\ZPSTRAY.EXE"
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'Default user')
O4 - Startup: Adobe Gamma.lnk = C:\Program Files (x86)\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files (x86)\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Garmin Core Update Service - Garmin Ltd or its subsidiaries - C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: RelevantKnowledge - TMRG, Inc. - C:\Program Files (x86)\RelevantKnowledge\rlservice.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: Sony Digital Media Server (SOHDms) - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe
O23 - Service: Sony Device Searcher (SOHDs) - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe
O23 - Service: VAIO Entertainment Common Service (SpfService) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 8684 bytes

======Listing Processes======



\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
winlogon.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
"C:\Windows\system32\nvvsvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
C:\Windows\system32\svchost.exe -k RPCSS
"c:\Program Files\Microsoft Security Client\MsMpEng.exe"
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs

"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"taskhost.exe"
"C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
"C:\Program Files\Windows Sidebar\sidebar.exe" /autoRun
"C:\Program Files (x86)\Google\Drive\googledrivesync.exe" /autostart
"C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe"
"C:\Users\Vladimir\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED
"C:\Program Files\Zoner\Photo Studio 16\Program32\ZPSTray.exe"
"C:\Program Files (x86)\RelevantKnowledge\rlservice.exe" /service
C:\Windows\system32\svchost.exe -k imgsvc
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
C:\Windows\system32\SearchIndexer.exe /Embedding
"c:\Program Files\Microsoft Security Client\NisSrv.exe"
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-48575a63-2fb1-4037-8ede-a01067ac5a82 -SystemEventPortName:HostProcess-862c1381-a491-490c-9a9e-b42473286cd0 -IoCancelEventPortName:HostProcess-c1157f5e-635a-41ec-bcfd-1afc2b990c02 -NonStateChangingEventPortName:HostProcess-6481d94a-1e66-4be8-ae89-eb3460a98b4a -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:12831817-9db4-4b4f-8097-5a2b59741720 -DeviceGroupId:WpdFsGroup
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files (x86)\Google\Drive\googledrivesync.exe" /autostart
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --remote-debugging-port=9223
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="3572.0.2063796598\347618983" --supports-dual-gpus=false --gpu-driver-bug-workarounds=1,16,44 --gpu-vendor-id=0x10de --gpu-device-id=0x0615 --gpu-driver-vendor=NVIDIA --gpu-driver-version=9.18.13.3523 --ignored=" --type=renderer " /prefetch:822062411
C:\Windows\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutoReloadExperiment/Enabled/AutoReloadVisibleOnlyExperiment/Enabled/BrowserBlacklist/Enabled/DomRel-Enable/control/EmbeddedSearch/Group3 pct:10c stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/Enforce/ExtensionInstallVerification/Enforce/GoogleNow/Enable/OmniboxBundledExperimentV1/PP_Ethersuggest_A2_Stable_R8/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/RapporRollout/Enabled/RememberCertificateErrorDecisions/ThreeMonths/SDCH/EnabledAll/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_03/UMA-Uniformity-Trial-1-Percent/group_89/UMA-Uniformity-Trial-10-Percent/group_02/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/default/UMA-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --renderer-print-preview --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-delegated-renderer --channel="3572.7.556958129\1932236908" /prefetch:673131151
C:\Windows\system32\sppsvc.exe
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe"
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe3_ Global\UsGthrCtrlFltPipeMssGthrPipe3 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 516 520 528 65536 524
"C:\Users\Vladimir\Downloads\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler

=========Mozilla firefox=========

ProfilePath - C:\Users\Vladimir\AppData\Roaming\Mozilla\Firefox\Profiles\d668d38e.default-1403463649564

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@EDVR/WebClient]
"Description"=EDVR Web Client Plugin
"Path"=C:\windows\system32\WebClient\npwebclient.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@garmin.com/GpsControl]
"Description"=Garmin GPS Control for Firefox
"Path"=C:\Program Files (x86)\Garmin GPS Plugin\npGarmin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVision]
"Description"=NVIDIA stereo images plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVisionStreaming]
"Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.3]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@garmin.com/GpsControl]
"Description"=Garmin GPS Control for Firefox
"Path"=C:\Program Files\Garmin GPS Plugin\npGarmin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll


======Registry dump======

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"MSC"=C:\Program Files\Microsoft Security Client\msseces.exe [2014-08-22 1331288]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2014-03-20 1797064]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-20 1475584]
"GoogleDriveSync"=C:\Program Files (x86)\Google\Drive\googledrivesync.exe [2014-10-21 22869088]
"Zoner Photo Studio Service 16"=C:\Program Files\Zoner\Photo Studio 16\Program32\ZPSTRAY.EXE [2013-12-13 831488]
"GarminExpressTrayApp"=C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe [2014-08-27 688984]
"uTorrent"=C:\Users\Vladimir\AppData\Roaming\uTorrent\uTorrent.exe [2014-11-15 1385808]
"Zoner Photo Studio Autoupdate"=C:\PROGRAM FILES\ZONER\PHOTO STUDIO 16\Program32\ZPSTRAY.EXE [2013-12-13 831488]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"Nikon Message Center 2"=C:\Program Files (x86)\Nikon\Nikon Message Center 2\NkMC2.exe [2013-12-27 570880]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-08-21 959176]
"mobilegeni daemon"=C:\Program Files (x86)\Mobogenie\DaemonProcess.exe []
"PMBVolumeWatcher"=C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe [2014-09-03 2707992]

C:\Users\Vladimir\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Adobe Gamma.lnk - C:\Program Files (x86)\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2014-11-22 09:26:26 ----D---- C:\rsit
2014-11-22 09:26:26 ----D---- C:\Program Files\trend micro
2014-11-18 19:23:55 ----A---- C:\Windows\SYSWOW64\pku2u.dll
2014-11-18 19:23:55 ----A---- C:\Windows\system32\pku2u.dll
2014-11-18 19:23:55 ----A---- C:\Windows\system32\kerberos.dll
2014-11-18 19:23:54 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2014-11-12 20:15:15 ----A---- C:\Windows\system32\generaltel.dll
2014-11-12 20:15:15 ----A---- C:\Windows\system32\aepdu.dll
2014-11-12 20:15:14 ----A---- C:\Windows\system32\aeinv.dll
2014-11-12 20:15:11 ----A---- C:\Windows\SYSWOW64\adtschema.dll
2014-11-12 20:15:11 ----A---- C:\Windows\system32\termsrv.dll
2014-11-12 20:15:11 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2014-11-12 20:15:11 ----A---- C:\Windows\system32\adtschema.dll
2014-11-12 20:15:10 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2014-11-12 20:15:10 ----A---- C:\Windows\SYSWOW64\secur32.dll
2014-11-12 20:15:10 ----A---- C:\Windows\SYSWOW64\msaudite.dll
2014-11-12 20:15:10 ----A---- C:\Windows\system32\msaudite.dll
2014-11-12 20:15:10 ----A---- C:\Windows\system32\lsasrv.dll
2014-11-12 20:15:01 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2014-11-12 20:15:01 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2014-11-12 20:15:00 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2014-11-12 20:15:00 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2014-11-12 20:15:00 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2014-11-12 20:15:00 ----A---- C:\Windows\system32\iernonce.dll
2014-11-12 20:15:00 ----A---- C:\Windows\system32\ieetwproxystub.dll
2014-11-12 20:15:00 ----A---- C:\Windows\system32\ieetwcollector.exe
2014-11-12 20:15:00 ----A---- C:\Windows\system32\ie4uinit.exe
2014-11-12 20:14:59 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2014-11-12 20:14:59 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2014-11-12 20:14:59 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2014-11-12 20:14:59 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2014-11-12 20:14:59 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-11-12 20:14:58 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2014-11-12 20:14:58 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2014-11-12 20:14:58 ----A---- C:\Windows\system32\iedkcs32.dll
2014-11-12 20:14:57 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2014-11-12 20:14:57 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2014-11-12 20:14:57 ----A---- C:\Windows\system32\urlmon.dll
2014-11-12 20:14:57 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2014-11-12 20:14:56 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2014-11-12 20:14:55 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2014-11-12 20:14:55 ----A---- C:\Windows\SYSWOW64\ieui.dll
2014-11-12 20:14:55 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2014-11-12 20:14:55 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2014-11-12 20:14:55 ----A---- C:\Windows\system32\dxtrans.dll
2014-11-12 20:14:54 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2014-11-12 20:14:54 ----A---- C:\Windows\system32\msfeeds.dll
2014-11-12 20:14:54 ----A---- C:\Windows\system32\iesetup.dll
2014-11-12 20:14:54 ----A---- C:\Windows\system32\ieapfltr.dll
2014-11-12 20:14:53 ----A---- C:\Windows\system32\iertutil.dll
2014-11-12 20:14:52 ----A---- C:\Windows\SYSWOW64\wininet.dll
2014-11-12 20:14:52 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2014-11-12 20:14:52 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2014-11-12 20:14:52 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2014-11-12 20:14:52 ----A---- C:\Windows\system32\jsproxy.dll
2014-11-12 20:14:52 ----A---- C:\Windows\system32\ieUnatt.exe
2014-11-12 20:14:51 ----A---- C:\Windows\SYSWOW64\msrating.dll
2014-11-12 20:14:51 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2014-11-12 20:14:51 ----A---- C:\Windows\system32\ieui.dll
2014-11-12 20:14:51 ----A---- C:\Windows\system32\dxtmsft.dll
2014-11-12 20:14:50 ----A---- C:\Windows\system32\mshtmlmedia.dll
2014-11-12 20:14:50 ----A---- C:\Windows\system32\mshtmled.dll
2014-11-12 20:14:50 ----A---- C:\Windows\system32\ieframe.dll
2014-11-12 20:14:49 ----A---- C:\Windows\system32\wininet.dll
2014-11-12 20:14:49 ----A---- C:\Windows\system32\vbscript.dll
2014-11-12 20:14:49 ----A---- C:\Windows\system32\jscript9diag.dll
2014-11-12 20:14:49 ----A---- C:\Windows\system32\jscript9.dll
2014-11-12 20:14:48 ----A---- C:\Windows\system32\msrating.dll
2014-11-12 20:14:48 ----A---- C:\Windows\system32\MshtmlDac.dll
2014-11-12 20:14:48 ----A---- C:\Windows\system32\mshtml.dll
2014-11-12 20:14:12 ----A---- C:\Windows\system32\msxml3.dll
2014-11-12 20:14:11 ----A---- C:\Windows\SYSWOW64\msxml3r.dll
2014-11-12 20:14:11 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2014-11-12 20:14:11 ----A---- C:\Windows\system32\msxml3r.dll
2014-11-12 20:14:10 ----A---- C:\Windows\SYSWOW64\IMJP10K.DLL
2014-11-12 20:14:10 ----A---- C:\Windows\system32\IMJP10K.DLL
2014-11-12 20:14:08 ----A---- C:\Windows\SYSWOW64\AUDIOKSE.dll
2014-11-12 20:14:08 ----A---- C:\Windows\system32\audiosrv.dll
2014-11-12 20:14:08 ----A---- C:\Windows\system32\AUDIOKSE.dll
2014-11-12 20:14:08 ----A---- C:\Windows\system32\AudioEng.dll
2014-11-12 20:14:07 ----A---- C:\Windows\SYSWOW64\AudioEng.dll
2014-11-12 20:14:07 ----A---- C:\Windows\system32\EncDump.dll
2014-11-12 20:14:07 ----A---- C:\Windows\system32\AudioSes.dll
2014-11-12 20:14:06 ----A---- C:\Windows\SYSWOW64\AudioSes.dll
2014-11-12 20:13:57 ----A---- C:\Windows\SYSWOW64\schannel.dll
2014-11-12 20:13:57 ----A---- C:\Windows\system32\schannel.dll
2014-11-12 20:13:57 ----A---- C:\Windows\system32\ncrypt.dll
2014-11-12 20:13:56 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2014-11-12 20:13:56 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2014-11-12 20:13:56 ----A---- C:\Windows\system32\wdigest.dll
2014-11-12 20:13:56 ----A---- C:\Windows\system32\msv1_0.dll
2014-11-12 20:13:55 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2014-11-12 20:13:55 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2014-11-12 20:13:55 ----A---- C:\Windows\system32\TSpkg.dll
2014-11-12 20:13:55 ----A---- C:\Windows\system32\credssp.dll
2014-11-12 20:13:54 ----A---- C:\Windows\SYSWOW64\credssp.dll
2014-11-12 20:13:41 ----A---- C:\Windows\SYSWOW64\packager.dll
2014-11-12 20:13:41 ----A---- C:\Windows\system32\packager.dll
2014-11-12 20:13:38 ----A---- C:\Windows\system32\win32k.sys
2014-11-12 20:13:34 ----A---- C:\Windows\SYSWOW64\msi.dll
2014-11-12 20:13:34 ----A---- C:\Windows\system32\msi.dll
2014-11-12 20:13:31 ----A---- C:\Windows\system32\oleaut32.dll
2014-11-12 20:13:30 ----A---- C:\Windows\SYSWOW64\oleaut32.dll

======List of files/folders modified in the last 1 month======

2014-11-22 09:26:37 ----D---- C:\Windows\Prefetch
2014-11-22 09:26:26 ----RD---- C:\Program Files
2014-11-22 09:26:16 ----D---- C:\Windows\Temp
2014-11-22 09:24:32 ----D---- C:\Users\Vladimir\AppData\Roaming\uTorrent
2014-11-22 09:18:16 ----D---- C:\ProgramData\NVIDIA
2014-11-21 23:12:24 ----D---- C:\Windows\system32\config
2014-11-21 19:51:15 ----D---- C:\Program Files (x86)\RelevantKnowledge
2014-11-19 03:21:47 ----D---- C:\Windows\system32\catroot2
2014-11-19 03:20:33 ----D---- C:\Windows\winsxs
2014-11-19 03:17:53 ----D---- C:\Windows\SysWOW64
2014-11-19 03:17:53 ----D---- C:\Windows\System32
2014-11-19 03:00:52 ----SHD---- C:\System Volume Information
2014-11-18 19:22:00 ----D---- C:\Windows\system32\catroot
2014-11-16 01:47:03 ----D---- C:\Windows\rescache
2014-11-15 22:58:09 ----SHD---- C:\Windows\Installer
2014-11-15 22:53:27 ----RD---- C:\Program Files (x86)
2014-11-15 22:53:20 ----D---- C:\Windows\Tasks
2014-11-14 00:12:37 ----D---- C:\Windows\Microsoft.NET
2014-11-14 00:11:28 ----RSD---- C:\Windows\assembly
2014-11-13 01:16:20 ----SD---- C:\Windows\system32\CompatTel
2014-11-13 01:16:20 ----D---- C:\Windows\SYSWOW64\en-US
2014-11-13 01:16:20 ----D---- C:\Windows\SYSWOW64\cs-CZ
2014-11-13 01:16:20 ----D---- C:\Windows\system32\en-US
2014-11-13 01:16:20 ----D---- C:\Windows\system32\drivers
2014-11-13 01:16:20 ----D---- C:\Windows\system32\cs-CZ
2014-11-13 01:16:20 ----D---- C:\Program Files\Internet Explorer
2014-11-13 01:16:19 ----D---- C:\Program Files (x86)\Internet Explorer
2014-11-12 20:28:11 ----D---- C:\Windows\system32\MRT
2014-11-12 20:23:31 ----D---- C:\Windows\debug
2014-11-12 20:23:27 ----A---- C:\Windows\system32\MRT.exe
2014-11-12 00:01:35 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2014-11-10 19:58:34 ----D---- C:\Windows\inf
2014-10-31 07:00:03 ----D---- C:\Windows\system32\wdi
2014-10-30 12:25:26 ----N---- C:\Windows\system32\MpSigStub.exe
2014-10-29 21:00:05 ----D---- C:\Windows
2014-10-27 23:05:45 ----A---- C:\Windows\system32\PerfStringBackup.INI

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2014-07-17 269008]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 199552]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 514560]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2014-07-17 125584]
R3 rt61x64;RT61 Extensible Wireless Driver; C:\Windows\system32\DRIVERS\netr6164.sys [2010-04-07 446304]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2009-03-01 187392]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 165888]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 6656]
S3 StillCam;Ovladač digitálního fotoaparátu pro sériový port; C:\Windows\system32\DRIVERS\serscan.sys [2009-07-14 12288]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 34688]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2013-10-02 56832]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2013-07-03 42496]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 21760]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 41984]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2014-09-12 64704]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 Garmin Core Update Service;Garmin Core Update Service; C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe [2014-08-27 441176]
R2 MsMpSvc;Microsoft Antimalware Service; c:\Program Files\Microsoft Security Client\MsMpEng.exe [2014-08-22 23784]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2014-03-04 922968]
R2 RelevantKnowledge;RelevantKnowledge; C:\Program Files (x86)\RelevantKnowledge\rlservice.exe [2013-08-16 186136]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2014-03-04 411936]
R3 NisSrv;@C:\Program Files\Microsoft Security Client\MpAsDesc.dll,-243; c:\Program Files\Microsoft Security Client\NisSrv.exe [2014-08-22 368624]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-09-11 124088]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-03-27 116648]
S3 Adobe LM Service;Adobe LM Service; C:\Program Files (x86)\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe [2014-03-30 72704]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-11-12 267440]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-03-27 116648]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2014-11-06 114688]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2014-09-27 114288]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 SOHDms;Sony Digital Media Server; C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe [2014-01-16 495248]
S3 SOHDs;Sony Device Searcher; C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe [2013-12-03 79000]
S3 SpfService;VAIO Entertainment Common Service; C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe [2011-12-01 289952]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2014-03-28 1255736]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-09-11 51808]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]

-----------------EOF-----------------

Márty84
VIP
VIP
Příspěvky: 21685
Registrován: 05 Pro 2009 20:08
Místo/Bydliště: Ostrava

Re: Kontrola logu - pomale PC

#2 Příspěvek od Márty84 »

Zdravim :)

:arrow: Stahnete AdwCleaner https://toolslib.net/downloads/finish/1/ a ulozte ho na plochu.
Ukoncete vsechny programy, jinak to AdwCleaner udela za vas.
Kliknete na nej pravym mysidlem a levym na Spustit jako spravce.
Kliknete na Scan a pockejte, az kontrola dobehne.
Pak kliknete na Clean
Program zacne pracovat (muze dojit k restartu pc) a vyplivne log (pripadne bude zde C:\AdwCleaner\AdwCleaner [S?].txt ). Ten mi sem zkopirujte.
Možnost podpořit naše fórum https://platba.viry.cz/payment/

ed
Návštěvník
Návštěvník
Příspěvky: 73
Registrován: 14 Led 2005 18:27

Re: Kontrola logu - pomale PC

#3 Příspěvek od ed »

tak davam

# AdwCleaner v4.101 - Report created 22/11/2014 at 10:08:10
# Updated 09/11/2014 by Xplode
# Database : 2014-11-16.1 [Live]
# Operating System : Windows 7 Professional Service Pack 1 (64 bits)
# Username : Vladimir - VLADIMIR-PC
# Running from : C:\Users\Vladimir\Desktop\adwcleaner_4.101.exe
# Option : Clean

***** [ Services ] *****

Service Deleted : RelevantKnowledge

***** [ Files / Folders ] *****

Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RelevantKnowledge
Folder Deleted : C:\Program Files (x86)\globalUpdate
Folder Deleted : C:\Program Files (x86)\MediaBuzzV1
Folder Deleted : C:\Program Files (x86)\RelevantKnowledge
Folder Deleted : C:\Users\Vladimir\AppData\Local\globalUpdate
Folder Deleted : C:\Users\Vladimir\AppData\Local\Mobogenie
Folder Deleted : C:\Users\Vladimir\Documents\Mobogenie
Folder Deleted : C:\Users\Vladimir\Documents\Updater
File Deleted : C:\Windows\SysWOW64\installd.exe
File Deleted : C:\Windows\SysWOW64\rlls.dll
File Deleted : C:\Users\Vladimir\daemonprocess.txt

***** [ Scheduled Tasks ] *****

Task Deleted : AmiUpdXp

***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\MobogenieAdd
Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [mobilegeni daemon]
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{6D4506CE-F855-4657-AA38-DB6B1F733982}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{3408AC0D-510E-4808-8F7B-6B70B1F88534}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{03771AEF-400D-4A13-B712-25878EC4A3F5}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{3408AC0D-510E-4808-8F7B-6B70B1F88534}
Key Deleted : HKCU\Software\Conduit
Key Deleted : HKCU\Software\GlobalUpdate
Key Deleted : HKCU\Software\AppDataLow\Software\Crossrider
Key Deleted : HKCU\Software\AppDataLow\Software\SavePass
Key Deleted : HKLM\SOFTWARE\GlobalUpdate
Key Deleted : HKLM\SOFTWARE\SavePass
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{D08D9F98-1C78-4704-87E6-368B0023D831}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0FF2AEFF45EEA0A48A4B33C1973B6094

***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.17420


-\\ Mozilla Firefox v32.0.3 (x86 cs)

[d668d38e.default-1403463649564\prefs.js] - Line Deleted : user_pref("extensions.crossrider.bic", "146cf95ea52607e4148eaaee808fe587");

-\\ Google Chrome v39.0.2171.65


*************************

AdwCleaner[R0].txt - [2553 octets] - [22/06/2014 19:32:54]
AdwCleaner[R1].txt - [2823 octets] - [22/11/2014 09:55:44]
AdwCleaner[S0].txt - [2428 octets] - [22/06/2014 19:35:33]
AdwCleaner[S1].txt - [2713 octets] - [22/11/2014 10:08:10]

########## EOF - C:\AdwCleaner\AdwCleaner[S1].txt - [2773 octets] ##########

Márty84
VIP
VIP
Příspěvky: 21685
Registrován: 05 Pro 2009 20:08
Místo/Bydliště: Ostrava

Re: Kontrola logu - pomale PC

#4 Příspěvek od Márty84 »

:arrow: Udelejte kontrolu s MBAM. Test nastavte podle tohoto navodu http://forum.viry.cz/viewtopic.php?f=29&t=137928 a dejte sem vysledky. Predem nic nemazte, miva obcas falesne detekce
Možnost podpořit naše fórum https://platba.viry.cz/payment/

ed
Návštěvník
Návštěvník
Příspěvky: 73
Registrován: 14 Led 2005 18:27

Re: Kontrola logu - pomale PC

#5 Příspěvek od ed »

Tak tady je :-)

Malwarebytes Anti-Malware
www.malwarebytes.org

Scan Date: 22.11.2014
Scan Time: 19:06:17
Logfile: log.txt
Administrator: Yes

Version: 0.00.0.0000
Malware Database: v2014.11.22.09
Rootkit Database: v2014.11.21.01
License: Trial
Malware Protection: Enabled
Malicious Website Protection: Enabled
Self-protection: Disabled

OS: Windows 7 Service Pack 1
CPU: x64
File System: NTFS
User: Vladimir

Scan Type: Custom Scan
Result: Completed
Objects Scanned: 908435
Time Elapsed: 3 hr, 25 min, 10 sec

Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled

Processes: 0
(No malicious items detected)

Modules: 0
(No malicious items detected)

Registry Keys: 0
(No malicious items detected)

Registry Values: 0
(No malicious items detected)

Registry Data: 0
(No malicious items detected)

Folders: 0
(No malicious items detected)

Files: 0
(No malicious items detected)

Physical Sectors: 0
(No malicious items detected)


(end)

Márty84
VIP
VIP
Příspěvky: 21685
Registrován: 05 Pro 2009 20:08
Místo/Bydliště: Ostrava

Re: Kontrola logu - pomale PC

#6 Příspěvek od Márty84 »

:arrow: MBAM odinstalujte.


:arrow: Stahnete crystal disk info http://sourceforge.jp/projects/crystald ... 5_0_0.zip/
Spustte jako spravce. Za chvili se zobrazi vysledek.
Kliknete nahore na napis Úpravy a pak na napis Kopírovat. To co se zkopiruje (ulozi se to do pameti) mi sem vlozte (ctrl + V)
Možnost podpořit naše fórum https://platba.viry.cz/payment/

ed
Návštěvník
Návštěvník
Příspěvky: 73
Registrován: 14 Led 2005 18:27

Re: Kontrola logu - pomale PC

#7 Příspěvek od ed »

----------------------------------------------------------------------------
CrystalDiskInfo 5.0.0 (C) 2008-2012 hiyohiyo
Crystal Dew World : http://crystalmark.info/
----------------------------------------------------------------------------

OS : Windows 7 Professional SP1 [6.1 Build 7601] (x64)
Date : 2014/11/22 19:45:08

-- Controller Map ----------------------------------------------------------
+ PCI Standardní dvoukanálový řadič IDE [ATA]
+ ATA Channel 0 (0)
- PIONEER DVD-RW DVR-116D ATA Device
- ATA Channel 1 (1)
+ Řadič Intel(R) ICH8R/ICH9R/ICH10R/DO SATA diskového pole RAID [SCSI]
- WDC WD2500KS-00MJB0
- Raid-data
- Raid-dataII

-- Disk List ---------------------------------------------------------------
(1) WDC WD20EZRX-00D8PB0 : 2000,3 GB [X/0/255, cs]
(2) WDC WD20EZRX-00D8PB0 : 2000,3 GB [X/0/255, cs]
(3) SAMSUNG HD103SJ : 1000,2 GB [X/0/255, cs]
(4) WDC WD2500KS-00MJB0 : 250,0 GB [0/0/0, pd1]

----------------------------------------------------------------------------
(1) WDC WD20EZRX-00D8PB0
----------------------------------------------------------------------------
Model : WDC WD20EZRX-00D8PB0
Firmware : 80.00A80
Serial Number : WD-WCC4M1978730
Disk Size : 2000,3 GB (8,4/137,4/2000,3)
Buffer Size : Neznámy údaj
Queue Depth : 32
# of Sectors : 3907029168
Rotation Rate : 5400 RPM
Interface : Serial ATA
Major Version : ACS-2
Minor Version : ----
Transfer Mode : SATA/600
Power On Hours : 854 hod.
Power On Count : 229 krát
Temparature : 39 C (102 F)
Health Status : Dobrý
Features : S.M.A.R.T., 48bit LBA, NCQ
APM Level : ----
AAM Level : ----

-- S.M.A.R.T. --------------------------------------------------------------
ID Cur Wor Thr RawValues(6) Attribute Name
01 200 200 _47 000000000000 Počet chyb čtení
03 179 175 _39 000000000FC9 Čas na roztočení ploten
04 100 100 _50 0000000002CB Počet spuštění/zastavení
05 200 200 _51 000000000000 Počet přemapovaných sektorů
07 200 200 _46 000000000000 Počet chybných hledání
09 _99 _99 _50 000000000356 Hodin v činnosti
0A 100 100 _50 000000000000 Počet opakovaných pokusů o roztočení ploten
0B 100 100 _50 000000000000 Počet pokusů o překalibrování
0C 100 100 _50 0000000000E5 Počet cyklů zapnutí zařízení
C0 200 200 _50 000000000005 Počet vypnutí disku
C1 198 198 _50 000000002178 Počet cyklů načítání/vymazání
C2 108 _94 _34 000000000027 Teplota
C4 200 200 _50 000000000000 Počet udalostí s číslem realokování sektorů
C5 200 200 _50 000000000000 Počet podezřelých sektorů
C6 200 200 _48 000000000000 Počet neopravitelných sektorů
C7 200 200 _50 000000000000 Počet chyb v kontrolním součtu UltraDMA
C8 200 200 __8 000000000000 Počet chyb při zápisu sektorů

-- IDENTIFY_DEVICE ---------------------------------------------------------
0 1 2 3 4 5 6 7 8 9
000: 427A 3FFF C837 0010 0000 003F 003F 0000 0000 0000
010: 2020 2020 2057 442D 5743 4D31 4D31 3937 3837 3330
020: 0000 0000 0000 3830 2E30 3830 3830 5744 4320 5744
030: 3230 455A 5258 2D30 3044 4230 4230 2020 2020 2020
040: 2020 2020 2020 2020 2020 2020 2020 8010 4000 2F00
050: 4001 0000 0000 0007 3FFF 003F 003F FC10 00FB 0110
060: FFFF 0FFF 0000 0007 0003 0078 0078 0078 0078 0000
070: 0000 0000 0000 0000 0000 970E 970E 0004 004C 0044
080: 03FE 0000 746B 7D61 4123 BC41 BC41 4123 407F 0091
090: 0091 0000 FFFE 0000 0000 0000 0000 0000 0000 0000
100: 88B0 E8E0 0000 0000 0000 6003 6003 0000 5001 4EE2
110: B47F 4BE6 0000 0000 0000 0000 0000 0000 0000 401C
120: 401C 0000 0000 0000 0000 0000 0000 0000 0021 0400
130: 0001 0000 0000 0000 0000 0000 0000 0000 0000 0000
140: 0000 0000 0004 0000 0000 0000 0000 0000 0000 0000
150: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
160: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
170: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
180: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
190: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
200: 0000 0000 0000 0000 0000 7035 7035 0000 0000 0000
210: 0000 0000 0000 0000 0000 0000 0000 1518 0000 0000
220: 0000 0000 103E 0000 0000 0000 0000 0000 0000 0000
230: 0000 0000 0000 0000 0001 0000 0000 0000 0000 0000
240: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
250: 0000 0000 0000 0000 0000 D9A5

----------------------------------------------------------------------------
(2) WDC WD20EZRX-00D8PB0
----------------------------------------------------------------------------
Model : WDC WD20EZRX-00D8PB0
Firmware : 80.00A80
Serial Number : WD-WCC4M2010716
Disk Size : 2000,3 GB (8,4/137,4/2000,3)
Buffer Size : Neznámy údaj
Queue Depth : 32
# of Sectors : 3907029168
Rotation Rate : 5400 RPM
Interface : Serial ATA
Major Version : ACS-2
Minor Version : ----
Transfer Mode : SATA/600
Power On Hours : 854 hod.
Power On Count : 227 krát
Temparature : 30 C (86 F)
Health Status : Dobrý
Features : S.M.A.R.T., 48bit LBA, NCQ
APM Level : ----
AAM Level : ----

-- S.M.A.R.T. --------------------------------------------------------------
ID Cur Wor Thr RawValues(6) Attribute Name
01 200 200 _47 000000000000 Počet chyb čtení
03 175 174 _39 000000001078 Čas na roztočení ploten
04 100 100 _50 0000000002C9 Počet spuštění/zastavení
05 200 200 _51 000000000000 Počet přemapovaných sektorů
07 200 200 _46 000000000000 Počet chybných hledání
09 _99 _99 _50 000000000356 Hodin v činnosti
0A 100 100 _50 000000000000 Počet opakovaných pokusů o roztočení ploten
0B 100 100 _50 000000000000 Počet pokusů o překalibrování
0C 100 100 _50 0000000000E3 Počet cyklů zapnutí zařízení
C0 200 200 _50 000000000004 Počet vypnutí disku
C1 198 198 _50 00000000218A Počet cyklů načítání/vymazání
C2 117 107 _34 00000000001E Teplota
C4 200 200 _50 000000000000 Počet udalostí s číslem realokování sektorů
C5 200 200 _50 000000000000 Počet podezřelých sektorů
C6 200 200 _48 000000000000 Počet neopravitelných sektorů
C7 200 200 _50 000000000000 Počet chyb v kontrolním součtu UltraDMA
C8 200 200 __8 000000000000 Počet chyb při zápisu sektorů

-- IDENTIFY_DEVICE ---------------------------------------------------------
0 1 2 3 4 5 6 7 8 9
000: 427A 3FFF C837 0010 0000 003F 003F 0000 0000 0000
010: 2020 2020 2057 442D 5743 4D32 4D32 3031 3037 3136
020: 0000 0000 0000 3830 2E30 3830 3830 5744 4320 5744
030: 3230 455A 5258 2D30 3044 4230 4230 2020 2020 2020
040: 2020 2020 2020 2020 2020 2020 2020 8010 4000 2F00
050: 4001 0000 0000 0007 3FFF 003F 003F FC10 00FB 0110
060: FFFF 0FFF 0000 0007 0003 0078 0078 0078 0078 0000
070: 0000 0000 0000 0000 0000 970E 970E 0004 004C 0044
080: 03FE 0000 746B 7D61 4123 BC41 BC41 4123 407F 008A
090: 008A 0000 FFFE 0000 0000 0000 0000 0000 0000 0000
100: 88B0 E8E0 0000 0000 0000 6003 6003 0000 5001 4EE2
110: B47E 96CD 0000 0000 0000 0000 0000 0000 0000 401C
120: 401C 0000 0000 0000 0000 0000 0000 0000 0021 0400
130: 0001 0000 0000 0000 0000 0000 0000 0000 0000 0000
140: 0000 0000 0004 0000 0000 0000 0000 0000 0000 0000
150: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
160: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
170: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
180: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
190: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
200: 0000 0000 0000 0000 0000 7035 7035 0000 0000 0000
210: 0000 0000 0000 0000 0000 0000 0000 1518 0000 0000
220: 0000 0000 103E 0000 0000 0000 0000 0000 0000 0000
230: 0000 0000 0000 0000 0001 0000 0000 0000 0000 0000
240: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
250: 0000 0000 0000 0000 0000 C8A5

----------------------------------------------------------------------------
(3) SAMSUNG HD103SJ
----------------------------------------------------------------------------
Model : SAMSUNG HD103SJ
Firmware : 1AJ10001
Serial Number : S246J1KZ304359
Disk Size : 1000,2 GB (8,4/137,4/1000,2)
Buffer Size : 32767 KB
Queue Depth : 32
# of Sectors : 1953525168
Rotation Rate : 7200 RPM
Interface : Serial ATA
Major Version : ATA8-ACS
Minor Version : ATA8-ACS version 6
Transfer Mode : SATA/300
Power On Hours : 3562 hod.
Power On Count : 1658 krát
Temparature : 38 C (100 F)
Health Status : Dobrý
Features : S.M.A.R.T., APM, AAM, 48bit LBA, NCQ
APM Level : 0000h [OFF]
AAM Level : FE00h [OFF]

-- S.M.A.R.T. --------------------------------------------------------------
ID Cur Wor Thr RawValues(6) Attribute Name
01 100 100 _47 000000000006 Počet chyb čtení
02 252 252 _38 000000000000 Průchodnost disku
03 _70 _69 _35 00000000243A Čas na roztočení ploten
04 _95 _95 _50 00000000157D Počet spuštění/zastavení
05 252 252 _51 000000000000 Počet přemapovaných sektorů
07 252 252 _46 000000000000 Počet chybných hledání
08 252 252 _36 000000000000 Čas potřebný na vyhledání
09 100 100 _50 000000000DEA Hodin v činnosti
0A 252 252 _50 000000000000 Počet opakovaných pokusů o roztočení ploten
0B 252 252 _50 000000000000 Počet pokusů o překalibrování
0C _99 _99 _50 00000000067A Počet cyklů zapnutí zařízení
BF 100 100 _34 000000000017 Počet udalostí zaznamenaných otřesovým senzorem
C0 252 252 _34 000000000000 Počet vypnutí disku
C2 _62 _40 __2 003C00120026 Teplota
C3 100 100 _58 000000000000 Počet oprav chybného čtení
C4 252 252 _50 000000000000 Počet udalostí s číslem realokování sektorů
C5 252 252 _50 000000000000 Počet podezřelých sektorů
C6 252 252 _48 000000000000 Počet neopravitelných sektorů
C7 200 200 _54 000000000000 Počet chyb v kontrolním součtu UltraDMA
C8 100 100 _42 000000000003 Počet chyb při zápisu sektorů
DF 252 252 _50 000000000000 Zatížení budiče magnetických hlav způsobené opakovanými úkony
E1 100 100 _50 00000000157F Počet cyklů načítání/vymazání

-- IDENTIFY_DEVICE ---------------------------------------------------------
0 1 2 3 4 5 6 7 8 9
000: 0040 3FFF C837 0010 0000 003F 003F 0000 0000 0000
010: 5332 3436 4A31 4B5A 3330 3539 3539 2020 2020 2020
020: 0000 FFFF 0050 3141 4A31 3031 3031 5341 4D53 554E
030: 4720 4844 3130 3353 4A20 2020 2020 2020 2020 2020
040: 2020 2020 2020 2020 2020 2020 2020 8010 4000 2F00
050: 4000 0200 0200 0007 3FFF 003F 003F FC10 00FB 0110
060: FFFF 0FFF 0000 0007 0003 0078 0078 0078 0078 0000
070: 0000 0000 0000 0000 0000 1706 1706 0000 004C 0044
080: 01FF 0028 746B 7F69 4123 BC41 BC41 4123 407F 004C
090: 004C 0000 FFFE 0000 FE00 0000 0000 0000 0000 0000
100: 6DB0 7470 0000 0000 0000 4000 4000 0000 5002 4E90
110: 0315 6947 0000 0000 0000 0000 0000 0000 0000 401C
120: 401C 0000 0000 0000 0000 0000 0000 0000 0021 0000
130: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
140: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
150: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
160: 0000 0000 0000 0000 0000 0000 0000 0000 0002 0000
170: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
180: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
190: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
200: 0000 0000 0000 0000 0000 003F 003F 0000 0000 0000
210: 0000 0000 0000 0000 0000 0000 0000 1C20 0000 0000
220: 0000 0000 101F 0000 0000 0000 0000 0000 0000 0000
230: 0000 0000 0000 0000 0001 0000 0000 0000 0000 0000
240: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
250: 0000 0000 0000 0000 0000 1AA5

----------------------------------------------------------------------------
(4) WDC WD2500KS-00MJB0
----------------------------------------------------------------------------
Model : WDC WD2500KS-00MJB0
Firmware : 02.01C03
Serial Number : WD-WCANK8176732
Disk Size : 250,0 GB (8,4/137,4/250,0)
Buffer Size : 16384 KB
Queue Depth : 1
# of Sectors : 488397168
Rotation Rate : Neznámy údaj
Interface : Serial ATA
Major Version : ATA/ATAPI-7
Minor Version : ----
Transfer Mode : SATA/300
Power On Hours : 10886 hod.
Power On Count : 2691 krát
Temparature : 40 C (104 F)
Health Status : Dobrý
Features : S.M.A.R.T., AAM, 48bit LBA
APM Level : ----
AAM Level : 80FEh [OFF]

-- S.M.A.R.T. --------------------------------------------------------------
ID Cur Wor Thr RawValues(6) Attribute Name
01 200 200 _51 000000000000 Počet chyb čtení
03 249 183 _21 0000000009DD Čas na roztočení ploten
04 _98 _98 __0 000000000A90 Počet spuštění/zastavení
05 200 200 140 000000000000 Počet přemapovaných sektorů
07 200 200 _51 000000000000 Počet chybných hledání
09 _86 _86 __0 000000002A86 Hodin v činnosti
0A 100 100 _51 000000000000 Počet opakovaných pokusů o roztočení ploten
0B 100 100 _51 000000000000 Počet pokusů o překalibrování
0C _98 _98 __0 000000000A83 Počet cyklů zapnutí zařízení
BE _60 _41 _45 000000000028 Teplota toku vzduchu
C2 110 _91 __0 000000000028 Teplota
C4 200 200 __0 000000000000 Počet udalostí s číslem realokování sektorů
C5 200 200 __0 000000000000 Počet podezřelých sektorů
C6 200 200 __0 000000000000 Počet neopravitelných sektorů
C7 200 197 __0 000000000032 Počet chyb v kontrolním součtu UltraDMA
C8 200 200 _51 000000000000 Počet chyb při zápisu sektorů

-- IDENTIFY_DEVICE ---------------------------------------------------------
0 1 2 3 4 5 6 7 8 9
000: 427A 3FFF C837 0010 0000 003F 003F 0000 0000 0000
010: 2020 2020 2057 442D 5743 4B38 4B38 3137 3637 3332
020: 0000 8000 0032 3032 2E30 3033 3033 5744 4320 5744
030: 3235 3030 4B53 2D30 304D 3020 3020 2020 2020 2020
040: 2020 2020 2020 2020 2020 2020 2020 8010 0000 2F00
050: 4001 0000 0000 0007 3FFF 003F 003F FC10 00FB 0110
060: FFFF 0FFF 0000 0007 0003 0078 0078 0078 0078 0000
070: 0000 0000 0000 0000 0000 0606 0606 0000 0040 0040
080: 00FE 0000 746B 7F61 4023 3C41 3C41 4023 407F 0000
090: 0000 0000 FFFE 0000 80FE 0000 0000 0000 0000 0000
100: 5970 1D1C 0000 0000 0000 0000 0000 0000 0000 0000
110: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
120: 0000 0000 0000 0000 0000 0000 0000 0000 0001 0000
130: 0000 0000 0000 1663 0000 0000 0000 0000 0000 0000
140: 0000 0000 0004 0000 0000 0000 0000 0000 0000 0000
150: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
160: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
170: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
180: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
190: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
200: 0000 0000 0000 0000 0000 103F 103F 0000 0000 0000
210: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
220: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
230: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
240: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
250: 0000 0000 0000 0000 0000 34A5

Márty84
VIP
VIP
Příspěvky: 21685
Registrován: 05 Pro 2009 20:08
Místo/Bydliště: Ostrava

Re: Kontrola logu - pomale PC

#8 Příspěvek od Márty84 »

Ted behem kratke doby jsem se dvakrat setkal s tim, ze zde zkopirovany log z MBAM ukazoval nula nalezu, ale pritom neco nasel. Tak se radeji zeptam, nasel u vas neco?


Dejte novy log z RSIT
Možnost podpořit naše fórum https://platba.viry.cz/payment/

ed
Návštěvník
Návštěvník
Příspěvky: 73
Registrován: 14 Led 2005 18:27

Re: Kontrola logu - pomale PC

#9 Příspěvek od ed »

Jo,tak tohle bude asi obdobny problem..nahlasil asi 27 problematickych souboru..

Novy log z RSIT

Logfile of random's system information tool 1.10 (written by random/random)
Run by Vladimir at 2014-11-22 19:55:56
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 32 GB (13%) free of 238 GB
Total RAM: 4094 MB (51% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 19:55:59, on 22.11.2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17420)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files (x86)\Google\Drive\googledrivesync.exe
C:\Users\Vladimir\AppData\Roaming\uTorrent\uTorrent.exe
C:\Program Files\Zoner\Photo Studio 16\Program32\ZPSTray.exe
C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe
C:\Program Files (x86)\Google\Drive\googledrivesync.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Vladimir.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = Preserve
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O1 - Hosts: 127.0.0 sams.nikonimaging.com
O4 - HKLM\..\Run: [Nikon Message Center 2] C:\Program Files (x86)\Nikon\Nikon Message Center 2\NkMC2.exe -s
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [PMBVolumeWatcher] C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [GoogleDriveSync] "C:\Program Files (x86)\Google\Drive\googledrivesync.exe" /autostart
O4 - HKCU\..\Run: [Zoner Photo Studio Service 16] "C:\Program Files\Zoner\Photo Studio 16\Program32\ZPSTRAY.EXEC:\Program Files\Zoner\Photo Studio 16\Program32\ZPSService.exe"
O4 - HKCU\..\Run: [GarminExpressTrayApp] "C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe"
O4 - HKCU\..\Run: [uTorrent] "C:\Users\Vladimir\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED
O4 - HKCU\..\Run: [Zoner Photo Studio Autoupdate] "C:\PROGRAM FILES\ZONER\PHOTO STUDIO 16\Program32\ZPSTRAY.EXE"
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'Default user')
O4 - Startup: Adobe Gamma.lnk = C:\Program Files (x86)\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files (x86)\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Garmin Core Update Service - Garmin Ltd or its subsidiaries - C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: Sony Digital Media Server (SOHDms) - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe
O23 - Service: Sony Device Searcher (SOHDs) - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe
O23 - Service: VAIO Entertainment Common Service (SpfService) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 8680 bytes

======Listing Processes======



\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
winlogon.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
"C:\Windows\system32\nvvsvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
C:\Windows\system32\svchost.exe -k RPCSS
"c:\Program Files\Microsoft Security Client\MsMpEng.exe"
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"taskhost.exe"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe"
"C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
"C:\Program Files\Windows Sidebar\sidebar.exe" /autoRun
"C:\Program Files (x86)\Google\Drive\googledrivesync.exe" /autostart
"C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe"
"C:\Users\Vladimir\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED
"C:\Program Files\Zoner\Photo Studio 16\Program32\ZPSTray.exe"
"C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe"
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Program Files (x86)\Google\Drive\googledrivesync.exe" /autostart
C:\Windows\system32\svchost.exe -k imgsvc
"c:\Program Files\Microsoft Security Client\NisSrv.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-2982a85d-363e-4a72-90fc-c3fbe94f20dd -SystemEventPortName:HostProcess-3faa82f2-7bc3-4c3e-ab01-2c28aeba174b -IoCancelEventPortName:HostProcess-d51b36ef-f9a1-48b1-914f-845a6b289453 -NonStateChangingEventPortName:HostProcess-878033b3-60b8-463d-85d5-afff54ef85c2 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:550b96ad-d276-4500-809d-d9310ec2efbd -DeviceGroupId:WpdFsGroup
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --remote-debugging-port=9223
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="3880.0.1260032544\1285469013" --supports-dual-gpus=false --gpu-driver-bug-workarounds=1,17,38,46 --gpu-vendor-id=0x10de --gpu-device-id=0x0615 --gpu-driver-vendor=NVIDIA --gpu-driver-version=9.18.13.3523 --ignored=" --type=renderer " /prefetch:822062411
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="AutoReloadExperiment/Enabled/AutoReloadVisibleOnlyExperiment/Enabled/BrowserBlacklist/Enabled/DomRel-Enable/control/EmbeddedSearch/Group3 pct:10c stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/Enforce/ExtensionInstallVerification/Enforce/GoogleNow/Enable/NewProfileManagement/OldAvatarMenu/OmniboxBundledExperimentV1/PP_Ethersuggest_A2_Stable_R8/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/RapporRollout/Enabled/RememberCertificateErrorDecisions/ThreeMonths/SDCH/EnabledAll/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-1-Percent/group_89/UMA-Uniformity-Trial-10-Percent/group_02/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/default/UMA-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="3880.5.1552797140\32609252" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="AutoReloadExperiment/Enabled/AutoReloadVisibleOnlyExperiment/Enabled/BrowserBlacklist/Enabled/DomRel-Enable/control/EmbeddedSearch/Group3 pct:10c stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/Enforce/ExtensionInstallVerification/Enforce/GoogleNow/Enable/NewProfileManagement/OldAvatarMenu/OmniboxBundledExperimentV1/PP_Ethersuggest_A2_Stable_R8/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/RapporRollout/Enabled/RememberCertificateErrorDecisions/ThreeMonths/SDCH/EnabledAll/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-1-Percent/group_89/UMA-Uniformity-Trial-10-Percent/group_02/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/default/UMA-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="3880.6.900712639\747629148" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=ppapi --channel="3880.7.900557772\336160660" --ppapi-flash-args=enable_hw_video_decode=1 --lang=cs --ignored=" --type=renderer " /prefetch:-632637702
C:\Windows\servicing\TrustedInstaller.exe

C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
"C:\Users\Vladimir\Downloads\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\DllHost.exe /Processid:{F9717507-6651-4EDB-BFF7-AE615179BCCF}
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe5_ Global\UsGthrCtrlFltPipeMssGthrPipe5 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 516 520 528 65536 524

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler

=========Mozilla firefox=========

ProfilePath - C:\Users\Vladimir\AppData\Roaming\Mozilla\Firefox\Profiles\d668d38e.default-1403463649564

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@EDVR/WebClient]
"Description"=EDVR Web Client Plugin
"Path"=C:\windows\system32\WebClient\npwebclient.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@garmin.com/GpsControl]
"Description"=Garmin GPS Control for Firefox
"Path"=C:\Program Files (x86)\Garmin GPS Plugin\npGarmin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVision]
"Description"=NVIDIA stereo images plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVisionStreaming]
"Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.3]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@garmin.com/GpsControl]
"Description"=Garmin GPS Control for Firefox
"Path"=C:\Program Files\Garmin GPS Plugin\npGarmin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll


======Registry dump======

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"MSC"=C:\Program Files\Microsoft Security Client\msseces.exe [2014-08-22 1331288]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2014-03-20 1797064]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-20 1475584]
"GoogleDriveSync"=C:\Program Files (x86)\Google\Drive\googledrivesync.exe [2014-10-21 22869088]
"Zoner Photo Studio Service 16"=C:\Program Files\Zoner\Photo Studio 16\Program32\ZPSTRAY.EXE [2013-12-13 831488]
"GarminExpressTrayApp"=C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe [2014-08-27 688984]
"uTorrent"=C:\Users\Vladimir\AppData\Roaming\uTorrent\uTorrent.exe [2014-11-15 1385808]
"Zoner Photo Studio Autoupdate"=C:\PROGRAM FILES\ZONER\PHOTO STUDIO 16\Program32\ZPSTRAY.EXE [2013-12-13 831488]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"Nikon Message Center 2"=C:\Program Files (x86)\Nikon\Nikon Message Center 2\NkMC2.exe [2013-12-27 570880]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-08-21 959176]
"PMBVolumeWatcher"=C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe [2014-09-03 2707992]

C:\Users\Vladimir\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Adobe Gamma.lnk - C:\Program Files (x86)\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2014-11-22 09:26:26 ----D---- C:\rsit
2014-11-22 09:26:26 ----D---- C:\Program Files\trend micro
2014-11-18 19:23:55 ----A---- C:\Windows\SYSWOW64\pku2u.dll
2014-11-18 19:23:55 ----A---- C:\Windows\system32\pku2u.dll
2014-11-18 19:23:55 ----A---- C:\Windows\system32\kerberos.dll
2014-11-18 19:23:54 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2014-11-12 20:15:15 ----A---- C:\Windows\system32\generaltel.dll
2014-11-12 20:15:15 ----A---- C:\Windows\system32\aepdu.dll
2014-11-12 20:15:14 ----A---- C:\Windows\system32\aeinv.dll
2014-11-12 20:15:11 ----A---- C:\Windows\SYSWOW64\adtschema.dll
2014-11-12 20:15:11 ----A---- C:\Windows\system32\termsrv.dll
2014-11-12 20:15:11 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2014-11-12 20:15:11 ----A---- C:\Windows\system32\adtschema.dll
2014-11-12 20:15:10 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2014-11-12 20:15:10 ----A---- C:\Windows\SYSWOW64\secur32.dll
2014-11-12 20:15:10 ----A---- C:\Windows\SYSWOW64\msaudite.dll
2014-11-12 20:15:10 ----A---- C:\Windows\system32\msaudite.dll
2014-11-12 20:15:10 ----A---- C:\Windows\system32\lsasrv.dll
2014-11-12 20:15:01 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2014-11-12 20:15:01 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2014-11-12 20:15:00 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2014-11-12 20:15:00 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2014-11-12 20:15:00 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2014-11-12 20:15:00 ----A---- C:\Windows\system32\iernonce.dll
2014-11-12 20:15:00 ----A---- C:\Windows\system32\ieetwproxystub.dll
2014-11-12 20:15:00 ----A---- C:\Windows\system32\ieetwcollector.exe
2014-11-12 20:15:00 ----A---- C:\Windows\system32\ie4uinit.exe
2014-11-12 20:14:59 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2014-11-12 20:14:59 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2014-11-12 20:14:59 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2014-11-12 20:14:59 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2014-11-12 20:14:59 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-11-12 20:14:58 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2014-11-12 20:14:58 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2014-11-12 20:14:58 ----A---- C:\Windows\system32\iedkcs32.dll
2014-11-12 20:14:57 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2014-11-12 20:14:57 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2014-11-12 20:14:57 ----A---- C:\Windows\system32\urlmon.dll
2014-11-12 20:14:57 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2014-11-12 20:14:56 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2014-11-12 20:14:55 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2014-11-12 20:14:55 ----A---- C:\Windows\SYSWOW64\ieui.dll
2014-11-12 20:14:55 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2014-11-12 20:14:55 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2014-11-12 20:14:55 ----A---- C:\Windows\system32\dxtrans.dll
2014-11-12 20:14:54 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2014-11-12 20:14:54 ----A---- C:\Windows\system32\msfeeds.dll
2014-11-12 20:14:54 ----A---- C:\Windows\system32\iesetup.dll
2014-11-12 20:14:54 ----A---- C:\Windows\system32\ieapfltr.dll
2014-11-12 20:14:53 ----A---- C:\Windows\system32\iertutil.dll
2014-11-12 20:14:52 ----A---- C:\Windows\SYSWOW64\wininet.dll
2014-11-12 20:14:52 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2014-11-12 20:14:52 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2014-11-12 20:14:52 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2014-11-12 20:14:52 ----A---- C:\Windows\system32\jsproxy.dll
2014-11-12 20:14:52 ----A---- C:\Windows\system32\ieUnatt.exe
2014-11-12 20:14:51 ----A---- C:\Windows\SYSWOW64\msrating.dll
2014-11-12 20:14:51 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2014-11-12 20:14:51 ----A---- C:\Windows\system32\ieui.dll
2014-11-12 20:14:51 ----A---- C:\Windows\system32\dxtmsft.dll
2014-11-12 20:14:50 ----A---- C:\Windows\system32\mshtmlmedia.dll
2014-11-12 20:14:50 ----A---- C:\Windows\system32\mshtmled.dll
2014-11-12 20:14:50 ----A---- C:\Windows\system32\ieframe.dll
2014-11-12 20:14:49 ----A---- C:\Windows\system32\wininet.dll
2014-11-12 20:14:49 ----A---- C:\Windows\system32\vbscript.dll
2014-11-12 20:14:49 ----A---- C:\Windows\system32\jscript9diag.dll
2014-11-12 20:14:49 ----A---- C:\Windows\system32\jscript9.dll
2014-11-12 20:14:48 ----A---- C:\Windows\system32\msrating.dll
2014-11-12 20:14:48 ----A---- C:\Windows\system32\MshtmlDac.dll
2014-11-12 20:14:48 ----A---- C:\Windows\system32\mshtml.dll
2014-11-12 20:14:12 ----A---- C:\Windows\system32\msxml3.dll
2014-11-12 20:14:11 ----A---- C:\Windows\SYSWOW64\msxml3r.dll
2014-11-12 20:14:11 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2014-11-12 20:14:11 ----A---- C:\Windows\system32\msxml3r.dll
2014-11-12 20:14:10 ----A---- C:\Windows\SYSWOW64\IMJP10K.DLL
2014-11-12 20:14:10 ----A---- C:\Windows\system32\IMJP10K.DLL
2014-11-12 20:14:08 ----A---- C:\Windows\SYSWOW64\AUDIOKSE.dll
2014-11-12 20:14:08 ----A---- C:\Windows\system32\audiosrv.dll
2014-11-12 20:14:08 ----A---- C:\Windows\system32\AUDIOKSE.dll
2014-11-12 20:14:08 ----A---- C:\Windows\system32\AudioEng.dll
2014-11-12 20:14:07 ----A---- C:\Windows\SYSWOW64\AudioEng.dll
2014-11-12 20:14:07 ----A---- C:\Windows\system32\EncDump.dll
2014-11-12 20:14:07 ----A---- C:\Windows\system32\AudioSes.dll
2014-11-12 20:14:06 ----A---- C:\Windows\SYSWOW64\AudioSes.dll
2014-11-12 20:13:57 ----A---- C:\Windows\SYSWOW64\schannel.dll
2014-11-12 20:13:57 ----A---- C:\Windows\system32\schannel.dll
2014-11-12 20:13:57 ----A---- C:\Windows\system32\ncrypt.dll
2014-11-12 20:13:56 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2014-11-12 20:13:56 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2014-11-12 20:13:56 ----A---- C:\Windows\system32\wdigest.dll
2014-11-12 20:13:56 ----A---- C:\Windows\system32\msv1_0.dll
2014-11-12 20:13:55 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2014-11-12 20:13:55 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2014-11-12 20:13:55 ----A---- C:\Windows\system32\TSpkg.dll
2014-11-12 20:13:55 ----A---- C:\Windows\system32\credssp.dll
2014-11-12 20:13:54 ----A---- C:\Windows\SYSWOW64\credssp.dll
2014-11-12 20:13:41 ----A---- C:\Windows\SYSWOW64\packager.dll
2014-11-12 20:13:41 ----A---- C:\Windows\system32\packager.dll
2014-11-12 20:13:38 ----A---- C:\Windows\system32\win32k.sys
2014-11-12 20:13:34 ----A---- C:\Windows\SYSWOW64\msi.dll
2014-11-12 20:13:34 ----A---- C:\Windows\system32\msi.dll
2014-11-12 20:13:31 ----A---- C:\Windows\system32\oleaut32.dll
2014-11-12 20:13:30 ----A---- C:\Windows\SYSWOW64\oleaut32.dll

======List of files/folders modified in the last 1 month======

2014-11-22 19:55:21 ----D---- C:\Windows\Temp
2014-11-22 19:55:20 ----D---- C:\Users\Vladimir\AppData\Roaming\uTorrent
2014-11-22 19:47:30 ----D---- C:\Windows\system32\config
2014-11-22 19:44:51 ----D---- C:\Windows\Prefetch
2014-11-22 19:39:40 ----D---- C:\ProgramData\NVIDIA
2014-11-22 19:37:30 ----HD---- C:\ProgramData
2014-11-22 19:37:29 ----RD---- C:\Program Files (x86)
2014-11-22 19:37:29 ----D---- C:\Windows\system32\drivers
2014-11-22 10:23:12 ----D---- C:\Windows\System32
2014-11-22 10:09:26 ----D---- C:\Windows
2014-11-22 10:08:13 ----D---- C:\AdwCleaner
2014-11-22 10:08:11 ----D---- C:\Windows\SysWOW64
2014-11-22 09:26:26 ----RD---- C:\Program Files
2014-11-19 03:21:47 ----D---- C:\Windows\system32\catroot2
2014-11-19 03:20:33 ----D---- C:\Windows\winsxs
2014-11-19 03:00:52 ----SHD---- C:\System Volume Information
2014-11-18 19:22:00 ----D---- C:\Windows\system32\catroot
2014-11-16 01:47:03 ----D---- C:\Windows\rescache
2014-11-15 22:58:09 ----SHD---- C:\Windows\Installer
2014-11-15 22:53:20 ----D---- C:\Windows\Tasks
2014-11-14 00:12:37 ----D---- C:\Windows\Microsoft.NET
2014-11-14 00:11:28 ----RSD---- C:\Windows\assembly
2014-11-13 01:16:20 ----SD---- C:\Windows\system32\CompatTel
2014-11-13 01:16:20 ----D---- C:\Windows\SYSWOW64\en-US
2014-11-13 01:16:20 ----D---- C:\Windows\SYSWOW64\cs-CZ
2014-11-13 01:16:20 ----D---- C:\Windows\system32\en-US
2014-11-13 01:16:20 ----D---- C:\Windows\system32\cs-CZ
2014-11-13 01:16:20 ----D---- C:\Program Files\Internet Explorer
2014-11-13 01:16:19 ----D---- C:\Program Files (x86)\Internet Explorer
2014-11-12 20:28:11 ----D---- C:\Windows\system32\MRT
2014-11-12 20:23:31 ----D---- C:\Windows\debug
2014-11-12 20:23:27 ----A---- C:\Windows\system32\MRT.exe
2014-11-12 00:01:35 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2014-11-10 19:58:34 ----D---- C:\Windows\inf
2014-10-31 07:00:03 ----D---- C:\Windows\system32\wdi
2014-10-30 12:25:26 ----N---- C:\Windows\system32\MpSigStub.exe
2014-10-27 23:05:45 ----A---- C:\Windows\system32\PerfStringBackup.INI

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2014-07-17 269008]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 199552]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 514560]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2014-07-17 125584]
R3 rt61x64;RT61 Extensible Wireless Driver; C:\Windows\system32\DRIVERS\netr6164.sys [2010-04-07 446304]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2009-03-01 187392]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 165888]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 6656]
S3 StillCam;Ovladač digitálního fotoaparátu pro sériový port; C:\Windows\system32\DRIVERS\serscan.sys [2009-07-14 12288]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 34688]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2013-10-02 56832]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2013-07-03 42496]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 21760]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 41984]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2014-09-12 64704]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 Garmin Core Update Service;Garmin Core Update Service; C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe [2014-08-27 441176]
R2 MsMpSvc;Microsoft Antimalware Service; c:\Program Files\Microsoft Security Client\MsMpEng.exe [2014-08-22 23784]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2014-03-04 922968]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2014-03-04 411936]
R3 NisSrv;@C:\Program Files\Microsoft Security Client\MpAsDesc.dll,-243; c:\Program Files\Microsoft Security Client\NisSrv.exe [2014-08-22 368624]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-09-11 124088]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-03-27 116648]
S3 Adobe LM Service;Adobe LM Service; C:\Program Files (x86)\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe [2014-03-30 72704]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-11-12 267440]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-03-27 116648]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2014-11-06 114688]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2014-09-27 114288]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 SOHDms;Sony Digital Media Server; C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe [2014-01-16 495248]
S3 SOHDs;Sony Device Searcher; C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe [2013-12-03 79000]
S3 SpfService;VAIO Entertainment Common Service; C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe [2011-12-01 289952]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2014-03-28 1255736]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-09-11 51808]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]

-----------------EOF-----------------

Márty84
VIP
VIP
Příspěvky: 21685
Registrován: 05 Pro 2009 20:08
Místo/Bydliště: Ostrava

Re: Kontrola logu - pomale PC

#10 Příspěvek od Márty84 »

A muzete poslat screen tech nalezu? Pokud jste uz MBAM odinstaloval, nainstalujte ho prosim znovu a udelejte novy test. Rad bych vedel co a kde nasel, at tam neco nenechame :?:
Možnost podpořit naše fórum https://platba.viry.cz/payment/

ed
Návštěvník
Návštěvník
Příspěvky: 73
Registrován: 14 Led 2005 18:27

Re: Kontrola logu - pomale PC

#11 Příspěvek od ed »

ok,necham udelat jeste jeden scan :-)

Márty84
VIP
VIP
Příspěvky: 21685
Registrován: 05 Pro 2009 20:08
Místo/Bydliště: Ostrava

Re: Kontrola logu - pomale PC

#12 Příspěvek od Márty84 »

:thumbsup:
Možnost podpořit naše fórum https://platba.viry.cz/payment/

ed
Návštěvník
Návštěvník
Příspěvky: 73
Registrován: 14 Led 2005 18:27

Re: Kontrola logu - pomale PC

#13 Příspěvek od ed »

Malwarebytes Anti-Malware
www.malwarebytes.org

Datum skenování: 23.11.2014
Čas skenování: 9:04:57
Protokol:
Správce: Ano

Verze: 2.00.3.1025
Databáze malwaru: v2014.11.23.04
Databáze rootkitů: v2014.11.22.01
Licence: Zkušební verze
Ochrana proti malwaru: Zapnuto
Ochrana proti škodlivým webovým stránkám: Zapnuto
Sebeobrany: Vypnuto

OS: Windows 7 Service Pack 1
CPU: x64
Souborový systém: NTFS
Uživatel: Vladimir

Typ skenu: Vlastní sken
Výsledek: Dokončeno
Prohledaných objektů: 910933
Uplynulý čas: 3 hod, 38 min, 52 sek

Paměť: Zapnuto
Po spuštění: Zapnuto
Souborový systém: Zapnuto
Archivy: Zapnuto
Rootkity: Vypnuto
Heuristika: Zapnuto
PUP: Zapnuto
PUM: Zapnuto

Procesy: 0
(Žádné zákerné zjištěny položek)

Moduly: 0
(Žádné zákerné zjištěny položek)

Klíče registru: 2
PUP.Optional.PlusHD.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\HD-V1.4, , [bb7546f982faec4a2faa32273bc832ce],
PUP.Optional.SavePass.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\SavePass, , [34fc5ce3a0dc82b468f77ce60ef5eb15],

Hodnoty registru: 0
(Žádné zákerné zjištěny položek)

Data registru: 0
(Žádné zákerné zjištěny položek)

Složky: 1
PUP.Optional.OffersWizard.A, C:\Program Files (x86)\Common Files\Config, , [aa868ab52a52fb3b9e6a5af8887bbe42],

Soubory: 24
PUP.Optional.OffersWizard.A, C:\Program Files (x86)\Common Files\Config\uninstinethnfd.exe, , [5fd117280e6e45f1d8d7146dfb0ae020],
PUP.Optional.Amonetize, C:\Users\Vladimir\AppData\Local\f5221bd5-eea3-4f28-ceb9-cfcdcc596c9d\f5221bd5-eea3-4f28-ceb9-cfcdcc596c9d.exe, , [0f2196a9423a221465c7cac0ad54f010],
PUP.Optional.RelevantKnowledge, C:\Users\Vladimir\AppData\Local\Temp\~osB24E.tmp\rlls.dll, , [d957f34c3c40fd39f378fd69ba4bfe02],
PUP.Optional.RelevantKnowledge, C:\Users\Vladimir\AppData\Local\Temp\~osB24E.tmp\rlls64.dll, , [e8481f20d2aaaa8c6efdadb95fa630d0],
PUP.Optional.RelevantKnowledge, C:\Users\Vladimir\AppData\Local\Temp\~osB24E.tmp\rlnx.dll, , [c0707ac5d6a6df577bf070f6e520ee12],
PUP.Optional.RelevantKnowledge, C:\Users\Vladimir\AppData\Local\Temp\~osB24E.tmp\rlph.dll, , [75bba897d6a658deb1ba491d53b27888],
PUP.Optional.RelevantKnowledge, C:\Users\Vladimir\AppData\Local\Temp\~osB24E.tmp\rlservice.exe, , [062a6ad549338da9e982085e65a08f71],
PUP.Optional.RelevantKnowledge, C:\Users\Vladimir\AppData\Local\Temp\~osB24E.tmp\rlvknlg.exe, , [1f11d46baece4aec214afb6b050020e0],
PUP.Optional.RelevantKnowledge, C:\Users\Vladimir\AppData\Local\Temp\~osB24E.tmp\rlvknlg32.exe, , [d858f34c196367cf6b00442242c304fc],
PUP.Optional.RelevantKnowledge, C:\Users\Vladimir\AppData\Local\Temp\~osB24E.tmp\rlvknlg64.exe, , [31ff87b8e498b97daebd3b2bd72e768a],
PUP.Optional.RelevantKnowledge, C:\Users\Vladimir\AppData\Local\Temp\~osB24E.tmp\rlxf.dll, , [4fe1d867205cf14598d3ee78a85da55b],
PUP.Optional.RelevantKnowledge, C:\Users\Vladimir\AppData\Local\Temp\~osB24E.tmp\rlxg.dll, , [49e7a09f97e56ccaf8730066a4613bc5],
PUP.Optional.OutBrowse, C:\Users\Vladimir\Downloads\mkvtoavi_setup.exe, , [df5157e82f4d66d0f218651e2ad73ec2],
PUP.Optional.OutBrowse, C:\Users\Vladimir\Downloads\isomount_setup.exe, , [36fad669007cb77f34bb49e205001ae6],
PUP.RiskwareTool.CK, C:\Users\Vladimir\Downloads\install\Adobe_Photoshop_CS2_Tryout_to_Full_Activation.zip, , [e848e35c1864181ee738c741936df20e],
PUP.Keygen.Intro, C:\Users\Vladimir\Downloads\install\Noise.Ninja.for.Photoshop.v2.3.2.Incl.Keymaker-CORE.rar, , [9b95e25d4933ee4817b74fa662a214ec],
PUP.Optional.RelevantKnowledge, C:\AdwCleaner\Quarantine\C\Program Files (x86)\RelevantKnowledge\rlls.dll.vir, , [60d0053a611ba69003681551b74e25db],
PUP.Optional.RelevantKnowledge, C:\AdwCleaner\Quarantine\C\Program Files (x86)\RelevantKnowledge\rlls64.dll.vir, , [41efce71e4982f0744274422a95cc040],
PUP.Optional.RelevantKnowledge, C:\AdwCleaner\Quarantine\C\Program Files (x86)\RelevantKnowledge\rlservice.exe.vir, , [d55b43fce894f244105bf96d44c1a25e],
PUP.Optional.RelevantKnowledge, C:\AdwCleaner\Quarantine\C\Program Files (x86)\RelevantKnowledge\rlvknlg.exe.vir, , [1020300f49331c1a1853f4728c79de22],
PUP.Optional.RelevantKnowledge, C:\AdwCleaner\Quarantine\C\Program Files (x86)\RelevantKnowledge\rlvknlg32.exe.vir, , [85aba798423a59ddbead283e28dd639d],
PUP.Optional.RelevantKnowledge, C:\AdwCleaner\Quarantine\C\Program Files (x86)\RelevantKnowledge\rlvknlg64.exe.vir, , [34fc9aa5522ac670c8a35412ee17c937],
PUP.Optional.RelevantKnowledge, C:\AdwCleaner\Quarantine\C\Windows\SysWOW64\rlls.dll.vir, , [aa8669d6fe7efc3a73f8e185d5302dd3],
PUP.Optional.OffersWizard.A, C:\Program Files (x86)\Common Files\Config\ver.xml, , [aa868ab52a52fb3b9e6a5af8887bbe42],

Fyzické sektory: 0
(Žádné zákerné zjištěny položek)


(end)

Márty84
VIP
VIP
Příspěvky: 21685
Registrován: 05 Pro 2009 20:08
Místo/Bydliště: Ostrava

Re: Kontrola logu - pomale PC

#14 Příspěvek od Márty84 »

Vsechny nalezy hodte do karanteny. Po restartu pc udelejte novy test - staci Sken hrozeb. Napiste jeho vysledek a podle toho zvolim dalsi postup.
Možnost podpořit naše fórum https://platba.viry.cz/payment/

ed
Návštěvník
Návštěvník
Příspěvky: 73
Registrován: 14 Led 2005 18:27

Re: Kontrola logu - pomale PC

#15 Příspěvek od ed »

Tak po tomto skenu nebyly nalezeny zadne hrozby.

Zamčeno