Zpomalený notebook

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz


Vážení uživaterlé!
Ve dnech 4. - 6-9.2026 budou někteříí naši členové na každoročním srazu fóra. Žádáme vás, abyste měli strpení, nemusí se na na řešení vašeho problému dostat hned. Děkujeme za pochopení.
Zpráva
Autor
SpankMe2day
Návštěvník
Návštěvník
Příspěvky: 21
Registrován: 19 Kvě 2014 10:32

Zpomalený notebook

#1 Příspěvek od SpankMe2day »

Ahoj mám nějak zasekaný notebook. Tak bych poprosil o kontrolu logu. Dík
Win 7 prof. 64 bit (orig.)

Logfile of random's system information tool 1.10 (written by random/random)
Run by SpankMe at 2014-12-09 00:07:00
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 182 GB (39%) free of 461 GB
Total RAM: 4009 MB (43% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 0:07:16, on 9.12.2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17420)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\National Instruments\Shared\NI OPC Servers\V5\server_admin.exe
C:\Program Files (x86)\National Instruments\Shared\NI Error Reporting\nierserver.exe
C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe
C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\CORESHREDDER.exe
C:\Program Files (x86)\National Instruments\Shared\DataFinderDesktop\bin\DataFinder.exe
C:\Program Files (x86)\National Instruments\NI-DAQ\HWConfig\nidevmon.exe
C:\Windows\SysWOW64\RunDll32.exe
C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Windows Media Player\wmplayer.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\SpankMe.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.trovi.com/?gd=&ctid=CT332145 ... 84TC_sp_ie
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com?pc=CMNTDFJS
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.bing.com?pc=CMNTDFJS
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: BHO_Startup - {3134413B-49B4-425C-98A5-893C1F195601} - C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\IEBHO.dll
O2 - BHO: Microsoft Web Test Recorder 12.0 Helper - {432dd630-7e03-4c97-9d62-b99f52df4fc2} - C:\Program Files (x86)\Microsoft Visual Studio 12.0\Common7\IDE\PrivateAssemblies\Microsoft.VisualStudio.QualityTools.RecorderBarBHO100.dll
O2 - BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - (no file)
O4 - HKLM\..\Run: [PDF Complete] C:\Program Files (x86)\PDF Complete\pdfsty.exe
O4 - HKLM\..\Run: [StartCCC] "c:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [QLBController] C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe /start
O4 - HKLM\..\Run: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
O4 - HKLM\..\Run: [AccelerometerSysTrayApplet] C:\Program Files (x86)\Hewlett-Packard\HP 3D DriveGuard\AccelerometerST.exe
O4 - HKLM\..\Run: [YouCam Tray] "c:\Program Files (x86)\CyberLink\YouCam\YouCamTray.exe" /s
O4 - HKLM\..\Run: [CLMLServer_For_P2G8] "c:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe"
O4 - HKLM\..\Run: [CLVirtualDrive] "c:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe" /R
O4 - HKLM\..\Run: [HP File Sanitizer] C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\Coreshredder.exe
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [SiemensAutomationFileStorage] "C:\Program Files (x86)\Siemens\Automation\Portal V12\Bin\Siemens.Automation.ObjectFrame.FileStorage.Server.exe" preload
O4 - HKLM\..\Run: [NBKeyScan] "C:\Program Files (x86)\Nero\Nero8\Nero BackItUp\NBKeyScan.exe"
O4 - HKLM\..\Run: [DataFinder] "C:\Program Files (x86)\National Instruments\Shared\DataFinderDesktop\bin\DataFinder.exe" /auto
O4 - HKLM\..\Run: [niDevMon] C:\Program Files (x86)\National Instruments\NI-DAQ\HWConfig\nidevmon.exe
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [NIRegistrationWizard] C:\Program Files (x86)\National Instruments\Shared\RegistrationWizard\Bin\RegistrationWizard.exe -autoDiscover 1 -displayIfNoneFound 0 -displayRegisterOptions 1 -sleepIfNoneFound 0 -locale 1029
O4 - HKCU\..\Run: [IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files (x86)\Common Files\Nero\Lib\NMIndexStoreSvr.exe" ASO-616B5711-6DAE-4795-A05F-39A1E5104020
O4 - HKUS\S-1-5-21-1185877117-2082503125-1392697548-1012\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'ASBService')
O4 - HKUS\S-1-5-21-1185877117-2082503125-1392697548-1012\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'ASBService')
O4 - Global Startup: Bluetooth.lnk = ?
O4 - Global Startup: NI Error Reporting (64-bit).lnk = C:\Program Files\National Instruments\Shared\NI Error Reporting\nierserver.exe
O4 - Global Startup: NI Error Reporting.lnk = C:\Program Files (x86)\National Instruments\Shared\NI Error Reporting\nierserver.exe
O4 - Global Startup: vpngui.exe.lnk = ?
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe (file missing)
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe (file missing)
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~2\Office12\REFIEBAR.DLL
O10 - Unknown file in Winsock LSP: c:\program files (x86)\national instruments\shared\mdns responder\nimdnsnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O23 - Service: ArchestrA Bootstrap (aaBootstrap) - Invensys Systems, Inc. - C:\Program Files (x86)\Common Files\ArchestrA\Framework\Bin\aaBootstrap.exe
O23 - Service: ArchestrA GalaxyRepository (aaGR) - Invensys Systems, Inc. - C:\Program Files (x86)\ArchestrA\Framework\Bin\aaGR.exe
O23 - Service: Wonderware Historian Client Access Point (aahClientAccessPoint) - Invensys Systems, Inc. - C:\Program Files (x86)\Common Files\ArchestrA\aahClientAccessPoint.exe
O23 - Service: ArchestrA Logger (aaLogger) - Invensys Systems, Inc. - C:\Program Files (x86)\Common Files\ArchestrA\aaLogger.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Automation License Manager Service (almservice) - SIEMENS AG - C:\Program Files\Common Files\Siemens\sws\almsrv\almsrv64x.exe
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - c:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
O23 - Service: @%ProgramFiles%\Windows Identity Foundation\v3.5\c2wtsres.dll,-1000 (c2wts) - Unknown owner - C:\Program Files (x86)\Windows Identity Foundation\v3.5\c2wtshost.exe (file missing)
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\Windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: HP Trust Circles Service (CreoService) - CryptoMill Technologies Ltd. - C:\Program Files (x86)\Hewlett-Packard\HP Trust Circles\CreoSvc.exe
O23 - Service: Absolute Software Agent Service (CtAgentService) - Unknown owner - C:\Program Files (x86)\Hewlett-Packard\HP Theft Recovery\CtService.exe
O23 - Service: Cisco Systems, Inc. VPN Service (CVPND) - Cisco Systems, Inc. - C:\Program Files (x86)\Cisco Systems\VPN Client\cvpnd.exe
O23 - Service: CyberLink PowerDVD 12 Media Server Monitor Service - CyberLink - c:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSMonitorServicePDVD12.exe
O23 - Service: CyberLink PowerDVD 12 Media Server Service - CyberLink - c:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe
O23 - Service: @c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe,-128 (DpHost) - DigitalPersona, Inc. - c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: HP Device Locking / Auditing (FLCDLOCK) - Hewlett-Packard Company - c:\Windows\SysWOW64\flcdlock.exe
O23 - Service: FLEXnet Licensing Service 64 - Acresso Software Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe
O23 - Service: FSGateway - Invensys Systems, Inc. - C:\Program Files (x86)\Wonderware\DAServer\FSGateway\Bin\FSGateway.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HP File Sanitizer (HPFSService) - Hewlett-Packard - C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\HPFSService.exe
O23 - Service: hpHotkeyMonitor - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: HP Service (hpsrv) - Unknown owner - C:\Windows\system32\Hpservice.exe (file missing)
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - c:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - c:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) ME Service - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NI Citadel 4 Service (LkCitadelServer) - National Instruments, Inc. - C:\Windows\SysWOW64\lkcitdl.exe
O23 - Service: NI PSP Service Locator (lkClassAds) - National Instruments Corporation - C:\Windows\SysWOW64\lkads.exe
O23 - Service: NI Time Synchronization (lkTimeSync) - National Instruments Corporation - C:\Windows\SysWOW64\lktsrv.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: NI Configuration Manager (mxssvr) - National Instruments Corporation - C:\Program Files (x86)\National Instruments\MAX\nimxs.exe
O23 - Service: Nero BackItUp Scheduler 4.0 - Unknown owner - C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NI GPIB Enumeration Service (ni488enumsvc) - National Instruments Corporation - C:\Windows\SysWOW64\nipalsm.exe
O23 - Service: NI Application Web Server (NIApplicationWebServer) - National Instruments Corporation - C:\Program Files (x86)\National Instruments\Shared\NI WebServer\ApplicationWebServer.exe
O23 - Service: NI Authentication Service (niauth) - National Instruments Corporation - C:\Program Files (x86)\National Instruments\Shared\niauth\niauth_daemon.exe
O23 - Service: NI Citadel 5 (NICitadel5Service) - National Instruments Corporation - C:\Windows\SysWOW64\nicitdl5.exe
O23 - Service: NI Device Loader (nidevldu) - National Instruments Corporation - C:\Windows\SysWOW64\nidevldu.exe
O23 - Service: NI Domain Service (NIDomainService) - National Instruments Corporation - C:\Program Files (x86)\National Instruments\Shared\Security\nidmsrv.exe
O23 - Service: NI License Server (NILM License Manager) - Macrovision Corporation - C:\Program Files (x86)\National Instruments\Shared\License Manager\Bin\lmgrd.exe
O23 - Service: NI LXI Discovery Service (niLXIDiscovery) - National Instruments Corporation - C:\Program Files (x86)\IVI Foundation\VISA\WinNT\NIvisa\niLxiDiscovery.exe
O23 - Service: NI-Motion Device Manager (nimcdldu) - National Instruments Corporation - C:\Windows\SysWOW64\nipalsm.exe
O23 - Service: NI mDNS Responder Service (nimDNSResponder) - National Instruments Corporation - C:\Program Files (x86)\National Instruments\Shared\mDNS Responder\nimdnsResponder.exe
O23 - Service: NI Network Discovery (NINetworkDiscovery) - National Instruments Corporation - C:\Program Files (x86)\National Instruments\Shared\NI Network Discovery\niDiscSvc.exe
O23 - Service: NI OPC Servers 2013 Key Service (NIOPCServersKeySvcV2013) - Kepware Technologies - C:\Program Files (x86)\National Instruments\Shared\NI OPC Servers\V5\keysvc.exe
O23 - Service: NI OPC Servers 2013 Event Logger (NIOPCServersLoggerV2013) - Kepware Technologies - C:\Program Files (x86)\National Instruments\Shared\NI OPC Servers\V5\server_eventlog.exe
O23 - Service: NI OPC Servers 2013 Runtime (NIOPCServersV2013) - Kepware Technologies - C:\Program Files (x86)\National Instruments\Shared\NI OPC Servers\V5\server_runtime.exe
O23 - Service: NI PXI Resource Manager (nipxirmu) - National Instruments Corporation - C:\Windows\SysWOW64\nipxism.exe
O23 - Service: NI-RIO Server (NiRioRpc) - National Instruments Corporation - C:\Windows\SysWOW64\NiRioRpc.exe
O23 - Service: NI Service Locator (NiSvcLoc) - National Instruments Corporation - C:\Program Files (x86)\National Instruments\Shared\niSvcLoc\nisvcloc.exe
O23 - Service: NI System Web Server (NISystemWebServer) - National Instruments Corporation - C:\Program Files (x86)\National Instruments\Shared\NI WebServer\SystemWebServer.exe
O23 - Service: NI Variable Engine (NITaggerService) - National Instruments Corporation - C:\Program Files (x86)\National Instruments\Shared\Tagger\tagsrv.exe
O23 - Service: NI TSU Clock Service (nitsuu) - National Instruments Corporation - C:\Windows\SysWOW64\nipalsm.exe
O23 - Service: OpcEnum - OPC Foundation - C:\Windows\SysWOW64\OpcEnum.exe
O23 - Service: PDF Document Manager (pdfcDispatcher) - PDF Complete Inc - C:\Program Files (x86)\PDF Complete\pdfsvc.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: SIMATIC S7DOS Help Service (s7oiehsx64) - Siemens AG - C:\Program Files\Common Files\Siemens\Automation\Simatic OAM\bin\s7oiehsx64.exe
O23 - Service: S7TraceServiceX - Siemens AG - C:\Program Files\Common Files\Siemens\Automation\TraceEngine\bin\S7TraceService64X.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: Wonderware SuiteLink (slssvc) - Invensys Systems, Inc. - C:\Program Files (x86)\Common Files\ArchestrA\slssvc.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\stlang64.dll,-10101 (STacSV) - IDT, Inc. - C:\Program Files\IDT\WDM\STacSV64.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Validity VCS Fingerprint Service (vcsFPService) - Validity Sensors, Inc. - C:\Windows\system32\vcsFPService.exe
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: ArchestrA Watchdog Service (Watchdog_Service) - Invensys Systems, Inc. - C:\Program Files (x86)\Common Files\ArchestrA\Services\aaServiceWatchdog.exe
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: Broadcom Wireless LAN Tray Service (wltrysvc) - Broadcom Corporation - C:\Program Files\Broadcom\Broadcom 802.11\WLTRYSVC.EXE
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Wonderware NetDDE Helper (WWNetDDE) - Invensys Systems, Inc. - C:\Program Files (x86)\Common Files\ArchestrA\wwnetdde.exe

--
End of file - 19818 bytes

======Listing Processes======



\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
C:\Windows\system32\services.exe
winlogon.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
"c:\Program Files\Microsoft Security Client\MsMpEng.exe"
"c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe"
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
"C:\Program Files\IDT\WDM\STacSV64.exe"
"c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPCardEngine.exe"
C:\Windows\system32\svchost.exe -k GPSvcGroup
atieclxx
C:\Windows\system32\Hpservice.exe
C:\Windows\system32\vcsFPService.exe
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\Broadcom\Broadcom 802.11\WLTRYSVC.EXE" "C:\Program Files\Broadcom\Broadcom 802.11\bcmwltry.exe"
C:\Windows\system32\WLANExt.exe 23325760
C:\Program Files\Broadcom\Broadcom 802.11\bcmwltry.exe
\??\C:\Windows\system32\conhost.exe "-527646114-624500018-1063894738-5816146001221404134185993998116923255592067152905
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\ArchestrA\aaLogger.exe"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files\Common Files\Siemens\sws\almsrv\almsrv64x.exe"
C:\Windows\system32\svchost.exe -k apphost
"c:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP Trust Circles\CreoSvc.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP Theft Recovery\CtService.exe"
"C:\PROGRAM FILES\COMMON FILES\SIEMENS\ALMPANELPLUGIN\ALMPANELPLUGIN.EXE" -Embedding
"c:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSMonitorServicePDVD12.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\HPFSService.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe"
"c:\Program Files\Intel\iCLS Client\HeciServer.exe"
C:\Windows\SysWOW64\lkads.exe
"c:\Program Files (x86)\Microsoft SQL Server\MSSQL10_50.CITADEL\MSSQL\Binn\sqlservr.exe" -sCITADEL
"C:\Program Files (x86)\Microsoft SQL Server\MSSQL11.MSSQLSERVER\MSSQL\Binn\sqlservr.exe" -sMSSQLSERVER
"C:\Program Files (x86)\National Instruments\MAX\nimxs.exe"
C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
C:\Windows\SysWOW64\nipalsm.exe
"C:\Program Files (x86)\National Instruments\Shared\niauth\niauth_daemon.exe" -start
C:\Windows\SysWOW64\nidevldu.exe
"C:\Program Files (x86)\National Instruments\Shared\Security\nidmsrv.exe"
C:\Windows\SysWOW64\nipalsm.exe
"C:\Program Files (x86)\National Instruments\Shared\NI OPC Servers\V5\server_eventlog.exe" -service
"C:\Program Files (x86)\National Instruments\Shared\niSvcLoc\nisvcloc.exe" -s
"C:\Program Files (x86)\National Instruments\Shared\Tagger\tagsrv.exe"
C:\Windows\SysWOW64\nipalsm.exe
"C:\Program Files (x86)\PDF Complete\pdfsvc.exe" /startedbyscm:66B66708-40E2BE4D-pdfcService
"C:\Program Files\Common Files\Siemens\Automation\Simatic OAM\bin\s7oiehsx64.exe"
"C:\Program Files\Common Files\Siemens\Automation\TraceEngine\bin\S7TraceService64X.exe"
"C:\Program Files (x86)\Common Files\ArchestrA\slssvc.exe"
"c:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe"
"C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe"
C:\Windows\system32\svchost.exe -k iissvcs
"C:\Program Files (x86)\Common Files\ArchestrA\Services\aaServiceWatchdog.exe"
"C:\Program Files\Common Files\Siemens\Automation\Simatic OAM\bin\s7epasrv64x.exe"
"C:\Program Files (x86)\Common Files\ArchestrA\Framework\Bin\aaBootstrap.exe"
"C:\Program Files\Common Files\Siemens\Automation\Simatic OAM\bin\PNIOMGR.exe" --start 0
\??\C:\Windows\system32\conhost.exe "14493067081178539045-1244144510-255092726111065719747197615818592628561768386979
"C:\Program Files (x86)\Common Files\ArchestrA\aahClientAccessPoint.exe"
c:\Windows\SysWOW64\flcdlock.exe
C:\Windows\SysWOW64\lkcitdl.exe
C:\Windows\SysWOW64\lktsrv.exe
"C:\Program Files (x86)\National Instruments\Shared\mDNS Responder\nimdnsResponder.exe"
"C:\Program Files (x86)\National Instruments\Shared\NI OPC Servers\V5\server_runtime.exe" -service
C:\Windows\SysWOW64\nipxism.exe
"C:\Program Files (x86)\National Instruments\Shared\NI WebServer\SystemWebServer.exe" -system
C:\Windows\SysWOW64\nicitdl5.exe
"C:\Program Files (x86)\IVI Foundation\VISA\WinNT\NIvisa\niLxiDiscovery.exe"
"C:\Program Files (x86)\National Instruments\Shared\NI Network Discovery\niDiscSvc.exe"
"C:\Program Files (x86)\National Instruments\Shared\NI WebServer\ApplicationWebServer.exe" -user
NIWebServiceContainer.exe {F30828A0-0B1C-41D2-8BA5-7A455DDCBCB6} 5300 784 21
NIWebServiceContainer.exe {B76966DC-927B-4C86-9D4E-2C7753AE94BB} 5300 836 21
NIWebServiceContainer.exe {42A38B99-E735-4811-8CEB-CEA9229A49E5} 2176 800 21
"C:\Program Files (x86)\ArchestrA\Framework\Bin\aaGR.exe"
"C:\Program Files (x86)\Common Files\ArchestrA\Services\aaLocalDiscoveryService.exe" /RI=10000 /CI=2000 /R=10000 /G=5000 /NPrimaryGlobalDiscovery_0001 /I20000 /Wnet.tcp://localhost:6130/ArchestrA/WatchdogService /Dnet.tcp://SPANKME-HP:9110/GDS /MCallbackMode
\??\C:\Windows\system32\conhost.exe "7917716171106105576-1471725826405823107-1899810919122510599-6022517661062298502
"C:\Program Files (x86)\Common Files\ArchestrA\Services\aaLocalDiscoveryService.exe" /R=90000 /G=5000 /RI=10000 /NLocalDiscoveryService /I20000 /Wnet.tcp://localhost:6130/ArchestrA/WatchdogService /Dnet.tcp://spankme-hp:9111/LDS /PGDSnet.tcp://SPANKME-HP:9110/GDS /MCallbackMode
\??\C:\Windows\system32\conhost.exe "-1274848976-17622164063959724394983301821356671207-549045774-1612799701959657189
"C:\Program Files (x86)\Common Files\ArchestrA\Services\aaSystemAuthenticationService.exe" /R=90000 /S=archestra://CoreServices/SystemAuthenticationService /NSystemAuthenticationService /I20000 /Wnet.tcp://localhost:6130/ArchestrA/WatchdogService /Dnet.tcp://spankme-hp:9111/LDS /MCallbackMode
\??\C:\Windows\system32\conhost.exe "-506026224-492709353-1596457674960924265-1796853619302526583-11570807101498279453
"C:\Program Files (x86)\Common Files\ArchestrA\Services\aaContentProviderHost.exe" /R=90000 /S=archestra://CoreServices/ServiceContentProvider /NContentproviderService /I20000 /Wnet.tcp://localhost:6130/ArchestrA/WatchdogService /Dnet.tcp://spankme-hp:9111/LDS /MCallbackMode
\??\C:\Windows\system32\conhost.exe "1502386717-202926917253372384-76134932-742753764363545090-1390348449-81118999
"C:\Program Files (x86)\Common Files\ArchestrA\Services\aaConfigurationServiceHost.exe" /R=90000 /S=archestra://CoreServices/ConfigurationService /NConfigurationService /I20000 /Wnet.tcp://localhost:6130/ArchestrA/WatchdogService /Dnet.tcp://spankme-hp:9111/LDS /MCallbackMode
\??\C:\Windows\system32\conhost.exe "568423354-15643814666583685971644938479-1471740168523043459-8129515071684490390
"C:\Program Files (x86)\Common Files\ArchestrA\Services\aaServicesDeployAgentHost.exe" /R=90000 /S=archestra://CoreServices/DeployAgentService /NDeployAgentService /I20000 /Wnet.tcp://localhost:6130/ArchestrA/WatchdogService /Dnet.tcp://spankme-hp:9111/LDS /MCallbackMode
\??\C:\Windows\system32\conhost.exe "3136838231258807540216127220-695237357-1822983112814501582-566653419-592003446
"C:\Program Files (x86)\Common Files\ArchestrA\Services\aaServiceManager.exe" /P=5000 /G=5000 /R=90000 /S=/ServiceManager /NServiceManager /I20000 /Wnet.tcp://localhost:6130/ArchestrA/WatchdogService /Dnet.tcp://spankme-hp:9111/LDS /MCallbackMode
\??\C:\Windows\system32\conhost.exe "-1943157413-49199724595074133013887953961850916691-287878081667874554-1757960352
NIWebServiceContainer.exe {BAD65A3E-48BA-4147-825E-87B6E87D04F4} 5300 856 21
NIWebServiceContainer.exe {83AA88A2-1BF4-4D1A-B0DB-9559A8585F02} 5300 872 21
NIWebServiceContainer.exe {FE237CE1-6BA1-4257-BE07-9E1060577C54} 5300 884 21
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\wbem\unsecapp.exe -Embedding
"c:\Program Files\Microsoft Security Client\NisSrv.exe"
"C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
C:\Windows\system32\svchost.exe -k bthsvcs
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
NIWebServiceContainer.exe {2558D5D8-B9BD-4F01-9047-C886B4A2F009} 5300 208 21
NIWebServiceContainer.exe {8B1A31B0-4667-45DA-BD49-ACF04D443EA2} 5300 880 21
"C:\Program Files (x86)\Google\Update\1.3.25.11\GoogleCrashHandler.exe"
"C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"C:\Program Files (x86)\Google\Update\1.3.25.11\GoogleCrashHandler64.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\National Instruments\Shared\NI OPC Servers\V5\server_admin.exe" -autorun
"C:\Program Files\IDT\WDM\sttray64.exe"
"C:\Program Files\Broadcom\Broadcom 802.11\WLTRAY.EXE"
"C:\Windows\RtsCM64.exe"
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\system32\igfxsrvc.exe" -Embedding
"C:\Windows\System32\hkcmd.exe"
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
"C:\Windows\System32\igfxpers.exe"
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe"
"C:\Program Files\National Instruments\Shared\NI Error Reporting\nierserver.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe" /start
"C:\Program Files (x86)\National Instruments\Shared\NI Error Reporting\nierserver.exe"
"C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP 3D DriveGuard\AccelerometerSt.exe"
"C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe"
"C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\CORESHREDDER.exe"
"C:\Program Files (x86)\National Instruments\Shared\DataFinderDesktop\bin\DataFinder.exe" /auto
"C:\Program Files (x86)\National Instruments\NI-DAQ\HWConfig\nidevmon.exe"
"C:\Windows\SysWOW64\RunDll32.exe" "c:\Program Files\WIDCOMM\Bluetooth Software\SysWOW64\BtMmHook.dll",SetAndWaitBtMmHook
"C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
"c:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM" PriorityLow
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
C:\Windows\servicing\TrustedInstaller.exe
"taskhost.exe"
"C:\Program Files (x86)\Cisco Systems\VPN Client\cvpnd.exe"
C:\Windows\system32\svchost.exe -k imgsvc

"c:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe"
C:\Windows\SysWOW64\pniopcac.exe 0 {F6FB64F4-B8CF-46CE-BD5C-23B2533BF962}
C:\Windows\SysWOW64\pniopcac.exe 0 {B63FFB06-6FFB-4F0A-ADBF-C26B6808FBF3}
C:\Windows\SysWOW64\pniopcac.exe 0 {CB4D53BC-7A9F-4924-AE23-1F3D17872BDE}
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="6124.0.1847674153\517067721" --disable-d3d11 --supports-dual-gpus=false --gpu-driver-bug-workarounds=1,6,17,38 --gpu-vendor-id=0x8086 --gpu-device-id=0x0416 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=9.18.10.3324 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/DomRel-Enable/enable/EmbeddedSearch/Group7 pct:10g stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/ControlEnforce/ExtensionInstallVerification/Enforce/GoogleNow/Enable/NewProfileManagement/OldAvatarMenu/OmniboxBundledExperimentV1/StandardR4/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/RapporRollout/Enabled/RememberCertificateErrorDecisions/Default/SPDY/DefaultSpdy31Enabled/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_05/UMA-Uniformity-Trial-1-Percent/group_82/UMA-Uniformity-Trial-10-Percent/group_06/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/default/UMA-Uniformity-Trial-5-Percent/group_09/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="6124.2.1622249593\1802663368" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=ppapi --channel="6124.8.1365760879\7693128" --ppapi-flash-args=enable_hw_video_decode=1 --lang=cs --ignored=" --type=renderer " /prefetch:-632637702
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/DomRel-Enable/enable/EmbeddedSearch/Group7 pct:10g stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/ControlEnforce/ExtensionInstallVerification/Enforce/GCM/Disabled/GoogleNow/Enable/NewProfileManagement/OldAvatarMenu/OmniboxBundledExperimentV1/StandardR4/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/RapporRollout/Enabled/RememberCertificateErrorDecisions/Default/SPDY/DefaultSpdy31Enabled/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_05/UMA-Uniformity-Trial-1-Percent/group_82/UMA-Uniformity-Trial-10-Percent/group_06/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/default/UMA-Uniformity-Trial-5-Percent/group_09/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="6124.11.1619274025\1752521584" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/DomRel-Enable/enable/EmbeddedSearch/Group7 pct:10g stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/ControlEnforce/ExtensionInstallVerification/Enforce/GCM/Disabled/GoogleNow/Enable/NewProfileManagement/OldAvatarMenu/OmniboxBundledExperimentV1/StandardR4/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/RapporRollout/Enabled/RememberCertificateErrorDecisions/Default/SPDY/DefaultSpdy31Enabled/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_05/UMA-Uniformity-Trial-1-Percent/group_82/UMA-Uniformity-Trial-10-Percent/group_06/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/default/UMA-Uniformity-Trial-5-Percent/group_09/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="6124.23.2084836375\1316745935" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/DomRel-Enable/enable/EmbeddedSearch/Group7 pct:10g stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/ControlEnforce/ExtensionInstallVerification/Enforce/GCM/Disabled/GoogleNow/Enable/NewProfileManagement/OldAvatarMenu/OmniboxBundledExperimentV1/StandardR4/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/RapporRollout/Enabled/RememberCertificateErrorDecisions/Default/SPDY/DefaultSpdy31Enabled/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_05/UMA-Uniformity-Trial-1-Percent/group_82/UMA-Uniformity-Trial-10-Percent/group_06/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/default/UMA-Uniformity-Trial-5-Percent/group_09/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="6124.43.1614697880\1991711274" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/DomRel-Enable/enable/EmbeddedSearch/Group7 pct:10g stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/ControlEnforce/ExtensionInstallVerification/Enforce/GCM/Disabled/GoogleNow/Enable/NewProfileManagement/OldAvatarMenu/OmniboxBundledExperimentV1/StandardR4/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/RapporRollout/Enabled/RememberCertificateErrorDecisions/Default/SPDY/DefaultSpdy31Enabled/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_05/UMA-Uniformity-Trial-1-Percent/group_82/UMA-Uniformity-Trial-10-Percent/group_06/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/default/UMA-Uniformity-Trial-5-Percent/group_09/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="6124.46.6399557\1154087336" /prefetch:673131151
"C:\Program Files (x86)\Windows Media Player\wmplayer.exe" /Play -Embedding
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/DomRel-Enable/enable/EmbeddedSearch/Group7 pct:10g stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/ControlEnforce/ExtensionInstallVerification/Enforce/GCM/Disabled/GoogleNow/Enable/NewProfileManagement/OldAvatarMenu/OmniboxBundledExperimentV1/StandardR4/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/RapporRollout/Enabled/RememberCertificateErrorDecisions/Default/SPDY/DefaultSpdy31Enabled/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_05/UMA-Uniformity-Trial-1-Percent/group_82/UMA-Uniformity-Trial-10-Percent/group_06/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/default/UMA-Uniformity-Trial-5-Percent/group_09/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="6124.49.504947791\836626729" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/DomRel-Enable/enable/EmbeddedSearch/Group7 pct:10g stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/ControlEnforce/ExtensionInstallVerification/Enforce/GCM/Disabled/GoogleNow/Enable/NewProfileManagement/OldAvatarMenu/OmniboxBundledExperimentV1/StandardR4/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/RapporRollout/Enabled/RememberCertificateErrorDecisions/Default/SHA1ToolbarUIJanuary2017/Warning/SPDY/DefaultSpdy31Enabled/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_05/UMA-Uniformity-Trial-1-Percent/group_82/UMA-Uniformity-Trial-10-Percent/group_06/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/default/UMA-Uniformity-Trial-5-Percent/group_09/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="6124.53.2058895377\218130804" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/DomRel-Enable/enable/EmbeddedSearch/Group7 pct:10g stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/ControlEnforce/ExtensionInstallVerification/Enforce/GCM/Disabled/GoogleNow/Enable/NewProfileManagement/OldAvatarMenu/OmniboxBundledExperimentV1/StandardR4/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/RapporRollout/Enabled/RememberCertificateErrorDecisions/Default/SHA1ToolbarUIJanuary2017/Warning/SPDY/DefaultSpdy31Enabled/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_05/UMA-Uniformity-Trial-1-Percent/group_82/UMA-Uniformity-Trial-10-Percent/group_06/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/default/UMA-Uniformity-Trial-5-Percent/group_09/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="6124.55.2039779433\763235449" /prefetch:673131151
taskeng.exe {10EAE276-174B-4889-8B9C-8166E334FA23}
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe270_ Global\UsGthrCtrlFltPipeMssGthrPipe270 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 516 520 528 65536 524
taskhost.exe $(Arg0)
"C:\Users\SpankMe\Desktop\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\Windows\tasks\HPCeeScheduleForSpankMe.job - C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe HPCeeScheduleForSpankMe (null)
C:\Windows\tasks\MATLAB R2012b Startup Accelerator.job - C:\Program Files\MATLAB\R2012b\bin\win64\MATLABStartupAccelerator.exe

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3134413B-49B4-425C-98A5-893C1F195601}]
HP File Sanitizer - C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\IEBHO.dll [2013-08-07 129240]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{432dd630-7e03-4c97-9d62-b99f52df4fc2}]
Microsoft Web Test Recorder 12.0 Helper - C:\Program Files (x86)\Microsoft Visual Studio 12.0\Common7\IDE\PrivateAssemblies\Microsoft.VisualStudio.QualityTools.RecorderBarBHO100.dll [2013-10-05 71520]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IAStorIcon"=C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe [2013-08-07 36352]
"SysTrayApp"=C:\Program Files\IDT\WDM\sttray64.exe [2013-08-16 1703424]
"Broadcom Wireless Manager UI"=C:\Program Files\Broadcom\Broadcom 802.11\WLTRAY.exe [2014-08-10 7032320]
"RtsCM"=C:\Windows\RTSCM64.EXE [2013-08-02 147160]
"CryptoMill Refresh"=C:\Program Files\Hewlett-Packard\HP Trust Circles\ceflauncher -m refresh []
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2013-09-04 2774256]
"MSC"=c:\Program Files\Microsoft Security Client\msseces.exe [2014-08-22 1331288]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2013-10-15 165848]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2013-10-15 407512]
"Persistence"=C:\Windows\system32\igfxpers.exe [2013-10-15 444376]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2014-03-04 3696912]
"NIRegistrationWizard"=C:\Program Files (x86)\National Instruments\Shared\RegistrationWizard\Bin\RegistrationWizard.exe [2013-04-19 847000]
"IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"=C:\Program Files (x86)\Common Files\Nero\Lib\NMIndexStoreSvr.exe ASO-616B5711-6DAE-4795-A05F-39A1E5104020 []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RGSC]
C:\Games\GTA IV\Rockstar Games Social Club\RGSCLauncher.exe [2008-11-14 305064]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"PDF Complete"=C:\Program Files (x86)\PDF Complete\pdfsty.exe [2013-07-18 683656]
"StartCCC"=c:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2013-08-02 676608]
"QLBController"=C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe [2013-08-01 337184]
"USB3MON"=C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [2013-08-15 292848]
"AccelerometerSysTrayApplet"=C:\Program Files (x86)\Hewlett-Packard\HP 3D DriveGuard\AccelerometerST.exe [2013-07-24 77088]
"YouCam Tray"=c:\Program Files (x86)\CyberLink\YouCam\YouCamTray.exe [2013-06-24 167488]
"CLMLServer_For_P2G8"=c:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [2013-08-05 111576]
"CLVirtualDrive"=c:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe [2013-08-07 490760]
"HP File Sanitizer"=C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\Coreshredder.exe [2013-08-07 2213592]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-08-21 959176]
"SiemensAutomationFileStorage"=C:\Program Files (x86)\Siemens\Automation\Portal V12\Bin\Siemens.Automation.ObjectFrame.FileStorage.Server.exe [2013-07-11 942080]
"NBKeyScan"=C:\Program Files (x86)\Nero\Nero8\Nero BackItUp\NBKeyScan.exe []
"DataFinder"=C:\Program Files (x86)\National Instruments\Shared\DataFinderDesktop\bin\DataFinder.exe [2014-06-10 2596128]
"niDevMon"=C:\Program Files (x86)\National Instruments\NI-DAQ\HWConfig\nidevmon.exe [2014-02-12 119120]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
NI Error Reporting (64-bit).lnk - C:\Program Files\National Instruments\Shared\NI Error Reporting\nierserver.exe
NI Error Reporting.lnk - C:\Program Files (x86)\National Instruments\Shared\NI Error Reporting\nierserver.exe
vpngui.exe.lnk - C:\Windows\Installer\{5FDC06BF-3D3D-4367-8FFB-4FAFCB61972D}\Icon09DB8A851.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2013-10-15 441344]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"notification packages"=DPPassFilter
scecli
c:\Program Files\WIDCOMM\Bluetooth Software\BtwProximityCP.dll

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"msacm.ac3filter"=ac3filter64.acm

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.scr - open - C:\Windows\system32\notepad.exe "%1"
.scr - install -
.scr - config -

======List of files/folders created in the last 1 month======

2014-12-09 00:07:00 ----D---- C:\rsit
2014-12-03 17:39:11 ----D---- C:\Program Files\Common Files\Deterministic Networks
2014-12-03 17:39:11 ----D---- C:\Program Files (x86)\Cisco Systems
2014-11-29 19:41:18 ----A---- C:\Windows\SYSWOW64\SQSRVRES.DLL
2014-11-28 18:39:45 ----A---- C:\Windows\system32\iisRtl.dll
2014-11-28 18:39:45 ----A---- C:\Windows\system32\admwprox.dll
2014-11-28 18:39:44 ----A---- C:\Windows\SYSWOW64\iisRtl.dll
2014-11-28 18:39:44 ----A---- C:\Windows\SYSWOW64\admwprox.dll
2014-11-28 18:39:44 ----A---- C:\Windows\system32\iisreset.exe
2014-11-28 18:39:43 ----A---- C:\Windows\SYSWOW64\wamregps.dll
2014-11-28 18:39:43 ----A---- C:\Windows\SYSWOW64\iisreset.exe
2014-11-28 18:39:43 ----A---- C:\Windows\SYSWOW64\ahadmin.dll
2014-11-28 18:39:43 ----A---- C:\Windows\system32\wamregps.dll
2014-11-28 18:39:43 ----A---- C:\Windows\system32\iisrstap.dll
2014-11-28 18:39:43 ----A---- C:\Windows\system32\ahadmin.dll
2014-11-28 18:39:42 ----A---- C:\Windows\SYSWOW64\iisrstap.dll
2014-11-28 14:29:52 ----D---- C:\Program Files (x86)\Invensys
2014-11-28 14:28:20 ----D---- C:\Program Files (x86)\ArchestrA
2014-11-28 14:26:04 ----D---- C:\ProgramData\Wonderware
2014-11-28 14:26:04 ----D---- C:\ProgramData\InTouchDemos
2014-11-28 14:26:04 ----D---- C:\ProgramData\ArchestrA
2014-11-28 14:25:00 ----D---- C:\Program Files (x86)\Wonderware
2014-11-28 14:22:14 ----A---- C:\Windows\SYSWOW64\perf-MSSQL11.MSSQLSERVER-sqlagtctr.dll
2014-11-28 14:21:42 ----A---- C:\Windows\SYSWOW64\perf-MSSQLSERVER-sqlctr11.1.3000.0.dll
2014-11-28 14:21:32 ----A---- C:\Windows\SYSWOW64\fssres.dll
2014-11-28 14:21:31 ----A---- C:\Windows\SYSWOW64\hadrres.dll
2014-11-28 14:13:22 ----D---- C:\Program Files (x86)\Microsoft Visual Studio 10.0
2014-11-28 14:11:34 ----D---- C:\Windows\symbols
2014-11-28 14:11:33 ----D---- C:\Program Files\Microsoft Visual Studio 10.0
2014-11-28 14:11:33 ----D---- C:\Program Files\Microsoft Help Viewer
2014-11-28 13:54:27 ----D---- C:\Windows\SYSWOW64\BestPractices
2014-11-28 13:54:27 ----D---- C:\Windows\system32\BestPractices
2014-11-28 13:54:26 ----D---- C:\inetpub
2014-11-28 13:53:10 ----D---- C:\Users\SpankMe\AppData\Roaming\Wonderware
2014-11-28 13:51:17 ----A---- C:\Windows\system32\drivers\sentinel64.sys
2014-11-19 14:53:14 ----A---- C:\Windows\SYSWOW64\pku2u.dll
2014-11-19 14:53:14 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2014-11-19 14:53:14 ----A---- C:\Windows\system32\pku2u.dll
2014-11-19 14:53:14 ----A---- C:\Windows\system32\kerberos.dll
2014-11-15 18:27:19 ----D---- C:\Windows\nimcorb
2014-11-15 18:00:37 ----D---- C:\Program Files (x86)\manuals
2014-11-15 17:04:55 ----D---- C:\NIFPGA
2014-11-15 16:57:03 ----D---- C:\Users\SpankMe\AppData\Roaming\National Instruments
2014-11-15 16:54:30 ----A---- C:\Windows\SYSWOW64\perf-MSSQL10_50.CITADEL-sqlagtctr.dll
2014-11-15 16:54:08 ----A---- C:\Windows\SYSWOW64\perf-MSSQL$CITADEL-sqlctr10.51.2500.0.dll
2014-11-15 16:52:00 ----D---- C:\Program Files (x86)\Microsoft Visual Studio 9.0
2014-11-15 16:36:38 ----D---- C:\Program Files (x86)\Microsoft Analysis Services
2014-11-15 16:08:04 ----D---- C:\ProgramData\PXISA
2014-11-15 15:56:29 ----D---- C:\ProgramData\JKI
2014-11-15 15:56:29 ----D---- C:\Program Files (x86)\JKI
2014-11-15 15:53:06 ----D---- C:\Packages
2014-11-15 15:49:43 ----D---- C:\ProgramData\IVI Foundation
2014-11-15 15:49:43 ----D---- C:\Program Files\IVI Foundation
2014-11-15 15:49:43 ----D---- C:\Program Files (x86)\IVI Foundation
2014-11-15 15:32:08 ----A---- C:\Windows\ODBC.INI
2014-11-15 15:29:30 ----D---- C:\Windows\system32\cvirte
2014-11-15 15:29:25 ----D---- C:\Windows\SYSWOW64\cvirte
2014-11-15 14:31:16 ----D---- C:\Users\SpankMe\AppData\Roaming\PowerISO
2014-11-15 14:03:24 ----A---- C:\Windows\Irremote.ini
2014-11-15 13:40:38 ----SHD---- C:\AX NF ZZ
2014-11-15 13:27:16 ----D---- C:\Users\SpankMe\AppData\Roaming\Siemens
2014-11-15 12:43:02 ----D---- C:\Program Files (x86)\Siemens
2014-11-15 12:36:36 ----D---- C:\Program Files\Common Files\Siemens
2014-11-15 12:35:19 ----D---- C:\Program Files (x86)\MSSOAP
2014-11-14 00:05:51 ----D---- C:\ProgramData\Siemens
2014-11-13 22:36:35 ----D---- C:\Users\SpankMe\AppData\Roaming\Nero
2014-11-13 22:32:30 ----D---- C:\ProgramData\Nero
2014-11-12 11:49:11 ----A---- C:\Windows\system32\generaltel.dll
2014-11-12 11:49:11 ----A---- C:\Windows\system32\aepdu.dll
2014-11-12 11:49:10 ----A---- C:\Windows\system32\aeinv.dll
2014-11-12 11:49:07 ----A---- C:\Windows\SYSWOW64\adtschema.dll
2014-11-12 11:49:07 ----A---- C:\Windows\system32\termsrv.dll
2014-11-12 11:49:07 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2014-11-12 11:49:07 ----A---- C:\Windows\system32\adtschema.dll
2014-11-12 11:49:06 ----A---- C:\Windows\system32\lsasrv.dll
2014-11-12 11:49:05 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2014-11-12 11:49:05 ----A---- C:\Windows\SYSWOW64\secur32.dll
2014-11-12 11:49:05 ----A---- C:\Windows\SYSWOW64\msaudite.dll
2014-11-12 11:49:05 ----A---- C:\Windows\system32\msaudite.dll
2014-11-12 11:48:48 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2014-11-12 11:48:48 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2014-11-12 11:48:48 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2014-11-12 11:48:48 ----A---- C:\Windows\system32\ieetwproxystub.dll
2014-11-12 11:48:48 ----A---- C:\Windows\system32\ieetwcollector.exe
2014-11-12 11:48:47 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2014-11-12 11:48:47 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2014-11-12 11:48:47 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2014-11-12 11:48:47 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2014-11-12 11:48:47 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2014-11-12 11:48:47 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2014-11-12 11:48:47 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-11-12 11:48:47 ----A---- C:\Windows\system32\iernonce.dll
2014-11-12 11:48:47 ----A---- C:\Windows\system32\ie4uinit.exe
2014-11-12 11:48:46 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2014-11-12 11:48:46 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2014-11-12 11:48:46 ----A---- C:\Windows\system32\iedkcs32.dll
2014-11-12 11:48:45 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2014-11-12 11:48:45 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2014-11-12 11:48:45 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2014-11-12 11:48:45 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2014-11-12 11:48:45 ----A---- C:\Windows\system32\urlmon.dll
2014-11-12 11:48:45 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2014-11-12 11:48:44 ----A---- C:\Windows\SYSWOW64\ieui.dll
2014-11-12 11:48:44 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2014-11-12 11:48:44 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2014-11-12 11:48:44 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2014-11-12 11:48:44 ----A---- C:\Windows\system32\msfeeds.dll
2014-11-12 11:48:44 ----A---- C:\Windows\system32\dxtrans.dll
2014-11-12 11:48:43 ----A---- C:\Windows\system32\iesetup.dll
2014-11-12 11:48:43 ----A---- C:\Windows\system32\iertutil.dll
2014-11-12 11:48:43 ----A---- C:\Windows\system32\ieapfltr.dll
2014-11-12 11:48:42 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2014-11-12 11:48:42 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2014-11-12 11:48:42 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2014-11-12 11:48:41 ----A---- C:\Windows\SYSWOW64\wininet.dll
2014-11-12 11:48:41 ----A---- C:\Windows\SYSWOW64\msrating.dll
2014-11-12 11:48:41 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2014-11-12 11:48:41 ----A---- C:\Windows\system32\jsproxy.dll
2014-11-12 11:48:41 ----A---- C:\Windows\system32\ieUnatt.exe
2014-11-12 11:48:40 ----A---- C:\Windows\system32\dxtmsft.dll
2014-11-12 11:48:39 ----A---- C:\Windows\system32\ieui.dll
2014-11-12 11:48:38 ----A---- C:\Windows\system32\mshtmlmedia.dll
2014-11-12 11:48:38 ----A---- C:\Windows\system32\mshtmled.dll
2014-11-12 11:48:38 ----A---- C:\Windows\system32\jscript9diag.dll
2014-11-12 11:48:38 ----A---- C:\Windows\system32\ieframe.dll
2014-11-12 11:48:37 ----A---- C:\Windows\system32\wininet.dll
2014-11-12 11:48:37 ----A---- C:\Windows\system32\vbscript.dll
2014-11-12 11:48:37 ----A---- C:\Windows\system32\jscript9.dll
2014-11-12 11:48:36 ----A---- C:\Windows\system32\msrating.dll
2014-11-12 11:48:36 ----A---- C:\Windows\system32\MshtmlDac.dll
2014-11-12 11:48:36 ----A---- C:\Windows\system32\mshtml.dll
2014-11-12 11:47:55 ----A---- C:\Windows\SYSWOW64\msxml3r.dll
2014-11-12 11:47:55 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2014-11-12 11:47:55 ----A---- C:\Windows\system32\msxml3r.dll
2014-11-12 11:47:55 ----A---- C:\Windows\system32\msxml3.dll
2014-11-12 11:47:54 ----A---- C:\Windows\SYSWOW64\IMJP10K.DLL
2014-11-12 11:47:54 ----A---- C:\Windows\system32\IMJP10K.DLL
2014-11-12 11:47:51 ----A---- C:\Windows\SYSWOW64\AudioSes.dll
2014-11-12 11:47:51 ----A---- C:\Windows\SYSWOW64\AUDIOKSE.dll
2014-11-12 11:47:51 ----A---- C:\Windows\SYSWOW64\AudioEng.dll
2014-11-12 11:47:51 ----A---- C:\Windows\system32\EncDump.dll
2014-11-12 11:47:51 ----A---- C:\Windows\system32\audiosrv.dll
2014-11-12 11:47:51 ----A---- C:\Windows\system32\AudioSes.dll
2014-11-12 11:47:51 ----A---- C:\Windows\system32\AUDIOKSE.dll
2014-11-12 11:47:51 ----A---- C:\Windows\system32\AudioEng.dll
2014-11-12 11:47:48 ----A---- C:\Windows\system32\schannel.dll
2014-11-12 11:47:47 ----A---- C:\Windows\system32\ncrypt.dll
2014-11-12 11:47:46 ----A---- C:\Windows\SYSWOW64\schannel.dll
2014-11-12 11:47:46 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2014-11-12 11:47:45 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2014-11-12 11:47:45 ----A---- C:\Windows\system32\msv1_0.dll
2014-11-12 11:47:44 ----A---- C:\Windows\system32\wdigest.dll
2014-11-12 11:47:44 ----A---- C:\Windows\system32\TSpkg.dll
2014-11-12 11:47:43 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2014-11-12 11:47:43 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2014-11-12 11:47:42 ----A---- C:\Windows\system32\credssp.dll
2014-11-12 11:47:41 ----A---- C:\Windows\SYSWOW64\credssp.dll
2014-11-12 11:47:29 ----A---- C:\Windows\SYSWOW64\packager.dll
2014-11-12 11:47:29 ----A---- C:\Windows\system32\win32k.sys
2014-11-12 11:47:29 ----A---- C:\Windows\system32\packager.dll
2014-11-12 11:47:24 ----A---- C:\Windows\SYSWOW64\msi.dll
2014-11-12 11:47:24 ----A---- C:\Windows\system32\msi.dll
2014-11-12 11:47:16 ----A---- C:\Windows\SYSWOW64\oleaut32.dll
2014-11-12 11:47:16 ----A---- C:\Windows\system32\oleaut32.dll

======List of files/folders modified in the last 1 month======

2014-12-09 00:07:16 ----D---- C:\Windows\Prefetch
2014-12-09 00:07:07 ----D---- C:\Program Files\trend micro
2014-12-09 00:06:54 ----D---- C:\Windows\Temp
2014-12-08 22:20:06 ----AD---- C:\Windows
2014-12-07 16:42:18 ----SHD---- C:\System Volume Information
2014-12-07 16:29:39 ----D---- C:\ProgramData\PDFC
2014-12-03 17:44:22 ----RD---- C:\Program Files (x86)
2014-12-03 17:43:29 ----D---- C:\Windows\System32
2014-12-03 17:43:29 ----D---- C:\Windows\inf
2014-12-03 17:43:29 ----A---- C:\Windows\system32\PerfStringBackup.INI
2014-12-03 17:41:27 ----SHD---- C:\Windows\Installer
2014-12-03 17:40:58 ----D---- C:\Windows\system32\drivers
2014-12-03 17:40:57 ----D---- C:\Windows\system32\DriverStore
2014-12-03 17:40:57 ----D---- C:\Windows\system32\catroot
2014-12-03 17:39:11 ----D---- C:\Program Files\Common Files
2014-12-02 17:04:26 ----D---- C:\Windows\system32\config
2014-12-02 15:54:15 ----D---- C:\Windows\winsxs
2014-12-01 13:19:18 ----D---- C:\Windows\system32\NDF
2014-12-01 12:18:28 ----D---- C:\Windows\rescache
2014-12-01 00:33:39 ----D---- C:\Users\SpankMe\AppData\Roaming\Skype
2014-11-30 17:56:00 ----D---- C:\Users\SpankMe\AppData\Roaming\uTorrent
2014-11-30 11:36:15 ----D---- C:\Windows\Microsoft.NET
2014-11-29 19:53:56 ----D---- C:\Windows\SYSWOW64\migration
2014-11-29 19:53:56 ----D---- C:\Windows\SYSWOW64\inetsrv
2014-11-29 19:53:56 ----D---- C:\Windows\SysWOW64
2014-11-29 19:53:56 ----D---- C:\Windows\system32\inetsrv
2014-11-29 19:53:55 ----D---- C:\Windows\system32\migration
2014-11-29 19:41:56 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2014-11-29 19:40:38 ----RSD---- C:\Windows\assembly
2014-11-29 19:28:49 ----D---- C:\Program Files\Microsoft SQL Server
2014-11-29 19:28:49 ----D---- C:\Program Files (x86)\Microsoft SQL Server
2014-11-28 18:34:54 ----D---- C:\Windows\system32\catroot2
2014-11-28 14:31:40 ----RD---- C:\Users
2014-11-28 14:31:34 ----D---- C:\Program Files (x86)\Common Files
2014-11-28 14:26:37 ----A---- C:\Windows\win.ini
2014-11-28 14:26:04 ----D---- C:\ProgramData
2014-11-28 14:22:21 ----SD---- C:\Users\SpankMe\AppData\Roaming\Microsoft
2014-11-28 14:19:35 ----D---- C:\Program Files (x86)\Microsoft Office
2014-11-28 14:11:33 ----RD---- C:\Program Files
2014-11-28 13:54:27 ----D---- C:\Windows\SYSWOW64\cs-CZ
2014-11-28 13:54:27 ----D---- C:\Windows\system32\cs-CZ
2014-11-28 07:59:06 ----D---- C:\Windows\system32\Tasks
2014-11-24 16:15:25 ----D---- C:\Users\SpankMe\AppData\Roaming\GHISLER
2014-11-15 19:07:09 ----D---- C:\ProgramData\National Instruments
2014-11-15 18:48:54 ----D---- C:\Program Files (x86)\National Instruments
2014-11-15 18:44:00 ----D---- C:\Program Files\National Instruments
2014-11-15 18:11:08 ----D---- C:\ProgramData\Microsoft Help
2014-11-15 16:51:32 ----D---- C:\Program Files (x86)\Microsoft.NET
2014-11-15 16:50:12 ----D---- C:\Windows\SYSWOW64\1033
2014-11-15 16:50:12 ----D---- C:\Windows\system32\1033
2014-11-15 16:38:05 ----D---- C:\Windows\SYSWOW64\drivers
2014-11-15 16:19:06 ----RSD---- C:\Windows\Fonts
2014-11-15 15:56:48 ----SHD---- C:\Windows\SYSWOW64\AI_RecycleBin
2014-11-15 15:30:49 ----D---- C:\Program Files (x86)\Internet Explorer
2014-11-15 14:36:13 ----D---- C:\Windows\AppPatch
2014-11-15 14:01:46 ----D---- C:\Windows\Cursors
2014-11-15 12:55:30 ----D---- C:\Windows\Setup
2014-11-15 12:53:46 ----SD---- C:\Windows\system32\Microsoft
2014-11-15 12:42:38 ----D---- C:\Windows\security
2014-11-14 00:04:50 ----D---- C:\Users\SpankMe\AppData\Roaming\DAEMON Tools Lite
2014-11-13 22:15:01 ----SD---- C:\Windows\system32\CompatTel
2014-11-13 22:14:59 ----D---- C:\Program Files\Internet Explorer
2014-11-13 22:14:58 ----D---- C:\Windows\SYSWOW64\en-US
2014-11-13 22:14:58 ----D---- C:\Windows\system32\en-US
2014-11-13 10:09:21 ----D---- C:\Windows\system32\MRT
2014-11-13 10:06:01 ----D---- C:\Windows\Tasks
2014-11-13 10:04:23 ----A---- C:\Windows\system32\MRT.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 amdkmpfd;AMD PCI Root Bus Lower Filter; C:\Windows\system32\DRIVERS\amdkmpfd.sys [2013-04-10 35936]
R0 hpdskflt;HP Filter; C:\Windows\system32\drivers\hpdskflt.sys [2013-07-23 30520]
R0 iaStorA;iaStorA; C:\Windows\system32\drivers\iaStorA.sys [2013-08-07 644968]
R0 iaStorF;iaStorF; C:\Windows\system32\drivers\iaStorF.sys [2013-08-07 28008]
R0 iusb3hcs;Intel(R) USB 3.0 Host Controller Switch Driver; C:\Windows\system32\drivers\iusb3hcs.sys [2013-08-15 20464]
R0 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2014-07-17 269008]
R0 NIPALK;NIPALK; C:\Windows\System32\drivers\nipalk.sys [2014-06-05 773464]
R0 nipbcfk;National Instruments Class Upper Filter Driver; C:\Windows\System32\drivers\nipbcfk.sys [2014-02-28 19288]
R0 nipxibaf;National Instruments PXI Bridge Access Driver; C:\Windows\System32\drivers\nipxibaf.sys [2014-06-12 89992]
R0 nipxibrc;National Instruments PXI Bridge Configuration Driver; C:\Windows\System32\drivers\nipxibrc.sys [2014-05-16 70336]
R0 nischifk;NI SoftCore Chinch Filter Driver; C:\Windows\System32\Drivers\nischifk.sys [2014-06-11 66936]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 PinFile;PinFile; C:\Windows\system32\DRIVERS\PinFile.sys [2013-08-22 49856]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R0 SDDisk2K;SDDisk2K; C:\Windows\system32\DRIVERS\SDDisk2K.sys [2013-08-22 228544]
R0 SDDToki;SDDToki; C:\Windows\system32\DRIVERS\SDDToki.sys [2013-08-22 131264]
R1 CLVirtualDrive;CLVirtualDrive; C:\Windows\system32\DRIVERS\CLVirtualDrive.sys [2011-12-27 90608]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-21 514560]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2014-05-16 283064]
R2 DAMDrv;DAMDrv; C:\Windows\system32\DRIVERS\DAMDrv64.sys [2013-06-13 65752]
R2 nipxirmk;nipxirmk; \??\C:\Windows\system32\drivers\nipxirmkl.sys [2014-01-09 15184]
R2 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2014-07-17 125584]
R2 nistreamk;nistreamk; C:\Windows\system32\drivers\nistreamkl.sys [2014-06-04 24912]
R2 NiViPxiK;NI-VISA PXI Driver; C:\Windows\System32\drivers\NiViPxiKl.sys [2014-06-13 15200]
R2 s7ousbu64x;SIMATIC USB Service; C:\Windows\system32\DRIVERS\s7ousbu64x.sys [2013-06-03 137216]
R2 s7sn2srtx;PROFINET IO RT-Protocol V2.0; C:\Windows\system32\DRIVERS\s7sn2srtx.sys [2012-05-09 83032]
R3 Accelerometer;HP Mobile Data Protection Sensor; C:\Windows\system32\drivers\Accelerometer.sys [2013-07-23 43320]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2014-03-26 12534784]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2014-03-26 620032]
R3 BCM42RLY;BCM42RLY; C:\Windows\system32\drivers\BCM42RLY.sys [2014-08-10 23760]
R3 BCM43XX;Ovladač síťového adaptéru Broadcom 802.11; C:\Windows\system32\DRIVERS\bcmwl664.sys [2014-03-16 4749008]
R3 CVirtA;Cisco Systems VPN Adapter for 64-bit Windows; C:\Windows\system32\DRIVERS\CVirtA64.sys [2010-02-08 14992]
R3 CVPNDRVA;Cisco Systems Inc. IPSec Driver; \??\C:\Windows\system32\Drivers\CVPNDRVA.sys [2011-03-04 306536]
R3 DNE;Deterministic Network Enhancer Miniport; C:\Windows\system32\DRIVERS\dne64x.sys [2008-11-16 157968]
R3 dpmconv;SIMATIC NET DP Driver; C:\Windows\system32\DRIVERS\dpmconv.sys [2013-04-10 259584]
R3 e1dexpress;Intel(R) PRO/1000 PCI Express Network Connection Driver D; C:\Windows\system32\DRIVERS\e1d62x64.sys [2013-07-12 495376]
R3 HpqKbFiltr;HpqKbFilter Driver; C:\Windows\system32\drivers\HpqKbFiltr.sys [2013-06-26 25912]
R3 IceKore;IceKore; C:\Windows\system32\DRIVERS\IceKore.sys [2013-08-19 397784]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2013-10-15 4446752]
R3 iusb3hub;Intel(R) USB 3.0 Hub Driver; C:\Windows\system32\drivers\iusb3hub.sys [2013-08-15 368624]
R3 iusb3xhc;Intel(R) USB 3.0 eXtensible Host Controller Driver; C:\Windows\system32\drivers\iusb3xhc.sys [2013-08-15 790000]
R3 MEIx64;Intel(R) Management Engine Interface ; C:\Windows\system32\drivers\TeeDriverx64.sys [2013-09-16 99288]
R3 nidimk;nidimk; \??\C:\Windows\system32\drivers\nidimkl.sys [2014-03-13 15200]
R3 NIEthernetDeviceEnumerator;NI Ethernet Device Enumerator Driver; C:\Windows\system32\DRIVERS\niede.sys [2012-01-12 38064]
R3 niimaqdxk;niimaqdxk; C:\Windows\system32\drivers\niimaqdxkl.sys [2014-06-25 15160]
R3 nimdbgk;nimdbgk; \??\C:\Windows\system32\drivers\nimdbgkl.sys [2014-03-13 15200]
R3 nimru2k;nimru2k; \??\C:\Windows\system32\drivers\nimru2kl.sys [2014-03-13 15200]
R3 nimxdfk;nimxdfk; \??\C:\Windows\system32\drivers\nimxdfkl.sys [2014-03-13 15184]
R3 NiViPciK;NI-VISA PCI Driver; C:\Windows\System32\drivers\NiViPciKl.sys [2014-06-13 15200]
R3 rtsuvc;HP HD Webcam [Fixed]; C:\Windows\system32\DRIVERS\rtsuvc.sys [2013-08-02 8873688]
R3 s7odpx2x64;SIMATIC Knotentaufe; C:\Windows\system32\DRIVERS\s7odpx2x64.sys [2012-12-19 71168]
R3 s7oppinx64;SIMATIC PPI Transport; C:\Windows\system32\DRIVERS\s7oppinx64.sys [2012-07-24 107520]
R3 s7oserix64;Siemens PC Serial Cable; C:\Windows\System32\Drivers\s7oserix64.sys [2012-07-24 121856]
R3 s7osmcax64;SIMATIC PC Adapter RS232; C:\Windows\system32\DRIVERS\s7osmcax64.sys [2012-07-24 199680]
R3 s7osobux64;SIMATIC SoftBus; C:\Windows\system32\DRIVERS\s7osobux64.sys [2012-07-24 153600]
R3 s7otmcd64x;SIMATIC Memory Cards; C:\Windows\System32\Drivers\s7otmcd64x.sys [2012-07-24 199680]
R3 s7otranx64;SIMATIC Transport; C:\Windows\system32\DRIVERS\s7otranx64.sys [2012-07-24 260096]
R3 s7otsadx64;SIMATIC TS Adapter RS232; C:\Windows\system32\DRIVERS\s7otsadx64.sys [2012-07-24 196096]
S3 AtiHDAudioService;AMD Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdW76.sys [2013-04-24 96768]
S3 bcbtums;Bluetooth RAM Firmware Download USB Filter; C:\Windows\system32\drivers\bcbtums.sys [2012-09-24 165688]
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 95232]
S3 BthEnum;Bluetooth Enumerator Service; C:\Windows\system32\DRIVERS\BthEnum.sys [2009-07-14 41984]
S3 BthPan;Bluetooth Device (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
S3 BTHPORT;Bluetooth Port Driver; C:\Windows\System32\Drivers\BTHport.sys [2013-10-29 552960]
S3 BTHUSB;Bluetooth Radio USB Driver; C:\Windows\System32\Drivers\BTHUSB.sys [2013-10-29 80384]
S3 btwampfl;btwampfl Bluetooth filter driver; \??\C:\Windows\system32\drivers\btwampfl.sys [2012-12-03 598808]
S3 btwaudio;Bluetooth Audio Device Service; C:\Windows\system32\drivers\btwaudio.sys [2012-05-01 184144]
S3 btwavdt;Bluetooth AVDT Service; C:\Windows\system32\DRIVERS\btwavdt.sys [2012-03-06 210984]
S3 btwl2cap;Bluetooth L2CAP Service; C:\Windows\system32\DRIVERS\btwl2cap.sys [2011-09-17 39976]
S3 btwrchid;btwrchid; C:\Windows\system32\drivers\btwrchid.sys [2012-03-06 21544]
S3 dmvsc;dmvsc; C:\Windows\system32\drivers\dmvsc.sys [2010-11-21 71168]
S3 IntcDAud;Intel(R) Display Audio; C:\Windows\system32\DRIVERS\IntcDAud.sys [2013-09-18 452088]
S3 lvalarmk;lvalarmk; \??\C:\Windows\system32\drivers\lvalarmk.sys [2014-06-13 27528]
S3 ni1045k;NI PXI-1045 Chassis Pilot; \??\C:\Windows\system32\drivers\ni1045kl.sys [2014-05-16 12984]
S3 ni1065k;NI PXIe-1065 Chassis Pilot; \??\C:\Windows\system32\drivers\ni1065k.sys [2014-05-16 30032]
S3 nicdcck;nicdcck; \??\C:\Windows\system32\drivers\nicdcckl.sys [2014-04-29 15192]
S3 nicdrk;nicdrk; \??\C:\Windows\system32\drivers\nicdrkl.sys [2014-04-29 15192]
S3 nicmrk;nicmrk; \??\C:\Windows\system32\drivers\nicmrkl.sys [2014-06-10 15208]
S3 nicondrk;nicondrk; \??\C:\Windows\system32\drivers\nicondrkl.sys [2014-05-06 15176]
S3 nicsrk;nicsrk; \??\C:\Windows\system32\drivers\nicsrkl.sys [2014-06-24 15176]
S3 nidmxfk;nidmxfk; \??\C:\Windows\system32\drivers\nidmxfkl.sys [2014-06-25 15176]
S3 nidsark;nidsark; \??\C:\Windows\system32\drivers\nidsarkl.sys [2014-04-29 15184]
S3 nidwgk;nidwgk; \??\C:\Windows\system32\drivers\nidwgkl.sys [2014-06-27 14176]
S3 niemrk;niemrk; \??\C:\Windows\system32\drivers\niemrkl.sys [2014-05-02 15176]
S3 niesrk;niesrk; \??\C:\Windows\system32\drivers\niesrkl.sys [2014-05-02 15176]
S3 nifslk;nifslk; \??\C:\Windows\system32\drivers\nifslkl.sys [2014-03-14 15192]
S3 nihorbrk;nihorbrk; \??\C:\Windows\system32\drivers\nihorbrkl.sys [2014-05-02 15176]
S3 nihsdrk;nihsdrk; \??\C:\Windows\system32\drivers\nihsdrkl.sys [2014-06-27 14168]
S3 nimcdfxk;nimcdfxk; \??\C:\Windows\system32\drivers\nimcdfxkl.sys [2012-06-05 11976]
S3 nimsdrk;nimsdrk; \??\C:\Windows\system32\drivers\nimsdrkl.sys [2014-06-13 15232]
S3 nimstsk;nimstsk; \??\C:\Windows\system32\drivers\nimstskl.sys [2014-06-12 15200]
S3 nimxpk;nimxpk; \??\C:\Windows\system32\drivers\nimxpkl.sys [2014-06-12 15208]
S3 ninshsdk;ninshsdk; \??\C:\Windows\system32\drivers\ninshsdkl.sys [2014-04-01 15200]
S3 niorbk;niorbk; \??\C:\Windows\system32\drivers\niorbkl.sys [2014-03-12 15184]
S3 nipalfwedl;nipalfwedl; C:\Windows\System32\drivers\nipalfwedl.sys [2014-06-05 15232]
S3 nipalusbedl;nipalusbedl; C:\Windows\System32\drivers\nipalusbedl.sys [2014-06-05 15224]
S3 nipsdk;nipsdk; \??\C:\Windows\system32\drivers\nipsdkl.sys [2014-06-28 15232]
S3 nipxifpk;NI PXI Forwarding Chassis Pilot; \??\C:\Windows\system32\drivers\nipxifpk.sys [2013-09-10 37272]
S3 nipxigpk;NI PXI Generic Chassis Pilot; \??\C:\Windows\system32\drivers\nipxigpk.sys [2011-08-09 22680]
S3 niraptrk;niraptrk; \??\C:\Windows\system32\drivers\niraptrkl.sys [2014-05-06 15176]
S3 niscdk;niscdk; \??\C:\Windows\system32\drivers\niscdkl.sys [2014-04-29 15216]
S3 nisdigk;nisdigk; \??\C:\Windows\system32\drivers\nisdigkl.sys [2014-05-02 15192]
S3 nisftk;nisftk; \??\C:\Windows\system32\drivers\nisftkl.sys [2014-04-01 15184]
S3 nisldk;nisldk; \??\C:\Windows\system32\drivers\nisldkl.sys [2014-06-28 11960]
S3 nispdk;nispdk; \??\C:\Windows\system32\drivers\nispdkl.sys [2014-04-29 15216]
S3 nisrcdk;nisrcdk; \??\C:\Windows\system32\drivers\nisrcdkl.sys [2014-06-26 14168]
S3 nissrk;nissrk; \??\C:\Windows\system32\drivers\nissrkl.sys [2014-05-02 15176]
S3 nistc2k;nistc2k; \??\C:\Windows\system32\drivers\nistc2kl.sys [2014-04-29 15152]
S3 nistc3rk;nistc3rk; \??\C:\Windows\system32\drivers\nistc3rkl.sys [2014-04-29 15168]
S3 nistcrk;nistcrk; \??\C:\Windows\system32\drivers\nistcrkl.sys [2014-04-29 15200]
S3 niswdk;niswdk; \??\C:\Windows\system32\drivers\niswdkl.sys [2014-06-23 15176]
S3 niSynck;niSynck; \??\C:\Windows\system32\drivers\niSynckl.sys [2014-06-29 15184]
S3 nitfurk;nitfurk; \??\C:\Windows\system32\drivers\nitfurkl.sys [2014-05-02 15216]
S3 nitiork;nitiork; \??\C:\Windows\system32\drivers\nitiorkl.sys [2014-04-29 15200]
S3 nitsuk;nitsuk; \??\C:\Windows\system32\drivers\nitsukl.sys [2014-06-29 15192]
S3 niufurk;niufurk; \??\C:\Windows\system32\drivers\niufurkl.sys [2014-06-24 15392]
S3 niwdk;niwdk; C:\Windows\system32\drivers\niwdk.sys []
S3 niwfrk;niwfrk; \??\C:\Windows\system32\drivers\niwfrkl.sys [2014-05-02 15176]
S3 nixfmrrk;nixfmrrk; \??\C:\Windows\system32\drivers\nixfmrrkl.sys [2014-05-06 15184]
S3 nixsrk;nixsrk; \??\C:\Windows\system32\drivers\nixsrkl.sys [2014-05-02 15176]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-21 165888]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
S3 RTSPER;Realtek PCIE Card Reader - PER; C:\Windows\system32\DRIVERS\RtsPer.sys [2013-08-21 429272]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-21 6656]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 aaBootstrap;ArchestrA Bootstrap; C:\Program Files (x86)\Common Files\ArchestrA\Framework\Bin\aaBootstrap.exe [2013-12-06 1646592]
R2 aaGR;ArchestrA GalaxyRepository; C:\Program Files (x86)\ArchestrA\Framework\Bin\aaGR.exe [2013-12-06 173568]
R2 aahClientAccessPoint;Wonderware Historian Client Access Point; C:\Program Files (x86)\Common Files\ArchestrA\aahClientAccessPoint.exe [2013-12-06 2326528]
R2 aaLogger;ArchestrA Logger; C:\Program Files (x86)\Common Files\ArchestrA\aaLogger.exe [2013-12-06 331776]
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2014-09-12 64704]
R2 almservice;Automation License Manager Service; C:\Program Files\Common Files\Siemens\sws\almsrv\almsrv64x.exe [2013-05-23 1434848]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2014-03-26 239616]
R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\Windows\system32\svchost.exe [2009-07-14 27136]
R2 btwdins;Bluetooth Service; c:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe [2012-12-07 1005944]
R2 CreoService;HP Trust Circles Service; C:\Program Files (x86)\Hewlett-Packard\HP Trust Circles\CreoSvc.exe [2013-08-23 1366488]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 CtAgentService;Absolute Software Agent Service; C:\Program Files (x86)\Hewlett-Packard\HP Theft Recovery\CtService.exe [2013-08-14 7168]
R2 CVPND;Cisco Systems, Inc. VPN Service; C:\Program Files (x86)\Cisco Systems\VPN Client\cvpnd.exe [2011-03-04 1529856]
R2 CyberLink PowerDVD 12 Media Server Monitor Service;CyberLink PowerDVD 12 Media Server Monitor Service; c:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSMonitorServicePDVD12.exe [2013-09-18 77576]
R2 CyberLink PowerDVD 12 Media Server Service;CyberLink PowerDVD 12 Media Server Service; c:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe [2013-09-18 298760]
R2 DpHost;@c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe,-128; c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe [2013-09-13 500048]
R2 FLCDLOCK;HP Device Locking / Auditing; c:\Windows\SysWOW64\flcdlock.exe [2013-09-06 567608]
R2 HPFSService;HP File Sanitizer; C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\HPFSService.exe [2013-08-07 1758424]
R2 hpHotkeyMonitor;hpHotkeyMonitor; C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe [2013-08-01 681760]
R2 hpsrv;HP Service; C:\Windows\system32\Hpservice.exe [2013-07-23 43320]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2013-08-07 15720]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; c:\Program Files\Intel\iCLS Client\HeciServer.exe [2013-08-27 747520]
R2 Intel(R) ME Service;Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [2013-09-16 131544]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2013-09-16 169432]
R2 LkCitadelServer;NI Citadel 4 Service; C:\Windows\SysWOW64\lkcitdl.exe [2014-01-14 695136]
R2 lkClassAds;NI PSP Service Locator; C:\Windows\SysWOW64\lkads.exe [2014-06-09 53032]
R2 lkTimeSync;NI Time Synchronization; C:\Windows\SysWOW64\lktsrv.exe [2014-06-09 63280]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2013-09-16 390616]
R2 MsMpSvc;Microsoft Antimalware Service; c:\Program Files\Microsoft Security Client\MsMpEng.exe [2014-08-22 23784]
R2 MSSQL$CITADEL;SQL Server (CITADEL); c:\Program Files (x86)\Microsoft SQL Server\MSSQL10_50.CITADEL\MSSQL\Binn\sqlservr.exe [2011-06-17 43040096]
R2 MSSQLSERVER;SQL Server (MSSQLSERVER); C:\Program Files (x86)\Microsoft SQL Server\MSSQL11.MSSQLSERVER\MSSQL\Binn\sqlservr.exe [2014-07-23 161440]
R2 mxssvr;NI Configuration Manager; C:\Program Files (x86)\National Instruments\MAX\nimxs.exe [2014-06-07 84280]
R2 ni488enumsvc;NI GPIB Enumeration Service; C:\Windows\SysWOW64\nipalsm.exe [2014-06-05 19280]
R2 NIApplicationWebServer;NI Application Web Server; C:\Program Files (x86)\National Instruments\Shared\NI WebServer\ApplicationWebServer.exe [2014-06-10 57184]
R2 niauth;NI Authentication Service; C:\Program Files (x86)\National Instruments\Shared\niauth\niauth_daemon.exe [2014-06-20 569152]
R2 NICitadel5Service;NI Citadel 5; C:\Windows\SysWOW64\nicitdl5.exe [2014-06-10 1311040]
R2 nidevldu;NI Device Loader; C:\Windows\SysWOW64\nidevldu.exe [2014-06-13 103800]
R2 NIDomainService;NI Domain Service; C:\Program Files (x86)\National Instruments\Shared\Security\nidmsrv.exe [2014-06-09 394544]
R2 niLXIDiscovery;NI LXI Discovery Service; C:\Program Files (x86)\IVI Foundation\VISA\WinNT\NIvisa\niLxiDiscovery.exe [2014-06-13 383352]
R2 nimcdldu;NI-Motion Device Manager; C:\Windows\SysWOW64\nipalsm.exe [2014-06-05 19280]
R2 nimDNSResponder;NI mDNS Responder Service; C:\Program Files (x86)\National Instruments\Shared\mDNS Responder\nimdnsResponder.exe [2014-06-06 320368]
R2 NINetworkDiscovery;NI Network Discovery; C:\Program Files (x86)\National Instruments\Shared\NI Network Discovery\niDiscSvc.exe [2014-06-19 177536]
R2 NIOPCServersLoggerV2013;NI OPC Servers 2013 Event Logger; C:\Program Files (x86)\National Instruments\Shared\NI OPC Servers\V5\server_eventlog.exe [2013-05-06 143872]
R2 NIOPCServersV2013;NI OPC Servers 2013 Runtime; C:\Program Files (x86)\National Instruments\Shared\NI OPC Servers\V5\server_runtime.exe [2013-05-06 257024]
R2 nipxirmu;NI PXI Resource Manager; C:\Windows\SysWOW64\nipxism.exe [2014-01-09 20816]
R2 NiSvcLoc;NI Service Locator; C:\Program Files (x86)\National Instruments\Shared\niSvcLoc\nisvcloc.exe [2014-06-06 89928]
R2 NISystemWebServer;NI System Web Server; C:\Program Files (x86)\National Instruments\Shared\NI WebServer\SystemWebServer.exe [2014-06-10 57168]
R2 NITaggerService;NI Variable Engine; C:\Program Files (x86)\National Instruments\Shared\Tagger\tagsrv.exe [2014-06-10 692040]
R2 nitsuu;NI TSU Clock Service; C:\Windows\SysWOW64\nipalsm.exe [2014-06-05 19280]
R2 pdfcDispatcher;PDF Document Manager; C:\Program Files (x86)\PDF Complete\pdfsvc.exe [2013-07-18 1143432]
R2 s7oiehsx64;SIMATIC S7DOS Help Service; C:\Program Files\Common Files\Siemens\Automation\Simatic OAM\bin\s7oiehsx64.exe [2013-07-08 143072]
R2 S7TraceServiceX;S7TraceServiceX; C:\Program Files\Common Files\Siemens\Automation\TraceEngine\bin\S7TraceService64X.exe [2013-07-08 472288]
R3 hpqwmiex;HP Software Framework Service; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe [2013-08-23 1232056]
R3 NisSrv;@c:\Program Files\Microsoft Security Client\MpAsDesc.dll,-243; c:\Program Files\Microsoft Security Client\NisSrv.exe [2014-08-22 368624]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-09-11 124088]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-05-16 116648]
S2 Nero BackItUp Scheduler 4.0;Nero BackItUp Scheduler 4.0; C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe []
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-10-29 253600]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-09-11 51808]
S3 c2wts;@%ProgramFiles%\Windows Identity Foundation\v3.5\c2wtsres.dll,-1000; C:\Program Files\Windows Identity Foundation\v3.5\c2wtshost.exe [2010-02-03 15768]
S3 cphs;Intel(R) Content Protection HECI Service; C:\Windows\SysWow64\IntelCpHeciSvc.exe [2013-10-15 279000]
S3 FLEXnet Licensing Service 64;FLEXnet Licensing Service 64; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe [2014-05-16 1436424]
S3 FSGateway;FSGateway; C:\Program Files (x86)\Wonderware\DAServer\FSGateway\Bin\FSGateway.exe [2013-12-06 59392]
S3 fussvc;Windows App Certification Kit Fast User Switching Utility Service; C:\Program Files (x86)\Windows Kits\8.1\App Certification Kit\fussvc.exe [2013-08-22 142336]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-05-16 116648]
S3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2012-04-24 169752]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2014-11-06 114688]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; c:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2013-08-27 828376]
S3 NILM License Manager;NI License Server; C:\Program Files (x86)\National Instruments\Shared\License Manager\Bin\lmgrd.exe [2010-08-02 1427688]
S3 NIOPCServersKeySvcV2013;NI OPC Servers 2013 Key Service; C:\Program Files (x86)\National Instruments\Shared\NI OPC Servers\V5\keysvc.exe [2013-05-06 34816]
S3 NiRioRpc;NI-RIO Server; C:\Windows\SysWOW64\NiRioRpc.exe [2014-06-18 39232]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 OpcEnum;OpcEnum; C:\Windows\SysWOW64\OpcEnum.exe [2013-05-21 172832]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S4 LicenseManagerDataService;Invensys License Manager; C:\Program Files (x86)\Invensys\License Manager\LicenseManagerWindowsService.exe [2013-11-20 13680]
S4 MSSQLServerADHelper100;SQL Active Directory Helper Service; c:\Program Files (x86)\Microsoft SQL Server\100\Shared\SQLADHLP.EXE [2010-04-03 44896]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NIApplicationWebServer64;NI Application Web Server (64-bit); C:\Program Files\National Instruments\Shared\NI WebServer\ApplicationWebServer.exe [2014-06-10 80736]

-----------------EOF-----------------

altrok
Moderátor
Moderátor
Příspěvky: 7328
Registrován: 15 Lis 2012 22:26
Místo/Bydliště: Znojmo

Re: Zpomalený notebook

#2 Příspěvek od altrok »

Zdravim :bye:
:arrow: V ramci cisteni Vam budou vyprazdneny docasne adresare (vcetne Kose).

:arrow: Ulozte na plochu AdwCleaner https://toolslib.net/downloads/viewdown ... dwcleaner/
  • ukoncete vsechny programy
  • kliknete pravym na ikonu AdwCleaneru a vyberte Spustit jako spravce (v pripade Win XP spustte obycejne dvojklikem)
  • kliknete na Scan, pote na Clean
  • po restartu na Vas vyskoci log (pripadne jej najdete v C:\AdwCleaner\AdwCleaner [Sx].txt), jehoz obsah mi zkopirujte do pristi odpovedi
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.

SpankMe2day
Návštěvník
Návštěvník
Příspěvky: 21
Registrován: 19 Kvě 2014 10:32

Re: Zpomalený notebook

#3 Příspěvek od SpankMe2day »

Crystal Disk log
----------------------------------------------------------------------------
CrystalDiskInfo 6.2.2 (C) 2008-2014 hiyohiyo
Crystal Dew World : http://crystalmark.info/
----------------------------------------------------------------------------

OS : Windows 7 Professional SP1 [6.1 Build 7601] (x64)
Date : 2014/12/09 23:03:29

-- Controller Map ----------------------------------------------------------
+ Intel(R) 8 Series Chipset Family SATA AHCI Controller [ATA]
- HGST HTS725050A7E630 SCSI Disk Device
- hp DVD A DU8A5SH SCSI CdRom Device

-- Disk List ---------------------------------------------------------------
(1) HGST HTS725050A7E630 : 500,1 GB [0/0/0, pd1]

----------------------------------------------------------------------------
(1) HGST HTS725050A7E630
----------------------------------------------------------------------------
Model : HGST HTS725050A7E630
Firmware : GH2OA910
Serial Number : TF0500WJGT5ENL
Disk Size : 500,1 GB (8,4/137,4/500,1/500,1)
Buffer Size : 32767 KB
Queue Depth : 32
# of Sectors : 976773168
Rotation Rate : 7200 RPM
Interface : Serial ATA
Major Version : ACS-2
Minor Version : ATA8-ACS version 6
Transfer Mode : SATA/600 | SATA/600
Power On Hours : 1577 hod.
Power On Count : 450 krát
Temperature : 36 C (96 F)
Health Status : Dobrý
Features : S.M.A.R.T., APM, 48bit LBA, NCQ
APM Level : 4080h [ON]
AAM Level : ----

-- S.M.A.R.T. --------------------------------------------------------------
ID Cur Wor Thr RawValues(6) Attribute Name
01 100 100 _62 000000000000 Počet chyb čtení
02 100 100 _40 000000000000 Průchodnost disku
03 235 100 _33 001100000001 Čas na roztočení ploten
04 100 100 __0 0000000001C4 Počet spuštění/zastavení
05 100 100 __5 000000000000 Počet přemapovaných sektorů
07 100 100 _67 000000000000 Počet chybných hledání
08 100 100 _40 000000000000 Čas potřebný na vyhledání
09 _97 _97 __0 000000000629 Hodin v činnosti
0A 100 100 _60 000000000000 Počet opakovaných pokusů o roztočení ploten
0C 100 100 __0 0000000001C2 Počet cyklů zapnutí zařízení
B7 100 100 __0 000000000000 Specifický pro výrobce
B8 100 100 _97 000000000000 Ukončovacích chyb
BB 100 100 __0 000800000000 Ohlášeno neopravitelných chyb
BC 100 100 __0 000000000000 Časový limit příkazu
BE _64 _50 _45 000012250024 Teplota toku vzduchu
BF 100 100 __0 000000000072 Počet udalostí zaznamenaných otřesovým senzorem
C0 100 100 __0 000000140014 Počet vypnutí disku
C1 _99 _99 __0 000000003369 Počet cyklů načítání/vymazání
C4 100 100 __0 000000000000 Počet udalostí s číslem realokování sektorů
C5 100 100 __0 000000000000 Počet podezřelých sektorů
C6 100 100 __0 000000000000 Počet neopravitelných sektorů
C7 100 100 __0 000000000000 Počet chyb v kontrolním součtu UltraDMA
DF 100 100 __0 000000000000 Zatížení budiče magnetických hlav způsobené opakovanými úkony

-- IDENTIFY_DEVICE ---------------------------------------------------------
0 1 2 3 4 5 6 7 8 9
000: 0040 3FFF C837 0010 0000 0000 003F 0000 0000 0000
010: 2020 2020 2020 5446 3035 3030 574A 4754 3545 4E4C
020: 0003 FFFF 0004 4748 324F 4139 3130 4847 5354 2048
030: 5453 3732 3530 3530 4137 4536 3330 2020 2020 2020
040: 2020 2020 2020 2020 2020 2020 2020 8010 4000 2F00
050: 4000 0200 0200 0007 3FFF 0010 003F FC10 00FB 0110
060: FFFF 0FFF 0000 0407 0003 0078 0078 0078 0078 0008
070: 0000 0000 0000 0000 0000 001F 8D0E 0006 004C 004C
080: 03FC 0028 706B 7C69 6123 7069 BC49 6123 007F 002B
090: 002C 4080 FFFE 0000 0000 0000 0000 0000 0000 0000
100: 6030 3A38 0000 0000 0000 0000 6003 74DC 5000 CCA7
110: C6CA FD54 0000 0000 0000 0000 0000 0000 0000 401C
120: 401C 0000 0000 0000 0000 0000 0000 0000 0021 000B
130: 0000 0000 2182 1CF1 7A00 0000 4000 2000 0007 0000
140: 0000 0505 0604 0000 0000 0000 0000 0000 0000 0000
150: 0000 0005 3248 4239 0000 6802 0000 5DBD 9C20 8000
160: 0000 0000 0000 0000 0000 0000 0000 0000 0003 0000
170: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
180: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
190: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
200: 0000 0000 0000 0000 0000 0000 003D 0000 0000 4000
210: 0000 0000 0000 0000 0000 0000 0000 1C20 0000 0000
220: 0000 0000 103F 0000 0000 0000 0000 0000 0000 0000
230: 6030 3A38 0000 0000 0001 0080 0000 0000 0000 0000
240: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
250: 0000 0000 0000 0000 0000 0FA5

-- SMART_READ_DATA ---------------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 10 00 01 2F 00 64 64 00 00 00 00 00 00 00 02 25
010: 00 64 64 00 00 00 00 00 00 00 03 23 00 EB 64 01
020: 00 00 00 11 00 00 04 32 00 64 64 C4 01 00 00 00
030: 00 00 05 33 00 64 64 00 00 00 00 00 00 00 07 2F
040: 00 64 64 00 00 00 00 00 00 00 08 25 00 64 64 00
050: 00 00 00 00 00 00 09 32 00 61 61 29 06 00 00 00
060: 00 00 0A 33 00 64 64 00 00 00 00 00 00 00 0C 32
070: 00 64 64 C2 01 00 00 00 00 00 B7 32 00 64 64 00
080: 00 00 00 00 00 00 B8 33 00 64 64 00 00 00 00 00
090: 00 00 BB 32 00 64 64 00 00 00 00 08 00 00 BC 32
0A0: 00 64 64 00 00 00 00 00 00 00 BE 22 00 40 32 24
0B0: 00 25 12 00 00 00 BF 32 00 64 64 72 00 00 00 00
0C0: 00 00 C0 32 00 64 64 14 00 14 00 00 00 00 C1 32
0D0: 00 63 63 69 33 00 00 00 00 00 C4 32 00 64 64 00
0E0: 00 00 00 00 00 00 C5 32 00 64 64 00 00 00 00 00
0F0: 00 00 C6 30 00 64 64 00 00 00 00 00 00 00 C7 36
100: 00 64 64 00 00 00 00 00 00 00 DF 2A 00 64 64 00
110: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 00 00 2D 00 01 51
170: 03 00 01 00 02 58 00 00 00 00 00 00 00 00 00 00
180: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
190: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 3E

-- SMART_READ_THRESHOLD ----------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 10 00 01 3E 00 00 00 00 00 00 00 00 00 00 02 28
010: 00 00 00 00 00 00 00 00 00 00 03 21 00 00 00 00
020: 00 00 00 00 00 00 04 00 00 00 00 00 00 00 00 00
030: 00 00 05 05 00 00 00 00 00 00 00 00 00 00 07 43
040: 00 00 00 00 00 00 00 00 00 00 08 28 00 00 00 00
050: 00 00 00 00 00 00 09 00 00 00 00 00 00 00 00 00
060: 00 00 0A 3C 00 00 00 00 00 00 00 00 00 00 0C 00
070: 00 00 00 00 00 00 00 00 00 00 B7 00 00 00 00 00
080: 00 00 00 00 00 00 B8 61 00 00 00 00 00 00 00 00
090: 00 00 BB 00 00 00 00 00 00 00 00 00 00 00 BC 00
0A0: 00 00 00 00 00 00 00 00 00 00 BE 2D 00 00 00 00
0B0: 00 00 00 00 00 00 BF 00 00 00 00 00 00 00 00 00
0C0: 00 00 C0 00 00 00 00 00 00 00 00 00 00 00 C1 00
0D0: 00 00 00 00 00 00 00 00 00 00 C4 00 00 00 00 00
0E0: 00 00 00 00 00 00 C5 00 00 00 00 00 00 00 00 00
0F0: 00 00 C6 00 00 00 00 00 00 00 00 00 00 00 C7 00
100: 00 00 00 00 00 00 00 00 00 00 DF 00 00 00 00 00
110: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
170: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
180: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
190: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 19

SpankMe2day
Návštěvník
Návštěvník
Příspěvky: 21
Registrován: 19 Kvě 2014 10:32

Re: Zpomalený notebook

#4 Příspěvek od SpankMe2day »

Adw Cleaner log:
# AdwCleaner v4.105 - Report created 09/12/2014 at 23:09:49
# Updated 08/12/2014 by Xplode
# Database : 2014-12-08.2 [Live]
# Operating System : Windows 7 Professional Service Pack 1 (64 bits)
# Username : SpankMe - SPANKME-HP
# Running from : C:\Users\SpankMe\Desktop\adwcleaner_4.105.exe
# Option : Clean

***** [ Services ] *****


***** [ Files / Folders ] *****

File Deleted : C:\Windows\System32\roboot64.exe
File Deleted : C:\Users\SpankMe\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_lyrics.wikia.com_0.localstorage
File Deleted : C:\Users\SpankMe\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.azlyrics.com_0.localstorage
File Deleted : C:\Users\SpankMe\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.azlyrics.com_0.localstorage-journal

***** [ Scheduled Tasks ] *****


***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\ncffjdbbodifgldkcbhmiiljfcnbgjab
Key Deleted : HKLM\SOFTWARE\Classes\S
Key Deleted : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9}
Key Deleted : HKCU\Software\Softonic
Key Deleted : HKLM\SOFTWARE\Description
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{23113FAC-D980-4F7E-816A-1A071674F3C0}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{DE1D6B0C-D8F3-4FC0-9B9F-E5EB1529BF94}

***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.17420

Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page]

-\\ Google Chrome v39.0.2171.71


*************************

AdwCleaner[R1].txt - [2259 octets] - [09/12/2014 23:04:39]
AdwCleaner[S1].txt - [1744 octets] - [09/12/2014 23:09:49]

########## EOF - C:\AdwCleaner\AdwCleaner[S1].txt - [1804 octets] ##########

altrok
Moderátor
Moderátor
Příspěvky: 7328
Registrován: 15 Lis 2012 22:26
Místo/Bydliště: Znojmo

Re: Zpomalený notebook

#5 Příspěvek od altrok »

:arrow: Nainstalujte MBAM a udelejte vlastni sken vsech disku - http://forum.viry.cz/viewtopic.php?f=29&t=137928
  • Upozorneni: tento sken zabere od 30 minut po nekolik hodin
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.

SpankMe2day
Návštěvník
Návštěvník
Příspěvky: 21
Registrován: 19 Kvě 2014 10:32

Re: Zpomalený notebook

#6 Příspěvek od SpankMe2day »

Malwarebytes Anti-Malware
www.malwarebytes.org

Datum skenování: 9.12.2014
Čas skenování: 23:30:47
Protokol: log.txt
Správce: Ano

Verze: 2.00.4.1028
Databáze malwaru: v2014.12.09.08
Databáze rootkitů: v2014.12.08.03
Licence: Bezplatná verze
Ochrana proti malwaru: Vypnuto
Ochrana proti škodlivým webovým stránkám: Vypnuto
Sebeobrany: Vypnuto

OS: Windows 7 Service Pack 1
CPU: x64
Souborový systém: NTFS
Uživatel: SpankMe

Typ skenu: Vlastní sken
Výsledek: Dokončeno
Prohledaných objektů: 1470207
Uplynulý čas: 21 hod, 21 min, 48 sek

Paměť: Zapnuto
Po spuštění: Zapnuto
Souborový systém: Zapnuto
Archivy: Zapnuto
Rootkity: Vypnuto
Heuristika: Zapnuto
PUP: Zapnuto
PUM: Zapnuto

Procesy: 0
(Žádné zákerné zjištěny položek)

Moduly: 0
(Žádné zákerné zjištěny položek)

Klíče registru: 0
(Žádné zákerné zjištěny položek)

Hodnoty registru: 0
(Žádné zákerné zjištěny položek)

Data registru: 0
(Žádné zákerné zjištěny položek)

Složky: 0
(Žádné zákerné zjištěny položek)

Soubory: 6
PUP.Optional.OneClickDownloader.A, C:\Users\SpankMe\AppData\Local\Google\Chrome\Chrome\User Data\Default\File System\000\t\00\00000000, , [b01c530d68149a9c84595ed01fe2758b],
PUP.Optional.OneClickDownloader.A, C:\Users\SpankMe\AppData\Local\Google\Chrome\User Data\Default\File System\001\t\00\00000000, , [7e4e530da4d8e551dd04b99fa35e6997],
PUP.Optional.Conduit, C:\Users\SpankMe\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2ERXYV66\OrbiterInstaller[1].exe, , [8a42dd8366165cda97d9d7e46e931de3],
PUP.Optional.SearchProtect.A, C:\Users\SpankMe\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2ERXYV66\SPSetup[1].exe, , [dfedeb7586f61d19e4ae6b3e54adaf51],
PUP.Optional.Conduit.A, C:\Users\SpankMe\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4L7MWGMG\spstub[1].exe, , [44880c54e19b1026e9f2b3f0e31e4ab6],
PUP.Optional.OpenCandy, C:\Users\SpankMe\AppData\Roaming\PowerISO\Upgrade\PowerISO6.exe, , [0bc1065a2b5196a02c7b14790cf954ac],

Fyzické sektory: 0
(Žádné zákerné zjištěny položek)


(end)

altrok
Moderátor
Moderátor
Příspěvky: 7328
Registrován: 15 Lis 2012 22:26
Místo/Bydliště: Znojmo

Re: Zpomalený notebook

#7 Příspěvek od altrok »

:arrow: Vsechny nalezy presunto do karanteny/smazte

:arrow: Tento notebook pouzivate pro spravu RAIDu?

:arrow: Ulozte na plochu zoek.exe http://hijackthis.nl/smeenk/zoek.htm
  • spustte jako spravce
  • do velkeho okna zkopirujte script uvedeny nize
  • kliknete na Run script
  • po restartu na Vas vyskoci log (pripadne jej najdete v C:\zoek-results.log) - vlozte mi jej do pristi odpovedi

    Kód: Vybrat vše

    autoclean;
    emptyclsid;
    emptyalltemp;
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.

SpankMe2day
Návštěvník
Návštěvník
Příspěvky: 21
Registrován: 19 Kvě 2014 10:32

Re: Zpomalený notebook

#8 Příspěvek od SpankMe2day »

Ne nepoužívám, proč bych měl?

Zoek.exe v5.0.0.0 Updated 10-December-2014
Tool run by SpankMe on źt 11.12.2014 at 10:11:50,72.
Microsoft Windows 7 Professional 6.1.7601 Service Pack 1 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\SpankMe\Desktop\zoek.exe [Scan all users] [Script inserted]

==== System Restore Info ======================

11.12.2014 10:13:45 Zoek.exe System Restore Point Created Succesfully.

==== Empty Folders Check ======================

C:\PROGRA~2\MSXML 4.0 deleted successfully
C:\PROGRA~2\COMMON~1\Blizzard Entertainment deleted successfully
C:\PROGRA~3\Validity deleted successfully
C:\Users\SpankMe\AppData\Roaming\driveridentifier deleted successfully
C:\Users\SpankMe\AppData\Local\GHISLER deleted successfully
C:\Users\SpankMe\AppData\Local\MediaShow deleted successfully
C:\Users\SpankMe\AppData\Local\PDFC deleted successfully

==== Deleting CLSID Registry Keys ======================

HKEY_USERS\S-1-5-21-1185877117-2082503125-1392697548-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE} deleted successfully
HKEY_USERS\S-1-5-21-1185877117-2082503125-1392697548-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE} deleted successfully

==== Deleting CLSID Registry Values ======================


==== Deleting Services ======================


==== Deleting Files \ Folders ======================

C:\Windows\sysWoW64\config\systemprofile\AppData\Local\SearchProtect deleted
C:\Windows\SysNative\config\systemprofile\Searches deleted
C:\Windows\SysWow64\AI_RecycleBin deleted
"C:\Windows\Installer\93ba3.msi" deleted
"C:\Windows\Installer\94083.msi" deleted
"C:\Windows\Installer\940d0.msi" deleted
"C:\Windows\Installer\93bf2.msi" deleted
"C:\PROGRA~3\Package Cache" deleted

==== Firefox Extensions Registry ======================

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions]
"dpmaxz_ng@jetpack"="c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\BrowserExt\dpchrome" [16.03.2014 15:03]

==== Chromium Look ======================

AdBlock - SpankMe\AppData\Local\Google\Chrome\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom
SweetIM for Facebook - SpankMe\AppData\Local\Google\Chrome\Chrome\User Data\Default\Extensions\jcdgjdiieiljkfkdcloehkohchhpekkn

==== Chromium Fix ======================

C:\Users\SpankMe\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.metrolyrics.com_0.localstorage deleted successfully
C:\Users\SpankMe\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.metrolyrics.com_0.localstorage-journal deleted successfully
C:\Users\SpankMe\AppData\Local\Google\Chrome\Chrome\User Data\Default\Local Storage\http_www.azlyrics.com_0.localstorage deleted successfully
C:\Users\SpankMe\AppData\Local\Google\Chrome\Chrome\User Data\Default\Local Storage\http_www.azlyrics.com_0.localstorage-journal deleted successfully
C:\Users\SpankMe\AppData\Local\Google\Chrome\Chrome\User Data\Default\Local Storage\http_www.lyricsfreak.com_0.localstorage deleted successfully
C:\Users\SpankMe\AppData\Local\Google\Chrome\Chrome\User Data\Default\Local Storage\http_www.lyricsfreak.com_0.localstorage-journal deleted successfully
C:\Users\SpankMe\AppData\Local\Google\Chrome\Chrome\User Data\Default\Local Storage\http_www.superfish.com_0.localstorage deleted successfully
C:\Users\SpankMe\AppData\Local\Google\Chrome\Chrome\User Data\Default\Local Storage\http_www.superfish.com_0.localstorage-journal deleted successfully
C:\Users\SpankMe\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.olark.com_0.localstorage deleted successfully

==== Set IE to Default ======================

Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Page_URL"="http://www.bing.com?pc=CMNTDFJS"
"Start Page"="http://www.bing.com?pc=CMNTDFJS"
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main]
"Default_Page_URL"="http://www.bing.com?pc=CMNTDFJS"
"Start Page"="http://www.bing.com?pc=CMNTDFJS"

New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main]
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"

==== All HKCU SearchScopes ======================

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
{012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}"
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTer ... ORM=IE8SRC"

==== Deleting Registry Keys ======================

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\67113092C207AED49B1FD51AAB6CA872 deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\78C5AE33E313DC14AAEFC7FE923949C8 deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\7D9622B3D7B3E4949B954D893E4B1E19 deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\C560F8D2D0D030A439914A4955AE2FD4 deleted successfully
HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{29031176-702C-4DEA-B9F1-5DA1BAC68A27} deleted successfully
HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{33EA5C87-313E-41CD-AAFE-7CEF2993948C} deleted successfully
HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{3B2269D7-3B7D-494E-B959-D498E3B4E191} deleted successfully
HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{2D8F065C-0D0D-4A03-9319-A49455EAF24D} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Products\67113092C207AED49B1FD51AAB6CA872 deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Products\78C5AE33E313DC14AAEFC7FE923949C8 deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Products\7D9622B3D7B3E4949B954D893E4B1E19 deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Products\C560F8D2D0D030A439914A4955AE2FD4 deleted successfully

==== Empty IE Cache ======================

C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\SpankMe\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\SpankMe\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully
C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

==== Empty FireFox Cache ======================

No FireFox Profiles found

==== Empty Chrome Cache ======================

C:\Users\SpankMe\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
C:\Users\SpankMe\AppData\Local\Google\Chrome\Chrome\User Data\Default\Cache emptied successfully

==== Empty All Flash Cache ======================

Flash Cache Emptied Successfully

==== Empty All Java Cache ======================

No Java Cache Found

==== C:\zoek_backup content ======================

C:\zoek_backup (files=423 folders=545 1539146122 bytes)

==== Empty Temp Folders ======================

C:\Users\ASBService\AppData\Local\temp emptied successfully
C:\Users\Default\AppData\Local\temp emptied successfully
C:\Users\Default User\AppData\Local\temp emptied successfully
C:\Users\Public\AppData\Local\temp emptied successfully
C:\Users\SpankMe\AppData\Local\Temp will be emptied at reboot
C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\Windows\Temp will be emptied at reboot

==== After Reboot ======================

==== Empty Temp Folders ======================

C:\Windows\Temp successfully emptied
C:\Users\SpankMe\AppData\Local\Temp successfully emptied

==== Empty Recycle Bin ======================

C:\$RECYCLE.BIN successfully emptied

==== EOF on źt 11.12.2014 at 10:44:10,64 ======================

altrok
Moderátor
Moderátor
Příspěvky: 7328
Registrován: 15 Lis 2012 22:26
Místo/Bydliště: Znojmo

Re: Zpomalený notebook

#9 Příspěvek od altrok »

:arrow: Jen me zajimal duvod pouzivani Intel Rapid Storage Technology :)

:arrow: Dejte novy log FRST.txt, prilozte i Addition.txt - http://forum.viry.cz/viewtopic.php?f=30&t=133101
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.

SpankMe2day
Návštěvník
Návštěvník
Příspěvky: 21
Registrován: 19 Kvě 2014 10:32

Re: Zpomalený notebook

#10 Příspěvek od SpankMe2day »

Nevím asi to už bylo předinstalované
FRST:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 11-12-2014 01
Ran by SpankMe (administrator) on SPANKME-HP on 11-12-2014 11:08:39
Running from C:\Users\SpankMe\Desktop
Loaded Profiles: SpankMe & ASBService (Available profiles: SpankMe & ASBService)
Platform: Windows 7 Professional Service Pack 1 (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe
(DigitalPersona, Inc.) C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe
(AMD) C:\Windows\System32\atiesrxx.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\stacsv64.exe
(DigitalPersona, Inc.) C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpCardEngine.exe
(Hewlett-Packard Company) C:\Windows\System32\hpservice.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Validity Sensors, Inc.) C:\Windows\System32\vcsFPService.exe
(Broadcom Corporation) C:\Program Files\Broadcom\Broadcom 802.11\WLTRYSVC.EXE
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Broadcom Corporation) C:\Program Files\Broadcom\Broadcom 802.11\BCMWLTRY.EXE
(Invensys Systems, Inc.) C:\Program Files (x86)\Common Files\ArchestrA\aaLogger.exe
(SIEMENS AG) C:\Program Files\Common Files\Siemens\sws\almsrv\almsrv64x.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
(CryptoMill Technologies Ltd.) C:\Program Files (x86)\Hewlett-Packard\HP Trust Circles\CreoSvc.exe
() C:\Program Files (x86)\Hewlett-Packard\HP Theft Recovery\CtService.exe
(Siemens AG) C:\Program Files\Common Files\Siemens\AlmPanelPlugin\ALMPanelPlugin.exe
(Kepware Technologies) C:\Program Files (x86)\National Instruments\Shared\NI OPC Servers\V5\server_admin.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.25.11\GoogleCrashHandler.exe
(Cisco Systems, Inc.) C:\Program Files (x86)\Cisco Systems\VPN Client\cvpnd.exe
(CyberLink) C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSMonitorServicePDVD12.exe
(CyberLink) C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe
(Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\HPFSService.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.25.11\GoogleCrashHandler64.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(National Instruments Corporation) C:\Windows\SysWOW64\lkads.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft SQL Server\MSSQL10_50.CITADEL\MSSQL\Binn\sqlservr.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft SQL Server\MSSQL11.MSSQLSERVER\MSSQL\Binn\sqlservr.exe
(National Instruments Corporation) C:\Program Files (x86)\National Instruments\MAX\nimxs.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
(National Instruments Corporation) C:\Windows\SysWOW64\nipalsm.exe
(National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\niauth\niauth_daemon.exe
(National Instruments Corporation) C:\Windows\SysWOW64\nidevldu.exe
(National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\Security\nidmsrv.exe
(National Instruments Corporation) C:\Windows\SysWOW64\nipalsm.exe
(Kepware Technologies) C:\Program Files (x86)\National Instruments\Shared\NI OPC Servers\V5\server_eventlog.exe
(National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\nisvcloc\nisvcloc.exe
(National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\Tagger\tagsrv.exe
(National Instruments Corporation) C:\Windows\SysWOW64\nipalsm.exe
(PDF Complete Inc) C:\Program Files (x86)\PDF Complete\pdfsvc.exe
(Siemens AG) C:\Program Files\Common Files\Siemens\Automation\Simatic OAM\bin\s7oiehsx64.exe
(Siemens AG) C:\Program Files\Common Files\Siemens\Automation\TraceEngine\bin\S7TraceService64x.exe
(Invensys Systems, Inc.) C:\Program Files (x86)\Common Files\ArchestrA\slssvc.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
(Siemens AG) C:\Program Files\Common Files\Siemens\Automation\Simatic OAM\bin\s7epasrv64x.exe
(Invensys Systems, Inc.) C:\Program Files (x86)\Common Files\ArchestrA\Services\aaServiceWatchdog.exe
(Siemens AG) C:\Program Files\Common Files\Siemens\Automation\Simatic OAM\bin\pniomgr.exe
(Invensys Systems, Inc.) C:\Program Files (x86)\Common Files\ArchestrA\Framework\Bin\aaBootstrap.exe
(Invensys Systems, Inc.) C:\Program Files (x86)\Common Files\ArchestrA\aahClientAccessPoint.exe
(Hewlett-Packard Company) C:\Windows\SysWOW64\flcdlock.exe
(National Instruments, Inc.) C:\Windows\SysWOW64\lkcitdl.exe
(National Instruments Corporation) C:\Windows\SysWOW64\lktsrv.exe
(National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\mDNS Responder\nimdnsResponder.exe
(Kepware Technologies) C:\Program Files (x86)\National Instruments\Shared\NI OPC Servers\V5\server_runtime.exe
(Siemens AG) C:\Windows\SysWOW64\pniopcac.exe
(Siemens AG) C:\Windows\SysWOW64\pniopcac.exe
(National Instruments Corporation) C:\Windows\SysWOW64\nipxism.exe
(National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\NI WebServer\SystemWebServer.exe
(National Instruments Corporation) C:\Windows\SysWOW64\nicitdl5.exe
(National Instruments Corporation) C:\Program Files (x86)\IVI Foundation\VISA\WinNT\NIvisa\niLxiDiscovery.exe
(National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\NI Network Discovery\niDiscSvc.exe
(Invensys Systems, Inc.) C:\Program Files (x86)\ArchestrA\Framework\Bin\aaGR.exe
(National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\NI WebServer\ApplicationWebServer.exe
(National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\NI WebServer\NIWebServiceContainer.exe
(National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\NI WebServer\NIWebServiceContainer.exe
(National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\NI WebServer\NIWebServiceContainer.exe
(Invensys Systems, Inc.) C:\Program Files (x86)\Common Files\ArchestrA\Services\aaLocalDiscoveryService.exe
(Invensys Systems, Inc.) C:\Program Files (x86)\Common Files\ArchestrA\Services\aaLocalDiscoveryService.exe
(Invensys Systems, Inc.) C:\Program Files (x86)\Common Files\ArchestrA\Services\aaSystemAuthenticationService.exe
(Invensys Systems, Inc.) C:\Program Files (x86)\Common Files\ArchestrA\Services\aaContentProviderHost.exe
(Invensys Systems, Inc.) C:\Program Files (x86)\Common Files\ArchestrA\Services\aaConfigurationServiceHost.exe
(Invensys Systems, Inc.) C:\Program Files (x86)\Common Files\ArchestrA\Services\aaServicesDeployAgentHost.exe
(Invensys Systems, Inc.) C:\Program Files (x86)\Common Files\ArchestrA\Services\aaServiceManager.exe
(National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\NI WebServer\NIWebServiceContainer.exe
(National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\NI WebServer\NIWebServiceContainer.exe
(National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\NI WebServer\NIWebServiceContainer.exe
(National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\NI WebServer\NIWebServiceContainer.exe
(National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\NI WebServer\NIWebServiceContainer.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\NisSrv.exe
(Siemens AG) C:\Windows\SysWOW64\pniopcac.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe
(Broadcom Corporation) C:\Program Files\Broadcom\Broadcom 802.11\WLTRAY.EXE
(Realtek Semiconductor Corp.) C:\Windows\RtsCM64.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe
(National Instruments Corporation) C:\Program Files\National Instruments\Shared\NI Error Reporting\nierserver.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
(National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\NI Error Reporting\nierserver.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP 3D DriveGuard\AccelerometerSt.exe
(CyberLink) C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe
(Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\CORESHREDDER.exe
(National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\DataFinderDesktop\bin\DataFinder.exe
(National Instruments Corporation) C:\Program Files (x86)\National Instruments\NI-DAQ\HWConfig\nidevmon.exe
(Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTStackServer.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [287592 2013-08-07] (Intel Corporation)
HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [1703424 2013-08-16] (IDT, Inc.)
HKLM\...\Run: [Broadcom Wireless Manager UI] => C:\Program Files\Broadcom\Broadcom 802.11\WLTRAY.exe [7032320 2014-08-10] (Broadcom Corporation)
HKLM\...\Run: [RtsCM] => C:\Windows\RTSCM64.EXE [147160 2013-08-02] (Realtek Semiconductor Corp.)
HKLM\...\Run: [CryptoMill Refresh] => C:\Program Files\Hewlett-Packard\HP Trust Circles\ceflauncher -m refresh
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2774256 2013-09-04] (Synaptics Incorporated)
HKLM\...\Run: [MSC] => c:\Program Files\Microsoft Security Client\msseces.exe [1331288 2014-08-22] (Microsoft Corporation)
HKLM-x32\...\Run: [PDF Complete] => C:\Program Files (x86)\PDF Complete\pdfsty.exe [683656 2013-07-18] (PDF Complete Inc)
HKLM-x32\...\Run: [StartCCC] => c:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [676608 2013-08-02] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [QLBController] => C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe [337184 2013-08-01] (Hewlett-Packard Company)
HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [292848 2013-08-15] (Intel Corporation)
HKLM-x32\...\Run: [AccelerometerSysTrayApplet] => C:\Program Files (x86)\Hewlett-Packard\HP 3D DriveGuard\AccelerometerST.exe [77088 2013-07-24] (Hewlett-Packard Company)
HKLM-x32\...\Run: [YouCam Tray] => c:\Program Files (x86)\CyberLink\YouCam\YouCamTray.exe [167488 2013-06-24] (CyberLink Corp.)
HKLM-x32\...\Run: [CLMLServer_For_P2G8] => c:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [111576 2013-08-05] (CyberLink)
HKLM-x32\...\Run: [CLVirtualDrive] => c:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe [490760 2013-08-07] (CyberLink Corp.)
HKLM-x32\...\Run: [HP File Sanitizer] => C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\Coreshredder.exe [2213592 2013-08-07] (Hewlett-Packard)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959176 2014-08-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [SiemensAutomationFileStorage] => C:\Program Files (x86)\Siemens\Automation\Portal V12\Bin\Siemens.Automation.ObjectFrame.FileStorage.Server.exe [942080 2013-07-11] (Siemens AG)
HKLM-x32\...\Run: [NBKeyScan] => "C:\Program Files (x86)\Nero\Nero8\Nero BackItUp\NBKeyScan.exe"
HKLM-x32\...\Run: [DataFinder] => C:\Program Files (x86)\National Instruments\Shared\DataFinderDesktop\bin\DataFinder.exe [2596128 2014-06-10] (National Instruments Corporation)
HKLM-x32\...\Run: [niDevMon] => C:\Program Files (x86)\National Instruments\NI-DAQ\HWConfig\nidevmon.exe [119120 2014-02-12] (National Instruments Corporation)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-1185877117-2082503125-1392697548-1001\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd)
HKU\S-1-5-21-1185877117-2082503125-1392697548-1001\...\Run: [NIRegistrationWizard] => C:\Program Files (x86)\National Instruments\Shared\RegistrationWizard\Bin\RegistrationWizard.exe [847000 2013-04-19] ()
HKU\S-1-5-21-1185877117-2082503125-1392697548-1001\...\Run: [IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] => "C:\Program Files (x86)\Common Files\Nero\Lib\NMIndexStoreSvr.exe" ASO-616B5711-6DAE-4795-A05F-39A1E5104020
Lsa: [Notification Packages] DPPassFilter scecli c:\Program Files\WIDCOMM\Bluetooth Software\BtwProximityCP.dll
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk
ShortcutTarget: Bluetooth.lnk -> C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\NI Error Reporting (64-bit).lnk
ShortcutTarget: NI Error Reporting (64-bit).lnk -> C:\Program Files\National Instruments\Shared\NI Error Reporting\nierserver.exe (National Instruments Corporation)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\NI Error Reporting.lnk
ShortcutTarget: NI Error Reporting.lnk -> C:\Program Files (x86)\National Instruments\Shared\NI Error Reporting\nierserver.exe (National Instruments Corporation)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\vpngui.exe.lnk
ShortcutTarget: vpngui.exe.lnk -> C:\Windows\Installer\{5FDC06BF-3D3D-4367-8FFB-4FAFCB61972D}\Icon09DB8A851.exe ()
ShellIconOverlayIdentifiers: [+1TBIcon] -> {B9C55E85-DED6-4911-82F3-83CF1CAB2898} => C:\Program Files\Hewlett-Packard\HP Trust Circles\tbicon.dll (CryptoMill Technologies Ltd.)
ShellIconOverlayIdentifiers: [Správa překryvné ikony digitálních podpisů AutoCADu ] -> {36A21736-36C2-4C11-8ACB-D4136F2B57BD} => C:\Windows\system32\AcSignIcon.dll (Autodesk, Inc.)
ShellIconOverlayIdentifiers-x32: [+1TBIcon] -> {B9C55E85-DED6-4911-82F3-83CF1CAB2898} => C:\Program Files (x86)\Hewlett-Packard\HP Trust Circles\tbicon.dll (CryptoMill Technologies Ltd.)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-1185877117-2082503125-1392697548-1001\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.bing.com?pc=CMNTDFJS
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.microsoft.com/isapi/redir.dl ... ar=msnhome
HKU\S-1-5-21-1185877117-2082503125-1392697548-1001\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKU\S-1-5-21-1185877117-2082503125-1392697548-1012\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.bing.com?pc=CMNTDFJS
HKU\S-1-5-21-1185877117-2082503125-1392697548-1012\Software\Microsoft\Internet Explorer\Main,First Home Page = http://www.bing.com?pc=CMNTDFJS
HKU\S-1-5-21-1185877117-2082503125-1392697548-1012\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com?pc=CMNTDFJS
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-1185877117-2082503125-1392697548-1001 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = http://www.google.com/search?q={searchTerms}
BHO-x32: HP File Sanitizer -> {3134413B-49B4-425C-98A5-893C1F195601} -> C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\IEBHO.dll (Hewlett-Packard)
BHO-x32: Microsoft Web Test Recorder 12.0 Helper -> {432dd630-7e03-4c97-9d62-b99f52df4fc2} -> C:\Program Files (x86)\Microsoft Visual Studio 12.0\Common7\IDE\PrivateAssemblies\Microsoft.VisualStudio.QualityTools.RecorderBarBHO100.dll (Microsoft Corporation)
Winsock: Catalog5 08 C:\Program Files (x86)\National Instruments\Shared\mDNS Responder\nimdnsNSP.dll [26512] (National Instruments Corporation)
Winsock: Catalog5-x64 08 C:\Program Files\National Instruments\Shared\mDNS Responder\nimdnsNSP.dll [28560] (National Instruments Corporation)
Tcpip\Parameters: [DhcpNameServer] 10.0.0.138

FireFox:
========
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll No File
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin-x32: digitalpersona.com/ChromeDPAgent -> c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\BrowserExt\components\npChromeDPAgent.dll (DigitalPersona, Inc.)
FF HKLM-x32\...\Firefox\Extensions: [dpmaxz_ng@jetpack] - c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\BrowserExt\dpchrome
FF Extension: DPChrome - c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\BrowserExt\dpchrome [2014-03-16]

Chrome:
=======
CHR HomePage: Default -> hxxp://www.trovi.com/?gd=&ctid=CT3321459&octid ... 84TC_sp_ch
CHR StartupUrls: Default -> "https://www.google.cz/webhp?sourceid=ch ... 2&ie=UTF-8"
CHR DefaultSuggestURL: Default -> {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&gs_ri={google:suggestRid}&xssi=t&q={searchTerms}&{google:inputType}{google:cursorPosition}{google:currentPageUrl}{google:pageClassification}{google:searchVersion}{google:sessionToken}{google:prefetchQuery}sugkey={google:suggestAPIKeyParameter}
CHR Profile: C:\Users\SpankMe\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Dokumenty Google) - C:\Users\SpankMe\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-05-16]
CHR Extension: (Disk Google) - C:\Users\SpankMe\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-05-16]
CHR Extension: (YouTube) - C:\Users\SpankMe\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-05-16]
CHR Extension: (Adblock Plus) - C:\Users\SpankMe\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2014-05-16]
CHR Extension: (Vyhledávání Google) - C:\Users\SpankMe\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-05-16]
CHR Extension: (Peněženka Google) - C:\Users\SpankMe\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-05-16]
CHR Extension: (Gmail) - C:\Users\SpankMe\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-05-16]

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 aaBootstrap; C:\Program Files (x86)\Common Files\ArchestrA\Framework\Bin\aaBootstrap.exe [1646592 2013-12-06] (Invensys Systems, Inc.) [File not signed]
R2 aaGR; C:\Program Files (x86)\ArchestrA\Framework\Bin\aaGR.exe [173568 2013-12-06] (Invensys Systems, Inc.) [File not signed]
R2 aahClientAccessPoint; C:\Program Files (x86)\Common Files\ArchestrA\aahClientAccessPoint.exe [2326528 2013-12-06] (Invensys Systems, Inc.) [File not signed]
R2 aaLogger; C:\Program Files (x86)\Common Files\ArchestrA\aaLogger.exe [331776 2013-12-06] (Invensys Systems, Inc.) [File not signed]
R2 almservice; C:\Program Files\Common Files\Siemens\sws\almsrv\almsrv64x.exe [1434848 2013-05-23] (SIEMENS AG)
S3 c2wts; C:\Program Files\Windows Identity Foundation\v3.5\c2wtshost.exe [15768 2010-02-03] (Microsoft Corporation)
R2 CreoService; C:\Program Files (x86)\Hewlett-Packard\HP Trust Circles\CreoSvc.exe [1366488 2013-08-23] (CryptoMill Technologies Ltd.)
R2 CtAgentService; C:\Program Files (x86)\Hewlett-Packard\HP Theft Recovery\CtService.exe [7168 2013-08-14] () [File not signed]
R2 CyberLink PowerDVD 12 Media Server Monitor Service; c:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSMonitorServicePDVD12.exe [77576 2013-09-18] (CyberLink)
R2 CyberLink PowerDVD 12 Media Server Service; c:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe [298760 2013-09-18] (CyberLink)
R2 DpHost; c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe [500048 2013-09-13] (DigitalPersona, Inc.)
R2 FLCDLOCK; c:\Windows\SysWOW64\flcdlock.exe [567608 2013-09-06] (Hewlett-Packard Company)
S3 FSGateway; C:\Program Files (x86)\Wonderware\DAServer\FSGateway\Bin\FSGateway.exe [59392 2013-12-06] (Invensys Systems, Inc.) [File not signed]
S3 fussvc; C:\Program Files (x86)\Windows Kits\8.1\App Certification Kit\fussvc.exe [142336 2013-08-22] (Microsoft Corporation) [File not signed]
R2 hpHotkeyMonitor; C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe [681760 2013-08-01] (Hewlett-Packard Company)
R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [15720 2013-08-07] (Intel Corporation)
R2 Intel(R) Capability Licensing Service Interface; c:\Program Files\Intel\iCLS Client\HeciServer.exe [747520 2013-08-27] (Intel(R) Corporation) [File not signed]
S3 Intel(R) Capability Licensing Service TCP IP Interface; c:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [828376 2013-08-27] (Intel(R) Corporation)
R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131544 2013-09-16] (Intel Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-09-16] (Intel Corporation)
S4 LicenseManagerDataService; C:\Program Files (x86)\Invensys\License Manager\LicenseManagerWindowsService.exe [13680 2013-11-20] (Invensys Systems, Inc.)
R2 LkCitadelServer; C:\Windows\SysWOW64\lkcitdl.exe [695136 2014-01-14] (National Instruments, Inc.)
R2 lkClassAds; C:\Windows\SysWOW64\lkads.exe [53032 2014-06-09] (National Instruments Corporation)
R2 lkTimeSync; C:\Windows\SysWOW64\lktsrv.exe [63280 2014-06-09] (National Instruments Corporation)
R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [23784 2014-08-22] (Microsoft Corporation)
R2 MSSQL$CITADEL; c:\Program Files (x86)\Microsoft SQL Server\MSSQL10_50.CITADEL\MSSQL\Binn\sqlservr.exe [43040096 2011-06-17] (Microsoft Corporation)
R2 MSSQLSERVER; C:\Program Files (x86)\Microsoft SQL Server\MSSQL11.MSSQLSERVER\MSSQL\Binn\sqlservr.exe [161440 2014-07-23] (Microsoft Corporation)
R2 mxssvr; C:\Program Files (x86)\National Instruments\MAX\nimxs.exe [84280 2014-06-07] (National Instruments Corporation)
R2 ni488enumsvc; C:\Windows\SysWOW64\nipalsm.exe [19280 2014-06-05] (National Instruments Corporation)
R2 NIApplicationWebServer; C:\Program Files (x86)\National Instruments\Shared\NI WebServer\ApplicationWebServer.exe [57184 2014-06-10] (National Instruments Corporation)
S4 NIApplicationWebServer64; C:\Program Files\National Instruments\Shared\NI WebServer\ApplicationWebServer.exe [80736 2014-06-10] (National Instruments Corporation)
R2 niauth; C:\Program Files (x86)\National Instruments\Shared\niauth\niauth_daemon.exe [569152 2014-06-20] (National Instruments Corporation)
R2 NICitadel5Service; C:\Windows\SysWOW64\nicitdl5.exe [1311040 2014-06-10] (National Instruments Corporation)
R2 nidevldu; C:\Windows\SysWOW64\nidevldu.exe [103800 2014-06-13] (National Instruments Corporation)
R2 NIDomainService; C:\Program Files (x86)\National Instruments\Shared\Security\nidmsrv.exe [394544 2014-06-09] (National Instruments Corporation)
S3 NILM License Manager; C:\Program Files (x86)\National Instruments\Shared\License Manager\Bin\lmgrd.exe [1427688 2010-08-02] (Macrovision Corporation)
R2 niLXIDiscovery; C:\Program Files (x86)\IVI Foundation\VISA\WinNT\NIvisa\niLxiDiscovery.exe [383352 2014-06-13] (National Instruments Corporation)
R2 nimcdldu; C:\Windows\SysWOW64\nipalsm.exe [19280 2014-06-05] (National Instruments Corporation)
R2 nimDNSResponder; C:\Program Files (x86)\National Instruments\Shared\mDNS Responder\nimdnsResponder.exe [320368 2014-06-06] (National Instruments Corporation)
R2 NINetworkDiscovery; C:\Program Files (x86)\National Instruments\Shared\NI Network Discovery\niDiscSvc.exe [177536 2014-06-19] (National Instruments Corporation)
S3 NIOPCServersKeySvcV2013; C:\Program Files (x86)\National Instruments\Shared\NI OPC Servers\V5\keysvc.exe [34816 2013-05-06] (Kepware Technologies)
R2 NIOPCServersLoggerV2013; C:\Program Files (x86)\National Instruments\Shared\NI OPC Servers\V5\server_eventlog.exe [143872 2013-05-06] (Kepware Technologies)
R2 NIOPCServersV2013; C:\Program Files (x86)\National Instruments\Shared\NI OPC Servers\V5\server_runtime.exe [257024 2013-05-06] (Kepware Technologies)
R2 nipxirmu; C:\Windows\SysWOW64\nipxism.exe [20816 2014-01-09] (National Instruments Corporation)
S3 NiRioRpc; C:\Windows\SysWOW64\NiRioRpc.exe [39232 2014-06-18] (National Instruments Corporation)
R3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [368624 2014-08-22] (Microsoft Corporation)
R2 NiSvcLoc; C:\Program Files (x86)\National Instruments\Shared\niSvcLoc\nisvcloc.exe [89928 2014-06-06] (National Instruments Corporation)
R2 NISystemWebServer; C:\Program Files (x86)\National Instruments\Shared\NI WebServer\SystemWebServer.exe [57168 2014-06-10] (National Instruments Corporation)
R2 NITaggerService; C:\Program Files (x86)\National Instruments\Shared\Tagger\tagsrv.exe [692040 2014-06-10] (National Instruments Corporation)
R2 nitsuu; C:\Windows\SysWOW64\nipalsm.exe [19280 2014-06-05] (National Instruments Corporation)
R2 pdfcDispatcher; C:\Program Files (x86)\PDF Complete\pdfsvc.exe [1143432 2013-07-18] (PDF Complete Inc)
R2 s7oiehsx64; C:\Program Files\Common Files\Siemens\Automation\Simatic OAM\bin\s7oiehsx64.exe [143072 2013-07-08] (Siemens AG)
R2 S7TraceServiceX; C:\Program Files\Common Files\Siemens\Automation\TraceEngine\bin\S7TraceService64X.exe [472288 2013-07-08] (Siemens AG)
R2 slssvc; C:\Program Files (x86)\Common Files\ArchestrA\slssvc.exe [83456 2013-12-06] (Invensys Systems, Inc.) [File not signed]
S4 SQLAgent$CITADEL; c:\Program Files (x86)\Microsoft SQL Server\MSSQL10_50.CITADEL\MSSQL\Binn\SQLAGENT.EXE [370016 2011-06-17] (Microsoft Corporation)
S4 SQLSERVERAGENT; C:\Program Files (x86)\Microsoft SQL Server\MSSQL11.MSSQLSERVER\MSSQL\Binn\SQLAGENT.EXE [448680 2014-07-23] (Microsoft Corporation)
R2 STacSV; C:\Program Files\IDT\WDM\STacSV64.exe [339456 2013-08-16] (IDT, Inc.) [File not signed]
S3 Te.Service; C:\Program Files (x86)\Windows Kits\8.1\Testing\Runtimes\TAEF\Wex.Services.exe [119808 2013-08-22] (Microsoft Corporation) [File not signed]
S3 VsEtwService120; C:\Program Files\Microsoft Visual Studio 12.0\Common7\Packages\Debugger\Services\VsEtwService.exe [87728 2013-10-04] (Microsoft Corporation)
R2 W3SVC; C:\Windows\system32\inetsrv\iisw3adm.dll [453120 2010-11-21] (Microsoft Corporation)
R2 Watchdog_Service; C:\Program Files (x86)\Common Files\ArchestrA\Services\aaServiceWatchdog.exe [49152 2013-12-06] (Invensys Systems, Inc.) [File not signed]
R2 wltrysvc; C:\Program Files\Broadcom\Broadcom 802.11\bcmwltry.exe [5878272 2014-08-10] (Broadcom Corporation) [File not signed]
S3 WWNetDDE; C:\Program Files (x86)\Common Files\ArchestrA\wwnetdde.exe [80692 2013-12-06] (Invensys Systems, Inc.) [File not signed]
S2 Nero BackItUp Scheduler 4.0; C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe [X]

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R0 amdkmpfd; C:\Windows\System32\DRIVERS\amdkmpfd.sys [35936 2013-04-10] (Advanced Micro Devices, Inc.)
R3 bcbtums; C:\Windows\System32\drivers\bcbtums.sys [165688 2012-09-24] (Broadcom Corporation.)
R1 CLVirtualDrive; C:\Windows\System32\DRIVERS\CLVirtualDrive.sys [90608 2011-12-27] (CyberLink)
R3 CVPNDRVA; C:\Windows\system32\Drivers\CVPNDRVA.sys [306536 2011-03-04] ()
R2 DAMDrv; C:\Windows\System32\DRIVERS\DAMDrv64.sys [65752 2013-06-13] (Hewlett-Packard Company)
R3 dpmconv; C:\Windows\System32\DRIVERS\dpmconv.sys [259584 2013-04-10] (Siemens AG)
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2014-05-16] (Disc Soft Ltd)
R3 e1dexpress; C:\Windows\System32\DRIVERS\e1d62x64.sys [495376 2013-07-12] (Intel Corporation)
R0 iaStorF; C:\Windows\System32\drivers\iaStorF.sys [28008 2013-08-07] (Intel Corporation)
R3 IceKore; C:\Windows\System32\DRIVERS\IceKore.sys [397784 2013-08-19] (CryptoMill Technologies Inc.)
S3 lvalarmk; C:\Windows\system32\drivers\lvalarmk.sys [27528 2014-06-13] (National Instruments Corporation)
R3 MEIx64; C:\Windows\system32\drivers\TeeDriverx64.sys [99288 2013-09-16] (Intel Corporation)
R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [269008 2014-07-17] (Microsoft Corporation)
S3 ni1045k; C:\Windows\system32\drivers\ni1045kl.sys [12984 2014-05-16] (National Instruments Corporation)
S3 ni1065k; C:\Windows\system32\drivers\ni1065k.sys [30032 2014-05-16] (National Instruments Corporation)
S3 nicdcck; C:\Windows\system32\drivers\nicdcckl.sys [15192 2014-04-29] (National Instruments Corporation)
S3 nicdrk; C:\Windows\system32\drivers\nicdrkl.sys [15192 2014-04-29] (National Instruments Corporation)
S3 nicmrk; C:\Windows\system32\drivers\nicmrkl.sys [15208 2014-06-10] (National Instruments Corporation)
S3 nicondrk; C:\Windows\system32\drivers\nicondrkl.sys [15176 2014-05-06] (National Instruments Corporation)
S3 nicsrk; C:\Windows\system32\drivers\nicsrkl.sys [15176 2014-06-24] (National Instruments Corporation)
R3 nidimk; C:\Windows\system32\drivers\nidimkl.sys [15200 2014-03-13] (National Instruments Corporation)
S3 nidmxfk; C:\Windows\system32\drivers\nidmxfkl.sys [15176 2014-06-25] (National Instruments Corporation)
S3 nidsark; C:\Windows\system32\drivers\nidsarkl.sys [15184 2014-04-29] (National Instruments Corporation)
S3 nidwgk; C:\Windows\system32\drivers\nidwgkl.sys [14176 2014-06-27] (National Instruments Corporation)
S3 niemrk; C:\Windows\system32\drivers\niemrkl.sys [15176 2014-05-02] (National Instruments Corporation)
S3 niesrk; C:\Windows\system32\drivers\niesrkl.sys [15176 2014-05-02] (National Instruments Corporation)
R3 NIEthernetDeviceEnumerator; C:\Windows\System32\DRIVERS\niede.sys [38064 2012-01-12] (National Instruments Corporation)
S3 nifslk; C:\Windows\system32\drivers\nifslkl.sys [15192 2014-03-14] (National Instruments Corporation)
S3 nihorbrk; C:\Windows\system32\drivers\nihorbrkl.sys [15176 2014-05-02] (National Instruments Corporation)
S3 nihsdrk; C:\Windows\system32\drivers\nihsdrkl.sys [14168 2014-06-27] (National Instruments Corporation)
R3 niimaqdxk; C:\Windows\System32\drivers\niimaqdxkl.sys [15160 2014-06-25] (National Instruments Corporation)
S3 nimcdfxk; C:\Windows\system32\drivers\nimcdfxkl.sys [11976 2012-06-05] (National Instruments Corporation)
R3 nimdbgk; C:\Windows\system32\drivers\nimdbgkl.sys [15200 2014-03-13] (National Instruments Corporation)
R3 nimru2k; C:\Windows\system32\drivers\nimru2kl.sys [15200 2014-03-13] (National Instruments Corporation)
S3 nimsdrk; C:\Windows\system32\drivers\nimsdrkl.sys [15232 2014-06-13] (National Instruments Corporation)
S3 nimstsk; C:\Windows\system32\drivers\nimstskl.sys [15200 2014-06-12] (National Instruments Corporation)
R3 nimxdfk; C:\Windows\system32\drivers\nimxdfkl.sys [15184 2014-03-13] (National Instruments Corporation)
S3 nimxpk; C:\Windows\system32\drivers\nimxpkl.sys [15208 2014-06-12] (National Instruments Corporation)
S3 ninshsdk; C:\Windows\system32\drivers\ninshsdkl.sys [15200 2014-04-01] (National Instruments Corporation)
S3 niorbk; C:\Windows\system32\drivers\niorbkl.sys [15184 2014-03-12] (National Instruments Corporation)
S3 nipalfwedl; C:\Windows\System32\drivers\nipalfwedl.sys [15232 2014-06-05] (National Instruments Corporation)
R0 NIPALK; C:\Windows\System32\drivers\nipalk.sys [773464 2014-06-05] (National Instruments Corporation)
S3 nipalusbedl; C:\Windows\System32\drivers\nipalusbedl.sys [15224 2014-06-05] (National Instruments Corporation)
R0 nipbcfk; C:\Windows\System32\drivers\nipbcfk.sys [19288 2014-02-28] (National Instruments Corporation)
S3 nipsdk; C:\Windows\system32\drivers\nipsdkl.sys [15232 2014-06-28] (National Instruments Corporation)
R0 nipxibaf; C:\Windows\System32\drivers\nipxibaf.sys [89992 2014-06-12] (National Instruments Corporation)
R0 nipxibrc; C:\Windows\System32\drivers\nipxibrc.sys [70336 2014-05-16] (National Instruments Corporation)
S3 nipxifpk; C:\Windows\system32\drivers\nipxifpk.sys [37272 2013-09-10] (National Instruments Corporation)
S3 nipxigpk; C:\Windows\system32\drivers\nipxigpk.sys [22680 2011-08-09] (National Instruments Corporation)
R2 nipxirmk; C:\Windows\system32\drivers\nipxirmkl.sys [15184 2014-01-09] (National Instruments Corporation)
S3 niraptrk; C:\Windows\system32\drivers\niraptrkl.sys [15176 2014-05-06] (National Instruments Corporation)
S3 niscdk; C:\Windows\system32\drivers\niscdkl.sys [15216 2014-04-29] (National Instruments Corporation)
R0 nischifk; C:\Windows\System32\Drivers\nischifk.sys [66936 2014-06-11] (National Instruments Corporation)
S3 nisdigk; C:\Windows\system32\drivers\nisdigkl.sys [15192 2014-05-02] (National Instruments Corporation)
R2 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [125584 2014-07-17] (Microsoft Corporation)
S3 nisftk; C:\Windows\system32\drivers\nisftkl.sys [15184 2014-04-01] (National Instruments Corporation)
S3 nisldk; C:\Windows\system32\drivers\nisldkl.sys [11960 2014-06-28] (National Instruments Corporation)
S3 nispdk; C:\Windows\system32\drivers\nispdkl.sys [15216 2014-04-29] (National Instruments Corporation)
S3 nisrcdk; C:\Windows\system32\drivers\nisrcdkl.sys [14168 2014-06-26] (National Instruments Corporation)
S3 nissrk; C:\Windows\system32\drivers\nissrkl.sys [15176 2014-05-02] (National Instruments Corporation)
S3 nistc2k; C:\Windows\system32\drivers\nistc2kl.sys [15152 2014-04-29] (National Instruments Corporation)
S3 nistc3rk; C:\Windows\system32\drivers\nistc3rkl.sys [15168 2014-04-29] (National Instruments Corporation)
S3 nistcrk; C:\Windows\system32\drivers\nistcrkl.sys [15200 2014-04-29] (National Instruments Corporation)
R2 nistreamk; C:\Windows\System32\drivers\nistreamkl.sys [24912 2014-06-04] (National Instruments Corporation)
S3 niswdk; C:\Windows\system32\drivers\niswdkl.sys [15176 2014-06-23] (National Instruments Corporation)
S3 niSynck; C:\Windows\system32\drivers\niSynckl.sys [15184 2014-06-29] (National Instruments Corporation)
S3 nitfurk; C:\Windows\system32\drivers\nitfurkl.sys [15216 2014-05-02] (National Instruments Corporation)
S3 nitiork; C:\Windows\system32\drivers\nitiorkl.sys [15200 2014-04-29] (National Instruments Corporation)
S3 nitsuk; C:\Windows\system32\drivers\nitsukl.sys [15192 2014-06-29] (National Instruments Corporation)
S3 niufurk; C:\Windows\system32\drivers\niufurkl.sys [15392 2014-06-24] (National Instruments Corporation)
R3 NiViPciK; C:\Windows\System32\drivers\NiViPciKl.sys [15200 2014-06-13] (National Instruments Corporation)
R2 NiViPxiK; C:\Windows\System32\drivers\NiViPxiKl.sys [15200 2014-06-13] (National Instruments Corporation)
S3 niwdk; No ImagePath
S3 niwfrk; C:\Windows\system32\drivers\niwfrkl.sys [15176 2014-05-02] (National Instruments Corporation)
S3 nixfmrrk; C:\Windows\system32\drivers\nixfmrrkl.sys [15184 2014-05-06] (National Instruments Corporation)
S3 nixsrk; C:\Windows\system32\drivers\nixsrkl.sys [15176 2014-05-02] (National Instruments Corporation)
R0 PinFile; C:\Windows\System32\DRIVERS\PinFile.sys [49856 2013-08-22] (WinMagic Inc.)
S3 RTSPER; C:\Windows\System32\DRIVERS\RtsPer.sys [429272 2013-08-21] (Realsil Semiconductor Corporation)
R3 rtsuvc; C:\Windows\System32\DRIVERS\rtsuvc.sys [8873688 2013-08-02] (Realtek Semiconductor Corp.)
R3 s7odpx2x64; C:\Windows\System32\DRIVERS\s7odpx2x64.sys [71168 2012-12-19] (SIEMENS AG)
R3 s7oppinx64; C:\Windows\System32\DRIVERS\s7oppinx64.sys [107520 2012-07-24] (SIEMENS AG)
R3 s7oserix64; C:\Windows\System32\Drivers\s7oserix64.sys [121856 2012-07-24] (SIEMENS AG)
R3 s7osmcax64; C:\Windows\System32\DRIVERS\s7osmcax64.sys [199680 2012-07-24] (SIEMENS AG)
R3 s7osobux64; C:\Windows\System32\DRIVERS\s7osobux64.sys [153600 2012-07-24] (SIEMENS AG)
R3 s7otmcd64x; C:\Windows\System32\Drivers\s7otmcd64x.sys [199680 2012-07-24] (SIEMENS AG)
R3 s7otranx64; C:\Windows\System32\DRIVERS\s7otranx64.sys [260096 2012-07-24] (SIEMENS AG)
R3 s7otsadx64; C:\Windows\System32\DRIVERS\s7otsadx64.sys [196096 2012-07-24] (SIEMENS AG)
R2 s7ousbu64x; C:\Windows\System32\DRIVERS\s7ousbu64x.sys [137216 2013-06-03] (Siemens AG)
R2 s7sn2srtx; C:\Windows\System32\DRIVERS\s7sn2srtx.sys [83032 2012-05-09] (SIEMENS AG)
R0 SDDisk2K; C:\Windows\System32\DRIVERS\SDDisk2K.sys [228544 2013-08-22] (WinMagic Inc.)
R0 SDDToki; C:\Windows\System32\DRIVERS\SDDToki.sys [131264 2013-08-22] (WinMagic Inc.)
R2 Sentinel64; C:\Windows\System32\Drivers\Sentinel64.sys [145448 2009-09-17] (SafeNet, Inc.)
S3 SmbDrv; C:\Windows\system32\drivers\Smb_driver_AMDASF.sys [30448 2013-09-04] (Synaptics Incorporated)
R3 SmbDrvI; C:\Windows\system32\drivers\Smb_driver_Intel.sys [34544 2013-09-04] (Synaptics Incorporated)
R2 SNTIE; C:\Windows\System32\DRIVERS\sntie.sys [286432 2013-03-22] (SIEMENS AG)
R3 vsnl2ada; C:\Windows\System32\DRIVERS\vsnl2ada.sys [128000 2013-07-01] (SIEMENS AG)
S3 usb6xxxk; \??\C:\Windows\system32\drivers\usb6xxxkl.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-12-11 11:08 - 2014-12-11 11:09 - 00043108 _____ () C:\Users\SpankMe\Desktop\FRST.txt
2014-12-11 11:08 - 2014-12-11 11:08 - 00000000 ____D () C:\FRST
2014-12-11 11:06 - 2014-12-11 11:07 - 02119680 _____ (Farbar) C:\Users\SpankMe\Desktop\FRST64.exe
2014-12-11 11:05 - 2014-12-11 11:05 - 00112640 _____ (forum.viry.cz) C:\Users\SpankMe\Desktop\Nepotvrzeno 794481.crdownload
2014-12-11 10:44 - 2014-12-11 10:44 - 00000000 ____D () C:\Users\SpankMe\AppData\Local\PDFC
2014-12-11 10:40 - 2014-12-11 10:41 - 00001078 _____ () C:\Windows\system32dbgraw.bmp
2014-12-11 10:40 - 2014-12-11 10:40 - 00000000 ____D () C:\ProgramData\Validity
2014-12-11 10:37 - 2014-12-11 10:11 - 00024064 _____ () C:\Windows\zoek-delete.exe
2014-12-11 10:28 - 2014-12-11 10:44 - 00000000 ____D () C:\zoek
2014-12-11 10:13 - 2014-12-11 10:44 - 00009344 _____ () C:\zoek-results.log
2014-12-11 10:11 - 2014-12-11 10:31 - 00000000 ____D () C:\zoek_backup
2014-12-11 10:11 - 2014-12-11 10:11 - 01295360 _____ () C:\Users\SpankMe\Desktop\zoek.exe
2014-12-10 00:42 - 2014-12-10 03:16 - 00000000 ____D () C:\Users\SpankMe\Desktop\What is Love
2014-12-09 23:40 - 2014-12-09 23:41 - 00011211 _____ () C:\Users\SpankMe\Desktop\tut2.zip
2014-12-09 23:29 - 2014-12-09 23:29 - 00129752 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-12-09 23:29 - 2014-12-09 23:29 - 00001113 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-12-09 23:29 - 2014-12-09 23:29 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-12-09 23:29 - 2014-11-21 06:14 - 00093400 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2014-12-09 23:29 - 2014-11-21 06:14 - 00063704 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2014-12-09 23:29 - 2014-11-21 06:14 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2014-12-09 23:16 - 2014-12-09 23:16 - 00000000 ____D () C:\Users\SpankMe\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Zařízení Bluetooth
2014-12-09 23:04 - 2014-12-09 23:09 - 00000000 ____D () C:\AdwCleaner
2014-12-09 23:03 - 2014-12-09 23:03 - 02166272 _____ () C:\Users\SpankMe\Desktop\adwcleaner_4.105.exe
2014-12-09 23:02 - 2014-12-09 23:02 - 00001197 _____ () C:\Users\SpankMe\Desktop\CrystalDiskInfo.lnk
2014-12-09 23:02 - 2014-12-09 23:02 - 00000000 ____D () C:\Program Files (x86)\CrystalDiskInfo
2014-12-09 01:14 - 2014-12-09 01:14 - 01068544 _____ () C:\Users\SpankMe\Desktop\projekt-prezentacia.ppt
2014-12-09 00:23 - 2014-12-09 00:29 - 00000000 ____D () C:\Users\SpankMe\AppData\Roaming\vlc
2014-12-09 00:19 - 2014-12-09 00:19 - 00001077 _____ () C:\Users\Public\Desktop\VLC media player.lnk
2014-12-09 00:19 - 2014-12-09 00:19 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2014-12-09 00:19 - 2014-12-09 00:19 - 00000000 ____D () C:\Program Files (x86)\VideoLAN
2014-12-09 00:07 - 2014-12-09 00:07 - 00000000 ____D () C:\rsit
2014-12-09 00:03 - 2014-12-09 00:03 - 01222144 _____ () C:\Users\SpankMe\Desktop\RSITx64.exe
2014-12-03 17:39 - 2014-12-03 17:39 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cisco Systems VPN Client
2014-12-03 17:39 - 2014-12-03 17:39 - 00000000 ____D () C:\Program Files\Common Files\Deterministic Networks
2014-12-03 17:39 - 2014-12-03 17:39 - 00000000 ____D () C:\Program Files (x86)\Cisco Systems
2014-12-03 17:38 - 2014-12-03 17:41 - 00001594 _____ () C:\Windows\VPNInstall.MIF
2014-11-29 19:41 - 2012-02-11 11:00 - 00211544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SQSRVRES.DLL
2014-11-29 19:13 - 2014-11-29 19:13 - 00000000 ____D () C:\Users\Default\Documents\Visual Studio 2010
2014-11-29 19:13 - 2014-11-29 19:13 - 00000000 ____D () C:\Users\Default User\Documents\Visual Studio 2010
2014-11-28 18:39 - 2012-06-01 06:39 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\wamregps.dll
2014-11-28 18:39 - 2012-06-01 06:36 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\iisRtl.dll
2014-11-28 18:39 - 2012-06-01 06:36 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\iisrstap.dll
2014-11-28 18:39 - 2012-06-01 06:35 - 00060928 _____ (Microsoft Corporation) C:\Windows\system32\ahadmin.dll
2014-11-28 18:39 - 2012-06-01 06:34 - 00055296 _____ (Microsoft Corporation) C:\Windows\system32\admwprox.dll
2014-11-28 18:39 - 2012-06-01 06:33 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\iisreset.exe
2014-11-28 18:39 - 2012-06-01 05:40 - 00010752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wamregps.dll
2014-11-28 18:39 - 2012-06-01 05:37 - 00154624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iisRtl.dll
2014-11-28 18:39 - 2012-06-01 05:37 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iisrstap.dll
2014-11-28 18:39 - 2012-06-01 05:35 - 00050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\admwprox.dll
2014-11-28 18:39 - 2012-06-01 05:35 - 00026624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ahadmin.dll
2014-11-28 18:39 - 2012-06-01 05:34 - 00015360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iisreset.exe
2014-11-28 14:34 - 2014-11-28 14:37 - 00001706 _____ () C:\Users\SpankMe\Desktop\InTouch.lnk
2014-11-28 14:32 - 2014-11-28 14:35 - 00000000 ____D () C:\Users\SpankMe\AppData\Local\Wonderware
2014-11-28 14:31 - 2014-11-28 14:31 - 00000020 ___SH () C:\Users\ASBService\ntuser.ini
2014-11-28 14:31 - 2014-11-28 14:31 - 00000000 _SHDL () C:\Users\ASBService\Šablony
2014-11-28 14:31 - 2014-11-28 14:31 - 00000000 _SHDL () C:\Users\ASBService\Soubory cookie
2014-11-28 14:31 - 2014-11-28 14:31 - 00000000 _SHDL () C:\Users\ASBService\Poslední
2014-11-28 14:31 - 2014-11-28 14:31 - 00000000 _SHDL () C:\Users\ASBService\Okolní tiskárny
2014-11-28 14:31 - 2014-11-28 14:31 - 00000000 _SHDL () C:\Users\ASBService\Okolní síť
2014-11-28 14:31 - 2014-11-28 14:31 - 00000000 _SHDL () C:\Users\ASBService\Nabídka Start
2014-11-28 14:31 - 2014-11-28 14:31 - 00000000 _SHDL () C:\Users\ASBService\Dokumenty
2014-11-28 14:31 - 2014-11-28 14:31 - 00000000 _SHDL () C:\Users\ASBService\Documents\Obrázky
2014-11-28 14:31 - 2014-11-28 14:31 - 00000000 _SHDL () C:\Users\ASBService\Documents\Hudba
2014-11-28 14:31 - 2014-11-28 14:31 - 00000000 _SHDL () C:\Users\ASBService\Documents\Filmy
2014-11-28 14:31 - 2014-11-28 14:31 - 00000000 _SHDL () C:\Users\ASBService\Data aplikací
2014-11-28 14:31 - 2014-11-28 14:31 - 00000000 _SHDL () C:\Users\ASBService\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2014-11-28 14:31 - 2014-11-28 14:31 - 00000000 _SHDL () C:\Users\ASBService\AppData\Local\Data aplikací
2014-11-28 14:31 - 2014-11-28 14:31 - 00000000 ____D () C:\Users\ASBService
2014-11-28 14:31 - 2014-06-12 10:15 - 00000000 ____D () C:\Users\ASBService\AppData\Local\Microsoft Help
2014-11-28 14:31 - 2014-03-16 15:02 - 00000000 ___HD () C:\Users\ASBService\Documents\hp.system.package.metadata
2014-11-28 14:31 - 2009-07-14 05:54 - 00000000 ___RD () C:\Users\ASBService\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2014-11-28 14:31 - 2009-07-14 05:49 - 00000000 ___RD () C:\Users\ASBService\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2014-11-28 14:29 - 2014-11-28 14:29 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Invensys
2014-11-28 14:29 - 2014-11-28 14:29 - 00000000 ____D () C:\Program Files (x86)\Invensys
2014-11-28 14:28 - 2014-11-28 14:28 - 00000000 ____D () C:\Program Files (x86)\ArchestrA
2014-11-28 14:26 - 2014-11-28 14:31 - 00000000 ____D () C:\ProgramData\ArchestrA
2014-11-28 14:26 - 2014-11-28 14:26 - 00000000 ____D () C:\Users\Public\Wonderware
2014-11-28 14:26 - 2014-11-28 14:26 - 00000000 ____D () C:\ProgramData\Wonderware
2014-11-28 14:26 - 2014-11-28 14:26 - 00000000 ____D () C:\ProgramData\InTouchDemos
2014-11-28 14:25 - 2014-11-28 14:32 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wonderware
2014-11-28 14:25 - 2014-11-28 14:26 - 00000000 ____D () C:\Program Files (x86)\Wonderware
2014-11-28 14:22 - 2014-11-28 14:22 - 00000000 ____D () C:\Users\SpankMe\Documents\SQL Server Management Studio
2014-11-28 14:22 - 2012-02-11 11:02 - 00045656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\perf-MSSQL11.MSSQLSERVER-sqlagtctr.dll
2014-11-28 14:21 - 2012-02-11 11:08 - 00147032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hadrres.dll
2014-11-28 14:21 - 2012-02-11 11:08 - 00069208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fssres.dll
2014-11-28 14:21 - 2012-02-11 11:03 - 00082520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\perf-MSSQLSERVER-sqlctr11.1.3000.0.dll
2014-11-28 14:15 - 2014-11-28 14:15 - 00000000 ____D () C:\Users\SpankMe\Documents\Visual Studio 2010
2014-11-28 14:13 - 2014-11-28 14:13 - 00000000 ____D () C:\Program Files (x86)\Microsoft Visual Studio 10.0
2014-11-28 14:11 - 2014-11-28 14:11 - 00000000 ____D () C:\Windows\symbols
2014-11-28 14:11 - 2014-11-28 14:11 - 00000000 ____D () C:\Program Files\Microsoft Visual Studio 10.0
2014-11-28 14:11 - 2014-11-28 14:11 - 00000000 ____D () C:\Program Files\Microsoft Help Viewer
2014-11-28 14:06 - 2014-11-28 14:20 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft SQL Server 2012
2014-11-28 13:54 - 2014-11-29 19:59 - 00038443 _____ () C:\Windows\iis7.log
2014-11-28 13:54 - 2014-11-28 13:54 - 00000000 ____D () C:\Windows\SysWOW64\BestPractices
2014-11-28 13:54 - 2014-11-28 13:54 - 00000000 ____D () C:\Windows\system32\BestPractices
2014-11-28 13:54 - 2014-11-28 13:54 - 00000000 ____D () C:\inetpub
2014-11-28 13:53 - 2014-11-28 13:53 - 00000000 ____D () C:\Users\SpankMe\AppData\Roaming\Wonderware
2014-11-28 13:51 - 2009-09-17 07:05 - 00145448 _____ (SafeNet, Inc.) C:\Windows\system32\Drivers\sentinel64.sys
2014-11-28 08:17 - 2014-11-28 11:06 - 00000000 ____D () C:\Users\SpankMe\Documents\Simulation
2014-11-28 07:48 - 2014-11-28 07:48 - 00001338 _____ () C:\Users\Public\Desktop\S7-PLCSIM V12.lnk
2014-11-19 14:53 - 2014-11-11 04:08 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2014-11-19 14:53 - 2014-11-11 04:08 - 00241152 _____ (Microsoft Corporation) C:\Windows\system32\pku2u.dll
2014-11-19 14:53 - 2014-11-11 03:44 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2014-11-19 14:53 - 2014-11-11 03:44 - 00186880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pku2u.dll
2014-11-15 19:10 - 2014-11-15 19:10 - 00001651 _____ () C:\Users\SpankMe\Desktop\LabVIEW.lnk
2014-11-15 19:04 - 2014-11-24 17:33 - 00000000 ____D () C:\Users\SpankMe\Documents\LabVIEW Data
2014-11-15 18:59 - 2014-11-15 18:59 - 00003248 _____ () C:\Windows\System32\Tasks\NIUpdateServiceStartupTask
2014-11-15 18:27 - 2014-11-15 18:28 - 00000000 ____D () C:\Windows\nimcorb
2014-11-15 18:00 - 2014-11-15 18:00 - 00000000 ____D () C:\Program Files (x86)\manuals
2014-11-15 17:04 - 2014-11-15 17:05 - 00000000 ____D () C:\NIFPGA
2014-11-15 16:57 - 2014-11-15 16:57 - 00003170 _____ () C:\Windows\System32\Tasks\NI OPC Servers 2013
2014-11-15 16:57 - 2014-11-15 16:57 - 00000000 ____D () C:\Users\SpankMe\AppData\Roaming\National Instruments
2014-11-15 16:54 - 2010-04-03 19:51 - 00073568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\perf-MSSQL$CITADEL-sqlctr10.51.2500.0.dll
2014-11-15 16:54 - 2010-04-03 19:51 - 00047456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\perf-MSSQL10_50.CITADEL-sqlagtctr.dll
2014-11-15 16:52 - 2014-11-15 16:52 - 00000000 ____D () C:\Program Files (x86)\Microsoft Visual Studio 9.0
2014-11-15 16:50 - 2014-11-15 16:50 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft SQL Server 2008
2014-11-15 16:48 - 2014-11-15 16:52 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft SQL Server 2008 R2
2014-11-15 16:36 - 2014-11-28 14:19 - 00000000 ____D () C:\Program Files (x86)\Microsoft Analysis Services
2014-11-15 16:08 - 2014-11-15 19:05 - 00000000 ____D () C:\ProgramData\PXISA
2014-11-15 15:56 - 2014-11-15 16:00 - 00000000 ____D () C:\ProgramData\JKI
2014-11-15 15:56 - 2014-11-15 15:56 - 00004088 _____ () C:\Windows\System32\Tasks\JKIUpdateTask
2014-11-15 15:56 - 2014-11-15 15:56 - 00002159 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LabVIEW Tools Network.lnk
2014-11-15 15:56 - 2014-11-15 15:56 - 00001176 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VI Package Manager.lnk
2014-11-15 15:56 - 2014-11-15 15:56 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\JKI
2014-11-15 15:56 - 2014-11-15 15:56 - 00000000 ____D () C:\Program Files (x86)\JKI
2014-11-15 15:54 - 2014-11-15 18:47 - 00237033 _____ () C:\Windows\SysWOW64\niorbmap
2014-11-15 15:53 - 2014-11-15 15:53 - 00000000 ____D () C:\Packages
2014-11-15 15:50 - 2014-11-15 18:42 - 00000000 ____D () C:\Users\Public\Documents\National Instruments
2014-11-15 15:49 - 2014-11-15 15:50 - 00000000 ____D () C:\ProgramData\IVI Foundation
2014-11-15 15:49 - 2014-11-15 15:50 - 00000000 ____D () C:\Program Files\IVI Foundation
2014-11-15 15:49 - 2014-11-15 15:50 - 00000000 ____D () C:\Program Files (x86)\IVI Foundation
2014-11-15 15:44 - 2014-11-15 15:44 - 00001111 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NI MAX.lnk
2014-11-15 15:44 - 2014-11-15 15:44 - 00001099 _____ () C:\Users\Public\Desktop\NI MAX.lnk
2014-11-15 15:36 - 2014-11-15 15:36 - 00001076 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NI LabVIEW 2014 (32-bit).lnk
2014-11-15 15:32 - 2014-11-15 19:06 - 00000300 _____ () C:\Windows\ODBC.INI
2014-11-15 15:29 - 2014-11-15 15:29 - 00000000 ____D () C:\Windows\SysWOW64\cvirte
2014-11-15 15:29 - 2014-11-15 15:29 - 00000000 ____D () C:\Windows\system32\cvirte
2014-11-15 15:28 - 2014-11-15 18:48 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\National Instruments
2014-11-15 14:31 - 2014-11-15 14:31 - 00000000 ____D () C:\Users\SpankMe\AppData\Roaming\PowerISO
2014-11-15 14:04 - 2014-11-15 14:04 - 00000000 ____D () C:\Users\SpankMe\AppData\Local\Ahead
2014-11-15 14:03 - 2014-11-15 14:44 - 00001024 _____ () C:\Users\SpankMe\.rnd
2014-11-15 14:03 - 2014-11-15 14:44 - 00000188 _____ () C:\Windows\SysWOW64\MsiExec.exe.log
2014-11-15 14:03 - 2014-11-15 14:03 - 00000026 _____ () C:\Windows\Irremote.ini
2014-11-15 13:47 - 2014-11-28 11:21 - 00000000 ____D () C:\Users\SpankMe\Documents\Automation
2014-11-15 13:40 - 2014-11-15 13:40 - 00000000 __SHD () C:\AX NF ZZ
2014-11-15 13:27 - 2014-11-15 13:27 - 00000000 ____D () C:\Users\SpankMe\AppData\Roaming\Siemens
2014-11-15 12:53 - 2014-11-15 12:53 - 00002507 _____ () C:\Users\Public\Desktop\Automation License Manager.lnk
2014-11-15 12:43 - 2014-11-15 12:48 - 00000000 ____D () C:\Program Files (x86)\Siemens
2014-11-15 12:43 - 2014-11-15 12:43 - 00002476 _____ () C:\Users\Public\Desktop\TIA Portal V12.lnk
2014-11-15 12:41 - 2014-11-15 12:41 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_vsnl2ada_01007.Wdf
2014-11-15 12:41 - 2014-11-15 12:41 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_s7ousbu64x_01007.Wdf
2014-11-15 12:41 - 2014-11-15 12:41 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_dpmconv_01007.Wdf
2014-11-15 12:40 - 2014-11-15 12:40 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_s7otsadx64_01007.Wdf
2014-11-15 12:40 - 2014-11-15 12:40 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_s7otranx64_01007.Wdf
2014-11-15 12:40 - 2014-11-15 12:40 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_s7osobux64_01007.Wdf
2014-11-15 12:40 - 2014-11-15 12:40 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_s7osmcax64_01007.Wdf
2014-11-15 12:40 - 2014-11-15 12:40 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_s7oserix64_01007.Wdf
2014-11-15 12:40 - 2014-11-15 12:40 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_s7oppinx64_01007.Wdf
2014-11-15 12:40 - 2014-11-15 12:40 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_s7odpx2x64_01007.Wdf
2014-11-15 12:39 - 2014-11-15 12:39 - 00052420 _____ () C:\Windows\DPINST.LOG
2014-11-15 12:39 - 2014-11-15 12:39 - 00000000 ____D () C:\Users\Public\Documents\Siemens
2014-11-15 12:39 - 2014-11-15 12:39 - 00000000 _____ () C:\Windows\system32\sntieno.log
2014-11-15 12:37 - 2014-11-28 07:47 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Siemens Automation
2014-11-15 12:36 - 2014-11-28 07:44 - 00000000 ____D () C:\Program Files\Common Files\Siemens
2014-11-15 12:35 - 2014-11-15 12:35 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft SOAP Toolkit Version 3
2014-11-15 12:35 - 2014-11-15 12:35 - 00000000 ____D () C:\Program Files (x86)\MSSOAP
2014-11-14 00:05 - 2014-11-14 00:05 - 00000000 ____D () C:\ProgramData\Siemens
2014-11-13 22:36 - 2014-11-15 14:17 - 00000000 ____D () C:\Users\SpankMe\AppData\Roaming\Nero
2014-11-13 22:32 - 2014-11-15 14:44 - 00000000 ____D () C:\ProgramData\Nero
2014-11-12 11:49 - 2014-11-05 18:56 - 00304640 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2014-11-12 11:49 - 2014-11-05 18:56 - 00228864 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-11-12 11:49 - 2014-11-05 18:52 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-11-12 11:49 - 2014-10-14 03:16 - 00155064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2014-11-12 11:49 - 2014-10-14 03:13 - 00683520 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll
2014-11-12 11:49 - 2014-10-14 03:12 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2014-11-12 11:49 - 2014-10-14 03:09 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2014-11-12 11:49 - 2014-10-14 03:07 - 00681984 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2014-11-12 11:49 - 2014-10-14 02:50 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2014-11-12 11:49 - 2014-10-14 02:49 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2014-11-12 11:49 - 2014-10-14 02:47 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2014-11-12 11:49 - 2014-10-14 02:46 - 00681984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2014-11-12 11:48 - 2014-11-07 20:49 - 00388272 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-11-12 11:48 - 2014-11-07 20:23 - 00341168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-11-12 11:48 - 2014-11-06 05:04 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-11-12 11:48 - 2014-11-06 05:03 - 25110016 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-11-12 11:48 - 2014-11-06 05:03 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-11-12 11:48 - 2014-11-06 04:47 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-11-12 11:48 - 2014-11-06 04:46 - 00580096 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-11-12 11:48 - 2014-11-06 04:46 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-11-12 11:48 - 2014-11-06 04:44 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-11-12 11:48 - 2014-11-06 04:43 - 02884096 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-11-12 11:48 - 2014-11-06 04:36 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-11-12 11:48 - 2014-11-06 04:35 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-11-12 11:48 - 2014-11-06 04:31 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-11-12 11:48 - 2014-11-06 04:30 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-11-12 11:48 - 2014-11-06 04:30 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-11-12 11:48 - 2014-11-06 04:29 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-11-12 11:48 - 2014-11-06 04:28 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-11-12 11:48 - 2014-11-06 04:23 - 06040064 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-11-12 11:48 - 2014-11-06 04:20 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-11-12 11:48 - 2014-11-06 04:16 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-11-12 11:48 - 2014-11-06 04:13 - 00501248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-11-12 11:48 - 2014-11-06 04:13 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-11-12 11:48 - 2014-11-06 04:12 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-11-12 11:48 - 2014-11-06 04:10 - 19781632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-11-12 11:48 - 2014-11-06 04:10 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2014-11-12 11:48 - 2014-11-06 04:07 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-11-12 11:48 - 2014-11-06 04:05 - 02277376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-11-12 11:48 - 2014-11-06 04:04 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-11-12 11:48 - 2014-11-06 04:03 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-11-12 11:48 - 2014-11-06 04:02 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-11-12 11:48 - 2014-11-06 04:00 - 00478208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-11-12 11:48 - 2014-11-06 04:00 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-11-12 11:48 - 2014-11-06 03:59 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-11-12 11:48 - 2014-11-06 03:58 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-11-12 11:48 - 2014-11-06 03:57 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-11-12 11:48 - 2014-11-06 03:48 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-11-12 11:48 - 2014-11-06 03:42 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-11-12 11:48 - 2014-11-06 03:41 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-11-12 11:48 - 2014-11-06 03:41 - 00716800 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-11-12 11:48 - 2014-11-06 03:39 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-11-12 11:48 - 2014-11-06 03:38 - 02124288 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-11-12 11:48 - 2014-11-06 03:37 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-11-12 11:48 - 2014-11-06 03:36 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-11-12 11:48 - 2014-11-06 03:34 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-11-12 11:48 - 2014-11-06 03:30 - 14390272 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-11-12 11:48 - 2014-11-06 03:22 - 00688640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-11-12 11:48 - 2014-11-06 03:21 - 04298240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-11-12 11:48 - 2014-11-06 03:21 - 02051072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-11-12 11:48 - 2014-11-06 03:20 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2014-11-12 11:48 - 2014-11-06 03:17 - 02365440 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-11-12 11:48 - 2014-11-06 03:04 - 01550336 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-11-12 11:48 - 2014-11-06 03:03 - 12819456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-11-12 11:48 - 2014-11-06 02:53 - 00799232 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-11-12 11:48 - 2014-11-06 02:52 - 01892864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-11-12 11:48 - 2014-11-06 02:48 - 01310208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-11-12 11:48 - 2014-11-06 02:47 - 00708096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-11-12 11:47 - 2014-10-25 02:57 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll
2014-11-12 11:47 - 2014-10-25 02:32 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\packager.dll
2014-11-12 11:47 - 2014-10-18 03:05 - 00861696 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2014-11-12 11:47 - 2014-10-18 02:33 - 00571904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2014-11-12 11:47 - 2014-10-14 03:13 - 03241984 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2014-11-12 11:47 - 2014-10-14 02:50 - 02363904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2014-11-12 11:47 - 2014-10-10 01:57 - 03198976 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-11-12 11:47 - 2014-10-03 03:12 - 00500224 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
2014-11-12 11:47 - 2014-10-03 03:11 - 00680960 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2014-11-12 11:47 - 2014-10-03 03:11 - 00440832 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2014-11-12 11:47 - 2014-10-03 03:11 - 00296448 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2014-11-12 11:47 - 2014-10-03 03:11 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll
2014-11-12 11:47 - 2014-10-03 02:44 - 00442880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll
2014-11-12 11:47 - 2014-10-03 02:44 - 00374784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll
2014-11-12 11:47 - 2014-10-03 02:44 - 00195584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
2014-11-12 11:47 - 2014-09-19 10:42 - 00342016 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2014-11-12 11:47 - 2014-09-19 10:42 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2014-11-12 11:47 - 2014-09-19 10:42 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2014-11-12 11:47 - 2014-09-19 10:42 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2014-11-12 11:47 - 2014-09-19 10:42 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2014-11-12 11:47 - 2014-09-19 10:42 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2014-11-12 11:47 - 2014-09-19 10:23 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2014-11-12 11:47 - 2014-09-19 10:23 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2014-11-12 11:47 - 2014-09-19 10:23 - 00221184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2014-11-12 11:47 - 2014-09-19 10:23 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2014-11-12 11:47 - 2014-09-19 10:23 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2014-11-12 11:47 - 2014-09-19 10:23 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2014-11-12 11:47 - 2014-08-21 07:43 - 01882624 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2014-11-12 11:47 - 2014-08-21 07:40 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2014-11-12 11:47 - 2014-08-21 07:26 - 01237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2014-11-12 11:47 - 2014-08-21 07:23 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll
2014-11-12 11:47 - 2014-08-12 03:02 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\IMJP10K.DLL
2014-11-12 11:47 - 2014-08-12 02:36 - 00701440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IMJP10K.DLL

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-12-11 11:05 - 2014-05-16 14:05 - 01569694 _____ () C:\Windows\WindowsUpdate.log
2014-12-11 11:03 - 2013-10-29 00:59 - 00003768 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-12-11 11:03 - 2013-10-29 00:59 - 00000830 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-12-11 10:52 - 2009-07-14 05:45 - 00037408 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-12-11 10:52 - 2009-07-14 05:45 - 00037408 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-12-11 10:48 - 2014-03-16 15:40 - 00899356 _____ () C:\Windows\system32\perfh005.dat
2014-12-11 10:48 - 2014-03-16 15:40 - 00235980 _____ () C:\Windows\system32\perfc005.dat
2014-12-11 10:48 - 2009-07-14 06:13 - 02240238 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-12-11 10:43 - 2014-05-16 21:15 - 00000550 _____ () C:\Windows\Tasks\MATLAB R2012b Startup Accelerator.job
2014-12-11 10:43 - 2013-10-29 00:59 - 00000000 ____D () C:\ProgramData\PDFC
2014-12-11 10:42 - 2014-06-17 05:14 - 00000948 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-12-11 10:41 - 2014-03-16 15:23 - 00000225 _____ () C:\Windows\CryptoMill_CreoService.log
2014-12-11 10:40 - 2014-10-24 18:20 - 00016860 _____ () C:\Windows\PFRO.log
2014-12-11 10:40 - 2014-10-16 10:50 - 00012037 _____ () C:\Windows\setupact.log
2014-12-11 10:40 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-12-11 10:11 - 2014-06-17 05:14 - 00000952 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-12-10 01:48 - 2014-05-16 21:24 - 00000000 ____D () C:\Users\SpankMe\Documents\MATLAB
2014-12-09 23:13 - 2014-03-16 15:23 - 00000225 _____ () C:\Windows\CryptoMill_CreoService.001
2014-12-09 22:10 - 2014-05-19 17:58 - 00003198 _____ () C:\Windows\System32\Tasks\HPCeeScheduleForSpankMe
2014-12-09 22:10 - 2014-05-19 17:58 - 00000340 _____ () C:\Windows\Tasks\HPCeeScheduleForSpankMe.job
2014-12-09 00:07 - 2014-05-19 10:35 - 00000000 ____D () C:\Program Files\trend micro
2014-12-02 15:27 - 2014-03-16 15:23 - 00000225 _____ () C:\Windows\CryptoMill_CreoService.002
2014-12-01 13:19 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\NDF
2014-12-01 12:18 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\rescache
2014-12-01 00:33 - 2014-05-16 15:49 - 00000000 ____D () C:\Users\SpankMe\AppData\Roaming\Skype
2014-11-30 17:56 - 2014-05-18 13:51 - 00000000 ____D () C:\Users\SpankMe\AppData\Roaming\uTorrent
2014-11-30 06:55 - 2014-05-16 15:28 - 00000000 ____D () C:\Users\SpankMe\Desktop\Too COOL for school
2014-11-30 06:42 - 2014-05-16 16:29 - 00002549 _____ () C:\Users\SpankMe\Desktop\to_do.txt
2014-11-29 19:57 - 2014-03-16 15:23 - 00000225 _____ () C:\Windows\CryptoMill_CreoService.003
2014-11-29 19:53 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\SysWOW64\inetsrv
2014-11-29 19:53 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\inetsrv
2014-11-29 19:41 - 2011-02-11 14:51 - 02261464 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI
2014-11-29 19:40 - 2014-05-21 15:18 - 00007598 _____ () C:\Users\SpankMe\AppData\Local\Resmon.ResmonCfg
2014-11-29 19:28 - 2014-06-22 11:20 - 00000000 ____D () C:\Program Files\Microsoft SQL Server
2014-11-29 19:28 - 2014-06-22 11:20 - 00000000 ____D () C:\Program Files (x86)\Microsoft SQL Server
2014-11-28 14:45 - 2014-03-16 15:23 - 00000225 _____ () C:\Windows\CryptoMill_CreoService.004
2014-11-28 14:26 - 2009-07-14 03:34 - 00000484 _____ () C:\Windows\win.ini
2014-11-28 14:19 - 2014-03-16 15:04 - 00000000 ____D () C:\Program Files (x86)\Microsoft Office
2014-11-28 07:55 - 2014-03-16 15:23 - 00000225 _____ () C:\Windows\CryptoMill_CreoService.005
2014-11-24 16:15 - 2014-05-16 17:08 - 00000000 ____D () C:\Users\SpankMe\AppData\Roaming\GHISLER
2014-11-15 19:07 - 2014-07-05 18:43 - 00000000 ____D () C:\ProgramData\National Instruments
2014-11-15 19:06 - 2011-05-06 14:08 - 00001332 _____ () C:\Windows\SysWOW64\lookout.sec
2014-11-15 19:04 - 2014-07-08 16:58 - 00000000 ____D () C:\Users\SpankMe\AppData\Local\National Instruments
2014-11-15 19:02 - 2009-07-14 05:45 - 00490216 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-11-15 18:59 - 2014-07-08 16:59 - 00003572 _____ () C:\Windows\System32\Tasks\NIUpdateServiceCheckTask
2014-11-15 18:48 - 2014-07-05 18:47 - 00000000 ____D () C:\Program Files (x86)\National Instruments
2014-11-15 18:44 - 2014-07-05 18:50 - 00000000 ____D () C:\Program Files\National Instruments
2014-11-15 18:11 - 2014-05-16 16:58 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-11-15 16:50 - 2014-06-22 11:20 - 00000000 ____D () C:\Windows\SysWOW64\1033
2014-11-15 16:50 - 2014-06-22 11:14 - 00000000 ____D () C:\Windows\system32\1033
2014-11-15 16:47 - 2014-05-16 14:09 - 00145648 _____ () C:\Users\SpankMe\AppData\Local\GDIPFONTCACHEV1.DAT
2014-11-15 15:19 - 2014-05-16 16:44 - 00000000 ____D () C:\Users\SpankMe\Desktop\akta-x
2014-11-15 14:17 - 2014-05-16 14:08 - 00000000 ____D () C:\Users\SpankMe\AppData\Local\VirtualStore
2014-11-15 14:03 - 2014-05-16 14:07 - 00000000 ____D () C:\Users\SpankMe
2014-11-15 14:01 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\Cursors
2014-11-15 13:56 - 2014-09-13 23:44 - 00000000 ____D () C:\Users\SpankMe\Desktop\Insidious
2014-11-15 12:55 - 2009-07-14 05:45 - 00000000 ____D () C:\Windows\Setup
2014-11-15 12:42 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\security
2014-11-14 00:04 - 2014-05-16 20:45 - 00000000 ____D () C:\Users\SpankMe\AppData\Roaming\DAEMON Tools Lite
2014-11-13 22:15 - 2014-05-17 21:43 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-11-13 10:09 - 2014-05-17 20:35 - 00000000 ____D () C:\Windows\system32\MRT
2014-11-13 10:06 - 2014-05-16 14:18 - 00003948 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2014-11-13 10:05 - 2014-05-16 14:18 - 00003696 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2014-11-13 10:04 - 2014-05-17 20:35 - 103374192 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe

==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2014-12-05 18:20

==================== End Of Log ============================
Přílohy
Addition_11-12-2014_11-13-07.rar
(19.53 KiB) Staženo 74 x

altrok
Moderátor
Moderátor
Příspěvky: 7328
Registrován: 15 Lis 2012 22:26
Místo/Bydliště: Znojmo

Re: Zpomalený notebook

#11 Příspěvek od altrok »

:arrow: Vcera vysel update Adobe Flash Playeru, ktery fixuje nekolik kritickych zranitelnosti - aktualizujte jej. Nezapomente pri stahovani vyhodit fajfku u McAfee Security Scan.
  • Do Poznamkoveho bloku (Start -> spustit -> notepad) zkopirujte obsah bileho pole
  • ulozte na plochu jako fixlist (Typ souboru: Textovy dokument)
  • znovu spustte FRST a kliknete na Fix
  • po restartu na Vas vyskoci fixlog (pripadne bude ulozen na Plose), jehoz obsah mi vlozte do pristi odpovedi

    Kód: Vybrat vše

    Start
    CloseProcesses:
    C:\Users\SpankMe\AppData\Local\Google\Chrome\Chrome\User Data\Default\File System\000\t\00\00000000
    C:\Users\SpankMe\AppData\Local\Google\Chrome\User Data\Default\File System\001\t\00\00000000
    C:\Users\SpankMe\AppData\Roaming\PowerISO\Upgrade\PowerISO6.exe
    HKU\S-1-5-21-1185877117-2082503125-1392697548-1001\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd)
    HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959176 2014-08-21] (Adobe Systems Incorporated)
    
    HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
    HKU\S-1-5-21-1185877117-2082503125-1392697548-1001\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
    HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.bing.com?pc=CMNTDFJS
    FF Plugin: @microsoft.com/GENUINE -> disabled No File
    FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
    CHR HomePage: Default -> hxxp://www.trovi.com/?gd=&ctid=CT332145 ... 84TC_sp_ch
    S3 niwdk; No ImagePath
    S3 usb6xxxk; \??\C:\Windows\system32\drivers\usb6xxxkl.sys [X]
    
    2014-12-11 11:05 - 2014-12-11 11:05 - 00112640 _____ (forum.viry.cz) C:\Users\SpankMe\Desktop\Nepotvrzeno 794481.crdownload
    2014-12-11 10:37 - 2014-12-11 10:11 - 00024064 _____ () C:\Windows\zoek-delete.exe
    2014-12-11 10:28 - 2014-12-11 10:44 - 00000000 ____D () C:\zoek
    2014-12-11 10:13 - 2014-12-11 10:44 - 00009344 _____ () C:\zoek-results.log
    2014-12-11 10:11 - 2014-12-11 10:31 - 00000000 ____D () C:\zoek_backup
    2014-12-11 10:11 - 2014-12-11 10:11 - 01295360 _____ () C:\Users\SpankMe\Desktop\zoek.exe
    2014-12-09 23:04 - 2014-12-09 23:09 - 00000000 ____D () C:\AdwCleaner
    2014-12-09 23:03 - 2014-12-09 23:03 - 02166272 _____ () C:\Users\SpankMe\Desktop\adwcleaner_4.105.exe
    2014-12-09 00:07 - 2014-12-09 00:07 - 00000000 ____D () C:\rsit
    2014-12-09 00:03 - 2014-12-09 00:03 - 01222144 _____ () C:\Users\SpankMe\Desktop\RSITx64.exe
    Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
    Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
    Hosts:
    EmptyTemp:
    End
    
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.

SpankMe2day
Návštěvník
Návštěvník
Příspěvky: 21
Registrován: 19 Kvě 2014 10:32

Re: Zpomalený notebook

#12 Příspěvek od SpankMe2day »

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 11-12-2014 01
Ran by SpankMe at 2014-12-11 11:49:14 Run:1
Running from C:\Users\SpankMe\Desktop
Loaded Profiles: SpankMe & ASBService (Available profiles: SpankMe & ASBService)
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
Start
CloseProcesses:
C:\Users\SpankMe\AppData\Local\Google\Chrome\Chrome\User Data\Default\File System\000\t\00\00000000
C:\Users\SpankMe\AppData\Local\Google\Chrome\User Data\Default\File System\001\t\00\00000000
C:\Users\SpankMe\AppData\Roaming\PowerISO\Upgrade\PowerISO6.exe
HKU\S-1-5-21-1185877117-2082503125-1392697548-1001\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959176 2014-08-21] (Adobe Systems Incorporated)

HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-1185877117-2082503125-1392697548-1001\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.bing.com?pc=CMNTDFJS
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
CHR HomePage: Default -> hxxp://www.trovi.com/?gd=&ctid=CT332145 ... 84TC_sp_ch
S3 niwdk; No ImagePath
S3 usb6xxxk; \??\C:\Windows\system32\drivers\usb6xxxkl.sys [X]

2014-12-11 11:05 - 2014-12-11 11:05 - 00112640 _____ (forum.viry.cz) C:\Users\SpankMe\Desktop\Nepotvrzeno 794481.crdownload
2014-12-11 10:37 - 2014-12-11 10:11 - 00024064 _____ () C:\Windows\zoek-delete.exe
2014-12-11 10:28 - 2014-12-11 10:44 - 00000000 ____D () C:\zoek
2014-12-11 10:13 - 2014-12-11 10:44 - 00009344 _____ () C:\zoek-results.log
2014-12-11 10:11 - 2014-12-11 10:31 - 00000000 ____D () C:\zoek_backup
2014-12-11 10:11 - 2014-12-11 10:11 - 01295360 _____ () C:\Users\SpankMe\Desktop\zoek.exe
2014-12-09 23:04 - 2014-12-09 23:09 - 00000000 ____D () C:\AdwCleaner
2014-12-09 23:03 - 2014-12-09 23:03 - 02166272 _____ () C:\Users\SpankMe\Desktop\adwcleaner_4.105.exe
2014-12-09 00:07 - 2014-12-09 00:07 - 00000000 ____D () C:\rsit
2014-12-09 00:03 - 2014-12-09 00:03 - 01222144 _____ () C:\Users\SpankMe\Desktop\RSITx64.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Hosts:
EmptyTemp:
End
*****************

Processes closed successfully.
"C:\Users\SpankMe\AppData\Local\Google\Chrome\Chrome\User Data\Default\File System\000\t\00\00000000" => File/Directory not found.
"C:\Users\SpankMe\AppData\Local\Google\Chrome\User Data\Default\File System\001\t\00\00000000" => File/Directory not found.
"C:\Users\SpankMe\AppData\Roaming\PowerISO\Upgrade\PowerISO6.exe" => File/Directory not found.
HKU\S-1-5-21-1185877117-2082503125-1392697548-1001\Software\Microsoft\Windows\CurrentVersion\Run\\DAEMON Tools Lite => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\Adobe ARM => value deleted successfully.
"HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer" => Key deleted successfully.
"HKU\S-1-5-21-1185877117-2082503125-1392697548-1001\SOFTWARE\Policies\Microsoft\Internet Explorer" => Key deleted successfully.
HKLM\Software\\Microsoft\Internet Explorer\Main\\Start Page => Value was restored successfully.
"HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE" => Key deleted successfully.
"HKLM\Software\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE" => Key deleted successfully.
Chrome HomePage deleted successfully.
niwdk => Service deleted successfully.
usb6xxxk => Service deleted successfully.
C:\Users\SpankMe\Desktop\Nepotvrzeno 794481.crdownload => Moved successfully.
C:\Windows\zoek-delete.exe => Moved successfully.
C:\zoek => Moved successfully.
C:\zoek-results.log => Moved successfully.
C:\zoek_backup => Moved successfully.
C:\Users\SpankMe\Desktop\zoek.exe => Moved successfully.
C:\AdwCleaner => Moved successfully.
C:\Users\SpankMe\Desktop\adwcleaner_4.105.exe => Moved successfully.
C:\rsit => Moved successfully.
C:\Users\SpankMe\Desktop\RSITx64.exe => Moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => Moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => Moved successfully.
C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.
EmptyTemp: => Removed 205 MB temporary data.


The system needed a reboot.

==== End of Fixlog ====

altrok
Moderátor
Moderátor
Příspěvky: 7328
Registrován: 15 Lis 2012 22:26
Místo/Bydliště: Znojmo

Re: Zpomalený notebook

#13 Příspěvek od altrok »

:arrow: Jak se pocitac chova ted? Muzeme zacit uklizet?
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.

SpankMe2day
Návštěvník
Návštěvník
Příspěvky: 21
Registrován: 19 Kvě 2014 10:32

Re: Zpomalený notebook

#14 Příspěvek od SpankMe2day »

Chová se normálně, rozhodně to pomohlo. Díky moc

altrok
Moderátor
Moderátor
Příspěvky: 7328
Registrován: 15 Lis 2012 22:26
Místo/Bydliště: Znojmo

Re: Zpomalený notebook

#15 Příspěvek od altrok »

Takze jeste uklidime.
A pokud nejsou dotazy ci jine problemy, je to ode mne vse.
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.

Zamčeno