Kontrola logu

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz


Vážení uživaterlé!
Ve dnech 4. - 6-9.2026 budou někteříí naši členové na každoročním srazu fóra. Žádáme vás, abyste měli strpení, nemusí se na na řešení vašeho problému dostat hned. Děkujeme za pochopení.
Zamčeno
Zpráva
Autor
tzhp2
Návštěvník
Návštěvník
Příspěvky: 67
Registrován: 07 Ún 2009 07:46

Kontrola logu

#1 Příspěvek od tzhp2 »

Prosím o kontrolu logu PC běžel nějaký čas bez antiviru,ten posléze našel 18 infikovaných souborů.
Logfile of random's system information tool 1.10 (written by random/random)
Run by Tomáš Zela at 2015-01-28 11:57:24
Microsoft Windows 7 Home Premium
System drive C: has 880 GB (92%) free of 954 GB
Total RAM: 4042 MB (66% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 11:57:33, on 28.1.2015
Platform: Windows 7 (WinNT 6.00.3504)
MSIE: Internet Explorer v8.00 (8.00.7600.16385)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\Internet Explorer\IELowutil.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Tomáš Zela.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://isearch.omiga-plus.com/?type=hp& ... XXW4Y0HGBL
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://isearch.omiga-plus.com/?type=hp& ... XXW4Y0HGBL
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://isearch.omiga-plus.com/?type=hp& ... XXW4Y0HGBL
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://isearch.omiga-plus.com/web/?type ... earchTerms}
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://isearch.omiga-plus.com/web/?type ... earchTerms}
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://isearch.omiga-plus.com/?type=hp& ... XXW4Y0HGBL
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: (no name) - {3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C} - (no file)
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [IMSS] "C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe"
O4 - HKLM\..\Run: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - https://fpdownload.macromedia.com/get/s ... wflash.cab
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AppleChargerSrv - Unknown owner - C:\Windows\system32\AppleChargerSrv.exe (file missing)
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: WindowsMangerProtect Service (WindowsMangerProtect) - Fuyu LIMITED - C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 8658 bytes

======Listing Processes======



\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
winlogon.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
"C:\Windows\system32\nvvsvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
C:\Windows\system32\svchost.exe -k RPCSS
"c:\Program Files\Microsoft Security Client\MsMpEng.exe"
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe -service
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"taskhost.exe"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files\AVAST Software\Avast\avastui.exe" /nogui
C:\Windows\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
"C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PrivacyIconClient.exe" -startup
"C:\Program Files (x86)\Internet Explorer\IELowutil.exe" -embedding
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="4532.0.1148193114\951219721" --supports-dual-gpus=false --gpu-driver-bug-workarounds=1,18,39,47 --gpu-vendor-id=0x10de --gpu-device-id=0x11c6 --gpu-driver-vendor=NVIDIA --gpu-driver-version=9.18.13.3788 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/ChromeSuggestions/Default/DomRel-Enable/enable/EmbeddedSearch/Group4 pct:10d stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnhancedBookmarks/Default/ExtensionContentVerification/Enforce/ExtensionInstallVerification/Enforce/GoogleNow/Enable/MaterialDesignNTP/Default/NewProfileManagement/NewAvatarMenu/OmniboxBundledExperimentV1/StandardR4/PasswordGeneration/Disabled/QUIC/Disabled/RememberCertificateErrorDecisions/Default/SPDY/Spdy31Enabled-default/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-Population-Restrict/normal/UMA-Uniformity-Trial-1-Percent/group_82/UMA-Uniformity-Trial-10-Percent/group_09/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/default/UMA-Uniformity-Trial-5-Percent/group_11/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="4532.2.299799819\2011584173" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/ChromeSuggestions/Default/DomRel-Enable/enable/EmbeddedSearch/Group4 pct:10d stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnhancedBookmarks/Default/ExtensionContentVerification/Enforce/ExtensionInstallVerification/Enforce/GoogleNow/Enable/MaterialDesignNTP/Default/NewProfileManagement/NewAvatarMenu/OmniboxBundledExperimentV1/StandardR4/PasswordGeneration/Disabled/QUIC/Disabled/RememberCertificateErrorDecisions/Default/SPDY/Spdy31Enabled-default/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-Population-Restrict/normal/UMA-Uniformity-Trial-1-Percent/group_82/UMA-Uniformity-Trial-10-Percent/group_09/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/default/UMA-Uniformity-Trial-5-Percent/group_11/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="4532.4.1802789000\1379297255" /prefetch:673131151

"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/ChromeSuggestions/Default/DomRel-Enable/enable/EmbeddedSearch/Group4 pct:10d stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnhancedBookmarks/Default/ExtensionContentVerification/Enforce/ExtensionInstallVerification/Enforce/GoogleNow/Enable/MaterialDesignNTP/Default/NewProfileManagement/NewAvatarMenu/OmniboxBundledExperimentV1/StandardR4/PasswordGeneration/Disabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/QUIC/Disabled/RememberCertificateErrorDecisions/Default/SPDY/Spdy31Enabled-default/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-Population-Restrict/normal/UMA-Uniformity-Trial-1-Percent/group_82/UMA-Uniformity-Trial-10-Percent/group_09/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/default/UMA-Uniformity-Trial-5-Percent/group_11/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="4532.45.1696537385\1978539330" /prefetch:673131151
taskhost.exe $(Arg0)
"C:\Users\Tomáš Zela\Downloads\RSITx64.exe"

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-01-23 705448]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-01-23 586968]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2013-08-27 13647576]
"IAStorIcon"=C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe [2013-08-07 36352]
"MSC"=c:\Program Files\Microsoft Security Client\msseces.exe [2014-08-23 1331288]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2014-03-04 3696912]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"IMSS"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe [2013-09-16 134616]
"USB3MON"=C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [2012-05-20 291648]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-12-19 1022152]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2015-01-23 5227112]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"SoftwareSASGeneration"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2015-01-28 11:57:25 ----D---- C:\Program Files\trend micro
2015-01-28 11:57:24 ----D---- C:\rsit
2015-01-23 20:07:39 ----D---- C:\Users\Tomáš Zela\AppData\Roaming\WinRAR
2015-01-23 19:51:44 ----D---- C:\Program Files\WinRAR
2015-01-23 03:38:31 ----D---- C:\Users\Tomáš Zela\AppData\Roaming\Dropbox
2015-01-23 03:28:22 ----D---- C:\Users\Tomáš Zela\AppData\Roaming\AVAST Software
2015-01-23 03:25:36 ----A---- C:\Windows\system32\drivers\aswVmm.sys
2015-01-23 03:25:36 ----A---- C:\Windows\system32\drivers\aswStm.sys
2015-01-23 03:25:36 ----A---- C:\Windows\system32\drivers\aswSP.sys
2015-01-23 03:25:35 ----A---- C:\Windows\system32\drivers\aswRvrt.sys
2015-01-23 03:25:33 ----A---- C:\Windows\system32\drivers\aswmonflt.sys
2015-01-23 03:25:31 ----A---- C:\Windows\system32\drivers\aswHwid.sys
2015-01-23 03:25:30 ----A---- C:\Windows\system32\drivers\aswRdr2.sys
2015-01-23 03:25:28 ----A---- C:\Windows\system32\drivers\aswsnx.sys
2015-01-23 03:25:26 ----A---- C:\Windows\system32\aswBoot.exe
2015-01-23 03:25:23 ----A---- C:\Windows\avastSS.scr
2015-01-23 03:23:00 ----D---- C:\Program Files\AVAST Software
2015-01-23 03:22:15 ----D---- C:\ProgramData\AVAST Software
2015-01-23 03:20:13 ----D---- C:\Program Files (x86)\Google
2015-01-03 03:24:29 ----D---- C:\Program Files (x86)\Adobe
2015-01-03 03:24:23 ----D---- C:\ProgramData\Adobe
2015-01-03 03:20:13 ----D---- C:\Users\Tomáš Zela\AppData\Roaming\BSplayer Pro
2015-01-03 03:20:13 ----D---- C:\Users\Tomáš Zela\AppData\Roaming\BSplayer
2015-01-03 03:20:13 ----D---- C:\Program Files (x86)\Webteh
2015-01-03 03:19:40 ----D---- C:\ProgramData\Tbccint
2015-01-03 03:19:40 ----D---- C:\Program Files (x86)\Tbccint
2015-01-03 03:19:34 ----D---- C:\ProgramData\Sun
2015-01-03 03:19:29 ----A---- C:\Windows\SYSWOW64\npDeployJava1.dll
2015-01-03 03:19:29 ----A---- C:\Windows\SYSWOW64\deployJava1.dll
2015-01-03 03:19:24 ----D---- C:\Program Files (x86)\Java
2015-01-03 03:18:06 ----D---- C:\ProgramData\IePluginServices
2015-01-03 03:18:02 ----D---- C:\ProgramData\WindowsMangerProtect
2015-01-03 03:18:01 ----D---- C:\Program Files (x86)\SupTab
2015-01-03 03:17:38 ----D---- C:\Program Files (x86)\Microsoft Security Client
2015-01-03 03:17:35 ----D---- C:\Program Files\Microsoft Security Client
2015-01-03 03:17:24 ----D---- C:\Users\Tomáš Zela\AppData\Roaming\omiga-plus
2015-01-03 03:16:28 ----A---- C:\Windows\system32\drivers\sptd.sys
2015-01-03 03:16:17 ----D---- C:\Users\Tomáš Zela\AppData\Roaming\DAEMON Tools Lite
2015-01-03 03:16:16 ----D---- C:\Program Files (x86)\DAEMON Tools Lite
2015-01-03 03:15:46 ----D---- C:\ProgramData\DAEMON Tools Lite
2015-01-03 03:12:51 ----D---- C:\Users\Tomáš Zela\AppData\Roaming\Macromedia
2015-01-03 03:12:51 ----D---- C:\Users\Tomáš Zela\AppData\Roaming\Adobe
2015-01-03 03:12:41 ----D---- C:\Windows\SYSWOW64\Macromed
2015-01-03 03:12:41 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2015-01-03 03:12:40 ----D---- C:\Windows\system32\Macromed
2015-01-02 23:55:22 ----A---- C:\Windows\system32\perfi005.dat
2015-01-02 23:55:21 ----A---- C:\Windows\system32\perfh005.dat
2015-01-02 23:55:21 ----A---- C:\Windows\system32\perfd005.dat
2015-01-02 23:55:21 ----A---- C:\Windows\system32\perfc005.dat
2015-01-02 23:54:54 ----D---- C:\Windows\SYSWOW64\cs
2015-01-02 23:54:49 ----D---- C:\Windows\SYSWOW64\XPSViewer
2015-01-02 23:54:49 ----D---- C:\Windows\SYSWOW64\drivers\cs-CZ
2015-01-02 23:54:49 ----D---- C:\Windows\system32\cs
2015-01-02 23:54:49 ----D---- C:\Windows\cs-CZ
2015-01-02 23:54:44 ----D---- C:\Windows\system32\drivers\cs-CZ
2015-01-02 23:38:57 ----D---- C:\Program Files (x86)\AGEIA Technologies
2015-01-02 23:38:48 ----D---- C:\ProgramData\NVIDIA
2015-01-02 23:38:38 ----A---- C:\Windows\SYSWOW64\nvStreaming.exe
2015-01-02 23:38:32 ----A---- C:\Windows\system32\nvhdap64.dll
2015-01-02 23:38:32 ----A---- C:\Windows\system32\nvhdagenco6420103.dll
2015-01-02 23:38:32 ----A---- C:\Windows\system32\drivers\nvhda64v.sys
2015-01-02 23:38:20 ----A---- C:\Windows\system32\nvvsvc.exe
2015-01-02 23:38:20 ----A---- C:\Windows\system32\nvsvcr.dll
2015-01-02 23:38:20 ----A---- C:\Windows\system32\nvsvc64.dll
2015-01-02 23:38:20 ----A---- C:\Windows\system32\nvshext.dll
2015-01-02 23:38:20 ----A---- C:\Windows\system32\nvmctray.dll
2015-01-02 23:38:20 ----A---- C:\Windows\system32\nvcpl.dll
2015-01-02 23:38:06 ----A---- C:\Windows\SYSWOW64\OpenCL.dll
2015-01-02 23:38:06 ----A---- C:\Windows\system32\OpenCL.dll
2015-01-02 23:38:02 ----D---- C:\ProgramData\NVIDIA Corporation
2015-01-02 23:38:00 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2015-01-02 23:37:50 ----A---- C:\Windows\system32\nvdispco6433788.dll
2015-01-02 23:37:48 ----A---- C:\Windows\system32\nvdispgenco6433788.dll
2015-01-02 23:37:17 ----A---- C:\Windows\SYSWOW64\nvwgf2um.dll
2015-01-02 23:37:17 ----A---- C:\Windows\system32\nvwgf2umx.dll
2015-01-02 23:37:17 ----A---- C:\Windows\system32\nvumdshimx.dll
2015-01-02 23:37:16 ----A---- C:\Windows\SYSWOW64\nvumdshim.dll
2015-01-02 23:37:16 ----A---- C:\Windows\SYSWOW64\nvopencl.dll
2015-01-02 23:37:16 ----A---- C:\Windows\system32\nvopencl.dll
2015-01-02 23:37:15 ----A---- C:\Windows\system32\nvoglv64.dll
2015-01-02 23:37:14 ----A---- C:\Windows\SYSWOW64\nvoglv32.dll
2015-01-02 23:37:14 ----A---- C:\Windows\SYSWOW64\nvoglshim32.dll
2015-01-02 23:37:14 ----A---- C:\Windows\system32\nvoglshim64.dll
2015-01-02 23:37:13 ----A---- C:\Windows\SYSWOW64\nvinit.dll
2015-01-02 23:37:13 ----A---- C:\Windows\SYSWOW64\NvIFROpenGL.dll
2015-01-02 23:37:13 ----A---- C:\Windows\SYSWOW64\NvIFR.dll
2015-01-02 23:37:13 ----A---- C:\Windows\SYSWOW64\NvFBC.dll
2015-01-02 23:37:13 ----A---- C:\Windows\SYSWOW64\nvEncodeAPI.dll
2015-01-02 23:37:13 ----A---- C:\Windows\system32\nvinitx.dll
2015-01-02 23:37:13 ----A---- C:\Windows\system32\NvIFROpenGL.dll
2015-01-02 23:37:13 ----A---- C:\Windows\system32\NvIFR64.dll
2015-01-02 23:37:13 ----A---- C:\Windows\system32\NvFBC64.dll
2015-01-02 23:37:13 ----A---- C:\Windows\system32\nvEncodeAPI64.dll
2015-01-02 23:37:13 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2015-01-02 23:37:12 ----A---- C:\Windows\system32\nvd3dumx.dll
2015-01-02 23:37:11 ----A---- C:\Windows\SYSWOW64\nvd3dum.dll
2015-01-02 23:37:11 ----A---- C:\Windows\SYSWOW64\nvcuvid.dll
2015-01-02 23:37:11 ----A---- C:\Windows\SYSWOW64\nvcuvenc.dll
2015-01-02 23:37:11 ----A---- C:\Windows\system32\nvcuvid.dll
2015-01-02 23:37:11 ----A---- C:\Windows\system32\nvcuvenc.dll
2015-01-02 23:37:10 ----A---- C:\Windows\SYSWOW64\nvcuda.dll
2015-01-02 23:37:10 ----A---- C:\Windows\system32\nvcuda.dll
2015-01-02 23:36:53 ----A---- C:\Windows\SYSWOW64\nvcompiler.dll
2015-01-02 23:36:50 ----A---- C:\Windows\SYSWOW64\nvapi.dll
2015-01-02 23:36:50 ----A---- C:\Windows\system32\nvcompiler.dll
2015-01-02 23:36:50 ----A---- C:\Windows\system32\nvapi64.dll
2015-01-02 23:32:03 ----D---- C:\Program Files\NVIDIA Corporation
2015-01-02 23:28:51 ----D---- C:\Program Files\7-Zip
2015-01-02 23:18:26 ----A---- C:\Windows\GVTDrv64.sys
2015-01-02 23:17:33 ----A---- C:\Windows\gdrv.sys
2015-01-02 23:13:44 ----D---- C:\Program Files\GIGABYTE
2015-01-02 23:13:44 ----A---- C:\Windows\system32\drivers\UsbCharger.sys
2015-01-02 23:13:44 ----A---- C:\Windows\system32\drivers\AppleCharger.sys
2015-01-02 23:13:44 ----A---- C:\Windows\system32\AppleChargerSrv.exe
2015-01-02 23:13:42 ----D---- C:\Program Files (x86)\GIGABYTE
2015-01-02 23:13:03 ----A---- C:\Windows\system32\drivers\iusb3hcs.sys
2015-01-02 23:12:55 ----A---- C:\Windows\system32\drivers\iusb3xhc.sys
2015-01-02 23:12:54 ----A---- C:\Windows\system32\drivers\iusb3hub.sys
2015-01-02 23:12:46 ----D---- C:\Users\Tomáš Zela\AppData\Roaming\Intel Corporation
2015-01-02 23:11:26 ----A---- C:\Windows\system32\drivers\Rt64win7.sys
2015-01-02 23:11:25 ----A---- C:\Windows\system32\RTNUninst64.dll
2015-01-02 23:11:25 ----A---- C:\Windows\system32\RtNicProp64.dll
2015-01-02 23:10:25 ----D---- C:\Windows\SYSWOW64\RTCOM
2015-01-02 23:10:25 ----D---- C:\Program Files\Realtek
2015-01-02 23:10:15 ----A---- C:\Windows\system32\drivers\IntelMEFWVer.dll
2015-01-02 23:10:14 ----A---- C:\Windows\system32\WavesGUILib64.dll
2015-01-02 23:10:14 ----A---- C:\Windows\system32\SRSWOW64.dll
2015-01-02 23:10:14 ----A---- C:\Windows\system32\SRSTSX64.dll
2015-01-02 23:10:14 ----A---- C:\Windows\system32\SRSTSH64.dll
2015-01-02 23:10:14 ----A---- C:\Windows\system32\SRSHP64.dll
2015-01-02 23:10:13 ----A---- C:\Windows\system32\RtlCPAPI64.dll
2015-01-02 23:10:12 ----A---- C:\Windows\system32\RtPgEx64.dll
2015-01-02 23:10:12 ----A---- C:\Windows\system32\RtkCoLDR64.dll
2015-01-02 23:10:12 ----A---- C:\Windows\system32\RtkCfg64.dll
2015-01-02 23:10:12 ----A---- C:\Windows\system32\RtkAPO64.dll
2015-01-02 23:10:12 ----A---- C:\Windows\system32\RtkApi64.dll
2015-01-02 23:10:12 ----A---- C:\Windows\system32\RtDataProc64.dll
2015-01-02 23:10:11 ----A---- C:\Windows\system32\RTCOM64.dll
2015-01-02 23:10:11 ----A---- C:\Windows\system32\drivers\RTKVHD64.sys
2015-01-02 23:10:10 ----A---- C:\Windows\system32\RTEEP64A.dll
2015-01-02 23:10:10 ----A---- C:\Windows\system32\RTEEL64A.dll
2015-01-02 23:10:10 ----A---- C:\Windows\system32\RTEEG64A.dll
2015-01-02 23:10:10 ----A---- C:\Windows\system32\RTEED64A.dll
2015-01-02 23:10:10 ----A---- C:\Windows\system32\RP3DHT64.dll
2015-01-02 23:10:10 ----A---- C:\Windows\system32\RP3DAA64.dll
2015-01-02 23:10:10 ----A---- C:\Windows\system32\RCoInstII64.dll
2015-01-02 23:10:10 ----A---- C:\Windows\system32\drivers\RTAIODAT.DAT
2015-01-02 23:10:00 ----A---- C:\Windows\system32\MaxxAudioEQ64.dll
2015-01-02 23:09:59 ----A---- C:\Windows\SYSWOW64\MBAPO32.dll
2015-01-02 23:09:59 ----A---- C:\Windows\system32\MBWrp64.dll
2015-01-02 23:09:59 ----A---- C:\Windows\system32\MBppld64.dll
2015-01-02 23:09:59 ----A---- C:\Windows\system32\MBPPCn64.dll
2015-01-02 23:09:59 ----A---- C:\Windows\system32\MBAPO64.dll
2015-01-02 23:09:59 ----A---- C:\Windows\system32\MaxxAudioAPOShell64.dll
2015-01-02 23:09:59 ----A---- C:\Windows\system32\MaxxAudioAPO20.dll
2015-01-02 23:09:56 ----A---- C:\Windows\system32\FMAPO64.dll
2015-01-02 23:09:49 ----D---- C:\ProgramData\Intel
2015-01-02 23:09:46 ----A---- C:\Windows\system32\CONEQMSAPOGUILibrary.dll
2015-01-02 23:09:45 ----D---- C:\Program Files (x86)\Realtek
2015-01-02 23:09:45 ----A---- C:\Windows\system32\AERTAR64.dll
2015-01-02 23:09:45 ----A---- C:\Windows\system32\AERTAC64.dll
2015-01-02 23:09:44 ----HD---- C:\Program Files (x86)\Temp
2015-01-02 23:09:42 ----R---- C:\Windows\RtlExUpd.dll
2015-01-02 23:09:41 ----D---- C:\Program Files\Intel
2015-01-02 23:08:57 ----RA---- C:\Windows\SYSWOW64\CSVer.dll
2015-01-02 23:08:52 ----A---- C:\Windows\system32\Wdfres.dll
2015-01-02 23:08:52 ----A---- C:\Windows\system32\drivers\WdfLdr.sys
2015-01-02 23:08:52 ----A---- C:\Windows\system32\drivers\Wdf01000.sys
2015-01-02 23:08:45 ----D---- C:\Intel
2015-01-02 23:08:45 ----A---- C:\Windows\system32\WdfCoInstaller01011.dll
2015-01-02 23:08:45 ----A---- C:\Windows\system32\drivers\TeeDriverx64.sys
2015-01-02 23:08:31 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2015-01-02 23:08:31 ----D---- C:\Users\Tomáš Zela\AppData\Roaming\InstallShield
2015-01-02 23:08:31 ----D---- C:\Program Files (x86)\Intel
2015-01-02 23:07:47 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2015-01-02 23:06:31 ----D---- C:\Program Files (x86)\Microsoft.NET
2015-01-02 23:06:24 ----SHD---- C:\Windows\Installer
2015-01-02 23:06:06 ----A---- C:\Windows\SYSWOW64\PresentationHostProxy.dll
2015-01-02 23:06:06 ----A---- C:\Windows\SYSWOW64\PresentationHost.exe
2015-01-02 23:06:06 ----A---- C:\Windows\SYSWOW64\netfxperf.dll
2015-01-02 23:06:06 ----A---- C:\Windows\SYSWOW64\mscoree.dll
2015-01-02 23:06:06 ----A---- C:\Windows\SYSWOW64\dfshim.dll
2015-01-02 23:06:06 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2015-01-02 23:06:06 ----A---- C:\Windows\system32\PresentationHost.exe
2015-01-02 23:06:06 ----A---- C:\Windows\system32\netfxperf.dll
2015-01-02 23:06:06 ----A---- C:\Windows\system32\mscoree.dll
2015-01-02 23:06:06 ----A---- C:\Windows\system32\dfshim.dll
2015-01-02 23:04:09 ----A---- C:\Windows\GSetup.ini
2015-01-02 23:00:13 ----D---- C:\Users\Tomáš Zela\AppData\Roaming\Identities
2015-01-02 22:59:57 ----SD---- C:\Users\Tomáš Zela\AppData\Roaming\Microsoft
2015-01-02 22:59:57 ----D---- C:\Users\Tomáš Zela\AppData\Roaming\Media Center Programs
2015-01-02 22:59:48 ----SHD---- C:\Recovery
2015-01-02 22:59:45 ----D---- C:\Windows\SoftwareDistribution
2015-01-02 22:51:34 ----D---- C:\Windows\Panther
2015-01-02 13:52:01 ----D---- C:\Windows\Prefetch
2015-01-02 13:51:49 ----SHD---- C:\System Volume Information
2015-01-02 13:51:49 ----ASH---- C:\pagefile.sys
2015-01-02 13:51:49 ----ASH---- C:\hiberfil.sys

======List of files/folders modified in the last 1 month======

2015-01-28 11:57:25 ----RD---- C:\Program Files
2015-01-28 11:56:26 ----D---- C:\Windows\Temp
2015-01-26 06:40:44 ----D---- C:\Windows\System32
2015-01-26 06:40:44 ----D---- C:\Windows\inf
2015-01-26 06:40:44 ----A---- C:\Windows\system32\PerfStringBackup.INI
2015-01-25 22:29:20 ----D---- C:\Windows\SysWOW64
2015-01-23 18:41:35 ----D---- C:\Windows\system32\config
2015-01-23 06:54:00 ----D---- C:\Windows\system32\wdi
2015-01-23 06:34:40 ----D---- C:\Windows\Logs
2015-01-23 04:12:54 ----D---- C:\Program Files (x86)\Common Files
2015-01-23 03:45:15 ----D---- C:\Windows\system32\drivers
2015-01-23 03:25:49 ----D---- C:\Windows\system32\Tasks
2015-01-23 03:25:26 ----D---- C:\Windows\winsxs
2015-01-23 03:25:26 ----D---- C:\Windows
2015-01-23 03:22:15 ----HD---- C:\ProgramData
2015-01-23 03:21:22 ----RD---- C:\Program Files (x86)
2015-01-23 03:20:17 ----D---- C:\Windows\Tasks
2015-01-03 03:17:39 ----D---- C:\Windows\system32\catroot
2015-01-03 03:17:38 ----SD---- C:\ProgramData\Microsoft
2015-01-03 03:12:51 ----D---- C:\Windows\Downloaded Program Files
2015-01-03 02:55:04 ----D---- C:\Windows\system32\LogFiles
2015-01-03 00:11:55 ----RSD---- C:\Windows\assembly
2015-01-03 00:11:55 ----D---- C:\Windows\Microsoft.NET
2015-01-02 23:54:55 ----D---- C:\Windows\servicing
2015-01-02 23:54:55 ----D---- C:\Program Files\Windows Sidebar
2015-01-02 23:54:55 ----D---- C:\Program Files\Windows Photo Viewer
2015-01-02 23:54:55 ----D---- C:\Program Files\Windows Media Player
2015-01-02 23:54:55 ----D---- C:\Program Files\Windows Mail
2015-01-02 23:54:55 ----D---- C:\Program Files\Windows Journal
2015-01-02 23:54:55 ----D---- C:\Program Files\Windows Defender
2015-01-02 23:54:55 ----D---- C:\Program Files\Internet Explorer
2015-01-02 23:54:55 ----D---- C:\Program Files\DVD Maker
2015-01-02 23:54:55 ----D---- C:\Program Files\Common Files\System
2015-01-02 23:54:55 ----D---- C:\Program Files (x86)\Windows Sidebar
2015-01-02 23:54:55 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2015-01-02 23:54:55 ----D---- C:\Program Files (x86)\Windows Media Player
2015-01-02 23:54:55 ----D---- C:\Program Files (x86)\Windows Mail
2015-01-02 23:54:55 ----D---- C:\Program Files (x86)\Windows Defender
2015-01-02 23:54:55 ----D---- C:\Program Files (x86)\Internet Explorer
2015-01-02 23:54:54 ----D---- C:\Windows\SYSWOW64\winrm
2015-01-02 23:54:54 ----D---- C:\Windows\SYSWOW64\slmgr
2015-01-02 23:54:54 ----D---- C:\Windows\SYSWOW64\migwiz
2015-01-02 23:54:54 ----D---- C:\Windows\SYSWOW64\migration
2015-01-02 23:54:54 ----D---- C:\Windows\ehome
2015-01-02 23:54:53 ----D---- C:\Windows\SYSWOW64\cs-CZ
2015-01-02 23:54:49 ----D---- C:\Windows\SYSWOW64\WCN
2015-01-02 23:54:49 ----D---- C:\Windows\SYSWOW64\wbem
2015-01-02 23:54:49 ----D---- C:\Windows\SYSWOW64\Printing_Admin_Scripts
2015-01-02 23:54:49 ----D---- C:\Windows\SYSWOW64\MUI
2015-01-02 23:54:49 ----D---- C:\Windows\SYSWOW64\DriverStore
2015-01-02 23:54:49 ----D---- C:\Windows\SYSWOW64\drivers
2015-01-02 23:54:49 ----D---- C:\Windows\SYSWOW64\Dism
2015-01-02 23:54:49 ----D---- C:\Windows\SYSWOW64\com
2015-01-02 23:54:49 ----D---- C:\Windows\system32\winrm
2015-01-02 23:54:49 ----D---- C:\Windows\system32\sysprep
2015-01-02 23:54:49 ----D---- C:\Windows\system32\slmgr
2015-01-02 23:54:49 ----D---- C:\Windows\system32\oobe
2015-01-02 23:54:49 ----D---- C:\Windows\system32\migwiz
2015-01-02 23:54:49 ----D---- C:\Windows\system32\migration
2015-01-02 23:54:49 ----D---- C:\Windows\system32\Boot
2015-01-02 23:54:49 ----D---- C:\Windows\PolicyDefinitions
2015-01-02 23:54:49 ----D---- C:\Windows\IME
2015-01-02 23:54:48 ----D---- C:\Windows\system32\cs-CZ
2015-01-02 23:54:44 ----D---- C:\Windows\system32\WCN
2015-01-02 23:54:44 ----D---- C:\Windows\system32\Printing_Admin_Scripts
2015-01-02 23:54:44 ----D---- C:\Windows\system32\MUI
2015-01-02 23:54:44 ----D---- C:\Windows\system32\DriverStore
2015-01-02 23:54:44 ----D---- C:\Windows\system32\drivers\UMDF
2015-01-02 23:54:44 ----D---- C:\Windows\system32\Dism
2015-01-02 23:54:43 ----D---- C:\Windows\system32\wbem
2015-01-02 23:54:43 ----D---- C:\Windows\system32\com
2015-01-02 23:54:43 ----D---- C:\Windows\AppPatch
2015-01-02 23:53:56 ----D---- C:\Windows\system32\catroot2
2015-01-02 23:38:14 ----D---- C:\Windows\Help
2015-01-02 23:16:42 ----D---- C:\Windows\system32\en-US
2015-01-02 23:16:42 ----D---- C:\Windows\system32\drivers\en-US
2015-01-02 23:09:32 ----D---- C:\Program Files\Common Files\Microsoft Shared
2015-01-02 23:06:31 ----D---- C:\Windows\SYSWOW64\en-US
2015-01-02 23:06:17 ----D---- C:\Windows\system32\CodeIntegrity
2015-01-02 23:05:58 ----D---- C:\Windows\system32\restore
2015-01-02 23:00:15 ----D---- C:\Windows\rescache
2015-01-02 23:00:08 ----SHD---- C:\$Recycle.Bin
2015-01-02 22:59:57 ----RD---- C:\Users
2015-01-02 22:59:39 ----D---- C:\Windows\debug

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2015-01-23 65776]
R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2015-01-23 267632]
R0 iaStorA;iaStorA; C:\Windows\system32\DRIVERS\iaStorA.sys [2013-08-07 644968]
R0 iaStorF;iaStorF; C:\Windows\system32\DRIVERS\iaStorF.sys [2013-08-07 28008]
R0 iusb3hcs;Intel(R) USB 3.0 Host Controller Switch Driver; C:\Windows\system32\DRIVERS\iusb3hcs.sys [2012-05-20 19264]
R0 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2014-07-18 269008]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2009-07-14 214096]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2015-01-03 386680]
R1 AppleCharger;AppleCharger; C:\Windows\system32\DRIVERS\AppleCharger.sys [2013-10-28 22240]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2015-01-23 93568]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2015-01-23 1050432]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2015-01-23 436624]
R2 aswHwid;avast! HardwareID; C:\Windows\system32\drivers\aswHwid.sys [2015-01-23 29208]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2015-01-23 87912]
R2 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2015-01-23 116728]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2013-08-27 3613528]
R3 iusb3hub;Intel(R) USB 3.0 Hub Driver; C:\Windows\system32\DRIVERS\iusb3hub.sys [2012-05-20 357184]
R3 iusb3xhc;Intel(R) USB 3.0 eXtensible Host Controller Driver; C:\Windows\system32\DRIVERS\iusb3xhc.sys [2012-05-20 789824]
R3 MEIx64;Intel(R) Management Engine Interface ; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [2013-09-16 99288]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda64v.sys [2014-05-20 197408]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2011-09-29 646248]
S1 UsbCharger;UsbCharger; C:\Windows\system32\DRIVERS\UsbCharger.sys [2013-10-25 22240]
S3 au194i48;au194i48; C:\Windows\system32\drivers\au194i48.sys []
S3 gdrv;gdrv; \??\C:\Windows\gdrv.sys [2015-01-02 25640]
S3 GVTDrv64;GVTDrv64; \??\C:\Windows\GVTDrv64.sys [2015-01-02 30528]
S3 MSICDSetup;MSICDSetup; \??\D:\CDriver64.sys []
S3 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2014-07-18 125584]
S3 pciide;pciide; C:\Windows\system32\DRIVERS\pciide.sys [2009-07-14 12352]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2014-12-03 81088]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2015-01-23 50344]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2013-08-07 15720]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2013-08-27 747520]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2013-09-16 169432]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2013-09-16 390616]
R2 MsMpSvc;Microsoft Antimalware Service; c:\Program Files\Microsoft Security Client\MsMpEng.exe [2014-08-23 23784]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2014-05-20 927520]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2014-05-20 413128]
R2 WindowsMangerProtect;WindowsMangerProtect Service; C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe [2015-01-03 473088]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-01-23 107912]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-01-25 267440]
S3 AppleChargerSrv;AppleChargerSrv; C:\Windows\system32\AppleChargerSrv.exe [2010-04-07 31272]
S3 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2010-03-19 44376]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-01-23 107912]
S3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2011-08-31 160256]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2013-08-27 828376]
S3 NisSrv;@c:\Program Files\Microsoft Security Client\MpAsDesc.dll,-243; c:\Program Files\Microsoft Security Client\NisSrv.exe [2014-08-23 368624]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]

-----------------EOF-----------------

Avatar uživatele
JaRon
Moderátor
Moderátor
Příspěvky: 15924
Registrován: 29 Bře 2005 13:39
Místo/Bydliště: BB-SK

Re: Kontrola logu

#2 Příspěvek od JaRon »

vycisti PC s ADWCleanerom
doinstaluj ServicePack1
doinstaluj MSIE10
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

tzhp2
Návštěvník
Návštěvník
Příspěvky: 67
Registrován: 07 Ún 2009 07:46

Re: Kontrola logu

#3 Příspěvek od tzhp2 »

Nejde spustit služba windows update pro instalaci SP1.Log z adwcleaner:# AdwCleaner v4.109 - Report created 28/01/2015 at 12:14:29
# Updated 24/01/2015 by Xplode
# Database : 2015-01-26.1 [Live]
# Operating System : Windows 7 Home Premium (64 bits)
# Username : Tomáš Zela - TOMASZELA-PC
# Running from : C:\Users\Tomáš Zela\Desktop\adwcleaner_4.109.exe
# Option : Clean

***** [ Services ] *****

Service Deleted : WindowsMangerProtect

***** [ Files / Folders ] *****

[!] Folder Deleted : C:\ProgramData\IePluginServices
[!] Folder Deleted : C:\ProgramData\Tbccint
[!] Folder Deleted : C:\ProgramData\WindowsMangerProtect
[!] Folder Deleted : C:\Program Files (x86)\SupTab
[!] Folder Deleted : C:\Program Files (x86)\Tbccint
[!] Folder Deleted : C:\Users\TOMZEL~1\AppData\Local\Temp\BS_Player_ControlBar_B
[!] Folder Deleted : C:\Users\Tomáš Zela\AppData\Local\Tbccint
[!] Folder Deleted : C:\Users\Tomáš Zela\AppData\LocalLow\Tbccint
[!] Folder Deleted : C:\Users\Tomáš Zela\AppData\Roaming\omiga-plus

***** [ Scheduled Tasks ] *****


***** [ Shortcuts ] *****

Shortcut Disinfected : C:\Users\Tomáš Zela\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk
Shortcut Disinfected : C:\Users\Tomáš Zela\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
Shortcut Disinfected : C:\Users\Tomáš Zela\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk
Shortcut Disinfected : C:\Users\Tomáš Zela\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk

***** [ Registry ] *****

Key Deleted : HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\IePluginServices
Key Deleted : HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\WindowsMangerProtect
Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.CT3329621
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{917CAAE9-DD47-4025-936E-1414F07DF5B8}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{968EDCE0-C10A-47BB-B3B6-FDF09F2A417D}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{917CAAE9-DD47-4025-936E-1414F07DF5B8}
Data Restored : HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{DF0F1F8A-90EB-4EA8-B48D-E2B6430F3614}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Key Deleted : HKCU\Software\Conduit
Key Deleted : HKCU\Software\SupHpUISoft
Key Deleted : HKCU\Software\Tbccint
Key Deleted : HKCU\Software\Tbccint_HKLM
Key Deleted : HKCU\Software\AppDataLow\Software\TbccintSearchScopes
Key Deleted : HKLM\SOFTWARE\Conduit
Key Deleted : HKLM\SOFTWARE\omiga-plusSoftware
Key Deleted : HKLM\SOFTWARE\SupDp
Key Deleted : HKLM\SOFTWARE\SupTab
Key Deleted : HKLM\SOFTWARE\supWindowsMangerProtect
Key Deleted : HKLM\SOFTWARE\supWPM
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\omiga-plus uninstall

***** [ Browsers ] *****

-\\ Internet Explorer v8.0.7600.16385

Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page]
Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Default_Page_URL]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]
Setting Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL]
Setting Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL]
Setting Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]
Setting Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]

-\\ Google Chrome v40.0.2214.93


*************************

AdwCleaner[R0].txt - [5649 octets] - [28/01/2015 12:12:03]
AdwCleaner[S0].txt - [4495 octets] - [28/01/2015 12:14:29]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [4555 octets] ##########

Avatar uživatele
JaRon
Moderátor
Moderátor
Příspěvky: 15924
Registrován: 29 Bře 2005 13:39
Místo/Bydliště: BB-SK

Re: Kontrola logu

#4 Příspěvek od JaRon »

subor s SP1 stiahni zo stranky MS http://forum.viry.cz/viewtopic.php?f=46&t=86100 a nainstaluj
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

tzhp2
Návštěvník
Návštěvník
Příspěvky: 67
Registrován: 07 Ún 2009 07:46

Re: Kontrola logu

#5 Příspěvek od tzhp2 »

SP 1 a IE10 doinstalován.

Avatar uživatele
JaRon
Moderátor
Moderátor
Příspěvky: 15924
Registrován: 29 Bře 2005 13:39
Místo/Bydliště: BB-SK

Re: Kontrola logu

#6 Příspěvek od JaRon »

takze hotovo - zastav sa za 2-3 tyzdne na preventivku - ak by boli problemy, tak aj skor :)
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

tzhp2
Návštěvník
Návštěvník
Příspěvky: 67
Registrován: 07 Ún 2009 07:46

Re: Kontrola logu

#7 Příspěvek od tzhp2 »

Super díky moc za pomoc.Skvělá práce.

Avatar uživatele
JaRon
Moderátor
Moderátor
Příspěvky: 15924
Registrován: 29 Bře 2005 13:39
Místo/Bydliště: BB-SK

Re: Kontrola logu

#8 Příspěvek od JaRon »

rado sa stalo :thumbsup:
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

Zamčeno