Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Pomalej NTB

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
Dana
Návštěvník
Návštěvník
Příspěvky: 4
Registrován: 01 bře 2015 20:47

Pomalej NTB

#1 Příspěvek od Dana »

Dobry den,
prosim o kontrolu LOGu. NTB je posledni dobou o dost pomalejsi :(
Dekuji.

Logfile of random's system information tool 1.10 (written by random/random)
Run by Dana Horáková at 2015-03-01 20:52:48
Microsoft Windows 8.1
System drive C: has 62 GB (62%) free of 101 GB
Total RAM: 3527 MB (54% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:53:09, on 1. 3. 2015
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17416)
Boot mode: Normal

Running processes:
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Citrix\ICA Client\concentr.exe
C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exe
C:\Program Files (x86)\DynamicUSBTool\DynamicUSB.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Dana Horáková.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://samsung13.msn.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://google.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_31\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_31\bin\jp2ssv.dll
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [ConnectionCenter] "C:\Program Files (x86)\Citrix\ICA Client\concentr.exe" /startup
O4 - HKLM\..\Run: [DynamicUSB] "C:\Program Files (x86)\DynamicUSBTool\DynamicUSB.exe"
O4 - HKCU\..\Run: [EPSON Stylus Photo RX585 Series] C:\windows\system32\spool\DRIVERS\x64\3\E_IATICLE.EXE /FU "C:\windows\TEMP\E_S73C8.tmp" /EF "HKCU"
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~1\MICROS~1\Office14\ONBttnIE.dll/105
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Filter: application/x-ica - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica; charset=euc-jp - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica; charset=ISO-8859-1 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica; charset=MS936 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica; charset=MS949 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica; charset=MS950 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica; charset=UTF-8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica; charset=UTF8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica;charset=euc-jp - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica;charset=ISO-8859-1 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica;charset=MS936 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica;charset=MS949 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica;charset=MS950 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica;charset=UTF-8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica;charset=UTF8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter hijack: ica - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Adobe Active File Monitor V11 (AdobeActiveFileMonitor11.0) - Adobe Systems Incorporated - C:\Program Files (x86)\Adobe\Elements 11 Organizer\PhotoshopElementsFileAgent.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: AllShare Framework DMS - Samsung - C:\Program Files\Samsung\AllShare Framework DMS\1.3.14\AllShareFrameworkManagerDMS.exe
O23 - Service: AMD External Events Utility - Unknown owner - C:\WINDOWS\system32\atiesrxx.exe (file missing)
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: AtherosSvc - Windows (R) Win 7 DDK provider - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: avast! Firewall - AVAST Software - C:\Program Files\AVAST Software\Avast\afwServ.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Samsung Link Service - Copyright 2013 SAMSUNG - C:\Program Files\Samsung\Samsung Link\Samsung Link.exe
O23 - Service: Settings Launcher - Samsung Electronics CO., LTD. - C:\Program Files (x86)\Samsung\Settings\CmdServer\SettingsLauncher.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: SW Update Service (SWUpdateService) - Samsung Electronics CO., LTD. - C:\ProgramData\Samsung\SW Update Service\SWMAgent.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: ZAtheros Bt and Wlan Coex Agent - Atheros - C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe

--
End of file - 11209 bytes

======Listing Processes======





wininit.exe

winlogon.exe

C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\WINDOWS\system32\atiesrxx.exe
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\AVAST Software\Avast\afwServ.exe"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe" /launchService
"C:\Program Files (x86)\Bluetooth Suite\adminservice.exe"
dashost.exe {db0c0b68-92cf-4ddd-9552dfc8546632f4}
"C:\Program Files\Samsung\Samsung Link\Samsung Link.exe"
"C:\Program Files\Samsung\Samsung Link\Samsung Link.exe" "Samsung Link Service" __i4j_restart
"C:\Program Files (x86)\Samsung\Settings\CmdServer\SettingsLauncher.exe"
"C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe"
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\WINDOWS\system32\wbem\wmiprvse.exe
atieclxx
"C:\Program Files (x86)\Samsung\Settings\CmdServer\SettingsCmdServer.exe"
taskhostex.exe
"C:\Program Files (x86)\Samsung\Settings\CmdServer\SettingsEventHandler.exe"
C:\WINDOWS\Explorer.EXE
"C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20689_x64__8wekyb3d8bbwe\LiveComm.exe" -ServerName:Microsoft.WindowsLive.Platform.Server
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Program Files\Elantech\ETDCtrl.exe"
"C:\Program Files\Elantech\ETDCtrlHelper.exe"
"C:\Program Files\Samsung\Samsung Link\Samsung Link Tray Agent.exe"
"C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM" PriorityLow
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
"C:\Program Files (x86)\Citrix\ICA Client\concentr.exe" /startup
"C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exe" -Embedding
"C:\Program Files (x86)\DynamicUSBTool\DynamicUSB.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /S3HpProtect
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files\Samsung\S Agent\CommonAgent.exe"
"C:\Program Files (x86)\Adobe\Elements 11 Organizer\PhotoshopElementsFileAgent.exe"
"C:\Program Files\Samsung\AllShare Framework DMS\1.3.14\AllShareFrameworkManagerDMS.exe"
"C:\Program Files\Samsung\AllShare Framework DMS\1.3.14\AllShareFrameworkDMS.exe"
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\ProgramData\Samsung\SW Update Service\SWMAgent.exe" /SERVICE
"C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe"
"C:\Program Files (x86)\Bluetooth Suite\ActivateDesktop.exe"
"C:\Program Files\Samsung\Support Center\GuaranaAgent.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="6624.0.517282107\208372767" --supports-dual-gpus=false --gpu-driver-bug-workarounds=1,18,39 --gpu-vendor-id=0x1002 --gpu-device-id=0x983d --gpu-driver-vendor="Advanced Micro Devices, Inc." --gpu-driver-version=13.251.9001.1001 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/ChromeSuggestions/Default/DomRel-Enable/enable/EmbeddedSearch/Group9 pct:10i stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnhancedBookmarks/Default/ExtensionContentVerification/Enforce/ExtensionInstallVerification/Enforce/GCM/Enabled/GoogleNow/Enable/MaterialDesignNTP/Enabled/NewProfileManagement/NewAvatarMenu/OmniboxBundledExperimentV1/StandardR4/PasswordGeneration/Disabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/QUIC/ControlForLargePopulation/RememberCertificateErrorDecisions/Default/SPDY/Spdy4Enabled-default/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-Population-Restrict/normal/UMA-Uniformity-Trial-1-Percent/group_87/UMA-Uniformity-Trial-10-Percent/group_07/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_04/UMA-Uniformity-Trial-50-Percent/group_01/UwSInterstitialStatus/On/VoiceTrigger/Install/WebRTC-IPv6Default/Disabled/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="6624.12.1137556955\1297121207" /prefetch:673131151
taskhost.exe $(Arg0)

"C:\Users\Dana Horáková\Desktop\RSITx64.exe"
"C:\Program Files\AVAST Software\Avast\setup\instup.exe" /instop:update_vps

======Scheduled tasks folder======

C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8D10F6C4-0E01-4BD4-8601-11AC1FDF8126}]
CIESpeechBHO Class - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll [2013-04-24 66688]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-02-23 705448]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~1\Office14\URLREDIR.DLL [2013-03-06 690392]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_31\bin\ssv.dll [2015-03-01 460712]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-02-23 586968]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL [2013-03-06 562904]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_31\bin\jp2ssv.dll [2015-03-01 172968]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F}

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"ETDCtrl"=C:\Program Files\Elantech\ETDCtrl.exe [2013-03-25 2889072]
"BtPreLoad"=C:\Program Files (x86)\Bluetooth Suite\BtPreLoad.exe [2013-04-24 64128]
"Samsung Link"=C:\Program Files\Samsung\Samsung Link\Samsung Link Tray Agent.exe [2013-07-05 597576]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"EPSON Stylus Photo RX585 Series"=C:\windows\system32\spool\DRIVERS\x64\3\E_IATICLE.EXE [2007-03-30 213504]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2015-02-19 7416088]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [2014-07-04 766688]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2015-02-23 5227112]
"ConnectionCenter"=C:\Program Files (x86)\Citrix\ICA Client\concentr.exe [2012-12-14 383544]
"DynamicUSB"=C:\Program Files (x86)\DynamicUSBTool\DynamicUSB.exe [2007-03-02 94208]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DisableCAD"=1
"SoftwareSASGeneration"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave2"=wdmaud.drv
"mixer2"=wdmaud.drv
"midi2"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2015-03-01 20:52:48 ----D---- C:\rsit
2015-03-01 20:52:48 ----D---- C:\Program Files\trend micro
2015-03-01 20:26:45 ----A---- C:\WINDOWS\system32\aspnet_counters.dll
2015-03-01 20:26:38 ----A---- C:\WINDOWS\SYSWOW64\aspnet_counters.dll
2015-03-01 20:25:39 ----A---- C:\WINDOWS\system32\shell32.dll
2015-03-01 20:25:38 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2015-03-01 20:25:36 ----A---- C:\WINDOWS\system32\SyncEngine.dll
2015-03-01 20:25:35 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2015-03-01 20:25:33 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2015-03-01 20:25:30 ----A---- C:\WINDOWS\system32\msctf.dll
2015-03-01 20:25:30 ----A---- C:\WINDOWS\system32\drivers\netio.sys
2015-03-01 20:25:29 ----A---- C:\WINDOWS\SYSWOW64\msctf.dll
2015-03-01 20:25:29 ----A---- C:\WINDOWS\system32\wuaueng.dll
2015-03-01 20:25:29 ----A---- C:\WINDOWS\system32\mfplat.dll
2015-03-01 20:25:28 ----A---- C:\WINDOWS\system32\SkyDrive.exe
2015-03-01 20:25:28 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2015-03-01 20:25:28 ----A---- C:\WINDOWS\system32\drivers\rasl2tp.sys
2015-03-01 20:25:27 ----A---- C:\WINDOWS\SYSWOW64\mfplat.dll
2015-03-01 20:25:27 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2015-03-01 20:25:27 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2015-03-01 20:25:27 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2015-03-01 20:25:27 ----A---- C:\WINDOWS\system32\IKEEXT.DLL
2015-03-01 20:25:27 ----A---- C:\WINDOWS\system32\drivers\i8042prt.sys
2015-03-01 20:25:26 ----A---- C:\WINDOWS\SYSWOW64\WSDApi.dll
2015-03-01 20:25:26 ----A---- C:\WINDOWS\SYSWOW64\QSVRMGMT.DLL
2015-03-01 20:25:26 ----A---- C:\WINDOWS\system32\WSDApi.dll
2015-03-01 20:25:26 ----A---- C:\WINDOWS\system32\vpnike.dll
2015-03-01 20:25:26 ----A---- C:\WINDOWS\system32\spoolsv.exe
2015-03-01 20:25:26 ----A---- C:\WINDOWS\system32\QSVRMGMT.DLL
2015-03-01 20:25:26 ----A---- C:\WINDOWS\system32\drivers\vhdmp.sys
2015-03-01 20:25:26 ----A---- C:\WINDOWS\system32\drivers\sdbus.sys
2015-03-01 20:25:25 ----A---- C:\WINDOWS\SYSWOW64\untfs.dll
2015-03-01 20:25:25 ----A---- C:\WINDOWS\system32\WSDMon.dll
2015-03-01 20:25:25 ----A---- C:\WINDOWS\system32\WinSCard.dll
2015-03-01 20:25:25 ----A---- C:\WINDOWS\system32\untfs.dll
2015-03-01 20:25:25 ----A---- C:\WINDOWS\system32\drivers\wfplwfs.sys
2015-03-01 20:25:25 ----A---- C:\WINDOWS\system32\drivers\wanarp.sys
2015-03-01 20:25:25 ----A---- C:\WINDOWS\system32\drivers\dumpsd.sys
2015-03-01 20:25:25 ----A---- C:\WINDOWS\system32\drivers\dam.sys
2015-03-01 20:25:25 ----A---- C:\WINDOWS\system32\dnsrslvr.dll
2015-03-01 20:25:25 ----A---- C:\WINDOWS\system32\AppxAllUserStore.dll
2015-03-01 20:25:24 ----A---- C:\WINDOWS\system32\wuauclt.exe
2015-03-01 20:25:24 ----A---- C:\WINDOWS\system32\drivers\pdc.sys
2015-03-01 20:25:24 ----A---- C:\WINDOWS\system32\drivers\mouclass.sys
2015-03-01 20:25:24 ----A---- C:\WINDOWS\system32\drivers\kbdclass.sys
2015-03-01 20:25:24 ----A---- C:\WINDOWS\system32\drivers\intelpep.sys
2015-03-01 20:25:24 ----A---- C:\WINDOWS\system32\drivers\FWPKCLNT.SYS
2015-03-01 20:25:23 ----A---- C:\WINDOWS\SYSWOW64\AppxAllUserStore.dll
2015-03-01 20:25:23 ----A---- C:\WINDOWS\system32\drivers\tcpip.sys
2015-03-01 20:25:23 ----A---- C:\WINDOWS\system32\BFE.DLL
2015-03-01 20:25:22 ----A---- C:\WINDOWS\SYSWOW64\WinSCard.dll
2015-03-01 20:25:22 ----A---- C:\WINDOWS\SYSWOW64\rasapi32.dll
2015-03-01 20:25:22 ----A---- C:\WINDOWS\SYSWOW64\QSHVHOST.DLL
2015-03-01 20:25:22 ----A---- C:\WINDOWS\SYSWOW64\nshwfp.dll
2015-03-01 20:25:22 ----A---- C:\WINDOWS\system32\rasapi32.dll
2015-03-01 20:25:22 ----A---- C:\WINDOWS\system32\QSHVHOST.DLL
2015-03-01 20:25:22 ----A---- C:\WINDOWS\system32\nshwfp.dll
2015-03-01 20:25:22 ----A---- C:\WINDOWS\system32\DevicePairing.dll
2015-03-01 20:25:21 ----A---- C:\WINDOWS\SYSWOW64\wuapi.dll
2015-03-01 20:25:21 ----A---- C:\WINDOWS\SYSWOW64\DevicePairing.dll
2015-03-01 20:25:21 ----A---- C:\WINDOWS\system32\wucltux.dll
2015-03-01 20:25:21 ----A---- C:\WINDOWS\system32\wuapi.dll
2015-03-01 20:25:21 ----A---- C:\WINDOWS\system32\drivers\sermouse.sys
2015-03-01 20:25:21 ----A---- C:\WINDOWS\system32\drivers\ndproxy.sys
2015-03-01 20:25:21 ----A---- C:\WINDOWS\system32\drivers\ndistapi.sys
2015-03-01 20:25:21 ----A---- C:\WINDOWS\system32\drivers\mouhid.sys
2015-03-01 20:25:21 ----A---- C:\WINDOWS\system32\drivers\kbdhid.sys
2015-03-01 20:25:21 ----A---- C:\WINDOWS\system32\drivers\agilevpn.sys
2015-03-01 20:25:20 ----A---- C:\WINDOWS\system32\WUSettingsProvider.dll
2015-03-01 20:25:20 ----A---- C:\WINDOWS\system32\vssapi.dll
2015-03-01 20:25:20 ----A---- C:\WINDOWS\system32\SkyDriveTelemetry.dll
2015-03-01 20:25:19 ----A---- C:\WINDOWS\SYSWOW64\wuwebv.dll
2015-03-01 20:25:19 ----A---- C:\WINDOWS\SYSWOW64\vssapi.dll
2015-03-01 20:25:19 ----A---- C:\WINDOWS\SYSWOW64\dnsapi.dll
2015-03-01 20:25:19 ----A---- C:\WINDOWS\system32\wuwebv.dll
2015-03-01 20:25:19 ----A---- C:\WINDOWS\system32\wups2.dll
2015-03-01 20:25:19 ----A---- C:\WINDOWS\system32\VSSVC.exe
2015-03-01 20:25:19 ----A---- C:\WINDOWS\system32\FWPUCLNT.DLL
2015-03-01 20:25:19 ----A---- C:\WINDOWS\system32\dnsapi.dll
2015-03-01 20:25:18 ----A---- C:\WINDOWS\SYSWOW64\wups.dll
2015-03-01 20:25:18 ----A---- C:\WINDOWS\SYSWOW64\wudriver.dll
2015-03-01 20:25:18 ----A---- C:\WINDOWS\SYSWOW64\vsstrace.dll
2015-03-01 20:25:18 ----A---- C:\WINDOWS\SYSWOW64\rasdiag.dll
2015-03-01 20:25:18 ----A---- C:\WINDOWS\SYSWOW64\rascfg.dll
2015-03-01 20:25:18 ----A---- C:\WINDOWS\SYSWOW64\FWPUCLNT.DLL
2015-03-01 20:25:18 ----A---- C:\WINDOWS\system32\wups.dll
2015-03-01 20:25:18 ----A---- C:\WINDOWS\system32\wudriver.dll
2015-03-01 20:25:18 ----A---- C:\WINDOWS\system32\vsstrace.dll
2015-03-01 20:25:18 ----A---- C:\WINDOWS\system32\rasser.dll
2015-03-01 20:25:18 ----A---- C:\WINDOWS\system32\rasmxs.dll
2015-03-01 20:25:18 ----A---- C:\WINDOWS\system32\rasdiag.dll
2015-03-01 20:25:18 ----A---- C:\WINDOWS\system32\rascfg.dll
2015-03-01 20:25:17 ----A---- C:\WINDOWS\SYSWOW64\wuapp.exe
2015-03-01 20:25:17 ----A---- C:\WINDOWS\SYSWOW64\rasser.dll
2015-03-01 20:25:17 ----A---- C:\WINDOWS\SYSWOW64\rasmxs.dll
2015-03-01 20:25:17 ----A---- C:\WINDOWS\SYSWOW64\eventcls.dll
2015-03-01 20:25:17 ----A---- C:\WINDOWS\system32\wuapp.exe
2015-03-01 20:25:17 ----A---- C:\WINDOWS\system32\wuaext.dll
2015-03-01 20:25:17 ----A---- C:\WINDOWS\system32\eventcls.dll
2015-03-01 20:25:17 ----A---- C:\WINDOWS\splwow64.exe
2015-03-01 19:58:38 ----D---- C:\Users\Dana Horáková\AppData\Roaming\Bitcasa
2015-03-01 19:56:41 ----D---- C:\Users\Dana Horáková\AppData\Roaming\com.bitcasa.Bitcasa
2015-03-01 19:53:59 ----D---- C:\Program Files\CCleaner
2015-02-23 16:13:44 ----N---- C:\WINDOWS\system32\MpSigStub.exe
2015-02-23 15:50:42 ----D---- C:\WINDOWS\system32\appraiser
2015-02-23 15:41:37 ----A---- C:\WINDOWS\system32\drivers\aswKbd.sys
2015-02-23 15:41:32 ----A---- C:\WINDOWS\system32\aswBoot.exe
2015-02-23 15:41:25 ----A---- C:\WINDOWS\avastSS.scr
2015-02-23 15:41:02 ----A---- C:\WINDOWS\system32\drivers\aswNdisFlt.sys
2015-02-23 14:55:34 ----D---- C:\Program Files\Microsoft Silverlight
2015-02-23 14:55:34 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2015-02-23 12:45:30 ----D---- C:\Users\Dana Horáková\AppData\Roaming\QuickScan
2015-02-21 17:12:56 ----A---- C:\WINDOWS\system32\drivers\WdFilter.sys
2015-02-21 17:12:55 ----A---- C:\WINDOWS\system32\drivers\WdNisDrv.sys
2015-02-21 17:12:54 ----A---- C:\WINDOWS\system32\drivers\WdBoot.sys
2015-02-21 17:12:52 ----A---- C:\WINDOWS\SYSWOW64\winshfhc.dll
2015-02-21 17:12:52 ----A---- C:\WINDOWS\system32\winshfhc.dll
2015-02-21 17:08:05 ----A---- C:\WINDOWS\SYSWOW64\TsWpfWrp.exe
2015-02-21 17:08:05 ----A---- C:\WINDOWS\system32\TsWpfWrp.exe
2015-02-21 17:07:10 ----A---- C:\WINDOWS\system32\drivers\vwifimp.sys
2015-02-21 17:07:09 ----A---- C:\WINDOWS\system32\drivers\vwififlt.sys
2015-02-21 17:06:57 ----A---- C:\WINDOWS\system32\sppobjs.dll
2015-02-21 17:04:13 ----A---- C:\WINDOWS\system32\jscript9.dll
2015-02-21 17:04:12 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2015-02-21 17:04:10 ----A---- C:\WINDOWS\system32\devinv.dll
2015-02-21 17:04:10 ----A---- C:\WINDOWS\system32\appraiser.dll
2015-02-21 17:04:10 ----A---- C:\WINDOWS\system32\aepic.dll
2015-02-21 17:04:10 ----A---- C:\WINDOWS\system32\aepdu.dll
2015-02-21 17:04:10 ----A---- C:\WINDOWS\system32\aeinv.dll
2015-02-21 17:04:09 ----A---- C:\WINDOWS\system32\invagent.dll
2015-02-21 17:04:09 ----A---- C:\WINDOWS\system32\generaltel.dll
2015-02-21 17:04:06 ----A---- C:\WINDOWS\SYSWOW64\pku2u.dll
2015-02-21 17:04:06 ----A---- C:\WINDOWS\SYSWOW64\kerberos.dll
2015-02-21 17:04:06 ----A---- C:\WINDOWS\system32\pku2u.dll
2015-02-21 17:04:06 ----A---- C:\WINDOWS\system32\kerberos.dll
2015-02-21 17:03:12 ----A---- C:\WINDOWS\SYSWOW64\msvcr120_clr0400.dll
2015-02-21 17:03:11 ----A---- C:\WINDOWS\system32\msvcr120_clr0400.dll
2015-02-19 22:03:19 ----D---- C:\Program Files\Common Files\Atheros
2015-02-19 21:53:28 ----D---- C:\Users\Dana Horáková\AppData\Roaming\Identities
2015-02-19 21:51:31 ----SHD---- C:\ProgramData\Šablony
2015-02-19 21:51:31 ----SHD---- C:\ProgramData\Plocha
2015-02-19 21:51:31 ----SHD---- C:\ProgramData\Nabídka Start
2015-02-19 21:51:31 ----SHD---- C:\ProgramData\Dokumenty
2015-02-19 21:51:31 ----SHD---- C:\ProgramData\Data aplikací
2015-02-19 21:50:24 ----A---- C:\WINDOWS\system32\emptyregdb.dat
2015-02-19 21:39:33 ----SD---- C:\Users\Dana Horáková\AppData\Roaming\Microsoft
2015-02-19 21:32:52 ----D---- C:\Program Files\ATI Technologies
2015-02-19 21:32:36 ----D---- C:\Program Files (x86)\ATI Technologies
2015-02-19 21:32:24 ----D---- C:\ProgramData\Package Cache
2015-02-19 21:32:12 ----D---- C:\WINDOWS\system32\SRSLabs
2015-02-19 21:32:09 ----D---- C:\Program Files\Realtek
2015-02-19 21:32:08 ----D---- C:\WINDOWS\SYSWOW64\RTCOM
2015-02-19 21:31:55 ----D---- C:\AMD
2015-02-19 21:31:52 ----D---- C:\Program Files\Common Files\ATI Technologies
2015-02-19 21:31:49 ----D---- C:\Program Files\AMD
2015-02-19 21:31:39 ----D---- C:\Program Files\Elantech
2015-02-19 21:31:29 ----D---- C:\WINDOWS\Prefetch
2015-02-19 21:30:23 ----SHD---- C:\Recovery
2015-02-19 21:30:20 ----DC---- C:\WINDOWS\Panther
2015-02-19 21:29:14 ----A---- C:\WINDOWS\SYSWOW64\WerFaultSecure.exe
2015-02-19 21:29:14 ----A---- C:\WINDOWS\SYSWOW64\wer.dll
2015-02-19 21:29:14 ----A---- C:\WINDOWS\SYSWOW64\Faultrep.dll
2015-02-19 21:29:14 ----A---- C:\WINDOWS\system32\WerFaultSecure.exe
2015-02-19 21:29:14 ----A---- C:\WINDOWS\system32\wer.dll
2015-02-19 21:29:14 ----A---- C:\WINDOWS\system32\Faultrep.dll
2015-02-19 21:29:14 ----A---- C:\WINDOWS\system32\EncDump.dll
2015-02-19 21:29:14 ----A---- C:\WINDOWS\system32\ci.dll
2015-02-19 21:29:14 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2015-02-19 21:27:29 ----A---- C:\WINDOWS\SYSWOW64\MrmCoreR.dll
2015-02-19 21:27:29 ----A---- C:\WINDOWS\system32\SystemSettingsDatabase.dll
2015-02-19 21:27:29 ----A---- C:\WINDOWS\system32\SystemSettingsAdminFlowUI.dll
2015-02-19 21:27:29 ----A---- C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2015-02-19 21:27:29 ----A---- C:\WINDOWS\system32\SystemSettings.Handlers.dll
2015-02-19 21:27:29 ----A---- C:\WINDOWS\system32\SettingsHandlers.dll
2015-02-19 21:27:29 ----A---- C:\WINDOWS\system32\MrmCoreR.dll
2015-02-19 21:27:29 ----A---- C:\WINDOWS\system32\MDMAgent.exe
2015-02-19 21:27:16 ----A---- C:\WINDOWS\SYSWOW64\oleaut32.dll
2015-02-19 21:27:16 ----A---- C:\WINDOWS\system32\oleaut32.dll
2015-02-19 21:27:05 ----A---- C:\WINDOWS\system32\nlasvc.dll
2015-02-19 21:27:05 ----A---- C:\WINDOWS\system32\ncsi.dll
2015-02-19 21:26:59 ----A---- C:\WINDOWS\SYSWOW64\crypt32.dll
2015-02-19 21:26:59 ----A---- C:\WINDOWS\system32\crypt32.dll
2015-02-19 21:26:46 ----A---- C:\WINDOWS\system32\TSWbPrxy.exe
2015-02-19 21:26:38 ----A---- C:\WINDOWS\SYSWOW64\certcli.dll
2015-02-19 21:26:38 ----A---- C:\WINDOWS\system32\drivers\ksecpkg.sys
2015-02-19 21:26:38 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2015-02-19 21:26:38 ----A---- C:\WINDOWS\system32\certcli.dll
2015-02-19 21:26:24 ----A---- C:\WINDOWS\system32\profsvc.dll
2015-02-19 21:26:18 ----A---- C:\WINDOWS\SYSWOW64\WindowsCodecs.dll
2015-02-19 21:26:18 ----A---- C:\WINDOWS\system32\WindowsCodecs.dll
2015-02-19 21:26:11 ----A---- C:\WINDOWS\SYSWOW64\DeviceSetupStatusProvider.dll
2015-02-19 21:26:11 ----A---- C:\WINDOWS\system32\DeviceSetupStatusProvider.dll
2015-02-19 21:26:05 ----A---- C:\WINDOWS\system32\win32k.sys
2015-02-19 21:25:45 ----A---- C:\WINDOWS\system32\drivers\mrxdav.sys
2015-02-19 21:25:40 ----A---- C:\WINDOWS\SYSWOW64\scesrv.dll
2015-02-19 21:25:40 ----A---- C:\WINDOWS\system32\scesrv.dll
2015-02-19 21:25:24 ----A---- C:\WINDOWS\SYSWOW64\schannel.dll
2015-02-19 21:25:24 ----A---- C:\WINDOWS\system32\schannel.dll
2015-02-19 21:24:42 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2015-02-19 21:24:42 ----A---- C:\WINDOWS\SYSWOW64\inetcomm.dll
2015-02-19 21:24:42 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2015-02-19 21:24:42 ----A---- C:\WINDOWS\system32\actxprxy.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\SYSWOW64\webcheck.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\SYSWOW64\mshtmled.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\SYSWOW64\MshtmlDac.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\SYSWOW64\jscript.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\SYSWOW64\iepeers.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\SYSWOW64\ieapfltr.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\SYSWOW64\dxtrans.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\SYSWOW64\dxtmsft.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\system32\wininet.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\system32\webcheck.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\system32\vbscript.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\system32\urlmon.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\system32\mshtmled.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\system32\MshtmlDac.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\system32\mshtml.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\system32\msfeeds.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\system32\jscript.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\system32\inetcomm.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\system32\iertutil.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\system32\iepeers.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\system32\ieframe.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2015-02-19 21:24:41 ----A---- C:\WINDOWS\system32\dxtrans.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\system32\dxtmsft.dll
2015-02-19 21:22:53 ----A---- C:\WINDOWS\system32\drivers\ahcache.sys
2015-02-19 21:22:48 ----A---- C:\WINDOWS\SYSWOW64\poqexec.exe
2015-02-19 21:22:48 ----A---- C:\WINDOWS\system32\poqexec.exe
2015-02-19 21:22:35 ----A---- C:\WINDOWS\SYSWOW64\wow32.dll
2015-02-19 21:22:35 ----A---- C:\WINDOWS\SYSWOW64\user.exe
2015-02-19 21:22:35 ----A---- C:\WINDOWS\SYSWOW64\setup16.exe
2015-02-19 21:22:35 ----A---- C:\WINDOWS\SYSWOW64\ntvdm64.dll
2015-02-19 21:22:35 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2015-02-19 21:22:35 ----A---- C:\WINDOWS\SYSWOW64\instnm.exe
2015-02-19 21:22:35 ----A---- C:\WINDOWS\system32\wow64cpu.dll
2015-02-19 21:22:35 ----A---- C:\WINDOWS\system32\wow64.dll
2015-02-19 21:22:35 ----A---- C:\WINDOWS\system32\ntvdm64.dll
2015-02-19 21:22:35 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2015-02-19 21:22:35 ----A---- C:\WINDOWS\system32\ntdll.dll
2015-02-19 21:19:39 ----D---- C:\Program Files (x86)\Reference Assemblies
2015-02-19 21:19:39 ----D---- C:\Program Files (x86)\MSBuild
2015-02-19 21:19:37 ----D---- C:\WINDOWS\SYSWOW64\XPSViewer
2015-02-19 21:19:37 ----D---- C:\Program Files\Reference Assemblies
2015-02-19 21:19:37 ----D---- C:\Program Files\MSBuild
2015-02-19 21:19:00 ----A---- C:\WINDOWS\SYSWOW64\PresentationNative_v0300.dll
2015-02-19 21:19:00 ----A---- C:\WINDOWS\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2015-02-19 21:18:59 ----A---- C:\WINDOWS\system32\PresentationNative_v0300.dll
2015-02-19 21:18:59 ----A---- C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2015-02-14 09:47:45 ----D---- C:\WINDOWS\system32\AutoUpdateLicense

======List of files/folders modified in the last 1 month======

2015-03-01 20:52:48 ----RD---- C:\Program Files
2015-03-01 20:44:09 ----D---- C:\WINDOWS\Temp
2015-03-01 20:40:34 ----RD---- C:\WINDOWS\System32
2015-03-01 20:40:34 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2015-03-01 20:40:33 ----D---- C:\WINDOWS\Inf
2015-03-01 20:39:22 ----D---- C:\ProgramData\WinClon
2015-03-01 20:37:45 ----D---- C:\WINDOWS\SoftwareDistribution
2015-03-01 20:37:45 ----D---- C:\Windows
2015-03-01 20:36:03 ----D---- C:\WINDOWS\Microsoft.NET
2015-03-01 20:36:02 ----D---- C:\WINDOWS\system32\config
2015-03-01 20:36:01 ----D---- C:\WINDOWS\WinSxS
2015-03-01 20:34:41 ----RD---- C:\WINDOWS\ToastData
2015-03-01 20:34:40 ----D---- C:\WINDOWS\SYSWOW64\setup
2015-03-01 20:34:40 ----D---- C:\WINDOWS\SysWOW64
2015-03-01 20:34:40 ----D---- C:\WINDOWS\system32\setup
2015-03-01 20:34:40 ----D---- C:\WINDOWS\system32\drivers
2015-03-01 20:34:40 ----D---- C:\WINDOWS\system32\cs-CZ
2015-03-01 20:34:34 ----D---- C:\WINDOWS\system32\DriverStore
2015-03-01 20:29:47 ----D---- C:\WINDOWS\CbsTemp
2015-03-01 20:21:58 ----D---- C:\ProgramData\Oracle
2015-03-01 20:21:53 ----SHD---- C:\WINDOWS\Installer
2015-03-01 20:21:50 ----D---- C:\Program Files (x86)\Java
2015-03-01 20:21:20 ----D---- C:\Program Files (x86)\Common Files
2015-03-01 20:20:51 ----A---- C:\WINDOWS\SYSWOW64\WindowsAccessBridge-32.dll
2015-03-01 20:20:49 ----A---- C:\WINDOWS\SYSWOW64\javaws.exe
2015-03-01 20:20:49 ----A---- C:\WINDOWS\SYSWOW64\javaw.exe
2015-03-01 20:20:49 ----A---- C:\WINDOWS\SYSWOW64\java.exe
2015-03-01 20:07:14 ----RD---- C:\Program Files (x86)
2015-03-01 20:06:59 ----D---- C:\WINDOWS\Tasks
2015-03-01 20:03:03 ----D---- C:\WINDOWS\debug
2015-03-01 20:02:00 ----D---- C:\WINDOWS\system32\sru
2015-03-01 19:54:03 ----D---- C:\WINDOWS\system32\Tasks
2015-03-01 19:07:42 ----D---- C:\WINDOWS\rescache
2015-03-01 19:01:56 ----D---- C:\WINDOWS\Logs
2015-03-01 18:47:14 ----D---- C:\WINDOWS\system32\drivers\UMDF
2015-03-01 14:28:19 ----SHD---- C:\System Volume Information
2015-02-25 21:27:28 ----D---- C:\WINDOWS\system32\catroot2
2015-02-24 15:02:00 ----RD---- C:\WINDOWS\assembly
2015-02-24 09:42:57 ----D---- C:\WINDOWS\system32\catroot
2015-02-23 16:30:27 ----D---- C:\CitrixUSBStore
2015-02-23 15:53:46 ----D---- C:\WINDOWS\system32\wdi
2015-02-23 15:50:43 ----SD---- C:\WINDOWS\system32\CompatTel
2015-02-23 15:50:42 ----SD---- C:\ProgramData\Microsoft
2015-02-23 15:50:41 ----D---- C:\WINDOWS\system32\sr-Latn-RS
2015-02-23 15:50:41 ----D---- C:\WINDOWS\system32\sr-Latn-CS
2015-02-23 15:50:40 ----D---- C:\Program Files\Windows Defender
2015-02-23 15:50:40 ----D---- C:\Program Files (x86)\Windows Defender
2015-02-23 15:50:39 ----D---- C:\WINDOWS\system32\en-US
2015-02-22 16:09:56 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2015-02-22 16:06:41 ----D---- C:\WINDOWS\system32\restore
2015-02-21 14:02:16 ----HD---- C:\Program Files\WindowsApps
2015-02-21 14:02:16 ----D---- C:\WINDOWS\AppReadiness
2015-02-19 22:03:21 ----D---- C:\Program Files (x86)\Bluetooth Suite
2015-02-19 22:03:19 ----D---- C:\Program Files\Common Files
2015-02-19 21:53:49 ----SHD---- C:\$Recycle.Bin
2015-02-19 21:51:31 ----HD---- C:\ProgramData
2015-02-19 21:51:31 ----D---- C:\Program Files\Windows NT
2015-02-19 21:50:55 ----D---- C:\WINDOWS\Registration
2015-02-19 21:50:30 ----D---- C:\WINDOWS\system32\LogFiles
2015-02-19 21:48:57 ----RSD---- C:\WINDOWS\Media
2015-02-19 21:46:17 ----D---- C:\WINDOWS\system32\Sysprep
2015-02-19 21:46:16 ----D---- C:\WINDOWS\ShellNew
2015-02-19 21:46:15 ----RSD---- C:\WINDOWS\Fonts
2015-02-19 21:46:15 ----RD---- C:\Users
2015-02-19 21:45:30 ----D---- C:\WINDOWS\SYSWOW64\WCN
2015-02-19 21:45:30 ----D---- C:\WINDOWS\SYSWOW64\sysprep
2015-02-19 21:45:30 ----D---- C:\WINDOWS\SYSWOW64\SMI
2015-02-19 21:45:30 ----D---- C:\WINDOWS\SYSWOW64\sda
2015-02-19 21:45:29 ----D---- C:\WINDOWS\SYSWOW64\MUI
2015-02-19 21:45:29 ----D---- C:\WINDOWS\SYSWOW64\migwiz
2015-02-19 21:45:29 ----D---- C:\WINDOWS\SYSWOW64\LogFiles
2015-02-19 21:45:28 ----D---- C:\WINDOWS\SYSWOW64\IME
2015-02-19 21:45:28 ----D---- C:\WINDOWS\SYSWOW64\drivers\UMDF
2015-02-19 21:45:28 ----D---- C:\WINDOWS\SYSWOW64\catroot
2015-02-19 21:45:25 ----D---- C:\WINDOWS\system32\WCN
2015-02-19 21:45:25 ----D---- C:\WINDOWS\system32\spool
2015-02-19 21:45:23 ----DC---- C:\WINDOWS\system32\DRVSTORE
2015-02-19 21:45:23 ----D---- C:\WINDOWS\system32\oobe
2015-02-19 21:45:23 ----D---- C:\WINDOWS\system32\NDF
2015-02-19 21:45:23 ----D---- C:\WINDOWS\system32\MUI
2015-02-19 21:45:23 ----D---- C:\WINDOWS\system32\IME
2015-02-19 21:44:43 ----D---- C:\WINDOWS\System
2015-02-19 21:44:37 ----D---- C:\WINDOWS\IME
2015-02-19 21:44:37 ----D---- C:\WINDOWS\Help
2015-02-19 21:44:36 ----D---- C:\WINDOWS\DigitalLocker
2015-02-19 21:44:34 ----D---- C:\ProgramData\PRICache
2015-02-19 21:44:31 ----SHD---- C:\Program Files (x86)\Windows Sidebar
2015-02-19 21:44:31 ----D---- C:\Program Files (x86)\Windows Media Player
2015-02-19 21:44:30 ----D---- C:\Program Files (x86)\Microsoft.NET
2015-02-19 21:44:27 ----SHD---- C:\Program Files\Windows Sidebar
2015-02-19 21:44:27 ----D---- C:\Program Files\Windows Media Player
2015-02-19 21:44:27 ----D---- C:\Program Files\Common Files\microsoft shared
2015-02-19 21:40:31 ----D---- C:\WINDOWS\system32\Recovery
2015-02-19 21:29:19 ----D---- C:\WINDOWS\system32\CodeIntegrity
2015-02-19 21:27:36 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2015-02-19 21:27:36 ----D---- C:\WINDOWS\system32\wbem
2015-02-19 21:25:20 ----D---- C:\Program Files\Internet Explorer
2015-02-19 21:25:20 ----D---- C:\Program Files (x86)\Internet Explorer
2015-02-19 21:25:19 ----D---- C:\WINDOWS\PolicyDefinitions
2015-02-19 21:22:38 ----D---- C:\WINDOWS\apppatch
2015-02-13 19:24:28 ----D---- C:\ProgramData\Microsoft Help
2015-02-13 19:10:19 ----D---- C:\WINDOWS\system32\MRT
2015-02-09 20:42:18 ----D---- C:\WINDOWS\AUInstallAgent
2015-02-03 20:31:19 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 amd_sata;amd_sata; C:\WINDOWS\System32\drivers\amd_sata.sys [2012-11-30 80552]
R0 amd_xata;amd_xata; C:\WINDOWS\System32\drivers\amd_xata.sys [2012-11-30 26280]
R0 aswNdisFlt;@oem66.inf,%AfwDescriptionFree%;Avast! Firewall Driver; C:\WINDOWS\system32\DRIVERS\aswNdisFlt.sys [2015-02-23 449936]
R0 aswRvrt;avast! Revert; C:\WINDOWS\system32\drivers\aswRvrt.sys [2015-02-23 65776]
R0 aswVmm;avast! VM Monitor; C:\WINDOWS\system32\drivers\aswVmm.sys [2015-02-23 267632]
R0 PxHlpa64;PxHlpa64; C:\WINDOWS\System32\Drivers\PxHlpa64.sys [2012-08-09 56336]
R1 aswKbd;aswKbd; C:\WINDOWS\system32\drivers\aswKbd.sys [2015-02-23 28184]
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [2015-02-23 93568]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2015-02-23 1050432]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2015-02-23 436624]
R1 ctxusbm;Citrix USB Monitor Driver; C:\WINDOWS\system32\DRIVERS\ctxusbm.sys [2012-12-05 98888]
R1 vwififlt;@%SystemRoot%\System32\drivers\vwififlt.sys,-259; C:\WINDOWS\system32\DRIVERS\vwififlt.sys [2014-04-30 71680]
R2 aswHwid;avast! HardwareID; C:\WINDOWS\system32\drivers\aswHwid.sys [2015-02-23 29208]
R2 aswMonFlt;aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [2015-02-23 83280]
R2 aswStm;aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [2015-02-23 116728]
R3 amdkmdag;amdkmdag; C:\WINDOWS\system32\DRIVERS\atikmdag.sys [2014-07-21 13209088]
R3 amdkmdap;amdkmdap; C:\WINDOWS\system32\DRIVERS\atikmpag.sys [2014-07-21 626688]
R3 AthBTPort;@oem5.inf,%BTHSUPPORT.SvcDesc%;Qualcomm Atheros Virtual Bluetooth Class; C:\WINDOWS\system32\DRIVERS\btath_flt.sys [2013-04-24 89800]
R3 athr;@oem24.inf,%ATHR.Service.DispName%;Qualcomm Atheros Extensible Wireless LAN device driver; C:\WINDOWS\system32\DRIVERS\athw8x.sys [2013-04-15 3786752]
R3 AtiHDAudioService;@oem61.inf,%ATIHdAudioDriver.SvcDesc%;AMD Function Driver for HD Audio Service; C:\WINDOWS\system32\drivers\AtihdW86.sys [2013-02-13 94208]
R3 BTATH_A2DP;@oem4.inf,%BTATH_A2DP.SvcDesc%;Bluetooth A2DP Audio Driver; C:\WINDOWS\system32\drivers\btath_a2dp.sys [2013-04-24 347336]
R3 btath_avdt;@oem4.inf,%btath_avdt.SvcDesc%;Qualcomm Atheros Bluetooth AVDT Service; C:\WINDOWS\system32\drivers\btath_avdt.sys [2013-04-24 115912]
R3 BTATH_BUS;@oem62.inf,%BTATH_BUS.SVCDESC%;Qualcomm Atheros Bluetooth Bus; C:\WINDOWS\System32\drivers\btath_bus.sys [2013-04-24 34384]
R3 BTATH_HCRP;@oem7.inf,%BTATH_HCRP.SvcDesc%;Bluetooth HCRP Server driver; C:\WINDOWS\System32\drivers\btath_hcrp.sys [2013-04-24 179432]
R3 BTATH_HID;@oem8.inf,%BTATH_HID%;Bluetooth HID Device; C:\WINDOWS\system32\DRIVERS\btath_hid.sys [2013-04-24 223432]
R3 BTATH_LWFLT;@oem16.inf,%BTATH_LWFLT%;Bluetooth LWFLT Device; C:\WINDOWS\system32\DRIVERS\btath_lwflt.sys [2013-04-24 77464]
R3 BTATH_RCP;@oem11.inf,%BTATH_RCP%;Bluetooth AVRCP Device; C:\WINDOWS\System32\drivers\btath_rcp.sys [2013-04-24 136784]
R3 BtFilter;BtFilter; C:\WINDOWS\system32\DRIVERS\btfilter.sys [2014-04-28 599240]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\system32\DRIVERS\BthEnum.sys [2014-11-21 53248]
R3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Ovladač úspory energie technologie Bluetooth; C:\WINDOWS\system32\DRIVERS\BthLEEnum.sys [2014-11-21 226304]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Zařízení Bluetooth (síť PAN); C:\WINDOWS\system32\DRIVERS\bthpan.sys [2014-11-21 118272]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\Drivers\BTHUSB.sys [2014-11-21 81920]
R3 ETD;@oem6.inf,%SamsungDeviceDesc%;Samsung PS/2 Port Input Device; C:\WINDOWS\system32\DRIVERS\ETD.sys [2013-03-25 358768]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2013-06-04 3441992]
R3 RadioHIDMini;@oem17.inf,%RadioHIDMini%;Radio HID Mini-driver; C:\WINDOWS\System32\drivers\RadioHIDMini.sys [2012-07-27 23408]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Zařízení Bluetooth (RFCOMM protokol TDI); C:\WINDOWS\system32\DRIVERS\rfcomm.sys [2014-11-21 167424]
R3 RSUSBVSTOR;@oem16.inf,%RSUSBVSTOR.SvcDesc%;RtsUVStor.Sys Realtek USB Card Reader; C:\WINDOWS\System32\Drivers\RtsUVStor.sys [2012-11-23 317584]
R3 RTL8168;@netrt630x64.inf,%rtl8168.Service.DispName%;Realtek 8168 NT Driver; C:\WINDOWS\system32\DRIVERS\Rt630x64.sys [2013-06-18 591360]
R3 usbfilter;AMD USB Filter Driver; C:\WINDOWS\system32\DRIVERS\usbfilter.sys [2012-08-28 58536]
R3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;Zobrazovací zařízení USB (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys [2014-11-21 212736]
R3 vwifimp;@%SystemRoot%\System32\drivers\vwifimp.sys,-261; C:\WINDOWS\system32\DRIVERS\vwifimp.sys [2014-04-30 38912]
S2 APXACC;AppEx Networks Accelerator LWF; C:\WINDOWS\system32\DRIVERS\appexDrv.sys [2013-04-17 219360]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\Drivers\BTHport.sys [2014-11-21 1198080]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeActiveFileMonitor11.0;Adobe Active File Monitor V11; C:\Program Files (x86)\Adobe\Elements 11 Organizer\PhotoshopElementsFileAgent.exe [2013-01-26 172104]
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2014-05-08 65432]
R2 AllShare Framework DMS;AllShare Framework DMS; C:\Program Files\Samsung\AllShare Framework DMS\1.3.14\AllShareFrameworkManagerDMS.exe [2013-06-18 404360]
R2 AMD External Events Utility;AMD External Events Utility; C:\WINDOWS\system32\atiesrxx.exe [2014-07-21 239616]
R2 AMD FUEL Service;AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [2014-07-04 344064]
R2 AtherosSvc;AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [2013-04-24 310400]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2015-02-23 50344]
R2 avast! Firewall;avast! Firewall; C:\Program Files\AVAST Software\Avast\afwServ.exe [2015-02-23 104416]
R2 Samsung Link Service;Samsung Link Service; C:\Program Files\Samsung\Samsung Link\Samsung Link.exe [2013-07-05 605768]
R2 Settings Launcher;Settings Launcher; C:\Program Files (x86)\Samsung\Settings\CmdServer\SettingsLauncher.exe [2013-06-14 1594928]
R2 SWUpdateService;SW Update Service; C:\ProgramData\Samsung\SW Update Service\SWMAgent.exe [2013-10-21 3018800]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-12-21 116648]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2014-11-21 38792]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-12-21 116648]
S3 ose64;Office 64 Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 174440]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119677
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Pomalej NTB

#2 Příspěvek od Rudy »

Zdravím!
Spusťte nejprve tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Dana
Návštěvník
Návštěvník
Příspěvky: 4
Registrován: 01 bře 2015 20:47

Re: Pomalej NTB

#3 Příspěvek od Dana »

Dekuju.

456# AdwCleaner v4.111 - Logfile created 01/03/2015 at 21:27:17
# Updated 18/02/2015 by Xplode
# Database : 2015-02-18.3 [Server]
# Operating system : Windows 8.1 (x64)
# Username : Dana Horáková - DANA-HORAKOVÁ
# Running from : C:\Users\Dana Horáková\Desktop\adwcleaner_4.111.exe
# Option : Cleaning

***** [ Services ] *****


***** [ Files / Folders ] *****


***** [ Scheduled tasks ] *****


***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKLM\SOFTWARE\Classes\AppID\{4D076AB4-7562-427A-B5D2-BD96E19DEE56}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{826D7151-8D99-434B-8540-082B8C2AE556}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8FFE}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{11549FE4-7C5A-4C17-9FC3-56FC5162A994}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8FFE}

***** [ Web browsers ] *****

-\\ Internet Explorer v11.0.9600.17416


-\\ Google Chrome v40.0.2214.115


*************************

AdwCleaner[R0].txt - [1418 bytes] - [01/03/2015 21:18:08]
AdwCleaner[S0].txt - [1353 bytes] - [01/03/2015 21:27:17]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [1412 bytes] ##########

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119677
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Pomalej NTB

#4 Příspěvek od Rudy »

Dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Dana
Návštěvník
Návštěvník
Příspěvky: 4
Registrován: 01 bře 2015 20:47

Re: Pomalej NTB

#5 Příspěvek od Dana »

Logfile of random's system information tool 1.10 (written by random/random)
Run by Dana Horáková at 2015-03-01 22:35:37
Microsoft Windows 8.1
System drive C: has 62 GB (61%) free of 101 GB
Total RAM: 3527 MB (72% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22:35:41, on 1. 3. 2015
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17416)
Boot mode: Normal

Running processes:
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\DynamicUSBTool\DynamicUSB.exe
C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exe
C:\Program Files (x86)\Citrix\ICA Client\concentr.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Dana Horáková.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://samsung13.msn.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://google.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_31\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_31\bin\jp2ssv.dll
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [ConnectionCenter] "C:\Program Files (x86)\Citrix\ICA Client\concentr.exe" /startup
O4 - HKLM\..\Run: [DynamicUSB] "C:\Program Files (x86)\DynamicUSBTool\DynamicUSB.exe"
O4 - HKCU\..\Run: [EPSON Stylus Photo RX585 Series] C:\windows\system32\spool\DRIVERS\x64\3\E_IATICLE.EXE /FU "C:\windows\TEMP\E_S73C8.tmp" /EF "HKCU"
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~1\MICROS~1\Office14\ONBttnIE.dll/105
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Filter: application/x-ica - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica; charset=euc-jp - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica; charset=ISO-8859-1 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica; charset=MS936 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica; charset=MS949 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica; charset=MS950 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica; charset=UTF-8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica; charset=UTF8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica;charset=euc-jp - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica;charset=ISO-8859-1 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica;charset=MS936 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica;charset=MS949 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica;charset=MS950 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica;charset=UTF-8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica;charset=UTF8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter hijack: ica - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Adobe Active File Monitor V11 (AdobeActiveFileMonitor11.0) - Adobe Systems Incorporated - C:\Program Files (x86)\Adobe\Elements 11 Organizer\PhotoshopElementsFileAgent.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: AllShare Framework DMS - Samsung - C:\Program Files\Samsung\AllShare Framework DMS\1.3.14\AllShareFrameworkManagerDMS.exe
O23 - Service: AMD External Events Utility - Unknown owner - C:\WINDOWS\system32\atiesrxx.exe (file missing)
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: AtherosSvc - Windows (R) Win 7 DDK provider - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: avast! Firewall - AVAST Software - C:\Program Files\AVAST Software\Avast\afwServ.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Samsung Link Service - Copyright 2013 SAMSUNG - C:\Program Files\Samsung\Samsung Link\Samsung Link.exe
O23 - Service: Settings Launcher - Samsung Electronics CO., LTD. - C:\Program Files (x86)\Samsung\Settings\CmdServer\SettingsLauncher.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: SW Update Service (SWUpdateService) - Samsung Electronics CO., LTD. - C:\ProgramData\Samsung\SW Update Service\SWMAgent.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: ZAtheros Bt and Wlan Coex Agent - Atheros - C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe

--
End of file - 11331 bytes

======Listing Processes======





wininit.exe

winlogon.exe

C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\WINDOWS\system32\atiesrxx.exe
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalService
atieclxx
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\AVAST Software\Avast\afwServ.exe"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe" /launchService
"C:\Program Files (x86)\Bluetooth Suite\adminservice.exe"
dashost.exe {c1e0231c-2e21-4643-a4f034d1eeca84e7}
"C:\Program Files\Samsung\Samsung Link\Samsung Link.exe"
"C:\Program Files (x86)\Samsung\Settings\CmdServer\SettingsLauncher.exe"
"C:\Program Files\Samsung\Samsung Link\Samsung Link.exe" "Samsung Link Service" __i4j_restart
"C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe"
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\Explorer.EXE
"C:\Program Files (x86)\Samsung\Settings\CmdServer\SettingsCmdServer.exe"
taskhostex.exe
"C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20689_x64__8wekyb3d8bbwe\LiveComm.exe" -ServerName:Microsoft.WindowsLive.Platform.Server
"C:\Program Files (x86)\Samsung\Settings\CmdServer\SettingsEventHandler.exe"
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Program Files\Elantech\ETDCtrl.exe"
"C:\Program Files\Samsung\Samsung Link\Samsung Link Tray Agent.exe"
"C:\Program Files\Elantech\ETDCtrlHelper.exe"
"C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM" PriorityLow
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /S3HpProtect
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files (x86)\DynamicUSBTool\DynamicUSB.exe"
"C:\Program Files\Samsung\S Agent\CommonAgent.exe"
"C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exe" -Embedding
"C:\Program Files (x86)\Citrix\ICA Client\concentr.exe" /startup
"C:\Program Files (x86)\Adobe\Elements 11 Organizer\PhotoshopElementsFileAgent.exe"
"C:\Program Files\Samsung\AllShare Framework DMS\1.3.14\AllShareFrameworkManagerDMS.exe"
"C:\Program Files\Samsung\AllShare Framework DMS\1.3.14\AllShareFrameworkDMS.exe"
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\ProgramData\Samsung\SW Update Service\SWMAgent.exe" /SERVICE
"C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe"
"C:\Program Files (x86)\Bluetooth Suite\ActivateDesktop.exe"
"C:\Program Files\Samsung\Support Center\GuaranaAgent.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="4352.0.1895695478\2039059856" --supports-dual-gpus=false --gpu-driver-bug-workarounds=1,18,39 --gpu-vendor-id=0x1002 --gpu-device-id=0x983d --gpu-driver-vendor="Advanced Micro Devices, Inc." --gpu-driver-version=13.251.9001.1001 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/ChromeSuggestions/Default/DomRel-Enable/disable/EmbeddedSearch/Group9 pct:10i stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnhancedBookmarks/Default/ExtensionContentVerification/Enforce/ExtensionInstallVerification/Enforce/GCM/Enabled/GoogleNow/Enable/MaterialDesignNTP/Enabled/NewProfileManagement/NewAvatarMenu/OmniboxBundledExperimentV1/StandardR4/PasswordGeneration/Disabled/QUIC/ControlForLargePopulation/RememberCertificateErrorDecisions/Default/SPDY/Spdy4Enabled-default/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-Population-Restrict/normal/UMA-Uniformity-Trial-1-Percent/group_87/UMA-Uniformity-Trial-10-Percent/group_07/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_04/UMA-Uniformity-Trial-50-Percent/group_01/UwSInterstitialStatus/On/VoiceTrigger/Install/WebRTC-IPv6Default/Disabled/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="4352.5.1748203830\161366320" /prefetch:673131151
taskhost.exe $(Arg0)
"C:\WINDOWS\ImmersiveControlPanel\SystemSettings.exe" -ServerName:microsoft.windows.immersivecontrolpanel
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/ChromeSuggestions/Default/DomRel-Enable/disable/EmbeddedSearch/Group9 pct:10i stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnhancedBookmarks/Default/ExtensionContentVerification/Enforce/ExtensionInstallVerification/Enforce/GCM/Enabled/GoogleNow/Enable/MaterialDesignNTP/Enabled/NewProfileManagement/NewAvatarMenu/OmniboxBundledExperimentV1/StandardR4/PasswordGeneration/Disabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/QUIC/ControlForLargePopulation/RememberCertificateErrorDecisions/Default/SPDY/Spdy4Enabled-default/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-Population-Restrict/normal/UMA-Uniformity-Trial-1-Percent/group_87/UMA-Uniformity-Trial-10-Percent/group_07/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_04/UMA-Uniformity-Trial-50-Percent/group_01/UwSInterstitialStatus/On/VoiceTrigger/Install/WebRTC-IPv6Default/Disabled/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="4352.16.2023153217\333817064" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --disable-databases --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/ChromeSuggestions/Default/DomRel-Enable/disable/EmbeddedSearch/Group9 pct:10i stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnhancedBookmarks/Default/ExtensionContentVerification/Enforce/ExtensionInstallVerification/Enforce/GCM/Enabled/GoogleNow/Enable/MaterialDesignNTP/Enabled/NewProfileManagement/NewAvatarMenu/OmniboxBundledExperimentV1/StandardR4/PasswordGeneration/Disabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/QUIC/ControlForLargePopulation/RememberCertificateErrorDecisions/Default/SPDY/Spdy4Enabled-default/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-Population-Restrict/normal/UMA-Uniformity-Trial-1-Percent/group_87/UMA-Uniformity-Trial-10-Percent/group_07/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_04/UMA-Uniformity-Trial-50-Percent/group_01/UwSInterstitialStatus/On/VoiceTrigger/Install/WebRTC-IPv6Default/Disabled/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="4352.18.1593876366\968006600" /prefetch:673131151
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe_S-1-5-21-2986935235-185983532-1441993291-10019_ Global\UsGthrCtrlFltPipeMssGthrPipe_S-1-5-21-2986935235-185983532-1441993291-10019 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "1"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 588 592 600 65536 596

"C:\Users\Dana Horáková\Desktop\RSITx64.exe"

======Scheduled tasks folder======

C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8D10F6C4-0E01-4BD4-8601-11AC1FDF8126}]
CIESpeechBHO Class - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll [2013-04-24 66688]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-02-23 705448]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~1\Office14\URLREDIR.DLL [2013-03-06 690392]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_31\bin\ssv.dll [2015-03-01 460712]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-02-23 586968]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL [2013-03-06 562904]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_31\bin\jp2ssv.dll [2015-03-01 172968]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F}

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"ETDCtrl"=C:\Program Files\Elantech\ETDCtrl.exe [2013-03-25 2889072]
"BtPreLoad"=C:\Program Files (x86)\Bluetooth Suite\BtPreLoad.exe [2013-04-24 64128]
"Samsung Link"=C:\Program Files\Samsung\Samsung Link\Samsung Link Tray Agent.exe [2013-07-05 597576]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"EPSON Stylus Photo RX585 Series"=C:\windows\system32\spool\DRIVERS\x64\3\E_IATICLE.EXE [2007-03-30 213504]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2015-02-19 7416088]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [2014-07-04 766688]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2015-02-23 5227112]
"ConnectionCenter"=C:\Program Files (x86)\Citrix\ICA Client\concentr.exe [2012-12-14 383544]
"DynamicUSB"=C:\Program Files (x86)\DynamicUSBTool\DynamicUSB.exe [2007-03-02 94208]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DisableCAD"=1
"SoftwareSASGeneration"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave2"=wdmaud.drv
"mixer2"=wdmaud.drv
"midi2"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2015-03-01 21:18:05 ----D---- C:\AdwCleaner
2015-03-01 20:52:48 ----D---- C:\rsit
2015-03-01 20:52:48 ----D---- C:\Program Files\trend micro
2015-03-01 20:26:45 ----A---- C:\WINDOWS\system32\aspnet_counters.dll
2015-03-01 20:26:38 ----A---- C:\WINDOWS\SYSWOW64\aspnet_counters.dll
2015-03-01 20:25:39 ----A---- C:\WINDOWS\system32\shell32.dll
2015-03-01 20:25:38 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2015-03-01 20:25:36 ----A---- C:\WINDOWS\system32\SyncEngine.dll
2015-03-01 20:25:35 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2015-03-01 20:25:33 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2015-03-01 20:25:30 ----A---- C:\WINDOWS\system32\msctf.dll
2015-03-01 20:25:30 ----A---- C:\WINDOWS\system32\drivers\netio.sys
2015-03-01 20:25:29 ----A---- C:\WINDOWS\SYSWOW64\msctf.dll
2015-03-01 20:25:29 ----A---- C:\WINDOWS\system32\wuaueng.dll
2015-03-01 20:25:29 ----A---- C:\WINDOWS\system32\mfplat.dll
2015-03-01 20:25:28 ----A---- C:\WINDOWS\system32\SkyDrive.exe
2015-03-01 20:25:28 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2015-03-01 20:25:28 ----A---- C:\WINDOWS\system32\drivers\rasl2tp.sys
2015-03-01 20:25:27 ----A---- C:\WINDOWS\SYSWOW64\mfplat.dll
2015-03-01 20:25:27 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2015-03-01 20:25:27 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2015-03-01 20:25:27 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2015-03-01 20:25:27 ----A---- C:\WINDOWS\system32\IKEEXT.DLL
2015-03-01 20:25:27 ----A---- C:\WINDOWS\system32\drivers\i8042prt.sys
2015-03-01 20:25:26 ----A---- C:\WINDOWS\SYSWOW64\WSDApi.dll
2015-03-01 20:25:26 ----A---- C:\WINDOWS\SYSWOW64\QSVRMGMT.DLL
2015-03-01 20:25:26 ----A---- C:\WINDOWS\system32\WSDApi.dll
2015-03-01 20:25:26 ----A---- C:\WINDOWS\system32\vpnike.dll
2015-03-01 20:25:26 ----A---- C:\WINDOWS\system32\spoolsv.exe
2015-03-01 20:25:26 ----A---- C:\WINDOWS\system32\QSVRMGMT.DLL
2015-03-01 20:25:26 ----A---- C:\WINDOWS\system32\drivers\vhdmp.sys
2015-03-01 20:25:26 ----A---- C:\WINDOWS\system32\drivers\sdbus.sys
2015-03-01 20:25:25 ----A---- C:\WINDOWS\SYSWOW64\untfs.dll
2015-03-01 20:25:25 ----A---- C:\WINDOWS\system32\WSDMon.dll
2015-03-01 20:25:25 ----A---- C:\WINDOWS\system32\WinSCard.dll
2015-03-01 20:25:25 ----A---- C:\WINDOWS\system32\untfs.dll
2015-03-01 20:25:25 ----A---- C:\WINDOWS\system32\drivers\wfplwfs.sys
2015-03-01 20:25:25 ----A---- C:\WINDOWS\system32\drivers\wanarp.sys
2015-03-01 20:25:25 ----A---- C:\WINDOWS\system32\drivers\dumpsd.sys
2015-03-01 20:25:25 ----A---- C:\WINDOWS\system32\drivers\dam.sys
2015-03-01 20:25:25 ----A---- C:\WINDOWS\system32\dnsrslvr.dll
2015-03-01 20:25:25 ----A---- C:\WINDOWS\system32\AppxAllUserStore.dll
2015-03-01 20:25:24 ----A---- C:\WINDOWS\system32\wuauclt.exe
2015-03-01 20:25:24 ----A---- C:\WINDOWS\system32\drivers\pdc.sys
2015-03-01 20:25:24 ----A---- C:\WINDOWS\system32\drivers\mouclass.sys
2015-03-01 20:25:24 ----A---- C:\WINDOWS\system32\drivers\kbdclass.sys
2015-03-01 20:25:24 ----A---- C:\WINDOWS\system32\drivers\intelpep.sys
2015-03-01 20:25:24 ----A---- C:\WINDOWS\system32\drivers\FWPKCLNT.SYS
2015-03-01 20:25:23 ----A---- C:\WINDOWS\SYSWOW64\AppxAllUserStore.dll
2015-03-01 20:25:23 ----A---- C:\WINDOWS\system32\drivers\tcpip.sys
2015-03-01 20:25:23 ----A---- C:\WINDOWS\system32\BFE.DLL
2015-03-01 20:25:22 ----A---- C:\WINDOWS\SYSWOW64\WinSCard.dll
2015-03-01 20:25:22 ----A---- C:\WINDOWS\SYSWOW64\rasapi32.dll
2015-03-01 20:25:22 ----A---- C:\WINDOWS\SYSWOW64\QSHVHOST.DLL
2015-03-01 20:25:22 ----A---- C:\WINDOWS\SYSWOW64\nshwfp.dll
2015-03-01 20:25:22 ----A---- C:\WINDOWS\system32\rasapi32.dll
2015-03-01 20:25:22 ----A---- C:\WINDOWS\system32\QSHVHOST.DLL
2015-03-01 20:25:22 ----A---- C:\WINDOWS\system32\nshwfp.dll
2015-03-01 20:25:22 ----A---- C:\WINDOWS\system32\DevicePairing.dll
2015-03-01 20:25:21 ----A---- C:\WINDOWS\SYSWOW64\wuapi.dll
2015-03-01 20:25:21 ----A---- C:\WINDOWS\SYSWOW64\DevicePairing.dll
2015-03-01 20:25:21 ----A---- C:\WINDOWS\system32\wucltux.dll
2015-03-01 20:25:21 ----A---- C:\WINDOWS\system32\wuapi.dll
2015-03-01 20:25:21 ----A---- C:\WINDOWS\system32\drivers\sermouse.sys
2015-03-01 20:25:21 ----A---- C:\WINDOWS\system32\drivers\ndproxy.sys
2015-03-01 20:25:21 ----A---- C:\WINDOWS\system32\drivers\ndistapi.sys
2015-03-01 20:25:21 ----A---- C:\WINDOWS\system32\drivers\mouhid.sys
2015-03-01 20:25:21 ----A---- C:\WINDOWS\system32\drivers\kbdhid.sys
2015-03-01 20:25:21 ----A---- C:\WINDOWS\system32\drivers\agilevpn.sys
2015-03-01 20:25:20 ----A---- C:\WINDOWS\system32\WUSettingsProvider.dll
2015-03-01 20:25:20 ----A---- C:\WINDOWS\system32\vssapi.dll
2015-03-01 20:25:20 ----A---- C:\WINDOWS\system32\SkyDriveTelemetry.dll
2015-03-01 20:25:19 ----A---- C:\WINDOWS\SYSWOW64\wuwebv.dll
2015-03-01 20:25:19 ----A---- C:\WINDOWS\SYSWOW64\vssapi.dll
2015-03-01 20:25:19 ----A---- C:\WINDOWS\SYSWOW64\dnsapi.dll
2015-03-01 20:25:19 ----A---- C:\WINDOWS\system32\wuwebv.dll
2015-03-01 20:25:19 ----A---- C:\WINDOWS\system32\wups2.dll
2015-03-01 20:25:19 ----A---- C:\WINDOWS\system32\VSSVC.exe
2015-03-01 20:25:19 ----A---- C:\WINDOWS\system32\FWPUCLNT.DLL
2015-03-01 20:25:19 ----A---- C:\WINDOWS\system32\dnsapi.dll
2015-03-01 20:25:18 ----A---- C:\WINDOWS\SYSWOW64\wups.dll
2015-03-01 20:25:18 ----A---- C:\WINDOWS\SYSWOW64\wudriver.dll
2015-03-01 20:25:18 ----A---- C:\WINDOWS\SYSWOW64\vsstrace.dll
2015-03-01 20:25:18 ----A---- C:\WINDOWS\SYSWOW64\rasdiag.dll
2015-03-01 20:25:18 ----A---- C:\WINDOWS\SYSWOW64\rascfg.dll
2015-03-01 20:25:18 ----A---- C:\WINDOWS\SYSWOW64\FWPUCLNT.DLL
2015-03-01 20:25:18 ----A---- C:\WINDOWS\system32\wups.dll
2015-03-01 20:25:18 ----A---- C:\WINDOWS\system32\wudriver.dll
2015-03-01 20:25:18 ----A---- C:\WINDOWS\system32\vsstrace.dll
2015-03-01 20:25:18 ----A---- C:\WINDOWS\system32\rasser.dll
2015-03-01 20:25:18 ----A---- C:\WINDOWS\system32\rasmxs.dll
2015-03-01 20:25:18 ----A---- C:\WINDOWS\system32\rasdiag.dll
2015-03-01 20:25:18 ----A---- C:\WINDOWS\system32\rascfg.dll
2015-03-01 20:25:17 ----A---- C:\WINDOWS\SYSWOW64\wuapp.exe
2015-03-01 20:25:17 ----A---- C:\WINDOWS\SYSWOW64\rasser.dll
2015-03-01 20:25:17 ----A---- C:\WINDOWS\SYSWOW64\rasmxs.dll
2015-03-01 20:25:17 ----A---- C:\WINDOWS\SYSWOW64\eventcls.dll
2015-03-01 20:25:17 ----A---- C:\WINDOWS\system32\wuapp.exe
2015-03-01 20:25:17 ----A---- C:\WINDOWS\system32\wuaext.dll
2015-03-01 20:25:17 ----A---- C:\WINDOWS\system32\eventcls.dll
2015-03-01 20:25:17 ----A---- C:\WINDOWS\splwow64.exe
2015-03-01 19:58:38 ----D---- C:\Users\Dana Horáková\AppData\Roaming\Bitcasa
2015-03-01 19:56:41 ----D---- C:\Users\Dana Horáková\AppData\Roaming\com.bitcasa.Bitcasa
2015-03-01 19:53:59 ----D---- C:\Program Files\CCleaner
2015-02-23 16:13:44 ----N---- C:\WINDOWS\system32\MpSigStub.exe
2015-02-23 15:50:42 ----D---- C:\WINDOWS\system32\appraiser
2015-02-23 15:41:37 ----A---- C:\WINDOWS\system32\drivers\aswKbd.sys
2015-02-23 15:41:32 ----A---- C:\WINDOWS\system32\aswBoot.exe
2015-02-23 15:41:25 ----A---- C:\WINDOWS\avastSS.scr
2015-02-23 15:41:02 ----A---- C:\WINDOWS\system32\drivers\aswNdisFlt.sys
2015-02-23 14:55:34 ----D---- C:\Program Files\Microsoft Silverlight
2015-02-23 14:55:34 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2015-02-23 12:45:30 ----D---- C:\Users\Dana Horáková\AppData\Roaming\QuickScan
2015-02-21 17:12:56 ----A---- C:\WINDOWS\system32\drivers\WdFilter.sys
2015-02-21 17:12:55 ----A---- C:\WINDOWS\system32\drivers\WdNisDrv.sys
2015-02-21 17:12:54 ----A---- C:\WINDOWS\system32\drivers\WdBoot.sys
2015-02-21 17:12:52 ----A---- C:\WINDOWS\SYSWOW64\winshfhc.dll
2015-02-21 17:12:52 ----A---- C:\WINDOWS\system32\winshfhc.dll
2015-02-21 17:08:05 ----A---- C:\WINDOWS\SYSWOW64\TsWpfWrp.exe
2015-02-21 17:08:05 ----A---- C:\WINDOWS\system32\TsWpfWrp.exe
2015-02-21 17:07:10 ----A---- C:\WINDOWS\system32\drivers\vwifimp.sys
2015-02-21 17:07:09 ----A---- C:\WINDOWS\system32\drivers\vwififlt.sys
2015-02-21 17:06:57 ----A---- C:\WINDOWS\system32\sppobjs.dll
2015-02-21 17:04:13 ----A---- C:\WINDOWS\system32\jscript9.dll
2015-02-21 17:04:12 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2015-02-21 17:04:10 ----A---- C:\WINDOWS\system32\devinv.dll
2015-02-21 17:04:10 ----A---- C:\WINDOWS\system32\appraiser.dll
2015-02-21 17:04:10 ----A---- C:\WINDOWS\system32\aepic.dll
2015-02-21 17:04:10 ----A---- C:\WINDOWS\system32\aepdu.dll
2015-02-21 17:04:10 ----A---- C:\WINDOWS\system32\aeinv.dll
2015-02-21 17:04:09 ----A---- C:\WINDOWS\system32\invagent.dll
2015-02-21 17:04:09 ----A---- C:\WINDOWS\system32\generaltel.dll
2015-02-21 17:04:06 ----A---- C:\WINDOWS\SYSWOW64\pku2u.dll
2015-02-21 17:04:06 ----A---- C:\WINDOWS\SYSWOW64\kerberos.dll
2015-02-21 17:04:06 ----A---- C:\WINDOWS\system32\pku2u.dll
2015-02-21 17:04:06 ----A---- C:\WINDOWS\system32\kerberos.dll
2015-02-21 17:03:12 ----A---- C:\WINDOWS\SYSWOW64\msvcr120_clr0400.dll
2015-02-21 17:03:11 ----A---- C:\WINDOWS\system32\msvcr120_clr0400.dll
2015-02-19 22:03:19 ----D---- C:\Program Files\Common Files\Atheros
2015-02-19 21:53:28 ----D---- C:\Users\Dana Horáková\AppData\Roaming\Identities
2015-02-19 21:51:31 ----SHD---- C:\ProgramData\Šablony
2015-02-19 21:51:31 ----SHD---- C:\ProgramData\Plocha
2015-02-19 21:51:31 ----SHD---- C:\ProgramData\Nabídka Start
2015-02-19 21:51:31 ----SHD---- C:\ProgramData\Dokumenty
2015-02-19 21:51:31 ----SHD---- C:\ProgramData\Data aplikací
2015-02-19 21:50:24 ----A---- C:\WINDOWS\system32\emptyregdb.dat
2015-02-19 21:39:33 ----SD---- C:\Users\Dana Horáková\AppData\Roaming\Microsoft
2015-02-19 21:32:52 ----D---- C:\Program Files\ATI Technologies
2015-02-19 21:32:36 ----D---- C:\Program Files (x86)\ATI Technologies
2015-02-19 21:32:24 ----D---- C:\ProgramData\Package Cache
2015-02-19 21:32:12 ----D---- C:\WINDOWS\system32\SRSLabs
2015-02-19 21:32:09 ----D---- C:\Program Files\Realtek
2015-02-19 21:32:08 ----D---- C:\WINDOWS\SYSWOW64\RTCOM
2015-02-19 21:31:55 ----D---- C:\AMD
2015-02-19 21:31:52 ----D---- C:\Program Files\Common Files\ATI Technologies
2015-02-19 21:31:49 ----D---- C:\Program Files\AMD
2015-02-19 21:31:39 ----D---- C:\Program Files\Elantech
2015-02-19 21:31:29 ----D---- C:\WINDOWS\Prefetch
2015-02-19 21:30:23 ----SHD---- C:\Recovery
2015-02-19 21:30:20 ----DC---- C:\WINDOWS\Panther
2015-02-19 21:29:14 ----A---- C:\WINDOWS\SYSWOW64\WerFaultSecure.exe
2015-02-19 21:29:14 ----A---- C:\WINDOWS\SYSWOW64\wer.dll
2015-02-19 21:29:14 ----A---- C:\WINDOWS\SYSWOW64\Faultrep.dll
2015-02-19 21:29:14 ----A---- C:\WINDOWS\system32\WerFaultSecure.exe
2015-02-19 21:29:14 ----A---- C:\WINDOWS\system32\wer.dll
2015-02-19 21:29:14 ----A---- C:\WINDOWS\system32\Faultrep.dll
2015-02-19 21:29:14 ----A---- C:\WINDOWS\system32\EncDump.dll
2015-02-19 21:29:14 ----A---- C:\WINDOWS\system32\ci.dll
2015-02-19 21:29:14 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2015-02-19 21:27:29 ----A---- C:\WINDOWS\SYSWOW64\MrmCoreR.dll
2015-02-19 21:27:29 ----A---- C:\WINDOWS\system32\SystemSettingsDatabase.dll
2015-02-19 21:27:29 ----A---- C:\WINDOWS\system32\SystemSettingsAdminFlowUI.dll
2015-02-19 21:27:29 ----A---- C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2015-02-19 21:27:29 ----A---- C:\WINDOWS\system32\SystemSettings.Handlers.dll
2015-02-19 21:27:29 ----A---- C:\WINDOWS\system32\SettingsHandlers.dll
2015-02-19 21:27:29 ----A---- C:\WINDOWS\system32\MrmCoreR.dll
2015-02-19 21:27:29 ----A---- C:\WINDOWS\system32\MDMAgent.exe
2015-02-19 21:27:16 ----A---- C:\WINDOWS\SYSWOW64\oleaut32.dll
2015-02-19 21:27:16 ----A---- C:\WINDOWS\system32\oleaut32.dll
2015-02-19 21:27:05 ----A---- C:\WINDOWS\system32\nlasvc.dll
2015-02-19 21:27:05 ----A---- C:\WINDOWS\system32\ncsi.dll
2015-02-19 21:26:59 ----A---- C:\WINDOWS\SYSWOW64\crypt32.dll
2015-02-19 21:26:59 ----A---- C:\WINDOWS\system32\crypt32.dll
2015-02-19 21:26:46 ----A---- C:\WINDOWS\system32\TSWbPrxy.exe
2015-02-19 21:26:38 ----A---- C:\WINDOWS\SYSWOW64\certcli.dll
2015-02-19 21:26:38 ----A---- C:\WINDOWS\system32\drivers\ksecpkg.sys
2015-02-19 21:26:38 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2015-02-19 21:26:38 ----A---- C:\WINDOWS\system32\certcli.dll
2015-02-19 21:26:24 ----A---- C:\WINDOWS\system32\profsvc.dll
2015-02-19 21:26:18 ----A---- C:\WINDOWS\SYSWOW64\WindowsCodecs.dll
2015-02-19 21:26:18 ----A---- C:\WINDOWS\system32\WindowsCodecs.dll
2015-02-19 21:26:11 ----A---- C:\WINDOWS\SYSWOW64\DeviceSetupStatusProvider.dll
2015-02-19 21:26:11 ----A---- C:\WINDOWS\system32\DeviceSetupStatusProvider.dll
2015-02-19 21:26:05 ----A---- C:\WINDOWS\system32\win32k.sys
2015-02-19 21:25:45 ----A---- C:\WINDOWS\system32\drivers\mrxdav.sys
2015-02-19 21:25:40 ----A---- C:\WINDOWS\SYSWOW64\scesrv.dll
2015-02-19 21:25:40 ----A---- C:\WINDOWS\system32\scesrv.dll
2015-02-19 21:25:24 ----A---- C:\WINDOWS\SYSWOW64\schannel.dll
2015-02-19 21:25:24 ----A---- C:\WINDOWS\system32\schannel.dll
2015-02-19 21:24:42 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2015-02-19 21:24:42 ----A---- C:\WINDOWS\SYSWOW64\inetcomm.dll
2015-02-19 21:24:42 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2015-02-19 21:24:42 ----A---- C:\WINDOWS\system32\actxprxy.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\SYSWOW64\webcheck.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\SYSWOW64\mshtmled.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\SYSWOW64\MshtmlDac.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\SYSWOW64\jscript.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\SYSWOW64\iepeers.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\SYSWOW64\ieapfltr.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\SYSWOW64\dxtrans.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\SYSWOW64\dxtmsft.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\system32\wininet.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\system32\webcheck.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\system32\vbscript.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\system32\urlmon.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\system32\mshtmled.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\system32\MshtmlDac.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\system32\mshtml.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\system32\msfeeds.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\system32\jscript.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\system32\inetcomm.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\system32\iertutil.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\system32\iepeers.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\system32\ieframe.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2015-02-19 21:24:41 ----A---- C:\WINDOWS\system32\dxtrans.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\system32\dxtmsft.dll
2015-02-19 21:22:53 ----A---- C:\WINDOWS\system32\drivers\ahcache.sys
2015-02-19 21:22:48 ----A---- C:\WINDOWS\SYSWOW64\poqexec.exe
2015-02-19 21:22:48 ----A---- C:\WINDOWS\system32\poqexec.exe
2015-02-19 21:22:35 ----A---- C:\WINDOWS\SYSWOW64\wow32.dll
2015-02-19 21:22:35 ----A---- C:\WINDOWS\SYSWOW64\user.exe
2015-02-19 21:22:35 ----A---- C:\WINDOWS\SYSWOW64\setup16.exe
2015-02-19 21:22:35 ----A---- C:\WINDOWS\SYSWOW64\ntvdm64.dll
2015-02-19 21:22:35 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2015-02-19 21:22:35 ----A---- C:\WINDOWS\SYSWOW64\instnm.exe
2015-02-19 21:22:35 ----A---- C:\WINDOWS\system32\wow64cpu.dll
2015-02-19 21:22:35 ----A---- C:\WINDOWS\system32\wow64.dll
2015-02-19 21:22:35 ----A---- C:\WINDOWS\system32\ntvdm64.dll
2015-02-19 21:22:35 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2015-02-19 21:22:35 ----A---- C:\WINDOWS\system32\ntdll.dll
2015-02-19 21:19:39 ----D---- C:\Program Files (x86)\Reference Assemblies
2015-02-19 21:19:39 ----D---- C:\Program Files (x86)\MSBuild
2015-02-19 21:19:37 ----D---- C:\WINDOWS\SYSWOW64\XPSViewer
2015-02-19 21:19:37 ----D---- C:\Program Files\Reference Assemblies
2015-02-19 21:19:37 ----D---- C:\Program Files\MSBuild
2015-02-19 21:19:00 ----A---- C:\WINDOWS\SYSWOW64\PresentationNative_v0300.dll
2015-02-19 21:19:00 ----A---- C:\WINDOWS\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2015-02-19 21:18:59 ----A---- C:\WINDOWS\system32\PresentationNative_v0300.dll
2015-02-19 21:18:59 ----A---- C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2015-02-14 09:47:45 ----D---- C:\WINDOWS\system32\AutoUpdateLicense

======List of files/folders modified in the last 1 month======

2015-03-01 22:13:20 ----D---- C:\WINDOWS\Microsoft.NET
2015-03-01 22:09:37 ----D---- C:\WINDOWS\Temp
2015-03-01 22:00:00 ----D---- C:\WINDOWS\system32\sru
2015-03-01 21:51:28 ----D---- C:\WINDOWS\Inf
2015-03-01 21:41:28 ----D---- C:\WINDOWS\system32\config
2015-03-01 21:39:15 ----SHD---- C:\System Volume Information
2015-03-01 21:33:36 ----RD---- C:\WINDOWS\System32
2015-03-01 21:33:36 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2015-03-01 21:32:10 ----D---- C:\WINDOWS\SoftwareDistribution
2015-03-01 21:32:10 ----D---- C:\Windows
2015-03-01 21:31:18 ----D---- C:\ProgramData\WinClon
2015-03-01 20:52:48 ----RD---- C:\Program Files
2015-03-01 20:36:01 ----D---- C:\WINDOWS\WinSxS
2015-03-01 20:34:41 ----RD---- C:\WINDOWS\ToastData
2015-03-01 20:34:40 ----D---- C:\WINDOWS\SYSWOW64\setup
2015-03-01 20:34:40 ----D---- C:\WINDOWS\SysWOW64
2015-03-01 20:34:40 ----D---- C:\WINDOWS\system32\setup
2015-03-01 20:34:40 ----D---- C:\WINDOWS\system32\drivers
2015-03-01 20:34:40 ----D---- C:\WINDOWS\system32\cs-CZ
2015-03-01 20:34:34 ----D---- C:\WINDOWS\system32\DriverStore
2015-03-01 20:29:47 ----D---- C:\WINDOWS\CbsTemp
2015-03-01 20:21:58 ----D---- C:\ProgramData\Oracle
2015-03-01 20:21:53 ----SHD---- C:\WINDOWS\Installer
2015-03-01 20:21:50 ----D---- C:\Program Files (x86)\Java
2015-03-01 20:21:20 ----D---- C:\Program Files (x86)\Common Files
2015-03-01 20:20:51 ----A---- C:\WINDOWS\SYSWOW64\WindowsAccessBridge-32.dll
2015-03-01 20:20:49 ----A---- C:\WINDOWS\SYSWOW64\javaws.exe
2015-03-01 20:20:49 ----A---- C:\WINDOWS\SYSWOW64\javaw.exe
2015-03-01 20:20:49 ----A---- C:\WINDOWS\SYSWOW64\java.exe
2015-03-01 20:07:14 ----RD---- C:\Program Files (x86)
2015-03-01 20:06:59 ----D---- C:\WINDOWS\Tasks
2015-03-01 20:03:03 ----D---- C:\WINDOWS\debug
2015-03-01 19:54:03 ----D---- C:\WINDOWS\system32\Tasks
2015-03-01 19:07:42 ----D---- C:\WINDOWS\rescache
2015-03-01 19:01:56 ----D---- C:\WINDOWS\Logs
2015-03-01 18:47:14 ----D---- C:\WINDOWS\system32\drivers\UMDF
2015-02-25 21:27:28 ----D---- C:\WINDOWS\system32\catroot2
2015-02-24 15:02:00 ----RD---- C:\WINDOWS\assembly
2015-02-24 09:42:57 ----D---- C:\WINDOWS\system32\catroot
2015-02-23 16:30:27 ----D---- C:\CitrixUSBStore
2015-02-23 15:53:46 ----D---- C:\WINDOWS\system32\wdi
2015-02-23 15:50:43 ----SD---- C:\WINDOWS\system32\CompatTel
2015-02-23 15:50:42 ----SD---- C:\ProgramData\Microsoft
2015-02-23 15:50:41 ----D---- C:\WINDOWS\system32\sr-Latn-RS
2015-02-23 15:50:41 ----D---- C:\WINDOWS\system32\sr-Latn-CS
2015-02-23 15:50:40 ----D---- C:\Program Files\Windows Defender
2015-02-23 15:50:40 ----D---- C:\Program Files (x86)\Windows Defender
2015-02-23 15:50:39 ----D---- C:\WINDOWS\system32\en-US
2015-02-22 16:09:56 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2015-02-22 16:06:41 ----D---- C:\WINDOWS\system32\restore
2015-02-21 14:02:16 ----HD---- C:\Program Files\WindowsApps
2015-02-21 14:02:16 ----D---- C:\WINDOWS\AppReadiness
2015-02-19 22:03:21 ----D---- C:\Program Files (x86)\Bluetooth Suite
2015-02-19 22:03:19 ----D---- C:\Program Files\Common Files
2015-02-19 21:53:49 ----SHD---- C:\$Recycle.Bin
2015-02-19 21:51:31 ----HD---- C:\ProgramData
2015-02-19 21:51:31 ----D---- C:\Program Files\Windows NT
2015-02-19 21:50:55 ----D---- C:\WINDOWS\Registration
2015-02-19 21:50:30 ----D---- C:\WINDOWS\system32\LogFiles
2015-02-19 21:48:57 ----RSD---- C:\WINDOWS\Media
2015-02-19 21:46:17 ----D---- C:\WINDOWS\system32\Sysprep
2015-02-19 21:46:16 ----D---- C:\WINDOWS\ShellNew
2015-02-19 21:46:15 ----RSD---- C:\WINDOWS\Fonts
2015-02-19 21:46:15 ----RD---- C:\Users
2015-02-19 21:45:30 ----D---- C:\WINDOWS\SYSWOW64\WCN
2015-02-19 21:45:30 ----D---- C:\WINDOWS\SYSWOW64\sysprep
2015-02-19 21:45:30 ----D---- C:\WINDOWS\SYSWOW64\SMI
2015-02-19 21:45:30 ----D---- C:\WINDOWS\SYSWOW64\sda
2015-02-19 21:45:29 ----D---- C:\WINDOWS\SYSWOW64\MUI
2015-02-19 21:45:29 ----D---- C:\WINDOWS\SYSWOW64\migwiz
2015-02-19 21:45:29 ----D---- C:\WINDOWS\SYSWOW64\LogFiles
2015-02-19 21:45:28 ----D---- C:\WINDOWS\SYSWOW64\IME
2015-02-19 21:45:28 ----D---- C:\WINDOWS\SYSWOW64\drivers\UMDF
2015-02-19 21:45:28 ----D---- C:\WINDOWS\SYSWOW64\catroot
2015-02-19 21:45:25 ----D---- C:\WINDOWS\system32\WCN
2015-02-19 21:45:25 ----D---- C:\WINDOWS\system32\spool
2015-02-19 21:45:23 ----DC---- C:\WINDOWS\system32\DRVSTORE
2015-02-19 21:45:23 ----D---- C:\WINDOWS\system32\oobe
2015-02-19 21:45:23 ----D---- C:\WINDOWS\system32\NDF
2015-02-19 21:45:23 ----D---- C:\WINDOWS\system32\MUI
2015-02-19 21:45:23 ----D---- C:\WINDOWS\system32\IME
2015-02-19 21:44:43 ----D---- C:\WINDOWS\System
2015-02-19 21:44:37 ----D---- C:\WINDOWS\IME
2015-02-19 21:44:37 ----D---- C:\WINDOWS\Help
2015-02-19 21:44:36 ----D---- C:\WINDOWS\DigitalLocker
2015-02-19 21:44:34 ----D---- C:\ProgramData\PRICache
2015-02-19 21:44:31 ----SHD---- C:\Program Files (x86)\Windows Sidebar
2015-02-19 21:44:31 ----D---- C:\Program Files (x86)\Windows Media Player
2015-02-19 21:44:30 ----D---- C:\Program Files (x86)\Microsoft.NET
2015-02-19 21:44:27 ----SHD---- C:\Program Files\Windows Sidebar
2015-02-19 21:44:27 ----D---- C:\Program Files\Windows Media Player
2015-02-19 21:44:27 ----D---- C:\Program Files\Common Files\microsoft shared
2015-02-19 21:40:31 ----D---- C:\WINDOWS\system32\Recovery
2015-02-19 21:29:19 ----D---- C:\WINDOWS\system32\CodeIntegrity
2015-02-19 21:27:36 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2015-02-19 21:27:36 ----D---- C:\WINDOWS\system32\wbem
2015-02-19 21:25:20 ----D---- C:\Program Files\Internet Explorer
2015-02-19 21:25:20 ----D---- C:\Program Files (x86)\Internet Explorer
2015-02-19 21:25:19 ----D---- C:\WINDOWS\PolicyDefinitions
2015-02-19 21:22:38 ----D---- C:\WINDOWS\apppatch
2015-02-13 19:24:28 ----D---- C:\ProgramData\Microsoft Help
2015-02-13 19:10:19 ----D---- C:\WINDOWS\system32\MRT
2015-02-09 20:42:18 ----D---- C:\WINDOWS\AUInstallAgent
2015-02-03 20:31:19 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 amd_sata;amd_sata; C:\WINDOWS\System32\drivers\amd_sata.sys [2012-11-30 80552]
R0 amd_xata;amd_xata; C:\WINDOWS\System32\drivers\amd_xata.sys [2012-11-30 26280]
R0 aswNdisFlt;@oem66.inf,%AfwDescriptionFree%;Avast! Firewall Driver; C:\WINDOWS\system32\DRIVERS\aswNdisFlt.sys [2015-02-23 449936]
R0 aswRvrt;avast! Revert; C:\WINDOWS\system32\drivers\aswRvrt.sys [2015-02-23 65776]
R0 aswVmm;avast! VM Monitor; C:\WINDOWS\system32\drivers\aswVmm.sys [2015-02-23 267632]
R0 PxHlpa64;PxHlpa64; C:\WINDOWS\System32\Drivers\PxHlpa64.sys [2012-08-09 56336]
R1 aswKbd;aswKbd; C:\WINDOWS\system32\drivers\aswKbd.sys [2015-02-23 28184]
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [2015-02-23 93568]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2015-02-23 1050432]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2015-02-23 436624]
R1 ctxusbm;Citrix USB Monitor Driver; C:\WINDOWS\system32\DRIVERS\ctxusbm.sys [2012-12-05 98888]
R1 vwififlt;@%SystemRoot%\System32\drivers\vwififlt.sys,-259; C:\WINDOWS\system32\DRIVERS\vwififlt.sys [2014-04-30 71680]
R2 aswHwid;avast! HardwareID; C:\WINDOWS\system32\drivers\aswHwid.sys [2015-02-23 29208]
R2 aswMonFlt;aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [2015-02-23 83280]
R2 aswStm;aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [2015-02-23 116728]
R3 amdkmdag;amdkmdag; C:\WINDOWS\system32\DRIVERS\atikmdag.sys [2014-07-21 13209088]
R3 amdkmdap;amdkmdap; C:\WINDOWS\system32\DRIVERS\atikmpag.sys [2014-07-21 626688]
R3 AthBTPort;@oem5.inf,%BTHSUPPORT.SvcDesc%;Qualcomm Atheros Virtual Bluetooth Class; C:\WINDOWS\system32\DRIVERS\btath_flt.sys [2013-04-24 89800]
R3 athr;@oem24.inf,%ATHR.Service.DispName%;Qualcomm Atheros Extensible Wireless LAN device driver; C:\WINDOWS\system32\DRIVERS\athw8x.sys [2013-04-15 3786752]
R3 AtiHDAudioService;@oem61.inf,%ATIHdAudioDriver.SvcDesc%;AMD Function Driver for HD Audio Service; C:\WINDOWS\system32\drivers\AtihdW86.sys [2013-02-13 94208]
R3 BTATH_A2DP;@oem4.inf,%BTATH_A2DP.SvcDesc%;Bluetooth A2DP Audio Driver; C:\WINDOWS\system32\drivers\btath_a2dp.sys [2013-04-24 347336]
R3 btath_avdt;@oem4.inf,%btath_avdt.SvcDesc%;Qualcomm Atheros Bluetooth AVDT Service; C:\WINDOWS\system32\drivers\btath_avdt.sys [2013-04-24 115912]
R3 BTATH_BUS;@oem62.inf,%BTATH_BUS.SVCDESC%;Qualcomm Atheros Bluetooth Bus; C:\WINDOWS\System32\drivers\btath_bus.sys [2013-04-24 34384]
R3 BTATH_HCRP;@oem7.inf,%BTATH_HCRP.SvcDesc%;Bluetooth HCRP Server driver; C:\WINDOWS\System32\drivers\btath_hcrp.sys [2013-04-24 179432]
R3 BTATH_HID;@oem8.inf,%BTATH_HID%;Bluetooth HID Device; C:\WINDOWS\system32\DRIVERS\btath_hid.sys [2013-04-24 223432]
R3 BTATH_LWFLT;@oem16.inf,%BTATH_LWFLT%;Bluetooth LWFLT Device; C:\WINDOWS\system32\DRIVERS\btath_lwflt.sys [2013-04-24 77464]
R3 BTATH_RCP;@oem11.inf,%BTATH_RCP%;Bluetooth AVRCP Device; C:\WINDOWS\System32\drivers\btath_rcp.sys [2013-04-24 136784]
R3 BtFilter;BtFilter; C:\WINDOWS\system32\DRIVERS\btfilter.sys [2014-04-28 599240]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\system32\DRIVERS\BthEnum.sys [2014-11-21 53248]
R3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Ovladač úspory energie technologie Bluetooth; C:\WINDOWS\system32\DRIVERS\BthLEEnum.sys [2014-11-21 226304]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Zařízení Bluetooth (síť PAN); C:\WINDOWS\system32\DRIVERS\bthpan.sys [2014-11-21 118272]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\Drivers\BTHUSB.sys [2014-11-21 81920]
R3 ETD;@oem6.inf,%SamsungDeviceDesc%;Samsung PS/2 Port Input Device; C:\WINDOWS\system32\DRIVERS\ETD.sys [2013-03-25 358768]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2013-06-04 3441992]
R3 RadioHIDMini;@oem17.inf,%RadioHIDMini%;Radio HID Mini-driver; C:\WINDOWS\System32\drivers\RadioHIDMini.sys [2012-07-27 23408]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Zařízení Bluetooth (RFCOMM protokol TDI); C:\WINDOWS\system32\DRIVERS\rfcomm.sys [2014-11-21 167424]
R3 RSUSBVSTOR;@oem16.inf,%RSUSBVSTOR.SvcDesc%;RtsUVStor.Sys Realtek USB Card Reader; C:\WINDOWS\System32\Drivers\RtsUVStor.sys [2012-11-23 317584]
R3 RTL8168;@netrt630x64.inf,%rtl8168.Service.DispName%;Realtek 8168 NT Driver; C:\WINDOWS\system32\DRIVERS\Rt630x64.sys [2013-06-18 591360]
R3 usbfilter;AMD USB Filter Driver; C:\WINDOWS\system32\DRIVERS\usbfilter.sys [2012-08-28 58536]
R3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;Zobrazovací zařízení USB (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys [2014-11-21 212736]
R3 vwifimp;@%SystemRoot%\System32\drivers\vwifimp.sys,-261; C:\WINDOWS\system32\DRIVERS\vwifimp.sys [2014-04-30 38912]
S2 APXACC;AppEx Networks Accelerator LWF; C:\WINDOWS\system32\DRIVERS\appexDrv.sys [2013-04-17 219360]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\Drivers\BTHport.sys [2014-11-21 1198080]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeActiveFileMonitor11.0;Adobe Active File Monitor V11; C:\Program Files (x86)\Adobe\Elements 11 Organizer\PhotoshopElementsFileAgent.exe [2013-01-26 172104]
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2014-05-08 65432]
R2 AllShare Framework DMS;AllShare Framework DMS; C:\Program Files\Samsung\AllShare Framework DMS\1.3.14\AllShareFrameworkManagerDMS.exe [2013-06-18 404360]
R2 AMD External Events Utility;AMD External Events Utility; C:\WINDOWS\system32\atiesrxx.exe [2014-07-21 239616]
R2 AMD FUEL Service;AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [2014-07-04 344064]
R2 AtherosSvc;AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [2013-04-24 310400]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2015-02-23 50344]
R2 avast! Firewall;avast! Firewall; C:\Program Files\AVAST Software\Avast\afwServ.exe [2015-02-23 104416]
R2 Samsung Link Service;Samsung Link Service; C:\Program Files\Samsung\Samsung Link\Samsung Link.exe [2013-07-05 605768]
R2 Settings Launcher;Settings Launcher; C:\Program Files (x86)\Samsung\Settings\CmdServer\SettingsLauncher.exe [2013-06-14 1594928]
R2 SWUpdateService;SW Update Service; C:\ProgramData\Samsung\SW Update Service\SWMAgent.exe [2013-10-21 3018800]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-12-21 116648]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2014-11-21 38792]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-12-21 116648]
S3 ose64;Office 64 Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 174440]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119677
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Pomalej NTB

#6 Příspěvek od Rudy »

Stáhněte OTM: http://oldtimer.geekstogo.com/OTM.exe a uložte na plochu. Spusťte a do levého okna zkopírujte:
:files
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job

:reg
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]

:commands
[Purity]
[Emptytemp]
[Emptyflash]
a klikněte na >MoveIt!<. Před skenem vypnět antivir a po něm restartujte PC. Dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Dana
Návštěvník
Návštěvník
Příspěvky: 4
Registrován: 01 bře 2015 20:47

Re: Pomalej NTB

#7 Příspěvek od Dana »

Logfile of random's system information tool 1.10 (written by random/random)
Run by Dana Horáková at 2015-03-01 22:53:05
Microsoft Windows 8.1
System drive C: has 62 GB (62%) free of 101 GB
Total RAM: 3527 MB (60% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22:53:10, on 1. 3. 2015
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17416)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Citrix\ICA Client\concentr.exe
C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exe
C:\Program Files (x86)\DynamicUSBTool\DynamicUSB.exe
C:\Program Files\trend micro\Dana Horáková.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://samsung13.msn.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://google.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_31\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_31\bin\jp2ssv.dll
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [ConnectionCenter] "C:\Program Files (x86)\Citrix\ICA Client\concentr.exe" /startup
O4 - HKLM\..\Run: [DynamicUSB] "C:\Program Files (x86)\DynamicUSBTool\DynamicUSB.exe"
O4 - HKCU\..\Run: [EPSON Stylus Photo RX585 Series] C:\windows\system32\spool\DRIVERS\x64\3\E_IATICLE.EXE /FU "C:\windows\TEMP\E_S73C8.tmp" /EF "HKCU"
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~1\MICROS~1\Office14\ONBttnIE.dll/105
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Filter: application/x-ica - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica; charset=euc-jp - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica; charset=ISO-8859-1 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica; charset=MS936 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica; charset=MS949 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica; charset=MS950 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica; charset=UTF-8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica; charset=UTF8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica;charset=euc-jp - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica;charset=ISO-8859-1 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica;charset=MS936 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica;charset=MS949 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica;charset=MS950 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica;charset=UTF-8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica;charset=UTF8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter hijack: ica - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Adobe Active File Monitor V11 (AdobeActiveFileMonitor11.0) - Adobe Systems Incorporated - C:\Program Files (x86)\Adobe\Elements 11 Organizer\PhotoshopElementsFileAgent.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: AllShare Framework DMS - Samsung - C:\Program Files\Samsung\AllShare Framework DMS\1.3.14\AllShareFrameworkManagerDMS.exe
O23 - Service: AMD External Events Utility - Unknown owner - C:\WINDOWS\system32\atiesrxx.exe (file missing)
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: AtherosSvc - Windows (R) Win 7 DDK provider - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: avast! Firewall - AVAST Software - C:\Program Files\AVAST Software\Avast\afwServ.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Samsung Link Service - Copyright 2013 SAMSUNG - C:\Program Files\Samsung\Samsung Link\Samsung Link.exe
O23 - Service: Settings Launcher - Samsung Electronics CO., LTD. - C:\Program Files (x86)\Samsung\Settings\CmdServer\SettingsLauncher.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: SW Update Service (SWUpdateService) - Samsung Electronics CO., LTD. - C:\ProgramData\Samsung\SW Update Service\SWMAgent.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: ZAtheros Bt and Wlan Coex Agent - Atheros - C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe

--
End of file - 11209 bytes

======Listing Processes======





wininit.exe

winlogon.exe

C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\WINDOWS\system32\atiesrxx.exe
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalService
atieclxx
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\AVAST Software\Avast\afwServ.exe"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe" /launchService
"C:\Program Files (x86)\Bluetooth Suite\adminservice.exe"
dashost.exe {cc74bedc-4193-475d-8bef855193819e31}
"C:\Program Files\Samsung\Samsung Link\Samsung Link.exe"
"C:\Program Files\Samsung\Samsung Link\Samsung Link.exe" "Samsung Link Service" __i4j_restart
"C:\Program Files (x86)\Samsung\Settings\CmdServer\SettingsLauncher.exe"
"C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe"
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
taskeng.exe {67BD8827-D21D-4D81-9699-38FF6D8045F6}
taskhostex.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\servicing\TrustedInstaller.exe
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
"C:\Program Files (x86)\Samsung\Settings\CmdServer\SettingsCmdServer.exe"
C:\WINDOWS\winsxs\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.3.9600.17477_none_fa2b7d3b9b36c7b4\TiWorker.exe -Embedding
"C:\Program Files (x86)\Samsung\Settings\CmdServer\SettingsEventHandler.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\WINDOWS\notepad.exe" C:\_OTM\MovedFiles\03012015_225035.log
"C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20689_x64__8wekyb3d8bbwe\LiveComm.exe" -ServerName:Microsoft.WindowsLive.Platform.Server
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe1_ Global\UsGthrCtrlFltPipeMssGthrPipe1 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 584 588 596 65536 592
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files\Elantech\ETDCtrl.exe"
"C:\Program Files (x86)\Bluetooth Suite\BtPreLoad.exe"
"C:\Program Files\Elantech\ETDCtrlHelper.exe"
"C:\Program Files\Samsung\Samsung Link\Samsung Link Tray Agent.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="2644.0.604947701\249415269" --supports-dual-gpus=false --gpu-driver-bug-workarounds=1,18,39 --gpu-vendor-id=0x1002 --gpu-device-id=0x983d --gpu-driver-vendor="Advanced Micro Devices, Inc." --gpu-driver-version=13.251.9001.1001 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /S3HpProtect
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM" PriorityLow
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/ChromeSuggestions/Default/DomRel-Enable/enable/EmbeddedSearch/Group9 pct:10i stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnhancedBookmarks/Default/ExtensionContentVerification/Enforce/ExtensionInstallVerification/Enforce/GCM/Enabled/GoogleNow/Enable/MaterialDesignNTP/Enabled/NewProfileManagement/NewAvatarMenu/OmniboxBundledExperimentV1/StandardR4/PasswordGeneration/Disabled/QUIC/Enabled/RememberCertificateErrorDecisions/Default/SPDY/Spdy4Enabled-default/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-Population-Restrict/normal/UMA-Uniformity-Trial-1-Percent/group_87/UMA-Uniformity-Trial-10-Percent/group_07/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_04/UMA-Uniformity-Trial-50-Percent/group_01/UwSInterstitialStatus/On/VoiceTrigger/Install/WebRTC-IPv6Default/Default/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="2644.5.152439588\1427977250" /prefetch:673131151
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\Citrix\ICA Client\concentr.exe" /startup
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
"C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exe" -Embedding
"C:\Program Files (x86)\DynamicUSBTool\DynamicUSB.exe"
"C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac
"C:\Program Files\Samsung\S Agent\CommonAgent.exe"

"C:\Users\Dana Horáková\Desktop\RSITx64.exe"

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8D10F6C4-0E01-4BD4-8601-11AC1FDF8126}]
CIESpeechBHO Class - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll [2013-04-24 66688]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-02-23 705448]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~1\Office14\URLREDIR.DLL [2013-03-06 690392]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_31\bin\ssv.dll [2015-03-01 460712]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-02-23 586968]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL [2013-03-06 562904]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_31\bin\jp2ssv.dll [2015-03-01 172968]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F}

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"ETDCtrl"=C:\Program Files\Elantech\ETDCtrl.exe [2013-03-25 2889072]
"BtPreLoad"=C:\Program Files (x86)\Bluetooth Suite\BtPreLoad.exe [2013-04-24 64128]
"Samsung Link"=C:\Program Files\Samsung\Samsung Link\Samsung Link Tray Agent.exe [2013-07-05 597576]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"EPSON Stylus Photo RX585 Series"=C:\windows\system32\spool\DRIVERS\x64\3\E_IATICLE.EXE [2007-03-30 213504]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2015-02-19 7416088]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [2014-07-04 766688]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2015-02-23 5227112]
"ConnectionCenter"=C:\Program Files (x86)\Citrix\ICA Client\concentr.exe [2012-12-14 383544]
"DynamicUSB"=C:\Program Files (x86)\DynamicUSBTool\DynamicUSB.exe [2007-03-02 94208]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DisableCAD"=1
"SoftwareSASGeneration"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave2"=wdmaud.drv
"mixer2"=wdmaud.drv
"midi2"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2015-03-01 22:50:35 ----D---- C:\_OTM
2015-03-01 21:18:05 ----D---- C:\AdwCleaner
2015-03-01 20:52:48 ----D---- C:\rsit
2015-03-01 20:52:48 ----D---- C:\Program Files\trend micro
2015-03-01 20:26:45 ----A---- C:\WINDOWS\system32\aspnet_counters.dll
2015-03-01 20:26:38 ----A---- C:\WINDOWS\SYSWOW64\aspnet_counters.dll
2015-03-01 20:25:39 ----A---- C:\WINDOWS\system32\shell32.dll
2015-03-01 20:25:38 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2015-03-01 20:25:36 ----A---- C:\WINDOWS\system32\SyncEngine.dll
2015-03-01 20:25:35 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2015-03-01 20:25:33 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2015-03-01 20:25:30 ----A---- C:\WINDOWS\system32\msctf.dll
2015-03-01 20:25:30 ----A---- C:\WINDOWS\system32\drivers\netio.sys
2015-03-01 20:25:29 ----A---- C:\WINDOWS\SYSWOW64\msctf.dll
2015-03-01 20:25:29 ----A---- C:\WINDOWS\system32\wuaueng.dll
2015-03-01 20:25:29 ----A---- C:\WINDOWS\system32\mfplat.dll
2015-03-01 20:25:28 ----A---- C:\WINDOWS\system32\SkyDrive.exe
2015-03-01 20:25:28 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2015-03-01 20:25:28 ----A---- C:\WINDOWS\system32\drivers\rasl2tp.sys
2015-03-01 20:25:27 ----A---- C:\WINDOWS\SYSWOW64\mfplat.dll
2015-03-01 20:25:27 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2015-03-01 20:25:27 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2015-03-01 20:25:27 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2015-03-01 20:25:27 ----A---- C:\WINDOWS\system32\IKEEXT.DLL
2015-03-01 20:25:27 ----A---- C:\WINDOWS\system32\drivers\i8042prt.sys
2015-03-01 20:25:26 ----A---- C:\WINDOWS\SYSWOW64\WSDApi.dll
2015-03-01 20:25:26 ----A---- C:\WINDOWS\SYSWOW64\QSVRMGMT.DLL
2015-03-01 20:25:26 ----A---- C:\WINDOWS\system32\WSDApi.dll
2015-03-01 20:25:26 ----A---- C:\WINDOWS\system32\vpnike.dll
2015-03-01 20:25:26 ----A---- C:\WINDOWS\system32\spoolsv.exe
2015-03-01 20:25:26 ----A---- C:\WINDOWS\system32\QSVRMGMT.DLL
2015-03-01 20:25:26 ----A---- C:\WINDOWS\system32\drivers\vhdmp.sys
2015-03-01 20:25:26 ----A---- C:\WINDOWS\system32\drivers\sdbus.sys
2015-03-01 20:25:25 ----A---- C:\WINDOWS\SYSWOW64\untfs.dll
2015-03-01 20:25:25 ----A---- C:\WINDOWS\system32\WSDMon.dll
2015-03-01 20:25:25 ----A---- C:\WINDOWS\system32\WinSCard.dll
2015-03-01 20:25:25 ----A---- C:\WINDOWS\system32\untfs.dll
2015-03-01 20:25:25 ----A---- C:\WINDOWS\system32\drivers\wfplwfs.sys
2015-03-01 20:25:25 ----A---- C:\WINDOWS\system32\drivers\wanarp.sys
2015-03-01 20:25:25 ----A---- C:\WINDOWS\system32\drivers\dumpsd.sys
2015-03-01 20:25:25 ----A---- C:\WINDOWS\system32\drivers\dam.sys
2015-03-01 20:25:25 ----A---- C:\WINDOWS\system32\dnsrslvr.dll
2015-03-01 20:25:25 ----A---- C:\WINDOWS\system32\AppxAllUserStore.dll
2015-03-01 20:25:24 ----A---- C:\WINDOWS\system32\wuauclt.exe
2015-03-01 20:25:24 ----A---- C:\WINDOWS\system32\drivers\pdc.sys
2015-03-01 20:25:24 ----A---- C:\WINDOWS\system32\drivers\mouclass.sys
2015-03-01 20:25:24 ----A---- C:\WINDOWS\system32\drivers\kbdclass.sys
2015-03-01 20:25:24 ----A---- C:\WINDOWS\system32\drivers\intelpep.sys
2015-03-01 20:25:24 ----A---- C:\WINDOWS\system32\drivers\FWPKCLNT.SYS
2015-03-01 20:25:23 ----A---- C:\WINDOWS\SYSWOW64\AppxAllUserStore.dll
2015-03-01 20:25:23 ----A---- C:\WINDOWS\system32\drivers\tcpip.sys
2015-03-01 20:25:23 ----A---- C:\WINDOWS\system32\BFE.DLL
2015-03-01 20:25:22 ----A---- C:\WINDOWS\SYSWOW64\WinSCard.dll
2015-03-01 20:25:22 ----A---- C:\WINDOWS\SYSWOW64\rasapi32.dll
2015-03-01 20:25:22 ----A---- C:\WINDOWS\SYSWOW64\QSHVHOST.DLL
2015-03-01 20:25:22 ----A---- C:\WINDOWS\SYSWOW64\nshwfp.dll
2015-03-01 20:25:22 ----A---- C:\WINDOWS\system32\rasapi32.dll
2015-03-01 20:25:22 ----A---- C:\WINDOWS\system32\QSHVHOST.DLL
2015-03-01 20:25:22 ----A---- C:\WINDOWS\system32\nshwfp.dll
2015-03-01 20:25:22 ----A---- C:\WINDOWS\system32\DevicePairing.dll
2015-03-01 20:25:21 ----A---- C:\WINDOWS\SYSWOW64\wuapi.dll
2015-03-01 20:25:21 ----A---- C:\WINDOWS\SYSWOW64\DevicePairing.dll
2015-03-01 20:25:21 ----A---- C:\WINDOWS\system32\wucltux.dll
2015-03-01 20:25:21 ----A---- C:\WINDOWS\system32\wuapi.dll
2015-03-01 20:25:21 ----A---- C:\WINDOWS\system32\drivers\sermouse.sys
2015-03-01 20:25:21 ----A---- C:\WINDOWS\system32\drivers\ndproxy.sys
2015-03-01 20:25:21 ----A---- C:\WINDOWS\system32\drivers\ndistapi.sys
2015-03-01 20:25:21 ----A---- C:\WINDOWS\system32\drivers\mouhid.sys
2015-03-01 20:25:21 ----A---- C:\WINDOWS\system32\drivers\kbdhid.sys
2015-03-01 20:25:21 ----A---- C:\WINDOWS\system32\drivers\agilevpn.sys
2015-03-01 20:25:20 ----A---- C:\WINDOWS\system32\WUSettingsProvider.dll
2015-03-01 20:25:20 ----A---- C:\WINDOWS\system32\vssapi.dll
2015-03-01 20:25:20 ----A---- C:\WINDOWS\system32\SkyDriveTelemetry.dll
2015-03-01 20:25:19 ----A---- C:\WINDOWS\SYSWOW64\wuwebv.dll
2015-03-01 20:25:19 ----A---- C:\WINDOWS\SYSWOW64\vssapi.dll
2015-03-01 20:25:19 ----A---- C:\WINDOWS\SYSWOW64\dnsapi.dll
2015-03-01 20:25:19 ----A---- C:\WINDOWS\system32\wuwebv.dll
2015-03-01 20:25:19 ----A---- C:\WINDOWS\system32\wups2.dll
2015-03-01 20:25:19 ----A---- C:\WINDOWS\system32\VSSVC.exe
2015-03-01 20:25:19 ----A---- C:\WINDOWS\system32\FWPUCLNT.DLL
2015-03-01 20:25:19 ----A---- C:\WINDOWS\system32\dnsapi.dll
2015-03-01 20:25:18 ----A---- C:\WINDOWS\SYSWOW64\wups.dll
2015-03-01 20:25:18 ----A---- C:\WINDOWS\SYSWOW64\wudriver.dll
2015-03-01 20:25:18 ----A---- C:\WINDOWS\SYSWOW64\vsstrace.dll
2015-03-01 20:25:18 ----A---- C:\WINDOWS\SYSWOW64\rasdiag.dll
2015-03-01 20:25:18 ----A---- C:\WINDOWS\SYSWOW64\rascfg.dll
2015-03-01 20:25:18 ----A---- C:\WINDOWS\SYSWOW64\FWPUCLNT.DLL
2015-03-01 20:25:18 ----A---- C:\WINDOWS\system32\wups.dll
2015-03-01 20:25:18 ----A---- C:\WINDOWS\system32\wudriver.dll
2015-03-01 20:25:18 ----A---- C:\WINDOWS\system32\vsstrace.dll
2015-03-01 20:25:18 ----A---- C:\WINDOWS\system32\rasser.dll
2015-03-01 20:25:18 ----A---- C:\WINDOWS\system32\rasmxs.dll
2015-03-01 20:25:18 ----A---- C:\WINDOWS\system32\rasdiag.dll
2015-03-01 20:25:18 ----A---- C:\WINDOWS\system32\rascfg.dll
2015-03-01 20:25:17 ----A---- C:\WINDOWS\SYSWOW64\wuapp.exe
2015-03-01 20:25:17 ----A---- C:\WINDOWS\SYSWOW64\rasser.dll
2015-03-01 20:25:17 ----A---- C:\WINDOWS\SYSWOW64\rasmxs.dll
2015-03-01 20:25:17 ----A---- C:\WINDOWS\SYSWOW64\eventcls.dll
2015-03-01 20:25:17 ----A---- C:\WINDOWS\system32\wuapp.exe
2015-03-01 20:25:17 ----A---- C:\WINDOWS\system32\wuaext.dll
2015-03-01 20:25:17 ----A---- C:\WINDOWS\system32\eventcls.dll
2015-03-01 20:25:17 ----A---- C:\WINDOWS\splwow64.exe
2015-03-01 19:58:38 ----D---- C:\Users\Dana Horáková\AppData\Roaming\Bitcasa
2015-03-01 19:56:41 ----D---- C:\Users\Dana Horáková\AppData\Roaming\com.bitcasa.Bitcasa
2015-03-01 19:53:59 ----D---- C:\Program Files\CCleaner
2015-02-23 16:13:44 ----N---- C:\WINDOWS\system32\MpSigStub.exe
2015-02-23 15:50:42 ----D---- C:\WINDOWS\system32\appraiser
2015-02-23 15:41:37 ----A---- C:\WINDOWS\system32\drivers\aswKbd.sys
2015-02-23 15:41:32 ----A---- C:\WINDOWS\system32\aswBoot.exe
2015-02-23 15:41:25 ----A---- C:\WINDOWS\avastSS.scr
2015-02-23 15:41:02 ----A---- C:\WINDOWS\system32\drivers\aswNdisFlt.sys
2015-02-23 14:55:34 ----D---- C:\Program Files\Microsoft Silverlight
2015-02-23 14:55:34 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2015-02-23 12:45:30 ----D---- C:\Users\Dana Horáková\AppData\Roaming\QuickScan
2015-02-21 17:12:56 ----A---- C:\WINDOWS\system32\drivers\WdFilter.sys
2015-02-21 17:12:55 ----A---- C:\WINDOWS\system32\drivers\WdNisDrv.sys
2015-02-21 17:12:54 ----A---- C:\WINDOWS\system32\drivers\WdBoot.sys
2015-02-21 17:12:52 ----A---- C:\WINDOWS\SYSWOW64\winshfhc.dll
2015-02-21 17:12:52 ----A---- C:\WINDOWS\system32\winshfhc.dll
2015-02-21 17:08:05 ----A---- C:\WINDOWS\SYSWOW64\TsWpfWrp.exe
2015-02-21 17:08:05 ----A---- C:\WINDOWS\system32\TsWpfWrp.exe
2015-02-21 17:07:10 ----A---- C:\WINDOWS\system32\drivers\vwifimp.sys
2015-02-21 17:07:09 ----A---- C:\WINDOWS\system32\drivers\vwififlt.sys
2015-02-21 17:06:57 ----A---- C:\WINDOWS\system32\sppobjs.dll
2015-02-21 17:04:13 ----A---- C:\WINDOWS\system32\jscript9.dll
2015-02-21 17:04:12 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2015-02-21 17:04:10 ----A---- C:\WINDOWS\system32\devinv.dll
2015-02-21 17:04:10 ----A---- C:\WINDOWS\system32\appraiser.dll
2015-02-21 17:04:10 ----A---- C:\WINDOWS\system32\aepic.dll
2015-02-21 17:04:10 ----A---- C:\WINDOWS\system32\aepdu.dll
2015-02-21 17:04:10 ----A---- C:\WINDOWS\system32\aeinv.dll
2015-02-21 17:04:09 ----A---- C:\WINDOWS\system32\invagent.dll
2015-02-21 17:04:09 ----A---- C:\WINDOWS\system32\generaltel.dll
2015-02-21 17:04:06 ----A---- C:\WINDOWS\SYSWOW64\pku2u.dll
2015-02-21 17:04:06 ----A---- C:\WINDOWS\SYSWOW64\kerberos.dll
2015-02-21 17:04:06 ----A---- C:\WINDOWS\system32\pku2u.dll
2015-02-21 17:04:06 ----A---- C:\WINDOWS\system32\kerberos.dll
2015-02-21 17:03:12 ----A---- C:\WINDOWS\SYSWOW64\msvcr120_clr0400.dll
2015-02-21 17:03:11 ----A---- C:\WINDOWS\system32\msvcr120_clr0400.dll
2015-02-19 22:03:19 ----D---- C:\Program Files\Common Files\Atheros
2015-02-19 21:53:28 ----D---- C:\Users\Dana Horáková\AppData\Roaming\Identities
2015-02-19 21:51:31 ----SHD---- C:\ProgramData\Šablony
2015-02-19 21:51:31 ----SHD---- C:\ProgramData\Plocha
2015-02-19 21:51:31 ----SHD---- C:\ProgramData\Nabídka Start
2015-02-19 21:51:31 ----SHD---- C:\ProgramData\Dokumenty
2015-02-19 21:51:31 ----SHD---- C:\ProgramData\Data aplikací
2015-02-19 21:50:24 ----A---- C:\WINDOWS\system32\emptyregdb.dat
2015-02-19 21:39:33 ----SD---- C:\Users\Dana Horáková\AppData\Roaming\Microsoft
2015-02-19 21:32:52 ----D---- C:\Program Files\ATI Technologies
2015-02-19 21:32:36 ----D---- C:\Program Files (x86)\ATI Technologies
2015-02-19 21:32:24 ----D---- C:\ProgramData\Package Cache
2015-02-19 21:32:12 ----D---- C:\WINDOWS\system32\SRSLabs
2015-02-19 21:32:09 ----D---- C:\Program Files\Realtek
2015-02-19 21:32:08 ----D---- C:\WINDOWS\SYSWOW64\RTCOM
2015-02-19 21:31:55 ----D---- C:\AMD
2015-02-19 21:31:52 ----D---- C:\Program Files\Common Files\ATI Technologies
2015-02-19 21:31:49 ----D---- C:\Program Files\AMD
2015-02-19 21:31:39 ----D---- C:\Program Files\Elantech
2015-02-19 21:31:29 ----D---- C:\WINDOWS\Prefetch
2015-02-19 21:30:23 ----SHD---- C:\Recovery
2015-02-19 21:30:20 ----DC---- C:\WINDOWS\Panther
2015-02-19 21:29:14 ----A---- C:\WINDOWS\SYSWOW64\WerFaultSecure.exe
2015-02-19 21:29:14 ----A---- C:\WINDOWS\SYSWOW64\wer.dll
2015-02-19 21:29:14 ----A---- C:\WINDOWS\SYSWOW64\Faultrep.dll
2015-02-19 21:29:14 ----A---- C:\WINDOWS\system32\WerFaultSecure.exe
2015-02-19 21:29:14 ----A---- C:\WINDOWS\system32\wer.dll
2015-02-19 21:29:14 ----A---- C:\WINDOWS\system32\Faultrep.dll
2015-02-19 21:29:14 ----A---- C:\WINDOWS\system32\EncDump.dll
2015-02-19 21:29:14 ----A---- C:\WINDOWS\system32\ci.dll
2015-02-19 21:29:14 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2015-02-19 21:27:29 ----A---- C:\WINDOWS\SYSWOW64\MrmCoreR.dll
2015-02-19 21:27:29 ----A---- C:\WINDOWS\system32\SystemSettingsDatabase.dll
2015-02-19 21:27:29 ----A---- C:\WINDOWS\system32\SystemSettingsAdminFlowUI.dll
2015-02-19 21:27:29 ----A---- C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2015-02-19 21:27:29 ----A---- C:\WINDOWS\system32\SystemSettings.Handlers.dll
2015-02-19 21:27:29 ----A---- C:\WINDOWS\system32\SettingsHandlers.dll
2015-02-19 21:27:29 ----A---- C:\WINDOWS\system32\MrmCoreR.dll
2015-02-19 21:27:29 ----A---- C:\WINDOWS\system32\MDMAgent.exe
2015-02-19 21:27:16 ----A---- C:\WINDOWS\SYSWOW64\oleaut32.dll
2015-02-19 21:27:16 ----A---- C:\WINDOWS\system32\oleaut32.dll
2015-02-19 21:27:05 ----A---- C:\WINDOWS\system32\nlasvc.dll
2015-02-19 21:27:05 ----A---- C:\WINDOWS\system32\ncsi.dll
2015-02-19 21:26:59 ----A---- C:\WINDOWS\SYSWOW64\crypt32.dll
2015-02-19 21:26:59 ----A---- C:\WINDOWS\system32\crypt32.dll
2015-02-19 21:26:46 ----A---- C:\WINDOWS\system32\TSWbPrxy.exe
2015-02-19 21:26:38 ----A---- C:\WINDOWS\SYSWOW64\certcli.dll
2015-02-19 21:26:38 ----A---- C:\WINDOWS\system32\drivers\ksecpkg.sys
2015-02-19 21:26:38 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2015-02-19 21:26:38 ----A---- C:\WINDOWS\system32\certcli.dll
2015-02-19 21:26:24 ----A---- C:\WINDOWS\system32\profsvc.dll
2015-02-19 21:26:18 ----A---- C:\WINDOWS\SYSWOW64\WindowsCodecs.dll
2015-02-19 21:26:18 ----A---- C:\WINDOWS\system32\WindowsCodecs.dll
2015-02-19 21:26:11 ----A---- C:\WINDOWS\SYSWOW64\DeviceSetupStatusProvider.dll
2015-02-19 21:26:11 ----A---- C:\WINDOWS\system32\DeviceSetupStatusProvider.dll
2015-02-19 21:26:05 ----A---- C:\WINDOWS\system32\win32k.sys
2015-02-19 21:25:45 ----A---- C:\WINDOWS\system32\drivers\mrxdav.sys
2015-02-19 21:25:40 ----A---- C:\WINDOWS\SYSWOW64\scesrv.dll
2015-02-19 21:25:40 ----A---- C:\WINDOWS\system32\scesrv.dll
2015-02-19 21:25:24 ----A---- C:\WINDOWS\SYSWOW64\schannel.dll
2015-02-19 21:25:24 ----A---- C:\WINDOWS\system32\schannel.dll
2015-02-19 21:24:42 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2015-02-19 21:24:42 ----A---- C:\WINDOWS\SYSWOW64\inetcomm.dll
2015-02-19 21:24:42 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2015-02-19 21:24:42 ----A---- C:\WINDOWS\system32\actxprxy.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\SYSWOW64\webcheck.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\SYSWOW64\mshtmled.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\SYSWOW64\MshtmlDac.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\SYSWOW64\jscript.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\SYSWOW64\iepeers.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\SYSWOW64\ieapfltr.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\SYSWOW64\dxtrans.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\SYSWOW64\dxtmsft.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\system32\wininet.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\system32\webcheck.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\system32\vbscript.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\system32\urlmon.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\system32\mshtmled.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\system32\MshtmlDac.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\system32\mshtml.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\system32\msfeeds.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\system32\jscript.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\system32\inetcomm.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\system32\iertutil.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\system32\iepeers.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\system32\ieframe.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2015-02-19 21:24:41 ----A---- C:\WINDOWS\system32\dxtrans.dll
2015-02-19 21:24:41 ----A---- C:\WINDOWS\system32\dxtmsft.dll
2015-02-19 21:22:53 ----A---- C:\WINDOWS\system32\drivers\ahcache.sys
2015-02-19 21:22:48 ----A---- C:\WINDOWS\SYSWOW64\poqexec.exe
2015-02-19 21:22:48 ----A---- C:\WINDOWS\system32\poqexec.exe
2015-02-19 21:22:35 ----A---- C:\WINDOWS\SYSWOW64\wow32.dll
2015-02-19 21:22:35 ----A---- C:\WINDOWS\SYSWOW64\user.exe
2015-02-19 21:22:35 ----A---- C:\WINDOWS\SYSWOW64\setup16.exe
2015-02-19 21:22:35 ----A---- C:\WINDOWS\SYSWOW64\ntvdm64.dll
2015-02-19 21:22:35 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2015-02-19 21:22:35 ----A---- C:\WINDOWS\SYSWOW64\instnm.exe
2015-02-19 21:22:35 ----A---- C:\WINDOWS\system32\wow64cpu.dll
2015-02-19 21:22:35 ----A---- C:\WINDOWS\system32\wow64.dll
2015-02-19 21:22:35 ----A---- C:\WINDOWS\system32\ntvdm64.dll
2015-02-19 21:22:35 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2015-02-19 21:22:35 ----A---- C:\WINDOWS\system32\ntdll.dll
2015-02-19 21:19:39 ----D---- C:\Program Files (x86)\Reference Assemblies
2015-02-19 21:19:39 ----D---- C:\Program Files (x86)\MSBuild
2015-02-19 21:19:37 ----D---- C:\WINDOWS\SYSWOW64\XPSViewer
2015-02-19 21:19:37 ----D---- C:\Program Files\Reference Assemblies
2015-02-19 21:19:37 ----D---- C:\Program Files\MSBuild
2015-02-19 21:19:00 ----A---- C:\WINDOWS\SYSWOW64\PresentationNative_v0300.dll
2015-02-19 21:19:00 ----A---- C:\WINDOWS\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2015-02-19 21:18:59 ----A---- C:\WINDOWS\system32\PresentationNative_v0300.dll
2015-02-19 21:18:59 ----A---- C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2015-02-14 09:47:45 ----D---- C:\WINDOWS\system32\AutoUpdateLicense

======List of files/folders modified in the last 1 month======

2015-03-01 22:52:19 ----D---- C:\WINDOWS\Temp
2015-03-01 22:50:35 ----D---- C:\WINDOWS\Tasks
2015-03-01 22:46:31 ----D---- C:\WINDOWS\Microsoft.NET
2015-03-01 22:09:31 ----D---- C:\WINDOWS\debug
2015-03-01 22:00:00 ----D---- C:\WINDOWS\system32\sru
2015-03-01 21:51:28 ----D---- C:\WINDOWS\Inf
2015-03-01 21:41:28 ----D---- C:\WINDOWS\system32\config
2015-03-01 21:39:15 ----SHD---- C:\System Volume Information
2015-03-01 21:33:36 ----RD---- C:\WINDOWS\System32
2015-03-01 21:33:36 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2015-03-01 21:32:10 ----D---- C:\WINDOWS\SoftwareDistribution
2015-03-01 21:32:10 ----D---- C:\Windows
2015-03-01 21:31:18 ----D---- C:\ProgramData\WinClon
2015-03-01 20:52:48 ----RD---- C:\Program Files
2015-03-01 20:36:01 ----D---- C:\WINDOWS\WinSxS
2015-03-01 20:34:41 ----RD---- C:\WINDOWS\ToastData
2015-03-01 20:34:40 ----D---- C:\WINDOWS\SYSWOW64\setup
2015-03-01 20:34:40 ----D---- C:\WINDOWS\SysWOW64
2015-03-01 20:34:40 ----D---- C:\WINDOWS\system32\setup
2015-03-01 20:34:40 ----D---- C:\WINDOWS\system32\drivers
2015-03-01 20:34:40 ----D---- C:\WINDOWS\system32\cs-CZ
2015-03-01 20:34:34 ----D---- C:\WINDOWS\system32\DriverStore
2015-03-01 20:29:47 ----D---- C:\WINDOWS\CbsTemp
2015-03-01 20:21:58 ----D---- C:\ProgramData\Oracle
2015-03-01 20:21:53 ----SHD---- C:\WINDOWS\Installer
2015-03-01 20:21:50 ----D---- C:\Program Files (x86)\Java
2015-03-01 20:21:20 ----D---- C:\Program Files (x86)\Common Files
2015-03-01 20:20:51 ----A---- C:\WINDOWS\SYSWOW64\WindowsAccessBridge-32.dll
2015-03-01 20:20:49 ----A---- C:\WINDOWS\SYSWOW64\javaws.exe
2015-03-01 20:20:49 ----A---- C:\WINDOWS\SYSWOW64\javaw.exe
2015-03-01 20:20:49 ----A---- C:\WINDOWS\SYSWOW64\java.exe
2015-03-01 20:07:14 ----RD---- C:\Program Files (x86)
2015-03-01 19:54:03 ----D---- C:\WINDOWS\system32\Tasks
2015-03-01 19:07:42 ----D---- C:\WINDOWS\rescache
2015-03-01 19:01:56 ----D---- C:\WINDOWS\Logs
2015-03-01 18:47:14 ----D---- C:\WINDOWS\system32\drivers\UMDF
2015-02-25 21:27:28 ----D---- C:\WINDOWS\system32\catroot2
2015-02-24 15:02:00 ----RD---- C:\WINDOWS\assembly
2015-02-24 09:42:57 ----D---- C:\WINDOWS\system32\catroot
2015-02-23 16:30:27 ----D---- C:\CitrixUSBStore
2015-02-23 15:53:46 ----D---- C:\WINDOWS\system32\wdi
2015-02-23 15:50:43 ----SD---- C:\WINDOWS\system32\CompatTel
2015-02-23 15:50:42 ----SD---- C:\ProgramData\Microsoft
2015-02-23 15:50:41 ----D---- C:\WINDOWS\system32\sr-Latn-RS
2015-02-23 15:50:41 ----D---- C:\WINDOWS\system32\sr-Latn-CS
2015-02-23 15:50:40 ----D---- C:\Program Files\Windows Defender
2015-02-23 15:50:40 ----D---- C:\Program Files (x86)\Windows Defender
2015-02-23 15:50:39 ----D---- C:\WINDOWS\system32\en-US
2015-02-22 16:09:56 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2015-02-22 16:06:41 ----D---- C:\WINDOWS\system32\restore
2015-02-21 14:02:16 ----HD---- C:\Program Files\WindowsApps
2015-02-21 14:02:16 ----D---- C:\WINDOWS\AppReadiness
2015-02-19 22:03:21 ----D---- C:\Program Files (x86)\Bluetooth Suite
2015-02-19 22:03:19 ----D---- C:\Program Files\Common Files
2015-02-19 21:53:49 ----SHD---- C:\$Recycle.Bin
2015-02-19 21:51:31 ----HD---- C:\ProgramData
2015-02-19 21:51:31 ----D---- C:\Program Files\Windows NT
2015-02-19 21:50:55 ----D---- C:\WINDOWS\Registration
2015-02-19 21:50:30 ----D---- C:\WINDOWS\system32\LogFiles
2015-02-19 21:48:57 ----RSD---- C:\WINDOWS\Media
2015-02-19 21:46:17 ----D---- C:\WINDOWS\system32\Sysprep
2015-02-19 21:46:16 ----D---- C:\WINDOWS\ShellNew
2015-02-19 21:46:15 ----RSD---- C:\WINDOWS\Fonts
2015-02-19 21:46:15 ----RD---- C:\Users
2015-02-19 21:45:30 ----D---- C:\WINDOWS\SYSWOW64\WCN
2015-02-19 21:45:30 ----D---- C:\WINDOWS\SYSWOW64\sysprep
2015-02-19 21:45:30 ----D---- C:\WINDOWS\SYSWOW64\SMI
2015-02-19 21:45:30 ----D---- C:\WINDOWS\SYSWOW64\sda
2015-02-19 21:45:29 ----D---- C:\WINDOWS\SYSWOW64\MUI
2015-02-19 21:45:29 ----D---- C:\WINDOWS\SYSWOW64\migwiz
2015-02-19 21:45:29 ----D---- C:\WINDOWS\SYSWOW64\LogFiles
2015-02-19 21:45:28 ----D---- C:\WINDOWS\SYSWOW64\IME
2015-02-19 21:45:28 ----D---- C:\WINDOWS\SYSWOW64\drivers\UMDF
2015-02-19 21:45:28 ----D---- C:\WINDOWS\SYSWOW64\catroot
2015-02-19 21:45:25 ----D---- C:\WINDOWS\system32\WCN
2015-02-19 21:45:25 ----D---- C:\WINDOWS\system32\spool
2015-02-19 21:45:23 ----DC---- C:\WINDOWS\system32\DRVSTORE
2015-02-19 21:45:23 ----D---- C:\WINDOWS\system32\oobe
2015-02-19 21:45:23 ----D---- C:\WINDOWS\system32\NDF
2015-02-19 21:45:23 ----D---- C:\WINDOWS\system32\MUI
2015-02-19 21:45:23 ----D---- C:\WINDOWS\system32\IME
2015-02-19 21:44:43 ----D---- C:\WINDOWS\System
2015-02-19 21:44:37 ----D---- C:\WINDOWS\IME
2015-02-19 21:44:37 ----D---- C:\WINDOWS\Help
2015-02-19 21:44:36 ----D---- C:\WINDOWS\DigitalLocker
2015-02-19 21:44:34 ----D---- C:\ProgramData\PRICache
2015-02-19 21:44:31 ----SHD---- C:\Program Files (x86)\Windows Sidebar
2015-02-19 21:44:31 ----D---- C:\Program Files (x86)\Windows Media Player
2015-02-19 21:44:30 ----D---- C:\Program Files (x86)\Microsoft.NET
2015-02-19 21:44:27 ----SHD---- C:\Program Files\Windows Sidebar
2015-02-19 21:44:27 ----D---- C:\Program Files\Windows Media Player
2015-02-19 21:44:27 ----D---- C:\Program Files\Common Files\microsoft shared
2015-02-19 21:40:31 ----D---- C:\WINDOWS\system32\Recovery
2015-02-19 21:29:19 ----D---- C:\WINDOWS\system32\CodeIntegrity
2015-02-19 21:27:36 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2015-02-19 21:27:36 ----D---- C:\WINDOWS\system32\wbem
2015-02-19 21:25:20 ----D---- C:\Program Files\Internet Explorer
2015-02-19 21:25:20 ----D---- C:\Program Files (x86)\Internet Explorer
2015-02-19 21:25:19 ----D---- C:\WINDOWS\PolicyDefinitions
2015-02-19 21:22:38 ----D---- C:\WINDOWS\apppatch
2015-02-13 19:24:28 ----D---- C:\ProgramData\Microsoft Help
2015-02-13 19:10:19 ----D---- C:\WINDOWS\system32\MRT
2015-02-09 20:42:18 ----D---- C:\WINDOWS\AUInstallAgent
2015-02-03 20:31:19 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 amd_sata;amd_sata; C:\WINDOWS\System32\drivers\amd_sata.sys [2012-11-30 80552]
R0 amd_xata;amd_xata; C:\WINDOWS\System32\drivers\amd_xata.sys [2012-11-30 26280]
R0 aswNdisFlt;@oem66.inf,%AfwDescriptionFree%;Avast! Firewall Driver; C:\WINDOWS\system32\DRIVERS\aswNdisFlt.sys [2015-02-23 449936]
R0 aswRvrt;avast! Revert; C:\WINDOWS\system32\drivers\aswRvrt.sys [2015-02-23 65776]
R0 aswVmm;avast! VM Monitor; C:\WINDOWS\system32\drivers\aswVmm.sys [2015-02-23 267632]
R0 PxHlpa64;PxHlpa64; C:\WINDOWS\System32\Drivers\PxHlpa64.sys [2012-08-09 56336]
R1 aswKbd;aswKbd; C:\WINDOWS\system32\drivers\aswKbd.sys [2015-02-23 28184]
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [2015-02-23 93568]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2015-02-23 1050432]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2015-02-23 436624]
R1 ctxusbm;Citrix USB Monitor Driver; C:\WINDOWS\system32\DRIVERS\ctxusbm.sys [2012-12-05 98888]
R1 vwififlt;@%SystemRoot%\System32\drivers\vwififlt.sys,-259; C:\WINDOWS\system32\DRIVERS\vwififlt.sys [2014-04-30 71680]
R2 aswHwid;avast! HardwareID; C:\WINDOWS\system32\drivers\aswHwid.sys [2015-02-23 29208]
R2 aswMonFlt;aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [2015-02-23 83280]
R2 aswStm;aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [2015-02-23 116728]
R3 amdkmdag;amdkmdag; C:\WINDOWS\system32\DRIVERS\atikmdag.sys [2014-07-21 13209088]
R3 amdkmdap;amdkmdap; C:\WINDOWS\system32\DRIVERS\atikmpag.sys [2014-07-21 626688]
R3 AthBTPort;@oem5.inf,%BTHSUPPORT.SvcDesc%;Qualcomm Atheros Virtual Bluetooth Class; C:\WINDOWS\system32\DRIVERS\btath_flt.sys [2013-04-24 89800]
R3 athr;@oem24.inf,%ATHR.Service.DispName%;Qualcomm Atheros Extensible Wireless LAN device driver; C:\WINDOWS\system32\DRIVERS\athw8x.sys [2013-04-15 3786752]
R3 AtiHDAudioService;@oem61.inf,%ATIHdAudioDriver.SvcDesc%;AMD Function Driver for HD Audio Service; C:\WINDOWS\system32\drivers\AtihdW86.sys [2013-02-13 94208]
R3 BTATH_A2DP;@oem4.inf,%BTATH_A2DP.SvcDesc%;Bluetooth A2DP Audio Driver; C:\WINDOWS\system32\drivers\btath_a2dp.sys [2013-04-24 347336]
R3 btath_avdt;@oem4.inf,%btath_avdt.SvcDesc%;Qualcomm Atheros Bluetooth AVDT Service; C:\WINDOWS\system32\drivers\btath_avdt.sys [2013-04-24 115912]
R3 BTATH_BUS;@oem62.inf,%BTATH_BUS.SVCDESC%;Qualcomm Atheros Bluetooth Bus; C:\WINDOWS\System32\drivers\btath_bus.sys [2013-04-24 34384]
R3 BTATH_HCRP;@oem7.inf,%BTATH_HCRP.SvcDesc%;Bluetooth HCRP Server driver; C:\WINDOWS\System32\drivers\btath_hcrp.sys [2013-04-24 179432]
R3 BTATH_HID;@oem8.inf,%BTATH_HID%;Bluetooth HID Device; C:\WINDOWS\system32\DRIVERS\btath_hid.sys [2013-04-24 223432]
R3 BTATH_LWFLT;@oem16.inf,%BTATH_LWFLT%;Bluetooth LWFLT Device; C:\WINDOWS\system32\DRIVERS\btath_lwflt.sys [2013-04-24 77464]
R3 BTATH_RCP;@oem11.inf,%BTATH_RCP%;Bluetooth AVRCP Device; C:\WINDOWS\System32\drivers\btath_rcp.sys [2013-04-24 136784]
R3 BtFilter;BtFilter; C:\WINDOWS\system32\DRIVERS\btfilter.sys [2014-04-28 599240]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\system32\DRIVERS\BthEnum.sys [2014-11-21 53248]
R3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Ovladač úspory energie technologie Bluetooth; C:\WINDOWS\system32\DRIVERS\BthLEEnum.sys [2014-11-21 226304]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Zařízení Bluetooth (síť PAN); C:\WINDOWS\system32\DRIVERS\bthpan.sys [2014-11-21 118272]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\Drivers\BTHUSB.sys [2014-11-21 81920]
R3 ETD;@oem6.inf,%SamsungDeviceDesc%;Samsung PS/2 Port Input Device; C:\WINDOWS\system32\DRIVERS\ETD.sys [2013-03-25 358768]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2013-06-04 3441992]
R3 RadioHIDMini;@oem17.inf,%RadioHIDMini%;Radio HID Mini-driver; C:\WINDOWS\System32\drivers\RadioHIDMini.sys [2012-07-27 23408]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Zařízení Bluetooth (RFCOMM protokol TDI); C:\WINDOWS\system32\DRIVERS\rfcomm.sys [2014-11-21 167424]
R3 RSUSBVSTOR;@oem16.inf,%RSUSBVSTOR.SvcDesc%;RtsUVStor.Sys Realtek USB Card Reader; C:\WINDOWS\System32\Drivers\RtsUVStor.sys [2012-11-23 317584]
R3 RTL8168;@netrt630x64.inf,%rtl8168.Service.DispName%;Realtek 8168 NT Driver; C:\WINDOWS\system32\DRIVERS\Rt630x64.sys [2013-06-18 591360]
R3 usbfilter;AMD USB Filter Driver; C:\WINDOWS\system32\DRIVERS\usbfilter.sys [2012-08-28 58536]
R3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;Zobrazovací zařízení USB (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys [2014-11-21 212736]
R3 vwifimp;@%SystemRoot%\System32\drivers\vwifimp.sys,-261; C:\WINDOWS\system32\DRIVERS\vwifimp.sys [2014-04-30 38912]
S2 APXACC;AppEx Networks Accelerator LWF; C:\WINDOWS\system32\DRIVERS\appexDrv.sys [2013-04-17 219360]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\Drivers\BTHport.sys [2014-11-21 1198080]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2014-05-08 65432]
R2 AMD External Events Utility;AMD External Events Utility; C:\WINDOWS\system32\atiesrxx.exe [2014-07-21 239616]
R2 AMD FUEL Service;AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [2014-07-04 344064]
R2 AtherosSvc;AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [2013-04-24 310400]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2015-02-23 50344]
R2 avast! Firewall;avast! Firewall; C:\Program Files\AVAST Software\Avast\afwServ.exe [2015-02-23 104416]
R2 Samsung Link Service;Samsung Link Service; C:\Program Files\Samsung\Samsung Link\Samsung Link.exe [2013-07-05 605768]
R2 Settings Launcher;Settings Launcher; C:\Program Files (x86)\Samsung\Settings\CmdServer\SettingsLauncher.exe [2013-06-14 1594928]
S2 AdobeActiveFileMonitor11.0;Adobe Active File Monitor V11; C:\Program Files (x86)\Adobe\Elements 11 Organizer\PhotoshopElementsFileAgent.exe [2013-01-26 172104]
S2 AllShare Framework DMS;AllShare Framework DMS; C:\Program Files\Samsung\AllShare Framework DMS\1.3.14\AllShareFrameworkManagerDMS.exe [2013-06-18 404360]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-12-21 116648]
S2 SWUpdateService;SW Update Service; C:\ProgramData\Samsung\SW Update Service\SWMAgent.exe [2013-10-21 3018800]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2014-11-21 38792]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-12-21 116648]
S3 ose64;Office 64 Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 174440]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119677
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Pomalej NTB

#8 Příspěvek od Rudy »

Smazáno. Znovu spusťte OTM a klikněte na >CleanUp!<. OTM po sobě uklidí. Nakonec restartujte PC. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Odpovědět