Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Pomalý PC

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
Leslie10
Návštěvník
Návštěvník
Příspěvky: 42
Registrován: 29 pro 2013 22:55

Pomalý PC

#1 Příspěvek od Leslie10 »

Dobrý večer Vám prajem, dlho sme sa nestretli :)

Chcel by som Vás požiadať o pomoc. Dostal sa mi do ruky bratov PC, ktorý sa zo dňa na deň spomalil. Poprosil by som si vyčistiť jeho PC. Ešte jedna taká pripomienka. V správci úloch sa mu vždy spustí proces zvaný "mdm.exe", ktorý vyťažuje procesor na 40% a pamäť aj na 80%.

Ďakujem(e)

Logfile of random's system information tool 1.10 (written by random/random)
Run by Szabolcs Csákó at 2015-04-24 11:04:30
Microsoft Windows 8.1
System drive C: has 28 GB (25%) free of 114 GB
Total RAM: 8079 MB (77% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 11:04:33, on 24.4.2015
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17416)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\avpui.exe
C:\Fraps\fraps.exe
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Users\Szabolcs\AppData\Roaming\Spotify\SpotifyWebHelper.exe
C:\Program Files (x86)\ROCCAT\Savu Mouse\Savu Monitor.exe
C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Users\Szabolcs\AppData\Roaming\uTorrent\uTorrent.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\Program Files\trend micro\Szabolcs Csákó.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.search.ask.com/?l=dis&o=15183
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - {5bcf818d-78c8-41b8-ba89-65c5fdac4fc4} - (no file)
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: ExplorerBHO Class - {449D0D6E-2412-4E61-B68F-1CB625CD9E52} - C:\Program Files\Classic Shell\ClassicExplorer32.dll
O2 - BHO: ContentBlockerBrowserHelperObject - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\IEExt\ContentBlocker\ie_content_blocker_plugin.dll
O2 - BHO: VirtualKeyboardBrowserHelperObject - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll
O2 - BHO: Safe Money Plugin - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\IEExt\OnlineBanking\online_banking_bho.dll
O2 - BHO: link filter bho - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\IEExt\UrlAdvisor\klwtbbho.dll
O2 - BHO: ClassicIEBHO Class - {EA801577-E6AD-4BD5-8F71-4BE0154331A4} - C:\Program Files\Classic Shell\ClassicIEDLL_32.dll
O3 - Toolbar: Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer32.dll
O4 - HKLM\..\Run: [ROCCAT Savu Gaming Mouse] "C:\Program Files (x86)\ROCCAT\Savu Mouse\Savu Monitor.exe" /Automation
O4 - HKCU\..\Run: [SandboxieControl] "C:\Program Files\Sandboxie\SbieCtrl.exe"
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\Run: [Spotify Web Helper] "C:\Users\Szabolcs\AppData\Roaming\Spotify\SpotifyWebHelper.exe"
O4 - HKCU\..\Run: [Spotify] "C:\Users\Szabolcs\AppData\Roaming\Spotify\Spotify.exe" -autostart -minimized
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - Global Startup: TP-LINK Wireless Configuration Utility.lnk = C:\Program Files (x86)\TP-LINK\TP-LINK Wireless Configuration Utility\TWCU.exe
O8 - Extra context menu item: Add to Anti-Banner - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\ie_banner_deny.htm
O9 - Extra button: Virtual Keyboard - {0C4CC089-D306-440D-9772-464E226F6539} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll
O9 - Extra button: (no name) - {56753E59-AF1D-4FBA-9E15-31557124ADA2} - C:\Program Files\Classic Shell\ClassicIE_32.exe
O9 - Extra 'Tools' menuitem: Classic IE Settings - {56753E59-AF1D-4FBA-9E15-31557124ADA2} - C:\Program Files\Classic Shell\ClassicIE_32.exe
O9 - Extra button: URLs check - {CCF151D8-D089-449F-A5A4-D9909053F20F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\IEExt\UrlAdvisor\klwtbbho.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted IP range: http://10.10.10.1
O15 - ESC Trusted IP range: http://10.10.10.1
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: AppleChargerSrv - Unknown owner - C:\WINDOWS\system32\AppleChargerSrv.exe (file missing)
O23 - Service: Kaspersky Anti-Virus Service (AVP) - Kaspersky Lab ZAO - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\avp.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: Disc Soft Lite Bus Service - Disc Soft Ltd - C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
O23 - Service: Google frissítés Szolgáltatás (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google frissítés Szolgáltatás (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: JumpStart Wi-Fi Protected Setup (jswpsapi) - Wireless - C:\Program Files (x86)\TP-LINK\TP-LINK Wireless Configuration Utility\WPS\jswpsapi.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\WINDOWS\system32\nvvsvc.exe (file missing)
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Sandboxie Service (SbieSvc) - Sandboxie Holdings, LLC - C:\Program Files\Sandboxie\SbieSvc.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: TunngleService - Tunngle.net GmbH - C:\Program Files (x86)\Tunngle\TnglCtrl.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 10817 bytes

======Listing Processes======





wininit.exe

C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"C:\WINDOWS\system32\nvvsvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
"C:\Program Files\Sandboxie\SbieSvc.exe"
C:\WINDOWS\system32\svchost.exe -k NetworkService
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe"
dashost.exe {bdfeb2bc-e77b-47a4-a112ed68396ade47}
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe"
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\avp.exe" -r

C:\WINDOWS\System32\WinLogon.exe -SpecialSession
-hiberboot
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\WINDOWS\system32\nvvsvc.exe -session
"C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\avpui.exe" -hidden /prefetch:1
C:\WINDOWS\Explorer.EXE
taskhostex.exe
C:\Fraps\fraps.exe
ClassicStartMenu.exe -startup
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
"C:\Fraps\fraps64.dat"
"C:\WINDOWS\system32\igfxsrvc.exe" -Embedding
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files\Microsoft Xbox 360 Accessories\XBoxStat.exe" silentrun
"C:\Program Files\Sandboxie\SbieCtrl.exe"
"C:\Users\Szabolcs\AppData\Roaming\Spotify\SpotifyWebHelper.exe"
"C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe" 9ac24e03-b663-4c84-a27b-d13531f73b58 1
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" serviceapp
\??\C:\WINDOWS\system32\conhost.exe 0x4
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files (x86)\ROCCAT\Savu Mouse\Savu Monitor.exe" /Automation
"C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
C:\WINDOWS\SysWOW64\PnkBstrA.exe
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-9c0e75d7-3c66-432e-9b8f-47580fee23c6 -SystemEventPortName:HostProcess-5d8f292f-03b3-4574-b3d6-529b6c9a9d8a -IoCancelEventPortName:HostProcess-7808b1a9-753b-462c-b9df-418fef57d2e3 -NonStateChangingEventPortName:HostProcess-be42968a-33d9-4211-bd95-ec8f4b5d2c16 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:47fda5b0-e523-4179-996e-9ecbd33b3017 -DeviceGroupId:WpdFsGroup
"C:\Users\Szabolcs\AppData\Roaming\uTorrent\uTorrent.exe"
"C:\WINDOWS\system32\wwahost.exe" -ServerName:Microsoft.ZuneMusic.wwa
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe" --channel=2780.cc31020.621941375 -greomni "C:\Program Files (x86)\Mozilla Firefox\omni.ja" -appomni "C:\Program Files (x86)\Mozilla Firefox\browser\omni.ja" -sandbox -appdir "C:\Program Files (x86)\Mozilla Firefox\browser" 2780 "\\.\pipe\gecko-crash-server-pipe.2780" tab

"D:\Mozilla firefox letöltések\RSITx64.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe

======Scheduled tasks folder======

C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler

=========Mozilla firefox=========

ProfilePath - C:\Users\Szabolcs\AppData\Roaming\Mozilla\Firefox\Profiles\ns2me0gx.default

prefs.js - "browser.startup.homepage" - "about:home"

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 17.0.0.169 Plugin
"Path"=C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_17_0_0_169.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Allin1Convert_8h.com/Plugin]
"Description"=Allin1Convert Plugin
"Path"=C:\Program Files (x86)\Allin1Convert_8h\bar\1.bin\NP8hStub.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=3.0.72]
"Description"=Intel IPT WebApi plugin
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater]
"Description"=This plugin updates Intel WebAPI component
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVision]
"Description"=NVIDIA stereo images plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVisionStreaming]
"Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 17.0.0.169 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF64_17_0_0_169.dll


C:\Users\Szabolcs\AppData\Roaming\Mozilla\Firefox\Profiles\ns2me0gx.default\searchplugins\
askcom.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{449D0D6E-2412-4E61-B68F-1CB625CD9E52}]
ExplorerBHO Class - C:\Program Files\Classic Shell\ClassicExplorer64.dll [2014-04-20 803520]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F}]
Content Blocker Plugin - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\x64\IEExt\ContentBlocker\ie_content_blocker_plugin.dll [2014-02-15 800448]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{73455575-E40C-433C-9784-C78DC7761455}]
Virtual Keyboard Plugin - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\x64\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll [2014-12-21 1535784]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9E6D0D23-3D72-4A94-AE1F-2D167624E3D9}]
Safe Money Plugin - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\x64\IEExt\OnlineBanking\online_banking_bho.dll [2014-02-15 550080]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E33CF602-D945-461A-83F0-819F76A199F8}]
URL Advisor Plugin - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\x64\IEExt\UrlAdvisor\klwtbbho.dll [2014-06-18 996544]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EA801577-E6AD-4BD5-8F71-4BE0154331A4}]
ClassicIEBHO Class - C:\Program Files\Classic Shell\ClassicIEDLL_64.dll [2014-04-20 483520]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{449D0D6E-2412-4E61-B68F-1CB625CD9E52}]
ExplorerBHO Class - C:\Program Files\Classic Shell\ClassicExplorer32.dll [2014-04-20 683200]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F}]
Content Blocker Plugin - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\IEExt\ContentBlocker\ie_content_blocker_plugin.dll [2014-02-15 655040]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{73455575-E40C-433C-9784-C78DC7761455}]
Virtual Keyboard Plugin - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll [2014-12-21 1265448]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9E6D0D23-3D72-4A94-AE1F-2D167624E3D9}]
Safe Money Plugin - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\IEExt\OnlineBanking\online_banking_bho.dll [2014-02-15 455360]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E33CF602-D945-461A-83F0-819F76A199F8}]
URL Advisor Plugin - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\IEExt\UrlAdvisor\klwtbbho.dll [2014-06-18 798912]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EA801577-E6AD-4BD5-8F71-4BE0154331A4}]
ClassicIEBHO Class - C:\Program Files\Classic Shell\ClassicIEDLL_32.dll [2014-04-20 440512]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{553891B7-A0D5-4526-BE18-D3CE461D6310} - Classic Explorer Bar - C:\Program Files\Classic Shell\ClassicExplorer64.dll [2014-04-20 803520]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{553891B7-A0D5-4526-BE18-D3CE461D6310} - Classic Explorer Bar - C:\Program Files\Classic Shell\ClassicExplorer32.dll [2014-04-20 683200]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"=C:\WINDOWS\system32\igfxtray.exe [2013-10-04 391128]
"HotKeysCmds"=C:\WINDOWS\system32\hkcmd.exe [2013-10-04 771032]
"Persistence"=C:\WINDOWS\system32\igfxpers.exe [2013-10-04 769496]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2013-02-26 13423688]
"IAStorIcon"=C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe [2013-01-31 36352]
"XboxStat"=C:\Program Files\Microsoft Xbox 360 Accessories\XboxStat.exe [2009-10-01 825184]
"ShadowPlay"=C:\WINDOWS\system32\nvspcap64.dll [2015-03-28 1570672]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2015-03-28 2673296]
"Classic Start Menu"=C:\Program Files\Classic Shell\ClassicStartMenu.exe [2014-04-20 161984]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"SandboxieControl"=C:\Program Files\Sandboxie\SbieCtrl.exe [2015-02-18 785416]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2015-02-19 7416088]
"Spotify Web Helper"=C:\Users\Szabolcs\AppData\Roaming\Spotify\SpotifyWebHelper.exe [2015-04-01 2018360]
"Spotify"=C:\Users\Szabolcs\AppData\Roaming\Spotify\Spotify.exe [2015-04-01 7112248]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\DTLite.exe [2015-02-27 5583120]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"ROCCAT Savu Gaming Mouse"=C:\Program Files (x86)\ROCCAT\Savu Mouse\Savu Monitor.exe [2012-09-10 872048]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
TP-LINK Wireless Configuration Utility.lnk - C:\Program Files (x86)\TP-LINK\TP-LINK Wireless Configuration Utility\TWCU.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\PROGRA~2\NVIDIA~1\3DVISI~1\NVSTIN~1.DLL"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2013-10-04 623616]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=28

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.yuy2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"vidc.yvyu"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"vidc.uyvy"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"VIDC.FPS1"=frapsv64.dll
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2015-04-20 07:44:27 ----D---- C:\Program Files (x86)\Mozilla Firefox
2015-04-18 07:09:54 ----D---- C:\Program Files\Rockstar Games
2015-04-15 16:25:45 ----D---- C:\WINDOWS\system32\appraiser
2015-04-15 12:21:35 ----A---- C:\WINDOWS\SYSWOW64\msctf.dll
2015-04-15 12:21:35 ----A---- C:\WINDOWS\system32\msctf.dll
2015-04-15 12:21:32 ----A---- C:\WINDOWS\SYSWOW64\tdh.dll
2015-04-15 12:21:32 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2015-04-15 12:21:32 ----A---- C:\WINDOWS\system32\tdh.dll
2015-04-15 12:21:32 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2015-04-15 12:21:32 ----A---- C:\WINDOWS\system32\ntdll.dll
2015-04-15 12:21:31 ----A---- C:\WINDOWS\SYSWOW64\tracerpt.exe
2015-04-15 12:21:31 ----A---- C:\WINDOWS\SYSWOW64\sechost.dll
2015-04-15 12:21:31 ----A---- C:\WINDOWS\system32\wow64cpu.dll
2015-04-15 12:21:31 ----A---- C:\WINDOWS\system32\wow64.dll
2015-04-15 12:21:31 ----A---- C:\WINDOWS\system32\tracerpt.exe
2015-04-15 12:21:31 ----A---- C:\WINDOWS\system32\sechost.dll
2015-04-15 12:21:31 ----A---- C:\WINDOWS\system32\microsoft-windows-system-events.dll
2015-04-15 12:21:28 ----A---- C:\WINDOWS\system32\lsm.dll
2015-04-15 12:21:26 ----A---- C:\WINDOWS\SYSWOW64\pku2u.dll
2015-04-15 12:21:26 ----A---- C:\WINDOWS\system32\pku2u.dll
2015-04-15 12:21:25 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2015-04-15 12:21:25 ----A---- C:\WINDOWS\system32\mshtml.dll
2015-04-15 12:21:24 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2015-04-15 12:21:24 ----A---- C:\WINDOWS\system32\jscript9.dll
2015-04-15 12:21:23 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2015-04-15 12:21:23 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2015-04-15 12:21:23 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2015-04-15 12:21:23 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2015-04-15 12:21:23 ----A---- C:\WINDOWS\SYSWOW64\jscript.dll
2015-04-15 12:21:23 ----A---- C:\WINDOWS\SYSWOW64\inetcomm.dll
2015-04-15 12:21:23 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2015-04-15 12:21:23 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2015-04-15 12:21:23 ----A---- C:\WINDOWS\SYSWOW64\ieapfltr.dll
2015-04-15 12:21:23 ----A---- C:\WINDOWS\system32\wininet.dll
2015-04-15 12:21:23 ----A---- C:\WINDOWS\system32\vbscript.dll
2015-04-15 12:21:23 ----A---- C:\WINDOWS\system32\urlmon.dll
2015-04-15 12:21:23 ----A---- C:\WINDOWS\system32\mshtmled.dll
2015-04-15 12:21:23 ----A---- C:\WINDOWS\system32\msfeeds.dll
2015-04-15 12:21:23 ----A---- C:\WINDOWS\system32\jscript.dll
2015-04-15 12:21:23 ----A---- C:\WINDOWS\system32\inetcomm.dll
2015-04-15 12:21:23 ----A---- C:\WINDOWS\system32\iertutil.dll
2015-04-15 12:21:23 ----A---- C:\WINDOWS\system32\ieframe.dll
2015-04-15 12:21:23 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2015-04-15 12:21:23 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2015-04-15 12:21:01 ----A---- C:\WINDOWS\system32\drivers\http.sys
2015-04-15 12:20:58 ----A---- C:\WINDOWS\SYSWOW64\clfsw32.dll
2015-04-15 12:20:58 ----A---- C:\WINDOWS\system32\drivers\clfs.sys
2015-04-15 12:20:58 ----A---- C:\WINDOWS\system32\clfsw32.dll
2015-04-15 12:20:56 ----A---- C:\WINDOWS\SYSWOW64\wuwebv.dll
2015-04-15 12:20:56 ----A---- C:\WINDOWS\SYSWOW64\wups.dll
2015-04-15 12:20:56 ----A---- C:\WINDOWS\SYSWOW64\wudriver.dll
2015-04-15 12:20:56 ----A---- C:\WINDOWS\SYSWOW64\wuapp.exe
2015-04-15 12:20:56 ----A---- C:\WINDOWS\SYSWOW64\wuapi.dll
2015-04-15 12:20:56 ----A---- C:\WINDOWS\system32\wuwebv.dll
2015-04-15 12:20:56 ----A---- C:\WINDOWS\system32\WUSettingsProvider.dll
2015-04-15 12:20:56 ----A---- C:\WINDOWS\system32\wups2.dll
2015-04-15 12:20:56 ----A---- C:\WINDOWS\system32\wups.dll
2015-04-15 12:20:56 ----A---- C:\WINDOWS\system32\wudriver.dll
2015-04-15 12:20:56 ----A---- C:\WINDOWS\system32\wucltux.dll
2015-04-15 12:20:56 ----A---- C:\WINDOWS\system32\wuaueng.dll
2015-04-15 12:20:56 ----A---- C:\WINDOWS\system32\wuauclt.exe
2015-04-15 12:20:56 ----A---- C:\WINDOWS\system32\wuapp.exe
2015-04-15 12:20:56 ----A---- C:\WINDOWS\system32\wuapi.dll
2015-04-15 12:20:56 ----A---- C:\WINDOWS\system32\wu.upgrade.ps.dll
2015-04-15 12:20:56 ----A---- C:\WINDOWS\system32\WinSetupUI.dll
2015-04-15 12:20:56 ----A---- C:\WINDOWS\system32\storewuauth.dll
2015-04-15 12:20:50 ----A---- C:\WINDOWS\system32\invagent.dll
2015-04-15 12:20:50 ----A---- C:\WINDOWS\system32\generaltel.dll
2015-04-15 12:20:50 ----A---- C:\WINDOWS\system32\devinv.dll
2015-04-15 12:20:50 ----A---- C:\WINDOWS\system32\appraiser.dll
2015-04-15 12:20:50 ----A---- C:\WINDOWS\system32\aepic.dll
2015-04-15 12:20:50 ----A---- C:\WINDOWS\system32\aepdu.dll
2015-04-15 12:20:50 ----A---- C:\WINDOWS\system32\aeinv.dll
2015-04-15 12:20:50 ----A---- C:\WINDOWS\system32\acmigration.dll
2015-04-13 20:23:27 ----A---- C:\WINDOWS\SYSWOW64\nvStreaming.exe
2015-04-13 20:22:29 ----A---- C:\WINDOWS\SYSWOW64\nvumdshim.dll
2015-04-13 20:22:29 ----A---- C:\WINDOWS\SYSWOW64\nvopencl.dll
2015-04-13 20:22:29 ----A---- C:\WINDOWS\SYSWOW64\nvoglv32.dll
2015-04-13 20:22:29 ----A---- C:\WINDOWS\SYSWOW64\nvoglshim32.dll
2015-04-13 20:22:29 ----A---- C:\WINDOWS\SYSWOW64\nvinit.dll
2015-04-13 20:22:29 ----A---- C:\WINDOWS\SYSWOW64\NvIFROpenGL.dll
2015-04-13 20:22:29 ----A---- C:\WINDOWS\SYSWOW64\NvIFR.dll
2015-04-13 20:22:29 ----A---- C:\WINDOWS\SYSWOW64\NvFBC.dll
2015-04-13 20:22:29 ----A---- C:\WINDOWS\SYSWOW64\nvEncodeAPI.dll
2015-04-13 20:22:29 ----A---- C:\WINDOWS\SYSWOW64\nvcuvid.dll
2015-04-13 20:22:29 ----A---- C:\WINDOWS\SYSWOW64\nvcuda.dll
2015-04-13 20:22:29 ----A---- C:\WINDOWS\SYSWOW64\nvcompiler.dll
2015-04-13 20:22:29 ----A---- C:\WINDOWS\system32\nvumdshimx.dll
2015-04-13 20:22:29 ----A---- C:\WINDOWS\system32\nvopencl.dll
2015-04-13 20:22:29 ----A---- C:\WINDOWS\system32\nvoglshim64.dll
2015-04-13 20:22:29 ----A---- C:\WINDOWS\system32\nvmcumd.dll
2015-04-13 20:22:29 ----A---- C:\WINDOWS\system32\nvinitx.dll
2015-04-13 20:22:29 ----A---- C:\WINDOWS\system32\NvIFROpenGL.dll
2015-04-13 20:22:29 ----A---- C:\WINDOWS\system32\NvIFR64.dll
2015-04-13 20:22:29 ----A---- C:\WINDOWS\system32\NvFBC64.dll
2015-04-13 20:22:29 ----A---- C:\WINDOWS\system32\nvEncodeAPI64.dll
2015-04-13 20:22:29 ----A---- C:\WINDOWS\system32\nvdispgenco6435012.dll
2015-04-13 20:22:29 ----A---- C:\WINDOWS\system32\nvdispco6435012.dll
2015-04-13 20:22:29 ----A---- C:\WINDOWS\system32\nvcuvid.dll
2015-04-13 20:22:29 ----A---- C:\WINDOWS\system32\nvcuda.dll
2015-04-13 20:22:29 ----A---- C:\WINDOWS\system32\nvcompiler.dll
2015-04-13 20:22:29 ----A---- C:\WINDOWS\system32\drivers\nvlddmkm.sys
2015-04-07 16:09:26 ----SD---- C:\WINDOWS\SYSWOW64\GWX
2015-04-07 16:09:26 ----SD---- C:\WINDOWS\system32\GWX
2015-03-29 18:38:24 ----A---- C:\WINDOWS\SYSWOW64\PnkBstrB.exe
2015-03-29 18:38:16 ----A---- C:\WINDOWS\SYSWOW64\PnkBstrA.exe
2015-03-28 17:15:21 ----A---- C:\WINDOWS\Simple Port Forwarding Uninstall Log.txt
2015-03-28 16:57:57 ----D---- C:\WINDOWS\Simple Port Forwarding
2015-03-28 16:57:29 ----A---- C:\WINDOWS\Simple Port Forwarding Setup Log.txt
2015-03-28 12:51:30 ----D---- C:\ProgramData\Tunngle
2015-03-28 12:51:29 ----D---- C:\Program Files (x86)\Tunngle
2015-03-28 10:40:44 ----D---- C:\Users\Szabolcs\AppData\Roaming\Ubisoft
2015-03-28 10:33:38 ----A---- C:\WINDOWS\system32\drivers\dtlitescsibus.sys
2015-03-28 10:33:35 ----D---- C:\Program Files\DAEMON Tools Lite

======List of files/folders modified in the last 1 month======

2015-04-24 11:04:33 ----D---- C:\Program Files\trend micro
2015-04-24 11:04:30 ----D---- C:\WINDOWS\Temp
2015-04-24 11:03:41 ----D---- C:\Users\Szabolcs\AppData\Roaming\uTorrent
2015-04-24 11:00:00 ----D---- C:\WINDOWS\system32\sru
2015-04-24 10:57:16 ----D---- C:\WINDOWS\Prefetch
2015-04-24 10:56:32 ----D---- C:\Users\Szabolcs\AppData\Roaming\vlc
2015-04-24 09:09:06 ----D---- C:\Users\Szabolcs\AppData\Roaming\ClassicShell
2015-04-24 07:54:34 ----D---- C:\WINDOWS\SysWOW64
2015-04-24 07:52:59 ----D---- C:\Users\Szabolcs\AppData\Roaming\Spotify
2015-04-24 07:47:50 ----D---- C:\WINDOWS\system32\Tasks
2015-04-24 07:47:50 ----D---- C:\Fraps
2015-04-24 07:47:47 ----D---- C:\ProgramData\Kaspersky Lab
2015-04-24 07:35:09 ----D---- C:\Program Files\Recuva
2015-04-20 20:28:45 ----D---- C:\Windows
2015-04-20 20:28:45 ----A---- C:\WINDOWS\Sandboxie.ini
2015-04-20 14:20:55 ----D---- C:\WINDOWS\Microsoft.NET
2015-04-20 09:23:58 ----RD---- C:\WINDOWS\System32
2015-04-20 09:23:58 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2015-04-20 08:07:31 ----D---- C:\Users\Szabolcs\AppData\Roaming\Skype
2015-04-20 08:00:16 ----RD---- C:\Program Files (x86)
2015-04-20 07:14:51 ----D---- C:\WINDOWS\system32\config
2015-04-20 07:14:40 ----D---- C:\WINDOWS\Inf
2015-04-20 06:03:29 ----D---- C:\Program Files (x86)\Rockstar Games
2015-04-19 19:13:28 ----SHD---- C:\WINDOWS\Installer
2015-04-19 19:13:28 ----SHD---- C:\Config.Msi
2015-04-19 19:13:26 ----RD---- C:\Program Files
2015-04-19 19:13:25 ----D---- C:\WINDOWS\system32\DriverStore
2015-04-19 19:13:08 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2015-04-19 19:03:48 ----D---- C:\Program Files (x86)\Google
2015-04-18 18:59:47 ----SHD---- C:\System Volume Information
2015-04-18 18:59:46 ----D---- C:\ProgramData\NVIDIA
2015-04-18 04:26:30 ----D---- C:\WINDOWS\WinSxS
2015-04-17 15:20:17 ----D---- C:\Users\Szabolcs\AppData\Roaming\DAEMON Tools Lite
2015-04-16 17:25:00 ----D---- C:\WINDOWS\rescache
2015-04-16 17:18:38 ----D---- C:\WINDOWS\system32\catroot2
2015-04-16 17:14:06 ----D---- C:\WINDOWS\AppCompat
2015-04-16 17:13:46 ----RSD---- C:\WINDOWS\assembly
2015-04-16 17:13:10 ----D---- C:\WINDOWS\CbsTemp
2015-04-16 16:18:14 ----D---- C:\ProgramData\Skype
2015-04-15 16:25:45 ----SD---- C:\WINDOWS\system32\CompatTel
2015-04-15 16:25:45 ----SD---- C:\ProgramData\Microsoft
2015-04-15 16:25:45 ----D---- C:\WINDOWS\SYSWOW64\sk-SK
2015-04-15 16:25:45 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2015-04-15 16:25:45 ----D---- C:\WINDOWS\system32\wbem
2015-04-15 16:25:45 ----D---- C:\WINDOWS\system32\sk-SK
2015-04-15 16:25:45 ----D---- C:\WINDOWS\system32\en-US
2015-04-15 16:25:45 ----D---- C:\WINDOWS\system32\drivers
2015-04-15 16:25:45 ----D---- C:\WINDOWS\system32\cs-CZ
2015-04-15 16:25:45 ----D---- C:\WINDOWS\apppatch
2015-04-15 16:25:45 ----D---- C:\Program Files\Internet Explorer
2015-04-15 13:41:05 ----D---- C:\WINDOWS\system32\MRT
2015-04-15 13:39:21 ----A---- C:\WINDOWS\system32\MRT.exe
2015-04-15 12:18:32 ----A---- C:\WINDOWS\system32\wuaext.dll
2015-04-14 01:24:21 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2015-04-13 20:23:46 ----D---- C:\ProgramData\NVIDIA Corporation
2015-04-12 14:06:34 ----D---- C:\Users\Szabolcs\AppData\Roaming\Tunngle
2015-04-09 21:18:47 ----D---- C:\ProgramData\Unity
2015-04-09 02:58:18 ----A---- C:\WINDOWS\SYSWOW64\nvwgf2um.dll
2015-04-09 02:58:18 ----A---- C:\WINDOWS\SYSWOW64\nvd3dum.dll
2015-04-09 02:58:18 ----A---- C:\WINDOWS\SYSWOW64\nvapi.dll
2015-04-09 02:58:18 ----A---- C:\WINDOWS\system32\nvwgf2umx.dll
2015-04-09 02:58:18 ----A---- C:\WINDOWS\system32\nvoglv64.dll
2015-04-09 02:58:18 ----A---- C:\WINDOWS\system32\nvd3dumx.dll
2015-04-09 02:58:18 ----A---- C:\WINDOWS\system32\nvapi64.dll
2015-04-08 23:30:18 ----A---- C:\WINDOWS\system32\nvsvc64.dll
2015-04-08 23:30:18 ----A---- C:\WINDOWS\system32\nvcpl.dll
2015-04-08 23:30:14 ----A---- C:\WINDOWS\system32\nvvsvc.exe
2015-04-08 23:30:14 ----A---- C:\WINDOWS\system32\nvsvcr.dll
2015-04-08 23:30:14 ----A---- C:\WINDOWS\system32\nvshext.dll
2015-04-08 23:30:13 ----A---- C:\WINDOWS\system32\nvmctray.dll
2015-04-07 16:09:32 ----D---- C:\WINDOWS\Logs
2015-03-28 21:06:55 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2015-03-28 13:31:30 ----D---- C:\ProgramData\Steam
2015-03-28 13:17:51 ----D---- C:\ProgramData\Package Cache
2015-03-28 12:51:30 ----HD---- C:\ProgramData
2015-03-28 12:51:29 ----RSD---- C:\WINDOWS\Fonts
2015-03-28 05:44:01 ----A---- C:\WINDOWS\SYSWOW64\nvspcap.dll
2015-03-28 05:44:01 ----A---- C:\WINDOWS\SYSWOW64\nvspbridge.dll
2015-03-28 05:43:39 ----A---- C:\WINDOWS\system32\nvspcap64.dll
2015-03-28 05:43:39 ----A---- C:\WINDOWS\system32\nvspbridge64.dll

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2013-01-31 652784]
R0 kl1;kl1; C:\WINDOWS\system32\DRIVERS\kl1.sys [2014-02-15 458336]
R1 AppleCharger;AppleCharger; C:\WINDOWS\system32\DRIVERS\AppleCharger.sys [2013-02-19 21584]
R1 KLIF;Kaspersky Lab Driver; C:\WINDOWS\system32\DRIVERS\klif.sys [2014-06-18 625760]
R1 KLIM6;@oem20.inf,%KLIM6_Desc%;Kaspersky Anti-Virus NDIS 6 Filter; C:\WINDOWS\system32\DRIVERS\klim6.sys [2014-02-15 30304]
R1 klpd;klpd; C:\WINDOWS\system32\DRIVERS\klpd.sys [2013-04-12 15456]
R1 klwfp;klwfp; C:\WINDOWS\system32\DRIVERS\klwfp.sys [2014-06-18 65120]
R1 kneps;kneps; C:\WINDOWS\system32\DRIVERS\kneps.sys [2014-02-15 178272]
R1 vwififlt;@%SystemRoot%\System32\drivers\vwififlt.sys,-259; C:\WINDOWS\system32\DRIVERS\vwififlt.sys [2014-04-30 71680]
R2 atksgt;atksgt; C:\WINDOWS\system32\DRIVERS\atksgt.sys [2014-02-24 314016]
R2 lirsgt;lirsgt; C:\WINDOWS\system32\DRIVERS\lirsgt.sys [2014-02-24 43680]
R3 athur;@oem14.inf,%ATHR.Service.DispName%;Qualcomm Atheros AR9271 Wireless Network Adapter Service; C:\WINDOWS\system32\DRIVERS\athuw8x.sys [2013-06-02 2919936]
R3 dtlitescsibus;@oem34.inf,%DTLITESCSIBUS.DeviceDesc%;DAEMON Tools Lite Virtual SCSI Bus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [2015-03-28 30352]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2013-10-04 4185600]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2013-02-26 3333576]
R3 IntcDAud;@oem3.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2013-03-19 442368]
R3 iwdbus;@oem33.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\WINDOWS\System32\drivers\iwdbus.sys [2013-09-26 27032]
R3 klkbdflt;Kaspersky Lab KLKBDFLT; C:\WINDOWS\system32\DRIVERS\klkbdflt.sys [2014-06-18 29280]
R3 klmouflt;Kaspersky Lab KLMOUFLT; C:\WINDOWS\system32\DRIVERS\klmouflt.sys [2014-02-15 29280]
R3 MEIx64;@oem26.inf,%HECI_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\System32\drivers\HECIx64.sys [2013-03-12 64624]
R3 NVHDA;@oem66.inf,%NVHDA.SvcDesc%;Service for NVIDIA High Definition Audio Driver; C:\WINDOWS\system32\drivers\nvhda64v.sys [2014-10-09 195728]
R3 nvlddmkm;nvlddmkm; C:\WINDOWS\system32\DRIVERS\nvlddmkm.sys [2015-04-09 10423952]
R3 NvStreamKms;NvStreamKms; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2015-03-28 19600]
R3 nvvad_WaveExtensible;@oem59.inf,%nvvad_WaveExtensible.SvcDesc%;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\WINDOWS\system32\drivers\nvvad64v.sys [2014-11-22 38032]
R3 RTL8168;@netrt630x64.inf,%rtl8168.Service.DispName%;Realtek 8168 NT Driver; C:\WINDOWS\system32\DRIVERS\Rt630x64.sys [2013-06-18 591360]
R3 SbieDrv;SbieDrv; \??\C:\Program Files\Sandboxie\SbieDrv.sys [2015-02-18 237064]
R3 tap0901t;@oem41.inf,%DeviceDescription%;TAP-Win32 Adapter V9 (Tunngle); C:\WINDOWS\system32\DRIVERS\tap0901t.sys [2009-09-16 31232]
S0 klelam;klelam; C:\WINDOWS\system32\DRIVERS\klelam.sys [2014-02-15 29792]
S1 JSWPSLWF;JumpStart Wireless Filter Driver; C:\WINDOWS\system32\DRIVERS\jswpslwfx.sys [2011-12-26 26624]
S1 UsbCharger;UsbCharger; C:\WINDOWS\system32\DRIVERS\UsbCharger.sys [2013-05-06 21584]
S3 Hamachi;LogMeIn Hamachi Virtual Miniport); C:\WINDOWS\system32\DRIVERS\Hamdrv.sys [2014-12-13 45112]
S3 intaud_WaveExtensible;@oem32.inf,%INTAUD_WEX.SvcDesc%;Intel WiDi Audio Device; C:\WINDOWS\system32\drivers\intelaud.sys [2013-09-26 39320]
S3 LGBusEnum;@oem39.inf,%LGBusEnum.SVCDESC%;Logitech GamePanel Virtual Bus Enumerator Driver; C:\WINDOWS\system32\drivers\LGBusEnum.sys [2009-11-24 22408]
S3 LGSHidFilt;@oem37.inf,%LGSHidFilt.SvcDesc%;Logitech Gaming KMDF HID Filter Driver; C:\WINDOWS\system32\DRIVERS\LGSHidFilt.Sys [2013-05-30 64280]
S3 LGVirHid;@oem40.inf,%LGVirHid.SVCDESC%;Logitech Gamepanel Virtual HID Device Driver; C:\WINDOWS\system32\drivers\LGVirHid.sys [2009-11-24 16008]
S3 OSFMount;OSFMount; \??\D:\csgo\Counter-Strike Global Offensive\image\x64\OSFMount.sys []

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AVP;Kaspersky Anti-Virus Service; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\avp.exe [2014-02-15 214512]
R2 GfExperienceService;NVIDIA GeForce Experience Service; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [2015-03-28 1152144]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2013-02-13 731648]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2013-03-12 169432]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2013-03-12 366552]
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2015-03-28 1878672]
R2 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [2015-03-28 22995600]
R2 nvsvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvvsvc.exe [2015-04-08 936264]
R2 PnkBstrA;PnkBstrA; C:\WINDOWS\syswow64\PnkBstrA.exe [2015-03-29 76888]
R2 SbieSvc;Sandboxie Service; C:\Program Files\Sandboxie\SbieSvc.exe [2015-02-18 175112]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2015-04-08 410952]
S2 gupdate;Google frissítés Szolgáltatás (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-10-26 116648]
S2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2013-01-31 15344]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2015-02-18 315488]
S3 AppleChargerSrv;AppleChargerSrv; C:\WINDOWS\system32\AppleChargerSrv.exe [2010-04-06 31272]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2014-10-29 38792]
S3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2013-10-04 279000]
S3 Disc Soft Lite Bus Service;Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe [2015-02-27 1272592]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696]
S3 gupdatem;Google frissítés Szolgáltatás (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-10-26 116648]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2013-02-13 820184]
S3 jswpsapi;JumpStart Wi-Fi Protected Setup; C:\Program Files (x86)\TP-LINK\TP-LINK Wireless Configuration Utility\WPS\jswpsapi.exe [2011-12-26 954368]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2015-04-20 148080]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2015-02-19 835776]
S3 TunngleService;TunngleService; C:\Program Files (x86)\Tunngle\TnglCtrl.exe [2015-02-09 792016]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119677
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Pomalý PC

#2 Příspěvek od Rudy »

Zdravím!
Spusťte tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Leslie10
Návštěvník
Návštěvník
Příspěvky: 42
Registrován: 29 pro 2013 22:55

Re: Pomalý PC

#3 Příspěvek od Leslie10 »

# AdwCleaner v4.202 - Log vytvorený 24/04/2015 at 17:11:35
# Aktualizované 23/04/2015 by Xplode
# Databáza : 2015-04-23.2 [Server]
# Operačný systém : Windows 8.1 (x64)
# Uživateľské meno : Szabolcs Csákó - SZABI
# Spustené z : C:\Users\Szabolcs\Desktop\adwcleaner_4.202.exe
# Nastavenia : Čistenie

***** [ Služby ] *****


***** [ Súbory / Priečinky ] *****

Priečinok Zmazané : C:\ProgramData\apn
Priečinok Zmazané : C:\Program Files (x86)\Allin1Convert_8h
Priečinok Zmazané : C:\Users\Szabolcs\AppData\Local\Allin1Convert_8h
Priečinok Zmazané : C:\Users\Szabolcs\AppData\LocalLow\Allin1Convert_8h
Súbor Zmazané : C:\Users\Szabolcs\AppData\Roaming\Mozilla\Firefox\Profiles\ns2me0gx.default\searchplugins\Askcom.xml
Súbor Zmazané : C:\Users\Szabolcs\AppData\Roaming\Opera Software\Opera Stable\Local Storage\hxxp_magyar.babylon.com_0.localstorage
Súbor Zmazané : C:\Users\Szabolcs\AppData\Roaming\Opera Software\Opera Stable\Local Storage\hxxp_www.ask.com_0.localstorage
Súbor Zmazané : C:\Users\Szabolcs\AppData\Roaming\Opera Software\Opera Stable\Local Storage\hxxp_www.babylon.com_0.localstorage

***** [ Naplánované úlohy ] *****


***** [ Zástupcovia ] *****


***** [ Registre ] *****

Kľúč registra Zmazané : HKLM\SOFTWARE\MozillaPlugins\@Allin1Convert_8h.com/Plugin
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\Interface\{5E58CDA9-3B21-4611-A859-26EE28950E61}
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\Interface\{6C5561B6-3DD2-46B5-83BE-EAE744366046}
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\TypeLib\{16976E15-10EA-44FD-804A-6ECBC9EBBFC7}
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\TypeLib\{2561FD25-FE31-4E56-A120-AF7FEAAE3124}
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\TypeLib\{4BD0FCFF-AD64-4315-9F2C-960EF3C21623}
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\TypeLib\{507C73BB-FC69-425E-8A49-9204F886B328}
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\TypeLib\{6EC57031-1740-4151-93C5-C465D6063DD2}
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\TypeLib\{76FC1003-0825-48BD-B59B-3B7A5754972C}
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\TypeLib\{9D217B94-6FC9-44FE-94B1-30C711871266}
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\TypeLib\{B48AC2CD-9662-47E0-A3C0-3B01BB3F463E}
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\TypeLib\{BE698E51-830B-447A-954D-901D6E05DDE2}
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\TypeLib\{BFCF748F-A56E-451F-AA45-0D7EB699E416}
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\TypeLib\{D617CF84-B0BC-441F-9984-B676AFBA1E8D}
Kľúč registra Zmazané : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{7CAEFAFC-9A1E-4BCC-94DD-BC7D8D52717A}
Kľúč registra Zmazané : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{7CAEFAFC-9A1E-4BCC-94DD-BC7D8D52717A}
Kľúč registra Zmazané : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{27F49273-DE3A-4111-90F9-6C474C37AEFB}
Kľúč registra Zmazané : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{7CAEFAFC-9A1E-4BCC-94DD-BC7D8D52717A}
Kľúč registra Zmazané : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{7EB7381C-FB01-47FC-9C42-ED64122C1B92}
Kľúč registra Zmazané : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{E4EF697F-434B-4DC7-A464-4412462206DB}
Kľúč registra Zmazané : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{F99DDD9A-07D0-47AB-86F1-193533DD2C60}
Kľúč registra Zmazané : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{248B3E95-17A4-482D-A8A8-6B3DF4D05C35}
Kľúč registra Zmazané : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5E58CDA9-3B21-4611-A859-26EE28950E61}
Kľúč registra Zmazané : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6C5561B6-3DD2-46B5-83BE-EAE744366046}
Kľúč registra Zmazané : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{88E44198-D164-4EC0-B2C0-F679D866C6DA}
Kľúč registra Zmazané : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F671C1B3-9776-426D-A350-55FB2D9B53F7}
Hodnota Zmazané : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{5BCF818D-78C8-41B8-BA89-65C5FDAC4FC4}]
Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Classes\Interface\{5E58CDA9-3B21-4611-A859-26EE28950E61}
Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Classes\Interface\{6C5561B6-3DD2-46B5-83BE-EAE744366046}
Kľúč registra Zmazané : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{171DEBEB-C3D4-40B7-AC73-056A5EBA4A7E}
Kľúč registra Zmazané : HKCU\Software\allin1convert_8h
Kľúč registra Zmazané : HKCU\Software\Local AppWizard-Generated Applications
Kľúč registra Zmazané : HKCU\Software\AppDataLow\Software\allin1convert_8h
Kľúč registra Zmazané : HKLM\SOFTWARE\allin1convert_8h

***** [ Webové prehliadače ] *****

-\\ Internet Explorer v11.0.9600.17416

Nastavenie Obnovené : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page]

-\\ Mozilla Firefox v37.0.2 (x86 sk)


-\\ Chromium v


-\\ Opera v0.0.0.0


*************************

AdwCleaner[R0].txt - [5649 bajtov] - [24/04/2015 17:10:13]
AdwCleaner[R1].txt - [5705 bajtov] - [24/04/2015 17:11:12]
AdwCleaner[S0].txt - [5181 bajtov] - [24/04/2015 17:11:35]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [5241 bajtov] ##########

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119677
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Pomalý PC

#4 Příspěvek od Rudy »

Dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Leslie10
Návštěvník
Návštěvník
Příspěvky: 42
Registrován: 29 pro 2013 22:55

Re: Pomalý PC

#5 Příspěvek od Leslie10 »

Logfile of random's system information tool 1.10 (written by random/random)
Run by Szabolcs Csákó at 2015-04-24 18:07:46
Microsoft Windows 8.1
System drive C: has 27 GB (24%) free of 114 GB
Total RAM: 8079 MB (82% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 18:07:46, on 24.4.2015
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17416)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\avpui.exe
C:\Fraps\fraps.exe
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Users\Szabolcs\AppData\Roaming\Spotify\SpotifyWebHelper.exe
C:\Program Files (x86)\ROCCAT\Savu Mouse\Savu Monitor.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files\trend micro\Szabolcs Csákó.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: ExplorerBHO Class - {449D0D6E-2412-4E61-B68F-1CB625CD9E52} - C:\Program Files\Classic Shell\ClassicExplorer32.dll
O2 - BHO: ContentBlockerBrowserHelperObject - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\IEExt\ContentBlocker\ie_content_blocker_plugin.dll
O2 - BHO: VirtualKeyboardBrowserHelperObject - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll
O2 - BHO: Safe Money Plugin - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\IEExt\OnlineBanking\online_banking_bho.dll
O2 - BHO: link filter bho - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\IEExt\UrlAdvisor\klwtbbho.dll
O2 - BHO: ClassicIEBHO Class - {EA801577-E6AD-4BD5-8F71-4BE0154331A4} - C:\Program Files\Classic Shell\ClassicIEDLL_32.dll
O3 - Toolbar: Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer32.dll
O4 - HKLM\..\Run: [ROCCAT Savu Gaming Mouse] "C:\Program Files (x86)\ROCCAT\Savu Mouse\Savu Monitor.exe" /Automation
O4 - HKCU\..\Run: [SandboxieControl] "C:\Program Files\Sandboxie\SbieCtrl.exe"
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\Run: [Spotify Web Helper] "C:\Users\Szabolcs\AppData\Roaming\Spotify\SpotifyWebHelper.exe"
O4 - HKCU\..\Run: [Spotify] "C:\Users\Szabolcs\AppData\Roaming\Spotify\Spotify.exe" -autostart -minimized
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - Global Startup: TP-LINK Wireless Configuration Utility.lnk = C:\Program Files (x86)\TP-LINK\TP-LINK Wireless Configuration Utility\TWCU.exe
O8 - Extra context menu item: Add to Anti-Banner - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\ie_banner_deny.htm
O9 - Extra button: Virtual Keyboard - {0C4CC089-D306-440D-9772-464E226F6539} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll
O9 - Extra button: (no name) - {56753E59-AF1D-4FBA-9E15-31557124ADA2} - C:\Program Files\Classic Shell\ClassicIE_32.exe
O9 - Extra 'Tools' menuitem: Classic IE Settings - {56753E59-AF1D-4FBA-9E15-31557124ADA2} - C:\Program Files\Classic Shell\ClassicIE_32.exe
O9 - Extra button: URLs check - {CCF151D8-D089-449F-A5A4-D9909053F20F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\IEExt\UrlAdvisor\klwtbbho.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted IP range: http://10.10.10.1
O15 - ESC Trusted IP range: http://10.10.10.1
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: AppleChargerSrv - Unknown owner - C:\WINDOWS\system32\AppleChargerSrv.exe (file missing)
O23 - Service: Kaspersky Anti-Virus Service (AVP) - Kaspersky Lab ZAO - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\avp.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: Disc Soft Lite Bus Service - Disc Soft Ltd - C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
O23 - Service: Google frissítés Szolgáltatás (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google frissítés Szolgáltatás (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: JumpStart Wi-Fi Protected Setup (jswpsapi) - Wireless - C:\Program Files (x86)\TP-LINK\TP-LINK Wireless Configuration Utility\WPS\jswpsapi.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\WINDOWS\system32\nvvsvc.exe (file missing)
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Sandboxie Service (SbieSvc) - Sandboxie Holdings, LLC - C:\Program Files\Sandboxie\SbieSvc.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: TunngleService - Tunngle.net GmbH - C:\Program Files (x86)\Tunngle\TnglCtrl.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 10508 bytes

======Listing Processes======





wininit.exe


winlogon.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"C:\WINDOWS\system32\nvvsvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
"dwm.exe"
C:\WINDOWS\system32\nvvsvc.exe -session -first
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
"C:\Program Files\Sandboxie\SbieSvc.exe"
C:\WINDOWS\system32\svchost.exe -k NetworkService
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\avp.exe" -r
"C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe"
dashost.exe {61702344-3184-4f3e-b634cd1f7bb16571}
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe"
C:\WINDOWS\SysWOW64\PnkBstrA.exe
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe" 9ac24e03-b663-4c84-a27b-d13531f73b58 1
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-45431466-5de1-4f78-8472-4f30deb9059a -SystemEventPortName:HostProcess-6e3a1a6c-8ffb-4afa-812d-8c85846412c4 -IoCancelEventPortName:HostProcess-1fb389a4-bbc5-4822-bf3e-09a82a6074ef -NonStateChangingEventPortName:HostProcess-98fb9195-bbd3-4cfc-b369-d80e0f5ba557 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:af647a43-e2ad-4802-a214-f016f409c81e -DeviceGroupId:WpdFsGroup
"C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\avpui.exe" -hidden /prefetch:1
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" serviceapp
C:\Fraps\fraps.exe
C:\WINDOWS\Explorer.EXE
\??\C:\WINDOWS\system32\conhost.exe 0x4
taskhostex.exe
ClassicStartMenu.exe -startup
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
"C:\Fraps\fraps64.dat"
"C:\WINDOWS\system32\igfxsrvc.exe" -Embedding
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files\Microsoft Xbox 360 Accessories\XBoxStat.exe" silentrun
"C:\Program Files\Sandboxie\SbieCtrl.exe"
"C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac
"C:\Users\Szabolcs\AppData\Roaming\Spotify\SpotifyWebHelper.exe"
"C:\Program Files (x86)\ROCCAT\Savu Mouse\Savu Monitor.exe" /Automation
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"

"D:\Mozilla firefox letöltések\RSITx64.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe

======Scheduled tasks folder======

C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler

=========Mozilla firefox=========

ProfilePath - C:\Users\Szabolcs\AppData\Roaming\Mozilla\Firefox\Profiles\ns2me0gx.default

prefs.js - "browser.startup.homepage" - "about:home"

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 17.0.0.169 Plugin
"Path"=C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_17_0_0_169.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=3.0.72]
"Description"=Intel IPT WebApi plugin
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater]
"Description"=This plugin updates Intel WebAPI component
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVision]
"Description"=NVIDIA stereo images plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVisionStreaming]
"Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 17.0.0.169 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF64_17_0_0_169.dll


======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{449D0D6E-2412-4E61-B68F-1CB625CD9E52}]
ExplorerBHO Class - C:\Program Files\Classic Shell\ClassicExplorer64.dll [2014-04-20 803520]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F}]
Content Blocker Plugin - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\x64\IEExt\ContentBlocker\ie_content_blocker_plugin.dll [2014-02-15 800448]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{73455575-E40C-433C-9784-C78DC7761455}]
Virtual Keyboard Plugin - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\x64\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll [2014-12-21 1535784]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9E6D0D23-3D72-4A94-AE1F-2D167624E3D9}]
Safe Money Plugin - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\x64\IEExt\OnlineBanking\online_banking_bho.dll [2014-02-15 550080]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E33CF602-D945-461A-83F0-819F76A199F8}]
URL Advisor Plugin - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\x64\IEExt\UrlAdvisor\klwtbbho.dll [2014-06-18 996544]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EA801577-E6AD-4BD5-8F71-4BE0154331A4}]
ClassicIEBHO Class - C:\Program Files\Classic Shell\ClassicIEDLL_64.dll [2014-04-20 483520]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{449D0D6E-2412-4E61-B68F-1CB625CD9E52}]
ExplorerBHO Class - C:\Program Files\Classic Shell\ClassicExplorer32.dll [2014-04-20 683200]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F}]
Content Blocker Plugin - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\IEExt\ContentBlocker\ie_content_blocker_plugin.dll [2014-02-15 655040]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{73455575-E40C-433C-9784-C78DC7761455}]
Virtual Keyboard Plugin - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll [2014-12-21 1265448]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9E6D0D23-3D72-4A94-AE1F-2D167624E3D9}]
Safe Money Plugin - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\IEExt\OnlineBanking\online_banking_bho.dll [2014-02-15 455360]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E33CF602-D945-461A-83F0-819F76A199F8}]
URL Advisor Plugin - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\IEExt\UrlAdvisor\klwtbbho.dll [2014-06-18 798912]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EA801577-E6AD-4BD5-8F71-4BE0154331A4}]
ClassicIEBHO Class - C:\Program Files\Classic Shell\ClassicIEDLL_32.dll [2014-04-20 440512]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{553891B7-A0D5-4526-BE18-D3CE461D6310} - Classic Explorer Bar - C:\Program Files\Classic Shell\ClassicExplorer64.dll [2014-04-20 803520]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{553891B7-A0D5-4526-BE18-D3CE461D6310} - Classic Explorer Bar - C:\Program Files\Classic Shell\ClassicExplorer32.dll [2014-04-20 683200]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"=C:\WINDOWS\system32\igfxtray.exe [2013-10-04 391128]
"HotKeysCmds"=C:\WINDOWS\system32\hkcmd.exe [2013-10-04 771032]
"Persistence"=C:\WINDOWS\system32\igfxpers.exe [2013-10-04 769496]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2013-02-26 13423688]
"IAStorIcon"=C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe [2013-01-31 36352]
"XboxStat"=C:\Program Files\Microsoft Xbox 360 Accessories\XboxStat.exe [2009-10-01 825184]
"ShadowPlay"=C:\WINDOWS\system32\nvspcap64.dll [2015-03-28 1570672]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2015-03-28 2673296]
"Classic Start Menu"=C:\Program Files\Classic Shell\ClassicStartMenu.exe [2014-04-20 161984]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"SandboxieControl"=C:\Program Files\Sandboxie\SbieCtrl.exe [2015-02-18 785416]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2015-02-19 7416088]
"Spotify Web Helper"=C:\Users\Szabolcs\AppData\Roaming\Spotify\SpotifyWebHelper.exe [2015-04-01 2018360]
"Spotify"=C:\Users\Szabolcs\AppData\Roaming\Spotify\Spotify.exe [2015-04-01 7112248]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\DTLite.exe [2015-02-27 5583120]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"ROCCAT Savu Gaming Mouse"=C:\Program Files (x86)\ROCCAT\Savu Mouse\Savu Monitor.exe [2012-09-10 872048]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
TP-LINK Wireless Configuration Utility.lnk - C:\Program Files (x86)\TP-LINK\TP-LINK Wireless Configuration Utility\TWCU.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\PROGRA~2\NVIDIA~1\3DVISI~1\NVSTIN~1.DLL"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2013-10-04 623616]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=28

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.yuy2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"vidc.yvyu"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"vidc.uyvy"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"VIDC.FPS1"=frapsv64.dll
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2015-04-24 17:10:10 ----D---- C:\AdwCleaner
2015-04-20 07:44:27 ----D---- C:\Program Files (x86)\Mozilla Firefox
2015-04-18 07:09:54 ----D---- C:\Program Files\Rockstar Games
2015-04-15 16:25:45 ----D---- C:\WINDOWS\system32\appraiser
2015-04-15 12:21:35 ----A---- C:\WINDOWS\SYSWOW64\msctf.dll
2015-04-15 12:21:35 ----A---- C:\WINDOWS\system32\msctf.dll
2015-04-15 12:21:32 ----A---- C:\WINDOWS\SYSWOW64\tdh.dll
2015-04-15 12:21:32 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2015-04-15 12:21:32 ----A---- C:\WINDOWS\system32\tdh.dll
2015-04-15 12:21:32 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2015-04-15 12:21:32 ----A---- C:\WINDOWS\system32\ntdll.dll
2015-04-15 12:21:31 ----A---- C:\WINDOWS\SYSWOW64\tracerpt.exe
2015-04-15 12:21:31 ----A---- C:\WINDOWS\SYSWOW64\sechost.dll
2015-04-15 12:21:31 ----A---- C:\WINDOWS\system32\wow64cpu.dll
2015-04-15 12:21:31 ----A---- C:\WINDOWS\system32\wow64.dll
2015-04-15 12:21:31 ----A---- C:\WINDOWS\system32\tracerpt.exe
2015-04-15 12:21:31 ----A---- C:\WINDOWS\system32\sechost.dll
2015-04-15 12:21:31 ----A---- C:\WINDOWS\system32\microsoft-windows-system-events.dll
2015-04-15 12:21:28 ----A---- C:\WINDOWS\system32\lsm.dll
2015-04-15 12:21:26 ----A---- C:\WINDOWS\SYSWOW64\pku2u.dll
2015-04-15 12:21:26 ----A---- C:\WINDOWS\system32\pku2u.dll
2015-04-15 12:21:25 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2015-04-15 12:21:25 ----A---- C:\WINDOWS\system32\mshtml.dll
2015-04-15 12:21:24 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2015-04-15 12:21:24 ----A---- C:\WINDOWS\system32\jscript9.dll
2015-04-15 12:21:23 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2015-04-15 12:21:23 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2015-04-15 12:21:23 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2015-04-15 12:21:23 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2015-04-15 12:21:23 ----A---- C:\WINDOWS\SYSWOW64\jscript.dll
2015-04-15 12:21:23 ----A---- C:\WINDOWS\SYSWOW64\inetcomm.dll
2015-04-15 12:21:23 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2015-04-15 12:21:23 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2015-04-15 12:21:23 ----A---- C:\WINDOWS\SYSWOW64\ieapfltr.dll
2015-04-15 12:21:23 ----A---- C:\WINDOWS\system32\wininet.dll
2015-04-15 12:21:23 ----A---- C:\WINDOWS\system32\vbscript.dll
2015-04-15 12:21:23 ----A---- C:\WINDOWS\system32\urlmon.dll
2015-04-15 12:21:23 ----A---- C:\WINDOWS\system32\mshtmled.dll
2015-04-15 12:21:23 ----A---- C:\WINDOWS\system32\msfeeds.dll
2015-04-15 12:21:23 ----A---- C:\WINDOWS\system32\jscript.dll
2015-04-15 12:21:23 ----A---- C:\WINDOWS\system32\inetcomm.dll
2015-04-15 12:21:23 ----A---- C:\WINDOWS\system32\iertutil.dll
2015-04-15 12:21:23 ----A---- C:\WINDOWS\system32\ieframe.dll
2015-04-15 12:21:23 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2015-04-15 12:21:23 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2015-04-15 12:21:01 ----A---- C:\WINDOWS\system32\drivers\http.sys
2015-04-15 12:20:58 ----A---- C:\WINDOWS\SYSWOW64\clfsw32.dll
2015-04-15 12:20:58 ----A---- C:\WINDOWS\system32\drivers\clfs.sys
2015-04-15 12:20:58 ----A---- C:\WINDOWS\system32\clfsw32.dll
2015-04-15 12:20:56 ----A---- C:\WINDOWS\SYSWOW64\wuwebv.dll
2015-04-15 12:20:56 ----A---- C:\WINDOWS\SYSWOW64\wups.dll
2015-04-15 12:20:56 ----A---- C:\WINDOWS\SYSWOW64\wudriver.dll
2015-04-15 12:20:56 ----A---- C:\WINDOWS\SYSWOW64\wuapp.exe
2015-04-15 12:20:56 ----A---- C:\WINDOWS\SYSWOW64\wuapi.dll
2015-04-15 12:20:56 ----A---- C:\WINDOWS\system32\wuwebv.dll
2015-04-15 12:20:56 ----A---- C:\WINDOWS\system32\WUSettingsProvider.dll
2015-04-15 12:20:56 ----A---- C:\WINDOWS\system32\wups2.dll
2015-04-15 12:20:56 ----A---- C:\WINDOWS\system32\wups.dll
2015-04-15 12:20:56 ----A---- C:\WINDOWS\system32\wudriver.dll
2015-04-15 12:20:56 ----A---- C:\WINDOWS\system32\wucltux.dll
2015-04-15 12:20:56 ----A---- C:\WINDOWS\system32\wuaueng.dll
2015-04-15 12:20:56 ----A---- C:\WINDOWS\system32\wuauclt.exe
2015-04-15 12:20:56 ----A---- C:\WINDOWS\system32\wuapp.exe
2015-04-15 12:20:56 ----A---- C:\WINDOWS\system32\wuapi.dll
2015-04-15 12:20:56 ----A---- C:\WINDOWS\system32\wu.upgrade.ps.dll
2015-04-15 12:20:56 ----A---- C:\WINDOWS\system32\WinSetupUI.dll
2015-04-15 12:20:56 ----A---- C:\WINDOWS\system32\storewuauth.dll
2015-04-15 12:20:50 ----A---- C:\WINDOWS\system32\invagent.dll
2015-04-15 12:20:50 ----A---- C:\WINDOWS\system32\generaltel.dll
2015-04-15 12:20:50 ----A---- C:\WINDOWS\system32\devinv.dll
2015-04-15 12:20:50 ----A---- C:\WINDOWS\system32\appraiser.dll
2015-04-15 12:20:50 ----A---- C:\WINDOWS\system32\aepic.dll
2015-04-15 12:20:50 ----A---- C:\WINDOWS\system32\aepdu.dll
2015-04-15 12:20:50 ----A---- C:\WINDOWS\system32\aeinv.dll
2015-04-15 12:20:50 ----A---- C:\WINDOWS\system32\acmigration.dll
2015-04-13 20:23:27 ----A---- C:\WINDOWS\SYSWOW64\nvStreaming.exe
2015-04-13 20:22:29 ----A---- C:\WINDOWS\SYSWOW64\nvumdshim.dll
2015-04-13 20:22:29 ----A---- C:\WINDOWS\SYSWOW64\nvopencl.dll
2015-04-13 20:22:29 ----A---- C:\WINDOWS\SYSWOW64\nvoglv32.dll
2015-04-13 20:22:29 ----A---- C:\WINDOWS\SYSWOW64\nvoglshim32.dll
2015-04-13 20:22:29 ----A---- C:\WINDOWS\SYSWOW64\nvinit.dll
2015-04-13 20:22:29 ----A---- C:\WINDOWS\SYSWOW64\NvIFROpenGL.dll
2015-04-13 20:22:29 ----A---- C:\WINDOWS\SYSWOW64\NvIFR.dll
2015-04-13 20:22:29 ----A---- C:\WINDOWS\SYSWOW64\NvFBC.dll
2015-04-13 20:22:29 ----A---- C:\WINDOWS\SYSWOW64\nvEncodeAPI.dll
2015-04-13 20:22:29 ----A---- C:\WINDOWS\SYSWOW64\nvcuvid.dll
2015-04-13 20:22:29 ----A---- C:\WINDOWS\SYSWOW64\nvcuda.dll
2015-04-13 20:22:29 ----A---- C:\WINDOWS\SYSWOW64\nvcompiler.dll
2015-04-13 20:22:29 ----A---- C:\WINDOWS\system32\nvumdshimx.dll
2015-04-13 20:22:29 ----A---- C:\WINDOWS\system32\nvopencl.dll
2015-04-13 20:22:29 ----A---- C:\WINDOWS\system32\nvoglshim64.dll
2015-04-13 20:22:29 ----A---- C:\WINDOWS\system32\nvmcumd.dll
2015-04-13 20:22:29 ----A---- C:\WINDOWS\system32\nvinitx.dll
2015-04-13 20:22:29 ----A---- C:\WINDOWS\system32\NvIFROpenGL.dll
2015-04-13 20:22:29 ----A---- C:\WINDOWS\system32\NvIFR64.dll
2015-04-13 20:22:29 ----A---- C:\WINDOWS\system32\NvFBC64.dll
2015-04-13 20:22:29 ----A---- C:\WINDOWS\system32\nvEncodeAPI64.dll
2015-04-13 20:22:29 ----A---- C:\WINDOWS\system32\nvdispgenco6435012.dll
2015-04-13 20:22:29 ----A---- C:\WINDOWS\system32\nvdispco6435012.dll
2015-04-13 20:22:29 ----A---- C:\WINDOWS\system32\nvcuvid.dll
2015-04-13 20:22:29 ----A---- C:\WINDOWS\system32\nvcuda.dll
2015-04-13 20:22:29 ----A---- C:\WINDOWS\system32\nvcompiler.dll
2015-04-13 20:22:29 ----A---- C:\WINDOWS\system32\drivers\nvlddmkm.sys
2015-04-07 16:09:26 ----SD---- C:\WINDOWS\SYSWOW64\GWX
2015-04-07 16:09:26 ----SD---- C:\WINDOWS\system32\GWX
2015-03-29 18:38:24 ----A---- C:\WINDOWS\SYSWOW64\PnkBstrB.exe
2015-03-29 18:38:16 ----A---- C:\WINDOWS\SYSWOW64\PnkBstrA.exe
2015-03-28 17:15:21 ----A---- C:\WINDOWS\Simple Port Forwarding Uninstall Log.txt
2015-03-28 16:57:57 ----D---- C:\WINDOWS\Simple Port Forwarding
2015-03-28 16:57:29 ----A---- C:\WINDOWS\Simple Port Forwarding Setup Log.txt
2015-03-28 12:51:30 ----D---- C:\ProgramData\Tunngle
2015-03-28 12:51:29 ----D---- C:\Program Files (x86)\Tunngle
2015-03-28 10:40:44 ----D---- C:\Users\Szabolcs\AppData\Roaming\Ubisoft
2015-03-28 10:33:38 ----A---- C:\WINDOWS\system32\drivers\dtlitescsibus.sys
2015-03-28 10:33:35 ----D---- C:\Program Files\DAEMON Tools Lite

======List of files/folders modified in the last 1 month======

2015-04-24 18:07:46 ----D---- C:\WINDOWS\Temp
2015-04-24 18:07:46 ----D---- C:\Program Files\trend micro
2015-04-24 18:07:20 ----D---- C:\WINDOWS\Prefetch
2015-04-24 18:07:16 ----D---- C:\Users\Szabolcs\AppData\Roaming\ClassicShell
2015-04-24 18:04:20 ----D---- C:\Users\Szabolcs\AppData\Roaming\Spotify
2015-04-24 18:02:00 ----D---- C:\WINDOWS\system32\sru
2015-04-24 17:23:52 ----D---- C:\WINDOWS\Microsoft.NET
2015-04-24 17:22:16 ----D---- C:\WINDOWS\system32\config
2015-04-24 17:17:17 ----D---- C:\WINDOWS\system32\Tasks
2015-04-24 17:17:17 ----D---- C:\Fraps
2015-04-24 17:17:12 ----D---- C:\ProgramData\Kaspersky Lab
2015-04-24 17:16:52 ----RD---- C:\WINDOWS\System32
2015-04-24 17:16:52 ----D---- C:\WINDOWS\Inf
2015-04-24 17:16:52 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2015-04-24 17:12:21 ----SHD---- C:\System Volume Information
2015-04-24 17:12:20 ----D---- C:\ProgramData\NVIDIA
2015-04-24 17:12:16 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2015-04-24 17:11:35 ----RD---- C:\Program Files (x86)
2015-04-24 17:11:35 ----HD---- C:\ProgramData
2015-04-24 16:53:02 ----D---- C:\Users\Szabolcs\AppData\Roaming\uTorrent
2015-04-24 16:47:03 ----D---- C:\Users\Szabolcs\AppData\Roaming\vlc
2015-04-24 07:54:34 ----D---- C:\WINDOWS\SysWOW64
2015-04-24 07:35:09 ----D---- C:\Program Files\Recuva
2015-04-20 20:28:45 ----D---- C:\Windows
2015-04-20 20:28:45 ----A---- C:\WINDOWS\Sandboxie.ini
2015-04-20 08:07:31 ----D---- C:\Users\Szabolcs\AppData\Roaming\Skype
2015-04-20 06:03:29 ----D---- C:\Program Files (x86)\Rockstar Games
2015-04-19 19:13:28 ----SHD---- C:\WINDOWS\Installer
2015-04-19 19:13:28 ----SHD---- C:\Config.Msi
2015-04-19 19:13:26 ----RD---- C:\Program Files
2015-04-19 19:13:25 ----D---- C:\WINDOWS\system32\DriverStore
2015-04-19 19:03:48 ----D---- C:\Program Files (x86)\Google
2015-04-18 04:26:30 ----D---- C:\WINDOWS\WinSxS
2015-04-17 15:20:17 ----D---- C:\Users\Szabolcs\AppData\Roaming\DAEMON Tools Lite
2015-04-16 17:25:00 ----D---- C:\WINDOWS\rescache
2015-04-16 17:18:38 ----D---- C:\WINDOWS\system32\catroot2
2015-04-16 17:14:06 ----D---- C:\WINDOWS\AppCompat
2015-04-16 17:13:46 ----RSD---- C:\WINDOWS\assembly
2015-04-16 17:13:10 ----D---- C:\WINDOWS\CbsTemp
2015-04-16 16:18:14 ----D---- C:\ProgramData\Skype
2015-04-15 16:25:45 ----SD---- C:\WINDOWS\system32\CompatTel
2015-04-15 16:25:45 ----SD---- C:\ProgramData\Microsoft
2015-04-15 16:25:45 ----D---- C:\WINDOWS\SYSWOW64\sk-SK
2015-04-15 16:25:45 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2015-04-15 16:25:45 ----D---- C:\WINDOWS\system32\wbem
2015-04-15 16:25:45 ----D---- C:\WINDOWS\system32\sk-SK
2015-04-15 16:25:45 ----D---- C:\WINDOWS\system32\en-US
2015-04-15 16:25:45 ----D---- C:\WINDOWS\system32\drivers
2015-04-15 16:25:45 ----D---- C:\WINDOWS\system32\cs-CZ
2015-04-15 16:25:45 ----D---- C:\WINDOWS\apppatch
2015-04-15 16:25:45 ----D---- C:\Program Files\Internet Explorer
2015-04-15 13:41:05 ----D---- C:\WINDOWS\system32\MRT
2015-04-15 13:39:21 ----A---- C:\WINDOWS\system32\MRT.exe
2015-04-15 12:18:32 ----A---- C:\WINDOWS\system32\wuaext.dll
2015-04-14 01:24:21 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2015-04-13 20:23:46 ----D---- C:\ProgramData\NVIDIA Corporation
2015-04-12 14:06:34 ----D---- C:\Users\Szabolcs\AppData\Roaming\Tunngle
2015-04-09 21:18:47 ----D---- C:\ProgramData\Unity
2015-04-09 02:58:18 ----A---- C:\WINDOWS\SYSWOW64\nvwgf2um.dll
2015-04-09 02:58:18 ----A---- C:\WINDOWS\SYSWOW64\nvd3dum.dll
2015-04-09 02:58:18 ----A---- C:\WINDOWS\SYSWOW64\nvapi.dll
2015-04-09 02:58:18 ----A---- C:\WINDOWS\system32\nvwgf2umx.dll
2015-04-09 02:58:18 ----A---- C:\WINDOWS\system32\nvoglv64.dll
2015-04-09 02:58:18 ----A---- C:\WINDOWS\system32\nvd3dumx.dll
2015-04-09 02:58:18 ----A---- C:\WINDOWS\system32\nvapi64.dll
2015-04-08 23:30:18 ----A---- C:\WINDOWS\system32\nvsvc64.dll
2015-04-08 23:30:18 ----A---- C:\WINDOWS\system32\nvcpl.dll
2015-04-08 23:30:14 ----A---- C:\WINDOWS\system32\nvvsvc.exe
2015-04-08 23:30:14 ----A---- C:\WINDOWS\system32\nvsvcr.dll
2015-04-08 23:30:14 ----A---- C:\WINDOWS\system32\nvshext.dll
2015-04-08 23:30:13 ----A---- C:\WINDOWS\system32\nvmctray.dll
2015-04-07 16:09:32 ----D---- C:\WINDOWS\Logs
2015-03-28 21:06:55 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2015-03-28 13:31:30 ----D---- C:\ProgramData\Steam
2015-03-28 13:17:51 ----D---- C:\ProgramData\Package Cache
2015-03-28 12:51:29 ----RSD---- C:\WINDOWS\Fonts
2015-03-28 05:44:01 ----A---- C:\WINDOWS\SYSWOW64\nvspcap.dll
2015-03-28 05:44:01 ----A---- C:\WINDOWS\SYSWOW64\nvspbridge.dll
2015-03-28 05:43:39 ----A---- C:\WINDOWS\system32\nvspcap64.dll
2015-03-28 05:43:39 ----A---- C:\WINDOWS\system32\nvspbridge64.dll

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2013-01-31 652784]
R0 kl1;kl1; C:\WINDOWS\system32\DRIVERS\kl1.sys [2014-02-15 458336]
R1 AppleCharger;AppleCharger; C:\WINDOWS\system32\DRIVERS\AppleCharger.sys [2013-02-19 21584]
R1 KLIF;Kaspersky Lab Driver; C:\WINDOWS\system32\DRIVERS\klif.sys [2014-06-18 625760]
R1 KLIM6;@oem20.inf,%KLIM6_Desc%;Kaspersky Anti-Virus NDIS 6 Filter; C:\WINDOWS\system32\DRIVERS\klim6.sys [2014-02-15 30304]
R1 klpd;klpd; C:\WINDOWS\system32\DRIVERS\klpd.sys [2013-04-12 15456]
R1 klwfp;klwfp; C:\WINDOWS\system32\DRIVERS\klwfp.sys [2014-06-18 65120]
R1 kneps;kneps; C:\WINDOWS\system32\DRIVERS\kneps.sys [2014-02-15 178272]
R1 vwififlt;@%SystemRoot%\System32\drivers\vwififlt.sys,-259; C:\WINDOWS\system32\DRIVERS\vwififlt.sys [2014-04-30 71680]
R2 atksgt;atksgt; C:\WINDOWS\system32\DRIVERS\atksgt.sys [2014-02-24 314016]
R2 lirsgt;lirsgt; C:\WINDOWS\system32\DRIVERS\lirsgt.sys [2014-02-24 43680]
R3 athur;@oem14.inf,%ATHR.Service.DispName%;Qualcomm Atheros AR9271 Wireless Network Adapter Service; C:\WINDOWS\system32\DRIVERS\athuw8x.sys [2013-06-02 2919936]
R3 dtlitescsibus;@oem34.inf,%DTLITESCSIBUS.DeviceDesc%;DAEMON Tools Lite Virtual SCSI Bus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [2015-03-28 30352]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2013-10-04 4185600]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2013-02-26 3333576]
R3 IntcDAud;@oem3.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2013-03-19 442368]
R3 iwdbus;@oem33.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\WINDOWS\System32\drivers\iwdbus.sys [2013-09-26 27032]
R3 klkbdflt;Kaspersky Lab KLKBDFLT; C:\WINDOWS\system32\DRIVERS\klkbdflt.sys [2014-06-18 29280]
R3 klmouflt;Kaspersky Lab KLMOUFLT; C:\WINDOWS\system32\DRIVERS\klmouflt.sys [2014-02-15 29280]
R3 MEIx64;@oem26.inf,%HECI_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\System32\drivers\HECIx64.sys [2013-03-12 64624]
R3 NVHDA;@oem66.inf,%NVHDA.SvcDesc%;Service for NVIDIA High Definition Audio Driver; C:\WINDOWS\system32\drivers\nvhda64v.sys [2014-10-09 195728]
R3 nvlddmkm;nvlddmkm; C:\WINDOWS\system32\DRIVERS\nvlddmkm.sys [2015-04-09 10423952]
R3 NvStreamKms;NvStreamKms; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2015-03-28 19600]
R3 nvvad_WaveExtensible;@oem59.inf,%nvvad_WaveExtensible.SvcDesc%;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\WINDOWS\system32\drivers\nvvad64v.sys [2014-11-22 38032]
R3 RTL8168;@netrt630x64.inf,%rtl8168.Service.DispName%;Realtek 8168 NT Driver; C:\WINDOWS\system32\DRIVERS\Rt630x64.sys [2013-06-18 591360]
R3 SbieDrv;SbieDrv; \??\C:\Program Files\Sandboxie\SbieDrv.sys [2015-02-18 237064]
R3 tap0901t;@oem41.inf,%DeviceDescription%;TAP-Win32 Adapter V9 (Tunngle); C:\WINDOWS\system32\DRIVERS\tap0901t.sys [2009-09-16 31232]
S0 klelam;klelam; C:\WINDOWS\system32\DRIVERS\klelam.sys [2014-02-15 29792]
S1 JSWPSLWF;JumpStart Wireless Filter Driver; C:\WINDOWS\system32\DRIVERS\jswpslwfx.sys [2011-12-26 26624]
S1 UsbCharger;UsbCharger; C:\WINDOWS\system32\DRIVERS\UsbCharger.sys [2013-05-06 21584]
S3 Hamachi;LogMeIn Hamachi Virtual Miniport); C:\WINDOWS\system32\DRIVERS\Hamdrv.sys [2014-12-13 45112]
S3 intaud_WaveExtensible;@oem32.inf,%INTAUD_WEX.SvcDesc%;Intel WiDi Audio Device; C:\WINDOWS\system32\drivers\intelaud.sys [2013-09-26 39320]
S3 LGBusEnum;@oem39.inf,%LGBusEnum.SVCDESC%;Logitech GamePanel Virtual Bus Enumerator Driver; C:\WINDOWS\system32\drivers\LGBusEnum.sys [2009-11-24 22408]
S3 LGSHidFilt;@oem37.inf,%LGSHidFilt.SvcDesc%;Logitech Gaming KMDF HID Filter Driver; C:\WINDOWS\system32\DRIVERS\LGSHidFilt.Sys [2013-05-30 64280]
S3 LGVirHid;@oem40.inf,%LGVirHid.SVCDESC%;Logitech Gamepanel Virtual HID Device Driver; C:\WINDOWS\system32\drivers\LGVirHid.sys [2009-11-24 16008]
S3 OSFMount;OSFMount; \??\D:\csgo\Counter-Strike Global Offensive\image\x64\OSFMount.sys []

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AVP;Kaspersky Anti-Virus Service; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\avp.exe [2014-02-15 214512]
R2 GfExperienceService;NVIDIA GeForce Experience Service; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [2015-03-28 1152144]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2013-01-31 15344]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2013-02-13 731648]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2013-03-12 169432]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2013-03-12 366552]
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2015-03-28 1878672]
R2 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [2015-03-28 22995600]
R2 nvsvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvvsvc.exe [2015-04-08 936264]
R2 PnkBstrA;PnkBstrA; C:\WINDOWS\syswow64\PnkBstrA.exe [2015-03-29 76888]
R2 SbieSvc;Sandboxie Service; C:\Program Files\Sandboxie\SbieSvc.exe [2015-02-18 175112]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2015-04-08 410952]
S2 gupdate;Google frissítés Szolgáltatás (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-10-26 116648]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2015-02-18 315488]
S3 AppleChargerSrv;AppleChargerSrv; C:\WINDOWS\system32\AppleChargerSrv.exe [2010-04-06 31272]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2014-10-29 38792]
S3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2013-10-04 279000]
S3 Disc Soft Lite Bus Service;Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe [2015-02-27 1272592]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696]
S3 gupdatem;Google frissítés Szolgáltatás (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-10-26 116648]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2013-02-13 820184]
S3 jswpsapi;JumpStart Wi-Fi Protected Setup; C:\Program Files (x86)\TP-LINK\TP-LINK Wireless Configuration Utility\WPS\jswpsapi.exe [2011-12-26 954368]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2015-04-20 148080]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2015-02-19 835776]
S3 TunngleService;TunngleService; C:\Program Files (x86)\Tunngle\TnglCtrl.exe [2015-02-09 792016]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119677
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Pomalý PC

#6 Příspěvek od Rudy »

Stáhněte OTM: http://oldtimer.geekstogo.com/OTM.exe a uložte na plochu. Spusťte a do levého okna zkopírujte:
:files
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job

:reg
[-HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EA801577-E6AD-4BD5-8F71-4BE0154331A4}]/64
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]/64
[-HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]/64

:commands
[Purity]
[Emptytemp]
[Emptyflash]
a klikněte na >MoveIt!<. Po skenu restartujte PC a dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Leslie10
Návštěvník
Návštěvník
Příspěvky: 42
Registrován: 29 pro 2013 22:55

Re: Pomalý PC

#7 Příspěvek od Leslie10 »

Log s OTM:

All processes killed
========== FILES ==========
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job moved successfully.
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job moved successfully.
========== REGISTRY ==========
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EA801577-E6AD-4BD5-8F71-4BE0154331A4}\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EA801577-E6AD-4BD5-8F71-4BE0154331A4}\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar\ deleted successfully.
========== COMMANDS ==========

[EMPTYTEMP]

User: All Users

User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Default.migrated

User: Public

User: Szabolcs
->Temp folder emptied: 58223362 bytes
->Temporary Internet Files folder emptied: 1447490 bytes
->FireFox cache emptied: 62633075 bytes
->Flash cache emptied: 55064 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 200704 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 0 bytes
RecycleBin emptied: 0 bytes

Total Files Cleaned = 117,00 mb


[EMPTYFLASH]

User: All Users

User: Default

User: Default User

User: Default.migrated

User: Public

User: Szabolcs
->Flash cache emptied: 0 bytes

Total Flash Files Cleaned = 0,00 mb


OTM by OldTimer - Version 3.1.21.0 log created on 04242015_210146

Files moved on Reboot...
C:\Users\Szabolcs\AppData\Local\Temp\NVIDIA Corporation\NV_Cache\9e53cac1f699e676ccc302d9cb5a5f_fce8395f8fd8a84b_e330f25ac01818f1_0_0.bin moved successfully.
C:\Users\Szabolcs\AppData\Local\Temp\NVIDIA Corporation\NV_Cache\9e53cac1f699e676ccc302d9cb5a5f_fce8395f8fd8a84b_e330f25ac01818f1_0_0.toc moved successfully.
C:\Users\Szabolcs\AppData\Local\Temp\NVIDIA Corporation\NV_Cache\9e53cac1f699e676ccc302d9cb5a5f_fce8395f8fd8a84b_e330f25ac01818f1_1_0.bin moved successfully.
C:\Users\Szabolcs\AppData\Local\Temp\NVIDIA Corporation\NV_Cache\9e53cac1f699e676ccc302d9cb5a5f_fce8395f8fd8a84b_e330f25ac01818f1_1_0.toc moved successfully.
C:\Users\Szabolcs\AppData\Local\Microsoft\Windows\INetCache\counters.dat moved successfully.
File C:\WINDOWS\temp\obu56A2.tmp not found!
File C:\WINDOWS\temp\obu56C2.tmp not found!
File C:\WINDOWS\temp\obuD159.tmp not found!

Registry entries deleted on Reboot...



Log s RSIT:

Logfile of random's system information tool 1.10 (written by random/random)
Run by Szabolcs Csákó at 2015-04-24 21:08:41
Microsoft Windows 8.1
System drive C: has 27 GB (24%) free of 114 GB
Total RAM: 8079 MB (82% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 21:08:50, on 24.4.2015
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17416)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\avpui.exe
C:\Fraps\fraps.exe
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Users\Szabolcs\AppData\Roaming\Spotify\SpotifyWebHelper.exe
C:\Program Files (x86)\ROCCAT\Savu Mouse\Savu Monitor.exe
C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files\trend micro\Szabolcs Csákó.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: ExplorerBHO Class - {449D0D6E-2412-4E61-B68F-1CB625CD9E52} - C:\Program Files\Classic Shell\ClassicExplorer32.dll
O2 - BHO: ContentBlockerBrowserHelperObject - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\IEExt\ContentBlocker\ie_content_blocker_plugin.dll
O2 - BHO: VirtualKeyboardBrowserHelperObject - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll
O2 - BHO: Safe Money Plugin - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\IEExt\OnlineBanking\online_banking_bho.dll
O2 - BHO: link filter bho - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\IEExt\UrlAdvisor\klwtbbho.dll
O4 - HKLM\..\Run: [ROCCAT Savu Gaming Mouse] "C:\Program Files (x86)\ROCCAT\Savu Mouse\Savu Monitor.exe" /Automation
O4 - HKCU\..\Run: [SandboxieControl] "C:\Program Files\Sandboxie\SbieCtrl.exe"
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\Run: [Spotify Web Helper] "C:\Users\Szabolcs\AppData\Roaming\Spotify\SpotifyWebHelper.exe"
O4 - HKCU\..\Run: [Spotify] "C:\Users\Szabolcs\AppData\Roaming\Spotify\Spotify.exe" -autostart -minimized
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - Global Startup: TP-LINK Wireless Configuration Utility.lnk = C:\Program Files (x86)\TP-LINK\TP-LINK Wireless Configuration Utility\TWCU.exe
O8 - Extra context menu item: Add to Anti-Banner - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\ie_banner_deny.htm
O9 - Extra button: Virtual Keyboard - {0C4CC089-D306-440D-9772-464E226F6539} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll
O9 - Extra button: (no name) - {56753E59-AF1D-4FBA-9E15-31557124ADA2} - C:\Program Files\Classic Shell\ClassicIE_32.exe
O9 - Extra 'Tools' menuitem: Classic IE Settings - {56753E59-AF1D-4FBA-9E15-31557124ADA2} - C:\Program Files\Classic Shell\ClassicIE_32.exe
O9 - Extra button: URLs check - {CCF151D8-D089-449F-A5A4-D9909053F20F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\IEExt\UrlAdvisor\klwtbbho.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted IP range: http://10.10.10.1
O15 - ESC Trusted IP range: http://10.10.10.1
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: AppleChargerSrv - Unknown owner - C:\WINDOWS\system32\AppleChargerSrv.exe (file missing)
O23 - Service: Kaspersky Anti-Virus Service (AVP) - Kaspersky Lab ZAO - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\avp.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: Disc Soft Lite Bus Service - Disc Soft Ltd - C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
O23 - Service: Google frissítés Szolgáltatás (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google frissítés Szolgáltatás (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: JumpStart Wi-Fi Protected Setup (jswpsapi) - Wireless - C:\Program Files (x86)\TP-LINK\TP-LINK Wireless Configuration Utility\WPS\jswpsapi.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\WINDOWS\system32\nvvsvc.exe (file missing)
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Sandboxie Service (SbieSvc) - Sandboxie Holdings, LLC - C:\Program Files\Sandboxie\SbieSvc.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: TunngleService - Tunngle.net GmbH - C:\Program Files (x86)\Tunngle\TnglCtrl.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 10200 bytes

======Listing Processes======





wininit.exe

winlogon.exe

C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"C:\WINDOWS\system32\nvvsvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
"dwm.exe"
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\WINDOWS\system32\nvvsvc.exe -session -first
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
"C:\Program Files\Sandboxie\SbieSvc.exe"
C:\WINDOWS\system32\svchost.exe -k NetworkService
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\avp.exe" -r
"C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe"
dashost.exe {a7a419a3-065e-4e96-85a3b44f536fe0b5}
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe"
C:\WINDOWS\SysWOW64\PnkBstrA.exe
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe" 9ac24e03-b663-4c84-a27b-d13531f73b58 1
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-d76a5838-57e6-4f01-97d1-21babf41d70d -SystemEventPortName:HostProcess-05a79d40-61c0-408c-9985-63aee3397eaf -IoCancelEventPortName:HostProcess-76d718f8-d238-4dec-bfe8-592b3d84409c -NonStateChangingEventPortName:HostProcess-2b77ed64-daab-4410-8bc3-39fcc32beba0 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:a233f78a-940c-4e49-bb70-d7977f95e237 -DeviceGroupId:WpdFsGroup
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\avpui.exe" -hidden /prefetch:1
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" serviceapp
\??\C:\WINDOWS\system32\conhost.exe 0x4
taskeng.exe {0A229D02-934E-4741-AFED-8E7001216BE8}
C:\WINDOWS\Explorer.EXE
C:\Fraps\fraps.exe
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
taskhostex.exe
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
ClassicStartMenu.exe -startup
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Fraps\fraps64.dat"
"C:\WINDOWS\system32\igfxsrvc.exe" -Embedding
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files\Microsoft Xbox 360 Accessories\XBoxStat.exe" silentrun
"C:\Program Files\Sandboxie\SbieCtrl.exe"
"C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac
"C:\Users\Szabolcs\AppData\Roaming\Spotify\SpotifyWebHelper.exe"
"C:\Program Files (x86)\ROCCAT\Savu Mouse\Savu Monitor.exe" /Automation

"C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
"C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
wmiadap.exe /F /T /R
C:\WINDOWS\system32\wbem\wmiprvse.exe

"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe2_ Global\UsGthrCtrlFltPipeMssGthrPipe2 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 572 576 584 65536 580
"C:\Users\Szabolcs\Desktop\RSITx64.exe"
C:\WINDOWS\System32\svchost.exe -k WerSvcGroup

=========Mozilla firefox=========

ProfilePath - C:\Users\Szabolcs\AppData\Roaming\Mozilla\Firefox\Profiles\ns2me0gx.default

prefs.js - "browser.startup.homepage" - "about:home"

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 17.0.0.169 Plugin
"Path"=C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_17_0_0_169.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=3.0.72]
"Description"=Intel IPT WebApi plugin
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater]
"Description"=This plugin updates Intel WebAPI component
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVision]
"Description"=NVIDIA stereo images plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVisionStreaming]
"Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 17.0.0.169 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF64_17_0_0_169.dll


======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{449D0D6E-2412-4E61-B68F-1CB625CD9E52}]
ExplorerBHO Class - C:\Program Files\Classic Shell\ClassicExplorer64.dll [2014-04-20 803520]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F}]
Content Blocker Plugin - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\x64\IEExt\ContentBlocker\ie_content_blocker_plugin.dll [2014-02-15 800448]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{73455575-E40C-433C-9784-C78DC7761455}]
Virtual Keyboard Plugin - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\x64\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll [2014-12-21 1535784]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9E6D0D23-3D72-4A94-AE1F-2D167624E3D9}]
Safe Money Plugin - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\x64\IEExt\OnlineBanking\online_banking_bho.dll [2014-02-15 550080]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E33CF602-D945-461A-83F0-819F76A199F8}]
URL Advisor Plugin - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\x64\IEExt\UrlAdvisor\klwtbbho.dll [2014-06-18 996544]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EA801577-E6AD-4BD5-8F71-4BE0154331A4}]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{449D0D6E-2412-4E61-B68F-1CB625CD9E52}]
ExplorerBHO Class - C:\Program Files\Classic Shell\ClassicExplorer32.dll [2014-04-20 683200]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F}]
Content Blocker Plugin - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\IEExt\ContentBlocker\ie_content_blocker_plugin.dll [2014-02-15 655040]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{73455575-E40C-433C-9784-C78DC7761455}]
Virtual Keyboard Plugin - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll [2014-12-21 1265448]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9E6D0D23-3D72-4A94-AE1F-2D167624E3D9}]
Safe Money Plugin - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\IEExt\OnlineBanking\online_banking_bho.dll [2014-02-15 455360]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E33CF602-D945-461A-83F0-819F76A199F8}]
URL Advisor Plugin - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\IEExt\UrlAdvisor\klwtbbho.dll [2014-06-18 798912]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"=C:\WINDOWS\system32\igfxtray.exe [2013-10-04 391128]
"HotKeysCmds"=C:\WINDOWS\system32\hkcmd.exe [2013-10-04 771032]
"Persistence"=C:\WINDOWS\system32\igfxpers.exe [2013-10-04 769496]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2013-02-26 13423688]
"IAStorIcon"=C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe [2013-01-31 36352]
"XboxStat"=C:\Program Files\Microsoft Xbox 360 Accessories\XboxStat.exe [2009-10-01 825184]
"ShadowPlay"=C:\WINDOWS\system32\nvspcap64.dll [2015-03-28 1570672]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2015-03-28 2673296]
"Classic Start Menu"=C:\Program Files\Classic Shell\ClassicStartMenu.exe [2014-04-20 161984]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"SandboxieControl"=C:\Program Files\Sandboxie\SbieCtrl.exe [2015-02-18 785416]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2015-02-19 7416088]
"Spotify Web Helper"=C:\Users\Szabolcs\AppData\Roaming\Spotify\SpotifyWebHelper.exe [2015-04-01 2018360]
"Spotify"=C:\Users\Szabolcs\AppData\Roaming\Spotify\Spotify.exe [2015-04-01 7112248]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\DTLite.exe [2015-02-27 5583120]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"ROCCAT Savu Gaming Mouse"=C:\Program Files (x86)\ROCCAT\Savu Mouse\Savu Monitor.exe [2012-09-10 872048]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
TP-LINK Wireless Configuration Utility.lnk - C:\Program Files (x86)\TP-LINK\TP-LINK Wireless Configuration Utility\TWCU.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\PROGRA~2\NVIDIA~1\3DVISI~1\NVSTIN~1.DLL"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2013-10-04 623616]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=28

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.yuy2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"vidc.yvyu"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"vidc.uyvy"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"VIDC.FPS1"=frapsv64.dll
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2015-04-24 21:01:46 ----D---- C:\_OTM
2015-04-24 17:10:10 ----D---- C:\AdwCleaner
2015-04-20 07:44:27 ----D---- C:\Program Files (x86)\Mozilla Firefox
2015-04-18 07:09:54 ----D---- C:\Program Files\Rockstar Games
2015-04-15 16:25:45 ----D---- C:\WINDOWS\system32\appraiser
2015-04-15 12:21:35 ----A---- C:\WINDOWS\SYSWOW64\msctf.dll
2015-04-15 12:21:35 ----A---- C:\WINDOWS\system32\msctf.dll
2015-04-15 12:21:32 ----A---- C:\WINDOWS\SYSWOW64\tdh.dll
2015-04-15 12:21:32 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2015-04-15 12:21:32 ----A---- C:\WINDOWS\system32\tdh.dll
2015-04-15 12:21:32 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2015-04-15 12:21:32 ----A---- C:\WINDOWS\system32\ntdll.dll
2015-04-15 12:21:31 ----A---- C:\WINDOWS\SYSWOW64\tracerpt.exe
2015-04-15 12:21:31 ----A---- C:\WINDOWS\SYSWOW64\sechost.dll
2015-04-15 12:21:31 ----A---- C:\WINDOWS\system32\wow64cpu.dll
2015-04-15 12:21:31 ----A---- C:\WINDOWS\system32\wow64.dll
2015-04-15 12:21:31 ----A---- C:\WINDOWS\system32\tracerpt.exe
2015-04-15 12:21:31 ----A---- C:\WINDOWS\system32\sechost.dll
2015-04-15 12:21:31 ----A---- C:\WINDOWS\system32\microsoft-windows-system-events.dll
2015-04-15 12:21:28 ----A---- C:\WINDOWS\system32\lsm.dll
2015-04-15 12:21:26 ----A---- C:\WINDOWS\SYSWOW64\pku2u.dll
2015-04-15 12:21:26 ----A---- C:\WINDOWS\system32\pku2u.dll
2015-04-15 12:21:25 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2015-04-15 12:21:25 ----A---- C:\WINDOWS\system32\mshtml.dll
2015-04-15 12:21:24 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2015-04-15 12:21:24 ----A---- C:\WINDOWS\system32\jscript9.dll
2015-04-15 12:21:23 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2015-04-15 12:21:23 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2015-04-15 12:21:23 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2015-04-15 12:21:23 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2015-04-15 12:21:23 ----A---- C:\WINDOWS\SYSWOW64\jscript.dll
2015-04-15 12:21:23 ----A---- C:\WINDOWS\SYSWOW64\inetcomm.dll
2015-04-15 12:21:23 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2015-04-15 12:21:23 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2015-04-15 12:21:23 ----A---- C:\WINDOWS\SYSWOW64\ieapfltr.dll
2015-04-15 12:21:23 ----A---- C:\WINDOWS\system32\wininet.dll
2015-04-15 12:21:23 ----A---- C:\WINDOWS\system32\vbscript.dll
2015-04-15 12:21:23 ----A---- C:\WINDOWS\system32\urlmon.dll
2015-04-15 12:21:23 ----A---- C:\WINDOWS\system32\mshtmled.dll
2015-04-15 12:21:23 ----A---- C:\WINDOWS\system32\msfeeds.dll
2015-04-15 12:21:23 ----A---- C:\WINDOWS\system32\jscript.dll
2015-04-15 12:21:23 ----A---- C:\WINDOWS\system32\inetcomm.dll
2015-04-15 12:21:23 ----A---- C:\WINDOWS\system32\iertutil.dll
2015-04-15 12:21:23 ----A---- C:\WINDOWS\system32\ieframe.dll
2015-04-15 12:21:23 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2015-04-15 12:21:23 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2015-04-15 12:21:01 ----A---- C:\WINDOWS\system32\drivers\http.sys
2015-04-15 12:20:58 ----A---- C:\WINDOWS\SYSWOW64\clfsw32.dll
2015-04-15 12:20:58 ----A---- C:\WINDOWS\system32\drivers\clfs.sys
2015-04-15 12:20:58 ----A---- C:\WINDOWS\system32\clfsw32.dll
2015-04-15 12:20:56 ----A---- C:\WINDOWS\SYSWOW64\wuwebv.dll
2015-04-15 12:20:56 ----A---- C:\WINDOWS\SYSWOW64\wups.dll
2015-04-15 12:20:56 ----A---- C:\WINDOWS\SYSWOW64\wudriver.dll
2015-04-15 12:20:56 ----A---- C:\WINDOWS\SYSWOW64\wuapp.exe
2015-04-15 12:20:56 ----A---- C:\WINDOWS\SYSWOW64\wuapi.dll
2015-04-15 12:20:56 ----A---- C:\WINDOWS\system32\wuwebv.dll
2015-04-15 12:20:56 ----A---- C:\WINDOWS\system32\WUSettingsProvider.dll
2015-04-15 12:20:56 ----A---- C:\WINDOWS\system32\wups2.dll
2015-04-15 12:20:56 ----A---- C:\WINDOWS\system32\wups.dll
2015-04-15 12:20:56 ----A---- C:\WINDOWS\system32\wudriver.dll
2015-04-15 12:20:56 ----A---- C:\WINDOWS\system32\wucltux.dll
2015-04-15 12:20:56 ----A---- C:\WINDOWS\system32\wuaueng.dll
2015-04-15 12:20:56 ----A---- C:\WINDOWS\system32\wuauclt.exe
2015-04-15 12:20:56 ----A---- C:\WINDOWS\system32\wuapp.exe
2015-04-15 12:20:56 ----A---- C:\WINDOWS\system32\wuapi.dll
2015-04-15 12:20:56 ----A---- C:\WINDOWS\system32\wu.upgrade.ps.dll
2015-04-15 12:20:56 ----A---- C:\WINDOWS\system32\WinSetupUI.dll
2015-04-15 12:20:56 ----A---- C:\WINDOWS\system32\storewuauth.dll
2015-04-15 12:20:50 ----A---- C:\WINDOWS\system32\invagent.dll
2015-04-15 12:20:50 ----A---- C:\WINDOWS\system32\generaltel.dll
2015-04-15 12:20:50 ----A---- C:\WINDOWS\system32\devinv.dll
2015-04-15 12:20:50 ----A---- C:\WINDOWS\system32\appraiser.dll
2015-04-15 12:20:50 ----A---- C:\WINDOWS\system32\aepic.dll
2015-04-15 12:20:50 ----A---- C:\WINDOWS\system32\aepdu.dll
2015-04-15 12:20:50 ----A---- C:\WINDOWS\system32\aeinv.dll
2015-04-15 12:20:50 ----A---- C:\WINDOWS\system32\acmigration.dll
2015-04-13 20:23:27 ----A---- C:\WINDOWS\SYSWOW64\nvStreaming.exe
2015-04-13 20:22:29 ----A---- C:\WINDOWS\SYSWOW64\nvumdshim.dll
2015-04-13 20:22:29 ----A---- C:\WINDOWS\SYSWOW64\nvopencl.dll
2015-04-13 20:22:29 ----A---- C:\WINDOWS\SYSWOW64\nvoglv32.dll
2015-04-13 20:22:29 ----A---- C:\WINDOWS\SYSWOW64\nvoglshim32.dll
2015-04-13 20:22:29 ----A---- C:\WINDOWS\SYSWOW64\nvinit.dll
2015-04-13 20:22:29 ----A---- C:\WINDOWS\SYSWOW64\NvIFROpenGL.dll
2015-04-13 20:22:29 ----A---- C:\WINDOWS\SYSWOW64\NvIFR.dll
2015-04-13 20:22:29 ----A---- C:\WINDOWS\SYSWOW64\NvFBC.dll
2015-04-13 20:22:29 ----A---- C:\WINDOWS\SYSWOW64\nvEncodeAPI.dll
2015-04-13 20:22:29 ----A---- C:\WINDOWS\SYSWOW64\nvcuvid.dll
2015-04-13 20:22:29 ----A---- C:\WINDOWS\SYSWOW64\nvcuda.dll
2015-04-13 20:22:29 ----A---- C:\WINDOWS\SYSWOW64\nvcompiler.dll
2015-04-13 20:22:29 ----A---- C:\WINDOWS\system32\nvumdshimx.dll
2015-04-13 20:22:29 ----A---- C:\WINDOWS\system32\nvopencl.dll
2015-04-13 20:22:29 ----A---- C:\WINDOWS\system32\nvoglshim64.dll
2015-04-13 20:22:29 ----A---- C:\WINDOWS\system32\nvmcumd.dll
2015-04-13 20:22:29 ----A---- C:\WINDOWS\system32\nvinitx.dll
2015-04-13 20:22:29 ----A---- C:\WINDOWS\system32\NvIFROpenGL.dll
2015-04-13 20:22:29 ----A---- C:\WINDOWS\system32\NvIFR64.dll
2015-04-13 20:22:29 ----A---- C:\WINDOWS\system32\NvFBC64.dll
2015-04-13 20:22:29 ----A---- C:\WINDOWS\system32\nvEncodeAPI64.dll
2015-04-13 20:22:29 ----A---- C:\WINDOWS\system32\nvdispgenco6435012.dll
2015-04-13 20:22:29 ----A---- C:\WINDOWS\system32\nvdispco6435012.dll
2015-04-13 20:22:29 ----A---- C:\WINDOWS\system32\nvcuvid.dll
2015-04-13 20:22:29 ----A---- C:\WINDOWS\system32\nvcuda.dll
2015-04-13 20:22:29 ----A---- C:\WINDOWS\system32\nvcompiler.dll
2015-04-13 20:22:29 ----A---- C:\WINDOWS\system32\drivers\nvlddmkm.sys
2015-04-07 16:09:26 ----SD---- C:\WINDOWS\SYSWOW64\GWX
2015-04-07 16:09:26 ----SD---- C:\WINDOWS\system32\GWX
2015-03-29 18:38:24 ----A---- C:\WINDOWS\SYSWOW64\PnkBstrB.exe
2015-03-29 18:38:16 ----A---- C:\WINDOWS\SYSWOW64\PnkBstrA.exe
2015-03-28 17:15:21 ----A---- C:\WINDOWS\Simple Port Forwarding Uninstall Log.txt
2015-03-28 16:57:57 ----D---- C:\WINDOWS\Simple Port Forwarding
2015-03-28 16:57:29 ----A---- C:\WINDOWS\Simple Port Forwarding Setup Log.txt
2015-03-28 12:51:30 ----D---- C:\ProgramData\Tunngle
2015-03-28 12:51:29 ----D---- C:\Program Files (x86)\Tunngle
2015-03-28 10:40:44 ----D---- C:\Users\Szabolcs\AppData\Roaming\Ubisoft
2015-03-28 10:33:38 ----A---- C:\WINDOWS\system32\drivers\dtlitescsibus.sys
2015-03-28 10:33:35 ----D---- C:\Program Files\DAEMON Tools Lite

======List of files/folders modified in the last 1 month======

2015-04-24 21:08:49 ----D---- C:\Program Files\trend micro
2015-04-24 21:08:46 ----D---- C:\WINDOWS\Prefetch
2015-04-24 21:08:41 ----D---- C:\WINDOWS\Temp
2015-04-24 21:05:20 ----D---- C:\Users\Szabolcs\AppData\Roaming\Spotify
2015-04-24 21:03:02 ----D---- C:\WINDOWS\system32\Tasks
2015-04-24 21:03:02 ----D---- C:\Fraps
2015-04-24 21:02:56 ----D---- C:\ProgramData\Kaspersky Lab
2015-04-24 21:02:50 ----SHD---- C:\System Volume Information
2015-04-24 21:02:50 ----D---- C:\ProgramData\NVIDIA
2015-04-24 21:02:11 ----D---- C:\Windows
2015-04-24 21:01:46 ----D---- C:\WINDOWS\Tasks
2015-04-24 21:00:00 ----D---- C:\WINDOWS\system32\sru
2015-04-24 18:17:57 ----D---- C:\Users\Szabolcs\AppData\Roaming\ClassicShell
2015-04-24 17:23:52 ----D---- C:\WINDOWS\Microsoft.NET
2015-04-24 17:22:16 ----D---- C:\WINDOWS\system32\config
2015-04-24 17:16:52 ----RD---- C:\WINDOWS\System32
2015-04-24 17:16:52 ----D---- C:\WINDOWS\Inf
2015-04-24 17:16:52 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2015-04-24 17:12:16 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2015-04-24 17:11:35 ----RD---- C:\Program Files (x86)
2015-04-24 17:11:35 ----HD---- C:\ProgramData
2015-04-24 16:53:02 ----D---- C:\Users\Szabolcs\AppData\Roaming\uTorrent
2015-04-24 16:47:03 ----D---- C:\Users\Szabolcs\AppData\Roaming\vlc
2015-04-24 07:54:34 ----D---- C:\WINDOWS\SysWOW64
2015-04-24 07:35:09 ----D---- C:\Program Files\Recuva
2015-04-20 20:28:45 ----A---- C:\WINDOWS\Sandboxie.ini
2015-04-20 08:07:31 ----D---- C:\Users\Szabolcs\AppData\Roaming\Skype
2015-04-20 06:03:29 ----D---- C:\Program Files (x86)\Rockstar Games
2015-04-19 19:13:28 ----SHD---- C:\WINDOWS\Installer
2015-04-19 19:13:28 ----SHD---- C:\Config.Msi
2015-04-19 19:13:26 ----RD---- C:\Program Files
2015-04-19 19:13:25 ----D---- C:\WINDOWS\system32\DriverStore
2015-04-19 19:03:48 ----D---- C:\Program Files (x86)\Google
2015-04-18 04:26:30 ----D---- C:\WINDOWS\WinSxS
2015-04-17 15:20:17 ----D---- C:\Users\Szabolcs\AppData\Roaming\DAEMON Tools Lite
2015-04-16 17:25:00 ----D---- C:\WINDOWS\rescache
2015-04-16 17:18:38 ----D---- C:\WINDOWS\system32\catroot2
2015-04-16 17:14:06 ----D---- C:\WINDOWS\AppCompat
2015-04-16 17:13:46 ----RSD---- C:\WINDOWS\assembly
2015-04-16 17:13:10 ----D---- C:\WINDOWS\CbsTemp
2015-04-16 16:18:14 ----D---- C:\ProgramData\Skype
2015-04-15 16:25:45 ----SD---- C:\WINDOWS\system32\CompatTel
2015-04-15 16:25:45 ----SD---- C:\ProgramData\Microsoft
2015-04-15 16:25:45 ----D---- C:\WINDOWS\SYSWOW64\sk-SK
2015-04-15 16:25:45 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2015-04-15 16:25:45 ----D---- C:\WINDOWS\system32\wbem
2015-04-15 16:25:45 ----D---- C:\WINDOWS\system32\sk-SK
2015-04-15 16:25:45 ----D---- C:\WINDOWS\system32\en-US
2015-04-15 16:25:45 ----D---- C:\WINDOWS\system32\drivers
2015-04-15 16:25:45 ----D---- C:\WINDOWS\system32\cs-CZ
2015-04-15 16:25:45 ----D---- C:\WINDOWS\apppatch
2015-04-15 16:25:45 ----D---- C:\Program Files\Internet Explorer
2015-04-15 13:41:05 ----D---- C:\WINDOWS\system32\MRT
2015-04-15 13:39:21 ----A---- C:\WINDOWS\system32\MRT.exe
2015-04-15 12:18:32 ----A---- C:\WINDOWS\system32\wuaext.dll
2015-04-14 01:24:21 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2015-04-13 20:23:46 ----D---- C:\ProgramData\NVIDIA Corporation
2015-04-12 14:06:34 ----D---- C:\Users\Szabolcs\AppData\Roaming\Tunngle
2015-04-09 21:18:47 ----D---- C:\ProgramData\Unity
2015-04-09 02:58:18 ----A---- C:\WINDOWS\SYSWOW64\nvwgf2um.dll
2015-04-09 02:58:18 ----A---- C:\WINDOWS\SYSWOW64\nvd3dum.dll
2015-04-09 02:58:18 ----A---- C:\WINDOWS\SYSWOW64\nvapi.dll
2015-04-09 02:58:18 ----A---- C:\WINDOWS\system32\nvwgf2umx.dll
2015-04-09 02:58:18 ----A---- C:\WINDOWS\system32\nvoglv64.dll
2015-04-09 02:58:18 ----A---- C:\WINDOWS\system32\nvd3dumx.dll
2015-04-09 02:58:18 ----A---- C:\WINDOWS\system32\nvapi64.dll
2015-04-08 23:30:18 ----A---- C:\WINDOWS\system32\nvsvc64.dll
2015-04-08 23:30:18 ----A---- C:\WINDOWS\system32\nvcpl.dll
2015-04-08 23:30:14 ----A---- C:\WINDOWS\system32\nvvsvc.exe
2015-04-08 23:30:14 ----A---- C:\WINDOWS\system32\nvsvcr.dll
2015-04-08 23:30:14 ----A---- C:\WINDOWS\system32\nvshext.dll
2015-04-08 23:30:13 ----A---- C:\WINDOWS\system32\nvmctray.dll
2015-04-07 16:09:32 ----D---- C:\WINDOWS\Logs
2015-03-28 21:06:55 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2015-03-28 13:31:30 ----D---- C:\ProgramData\Steam
2015-03-28 13:17:51 ----D---- C:\ProgramData\Package Cache
2015-03-28 12:51:29 ----RSD---- C:\WINDOWS\Fonts
2015-03-28 05:44:01 ----A---- C:\WINDOWS\SYSWOW64\nvspcap.dll
2015-03-28 05:44:01 ----A---- C:\WINDOWS\SYSWOW64\nvspbridge.dll
2015-03-28 05:43:39 ----A---- C:\WINDOWS\system32\nvspcap64.dll
2015-03-28 05:43:39 ----A---- C:\WINDOWS\system32\nvspbridge64.dll

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2013-01-31 652784]
R0 kl1;kl1; C:\WINDOWS\system32\DRIVERS\kl1.sys [2014-02-15 458336]
R1 AppleCharger;AppleCharger; C:\WINDOWS\system32\DRIVERS\AppleCharger.sys [2013-02-19 21584]
R1 KLIF;Kaspersky Lab Driver; C:\WINDOWS\system32\DRIVERS\klif.sys [2014-06-18 625760]
R1 KLIM6;@oem20.inf,%KLIM6_Desc%;Kaspersky Anti-Virus NDIS 6 Filter; C:\WINDOWS\system32\DRIVERS\klim6.sys [2014-02-15 30304]
R1 klpd;klpd; C:\WINDOWS\system32\DRIVERS\klpd.sys [2013-04-12 15456]
R1 klwfp;klwfp; C:\WINDOWS\system32\DRIVERS\klwfp.sys [2014-06-18 65120]
R1 kneps;kneps; C:\WINDOWS\system32\DRIVERS\kneps.sys [2014-02-15 178272]
R1 vwififlt;@%SystemRoot%\System32\drivers\vwififlt.sys,-259; C:\WINDOWS\system32\DRIVERS\vwififlt.sys [2014-04-30 71680]
R2 atksgt;atksgt; C:\WINDOWS\system32\DRIVERS\atksgt.sys [2014-02-24 314016]
R2 lirsgt;lirsgt; C:\WINDOWS\system32\DRIVERS\lirsgt.sys [2014-02-24 43680]
R3 athur;@oem14.inf,%ATHR.Service.DispName%;Qualcomm Atheros AR9271 Wireless Network Adapter Service; C:\WINDOWS\system32\DRIVERS\athuw8x.sys [2013-06-02 2919936]
R3 dtlitescsibus;@oem34.inf,%DTLITESCSIBUS.DeviceDesc%;DAEMON Tools Lite Virtual SCSI Bus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [2015-03-28 30352]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2013-10-04 4185600]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2013-02-26 3333576]
R3 IntcDAud;@oem3.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2013-03-19 442368]
R3 iwdbus;@oem33.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\WINDOWS\System32\drivers\iwdbus.sys [2013-09-26 27032]
R3 klkbdflt;Kaspersky Lab KLKBDFLT; C:\WINDOWS\system32\DRIVERS\klkbdflt.sys [2014-06-18 29280]
R3 klmouflt;Kaspersky Lab KLMOUFLT; C:\WINDOWS\system32\DRIVERS\klmouflt.sys [2014-02-15 29280]
R3 MEIx64;@oem26.inf,%HECI_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\System32\drivers\HECIx64.sys [2013-03-12 64624]
R3 NVHDA;@oem66.inf,%NVHDA.SvcDesc%;Service for NVIDIA High Definition Audio Driver; C:\WINDOWS\system32\drivers\nvhda64v.sys [2014-10-09 195728]
R3 nvlddmkm;nvlddmkm; C:\WINDOWS\system32\DRIVERS\nvlddmkm.sys [2015-04-09 10423952]
R3 NvStreamKms;NvStreamKms; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2015-03-28 19600]
R3 nvvad_WaveExtensible;@oem59.inf,%nvvad_WaveExtensible.SvcDesc%;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\WINDOWS\system32\drivers\nvvad64v.sys [2014-11-22 38032]
R3 RTL8168;@netrt630x64.inf,%rtl8168.Service.DispName%;Realtek 8168 NT Driver; C:\WINDOWS\system32\DRIVERS\Rt630x64.sys [2013-06-18 591360]
R3 SbieDrv;SbieDrv; \??\C:\Program Files\Sandboxie\SbieDrv.sys [2015-02-18 237064]
R3 tap0901t;@oem41.inf,%DeviceDescription%;TAP-Win32 Adapter V9 (Tunngle); C:\WINDOWS\system32\DRIVERS\tap0901t.sys [2009-09-16 31232]
S0 klelam;klelam; C:\WINDOWS\system32\DRIVERS\klelam.sys [2014-02-15 29792]
S1 JSWPSLWF;JumpStart Wireless Filter Driver; C:\WINDOWS\system32\DRIVERS\jswpslwfx.sys [2011-12-26 26624]
S1 UsbCharger;UsbCharger; C:\WINDOWS\system32\DRIVERS\UsbCharger.sys [2013-05-06 21584]
S3 Hamachi;LogMeIn Hamachi Virtual Miniport); C:\WINDOWS\system32\DRIVERS\Hamdrv.sys [2014-12-13 45112]
S3 intaud_WaveExtensible;@oem32.inf,%INTAUD_WEX.SvcDesc%;Intel WiDi Audio Device; C:\WINDOWS\system32\drivers\intelaud.sys [2013-09-26 39320]
S3 LGBusEnum;@oem39.inf,%LGBusEnum.SVCDESC%;Logitech GamePanel Virtual Bus Enumerator Driver; C:\WINDOWS\system32\drivers\LGBusEnum.sys [2009-11-24 22408]
S3 LGSHidFilt;@oem37.inf,%LGSHidFilt.SvcDesc%;Logitech Gaming KMDF HID Filter Driver; C:\WINDOWS\system32\DRIVERS\LGSHidFilt.Sys [2013-05-30 64280]
S3 LGVirHid;@oem40.inf,%LGVirHid.SVCDESC%;Logitech Gamepanel Virtual HID Device Driver; C:\WINDOWS\system32\drivers\LGVirHid.sys [2009-11-24 16008]
S3 OSFMount;OSFMount; \??\D:\csgo\Counter-Strike Global Offensive\image\x64\OSFMount.sys []

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AVP;Kaspersky Anti-Virus Service; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\avp.exe [2014-02-15 214512]
R2 GfExperienceService;NVIDIA GeForce Experience Service; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [2015-03-28 1152144]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2013-01-31 15344]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2013-02-13 731648]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2013-03-12 169432]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2013-03-12 366552]
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2015-03-28 1878672]
R2 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [2015-03-28 22995600]
R2 nvsvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvvsvc.exe [2015-04-08 936264]
R2 PnkBstrA;PnkBstrA; C:\WINDOWS\syswow64\PnkBstrA.exe [2015-03-29 76888]
R2 SbieSvc;Sandboxie Service; C:\Program Files\Sandboxie\SbieSvc.exe [2015-02-18 175112]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2015-04-08 410952]
S2 gupdate;Google frissítés Szolgáltatás (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-10-26 116648]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2015-02-18 315488]
S3 AppleChargerSrv;AppleChargerSrv; C:\WINDOWS\system32\AppleChargerSrv.exe [2010-04-06 31272]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2014-10-29 38792]
S3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2013-10-04 279000]
S3 Disc Soft Lite Bus Service;Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe [2015-02-27 1272592]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696]
S3 gupdatem;Google frissítés Szolgáltatás (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-10-26 116648]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2013-02-13 820184]
S3 jswpsapi;JumpStart Wi-Fi Protected Setup; C:\Program Files (x86)\TP-LINK\TP-LINK Wireless Configuration Utility\WPS\jswpsapi.exe [2011-12-26 954368]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2015-04-20 148080]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2015-02-19 835776]
S3 TunngleService;TunngleService; C:\Program Files (x86)\Tunngle\TnglCtrl.exe [2015-02-09 792016]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119677
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Pomalý PC

#8 Příspěvek od Rudy »

Smazáno. Znovu spusťte OTM a klikněte na >CleanUp!<. OTM po sobě uklidí. Nakonec restartujte PC. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Leslie10
Návštěvník
Návštěvník
Příspěvky: 42
Registrován: 29 pro 2013 22:55

Re: Pomalý PC

#9 Příspěvek od Leslie10 »

proces mdm este stale bezi na pozadi a poriadne to spomaluje PC... Je to normalne?

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119677
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Pomalý PC

#10 Příspěvek od Rudy »

Jde o systémový proces Machine debug manager. Není to vir. Zkuste Přík. řádek>(napsat) msconfig a odkliknout. Koukněte na záložky "Po spuštění" a "Služby" a odstraňte zatržítko u té položky. Nastavení uložte a restartujte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Odpovědět