Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Spomalený notebook, log z RSIT

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
gromo
Návštěvník
Návštěvník
Příspěvky: 54
Registrován: 28 bře 2010 16:45

Spomalený notebook, log z RSIT

#1 Příspěvek od gromo »

Dobrý večer,

po dlhej dobe sa vraciam kvôli sestrinmu PC. Asi dva roky som sa o údržbu staral sám. Potom jej priateľ do notebooku nainštaloval na "údržbu" ASC7. Teraz, cca asi mesiac, PC je výrazne spomalené, štart trvá podstatne dlhšie ako na mojom staršom a slabšom PC. Odinštaloval som ASC a vyhádzal nejaké veci zo Startupu. MSI ani ESET Online Scanner nič nenašli. Len zapnutie je na minúty a na PC sa nedá veľmi pracovať. Prikladám log z RSIT a ďakujem za akúkoľvek odpoveď.

Logfile of random's system information tool 1.10 (written by random/random)
Run by Ľudka at 2015-04-24 20:17:00
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 465 GB (66%) free of 700 GB
Total RAM: 5815 MB (57% free)

HijackThis download failed

======Listing Processes======



\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
winlogon.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
"C:\Windows\system32\nvvsvc.exe"
C:\Windows\system32\svchost.exe -k RPCSS
"c:\Program Files\Microsoft Security Client\MsMpEng.exe"
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\Launch Manager\dsiwmis.exe"
"C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe"
"C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe"
"C:\Program Files (x86)\Acer\Registration\GREGsvc.exe"
"C:\Program Files\Acer\Acer Updater\UpdaterService.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\IScheduleSvc.exe"
"taskhost.exe"
C:\Windows\Explorer.EXE
"C:\Windows\system32\Dwm.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
"C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe"
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
"c:\Program Files\Microsoft Security Client\NisSrv.exe"
C:\Windows\servicing\TrustedInstaller.exe
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe" bcb1727f-f636-4ca4-8a4a-1ae19e982ec3 1
\??\C:\Windows\system32\conhost.exe "728285052-835642645-35517413319512419311637621310-1819137651-12741558921803826047
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" serviceapp
\??\C:\Windows\system32\conhost.exe "-1194699003874096602-392311457-1914243135-905290210925887949-1295479310410095869
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files\Bitdefender\Antivirus Free Edition\gzserv.exe" /service
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
taskeng.exe {6A7156E5-8FC2-4315-A14E-675705B2A642}
C:\Windows\system32\wbem\wmiprvse.exe

"C:\Users\Ľudka\Desktop\RSITx64.exe"
C:\Windows\system32\DllHost.exe /Processid:{F9717507-6651-4EDB-BFF7-AE615179BCCF}

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe

=========Mozilla firefox=========

ProfilePath - C:\Users\Ľudka\AppData\Roaming\Mozilla\Firefox\Profiles\bc1pfh3d.default

prefs.js - "browser.startup.homepage" - "http://www.google.sk/"
prefs.js - "keyword.URL" - "https://search.yahoo.com/search?fr=gree ... =198484&p="

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 17.0.0.169 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_17_0_0_169.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3538.0513]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.0.0]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.3]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@WildTangent.com/GamesAppPresenceDetector,Version=1.0]
"Description"=WildTangent Games App V2 Presence Detector Plugin
"Path"=C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\6\NP_wtapp.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll


C:\Users\Ľudka\AppData\Roaming\Mozilla\Firefox\Profiles\bc1pfh3d.default\extensions\
bingsearch.full@microsoft.com
{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}

C:\Users\Ľudka\AppData\Roaming\Mozilla\Firefox\Profiles\bc1pfh3d.default\searchplugins\
yahoo_ff.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{10921475-03CE-4E04-90CE-E2E7EF20C814}]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-29 529280]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}]
DVDVideoSoft IE Extension - C:\Program Files (x86)\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns64.dll [2014-12-15 357376]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-29 441216]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}]
DVDVideoSoft IE Extension - C:\Program Files (x86)\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns.dll [2015-01-13 297128]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"MSC"=c:\Program Files\Microsoft Security Client\msseces.exe [2015-01-30 1332296]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeAAMUpdater-1.0]
C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2012-04-04 446392]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeCS6ServiceManager]
C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [2012-03-09 1073312]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HotKeysCmds]
C:\Windows\system32\hkcmd.exe [2000-01-01 394224]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IgfxTray]
C:\Windows\system32\igfxtray.exe [2000-01-01 168944]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvBackend]
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2015-04-09 2673296]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Persistence]
C:\Windows\system32\igfxpers.exe [2000-01-01 418800]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RTHDVCPL]
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2000-01-01 13662936]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ShadowPlay]
C:\Windows\system32\nvspcap64.dll [2015-04-09 1570672]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SwitchBoard]
C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\Windows\system32\nvinitx.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2000-01-01 390144]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"DisableTaskMgr"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
"NoRun"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 3 months======

2015-04-24 20:17:00 ----D---- C:\rsit
2015-04-24 20:17:00 ----D---- C:\Program Files\trend micro
2015-04-23 08:29:39 ----SHD---- C:\Config.Msi
2015-04-23 08:22:56 ----D---- C:\Program Files (x86)\Atheros
2015-04-23 08:22:56 ----A---- C:\Windows\system32\drivers\athrx.sys
2015-04-23 08:22:56 ----A---- C:\Windows\system32\athrx.sys
2015-04-23 08:22:29 ----D---- C:\Users\Ľudka\AppData\Roaming\InstallShield
2015-04-17 19:16:21 ----N---- C:\bootsqm.dat
2015-04-17 15:52:26 ----D---- C:\Windows\pss
2015-04-17 15:16:27 ----A---- C:\Windows\system32\invagent.dll
2015-04-17 15:16:27 ----A---- C:\Windows\system32\generaltel.dll
2015-04-17 15:16:27 ----A---- C:\Windows\system32\devinv.dll
2015-04-17 15:16:27 ----A---- C:\Windows\system32\appraiser.dll
2015-04-17 15:16:27 ----A---- C:\Windows\system32\aeinv.dll
2015-04-17 15:16:27 ----A---- C:\Windows\system32\acmigration.dll
2015-04-17 15:16:26 ----A---- C:\Windows\system32\aepic.dll
2015-04-17 15:16:26 ----A---- C:\Windows\system32\aepdu.dll
2015-04-17 13:13:56 ----D---- C:\Program Files (x86)\ESET
2015-04-17 10:31:50 ----D---- C:\Program Files (x86)\TuneUp Utilities 2012
2015-04-17 10:22:05 ----A---- C:\Windows\SYSWOW64\d3dx11_43.dll
2015-04-17 10:22:05 ----A---- C:\Windows\system32\d3dx11_43.dll
2015-04-17 10:22:03 ----A---- C:\Windows\system32\d3dx10_43.dll
2015-04-17 10:22:02 ----A---- C:\Windows\SYSWOW64\D3DX9_43.dll
2015-04-17 10:22:02 ----A---- C:\Windows\system32\D3DX9_43.dll
2015-04-17 10:21:24 ----A---- C:\Windows\system32\nvspbridge64.dll
2015-04-17 10:21:20 ----A---- C:\Windows\SYSWOW64\nvspbridge.dll
2015-04-17 10:18:19 ----D---- C:\Windows\SYSWOW64\NV
2015-04-17 10:18:19 ----D---- C:\Windows\system32\NV
2015-04-17 10:13:38 ----A---- C:\Windows\system32\drivers\nvvad64v.sys
2015-04-17 10:13:36 ----A---- C:\Windows\SYSWOW64\nvaudcap32v.dll
2015-04-17 10:13:35 ----A---- C:\Windows\system32\nvdispgenco6435012.dll
2015-04-17 10:13:33 ----A---- C:\Windows\system32\nvdispco6435012.dll
2015-04-17 10:13:28 ----A---- C:\Windows\system32\drivers\nvpciflt.sys
2015-04-17 10:13:28 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2015-04-17 10:13:23 ----A---- C:\Windows\SYSWOW64\nvwgf2um.dll
2015-04-17 10:13:23 ----A---- C:\Windows\SYSWOW64\nvopencl.dll
2015-04-17 10:13:23 ----A---- C:\Windows\SYSWOW64\nvoglv32.dll
2015-04-17 10:13:23 ----A---- C:\Windows\SYSWOW64\nvoglshim32.dll
2015-04-17 10:13:23 ----A---- C:\Windows\SYSWOW64\NvIFR.dll
2015-04-17 10:13:23 ----A---- C:\Windows\SYSWOW64\NvFBC.dll
2015-04-17 10:13:23 ----A---- C:\Windows\SYSWOW64\nvd3dum.dll
2015-04-17 10:13:23 ----A---- C:\Windows\SYSWOW64\nvcuvid.dll
2015-04-17 10:13:23 ----A---- C:\Windows\SYSWOW64\nvcuda.dll
2015-04-17 10:13:23 ----A---- C:\Windows\system32\nvwgf2umx.dll
2015-04-17 10:13:23 ----A---- C:\Windows\system32\nvopencl.dll
2015-04-17 10:13:23 ----A---- C:\Windows\system32\nvoglv64.dll
2015-04-17 10:13:23 ----A---- C:\Windows\system32\nvoglshim64.dll
2015-04-17 10:13:23 ----A---- C:\Windows\system32\NvIFR64.dll
2015-04-17 10:13:23 ----A---- C:\Windows\system32\NvFBC64.dll
2015-04-17 10:13:23 ----A---- C:\Windows\system32\nvd3dumx.dll
2015-04-17 10:13:23 ----A---- C:\Windows\system32\nvcuvid.dll
2015-04-17 10:13:23 ----A---- C:\Windows\system32\nvcuda.dll
2015-04-17 10:13:22 ----A---- C:\Windows\SYSWOW64\nvcompiler.dll
2015-04-17 10:13:22 ----A---- C:\Windows\SYSWOW64\nvapi.dll
2015-04-17 10:13:22 ----A---- C:\Windows\system32\nvcompiler.dll
2015-04-17 10:07:30 ----D---- C:\NVIDIA
2015-04-17 10:04:35 ----D---- C:\ProgramData\SlimWare Utilities, Inc
2015-04-17 10:03:51 ----D---- C:\Program Files (x86)\SlimDrivers
2015-04-17 09:21:04 ----A---- C:\Windows\ETDUninst.dll
2015-04-16 11:05:53 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2015-04-16 11:05:53 ----A---- C:\Windows\SYSWOW64\ieui.dll
2015-04-16 11:05:53 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2015-04-16 11:05:53 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2015-04-16 11:05:53 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2015-04-16 11:05:53 ----A---- C:\Windows\system32\msfeeds.dll
2015-04-16 11:05:53 ----A---- C:\Windows\system32\dxtrans.dll
2015-04-16 11:05:53 ----A---- C:\Windows\system32\dxtmsft.dll
2015-04-16 11:05:52 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2015-04-16 11:05:52 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2015-04-16 11:05:52 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2015-04-16 11:05:52 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2015-04-16 11:05:52 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2015-04-16 11:05:52 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2015-04-16 11:05:52 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2015-04-16 11:05:52 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2015-04-16 11:05:52 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2015-04-16 11:05:52 ----A---- C:\Windows\system32\mshtmlmedia.dll
2015-04-16 11:05:52 ----A---- C:\Windows\system32\mshtmled.dll
2015-04-16 11:05:52 ----A---- C:\Windows\system32\mshtml.dll
2015-04-16 11:05:52 ----A---- C:\Windows\system32\jscript9diag.dll
2015-04-16 11:05:52 ----A---- C:\Windows\system32\jscript9.dll
2015-04-16 11:05:52 ----A---- C:\Windows\system32\ieUnatt.exe
2015-04-16 11:05:52 ----A---- C:\Windows\system32\ieui.dll
2015-04-16 11:05:52 ----A---- C:\Windows\system32\iesetup.dll
2015-04-16 11:05:52 ----A---- C:\Windows\system32\iernonce.dll
2015-04-16 11:05:52 ----A---- C:\Windows\system32\ieframe.dll
2015-04-16 11:05:52 ----A---- C:\Windows\system32\ieetwproxystub.dll
2015-04-16 11:05:52 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2015-04-16 11:05:52 ----A---- C:\Windows\system32\ieetwcollector.exe
2015-04-16 11:05:52 ----A---- C:\Windows\system32\ie4uinit.exe
2015-04-16 11:05:51 ----A---- C:\Windows\SYSWOW64\wininet.dll
2015-04-16 11:05:51 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2015-04-16 11:05:51 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2015-04-16 11:05:51 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2015-04-16 11:05:51 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2015-04-16 11:05:51 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2015-04-16 11:05:51 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2015-04-16 11:05:51 ----A---- C:\Windows\system32\wininet.dll
2015-04-16 11:05:51 ----A---- C:\Windows\system32\vbscript.dll
2015-04-16 11:05:51 ----A---- C:\Windows\system32\jsproxy.dll
2015-04-16 11:05:51 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-04-16 11:05:51 ----A---- C:\Windows\system32\iedkcs32.dll
2015-04-16 11:05:51 ----A---- C:\Windows\system32\ieapfltr.dll
2015-04-16 11:05:50 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2015-04-16 11:05:50 ----A---- C:\Windows\SYSWOW64\msrating.dll
2015-04-16 11:05:50 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2015-04-16 11:05:50 ----A---- C:\Windows\system32\urlmon.dll
2015-04-16 11:05:50 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2015-04-16 11:05:50 ----A---- C:\Windows\system32\msrating.dll
2015-04-16 11:05:50 ----A---- C:\Windows\system32\MshtmlDac.dll
2015-04-16 11:05:50 ----A---- C:\Windows\system32\iertutil.dll
2015-04-16 11:02:18 ----A---- C:\Windows\SYSWOW64\msxml3r.dll
2015-04-16 11:02:18 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2015-04-16 11:02:18 ----A---- C:\Windows\system32\msxml3r.dll
2015-04-16 11:02:18 ----A---- C:\Windows\system32\msxml3.dll
2015-04-16 11:02:05 ----A---- C:\Windows\SYSWOW64\clfsw32.dll
2015-04-16 11:02:05 ----A---- C:\Windows\system32\clfsw32.dll
2015-04-16 11:02:05 ----A---- C:\Windows\system32\clfs.sys
2015-04-16 11:00:35 ----A---- C:\Windows\system32\sspisrv.dll
2015-04-16 11:00:35 ----A---- C:\Windows\system32\sspicli.dll
2015-04-16 11:00:35 ----A---- C:\Windows\system32\secur32.dll
2015-04-16 11:00:35 ----A---- C:\Windows\system32\msobjs.dll
2015-04-16 11:00:35 ----A---- C:\Windows\system32\msaudite.dll
2015-04-16 11:00:35 ----A---- C:\Windows\system32\lsass.exe
2015-04-16 11:00:35 ----A---- C:\Windows\system32\lsasrv.dll
2015-04-16 11:00:35 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2015-04-16 11:00:35 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2015-04-16 11:00:35 ----A---- C:\Windows\system32\auditpol.exe
2015-04-16 11:00:35 ----A---- C:\Windows\system32\adtschema.dll
2015-04-16 11:00:32 ----A---- C:\Windows\SYSWOW64\msobjs.dll
2015-04-16 11:00:32 ----A---- C:\Windows\SYSWOW64\msaudite.dll
2015-04-16 11:00:32 ----A---- C:\Windows\SYSWOW64\auditpol.exe
2015-04-16 11:00:32 ----A---- C:\Windows\SYSWOW64\adtschema.dll
2015-04-16 11:00:31 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2015-04-16 11:00:31 ----A---- C:\Windows\SYSWOW64\srclient.dll
2015-04-16 11:00:31 ----A---- C:\Windows\SYSWOW64\secur32.dll
2015-04-16 11:00:31 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2015-04-16 11:00:31 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2015-04-16 11:00:31 ----A---- C:\Windows\system32\wow64win.dll
2015-04-16 11:00:31 ----A---- C:\Windows\system32\wow64cpu.dll
2015-04-16 11:00:31 ----A---- C:\Windows\system32\wow64.dll
2015-04-16 11:00:31 ----A---- C:\Windows\system32\winsrv.dll
2015-04-16 11:00:31 ----A---- C:\Windows\system32\wdigest.dll
2015-04-16 11:00:31 ----A---- C:\Windows\system32\TSpkg.dll
2015-04-16 11:00:31 ----A---- C:\Windows\system32\srcore.dll
2015-04-16 11:00:31 ----A---- C:\Windows\system32\srclient.dll
2015-04-16 11:00:31 ----A---- C:\Windows\system32\smss.exe
2015-04-16 11:00:31 ----A---- C:\Windows\system32\schannel.dll
2015-04-16 11:00:31 ----A---- C:\Windows\system32\rstrui.exe
2015-04-16 11:00:31 ----A---- C:\Windows\system32\ntvdm64.dll
2015-04-16 11:00:31 ----A---- C:\Windows\system32\ntoskrnl.exe
2015-04-16 11:00:31 ----A---- C:\Windows\system32\ntdll.dll
2015-04-16 11:00:31 ----A---- C:\Windows\system32\msv1_0.dll
2015-04-16 11:00:31 ----A---- C:\Windows\system32\KernelBase.dll
2015-04-16 11:00:31 ----A---- C:\Windows\system32\kernel32.dll
2015-04-16 11:00:31 ----A---- C:\Windows\system32\kerberos.dll
2015-04-16 11:00:31 ----A---- C:\Windows\system32\csrsrv.dll
2015-04-16 11:00:31 ----A---- C:\Windows\system32\credssp.dll
2015-04-16 11:00:31 ----A---- C:\Windows\system32\conhost.exe
2015-04-16 11:00:31 ----A---- C:\Windows\system32\apisetschema.dll
2015-04-16 11:00:30 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2015-04-16 11:00:30 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2015-04-16 11:00:30 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2015-04-16 11:00:30 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2015-04-16 11:00:30 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2015-04-16 11:00:30 ----A---- C:\Windows\SYSWOW64\credssp.dll
2015-04-16 11:00:30 ----A---- C:\Windows\system32\ncrypt.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2015-04-16 11:00:29 ----A---- C:\Windows\SYSWOW64\wow32.dll
2015-04-16 11:00:29 ----A---- C:\Windows\SYSWOW64\user.exe
2015-04-16 11:00:29 ----A---- C:\Windows\SYSWOW64\schannel.dll
2015-04-16 11:00:29 ----A---- C:\Windows\SYSWOW64\setup16.exe
2015-04-16 11:00:29 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2015-04-16 11:00:29 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2015-04-16 11:00:29 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2015-04-16 11:00:29 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2015-04-16 11:00:29 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2015-04-16 11:00:29 ----A---- C:\Windows\SYSWOW64\instnm.exe
2015-04-16 11:00:28 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2015-04-16 11:00:28 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2015-04-16 11:00:28 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2015-04-16 11:00:28 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2015-04-16 11:00:28 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2015-04-16 11:00:28 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2015-04-16 11:00:28 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2015-04-16 11:00:28 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-04-16 11:00:28 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2015-04-16 11:00:28 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2015-04-16 11:00:28 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2015-04-16 11:00:28 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2015-04-16 11:00:28 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2015-04-16 11:00:28 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2015-04-16 11:00:28 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2015-04-16 11:00:28 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2015-04-16 11:00:28 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2015-04-16 11:00:28 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2015-04-16 11:00:28 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2015-04-16 11:00:28 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2015-04-16 11:00:28 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2015-04-16 11:00:28 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2015-04-16 11:00:28 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2015-04-16 11:00:28 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2015-04-16 11:00:28 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2015-04-16 11:00:28 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2015-04-16 10:58:55 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2015-04-16 10:58:55 ----A---- C:\Windows\system32\gdi32.dll
2015-04-16 10:58:45 ----A---- C:\Windows\system32\drivers\http.sys
2015-04-16 10:58:28 ----A---- C:\Windows\system32\wups2.dll
2015-04-16 10:58:27 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2015-04-16 10:58:27 ----A---- C:\Windows\SYSWOW64\wups.dll
2015-04-16 10:58:27 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2015-04-16 10:58:27 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2015-04-16 10:58:27 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2015-04-16 10:58:27 ----A---- C:\Windows\system32\wuwebv.dll
2015-04-16 10:58:27 ----A---- C:\Windows\system32\wups.dll
2015-04-16 10:58:27 ----A---- C:\Windows\system32\wudriver.dll
2015-04-16 10:58:27 ----A---- C:\Windows\system32\wucltux.dll
2015-04-16 10:58:27 ----A---- C:\Windows\system32\wuaueng.dll
2015-04-16 10:58:27 ----A---- C:\Windows\system32\wuauclt.exe
2015-04-16 10:58:27 ----A---- C:\Windows\system32\wuapp.exe
2015-04-16 10:58:27 ----A---- C:\Windows\system32\wuapi.dll
2015-04-16 10:58:27 ----A---- C:\Windows\system32\wu.upgrade.ps.dll
2015-04-16 10:58:27 ----A---- C:\Windows\system32\WinSetupUI.dll
2015-04-05 07:57:17 ----SD---- C:\Windows\SYSWOW64\GWX
2015-04-05 07:57:17 ----SD---- C:\Windows\system32\GWX
2015-03-21 17:44:20 ----D---- C:\Program Files (x86)\Mozilla Firefox
2015-03-11 01:02:25 ----A---- C:\Windows\SYSWOW64\atmfd.dll
2015-03-11 01:02:25 ----A---- C:\Windows\system32\lpk.dll
2015-03-11 01:02:25 ----A---- C:\Windows\system32\atmlib.dll
2015-03-11 01:02:25 ----A---- C:\Windows\system32\atmfd.dll
2015-03-11 01:02:24 ----A---- C:\Windows\SYSWOW64\lpk.dll
2015-03-11 01:02:24 ----A---- C:\Windows\SYSWOW64\fontsub.dll
2015-03-11 01:02:24 ----A---- C:\Windows\SYSWOW64\dciman32.dll
2015-03-11 01:02:24 ----A---- C:\Windows\SYSWOW64\atmlib.dll
2015-03-11 01:02:24 ----A---- C:\Windows\system32\fontsub.dll
2015-03-11 01:02:24 ----A---- C:\Windows\system32\dciman32.dll
2015-03-11 01:02:07 ----A---- C:\Windows\system32\blackbox.dll
2015-03-11 01:02:06 ----A---- C:\Windows\SYSWOW64\blackbox.dll
2015-03-11 01:02:06 ----A---- C:\Windows\system32\drmv2clt.dll
2015-03-11 01:02:05 ----A---- C:\Windows\SYSWOW64\drmv2clt.dll
2015-03-11 01:02:04 ----A---- C:\Windows\system32\wmp.dll
2015-03-11 01:02:03 ----A---- C:\Windows\system32\wmdrmsdk.dll
2015-03-11 01:02:02 ----A---- C:\Windows\SYSWOW64\wmdrmsdk.dll
2015-03-11 01:02:01 ----A---- C:\Windows\SYSWOW64\mf.dll
2015-03-11 01:02:00 ----A---- C:\Windows\SYSWOW64\wmp.dll
2015-03-11 01:01:58 ----A---- C:\Windows\system32\drmmgrtn.dll
2015-03-11 01:01:58 ----A---- C:\Windows\system32\crypt32.dll
2015-03-11 01:01:57 ----A---- C:\Windows\SYSWOW64\drmmgrtn.dll
2015-03-11 01:01:57 ----A---- C:\Windows\SYSWOW64\crypt32.dll
2015-03-11 01:01:57 ----A---- C:\Windows\system32\drivers\PEAuth.sys
2015-03-11 01:01:56 ----A---- C:\Windows\system32\quartz.dll
2015-03-11 01:01:56 ----A---- C:\Windows\system32\evr.dll
2015-03-11 01:01:54 ----A---- C:\Windows\system32\cryptui.dll
2015-03-11 01:01:53 ----A---- C:\Windows\SYSWOW64\evr.dll
2015-03-11 01:01:53 ----A---- C:\Windows\system32\mfplat.dll
2015-03-11 01:01:52 ----A---- C:\Windows\SYSWOW64\quartz.dll
2015-03-11 01:01:52 ----A---- C:\Windows\system32\winresume.exe
2015-03-11 01:01:51 ----A---- C:\Windows\SYSWOW64\cryptui.dll
2015-03-11 01:01:51 ----A---- C:\Windows\system32\pcasvc.dll
2015-03-11 01:01:50 ----A---- C:\Windows\SYSWOW64\mfplat.dll
2015-03-11 01:01:50 ----A---- C:\Windows\system32\drivers\mountmgr.sys
2015-03-11 01:01:49 ----A---- C:\Windows\SYSWOW64\cryptsp.dll
2015-03-11 01:01:49 ----A---- C:\Windows\system32\cryptsp.dll
2015-03-11 01:01:48 ----A---- C:\Windows\system32\msscp.dll
2015-03-11 01:01:48 ----A---- C:\Windows\system32\mf.dll
2015-03-11 01:01:46 ----A---- C:\Windows\system32\winload.exe
2015-03-11 01:01:46 ----A---- C:\Windows\system32\msnetobj.dll
2015-03-11 01:01:45 ----A---- C:\Windows\SYSWOW64\wintrust.dll
2015-03-11 01:01:45 ----A---- C:\Windows\SYSWOW64\qdvd.dll
2015-03-11 01:01:45 ----A---- C:\Windows\SYSWOW64\msscp.dll
2015-03-11 01:01:45 ----A---- C:\Windows\system32\wintrust.dll
2015-03-11 01:01:45 ----A---- C:\Windows\system32\cryptnet.dll
2015-03-11 01:01:45 ----A---- C:\Windows\system32\ci.dll
2015-03-11 01:01:45 ----A---- C:\Windows\system32\audiosrv.dll
2015-03-11 01:01:45 ----A---- C:\Windows\system32\appidsvc.dll
2015-03-11 01:01:44 ----A---- C:\Windows\SYSWOW64\cryptnet.dll
2015-03-11 01:01:44 ----A---- C:\Windows\system32\drivers\appid.sys
2015-03-11 01:01:43 ----A---- C:\Windows\system32\audiodg.exe
2015-03-11 01:01:42 ----A---- C:\Windows\SYSWOW64\msnetobj.dll
2015-03-11 01:01:42 ----A---- C:\Windows\SYSWOW64\cryptsvc.dll
2015-03-11 01:01:42 ----A---- C:\Windows\system32\AudioSes.dll
2015-03-11 01:01:42 ----A---- C:\Windows\system32\AUDIOKSE.dll
2015-03-11 01:01:41 ----A---- C:\Windows\system32\qdvd.dll
2015-03-11 01:01:41 ----A---- C:\Windows\system32\cryptsvc.dll
2015-03-11 01:01:39 ----A---- C:\Windows\SYSWOW64\AudioEng.dll
2015-03-11 01:01:39 ----A---- C:\Windows\system32\rrinstaller.exe
2015-03-11 01:01:39 ----A---- C:\Windows\system32\pcadm.dll
2015-03-11 01:01:39 ----A---- C:\Windows\system32\AudioEng.dll
2015-03-11 01:01:37 ----A---- C:\Windows\SYSWOW64\rrinstaller.exe
2015-03-11 01:01:37 ----A---- C:\Windows\SYSWOW64\AUDIOKSE.dll
2015-03-11 01:01:37 ----A---- C:\Windows\system32\appidpolicyconverter.exe
2015-03-11 01:01:36 ----A---- C:\Windows\SYSWOW64\mfps.dll
2015-03-11 01:01:36 ----A---- C:\Windows\SYSWOW64\AudioSes.dll
2015-03-11 01:01:36 ----A---- C:\Windows\SYSWOW64\appidapi.dll
2015-03-11 01:01:36 ----A---- C:\Windows\system32\pcawrk.exe
2015-03-11 01:01:36 ----A---- C:\Windows\system32\pcalua.exe
2015-03-11 01:01:36 ----A---- C:\Windows\system32\msmmsp.dll
2015-03-11 01:01:36 ----A---- C:\Windows\system32\mfps.dll
2015-03-11 01:01:36 ----A---- C:\Windows\system32\mfpmp.exe
2015-03-11 01:01:36 ----A---- C:\Windows\system32\appidapi.dll
2015-03-11 01:01:35 ----A---- C:\Windows\SYSWOW64\mfpmp.exe
2015-03-11 01:01:35 ----A---- C:\Windows\system32\setbcdlocale.dll
2015-03-11 01:01:35 ----A---- C:\Windows\system32\EncDump.dll
2015-03-11 01:01:35 ----A---- C:\Windows\system32\appidcertstorecheck.exe
2015-03-11 01:01:32 ----A---- C:\Windows\system32\spwmp.dll
2015-03-11 01:01:31 ----A---- C:\Windows\SYSWOW64\spwmp.dll
2015-03-11 01:01:31 ----A---- C:\Windows\SYSWOW64\dxmasf.dll
2015-03-11 01:01:31 ----A---- C:\Windows\system32\dxmasf.dll
2015-03-11 01:01:30 ----A---- C:\Windows\system32\pcaevts.dll
2015-03-11 01:01:29 ----A---- C:\Windows\SYSWOW64\wmploc.DLL
2015-03-11 01:01:29 ----A---- C:\Windows\system32\wmploc.DLL
2015-03-11 01:01:27 ----A---- C:\Windows\SYSWOW64\mferror.dll
2015-03-11 01:01:26 ----A---- C:\Windows\system32\mferror.dll
2015-03-11 01:01:08 ----A---- C:\Windows\system32\rdpudd.dll
2015-03-11 01:01:08 ----A---- C:\Windows\system32\RdpGroupPolicyExtension.dll
2015-03-11 01:01:08 ----A---- C:\Windows\system32\rdpcorets.dll
2015-03-11 01:00:38 ----A---- C:\Windows\system32\ubpm.dll
2015-03-11 01:00:37 ----A---- C:\Windows\SYSWOW64\ubpm.dll
2015-03-11 01:00:37 ----A---- C:\Windows\SYSWOW64\msctf.dll
2015-03-11 01:00:37 ----A---- C:\Windows\system32\msctf.dll
2015-03-11 01:00:32 ----A---- C:\Windows\system32\drivers\cng.sys
2015-03-11 01:00:16 ----A---- C:\Windows\system32\shell32.dll
2015-03-11 01:00:14 ----A---- C:\Windows\SYSWOW64\shell32.dll
2015-03-11 01:00:11 ----A---- C:\Windows\system32\WindowsCodecs.dll
2015-03-11 01:00:10 ----A---- C:\Windows\SYSWOW64\WindowsCodecs.dll
2015-03-11 01:00:07 ----A---- C:\Windows\system32\win32k.sys
2015-03-11 00:57:55 ----A---- C:\Windows\system32\WMPhoto.dll
2015-03-11 00:57:54 ----A---- C:\Windows\SYSWOW64\WMPhoto.dll
2015-03-10 00:27:47 ----RD---- C:\Program Files (x86)\Skype
2015-03-07 10:14:28 ----D---- C:\Users\Ľudka\AppData\Roaming\K9AMW
2015-03-07 10:13:25 ----A---- C:\Windows\system32\roboot64.exe
2015-02-20 21:13:22 ----A---- C:\Windows\system32\SmartDefragBootTime.exe
2015-02-20 21:13:17 ----A---- C:\Windows\system32\IObitSmartDefragExtension.dll
2015-02-19 22:35:29 ----A---- C:\Windows\wininit.ini
2015-02-17 17:04:46 ----A---- C:\Windows\SYSWOW64\FM20.DLL
2015-02-17 08:27:43 ----A---- C:\Windows\SYSWOW64\wdi.dll
2015-02-17 08:27:43 ----A---- C:\Windows\system32\wdi.dll
2015-02-17 08:27:43 ----A---- C:\Windows\system32\powertracker.dll
2015-02-17 08:27:43 ----A---- C:\Windows\system32\perftrack.dll
2015-02-11 14:13:38 ----A---- C:\Windows\system32\aitstatic.exe
2015-02-11 14:10:40 ----A---- C:\Windows\SYSWOW64\oleaut32.dll
2015-02-11 14:10:40 ----A---- C:\Windows\system32\oleaut32.dll
2015-02-11 14:10:16 ----A---- C:\Windows\system32\scesrv.dll
2015-02-11 14:10:15 ----A---- C:\Windows\SYSWOW64\scesrv.dll
2015-02-07 11:22:58 ----D---- C:\ProgramData\PopCap Games
2015-02-04 12:23:14 ----A---- C:\Windows\SYSWOW64\msvcr120_clr0400.dll
2015-02-04 12:13:22 ----A---- C:\Windows\system32\msvcr120_clr0400.dll

======List of files/folders modified in the last 3 months======

2015-04-24 20:17:00 ----RD---- C:\Program Files
2015-04-24 20:16:36 ----D---- C:\Windows\Temp
2015-04-24 20:15:29 ----D---- C:\Windows\System32
2015-04-24 20:15:29 ----D---- C:\Windows\inf
2015-04-24 20:15:29 ----A---- C:\Windows\system32\PerfStringBackup.INI
2015-04-24 20:09:51 ----D---- C:\Windows\system32\config
2015-04-24 20:09:05 ----A---- C:\Windows\SYSWOW64\log.txt
2015-04-24 16:31:57 ----D---- C:\Users\Ľudka\AppData\Roaming\Intelli-studio
2015-04-24 16:28:13 ----D---- C:\Windows
2015-04-23 08:31:02 ----D---- C:\Windows\system32\drivers
2015-04-23 08:29:44 ----D---- C:\Windows\system32\Tasks
2015-04-23 08:29:40 ----SHD---- C:\Windows\Installer
2015-04-23 08:29:39 ----D---- C:\Windows\Tasks
2015-04-23 08:29:29 ----SHD---- C:\System Volume Information
2015-04-23 08:23:08 ----D---- C:\ProgramData\Atheros
2015-04-23 08:23:03 ----D---- C:\Windows\system32\DriverStore
2015-04-23 08:22:56 ----RD---- C:\Program Files (x86)
2015-04-23 08:09:41 ----D---- C:\Windows\system32\NDF
2015-04-21 22:19:39 ----D---- C:\Windows\AppCompat
2015-04-20 22:49:11 ----D---- C:\Windows\winsxs
2015-04-19 23:54:54 ----SD---- C:\Windows\system32\CompatTel
2015-04-19 23:54:54 ----D---- C:\Windows\system32\appraiser
2015-04-19 23:54:54 ----D---- C:\Windows\AppPatch
2015-04-19 23:54:53 ----D---- C:\Windows\system32\MRT
2015-04-19 23:50:12 ----D---- C:\Windows\debug
2015-04-19 23:50:08 ----A---- C:\Windows\system32\MRT.exe
2015-04-19 21:29:27 ----D---- C:\ProgramData\Microsoft Help
2015-04-17 15:16:15 ----D---- C:\Windows\SysWOW64
2015-04-17 15:16:12 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2015-04-17 15:03:56 ----D---- C:\Windows\system32\catroot2
2015-04-17 14:59:31 ----D---- C:\Windows\system32\wfp
2015-04-17 14:59:29 ----D---- C:\Windows\system32\wbem
2015-04-17 14:58:39 ----D---- C:\Windows\SYSWOW64\RTCOM
2015-04-17 14:58:34 ----D---- C:\Windows\security
2015-04-17 14:58:31 ----HD---- C:\Program Files (x86)\Temp
2015-04-17 14:58:31 ----D---- C:\Program Files\Realtek
2015-04-17 14:58:27 ----D---- C:\Windows\registration
2015-04-17 14:57:44 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2015-04-17 14:37:07 ----D---- C:\Windows\system32\catroot
2015-04-17 14:15:38 ----D---- C:\Windows\system32\CodeIntegrity
2015-04-17 14:14:05 ----D---- C:\Program Files (x86)\Realtek
2015-04-17 11:51:58 ----D---- C:\Windows\Logs
2015-04-17 10:19:31 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2015-04-17 10:18:14 ----D---- C:\Program Files\NVIDIA Corporation
2015-04-17 10:18:12 ----D---- C:\ProgramData\NVIDIA
2015-04-17 10:04:35 ----HD---- C:\ProgramData
2015-04-17 09:50:21 ----D---- C:\Users\Ľudka\AppData\Roaming\Audacity
2015-04-17 09:31:43 ----D---- C:\Program Files (x86)\Common Files
2015-04-17 09:26:21 ----D---- C:\Windows\Prefetch
2015-04-17 09:20:59 ----D---- C:\Program Files (x86)\WildTangent Games
2015-04-17 09:13:12 ----SD---- C:\ProgramData\Microsoft
2015-04-17 09:13:12 ----D---- C:\Program Files (x86)\Microsoft
2015-04-17 08:20:29 ----D---- C:\Windows\Microsoft.NET
2015-04-17 08:19:50 ----RSD---- C:\Windows\assembly
2015-04-17 07:35:34 ----D---- C:\Windows\SYSWOW64\en-US
2015-04-17 07:35:34 ----D---- C:\Program Files\Internet Explorer
2015-04-17 07:35:32 ----D---- C:\Windows\system32\en-US
2015-04-17 07:35:30 ----D---- C:\Program Files (x86)\Internet Explorer
2015-04-17 07:35:16 ----D---- C:\Windows\SYSWOW64\sk-SK
2015-04-17 07:35:15 ----D---- C:\Windows\system32\sk-SK
2015-04-17 07:35:15 ----D---- C:\Windows\PolicyDefinitions
2015-04-16 20:11:01 ----D---- C:\Users\Ľudka\AppData\Roaming\ProductData
2015-04-16 20:11:01 ----D---- C:\Users\Ľudka\AppData\Roaming\IObit
2015-04-16 20:11:00 ----D---- C:\ProgramData\ProductData
2015-04-16 20:06:35 ----D---- C:\Windows\system32\LogFiles
2015-04-16 11:04:11 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2015-04-09 02:58:18 ----A---- C:\Windows\SYSWOW64\OpenCL.dll
2015-04-09 02:58:18 ----A---- C:\Windows\SYSWOW64\nvumdshim.dll
2015-04-09 02:58:18 ----A---- C:\Windows\SYSWOW64\nvspcap.dll
2015-04-09 02:58:18 ----A---- C:\Windows\SYSWOW64\nvinit.dll
2015-04-09 02:58:18 ----A---- C:\Windows\system32\OpenCL.dll
2015-04-09 02:58:18 ----A---- C:\Windows\system32\nvumdshimx.dll
2015-04-09 02:58:18 ----A---- C:\Windows\system32\nvspcap64.dll
2015-04-09 02:58:18 ----A---- C:\Windows\system32\nvinitx.dll
2015-04-09 02:58:18 ----A---- C:\Windows\system32\nvaudcap64v.dll
2015-04-09 02:58:18 ----A---- C:\Windows\system32\nvapi64.dll
2015-04-08 23:30:18 ----A---- C:\Windows\system32\nvsvc64.dll
2015-04-08 23:30:18 ----A---- C:\Windows\system32\nvcpl.dll
2015-04-08 23:30:14 ----A---- C:\Windows\system32\nvvsvc.exe
2015-04-08 23:30:14 ----A---- C:\Windows\system32\nvsvcr.dll
2015-04-08 23:30:14 ----A---- C:\Windows\system32\nvshext.dll
2015-04-08 23:30:14 ----A---- C:\Windows\system32\nv3dappshextr.dll
2015-04-08 23:30:14 ----A---- C:\Windows\system32\nv3dappshext.dll
2015-04-08 23:30:13 ----A---- C:\Windows\system32\nvmctray.dll
2015-04-03 13:12:45 ----D---- C:\Windows\SoftwareDistribution
2015-03-24 14:22:18 ----D---- C:\Windows\system32\wdi
2015-03-23 23:37:15 ----D---- C:\Windows\rescache
2015-03-21 03:24:18 ----D---- C:\Users\Ľudka\AppData\Roaming\vlc
2015-03-11 12:47:29 ----D---- C:\Windows\SYSWOW64\Dism
2015-03-11 12:47:29 ----D---- C:\Program Files\Windows Media Player
2015-03-11 12:47:29 ----D---- C:\Program Files (x86)\Windows Media Player
2015-03-11 12:47:28 ----D---- C:\Windows\system32\Dism
2015-03-11 12:47:26 ----D---- C:\Windows\system32\Boot
2015-03-11 12:28:52 ----D---- C:\Users\Ľudka\AppData\Roaming\Skype
2015-03-10 00:27:54 ----D---- C:\ProgramData\Skype
2015-03-07 10:19:43 ----D---- C:\Users\Ľudka\AppData\Roaming\Opera Software
2015-03-03 15:17:35 ----N---- C:\Windows\system32\MpSigStub.exe
2015-02-20 21:13:07 ----D---- C:\ProgramData\IObit
2015-02-17 15:38:24 ----D---- C:\Windows\tracing
2015-02-13 00:31:29 ----D---- C:\Program Files\Microsoft Security Client
2015-02-13 00:31:29 ----D---- C:\Program Files (x86)\Microsoft Security Client

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 avc3;avc3; C:\Windows\system32\DRIVERS\avc3.sys [2013-04-17 718840]
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\drivers\iaStor.sys [2010-04-13 540696]
R0 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2014-11-15 274696]
R0 nvpciflt;nvpciflt; C:\Windows\system32\DRIVERS\nvpciflt.sys [2015-04-09 31376]
R0 PxHlpa64;PxHlpa64; C:\Windows\System32\Drivers\PxHlpa64.sys [2011-11-03 56208]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R0 trufos;trufos; C:\Windows\system32\DRIVERS\trufos.sys [2013-05-28 382536]
R1 gzflt;gzflt; C:\Windows\system32\DRIVERS\gzflt.sys [2013-04-22 148696]
R1 HWiNFO32;HWiNFO32/64 Kernel Driver; \??\C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS [2015-01-21 26528]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2014-11-15 124560]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athrx.sys [2010-05-11 2229608]
R3 HECIx64;Intel(R) Management Engine Interface; C:\Windows\system32\drivers\HECIx64.sys [2009-09-17 56344]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2000-01-01 12312928]
R3 Impcd;Impcd; C:\Windows\system32\DRIVERS\Impcd.sys [2010-02-27 158976]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2000-01-01 3707864]
R3 IntcDAud;Intel(R) Zvuk pre obrazovky; C:\Windows\system32\DRIVERS\IntcDAud.sys [2000-01-01 317440]
R3 k57nd60a;Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\k57nd60a.sys [2011-05-09 425000]
R3 NTIDrvr;NTIDrvr; \??\C:\Windows\system32\drivers\NTIDrvr.sys [2011-09-20 18432]
R3 NvStreamKms;NvStreamKms; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2015-04-09 19600]
R3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\Windows\system32\drivers\nvvad64v.sys [2015-04-09 38032]
R3 UBHelper;UBHelper; \??\C:\Windows\system32\drivers\UBHelper.sys [2011-09-20 17408]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S1 bdfwfpf;bdfwfpf; C:\Windows\system32\drivers\bdfwfpf.sys []
S3 avckf;avckf; C:\Windows\system32\DRIVERS\avckf.sys [2013-04-17 593144]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2014-09-23 19456]
S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader; C:\Windows\System32\Drivers\RtsUStor.sys [2010-09-22 243712]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2014-09-23 57856]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2014-09-23 30208]
S3 usbscan;USB Scanner Driver; C:\Windows\system32\drivers\usbscan.sys [2013-07-03 42496]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2014-05-08 65432]
R2 DsiWMIService;Dritek WMI Service; C:\Program Files (x86)\Launch Manager\dsiwmis.exe [2010-08-10 321104]
R2 ePowerSvc;Acer ePower Service; C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe [2011-01-06 867712]
R2 GfExperienceService;NVIDIA GeForce Experience Service; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [2015-04-09 1152144]
R2 GREGService;GREGService; C:\Program Files (x86)\Acer\Registration\GREGsvc.exe [2011-05-30 36456]
R2 gzserv;Bitdefender Antivirus Free Edition; C:\Program Files\Bitdefender\Antivirus Free Edition\gzserv.exe [2013-10-23 69368]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2010-04-13 13336]
R2 Live Updater Service;Live Updater Service; C:\Program Files\Acer\Acer Updater\UpdaterService.exe [2011-04-22 244624]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2010-03-18 268824]
R2 MsMpSvc;Microsoft Antimalware Service; c:\Program Files\Microsoft Security Client\MsMpEng.exe [2015-01-30 23784]
R2 NTI IScheduleSvc;NTI IScheduleSvc; C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\IScheduleSvc.exe [2011-06-17 255744]
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2015-04-09 1878672]
R2 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [2015-04-09 22995600]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2015-04-08 936264]
R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2000-01-01 1914656]
R2 UNS;Intel(R) Management & Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2010-03-18 2320920]
R3 NisSrv;@c:\Program Files\Microsoft Security Client\MpAsDesc.dll,-243; c:\Program Files\Microsoft Security Client\NisSrv.exe [2015-01-30 366512]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2014-04-12 103608]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2014-04-11 124088]
S2 LiveUpdateSvc;LiveUpdate; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe []
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2015-01-02 315488]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-04-17 268464]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2011-11-25 655624]
S3 GamesAppIntegrationService;GamesAppIntegrationService; C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe [2015-04-17 373312]
S3 GamesAppService;GamesAppService; C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe [2015-03-02 265808]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2015-04-16 114688]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 SwitchBoard;Adobe SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2012-09-13 1255736]
S3 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2011-03-29 2292096]
S4 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2014-04-11 50864]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 wlcrasvc;Windows Live Mesh remote connections service; C:\Program Files\Windows Live\Mesh\wlcrasvc.exe [2010-09-23 57184]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119677
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Spomalený notebook, log z RSIT

#2 Příspěvek od Rudy »

Zdravím!
Spusťte tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

gromo
Návštěvník
Návštěvník
Příspěvky: 54
Registrován: 28 bře 2010 16:45

Re: Spomalený notebook, log z RSIT

#3 Příspěvek od gromo »

Log:

# AdwCleaner v4.202 - Log vytvorený 24/04/2015 at 21:14:10
# Aktualizované 23/04/2015 by Xplode
# Databáza : 2015-04-23.1 [Server]
# Operačný systém : Windows 7 Home Premium Service Pack 1 (x64)
# Uživateľské meno : Ľudka - POCITAC
# Spustené z : C:\Users\Ľudka\Desktop\adwcleaner_4.202.exe
# Nastavenia : Čistenie

***** [ Služby ] *****


***** [ Súbory / Priečinky ] *****

Priečinok Zmazané : C:\Users\Ľudka\AppData\Roaming\RHEng
Priečinok Zmazané : C:\Users\Ľudka\AppData\Roaming\Mozilla\Firefox\Profiles\bc1pfh3d.default\Extensions\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}
Súbor Zmazané : C:\Windows\System32\roboot64.exe
Súbor Zmazané : C:\Users\Ľudka\AppData\Roaming\Mozilla\Firefox\Profiles\bc1pfh3d.default\searchplugins\yahoo_ff.xml
Súbor Zmazané : C:\Users\Ľudka\AppData\Roaming\Mozilla\Firefox\Profiles\bc1pfh3d.default\user.js

***** [ Naplánované úlohy ] *****


***** [ Zástupcovia ] *****


***** [ Registre ] *****

Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\CLSID\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}
Kľúč registra Zmazané : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}
Kľúč registra Zmazané : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{34A0D84B-CDDC-4EC4-AFDD-4F1DDE1D14E5}
Kľúč registra Zmazané : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}
Kľúč registra Zmazané : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6}
Kľúč registra Zmazané : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{34A0D84B-CDDC-4EC4-AFDD-4F1DDE1D14E5}
Kľúč registra Zmazané : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}
Kľúč registra Zmazané : HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}
Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Classes\CLSID\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}
Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}
Kľúč registra Zmazané : HKCU\Software\Conduit
Kľúč registra Zmazané : HKCU\Software\Local AppWizard-Generated Applications
Kľúč registra Zmazané : HKLM\SOFTWARE\Conduit
Kľúč registra Zmazané : HKU\.DEFAULT\Software\Local AppWizard-Generated Applications
Kľúč registra Zmazané : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{EE171732-BEB4-4576-887D-CB62727F01CA}

***** [ Webové prehliadače ] *****

-\\ Internet Explorer v11.0.9600.17728


-\\ Mozilla Firefox v37.0.1 (x86 sk)

[bc1pfh3d.default\prefs.js] - Riadok Zmazané : user_pref("extensions.xpiState", "{\"app-profile\":{\"bingsearch.full@microsoft.com\":{\"d\":\"C:\\\\Users\\\\Ľudka\\\\AppData\\\\Roaming\\\\Mozilla\\\\Firefox\\\\Profiles\\\\bc1pfh3d.default\\\\exten[...]
[bc1pfh3d.default\prefs.js] - Riadok Zmazané : user_pref("smartbar.machineId", "O1QPG1JRDIOSETWXI6FWZFMXD2NSKFSTWIVWY0O5WESDTU/A50VKTGMP+B2KXW42JOOTR5CKS2OQEAKCJDRBLA");
[bc1pfh3d.default\prefs.js] - Riadok Zmazané : user_pref("startpage.ntsearch_url", "hxxps://search.yahoo.com/search?fr=spigot-nt-ff&ei=utf-8&ilc=12&type=198484&p={searchTerms}");

*************************

AdwCleaner[R0].txt - [3558 bajtov] - [24/04/2015 21:11:36]
AdwCleaner[S0].txt - [3360 bajtov] - [24/04/2015 21:14:10]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [3420 bajtov] ##########

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119677
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Spomalený notebook, log z RSIT

#4 Příspěvek od Rudy »

Dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

gromo
Návštěvník
Návštěvník
Příspěvky: 54
Registrován: 28 bře 2010 16:45

Re: Spomalený notebook, log z RSIT

#5 Příspěvek od gromo »

Nový log:

Logfile of random's system information tool 1.10 (written by random/random)
Run by Ľudka at 2015-04-24 21:50:54
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 465 GB (66%) free of 700 GB
Total RAM: 5815 MB (75% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 21:51:13, on 24. 4. 2015
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17728)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files\trend micro\Ľudka.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://acer.msn.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.sk/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-21-587640768-2695264913-3364607863-1002\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-587640768-2695264913-3364607863-1002\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'UpdatusUser')
O4 - HKUS\S-1-5-18\..\RunOnce: [IsMyWinLockerReboot] msiexec.exe /qn /x{voidguid} (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [IsMyWinLockerReboot] msiexec.exe /qn /x{voidguid} (User 'Default user')
O8 - Extra context menu item: E&xportovať do programu Microsoft Excel - res://C:\PROGRA~2\MICROS~4\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Free YouTube Download - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\freeytvdownloader.htm
O8 - Extra context menu item: Free YouTube to MP3 Converter - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\freeytmp3downloader.htm
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~4\Office12\REFIEBAR.DLL
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O20 - AppInit_DLLs: C:\Windows\SysWOW64\nvinit.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Dritek WMI Service (DsiWMIService) - Dritek System Inc. - C:\Program Files (x86)\Launch Manager\dsiwmis.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: Acer ePower Service (ePowerSvc) - Acer Incorporated - C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: GamesAppIntegrationService - WildTangent - C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe
O23 - Service: GamesAppService - WildTangent, Inc. - C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
O23 - Service: GREGService - Acer Incorporated - C:\Program Files (x86)\Acer\Registration\GREGsvc.exe
O23 - Service: Bitdefender Antivirus Free Edition (gzserv) - Bitdefender - C:\Program Files\Bitdefender\Antivirus Free Edition\gzserv.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Live Updater Service - Acer Incorporated - C:\Program Files\Acer\Acer Updater\UpdaterService.exe
O23 - Service: LiveUpdate (LiveUpdateSvc) - Unknown owner - C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: NTI IScheduleSvc - NewTech Infosystems, Inc. - C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\IScheduleSvc.exe
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Adobe SwitchBoard (SwitchBoard) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management & Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 9778 bytes

======Listing Processes======



\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
winlogon.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
"C:\Windows\system32\nvvsvc.exe"
C:\Windows\system32\svchost.exe -k RPCSS
"c:\Program Files\Microsoft Security Client\MsMpEng.exe"
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
"C:\Windows\system32\NOTEPAD.EXE" C:\AdwCleaner\AdwCleaner[S0].txt
"C:\Program Files (x86)\Launch Manager\dsiwmis.exe"
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe"
"C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe"
"C:\Program Files (x86)\Acer\Registration\GREGsvc.exe"
"C:\Program Files\Acer\Acer Updater\UpdaterService.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\IScheduleSvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe"
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe" bcb1727f-f636-4ca4-8a4a-1ae19e982ec3 1
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" serviceapp
C:\Windows\system32\svchost.exe -k imgsvc
\??\C:\Windows\system32\conhost.exe "-4457889-20706364721103305750-1184462491-2094413484-250917344-13752066531667790554
\??\C:\Windows\system32\conhost.exe "21328648991613952516972980071217205335-323281083-1105527620523568036-1116312954
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"c:\Program Files\Microsoft Security Client\NisSrv.exe"
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Program Files\Bitdefender\Antivirus Free Edition\gzserv.exe" /service

"C:\Users\Ľudka\Desktop\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe

=========Mozilla firefox=========

ProfilePath - C:\Users\Ľudka\AppData\Roaming\Mozilla\Firefox\Profiles\bc1pfh3d.default

prefs.js - "browser.startup.homepage" - "http://www.google.sk/"
prefs.js - "keyword.URL" - "https://search.yahoo.com/search?fr=gree ... =198484&p="

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 17.0.0.169 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_17_0_0_169.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3538.0513]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.0.0]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.3]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@WildTangent.com/GamesAppPresenceDetector,Version=1.0]
"Description"=WildTangent Games App V2 Presence Detector Plugin
"Path"=C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\6\NP_wtapp.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll


C:\Users\Ľudka\AppData\Roaming\Mozilla\Firefox\Profiles\bc1pfh3d.default\extensions\
bingsearch.full@microsoft.com

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{10921475-03CE-4E04-90CE-E2E7EF20C814}]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-29 529280]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-29 441216]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"MSC"=c:\Program Files\Microsoft Security Client\msseces.exe [2015-01-30 1332296]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeAAMUpdater-1.0]
C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2012-04-04 446392]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeCS6ServiceManager]
C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [2012-03-09 1073312]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HotKeysCmds]
C:\Windows\system32\hkcmd.exe [2000-01-01 394224]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IgfxTray]
C:\Windows\system32\igfxtray.exe [2000-01-01 168944]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvBackend]
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2015-04-09 2673296]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Persistence]
C:\Windows\system32\igfxpers.exe [2000-01-01 418800]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RTHDVCPL]
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2000-01-01 13662936]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ShadowPlay]
C:\Windows\system32\nvspcap64.dll [2015-04-09 1570672]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SwitchBoard]
C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\Windows\system32\nvinitx.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2000-01-01 390144]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"DisableTaskMgr"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
"NoRun"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 3 months======

2015-04-24 21:11:08 ----D---- C:\AdwCleaner
2015-04-24 20:17:00 ----D---- C:\rsit
2015-04-24 20:17:00 ----D---- C:\Program Files\trend micro
2015-04-23 08:29:39 ----SHD---- C:\Config.Msi
2015-04-23 08:22:56 ----D---- C:\Program Files (x86)\Atheros
2015-04-23 08:22:56 ----A---- C:\Windows\system32\drivers\athrx.sys
2015-04-23 08:22:56 ----A---- C:\Windows\system32\athrx.sys
2015-04-23 08:22:29 ----D---- C:\Users\Ľudka\AppData\Roaming\InstallShield
2015-04-17 19:16:21 ----N---- C:\bootsqm.dat
2015-04-17 15:52:26 ----D---- C:\Windows\pss
2015-04-17 15:16:27 ----A---- C:\Windows\system32\invagent.dll
2015-04-17 15:16:27 ----A---- C:\Windows\system32\generaltel.dll
2015-04-17 15:16:27 ----A---- C:\Windows\system32\devinv.dll
2015-04-17 15:16:27 ----A---- C:\Windows\system32\appraiser.dll
2015-04-17 15:16:27 ----A---- C:\Windows\system32\aeinv.dll
2015-04-17 15:16:27 ----A---- C:\Windows\system32\acmigration.dll
2015-04-17 15:16:26 ----A---- C:\Windows\system32\aepic.dll
2015-04-17 15:16:26 ----A---- C:\Windows\system32\aepdu.dll
2015-04-17 13:13:56 ----D---- C:\Program Files (x86)\ESET
2015-04-17 10:31:50 ----D---- C:\Program Files (x86)\TuneUp Utilities 2012
2015-04-17 10:22:05 ----A---- C:\Windows\SYSWOW64\d3dx11_43.dll
2015-04-17 10:22:05 ----A---- C:\Windows\system32\d3dx11_43.dll
2015-04-17 10:22:03 ----A---- C:\Windows\system32\d3dx10_43.dll
2015-04-17 10:22:02 ----A---- C:\Windows\SYSWOW64\D3DX9_43.dll
2015-04-17 10:22:02 ----A---- C:\Windows\system32\D3DX9_43.dll
2015-04-17 10:21:24 ----A---- C:\Windows\system32\nvspbridge64.dll
2015-04-17 10:21:20 ----A---- C:\Windows\SYSWOW64\nvspbridge.dll
2015-04-17 10:18:19 ----D---- C:\Windows\SYSWOW64\NV
2015-04-17 10:18:19 ----D---- C:\Windows\system32\NV
2015-04-17 10:13:38 ----A---- C:\Windows\system32\drivers\nvvad64v.sys
2015-04-17 10:13:36 ----A---- C:\Windows\SYSWOW64\nvaudcap32v.dll
2015-04-17 10:13:35 ----A---- C:\Windows\system32\nvdispgenco6435012.dll
2015-04-17 10:13:33 ----A---- C:\Windows\system32\nvdispco6435012.dll
2015-04-17 10:13:28 ----A---- C:\Windows\system32\drivers\nvpciflt.sys
2015-04-17 10:13:28 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2015-04-17 10:13:23 ----A---- C:\Windows\SYSWOW64\nvwgf2um.dll
2015-04-17 10:13:23 ----A---- C:\Windows\SYSWOW64\nvopencl.dll
2015-04-17 10:13:23 ----A---- C:\Windows\SYSWOW64\nvoglv32.dll
2015-04-17 10:13:23 ----A---- C:\Windows\SYSWOW64\nvoglshim32.dll
2015-04-17 10:13:23 ----A---- C:\Windows\SYSWOW64\NvIFR.dll
2015-04-17 10:13:23 ----A---- C:\Windows\SYSWOW64\NvFBC.dll
2015-04-17 10:13:23 ----A---- C:\Windows\SYSWOW64\nvd3dum.dll
2015-04-17 10:13:23 ----A---- C:\Windows\SYSWOW64\nvcuvid.dll
2015-04-17 10:13:23 ----A---- C:\Windows\SYSWOW64\nvcuda.dll
2015-04-17 10:13:23 ----A---- C:\Windows\system32\nvwgf2umx.dll
2015-04-17 10:13:23 ----A---- C:\Windows\system32\nvopencl.dll
2015-04-17 10:13:23 ----A---- C:\Windows\system32\nvoglv64.dll
2015-04-17 10:13:23 ----A---- C:\Windows\system32\nvoglshim64.dll
2015-04-17 10:13:23 ----A---- C:\Windows\system32\NvIFR64.dll
2015-04-17 10:13:23 ----A---- C:\Windows\system32\NvFBC64.dll
2015-04-17 10:13:23 ----A---- C:\Windows\system32\nvd3dumx.dll
2015-04-17 10:13:23 ----A---- C:\Windows\system32\nvcuvid.dll
2015-04-17 10:13:23 ----A---- C:\Windows\system32\nvcuda.dll
2015-04-17 10:13:22 ----A---- C:\Windows\SYSWOW64\nvcompiler.dll
2015-04-17 10:13:22 ----A---- C:\Windows\SYSWOW64\nvapi.dll
2015-04-17 10:13:22 ----A---- C:\Windows\system32\nvcompiler.dll
2015-04-17 10:07:30 ----D---- C:\NVIDIA
2015-04-17 10:04:35 ----D---- C:\ProgramData\SlimWare Utilities, Inc
2015-04-17 10:03:51 ----D---- C:\Program Files (x86)\SlimDrivers
2015-04-17 09:21:04 ----A---- C:\Windows\ETDUninst.dll
2015-04-16 11:05:53 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2015-04-16 11:05:53 ----A---- C:\Windows\SYSWOW64\ieui.dll
2015-04-16 11:05:53 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2015-04-16 11:05:53 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2015-04-16 11:05:53 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2015-04-16 11:05:53 ----A---- C:\Windows\system32\msfeeds.dll
2015-04-16 11:05:53 ----A---- C:\Windows\system32\dxtrans.dll
2015-04-16 11:05:53 ----A---- C:\Windows\system32\dxtmsft.dll
2015-04-16 11:05:52 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2015-04-16 11:05:52 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2015-04-16 11:05:52 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2015-04-16 11:05:52 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2015-04-16 11:05:52 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2015-04-16 11:05:52 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2015-04-16 11:05:52 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2015-04-16 11:05:52 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2015-04-16 11:05:52 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2015-04-16 11:05:52 ----A---- C:\Windows\system32\mshtmlmedia.dll
2015-04-16 11:05:52 ----A---- C:\Windows\system32\mshtmled.dll
2015-04-16 11:05:52 ----A---- C:\Windows\system32\mshtml.dll
2015-04-16 11:05:52 ----A---- C:\Windows\system32\jscript9diag.dll
2015-04-16 11:05:52 ----A---- C:\Windows\system32\jscript9.dll
2015-04-16 11:05:52 ----A---- C:\Windows\system32\ieUnatt.exe
2015-04-16 11:05:52 ----A---- C:\Windows\system32\ieui.dll
2015-04-16 11:05:52 ----A---- C:\Windows\system32\iesetup.dll
2015-04-16 11:05:52 ----A---- C:\Windows\system32\iernonce.dll
2015-04-16 11:05:52 ----A---- C:\Windows\system32\ieframe.dll
2015-04-16 11:05:52 ----A---- C:\Windows\system32\ieetwproxystub.dll
2015-04-16 11:05:52 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2015-04-16 11:05:52 ----A---- C:\Windows\system32\ieetwcollector.exe
2015-04-16 11:05:52 ----A---- C:\Windows\system32\ie4uinit.exe
2015-04-16 11:05:51 ----A---- C:\Windows\SYSWOW64\wininet.dll
2015-04-16 11:05:51 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2015-04-16 11:05:51 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2015-04-16 11:05:51 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2015-04-16 11:05:51 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2015-04-16 11:05:51 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2015-04-16 11:05:51 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2015-04-16 11:05:51 ----A---- C:\Windows\system32\wininet.dll
2015-04-16 11:05:51 ----A---- C:\Windows\system32\vbscript.dll
2015-04-16 11:05:51 ----A---- C:\Windows\system32\jsproxy.dll
2015-04-16 11:05:51 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-04-16 11:05:51 ----A---- C:\Windows\system32\iedkcs32.dll
2015-04-16 11:05:51 ----A---- C:\Windows\system32\ieapfltr.dll
2015-04-16 11:05:50 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2015-04-16 11:05:50 ----A---- C:\Windows\SYSWOW64\msrating.dll
2015-04-16 11:05:50 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2015-04-16 11:05:50 ----A---- C:\Windows\system32\urlmon.dll
2015-04-16 11:05:50 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2015-04-16 11:05:50 ----A---- C:\Windows\system32\msrating.dll
2015-04-16 11:05:50 ----A---- C:\Windows\system32\MshtmlDac.dll
2015-04-16 11:05:50 ----A---- C:\Windows\system32\iertutil.dll
2015-04-16 11:02:18 ----A---- C:\Windows\SYSWOW64\msxml3r.dll
2015-04-16 11:02:18 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2015-04-16 11:02:18 ----A---- C:\Windows\system32\msxml3r.dll
2015-04-16 11:02:18 ----A---- C:\Windows\system32\msxml3.dll
2015-04-16 11:02:05 ----A---- C:\Windows\SYSWOW64\clfsw32.dll
2015-04-16 11:02:05 ----A---- C:\Windows\system32\clfsw32.dll
2015-04-16 11:02:05 ----A---- C:\Windows\system32\clfs.sys
2015-04-16 11:00:35 ----A---- C:\Windows\system32\sspisrv.dll
2015-04-16 11:00:35 ----A---- C:\Windows\system32\sspicli.dll
2015-04-16 11:00:35 ----A---- C:\Windows\system32\secur32.dll
2015-04-16 11:00:35 ----A---- C:\Windows\system32\msobjs.dll
2015-04-16 11:00:35 ----A---- C:\Windows\system32\msaudite.dll
2015-04-16 11:00:35 ----A---- C:\Windows\system32\lsass.exe
2015-04-16 11:00:35 ----A---- C:\Windows\system32\lsasrv.dll
2015-04-16 11:00:35 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2015-04-16 11:00:35 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2015-04-16 11:00:35 ----A---- C:\Windows\system32\auditpol.exe
2015-04-16 11:00:35 ----A---- C:\Windows\system32\adtschema.dll
2015-04-16 11:00:32 ----A---- C:\Windows\SYSWOW64\msobjs.dll
2015-04-16 11:00:32 ----A---- C:\Windows\SYSWOW64\msaudite.dll
2015-04-16 11:00:32 ----A---- C:\Windows\SYSWOW64\auditpol.exe
2015-04-16 11:00:32 ----A---- C:\Windows\SYSWOW64\adtschema.dll
2015-04-16 11:00:31 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2015-04-16 11:00:31 ----A---- C:\Windows\SYSWOW64\srclient.dll
2015-04-16 11:00:31 ----A---- C:\Windows\SYSWOW64\secur32.dll
2015-04-16 11:00:31 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2015-04-16 11:00:31 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2015-04-16 11:00:31 ----A---- C:\Windows\system32\wow64win.dll
2015-04-16 11:00:31 ----A---- C:\Windows\system32\wow64cpu.dll
2015-04-16 11:00:31 ----A---- C:\Windows\system32\wow64.dll
2015-04-16 11:00:31 ----A---- C:\Windows\system32\winsrv.dll
2015-04-16 11:00:31 ----A---- C:\Windows\system32\wdigest.dll
2015-04-16 11:00:31 ----A---- C:\Windows\system32\TSpkg.dll
2015-04-16 11:00:31 ----A---- C:\Windows\system32\srcore.dll
2015-04-16 11:00:31 ----A---- C:\Windows\system32\srclient.dll
2015-04-16 11:00:31 ----A---- C:\Windows\system32\smss.exe
2015-04-16 11:00:31 ----A---- C:\Windows\system32\schannel.dll
2015-04-16 11:00:31 ----A---- C:\Windows\system32\rstrui.exe
2015-04-16 11:00:31 ----A---- C:\Windows\system32\ntvdm64.dll
2015-04-16 11:00:31 ----A---- C:\Windows\system32\ntoskrnl.exe
2015-04-16 11:00:31 ----A---- C:\Windows\system32\ntdll.dll
2015-04-16 11:00:31 ----A---- C:\Windows\system32\msv1_0.dll
2015-04-16 11:00:31 ----A---- C:\Windows\system32\KernelBase.dll
2015-04-16 11:00:31 ----A---- C:\Windows\system32\kernel32.dll
2015-04-16 11:00:31 ----A---- C:\Windows\system32\kerberos.dll
2015-04-16 11:00:31 ----A---- C:\Windows\system32\csrsrv.dll
2015-04-16 11:00:31 ----A---- C:\Windows\system32\credssp.dll
2015-04-16 11:00:31 ----A---- C:\Windows\system32\conhost.exe
2015-04-16 11:00:31 ----A---- C:\Windows\system32\apisetschema.dll
2015-04-16 11:00:30 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2015-04-16 11:00:30 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2015-04-16 11:00:30 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2015-04-16 11:00:30 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2015-04-16 11:00:30 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2015-04-16 11:00:30 ----A---- C:\Windows\SYSWOW64\credssp.dll
2015-04-16 11:00:30 ----A---- C:\Windows\system32\ncrypt.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2015-04-16 11:00:29 ----A---- C:\Windows\SYSWOW64\wow32.dll
2015-04-16 11:00:29 ----A---- C:\Windows\SYSWOW64\user.exe
2015-04-16 11:00:29 ----A---- C:\Windows\SYSWOW64\schannel.dll
2015-04-16 11:00:29 ----A---- C:\Windows\SYSWOW64\setup16.exe
2015-04-16 11:00:29 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2015-04-16 11:00:29 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2015-04-16 11:00:29 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2015-04-16 11:00:29 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2015-04-16 11:00:29 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2015-04-16 11:00:29 ----A---- C:\Windows\SYSWOW64\instnm.exe
2015-04-16 11:00:28 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2015-04-16 11:00:28 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2015-04-16 11:00:28 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2015-04-16 11:00:28 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2015-04-16 11:00:28 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2015-04-16 11:00:28 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2015-04-16 11:00:28 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2015-04-16 11:00:28 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-04-16 11:00:28 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2015-04-16 11:00:28 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2015-04-16 11:00:28 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2015-04-16 11:00:28 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2015-04-16 11:00:28 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2015-04-16 11:00:28 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2015-04-16 11:00:28 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2015-04-16 11:00:28 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2015-04-16 11:00:28 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2015-04-16 11:00:28 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2015-04-16 11:00:28 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2015-04-16 11:00:28 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2015-04-16 11:00:28 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2015-04-16 11:00:28 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2015-04-16 11:00:28 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2015-04-16 11:00:28 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2015-04-16 11:00:28 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2015-04-16 11:00:28 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2015-04-16 10:58:55 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2015-04-16 10:58:55 ----A---- C:\Windows\system32\gdi32.dll
2015-04-16 10:58:45 ----A---- C:\Windows\system32\drivers\http.sys
2015-04-16 10:58:28 ----A---- C:\Windows\system32\wups2.dll
2015-04-16 10:58:27 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2015-04-16 10:58:27 ----A---- C:\Windows\SYSWOW64\wups.dll
2015-04-16 10:58:27 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2015-04-16 10:58:27 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2015-04-16 10:58:27 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2015-04-16 10:58:27 ----A---- C:\Windows\system32\wuwebv.dll
2015-04-16 10:58:27 ----A---- C:\Windows\system32\wups.dll
2015-04-16 10:58:27 ----A---- C:\Windows\system32\wudriver.dll
2015-04-16 10:58:27 ----A---- C:\Windows\system32\wucltux.dll
2015-04-16 10:58:27 ----A---- C:\Windows\system32\wuaueng.dll
2015-04-16 10:58:27 ----A---- C:\Windows\system32\wuauclt.exe
2015-04-16 10:58:27 ----A---- C:\Windows\system32\wuapp.exe
2015-04-16 10:58:27 ----A---- C:\Windows\system32\wuapi.dll
2015-04-16 10:58:27 ----A---- C:\Windows\system32\wu.upgrade.ps.dll
2015-04-16 10:58:27 ----A---- C:\Windows\system32\WinSetupUI.dll
2015-04-05 07:57:17 ----SD---- C:\Windows\SYSWOW64\GWX
2015-04-05 07:57:17 ----SD---- C:\Windows\system32\GWX
2015-03-21 17:44:20 ----D---- C:\Program Files (x86)\Mozilla Firefox
2015-03-11 01:02:25 ----A---- C:\Windows\SYSWOW64\atmfd.dll
2015-03-11 01:02:25 ----A---- C:\Windows\system32\lpk.dll
2015-03-11 01:02:25 ----A---- C:\Windows\system32\atmlib.dll
2015-03-11 01:02:25 ----A---- C:\Windows\system32\atmfd.dll
2015-03-11 01:02:24 ----A---- C:\Windows\SYSWOW64\lpk.dll
2015-03-11 01:02:24 ----A---- C:\Windows\SYSWOW64\fontsub.dll
2015-03-11 01:02:24 ----A---- C:\Windows\SYSWOW64\dciman32.dll
2015-03-11 01:02:24 ----A---- C:\Windows\SYSWOW64\atmlib.dll
2015-03-11 01:02:24 ----A---- C:\Windows\system32\fontsub.dll
2015-03-11 01:02:24 ----A---- C:\Windows\system32\dciman32.dll
2015-03-11 01:02:07 ----A---- C:\Windows\system32\blackbox.dll
2015-03-11 01:02:06 ----A---- C:\Windows\SYSWOW64\blackbox.dll
2015-03-11 01:02:06 ----A---- C:\Windows\system32\drmv2clt.dll
2015-03-11 01:02:05 ----A---- C:\Windows\SYSWOW64\drmv2clt.dll
2015-03-11 01:02:04 ----A---- C:\Windows\system32\wmp.dll
2015-03-11 01:02:03 ----A---- C:\Windows\system32\wmdrmsdk.dll
2015-03-11 01:02:02 ----A---- C:\Windows\SYSWOW64\wmdrmsdk.dll
2015-03-11 01:02:01 ----A---- C:\Windows\SYSWOW64\mf.dll
2015-03-11 01:02:00 ----A---- C:\Windows\SYSWOW64\wmp.dll
2015-03-11 01:01:58 ----A---- C:\Windows\system32\drmmgrtn.dll
2015-03-11 01:01:58 ----A---- C:\Windows\system32\crypt32.dll
2015-03-11 01:01:57 ----A---- C:\Windows\SYSWOW64\drmmgrtn.dll
2015-03-11 01:01:57 ----A---- C:\Windows\SYSWOW64\crypt32.dll
2015-03-11 01:01:57 ----A---- C:\Windows\system32\drivers\PEAuth.sys
2015-03-11 01:01:56 ----A---- C:\Windows\system32\quartz.dll
2015-03-11 01:01:56 ----A---- C:\Windows\system32\evr.dll
2015-03-11 01:01:54 ----A---- C:\Windows\system32\cryptui.dll
2015-03-11 01:01:53 ----A---- C:\Windows\SYSWOW64\evr.dll
2015-03-11 01:01:53 ----A---- C:\Windows\system32\mfplat.dll
2015-03-11 01:01:52 ----A---- C:\Windows\SYSWOW64\quartz.dll
2015-03-11 01:01:52 ----A---- C:\Windows\system32\winresume.exe
2015-03-11 01:01:51 ----A---- C:\Windows\SYSWOW64\cryptui.dll
2015-03-11 01:01:51 ----A---- C:\Windows\system32\pcasvc.dll
2015-03-11 01:01:50 ----A---- C:\Windows\SYSWOW64\mfplat.dll
2015-03-11 01:01:50 ----A---- C:\Windows\system32\drivers\mountmgr.sys
2015-03-11 01:01:49 ----A---- C:\Windows\SYSWOW64\cryptsp.dll
2015-03-11 01:01:49 ----A---- C:\Windows\system32\cryptsp.dll
2015-03-11 01:01:48 ----A---- C:\Windows\system32\msscp.dll
2015-03-11 01:01:48 ----A---- C:\Windows\system32\mf.dll
2015-03-11 01:01:46 ----A---- C:\Windows\system32\winload.exe
2015-03-11 01:01:46 ----A---- C:\Windows\system32\msnetobj.dll
2015-03-11 01:01:45 ----A---- C:\Windows\SYSWOW64\wintrust.dll
2015-03-11 01:01:45 ----A---- C:\Windows\SYSWOW64\qdvd.dll
2015-03-11 01:01:45 ----A---- C:\Windows\SYSWOW64\msscp.dll
2015-03-11 01:01:45 ----A---- C:\Windows\system32\wintrust.dll
2015-03-11 01:01:45 ----A---- C:\Windows\system32\cryptnet.dll
2015-03-11 01:01:45 ----A---- C:\Windows\system32\ci.dll
2015-03-11 01:01:45 ----A---- C:\Windows\system32\audiosrv.dll
2015-03-11 01:01:45 ----A---- C:\Windows\system32\appidsvc.dll
2015-03-11 01:01:44 ----A---- C:\Windows\SYSWOW64\cryptnet.dll
2015-03-11 01:01:44 ----A---- C:\Windows\system32\drivers\appid.sys
2015-03-11 01:01:43 ----A---- C:\Windows\system32\audiodg.exe
2015-03-11 01:01:42 ----A---- C:\Windows\SYSWOW64\msnetobj.dll
2015-03-11 01:01:42 ----A---- C:\Windows\SYSWOW64\cryptsvc.dll
2015-03-11 01:01:42 ----A---- C:\Windows\system32\AudioSes.dll
2015-03-11 01:01:42 ----A---- C:\Windows\system32\AUDIOKSE.dll
2015-03-11 01:01:41 ----A---- C:\Windows\system32\qdvd.dll
2015-03-11 01:01:41 ----A---- C:\Windows\system32\cryptsvc.dll
2015-03-11 01:01:39 ----A---- C:\Windows\SYSWOW64\AudioEng.dll
2015-03-11 01:01:39 ----A---- C:\Windows\system32\rrinstaller.exe
2015-03-11 01:01:39 ----A---- C:\Windows\system32\pcadm.dll
2015-03-11 01:01:39 ----A---- C:\Windows\system32\AudioEng.dll
2015-03-11 01:01:37 ----A---- C:\Windows\SYSWOW64\rrinstaller.exe
2015-03-11 01:01:37 ----A---- C:\Windows\SYSWOW64\AUDIOKSE.dll
2015-03-11 01:01:37 ----A---- C:\Windows\system32\appidpolicyconverter.exe
2015-03-11 01:01:36 ----A---- C:\Windows\SYSWOW64\mfps.dll
2015-03-11 01:01:36 ----A---- C:\Windows\SYSWOW64\AudioSes.dll
2015-03-11 01:01:36 ----A---- C:\Windows\SYSWOW64\appidapi.dll
2015-03-11 01:01:36 ----A---- C:\Windows\system32\pcawrk.exe
2015-03-11 01:01:36 ----A---- C:\Windows\system32\pcalua.exe
2015-03-11 01:01:36 ----A---- C:\Windows\system32\msmmsp.dll
2015-03-11 01:01:36 ----A---- C:\Windows\system32\mfps.dll
2015-03-11 01:01:36 ----A---- C:\Windows\system32\mfpmp.exe
2015-03-11 01:01:36 ----A---- C:\Windows\system32\appidapi.dll
2015-03-11 01:01:35 ----A---- C:\Windows\SYSWOW64\mfpmp.exe
2015-03-11 01:01:35 ----A---- C:\Windows\system32\setbcdlocale.dll
2015-03-11 01:01:35 ----A---- C:\Windows\system32\EncDump.dll
2015-03-11 01:01:35 ----A---- C:\Windows\system32\appidcertstorecheck.exe
2015-03-11 01:01:32 ----A---- C:\Windows\system32\spwmp.dll
2015-03-11 01:01:31 ----A---- C:\Windows\SYSWOW64\spwmp.dll
2015-03-11 01:01:31 ----A---- C:\Windows\SYSWOW64\dxmasf.dll
2015-03-11 01:01:31 ----A---- C:\Windows\system32\dxmasf.dll
2015-03-11 01:01:30 ----A---- C:\Windows\system32\pcaevts.dll
2015-03-11 01:01:29 ----A---- C:\Windows\SYSWOW64\wmploc.DLL
2015-03-11 01:01:29 ----A---- C:\Windows\system32\wmploc.DLL
2015-03-11 01:01:27 ----A---- C:\Windows\SYSWOW64\mferror.dll
2015-03-11 01:01:26 ----A---- C:\Windows\system32\mferror.dll
2015-03-11 01:01:08 ----A---- C:\Windows\system32\rdpudd.dll
2015-03-11 01:01:08 ----A---- C:\Windows\system32\RdpGroupPolicyExtension.dll
2015-03-11 01:01:08 ----A---- C:\Windows\system32\rdpcorets.dll
2015-03-11 01:00:38 ----A---- C:\Windows\system32\ubpm.dll
2015-03-11 01:00:37 ----A---- C:\Windows\SYSWOW64\ubpm.dll
2015-03-11 01:00:37 ----A---- C:\Windows\SYSWOW64\msctf.dll
2015-03-11 01:00:37 ----A---- C:\Windows\system32\msctf.dll
2015-03-11 01:00:32 ----A---- C:\Windows\system32\drivers\cng.sys
2015-03-11 01:00:16 ----A---- C:\Windows\system32\shell32.dll
2015-03-11 01:00:14 ----A---- C:\Windows\SYSWOW64\shell32.dll
2015-03-11 01:00:11 ----A---- C:\Windows\system32\WindowsCodecs.dll
2015-03-11 01:00:10 ----A---- C:\Windows\SYSWOW64\WindowsCodecs.dll
2015-03-11 01:00:07 ----A---- C:\Windows\system32\win32k.sys
2015-03-11 00:57:55 ----A---- C:\Windows\system32\WMPhoto.dll
2015-03-11 00:57:54 ----A---- C:\Windows\SYSWOW64\WMPhoto.dll
2015-03-10 00:27:47 ----RD---- C:\Program Files (x86)\Skype
2015-03-07 10:14:28 ----D---- C:\Users\Ľudka\AppData\Roaming\K9AMW
2015-02-20 21:13:22 ----A---- C:\Windows\system32\SmartDefragBootTime.exe
2015-02-20 21:13:17 ----A---- C:\Windows\system32\IObitSmartDefragExtension.dll
2015-02-19 22:35:29 ----A---- C:\Windows\wininit.ini
2015-02-17 17:04:46 ----A---- C:\Windows\SYSWOW64\FM20.DLL
2015-02-17 08:27:43 ----A---- C:\Windows\SYSWOW64\wdi.dll
2015-02-17 08:27:43 ----A---- C:\Windows\system32\wdi.dll
2015-02-17 08:27:43 ----A---- C:\Windows\system32\powertracker.dll
2015-02-17 08:27:43 ----A---- C:\Windows\system32\perftrack.dll
2015-02-11 14:13:38 ----A---- C:\Windows\system32\aitstatic.exe
2015-02-11 14:10:40 ----A---- C:\Windows\SYSWOW64\oleaut32.dll
2015-02-11 14:10:40 ----A---- C:\Windows\system32\oleaut32.dll
2015-02-11 14:10:16 ----A---- C:\Windows\system32\scesrv.dll
2015-02-11 14:10:15 ----A---- C:\Windows\SYSWOW64\scesrv.dll
2015-02-07 11:22:58 ----D---- C:\ProgramData\PopCap Games
2015-02-04 12:23:14 ----A---- C:\Windows\SYSWOW64\msvcr120_clr0400.dll
2015-02-04 12:13:22 ----A---- C:\Windows\system32\msvcr120_clr0400.dll

======List of files/folders modified in the last 3 months======

2015-04-24 21:27:38 ----D---- C:\Windows\Temp
2015-04-24 21:27:27 ----D---- C:\Windows\system32\config
2015-04-24 21:16:52 ----A---- C:\Windows\SYSWOW64\log.txt
2015-04-24 21:14:15 ----D---- C:\Windows\System32
2015-04-24 20:43:08 ----SHD---- C:\System Volume Information
2015-04-24 20:25:57 ----D---- C:\Windows\system32\NDF
2015-04-24 20:17:00 ----RD---- C:\Program Files
2015-04-24 20:15:29 ----D---- C:\Windows\inf
2015-04-24 20:15:29 ----A---- C:\Windows\system32\PerfStringBackup.INI
2015-04-24 16:31:57 ----D---- C:\Users\Ľudka\AppData\Roaming\Intelli-studio
2015-04-24 16:28:13 ----D---- C:\Windows
2015-04-23 08:31:02 ----D---- C:\Windows\system32\drivers
2015-04-23 08:29:44 ----D---- C:\Windows\system32\Tasks
2015-04-23 08:29:40 ----SHD---- C:\Windows\Installer
2015-04-23 08:29:39 ----D---- C:\Windows\Tasks
2015-04-23 08:23:08 ----D---- C:\ProgramData\Atheros
2015-04-23 08:23:03 ----D---- C:\Windows\system32\DriverStore
2015-04-23 08:22:56 ----RD---- C:\Program Files (x86)
2015-04-21 22:19:39 ----D---- C:\Windows\AppCompat
2015-04-20 22:49:11 ----D---- C:\Windows\winsxs
2015-04-19 23:54:54 ----SD---- C:\Windows\system32\CompatTel
2015-04-19 23:54:54 ----D---- C:\Windows\system32\appraiser
2015-04-19 23:54:54 ----D---- C:\Windows\AppPatch
2015-04-19 23:54:53 ----D---- C:\Windows\system32\MRT
2015-04-19 23:50:12 ----D---- C:\Windows\debug
2015-04-19 23:50:08 ----A---- C:\Windows\system32\MRT.exe
2015-04-19 21:29:27 ----D---- C:\ProgramData\Microsoft Help
2015-04-17 15:16:15 ----D---- C:\Windows\SysWOW64
2015-04-17 15:16:12 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2015-04-17 15:03:56 ----D---- C:\Windows\system32\catroot2
2015-04-17 14:59:31 ----D---- C:\Windows\system32\wfp
2015-04-17 14:59:29 ----D---- C:\Windows\system32\wbem
2015-04-17 14:58:39 ----D---- C:\Windows\SYSWOW64\RTCOM
2015-04-17 14:58:34 ----D---- C:\Windows\security
2015-04-17 14:58:31 ----HD---- C:\Program Files (x86)\Temp
2015-04-17 14:58:31 ----D---- C:\Program Files\Realtek
2015-04-17 14:58:27 ----D---- C:\Windows\registration
2015-04-17 14:57:44 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2015-04-17 14:37:07 ----D---- C:\Windows\system32\catroot
2015-04-17 14:15:38 ----D---- C:\Windows\system32\CodeIntegrity
2015-04-17 14:14:05 ----D---- C:\Program Files (x86)\Realtek
2015-04-17 11:51:58 ----D---- C:\Windows\Logs
2015-04-17 10:19:31 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2015-04-17 10:18:14 ----D---- C:\Program Files\NVIDIA Corporation
2015-04-17 10:18:12 ----D---- C:\ProgramData\NVIDIA
2015-04-17 10:04:35 ----HD---- C:\ProgramData
2015-04-17 09:50:21 ----D---- C:\Users\Ľudka\AppData\Roaming\Audacity
2015-04-17 09:31:43 ----D---- C:\Program Files (x86)\Common Files
2015-04-17 09:26:21 ----D---- C:\Windows\Prefetch
2015-04-17 09:20:59 ----D---- C:\Program Files (x86)\WildTangent Games
2015-04-17 09:13:12 ----SD---- C:\ProgramData\Microsoft
2015-04-17 09:13:12 ----D---- C:\Program Files (x86)\Microsoft
2015-04-17 08:20:29 ----D---- C:\Windows\Microsoft.NET
2015-04-17 08:19:50 ----RSD---- C:\Windows\assembly
2015-04-17 07:35:34 ----D---- C:\Windows\SYSWOW64\en-US
2015-04-17 07:35:34 ----D---- C:\Program Files\Internet Explorer
2015-04-17 07:35:32 ----D---- C:\Windows\system32\en-US
2015-04-17 07:35:30 ----D---- C:\Program Files (x86)\Internet Explorer
2015-04-17 07:35:16 ----D---- C:\Windows\SYSWOW64\sk-SK
2015-04-17 07:35:15 ----D---- C:\Windows\system32\sk-SK
2015-04-17 07:35:15 ----D---- C:\Windows\PolicyDefinitions
2015-04-16 20:11:01 ----D---- C:\Users\Ľudka\AppData\Roaming\ProductData
2015-04-16 20:11:01 ----D---- C:\Users\Ľudka\AppData\Roaming\IObit
2015-04-16 20:11:00 ----D---- C:\ProgramData\ProductData
2015-04-16 20:06:35 ----D---- C:\Windows\system32\LogFiles
2015-04-16 11:04:11 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2015-04-09 02:58:18 ----A---- C:\Windows\SYSWOW64\OpenCL.dll
2015-04-09 02:58:18 ----A---- C:\Windows\SYSWOW64\nvumdshim.dll
2015-04-09 02:58:18 ----A---- C:\Windows\SYSWOW64\nvspcap.dll
2015-04-09 02:58:18 ----A---- C:\Windows\SYSWOW64\nvinit.dll
2015-04-09 02:58:18 ----A---- C:\Windows\system32\OpenCL.dll
2015-04-09 02:58:18 ----A---- C:\Windows\system32\nvumdshimx.dll
2015-04-09 02:58:18 ----A---- C:\Windows\system32\nvspcap64.dll
2015-04-09 02:58:18 ----A---- C:\Windows\system32\nvinitx.dll
2015-04-09 02:58:18 ----A---- C:\Windows\system32\nvaudcap64v.dll
2015-04-09 02:58:18 ----A---- C:\Windows\system32\nvapi64.dll
2015-04-08 23:30:18 ----A---- C:\Windows\system32\nvsvc64.dll
2015-04-08 23:30:18 ----A---- C:\Windows\system32\nvcpl.dll
2015-04-08 23:30:14 ----A---- C:\Windows\system32\nvvsvc.exe
2015-04-08 23:30:14 ----A---- C:\Windows\system32\nvsvcr.dll
2015-04-08 23:30:14 ----A---- C:\Windows\system32\nvshext.dll
2015-04-08 23:30:14 ----A---- C:\Windows\system32\nv3dappshextr.dll
2015-04-08 23:30:14 ----A---- C:\Windows\system32\nv3dappshext.dll
2015-04-08 23:30:13 ----A---- C:\Windows\system32\nvmctray.dll
2015-04-03 13:12:45 ----D---- C:\Windows\SoftwareDistribution
2015-03-24 14:22:18 ----D---- C:\Windows\system32\wdi
2015-03-23 23:37:15 ----D---- C:\Windows\rescache
2015-03-21 03:24:18 ----D---- C:\Users\Ľudka\AppData\Roaming\vlc
2015-03-11 12:47:29 ----D---- C:\Windows\SYSWOW64\Dism
2015-03-11 12:47:29 ----D---- C:\Program Files\Windows Media Player
2015-03-11 12:47:29 ----D---- C:\Program Files (x86)\Windows Media Player
2015-03-11 12:47:28 ----D---- C:\Windows\system32\Dism
2015-03-11 12:47:26 ----D---- C:\Windows\system32\Boot
2015-03-11 12:28:52 ----D---- C:\Users\Ľudka\AppData\Roaming\Skype
2015-03-10 00:27:54 ----D---- C:\ProgramData\Skype
2015-03-07 10:19:43 ----D---- C:\Users\Ľudka\AppData\Roaming\Opera Software
2015-03-03 15:17:35 ----N---- C:\Windows\system32\MpSigStub.exe
2015-02-20 21:13:07 ----D---- C:\ProgramData\IObit
2015-02-17 15:38:24 ----D---- C:\Windows\tracing
2015-02-13 00:31:29 ----D---- C:\Program Files\Microsoft Security Client
2015-02-13 00:31:29 ----D---- C:\Program Files (x86)\Microsoft Security Client

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 avc3;avc3; C:\Windows\system32\DRIVERS\avc3.sys [2013-04-17 718840]
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\drivers\iaStor.sys [2010-04-13 540696]
R0 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2014-11-15 274696]
R0 nvpciflt;nvpciflt; C:\Windows\system32\DRIVERS\nvpciflt.sys [2015-04-09 31376]
R0 PxHlpa64;PxHlpa64; C:\Windows\System32\Drivers\PxHlpa64.sys [2011-11-03 56208]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R0 trufos;trufos; C:\Windows\system32\DRIVERS\trufos.sys [2013-05-28 382536]
R1 gzflt;gzflt; C:\Windows\system32\DRIVERS\gzflt.sys [2013-04-22 148696]
R1 HWiNFO32;HWiNFO32/64 Kernel Driver; \??\C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS [2015-01-21 26528]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2014-11-15 124560]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athrx.sys [2010-05-11 2229608]
R3 HECIx64;Intel(R) Management Engine Interface; C:\Windows\system32\drivers\HECIx64.sys [2009-09-17 56344]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2000-01-01 12312928]
R3 Impcd;Impcd; C:\Windows\system32\DRIVERS\Impcd.sys [2010-02-27 158976]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2000-01-01 3707864]
R3 IntcDAud;Intel(R) Zvuk pre obrazovky; C:\Windows\system32\DRIVERS\IntcDAud.sys [2000-01-01 317440]
R3 k57nd60a;Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\k57nd60a.sys [2011-05-09 425000]
R3 NTIDrvr;NTIDrvr; \??\C:\Windows\system32\drivers\NTIDrvr.sys [2011-09-20 18432]
R3 NvStreamKms;NvStreamKms; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2015-04-09 19600]
R3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\Windows\system32\drivers\nvvad64v.sys [2015-04-09 38032]
R3 UBHelper;UBHelper; \??\C:\Windows\system32\drivers\UBHelper.sys [2011-09-20 17408]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S1 bdfwfpf;bdfwfpf; C:\Windows\system32\drivers\bdfwfpf.sys []
S3 avckf;avckf; C:\Windows\system32\DRIVERS\avckf.sys [2013-04-17 593144]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2014-09-23 19456]
S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader; C:\Windows\System32\Drivers\RtsUStor.sys [2010-09-22 243712]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2014-09-23 57856]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2014-09-23 30208]
S3 usbscan;USB Scanner Driver; C:\Windows\system32\drivers\usbscan.sys [2013-07-03 42496]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2014-05-08 65432]
R2 DsiWMIService;Dritek WMI Service; C:\Program Files (x86)\Launch Manager\dsiwmis.exe [2010-08-10 321104]
R2 ePowerSvc;Acer ePower Service; C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe [2011-01-06 867712]
R2 GfExperienceService;NVIDIA GeForce Experience Service; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [2015-04-09 1152144]
R2 GREGService;GREGService; C:\Program Files (x86)\Acer\Registration\GREGsvc.exe [2011-05-30 36456]
R2 gzserv;Bitdefender Antivirus Free Edition; C:\Program Files\Bitdefender\Antivirus Free Edition\gzserv.exe [2013-10-23 69368]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2010-04-13 13336]
R2 Live Updater Service;Live Updater Service; C:\Program Files\Acer\Acer Updater\UpdaterService.exe [2011-04-22 244624]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2010-03-18 268824]
R2 MsMpSvc;Microsoft Antimalware Service; c:\Program Files\Microsoft Security Client\MsMpEng.exe [2015-01-30 23784]
R2 NTI IScheduleSvc;NTI IScheduleSvc; C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\IScheduleSvc.exe [2011-06-17 255744]
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2015-04-09 1878672]
R2 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [2015-04-09 22995600]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2015-04-08 936264]
R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2000-01-01 1914656]
R2 UNS;Intel(R) Management & Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2010-03-18 2320920]
R3 NisSrv;@c:\Program Files\Microsoft Security Client\MpAsDesc.dll,-243; c:\Program Files\Microsoft Security Client\NisSrv.exe [2015-01-30 366512]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2014-04-12 103608]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2014-04-11 124088]
S2 LiveUpdateSvc;LiveUpdate; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe []
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2015-01-02 315488]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-04-17 268464]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2011-11-25 655624]
S3 GamesAppIntegrationService;GamesAppIntegrationService; C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe [2015-04-17 373312]
S3 GamesAppService;GamesAppService; C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe [2015-03-02 265808]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2015-04-16 114688]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 SwitchBoard;Adobe SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2012-09-13 1255736]
S3 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2011-03-29 2292096]
S4 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2014-04-11 50864]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 wlcrasvc;Windows Live Mesh remote connections service; C:\Program Files\Windows Live\Mesh\wlcrasvc.exe [2010-09-23 57184]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119677
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Spomalený notebook, log z RSIT

#6 Příspěvek od Rudy »

Stáhněte OTM: http://oldtimer.geekstogo.com/OTM.exe a uložte na plochu. Spusťte a do levého okna zkopírujte:
:reg
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{10921475-03CE-4E04-90CE-E2E7EF20C814}]/64

:commands
[Purity]
[Emptytemp]
[Emptyflash]
a klikněte na >MoveIt!<. Po skenu restartujte PC a dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

gromo
Návštěvník
Návštěvník
Příspěvky: 54
Registrován: 28 bře 2010 16:45

Re: Spomalený notebook, log z RSIT

#7 Příspěvek od gromo »

Nový log:

Logfile of random's system information tool 1.10 (written by random/random)
Run by Ľudka at 2015-04-24 22:35:43
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 467 GB (67%) free of 700 GB
Total RAM: 5815 MB (75% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22:35:49, on 24. 4. 2015
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17728)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files\trend micro\Ľudka.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://acer.msn.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.sk/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-21-587640768-2695264913-3364607863-1002\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-587640768-2695264913-3364607863-1002\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'UpdatusUser')
O4 - HKUS\S-1-5-18\..\RunOnce: [IsMyWinLockerReboot] msiexec.exe /qn /x{voidguid} (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [IsMyWinLockerReboot] msiexec.exe /qn /x{voidguid} (User 'Default user')
O8 - Extra context menu item: E&xportovať do programu Microsoft Excel - res://C:\PROGRA~2\MICROS~4\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Free YouTube Download - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\freeytvdownloader.htm
O8 - Extra context menu item: Free YouTube to MP3 Converter - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\freeytmp3downloader.htm
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~4\Office12\REFIEBAR.DLL
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O20 - AppInit_DLLs: C:\Windows\SysWOW64\nvinit.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Dritek WMI Service (DsiWMIService) - Dritek System Inc. - C:\Program Files (x86)\Launch Manager\dsiwmis.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: Acer ePower Service (ePowerSvc) - Acer Incorporated - C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: GamesAppIntegrationService - WildTangent - C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe
O23 - Service: GamesAppService - WildTangent, Inc. - C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
O23 - Service: GREGService - Acer Incorporated - C:\Program Files (x86)\Acer\Registration\GREGsvc.exe
O23 - Service: Bitdefender Antivirus Free Edition (gzserv) - Bitdefender - C:\Program Files\Bitdefender\Antivirus Free Edition\gzserv.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Live Updater Service - Acer Incorporated - C:\Program Files\Acer\Acer Updater\UpdaterService.exe
O23 - Service: LiveUpdate (LiveUpdateSvc) - Unknown owner - C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: NTI IScheduleSvc - NewTech Infosystems, Inc. - C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\IScheduleSvc.exe
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Adobe SwitchBoard (SwitchBoard) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management & Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 9778 bytes

======Listing Processes======



\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
winlogon.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
"C:\Windows\system32\nvvsvc.exe"
C:\Windows\system32\svchost.exe -k RPCSS
"c:\Program Files\Microsoft Security Client\MsMpEng.exe"
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs

C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\Launch Manager\dsiwmis.exe"
"C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe"
"C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe"
"C:\Program Files (x86)\Acer\Registration\GREGsvc.exe"
"C:\Program Files\Acer\Acer Updater\UpdaterService.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\IScheduleSvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe"
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe" bcb1727f-f636-4ca4-8a4a-1ae19e982ec3 1
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" serviceapp
C:\Windows\servicing\TrustedInstaller.exe
C:\Windows\System32\rundll32.exe shell32.dll,SHCreateLocalServerRunDll {995C996E-D918-4a8c-A302-45719A6F4EA7} -Embedding
"C:\Program Files\Bitdefender\Antivirus Free Edition\gzserv.exe" /service
\??\C:\Windows\system32\conhost.exe "892756185-36435663-955469746-14035698151801516856-2137312670-10736075321455985051
\??\C:\Windows\system32\conhost.exe "-430244396-1291649485-1374705819-346556911751337532-358595092-1891416597-1687239610
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"c:\Program Files\Microsoft Security Client\NisSrv.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
"C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
C:\Windows\system32\sppsvc.exe
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\Users\Ľudka\Desktop\RSITx64.exe"

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe

=========Mozilla firefox=========

ProfilePath - C:\Users\Ľudka\AppData\Roaming\Mozilla\Firefox\Profiles\bc1pfh3d.default

prefs.js - "browser.startup.homepage" - "http://www.google.sk/"
prefs.js - "keyword.URL" - "https://search.yahoo.com/search?fr=gree ... =198484&p="

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 17.0.0.169 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_17_0_0_169.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3538.0513]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.0.0]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.3]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@WildTangent.com/GamesAppPresenceDetector,Version=1.0]
"Description"=WildTangent Games App V2 Presence Detector Plugin
"Path"=C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\6\NP_wtapp.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll


C:\Users\Ľudka\AppData\Roaming\Mozilla\Firefox\Profiles\bc1pfh3d.default\extensions\
bingsearch.full@microsoft.com

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-29 529280]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-29 441216]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"MSC"=c:\Program Files\Microsoft Security Client\msseces.exe [2015-01-30 1332296]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeAAMUpdater-1.0]
C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2012-04-04 446392]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeCS6ServiceManager]
C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [2012-03-09 1073312]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HotKeysCmds]
C:\Windows\system32\hkcmd.exe [2000-01-01 394224]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IgfxTray]
C:\Windows\system32\igfxtray.exe [2000-01-01 168944]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvBackend]
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2015-04-09 2673296]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Persistence]
C:\Windows\system32\igfxpers.exe [2000-01-01 418800]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RTHDVCPL]
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2000-01-01 13662936]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ShadowPlay]
C:\Windows\system32\nvspcap64.dll [2015-04-09 1570672]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SwitchBoard]
C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\Windows\system32\nvinitx.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2000-01-01 390144]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"DisableTaskMgr"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
"NoRun"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 3 months======

2015-04-24 22:25:36 ----D---- C:\_OTM
2015-04-24 21:11:08 ----D---- C:\AdwCleaner
2015-04-24 20:17:00 ----D---- C:\rsit
2015-04-24 20:17:00 ----D---- C:\Program Files\trend micro
2015-04-23 08:29:39 ----SHD---- C:\Config.Msi
2015-04-23 08:22:56 ----D---- C:\Program Files (x86)\Atheros
2015-04-23 08:22:56 ----A---- C:\Windows\system32\drivers\athrx.sys
2015-04-23 08:22:56 ----A---- C:\Windows\system32\athrx.sys
2015-04-23 08:22:29 ----D---- C:\Users\Ľudka\AppData\Roaming\InstallShield
2015-04-17 19:16:21 ----N---- C:\bootsqm.dat
2015-04-17 15:52:26 ----D---- C:\Windows\pss
2015-04-17 15:16:27 ----A---- C:\Windows\system32\invagent.dll
2015-04-17 15:16:27 ----A---- C:\Windows\system32\generaltel.dll
2015-04-17 15:16:27 ----A---- C:\Windows\system32\devinv.dll
2015-04-17 15:16:27 ----A---- C:\Windows\system32\appraiser.dll
2015-04-17 15:16:27 ----A---- C:\Windows\system32\aeinv.dll
2015-04-17 15:16:27 ----A---- C:\Windows\system32\acmigration.dll
2015-04-17 15:16:26 ----A---- C:\Windows\system32\aepic.dll
2015-04-17 15:16:26 ----A---- C:\Windows\system32\aepdu.dll
2015-04-17 13:13:56 ----D---- C:\Program Files (x86)\ESET
2015-04-17 10:31:50 ----D---- C:\Program Files (x86)\TuneUp Utilities 2012
2015-04-17 10:22:05 ----A---- C:\Windows\SYSWOW64\d3dx11_43.dll
2015-04-17 10:22:05 ----A---- C:\Windows\system32\d3dx11_43.dll
2015-04-17 10:22:03 ----A---- C:\Windows\system32\d3dx10_43.dll
2015-04-17 10:22:02 ----A---- C:\Windows\SYSWOW64\D3DX9_43.dll
2015-04-17 10:22:02 ----A---- C:\Windows\system32\D3DX9_43.dll
2015-04-17 10:21:24 ----A---- C:\Windows\system32\nvspbridge64.dll
2015-04-17 10:21:20 ----A---- C:\Windows\SYSWOW64\nvspbridge.dll
2015-04-17 10:18:19 ----D---- C:\Windows\SYSWOW64\NV
2015-04-17 10:18:19 ----D---- C:\Windows\system32\NV
2015-04-17 10:13:38 ----A---- C:\Windows\system32\drivers\nvvad64v.sys
2015-04-17 10:13:36 ----A---- C:\Windows\SYSWOW64\nvaudcap32v.dll
2015-04-17 10:13:35 ----A---- C:\Windows\system32\nvdispgenco6435012.dll
2015-04-17 10:13:33 ----A---- C:\Windows\system32\nvdispco6435012.dll
2015-04-17 10:13:28 ----A---- C:\Windows\system32\drivers\nvpciflt.sys
2015-04-17 10:13:28 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2015-04-17 10:13:23 ----A---- C:\Windows\SYSWOW64\nvwgf2um.dll
2015-04-17 10:13:23 ----A---- C:\Windows\SYSWOW64\nvopencl.dll
2015-04-17 10:13:23 ----A---- C:\Windows\SYSWOW64\nvoglv32.dll
2015-04-17 10:13:23 ----A---- C:\Windows\SYSWOW64\nvoglshim32.dll
2015-04-17 10:13:23 ----A---- C:\Windows\SYSWOW64\NvIFR.dll
2015-04-17 10:13:23 ----A---- C:\Windows\SYSWOW64\NvFBC.dll
2015-04-17 10:13:23 ----A---- C:\Windows\SYSWOW64\nvd3dum.dll
2015-04-17 10:13:23 ----A---- C:\Windows\SYSWOW64\nvcuvid.dll
2015-04-17 10:13:23 ----A---- C:\Windows\SYSWOW64\nvcuda.dll
2015-04-17 10:13:23 ----A---- C:\Windows\system32\nvwgf2umx.dll
2015-04-17 10:13:23 ----A---- C:\Windows\system32\nvopencl.dll
2015-04-17 10:13:23 ----A---- C:\Windows\system32\nvoglv64.dll
2015-04-17 10:13:23 ----A---- C:\Windows\system32\nvoglshim64.dll
2015-04-17 10:13:23 ----A---- C:\Windows\system32\NvIFR64.dll
2015-04-17 10:13:23 ----A---- C:\Windows\system32\NvFBC64.dll
2015-04-17 10:13:23 ----A---- C:\Windows\system32\nvd3dumx.dll
2015-04-17 10:13:23 ----A---- C:\Windows\system32\nvcuvid.dll
2015-04-17 10:13:23 ----A---- C:\Windows\system32\nvcuda.dll
2015-04-17 10:13:22 ----A---- C:\Windows\SYSWOW64\nvcompiler.dll
2015-04-17 10:13:22 ----A---- C:\Windows\SYSWOW64\nvapi.dll
2015-04-17 10:13:22 ----A---- C:\Windows\system32\nvcompiler.dll
2015-04-17 10:07:30 ----D---- C:\NVIDIA
2015-04-17 10:04:35 ----D---- C:\ProgramData\SlimWare Utilities, Inc
2015-04-17 10:03:51 ----D---- C:\Program Files (x86)\SlimDrivers
2015-04-17 09:21:04 ----A---- C:\Windows\ETDUninst.dll
2015-04-16 11:05:53 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2015-04-16 11:05:53 ----A---- C:\Windows\SYSWOW64\ieui.dll
2015-04-16 11:05:53 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2015-04-16 11:05:53 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2015-04-16 11:05:53 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2015-04-16 11:05:53 ----A---- C:\Windows\system32\msfeeds.dll
2015-04-16 11:05:53 ----A---- C:\Windows\system32\dxtrans.dll
2015-04-16 11:05:53 ----A---- C:\Windows\system32\dxtmsft.dll
2015-04-16 11:05:52 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2015-04-16 11:05:52 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2015-04-16 11:05:52 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2015-04-16 11:05:52 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2015-04-16 11:05:52 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2015-04-16 11:05:52 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2015-04-16 11:05:52 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2015-04-16 11:05:52 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2015-04-16 11:05:52 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2015-04-16 11:05:52 ----A---- C:\Windows\system32\mshtmlmedia.dll
2015-04-16 11:05:52 ----A---- C:\Windows\system32\mshtmled.dll
2015-04-16 11:05:52 ----A---- C:\Windows\system32\mshtml.dll
2015-04-16 11:05:52 ----A---- C:\Windows\system32\jscript9diag.dll
2015-04-16 11:05:52 ----A---- C:\Windows\system32\jscript9.dll
2015-04-16 11:05:52 ----A---- C:\Windows\system32\ieUnatt.exe
2015-04-16 11:05:52 ----A---- C:\Windows\system32\ieui.dll
2015-04-16 11:05:52 ----A---- C:\Windows\system32\iesetup.dll
2015-04-16 11:05:52 ----A---- C:\Windows\system32\iernonce.dll
2015-04-16 11:05:52 ----A---- C:\Windows\system32\ieframe.dll
2015-04-16 11:05:52 ----A---- C:\Windows\system32\ieetwproxystub.dll
2015-04-16 11:05:52 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2015-04-16 11:05:52 ----A---- C:\Windows\system32\ieetwcollector.exe
2015-04-16 11:05:52 ----A---- C:\Windows\system32\ie4uinit.exe
2015-04-16 11:05:51 ----A---- C:\Windows\SYSWOW64\wininet.dll
2015-04-16 11:05:51 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2015-04-16 11:05:51 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2015-04-16 11:05:51 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2015-04-16 11:05:51 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2015-04-16 11:05:51 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2015-04-16 11:05:51 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2015-04-16 11:05:51 ----A---- C:\Windows\system32\wininet.dll
2015-04-16 11:05:51 ----A---- C:\Windows\system32\vbscript.dll
2015-04-16 11:05:51 ----A---- C:\Windows\system32\jsproxy.dll
2015-04-16 11:05:51 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-04-16 11:05:51 ----A---- C:\Windows\system32\iedkcs32.dll
2015-04-16 11:05:51 ----A---- C:\Windows\system32\ieapfltr.dll
2015-04-16 11:05:50 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2015-04-16 11:05:50 ----A---- C:\Windows\SYSWOW64\msrating.dll
2015-04-16 11:05:50 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2015-04-16 11:05:50 ----A---- C:\Windows\system32\urlmon.dll
2015-04-16 11:05:50 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2015-04-16 11:05:50 ----A---- C:\Windows\system32\msrating.dll
2015-04-16 11:05:50 ----A---- C:\Windows\system32\MshtmlDac.dll
2015-04-16 11:05:50 ----A---- C:\Windows\system32\iertutil.dll
2015-04-16 11:02:18 ----A---- C:\Windows\SYSWOW64\msxml3r.dll
2015-04-16 11:02:18 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2015-04-16 11:02:18 ----A---- C:\Windows\system32\msxml3r.dll
2015-04-16 11:02:18 ----A---- C:\Windows\system32\msxml3.dll
2015-04-16 11:02:05 ----A---- C:\Windows\SYSWOW64\clfsw32.dll
2015-04-16 11:02:05 ----A---- C:\Windows\system32\clfsw32.dll
2015-04-16 11:02:05 ----A---- C:\Windows\system32\clfs.sys
2015-04-16 11:00:35 ----A---- C:\Windows\system32\sspisrv.dll
2015-04-16 11:00:35 ----A---- C:\Windows\system32\sspicli.dll
2015-04-16 11:00:35 ----A---- C:\Windows\system32\secur32.dll
2015-04-16 11:00:35 ----A---- C:\Windows\system32\msobjs.dll
2015-04-16 11:00:35 ----A---- C:\Windows\system32\msaudite.dll
2015-04-16 11:00:35 ----A---- C:\Windows\system32\lsass.exe
2015-04-16 11:00:35 ----A---- C:\Windows\system32\lsasrv.dll
2015-04-16 11:00:35 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2015-04-16 11:00:35 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2015-04-16 11:00:35 ----A---- C:\Windows\system32\auditpol.exe
2015-04-16 11:00:35 ----A---- C:\Windows\system32\adtschema.dll
2015-04-16 11:00:32 ----A---- C:\Windows\SYSWOW64\msobjs.dll
2015-04-16 11:00:32 ----A---- C:\Windows\SYSWOW64\msaudite.dll
2015-04-16 11:00:32 ----A---- C:\Windows\SYSWOW64\auditpol.exe
2015-04-16 11:00:32 ----A---- C:\Windows\SYSWOW64\adtschema.dll
2015-04-16 11:00:31 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2015-04-16 11:00:31 ----A---- C:\Windows\SYSWOW64\srclient.dll
2015-04-16 11:00:31 ----A---- C:\Windows\SYSWOW64\secur32.dll
2015-04-16 11:00:31 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2015-04-16 11:00:31 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2015-04-16 11:00:31 ----A---- C:\Windows\system32\wow64win.dll
2015-04-16 11:00:31 ----A---- C:\Windows\system32\wow64cpu.dll
2015-04-16 11:00:31 ----A---- C:\Windows\system32\wow64.dll
2015-04-16 11:00:31 ----A---- C:\Windows\system32\winsrv.dll
2015-04-16 11:00:31 ----A---- C:\Windows\system32\wdigest.dll
2015-04-16 11:00:31 ----A---- C:\Windows\system32\TSpkg.dll
2015-04-16 11:00:31 ----A---- C:\Windows\system32\srcore.dll
2015-04-16 11:00:31 ----A---- C:\Windows\system32\srclient.dll
2015-04-16 11:00:31 ----A---- C:\Windows\system32\smss.exe
2015-04-16 11:00:31 ----A---- C:\Windows\system32\schannel.dll
2015-04-16 11:00:31 ----A---- C:\Windows\system32\rstrui.exe
2015-04-16 11:00:31 ----A---- C:\Windows\system32\ntvdm64.dll
2015-04-16 11:00:31 ----A---- C:\Windows\system32\ntoskrnl.exe
2015-04-16 11:00:31 ----A---- C:\Windows\system32\ntdll.dll
2015-04-16 11:00:31 ----A---- C:\Windows\system32\msv1_0.dll
2015-04-16 11:00:31 ----A---- C:\Windows\system32\KernelBase.dll
2015-04-16 11:00:31 ----A---- C:\Windows\system32\kernel32.dll
2015-04-16 11:00:31 ----A---- C:\Windows\system32\kerberos.dll
2015-04-16 11:00:31 ----A---- C:\Windows\system32\csrsrv.dll
2015-04-16 11:00:31 ----A---- C:\Windows\system32\credssp.dll
2015-04-16 11:00:31 ----A---- C:\Windows\system32\conhost.exe
2015-04-16 11:00:31 ----A---- C:\Windows\system32\apisetschema.dll
2015-04-16 11:00:30 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2015-04-16 11:00:30 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2015-04-16 11:00:30 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2015-04-16 11:00:30 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2015-04-16 11:00:30 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2015-04-16 11:00:30 ----A---- C:\Windows\SYSWOW64\credssp.dll
2015-04-16 11:00:30 ----A---- C:\Windows\system32\ncrypt.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2015-04-16 11:00:29 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2015-04-16 11:00:29 ----A---- C:\Windows\SYSWOW64\wow32.dll
2015-04-16 11:00:29 ----A---- C:\Windows\SYSWOW64\user.exe
2015-04-16 11:00:29 ----A---- C:\Windows\SYSWOW64\schannel.dll
2015-04-16 11:00:29 ----A---- C:\Windows\SYSWOW64\setup16.exe
2015-04-16 11:00:29 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2015-04-16 11:00:29 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2015-04-16 11:00:29 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2015-04-16 11:00:29 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2015-04-16 11:00:29 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2015-04-16 11:00:29 ----A---- C:\Windows\SYSWOW64\instnm.exe
2015-04-16 11:00:28 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2015-04-16 11:00:28 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2015-04-16 11:00:28 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2015-04-16 11:00:28 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2015-04-16 11:00:28 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2015-04-16 11:00:28 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2015-04-16 11:00:28 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2015-04-16 11:00:28 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-04-16 11:00:28 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2015-04-16 11:00:28 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2015-04-16 11:00:28 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2015-04-16 11:00:28 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2015-04-16 11:00:28 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2015-04-16 11:00:28 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2015-04-16 11:00:28 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2015-04-16 11:00:28 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2015-04-16 11:00:28 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2015-04-16 11:00:28 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2015-04-16 11:00:28 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2015-04-16 11:00:28 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2015-04-16 11:00:28 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2015-04-16 11:00:28 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2015-04-16 11:00:28 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2015-04-16 11:00:28 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2015-04-16 11:00:28 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2015-04-16 11:00:28 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2015-04-16 10:58:55 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2015-04-16 10:58:55 ----A---- C:\Windows\system32\gdi32.dll
2015-04-16 10:58:45 ----A---- C:\Windows\system32\drivers\http.sys
2015-04-16 10:58:28 ----A---- C:\Windows\system32\wups2.dll
2015-04-16 10:58:27 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2015-04-16 10:58:27 ----A---- C:\Windows\SYSWOW64\wups.dll
2015-04-16 10:58:27 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2015-04-16 10:58:27 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2015-04-16 10:58:27 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2015-04-16 10:58:27 ----A---- C:\Windows\system32\wuwebv.dll
2015-04-16 10:58:27 ----A---- C:\Windows\system32\wups.dll
2015-04-16 10:58:27 ----A---- C:\Windows\system32\wudriver.dll
2015-04-16 10:58:27 ----A---- C:\Windows\system32\wucltux.dll
2015-04-16 10:58:27 ----A---- C:\Windows\system32\wuaueng.dll
2015-04-16 10:58:27 ----A---- C:\Windows\system32\wuauclt.exe
2015-04-16 10:58:27 ----A---- C:\Windows\system32\wuapp.exe
2015-04-16 10:58:27 ----A---- C:\Windows\system32\wuapi.dll
2015-04-16 10:58:27 ----A---- C:\Windows\system32\wu.upgrade.ps.dll
2015-04-16 10:58:27 ----A---- C:\Windows\system32\WinSetupUI.dll
2015-04-05 07:57:17 ----SD---- C:\Windows\SYSWOW64\GWX
2015-04-05 07:57:17 ----SD---- C:\Windows\system32\GWX
2015-03-21 17:44:20 ----D---- C:\Program Files (x86)\Mozilla Firefox
2015-03-11 01:02:25 ----A---- C:\Windows\SYSWOW64\atmfd.dll
2015-03-11 01:02:25 ----A---- C:\Windows\system32\lpk.dll
2015-03-11 01:02:25 ----A---- C:\Windows\system32\atmlib.dll
2015-03-11 01:02:25 ----A---- C:\Windows\system32\atmfd.dll
2015-03-11 01:02:24 ----A---- C:\Windows\SYSWOW64\lpk.dll
2015-03-11 01:02:24 ----A---- C:\Windows\SYSWOW64\fontsub.dll
2015-03-11 01:02:24 ----A---- C:\Windows\SYSWOW64\dciman32.dll
2015-03-11 01:02:24 ----A---- C:\Windows\SYSWOW64\atmlib.dll
2015-03-11 01:02:24 ----A---- C:\Windows\system32\fontsub.dll
2015-03-11 01:02:24 ----A---- C:\Windows\system32\dciman32.dll
2015-03-11 01:02:07 ----A---- C:\Windows\system32\blackbox.dll
2015-03-11 01:02:06 ----A---- C:\Windows\SYSWOW64\blackbox.dll
2015-03-11 01:02:06 ----A---- C:\Windows\system32\drmv2clt.dll
2015-03-11 01:02:05 ----A---- C:\Windows\SYSWOW64\drmv2clt.dll
2015-03-11 01:02:04 ----A---- C:\Windows\system32\wmp.dll
2015-03-11 01:02:03 ----A---- C:\Windows\system32\wmdrmsdk.dll
2015-03-11 01:02:02 ----A---- C:\Windows\SYSWOW64\wmdrmsdk.dll
2015-03-11 01:02:01 ----A---- C:\Windows\SYSWOW64\mf.dll
2015-03-11 01:02:00 ----A---- C:\Windows\SYSWOW64\wmp.dll
2015-03-11 01:01:58 ----A---- C:\Windows\system32\drmmgrtn.dll
2015-03-11 01:01:58 ----A---- C:\Windows\system32\crypt32.dll
2015-03-11 01:01:57 ----A---- C:\Windows\SYSWOW64\drmmgrtn.dll
2015-03-11 01:01:57 ----A---- C:\Windows\SYSWOW64\crypt32.dll
2015-03-11 01:01:57 ----A---- C:\Windows\system32\drivers\PEAuth.sys
2015-03-11 01:01:56 ----A---- C:\Windows\system32\quartz.dll
2015-03-11 01:01:56 ----A---- C:\Windows\system32\evr.dll
2015-03-11 01:01:54 ----A---- C:\Windows\system32\cryptui.dll
2015-03-11 01:01:53 ----A---- C:\Windows\SYSWOW64\evr.dll
2015-03-11 01:01:53 ----A---- C:\Windows\system32\mfplat.dll
2015-03-11 01:01:52 ----A---- C:\Windows\SYSWOW64\quartz.dll
2015-03-11 01:01:52 ----A---- C:\Windows\system32\winresume.exe
2015-03-11 01:01:51 ----A---- C:\Windows\SYSWOW64\cryptui.dll
2015-03-11 01:01:51 ----A---- C:\Windows\system32\pcasvc.dll
2015-03-11 01:01:50 ----A---- C:\Windows\SYSWOW64\mfplat.dll
2015-03-11 01:01:50 ----A---- C:\Windows\system32\drivers\mountmgr.sys
2015-03-11 01:01:49 ----A---- C:\Windows\SYSWOW64\cryptsp.dll
2015-03-11 01:01:49 ----A---- C:\Windows\system32\cryptsp.dll
2015-03-11 01:01:48 ----A---- C:\Windows\system32\msscp.dll
2015-03-11 01:01:48 ----A---- C:\Windows\system32\mf.dll
2015-03-11 01:01:46 ----A---- C:\Windows\system32\winload.exe
2015-03-11 01:01:46 ----A---- C:\Windows\system32\msnetobj.dll
2015-03-11 01:01:45 ----A---- C:\Windows\SYSWOW64\wintrust.dll
2015-03-11 01:01:45 ----A---- C:\Windows\SYSWOW64\qdvd.dll
2015-03-11 01:01:45 ----A---- C:\Windows\SYSWOW64\msscp.dll
2015-03-11 01:01:45 ----A---- C:\Windows\system32\wintrust.dll
2015-03-11 01:01:45 ----A---- C:\Windows\system32\cryptnet.dll
2015-03-11 01:01:45 ----A---- C:\Windows\system32\ci.dll
2015-03-11 01:01:45 ----A---- C:\Windows\system32\audiosrv.dll
2015-03-11 01:01:45 ----A---- C:\Windows\system32\appidsvc.dll
2015-03-11 01:01:44 ----A---- C:\Windows\SYSWOW64\cryptnet.dll
2015-03-11 01:01:44 ----A---- C:\Windows\system32\drivers\appid.sys
2015-03-11 01:01:43 ----A---- C:\Windows\system32\audiodg.exe
2015-03-11 01:01:42 ----A---- C:\Windows\SYSWOW64\msnetobj.dll
2015-03-11 01:01:42 ----A---- C:\Windows\SYSWOW64\cryptsvc.dll
2015-03-11 01:01:42 ----A---- C:\Windows\system32\AudioSes.dll
2015-03-11 01:01:42 ----A---- C:\Windows\system32\AUDIOKSE.dll
2015-03-11 01:01:41 ----A---- C:\Windows\system32\qdvd.dll
2015-03-11 01:01:41 ----A---- C:\Windows\system32\cryptsvc.dll
2015-03-11 01:01:39 ----A---- C:\Windows\SYSWOW64\AudioEng.dll
2015-03-11 01:01:39 ----A---- C:\Windows\system32\rrinstaller.exe
2015-03-11 01:01:39 ----A---- C:\Windows\system32\pcadm.dll
2015-03-11 01:01:39 ----A---- C:\Windows\system32\AudioEng.dll
2015-03-11 01:01:37 ----A---- C:\Windows\SYSWOW64\rrinstaller.exe
2015-03-11 01:01:37 ----A---- C:\Windows\SYSWOW64\AUDIOKSE.dll
2015-03-11 01:01:37 ----A---- C:\Windows\system32\appidpolicyconverter.exe
2015-03-11 01:01:36 ----A---- C:\Windows\SYSWOW64\mfps.dll
2015-03-11 01:01:36 ----A---- C:\Windows\SYSWOW64\AudioSes.dll
2015-03-11 01:01:36 ----A---- C:\Windows\SYSWOW64\appidapi.dll
2015-03-11 01:01:36 ----A---- C:\Windows\system32\pcawrk.exe
2015-03-11 01:01:36 ----A---- C:\Windows\system32\pcalua.exe
2015-03-11 01:01:36 ----A---- C:\Windows\system32\msmmsp.dll
2015-03-11 01:01:36 ----A---- C:\Windows\system32\mfps.dll
2015-03-11 01:01:36 ----A---- C:\Windows\system32\mfpmp.exe
2015-03-11 01:01:36 ----A---- C:\Windows\system32\appidapi.dll
2015-03-11 01:01:35 ----A---- C:\Windows\SYSWOW64\mfpmp.exe
2015-03-11 01:01:35 ----A---- C:\Windows\system32\setbcdlocale.dll
2015-03-11 01:01:35 ----A---- C:\Windows\system32\EncDump.dll
2015-03-11 01:01:35 ----A---- C:\Windows\system32\appidcertstorecheck.exe
2015-03-11 01:01:32 ----A---- C:\Windows\system32\spwmp.dll
2015-03-11 01:01:31 ----A---- C:\Windows\SYSWOW64\spwmp.dll
2015-03-11 01:01:31 ----A---- C:\Windows\SYSWOW64\dxmasf.dll
2015-03-11 01:01:31 ----A---- C:\Windows\system32\dxmasf.dll
2015-03-11 01:01:30 ----A---- C:\Windows\system32\pcaevts.dll
2015-03-11 01:01:29 ----A---- C:\Windows\SYSWOW64\wmploc.DLL
2015-03-11 01:01:29 ----A---- C:\Windows\system32\wmploc.DLL
2015-03-11 01:01:27 ----A---- C:\Windows\SYSWOW64\mferror.dll
2015-03-11 01:01:26 ----A---- C:\Windows\system32\mferror.dll
2015-03-11 01:01:08 ----A---- C:\Windows\system32\rdpudd.dll
2015-03-11 01:01:08 ----A---- C:\Windows\system32\RdpGroupPolicyExtension.dll
2015-03-11 01:01:08 ----A---- C:\Windows\system32\rdpcorets.dll
2015-03-11 01:00:38 ----A---- C:\Windows\system32\ubpm.dll
2015-03-11 01:00:37 ----A---- C:\Windows\SYSWOW64\ubpm.dll
2015-03-11 01:00:37 ----A---- C:\Windows\SYSWOW64\msctf.dll
2015-03-11 01:00:37 ----A---- C:\Windows\system32\msctf.dll
2015-03-11 01:00:32 ----A---- C:\Windows\system32\drivers\cng.sys
2015-03-11 01:00:16 ----A---- C:\Windows\system32\shell32.dll
2015-03-11 01:00:14 ----A---- C:\Windows\SYSWOW64\shell32.dll
2015-03-11 01:00:11 ----A---- C:\Windows\system32\WindowsCodecs.dll
2015-03-11 01:00:10 ----A---- C:\Windows\SYSWOW64\WindowsCodecs.dll
2015-03-11 01:00:07 ----A---- C:\Windows\system32\win32k.sys
2015-03-11 00:57:55 ----A---- C:\Windows\system32\WMPhoto.dll
2015-03-11 00:57:54 ----A---- C:\Windows\SYSWOW64\WMPhoto.dll
2015-03-10 00:27:47 ----RD---- C:\Program Files (x86)\Skype
2015-03-07 10:14:28 ----D---- C:\Users\Ľudka\AppData\Roaming\K9AMW
2015-02-20 21:13:22 ----A---- C:\Windows\system32\SmartDefragBootTime.exe
2015-02-20 21:13:17 ----A---- C:\Windows\system32\IObitSmartDefragExtension.dll
2015-02-19 22:35:29 ----A---- C:\Windows\wininit.ini
2015-02-17 17:04:46 ----A---- C:\Windows\SYSWOW64\FM20.DLL
2015-02-17 08:27:43 ----A---- C:\Windows\SYSWOW64\wdi.dll
2015-02-17 08:27:43 ----A---- C:\Windows\system32\wdi.dll
2015-02-17 08:27:43 ----A---- C:\Windows\system32\powertracker.dll
2015-02-17 08:27:43 ----A---- C:\Windows\system32\perftrack.dll
2015-02-11 14:13:38 ----A---- C:\Windows\system32\aitstatic.exe
2015-02-11 14:10:40 ----A---- C:\Windows\SYSWOW64\oleaut32.dll
2015-02-11 14:10:40 ----A---- C:\Windows\system32\oleaut32.dll
2015-02-11 14:10:16 ----A---- C:\Windows\system32\scesrv.dll
2015-02-11 14:10:15 ----A---- C:\Windows\SYSWOW64\scesrv.dll
2015-02-07 11:22:58 ----D---- C:\ProgramData\PopCap Games
2015-02-04 12:23:14 ----A---- C:\Windows\SYSWOW64\msvcr120_clr0400.dll
2015-02-04 12:13:22 ----A---- C:\Windows\system32\msvcr120_clr0400.dll

======List of files/folders modified in the last 3 months======

2015-04-24 22:32:05 ----D---- C:\Windows\Temp
2015-04-24 22:30:25 ----D---- C:\Windows\system32\config
2015-04-24 22:29:52 ----A---- C:\Windows\SYSWOW64\log.txt
2015-04-24 21:14:15 ----D---- C:\Windows\System32
2015-04-24 20:43:08 ----SHD---- C:\System Volume Information
2015-04-24 20:25:57 ----D---- C:\Windows\system32\NDF
2015-04-24 20:17:00 ----RD---- C:\Program Files
2015-04-24 20:15:29 ----D---- C:\Windows\inf
2015-04-24 20:15:29 ----A---- C:\Windows\system32\PerfStringBackup.INI
2015-04-24 16:31:57 ----D---- C:\Users\Ľudka\AppData\Roaming\Intelli-studio
2015-04-24 16:28:13 ----D---- C:\Windows
2015-04-23 08:31:02 ----D---- C:\Windows\system32\drivers
2015-04-23 08:29:44 ----D---- C:\Windows\system32\Tasks
2015-04-23 08:29:40 ----SHD---- C:\Windows\Installer
2015-04-23 08:29:39 ----D---- C:\Windows\Tasks
2015-04-23 08:23:08 ----D---- C:\ProgramData\Atheros
2015-04-23 08:23:03 ----D---- C:\Windows\system32\DriverStore
2015-04-23 08:22:56 ----RD---- C:\Program Files (x86)
2015-04-21 22:19:39 ----D---- C:\Windows\AppCompat
2015-04-20 22:49:11 ----D---- C:\Windows\winsxs
2015-04-19 23:54:54 ----SD---- C:\Windows\system32\CompatTel
2015-04-19 23:54:54 ----D---- C:\Windows\system32\appraiser
2015-04-19 23:54:54 ----D---- C:\Windows\AppPatch
2015-04-19 23:54:53 ----D---- C:\Windows\system32\MRT
2015-04-19 23:50:12 ----D---- C:\Windows\debug
2015-04-19 23:50:08 ----A---- C:\Windows\system32\MRT.exe
2015-04-19 21:29:27 ----D---- C:\ProgramData\Microsoft Help
2015-04-17 15:16:15 ----D---- C:\Windows\SysWOW64
2015-04-17 15:16:12 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2015-04-17 15:03:56 ----D---- C:\Windows\system32\catroot2
2015-04-17 14:59:31 ----D---- C:\Windows\system32\wfp
2015-04-17 14:59:29 ----D---- C:\Windows\system32\wbem
2015-04-17 14:58:39 ----D---- C:\Windows\SYSWOW64\RTCOM
2015-04-17 14:58:34 ----D---- C:\Windows\security
2015-04-17 14:58:31 ----HD---- C:\Program Files (x86)\Temp
2015-04-17 14:58:31 ----D---- C:\Program Files\Realtek
2015-04-17 14:58:27 ----D---- C:\Windows\registration
2015-04-17 14:57:44 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2015-04-17 14:37:07 ----D---- C:\Windows\system32\catroot
2015-04-17 14:15:38 ----D---- C:\Windows\system32\CodeIntegrity
2015-04-17 14:14:05 ----D---- C:\Program Files (x86)\Realtek
2015-04-17 11:51:58 ----D---- C:\Windows\Logs
2015-04-17 10:19:31 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2015-04-17 10:18:14 ----D---- C:\Program Files\NVIDIA Corporation
2015-04-17 10:18:12 ----D---- C:\ProgramData\NVIDIA
2015-04-17 10:04:35 ----HD---- C:\ProgramData
2015-04-17 09:50:21 ----D---- C:\Users\Ľudka\AppData\Roaming\Audacity
2015-04-17 09:31:43 ----D---- C:\Program Files (x86)\Common Files
2015-04-17 09:26:21 ----D---- C:\Windows\Prefetch
2015-04-17 09:20:59 ----D---- C:\Program Files (x86)\WildTangent Games
2015-04-17 09:13:12 ----SD---- C:\ProgramData\Microsoft
2015-04-17 09:13:12 ----D---- C:\Program Files (x86)\Microsoft
2015-04-17 08:20:29 ----D---- C:\Windows\Microsoft.NET
2015-04-17 08:19:50 ----RSD---- C:\Windows\assembly
2015-04-17 07:35:34 ----D---- C:\Windows\SYSWOW64\en-US
2015-04-17 07:35:34 ----D---- C:\Program Files\Internet Explorer
2015-04-17 07:35:32 ----D---- C:\Windows\system32\en-US
2015-04-17 07:35:30 ----D---- C:\Program Files (x86)\Internet Explorer
2015-04-17 07:35:16 ----D---- C:\Windows\SYSWOW64\sk-SK
2015-04-17 07:35:15 ----D---- C:\Windows\system32\sk-SK
2015-04-17 07:35:15 ----D---- C:\Windows\PolicyDefinitions
2015-04-16 20:11:01 ----D---- C:\Users\Ľudka\AppData\Roaming\ProductData
2015-04-16 20:11:01 ----D---- C:\Users\Ľudka\AppData\Roaming\IObit
2015-04-16 20:11:00 ----D---- C:\ProgramData\ProductData
2015-04-16 20:06:35 ----D---- C:\Windows\system32\LogFiles
2015-04-16 11:04:11 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2015-04-09 02:58:18 ----A---- C:\Windows\SYSWOW64\OpenCL.dll
2015-04-09 02:58:18 ----A---- C:\Windows\SYSWOW64\nvumdshim.dll
2015-04-09 02:58:18 ----A---- C:\Windows\SYSWOW64\nvspcap.dll
2015-04-09 02:58:18 ----A---- C:\Windows\SYSWOW64\nvinit.dll
2015-04-09 02:58:18 ----A---- C:\Windows\system32\OpenCL.dll
2015-04-09 02:58:18 ----A---- C:\Windows\system32\nvumdshimx.dll
2015-04-09 02:58:18 ----A---- C:\Windows\system32\nvspcap64.dll
2015-04-09 02:58:18 ----A---- C:\Windows\system32\nvinitx.dll
2015-04-09 02:58:18 ----A---- C:\Windows\system32\nvaudcap64v.dll
2015-04-09 02:58:18 ----A---- C:\Windows\system32\nvapi64.dll
2015-04-08 23:30:18 ----A---- C:\Windows\system32\nvsvc64.dll
2015-04-08 23:30:18 ----A---- C:\Windows\system32\nvcpl.dll
2015-04-08 23:30:14 ----A---- C:\Windows\system32\nvvsvc.exe
2015-04-08 23:30:14 ----A---- C:\Windows\system32\nvsvcr.dll
2015-04-08 23:30:14 ----A---- C:\Windows\system32\nvshext.dll
2015-04-08 23:30:14 ----A---- C:\Windows\system32\nv3dappshextr.dll
2015-04-08 23:30:14 ----A---- C:\Windows\system32\nv3dappshext.dll
2015-04-08 23:30:13 ----A---- C:\Windows\system32\nvmctray.dll
2015-04-03 13:12:45 ----D---- C:\Windows\SoftwareDistribution
2015-03-24 14:22:18 ----D---- C:\Windows\system32\wdi
2015-03-23 23:37:15 ----D---- C:\Windows\rescache
2015-03-21 03:24:18 ----D---- C:\Users\Ľudka\AppData\Roaming\vlc
2015-03-11 12:47:29 ----D---- C:\Windows\SYSWOW64\Dism
2015-03-11 12:47:29 ----D---- C:\Program Files\Windows Media Player
2015-03-11 12:47:29 ----D---- C:\Program Files (x86)\Windows Media Player
2015-03-11 12:47:28 ----D---- C:\Windows\system32\Dism
2015-03-11 12:47:26 ----D---- C:\Windows\system32\Boot
2015-03-11 12:28:52 ----D---- C:\Users\Ľudka\AppData\Roaming\Skype
2015-03-10 00:27:54 ----D---- C:\ProgramData\Skype
2015-03-07 10:19:43 ----D---- C:\Users\Ľudka\AppData\Roaming\Opera Software
2015-03-03 15:17:35 ----N---- C:\Windows\system32\MpSigStub.exe
2015-02-20 21:13:07 ----D---- C:\ProgramData\IObit
2015-02-17 15:38:24 ----D---- C:\Windows\tracing
2015-02-13 00:31:29 ----D---- C:\Program Files\Microsoft Security Client
2015-02-13 00:31:29 ----D---- C:\Program Files (x86)\Microsoft Security Client

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 avc3;avc3; C:\Windows\system32\DRIVERS\avc3.sys [2013-04-17 718840]
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\drivers\iaStor.sys [2010-04-13 540696]
R0 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2014-11-15 274696]
R0 nvpciflt;nvpciflt; C:\Windows\system32\DRIVERS\nvpciflt.sys [2015-04-09 31376]
R0 PxHlpa64;PxHlpa64; C:\Windows\System32\Drivers\PxHlpa64.sys [2011-11-03 56208]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R0 trufos;trufos; C:\Windows\system32\DRIVERS\trufos.sys [2013-05-28 382536]
R1 gzflt;gzflt; C:\Windows\system32\DRIVERS\gzflt.sys [2013-04-22 148696]
R1 HWiNFO32;HWiNFO32/64 Kernel Driver; \??\C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS [2015-01-21 26528]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2014-11-15 124560]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athrx.sys [2010-05-11 2229608]
R3 HECIx64;Intel(R) Management Engine Interface; C:\Windows\system32\drivers\HECIx64.sys [2009-09-17 56344]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2000-01-01 12312928]
R3 Impcd;Impcd; C:\Windows\system32\DRIVERS\Impcd.sys [2010-02-27 158976]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2000-01-01 3707864]
R3 IntcDAud;Intel(R) Zvuk pre obrazovky; C:\Windows\system32\DRIVERS\IntcDAud.sys [2000-01-01 317440]
R3 k57nd60a;Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\k57nd60a.sys [2011-05-09 425000]
R3 NTIDrvr;NTIDrvr; \??\C:\Windows\system32\drivers\NTIDrvr.sys [2011-09-20 18432]
R3 NvStreamKms;NvStreamKms; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2015-04-09 19600]
R3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\Windows\system32\drivers\nvvad64v.sys [2015-04-09 38032]
R3 UBHelper;UBHelper; \??\C:\Windows\system32\drivers\UBHelper.sys [2011-09-20 17408]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S1 bdfwfpf;bdfwfpf; C:\Windows\system32\drivers\bdfwfpf.sys []
S3 avckf;avckf; C:\Windows\system32\DRIVERS\avckf.sys [2013-04-17 593144]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2014-09-23 19456]
S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader; C:\Windows\System32\Drivers\RtsUStor.sys [2010-09-22 243712]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2014-09-23 57856]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2014-09-23 30208]
S3 usbscan;USB Scanner Driver; C:\Windows\system32\drivers\usbscan.sys [2013-07-03 42496]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2014-05-08 65432]
R2 DsiWMIService;Dritek WMI Service; C:\Program Files (x86)\Launch Manager\dsiwmis.exe [2010-08-10 321104]
R2 ePowerSvc;Acer ePower Service; C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe [2011-01-06 867712]
R2 GfExperienceService;NVIDIA GeForce Experience Service; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [2015-04-09 1152144]
R2 GREGService;GREGService; C:\Program Files (x86)\Acer\Registration\GREGsvc.exe [2011-05-30 36456]
R2 gzserv;Bitdefender Antivirus Free Edition; C:\Program Files\Bitdefender\Antivirus Free Edition\gzserv.exe [2013-10-23 69368]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2010-04-13 13336]
R2 Live Updater Service;Live Updater Service; C:\Program Files\Acer\Acer Updater\UpdaterService.exe [2011-04-22 244624]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2010-03-18 268824]
R2 MsMpSvc;Microsoft Antimalware Service; c:\Program Files\Microsoft Security Client\MsMpEng.exe [2015-01-30 23784]
R2 NTI IScheduleSvc;NTI IScheduleSvc; C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\IScheduleSvc.exe [2011-06-17 255744]
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2015-04-09 1878672]
R2 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [2015-04-09 22995600]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2015-04-08 936264]
R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2000-01-01 1914656]
R2 UNS;Intel(R) Management & Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2010-03-18 2320920]
R3 NisSrv;@c:\Program Files\Microsoft Security Client\MpAsDesc.dll,-243; c:\Program Files\Microsoft Security Client\NisSrv.exe [2015-01-30 366512]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2014-04-12 103608]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2014-04-11 124088]
S2 LiveUpdateSvc;LiveUpdate; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe []
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2015-01-02 315488]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-04-17 268464]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2011-11-25 655624]
S3 GamesAppIntegrationService;GamesAppIntegrationService; C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe [2015-04-17 373312]
S3 GamesAppService;GamesAppService; C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe [2015-03-02 265808]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2015-04-16 114688]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 SwitchBoard;Adobe SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2012-09-13 1255736]
S3 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2011-03-29 2292096]
S4 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2014-04-11 50864]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 wlcrasvc;Windows Live Mesh remote connections service; C:\Program Files\Windows Live\Mesh\wlcrasvc.exe [2010-09-23 57184]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119677
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Spomalený notebook, log z RSIT

#8 Příspěvek od Rudy »

Smazáno. Znovu spusťte OTM a klikněte na >CleanUp!<. OTM po sobě uklidí. Nakonec restartujte PC. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

gromo
Návštěvník
Návštěvník
Příspěvky: 54
Registrován: 28 bře 2010 16:45

Re: Spomalený notebook, log z RSIT

#9 Příspěvek od gromo »

Bezo zmeny. Štart notebooku aj aplikácií je stále pomalý. Existuje ešte nejaké riešenie ako formát disku? Sestra má v počítači kopu dokumentov a záloha bude nadlho.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119677
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Spomalený notebook, log z RSIT

#10 Příspěvek od Rudy »

Startmenu>přík. řádek>(napsat) msconfig>Enter. Na záložkách "Po spuštění" a "Služby" odstraňte zatržítka u všech položek, které nemusí automaticky startovat. Tj. u takových, které lze v případě potřeby spustit ručně.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

gromo
Návštěvník
Návštěvník
Příspěvky: 54
Registrován: 28 bře 2010 16:45

Re: Spomalený notebook, log z RSIT

#11 Příspěvek od gromo »

Deaktivované služby aj pri spustení, stále žiadna zmena.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119677
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Spomalený notebook, log z RSIT

#12 Příspěvek od Rudy »

Co jste instaloval těsně před tím, než se problém objevil?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

gromo
Návštěvník
Návštěvník
Příspěvky: 54
Registrován: 28 bře 2010 16:45

Re: Spomalený notebook, log z RSIT

#13 Příspěvek od gromo »

Ako som spomínal, je to sestrin PC. V tomto roku inštalovala len programy na úpravu videí. Jediný program, ktorý by podľa mňa časovo sedel so začatím problému, je Skype 7.2. Ale jej priateľ informatik jej niekedy koncom minulého roka nainštaloval program Advanced Systemcare 7. Ten som hneď odinštaloval, ale myslím si, že súčasný stav je dôsledkom "údržby", ktorú vykonal spomínaný program. Sám som ten notebook udržiaval v normálnom chode cca 2 roky. Dosť ma štve, že nejaký program s jeho "čistením zbytočností" a podobnými akciami takto rozhasí PC. Lebo teraz bude asi nasledovať dlhá záloha všetkých údajov.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119677
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Spomalený notebook, log z RSIT

#14 Příspěvek od Rudy »

Tak ASC to rozhasit mohl. Zkuste ještě obnovu systému k datu, kdy korektně fungoval, příp. utilitu FixIt: http://www.stahuj.centrum.cz/utility_a_ ... it-center/ .
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

gromo
Návštěvník
Návštěvník
Příspěvky: 54
Registrován: 28 bře 2010 16:45

Re: Spomalený notebook, log z RSIT

#15 Příspěvek od gromo »

Body obnovenia sú len z obdobia, keď sa už problém vyskytoval. Po spustení Fixu vyskočí počas získavania informácii o PC hláška o nemožnosti stiahnuť troubleshootery a že treba čeknúť net. Skúšal som preinštalovať Net Framework, nepomohlo, aplikácia sa dá jedine vypnúť. Takže som v koncoch. :roll:

Zamčeno