Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Extrémne vyťaženie procesora procesmi

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
rulerkelso
Návštěvník
Návštěvník
Příspěvky: 50
Registrován: 19 čer 2015 07:24

Re: Extrémne vyťaženie procesora procesmi

#16 Příspěvek od rulerkelso »

Tak opat mi po obnoveni vyhodilo error: system restore did not completed succesfully. Your computer,s files and settings were not changed. An unspecified error during system restore (0x800700b7) poradite co to znamena?

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119677
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Extrémne vyťaženie procesora procesmi

#17 Příspěvek od Rudy »

Já nemyslím obnovu, ale opravu z instalačky, kterou musíte někde na disku mít. Systém je poškozen.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

rulerkelso
Návštěvník
Návštěvník
Příspěvky: 50
Registrován: 19 čer 2015 07:24

Re: Extrémne vyťaženie procesora procesmi

#18 Příspěvek od rulerkelso »

Ďakujem za rady, systém sa mi napokon podarilo rozchodiť, aj sa zdá, všetky súbory sú na svojom mieste. Vrátilo však spat niektoré ovládače a registre.
Teraz ostáva už len vyriešiť pôvodný problém - notebook sa mi zda ešte pomalší ako predtým (vyťaženie procesora neustále nad 70 percent aj pri nespustených programoch, navyše začalo vyhadzovať "slávne" Run.dll errory - 4 po sebe (obrázky v prílohe).
Přílohy
procesy.png
procesy.png (46.36 KiB) Zobrazeno 2069 x

rulerkelso
Návštěvník
Návštěvník
Příspěvky: 50
Registrován: 19 čer 2015 07:24

Re: Extrémne vyťaženie procesora procesmi

#19 Příspěvek od rulerkelso »

obrázok chybovej hlášky:
Přílohy
run dll error.png
run dll error.png (7.26 KiB) Zobrazeno 2069 x

rulerkelso
Návštěvník
Návštěvník
Příspěvky: 50
Registrován: 19 čer 2015 07:24

Re: Extrémne vyťaženie procesora procesmi

#20 Příspěvek od rulerkelso »

Eśte do tretice... tu je nový log z FRST scanu. Asi bude treba postup zopakovat? :D
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:13-06-2015
Ran by Kvetka (administrator) on RAFKOVCI on 20-06-2015 23:12:42
Running from C:\Users\Kvetka\Desktop
Loaded Profiles: Kvetka (Available Profiles: Kvetka)
Platform: Windows 8.1 (X64) OS Language: Angličtina (Spojené kráľovstvo)
Internet Explorer Version 11 (Default browser: IE)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(AMD) C:\Windows\System32\atiesrxx.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\stacsv64.exe
(Hewlett-Packard Company) C:\Windows\System32\hpservice.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(Foxit Corporation) C:\Program Files (x86)\Foxit Software\Foxit Reader\Foxit Cloud\FCUpdateService.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe
(Razer Inc.) C:\Program Files (x86)\Razer\Razer Game Booster\RzKLService.exe
(Realsil Microelectronics Inc.) C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
(Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.3.9600.17709_none_fa7932f59afc2e40\TiWorker.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
() C:\Users\Kvetka\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
() C:\Users\Kvetka\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(forum.viry.cz) C:\Users\Kvetka\Desktop\FRSTLauncher.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2916152 2012-08-28] (Synaptics Incorporated)
HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [1425408 2012-07-21] (IDT, Inc.)
HKLM\...\Run: [BCSSync] => C:\Program Files\Microsoft Office\Office14\BCSSync.exe [108144 2012-11-05] (Microsoft Corporation)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [642216 2012-08-08] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [HP Quick Launch] => C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe [580512 2012-07-09] (Hewlett-Packard Development Company, L.P.)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5227648 2015-03-30] (AVAST Software)
HKLM-x32\...\Run: [seznam-listicka-distribuce] => C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [1062472 2013-05-16] ()
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKLM\...\Policies\Explorer: [LinkResolveIgnoreLinkInfo] 0
HKLM\...\Policies\Explorer: [NoResolveSearch] 1
HKU\S-1-5-21-887007332-963718041-1005783556-1002\...\Run: [cz.seznam.software.autoupdate] => C:\Users\Kvetka\AppData\Roaming\Seznam.cz\szninstall.exe [1062472 2013-05-16] ()
HKU\S-1-5-21-887007332-963718041-1005783556-1002\...\Run: [cz.seznam.software.szndesktop] => C:\Users\Kvetka\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [103080 2015-05-26] ()
HKU\S-1-5-21-887007332-963718041-1005783556-1002\...\Run: [Steam] => C:\Program Files (x86)\Valve\Steam\Steam.exe [2888384 2015-05-15] (Valve Corporation)
HKU\S-1-5-21-887007332-963718041-1005783556-1002\...\MountPoints2: {04b669ea-22d6-11e4-beaa-28924a5a615b} - "G:\Setup.exe"
HKU\S-1-5-21-887007332-963718041-1005783556-1002\Control Panel\Desktop\\SCRNSAVE.EXE ->
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2014-12-23] (AVAST Software)
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
CHR HKU\S-1-5-21-887007332-963718041-1005783556-1002\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

ProxyServer: [S-1-5-21-887007332-963718041-1005783556-1002] => 216.189.0.235:7808
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://websearch.fastosearch.info/?pid= ... K&unqvl=55
HKU\S-1-5-21-887007332-963718041-1005783556-1002\Software\Microsoft\Internet Explorer\Main,Start Page = http://websearch.fastosearch.info/?pid= ... K&unqvl=55
HKU\S-1-5-21-887007332-963718041-1005783556-1002\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://search.findwide.com/?guid={8F7A9 ... }&serpv=22
URLSearchHook: HKLM-x32 - Default Value = {CCC7B151-1D8C-11E3-B2AD-F3EF3D58318D}
SearchScopes: HKLM-x32 -> DefaultScope {BB74DE59-BC4C-4172-9AC4-73315F71CFFE} URL = http://websearch.fastosearch.info/?l=1& ... K&unqvl=55
SearchScopes: HKLM-x32 -> {75b4241f-171e-44a3-bf44-23613b6e3e03} URL = http://search.tb.ask.com/search/GGmain. ... earchTerms}
SearchScopes: HKLM-x32 -> {BB74DE59-BC4C-4172-9AC4-73315F71CFFE} URL = http://websearch.fastosearch.info/?l=1& ... K&unqvl=55
SearchScopes: HKU\S-1-5-21-887007332-963718041-1005783556-1002 -> DefaultScope {1D961D14-FC0D-4AF6-BABF-C765EB85E5E4} URL = http://search.findwide.com/serp?guid={8 ... earchTerms}
SearchScopes: HKU\S-1-5-21-887007332-963718041-1005783556-1002 -> {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = http://www.trovi.com/Results.aspx?gd=&c ... 20TC_sp_ie
SearchScopes: HKU\S-1-5-21-887007332-963718041-1005783556-1002 -> {0DF355BC-5AC3-4237-A7EB-805FD9DE5130} URL = http://encyklopedie.seznam.cz/search?q= ... arch_13415
SearchScopes: HKU\S-1-5-21-887007332-963718041-1005783556-1002 -> {1D961D14-FC0D-4AF6-BABF-C765EB85E5E4} URL = http://search.findwide.com/serp?guid={8 ... earchTerms}
SearchScopes: HKU\S-1-5-21-887007332-963718041-1005783556-1002 -> {2D60CBB5-F0CE-4D3D-87BE-B71879121FE5} URL = http://www.zbozi.cz/?q={searchTerms}&r= ... arch_13415
SearchScopes: HKU\S-1-5-21-887007332-963718041-1005783556-1002 -> {3F337798-E27E-45CE-A7DE-9BC02FC527CA} URL = http://search.yahoo.com/search?p={searc ... type=10809
SearchScopes: HKU\S-1-5-21-887007332-963718041-1005783556-1002 -> {4F3288A1-A864-4601-A4EE-5BB762DE7215} URL = http://www.firmy.cz/?q={searchTerms}&so ... arch_13415
SearchScopes: HKU\S-1-5-21-887007332-963718041-1005783556-1002 -> {749EDC10-CE63-4D06-84BA-1470CE38BB3D} URL = http://search.seznam.cz/?q={searchTerms ... arch_13415
SearchScopes: HKU\S-1-5-21-887007332-963718041-1005783556-1002 -> {75b4241f-171e-44a3-bf44-23613b6e3e03} URL = http://search.tb.ask.com/search/GGmain. ... earchTerms}
SearchScopes: HKU\S-1-5-21-887007332-963718041-1005783556-1002 -> {7B9747A3-2653-4556-BBAB-4714BB04BD99} URL = http://www.novinky.cz/hledej?w={searchT ... arch_13415
SearchScopes: HKU\S-1-5-21-887007332-963718041-1005783556-1002 -> {7C5D5308-D427-4483-AA82-DDDE5C70C350} URL = http://www.mapy.cz/?query={searchTerms} ... arch_13415
SearchScopes: HKU\S-1-5-21-887007332-963718041-1005783556-1002 -> {A90F23B4-1C26-46A0-B5B1-82694F1EAC8E} URL = http://tv.seznam.cz/hledej?w={searchTer ... arch_13415
SearchScopes: HKU\S-1-5-21-887007332-963718041-1005783556-1002 -> {AFDBDDAA-5D3F-42EE-B79C-185A7020515B} URL =
SearchScopes: HKU\S-1-5-21-887007332-963718041-1005783556-1002 -> {BB74DE59-BC4C-4172-9AC4-73315F71CFFE} URL = http://websearch.fastosearch.info/?l=1& ... K&unqvl=55
SearchScopes: HKU\S-1-5-21-887007332-963718041-1005783556-1002 -> {E45B0933-CC59-4820-95F8-9EC31BAE93B9} URL = http://slovnik.seznam.cz/?q={searchTerm ... arch_13415
SearchScopes: HKU\S-1-5-21-887007332-963718041-1005783556-1002 -> {FF8A215F-D0E8-46FF-BDB4-E1F73B330385} URL = http://slovnik.seznam.cz/?q={searchTerm ... arch_13415
BHO: SNT -> {36707215-0602-1E6D-D5D2-5587107B2C13} -> C:\Program Files (x86)\SNT\HDKJ5.x64.dll [2014-03-09] ()
BHO: SearchNewTab -> {39425B66-DF4F-2CFA-FE63-01602B1C55B4} -> C:\Program Files (x86)\SearchNewTab\b1ds9IcrsE.x64.dll [2014-03-06] ()
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll [2014-05-26] (Oracle Corporation)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2014-12-23] (AVAST Software)
BHO: SNT -> {969B347E-DC0B-BBCF-C10B-772F1BF8AC13} -> C:\Program Files (x86)\SNT\htpoWL4rn.x64.dll [2014-03-09] ()
BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2015-05-01] (Microsoft Corporation)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll [2014-05-26] (Oracle Corporation)
BHO: wuebsave -> {FD18697C-68BC-EC5C-BD9D-CC2B5319D5A7} -> C:\Program Files (x86)\wuebsave\9ejeAe8Fz_.x64.dll [2013-03-09] ()
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2014-02-13] (Oracle Corporation)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-12-23] (AVAST Software)
BHO-x32: YoutubeAdblocker -> {A46918CA-2D50-623C-D33E-C1BF605C6E20} -> C:\Program Files (x86)\YoutubeAdblocker\TwUBsBt2QV.dll [2014-01-14] ()
BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2015-05-01] (Microsoft Corporation)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
BHO-x32: WatChIeTAdBlocKei -> {BCDDCDBE-8CE6-3413-6331-E94094F0A275} -> C:\ProgramData\WatChIeTAdBlocKei\2OMr.dll [2014-01-31] ()
BHO-x32: COuPExtension -> {CDFB3FE4-3FC2-8B6B-4E08-32FF80C74340} -> C:\ProgramData\COuPExtension\gW9JLyK5.dll [2014-03-16] ()
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2014-02-13] (Oracle Corporation)
Toolbar: HKLM - No Name - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - No File
Toolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No File
Toolbar: HKU\S-1-5-21-887007332-963718041-1005783556-1002 -> No Name - {5D140364-C004-47BA-B279-14B01336997F} - No File
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2015-05-01] (Microsoft Corporation)
Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2015-05-01] (Microsoft Corporation)
Winsock: Catalog5 07 C:\Program Files (x86)\Bonjour\mdnsNSP.dll File not found
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1

FireFox:
========
FF ProfilePath: C:\Users\Kvetka\AppData\Roaming\Mozilla\Firefox\Profiles\eb7to7jq.default
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_17_0_0_169.dll [2015-04-14] ()
FF Plugin: @java.com/DTPlugin,version=10.55.2 -> C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll [2014-05-26] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.55.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll [2014-05-26] (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.40416.0\npctrl.dll [2015-04-16] ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_17_0_0_169.dll [2015-04-14] ()
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2013-07-03] (Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2013-07-03] (Foxit Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=10.51.2 -> C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll [2014-02-13] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.51.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll [2014-02-13] (Oracle Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.40416.0\npctrl.dll [2015-04-15] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3522.0110 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-01-10] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll No File
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll No File
FF Plugin-x32: @videolan.org/vlc,version=2.1.0 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2013-09-23] (VideoLAN)
FF Extension: No Name - C:\Users\Kvetka\AppData\Roaming\Mozilla\Firefox\Profiles\eb7to7jq.default\Extensions\{ea614400-e918-4741-9a97-7a972ff7c30b} [2014-11-03]
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2013-10-21]

Chrome:
=======
CHR dev: Chrome dev build detected! <======= ATTENTION
CHR Profile: C:\Users\Kvetka\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (No Name) - C:\Users\Kvetka\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2014-04-07]
CHR Extension: (Avast Online Security) - C:\Users\Kvetka\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2015-06-19]
CHR Extension: (No Name) - C:\Users\Kvetka\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkfjkcggcpidbmjoiocdkmahofgjbkfj [2014-01-31]
CHR Extension: (No Name) - C:\Users\Kvetka\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-10-19]
CHR Extension: (No Name) - C:\Users\Kvetka\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkpadceeobadhdfbokadofdgpckphmhe [2014-06-06]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-12-23]
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [Not Found]

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [361984 2012-08-08] (Advanced Micro Devices, Inc.) [File not signed]
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-12-23] (AVAST Software)
S2 avast! Firewall; C:\Program Files\AVAST Software\Avast\afwServ.exe [179088 2013-10-23] (AVAST Software)
S3 BthHFSrv; C:\Windows\System32\BthHFSrv.dll [324608 2014-10-29] (Microsoft Corporation)
R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1394816 2015-05-01] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1772672 2015-05-01] (Microsoft Corporation)
S3 FLEXnet Licensing Service; C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [654848 2014-11-16] (Macrovision Europe Ltd.) [File not signed]
R2 FoxitCloudUpdateService; C:\Program Files (x86)\Foxit Software\Foxit Reader\Foxit Cloud\FCUpdateService.exe [239680 2014-02-19] (Foxit Corporation)
R2 IconMan_R; C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe [2451456 2012-07-14] (Realsil Microelectronics Inc.) [File not signed]
R2 RzKLService; C:\Program Files (x86)\Razer\Razer Game Booster\RzKLService.exe [106472 2013-09-18] (Razer Inc.)
R2 STacSV; C:\Program Files\IDT\WDM\STacSV64.exe [321536 2012-07-21] (IDT, Inc.) [File not signed]
S3 w3logsvc; C:\Windows\system32\inetsrv\w3logsvc.dll [76800 2014-07-02] (Microsoft Corporation)
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366520 2015-02-04] (Microsoft Corporation)
S2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2015-02-04] (Microsoft Corporation)
S3 AvastVBoxSvc; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [X]
S2 gupdate; "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /svc [X]
S3 gupdatem; "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /medsvc [X]
S3 MozillaMaintenance; "C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe" [X]
S2 Update albrechto; "C:\Program Files (x86)\albrechto\updatealbrechto.exe" [X]

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S2 APXACC; C:\Windows\system32\DRIVERS\appexDrv.sys [199008 2012-06-23] (AppEx Networks Corporation)
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2014-12-23] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [83280 2014-12-23] (AVAST Software)
R1 aswNdisFlt; C:\Windows\system32\DRIVERS\aswNdisFlt.sys [447888 2013-10-23] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2014-12-23] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-12-23] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1050432 2014-12-23] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [436624 2014-12-23] (AVAST Software)
S2 aswStm; C:\Windows\system32\drivers\aswStm.sys [116728 2014-12-23] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [267632 2014-12-23] ()
R3 athr; C:\Windows\system32\DRIVERS\athwbx.sys [3859968 2013-08-22] (Qualcomm Atheros Communications, Inc.)
R3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdW86.sys [98472 2012-07-17] (Advanced Micro Devices)
R1 dtsoftbus01; C:\Windows\System32\drivers\dtsoftbus01.sys [283064 2014-01-09] (Disc Soft Ltd)
R3 RSP2STOR; C:\Windows\system32\DRIVERS\RtsP2Stor.sys [269968 2012-07-04] (Realtek Semiconductor Corp.)
S3 SmbDrv; C:\Windows\System32\drivers\Smb_driver_AMDASF.sys [41272 2012-08-11] (Synaptics Incorporated)
S3 SmbDrvI; C:\Windows\System32\drivers\Smb_driver_Intel.sys [43832 2012-08-11] (Synaptics Incorporated)
S3 t_mouse.sys; C:\Windows\system32\DRIVERS\t_mouse.sys [6144 2013-04-09] ()
R3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2015-02-04] (Microsoft Corporation)
R3 WirelessButtonDriver; C:\Windows\System32\drivers\WirelessButtonDriver64.sys [20288 2012-08-03] (Hewlett-Packard Development Company, L.P.)
S1 aswKbd; \??\C:\WINDOWS\system32\drivers\aswKbd.sys [X]
U4 Messenger; No ImagePath
R2 VBoxAswDrv; \??\C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [X]
S3 VBoxNetFlt; \SystemRoot\system32\DRIVERS\VBoxNetFlt.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-06-20 23:12 - 2015-06-20 23:14 - 00023349 _____ C:\Users\Kvetka\Desktop\FRST.txt
2015-06-20 23:11 - 2015-06-20 23:11 - 00112640 _____ (forum.viry.cz) C:\Users\Kvetka\Desktop\FRSTLauncher.exe
2015-06-20 23:10 - 2015-06-20 23:10 - 02109952 _____ (Farbar) C:\Users\Kvetka\Desktop\FRST64.exe
2015-06-20 22:46 - 2015-06-20 22:46 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software
2015-06-20 22:45 - 2015-06-20 22:45 - 00000000 _____ C:\Recovery.txt
2015-06-20 22:43 - 2014-12-23 21:00 - 00364512 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
2015-06-19 21:32 - 2015-06-19 21:42 - 00000000 ____D C:\AdwCleaner
2015-06-19 18:55 - 2015-06-20 23:12 - 00000000 ____D C:\FRST
2015-06-18 23:59 - 2015-06-20 19:23 - 00000000 ____D C:\WINDOWS\system32\MpEngineStore
2015-06-18 21:08 - 2015-06-20 20:06 - 00000000 ____D C:\Users\Kvetka\Desktop\Nový priečinok
2015-06-18 21:06 - 2015-06-18 21:06 - 00330853 _____ C:\Users\Kvetka\Downloads\RealTemp_370.zip
2015-06-18 20:36 - 2015-06-19 21:43 - 00000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2015-06-18 20:36 - 2015-06-18 20:36 - 00000000 ____D C:\ProgramData\Malwarebytes
2015-06-18 20:35 - 2015-06-20 20:06 - 00000000 ____D C:\Users\Kvetka\Desktop\mbar
2015-06-18 20:15 - 2015-06-18 20:15 - 00000360 _____ C:\WINDOWS\AutoKMS.log
2015-06-18 20:13 - 2015-06-19 21:43 - 00000934 _____ C:\WINDOWS\PFRO.log
2015-06-18 19:21 - 2015-06-20 23:13 - 00001694 _____ C:\WINDOWS\setupact.log
2015-06-18 19:21 - 2015-06-18 19:21 - 00000000 _____ C:\WINDOWS\setuperr.log
2015-06-17 16:04 - 2015-06-17 16:04 - 00000000 ____D C:\ProgramData\ATI
2015-06-17 16:03 - 2015-06-17 16:04 - 00000000 ____D C:\Users\Kvetka\AppData\Local\AppEx Networks
2015-06-17 15:57 - 2015-06-17 15:57 - 00061880 _____ C:\WINDOWS\SysWOW64\CCCInstall_201506171557057928.log
2015-06-17 15:57 - 2015-06-17 15:57 - 00000000 ____D C:\Program Files (x86)\AMD AVT
2015-06-17 15:42 - 2015-06-17 15:43 - 00000000 ____D C:\ProgramData\Package Cache
2015-06-17 15:37 - 2015-06-17 15:37 - 00000000 ____D C:\AMD
2015-06-17 15:26 - 2015-06-17 15:34 - 286425957 _____ C:\Users\Kvetka\Downloads\amd_catalyst_14_9_win7_win81_64bit.zip
2015-06-14 22:49 - 2015-06-14 22:52 - 81574822 _____ C:\Users\Kvetka\Downloads\eRIC-BabylonIsFallen.zip
2015-06-14 22:49 - 2015-06-14 22:51 - 36387088 _____ C:\Users\Kvetka\Downloads\QRS-CastleOfAnxiety.zip
2015-06-03 17:41 - 2015-06-03 17:41 - 00302011 _____ C:\Users\Kvetka\Downloads\WindowsUpdateDiagnostic (2).diagcab
2015-06-02 18:24 - 2015-06-02 18:24 - 00000000 ____D C:\Users\Kvetka\AppData\Local\GWX
2015-06-01 21:47 - 2015-06-04 22:02 - 00050755 _____ C:\WINDOWS\system32\ScanResults.xml
2015-06-01 21:03 - 2015-06-04 21:47 - 00000464 _____ C:\WINDOWS\system32\ScannerSettings
2015-05-31 14:14 - 2015-04-09 00:07 - 00410336 _____ C:\WINDOWS\system32\ApnDatabase.xml
2015-05-31 14:14 - 2015-03-20 05:49 - 00309760 _____ (Microsoft Corporation) C:\WINDOWS\system32\compstui.dll
2015-05-31 14:14 - 2015-03-20 05:08 - 00477184 _____ (Microsoft Corporation) C:\WINDOWS\system32\puiobj.dll
2015-05-31 14:14 - 2015-03-20 04:37 - 00367104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\puiobj.dll
2015-05-31 14:14 - 2015-03-20 04:07 - 01091072 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2015-05-31 14:14 - 2015-03-17 19:26 - 00467776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS
2015-05-31 14:14 - 2015-01-27 05:44 - 00933888 _____ (Microsoft Corporation) C:\WINDOWS\system32\calc.exe
2015-05-31 14:14 - 2015-01-24 03:51 - 00816128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\calc.exe
2015-05-31 14:14 - 2015-01-06 05:01 - 00072192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndproxy.sys
2015-05-31 14:14 - 2015-01-06 04:59 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wanarp.sys
2015-05-31 14:14 - 2015-01-06 03:12 - 00185856 _____ (Microsoft Corporation) C:\WINDOWS\system32\rascfg.dll
2015-05-31 14:14 - 2015-01-06 03:02 - 00164864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rascfg.dll
2015-05-31 14:13 - 2015-04-09 00:41 - 00158720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rgb9rast.dll
2015-05-31 14:13 - 2015-04-02 00:42 - 03097600 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll
2015-05-31 14:13 - 2015-04-02 00:30 - 02483712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll
2015-05-31 14:13 - 2015-03-02 03:43 - 00222208 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastapi.dll
2015-05-31 14:13 - 2015-03-02 03:21 - 00207872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastapi.dll
2015-05-31 14:12 - 2015-04-24 23:32 - 00036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\UtcResources.dll
2015-05-31 14:12 - 2015-04-16 08:17 - 00325464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS
2015-05-31 14:12 - 2015-04-14 00:37 - 00275968 _____ (Microsoft Corporation) C:\WINDOWS\system32\authz.dll
2015-05-31 14:12 - 2015-04-14 00:34 - 00180224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authz.dll
2015-05-31 14:12 - 2015-04-10 02:40 - 01249280 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll
2015-05-31 14:12 - 2015-04-10 02:17 - 01018880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll
2015-05-31 14:12 - 2015-04-01 06:18 - 00468480 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssph.dll
2015-05-31 14:12 - 2015-04-01 06:08 - 00774144 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssvp.dll
2015-05-31 14:12 - 2015-04-01 05:46 - 03633664 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
2015-05-31 14:12 - 2015-04-01 05:17 - 02551808 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
2015-05-31 14:12 - 2015-04-01 05:17 - 00903168 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe
2015-05-31 14:12 - 2015-04-01 04:53 - 00391680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssph.dll
2015-05-31 14:12 - 2015-04-01 04:45 - 02749952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll
2015-05-31 14:12 - 2015-04-01 04:14 - 01920000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll
2015-05-31 14:12 - 2015-04-01 04:12 - 00710144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe
2015-05-31 14:12 - 2015-03-05 01:09 - 01429504 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2015-05-31 14:11 - 2015-04-01 06:21 - 00337408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe
2015-05-31 14:11 - 2015-04-01 06:17 - 00248832 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssphtb.dll
2015-05-31 14:11 - 2015-04-01 04:53 - 00272896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe
2015-05-31 14:11 - 2015-04-01 04:45 - 00699392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssvp.dll
2015-05-31 09:49 - 2015-04-10 02:34 - 02256896 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2015-05-31 09:49 - 2015-04-10 02:11 - 01943040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2015-05-31 09:49 - 2014-12-19 10:57 - 00788680 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll
2015-05-31 09:49 - 2014-12-19 10:25 - 00602776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll
2015-05-30 19:23 - 2015-06-21 00:18 - 00000000 ___SD C:\WINDOWS\system32\GWX
2015-05-30 19:23 - 2015-05-30 19:23 - 00000000 ___SD C:\WINDOWS\SysWOW64\GWX
2015-05-30 19:19 - 2015-01-30 05:01 - 00097792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidbth.sys
2015-05-30 19:18 - 2015-03-06 04:47 - 01696256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtsvc.dll
2015-05-30 19:17 - 2015-03-11 03:49 - 00024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdbinst.exe
2015-05-30 19:17 - 2015-03-11 03:09 - 00021504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sdbinst.exe
2015-05-30 19:17 - 2015-02-18 01:19 - 00186368 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpapisrv.dll
2015-05-30 19:17 - 2015-01-29 02:59 - 02773504 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll
2015-05-30 19:17 - 2015-01-29 02:49 - 02459136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll
2015-05-30 17:55 - 2015-04-30 22:35 - 00124112 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2015-05-30 17:55 - 2015-04-30 22:35 - 00102608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2015-05-30 16:38 - 2015-05-01 01:05 - 00429568 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2015-05-30 16:38 - 2015-05-01 00:48 - 00358912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll
2015-05-30 16:36 - 2014-12-09 05:45 - 00393728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scesrv.dll
2015-05-30 16:36 - 2014-12-09 03:56 - 00538624 _____ (Microsoft Corporation) C:\WINDOWS\system32\scesrv.dll
2015-05-30 16:35 - 2015-03-20 03:56 - 00080384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ahcache.sys
2015-05-30 16:35 - 2015-02-20 05:03 - 00358912 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll
2015-05-30 16:35 - 2015-02-20 04:58 - 00044032 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2015-05-30 16:35 - 2015-02-20 04:20 - 00301056 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll
2015-05-30 16:35 - 2015-02-20 04:15 - 00035840 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
2015-05-30 16:34 - 2015-03-04 03:32 - 00172544 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Input.Inking.dll
2015-05-30 16:34 - 2015-03-04 03:12 - 00141824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Input.Inking.dll
2015-05-30 16:34 - 2015-01-30 02:53 - 02819584 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers.dll
2015-05-30 16:30 - 2015-04-02 00:22 - 02985984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dbgeng.dll
2015-05-30 16:30 - 2015-04-02 00:20 - 04417536 _____ (Microsoft Corporation) C:\WINDOWS\system32\dbgeng.dll
2015-05-30 16:30 - 2015-04-01 05:45 - 01491456 _____ (Microsoft Corporation) C:\WINDOWS\system32\dbghelp.dll
2015-05-30 16:30 - 2015-04-01 04:31 - 01207296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dbghelp.dll
2015-05-30 16:30 - 2015-02-05 22:24 - 01113920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2015-05-30 16:28 - 2015-04-14 00:48 - 04180480 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2015-05-30 16:28 - 2015-04-10 03:00 - 01996800 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll
2015-05-30 16:28 - 2015-04-10 02:50 - 01387008 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll
2015-05-30 16:28 - 2015-04-10 02:26 - 01560576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll
2015-05-30 16:28 - 2015-01-29 03:04 - 00864256 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll
2015-05-30 16:25 - 2015-04-09 00:55 - 00410128 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe
2015-05-30 16:25 - 2015-03-23 23:59 - 07476032 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2015-05-30 16:25 - 2015-03-23 23:59 - 01733952 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2015-05-30 16:25 - 2015-03-23 23:59 - 00360480 _____ (Microsoft Corporation) C:\WINDOWS\system32\sechost.dll
2015-05-30 16:25 - 2015-03-23 23:58 - 01498872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2015-05-30 16:25 - 2015-03-23 23:45 - 00257216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sechost.dll
2015-05-30 16:25 - 2015-03-20 06:12 - 00246272 _____ (Microsoft Corporation) C:\WINDOWS\system32\microsoft-windows-system-events.dll
2015-05-30 16:25 - 2015-03-20 06:10 - 00285184 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64.dll
2015-05-30 16:25 - 2015-03-20 06:10 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64cpu.dll
2015-05-30 16:25 - 2015-03-20 05:17 - 00411648 _____ (Microsoft Corporation) C:\WINDOWS\system32\tracerpt.exe
2015-05-30 16:25 - 2015-03-20 04:41 - 00369152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tracerpt.exe
2015-05-30 16:25 - 2015-03-20 04:40 - 00950784 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdh.dll
2015-05-30 16:25 - 2015-03-20 04:16 - 00749568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdh.dll
2015-05-30 16:25 - 2015-03-13 06:03 - 00239424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
2015-05-30 16:25 - 2015-03-13 06:03 - 00154432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys
2015-05-30 16:25 - 2015-02-21 01:49 - 00780800 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsm.dll
2015-05-30 16:25 - 2015-01-30 04:02 - 00102912 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappgnui.dll
2015-05-30 16:25 - 2015-01-30 03:40 - 00091648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eappgnui.dll
2015-05-30 16:25 - 2015-01-30 03:37 - 00331776 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapp3hst.dll
2015-05-30 16:25 - 2015-01-30 03:24 - 00339456 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapphost.dll
2015-05-30 16:25 - 2015-01-30 03:24 - 00250880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eapp3hst.dll
2015-05-30 16:25 - 2015-01-30 03:16 - 00266752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eapphost.dll
2015-05-30 16:25 - 2015-01-30 03:08 - 00346112 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappcfg.dll
2015-05-30 16:25 - 2015-01-30 03:06 - 00278016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eappcfg.dll
2015-05-30 16:24 - 2015-02-24 10:32 - 00991552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys
2015-05-30 16:21 - 2015-02-12 19:40 - 22291584 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2015-05-30 16:21 - 2015-02-12 19:34 - 19731824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2015-05-30 16:21 - 2014-12-11 07:36 - 00046456 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockScreenContentServer.exe
2015-05-30 16:18 - 2015-03-30 07:47 - 00561928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2015-05-30 16:18 - 2015-03-27 05:27 - 00445440 _____ (Microsoft Corporation) C:\WINDOWS\system32\certcli.dll
2015-05-30 16:18 - 2015-03-27 04:48 - 01441792 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2015-05-30 16:18 - 2015-01-16 00:43 - 00177984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2015-05-30 16:17 - 2015-03-27 04:50 - 00324096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certcli.dll
2015-05-30 16:17 - 2015-02-08 01:57 - 01090048 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll
2015-05-30 16:17 - 2015-02-08 01:49 - 00791040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MrmCoreR.dll
2015-05-30 16:14 - 2015-01-28 03:31 - 00402432 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPhoto.dll
2015-05-30 16:14 - 2015-01-28 03:11 - 00357376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMPhoto.dll
2015-05-30 16:12 - 2015-03-04 12:25 - 00377152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys
2015-05-30 16:12 - 2015-03-04 05:04 - 00075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\clfsw32.dll
2015-05-30 16:12 - 2015-03-04 04:19 - 00058880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clfsw32.dll
2015-05-30 16:11 - 2015-01-28 01:47 - 02501368 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2015-05-30 16:11 - 2015-01-28 01:41 - 02207488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2015-05-30 12:03 - 2015-02-04 01:58 - 00264000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdFilter.sys
2015-05-30 12:03 - 2015-02-04 01:58 - 00114496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdNisDrv.sys
2015-05-30 12:03 - 2015-02-04 01:58 - 00044024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdBoot.sys
2015-05-30 12:03 - 2015-02-03 01:53 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\winshfhc.dll
2015-05-30 12:03 - 2015-02-03 01:53 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winshfhc.dll
2015-05-30 12:02 - 2015-03-14 10:20 - 01385256 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2015-05-30 12:02 - 2015-03-14 10:13 - 01124352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2015-05-30 12:02 - 2015-03-09 04:02 - 00057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthhfenum.sys
2015-05-30 12:02 - 2015-01-23 09:17 - 00723072 _____ (Microsoft Corporation) C:\WINDOWS\system32\SHCore.dll
2015-05-30 12:02 - 2015-01-23 07:02 - 00560392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SHCore.dll
2015-05-30 11:57 - 2015-03-13 03:11 - 02162176 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll
2015-05-30 11:57 - 2015-03-13 02:39 - 01812992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRH.dll
2015-05-30 11:56 - 2015-04-03 02:35 - 00445440 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhotoMetadataHandler.dll
2015-05-30 11:56 - 2015-04-03 02:14 - 00364544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhotoMetadataHandler.dll
2015-05-30 11:56 - 2015-03-13 04:02 - 00316416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\udfs.sys
2015-05-30 11:56 - 2015-02-03 02:03 - 03551744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_47.dll
2015-05-30 11:56 - 2015-02-03 02:02 - 04298240 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_47.dll
2015-05-30 11:56 - 2015-01-30 04:03 - 01488896 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfc42u.dll
2015-05-30 11:56 - 2015-01-30 04:03 - 01464832 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfc42.dll
2015-05-30 11:56 - 2015-01-30 03:44 - 01230336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfc42u.dll
2015-05-30 11:56 - 2015-01-30 03:42 - 01204224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfc42.dll
2015-05-30 11:56 - 2015-01-30 03:29 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\atlthunk.dll
2015-05-30 11:56 - 2015-01-19 20:42 - 01487976 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2015-05-30 11:55 - 2015-03-06 05:08 - 02067968 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpdshext.dll
2015-05-30 11:55 - 2015-03-06 04:43 - 01969664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpdshext.dll
2015-05-30 11:55 - 2015-01-29 03:11 - 00274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2015-05-30 11:55 - 2015-01-29 03:00 - 00210944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2015-05-30 11:55 - 2015-01-29 02:55 - 00971776 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll
2015-05-30 11:55 - 2015-01-29 02:50 - 00811008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSShared.dll
2015-05-30 11:55 - 2015-01-28 04:24 - 00075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorageContextHandler.dll
2015-05-30 11:55 - 2015-01-28 03:47 - 00060928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StorageContextHandler.dll
2015-05-30 10:20 - 2015-04-21 18:50 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2015-05-30 10:20 - 2015-04-21 18:49 - 02885120 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2015-05-30 10:20 - 2015-04-21 18:35 - 00816640 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2015-05-30 10:20 - 2015-04-21 18:31 - 06025728 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2015-05-30 10:20 - 2015-04-21 18:24 - 19691008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2015-05-30 10:20 - 2015-04-21 18:11 - 00504320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2015-05-30 10:20 - 2015-04-21 18:08 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll
2015-05-30 10:20 - 2015-04-21 18:07 - 00145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\iepeers.dll
2015-05-30 10:20 - 2015-04-21 18:05 - 00316928 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll
2015-05-30 10:20 - 2015-04-21 18:04 - 02278400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2015-05-30 10:20 - 2015-04-21 17:58 - 00664576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2015-05-30 10:20 - 2015-04-21 17:52 - 00262144 _____ (Microsoft Corporation) C:\WINDOWS\system32\webcheck.dll
2015-05-30 10:20 - 2015-04-21 17:49 - 00801280 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2015-05-30 10:20 - 2015-04-21 17:49 - 00720384 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2015-05-30 10:20 - 2015-04-21 17:49 - 00374272 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2015-05-30 10:20 - 2015-04-21 17:46 - 02125824 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2015-05-30 10:20 - 2015-04-21 17:40 - 14401536 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2015-05-30 10:20 - 2015-04-21 17:38 - 00076288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll
2015-05-30 10:20 - 2015-04-21 17:37 - 00128000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iepeers.dll
2015-05-30 10:20 - 2015-04-21 17:36 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll
2015-05-30 10:20 - 2015-04-21 17:32 - 00880128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcomm.dll
2015-05-30 10:20 - 2015-04-21 17:31 - 04305920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2015-05-30 10:20 - 2015-04-21 17:28 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webcheck.dll
2015-05-30 10:20 - 2015-04-21 17:26 - 00688640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2015-05-30 10:20 - 2015-04-21 17:26 - 00327168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
2015-05-30 10:20 - 2015-04-21 17:25 - 02052608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2015-05-30 10:20 - 2015-04-21 17:17 - 12828672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2015-05-30 10:20 - 2015-04-21 17:15 - 01547264 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2015-05-30 10:20 - 2015-04-21 17:03 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2015-05-30 10:20 - 2015-04-21 17:02 - 01882112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2015-05-30 10:20 - 2015-04-21 16:58 - 01310208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2015-05-30 10:20 - 2015-04-21 16:56 - 00710144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2015-05-30 10:20 - 2015-02-20 04:47 - 00088064 _____ (Microsoft Corporation) C:\WINDOWS\system32\MshtmlDac.dll
2015-05-30 10:20 - 2015-02-20 04:34 - 00814080 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
2015-05-30 10:20 - 2015-02-20 04:06 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MshtmlDac.dll
2015-05-30 10:20 - 2015-01-12 04:21 - 00490496 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtmsft.dll
2015-05-30 10:20 - 2015-01-12 03:45 - 00418304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtmsft.dll
2015-05-30 10:19 - 2015-04-21 19:14 - 24971776 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2015-05-30 10:19 - 2015-04-21 18:50 - 00417792 _____ (Microsoft Corporation) C:\WINDOWS\system32\html.iec
2015-05-30 10:19 - 2015-04-21 18:37 - 00633856 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieui.dll
2015-05-30 10:19 - 2015-04-21 18:13 - 00107520 _____ (Microsoft Corporation) C:\WINDOWS\system32\inseng.dll
2015-05-30 10:19 - 2015-04-21 18:09 - 00341504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\html.iec
2015-05-30 10:19 - 2015-04-21 17:59 - 01032704 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll
2015-05-30 10:19 - 2015-04-21 17:27 - 02352128 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2015-05-30 10:19 - 2015-02-20 03:29 - 02865152 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll
2015-05-30 10:17 - 2015-01-31 01:20 - 00203264 _____ (Microsoft Corporation) C:\WINDOWS\system32\ubpm.dll
2015-05-30 10:17 - 2015-01-27 06:22 - 00131584 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll
2015-05-30 10:17 - 2015-01-27 04:11 - 03547648 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
2015-05-30 10:16 - 2015-03-13 04:58 - 00259072 _____ (Microsoft Corporation) C:\WINDOWS\system32\pku2u.dll
2015-05-30 10:16 - 2015-03-13 04:37 - 00208896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pku2u.dll
2015-05-30 10:16 - 2015-01-29 20:45 - 01763352 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll
2015-05-30 10:16 - 2015-01-29 20:34 - 01488040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll
2015-05-30 10:15 - 2015-03-14 10:54 - 00133256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2015-05-30 10:15 - 2015-03-14 03:56 - 00066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll
2015-05-30 10:15 - 2015-03-14 03:56 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll
2015-05-30 10:15 - 2015-03-14 03:51 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wu.upgrade.ps.dll
2015-05-30 10:15 - 2015-03-14 03:37 - 00267264 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinSetupUI.dll
2015-05-30 10:15 - 2015-03-14 03:14 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wups.dll
2015-05-30 10:15 - 2015-03-14 02:22 - 03678720 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2015-05-30 10:15 - 2015-03-14 02:12 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuwebv.dll
2015-05-30 10:15 - 2015-03-14 02:12 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapp.exe
2015-05-30 10:15 - 2015-03-14 02:09 - 00200192 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll
2015-05-30 10:15 - 2015-03-14 02:08 - 00408064 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUSettingsProvider.dll
2015-05-30 10:15 - 2015-03-14 02:08 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll
2015-05-30 10:15 - 2015-03-14 02:06 - 02373632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wucltux.dll
2015-05-30 10:15 - 2015-03-14 02:06 - 00891392 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2015-05-30 10:15 - 2015-03-14 02:02 - 00124928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuwebv.dll
2015-05-30 10:15 - 2015-03-14 02:02 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapp.exe
2015-05-30 10:15 - 2015-03-14 01:59 - 00721920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2015-05-30 10:15 - 2015-03-14 01:59 - 00081920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wudriver.dll
2015-05-30 00:59 - 2015-06-21 00:18 - 00000000 ____D C:\WINDOWS\system32\appraiser
2015-05-29 21:46 - 2015-01-29 03:58 - 00347136 _____ (Microsoft Corporation) C:\WINDOWS\system32\photowiz.dll
2015-05-29 21:46 - 2015-01-29 03:29 - 00290816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\photowiz.dll
2015-05-29 21:46 - 2014-12-13 23:28 - 00513488 _____ C:\WINDOWS\SysWOW64\locale.nls
2015-05-29 21:46 - 2014-12-13 23:28 - 00513488 _____ C:\WINDOWS\system32\locale.nls
2015-05-29 21:42 - 2015-03-23 00:45 - 00227328 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepdu.dll
2015-05-29 21:42 - 2015-03-23 00:09 - 01111552 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2015-05-29 21:42 - 2015-03-23 00:09 - 00957440 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2015-05-29 21:42 - 2015-03-23 00:09 - 00769024 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2015-05-29 21:42 - 2015-03-23 00:09 - 00726528 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2015-05-29 21:42 - 2015-03-23 00:09 - 00419328 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2015-05-29 21:42 - 2015-03-23 00:09 - 00030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2015-05-29 21:42 - 2014-12-03 01:09 - 00192000 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll
2015-05-29 21:34 - 2015-05-29 21:34 - 00302011 _____ C:\Users\Kvetka\Downloads\WindowsUpdateDiagnostic (1).diagcab
2015-05-29 21:31 - 2015-05-29 21:31 - 00302011 _____ C:\Users\Kvetka\Downloads\WindowsUpdateDiagnostic.diagcab
2015-05-29 21:29 - 2015-05-29 21:29 - 00985600 _____ C:\Users\Kvetka\Downloads\MicrosoftFixit50123.msi
2015-05-29 21:23 - 2015-05-29 21:23 - 00762104 _____ (BUJGO) C:\Users\Kvetka\Downloads\Reimage Plus Crack License Key incl Full Free Download.exe
2015-05-29 21:02 - 2015-06-21 00:07 - 00000000 ____D C:\Program Files\Reimage
2015-05-29 21:00 - 2015-05-29 21:04 - 00000165 _____ C:\WINDOWS\Reimage.ini
2015-05-29 21:00 - 2015-05-29 21:00 - 00768512 _____ (Reimage®) C:\Users\Kvetka\Downloads\ReimageRepair.exe

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-06-21 00:18 - 2015-01-23 23:41 - 00000000 ___SD C:\WINDOWS\system32\CompatTel
2015-06-21 00:18 - 2013-08-22 17:36 - 00000000 __RSD C:\WINDOWS\Media
2015-06-21 00:18 - 2013-08-22 17:36 - 00000000 ___HD C:\WINDOWS\system32\GroupPolicy
2015-06-21 00:18 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\SysWOW64\sk-SK
2015-06-21 00:18 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\SysWOW64\GroupPolicy
2015-06-21 00:18 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\SysWOW64\en-GB
2015-06-21 00:18 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\sk-SK
2015-06-21 00:18 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\en-GB
2015-06-21 00:18 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\PolicyDefinitions
2015-06-21 00:17 - 2014-06-06 13:09 - 00000000 ____D C:\ProgramData\save on
2015-06-21 00:17 - 2014-06-01 20:03 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client
2015-06-21 00:17 - 2014-06-01 20:03 - 00000000 ____D C:\Program Files\TeamSpeak 3 Client
2015-06-21 00:17 - 2014-03-09 11:49 - 00000000 ____D C:\ProgramData\wuebsave
2015-06-21 00:17 - 2014-03-06 16:51 - 00000000 ____D C:\ProgramData\SearchNewTab
2015-06-21 00:17 - 2014-02-08 02:12 - 00000000 ____D C:\Users\Kvetka\AppData\Local\SwvUpdater
2015-06-21 00:17 - 2014-01-15 00:14 - 00000000 ____D C:\Users\Kvetka\AppData\Local\genienext
2015-06-21 00:17 - 2014-01-14 00:35 - 00000000 ____D C:\ProgramData\YoutubeAdblocker
2015-06-21 00:17 - 2014-01-14 00:35 - 00000000 ____D C:\ProgramData\2eb7acf79382ed7b
2015-06-21 00:16 - 2014-06-06 13:05 - 00000000 ____D C:\Program Files (x86)\RelevantKnowledge
2015-06-21 00:16 - 2014-03-09 11:49 - 00000000 ____D C:\Program Files (x86)\wuebsave
2015-06-21 00:16 - 2014-03-06 16:51 - 00000000 ____D C:\Program Files (x86)\SearchNewTab
2015-06-21 00:16 - 2014-02-09 15:55 - 00000000 ____D C:\Program Files (x86)\Mobogenie
2015-06-21 00:16 - 2014-01-14 00:36 - 00000000 ____D C:\Program Files (x86)\SNT
2015-06-21 00:16 - 2014-01-14 00:35 - 00000000 ____D C:\Program Files (x86)\YoutubeAdblocker
2015-06-21 00:16 - 2014-01-14 00:35 - 00000000 ____D C:\Program Files (x86)\grEaotsavEr
2015-06-21 00:16 - 2013-12-29 16:52 - 00000000 ____D C:\Program Files (x86)\Conduit
2015-06-21 00:16 - 2013-10-19 20:51 - 00000000 ____D C:\Program Files\AMD Quick Stream
2015-06-21 00:10 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\registration
2015-06-21 00:09 - 2013-08-22 15:36 - 00000000 ____D C:\WINDOWS\system32\Sysprep
2015-06-21 00:08 - 2015-03-22 18:14 - 00000000 ____D C:\Users\Kvetka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Valve
2015-06-21 00:08 - 2014-01-14 00:35 - 00000000 ____D C:\Users\Kvetka\AppData\Local\Torch
2015-06-21 00:08 - 2013-12-25 15:22 - 00000000 ____D C:\Users\Kvetka\AppData\Roaming\Skype
2015-06-21 00:08 - 2013-10-22 17:07 - 00000000 ____D C:\Users\Kvetka\AppData\Roaming\OpenCandy
2015-06-21 00:08 - 2013-08-22 15:36 - 00000000 ____D C:\WINDOWS\servicing
2015-06-21 00:07 - 2015-01-06 13:59 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\eSupport.com
2015-06-21 00:07 - 2014-12-10 19:39 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Razer
2015-06-21 00:07 - 2014-11-03 21:01 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rockstar Games
2015-06-21 00:07 - 2014-06-06 13:09 - 00000000 ____D C:\Users\Kvetka\AppData\Local\Chromatic Browser
2015-06-21 00:07 - 2014-06-06 13:09 - 00000000 ____D C:\Users\HomeGroupUser$\AppData\Local\Chromatic Browser
2015-06-21 00:07 - 2014-06-06 13:09 - 00000000 ____D C:\Users\Guest\AppData\Local\Chromatic Browser
2015-06-21 00:07 - 2014-06-06 13:09 - 00000000 ____D C:\Users\Administrator\AppData\Local\Chromatic Browser
2015-06-21 00:07 - 2014-04-21 17:36 - 00000000 ____D C:\ProgramData\Rightapp software
2015-06-21 00:07 - 2014-02-13 23:30 - 00000000 ____D C:\ProgramData\Razer
2015-06-21 00:07 - 2014-01-15 00:14 - 00000000 ____D C:\Users\Kvetka\AppData\Local\Mobogenie
2015-06-21 00:07 - 2014-01-14 00:36 - 00000000 ____D C:\ProgramData\House Of Soft
2015-06-21 00:07 - 2014-01-14 00:35 - 00000000 ____D C:\Users\HomeGroupUser$\AppData\Local\Torch
2015-06-21 00:07 - 2014-01-14 00:35 - 00000000 ____D C:\Users\HomeGroupUser$\AppData\Local\Google
2015-06-21 00:07 - 2014-01-14 00:35 - 00000000 ____D C:\Users\HomeGroupUser$\AppData\Local\Comodo
2015-06-21 00:07 - 2014-01-14 00:35 - 00000000 ____D C:\Users\HomeGroupUser$
2015-06-21 00:07 - 2014-01-14 00:35 - 00000000 ____D C:\Users\Guest\AppData\Local\Torch
2015-06-21 00:07 - 2014-01-14 00:35 - 00000000 ____D C:\Users\Guest\AppData\Local\Google
2015-06-21 00:07 - 2014-01-14 00:35 - 00000000 ____D C:\Users\Guest\AppData\Local\Comodo
2015-06-21 00:07 - 2014-01-14 00:35 - 00000000 ____D C:\Users\Guest
2015-06-21 00:07 - 2014-01-14 00:35 - 00000000 ____D C:\Users\Administrator\AppData\Local\Torch
2015-06-21 00:07 - 2014-01-14 00:35 - 00000000 ____D C:\Users\Administrator\AppData\Local\Google
2015-06-21 00:07 - 2014-01-14 00:35 - 00000000 ____D C:\Users\Administrator\AppData\Local\Comodo
2015-06-21 00:07 - 2014-01-14 00:35 - 00000000 ____D C:\Users\Administrator
2015-06-21 00:07 - 2013-12-29 16:52 - 00000000 ____D C:\ProgramData\Conduit
2015-06-21 00:06 - 2015-01-06 13:59 - 00000000 ____D C:\Program Files (x86)\eSupport.com
2015-06-21 00:06 - 2014-11-14 16:43 - 00000000 ___RD C:\Program Files (x86)\Skype
2015-06-21 00:06 - 2014-02-13 23:30 - 00000000 ____D C:\Program Files (x86)\Razer
2015-06-21 00:06 - 2013-10-19 20:52 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2015-06-21 00:06 - 2013-10-19 20:50 - 00000000 ____D C:\Program Files\ATI Technologies
2015-06-21 00:06 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
2015-06-21 00:05 - 2015-02-10 17:57 - 00000000 ____D C:\dos
2015-06-21 00:05 - 2013-10-19 20:49 - 00000000 ____D C:\Program Files (x86)\ATI Technologies
2015-06-20 23:12 - 2015-02-10 20:18 - 01446284 _____ C:\WINDOWS\WindowsUpdate.log
2015-06-20 23:10 - 2012-07-26 09:59 - 00000000 ____D C:\WINDOWS\CbsTemp
2015-06-20 23:03 - 2013-12-28 15:20 - 00000000 ____D C:\Users\Kvetka\AppData\Roaming\Seznam.cz
2015-06-20 23:03 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\sru
2015-06-20 23:02 - 2013-10-19 22:53 - 00000952 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2015-06-20 23:02 - 2013-10-19 22:07 - 00003594 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-887007332-963718041-1005783556-1002
2015-06-20 22:57 - 2013-10-19 22:53 - 00000948 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2015-06-20 22:46 - 2014-12-23 21:01 - 00001948 _____ C:\Users\Public\Desktop\Avast Free Antivirus.lnk
2015-06-20 22:45 - 2013-10-21 10:36 - 00003924 _____ C:\WINDOWS\System32\Tasks\avast! Emergency Update
2015-06-20 22:32 - 2013-10-22 09:35 - 00000218 _____ C:\WINDOWS\Tasks\AutoKMS.job
2015-06-20 22:32 - 2013-08-22 16:45 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2015-06-20 22:31 - 2013-10-20 23:13 - 00000000 ____D C:\Users\Kvetka
2015-06-20 19:37 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\NDF
2015-06-19 18:51 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\AppReadiness
2015-06-18 23:56 - 2013-10-20 17:56 - 00000000 ____D C:\WINDOWS\system32\MRT
2015-06-18 17:51 - 2013-10-22 09:19 - 00000000 ____D C:\ProgramData\Microsoft Help
2015-06-17 15:57 - 2013-10-19 20:50 - 00000000 ____D C:\ProgramData\AMD
2015-06-15 21:22 - 2014-06-01 20:03 - 00000000 ____D C:\Users\Kvetka\AppData\Roaming\TS3Client
2015-06-14 10:16 - 2014-02-13 23:30 - 00000000 ____D C:\Users\Kvetka\AppData\Local\Razer
2015-06-05 23:26 - 2014-02-15 15:40 - 00000830 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2015-05-31 14:41 - 2013-09-30 06:11 - 00956476 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2015-05-31 14:33 - 2013-08-22 17:36 - 00000000 ___RD C:\WINDOWS\ToastData
2015-05-31 14:33 - 2013-08-22 17:36 - 00000000 ___RD C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-05-31 14:33 - 2013-08-22 17:36 - 00000000 ___RD C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-05-31 14:33 - 2013-08-22 17:36 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
2015-05-31 14:33 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\WinStore
2015-05-31 14:33 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files\Windows Defender
2015-05-31 14:33 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files (x86)\Windows Defender
2015-05-31 13:09 - 2013-12-25 15:21 - 00000000 ____D C:\ProgramData\Skype
2015-05-31 00:09 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\AppCompat
2015-05-30 19:32 - 2014-12-17 16:20 - 00000000 ____D C:\Users\Kvetka\Desktop\ciiilik
2015-05-30 19:30 - 2013-08-22 16:44 - 02418040 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2015-05-30 19:29 - 2014-08-09 12:32 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2015-05-30 19:29 - 2014-08-09 12:32 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2015-05-30 19:27 - 2013-08-22 15:25 - 00262144 ___SH C:\WINDOWS\system32\config\BBI(199)
2015-05-30 19:27 - 2013-08-22 15:25 - 00262144 ___SH C:\WINDOWS\system32\config\BBI
2015-05-30 19:24 - 2013-08-22 17:36 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2015-05-30 19:24 - 2013-08-22 15:36 - 00000000 ____D C:\WINDOWS\system32\AdvancedInstallers
2015-05-30 19:14 - 2013-08-22 15:25 - 00000167 _____ C:\WINDOWS\win.ini
2015-05-30 19:09 - 2014-08-09 12:35 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2015-05-30 16:40 - 2013-09-30 05:59 - 00000000 ____D C:\Program Files\Windows Journal
2015-05-27 10:53 - 2014-12-14 15:33 - 00000508 _____ C:\Users\Kvetka\Desktop\wowrm.ini

==================== Files in the root of some directories =======

2014-03-16 15:06 - 2014-03-18 14:39 - 0000875 _____ () C:\Users\Kvetka\AppData\Roaming\MPQEditor.ini
2014-01-04 14:34 - 2014-01-04 14:34 - 0000218 _____ () C:\Users\Kvetka\AppData\Local\recently-used.xbel
2014-09-29 15:44 - 2014-09-29 15:44 - 0007602 _____ () C:\Users\Kvetka\AppData\Local\Resmon.ResmonCfg

Some files in TEMP:
====================
C:\Users\Kvetka\AppData\Local\Temp\ReimagePackage.exe
C:\Users\Kvetka\AppData\Local\Temp\ReiSysUpdate.exe


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed



===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===

==================== Drive and Memory info ===================



==================== MBR and Partition Table ==================


==================== Scheduled Tasks (whitelisted) ==================

Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\AutoKMS.job => C:\WINDOWS\AutoKMS.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\Synaptics TouchPad Enhancements.job => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe

==================== Alternate Data Streams (whitelisted) ==================


==================== Security Center ==================

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: avast! Antivirus (Disabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Disabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}



===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)


***** Velikost "Plochy" *****

Velikost slozky "C:\Users\Kvetka\Desktop" je 472 MB.


***** Startup Programs *****


***** Firewall rules *****

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]


***** System Restore *****

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000


==================== End Of Log ==============================
Přílohy
Addition.rar
(5.8 KiB) Staženo 67 x

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119677
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Extrémne vyťaženie procesora procesmi

#21 Příspěvek od Rudy »

Otevřte poznámkový blok a zkopírujte do něj:

Start
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKU\S-1-5-21-887007332-963718041-1005783556-1002\...\MountPoints2: {04b669ea-22d6-11e4-beaa-28924a5a615b} - "G:\Setup.exe"
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
CHR HKU\S-1-5-21-887007332-963718041-1005783556-1002\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://websearch.fastosearch.info/?pid= ... K&unqvl=55
HKU\S-1-5-21-887007332-963718041-1005783556-1002\Software\Microsoft\Internet Explorer\Main,Start Page = http://websearch.fastosearch.info/?pid= ... K&unqvl=55
HKU\S-1-5-21-887007332-963718041-1005783556-1002\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://search.findwide.com/?guid={8F7A9 ... }&serpv=22
SearchScopes: HKLM-x32 -> {75b4241f-171e-44a3-bf44-23613b6e3e03} URL = http://search.tb.ask.com/search/GGmain. ... earchTerms}
SearchScopes: HKLM-x32 -> {BB74DE59-BC4C-4172-9AC4-73315F71CFFE} URL = http://websearch.fastosearch.info/?l=1& ... K&unqvl=55
SearchScopes: HKU\S-1-5-21-887007332-963718041-1005783556-1002 -> DefaultScope {1D961D14-FC0D-4AF6-BABF-C765EB85E5E4} URL = http://search.findwide.com/serp?guid={8 ... earchTerms}
SearchScopes: HKU\S-1-5-21-887007332-963718041-1005783556-1002 -> {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = http://www.trovi.com/Results.aspx?gd=&c ... 84E28D6&q={searchTerms}&SSPV=SP21620TC_sp_ie
SearchScopes: HKU\S-1-5-21-887007332-963718041-1005783556-1002 -> {75b4241f-171e-44a3-bf44-23613b6e3e03} URL = http://search.tb.ask.com/search/GGmain. ... earchTerms}
SearchScopes: HKU\S-1-5-21-887007332-963718041-1005783556-1002 -> {AFDBDDAA-5D3F-42EE-B79C-185A7020515B} URL =
SearchScopes: HKU\S-1-5-21-887007332-963718041-1005783556-1002 -> {BB74DE59-BC4C-4172-9AC4-73315F71CFFE} URL = http://websearch.fastosearch.info/?l=1& ... K&unqvl=55
BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> c:\Internet Explorer x64\skypeiC:\Program Files (x86)\Skype\Toolbars\eplugin.dll [2015-05-01] (Microsoft Corporation)
c:\Internet Explorer x64\skypeiC:\Program Files (x86)\Skype\Toolbars
BHO-x32: YoutubeAdblocker -> {A46918CA-2D50-623C-D33E-C1BF605C6E20} -> C:\Program Files (x86)\YoutubeAdblocker\TwUBsBt2QV.dll [2014-01-14] ()
BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2015-05-01] (Microsoft Corporation)
C:\Program Files (x86)\YoutubeAdblocker
BHO-x32: COuPExtension -> {CDFB3FE4-3FC2-8B6B-4E08-32FF80C74340} -> C:\ProgramData\COuPExtension\gW9JLyK5.dll [2014-03-16] ()
C:\ProgramData\COuPExtension
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2015-05-01] (Microsoft Corporation)
Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2015-05-01] (Microsoft Corporation)
Winsock: Catalog5 07 C:\Program Files (x86)\Bonjour\mdnsNSP.dll File not found
CHR dev: Chrome dev build detected! <======= ATTENTION
CHR Extension: (No Name) - C:\Users\Kvetka\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkfjkcggcpidbmjoiocdkmahofgjbkfj [2014-01-31]
CHR Extension: (No Name) - C:\Users\Kvetka\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-10-19]
CHR Extension: (No Name) - C:\Users\Kvetka\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkpadceeobadhdfbokadofdgpckphmhe [2014-06-06]
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [Not Found]
R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1394816 2015-05-01] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1772672 2015-05-01] (Microsoft Corporation)
S2 Update albrechto; "C:\Program Files (x86)\albrechto\updatealbrechto.exe" [X]
C:\Program Files (x86)\albrechto
U4 Messenger; No ImagePath
C:\WINDOWS\AutoKMS.log
C:\ProgramData\Conduit
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
C:\WINDOWS\Tasks\AutoKMS.job
C:\Users\Kvetka\AppData\Local\Temp
C:\WINDOWS\AutoKMS.exe
YoutubeAdblocker (HKLM-x32\...\{4820778D-AB0D-6D18-C316-52A6A0E1D507}) (Version: 4.3.0.1548 - YoutubeAdblocker) <==== ATTENTION
Rundll32.exe "C:\Users\Kvetka\AppData\Local\Conduit\BackgroundContainer\BackgroundContainer.dll",DllRun <==== ATTENTION

Resethosts:
End
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

rulerkelso
Návštěvník
Návštěvník
Příspěvky: 50
Registrován: 19 čer 2015 07:24

Re: Extrémne vyťaženie procesora procesmi

#22 Příspěvek od rulerkelso »

Dik za odpoved:-) Ste si isty že mi to opat nerozhodi internetove pripojenie alebo inu sluzbu? Alebo co treba robit v takom pripade. FRST spustit opat cez launcher? Alebo cez frst.exe. Pre ietotu sa pytam, aby som nespravil nejaku chybu.
Fix vyskusam len co pridem domov:-)

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119677
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Extrémne vyťaženie procesora procesmi

#23 Příspěvek od Rudy »

To, co je ve skriptu, jsou věci, které tam být nemají. Mažu je vždy a každému a dosud to bylo bez problémů. Odvirování nikdy není zcela bez rizika a pokud se něco rozhodí, byla by to chyba systému. Pochopitelně nemohu ručit za to, že váš oper. systém neobsahuje chyby. To mi log neřekne. Proto doporučuji každému udělat zálohu dat. Viz mé varování, které mám v podpisu.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

rulerkelso
Návštěvník
Návštěvník
Příspěvky: 50
Registrován: 19 čer 2015 07:24

Re: Extrémne vyťaženie procesora procesmi

#24 Příspěvek od rulerkelso »

Ahoj, po aplikovani toho fixu opat nastal problem s internetom. Tu je presne znenie chybovej hlasky:
Error: LightSpeed::WindowsNetService::InitWinSock::InitWinSock(153):
Exception: Error nr:11003 - Pri prehladávaní databázy sa vyskytla neopravitelná chyba.
Ako to vyriesim? Na internet sa nedostanem, aj kes pise ze som pripojeny

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119677
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Extrémne vyťaženie procesora procesmi

#25 Příspěvek od Rudy »

Žádný winsock jsem nemazal a co je s oper. systémem, nevím. Pomůže obnova, nebo oprava systému. Je tam asi nějaká chyba, která zruší přístup na net i po smazání běžného šmejdu.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

rulerkelso
Návštěvník
Návštěvník
Příspěvky: 50
Registrován: 19 čer 2015 07:24

Re: Extrémne vyťaženie procesora procesmi

#26 Příspěvek od rulerkelso »

Takobnova systemu ki vcera poriadne rozhadzala pc ked som mal presne tento isty problem pi fixe. Ako pls spustim tuopravu?

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119677
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Extrémne vyťaženie procesora procesmi

#27 Příspěvek od Rudy »

Zkuste opravu pomocí winsockfix: http://en.softonic.com/s/winsock-fix-win-8. Pokud bude třeba opravit systém (pokud je legální), budete se muset dostat do obrazu instalačky, která je na zvl. části disku. Je přístupná přes některou >F< klávesu. Bývá uvedena v úvodních postech biosu, nebo ji najdete v manuálu
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

rulerkelso
Návštěvník
Návštěvník
Příspěvky: 50
Registrován: 19 čer 2015 07:24

Re: Extrémne vyťaženie procesora procesmi

#28 Příspěvek od rulerkelso »

Otm? Nic take som nepouzil, ani to nemozem stiahnut kedze sa nedostanem na net:-)

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119677
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Extrémne vyťaženie procesora procesmi

#29 Příspěvek od Rudy »

Omlouvám se, chybička se vloudila. :oops: Už je tam správný odkaz.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

rulerkelso
Návštěvník
Návštěvník
Příspěvky: 50
Registrován: 19 čer 2015 07:24

Re: Extrémne vyťaženie procesora procesmi

#30 Příspěvek od rulerkelso »

Noo musel som dat obnovit system, ten winsock fix by som aj tak nemal ako stiahnut kedze mi nejde internet ako som spominal:-) teraz mam opat problem s ciernou obrazovkou po obnoveni, windows nenacita. boze ja som asi prekliaty, alebo su taketo problemy bezne?:-)

Odpovědět