Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Zamrznutí PC po pár minutách - prosím o kontrolu logu

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zamčeno
Zpráva
Autor
blip
Návštěvník
Návštěvník
Příspěvky: 8
Registrován: 22 čer 2015 19:01

Zamrznutí PC po pár minutách - prosím o kontrolu logu

#1 Příspěvek od blip »

Dobrý den,
vždy asi po 5ti minutách práce na PC mi zamrzne obraz a přestane reagovat myš a klávesnice.
Po restartu zase vše běží těch cca 5 minut a zase PC zamrzne.

Prosím tedy o kontrolu logu, jestli tam není nějaká havěť.
Děkuji

Logfile of random's system information tool 1.10 (written by random/random)
Run by Honys at 2015-06-22 19:50:30
Microsoft Windows 7 Ultimate Service Pack 1
System drive C: has 5 GB (7%) free of 76 GB
Total RAM: 3327 MB (42% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 19:50:40, on 22.6.2015
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17840)
Boot mode: Safe mode with network support

Running processes:
C:\Windows\Explorer.EXE
C:\Windows\system32\ctfmon.exe
C:\Windows\system32\DllHost.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Windows\system32\NOTEPAD.EXE
C:\Users\Honys\Downloads\RSIT.exe
C:\Program Files\trend micro\Honys.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: LinkAirBrowserHelper HistoryTriggerBHO - {21A88CB9-84D2-4020-A2D1-B25A21034884} - C:\Program Files\LG Electronics\LG PC Suite IV\LinkAir\LinkAirBrowserHelper.dll
O2 - BHO: Increase performance and video formats for your HTML5 <video> - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.8.0_31\bin\ssv.dll
O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre1.8.0_31\bin\jp2ssv.dll
O2 - BHO: SmartSelect - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [Launcher3010] "C:\Program Files\Xerox Office Printing\WorkCentre SSW\Launcher\xrlaunch.exe" /S Xerox Phaser 3010
O4 - HKLM\..\Run: [DocuPrint 3010 RUN] "C:\Program Files\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmRun.exe"
O4 - HKLM\..\Run: [StatusAutoRun3010] "C:\Program Files\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmpl.exe" Xerox Phaser 3010,hide,\S
O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [AdobeCS4ServiceManager] "C:\Program Files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [Adobe Acrobat Speed Launcher] "C:\Program Files\Adobe\Acrobat 10.0\Acrobat\Acrobat_sl.exe"
O4 - HKLM\..\Run: [Acrobat Assistant 8.0] "C:\Program Files\Adobe\Acrobat 10.0\Acrobat\Acrotray.exe"
O4 - HKLM\..\Run: [DivXMediaServer] C:\Program Files\DivX\DivX Media Server\DivXMediaServer.exe
O4 - HKLM\..\Run: [iPPCamScan] C:\Windows\iPScan.exe
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide /waitservice
O4 - HKCU\..\Run: [Google+ Auto Backup] "C:\Users\Honys\AppData\Local\Programs\Google\Google+ Auto Backup\Google+ Auto Backup.exe" /autostart
O4 - HKCU\..\Run: [Zoner Photo Studio Autoupdate] C:\PROGRAM FILES\ZONER\PHOTO STUDIO 15\Program32\ZPSTRAY.EXE
O4 - HKCU\..\Run: [Dropbox Update] "C:\Users\Honys\AppData\Local\Dropbox\Update\DropboxUpdate.exe" /c
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Startup: UMAX VistaAccess.lnk = C:\VSTASCAN\vsaccess.exe
O4 - Global Startup: PowerNap.lnk = ?
O4 - Global Startup: PowerNapWatcher.lnk = ?
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200
O8 - Extra context menu item: Append Link Target to Existing PDF - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
O8 - Extra context menu item: Append to Existing PDF - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convert Link Target to Adobe PDF - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
O8 - Extra context menu item: Convert to Adobe PDF - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: ICQ7M - {781B39EC-2E18-41FC-9B00-B84E4FFCA85F} - C:\Program Files\ICQ7M\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7M - {781B39EC-2E18-41FC-9B00-B84E4FFCA85F} - C:\Program Files\ICQ7M\ICQ.exe
O9 - Extra button: Skype Click to Call settings - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: *.dell.com
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: AMD External Events Utility - AMD - C:\Windows\system32\atiesrxx.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Dell Power Nap Service (dell_power_nap_service) - Unknown owner - C:\Program Files\Dell\PowerNap\PowerNap.Service.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\ekrn.exe
O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: HiSuiteOuc.exe - Unknown owner - C:\ProgramData\HiSuiteOuc\HiSuiteOuc.exe
O23 - Service: HuaweiHiSuiteService.exe - Unknown owner - C:\ProgramData\HandSetService\HuaweiHiSuiteService.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: PnkBstrB - Unknown owner - C:\Windows\system32\PnkBstrB.exe
O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
O23 - Service: ServiceLayer - Nokia - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: softOSD - EnTech Taiwan - C:\Program Files\softOSD\softOSD.exe
O23 - Service: XRcnStatutsDatabase (XRNADB) - Unknown owner - C:\Program Files\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmdb.exe

--
End of file - 10477 bytes

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\tasks\DropboxUpdateTaskUserS-1-5-21-1551242594-84631119-3797995329-1001Core.job - C:\Users\Honys\AppData\Local\Dropbox\Update\DropboxUpdate.exe /c
C:\Windows\tasks\DropboxUpdateTaskUserS-1-5-21-1551242594-84631119-3797995329-1001UA.job - C:\Users\Honys\AppData\Local\Dropbox\Update\DropboxUpdate.exe /ua /installsource scheduler
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files\Google\Update\GoogleUpdate.exe /ua /installsource scheduler

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{21A88CB9-84D2-4020-A2D1-B25A21034884}]
HistoryTriggerBHO Class - C:\Program Files\LG Electronics\LG PC Suite IV\LinkAir\LinkAirBrowserHelper.dll [2011-01-13 35688]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{326E768D-4182-46FD-9C16-1449A49795F4}]
DivX Plus Web Player HTML5 <video> - C:\Program Files\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll [2013-05-06 194912]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre1.8.0_31\bin\ssv.dll [2015-01-31 460712]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE7CD045-E861-484f-8273-0445EE161910}]
Adobe PDF Conversion Toolbar Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2014-05-08 343424]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Click to Call for Internet Explorer - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2015-05-01 1724032]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre1.8.0_31\bin\jp2ssv.dll [2015-01-31 172968]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F4971EE7-DAA0-4053-9964-665D8EE6A077}]
SmartSelect Class - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2014-05-08 343424]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{47833539-D0C5-4125-9FA8-0819E2EAAC93} - Adobe PDF - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2014-05-08 343424]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904]
"Launcher3010"=C:\Program Files\Xerox Office Printing\WorkCentre SSW\Launcher\xrlaunch.exe [2011-04-19 2570752]
"DocuPrint 3010 RUN"=C:\Program Files\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmRun.exe [2011-04-19 357376]
"StatusAutoRun3010"=C:\Program Files\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmpl.exe [2011-04-19 3658240]
"APSDaemon"=C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe [2013-01-28 59720]
"QuickTime Task"=C:\Program Files\QuickTime\QTTask.exe [2011-10-24 421888]
"AdobeCS4ServiceManager"=C:\Program Files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe [2009-06-08 611712]
""= []
"Adobe Acrobat Speed Launcher"=C:\Program Files\Adobe\Acrobat 10.0\Acrobat\Acrobat_sl.exe [2014-05-08 41336]
"Acrobat Assistant 8.0"=C:\Program Files\Adobe\Acrobat 10.0\Acrobat\Acrotray.exe [2014-05-08 840568]
"DivXMediaServer"=C:\Program Files\DivX\DivX Media Server\DivXMediaServer.exe [2013-05-20 450560]
"iPPCamScan"=C:\Windows\iPScan.exe [2008-01-23 86016]
"egui"=C:\Program Files\ESET\ESET Smart Security\egui.exe [2015-01-28 5088456]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"LG LinkAir"= []
"Google+ Auto Backup"=C:\Users\Honys\AppData\Local\Programs\Google\Google+ Auto Backup\Google+ Auto Backup.exe [2014-01-06 3619096]
"Zoner Photo Studio Autoupdate"=C:\PROGRAM FILES\ZONER\PHOTO STUDIO 15\Program32\ZPSTRAY.EXE [2014-03-13 779776]
"Dropbox Update"=C:\Users\Honys\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-06-18 134512]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DivXUpdate]
C:\Program Files\DivX\DivX Update\DivXUpdate.exe [2013-02-13 1263952]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iPPCamScan]
C:\Windows\iPScan.exe [2008-01-23 86016]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]
C:\Program Files\iTunes\iTunesHelper.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PWRISOVM.EXE]
C:\Program Files\PowerISO\PWRISOVM.EXE [2012-08-24 336992]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
PowerNap.lnk - C:\Windows\Installer\{2436940B-1C2C-4FB4-A703-0EE9B1350791}\_35E0567647C2420371B885.exe
PowerNapWatcher.lnk - C:\Windows\Installer\{2436940B-1C2C-4FB4-A703-0EE9B1350791}\_18B4EACA6AED157B14F49D.exe

C:\Users\Honys\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
UMAX VistaAccess.lnk - C:\VSTASCAN\vsaccess.exe

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\se32.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"vidc.DIVX"=DivX.dll
"vidc.yv12"=DivX.dll
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"aux3"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux2"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2015-06-22 19:50:31 ----D---- C:\Program Files\trend micro
2015-06-22 19:50:30 ----D---- C:\rsit
2015-06-22 18:35:37 ----A---- C:\Windows\ntbtlog.txt
2015-06-18 19:45:40 ----D---- C:\ProgramData\Dropbox
2015-06-15 21:10:10 ----D---- C:\Program Files\NbuExplorer
2015-06-15 19:52:24 ----D---- C:\Users\Honys\AppData\Roaming\PC Suite
2015-06-15 19:52:24 ----D---- C:\Users\Honys\AppData\Roaming\Nokia
2015-06-15 19:52:23 ----D---- C:\ProgramData\PC Suite
2015-06-15 19:50:57 ----D---- C:\Program Files\Common Files\PCSuite
2015-06-15 19:50:52 ----D---- C:\Program Files\Common Files\Nokia
2015-06-15 19:50:35 ----A---- C:\Windows\system32\drivers\pccsmcfd.sys
2015-06-15 19:50:21 ----D---- C:\Program Files\PC Connectivity Solution
2015-06-15 19:50:01 ----D---- C:\Program Files\Nokia
2015-06-15 19:50:01 ----A---- C:\Windows\system32\nmwcdcls.dll
2015-06-15 19:49:03 ----D---- C:\ProgramData\Installations
2015-06-12 12:56:35 ----A---- C:\Windows\system32\wmp.dll
2015-06-12 12:56:34 ----A---- C:\Windows\system32\wmploc.DLL
2015-06-12 12:56:34 ----A---- C:\Windows\system32\spwmp.dll
2015-06-12 12:56:34 ----A---- C:\Windows\system32\dxmasf.dll
2015-06-12 12:56:12 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-06-12 12:56:12 ----A---- C:\Windows\system32\ieetwproxystub.dll
2015-06-12 12:56:12 ----A---- C:\Windows\system32\ieetwcollector.exe
2015-06-12 12:56:11 ----A---- C:\Windows\system32\vbscript.dll
2015-06-12 12:56:11 ----A---- C:\Windows\system32\urlmon.dll
2015-06-12 12:56:11 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2015-06-12 12:56:11 ----A---- C:\Windows\system32\msfeeds.dll
2015-06-12 12:56:11 ----A---- C:\Windows\system32\jsproxy.dll
2015-06-12 12:56:11 ----A---- C:\Windows\system32\jscript9diag.dll
2015-06-12 12:56:11 ----A---- C:\Windows\system32\ieUnatt.exe
2015-06-12 12:56:11 ----A---- C:\Windows\system32\iernonce.dll
2015-06-12 12:56:11 ----A---- C:\Windows\system32\iedkcs32.dll
2015-06-12 12:56:11 ----A---- C:\Windows\system32\ieapfltr.dll
2015-06-12 12:56:11 ----A---- C:\Windows\system32\ie4uinit.exe
2015-06-12 12:56:11 ----A---- C:\Windows\system32\dxtmsft.dll
2015-06-12 12:56:09 ----A---- C:\Windows\system32\wininet.dll
2015-06-12 12:56:09 ----A---- C:\Windows\system32\msrating.dll
2015-06-12 12:56:09 ----A---- C:\Windows\system32\jscript.dll
2015-06-12 12:56:09 ----A---- C:\Windows\system32\iesetup.dll
2015-06-12 12:56:09 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2015-06-12 12:56:08 ----A---- C:\Windows\system32\dxtrans.dll
2015-06-12 12:56:07 ----A---- C:\Windows\system32\ieui.dll
2015-06-12 12:56:07 ----A---- C:\Windows\system32\ieframe.dll
2015-06-12 12:56:06 ----A---- C:\Windows\system32\mshtmled.dll
2015-06-12 12:56:05 ----A---- C:\Windows\system32\mshtmlmedia.dll
2015-06-12 12:56:05 ----A---- C:\Windows\system32\MshtmlDac.dll
2015-06-12 12:56:04 ----A---- C:\Windows\system32\jscript9.dll
2015-06-12 12:56:02 ----A---- C:\Windows\system32\mshtml.dll
2015-06-12 12:56:01 ----A---- C:\Windows\system32\iertutil.dll
2015-06-12 12:55:10 ----A---- C:\Windows\system32\win32k.sys
2015-06-12 12:55:05 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2015-06-12 12:55:05 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2015-06-12 12:55:05 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2015-06-12 12:55:05 ----A---- C:\Windows\system32\winsrv.dll
2015-06-12 12:55:05 ----A---- C:\Windows\system32\KernelBase.dll
2015-06-12 12:55:05 ----A---- C:\Windows\system32\kernel32.dll
2015-06-12 12:55:05 ----A---- C:\Windows\system32\conhost.exe
2015-06-12 12:55:04 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2015-06-12 12:55:04 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-06-12 12:55:04 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2015-06-12 12:55:04 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2015-06-12 12:55:04 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2015-06-12 12:55:04 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2015-06-12 12:55:04 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2015-06-12 12:55:04 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2015-06-12 12:55:04 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2015-06-12 12:55:04 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2015-06-12 12:55:04 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2015-06-12 12:55:04 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2015-06-12 12:55:03 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2015-06-12 12:55:03 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2015-06-12 12:55:03 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2015-06-12 12:55:03 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2015-06-12 12:55:03 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2015-06-12 12:55:03 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2015-06-12 12:55:03 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2015-06-12 12:55:02 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2015-06-12 12:55:02 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2015-06-12 12:55:02 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2015-06-12 12:55:02 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2015-06-12 12:55:02 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2015-06-12 12:55:02 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2015-06-12 12:54:36 ----A---- C:\Windows\system32\comctl32.dll
2015-06-11 22:39:02 ----A---- C:\Windows\system32\FlashPlayerInstaller.exe
2015-05-30 01:23:59 ----A---- C:\Windows\system32\%InstallDir%speclean.exe

======List of files/folders modified in the last 1 month======

2015-06-22 19:50:33 ----D---- C:\Windows\Temp
2015-06-22 19:50:31 ----RD---- C:\Program Files
2015-06-22 19:38:35 ----D---- C:\Windows\system32\catroot2
2015-06-22 19:34:54 ----D---- C:\Windows\Prefetch
2015-06-22 18:35:37 ----D---- C:\Windows
2015-06-22 18:27:13 ----D---- C:\Program Files\Malwarebytes Anti-Malware
2015-06-22 18:27:08 ----D---- C:\Windows\system32\drivers
2015-06-22 18:05:36 ----D---- C:\Windows\system32\config
2015-06-21 22:22:24 ----D---- C:\Users\Honys\AppData\Roaming\vlc
2015-06-20 18:26:38 ----SHD---- C:\System Volume Information
2015-06-20 12:56:48 ----D---- C:\Users\Honys\AppData\Roaming\Dropbox
2015-06-18 19:45:43 ----D---- C:\Windows\Tasks
2015-06-18 19:45:43 ----D---- C:\Windows\system32\Tasks
2015-06-18 19:45:40 ----HD---- C:\ProgramData
2015-06-18 17:55:34 ----D---- C:\Users\Honys\AppData\Roaming\uTorrent
2015-06-18 17:52:36 ----D---- C:\Users\Honys\AppData\Roaming\ICQ
2015-06-15 19:55:26 ----D---- C:\Windows\System32
2015-06-15 19:55:26 ----D---- C:\Windows\inf
2015-06-15 19:55:26 ----A---- C:\Windows\system32\PerfStringBackup.INI
2015-06-15 19:53:31 ----D---- C:\Windows\system32\drivers\UMDF
2015-06-15 19:51:44 ----D---- C:\Windows\system32\DriverStore
2015-06-15 19:51:21 ----SHD---- C:\Windows\Installer
2015-06-15 19:50:57 ----D---- C:\Program Files\Common Files
2015-06-15 19:50:36 ----D---- C:\Program Files\DIFX
2015-06-15 19:50:35 ----DC---- C:\Windows\system32\DRVSTORE
2015-06-15 19:49:50 ----D---- C:\Windows\winsxs
2015-06-12 20:51:53 ----D---- C:\Windows\rescache
2015-06-12 13:37:24 ----D---- C:\Windows\system32\en-US
2015-06-12 13:37:24 ----D---- C:\Windows\system32\cs-CZ
2015-06-12 13:37:24 ----D---- C:\Windows\PolicyDefinitions
2015-06-12 13:37:22 ----D---- C:\Program Files\Internet Explorer
2015-06-12 13:37:20 ----D---- C:\Program Files\Windows Media Player
2015-06-12 13:11:55 ----D---- C:\ProgramData\Microsoft Help
2015-06-12 13:10:27 ----D---- C:\Windows\system32\MRT
2015-06-12 12:58:30 ----A---- C:\Windows\system32\MRT.exe
2015-06-11 22:39:05 ----A---- C:\Windows\system32\FlashPlayerApp.exe
2015-06-02 00:05:50 ----D---- C:\Program Files\Google
2015-05-27 21:30:45 ----RD---- C:\Program Files\Skype

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368]
R0 PxHelp20;PxHelp20; C:\Windows\System32\Drivers\PxHelp20.sys [2008-02-06 44608]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 175360]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 388096]
R1 EpfwLWF;Epfw NDIS LightWeight Filter; C:\Windows\system32\DRIVERS\EpfwLWF.sys [2015-03-10 37928]
R3 lgbusenum;LG Bluetooth Bus Enumerator; C:\Windows\system32\DRIVERS\lgbtbus.sys [2009-09-29 10496]
R3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\Windows\system32\DRIVERS\nvm62x32.sys [2009-07-14 347264]
S0 epfwwfp;epfwwfp; C:\Windows\system32\DRIVERS\epfwwfp.sys [2015-03-10 51824]
S1 AEC671X;AEC671X; C:\Windows\System32\drivers\AEC671X.SYS []
S1 ASC;ASC; C:\Windows\System32\drivers\ASC.SYS []
S1 DMX3191;DMX3191; C:\Windows\System32\drivers\DMX3191.SYS []
S1 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys [2015-03-10 193464]
S1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2015-03-10 135808]
S1 SCDEmu;SCDEmu; C:\Windows\system32\drivers\SCDEmu.sys [2012-08-24 113104]
S1 se32;EnTech softEngine; C:\Windows\System32\Drivers\se32.sys [2007-05-03 12112]
S2 adfs;adfs; C:\Windows\system32\drivers\adfs.sys [2009-06-08 73312]
S2 epfw;epfw; C:\Windows\system32\DRIVERS\epfw.sys [2015-03-10 176448]
S2 irda;IrDA Protocol; C:\Windows\system32\DRIVERS\irda.sys [2009-07-14 96768]
S2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
S2 UDNT;UDNT; C:\Windows\system32\drivers\UDNT.sys []
S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 amdagp;AMD AGP Bus Filter Driver; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2014-11-21 16955392]
S3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2014-11-21 472576]
S3 Andbus;LGE Android Platform Composite USB Device; C:\Windows\system32\DRIVERS\lgandbus.sys [2010-12-07 14336]
S3 AndDiag;LGE Android Platform USB Serial Port; C:\Windows\system32\DRIVERS\lganddiag.sys [2010-12-07 20736]
S3 AndGps;LGE Android Platform USB GPS NMEA Port; C:\Windows\system32\DRIVERS\lgandgps.sys [2010-12-07 20096]
S3 ANDModem;LGE Android Platform USB Modem; C:\Windows\system32\DRIVERS\lgandmodem.sys [2010-12-07 25088]
S3 androidusb;ADB Interface Driver; C:\Windows\System32\Drivers\lgandadb.sys [2010-08-02 25728]
S3 AtiHDAudioService;AMD Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdW73.sys [2014-06-21 77824]
S3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2014-11-21 16955392]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888]
S3 DCamUSBTP10;StarCam mini+; C:\Windows\System32\Drivers\iP293x.sys [2008-01-28 242176]
S3 irsir;Microsoft Serial Infrared Driver; C:\Windows\system32\DRIVERS\irsir.sys [2006-11-02 20992]
S3 LgBttPort;LGE Bluetooth TransPort; C:\Windows\system32\DRIVERS\lgbtport.sys [2009-09-29 12160]
S3 LGVMODEM;LGE Virtual Modem; C:\Windows\system32\DRIVERS\lgvmodem.sys [2009-09-29 12928]
S3 MBAMProtector;MBAMProtector; \??\C:\Windows\system32\drivers\mbam.sys [2015-04-14 23256]
S3 MBAMWebAccessControl;MBAMWebAccessControl; \??\C:\Windows\system32\drivers\mwac.sys [2015-04-14 51928]
S3 nmwcd;Nokia USB Phone Parent Driver; C:\Windows\system32\drivers\ccdcmb.sys [2012-01-09 18176]
S3 nmwcdc;Nokia USB Communication Driver; C:\Windows\system32\drivers\ccdcmbo.sys [2012-01-09 23168]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfd.sys [2012-06-11 19072]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 133632]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2015-01-31 15872]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 5632]
S3 sisagp;SIS AGP Bus Filter; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 ssadbus;SAMSUNG Android USB Composite Device driver (WDM); C:\Windows\system32\DRIVERS\ssadbus.sys [2011-05-13 121064]
S3 ssadmdfl;SAMSUNG Android USB Modem (Filter); C:\Windows\system32\DRIVERS\ssadmdfl.sys [2011-05-13 12776]
S3 ssadmdm;SAMSUNG Android USB Modem Drivers; C:\Windows\system32\DRIVERS\ssadmdm.sys [2011-05-13 136808]
S3 ssadserd;SAMSUNG Android USB Diagnostic Serial Port (WDM); C:\Windows\system32\DRIVERS\ssadserd.sys [2011-05-13 114280]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 28032]
S3 Synth3dVsc;Synth3dVsc; C:\Windows\System32\drivers\synth3dvsc.sys []
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2010-11-20 52224]
S3 tsusbhub;@%SystemRoot%\system32\drivers\tsusbhub.sys,-1; C:\Windows\system32\drivers\tsusbhub.sys []
S3 upperdev;upperdev; C:\Windows\system32\DRIVERS\usbser_lowerflt.sys [2012-01-09 8192]
S3 usbser;USB Modem Driver; C:\Windows\system32\drivers\usbser.sys [2013-08-29 28160]
S3 UsbserFilt;UsbserFilt; C:\Windows\system32\DRIVERS\usbser_lowerfltj.sys [2012-01-09 8192]
S3 VGPU;VGPU; C:\Windows\System32\drivers\rdvgkmd.sys []
S3 viaagp;VIA AGP Bus Filter; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 17920]
S3 WinUsb;Android USB Driver; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 35968]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

S2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-12-18 65432]
S2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2014-11-21 212992]
S2 Apple Mobile Device;Apple Mobile Device; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2012-12-21 57008]
S2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-30 390504]
S2 c2cautoupdatesvc;Skype Click to Call Updater; C:\Program Files\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [2015-05-01 1394816]
S2 c2cpnrsvc;Skype Click to Call PNR Service; C:\Program Files\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [2015-05-01 1772672]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2012-07-09 104912]
S2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S2 dell_power_nap_service;Dell Power Nap Service; C:\Program Files\Dell\PowerNap\PowerNap.Service.exe [2011-02-28 11776]
S2 ekrn;ESET Service; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [2015-01-28 1349576]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2012-11-02 116648]
S2 HiSuiteOuc.exe;HiSuiteOuc.exe; C:\ProgramData\HiSuiteOuc\HiSuiteOuc.exe [2014-09-05 117280]
S2 HuaweiHiSuiteService.exe;HuaweiHiSuiteService.exe; C:\ProgramData\HandSetService\HuaweiHiSuiteService.exe [2014-09-05 180768]
S2 Irmon;@%SystemRoot%\System32\irmon.dll,-2000; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S2 MBAMService;MBAMService; C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe [2015-04-14 1080120]
S2 PnkBstrA;PnkBstrA; C:\Windows\system32\PnkBstrA.exe [2012-11-21 76888]
S2 PnkBstrB;PnkBstrB; C:\Windows\system32\PnkBstrB.exe [2012-11-21 189248]
S2 PSI_SVC_2;Protexis Licensing V2; c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe [2007-07-24 185632]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2015-01-02 315488]
S2 softOSD;softOSD; C:\Program Files\softOSD\softOSD.exe [2010-12-18 291384]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2015-06-11 268464]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2012-11-19 655624]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2012-11-02 116648]
S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2011-05-10 136120]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2015-05-23 102912]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 ServiceLayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [2012-06-11 724376]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2012-11-02 1343400]
S4 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2012-07-09 46528]
S4 MBAMScheduler;MBAMScheduler; C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe [2015-04-14 1871160]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2012-07-09 139696]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2012-07-09 139696]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2012-07-09 139696]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119675
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Zamrznutí PC po pár minutách - prosím o kontrolu logu

#2 Příspěvek od Rudy »

Zdravím!
Spusťte tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

blip
Návštěvník
Návštěvník
Příspěvky: 8
Registrován: 22 čer 2015 19:01

Re: Zamrznutí PC po pár minutách - prosím o kontrolu logu

#3 Příspěvek od blip »

Vkládám log z adwcleaneru:

# AdwCleaner v4.207 - Log vytvořen 22/06/2015 v 20:55:22
# Aktualizováno 21/06/2015 by Xplode
# Databáze : 2015-06-21.2 [Server]
# Operační system : Windows 7 Ultimate Service Pack 1 (x86)
# Uživatelské jméno : Honys - HONYS-PC
# Spuštěno z : C:\Users\Honys\Desktop\adwcleaner_4.207.exe
# Nastavení : Čištění

***** [ Služby ] *****


***** [ Soubory / Složky ] *****

Složka Smazáno : C:\ProgramData\simplitec
Složka Smazáno : C:\Users\Honys\AppData\Roaming\simplitec
[!] Složka Smazáno : C:\Users\Honys\Documents\hosts
Soubor Smazáno : C:\END
Soubor Smazáno : C:\Users\Honys\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_directx.en.softonic.com_0.localstorage
Soubor Smazáno : C:\Users\Honys\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_directx.en.softonic.com_0.localstorage-journal
Soubor Smazáno : C:\Users\Honys\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_en.softonic.com_0.localstorage
Soubor Smazáno : C:\Users\Honys\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_en.softonic.com_0.localstorage-journal
Soubor Smazáno : C:\Users\Honys\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_st.chatango.com_0.localstorage
Soubor Smazáno : C:\Users\Honys\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_st.chatango.com_0.localstorage-journal
Soubor Smazáno : C:\Users\Honys\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_wlogin.icq.com_0.localstorage
Soubor Smazáno : C:\Users\Honys\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_wlogin.icq.com_0.localstorage-journal
Soubor Smazáno : C:\Users\Honys\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.ask.com_0.localstorage
Soubor Smazáno : C:\Users\Honys\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.ask.com_0.localstorage-journal
Soubor Smazáno : C:\Users\Honys\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.icq.com_0.localstorage
Soubor Smazáno : C:\Users\Honys\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.icq.com_0.localstorage-journal
Soubor Smazáno : C:\Users\Honys\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.veoh.com_0.localstorage
Soubor Smazáno : C:\Users\Honys\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.veoh.com_0.localstorage-journal

***** [ Naplánované úlohy ] *****


***** [ Zástupci ] *****


***** [ Registry ] *****

Klíč Smazáno : HKCU\Software\APN PIP
Klíč Smazáno : HKCU\Software\Conduit
Klíč Smazáno : HKCU\Software\PIP
Klíč Smazáno : HKLM\SOFTWARE\DivX\Install\Setup\WizardLayout\ConduitToolbar
Klíč Smazáno : HKLM\SOFTWARE\PIP
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{3D2C9DE6-9ADE-4252-A241-E43723B0CE02}
Data Smazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings [ProxyOverride] - *.local

***** [ Prohlížeče ] *****

-\\ Internet Explorer v11.0.9600.17840


-\\ Google Chrome v43.0.2357.124

[C:\Users\Honys\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Smazáno [Search Provider] : hxxp://en.softonic.com/s/{searchTerms}

*************************

AdwCleaner[R0].txt - [3396 bytů] - [22/06/2015 20:54:01]
AdwCleaner[S0].txt - [3299 bytů] - [22/06/2015 20:55:22]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [3357 bytů] ##########

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119675
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Zamrznutí PC po pár minutách - prosím o kontrolu logu

#4 Příspěvek od Rudy »

Dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

blip
Návštěvník
Návštěvník
Příspěvky: 8
Registrován: 22 čer 2015 19:01

Re: Zamrznutí PC po pár minutách - prosím o kontrolu logu

#5 Příspěvek od blip »

Nový RSIT:

Logfile of random's system information tool 1.10 (written by random/random)
Run by Honys at 2015-06-22 22:18:18
Microsoft Windows 7 Ultimate Service Pack 1
System drive C: has 5 GB (7%) free of 76 GB
Total RAM: 3327 MB (49% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22:18:25, on 22.6.2015
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17840)
Boot mode: Safe mode with network support

Running processes:
C:\Windows\Explorer.EXE
C:\Windows\system32\ctfmon.exe
C:\Windows\system32\DllHost.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Users\Honys\Downloads\RSIT.exe
C:\Program Files\trend micro\Honys.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: LinkAirBrowserHelper HistoryTriggerBHO - {21A88CB9-84D2-4020-A2D1-B25A21034884} - C:\Program Files\LG Electronics\LG PC Suite IV\LinkAir\LinkAirBrowserHelper.dll
O2 - BHO: Increase performance and video formats for your HTML5 <video> - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.8.0_31\bin\ssv.dll
O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre1.8.0_31\bin\jp2ssv.dll
O2 - BHO: SmartSelect - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [Launcher3010] "C:\Program Files\Xerox Office Printing\WorkCentre SSW\Launcher\xrlaunch.exe" /S Xerox Phaser 3010
O4 - HKLM\..\Run: [DocuPrint 3010 RUN] "C:\Program Files\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmRun.exe"
O4 - HKLM\..\Run: [StatusAutoRun3010] "C:\Program Files\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmpl.exe" Xerox Phaser 3010,hide,\S
O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [AdobeCS4ServiceManager] "C:\Program Files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [Adobe Acrobat Speed Launcher] "C:\Program Files\Adobe\Acrobat 10.0\Acrobat\Acrobat_sl.exe"
O4 - HKLM\..\Run: [Acrobat Assistant 8.0] "C:\Program Files\Adobe\Acrobat 10.0\Acrobat\Acrotray.exe"
O4 - HKLM\..\Run: [DivXMediaServer] C:\Program Files\DivX\DivX Media Server\DivXMediaServer.exe
O4 - HKLM\..\Run: [iPPCamScan] C:\Windows\iPScan.exe
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide /waitservice
O4 - HKCU\..\Run: [Google+ Auto Backup] "C:\Users\Honys\AppData\Local\Programs\Google\Google+ Auto Backup\Google+ Auto Backup.exe" /autostart
O4 - HKCU\..\Run: [Zoner Photo Studio Autoupdate] C:\PROGRAM FILES\ZONER\PHOTO STUDIO 15\Program32\ZPSTRAY.EXE
O4 - HKCU\..\Run: [Dropbox Update] "C:\Users\Honys\AppData\Local\Dropbox\Update\DropboxUpdate.exe" /c
O4 - HKCU\..\RunOnce: [Report] C:\AdwCleaner\AdwCleaner[S0].txt
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Startup: UMAX VistaAccess.lnk = C:\VSTASCAN\vsaccess.exe
O4 - Global Startup: PowerNap.lnk = ?
O4 - Global Startup: PowerNapWatcher.lnk = ?
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200
O8 - Extra context menu item: Append Link Target to Existing PDF - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
O8 - Extra context menu item: Append to Existing PDF - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convert Link Target to Adobe PDF - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
O8 - Extra context menu item: Convert to Adobe PDF - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: ICQ7M - {781B39EC-2E18-41FC-9B00-B84E4FFCA85F} - C:\Program Files\ICQ7M\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7M - {781B39EC-2E18-41FC-9B00-B84E4FFCA85F} - C:\Program Files\ICQ7M\ICQ.exe
O9 - Extra button: Skype Click to Call settings - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: *.dell.com
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: AMD External Events Utility - AMD - C:\Windows\system32\atiesrxx.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Dell Power Nap Service (dell_power_nap_service) - Unknown owner - C:\Program Files\Dell\PowerNap\PowerNap.Service.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\ekrn.exe
O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: HiSuiteOuc.exe - Unknown owner - C:\ProgramData\HiSuiteOuc\HiSuiteOuc.exe
O23 - Service: HuaweiHiSuiteService.exe - Unknown owner - C:\ProgramData\HandSetService\HuaweiHiSuiteService.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: PnkBstrB - Unknown owner - C:\Windows\system32\PnkBstrB.exe
O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
O23 - Service: ServiceLayer - Nokia - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: softOSD - EnTech Taiwan - C:\Program Files\softOSD\softOSD.exe
O23 - Service: XRcnStatutsDatabase (XRNADB) - Unknown owner - C:\Program Files\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmdb.exe

--
End of file - 10304 bytes

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\tasks\DropboxUpdateTaskUserS-1-5-21-1551242594-84631119-3797995329-1001Core.job - C:\Users\Honys\AppData\Local\Dropbox\Update\DropboxUpdate.exe /c
C:\Windows\tasks\DropboxUpdateTaskUserS-1-5-21-1551242594-84631119-3797995329-1001UA.job - C:\Users\Honys\AppData\Local\Dropbox\Update\DropboxUpdate.exe /ua /installsource scheduler
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files\Google\Update\GoogleUpdate.exe /ua /installsource scheduler

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{21A88CB9-84D2-4020-A2D1-B25A21034884}]
HistoryTriggerBHO Class - C:\Program Files\LG Electronics\LG PC Suite IV\LinkAir\LinkAirBrowserHelper.dll [2011-01-13 35688]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{326E768D-4182-46FD-9C16-1449A49795F4}]
DivX Plus Web Player HTML5 <video> - C:\Program Files\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll [2013-05-06 194912]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre1.8.0_31\bin\ssv.dll [2015-01-31 460712]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE7CD045-E861-484f-8273-0445EE161910}]
Adobe PDF Conversion Toolbar Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2014-05-08 343424]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Click to Call for Internet Explorer - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2015-05-01 1724032]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre1.8.0_31\bin\jp2ssv.dll [2015-01-31 172968]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F4971EE7-DAA0-4053-9964-665D8EE6A077}]
SmartSelect Class - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2014-05-08 343424]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{47833539-D0C5-4125-9FA8-0819E2EAAC93} - Adobe PDF - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2014-05-08 343424]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904]
"Launcher3010"=C:\Program Files\Xerox Office Printing\WorkCentre SSW\Launcher\xrlaunch.exe [2011-04-19 2570752]
"DocuPrint 3010 RUN"=C:\Program Files\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmRun.exe [2011-04-19 357376]
"StatusAutoRun3010"=C:\Program Files\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmpl.exe [2011-04-19 3658240]
"APSDaemon"=C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe [2013-01-28 59720]
"QuickTime Task"=C:\Program Files\QuickTime\QTTask.exe [2011-10-24 421888]
"AdobeCS4ServiceManager"=C:\Program Files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe [2009-06-08 611712]
""= []
"Adobe Acrobat Speed Launcher"=C:\Program Files\Adobe\Acrobat 10.0\Acrobat\Acrobat_sl.exe [2014-05-08 41336]
"Acrobat Assistant 8.0"=C:\Program Files\Adobe\Acrobat 10.0\Acrobat\Acrotray.exe [2014-05-08 840568]
"DivXMediaServer"=C:\Program Files\DivX\DivX Media Server\DivXMediaServer.exe [2013-05-20 450560]
"iPPCamScan"=C:\Windows\iPScan.exe [2008-01-23 86016]
"egui"=C:\Program Files\ESET\ESET Smart Security\egui.exe [2015-01-28 5088456]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"LG LinkAir"= []
"Google+ Auto Backup"=C:\Users\Honys\AppData\Local\Programs\Google\Google+ Auto Backup\Google+ Auto Backup.exe [2014-01-06 3619096]
"Zoner Photo Studio Autoupdate"=C:\PROGRAM FILES\ZONER\PHOTO STUDIO 15\Program32\ZPSTRAY.EXE [2014-03-13 779776]
"Dropbox Update"=C:\Users\Honys\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-06-18 134512]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Report"=C:\AdwCleaner\AdwCleaner[S0].txt [2015-06-22 3436]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DivXUpdate]
C:\Program Files\DivX\DivX Update\DivXUpdate.exe [2013-02-13 1263952]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iPPCamScan]
C:\Windows\iPScan.exe [2008-01-23 86016]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]
C:\Program Files\iTunes\iTunesHelper.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PWRISOVM.EXE]
C:\Program Files\PowerISO\PWRISOVM.EXE [2012-08-24 336992]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
PowerNap.lnk - C:\Windows\Installer\{2436940B-1C2C-4FB4-A703-0EE9B1350791}\_35E0567647C2420371B885.exe
PowerNapWatcher.lnk - C:\Windows\Installer\{2436940B-1C2C-4FB4-A703-0EE9B1350791}\_18B4EACA6AED157B14F49D.exe

C:\Users\Honys\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
UMAX VistaAccess.lnk - C:\VSTASCAN\vsaccess.exe

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\se32.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"vidc.DIVX"=DivX.dll
"vidc.yv12"=DivX.dll
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"aux3"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux2"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2015-06-22 20:53:43 ----D---- C:\AdwCleaner
2015-06-22 19:50:31 ----D---- C:\Program Files\trend micro
2015-06-22 19:50:30 ----D---- C:\rsit
2015-06-22 18:35:37 ----A---- C:\Windows\ntbtlog.txt
2015-06-18 19:45:40 ----D---- C:\ProgramData\Dropbox
2015-06-15 21:10:10 ----D---- C:\Program Files\NbuExplorer
2015-06-15 19:52:24 ----D---- C:\Users\Honys\AppData\Roaming\PC Suite
2015-06-15 19:52:24 ----D---- C:\Users\Honys\AppData\Roaming\Nokia
2015-06-15 19:52:23 ----D---- C:\ProgramData\PC Suite
2015-06-15 19:50:57 ----D---- C:\Program Files\Common Files\PCSuite
2015-06-15 19:50:52 ----D---- C:\Program Files\Common Files\Nokia
2015-06-15 19:50:35 ----A---- C:\Windows\system32\drivers\pccsmcfd.sys
2015-06-15 19:50:21 ----D---- C:\Program Files\PC Connectivity Solution
2015-06-15 19:50:01 ----D---- C:\Program Files\Nokia
2015-06-15 19:50:01 ----A---- C:\Windows\system32\nmwcdcls.dll
2015-06-15 19:49:03 ----D---- C:\ProgramData\Installations
2015-06-12 12:56:35 ----A---- C:\Windows\system32\wmp.dll
2015-06-12 12:56:34 ----A---- C:\Windows\system32\wmploc.DLL
2015-06-12 12:56:34 ----A---- C:\Windows\system32\spwmp.dll
2015-06-12 12:56:34 ----A---- C:\Windows\system32\dxmasf.dll
2015-06-12 12:56:12 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-06-12 12:56:12 ----A---- C:\Windows\system32\ieetwproxystub.dll
2015-06-12 12:56:12 ----A---- C:\Windows\system32\ieetwcollector.exe
2015-06-12 12:56:11 ----A---- C:\Windows\system32\vbscript.dll
2015-06-12 12:56:11 ----A---- C:\Windows\system32\urlmon.dll
2015-06-12 12:56:11 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2015-06-12 12:56:11 ----A---- C:\Windows\system32\msfeeds.dll
2015-06-12 12:56:11 ----A---- C:\Windows\system32\jsproxy.dll
2015-06-12 12:56:11 ----A---- C:\Windows\system32\jscript9diag.dll
2015-06-12 12:56:11 ----A---- C:\Windows\system32\ieUnatt.exe
2015-06-12 12:56:11 ----A---- C:\Windows\system32\iernonce.dll
2015-06-12 12:56:11 ----A---- C:\Windows\system32\iedkcs32.dll
2015-06-12 12:56:11 ----A---- C:\Windows\system32\ieapfltr.dll
2015-06-12 12:56:11 ----A---- C:\Windows\system32\ie4uinit.exe
2015-06-12 12:56:11 ----A---- C:\Windows\system32\dxtmsft.dll
2015-06-12 12:56:09 ----A---- C:\Windows\system32\wininet.dll
2015-06-12 12:56:09 ----A---- C:\Windows\system32\msrating.dll
2015-06-12 12:56:09 ----A---- C:\Windows\system32\jscript.dll
2015-06-12 12:56:09 ----A---- C:\Windows\system32\iesetup.dll
2015-06-12 12:56:09 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2015-06-12 12:56:08 ----A---- C:\Windows\system32\dxtrans.dll
2015-06-12 12:56:07 ----A---- C:\Windows\system32\ieui.dll
2015-06-12 12:56:07 ----A---- C:\Windows\system32\ieframe.dll
2015-06-12 12:56:06 ----A---- C:\Windows\system32\mshtmled.dll
2015-06-12 12:56:05 ----A---- C:\Windows\system32\mshtmlmedia.dll
2015-06-12 12:56:05 ----A---- C:\Windows\system32\MshtmlDac.dll
2015-06-12 12:56:04 ----A---- C:\Windows\system32\jscript9.dll
2015-06-12 12:56:02 ----A---- C:\Windows\system32\mshtml.dll
2015-06-12 12:56:01 ----A---- C:\Windows\system32\iertutil.dll
2015-06-12 12:55:10 ----A---- C:\Windows\system32\win32k.sys
2015-06-12 12:55:05 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2015-06-12 12:55:05 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2015-06-12 12:55:05 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2015-06-12 12:55:05 ----A---- C:\Windows\system32\winsrv.dll
2015-06-12 12:55:05 ----A---- C:\Windows\system32\KernelBase.dll
2015-06-12 12:55:05 ----A---- C:\Windows\system32\kernel32.dll
2015-06-12 12:55:05 ----A---- C:\Windows\system32\conhost.exe
2015-06-12 12:55:04 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2015-06-12 12:55:04 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-06-12 12:55:04 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2015-06-12 12:55:04 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2015-06-12 12:55:04 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2015-06-12 12:55:04 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2015-06-12 12:55:04 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2015-06-12 12:55:04 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2015-06-12 12:55:04 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2015-06-12 12:55:04 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2015-06-12 12:55:04 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2015-06-12 12:55:04 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2015-06-12 12:55:03 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2015-06-12 12:55:03 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2015-06-12 12:55:03 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2015-06-12 12:55:03 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2015-06-12 12:55:03 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2015-06-12 12:55:03 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2015-06-12 12:55:03 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2015-06-12 12:55:02 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2015-06-12 12:55:02 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2015-06-12 12:55:02 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2015-06-12 12:55:02 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2015-06-12 12:55:02 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2015-06-12 12:55:02 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2015-06-12 12:54:36 ----A---- C:\Windows\system32\comctl32.dll
2015-06-11 22:39:02 ----A---- C:\Windows\system32\FlashPlayerInstaller.exe
2015-05-30 01:23:59 ----A---- C:\Windows\system32\%InstallDir%speclean.exe

======List of files/folders modified in the last 1 month======

2015-06-22 22:18:19 ----D---- C:\Windows\Temp
2015-06-22 21:11:25 ----D---- C:\Windows\Prefetch
2015-06-22 20:55:22 ----HD---- C:\ProgramData
2015-06-22 19:50:31 ----RD---- C:\Program Files
2015-06-22 19:38:35 ----D---- C:\Windows\system32\catroot2
2015-06-22 18:56:32 ----D---- C:\Program Files\Windows 7 Activator
2015-06-22 18:35:37 ----D---- C:\Windows
2015-06-22 18:27:13 ----D---- C:\Program Files\Malwarebytes Anti-Malware
2015-06-22 18:27:08 ----D---- C:\Windows\system32\drivers
2015-06-22 18:05:36 ----D---- C:\Windows\system32\config
2015-06-21 22:22:24 ----D---- C:\Users\Honys\AppData\Roaming\vlc
2015-06-20 18:26:38 ----SHD---- C:\System Volume Information
2015-06-20 12:56:48 ----D---- C:\Users\Honys\AppData\Roaming\Dropbox
2015-06-18 19:45:43 ----D---- C:\Windows\Tasks
2015-06-18 19:45:43 ----D---- C:\Windows\system32\Tasks
2015-06-18 17:55:34 ----D---- C:\Users\Honys\AppData\Roaming\uTorrent
2015-06-18 17:52:36 ----D---- C:\Users\Honys\AppData\Roaming\ICQ
2015-06-15 19:55:26 ----D---- C:\Windows\System32
2015-06-15 19:55:26 ----D---- C:\Windows\inf
2015-06-15 19:55:26 ----A---- C:\Windows\system32\PerfStringBackup.INI
2015-06-15 19:53:31 ----D---- C:\Windows\system32\drivers\UMDF
2015-06-15 19:51:44 ----D---- C:\Windows\system32\DriverStore
2015-06-15 19:51:21 ----SHD---- C:\Windows\Installer
2015-06-15 19:50:57 ----D---- C:\Program Files\Common Files
2015-06-15 19:50:36 ----D---- C:\Program Files\DIFX
2015-06-15 19:50:35 ----DC---- C:\Windows\system32\DRVSTORE
2015-06-15 19:49:50 ----D---- C:\Windows\winsxs
2015-06-12 20:51:53 ----D---- C:\Windows\rescache
2015-06-12 13:37:24 ----D---- C:\Windows\system32\en-US
2015-06-12 13:37:24 ----D---- C:\Windows\system32\cs-CZ
2015-06-12 13:37:24 ----D---- C:\Windows\PolicyDefinitions
2015-06-12 13:37:22 ----D---- C:\Program Files\Internet Explorer
2015-06-12 13:37:20 ----D---- C:\Program Files\Windows Media Player
2015-06-12 13:11:55 ----D---- C:\ProgramData\Microsoft Help
2015-06-12 13:10:27 ----D---- C:\Windows\system32\MRT
2015-06-12 12:58:30 ----A---- C:\Windows\system32\MRT.exe
2015-06-11 22:39:05 ----A---- C:\Windows\system32\FlashPlayerApp.exe
2015-06-02 00:05:50 ----D---- C:\Program Files\Google
2015-05-27 21:30:45 ----RD---- C:\Program Files\Skype

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368]
R0 PxHelp20;PxHelp20; C:\Windows\System32\Drivers\PxHelp20.sys [2008-02-06 44608]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 175360]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 388096]
R1 EpfwLWF;Epfw NDIS LightWeight Filter; C:\Windows\system32\DRIVERS\EpfwLWF.sys [2015-03-10 37928]
R3 lgbusenum;LG Bluetooth Bus Enumerator; C:\Windows\system32\DRIVERS\lgbtbus.sys [2009-09-29 10496]
R3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\Windows\system32\DRIVERS\nvm62x32.sys [2009-07-14 347264]
S0 epfwwfp;epfwwfp; C:\Windows\system32\DRIVERS\epfwwfp.sys [2015-03-10 51824]
S1 AEC671X;AEC671X; C:\Windows\System32\drivers\AEC671X.SYS []
S1 ASC;ASC; C:\Windows\System32\drivers\ASC.SYS []
S1 DMX3191;DMX3191; C:\Windows\System32\drivers\DMX3191.SYS []
S1 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys [2015-03-10 193464]
S1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2015-03-10 135808]
S1 SCDEmu;SCDEmu; C:\Windows\system32\drivers\SCDEmu.sys [2012-08-24 113104]
S1 se32;EnTech softEngine; C:\Windows\System32\Drivers\se32.sys [2007-05-03 12112]
S2 adfs;adfs; C:\Windows\system32\drivers\adfs.sys [2009-06-08 73312]
S2 epfw;epfw; C:\Windows\system32\DRIVERS\epfw.sys [2015-03-10 176448]
S2 irda;IrDA Protocol; C:\Windows\system32\DRIVERS\irda.sys [2009-07-14 96768]
S2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
S2 UDNT;UDNT; C:\Windows\system32\drivers\UDNT.sys []
S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 amdagp;AMD AGP Bus Filter Driver; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2014-11-21 16955392]
S3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2014-11-21 472576]
S3 Andbus;LGE Android Platform Composite USB Device; C:\Windows\system32\DRIVERS\lgandbus.sys [2010-12-07 14336]
S3 AndDiag;LGE Android Platform USB Serial Port; C:\Windows\system32\DRIVERS\lganddiag.sys [2010-12-07 20736]
S3 AndGps;LGE Android Platform USB GPS NMEA Port; C:\Windows\system32\DRIVERS\lgandgps.sys [2010-12-07 20096]
S3 ANDModem;LGE Android Platform USB Modem; C:\Windows\system32\DRIVERS\lgandmodem.sys [2010-12-07 25088]
S3 androidusb;ADB Interface Driver; C:\Windows\System32\Drivers\lgandadb.sys [2010-08-02 25728]
S3 AtiHDAudioService;AMD Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdW73.sys [2014-06-21 77824]
S3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2014-11-21 16955392]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888]
S3 DCamUSBTP10;StarCam mini+; C:\Windows\System32\Drivers\iP293x.sys [2008-01-28 242176]
S3 irsir;Microsoft Serial Infrared Driver; C:\Windows\system32\DRIVERS\irsir.sys [2006-11-02 20992]
S3 LgBttPort;LGE Bluetooth TransPort; C:\Windows\system32\DRIVERS\lgbtport.sys [2009-09-29 12160]
S3 LGVMODEM;LGE Virtual Modem; C:\Windows\system32\DRIVERS\lgvmodem.sys [2009-09-29 12928]
S3 MBAMProtector;MBAMProtector; \??\C:\Windows\system32\drivers\mbam.sys [2015-04-14 23256]
S3 MBAMWebAccessControl;MBAMWebAccessControl; \??\C:\Windows\system32\drivers\mwac.sys [2015-04-14 51928]
S3 nmwcd;Nokia USB Phone Parent Driver; C:\Windows\system32\drivers\ccdcmb.sys [2012-01-09 18176]
S3 nmwcdc;Nokia USB Communication Driver; C:\Windows\system32\drivers\ccdcmbo.sys [2012-01-09 23168]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfd.sys [2012-06-11 19072]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 133632]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2015-01-31 15872]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 5632]
S3 sisagp;SIS AGP Bus Filter; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 ssadbus;SAMSUNG Android USB Composite Device driver (WDM); C:\Windows\system32\DRIVERS\ssadbus.sys [2011-05-13 121064]
S3 ssadmdfl;SAMSUNG Android USB Modem (Filter); C:\Windows\system32\DRIVERS\ssadmdfl.sys [2011-05-13 12776]
S3 ssadmdm;SAMSUNG Android USB Modem Drivers; C:\Windows\system32\DRIVERS\ssadmdm.sys [2011-05-13 136808]
S3 ssadserd;SAMSUNG Android USB Diagnostic Serial Port (WDM); C:\Windows\system32\DRIVERS\ssadserd.sys [2011-05-13 114280]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 28032]
S3 Synth3dVsc;Synth3dVsc; C:\Windows\System32\drivers\synth3dvsc.sys []
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2010-11-20 52224]
S3 tsusbhub;@%SystemRoot%\system32\drivers\tsusbhub.sys,-1; C:\Windows\system32\drivers\tsusbhub.sys []
S3 upperdev;upperdev; C:\Windows\system32\DRIVERS\usbser_lowerflt.sys [2012-01-09 8192]
S3 usbser;USB Modem Driver; C:\Windows\system32\drivers\usbser.sys [2013-08-29 28160]
S3 UsbserFilt;UsbserFilt; C:\Windows\system32\DRIVERS\usbser_lowerfltj.sys [2012-01-09 8192]
S3 VGPU;VGPU; C:\Windows\System32\drivers\rdvgkmd.sys []
S3 viaagp;VIA AGP Bus Filter; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 17920]
S3 WinUsb;Android USB Driver; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 35968]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

S2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-12-18 65432]
S2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2014-11-21 212992]
S2 Apple Mobile Device;Apple Mobile Device; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2012-12-21 57008]
S2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-30 390504]
S2 c2cautoupdatesvc;Skype Click to Call Updater; C:\Program Files\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [2015-05-01 1394816]
S2 c2cpnrsvc;Skype Click to Call PNR Service; C:\Program Files\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [2015-05-01 1772672]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2012-07-09 104912]
S2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S2 dell_power_nap_service;Dell Power Nap Service; C:\Program Files\Dell\PowerNap\PowerNap.Service.exe [2011-02-28 11776]
S2 ekrn;ESET Service; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [2015-01-28 1349576]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2012-11-02 116648]
S2 HiSuiteOuc.exe;HiSuiteOuc.exe; C:\ProgramData\HiSuiteOuc\HiSuiteOuc.exe [2014-09-05 117280]
S2 HuaweiHiSuiteService.exe;HuaweiHiSuiteService.exe; C:\ProgramData\HandSetService\HuaweiHiSuiteService.exe [2014-09-05 180768]
S2 Irmon;@%SystemRoot%\System32\irmon.dll,-2000; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S2 MBAMService;MBAMService; C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe [2015-04-14 1080120]
S2 PnkBstrA;PnkBstrA; C:\Windows\system32\PnkBstrA.exe [2012-11-21 76888]
S2 PnkBstrB;PnkBstrB; C:\Windows\system32\PnkBstrB.exe [2012-11-21 189248]
S2 PSI_SVC_2;Protexis Licensing V2; c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe [2007-07-24 185632]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2015-01-02 315488]
S2 softOSD;softOSD; C:\Program Files\softOSD\softOSD.exe [2010-12-18 291384]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2015-06-11 268464]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2012-11-19 655624]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2012-11-02 116648]
S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2011-05-10 136120]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2015-05-23 102912]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 ServiceLayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [2012-06-11 724376]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2012-11-02 1343400]
S4 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2012-07-09 46528]
S4 MBAMScheduler;MBAMScheduler; C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe [2015-04-14 1871160]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2012-07-09 139696]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2012-07-09 139696]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2012-07-09 139696]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119675
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Zamrznutí PC po pár minutách - prosím o kontrolu logu

#6 Příspěvek od Rudy »

Jak je na tom váš oper. systém s legalitou?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

blip
Návštěvník
Návštěvník
Příspěvky: 8
Registrován: 22 čer 2015 19:01

Re: Zamrznutí PC po pár minutách - prosím o kontrolu logu

#7 Příspěvek od blip »

PC jsem pořizoval od známého s tím, že W7 tam jsou legální, někde bych k tomu měl mít i papíry.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119675
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Zamrznutí PC po pár minutách - prosím o kontrolu logu

#8 Příspěvek od Rudy »

OK. Zkusíme tento postup:

Stáhněte a spusťte OTL: http://oldtimer.geekstogo.com/OTL.exe . Spusťte, zaškrněte "Pro všechny uživatele", Kontrola na havěť LOP" a Kontrola na hvěť PURITY" a do dolního bílého okna zkopírujte:
CREATERESTOREPOINT

netsvcs
drivers32
savembr:0

/md5start
atapi.sys
autochk.exe
cdrom.sys
explorer.exe
hal.dll
scecli.dll
services.exe
svchost.exe
tcpip.sys
userinit.exe
winlogon.exe
/md5stop

%systemroot%*.* /U /s
%SYSTEMDRIVE%\*.exe
%ALLUSERSPROFILE%\Application Data\*.
%ALLUSERSPROFILE%\Application Data\*.exe /s
%APPDATA%\*.
%APPDATA%\*.exe /s
%systemroot%\*. /mp /s
%systemroot%\system32\*.dll /lockedfiles
%systemroot%\Tasks\*.job
%systemroot%\system32\drivers\*.sys /lockedfiles
%systemroot%\System32\config\*.sav
%systemroot%\system32\*.dll /lockedfiles
%systemroot%\system32\drivers\*.sys /3
%systemroot%\system32\*.* /3
%SYSTEMDRIVE%\*.exe

HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s

%PROGRAMFILES%\Mozilla Firefox\firefox.exe /md5
%PROGRAMFILES%\Internet Explorer\iexplore.exe /md5
%PROGRAMFILES%\Opera\opera.exe /md5
%PROGRAMFILES%\Google\Chrome\Application\chrome.exe /md5

%SystemDrive%\PhysicalMBR.bin /md5

*crack* /s
*keygen* /s
*loader* /s
a klikněte na >Prohledat<. Dejte oba logy.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

blip
Návštěvník
Návštěvník
Příspěvky: 8
Registrován: 22 čer 2015 19:01

Re: Zamrznutí PC po pár minutách - prosím o kontrolu logu

#9 Příspěvek od blip »

Logy z OTL:

OTL logfile created on: 23.6.2015 20:09:49 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Honys\Desktop
Ultimate Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.17843)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy

3,25 Gb Total Physical Memory | 1,47 Gb Available Physical Memory | 45,22% Memory free
6,50 Gb Paging File | 4,43 Gb Available in Paging File | 68,26% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 74,53 Gb Total Space | 5,22 Gb Free Space | 7,01% Space Free | Partition Type: NTFS
Drive D: | 186,31 Gb Total Space | 2,79 Gb Free Space | 1,50% Space Free | Partition Type: NTFS
Drive E: | 931,51 Gb Total Space | 640,49 Gb Free Space | 68,76% Space Free | Partition Type: NTFS

Computer Name: HONYS-PC | User Name: Honys | Logged in as Administrator.
Boot Mode: SafeMode with Networking | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2015.06.23 20:08:28 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Honys\Desktop\OTL.exe
PRC - [2015.06.05 20:22:15 | 000,813,896 | ---- | M] (Google Inc.) -- C:\Program Files\Google\Chrome\Application\chrome.exe
PRC - [2011.02.25 07:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe


========== Modules (No Company Name) ==========

MOD - [2015.06.05 20:22:14 | 015,003,464 | ---- | M] () -- C:\Program Files\Google\Chrome\Application\43.0.2357.124\PepperFlash\pepflashplayer.dll
MOD - [2014.02.10 13:44:24 | 004,592,128 | ---- | M] () -- C:\Users\Honys\AppData\Local\Google\Chrome\User Data\SwiftShader\3.2.6.45159\libGLESv2.dll
MOD - [2014.02.10 13:44:24 | 000,112,128 | ---- | M] () -- C:\Users\Honys\AppData\Local\Google\Chrome\User Data\SwiftShader\3.2.6.45159\libEGL.dll


========== Services (SafeList) ==========

SRV - [2015.06.11 22:39:14 | 000,268,464 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2015.05.23 05:05:18 | 000,102,912 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\IEEtwCollector.exe -- (IEEtwCollectorService)
SRV - [2015.05.01 11:17:04 | 001,772,672 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Program Files\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe -- (c2cpnrsvc)
SRV - [2015.05.01 11:16:10 | 001,394,816 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Program Files\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe -- (c2cautoupdatesvc)
SRV - [2015.04.14 09:36:30 | 001,080,120 | ---- | M] (Malwarebytes Corporation) [Auto | Stopped] -- C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe -- (MBAMService)
SRV - [2015.04.14 09:36:28 | 001,871,160 | ---- | M] (Malwarebytes Corporation) [Disabled | Stopped] -- C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe -- (MBAMScheduler)
SRV - [2015.01.28 14:08:58 | 001,349,576 | ---- | M] (ESET) [Auto | Stopped] -- C:\Program Files\ESET\ESET Smart Security\ekrn.exe -- (ekrn)
SRV - [2015.01.02 20:45:12 | 000,315,488 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files\Skype\Updater\Updater.exe -- (SkypeUpdate)
SRV - [2014.11.21 04:12:38 | 000,212,992 | ---- | M] (AMD) [Auto | Stopped] -- C:\Windows\System32\atiesrxx.exe -- (AMD External Events Utility)
SRV - [2014.09.05 09:40:18 | 000,117,280 | ---- | M] () [Auto | Stopped] -- C:\ProgramData\HiSuiteOuc\HiSuiteOuc.exe -- (HiSuiteOuc.exe)
SRV - [2014.09.05 09:40:12 | 000,180,768 | ---- | M] () [Auto | Stopped] -- C:\ProgramData\HandSetService\HuaweiHiSuiteService.exe -- (HuaweiHiSuiteService.exe)
SRV - [2013.12.18 11:42:34 | 000,065,432 | ---- | M] (Adobe Systems Incorporated) [Auto | Stopped] -- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
SRV - [2013.05.27 06:57:27 | 000,680,960 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV - [2012.11.19 18:30:09 | 000,655,624 | ---- | M] (Acresso Software Inc.) [On_Demand | Stopped] -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -- (FLEXnet Licensing Service)
SRV - [2012.11.02 13:48:16 | 001,343,400 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\Wat\WatAdminSvc.exe -- (WatAdminSvc)
SRV - [2012.06.11 11:33:26 | 000,724,376 | ---- | M] (Nokia) [On_Demand | Stopped] -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer)
SRV - [2011.04.19 09:58:00 | 000,079,872 | ---- | M] () [Auto | Stopped] -- C:\Program Files\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmdb.exe -- (XRNADB)
SRV - [2011.02.28 10:16:38 | 000,011,776 | ---- | M] () [Auto | Stopped] -- C:\Program Files\Dell\PowerNap\PowerNap.Service.exe -- (dell_power_nap_service)
SRV - [2010.12.18 18:56:34 | 000,291,384 | ---- | M] (EnTech Taiwan) [Auto | Stopped] -- C:\Program Files\softOSD\softOSD.exe -- (softOSD)
SRV - [2009.07.14 03:16:13 | 000,025,088 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\sensrsvc.dll -- (SensrSvc)
SRV - [2009.07.14 03:16:12 | 001,004,544 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\PeerDistSvc.dll -- (PeerDistSvc)
SRV - [2007.07.24 12:15:14 | 000,185,632 | ---- | M] (Protexis Inc.) [Auto | Stopped] -- c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe -- (PSI_SVC_2)


========== Driver Services (SafeList) ==========

DRV - File not found [Kernel | On_Demand | Stopped] -- System32\drivers\rdvgkmd.sys -- (VGPU)
DRV - File not found [Kernel | Auto | Stopped] -- -- (UDNT)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\drivers\tsusbhub.sys -- (tsusbhub)
DRV - File not found [Kernel | On_Demand | Stopped] -- System32\drivers\synth3dvsc.sys -- (Synth3dVsc)
DRV - File not found [Kernel | System | Stopped] -- C:\Windows\System32\drivers\DMX3191.SYS -- (DMX3191)
DRV - File not found [Kernel | System | Stopped] -- C:\Windows\System32\drivers\ASC.SYS -- (ASC)
DRV - File not found [Kernel | System | Stopped] -- C:\Windows\System32\drivers\AEC671X.SYS -- (AEC671X)
DRV - [2015.04.14 09:37:54 | 000,051,928 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\System32\drivers\mwac.sys -- (MBAMWebAccessControl)
DRV - [2015.04.14 09:37:42 | 000,023,256 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\System32\drivers\mbam.sys -- (MBAMProtector)
DRV - [2015.03.10 17:24:42 | 000,193,464 | ---- | M] (ESET) [File_System | System | Stopped] -- C:\Windows\System32\drivers\eamonm.sys -- (eamonm)
DRV - [2015.03.10 17:24:42 | 000,176,448 | ---- | M] (ESET) [Kernel | Auto | Stopped] -- C:\Windows\System32\drivers\epfw.sys -- (epfw)
DRV - [2015.03.10 17:24:42 | 000,135,808 | ---- | M] (ESET) [Kernel | System | Stopped] -- C:\Windows\System32\drivers\ehdrv.sys -- (ehdrv)
DRV - [2015.03.10 17:24:42 | 000,051,824 | ---- | M] (ESET) [Kernel | Boot | Stopped] -- C:\Windows\System32\drivers\epfwwfp.sys -- (epfwwfp)
DRV - [2015.03.10 17:24:42 | 000,037,928 | ---- | M] (ESET) [Kernel | System | Running] -- C:\Windows\System32\drivers\EpfwLWF.sys -- (EpfwLWF)
DRV - [2015.01.31 04:51:11 | 000,015,872 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\rdpvideominiport.sys -- (RdpVideoMiniport)
DRV - [2014.11.21 04:38:32 | 016,955,392 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\atikmdag.sys -- (atikmdag)
DRV - [2014.11.21 04:38:32 | 016,955,392 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\atikmdag.sys -- (amdkmdag)
DRV - [2014.11.21 04:08:48 | 000,472,576 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\atikmpag.sys -- (amdkmdap)
DRV - [2014.06.21 19:00:20 | 000,077,824 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\AtihdW73.sys -- (AtiHDAudioService)
DRV - [2012.08.24 09:57:00 | 000,113,104 | ---- | M] (Power Software Ltd) [Kernel | System | Stopped] -- C:\Windows\System32\drivers\scdemu.sys -- (SCDEmu)
DRV - [2012.06.11 11:33:46 | 000,019,072 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\pccsmcfd.sys -- (pccsmcfd)
DRV - [2012.01.09 17:28:20 | 000,023,168 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ccdcmbo.sys -- (nmwcdc)
DRV - [2012.01.09 17:28:20 | 000,018,176 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ccdcmb.sys -- (nmwcd)
DRV - [2012.01.09 17:28:20 | 000,008,192 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\usbser_lowerfltj.sys -- (UsbserFilt)
DRV - [2012.01.09 17:28:20 | 000,008,192 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\usbser_lowerflt.sys -- (upperdev)
DRV - [2011.05.13 04:21:06 | 000,136,808 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ssadmdm.sys -- (ssadmdm)
DRV - [2011.05.13 04:21:06 | 000,121,064 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ssadbus.sys -- (ssadbus)
DRV - [2011.05.13 04:21:06 | 000,114,280 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ssadserd.sys -- (ssadserd)
DRV - [2011.05.13 04:21:06 | 000,012,776 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ssadmdfl.sys -- (ssadmdfl)
DRV - [2010.12.07 15:12:24 | 000,025,088 | ---- | M] (LG Electronics Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\lgandmodem.sys -- (ANDModem)
DRV - [2010.12.07 15:12:24 | 000,020,096 | ---- | M] (LG Electronics Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\lgandgps.sys -- (AndGps)
DRV - [2010.12.07 15:12:22 | 000,020,736 | ---- | M] (LG Electronics Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\lganddiag.sys -- (AndDiag)
DRV - [2010.12.07 15:12:22 | 000,014,336 | ---- | M] (LG Electronics Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\lgandbus.sys -- (Andbus)
DRV - [2010.11.20 14:30:15 | 000,175,360 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\vmbus.sys -- (vmbus)
DRV - [2010.11.20 14:30:15 | 000,040,704 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\vmstorfl.sys -- (storflt)
DRV - [2010.11.20 14:30:15 | 000,028,032 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\storvsc.sys -- (storvsc)
DRV - [2010.11.20 12:24:41 | 000,052,224 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV - [2010.11.20 11:59:44 | 000,035,968 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\winusb.sys -- (WinUsb)
DRV - [2010.11.20 11:14:45 | 000,017,920 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\VMBusHID.sys -- (VMBusHID)
DRV - [2010.11.20 11:14:41 | 000,005,632 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\vms3cap.sys -- (s3cap)
DRV - [2010.08.02 17:19:22 | 000,025,728 | ---- | M] (Google Inc) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\lgandadb.sys -- (androidusb)
DRV - [2009.09.29 09:11:22 | 000,012,160 | ---- | M] (LG Electronics Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\lgbtport.sys -- (LgBttPort)
DRV - [2009.09.29 09:11:20 | 000,012,928 | ---- | M] (LG Electronics Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\lgvmodem.sys -- (LGVMODEM)
DRV - [2009.09.29 09:11:20 | 000,010,496 | ---- | M] (LG Electronics Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\lgbtbus.sys -- (lgbusenum)
DRV - [2009.07.14 00:02:52 | 000,347,264 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\nvm62x32.sys -- (NVENETFD)
DRV - [2008.01.28 11:08:10 | 000,242,176 | ---- | M] (iPassion Technology Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\iP293x.SYS -- (DCamUSBTP10)
DRV - [2007.05.03 18:19:32 | 000,012,112 | ---- | M] (EnTech Taiwan) [Kernel | System | Stopped] -- C:\Windows\System32\drivers\se32.sys -- (se32)
DRV - [2006.11.02 09:57:08 | 000,020,992 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\irsir.sys -- (irsir)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC


IE - HKU\.DEFAULT\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-19\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}

IE - HKU\S-1-5-20\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}

IE - HKU\S-1-5-21-1551242594-84631119-3797995329-1001\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKU\S-1-5-21-1551242594-84631119-3797995329-1001\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTer ... ORM=IE8SRC
IE - HKU\S-1-5-21-1551242594-84631119-3797995329-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0


========== FireFox ==========

FF - HKLM\Software\MozillaPlugins\@divx.com/DivX Plus Web Player Plug-In,version=1.0.0: C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0: C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF - HKLM\Software\MozillaPlugins\@google.com/npPicasa3,version=3.0.0: C:\Program Files\Google\Picasa3\npPicasa3.dll (Google, Inc.)
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=11.31.2: C:\Program Files\Java\jre1.8.0_31\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=11.31.2: C:\Program Files\Java\jre1.8.0_31\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.27.5\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.27.5\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Acrobat: C:\Program Files\Adobe\Acrobat 10.0\Acrobat\Air\nppdf32.dll (Adobe Systems Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\web2pdfextension@web2pdf.adobedotcom: C:\Program Files\Adobe\Acrobat 10.0\Acrobat\Browser\WCFirefoxExtn [2014.05.15 21:45:56 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{23fcfd51-4958-4f00-80a3-ae97e717ed8b}: C:\Program Files\DivX\DivX Plus Web Player\firefox\DivXHTML5 [2013.06.29 21:13:24 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Thunderbird\Extensions\\eplgTb@eset.com: C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird


========== Chrome ==========

CHR - Extension: No name found = C:\Users\Honys\AppData\Local\Google\Chrome\User Data\Default\Extensions\aknpkdffaafgjchaibgeefbgmgeghloj\1.5.0.8_0\
CHR - Extension: No name found = C:\Users\Honys\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\
CHR - Extension: No name found = C:\Users\Honys\AppData\Local\Google\Chrome\User Data\Default\Extensions\bfbmjmiodbnnpllbbbfblcplfjjepjdn\3.1.0.23_0\
CHR - Extension: No name found = C:\Users\Honys\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.7_0\
CHR - Extension: No name found = C:\Users\Honys\AppData\Local\Google\Chrome\User Data\Default\Extensions\boemmnepglcoinjcdlfcpcbmhiecichi\1.1.0.618_0\
CHR - Extension: No name found = C:\Users\Honys\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhdgffkkebhmkfjojejmpbldmpobfkfo\3.10.109_0\
CHR - Extension: No name found = C:\Users\Honys\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhipmoghimfdldnocmopeoanjmoolofl\1.5_0\
CHR - Extension: No name found = C:\Users\Honys\AppData\Local\Google\Chrome\User Data\Default\Extensions\dlppkpafhbajpcmmoheippocdidnckmm\1.5.1.311_0\
CHR - Extension: No name found = C:\Users\Honys\AppData\Local\Google\Chrome\User Data\Default\Extensions\eendgbekfagmbpcndbhemapbmdeobhjm\1.0.14_0\
CHR - Extension: No name found = C:\Users\Honys\AppData\Local\Google\Chrome\User Data\Default\Extensions\eggkgjblbjpigonjpmblphnackhfigbo\1.4.0.6_0\
CHR - Extension: No name found = C:\Users\Honys\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejiklfknjocjccolialojlfhliacoeoo\1.1_0\
CHR - Extension: No name found = C:\Users\Honys\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejjicmeblgpmajnghnpcppodonldlgfn\4.5.4_0\
CHR - Extension: No name found = C:\Users\Honys\AppData\Local\Google\Chrome\User Data\Default\Extensions\fkkaebihfmbofclegkcfkkemepfehibg\1.5_0\
CHR - Extension: No name found = C:\Users\Honys\AppData\Local\Google\Chrome\User Data\Default\Extensions\fkmopoamfjnmppabeaphohombnjcjgla\6_0\
CHR - Extension: No name found = C:\Users\Honys\AppData\Local\Google\Chrome\User Data\Default\Extensions\gcnbkhjhhdfjbojkefmemdmkjaaakine\7_0\
CHR - Extension: No name found = C:\Users\Honys\AppData\Local\Google\Chrome\User Data\Default\Extensions\gffjhibehnempbkeheiccaincokdjbfe\1.4.0_0\
CHR - Extension: No name found = C:\Users\Honys\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.35_0\
CHR - Extension: No name found = C:\Users\Honys\AppData\Local\Google\Chrome\User Data\Default\Extensions\gkddaofiamhgfjmaccfcfpfolpgbeomj\16_0\
CHR - Extension: No name found = C:\Users\Honys\AppData\Local\Google\Chrome\User Data\Default\Extensions\gmbgaklkmjakoegficnlkhebmhkjfich\2.2_0\
CHR - Extension: No name found = C:\Users\Honys\AppData\Local\Google\Chrome\User Data\Default\Extensions\ioekoebejdcmnlefjiknokhhafglcjdl\3.0.9_0\
CHR - Extension: No name found = C:\Users\Honys\AppData\Local\Google\Chrome\User Data\Default\Extensions\kdadialhpiikehpdeejjeiikopddkjem\1.0.3.13_0\
CHR - Extension: No name found = C:\Users\Honys\AppData\Local\Google\Chrome\User Data\Default\Extensions\lbfehkoinhhcknnbdgnnmjhiladcgbol\1.0.8_0\
CHR - Extension: No name found = C:\Users\Honys\AppData\Local\Google\Chrome\User Data\Default\Extensions\lejliakmhcfhakneflmicaoikhbicggc\1_0\
CHR - Extension: No name found = C:\Users\Honys\AppData\Local\Google\Chrome\User Data\Default\Extensions\lhhlohbbihddnfcehbijmlnpkafmmkfp\0.1_0\
CHR - Extension: No name found = C:\Users\Honys\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.4.0.9058_0\
CHR - Extension: No name found = C:\Users\Honys\AppData\Local\Google\Chrome\User Data\Default\Extensions\lneaknkopdijkpnocmklfnjbeapigfbh\5.3.0_0\
CHR - Extension: No name found = C:\Users\Honys\AppData\Local\Google\Chrome\User Data\Default\Extensions\loamdenijebhollnjgehcfbnpeelfhlk\14_0\
CHR - Extension: No name found = C:\Users\Honys\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff\4.4.0_0\
CHR - Extension: No name found = C:\Users\Honys\AppData\Local\Google\Chrome\User Data\Default\Extensions\nflehelhgpjjhfiigceaplnmgiblnclo\1.1.5_0\
CHR - Extension: No name found = C:\Users\Honys\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmameahlembdcigphohgiodcgjomcgeo\1.27_0\
CHR - Extension: No name found = C:\Users\Honys\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\
CHR - Extension: No name found = C:\Users\Honys\AppData\Local\Google\Chrome\User Data\Default\Extensions\ofiahdodpoomdjoegkmibpmgejobfpcn\1.2.1.12_0\
CHR - Extension: No name found = C:\Users\Honys\AppData\Local\Google\Chrome\User Data\Default\Extensions\ojhmphdkpgbibohbnpbfiefkgieacjmh\3.2.2_0\
CHR - Extension: No name found = C:\Users\Honys\AppData\Local\Google\Chrome\User Data\Default\Extensions\onlgmecjpnejhfeofkgbfgnmdlipdejb\6.2.2_0\
CHR - Extension: No name found = C:\Users\Honys\AppData\Local\Google\Chrome\User Data\Default\Extensions\ookhcbgokankfmjafalglpofmolfopek\2.0.0_0\
CHR - Extension: No name found = C:\Users\Honys\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8.1_0\

O1 HOSTS File: ([2012.11.19 18:59:51 | 000,001,454 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 activate.adobe.com
O1 - Hosts: 127.0.0.1 practivate.adobe.com
O1 - Hosts: 127.0.0.1 ereg.adobe.com
O1 - Hosts: 127.0.0.1 activate.wip3.adobe.com
O1 - Hosts: 127.0.0.1 wip3.adobe.com
O1 - Hosts: 127.0.0.1 3dns-3.adobe.com
O1 - Hosts: 127.0.0.1 3dns-2.adobe.com
O1 - Hosts: 127.0.0.1 adobe-dns.adobe.com
O1 - Hosts: 127.0.0.1 adobe-dns-2.adobe.com
O1 - Hosts: 127.0.0.1 adobe-dns-3.adobe.com
O1 - Hosts: 127.0.0.1 ereg.wip3.adobe.com
O1 - Hosts: 127.0.0.1 activate-sea.adobe.com
O1 - Hosts: 127.0.0.1 wwis-dubc1-vip60.adobe.com
O1 - Hosts: 127.0.0.1 activate-sjc0.adobe.com
O1 - Hosts: 127.0.0.1 adobe.activate.com
O2 - BHO: (HistoryTriggerBHO Class) - {21A88CB9-84D2-4020-A2D1-B25A21034884} - C:\Program Files\LG Electronics\LG PC Suite IV\LinkAir\LinkAirBrowserHelper.dll (LG Electronics)
O2 - BHO: (DivX Plus Web Player HTML5 <video>) - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll (DivX, LLC)
O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.8.0_31\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (Adobe PDF Conversion Toolbar Helper) - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O2 - BHO: (Skype Click to Call for Internet Explorer) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre1.8.0_31\bin\jp2ssv.dll (Oracle Corporation)
O2 - BHO: (SmartSelect Class) - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O3 - HKLM\..\Toolbar: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O3 - HKU\S-1-5-21-1551242594-84631119-3797995329-1001\..\Toolbar\WebBrowser: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O4 - HKLM..\Run: [] File not found
O4 - HKLM..\Run: [Acrobat Assistant 8.0] C:\Program Files\Adobe\Acrobat 10.0\Acrobat\Acrotray.exe (Adobe Systems Inc.)
O4 - HKLM..\Run: [Adobe Acrobat Speed Launcher] C:\Program Files\Adobe\Acrobat 10.0\Acrobat\Acrobat_sl.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [AdobeCS4ServiceManager] C:\Program Files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [APSDaemon] C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.)
O4 - HKLM..\Run: [DivXMediaServer] C:\Program Files\DivX\DivX Media Server\DivXMediaServer.exe (DivX, LLC)
O4 - HKLM..\Run: [DocuPrint 3010 RUN] C:\Program Files\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmRun.exe ()
O4 - HKLM..\Run: [egui] C:\Program Files\ESET\ESET Smart Security\egui.exe (ESET)
O4 - HKLM..\Run: [iPPCamScan] C:\Windows\iPScan.exe ( iPassion Technology Inc.)
O4 - HKLM..\Run: [Launcher3010] "C:\Program Files\Xerox Office Printing\WorkCentre SSW\Launcher\xrlaunch.exe" /S Xerox Phaser 3010 File not found
O4 - HKLM..\Run: [StatusAutoRun3010] "C:\Program Files\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmpl.exe" Xerox Phaser 3010,hide,\S File not found
O4 - HKU\S-1-5-21-1551242594-84631119-3797995329-1001..\Run: [Dropbox Update] C:\Users\Honys\AppData\Local\Dropbox\Update\DropboxUpdate.exe (Dropbox, Inc.)
O4 - HKU\S-1-5-21-1551242594-84631119-3797995329-1001..\Run: [Google+ Auto Backup] C:\Users\Honys\AppData\Local\Programs\Google\Google+ Auto Backup\Google+ Auto Backup.exe (Google Inc.)
O4 - HKU\S-1-5-21-1551242594-84631119-3797995329-1001..\Run: [LG LinkAir] File not found
O4 - HKU\S-1-5-21-1551242594-84631119-3797995329-1001..\Run: [Zoner Photo Studio Autoupdate] C:\Program Files\Zoner\Photo Studio 15\Program32\ZPSTray.exe (ZONER software)
O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (Microsoft Corporation)
O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-1551242594-84631119-3797995329-1001..\RunOnce: [Report] C:\AdwCleaner\AdwCleaner[S0].txt ()
O4 - Startup: C:\Users\Honys\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\UMAX VistaAccess.lnk = File not found
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O8 - Extra context menu item: Add to Google Photos Screensa&ver - C:\Windows\System32\GPhotos.scr (Google Inc.)
O8 - Extra context menu item: Append Link Target to Existing PDF - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Append to Existing PDF - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Convert Link Target to Adobe PDF - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Convert to Adobe PDF - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O9 - Extra Button: ICQ7M - {781B39EC-2E18-41FC-9B00-B84E4FFCA85F} - C:\Program Files\ICQ7M\ICQ.exe (ICQ, LLC.)
O9 - Extra 'Tools' menuitem : ICQ7M - {781B39EC-2E18-41FC-9B00-B84E4FFCA85F} - C:\Program Files\ICQ7M\ICQ.exe (ICQ, LLC.)
O9 - Extra Button: Skype Click to Call settings - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O13 - gopher Prefix: missing
O15 - HKU\S-1-5-21-1551242594-84631119-3797995329-1001\..Trusted Domains: dell.com ([]* in Trusted sites)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 213.46.172.37 213.46.172.36
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{2D99250F-1217-4299-B935-67469B15FDC0}: DhcpNameServer = 213.46.172.37 213.46.172.36
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\skypec2c {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\System32\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\System32\SystemPropertiesPerformance.exe (Microsoft Corporation)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2009.06.10 23:42:20 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)

CREATERESTOREPOINT
Unable to start System Restore Service. Error code 1084

NetSvcs: FastUserSwitchingCompatibility - File not found
NetSvcs: Ias - C:\Windows\System32\ias.dll (Microsoft Corporation)
NetSvcs: Nla - File not found
NetSvcs: Ntmssvc - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: SRService - File not found
NetSvcs: WmdmPmSp - File not found
NetSvcs: LogonHours - File not found
NetSvcs: PCAudit - File not found
NetSvcs: helpsvc - File not found
NetSvcs: uploadmgr - File not found

Drivers32: msacm.l3acm - C:\Windows\System32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: MSVideo8 - C:\Windows\System32\vfwwdm32.dll (Microsoft Corporation)
Drivers32: vidc.cvid - C:\Windows\System32\iccvid.dll (Radius Inc.)
Drivers32: vidc.DIVX - C:\Windows\System32\DivX.dll (DivX, Inc.)
Drivers32: vidc.yv12 - C:\Windows\System32\DivX.dll (DivX, Inc.)
PhysicalDisk0 MBR saved to C:\PhysicalMBR.bin

========== Files/Folders - Created Within 30 Days ==========

[2015.06.23 20:08:23 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Users\Honys\Desktop\OTL.exe
[2015.06.22 20:53:43 | 000,000,000 | ---D | C] -- C:\AdwCleaner
[2015.06.22 19:50:31 | 000,000,000 | ---D | C] -- C:\Program Files\trend micro
[2015.06.22 19:50:30 | 000,000,000 | ---D | C] -- C:\rsit
[2015.06.18 19:47:20 | 000,000,000 | ---D | C] -- C:\Users\Honys\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
[2015.06.18 19:45:40 | 000,000,000 | ---D | C] -- C:\Users\Honys\AppData\Local\Dropbox
[2015.06.18 19:45:40 | 000,000,000 | ---D | C] -- C:\ProgramData\Dropbox
[2015.06.15 21:10:11 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NbuExplorer
[2015.06.15 21:10:10 | 000,000,000 | ---D | C] -- C:\Program Files\NbuExplorer
[2015.06.15 20:42:10 | 000,000,000 | ---D | C] -- C:\Users\Honys\Documents\Miška phn
[2015.06.15 19:52:24 | 000,000,000 | ---D | C] -- C:\Users\Honys\AppData\Roaming\PC Suite
[2015.06.15 19:52:24 | 000,000,000 | ---D | C] -- C:\Users\Honys\AppData\Roaming\Nokia
[2015.06.15 19:52:23 | 000,000,000 | ---D | C] -- C:\ProgramData\PC Suite
[2015.06.15 19:50:58 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nokia PC Suite
[2015.06.15 19:50:57 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\PCSuite
[2015.06.15 19:50:52 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Nokia
[2015.06.15 19:50:35 | 000,019,072 | ---- | C] (Nokia) -- C:\Windows\System32\drivers\pccsmcfd.sys
[2015.06.15 19:50:21 | 000,000,000 | ---D | C] -- C:\Program Files\PC Connectivity Solution
[2015.06.15 19:50:01 | 000,075,264 | ---- | C] (Nokia) -- C:\Windows\System32\nmwcdcls.dll
[2015.06.15 19:50:01 | 000,000,000 | ---D | C] -- C:\Program Files\Nokia
[2015.06.15 19:49:03 | 000,000,000 | ---D | C] -- C:\ProgramData\Installations
[2015.06.12 12:56:34 | 012,625,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wmploc.DLL
[2015.06.12 12:56:34 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\spwmp.dll
[2015.06.12 12:56:34 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msdxm.ocx
[2015.06.12 12:56:34 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dxmasf.dll
[2015.06.12 12:56:12 | 000,102,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieetwcollector.exe
[2015.06.12 12:56:12 | 000,060,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\JavaScriptCollectionAgent.dll
[2015.06.12 12:56:12 | 000,047,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieetwproxystub.dll
[2015.06.12 12:56:11 | 000,710,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieapfltr.dll
[2015.06.12 12:56:11 | 000,689,152 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msfeeds.dll
[2015.06.12 12:56:11 | 000,685,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ie4uinit.exe
[2015.06.12 12:56:11 | 000,667,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\MsSpellCheckingFacility.exe
[2015.06.12 12:56:11 | 000,620,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\jscript9diag.dll
[2015.06.12 12:56:11 | 000,418,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dxtmsft.dll
[2015.06.12 12:56:11 | 000,342,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iedkcs32.dll
[2015.06.12 12:56:11 | 000,115,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieUnatt.exe
[2015.06.12 12:56:11 | 000,047,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\jsproxy.dll
[2015.06.12 12:56:11 | 000,030,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iernonce.dll
[2015.06.12 12:56:10 | 002,724,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mshtml.tlb
[2015.06.12 12:56:10 | 002,052,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\inetcpl.cpl
[2015.06.12 12:56:09 | 000,168,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msrating.dll
[2015.06.12 12:56:09 | 000,062,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iesetup.dll
[2015.06.12 12:56:09 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieetwcollectorres.dll
[2015.06.12 12:56:08 | 000,285,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dxtrans.dll
[2015.06.12 12:56:07 | 000,478,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieui.dll
[2015.06.12 12:56:06 | 000,341,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\html.iec
[2015.06.12 12:56:05 | 001,155,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mshtmlmedia.dll
[2015.06.12 12:56:05 | 000,064,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\MshtmlDac.dll
[2015.06.12 12:56:04 | 004,305,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\jscript9.dll
[2015.06.12 12:55:10 | 002,384,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\win32k.sys
[2015.06.12 12:55:05 | 000,271,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\conhost.exe
[2015.06.12 12:55:05 | 000,169,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\winsrv.dll
[2015.06.12 12:55:05 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-processthreads-l1-1-0.dll
[2015.06.12 12:55:05 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-sysinfo-l1-1-0.dll
[2015.06.12 12:55:05 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-synch-l1-1-0.dll
[2015.06.12 12:55:04 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-misc-l1-1-0.dll
[2015.06.12 12:55:04 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-localregistry-l1-1-0.dll
[2015.06.12 12:55:04 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-processenvironment-l1-1-0.dll
[2015.06.12 12:55:04 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-namedpipe-l1-1-0.dll
[2015.06.12 12:55:04 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-memory-l1-1-0.dll
[2015.06.12 12:55:04 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-libraryloader-l1-1-0.dll
[2015.06.12 12:55:04 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-string-l1-1-0.dll
[2015.06.12 12:55:04 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-rtlsupport-l1-1-0.dll
[2015.06.12 12:55:04 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-profile-l1-1-0.dll
[2015.06.12 12:55:04 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-io-l1-1-0.dll
[2015.06.12 12:55:04 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-fibers-l1-1-0.dll
[2015.06.12 12:55:04 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-debug-l1-1-0.dll
[2015.06.12 12:55:03 | 000,005,120 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-file-l1-1-0.dll
[2015.06.12 12:55:03 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-interlocked-l1-1-0.dll
[2015.06.12 12:55:03 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-heap-l1-1-0.dll
[2015.06.12 12:55:03 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-handle-l1-1-0.dll
[2015.06.12 12:55:03 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-errorhandling-l1-1-0.dll
[2015.06.12 12:55:03 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-delayload-l1-1-0.dll
[2015.06.12 12:55:03 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-datetime-l1-1-0.dll
[2015.06.12 12:55:02 | 000,006,144 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-security-base-l1-1-0.dll
[2015.06.12 12:55:02 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-threadpool-l1-1-0.dll
[2015.06.12 12:55:02 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-localization-l1-1-0.dll
[2015.06.12 12:55:02 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-xstate-l1-1-0.dll
[2015.06.12 12:55:02 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-util-l1-1-0.dll
[2015.06.12 12:55:02 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-console-l1-1-0.dll
[2015.06.11 22:39:02 | 017,583,280 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\System32\FlashPlayerInstaller.exe
[2015.05.30 01:23:59 | 000,589,512 | ---- | C] (ESET) -- C:\Windows\System32\%InstallDir%speclean.exe

========== Files - Modified Within 30 Days ==========

[2015.06.23 20:12:32 | 000,000,512 | ---- | M] () -- C:\PhysicalMBR.bin
[2015.06.23 20:08:28 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Honys\Desktop\OTL.exe
[2015.06.23 20:03:12 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2015.06.23 20:03:03 | 2616,795,136 | -HS- | M] () -- C:\hiberfil.sys
[2015.06.23 19:30:37 | 000,000,936 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2015.06.22 20:53:12 | 002,244,096 | ---- | M] () -- C:\Users\Honys\Desktop\adwcleaner_4.207.exe
[2015.06.22 19:49:52 | 001,107,968 | ---- | M] () -- C:\Users\Honys\Desktop\RSIT.exe
[2015.06.22 18:42:04 | 000,119,512 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\MBAMSwissArmy.sys
[2015.06.22 18:27:13 | 000,001,060 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
[2015.06.21 22:50:07 | 000,000,918 | ---- | M] () -- C:\Windows\tasks\DropboxUpdateTaskUserS-1-5-21-1551242594-84631119-3797995329-1001UA.job
[2015.06.21 22:43:26 | 000,014,544 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2015.06.21 22:43:26 | 000,014,544 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2015.06.21 22:39:00 | 000,000,914 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2015.06.21 22:03:00 | 000,000,940 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2015.06.21 19:50:01 | 000,000,866 | ---- | M] () -- C:\Windows\tasks\DropboxUpdateTaskUserS-1-5-21-1551242594-84631119-3797995329-1001Core.job
[2015.06.18 18:43:37 | 000,002,880 | -HS- | M] () -- C:\ProgramData\KGyGaAvL.sys
[2015.06.15 21:30:32 | 008,106,705 | R--- | M] () -- C:\Users\Honys\Documents\bak_nka.nbu
[2015.06.15 20:49:37 | 000,015,849 | ---- | M] () -- C:\Users\Honys\kontakty.vcf
[2015.06.15 19:55:26 | 000,668,662 | ---- | M] () -- C:\Windows\System32\perfh005.dat
[2015.06.15 19:55:26 | 000,654,028 | ---- | M] () -- C:\Windows\System32\perfh009.dat
[2015.06.15 19:55:26 | 000,141,308 | ---- | M] () -- C:\Windows\System32\perfc005.dat
[2015.06.15 19:55:26 | 000,121,900 | ---- | M] () -- C:\Windows\System32\perfc009.dat
[2015.06.15 19:53:34 | 000,000,000 | -H-- | M] () -- C:\Windows\System32\drivers\Msft_User_PCCSWpdDriver_01_09_00.Wdf
[2015.06.15 19:53:16 | 000,000,000 | -H-- | M] () -- C:\Windows\System32\drivers\Msft_Kernel_ccdcmb_01009.Wdf
[2015.06.15 19:50:58 | 000,001,996 | ---- | M] () -- C:\Users\Public\Desktop\Nokia PC Suite.lnk
[2015.06.14 23:25:13 | 000,000,000 | -H-- | M] () -- C:\Windows\System32\drivers\Msft_Kernel_WinUsb_01009.Wdf
[2015.06.12 17:43:17 | 002,685,296 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT
[2015.06.11 22:39:05 | 000,778,416 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\System32\FlashPlayerApp.exe
[2015.06.11 22:39:05 | 000,142,512 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\System32\FlashPlayerCPLApp.cpl
[2015.06.11 22:39:02 | 017,583,280 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\System32\FlashPlayerInstaller.exe
[2015.06.04 22:15:01 | 000,001,017 | ---- | M] () -- C:\Users\Honys\Desktop\Dropbox.lnk
[2015.06.02 21:35:47 | 000,342,728 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\iedkcs32.dll
[2015.05.30 22:32:47 | 002,235,706 | ---- | M] () -- C:\Users\Honys\Desktop\jm_recepty_cz.pdf
[2015.05.30 01:23:59 | 000,589,512 | ---- | M] (ESET) -- C:\Windows\System32\%InstallDir%speclean.exe
[2015.05.25 19:00:20 | 002,384,384 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\win32k.sys

========== Files Created - No Company Name ==========

[2015.06.23 20:12:32 | 000,000,512 | ---- | C] () -- C:\PhysicalMBR.bin
[2015.06.22 20:53:11 | 002,244,096 | ---- | C] () -- C:\Users\Honys\Desktop\adwcleaner_4.207.exe
[2015.06.22 19:49:51 | 001,107,968 | ---- | C] () -- C:\Users\Honys\Desktop\RSIT.exe
[2015.06.18 19:45:43 | 000,000,918 | ---- | C] () -- C:\Windows\tasks\DropboxUpdateTaskUserS-1-5-21-1551242594-84631119-3797995329-1001UA.job
[2015.06.18 19:45:41 | 000,000,866 | ---- | C] () -- C:\Windows\tasks\DropboxUpdateTaskUserS-1-5-21-1551242594-84631119-3797995329-1001Core.job
[2015.06.15 21:05:47 | 008,106,705 | R--- | C] () -- C:\Users\Honys\Documents\bak_nka.nbu
[2015.06.15 20:49:37 | 000,015,849 | ---- | C] () -- C:\Users\Honys\kontakty.vcf
[2015.06.15 19:53:34 | 000,000,000 | -H-- | C] () -- C:\Windows\System32\drivers\Msft_User_PCCSWpdDriver_01_09_00.Wdf
[2015.06.15 19:53:16 | 000,000,000 | -H-- | C] () -- C:\Windows\System32\drivers\Msft_Kernel_ccdcmb_01009.Wdf
[2015.06.15 19:50:58 | 000,001,996 | ---- | C] () -- C:\Users\Public\Desktop\Nokia PC Suite.lnk
[2015.06.14 23:25:13 | 000,000,000 | -H-- | C] () -- C:\Windows\System32\drivers\Msft_Kernel_WinUsb_01009.Wdf
[2015.06.02 00:05:58 | 000,002,114 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth.lnk
[2015.05.30 22:32:38 | 002,235,706 | ---- | C] () -- C:\Users\Honys\Desktop\jm_recepty_cz.pdf
[2014.11.21 04:33:10 | 000,203,776 | ---- | C] () -- C:\Windows\System32\clinfo.exe
[2014.11.20 21:35:00 | 000,038,912 | ---- | C] () -- C:\Windows\System32\kdbsdk32.dll
[2014.09.24 08:36:56 | 000,765,851 | ---- | C] () -- C:\Windows\System32\amdicdxx.dat
[2014.09.18 18:22:30 | 000,238,144 | ---- | C] () -- C:\Windows\System32\ativvaxy_cz_nd.dat
[2014.09.03 21:26:44 | 000,323,252 | ---- | C] () -- C:\Windows\System32\ativvaxy_vi.dat
[2014.09.03 20:40:08 | 000,321,712 | ---- | C] () -- C:\Windows\System32\ativvaxy_vi_nd.dat
[2014.08.29 17:43:10 | 000,158,944 | ---- | C] () -- C:\Windows\System32\ativce03.dat
[2014.08.29 16:08:02 | 000,157,248 | ---- | C] () -- C:\Windows\System32\amde31a.dat
[2014.08.20 21:35:16 | 000,234,292 | ---- | C] () -- C:\Windows\System32\ativvaxy_cik.dat
[2014.08.20 21:33:04 | 000,232,624 | ---- | C] () -- C:\Windows\System32\ativvaxy_cik_nd.dat
[2014.08.14 19:54:30 | 000,083,312 | ---- | C] () -- C:\Windows\System32\ativce02.dat
[2014.04.01 18:46:15 | 000,007,675 | ---- | C] () -- C:\Users\Honys\AppData\Local\recently-used.xbel
[2014.04.01 07:21:18 | 000,734,861 | ---- | C] () -- C:\Windows\System32\atiicdxx.dat
[2014.03.08 16:32:06 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin
[2013.12.06 23:38:38 | 000,995,342 | ---- | C] () -- C:\Windows\System32\amdocl_as32.exe
[2013.12.06 23:38:38 | 000,798,734 | ---- | C] () -- C:\Windows\System32\amdocl_ld32.exe
[2013.12.06 22:28:32 | 000,204,952 | ---- | C] () -- C:\Windows\System32\ativvsvl.dat
[2013.12.06 22:28:32 | 000,157,144 | ---- | C] () -- C:\Windows\System32\ativvsva.dat
[2013.11.15 18:44:40 | 000,000,189 | ---- | C] () -- C:\Windows\KPCMS.INI
[2013.11.15 18:44:40 | 000,000,100 | ---- | C] () -- C:\Windows\vista32.ini
[2013.11.15 18:44:40 | 000,000,099 | ---- | C] () -- C:\Windows\umaxdrv.ini
[2013.04.16 21:57:15 | 000,004,096 | -H-- | C] () -- C:\Users\Honys\AppData\Local\keyfile3.drm
[2012.11.21 18:53:36 | 000,138,904 | ---- | C] () -- C:\Users\Honys\AppData\Roaming\PnkBstrK.sys
[2012.11.13 13:38:05 | 000,002,880 | -HS- | C] () -- C:\ProgramData\KGyGaAvL.sys
[2012.11.13 13:38:05 | 000,000,088 | RHS- | C] () -- C:\ProgramData\6E704BF3C9.sys

========== ZeroAccess Check ==========

[2009.07.14 06:42:31 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini

[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2015.02.13 07:26:18 | 012,875,264 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010.11.20 14:19:02 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
"" = %systemroot%\system32\wbem\wbemess.dll -- [2009.07.14 03:16:17 | 000,342,528 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both

========== LOP Check ==========

[2014.03.27 21:33:38 | 000,000,000 | ---D | M] -- C:\Users\Honys\AppData\Roaming\Aescripts
[2015.04.28 19:15:50 | 000,000,000 | ---D | M] -- C:\Users\Honys\AppData\Roaming\AMD
[2015.01.31 18:02:24 | 000,000,000 | ---D | M] -- C:\Users\Honys\AppData\Roaming\AMPSoft
[2014.04.26 15:53:33 | 000,000,000 | ---D | M] -- C:\Users\Honys\AppData\Roaming\avidemux
[2015.06.20 12:56:48 | 000,000,000 | ---D | M] -- C:\Users\Honys\AppData\Roaming\Dropbox
[2014.05.04 10:29:49 | 000,000,000 | ---D | M] -- C:\Users\Honys\AppData\Roaming\ESET
[2015.05.07 20:57:44 | 000,000,000 | ---D | M] -- C:\Users\Honys\AppData\Roaming\GeoGet
[2012.12.09 16:15:16 | 000,000,000 | ---D | M] -- C:\Users\Honys\AppData\Roaming\GHISLER
[2014.09.30 19:12:02 | 000,000,000 | ---D | M] -- C:\Users\Honys\AppData\Roaming\HLSW
[2015.06.18 17:52:36 | 000,000,000 | ---D | M] -- C:\Users\Honys\AppData\Roaming\ICQ
[2015.04.23 23:55:55 | 000,000,000 | ---D | M] -- C:\Users\Honys\AppData\Roaming\library_dir
[2014.04.26 15:53:33 | 000,000,000 | ---D | M] -- C:\Users\Honys\AppData\Roaming\MAGIX
[2014.02.19 22:59:59 | 000,000,000 | ---D | M] -- C:\Users\Honys\AppData\Roaming\MySQL
[2015.06.15 19:56:06 | 000,000,000 | ---D | M] -- C:\Users\Honys\AppData\Roaming\Nokia
[2014.08.14 22:24:47 | 000,000,000 | ---D | M] -- C:\Users\Honys\AppData\Roaming\Oracle
[2015.06.15 19:53:27 | 000,000,000 | ---D | M] -- C:\Users\Honys\AppData\Roaming\PC Suite
[2015.02.15 18:06:12 | 000,000,000 | ---D | M] -- C:\Users\Honys\AppData\Roaming\PhotoScape
[2014.04.26 15:49:05 | 000,000,000 | ---D | M] -- C:\Users\Honys\AppData\Roaming\Pmcc
[2012.11.03 16:55:56 | 000,000,000 | ---D | M] -- C:\Users\Honys\AppData\Roaming\PowerISO
[2015.04.18 23:06:56 | 000,000,000 | ---D | M] -- C:\Users\Honys\AppData\Roaming\Publish Providers
[2015.02.16 22:03:20 | 000,000,000 | ---D | M] -- C:\Users\Honys\AppData\Roaming\SketchUp
[2015.04.18 22:31:22 | 000,000,000 | ---D | M] -- C:\Users\Honys\AppData\Roaming\Sony
[2015.04.23 18:15:35 | 000,000,000 | ---D | M] -- C:\Users\Honys\AppData\Roaming\Sony Creative Software Inc
[2012.11.02 14:54:33 | 000,000,000 | ---D | M] -- C:\Users\Honys\AppData\Roaming\SystemRequirementsLab
[2015.03.10 23:35:54 | 000,000,000 | ---D | M] -- C:\Users\Honys\AppData\Roaming\TCXConverter
[2015.06.18 17:55:34 | 000,000,000 | ---D | M] -- C:\Users\Honys\AppData\Roaming\uTorrent
[2013.01.20 02:21:39 | 000,000,000 | ---D | M] -- C:\Users\Honys\AppData\Roaming\WaterProof

========== Purity Check ==========



========== Custom Scans ==========

< >
[2009.07.14 06:53:46 | 000,032,628 | ---- | C] () -- C:\Windows\Tasks\SCHEDLGU.TXT
[2009.07.14 06:53:47 | 000,000,006 | -H-- | C] () -- C:\Windows\Tasks\SA.DAT
[2012.11.02 12:37:09 | 000,000,936 | ---- | C] () -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
[2012.11.02 12:37:12 | 000,000,940 | ---- | C] () -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
[2012.11.09 18:32:56 | 000,000,914 | ---- | C] () -- C:\Windows\Tasks\Adobe Flash Player Updater.job
[2015.06.18 19:45:41 | 000,000,866 | ---- | C] () -- C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-1551242594-84631119-3797995329-1001Core.job
[2015.06.18 19:45:43 | 000,000,918 | ---- | C] () -- C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-1551242594-84631119-3797995329-1001UA.job

< >

< MD5 for: ATAPI.SYS >
[2009.07.14 03:26:15 | 000,021,584 | ---- | M] (Microsoft Corporation) MD5=338C86357871C167A96AB976519BF59E -- C:\Windows\System32\drivers\atapi.sys
[2009.07.14 03:26:15 | 000,021,584 | ---- | M] (Microsoft Corporation) MD5=338C86357871C167A96AB976519BF59E -- C:\Windows\System32\DriverStore\FileRepository\mshdc.inf_x86_neutral_fab873f3e8a3315c\atapi.sys
[2009.07.14 03:26:15 | 000,021,584 | ---- | M] (Microsoft Corporation) MD5=338C86357871C167A96AB976519BF59E -- C:\Windows\winsxs\x86_mshdc.inf_31bf3856ad364e35_6.1.7600.16385_none_dd0e7e3d82dd640d\atapi.sys
[2009.07.14 03:26:15 | 000,021,584 | ---- | M] (Microsoft Corporation) MD5=338C86357871C167A96AB976519BF59E -- C:\Windows\winsxs\x86_mshdc.inf_31bf3856ad364e35_6.1.7601.17514_none_df3f92057fcbe7a7\atapi.sys

< MD5 for: AUTOCHK.EXE >
[2009.07.14 03:14:12 | 000,668,160 | ---- | M] (Microsoft Corporation) MD5=41E4C8EBA464E7D6A5BA5E8827732AEB -- C:\Windows\winsxs\x86_microsoft-windows-autochk_31bf3856ad364e35_6.1.7600.16385_none_e1ca436d2314b860\autochk.exe
[2010.11.20 14:16:54 | 000,668,160 | ---- | M] (Microsoft Corporation) MD5=F88A52EB62019D6A62FDD9E08034DBD8 -- C:\Windows\System32\autochk.exe
[2010.11.20 14:16:54 | 000,668,160 | ---- | M] (Microsoft Corporation) MD5=F88A52EB62019D6A62FDD9E08034DBD8 -- C:\Windows\winsxs\x86_microsoft-windows-autochk_31bf3856ad364e35_6.1.7601.17514_none_e3fb573520033bfa\autochk.exe

< MD5 for: CDROM.SYS >
[2009.07.14 01:11:26 | 000,108,544 | ---- | M] (Microsoft Corporation) MD5=BA6E70AA0E6091BC39DE29477D866A77 -- C:\Windows\winsxs\x86_cdrom.inf_31bf3856ad364e35_6.1.7600.16385_none_5f7fb206051affbb\cdrom.sys
[2010.11.20 10:38:10 | 000,108,544 | ---- | M] (Microsoft Corporation) MD5=BE167ED0FDB9C1FA1133953C18D5A6C9 -- C:\Windows\System32\drivers\cdrom.sys
[2010.11.20 10:38:10 | 000,108,544 | ---- | M] (Microsoft Corporation) MD5=BE167ED0FDB9C1FA1133953C18D5A6C9 -- C:\Windows\System32\DriverStore\FileRepository\cdrom.inf_x86_neutral_6381e09675524225\cdrom.sys
[2010.11.20 10:38:10 | 000,108,544 | ---- | M] (Microsoft Corporation) MD5=BE167ED0FDB9C1FA1133953C18D5A6C9 -- C:\Windows\winsxs\x86_cdrom.inf_31bf3856ad364e35_6.1.7601.17514_none_61b0c5ce02098355\cdrom.sys

< MD5 for: EXPLORER.EXE >
[2011.02.26 07:19:21 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=0FB9C74046656D1579A64660AD67B746 -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.21669_none_54149f9ef14031fc\explorer.exe
[2009.07.14 03:14:20 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=15BC38A7492BEFE831966ADB477CF76F -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16385_none_518afd35db100430\explorer.exe
[2011.02.26 07:51:13 | 002,614,784 | ---- | M] (Microsoft Corporation) MD5=255CF508D7CFB10E0794D6AC93280BD8 -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20910_none_525b5180f3f95373\explorer.exe
[2009.10.31 07:45:39 | 002,614,272 | ---- | M] (Microsoft Corporation) MD5=2626FC9755BE22F805D3CFA0CE3EE727 -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16450_none_51a66d6ddafc2ed1\explorer.exe
[2011.02.26 07:33:07 | 002,614,784 | ---- | M] (Microsoft Corporation) MD5=2AF58D15EDC06EC6FDACCE1F19482BBF -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16768_none_51a3a583dafd0cef\explorer.exe
[2010.11.20 14:17:09 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=40D777B7A95E00593EB1568C68514493 -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17514_none_53bc10fdd7fe87ca\explorer.exe
[2011.02.25 07:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=8B88EBBB05A0E56B7DCC708498C02B3E -- C:\Windows\explorer.exe
[2011.02.25 07:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=8B88EBBB05A0E56B7DCC708498C02B3E -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17567_none_5389023fd8245f84\explorer.exe
[2009.08.03 07:49:47 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=9FF6C4C91A3711C0A3B18F87B08B518D -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20500_none_526619d4f3f142e6\explorer.exe
[2009.08.03 07:35:50 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=B95EEB0F4E5EFBF1038A35B3351CF047 -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16404_none_51e07e31dad00878\explorer.exe
[2009.10.31 08:00:51 | 002,614,272 | ---- | M] (Microsoft Corporation) MD5=C76153C7ECA00FA852BB0C193378F917 -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20563_none_52283b2af41f3691\explorer.exe

< MD5 for: HAL.DLL >
[2010.11.20 14:29:53 | 000,194,432 | ---- | M] (Microsoft Corporation) MD5=1BF0D4727FDB437D513CFF8A9359C050 -- C:\Windows\System32\hal.dll
[2010.11.20 14:29:53 | 000,194,432 | ---- | M] (Microsoft Corporation) MD5=1BF0D4727FDB437D513CFF8A9359C050 -- C:\Windows\winsxs\x86_microsoft-windows-hal_31bf3856ad364e35_6.1.7601.17514_none_ad305c8fb7ec5060\hal.dll
[2004.12.10 22:17:24 | 000,024,576 | ---- | M] () MD5=25E6B398DC03788B615FDE299E8CD37B -- C:\Program Files\NbuExplorer\dbshell\hal.dll
[2009.07.14 03:20:28 | 000,194,640 | ---- | M] (Microsoft Corporation) MD5=9A557EAE64ABAB3BA67A9BB035D24CB9 -- C:\Windows\winsxs\x86_microsoft-windows-hal_31bf3856ad364e35_6.1.7600.16385_none_aaff48c7bafdccc6\hal.dll

< MD5 for: SCECLI.DLL >
[2009.07.14 03:16:13 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=26073302DAEA83CC5B944C546D6B47D2 -- C:\Windows\winsxs\x86_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7600.16385_none_37e4387f3a6f0483\scecli.dll
[2010.11.20 14:21:04 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=8124944EC89D6A1815E4E53F5B96AAF4 -- C:\Windows\System32\scecli.dll
[2010.11.20 14:21:04 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=8124944EC89D6A1815E4E53F5B96AAF4 -- C:\Windows\winsxs\x86_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7601.17514_none_3a154c47375d881d\scecli.dll

< MD5 for: SERVICES.EXE >
[2015.04.13 05:19:24 | 000,259,072 | ---- | M] (Microsoft Corporation) MD5=0780A42DBD7D9969F9BF4A19AA4285B5 -- C:\Windows\System32\services.exe
[2015.04.13 05:19:24 | 000,259,072 | ---- | M] (Microsoft Corporation) MD5=0780A42DBD7D9969F9BF4A19AA4285B5 -- C:\Windows\winsxs\x86_microsoft-windows-s..s-servicecontroller_31bf3856ad364e35_6.1.7601.18829_none_d1614ac32b8ec5cf\services.exe
[2009.07.14 03:14:36 | 000,259,072 | ---- | M] (Microsoft Corporation) MD5=5F1B6A9C35D3D5CA72D6D6FDEF9747D6 -- C:\Windows\winsxs\x86_microsoft-windows-s..s-servicecontroller_31bf3856ad364e35_6.1.7600.16385_none_cf36168b2e9c967b\services.exe
[2015.04.11 05:53:55 | 000,259,072 | ---- | M] (Microsoft Corporation) MD5=97981140500E86E5BBAD7B76BA890146 -- C:\Windows\winsxs\x86_microsoft-windows-s..s-servicecontroller_31bf3856ad364e35_6.1.7601.23033_none_d1d9ee0844ba1cc2\services.exe

< MD5 for: SVCHOST.EXE >
[2015.04.14 09:36:16 | 000,878,392 | ---- | M] (MalwareBytes) MD5=4518DD9A09B4FEF7DB3B13F0DDDDD36E -- C:\Program Files\Malwarebytes Anti-Malware\Chameleon\Windows\svchost.exe
[2009.07.14 03:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=54A47F6B5E09A77E61649109C6A08866 -- C:\Windows\System32\svchost.exe
[2009.07.14 03:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=54A47F6B5E09A77E61649109C6A08866 -- C:\Windows\winsxs\x86_microsoft-windows-services-svchost_31bf3856ad364e35_6.1.7600.16385_none_b591afc466a15356\svchost.exe

< MD5 for: TCPIP.SYS >
[2011.04.25 06:56:06 | 001,286,016 | ---- | M] (Microsoft Corporation) MD5=0158D5E9982E9D6A90DFC802F618E130 -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.16802_none_b347f075c77b9c9d\tcpip.sys
[2011.09.29 18:02:44 | 001,301,872 | ---- | M] (Microsoft Corporation) MD5=22F7E7CBCA308DEE3428B097D4F8A61C -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.21060_none_b38e8546e0cbe4a1\tcpip.sys
[2012.08.22 19:05:21 | 001,306,992 | ---- | M] (Microsoft Corporation) MD5=23790A44D9A6B67F8690C34D4F516446 -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.22097_none_b55b785ade04500f\tcpip.sys
[2011.04.25 06:31:30 | 001,290,624 | ---- | M] (Microsoft Corporation) MD5=24326784DF8F3D5F5BBB9F878CE33C14 -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17603_none_b52f4dc5c4a121e0\tcpip.sys
[2009.07.14 03:19:10 | 001,285,712 | ---- | M] (Microsoft Corporation) MD5=2CC3D75488ABD3EC628BBB9A4FC84EFC -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.16385_none_b2f46875c7b9d667\tcpip.sys
[2013.01.03 07:01:49 | 001,303,912 | ---- | M] (Microsoft Corporation) MD5=34AE5CC0C7417AB701C2AA8A7BC75417 -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.21415_none_b3c99dece09ecc3b\tcpip.sys
[2010.11.20 14:30:12 | 001,290,112 | ---- | M] (Microsoft Corporation) MD5=37E8FA3779668837CA9E2C36D2415949 -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17514_none_b5257c3dc4a85a01\tcpip.sys
[2011.09.29 18:17:18 | 001,303,920 | ---- | M] (Microsoft Corporation) MD5=3C1C41E317710F74CEC1E7F0D5325993 -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.21828_none_b5a84e10ddca7566\tcpip.sys
[2013.01.04 06:56:23 | 001,308,504 | ---- | M] (Microsoft Corporation) MD5=4A95845C5F33A4DDEB6AEF6367FB6520 -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.22209_none_b5becc06ddb98192\tcpip.sys
[2013.07.06 07:05:35 | 001,293,760 | ---- | M] (Microsoft Corporation) MD5=4E8B9BE71B807B3BAEDB7F4243F85E3C -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.18203_none_b52f2f65c4a146e5\tcpip.sys
[2013.07.06 06:57:37 | 001,309,120 | ---- | M] (Microsoft Corporation) MD5=528F7CC60391DD0FAB0344F32F051FDF -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.22378_none_b5721e2eddf328f9\tcpip.sys
[2014.04.05 04:25:01 | 001,294,272 | ---- | M] (Microsoft Corporation) MD5=5579DD18546999F5D0EC39D018726C6B -- C:\Windows\System32\drivers\tcpip.sys
[2014.04.05 04:25:01 | 001,294,272 | ---- | M] (Microsoft Corporation) MD5=5579DD18546999F5D0EC39D018726C6B -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.18438_none_b513c4dfc4b513b9\tcpip.sys
[2012.03.30 12:29:05 | 001,287,024 | ---- | M] (Microsoft Corporation) MD5=55E9965552741F3850CB22CBBA9671ED -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.16986_none_b2f57423c7b8dea8\tcpip.sys
[2011.09.29 17:43:37 | 001,285,488 | ---- | M] (Microsoft Corporation) MD5=56C198AC82EFA622DD93E9E43575F79C -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.16889_none_b2f8731bc7b62d86\tcpip.sys
[2013.05.08 08:15:22 | 001,309,032 | ---- | M] (Microsoft Corporation) MD5=6088D01FAD49729EA0A5A3D9B9BA8B84 -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.22319_none_b5b3fe00ddc19aaa\tcpip.sys
[2011.09.29 18:03:04 | 001,290,608 | ---- | M] (Microsoft Corporation) MD5=65D10B191C59C5501A1263FC33F6894B -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17697_none_b4d1ffa1c4e682b5\tcpip.sys
[2013.11.26 02:37:25 | 001,309,120 | ---- | M] (Microsoft Corporation) MD5=6C4F3D92764FFA22D28061A4D9235446 -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.22444_none_b58e8eb0ddde6cf1\tcpip.sys
[2011.04.25 08:31:09 | 001,301,376 | ---- | M] (Microsoft Corporation) MD5=6D4728CFF2724FF3A4654971D61D0F1C -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.21712_none_b5ad1a5addc7c444\tcpip.sys
[2013.01.03 07:05:20 | 001,293,672 | ---- | M] (Microsoft Corporation) MD5=7C0507D2391AF5933600CBCED799F277 -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.18042_none_b502eb9fc4c2a304\tcpip.sys
[2012.03.30 12:23:11 | 001,291,632 | ---- | M] (Microsoft Corporation) MD5=7FA2E0F8B072BD04B77B421480B6CC22 -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17802_none_b52e5147c4a202d7\tcpip.sys
[2011.04.25 06:44:18 | 001,298,816 | ---- | M] (Microsoft Corporation) MD5=8861B9A06BA99C6E1D62D0C86DFAB86C -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.20951_none_b39a7d5ae0c2aec5\tcpip.sys
[2012.03.30 11:04:23 | 001,306,480 | ---- | M] (Microsoft Corporation) MD5=88FCDB9923EFECA207B3CEBD24407126 -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.21954_none_b583df0adde66104\tcpip.sys
[2012.08.22 19:16:54 | 001,292,144 | ---- | M] (Microsoft Corporation) MD5=A5EBB8F648000E88B7D9390B514976BF -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17939_none_b514e56fc4b40532\tcpip.sys
[2013.01.04 06:55:21 | 001,287,528 | ---- | M] (Microsoft Corporation) MD5=BBCEAEFF1FD72A026F827CBB2F4AA8AD -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.17206_none_b34bcf71c7782cb0\tcpip.sys
[2013.11.26 02:37:25 | 001,294,272 | ---- | M] (Microsoft Corporation) MD5=CA59F7C570AF70BC174F477CFE2D9EE3 -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.18254_none_b4fa2013c4c8ebf1\tcpip.sys
[2013.05.08 07:38:00 | 001,293,672 | ---- | M] (Microsoft Corporation) MD5=D32FDAC73FCD76B85389C39BC1087F2A -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.18148_none_b508ef41c4bd3835\tcpip.sys
[2012.10.03 18:44:01 | 001,308,040 | ---- | M] (Microsoft Corporation) MD5=D490DD0A91B4EAC3B4EE08D11EE37C31 -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.22124_none_b5a428d6ddce3d9a\tcpip.sys
[2012.10.03 18:58:30 | 001,293,680 | ---- | M] (Microsoft Corporation) MD5=E23A56F843E2AEBBB209D0ACCA73C640 -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17964_none_b4ef7439c4d0da52\tcpip.sys
[2012.03.30 12:08:19 | 001,303,408 | ---- | M] (Microsoft Corporation) MD5=E47C2844A1605A44178F4281E4D58B3D -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.21178_none_b38bb990e0ccc871\tcpip.sys
[2014.04.05 04:16:21 | 001,310,144 | ---- | M] (Microsoft Corporation) MD5=EA47AB18E289333AB94397D77CA6E3A1 -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.22648_none_b59293a4dddacc9b\tcpip.sys

< MD5 for: USERINIT.EXE >
[2010.11.20 14:17:48 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=61AC3EFDFACFDD3F0F11DD4FD4044223 -- C:\Windows\System32\userinit.exe
[2010.11.20 14:17:48 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=61AC3EFDFACFDD3F0F11DD4FD4044223 -- C:\Windows\winsxs\x86_microsoft-windows-userinit_31bf3856ad364e35_6.1.7601.17514_none_de3024012ff21116\userinit.exe
[2009.07.14 03:14:43 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=6DE80F60D7DE9CE6B8C2DDFDF79EF175 -- C:\Windows\winsxs\x86_microsoft-windows-userinit_31bf3856ad364e35_6.1.7600.16385_none_dbff103933038d7c\userinit.exe

< MD5 for: WINLOGON.EXE >
[2009.10.28 08:17:59 | 000,285,696 | ---- | M] (Microsoft Corporation) MD5=37CDB7E72EB66BA85A87CBE37E7F03FD -- C:\Windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.16447_none_6fc699643622d177\winlogon.exe
[2009.10.28 07:52:08 | 000,285,696 | ---- | M] (Microsoft Corporation) MD5=3BABE6767C78FBF5FB8435FEED187F30 -- C:\Windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.20560_none_703394514f56f7c2\winlogon.exe
[2015.04.14 09:36:16 | 000,878,392 | ---- | M] (MalwareBytes) MD5=4518DD9A09B4FEF7DB3B13F0DDDDD36E -- C:\Program Files\Malwarebytes Anti-Malware\Chameleon\Windows\winlogon.exe
[2014.07.16 04:56:14 | 000,304,640 | ---- | M] (Microsoft Corporation) MD5=4F37B93C14AEE313BEC52A23AFB15C2E -- C:\Windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7601.22750_none_7224b2134c7555fa\winlogon.exe
[2014.07.17 03:39:27 | 000,304,128 | ---- | M] (Microsoft Corporation) MD5=52449FD429D6053B78AE564DEF303870 -- C:\Windows\System32\winlogon.exe
[2014.07.17 03:39:27 | 000,304,128 | ---- | M] (Microsoft Corporation) MD5=52449FD429D6053B78AE564DEF303870 -- C:\Windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7601.18540_none_71a5e34e334f9d18\winlogon.exe
[2010.11.20 14:17:54 | 000,286,720 | ---- | M] (Microsoft Corporation) MD5=6D13E1406F50C66E2A95D97F22C47560 -- C:\Windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7601.17514_none_71ca6b0233339500\winlogon.exe
[2009.07.14 03:14:45 | 000,285,696 | ---- | M] (Microsoft Corporation) MD5=8EC6A4AB12B8F3759E21F8E3A388F2CF -- C:\Windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.16385_none_6f99573a36451166\winlogon.exe
[2014.03.04 11:17:02 | 000,304,128 | ---- | M] (Microsoft Corporation) MD5=998507B046BA314CE8245364C686FA67 -- C:\Windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7601.18409_none_71da23b23327143c\winlogon.exe
[2014.03.04 12:39:02 | 000,304,640 | ---- | M] (Microsoft Corporation) MD5=D53972F87D850CD2EB4B29B60CAFDD77 -- C:\Windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7601.22616_none_7255f1994c4f8119\winlogon.exe

< >

< %systemroot%*.* /U /s >
[1 C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp files -> C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp -> ]
[1 C:\Windows\Installer\*.tmp files -> C:\Windows\Installer\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\881375ad89648f7d773727ec53695654\*.tmp files -> C:\Windows\SoftwareDistribution\Download\881375ad89648f7d773727ec53695654\*.tmp -> ]
[3 C:\Windows\System32\spp\tokens\pkeyconfig\*.tmp files -> C:\Windows\System32\spp\tokens\pkeyconfig\*.tmp -> ]
[5 C:\Windows\Temp\*.tmp files -> C:\Windows\Temp\*.tmp -> ]

< %SYSTEMDRIVE%\*.exe >

< %ALLUSERSPROFILE%\Application Data\*. >

< %ALLUSERSPROFILE%\Application Data\*.exe /s >

< %APPDATA%\*. >
[2015.03.24 22:02:41 | 000,000,000 | ---D | M] -- C:\Users\Honys\AppData\Roaming\Adobe
[2014.03.27 21:33:38 | 000,000,000 | ---D | M] -- C:\Users\Honys\AppData\Roaming\Aescripts
[2015.04.28 19:15:50 | 000,000,000 | ---D | M] -- C:\Users\Honys\AppData\Roaming\AMD
[2015.01.31 18:02:24 | 000,000,000 | ---D | M] -- C:\Users\Honys\AppData\Roaming\AMPSoft
[2014.04.26 15:53:33 | 000,000,000 | ---D | M] -- C:\Users\Honys\AppData\Roaming\Apple Computer
[2014.05.04 10:30:17 | 000,000,000 | ---D | M] -- C:\Users\Honys\AppData\Roaming\ATI
[2014.04.26 15:53:33 | 000,000,000 | ---D | M] -- C:\Users\Honys\AppData\Roaming\avidemux
[2012.11.13 13:38:06 | 000,000,000 | ---D | M] -- C:\Users\Honys\AppData\Roaming\Corel
[2014.09.09 11:26:36 | 000,000,000 | ---D | M] -- C:\Users\Honys\AppData\Roaming\DivX
[2015.06.20 12:56:48 | 000,000,000 | ---D | M] -- C:\Users\Honys\AppData\Roaming\Dropbox
[2014.11.01 00:15:21 | 000,000,000 | ---D | M] -- C:\Users\Honys\AppData\Roaming\dvdcss
[2014.05.04 10:29:49 | 000,000,000 | ---D | M] -- C:\Users\Honys\AppData\Roaming\ESET
[2015.05.07 20:57:44 | 000,000,000 | ---D | M] -- C:\Users\Honys\AppData\Roaming\GeoGet
[2012.12.09 16:15:16 | 000,000,000 | ---D | M] -- C:\Users\Honys\AppData\Roaming\GHISLER
[2014.06.29 20:00:53 | 000,000,000 | ---D | M] -- C:\Users\Honys\AppData\Roaming\Google
[2014.09.30 19:12:02 | 000,000,000 | ---D | M] -- C:\Users\Honys\AppData\Roaming\HLSW
[2015.06.18 17:52:36 | 000,000,000 | ---D | M] -- C:\Users\Honys\AppData\Roaming\ICQ
[2015.04.23 23:55:55 | 000,000,000 | ---D | M] -- C:\Users\Honys\AppData\Roaming\library_dir
[2012.11.09 18:33:01 | 000,000,000 | ---D | M] -- C:\Users\Honys\AppData\Roaming\Macromedia
[2014.04.26 15:53:33 | 000,000,000 | ---D | M] -- C:\Users\Honys\AppData\Roaming\MAGIX
[2014.12.29 22:32:33 | 000,000,000 | ---D | M] -- C:\Users\Honys\AppData\Roaming\Malwarebytes
[2014.05.14 18:50:41 | 000,000,000 | --SD | M] -- C:\Users\Honys\AppData\Roaming\Microsoft
[2014.02.19 22:59:59 | 000,000,000 | ---D | M] -- C:\Users\Honys\AppData\Roaming\MySQL
[2015.06.15 19:56:06 | 000,000,000 | ---D | M] -- C:\Users\Honys\AppData\Roaming\Nokia
[2013.05.18 12:42:22 | 000,000,000 | ---D | M] -- C:\Users\Honys\AppData\Roaming\NVIDIA
[2014.08.14 22:24:47 | 000,000,000 | ---D | M] -- C:\Users\Honys\AppData\Roaming\Oracle
[2015.06.15 19:53:27 | 000,000,000 | ---D | M] -- C:\Users\Honys\AppData\Roaming\PC Suite
[2015.02.15 18:06:12 | 000,000,000 | ---D | M] -- C:\Users\Honys\AppData\Roaming\PhotoScape
[2014.04.26 15:49:05 | 000,000,000 | ---D | M] -- C:\Users\Honys\AppData\Roaming\Pmcc
[2012.11.03 16:55:56 | 000,000,000 | ---D | M] -- C:\Users\Honys\AppData\Roaming\PowerISO
[2013.01.20 02:16:39 | 000,000,000 | ---D | M] -- C:\Users\Honys\AppData\Roaming\PSpad
[2015.04.18 23:06:56 | 000,000,000 | ---D | M] -- C:\Users\Honys\AppData\Roaming\Publish Providers
[2015.02.16 22:03:20 | 000,000,000 | ---D | M] -- C:\Users\Honys\AppData\Roaming\SketchUp
[2015.03.10 21:04:10 | 000,000,000 | ---D | M] -- C:\Users\Honys\AppData\Roaming\Skype
[2015.04.18 22:31:22 | 000,000,000 | ---D | M] -- C:\Users\Honys\AppData\Roaming\Sony
[2015.04.23 18:15:35 | 000,000,000 | ---D | M] -- C:\Users\Honys\AppData\Roaming\Sony Creative Software Inc
[2012.11.02 14:54:33 | 000,000,000 | ---D | M] -- C:\Users\Honys\AppData\Roaming\SystemRequirementsLab
[2015.03.10 23:35:54 | 000,000,000 | ---D | M] -- C:\Users\Honys\AppData\Roaming\TCXConverter
[2015.06.18 17:55:34 | 000,000,000 | ---D | M] -- C:\Users\Honys\AppData\Roaming\uTorrent
[2015.06.21 22:22:24 | 000,000,000 | ---D | M] -- C:\Users\Honys\AppData\Roaming\vlc
[2013.01.20 02:21:39 | 000,000,000 | ---D | M] -- C:\Users\Honys\AppData\Roaming\WaterProof
[2014.07.29 20:30:31 | 000,000,000 | ---D | M] -- C:\Users\Honys\AppData\Roaming\Winamp
[2012.11.02 15:07:13 | 000,000,000 | ---D | M] -- C:\Users\Honys\AppData\Roaming\WinRAR

< %APPDATA%\*.exe /s >
[2015.06.10 22:36:06 | 043,871,584 | ---- | M] (Dropbox, Inc.) -- C:\Users\Honys\AppData\Roaming\Dropbox\bin\Dropbox.exe
[2015.06.10 22:36:14 | 000,165,560 | ---- | M] (Dropbox, Inc.) -- C:\Users\Honys\AppData\Roaming\Dropbox\bin\DropboxUninstaller.exe
[2015.04.21 20:16:32 | 000,049,664 | ---- | M] () -- C:\Users\Honys\AppData\Roaming\Dropbox\bin\w9xpopen.exe
[2014.01.25 10:46:24 | 000,071,894 | R--- | M] () -- C:\Users\Honys\AppData\Roaming\Microsoft\Installer\{A50DE037-B5C0-4C8A-8049-B0C576B313D1}\GPUploader.exe
[2015.05.26 19:53:43 | 001,694,560 | ---- | M] (BitTorrent Inc.) -- C:\Users\Honys\AppData\Roaming\uTorrent\uTorrent.exe
[2014.03.03 23:12:17 | 000,905,296 | ---- | M] (BitTorrent Inc.) -- C:\Users\Honys\AppData\Roaming\uTorrent\updates\3.3.2_30488.exe
[2014.05.04 10:51:44 | 001,270,352 | ---- | M] (BitTorrent Inc.) -- C:\Users\Honys\AppData\Roaming\uTorrent\updates\3.4.1_30888.exe
[2014.05.31 11:02:45 | 001,272,400 | ---- | M] (BitTorrent Inc.) -- C:\Users\Honys\AppData\Roaming\uTorrent\updates\3.4.1_31139.exe
[2014.07.26 00:33:33 | 001,322,832 | ---- | M] (BitTorrent Inc.) -- C:\Users\Honys\AppData\Roaming\uTorrent\updates\3.4.2_32126.exe
[2015.01.31 16:02:24 | 001,374,032 | ---- | M] (BitTorrent Inc.) -- C:\Users\Honys\AppData\Roaming\uTorrent\updates\3.4.2_37754.exe
[2015.05.01 11:39:34 | 001,441,104 | ---- | M] (BitTorrent Inc.) -- C:\Users\Honys\AppData\Roaming\uTorrent\updates\3.4.3_40097.exe
[2015.05.26 19:53:43 | 001,694,560 | ---- | M] (BitTorrent Inc.) -- C:\Users\Honys\AppData\Roaming\uTorrent\updates\3.4.3_40298.exe

< %systemroot%\*. /mp /s >

< %systemroot%\system32\*.dll /lockedfiles >
[2010.11.20 14:21:24 | 000,193,536 | ---- | M] () Unable to obtain MD5 -- C:\Windows\system32\sppcomapi.dll

< %systemroot%\Tasks\*.job >
[2015.06.21 22:39:00 | 000,000,914 | ---- | M] () -- C:\Windows\Tasks\Adobe Flash Player Updater.job
[2015.06.21 19:50:01 | 000,000,866 | ---- | M] () -- C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-1551242594-84631119-3797995329-1001Core.job
[2015.06.21 22:50:07 | 000,000,918 | ---- | M] () -- C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-1551242594-84631119-3797995329-1001UA.job
[2015.06.23 19:30:37 | 000,000,936 | ---- | M] () -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
[2015.06.21 22:03:00 | 000,000,940 | ---- | M] () -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job

< %systemroot%\system32\drivers\*.sys /lockedfiles >

< %systemroot%\System32\config\*.sav >

< %systemroot%\system32\*.dll /lockedfiles >
[2010.11.20 14:21:24 | 000,193,536 | ---- | M] () Unable to obtain MD5 -- C:\Windows\system32\sppcomapi.dll

< %systemroot%\system32\drivers\*.sys /3 >
[2015.06.22 18:42:04 | 000,119,512 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\system32\drivers\MBAMSwissArmy.sys

< %systemroot%\system32\*.* /3 >
[2015.06.21 22:43:26 | 000,014,544 | -H-- | M] () -- C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2015.06.21 22:43:26 | 000,014,544 | -H-- | M] () -- C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0

< %SYSTEMDRIVE%\*.exe >

< >

< HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s >
"LG LinkAir" =
"Google+ Auto Backup" = "C:\Users\Honys\AppData\Local\Programs\Google\Google+ Auto Backup\Google+ Auto Backup.exe" /autostart -- [2014.01.06 11:59:50 | 003,619,096 | ---- | M] (Google Inc.)
"Zoner Photo Studio Autoupdate" = C:\PROGRAM FILES\ZONER\PHOTO STUDIO 15\Program32\ZPSTRAY.EXE -- [2014.03.13 17:11:32 | 000,779,776 | ---- | M] (ZONER software)
"Dropbox Update" = "C:\Users\Honys\AppData\Local\Dropbox\Update\DropboxUpdate.exe" /c -- [2015.06.18 19:45:39 | 000,134,512 | ---- | M] (Dropbox, Inc.)

< >

< %PROGRAMFILES%\Mozilla Firefox\firefox.exe /md5 >

< %PROGRAMFILES%\Internet Explorer\iexplore.exe /md5 >
[2015.06.02 21:35:47 | 000,815,304 | ---- | M] (Microsoft Corporation) MD5=F2831268EC600225F611DC02166EACF0 -- C:\Program Files\Internet Explorer\iexplore.exe

< %PROGRAMFILES%\Opera\opera.exe /md5 >

< %PROGRAMFILES%\Google\Chrome\Application\chrome.exe /md5 >
[2015.06.05 20:22:15 | 000,813,896 | ---- | M] (Google Inc.) MD5=4547360EB0D90804B3AD080CE1D1D814 -- C:\Program Files\Google\Chrome\Application\chrome.exe

< >

< %SystemDrive%\PhysicalMBR.bin /md5 >
[2015.06.23 20:12:32 | 000,000,512 | ---- | M] () MD5=53052A30097869619E2F0948CD3CDE39 -- C:\PhysicalMBR.bin

< >

< *crack* /s >
[2007.03.23 18:11:06 | 000,048,994 | ---- | M] () -- \bestgames\ZNK7\sound\crack.wav
[2008.08.07 12:28:04 | 001,159,409 | ---- | M] () -- \Program Files\Adobe\Adobe After Effects CS4\Support Files\Presets\Image - Special Effects\Cracked Tiles.ffx
[2011.04.08 17:16:28 | 037,517,780 | ---- | M] () -- \Program Files\Adobe\Adobe Photoshop CS2\Presets\Brushes\cracks.abr
[2005.03.08 12:30:56 | 000,092,827 | ---- | M] () -- \Program Files\Corel\CorelDRAW Graphics Suite X4\Custom Data\Bumpmap\Cracks.cpt
[2005.03.08 12:30:58 | 000,016,068 | ---- | M] () -- \Program Files\Corel\CorelDRAW Graphics Suite X4\Custom Data\Canvas\cracks2c.pcx
[2005.03.08 12:31:08 | 000,010,560 | ---- | M] () -- \Program Files\Corel\CorelDRAW Graphics Suite X4\Custom Data\Tiles\CRACKS2M.CPT
[2011.11.12 13:47:00 | 004,345,680 | ---- | M] () -- \Program Files\Valve\cstrike\maps\cs_crackhouse.bsp
[2009.11.18 16:20:51 | 000,067,756 | ---- | M] () -- \Program Files\Valve\cstrike\sound\misc\cracker1.wav
[2013.09.23 19:08:00 | 000,003,072 | ---- | M] () -- \Users\Honys\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_getfreecrackfiles.blogspot.com_0.localstorage
[2013.09.23 19:08:00 | 000,003,608 | ---- | M] () -- \Users\Honys\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_getfreecrackfiles.blogspot.com_0.localstorage-journal
[2010.02.21 01:22:00 | 000,000,386 | ---- | M] () -- \Users\Honys\AppData\Roaming\GeoGet\offline\sysimg\WM\Cracker_Barrel_Restaurants.gif
[2013.03.02 12:38:21 | 000,850,761 | ---- | M] () -- \Users\Honys\Documents\Climbing\Picture\WOMENcrack.jpg
[2012.12.19 19:37:00 | 001,383,724 | ---- | M] () -- \Users\Honys\Documents\Design, graphic\Texture\cracked_ice_1_by_incolor16-d319hgr.jpg
[2011.04.03 23:09:38 | 000,056,079 | ---- | M] () -- \Users\Honys\Documents\Copilot\116\Crumble\(Footage)\FOOTAGE\cracks.png

< *keygen* /s >

blip
Návštěvník
Návštěvník
Příspěvky: 8
Registrován: 22 čer 2015 19:01

Re: Zamrznutí PC po pár minutách - prosím o kontrolu logu

#10 Příspěvek od blip »

< *loader* /s >
[2014.05.08 04:22:14 | 000,012,278 | ---- | M] () -- \Program Files\Adobe\Acrobat 10.0\Acrobat\WebPublish\BootStrapLoader.swf
[2008.09.03 03:14:34 | 000,217,088 | ---- | M] () -- \Program Files\Adobe\Adobe After Effects CS4\Support Files\MXF_SDK_MetaMetadata_BinaryLoader_r.4.1.1.223.dll
[2008.08.28 20:34:20 | 004,965,736 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS4\Photodownloader.exe
[2008.08.28 17:42:12 | 000,011,161 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS4\apd\shared_assets\bitmaps\main_window\C_LoadError.png
[2008.08.28 17:42:14 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS4\apd\shared_assets\locales\da_dk\Photodownloader.ini
[2008.08.28 17:42:14 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS4\apd\shared_assets\locales\de_de\Photodownloader.ini
[2008.08.28 17:42:14 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS4\apd\shared_assets\locales\en_us\Photodownloader.ini
[2008.08.28 17:42:14 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS4\apd\shared_assets\locales\es_es\Photodownloader.ini
[2008.08.28 17:42:14 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS4\apd\shared_assets\locales\fi_fi\Photodownloader.ini
[2008.08.28 17:42:14 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS4\apd\shared_assets\locales\fr_fr\Photodownloader.ini
[2008.08.28 17:42:14 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS4\apd\shared_assets\locales\it_it\Photodownloader.ini
[2008.08.28 17:42:14 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS4\apd\shared_assets\locales\ja_jp\Photodownloader.ini
[2008.08.28 17:42:14 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS4\apd\shared_assets\locales\ko_kr\Photodownloader.ini
[2008.08.28 17:42:14 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS4\apd\shared_assets\locales\nl_nl\Photodownloader.ini
[2008.08.28 17:42:14 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS4\apd\shared_assets\locales\no_no\Photodownloader.ini
[2008.08.28 17:42:14 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS4\apd\shared_assets\locales\pt_br\Photodownloader.ini
[2008.08.28 17:42:14 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS4\apd\shared_assets\locales\sv_se\Photodownloader.ini
[2008.08.28 17:42:14 | 000,000,308 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS4\apd\shared_assets\locales\zh_cn\Photodownloader.ini
[2008.08.28 17:42:16 | 000,000,011 | ---- | M] () -- \Program Files\Adobe\Adobe Bridge CS4\apd\shared_assets\locales\zh_tw\Photodownloader.ini
[2008.08.26 02:32:24 | 000,217,088 | ---- | M] () -- \Program Files\Adobe\Adobe Media Encoder CS4\MXF_SDK_MetaMetadata_BinaryLoader_r.4.1.1.223.dll
[2009.06.08 07:57:40 | 000,009,728 | ---- | M] () -- \Program Files\Common Files\Adobe\Startup Scripts CS4\Adobe Version Cue\VersionCueSDKLoader.jsx
[2013.01.28 13:08:40 | 000,008,827 | ---- | M] () -- \Program Files\Common Files\Apple\Apple Application Support\WebKit.resources\inspector\HeapSnapshotLoader.js
[2006.10.26 14:40:34 | 000,057,344 | ---- | M] () -- \Program Files\Common Files\microsoft shared\VS7DEBUG\coloader.dll
[2006.10.26 14:40:34 | 000,005,120 | ---- | M] () -- \Program Files\Common Files\microsoft shared\VS7DEBUG\coloader.tlb
[2010.08.26 18:21:14 | 000,004,176 | ---- | M] () -- \Program Files\Google\Google SketchUp 8\Resources\en-US\searching\ajax-loader.gif
[2012.12.04 12:55:48 | 000,000,513 | ---- | M] () -- \Program Files\Google\Google SketchUp 8\Tools\DynamicComponents\ruby\dcloader.rb
[2012.12.04 12:55:48 | 000,001,875 | ---- | M] () -- \Program Files\Google\Google SketchUp 8\Tools\ShadowStringsFix\shadowstringsfix_loader.rb
[2012.12.04 12:55:48 | 000,003,953 | ---- | M] () -- \Program Files\Google\Google SketchUp 8\Tools\SolarNorth\solarnorth_loader.rb
[2012.12.04 12:55:48 | 000,029,557 | ---- | M] () -- \Program Files\Google\Google SketchUp 8\Tools\WebTextures\webtextures_loader.rb
[2014.01.06 20:47:02 | 000,000,702 | ---- | M] () -- \Program Files\Google\Picasa3\runtime\gpuploader_advoptions.fen
[2014.01.06 20:47:02 | 000,000,790 | ---- | M] () -- \Program Files\Google\Picasa3\runtime\gpuploader_debug.fen
[2014.01.06 20:47:02 | 000,000,723 | ---- | M] () -- \Program Files\Google\Picasa3\runtime\gpuploader_download.fen
[2014.01.06 20:47:02 | 000,000,694 | ---- | M] () -- \Program Files\Google\Picasa3\runtime\gpuploader_file_errors.fen
[2013.02.09 03:39:28 | 000,000,934 | ---- | M] () -- \Program Files\Google\Picasa3\runtime\gpuploader_main.fen
[2014.01.06 20:47:04 | 000,000,634 | ---- | M] () -- \Program Files\Google\Picasa3\runtime\gpuploader_manage_devices.fen
[2014.01.06 20:47:04 | 000,002,283 | ---- | M] () -- \Program Files\Google\Picasa3\runtime\gpuploader_onboard.fen
[2014.01.06 20:47:04 | 000,001,417 | ---- | M] () -- \Program Files\Google\Picasa3\runtime\gpuploader_options.fen
[2014.01.06 20:47:04 | 000,001,330 | ---- | M] () -- \Program Files\Google\Picasa3\runtime\gpuploader_pinwheel_72.png
[2014.01.06 20:47:04 | 000,002,541 | ---- | M] () -- \Program Files\Google\Picasa3\runtime\gpuploader_pinwheel_72x2.png
[2014.01.06 20:47:04 | 000,002,109 | ---- | M] () -- \Program Files\Google\Picasa3\runtime\gpuploader_prefs.fen
[2014.01.06 20:47:04 | 000,000,956 | ---- | M] () -- \Program Files\Google\Picasa3\runtime\gpuploader_quota_error1.fen
[2014.01.06 20:47:04 | 000,001,080 | ---- | M] () -- \Program Files\Google\Picasa3\runtime\gpuploader_quota_error2.fen
[2014.01.06 20:47:04 | 000,001,139 | ---- | M] () -- \Program Files\Google\Picasa3\runtime\gpuploader_quota_error_estimate.fen
[2014.01.06 20:47:04 | 000,002,181 | ---- | M] () -- \Program Files\Google\Picasa3\runtime\gpuploader_welcome.fen
[2014.07.29 10:17:36 | 000,097,974 | ---- | M] () -- \Program Files\HiSuite\HiSuiteDownLoader.cfg
[2014.09.05 09:36:44 | 000,458,272 | ---- | M] () -- \Program Files\HiSuite\HiSuiteDownLoader.exe
[2012.11.02 15:04:25 | 000,005,795 | ---- | M] () -- \Program Files\ICQ7M\imApp\theme\IMAGES\XtraPreloader\loader.jpg
[2012.11.02 15:04:25 | 000,004,180 | ---- | M] () -- \Program Files\ICQ7M\imApp\theme\IMAGES\XtraPreloader\zlango-preloader.png
[2012.11.02 15:04:25 | 000,005,520 | ---- | M] () -- \Program Files\ICQ7M\imApp\theme\MUICoreLib\xtraLoader.swf
[2012.11.02 16:53:04 | 000,000,402 | ---- | M] () -- \Program Files\ICQ7M\Xtraz\icq\content\profile_lightboxs\preloader.html
[2012.06.26 12:36:20 | 000,002,560 | ---- | M] () -- \Program Files\Nokia\Nokia PC Suite 7\Lang\MapLoader_cze.NLR
[2015.02.02 02:02:24 | 000,009,216 | ---- | M] () -- \Program Files\SketchUp\SketchUp 2015\ifcplugin\IFCPluginWorker_Loader.exe
[2015.02.02 02:02:24 | 000,013,824 | ---- | M] () -- \Program Files\SketchUp\SketchUp 2015\ifcplugin\ImportLoader.exe
[2015.02.02 02:00:56 | 000,000,231 | ---- | M] () -- \Program Files\SketchUp\SketchUp 2015\ShippedExtensions\su_advancedcameratools\actloader.rb
[2015.02.02 02:01:02 | 000,000,517 | ---- | M] () -- \Program Files\SketchUp\SketchUp 2015\ShippedExtensions\su_dynamiccomponents\ruby\dcloader.rb
[2015.02.02 02:01:06 | 000,030,681 | ---- | M] () -- \Program Files\SketchUp\SketchUp 2015\ShippedExtensions\su_webtextures\webtextures_loader.rb
[2015.02.02 02:03:58 | 000,000,164 | ---- | M] () -- \Program Files\SketchUp\SketchUp 2015\Tools\RubyStdLib\rake\default_loader.rb
[2015.02.02 02:03:58 | 000,000,341 | ---- | M] () -- \Program Files\SketchUp\SketchUp 2015\Tools\RubyStdLib\rake\rake_test_loader.rb
[2003.09.26 09:15:26 | 000,169,384 | ---- | M] () -- \Program Files\Valve\cstrike\models\qloader.mdl
[2003.09.26 15:19:52 | 000,352,548 | ---- | M] () -- \Program Files\Valve\valve\models\loader.mdl
[2003.09.26 15:24:16 | 000,012,764 | ---- | M] () -- \Program Files\Valve\valve\sound\ambience\loader_hydra1.wav
[2003.09.26 15:24:16 | 000,012,164 | ---- | M] () -- \Program Files\Valve\valve\sound\ambience\loader_step1.wav
[2013.03.05 10:11:10 | 000,432,128 | ---- | M] () -- \Program Files\Zoner\Photo Studio 15\Plugins\Facebook\ZPSFacebookUploader.exe
[2010.04.29 14:12:40 | 000,053,640 | ---- | M] () -- \Program Files\Zoner\Photo Studio 15\Plugins\Facebook\ZPSPluginLoader.exe
[2013.03.05 13:03:44 | 000,443,904 | ---- | M] () -- \Program Files\Zoner\Photo Studio 15\Plugins\Flickr\ZPSFlickrUploader.exe
[2010.04.29 14:12:42 | 000,053,640 | ---- | M] () -- \Program Files\Zoner\Photo Studio 15\Plugins\Flickr\ZPSPluginLoader.exe
[2013.03.05 12:34:20 | 000,192,512 | ---- | M] () -- \Program Files\Zoner\Photo Studio 15\Plugins\Picasa\ZPSPicasaUploader.exe
[2010.04.29 14:12:40 | 000,053,640 | ---- | M] () -- \Program Files\Zoner\Photo Studio 15\Plugins\Picasa\ZPSPluginLoader.exe
[2014.03.13 17:11:18 | 000,103,936 | ---- | M] () -- \Program Files\Zoner\Photo Studio 15\Program32\8bfLoader.exe
[2014.03.13 17:11:24 | 000,017,920 | ---- | M] () -- \Program Files\Zoner\Photo Studio 15\Program32\WICLoader.exe
[2014.02.13 00:28:03 | 000,008,787 | ---- | M] () -- \Users\Honys\AppData\Local\Google\Chrome\User Data\Default\Extensions\eggkgjblbjpigonjpmblphnackhfigbo\1.4.0.6_0\img\ajax-loader-circle.gif
[2014.02.13 00:28:03 | 000,001,928 | ---- | M] () -- \Users\Honys\AppData\Local\Google\Chrome\User Data\Default\Extensions\eggkgjblbjpigonjpmblphnackhfigbo\1.4.0.6_0\img\ajax-loader.gif
[2015.06.08 15:52:46 | 000,009,418 | ---- | M] () -- \Users\Honys\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.35_0\img\gifloader.gif
[2014.02.13 00:28:19 | 000,117,377 | ---- | M] () -- \Users\Honys\AppData\Local\Google\Chrome\User Data\Default\Extensions\gkddaofiamhgfjmaccfcfpfolpgbeomj\16_0\images\page\loader-bg.jpg
[2014.02.13 00:28:19 | 000,053,492 | ---- | M] () -- \Users\Honys\AppData\Local\Google\Chrome\User Data\Default\Extensions\gkddaofiamhgfjmaccfcfpfolpgbeomj\16_0\images\page\loader-bubble.png
[2014.02.13 00:28:19 | 000,007,078 | ---- | M] () -- \Users\Honys\AppData\Local\Google\Chrome\User Data\Default\Extensions\gkddaofiamhgfjmaccfcfpfolpgbeomj\16_0\images\page\loader-logo.png
[2014.02.13 00:28:19 | 000,002,976 | ---- | M] () -- \Users\Honys\AppData\Local\Google\Chrome\User Data\Default\Extensions\gkddaofiamhgfjmaccfcfpfolpgbeomj\16_0\images\page\loader-numbers.png
[2014.02.13 00:28:19 | 000,019,936 | ---- | M] () -- \Users\Honys\AppData\Local\Google\Chrome\User Data\Default\Extensions\gkddaofiamhgfjmaccfcfpfolpgbeomj\16_0\images\page\loader-smallbubble.png
[2014.11.03 14:44:12 | 000,007,894 | ---- | M] () -- \Users\Honys\AppData\Local\Google\Chrome\User Data\Default\Extensions\kdadialhpiikehpdeejjeiikopddkjem\1.0.3.13_0\images\little-loader.gif
[2013.04.11 23:31:23 | 000,000,121 | ---- | M] () -- \Users\Honys\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\S4QF24RD\no-mno.cdn.videoplaza.tv\com.videoplaza.bootloader.sol
[2013.03.19 20:36:09 | 000,000,121 | ---- | M] () -- \Users\Honys\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\S4QF24RD\no-vg.cdn.videoplaza.tv\com.videoplaza.bootloader.sol
[2013.03.02 03:54:04 | 000,097,974 | ---- | M] () -- \Users\Honys\AppData\Local\HiSuite\userdata\HiSuiteDownLoader.cfg
[2013.03.12 17:45:24 | 000,457,024 | ---- | M] () -- \Users\Honys\AppData\Local\HiSuite\userdata\HiSuiteDownLoader.exe
[2011.07.07 00:51:00 | 000,003,208 | ---- | M] () -- \Users\Honys\AppData\Local\LG Electronics\LG PC Suite IV\PhoneData_2013_0209_212508\Photo\E\openfeint\webui\images\loader.gif
[2015.02.25 22:04:37 | 000,019,121 | ---- | M] () -- \Users\Honys\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\9F5OJ428\AdLoader-288a31a04e1398b1a794975bf93ce9a4.min[1].js
[2015.02.25 22:04:37 | 000,001,980 | ---- | M] () -- \Users\Honys\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\BF5WJKZU\AdLoader[1].htm
[2015.01.31 13:45:46 | 000,017,878 | ---- | M] () -- \Users\Honys\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\UQRQNWGM\loader[1]
[2014.01.06 11:52:30 | 003,244,032 | ---- | M] () -- \Users\Honys\AppData\Local\Programs\Google\Google+ Auto Backup\gpuploader_i18n.dll
[2014.01.06 11:47:04 | 000,000,702 | ---- | M] () -- \Users\Honys\AppData\Local\Programs\Google\Google+ Auto Backup\runtime\gpuploader_advoptions.fen
[2014.01.06 11:47:04 | 000,000,790 | ---- | M] () -- \Users\Honys\AppData\Local\Programs\Google\Google+ Auto Backup\runtime\gpuploader_debug.fen
[2014.01.06 11:47:04 | 000,000,723 | ---- | M] () -- \Users\Honys\AppData\Local\Programs\Google\Google+ Auto Backup\runtime\gpuploader_download.fen
[2014.01.06 11:47:04 | 000,000,694 | ---- | M] () -- \Users\Honys\AppData\Local\Programs\Google\Google+ Auto Backup\runtime\gpuploader_file_errors.fen
[2014.01.06 11:47:06 | 000,171,541 | ---- | M] () -- \Users\Honys\AppData\Local\Programs\Google\Google+ Auto Backup\runtime\gpuploader_icons.psd
[2014.01.06 11:47:06 | 000,000,634 | ---- | M] () -- \Users\Honys\AppData\Local\Programs\Google\Google+ Auto Backup\runtime\gpuploader_manage_devices.fen
[2014.01.06 11:47:06 | 000,002,283 | ---- | M] () -- \Users\Honys\AppData\Local\Programs\Google\Google+ Auto Backup\runtime\gpuploader_onboard.fen
[2014.01.06 11:47:06 | 000,001,417 | ---- | M] () -- \Users\Honys\AppData\Local\Programs\Google\Google+ Auto Backup\runtime\gpuploader_options.fen
[2014.01.06 11:47:06 | 000,002,109 | ---- | M] () -- \Users\Honys\AppData\Local\Programs\Google\Google+ Auto Backup\runtime\gpuploader_prefs.fen
[2014.01.06 11:47:06 | 000,000,956 | ---- | M] () -- \Users\Honys\AppData\Local\Programs\Google\Google+ Auto Backup\runtime\gpuploader_quota_error1.fen
[2014.01.06 11:47:06 | 000,001,080 | ---- | M] () -- \Users\Honys\AppData\Local\Programs\Google\Google+ Auto Backup\runtime\gpuploader_quota_error2.fen
[2014.01.06 11:47:06 | 000,001,139 | ---- | M] () -- \Users\Honys\AppData\Local\Programs\Google\Google+ Auto Backup\runtime\gpuploader_quota_error_estimate.fen
[2014.01.06 11:47:06 | 000,002,181 | ---- | M] () -- \Users\Honys\AppData\Local\Programs\Google\Google+ Auto Backup\runtime\gpuploader_welcome.fen
[2014.12.15 18:26:30 | 000,072,638 | ---- | M] () -- \Users\Honys\AppData\Local\Skype\Apps\login\images\loader.gif
[2014.12.15 18:26:30 | 000,003,032 | ---- | M] () -- \Users\Honys\AppData\Local\Skype\Apps\login\images\loader.png
[2014.12.15 18:26:30 | 000,006,012 | ---- | M] () -- \Users\Honys\AppData\Local\Skype\Apps\login\images\normal\loader_15fps.gif
[2014.12.15 18:26:30 | 000,021,956 | ---- | M] () -- \Users\Honys\AppData\Local\Skype\Apps\login\images\normal\loader_30fps.gif
[2014.12.15 18:26:30 | 000,009,772 | ---- | M] () -- \Users\Honys\AppData\Local\Skype\Apps\login\images\retina\loader@2x.png
[2015.04.18 03:07:51 | 000,002,396 | ---- | M] () -- \Users\Honys\AppData\Local\Temp\HiSuiteDownLoader.log
[174 \Users\Honys\AppData\Local\Temp\*.tmp files -> \Users\Honys\AppData\Local\Temp\*.tmp -> ]
[2014.01.25 10:46:24 | 000,071,894 | R--- | M] () -- \Users\Honys\AppData\Roaming\Microsoft\Installer\{A50DE037-B5C0-4C8A-8049-B0C576B313D1}\GPUploader.exe
[2015.02.02 02:00:56 | 000,000,231 | ---- | M] () -- \Users\Honys\AppData\Roaming\SketchUp\SketchUp 2015\SketchUp\Plugins\su_advancedcameratools\actloader.rb
[2015.02.02 02:01:02 | 000,000,517 | ---- | M] () -- \Users\Honys\AppData\Roaming\SketchUp\SketchUp 2015\SketchUp\Plugins\su_dynamiccomponents\ruby\dcloader.rb
[2015.02.02 02:01:06 | 000,030,681 | ---- | M] () -- \Users\Honys\AppData\Roaming\SketchUp\SketchUp 2015\SketchUp\Plugins\su_webtextures\webtextures_loader.rb
[2014.02.09 08:39:28 | 000,000,673 | ---- | M] () -- \Users\Honys\Downloads\phpMyAdmin-4.1.7-all-languages\phpMyAdmin-4.1.7-all-languages\doc\html\_static\ajax-loader.gif
[2015.01.16 08:24:33 | 000,002,777 | ---- | M] () -- \Windows\SoftwareDistribution\Download\2079b988478ffe9fc8059ab7e3ea5fd5\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7601.22923_cs-cz_35c794147472469a.manifest
[2015.01.16 08:24:56 | 000,002,777 | ---- | M] () -- \Windows\SoftwareDistribution\Download\2079b988478ffe9fc8059ab7e3ea5fd5\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7601.22923_da-dk_d301743b6ab84299.manifest
[2015.01.16 08:24:55 | 000,002,777 | ---- | M] () -- \Windows\SoftwareDistribution\Download\2079b988478ffe9fc8059ab7e3ea5fd5\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7601.22923_de-de_d02d09776c8e9733.manifest
[2015.01.16 08:24:26 | 000,002,777 | ---- | M] () -- \Windows\SoftwareDistribution\Download\2079b988478ffe9fc8059ab7e3ea5fd5\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7601.22923_el-gr_78c3370a5ba3ffc1.manifest
[2015.01.16 08:23:55 | 000,002,777 | ---- | M] () -- \Windows\SoftwareDistribution\Download\2079b988478ffe9fc8059ab7e3ea5fd5\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7601.22923_en-us_791ddf705b6ca2f8.manifest
[2015.01.16 08:24:46 | 000,002,777 | ---- | M] () -- \Windows\SoftwareDistribution\Download\2079b988478ffe9fc8059ab7e3ea5fd5\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7601.22923_es-es_78e93c545b93949d.manifest
[2015.01.16 08:24:39 | 000,002,777 | ---- | M] () -- \Windows\SoftwareDistribution\Download\2079b988478ffe9fc8059ab7e3ea5fd5\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7601.22923_fi-fi_1804410150ad86c7.manifest
[2015.01.16 08:23:57 | 000,002,777 | ---- | M] () -- \Windows\SoftwareDistribution\Download\2079b988478ffe9fc8059ab7e3ea5fd5\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7601.22923_fr-fr_1ba0b2534e65aaff.manifest
[2015.01.16 08:24:18 | 000,002,777 | ---- | M] () -- \Windows\SoftwareDistribution\Download\2079b988478ffe9fc8059ab7e3ea5fd5\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7601.22923_hu-hu_6311329b32c57a1b.manifest
[2015.01.16 08:24:05 | 000,002,777 | ---- | M] () -- \Windows\SoftwareDistribution\Download\2079b988478ffe9fc8059ab7e3ea5fd5\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7601.22923_it-it_05c8a89a2597907d.manifest
[2015.01.16 08:24:01 | 000,002,777 | ---- | M] () -- \Windows\SoftwareDistribution\Download\2079b988478ffe9fc8059ab7e3ea5fd5\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7601.22923_ja-jp_a7ee27a718b2a258.manifest
[2015.01.16 08:24:02 | 000,002,777 | ---- | M] () -- \Windows\SoftwareDistribution\Download\2079b988478ffe9fc8059ab7e3ea5fd5\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7601.22923_ko-kr_4b58045c0b23696e.manifest
[2015.01.16 08:24:19 | 000,002,777 | ---- | M] () -- \Windows\SoftwareDistribution\Download\2079b988478ffe9fc8059ab7e3ea5fd5\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7601.22923_nb-no_33ea8590e348952a.manifest
[2015.01.16 08:24:56 | 000,002,777 | ---- | M] () -- \Windows\SoftwareDistribution\Download\2079b988478ffe9fc8059ab7e3ea5fd5\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7601.22923_nl-nl_3229d0cee4749eff.manifest
[2015.01.16 08:24:20 | 000,002,777 | ---- | M] () -- \Windows\SoftwareDistribution\Download\2079b988478ffe9fc8059ab7e3ea5fd5\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7601.22923_pl-pl_78662b50c9970cb3.manifest
[2015.01.16 08:24:20 | 000,002,777 | ---- | M] () -- \Windows\SoftwareDistribution\Download\2079b988478ffe9fc8059ab7e3ea5fd5\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7601.22923_pt-br_7aba15f4c820a097.manifest
[2015.01.16 08:24:38 | 000,002,777 | ---- | M] () -- \Windows\SoftwareDistribution\Download\2079b988478ffe9fc8059ab7e3ea5fd5\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7601.22923_pt-pt_7b9be560c7901073.manifest
[2015.01.16 08:24:49 | 000,002,777 | ---- | M] () -- \Windows\SoftwareDistribution\Download\2079b988478ffe9fc8059ab7e3ea5fd5\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7601.22923_ru-ru_c23ef724ac719e9f.manifest
[2015.01.16 08:24:27 | 000,002,777 | ---- | M] () -- \Windows\SoftwareDistribution\Download\2079b988478ffe9fc8059ab7e3ea5fd5\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7601.22923_sv-se_5e39e199a39aa8fa.manifest
[2015.01.16 08:23:58 | 000,002,777 | ---- | M] () -- \Windows\SoftwareDistribution\Download\2079b988478ffe9fc8059ab7e3ea5fd5\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7601.22923_tr-tr_07472be09256aaeb.manifest
[2015.01.16 08:24:17 | 000,002,777 | ---- | M] () -- \Windows\SoftwareDistribution\Download\2079b988478ffe9fc8059ab7e3ea5fd5\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7601.22923_zh-cn_d8a449de428e7d0a.manifest
[2015.01.16 08:24:44 | 000,002,777 | ---- | M] () -- \Windows\SoftwareDistribution\Download\2079b988478ffe9fc8059ab7e3ea5fd5\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7601.22923_zh-hk_d74f426c4369ef9a.manifest
[2015.01.16 08:24:10 | 000,002,777 | ---- | M] () -- \Windows\SoftwareDistribution\Download\2079b988478ffe9fc8059ab7e3ea5fd5\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7601.22923_zh-tw_dca087343fff597a.manifest
[2015.01.14 08:45:13 | 000,004,224 | ---- | M] () -- \Windows\SoftwareDistribution\Download\2079b988478ffe9fc8059ab7e3ea5fd5\x86_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.22923_none_5dabdf9ce40faccd.manifest
[2015.01.16 08:24:27 | 000,002,780 | ---- | M] () -- \Windows\SoftwareDistribution\Download\2079b988478ffe9fc8059ab7e3ea5fd5\x86_microsoft-windows-e..os-loader.resources_31bf3856ad364e35_6.1.7601.22923_cs-cz_43ba6b00af8efbf6.manifest
[2015.01.16 08:24:44 | 000,002,780 | ---- | M] () -- \Windows\SoftwareDistribution\Download\2079b988478ffe9fc8059ab7e3ea5fd5\x86_microsoft-windows-e..os-loader.resources_31bf3856ad364e35_6.1.7601.22923_da-dk_e0f44b27a5d4f7f5.manifest
[2015.01.16 08:24:30 | 000,002,780 | ---- | M] () -- \Windows\SoftwareDistribution\Download\2079b988478ffe9fc8059ab7e3ea5fd5\x86_microsoft-windows-e..os-loader.resources_31bf3856ad364e35_6.1.7601.22923_de-de_de1fe063a7ab4c8f.manifest
[2015.01.16 08:24:16 | 000,002,780 | ---- | M] () -- \Windows\SoftwareDistribution\Download\2079b988478ffe9fc8059ab7e3ea5fd5\x86_microsoft-windows-e..os-loader.resources_31bf3856ad364e35_6.1.7601.22923_el-gr_86b60df696c0b51d.manifest
[2015.01.16 08:24:11 | 000,002,780 | ---- | M] () -- \Windows\SoftwareDistribution\Download\2079b988478ffe9fc8059ab7e3ea5fd5\x86_microsoft-windows-e..os-loader.resources_31bf3856ad364e35_6.1.7601.22923_en-us_8710b65c96895854.manifest
[2015.01.16 08:24:01 | 000,002,780 | ---- | M] () -- \Windows\SoftwareDistribution\Download\2079b988478ffe9fc8059ab7e3ea5fd5\x86_microsoft-windows-e..os-loader.resources_31bf3856ad364e35_6.1.7601.22923_es-es_86dc134096b049f9.manifest
[2015.01.16 08:24:30 | 000,002,780 | ---- | M] () -- \Windows\SoftwareDistribution\Download\2079b988478ffe9fc8059ab7e3ea5fd5\x86_microsoft-windows-e..os-loader.resources_31bf3856ad364e35_6.1.7601.22923_fi-fi_25f717ed8bca3c23.manifest
[2015.01.16 08:23:57 | 000,002,780 | ---- | M] () -- \Windows\SoftwareDistribution\Download\2079b988478ffe9fc8059ab7e3ea5fd5\x86_microsoft-windows-e..os-loader.resources_31bf3856ad364e35_6.1.7601.22923_fr-fr_2993893f8982605b.manifest
[2015.01.16 08:24:42 | 000,002,780 | ---- | M] () -- \Windows\SoftwareDistribution\Download\2079b988478ffe9fc8059ab7e3ea5fd5\x86_microsoft-windows-e..os-loader.resources_31bf3856ad364e35_6.1.7601.22923_hu-hu_710409876de22f77.manifest
[2015.01.16 08:24:01 | 000,002,780 | ---- | M] () -- \Windows\SoftwareDistribution\Download\2079b988478ffe9fc8059ab7e3ea5fd5\x86_microsoft-windows-e..os-loader.resources_31bf3856ad364e35_6.1.7601.22923_it-it_13bb7f8660b445d9.manifest
[2015.01.16 08:24:41 | 000,002,780 | ---- | M] () -- \Windows\SoftwareDistribution\Download\2079b988478ffe9fc8059ab7e3ea5fd5\x86_microsoft-windows-e..os-loader.resources_31bf3856ad364e35_6.1.7601.22923_ja-jp_b5e0fe9353cf57b4.manifest
[2015.01.16 08:24:57 | 000,002,780 | ---- | M] () -- \Windows\SoftwareDistribution\Download\2079b988478ffe9fc8059ab7e3ea5fd5\x86_microsoft-windows-e..os-loader.resources_31bf3856ad364e35_6.1.7601.22923_ko-kr_594adb4846401eca.manifest
[2015.01.16 08:24:43 | 000,002,780 | ---- | M] () -- \Windows\SoftwareDistribution\Download\2079b988478ffe9fc8059ab7e3ea5fd5\x86_microsoft-windows-e..os-loader.resources_31bf3856ad364e35_6.1.7601.22923_nb-no_41dd5c7d1e654a86.manifest
[2015.01.16 08:24:30 | 000,002,780 | ---- | M] () -- \Windows\SoftwareDistribution\Download\2079b988478ffe9fc8059ab7e3ea5fd5\x86_microsoft-windows-e..os-loader.resources_31bf3856ad364e35_6.1.7601.22923_nl-nl_401ca7bb1f91545b.manifest
[2015.01.16 08:24:43 | 000,002,780 | ---- | M] () -- \Windows\SoftwareDistribution\Download\2079b988478ffe9fc8059ab7e3ea5fd5\x86_microsoft-windows-e..os-loader.resources_31bf3856ad364e35_6.1.7601.22923_pl-pl_8659023d04b3c20f.manifest
[2015.01.16 08:24:36 | 000,002,780 | ---- | M] () -- \Windows\SoftwareDistribution\Download\2079b988478ffe9fc8059ab7e3ea5fd5\x86_microsoft-windows-e..os-loader.resources_31bf3856ad364e35_6.1.7601.22923_pt-br_88acece1033d55f3.manifest
[2015.01.16 08:24:54 | 000,002,780 | ---- | M] () -- \Windows\SoftwareDistribution\Download\2079b988478ffe9fc8059ab7e3ea5fd5\x86_microsoft-windows-e..os-loader.resources_31bf3856ad364e35_6.1.7601.22923_pt-pt_898ebc4d02acc5cf.manifest
[2015.01.16 08:24:50 | 000,002,780 | ---- | M] () -- \Windows\SoftwareDistribution\Download\2079b988478ffe9fc8059ab7e3ea5fd5\x86_microsoft-windows-e..os-loader.resources_31bf3856ad364e35_6.1.7601.22923_ru-ru_d031ce10e78e53fb.manifest
[2015.01.16 08:24:48 | 000,002,780 | ---- | M] () -- \Windows\SoftwareDistribution\Download\2079b988478ffe9fc8059ab7e3ea5fd5\x86_microsoft-windows-e..os-loader.resources_31bf3856ad364e35_6.1.7601.22923_sv-se_6c2cb885deb75e56.manifest
[2015.01.16 08:24:41 | 000,002,780 | ---- | M] () -- \Windows\SoftwareDistribution\Download\2079b988478ffe9fc8059ab7e3ea5fd5\x86_microsoft-windows-e..os-loader.resources_31bf3856ad364e35_6.1.7601.22923_tr-tr_153a02cccd736047.manifest
[2015.01.16 08:24:05 | 000,002,780 | ---- | M] () -- \Windows\SoftwareDistribution\Download\2079b988478ffe9fc8059ab7e3ea5fd5\x86_microsoft-windows-e..os-loader.resources_31bf3856ad364e35_6.1.7601.22923_zh-cn_e69720ca7dab3266.manifest
[2015.01.16 08:24:37 | 000,002,780 | ---- | M] () -- \Windows\SoftwareDistribution\Download\2079b988478ffe9fc8059ab7e3ea5fd5\x86_microsoft-windows-e..os-loader.resources_31bf3856ad364e35_6.1.7601.22923_zh-hk_e54219587e86a4f6.manifest
[2015.01.16 08:24:33 | 000,002,780 | ---- | M] () -- \Windows\SoftwareDistribution\Download\2079b988478ffe9fc8059ab7e3ea5fd5\x86_microsoft-windows-e..os-loader.resources_31bf3856ad364e35_6.1.7601.22923_zh-tw_ea935e207b1c0ed6.manifest
[2015.01.16 08:24:39 | 000,004,200 | ---- | M] () -- \Windows\SoftwareDistribution\Download\2079b988478ffe9fc8059ab7e3ea5fd5\x86_microsoft-windows-e..vironment-os-loader_31bf3856ad364e35_6.1.7601.22923_none_4273b44ce20009f9.manifest
[2015.05.09 05:08:08 | 000,003,584 | -H-- | M] () -- \Windows\System32\api-ms-win-core-libraryloader-l1-1-0.dll
[2009.07.14 03:15:12 | 000,038,400 | ---- | M] () -- \Windows\System32\dmloader.dll
[2007.05.15 20:06:58 | 000,071,208 | ---- | M] () -- \Windows\System32\PhysXLoader.dll
[2009.07.14 06:54:01 | 000,003,532 | ---- | M] () -- \Windows\System32\Tasks\Microsoft\Windows\WindowsColorSystem\Calibration Loader
[2015.03.15 14:58:01 | 000,002,883 | ---- | M] () -- \Windows\winsxs\Backup\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7601.18741_cs-cz_352654f75b66aedd.manifest
[2015.03.15 14:58:01 | 000,034,744 | ---- | M] () -- \Windows\winsxs\Backup\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7601.18741_cs-cz_352654f75b66aedd_winload.exe.mui_3bc5b827
[2015.03.15 14:58:01 | 000,030,136 | ---- | M] () -- \Windows\winsxs\Backup\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7601.18741_cs-cz_352654f75b66aedd_winresume.exe.mui_ff8b5358
[2015.03.15 14:58:02 | 000,002,883 | ---- | M] () -- \Windows\winsxs\Backup\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7601.18741_en-us_787ca05342610b3b.manifest
[2015.03.15 14:58:02 | 000,033,216 | ---- | M] () -- \Windows\winsxs\Backup\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7601.18741_en-us_787ca05342610b3b_winload.exe.mui_3bc5b827
[2015.03.15 14:58:02 | 000,029,632 | ---- | M] () -- \Windows\winsxs\Backup\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7601.18741_en-us_787ca05342610b3b_winresume.exe.mui_ff8b5358
[2015.03.15 14:58:07 | 000,004,224 | ---- | M] () -- \Windows\winsxs\Backup\x86_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.18741_none_5d0aa07fcb041510.manifest
[2015.03.15 14:58:07 | 000,521,384 | ---- | M] () -- \Windows\winsxs\Backup\x86_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.18741_none_5d0aa07fcb041510_winload.exe_75835076
[2015.03.15 14:58:07 | 000,455,752 | ---- | M] () -- \Windows\winsxs\Backup\x86_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.18741_none_5d0aa07fcb041510_winresume.exe_85cd1215
[2009.07.14 04:17:38 | 000,002,894 | ---- | M] () -- \Windows\winsxs\Backup\x86_microsoft-windows-s..ive-blackbox-loader_31bf3856ad364e35_6.1.7600.16385_none_6b097e5cb26f7a23.manifest
[2009.07.14 04:17:38 | 000,017,472 | ---- | M] () -- \Windows\winsxs\Backup\x86_microsoft-windows-s..ive-blackbox-loader_31bf3856ad364e35_6.1.7600.16385_none_6b097e5cb26f7a23_spldr.sys_98bd87a0
[2009.07.13 19:54:50 | 000,002,883 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_3318c4cd5e5d0f86.manifest
[2009.07.14 04:29:12 | 000,002,883 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_en-us_766f102945576be4.manifest
[2014.07.08 23:41:55 | 000,002,777 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7601.18526_cs-cz_3540f2755b51fb60.manifest
[2014.07.08 23:41:53 | 000,002,777 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7601.18526_en-us_78973dd1424c57be.manifest
[2015.02.03 05:54:10 | 000,002,883 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7601.18741_cs-cz_352654f75b66aedd.manifest
[2015.02.03 05:16:42 | 000,002,883 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7601.18741_en-us_787ca05342610b3b.manifest
[2014.07.08 23:42:00 | 000,002,777 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7601.22736_cs-cz_35bfc13a7477b442.manifest
[2014.07.08 23:41:44 | 000,002,777 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7601.22736_en-us_79160c965b7210a0.manifest
[2014.12.13 03:50:10 | 000,002,777 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7601.22908_cs-cz_35e2355e745d8d6b.manifest
[2014.12.13 03:50:09 | 000,002,777 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7601.22908_en-us_793880ba5b57e9c9.manifest
[2015.01.13 00:09:15 | 000,002,777 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7601.22921_cs-cz_35c59380747413ec.manifest
[2015.01.13 00:09:31 | 000,002,777 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7601.22921_en-us_791bdedc5b6e704a.manifest
[2015.01.16 08:24:33 | 000,002,777 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7601.22923_cs-cz_35c794147472469a.manifest
[2015.01.16 08:23:55 | 000,002,777 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7601.22923_en-us_791ddf705b6ca2f8.manifest
[2015.01.27 06:12:13 | 000,002,883 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7601.22943_cs-cz_35b1f43c74827e7c.manifest
[2015.01.27 05:33:20 | 000,002,883 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7601.22943_en-us_79083f985b7cdada.manifest
[2015.02.03 06:04:47 | 000,002,883 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7601.22948_cs-cz_35b6f5ae747dfd2f.manifest
[2015.02.03 05:36:49 | 000,002,883 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7601.22948_en-us_790d410a5b78598d.manifest
[2015.03.17 07:30:44 | 000,002,883 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7601.23002_cs-cz_35dc0bc4746328a3.manifest
[2015.03.17 06:50:57 | 000,002,883 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7601.23002_en-us_793257205b5d8501.manifest
[2009.07.14 03:47:46 | 000,004,225 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7600.16385_none_5afd1055cdfa75b9.manifest
[2009.08.19 09:38:48 | 000,004,225 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7600.16411_none_5b44c087cdc549ed.manifest
[2009.08.19 09:21:21 | 000,004,225 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7600.20509_none_5be12f8ee6d3987e.manifest
[2010.11.20 06:02:40 | 000,004,225 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17514_none_5d2e241dcae8f953.manifest
[2014.08.19 05:02:10 | 000,004,224 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.18574_none_5ced2dcdcb19ba9a.manifest
[2015.02.03 05:32:58 | 000,004,224 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.18741_none_5d0aa07fcb041510.manifest
[2014.08.19 05:09:35 | 000,004,224 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.22780_none_5d67fb6ae4430e20.manifest
[2014.12.12 08:03:57 | 000,004,224 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.22908_none_5dc680e6e3faf39e.manifest
[2015.01.12 05:35:19 | 000,004,224 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.22921_none_5da9df08e4117a1f.manifest
[2015.01.14 08:45:13 | 000,004,224 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.22923_none_5dabdf9ce40faccd.manifest
[2015.01.27 05:51:15 | 000,004,224 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.22943_none_5d963fc4e41fe4af.manifest
[2015.02.03 05:54:42 | 000,004,224 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.22948_none_5d9b4136e41b6362.manifest
[2015.03.17 07:06:11 | 000,004,224 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.23002_none_5dc0574ce4008ed6.manifest
[2009.07.14 03:52:31 | 000,002,894 | ---- | M] () -- \Windows\winsxs\Manifests\x86_microsoft-windows-s..ive-blackbox-loader_31bf3856ad364e35_6.1.7600.16385_none_6b097e5cb26f7a23.manifest
[2009.07.14 03:15:12 | 000,038,400 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-audio-dmusic_31bf3856ad364e35_6.1.7600.16385_none_45ca7214f0f664cb\dmloader.dll
[2009.07.14 03:03:49 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_0a884619dd2388ad\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.07.16 06:19:58 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16850_none_0aa3bde9dd0fa7ea\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.08.18 13:09:17 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.17107_none_0ae0ab79dce0fb26\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.10.04 18:45:38 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.17135_none_0abe3b21dcfb1c4b\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.11.30 06:56:23 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.17179_none_0a96fc99dd17f16b\api-ms-win-core-libraryloader-l1-1-0.dll
[2013.01.04 06:43:53 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.17206_none_0adfad15dce1def6\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.07.16 06:12:45 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.21010_none_0b587286f60d0b32\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.08.20 19:42:56 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.21306_none_0b6949e0f5ff7ec0\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.10.04 18:48:05 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.21335_none_0b47d9d2f618b93c\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.11.30 06:44:10 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.21386_none_0b12ca80f6405e48\api-ms-win-core-libraryloader-l1-1-0.dll
[2013.01.04 06:39:49 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.21416_none_0b5e7bdaf60797d8\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.07.16 06:15:45 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.17651_none_0c8b1b39da352d2d\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.08.20 19:32:13 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.17932_none_0ca1c10dda240617\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.10.04 18:40:37 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.17965_none_0c845227da39a5ef\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.11.30 06:45:15 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.18015_none_0cba39e5da114d7c\api-ms-win-core-libraryloader-l1-1-0.dll
[2013.08.02 03:48:15 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.18229_none_0cb36eedda15c917\api-ms-win-core-libraryloader-l1-1-0.dll
[2015.05.09 05:08:08 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.18847_none_0c9bd9e5da27bd35\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.07.16 06:36:48 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.21772_none_0d001876f3621e30\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.08.20 19:23:16 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22091_none_0ce95442f3736a4b\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.10.04 18:29:45 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22125_none_0d3906c4f3370937\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.11.30 06:46:37 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22177_none_0d04f7bcf35dc79a\api-ms-win-core-libraryloader-l1-1-0.dll
[2013.01.04 06:43:16 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22209_none_0d52a9aaf32333d8\api-ms-win-core-libraryloader-l1-1-0.dll
[2013.08.02 07:53:29 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22411_none_0d3fdb3af3327f5f\api-ms-win-core-libraryloader-l1-1-0.dll
[2014.03.04 12:35:49 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22616_none_0d44e078f32df860\api-ms-win-core-libraryloader-l1-1-0.dll
[2014.04.12 04:03:37 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22653_none_0d169feaf3511c1f\api-ms-win-core-libraryloader-l1-1-0.dll
[2015.05.09 07:34:47 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.23049_none_0d274f66f343c2ef\api-ms-win-core-libraryloader-l1-1-0.dll

< End of report >

blip
Návštěvník
Návštěvník
Příspěvky: 8
Registrován: 22 čer 2015 19:01

Re: Zamrznutí PC po pár minutách - prosím o kontrolu logu

#11 Příspěvek od blip »

OTL Extras logfile created on: 23.6.2015 20:09:49 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Honys\Desktop
Ultimate Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.17843)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy

3,25 Gb Total Physical Memory | 1,47 Gb Available Physical Memory | 45,22% Memory free
6,50 Gb Paging File | 4,43 Gb Available in Paging File | 68,26% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 74,53 Gb Total Space | 5,22 Gb Free Space | 7,01% Space Free | Partition Type: NTFS
Drive D: | 186,31 Gb Total Space | 2,79 Gb Free Space | 1,50% Space Free | Partition Type: NTFS
Drive E: | 931,51 Gb Total Space | 640,49 Gb Free Space | 68,76% Space Free | Partition Type: NTFS

Computer Name: HONYS-PC | User Name: Honys | Logged in as Administrator.
Boot Mode: SafeMode with Networking | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Extra Registry (SafeList) ==========


========== File Associations ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation)
.hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation)

[HKEY_USERS\S-1-5-21-1551242594-84631119-3797995329-1001\SOFTWARE\Classes\<extension>]
.html [@ = ChromeHTML] -- Reg Error: Key error. File not found

========== Shell Spawning ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

========== Security Center Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = Reg Error: Unknown registry data type -- File not found
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0

========== Firewall Settings ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

========== Authorized Applications List ==========


========== Vista Active Open Ports Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{2753972E-8CFA-40E6-A1BB-11A5D160EFD8}" = lport=10243 | protocol=6 | dir=in | app=system |
"{33AD824D-638E-47BC-BD1F-559DB2174D35}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{3BF64822-FE27-4619-8523-FBB107D9B968}" = rport=139 | protocol=6 | dir=out | app=system |
"{43E51473-7EBA-4E8F-BE4D-4C31FA14DBC8}" = lport=5353 | protocol=6 | dir=in | name=adobe csi cs4 |
"{486CA67A-3F9B-4218-B3C1-78F749D53540}" = lport=137 | protocol=17 | dir=in | app=system |
"{4BDCA9C8-86DA-4B36-A179-32C2E176D296}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{5EF7758A-46C3-438C-B2F6-F23F1AAAA9BC}" = rport=138 | protocol=17 | dir=out | app=system |
"{7FBDCBA3-B594-40B5-8AB5-CD945F6FB34C}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{862C8AE6-8AE1-4686-8804-BF86B4AB5B79}" = lport=445 | protocol=6 | dir=in | app=system |
"{8D537580-F2AB-4DC0-B428-0F63387A7D5A}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{911EEA33-267E-4743-B92A-C429B1C81DDC}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{949F6D48-518D-44C2-8E15-D25B2AB5E03D}" = lport=138 | protocol=17 | dir=in | app=system |
"{96A1632D-9BC7-44EB-AA9F-A8AD641148BF}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{9D472012-AA62-4B44-909B-149D29291387}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{A0B21DBD-93AC-4A9C-8647-5BDEFD8F0AD6}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
"{B6037B54-6035-4796-BEE0-4C14609912E3}" = lport=2869 | protocol=6 | dir=in | app=system |
"{B73BBD04-4BCA-481C-9F51-565F5C19166A}" = rport=10243 | protocol=6 | dir=out | app=system |
"{D75E864C-6310-426D-A561-C9B68067D088}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{DC8DCB2B-DBD8-4C34-936B-31D389356D5E}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{DE9E46C1-A91E-4C0A-9AD3-A56236389532}" = rport=445 | protocol=6 | dir=out | app=system |
"{E8D3EFE4-3D1B-4421-AD81-EF369681DA91}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 |
"{E963C01D-A45F-442B-8C0F-91E8D219DD2D}" = lport=5353 | protocol=17 | dir=in | app=c:\program files\google\chrome\application\chrome.exe |
"{EE83FB69-E18B-4F58-9414-23A7EA1BAB65}" = rport=137 | protocol=17 | dir=out | app=system |
"{F7492DC5-DE54-40FA-9F75-8D03B6D25EF7}" = lport=139 | protocol=6 | dir=in | app=system |
"{F8558D78-AD76-4544-A5F1-4B38E5CB1A1E}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |

========== Vista Active Application Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{06F28ED1-9BCE-4BD2-9980-8CAC411BD7F3}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{071C2F84-CD87-4A16-80FB-BFF6343A2A51}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{0A024ABD-2883-4D2E-A02F-FD635D0C0CD3}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{0AB2E5A4-57F5-43E3-8D49-63E1FD313B41}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{0F4A5E66-4238-4ED9-8ED9-F88290BF7871}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{10D52C4F-FD30-4CE5-A72A-13E7D889B999}" = protocol=17 | dir=in | app=c:\program files\raptr\raptr.exe |
"{131634FE-CCBE-4095-B7DC-BA1CA2FFFE46}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{19A90D3D-786E-4BAE-A7CA-C764C73F835A}" = protocol=6 | dir=in | app=c:\program files\winamp\winamp.exe |
"{2030C5C0-2BB4-4C52-9879-9D45AA7043BE}" = protocol=17 | dir=in | app=c:\program files\icq7m\icq.exe |
"{22DE01FB-6EB6-4BE6-8EB6-4492BBDD7045}" = protocol=17 | dir=in | app=c:\users\honys\appdata\roaming\utorrent\utorrent.exe |
"{2314429B-2CF6-416E-ADF5-8F65E3B35D84}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{25FB300A-4CB9-47D4-93AB-6BDE60EF9BB4}" = protocol=6 | dir=in | app=c:\program files\icq7m\icq.exe |
"{274E8E4F-E762-44F7-BEEE-3DEF56E39AA5}" = protocol=6 | dir=in | app=c:\program files\icq7m\icq.exe |
"{348561A9-FA69-42DD-9137-766277E2C4DF}" = protocol=6 | dir=in | app=c:\program files\raptr\raptr.exe |
"{420553A0-6D9D-4AE4-AF74-BF6C931CBA7E}" = protocol=17 | dir=in | app=c:\program files\icq7m\icq.exe |
"{49C107C6-5638-49EE-951D-2CF7882EAE7B}" = protocol=6 | dir=out | app=system |
"{527EF058-8EC3-45F5-B88E-3F0FA0FA1048}" = protocol=6 | dir=in | app=c:\windows\system32\pnkbstra.exe |
"{53E5FED6-4F35-4DCB-9CAF-A91CF93A7FAD}" = protocol=17 | dir=in | app=c:\users\honys\appdata\roaming\dropbox\bin\dropbox.exe |
"{5778DCE9-B878-412E-A7F9-8940D3D3254F}" = protocol=6 | dir=in | app=c:\program files\raptr\raptr_im.exe |
"{5A1295CA-53B0-40DE-92C6-F45D172E3D27}" = protocol=6 | dir=in | app=c:\users\honys\appdata\roaming\utorrent\utorrent.exe |
"{618214C7-1B91-4CE6-8625-8AEE636D29BB}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{7D6DE1C7-B4DC-481B-ACF9-C42369A2D494}" = protocol=17 | dir=in | app=c:\windows\system32\pnkbstra.exe |
"{954210E7-32D4-414E-9589-008EE3D89043}" = protocol=17 | dir=in | app=c:\users\honys\appdata\roaming\utorrent\utorrent.exe |
"{96053EF8-5A0B-4D33-8688-D5E7F0D4E54C}" = protocol=6 | dir=in | app=c:\program files\common files\adobe\cs4servicemanager\cs4servicemanager.exe |
"{A660EAFD-289A-47E9-93CB-C70DBDE7303C}" = protocol=6 | dir=in | app=c:\users\honys\appdata\roaming\utorrent\utorrent.exe |
"{ABEF5714-B5AE-4A28-9A0E-1598E83638A8}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 |
"{AD821DEF-706E-4060-AC62-4A28E58A4388}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{B02D5BBB-9F8A-4432-ADC7-B7F137AB065D}" = protocol=17 | dir=in | app=c:\program files\winamp\winamp.exe |
"{B3CC0149-6162-4B88-87DA-A98206E04CBB}" = dir=in | app=c:\program files\common files\apple\apple application support\webkit2webprocess.exe |
"{B61610B6-A5A8-4F5B-8C48-37AF9D39733C}" = protocol=17 | dir=in | app=c:\program files\common files\adobe\cs4servicemanager\cs4servicemanager.exe |
"{B6CA4454-5043-4080-BBA0-9C5E2363973C}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{B8D8BD62-90CE-44E2-AE37-03451504249C}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 |
"{BA800DD9-1A8D-4CAE-9142-4973D5DD3575}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{C1F9E3B5-9F67-4338-8E0B-5FCC6E11C34E}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 |
"{C68F38B3-420F-4B64-BAED-34CEEC46837C}" = protocol=6 | dir=in | app=c:\windows\system32\pnkbstrb.exe |
"{D09DCAE9-D57A-44EE-9FCC-B02DB57D4A5D}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{D10B11D0-8635-49DC-83D9-99559BF85E5F}" = protocol=17 | dir=in | app=c:\windows\system32\pnkbstrb.exe |
"{D1A46E01-C719-4495-8A20-F1FB9710A1E6}" = protocol=6 | dir=in | app=c:\users\honys\appdata\roaming\dropbox\bin\dropbox.exe |
"{E2E97DE1-F5EB-4B85-8439-DF660DFD9816}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{EA748B3C-D257-4342-A50B-35373CD4E8AB}" = protocol=17 | dir=in | app=c:\program files\raptr\raptr_im.exe |
"{F20FD5D8-D67E-4D36-BA2F-6A4C72F5EF00}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{F88D829F-BFB8-4FD3-A7FE-BA017F9B4DB2}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 |
"TCP Query User{2805FDAE-74C0-4C13-B6C6-6D4A083F6DCF}C:\program files\winamp\winamp.exe" = protocol=6 | dir=in | app=c:\program files\winamp\winamp.exe |
"UDP Query User{CCABCE0C-E912-4516-9326-00C60456B796}C:\program files\winamp\winamp.exe" = protocol=17 | dir=in | app=c:\program files\winamp\winamp.exe |

========== HKEY_LOCAL_MACHINE Uninstall List ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"_{7F05E704-30A6-421A-97A7-8EEB1C7FF010}" = CorelDRAW(R) Graphics Suite X4
"_{CE2DA11A-917F-4CF5-AB55-755EC115DD10}" = CorelDRAW(R) Graphics Suite X4 - Windows Shell Extension
"{00ADFB20-AE75-46F4-AD2C-F48B15AC3100}" = Adobe Color NA Recommended Settings CS4
"{05308C4E-7285-4066-BAE3-6B50DA6ED755}" = Adobe Update Manager CS4
"{054EFA56-2AC1-48F4-A883-0AB89874B972}" = Adobe Extension Manager CS4
"{098727E1-775A-4450-B573-3F441F1CA243}" = kuler
"{098A2A49-7CF3-4F08-A38D-FB879117152A}" = Adobe Color NA Extra Settings CS4
"{0D6013AB-A0C7-41DC-973C-E93129C9A29F}" = Adobe Color JA Extra Settings CS4
"{0D67A4E4-5BE0-4C9A-8AD8-AB552B433F23}" = Adobe Setup
"{0DC0E85F-36E4-463B-B3EA-4CD8ED2222A1}" = Adobe Color EU Recommended Settings CS4
"{0F723FC1-7606-4867-866C-CE80AD292DAF}" = Adobe CSI CS4
"{1618734A-3957-4ADD-8199-F973763109A8}" = Adobe Anchor Service CS4
"{16E16F01-2E2D-4248-A42F-76261C147B6C}" = Adobe Drive CS4
"{16E6D2C1-7C90-4309-8EC4-D2212690AAA4}" = AdobeColorCommonSetRGB
"{196467F1-C11F-4F76-858B-5812ADC83B94}" = MSXML 4.0 SP3 Parser
"{196BB40D-1578-3D01-B289-BEFC77A11A1E}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319
"{197A3012-8C85-4FD3-AB66-9EC7E13DB92E}" = Adobe AIR
"{22154f09-719a-4619-bb71-5b3356999fbf}" = Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727
"{2436940B-1C2C-4FB4-A703-0EE9B1350791}" = PowerNap
"{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}" = Skype™ 7.1
"{26A24AE4-039D-4CA4-87B4-2F83218031F0}" = Java 8 Update 31
"{27DC856A-0916-4988-8198-8714DDD3183D}" = AGEIA PhysX v7.05.17
"{297190A1-4B0D-4CD6-8B9F-3907F15C3FD8}" = Adobe CS4 American English Speech Analysis Models
"{2F73A7B2-E50E-39A6-9ABC-EF89E4C62E36}" = Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.50727
"{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}" = Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030
"{33FAEE34-7AD5-4EE8-4C03-F10340113236}" = AMD Media Foundation Decoders
"{3402F837-F1CC-4A02-B554-D02C96D43C5F}" = Xerox Phaser 3010
"{35D94F92-1D3A-43C5-8605-EA268B1A7BD9}" = PDF Settings CS4
"{39F6E2B4-CFE8-C30A-66E8-489651F0F34C}" = Adobe Media Player
"{3A4E8896-C2E7-4084-A4A4-B8FD1894E739}" = Adobe XMP Panels CS4
"{3BE561CF-8B15-B1BB-E16E-011C9A326EFC}" = AMD Drag and Drop Transcoding
"{3DA8DF9A-044E-46C4-8531-DEDBB0EE37FF}" = Adobe WinSoft Linguistics Plugin
"{411F3ABA-2AB5-4799-AA19-6ADF0A8F7424}" = Adobe Setup
"{425AD62D-5B16-494C-8AAB-6B3D0CF2527A}" = Adobe Setup
"{43509E18-076E-40FE-AF38-CA5ED400A5A9}" = Pixel Bender Toolkit
"{44A27085-0616-4181-A0C3-81C7ECA17F73}" = CorelDRAW Graphics Suite X4
"{44E240EC-2224-4078-A88B-2CEE0D3016EF}" = Adobe After Effects CS4 Presets
"{45C56AA7-ED1B-4800-A97F-EDDF3F3520B1}" = Apple Application Support
"{45EC816C-0771-4C14-AE6D-72D1B578F4C8}" = Adobe After Effects CS4
"{461B11E8-BF34-4ACB-962A-1CBE905BD9EB}" = LG United Mobile Drivers
"{4943EFF5-229F-435D-BEA9-BE3CAEA783A7}" = Adobe Service Manager Extension
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4B9F87E8-AB27-E25D-D868-88D34DCF1710}_is1" = Windows 7 Activator version for Windows
"{5570C7F0-43D0-4916-8A9E-AEDD52FA86F4}" = Adobe Color EU Extra Settings CS4
"{561968FD-56A1-49FD-9ED0-F55482C7C5BC}" = Adobe Media Encoder CS4 Exporter
"{566BB41D-F006-4956-A5D3-94D8DFFA7F51}" = Adobe Setup
"{5EAD5443-7194-46CC-A055-428E6ABB1BAF}" = Adobe Encore CS4
"{60DB5894-B5A1-4B62-B0F3-669A22C0EE5D}" = Adobe Dynamiclink Support
"{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}" = Google Update Helper
"{63C24A08-70F3-4C8E-B9FB-9F21A903801D}" = Adobe Color Video Profiles CS CS4
"{63E5CDBF-8214-4F03-84F8-CD3CE48639AD}" = Adobe Photoshop CS4 Support
"{644F4910-E812-49AD-93EC-86828CB81A0D}" = PC Connectivity Solution
"{67A9747A-E1F5-4E9A-81CC-12B5D5B81B6E}" = Adobe After Effects CS4 Third Party Content
"{67F0E67A-8E93-4C2C-B29D-47C48262738A}" = Adobe Device Central CS4
"{68243FF8-83CA-466B-B2B8-9F99DA5479C4}" = AdobeColorCommonSetCMYK
"{6C58B3E8-0822-490B-BC94-40CC02A6B37F}_is1" = NbuExplorer version 3.3
"{6D1221A9-17BF-4EC0-81F2-27D30EC30701}" = Skype Click to Call
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{716E0306-8318-4364-8B8F-0CC4E9376BAC}" = MSXML 4.0 SP2 Parser and SDK
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{7406DF60-016D-476B-A2C7-55D997592047}" = Adobe OnLocation CS4
"{781B39EC-2E18-41FC-9B00-B84E4FFCA85F}" = ICQ7M
"{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update
"{79155F2B-9895-49D7-8612-D92580E0DE5B}" = Bonjour
"{7B6DB690-4552-9EDC-40F3-4F73B2B98EB1}" = AMD Wireless Display v3.0
"{7BE15435-2D3E-4B58-867F-9C75BED0208C}" = QuickTime
"{7F05E704-30A6-421A-97A7-8EEB1C7FF010}" = CorelDRAW Graphics SUite X4 - ICA
"{7F05E704-30A6-421A-97A7-8EEB1C7FF012}" = CorelDRAW Graphics Suite X4 - Capture
"{7F05E704-30A6-421A-97A7-8EEB1C7FF013}" = CorelDRAW Graphics Suite X4 - Draw
"{7F05E704-30A6-421A-97A7-8EEB1C7FF014}" = CorelDRAW Graphics Suite X4 - PP
"{7F05E704-30A6-421A-97A7-8EEB1C7FF016}" = CorelDRAW Graphics Suite X4 - Content
"{7F05E704-30A6-421A-97A7-8EEB1C7FF017}" = CorelDRAW Graphics Suite X4 - Filters
"{7F05E704-30A6-421A-97A7-8EEB1C7FF019}" = CorelDRAW Graphics Suite X4 - FontNav
"{817750FA-EC6A-485D-9901-0683AE6FFDF1}" = Google Earth
"{8186FF34-D389-4B7E-9A2F-C197585BCFBD}" = Adobe Media Encoder CS4 Importer
"{820D3F45-F6EE-4AAF-81EF-CE21FF21D230}" = Adobe Type Support CS4
"{83744391-B5A4-40E3-8A7D-E8BF39CB00ED}" = Adobe Creative Suite 4 Design Premium
"{83877DB1-8B77-45BC-AB43-2BAC22E093E0}" = Adobe Bridge CS4
"{842B4B72-9E8F-4962-B3C1-1C422A5C4434}" = Suite Shared Configuration CS4
"{866C4563-ED53-43F3-A29D-8BEE2BD1BA3C}" = Nokia PC Suite
"{87532CAB-7932-4F84-8937-823337622807}" = Adobe Illustrator CS4
"{8CE08C3C-8FF4-45D9-925E-4F3CE2D7FA7D}" = Adobe Setup
"{8EB62C87-AAA6-4850-A5BC-64155884B973}" = SketchUp 8
"{8EB8E60B-315D-44EB-A896-10D88602EE46}" = Adobe Setup
"{90120000-0015-0405-0000-0000000FF1CE}" = Microsoft Office Access MUI (Czech) 2007
"{90120000-0015-0405-0000-0000000FF1CE}_ENTERPRISE_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0016-0405-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Czech) 2007
"{90120000-0016-0405-0000-0000000FF1CE}_ENTERPRISE_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0018-0405-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Czech) 2007
"{90120000-0018-0405-0000-0000000FF1CE}_ENTERPRISE_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0019-0405-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Czech) 2007
"{90120000-0019-0405-0000-0000000FF1CE}_ENTERPRISE_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001A-0405-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Czech) 2007
"{90120000-001A-0405-0000-0000000FF1CE}_ENTERPRISE_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001B-0405-0000-0000000FF1CE}" = Microsoft Office Word MUI (Czech) 2007
"{90120000-001B-0405-0000-0000000FF1CE}_ENTERPRISE_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001F-0405-0000-0000000FF1CE}" = Microsoft Office Proof (Czech) 2007
"{90120000-001F-0405-0000-0000000FF1CE}_ENTERPRISE_{0B7A4B67-2A38-42B1-9857-662FAB361E08}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007
"{90120000-001F-0407-0000-0000000FF1CE}_ENTERPRISE_{928D7B99-2BEA-49F9-83B8-20FA57860643}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
"{90120000-001F-0409-0000-0000000FF1CE}_ENTERPRISE_{1FF96026-A04A-4C3E-B50A-BB7022654D0F}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-041B-0000-0000000FF1CE}" = Microsoft Office Proof (Slovak) 2007
"{90120000-001F-041B-0000-0000000FF1CE}_ENTERPRISE_{FDF9A959-241A-4662-A8DE-7DED9C22D160}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-002C-0405-0000-0000000FF1CE}" = Microsoft Office Proofing (Czech) 2007
"{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007
"{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0044-0405-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Czech) 2007
"{90120000-0044-0405-0000-0000000FF1CE}_ENTERPRISE_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-006E-0405-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Czech) 2007
"{90120000-006E-0405-0000-0000000FF1CE}_ENTERPRISE_{A0AAD4D5-9F9C-49BB-AB64-0FD4695424E8}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-00A1-0405-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Czech) 2007
"{90120000-00A1-0405-0000-0000000FF1CE}_ENTERPRISE_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-00BA-0405-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Czech) 2007
"{90120000-00BA-0405-0000-0000000FF1CE}_ENTERPRISE_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90140000-2005-0000-0000-0000000FF1CE}" = Microsoft Office File Validation Add-In
"{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033" = Microsoft .NET Framework 4.5
"{931AB7EA-3656-4BB7-864D-022B09E3DD67}" = Adobe Linguistics CS4
"{933B4015-4618-4716-A828-5289FC03165F}" = VC80CRTRedist - 8.0.50727.6195
"{94D398EB-D2FD-4FD1-B8C4-592635E8A191}" = Adobe CMaps CS4
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{9D0798D0-AF6C-4E62-94B1-AEBF1A43E00A}" = CorelDRAW Graphics Suite X4 - IPM
"{9F612429-4A00-3D44-88CF-146DA2EE1F92}" = Microsoft .NET Framework 4.5
"{9F74B6DE-B89C-4532-AFED-5AB0CCAAC1DF}_is1" = TCX Converter 2.0.29
"{A3DFAD3C-B56A-AB74-7772-D7B42D4BE04D}" = Catalyst Control Center InstallProxy
"{A50DE037-B5C0-4C8A-8049-B0C576B313D1}" = Google+ Auto Backup
"{A57025CC-5F2E-4D01-B387-06DB10500D43}" = Nokia Connectivity Cable Driver
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{AC76BA86-1033-F400-7760-000000000005}" = Adobe Acrobat X Pro - English, Français, Deutsch
"{AC76BA86-7AD7-1029-7B44-AB0000000001}" = Adobe Reader XI (11.0.07) - Czech
"{AC7EE5F1-0DE4-4256-8E43-92B73C8E6019}" = LG Bluetooth Drivers
"{AF111648-99A1-453E-81DD-80DBBF6DAD0D}" = MSVC90_x86
"{B05DE7B7-0B40-4411-BD4B-222CAE2D8F15}" = Adobe MotionPicture Color Files CS4
"{B15381DD-FF97-4FCD-A881-ED4DB0975500}" = Adobe Color Video Profiles AE CS4
"{B169BC97-B8AA-4ACA-9CF2-9D0FF5BABDF7}" = Adobe Premiere Pro CS4 Functional Content
"{B175520C-86A2-35A7-8619-86DC379688B9}" = Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030
"{B29AD377-CC12-490A-A480-1452337C618D}" = Connect
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application
"{B5B98340-0296-11E2-8B8E-F04DA23A5C58}" = Vegas Pro 11.0
"{B61D21B6-469D-4423-B161-62DB20B8A70E}" = Visual Basic for Applications (R) Core - English
"{B65BA85C-0A27-4BC0-A22D-A66F0E5B9494}" = Adobe Photoshop CS4
"{B8D84F70-0296-11E2-8DF5-F04DA23A5C58}" = MSVCRT Redists
"{BB4E33EC-8181-4685-96F7-8554293DEC6A}" = Adobe Output Module
"{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}" = Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030
"{BE9CEAAA-F069-4331-BF2F-8D350F6504F4}" = Adobe Media Encoder CS4 Additional Exporter
"{BF439B41-0252-48DE-8B8B-0430CB26A181}" = CorelDRAW Graphics Suite X4 - VBA
"{C52E3EC1-048C-45E1-8D53-10B0C6509683}" = Adobe Default Language CS4
"{C938BE91-3BB5-4B84-9EF6-88F0505D0038}" = Adobe Premiere Pro CS4 Third Party Content
"{CC75AB5C-2110-4A7F-AF52-708680D22FE8}" = Photoshop Camera Raw
"{CE2DA11A-917F-4CF5-AB55-755EC115DD10}" = CorelDRAW(R) Graphics Suite X4 - Windows Shell Extension
"{D0A0BE3D-8D66-4BE9-87C4-D30CA5AA93A3}" = SketchUp 2015
"{D17A05CB-2401-4F63-AB70-EFC060B4B4CB}" = ESET Smart Security
"{D427123D-6FED-3FF4-8490-49BAD3970C11}" = AMD Accelerated Video Transcoding
"{D499F8DE-3F31-4900-9157-61061613704B}" = Adobe Premiere Pro CS4
"{DB81779E-7CC5-4630-BCFC-754004956444}" = Visual Basic for Applications (R) Core
"{DE3BB35E-C0CE-4CA1-9CB4-CD9E69364BD9}" = Adobe Premiere Pro CS4
"{DE7D695C-2EC7-AFDF-F786-6E938DE83175}" = AMD Catalyst Install Manager
"{DEB90B8E-0DCB-48CE-B90E-8842A2BD643E}" = Adobe Media Encoder CS4
"{E14ADE0E-75F3-4A46-87E5-26692DD626EC}" = Apple Mobile Device Support
"{E398E7CC-30B8-4D63-B07B-741163A12565}" = MSI StarCam mini+
"{E4848436-0345-47E2-B648-8B522FCDA623}" = Adobe Photoshop CS4
"{ED3A28B6-4F90-4361-924E-A711B7FAA400}_is1" = České prostředí + rozříření pro SketchUp 8 free - 32bit verze 0
"{EE353798-E875-42E0-B58D-7E6696182EA8}" = Adobe Media Encoder CS4 Dolby
"{F0E64E2E-3A60-40D8-A55D-92F6831875DA}" = Adobe Search for Help
"{F3FCB08B-E752-444D-86A0-0634A4F3B23D}" = System Requirements Lab CYRI
"{F8EF2B3F-C345-4F20-8FE4-791A20333CD5}" = Adobe ExtendScript Toolkit CS4
"{F93C84A6-0DC6-42AF-89FA-776F7C377353}" = Adobe PDF Library Files CS4
"{FB2A5FCC-B81B-48C2-A009-7804694D83E9}" = Adobe Encore CS4 Codecs
"{FCDD51BB-CAD0-4BB1-B7DF-CE86D1032794}" = Adobe Fonts All
"{FDB30193-FDA0-3DAA-ACCA-A75EEFE53607}" = Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.50727
"{FFFE7261-2318-4227-B827-E9E05E16DFE5}" = CorelDRAW Graphics Suite X4 - Lang CZ
"17D063A0A9F5D5A225B76B1D9BCB5ADBE85C8382" = Windows Driver Package - Nokia pccsmcfd “LegacyDriver” (05/31/2012 7.1.2.0)
"3845014641F4868CCF2BF2CEF6FE0358D3244E8C" = Balíček ovladače systému Windows - MSI StarCam mini+ Driver (01/01/2007 6.0.0.1)
"72A50F48CC5601190B9C4E74D81161693133E7F7" = Windows Driver Package - Nokia Modem (02/25/2011 7.01.0.9)
"abrMate_is1" = abrMate version 1.1
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 17 ActiveX
"Adobe_26b63376f4efc354dae41af6b5e3343" = Adobe Premiere Pro CS4
"Adobe_2a31ae7a5c43ff52d8577782dd34e04" = Adobe Illustrator CS4
"Adobe_3dcb365ab9e01871fb8c6f27b0ea079" = Adobe After Effects CS4
"Adobe_5aab5a491a3a52ae624fd639f6aaa95" = Adobe After Effects CS4 Third Party Content
"Adobe_9e18dc90ff20e45c0662c733e20a10d" = Adobe Creative Suite 4 Design Premium
"Adobe_faf656ef605427ee2f42989c3ad31b8" = Adobe Photoshop CS4
"AMP Font Viewer" = AMP Font Viewer
"CCleaner" = CCleaner
"com.adobe.amp.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Media Player
"DivX Setup" = DivX Setup
"E0AC723A3DE3A04256288CADBBB011B112AED454" = Windows Driver Package - Nokia Modem (02/25/2011 4.7)
"ENTERPRISE" = Microsoft Office Enterprise 2007
"EVEREST Home Edition_is1" = EVEREST Home Edition v2.20
"Google Chrome" = Google Chrome
"Hi Suite" = HiSuite
"InstallShield_{3402F837-F1CC-4A02-B554-D02C96D43C5F}" = Xerox Phaser 3010
"iShutdown_is1" = iShutdown 1
"LG PC Suite IV" = LG PC Suite IV
"Malwarebytes Anti-Malware_is1" = Malwarebytes Anti-Malware verze 2.0.4.1028
"Nokia PC Suite" = Nokia PC Suite
"PhotoScape" = PhotoScape
"Picasa 3" = Picasa 3
"Plants vs. Zombies GOTY Edition final" = Plants vs. Zombies GOTY Edition final
"PowerISO" = PowerISO
"PunkBusterSvc" = PunkBuster Services
"rajče.net_is1" = rajče průvodce verze 1.59.45.260
"softOSD Client" = softOSD Client (Build 1445)
"Totalcmd" = Total Commander (Remove or Repair)
"Trapcode Particular v2" = Trapcode Particular v2
"Trapcode Shine" = Trapcode Shine
"Trapcode Starglow" = Trapcode Starglow
"VLC media player" = VLC media player 2.1.3
"Vypínač na dobrou noc_is1" = Vypínač na dobrou noc verze 2.0
"Winamp" = Winamp
"WinRAR archiver" = WinRAR 4.20 (32-bit)
"ZonerPhotoStudio15_CZ_is1" = Zoner Photo Studio 15

========== HKEY_USERS Uninstall List ==========

[HKEY_USERS\S-1-5-21-1551242594-84631119-3797995329-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"Dropbox" = Dropbox
"uTorrent" = µTorrent
"Winamp Detect" = Winamp Detector Plug-in

========== Last 20 Event Log Errors ==========

[ Application Events ]
Error - 12.6.2014 14:45:32 | Computer Name = Honys-PC | Source = SideBySide | ID = 16842815
Description = Generování kontextu aktivace pro c:\Program Files\Common Files\Adobe
AIR\Versions\1.0\Adobe AIR.dll se nezdařilo. Chyba v souboru manifestu nebo zásady
c:\Program Files\Common Files\Adobe AIR\Versions\1.0\Adobe AIR.dll na řádku 3. Hodnota
MAJOR_VERSION.MINOR_VERSION.BUILD_NUMBER_MAJOR.BUILD_NUMBER_MINOR atributu version
v prvku assemblyIdentity je neplatná.

Error - 12.6.2014 15:00:11 | Computer Name = Honys-PC | Source = SideBySide | ID = 16842815
Description = Generování kontextu aktivace pro c:\Program Files\Common Files\Adobe
AIR\Versions\1.0\Adobe AIR.dll se nezdařilo. Chyba v souboru manifestu nebo zásady
c:\Program Files\Common Files\Adobe AIR\Versions\1.0\Adobe AIR.dll na řádku 3. Hodnota
MAJOR_VERSION.MINOR_VERSION.BUILD_NUMBER_MAJOR.BUILD_NUMBER_MINOR atributu version
v prvku assemblyIdentity je neplatná.

Error - 12.6.2014 15:38:20 | Computer Name = Honys-PC | Source = SideBySide | ID = 16842815
Description = Generování kontextu aktivace pro c:\Program Files\Common Files\Adobe
AIR\Versions\1.0\Adobe AIR.dll se nezdařilo. Chyba v souboru manifestu nebo zásady
c:\Program Files\Common Files\Adobe AIR\Versions\1.0\Adobe AIR.dll na řádku 3. Hodnota
MAJOR_VERSION.MINOR_VERSION.BUILD_NUMBER_MAJOR.BUILD_NUMBER_MINOR atributu version
v prvku assemblyIdentity je neplatná.

Error - 12.6.2014 16:08:05 | Computer Name = Honys-PC | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: Continuously busy for more than a second

Error - 12.6.2014 16:08:05 | Computer Name = Honys-PC | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: m->NextScheduledEvent 1014

Error - 12.6.2014 16:08:05 | Computer Name = Honys-PC | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: m->NextScheduledSPRetry 1014

Error - 12.6.2014 16:08:05 | Computer Name = Honys-PC | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: m->NextScheduledSPRetry 1014

[ OSession Events ]
Error - 28.1.2013 14:36:25 | Computer Name = Honys-PC | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 0, Application Name: Microsoft Office Word, Application Version:
12.0.6668.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 88
seconds with 0 seconds of active time. This session ended with a crash.

Error - 28.1.2013 14:47:11 | Computer Name = Honys-PC | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 0, Application Name: Microsoft Office Word, Application Version:
12.0.6668.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 154
seconds with 60 seconds of active time. This session ended with a crash.

[ System Events ]
Error - 23.6.2015 14:23:27 | Computer Name = Honys-PC | Source = Service Control Manager | ID = 7001
Description = Služba Computer Browser závisí na službě Server, která neuspěla při
spuštění v důsledku následující chyby: %%1068

Error - 23.6.2015 14:23:27 | Computer Name = Honys-PC | Source = Service Control Manager | ID = 7001
Description = Služba Computer Browser závisí na službě Server, která neuspěla při
spuštění v důsledku následující chyby: %%1068

Error - 23.6.2015 14:23:27 | Computer Name = Honys-PC | Source = Service Control Manager | ID = 7001
Description = Služba Computer Browser závisí na službě Server, která neuspěla při
spuštění v důsledku následující chyby: %%1068

Error - 23.6.2015 14:23:27 | Computer Name = Honys-PC | Source = Service Control Manager | ID = 7001
Description = Služba Computer Browser závisí na službě Server, která neuspěla při
spuštění v důsledku následující chyby: %%1068

Error - 23.6.2015 14:28:28 | Computer Name = Honys-PC | Source = Service Control Manager | ID = 7001
Description = Služba Computer Browser závisí na službě Server, která neuspěla při
spuštění v důsledku následující chyby: %%1068

Error - 23.6.2015 14:28:28 | Computer Name = Honys-PC | Source = Service Control Manager | ID = 7001
Description = Služba Computer Browser závisí na službě Server, která neuspěla při
spuštění v důsledku následující chyby: %%1068

Error - 23.6.2015 14:28:28 | Computer Name = Honys-PC | Source = Service Control Manager | ID = 7001
Description = Služba Computer Browser závisí na službě Server, která neuspěla při
spuštění v důsledku následující chyby: %%1068

Error - 23.6.2015 14:28:28 | Computer Name = Honys-PC | Source = Service Control Manager | ID = 7001
Description = Služba Computer Browser závisí na službě Server, která neuspěla při
spuštění v důsledku následující chyby: %%1068

Error - 23.6.2015 14:28:28 | Computer Name = Honys-PC | Source = Service Control Manager | ID = 7001
Description = Služba Computer Browser závisí na službě Server, která neuspěla při
spuštění v důsledku následující chyby: %%1068

Error - 23.6.2015 14:28:28 | Computer Name = Honys-PC | Source = Service Control Manager | ID = 7001
Description = Služba Computer Browser závisí na službě Server, která neuspěla při
spuštění v důsledku následující chyby: %%1068


< End of report >

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119675
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Zamrznutí PC po pár minutách - prosím o kontrolu logu

#12 Příspěvek od Rudy »

Tak buď vás známý obelhal, nebo si z nás děláte legraci. Sken OTL jasně prokázal, že systém není legální. Lituji, ale nemohu vám pomoci. Viz. pravidla: http://forum.viry.cz/viewtopic.php?f=12&t=115512 .
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

blip
Návštěvník
Návštěvník
Příspěvky: 8
Registrován: 22 čer 2015 19:01

Re: Zamrznutí PC po pár minutách - prosím o kontrolu logu

#13 Příspěvek od blip »

Tak to je velmi nemilá zpráva... to mu budu muset "pěkně" poděkovat :( nicméně děkuji za ochotu.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119675
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Zamrznutí PC po pár minutách - prosím o kontrolu logu

#14 Příspěvek od Rudy »

Rádo se stalo!
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Zamčeno