Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Zamrza notebook

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
roskild
Návštěvník
Návštěvník
Příspěvky: 299
Registrován: 05 říj 2008 08:57

Zamrza notebook

#1 Příspěvek od roskild »

Zdravím,posledné dva dni mi nejak často zamrza notebook :(


Logfile of random's system information tool 1.10 (written by random/random)
Run by vladovladis at 2015-07-28 13:36:57
Microsoft Windows 8.1 so službou Bing
System drive C: has 126 GB (66%) free of 191 GB
Total RAM: 3983 MB (70% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 13:37:02, on 28.7.2015
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17840)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe
C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
C:\Program Files (x86)\ASUS\WebStorage\2.1.11.399\ASUSWSLoader.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Microsoft Office\Office15\ONENOTEM.EXE
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Windows\SysWOW64\RunDll32.exe
C:\Program Files\trend micro\vladovladis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://asus13.msn.com/?pc=ASJB
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://asus13.msn.com/?pc=ASJB
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe,
O2 - BHO: Lync Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_51\bin\ssv.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office15\URLREDIR.DLL
O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\PROGRA~2\MICROS~1\Office15\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_51\bin\jp2ssv.dll
O4 - HKLM\..\Run: [WebStorage] C:\Program Files (x86)\ASUS\WebStorage\2.1.11.399\ASUSWSLoader.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [VideoDownloaderUltimate] C:\ProgramData\VideoDownloaderUltimateWinApp\VideoDownloaderUltimate.exe /repair
O4 - Startup: Send to OneNote.lnk = C:\Program Files (x86)\Microsoft Office\Office15\ONENOTEM.EXE
O4 - Global Startup: Bluetooth.lnk = ?
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Se&nd to OneNote - res://C:\PROGRA~2\MICROS~1\Office15\ONBttnIE.dll/105
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra button: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O9 - Extra 'Tools' menuitem: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files (x86)\Microsoft Office\Office15\MSOSB.DLL
O18 - Filter hijack: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: ASLDR Service (ASLDRService) - ASUSTek Computer Inc. - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
O23 - Service: Asus WebStorage Windows Service - ASUS Cloud Corporation - C:\Program Files (x86)\ASUS\WebStorage\2.1.11.399\AsusWSWinService.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
O23 - Service: @oem25.inf,%BlueBcmBtRSupport.SVCNAME%;Bluetooth Driver Management Service (BcmBtRSupport) - Unknown owner - C:\Windows\system32\BtwRSupportService.exe (file missing)
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\Windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: Disc Soft Lite Bus Service - Disc Soft Ltd - C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: GamesAppIntegrationService - WildTangent - C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe
O23 - Service: GamesAppService - WildTangent, Inc. - C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\TXE Components\TCS\SocketHeciServer.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 10215 bytes

======Listing Processes======





wininit.exe

winlogon.exe

C:\Windows\system32\lsass.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe"
C:\Windows\system32\WLANExt.exe 992446786624
\??\C:\Windows\system32\conhost.exe 0x4
"C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe"
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\ASUS\WebStorage\2.1.11.399\AsusWSWinService.exe"
"C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe"
C:\Windows\System32\svchost.exe -k utcsvc
dashost.exe {f96b131e-fe82-4720-9df705a341fd77b9}
"C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe"
"C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe"
C:\Windows\SysWOW64\PnkBstrA.exe
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe"
taskeng.exe {653191B7-D5CC-46D2-9CBF-9183224CD346}
"C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe"
taskhostex.exe
"C:\Program Files (x86)\ASUS\Splendid\ACMON.exe"
KBFiltr.exe
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLoader.exe"
"C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPCenter.exe"
"C:\Windows\system32\GWX\GWX.exe"
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
"C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe"
"C:\Program Files (x86)\ASUS\WebStorage\2.1.11.399\ASUSWSLoader.exe"
"C:\Program Files\WIDCOMM\Bluetooth Software\BtStackServer.exe" -Embedding
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Program Files (x86)\Microsoft Office\Office15\ONENOTEM.EXE" /tsr
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="1088.0.1820025247\603044782" --supports-dual-gpus=false --gpu-driver-bug-workarounds=2,22,45 --gpu-vendor-id=0x8086 --gpu-device-id=0x0f31 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=10.18.10.3408 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=sk --force-fieldtrials="AffiliationBasedMatching/Enabled/AudioProcessing48kHzSupport/Default/*AutofillFieldMetadata/Enabled/*BrowserBlacklist/Enabled/CTRequiredForEVTrial/RequirementEnforced/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Enabled/ChromeDashboard/Default/*ChromeSuggestions/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group1 dev:pp6 prefetch_results:1 reuse_instant_search_base_page:1/*EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/ControlEnforce/*ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*IconNTP/Default/*IntelligentSessionRestore/NoIntelligentSessionRestore/*LoadStaleCacheExperiment/Disabled/*LocalNTPFast/Enabled/*NewProfileManagement/Enabled/NewVideoRendererTrial/Enabled/PasswordBranding/SmartLockBranding/*PasswordGeneration/Enabled/PasswordLinkInSettings/Enabled/*PluginPowerSaver/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/ReportCertificateErrors/ShowAndPossiblySend/*ReportCertificateErrorsOverHttp/UploadReportsOverHttp/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Enabled/*SdchPersistence/Enabled/*SettingsEnforcement/enforce_always_with_extensions_and_dse/SyncBackingDatabase32K/Enabled/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_12/*UMA-Uniformity-Trial-10-Percent/group_08/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_11/*UMA-Uniformity-Trial-50-Percent/default/UMAInitialMetricsTiming/Enabled/*UseDelayAgnosticAEC/Disabled/*VoiceTrigger/Install/*WebRTC-ScreencastTargetBitrateOvershoot/Enabled/*WebRTC-SupportVP9/Default/WebRTC-UDPSocketNonBlockingIO/Enabled/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --channel="1088.2.851839813\980068631" --font-cache-shared-handle=2012 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=sk --force-fieldtrials="AffiliationBasedMatching/Enabled/AudioProcessing48kHzSupport/Default/*AutofillFieldMetadata/Enabled/*BrowserBlacklist/Enabled/CTRequiredForEVTrial/RequirementEnforced/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Enabled/ChromeDashboard/Default/*ChromeSuggestions/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group1 dev:pp6 prefetch_results:1 reuse_instant_search_base_page:1/*EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/ControlEnforce/*ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*IconNTP/Default/*IntelligentSessionRestore/NoIntelligentSessionRestore/*LoadStaleCacheExperiment/Disabled/*LocalNTPFast/Enabled/*NewProfileManagement/Enabled/NewVideoRendererTrial/Enabled/PasswordBranding/SmartLockBranding/*PasswordGeneration/Enabled/PasswordLinkInSettings/Enabled/*PluginPowerSaver/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/ReportCertificateErrors/ShowAndPossiblySend/*ReportCertificateErrorsOverHttp/UploadReportsOverHttp/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Enabled/*SdchPersistence/Enabled/*SettingsEnforcement/enforce_always_with_extensions_and_dse/SyncBackingDatabase32K/Enabled/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_12/*UMA-Uniformity-Trial-10-Percent/group_08/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_11/*UMA-Uniformity-Trial-50-Percent/default/UMAInitialMetricsTiming/Enabled/*UseDelayAgnosticAEC/Disabled/*VoiceTrigger/Install/*WebRTC-ScreencastTargetBitrateOvershoot/Enabled/*WebRTC-SupportVP9/Default/WebRTC-UDPSocketNonBlockingIO/Enabled/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --channel="1088.3.170627882\179012001" --font-cache-shared-handle=2136 /prefetch:673131151
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /MAXX4
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"

"C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPHelper.exe"
"C:\Windows\system32\igfxsrvc.exe" -Embedding
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=sk --force-fieldtrials="AffiliationBasedMatching/Enabled/AudioProcessing48kHzSupport/Default/*AutofillFieldMetadata/Enabled/*BrowserBlacklist/Enabled/CTRequiredForEVTrial/RequirementEnforced/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Enabled/ChromeDashboard/Default/*ChromeSuggestions/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group1 dev:pp6 prefetch_results:1 reuse_instant_search_base_page:1/*EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/ControlEnforce/*ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*IconNTP/Default/*IntelligentSessionRestore/NoIntelligentSessionRestore/*LoadStaleCacheExperiment/Disabled/*LocalNTPFast/Enabled/*NewProfileManagement/Enabled/NewVideoRendererTrial/Enabled/PasswordBranding/SmartLockBranding/*PasswordGeneration/Enabled/PasswordLinkInSettings/Enabled/*PluginPowerSaver/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/ReportCertificateErrors/ShowAndPossiblySend/*ReportCertificateErrorsOverHttp/UploadReportsOverHttp/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Enabled/*SdchPersistence/Enabled/*SettingsEnforcement/enforce_always_with_extensions_and_dse/SyncBackingDatabase32K/Enabled/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_12/*UMA-Uniformity-Trial-10-Percent/group_08/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_11/*UMA-Uniformity-Trial-50-Percent/default/UMAInitialMetricsTiming/Enabled/*UseDelayAgnosticAEC/Disabled/*VoiceTrigger/Install/*WebRTC-ScreencastTargetBitrateOvershoot/Enabled/*WebRTC-SupportVP9/Default/WebRTC-UDPSocketNonBlockingIO/Enabled/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --channel="1088.6.1149719936\1258461873" --font-cache-shared-handle=4584 /prefetch:673131151

"C:\Windows\SysWOW64\RunDll32.exe" "C:\Program Files\WIDCOMM\Bluetooth Software\SysWOW64\BtMmHook.dll",SetAndWaitBtMmHook
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe2_ Global\UsGthrCtrlFltPipeMssGthrPipe2 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 324 556 568 65536 564
"C:\Users\vladovladis\Desktop\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe

======Scheduled tasks folder======

C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineCore1d091868373629d.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\Windows\tasks\GoogleUpdateTaskMachineUA1d091868430e8d1.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Lync Browser Helper - C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2012-10-01 205416]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~1\Office15\URLREDIR.DLL [2012-10-01 877720]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~1\MICROS~1\Office15\GROOVEEX.DLL [2012-10-01 2322576]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Lync Browser Helper - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2012-10-01 139368]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_51\bin\ssv.dll [2015-07-16 460384]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office15\URLREDIR.DLL [2012-10-01 704664]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~2\MICROS~1\Office15\GROOVEEX.DLL [2012-10-01 1720976]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_51\bin\jp2ssv.dll [2015-07-16 172640]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2014-02-19 391152]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2014-02-19 771568]
"egui"=C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [2015-01-28 5595848]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2015-04-23 8204056]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\DTLite.exe [2015-02-27 5583120]
"VideoDownloaderUltimate"=C:\ProgramData\VideoDownloaderUltimateWinApp\VideoDownloaderUltimate.exe [2015-07-28 2254664]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"WebStorage"=C:\Program Files (x86)\ASUS\WebStorage\2.1.11.399\ASUSWSLoader.exe [2014-08-20 63296]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2015-06-08 334896]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe

C:\Users\vladovladis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Send to OneNote.lnk - C:\Program Files (x86)\Microsoft Office\Office15\ONENOTEM.EXE

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2014-01-16 624640]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iaioi2ce.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mcpltsvc]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"SoftwareSASGeneration"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2015-07-28 13:36:57 ----D---- C:\rsit
2015-07-28 09:31:34 ----A---- C:\Windows\system32\appraiser.dll
2015-07-28 06:34:16 ----D---- C:\ProgramData\VideoDownloaderUltimateWinApp
2015-07-23 08:41:53 ----D---- C:\Program Files (x86)\Adobe
2015-07-23 08:41:20 ----D---- C:\ProgramData\Adobe
2015-07-22 10:41:07 ----A---- C:\Windows\system32\generaltel.dll
2015-07-22 10:41:07 ----A---- C:\Windows\system32\aeinv.dll
2015-07-22 10:41:06 ----A---- C:\Windows\system32\invagent.dll
2015-07-22 10:41:06 ----A---- C:\Windows\system32\devinv.dll
2015-07-22 10:41:06 ----A---- C:\Windows\system32\CompatTelRunner.exe
2015-07-22 10:41:06 ----A---- C:\Windows\system32\acmigration.dll
2015-07-22 10:41:05 ----A---- C:\Windows\system32\aepdu.dll
2015-07-21 07:29:43 ----A---- C:\Windows\SYSWOW64\atmlib.dll
2015-07-21 07:29:43 ----A---- C:\Windows\SYSWOW64\atmfd.dll
2015-07-21 07:29:43 ----A---- C:\Windows\system32\atmlib.dll
2015-07-21 07:29:43 ----A---- C:\Windows\system32\atmfd.dll
2015-07-19 18:52:18 ----D---- C:\Users\vladovladis\AppData\Roaming\FastStone
2015-07-19 18:52:00 ----D---- C:\Program Files (x86)\FastStone Image Viewer
2015-07-15 20:44:02 ----A---- C:\Windows\system32\WiFiDisplay.dll
2015-07-15 20:44:01 ----A---- C:\Windows\system32\profsvc.dll
2015-07-15 20:44:00 ----A---- C:\Windows\SYSWOW64\GeofenceMonitorService.dll
2015-07-15 20:44:00 ----A---- C:\Windows\system32\GeofenceMonitorService.dll
2015-07-15 20:43:58 ----A---- C:\Windows\system32\shell32.dll
2015-07-15 20:43:55 ----A---- C:\Windows\SYSWOW64\shell32.dll
2015-07-15 20:43:54 ----A---- C:\Windows\system32\ExplorerFrame.dll
2015-07-15 20:43:53 ----A---- C:\Windows\SYSWOW64\ExplorerFrame.dll
2015-07-15 20:43:46 ----A---- C:\Windows\system32\drivers\usb8023.sys
2015-07-15 20:43:46 ----A---- C:\Windows\system32\drivers\sermouse.sys
2015-07-15 20:43:46 ----A---- C:\Windows\system32\drivers\mouhid.sys
2015-07-15 20:43:46 ----A---- C:\Windows\system32\drivers\mouclass.sys
2015-07-15 20:43:46 ----A---- C:\Windows\system32\drivers\kbdhid.sys
2015-07-15 20:43:46 ----A---- C:\Windows\system32\drivers\kbdclass.sys
2015-07-15 20:43:46 ----A---- C:\Windows\system32\drivers\i8042prt.sys
2015-07-15 20:43:46 ----A---- C:\Windows\system32\drivers\bthport.sys
2015-07-15 20:43:45 ----A---- C:\Windows\system32\fhcpl.dll
2015-07-15 20:43:44 ----A---- C:\Windows\SYSWOW64\WSShared.dll
2015-07-15 20:43:44 ----A---- C:\Windows\system32\WSShared.dll
2015-07-15 20:43:43 ----A---- C:\Windows\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2015-07-15 20:43:43 ----A---- C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2015-07-15 20:43:42 ----A---- C:\Windows\SYSWOW64\msftedit.dll
2015-07-15 20:43:42 ----A---- C:\Windows\system32\msftedit.dll
2015-07-15 20:43:40 ----A---- C:\Windows\system32\SystemEventsBrokerServer.dll
2015-07-15 20:43:39 ----A---- C:\Windows\SYSWOW64\Windows.Data.Pdf.dll
2015-07-15 20:43:39 ----A---- C:\Windows\system32\Windows.Data.Pdf.dll
2015-07-15 15:11:17 ----A---- C:\Windows\system32\win32k.sys
2015-07-15 15:11:15 ----A---- C:\Windows\SYSWOW64\authui.dll
2015-07-15 15:11:15 ----A---- C:\Windows\system32\msi.dll
2015-07-15 15:11:15 ----A---- C:\Windows\system32\authui.dll
2015-07-15 15:11:14 ----A---- C:\Windows\SYSWOW64\msiexec.exe
2015-07-15 15:11:14 ----A---- C:\Windows\SYSWOW64\msi.dll
2015-07-15 15:11:14 ----A---- C:\Windows\system32\msiexec.exe
2015-07-15 15:11:11 ----A---- C:\Windows\system32\rpcrt4.dll
2015-07-15 15:11:11 ----A---- C:\Windows\system32\msv1_0.dll
2015-07-15 15:11:11 ----A---- C:\Windows\system32\kerberos.dll
2015-07-15 15:11:11 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2015-07-15 15:11:10 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2015-07-15 15:11:10 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2015-07-15 15:11:10 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2015-07-15 15:11:10 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2015-07-15 15:11:10 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2015-07-15 15:11:10 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2015-07-15 15:11:09 ----A---- C:\Windows\SYSWOW64\certcli.dll
2015-07-15 15:11:09 ----A---- C:\Windows\system32\lsasrv.dll
2015-07-15 15:11:09 ----A---- C:\Windows\system32\certcli.dll
2015-07-15 15:10:45 ----A---- C:\Windows\system32\werdiagcontroller.dll
2015-07-15 15:10:45 ----A---- C:\Windows\system32\audiosrv.dll
2015-07-15 15:10:45 ----A---- C:\Windows\system32\AudioEndpointBuilder.dll
2015-07-15 15:10:42 ----A---- C:\Windows\system32\jscript9.dll
2015-07-15 15:10:39 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2015-07-15 15:10:34 ----A---- C:\Windows\SYSWOW64\wups.dll
2015-07-15 15:10:34 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2015-07-15 15:10:34 ----A---- C:\Windows\system32\wuaueng.dll
2015-07-15 15:10:34 ----A---- C:\Windows\system32\wuapp.exe
2015-07-15 15:10:34 ----A---- C:\Windows\system32\wuapi.dll
2015-07-15 15:10:33 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2015-07-15 15:10:33 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2015-07-15 15:10:33 ----A---- C:\Windows\system32\wucltux.dll
2015-07-15 15:10:33 ----A---- C:\Windows\system32\wuauclt.exe
2015-07-15 15:10:33 ----A---- C:\Windows\system32\WinSetupUI.dll
2015-07-15 15:10:32 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2015-07-15 15:10:32 ----A---- C:\Windows\system32\wuwebv.dll
2015-07-15 15:10:32 ----A---- C:\Windows\system32\WUSettingsProvider.dll
2015-07-15 15:10:32 ----A---- C:\Windows\system32\wups.dll
2015-07-15 15:10:32 ----A---- C:\Windows\system32\wudriver.dll
2015-07-15 15:10:31 ----A---- C:\Windows\system32\wups2.dll
2015-07-15 15:09:49 ----A---- C:\Windows\system32\mshtml.dll
2015-07-15 15:09:48 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2015-07-15 15:09:18 ----A---- C:\Windows\system32\ieframe.dll
2015-07-15 15:09:15 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2015-07-15 15:09:12 ----A---- C:\Windows\system32\urlmon.dll
2015-07-15 15:09:12 ----A---- C:\Windows\system32\iertutil.dll
2015-07-15 15:09:11 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2015-07-15 15:09:11 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2015-07-15 15:08:56 ----A---- C:\Windows\system32\actxprxy.dll
2015-07-15 15:08:55 ----A---- C:\Windows\system32\wininet.dll
2015-07-15 15:08:54 ----A---- C:\Windows\SYSWOW64\wininet.dll
2015-07-15 15:08:53 ----A---- C:\Windows\SYSWOW64\actxprxy.dll
2015-07-15 15:08:52 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2015-07-15 15:08:52 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2015-07-15 15:08:52 ----A---- C:\Windows\system32\vbscript.dll
2015-07-15 15:08:52 ----A---- C:\Windows\system32\MshtmlDac.dll
2015-07-15 15:08:52 ----A---- C:\Windows\system32\ieui.dll
2015-07-15 15:08:52 ----A---- C:\Windows\system32\ieapfltr.dll
2015-07-15 15:08:51 ----A---- C:\Windows\SYSWOW64\msrating.dll
2015-07-15 15:08:51 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2015-07-15 15:08:51 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2015-07-15 15:08:51 ----A---- C:\Windows\SYSWOW64\ieui.dll
2015-07-15 15:08:51 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2015-07-15 15:08:51 ----A---- C:\Windows\system32\msfeeds.dll
2015-07-15 15:08:50 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2015-07-15 15:08:50 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2015-07-15 15:08:50 ----A---- C:\Windows\SYSWOW64\inetcomm.dll
2015-07-15 15:08:50 ----A---- C:\Windows\system32\webcheck.dll
2015-07-15 15:08:50 ----A---- C:\Windows\system32\msrating.dll
2015-07-15 15:08:50 ----A---- C:\Windows\system32\mshtmled.dll
2015-07-15 15:08:50 ----A---- C:\Windows\system32\inetcomm.dll
2015-07-15 15:08:50 ----A---- C:\Windows\system32\dxtrans.dll
2015-07-15 15:08:49 ----A---- C:\Windows\SYSWOW64\jscript.dll
2015-07-15 15:08:49 ----A---- C:\Windows\SYSWOW64\iepeers.dll
2015-07-15 15:08:49 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2015-07-15 15:08:49 ----A---- C:\Windows\system32\jscript.dll
2015-07-15 15:08:49 ----A---- C:\Windows\system32\iepeers.dll
2015-07-15 15:08:29 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2015-07-15 15:08:29 ----A---- C:\Windows\system32\gdi32.dll
2015-07-15 15:08:26 ----A---- C:\Windows\SYSWOW64\ole32.dll
2015-07-15 15:08:26 ----A---- C:\Windows\system32\ole32.dll
2015-07-15 15:08:25 ----A---- C:\Windows\system32\apphelp.dll
2015-07-10 20:33:34 ----HD---- C:\$Windows.~BT
2015-07-10 16:13:07 ----D---- C:\Users\vladovladis\AppData\Roaming\Ashampoo
2015-07-10 16:12:59 ----D---- C:\ProgramData\Ashampoo
2015-07-10 16:12:50 ----D---- C:\Program Files (x86)\Ashampoo
2015-07-08 15:42:52 ----D---- C:\Users\vladovladis\AppData\Roaming\vlc
2015-07-08 15:39:16 ----D---- C:\Program Files\VideoLAN
2015-07-08 15:28:55 ----D---- C:\Program Files (x86)\VideoLAN

======List of files/folders modified in the last 1 month======

2015-07-28 13:37:00 ----D---- C:\Program Files\trend micro
2015-07-28 13:36:47 ----AD---- C:\Windows\Temp
2015-07-28 13:31:33 ----AD---- C:\Windows
2015-07-28 13:15:53 ----D---- C:\Windows\SoftwareDistribution
2015-07-28 13:15:53 ----D---- C:\Windows\debug
2015-07-28 13:06:14 ----D---- C:\Windows\Prefetch
2015-07-28 13:00:00 ----D---- C:\Windows\system32\sru
2015-07-28 12:11:14 ----D---- C:\Users\vladovladis\AppData\Roaming\uTorrent
2015-07-28 12:00:28 ----D---- C:\Windows\system32\Tasks
2015-07-28 10:03:07 ----D---- C:\Windows\system32\config
2015-07-28 09:54:18 ----D---- C:\Windows\WinSxS
2015-07-28 09:54:18 ----D---- C:\Windows\System32
2015-07-28 09:54:14 ----D---- C:\Windows\CbsTemp
2015-07-28 09:54:00 ----SHD---- C:\System Volume Information
2015-07-28 08:15:35 ----D---- C:\Windows\Panther
2015-07-28 06:39:39 ----D---- C:\Windows\AppReadiness
2015-07-28 06:39:14 ----D---- C:\Windows\Logs
2015-07-28 06:34:16 ----HD---- C:\ProgramData
2015-07-27 09:17:45 ----D---- C:\Windows\Microsoft.NET
2015-07-27 09:17:44 ----RSD---- C:\Windows\assembly
2015-07-25 07:21:14 ----SD---- C:\Windows\system32\GWX
2015-07-25 07:16:29 ----D---- C:\Windows\Inf
2015-07-25 07:14:32 ----D---- C:\Windows\system32\DriverStore
2015-07-25 07:14:31 ----D---- C:\Windows\system32\drivers
2015-07-25 07:13:17 ----SD---- C:\Windows\system32\CompatTel
2015-07-25 07:13:17 ----D---- C:\Windows\system32\wbem
2015-07-25 07:13:17 ----D---- C:\Windows\system32\appraiser
2015-07-25 07:13:17 ----D---- C:\Windows\apppatch
2015-07-24 20:33:01 ----D---- C:\Windows\system32\MRT
2015-07-24 13:47:48 ----HD---- C:\Program Files\WindowsApps
2015-07-23 08:51:14 ----SHD---- C:\Windows\Installer
2015-07-23 08:50:17 ----D---- C:\Windows\SysWOW64
2015-07-23 08:45:40 ----D---- C:\Users\vladovladis\AppData\Roaming\Adobe
2015-07-23 08:43:11 ----SD---- C:\Users\vladovladis\AppData\Roaming\Microsoft
2015-07-23 08:41:53 ----RD---- C:\Program Files (x86)
2015-07-23 08:41:53 ----D---- C:\Program Files (x86)\Common Files
2015-07-22 12:17:00 ----D---- C:\Windows\rescache
2015-07-21 22:51:34 ----D---- C:\Windows\WinStore
2015-07-21 22:51:31 ----RD---- C:\Windows\ToastData
2015-07-16 17:26:22 ----D---- C:\Windows\Tasks
2015-07-16 16:57:17 ----D---- C:\ProgramData\Oracle
2015-07-16 16:55:53 ----D---- C:\Program Files (x86)\Java
2015-07-16 16:54:33 ----A---- C:\Windows\SYSWOW64\WindowsAccessBridge-32.dll
2015-07-15 19:41:51 ----D---- C:\Windows\system32\catroot
2015-07-15 19:35:59 ----SD---- C:\Windows\SYSWOW64\GWX
2015-07-15 19:35:59 ----D---- C:\Windows\system32\sk-SK
2015-07-15 19:35:57 ----D---- C:\Windows\system32\CodeIntegrity
2015-07-15 19:35:56 ----D---- C:\Program Files\Internet Explorer
2015-07-15 19:35:56 ----D---- C:\Program Files (x86)\Internet Explorer
2015-07-15 15:05:57 ----D---- C:\Windows\system32\catroot2
2015-07-13 23:10:13 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2015-07-10 20:20:11 ----A---- C:\Windows\system32\PerfStringBackup.INI
2015-07-08 15:39:16 ----RD---- C:\Program Files
2015-07-03 19:52:07 ----D---- C:\Users\vladovladis\AppData\Roaming\DAEMON Tools Lite
2015-07-03 19:50:33 ----D---- C:\Program Files\CCleaner
2015-07-03 08:43:04 ----A---- C:\Windows\system32\MRT.exe
2015-06-30 20:53:44 ----D---- C:\Windows\system32\LogFiles

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 edevmon;edevmon; C:\Windows\system32\DRIVERS\edevmon.sys [2015-03-10 241880]
R0 MBI;@oem8.inf,%MBI.SVCDESC%;Intel(R) Sideband Fabric Device Service; C:\Windows\System32\drivers\MBI.sys [2013-10-28 29464]
R1 ATKWMIACPIIO;ATKWMIACPI Driver; \??\C:\Program Files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys [2013-07-02 19768]
R1 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys [2015-03-10 246000]
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2015-03-10 169792]
R1 vwififlt;@%SystemRoot%\System32\drivers\vwififlt.sys,-259; C:\Windows\system32\DRIVERS\vwififlt.sys [2014-10-29 71680]
R2 ASMMAP64;ASMMAP64; \??\C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys [2009-07-02 15416]
R2 epfwwfpr;epfwwfpr; C:\Windows\system32\DRIVERS\epfwwfpr.sys [2015-03-10 159480]
R3 AiCharger;ASUS Charger Driver; C:\Windows\system32\DRIVERS\AiCharger.sys [2014-03-27 17152]
R3 ATP;@oem17.inf,%PS2.DeviceDesc%;ASUS Input Device; C:\Windows\System32\drivers\AsusTP.sys [2014-03-31 71952]
R3 bcbtums;@oem25.inf,%BCBTUMS.SvcDesc%;Bluetooth RAM Firmware Download USB Filter; C:\Windows\system32\drivers\bcbtums.sys [2013-11-14 170712]
R3 BCM43XX;@oem20.inf,%BCM43XX_Service_DispName%;Broadcom 802.11 Network Adapter Driver; C:\Windows\system32\DRIVERS\bcmwl63a.sys [2014-12-23 7546544]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Bluetooth Enumerator Service; C:\Windows\System32\drivers\BthEnum.sys [2014-10-29 53248]
R3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\Windows\system32\DRIVERS\BthLEEnum.sys [2014-03-18 226304]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2014-10-29 118272]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Bluetooth Radio USB Driver; C:\Windows\System32\Drivers\BTHUSB.sys [2014-10-29 81920]
R3 btwampfl;@oem25.inf,%btwampfl.ServiceName%;btwampfl; C:\Windows\system32\DRIVERS\btwampfl.sys [2014-02-03 166616]
R3 btwaudio;@oem21.inf,%btaudio.SvcDesc%;Bluetooth Audio Device Service; C:\Windows\system32\drivers\btwaudio.sys [2014-03-19 190168]
R3 btwavdt;@oem22.inf,%btwavdt.SVCDESC%;Bluetooth AVDT Service; C:\Windows\system32\drivers\btwavdt.sys [2014-03-19 229080]
R3 btwl2cap;@oem24.inf,%btwl2cap.SVCDESC%;Bluetooth L2CAP Service; C:\Windows\system32\DRIVERS\btwl2cap.sys [2012-07-27 40248]
R3 dtlitescsibus;@oem33.inf,%DTLITESCSIBUS.DeviceDesc%;DAEMON Tools Lite Virtual SCSI Bus; C:\Windows\System32\drivers\dtlitescsibus.sys [2015-05-22 30352]
R3 GPIO;@oem10.inf,%GPIO.SVCDESC%;Intel SoC GPIO Controller Driver; C:\Windows\System32\drivers\iaiogpioe.sys [2013-11-11 31232]
R3 HIDSwitch;@oem28.inf,%ASSW.DisplayName%;ASUS Wireless Radio Control; C:\Windows\System32\drivers\AsHIDSwitch64.sys [2013-10-08 20280]
R3 iaioi2c;@oem9.inf,%Driver_Service.Desc%;I2C Controller Service; C:\Windows\System32\drivers\iaioi2ce.sys [2013-11-11 67584]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2014-01-16 4222976]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2015-05-19 4466392]
R3 IntcDAud;@oem12.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\Windows\system32\DRIVERS\IntcDAud.sys [2014-01-16 450520]
R3 iwdbus;@oem15.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\Windows\System32\drivers\iwdbus.sys [2013-12-27 27032]
R3 kbfiltr;@oem27.inf,%kbfiltr.SvcDesc%;Keyboard Filter; C:\Windows\System32\drivers\kbfiltr.sys [2012-08-06 17280]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\System32\drivers\rfcomm.sys [2015-01-30 167424]
R3 RSBASTOR;@oem19.inf,%Rts5208%;Realtek PCIE CardReader Driver - BA; C:\Windows\system32\DRIVERS\RtsBaStor.sys [2013-07-12 309976]
R3 RTL8168;@oem18.inf,%rtl8168.Service.DispName%;Realtek 8168 NT Driver; C:\Windows\system32\DRIVERS\Rt630x64.sys [2014-01-08 848088]
R3 TXEIx64;@oem11.inf,%TEE_SvcDesc%;Intel(R) Trusted Execution Engine Interface ; C:\Windows\System32\drivers\TXEIx64.sys [2014-01-15 88592]
R3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;USB Video Device (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2014-06-21 212736]
R3 vwifimp;@%SystemRoot%\System32\drivers\vwifimp.sys,-261; C:\Windows\system32\DRIVERS\vwifimp.sys [2014-10-29 38912]
S0 iaStorA;iaStorA; C:\Windows\System32\drivers\iaStorA.sys [2014-06-26 670056]
S3 AgereSoftModem;@mdmags64.inf,%FullProductName%;Agere Systems Soft Modem; C:\Windows\system32\DRIVERS\agrsm64.sys [2013-06-18 1146880]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Bluetooth Port Driver; C:\Windows\System32\Drivers\BTHport.sys [2015-05-11 1201664]
S3 btwrchid;btwrchid; C:\Windows\System32\drivers\btwrchid.sys [2014-03-19 38616]
S3 dg_ssudbus;@oem34.inf,%ssud.Service.DeviceDesc%;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudbus.sys [2014-01-22 108800]
S3 e1iexpress;@net1ic64.inf,%e1iExpress.Service.DispName%;Intel(R) PRO/1000 PCI Express Network Connection Driver I; C:\Windows\system32\DRIVERS\e1i63x64.sys [2013-06-18 460288]
S3 intaud_WaveExtensible;@oem14.inf,%INTAUD_WEX.SvcDesc%;Intel WiDi Audio Device; C:\Windows\system32\drivers\intelaud.sys [2013-12-27 38296]
S3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\Windows\system32\drivers\MBAMSwissArmy.sys []
S3 NETwNs64;@netwsw00.inf,___ %NIC_Service_DispName_WIN7_64%;___ Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows 7 - 64 Bit; C:\Windows\system32\DRIVERS\Netwsw00.sys [2013-06-18 11518976]
S3 ssudmdm;@oem36.inf,%ssud.Service.Name%;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudmdm.sys [2014-01-22 206080]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2015-07-07 82128]
R2 ASLDRService;ASLDR Service; C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe [2014-03-26 115512]
R2 Asus WebStorage Windows Service;Asus WebStorage Windows Service; C:\Program Files (x86)\ASUS\WebStorage\2.1.11.399\AsusWSWinService.exe [2014-08-20 71168]
R2 ATKGFNEXSrv;ATKGFNEX Service; C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe [2011-11-21 96896]
R2 btwdins;Bluetooth Service; C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe [2014-03-18 976600]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2014-10-29 38792]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe [2015-01-28 1349576]
R2 GamesAppIntegrationService;GamesAppIntegrationService; C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe [2014-04-24 227904]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe [2013-07-01 733696]
R2 PnkBstrA;PnkBstrA; C:\Windows\syswow64\PnkBstrA.exe [2015-05-22 66872]
S2 BcmBtRSupport;@oem25.inf,%BlueBcmBtRSupport.SVCNAME%;Bluetooth Driver Management Service; C:\Windows\system32\BtwRSupportService.exe [2013-11-14 2251992]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-05-18 107848]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2014-04-03 315008]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\Windows\System32\svchost.exe [2014-10-29 38792]
S3 cphs;Intel(R) Content Protection HECI Service; C:\Windows\SysWow64\IntelCpHeciSvc.exe [2014-02-19 279024]
S3 Disc Soft Lite Bus Service;Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe [2015-02-27 1272592]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2014-03-18 43696]
S3 GamesAppService;GamesAppService; C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe [2014-04-24 203344]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-05-18 107848]
S3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2012-04-24 169752]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\TXE Components\TCS\SocketHeciServer.exe [2013-07-01 822232]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2012-10-01 150648]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119675
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Zamrza notebook

#2 Příspěvek od Rudy »

Zdravím!
Spusťte tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

roskild
Návštěvník
Návštěvník
Příspěvky: 299
Registrován: 05 říj 2008 08:57

Re: Zamrza notebook

#3 Příspěvek od roskild »

# AdwCleaner v4.208 - Log vytvorený 10/08/2015 at 21:05:14
# Aktualizované 09/07/2015 by Xplode
# Databáza : 2015-08-01.1 [Server]
# Operačný systém : Windows 8.1 Connected (x64)
# Uživateľské meno : vladovladis - VLADO
# Spustené z : C:\Users\vladovladis\Desktop\adwcleaner_4.208.exe
# Nastavenia : Čistenie

***** [ Služby ] *****


***** [ Súbory / Priečinky ] *****

Priečinok Zmazané : C:\ProgramData\VideoDownloaderUltimateWinApp
Priečinok Zmazané : C:\ProgramData\7710060722174606029
Priečinok Zmazané : C:\ProgramData\{940d1d5a-3337-d105-940d-d1d5a3337568}
Súbor Zmazané : C:\Users\vladovladis\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_niloccemoadcdkdjlinkgdfekeahmflj_0.localstorage

***** [ Naplánované úlohy ] *****


***** [ Zástupcovia ] *****


***** [ Registre ] *****

Kľúč registra Zmazané : HKCU\Software\Conduit
Kľúč registra Zmazané : HKLM\SOFTWARE\Conduit
Kľúč registra Zmazané : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{4820778D-AB0D-6D18-C316-52A6A0E1D507}
Kľúč registra Zmazané : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Your Software Deals_is1
Kľúč registra Zmazané : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{AD11DADE-C597-45D9-D8C5-1D2EB0B89613}
Kľúč registra Zmazané : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{06B99631-BFA2-3B7A-F58B-D067C2BA59B7}

***** [ Webové prehliadače ] *****

-\\ Internet Explorer v11.0.9600.17840


-\\ Google Chrome v44.0.2403.130


*************************

AdwCleaner[R0].txt - [1996 bajtov] - [10/08/2015 21:03:18]
AdwCleaner[S0].txt - [1621 bajtov] - [10/08/2015 21:05:14]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [1681 bajtov] ##########

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119675
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Zamrza notebook

#4 Příspěvek od Rudy »

Dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

roskild
Návštěvník
Návštěvník
Příspěvky: 299
Registrován: 05 říj 2008 08:57

Re: Zamrza notebook

#5 Příspěvek od roskild »

Logfile of random's system information tool 1.10 (written by random/random)
Run by vladovladis at 2015-08-10 21:20:19
Microsoft Windows 8.1 so službou Bing
System drive C: has 132 GB (69%) free of 191 GB
Total RAM: 3983 MB (74% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 21:20:24, on 10.8.2015
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17840)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Microsoft Office\Office15\ONENOTEM.EXE
C:\Windows\SysWOW64\RunDll32.exe
C:\Program Files\trend micro\vladovladis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://asus13.msn.com/?pc=ASJB
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://asus13.msn.com/?pc=ASJB
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe,
O2 - BHO: Lync Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_51\bin\ssv.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office15\URLREDIR.DLL
O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\PROGRA~2\MICROS~1\Office15\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_51\bin\jp2ssv.dll
O4 - HKLM\..\Run: [WebStorage] C:\Program Files (x86)\ASUS\WebStorage\2.1.11.399\ASUSWSLoader.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [VideoDownloaderUltimate] C:\ProgramData\VideoDownloaderUltimateWinApp\VideoDownloaderUltimate.exe /repair
O4 - Startup: Send to OneNote.lnk = C:\Program Files (x86)\Microsoft Office\Office15\ONENOTEM.EXE
O4 - Global Startup: Bluetooth.lnk = ?
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Se&nd to OneNote - res://C:\PROGRA~2\MICROS~1\Office15\ONBttnIE.dll/105
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra button: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O9 - Extra 'Tools' menuitem: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files (x86)\Microsoft Office\Office15\MSOSB.DLL
O18 - Filter hijack: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: ASLDR Service (ASLDRService) - ASUSTek Computer Inc. - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
O23 - Service: Asus WebStorage Windows Service - ASUS Cloud Corporation - C:\Program Files (x86)\ASUS\WebStorage\2.1.11.399\AsusWSWinService.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
O23 - Service: @oem25.inf,%BlueBcmBtRSupport.SVCNAME%;Bluetooth Driver Management Service (BcmBtRSupport) - Unknown owner - C:\Windows\system32\BtwRSupportService.exe (file missing)
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\Windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: Disc Soft Lite Bus Service - Disc Soft Ltd - C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: GamesAppIntegrationService - WildTangent - C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe
O23 - Service: GamesAppService - WildTangent, Inc. - C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\TXE Components\TCS\SocketHeciServer.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 9766 bytes

======Listing Processes======





wininit.exe


winlogon.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe"
C:\Windows\system32\WLANExt.exe 790247368960
\??\C:\Windows\system32\conhost.exe 0x4
"C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe"
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\ASUS\WebStorage\2.1.11.399\AsusWSWinService.exe"
"C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe"
C:\Windows\System32\svchost.exe -k utcsvc
dashost.exe {ea68b7fe-0987-441d-aa297dbabd33dc35}
"C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe"
"C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe"
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe"
"C:\Program Files (x86)\ASUS\Splendid\ACMON.exe"
taskhostex.exe
"C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe"
C:\Windows\Explorer.EXE
KBFiltr.exe
"C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe"

"C:\Windows\system32\igfxsrvc.exe" -Embedding
"C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLoader.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPCenter.exe"
"C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPHelper.exe"
C:\Windows\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
"C:\Windows\system32\GWX\GWX.exe"
"C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe"
"C:\Program Files\WIDCOMM\Bluetooth Software\BtStackServer.exe" -Embedding
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Program Files (x86)\Microsoft Office\Office15\ONENOTEM.EXE" /tsr
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /MAXX4
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Windows\SysWOW64\RunDll32.exe" "C:\Program Files\WIDCOMM\Bluetooth Software\SysWOW64\BtMmHook.dll",SetAndWaitBtMmHook
"C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
/S

"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe2_ Global\UsGthrCtrlFltPipeMssGthrPipe2 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 556 560 568 65536 564
"C:\Users\vladovladis\Desktop\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe

======Scheduled tasks folder======

C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineCore1d091868373629d.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\Windows\tasks\GoogleUpdateTaskMachineUA1d091868430e8d1.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Lync Browser Helper - C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2012-10-01 205416]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~1\Office15\URLREDIR.DLL [2012-10-01 877720]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~1\MICROS~1\Office15\GROOVEEX.DLL [2012-10-01 2322576]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Lync Browser Helper - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2012-10-01 139368]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_51\bin\ssv.dll [2015-07-16 460384]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office15\URLREDIR.DLL [2012-10-01 704664]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~2\MICROS~1\Office15\GROOVEEX.DLL [2012-10-01 1720976]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_51\bin\jp2ssv.dll [2015-07-16 172640]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2014-02-19 391152]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2014-02-19 771568]
"egui"=C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [2015-01-28 5595848]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2015-04-23 8204056]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\DTLite.exe [2015-02-27 5583120]
"VideoDownloaderUltimate"=C:\ProgramData\VideoDownloaderUltimateWinApp\VideoDownloaderUltimate.exe /repair []

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"WebStorage"=C:\Program Files (x86)\ASUS\WebStorage\2.1.11.399\ASUSWSLoader.exe [2014-08-20 63296]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2015-06-08 334896]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe

C:\Users\vladovladis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Send to OneNote.lnk - C:\Program Files (x86)\Microsoft Office\Office15\ONENOTEM.EXE

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2014-01-16 624640]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iaioi2ce.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mcpltsvc]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"SoftwareSASGeneration"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2015-08-10 21:03:13 ----D---- C:\AdwCleaner
2015-07-28 13:36:57 ----D---- C:\rsit
2015-07-28 09:31:34 ----A---- C:\Windows\system32\appraiser.dll
2015-07-23 08:41:53 ----D---- C:\Program Files (x86)\Adobe
2015-07-23 08:41:20 ----D---- C:\ProgramData\Adobe
2015-07-22 10:41:07 ----A---- C:\Windows\system32\generaltel.dll
2015-07-22 10:41:07 ----A---- C:\Windows\system32\aeinv.dll
2015-07-22 10:41:06 ----A---- C:\Windows\system32\invagent.dll
2015-07-22 10:41:06 ----A---- C:\Windows\system32\devinv.dll
2015-07-22 10:41:06 ----A---- C:\Windows\system32\CompatTelRunner.exe
2015-07-22 10:41:06 ----A---- C:\Windows\system32\acmigration.dll
2015-07-22 10:41:05 ----A---- C:\Windows\system32\aepdu.dll
2015-07-21 07:29:43 ----A---- C:\Windows\SYSWOW64\atmlib.dll
2015-07-21 07:29:43 ----A---- C:\Windows\SYSWOW64\atmfd.dll
2015-07-21 07:29:43 ----A---- C:\Windows\system32\atmlib.dll
2015-07-21 07:29:43 ----A---- C:\Windows\system32\atmfd.dll
2015-07-19 18:52:18 ----D---- C:\Users\vladovladis\AppData\Roaming\FastStone
2015-07-19 18:52:00 ----D---- C:\Program Files (x86)\FastStone Image Viewer
2015-07-15 20:44:02 ----A---- C:\Windows\system32\WiFiDisplay.dll
2015-07-15 20:44:01 ----A---- C:\Windows\system32\profsvc.dll
2015-07-15 20:44:00 ----A---- C:\Windows\SYSWOW64\GeofenceMonitorService.dll
2015-07-15 20:44:00 ----A---- C:\Windows\system32\GeofenceMonitorService.dll
2015-07-15 20:43:58 ----A---- C:\Windows\system32\shell32.dll
2015-07-15 20:43:55 ----A---- C:\Windows\SYSWOW64\shell32.dll
2015-07-15 20:43:54 ----A---- C:\Windows\system32\ExplorerFrame.dll
2015-07-15 20:43:53 ----A---- C:\Windows\SYSWOW64\ExplorerFrame.dll
2015-07-15 20:43:46 ----A---- C:\Windows\system32\drivers\usb8023.sys
2015-07-15 20:43:46 ----A---- C:\Windows\system32\drivers\sermouse.sys
2015-07-15 20:43:46 ----A---- C:\Windows\system32\drivers\mouhid.sys
2015-07-15 20:43:46 ----A---- C:\Windows\system32\drivers\mouclass.sys
2015-07-15 20:43:46 ----A---- C:\Windows\system32\drivers\kbdhid.sys
2015-07-15 20:43:46 ----A---- C:\Windows\system32\drivers\kbdclass.sys
2015-07-15 20:43:46 ----A---- C:\Windows\system32\drivers\i8042prt.sys
2015-07-15 20:43:46 ----A---- C:\Windows\system32\drivers\bthport.sys
2015-07-15 20:43:45 ----A---- C:\Windows\system32\fhcpl.dll
2015-07-15 20:43:44 ----A---- C:\Windows\SYSWOW64\WSShared.dll
2015-07-15 20:43:44 ----A---- C:\Windows\system32\WSShared.dll
2015-07-15 20:43:43 ----A---- C:\Windows\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2015-07-15 20:43:43 ----A---- C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2015-07-15 20:43:42 ----A---- C:\Windows\SYSWOW64\msftedit.dll
2015-07-15 20:43:42 ----A---- C:\Windows\system32\msftedit.dll
2015-07-15 20:43:40 ----A---- C:\Windows\system32\SystemEventsBrokerServer.dll
2015-07-15 20:43:39 ----A---- C:\Windows\SYSWOW64\Windows.Data.Pdf.dll
2015-07-15 20:43:39 ----A---- C:\Windows\system32\Windows.Data.Pdf.dll
2015-07-15 15:11:17 ----A---- C:\Windows\system32\win32k.sys
2015-07-15 15:11:15 ----A---- C:\Windows\SYSWOW64\authui.dll
2015-07-15 15:11:15 ----A---- C:\Windows\system32\msi.dll
2015-07-15 15:11:15 ----A---- C:\Windows\system32\authui.dll
2015-07-15 15:11:14 ----A---- C:\Windows\SYSWOW64\msiexec.exe
2015-07-15 15:11:14 ----A---- C:\Windows\SYSWOW64\msi.dll
2015-07-15 15:11:14 ----A---- C:\Windows\system32\msiexec.exe
2015-07-15 15:11:11 ----A---- C:\Windows\system32\rpcrt4.dll
2015-07-15 15:11:11 ----A---- C:\Windows\system32\msv1_0.dll
2015-07-15 15:11:11 ----A---- C:\Windows\system32\kerberos.dll
2015-07-15 15:11:11 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2015-07-15 15:11:10 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2015-07-15 15:11:10 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2015-07-15 15:11:10 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2015-07-15 15:11:10 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2015-07-15 15:11:10 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2015-07-15 15:11:10 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2015-07-15 15:11:09 ----A---- C:\Windows\SYSWOW64\certcli.dll
2015-07-15 15:11:09 ----A---- C:\Windows\system32\lsasrv.dll
2015-07-15 15:11:09 ----A---- C:\Windows\system32\certcli.dll
2015-07-15 15:10:45 ----A---- C:\Windows\system32\werdiagcontroller.dll
2015-07-15 15:10:45 ----A---- C:\Windows\system32\audiosrv.dll
2015-07-15 15:10:45 ----A---- C:\Windows\system32\AudioEndpointBuilder.dll
2015-07-15 15:10:42 ----A---- C:\Windows\system32\jscript9.dll
2015-07-15 15:10:39 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2015-07-15 15:10:34 ----A---- C:\Windows\SYSWOW64\wups.dll
2015-07-15 15:10:34 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2015-07-15 15:10:34 ----A---- C:\Windows\system32\wuaueng.dll
2015-07-15 15:10:34 ----A---- C:\Windows\system32\wuapp.exe
2015-07-15 15:10:34 ----A---- C:\Windows\system32\wuapi.dll
2015-07-15 15:10:33 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2015-07-15 15:10:33 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2015-07-15 15:10:33 ----A---- C:\Windows\system32\wucltux.dll
2015-07-15 15:10:33 ----A---- C:\Windows\system32\wuauclt.exe
2015-07-15 15:10:33 ----A---- C:\Windows\system32\WinSetupUI.dll
2015-07-15 15:10:32 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2015-07-15 15:10:32 ----A---- C:\Windows\system32\wuwebv.dll
2015-07-15 15:10:32 ----A---- C:\Windows\system32\WUSettingsProvider.dll
2015-07-15 15:10:32 ----A---- C:\Windows\system32\wups.dll
2015-07-15 15:10:32 ----A---- C:\Windows\system32\wudriver.dll
2015-07-15 15:10:31 ----A---- C:\Windows\system32\wups2.dll
2015-07-15 15:09:49 ----A---- C:\Windows\system32\mshtml.dll
2015-07-15 15:09:48 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2015-07-15 15:09:18 ----A---- C:\Windows\system32\ieframe.dll
2015-07-15 15:09:15 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2015-07-15 15:09:12 ----A---- C:\Windows\system32\urlmon.dll
2015-07-15 15:09:12 ----A---- C:\Windows\system32\iertutil.dll
2015-07-15 15:09:11 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2015-07-15 15:09:11 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2015-07-15 15:08:56 ----A---- C:\Windows\system32\actxprxy.dll
2015-07-15 15:08:55 ----A---- C:\Windows\system32\wininet.dll
2015-07-15 15:08:54 ----A---- C:\Windows\SYSWOW64\wininet.dll
2015-07-15 15:08:53 ----A---- C:\Windows\SYSWOW64\actxprxy.dll
2015-07-15 15:08:52 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2015-07-15 15:08:52 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2015-07-15 15:08:52 ----A---- C:\Windows\system32\vbscript.dll
2015-07-15 15:08:52 ----A---- C:\Windows\system32\MshtmlDac.dll
2015-07-15 15:08:52 ----A---- C:\Windows\system32\ieui.dll
2015-07-15 15:08:52 ----A---- C:\Windows\system32\ieapfltr.dll
2015-07-15 15:08:51 ----A---- C:\Windows\SYSWOW64\msrating.dll
2015-07-15 15:08:51 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2015-07-15 15:08:51 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2015-07-15 15:08:51 ----A---- C:\Windows\SYSWOW64\ieui.dll
2015-07-15 15:08:51 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2015-07-15 15:08:51 ----A---- C:\Windows\system32\msfeeds.dll
2015-07-15 15:08:50 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2015-07-15 15:08:50 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2015-07-15 15:08:50 ----A---- C:\Windows\SYSWOW64\inetcomm.dll
2015-07-15 15:08:50 ----A---- C:\Windows\system32\webcheck.dll
2015-07-15 15:08:50 ----A---- C:\Windows\system32\msrating.dll
2015-07-15 15:08:50 ----A---- C:\Windows\system32\mshtmled.dll
2015-07-15 15:08:50 ----A---- C:\Windows\system32\inetcomm.dll
2015-07-15 15:08:50 ----A---- C:\Windows\system32\dxtrans.dll
2015-07-15 15:08:49 ----A---- C:\Windows\SYSWOW64\jscript.dll
2015-07-15 15:08:49 ----A---- C:\Windows\SYSWOW64\iepeers.dll
2015-07-15 15:08:49 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2015-07-15 15:08:49 ----A---- C:\Windows\system32\jscript.dll
2015-07-15 15:08:49 ----A---- C:\Windows\system32\iepeers.dll
2015-07-15 15:08:29 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2015-07-15 15:08:29 ----A---- C:\Windows\system32\gdi32.dll
2015-07-15 15:08:26 ----A---- C:\Windows\SYSWOW64\ole32.dll
2015-07-15 15:08:26 ----A---- C:\Windows\system32\ole32.dll
2015-07-15 15:08:25 ----A---- C:\Windows\system32\apphelp.dll

======List of files/folders modified in the last 1 month======

2015-08-10 21:20:22 ----D---- C:\Program Files\trend micro
2015-08-10 21:10:22 ----D---- C:\Windows\Prefetch
2015-08-10 21:08:29 ----AD---- C:\Windows\Temp
2015-08-10 21:08:28 ----D---- C:\Windows\system32\catroot
2015-08-10 21:08:27 ----D---- C:\Windows\system32\DriverStore
2015-08-10 21:08:27 ----D---- C:\Windows\Inf
2015-08-10 21:05:14 ----HD---- C:\ProgramData
2015-08-10 21:00:00 ----D---- C:\Windows\system32\sru
2015-08-10 20:32:51 ----D---- C:\Users\vladovladis\AppData\Roaming\uTorrent
2015-08-10 18:24:02 ----D---- C:\Windows\system32\Tasks
2015-08-09 08:05:04 ----D---- C:\Windows\system32\config
2015-08-08 06:58:03 ----D---- C:\Windows\WinSxS
2015-08-08 06:57:21 ----D---- C:\Windows\system32\catroot2
2015-08-08 06:49:12 ----D---- C:\Windows\Microsoft.NET
2015-08-08 05:20:38 ----HD---- C:\Program Files\WindowsApps
2015-08-08 05:10:26 ----D---- C:\Windows\AppReadiness
2015-07-28 13:52:38 ----D---- C:\Windows\SoftwareDistribution
2015-07-28 13:52:38 ----AD---- C:\Windows
2015-07-28 13:43:43 ----SHD---- C:\Windows\Installer
2015-07-28 13:15:53 ----D---- C:\Windows\debug
2015-07-28 09:55:19 ----D---- C:\Windows\CbsTemp
2015-07-28 09:54:18 ----D---- C:\Windows\System32
2015-07-28 09:54:00 ----SHD---- C:\System Volume Information
2015-07-28 08:36:37 ----D---- C:\Windows\Panther
2015-07-28 08:30:02 ----HD---- C:\$Windows.~BT
2015-07-28 06:39:14 ----D---- C:\Windows\Logs
2015-07-27 09:17:44 ----RSD---- C:\Windows\assembly
2015-07-25 07:21:14 ----SD---- C:\Windows\system32\GWX
2015-07-25 07:14:31 ----D---- C:\Windows\system32\drivers
2015-07-25 07:13:17 ----SD---- C:\Windows\system32\CompatTel
2015-07-25 07:13:17 ----D---- C:\Windows\system32\wbem
2015-07-25 07:13:17 ----D---- C:\Windows\system32\appraiser
2015-07-25 07:13:17 ----D---- C:\Windows\apppatch
2015-07-24 20:33:01 ----D---- C:\Windows\system32\MRT
2015-07-23 08:50:17 ----D---- C:\Windows\SysWOW64
2015-07-23 08:45:40 ----D---- C:\Users\vladovladis\AppData\Roaming\Adobe
2015-07-23 08:43:11 ----SD---- C:\Users\vladovladis\AppData\Roaming\Microsoft
2015-07-23 08:41:53 ----RD---- C:\Program Files (x86)
2015-07-23 08:41:53 ----D---- C:\Program Files (x86)\Common Files
2015-07-22 12:17:00 ----D---- C:\Windows\rescache
2015-07-21 22:51:34 ----D---- C:\Windows\WinStore
2015-07-21 22:51:31 ----RD---- C:\Windows\ToastData
2015-07-16 17:26:22 ----D---- C:\Windows\Tasks
2015-07-16 16:57:17 ----D---- C:\ProgramData\Oracle
2015-07-16 16:55:53 ----D---- C:\Program Files (x86)\Java
2015-07-16 16:54:33 ----A---- C:\Windows\SYSWOW64\WindowsAccessBridge-32.dll
2015-07-15 19:35:59 ----SD---- C:\Windows\SYSWOW64\GWX
2015-07-15 19:35:59 ----D---- C:\Windows\system32\sk-SK
2015-07-15 19:35:57 ----D---- C:\Windows\system32\CodeIntegrity
2015-07-15 19:35:56 ----D---- C:\Program Files\Internet Explorer
2015-07-15 19:35:56 ----D---- C:\Program Files (x86)\Internet Explorer
2015-07-13 23:10:13 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 edevmon;edevmon; C:\Windows\system32\DRIVERS\edevmon.sys [2015-03-10 241880]
R0 MBI;@oem8.inf,%MBI.SVCDESC%;Intel(R) Sideband Fabric Device Service; C:\Windows\System32\drivers\MBI.sys [2013-10-28 29464]
R1 ATKWMIACPIIO;ATKWMIACPI Driver; \??\C:\Program Files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys [2013-07-02 19768]
R1 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys [2015-03-10 246000]
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2015-03-10 169792]
R1 vwififlt;@%SystemRoot%\System32\drivers\vwififlt.sys,-259; C:\Windows\system32\DRIVERS\vwififlt.sys [2014-10-29 71680]
R2 ASMMAP64;ASMMAP64; \??\C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys [2009-07-02 15416]
R2 epfwwfpr;epfwwfpr; C:\Windows\system32\DRIVERS\epfwwfpr.sys [2015-03-10 159480]
R3 AiCharger;ASUS Charger Driver; C:\Windows\system32\DRIVERS\AiCharger.sys [2014-03-27 17152]
R3 ATP;@oem17.inf,%PS2.DeviceDesc%;ASUS Input Device; C:\Windows\System32\drivers\AsusTP.sys [2014-03-31 71952]
R3 bcbtums;@oem25.inf,%BCBTUMS.SvcDesc%;Bluetooth RAM Firmware Download USB Filter; C:\Windows\system32\drivers\bcbtums.sys [2013-11-14 170712]
R3 BCM43XX;@oem20.inf,%BCM43XX_Service_DispName%;Broadcom 802.11 Network Adapter Driver; C:\Windows\system32\DRIVERS\bcmwl63a.sys [2014-12-23 7546544]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Bluetooth Enumerator Service; C:\Windows\System32\drivers\BthEnum.sys [2014-10-29 53248]
R3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\Windows\system32\DRIVERS\BthLEEnum.sys [2014-03-18 226304]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2014-10-29 118272]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Bluetooth Radio USB Driver; C:\Windows\System32\Drivers\BTHUSB.sys [2014-10-29 81920]
R3 btwampfl;@oem25.inf,%btwampfl.ServiceName%;btwampfl; C:\Windows\system32\DRIVERS\btwampfl.sys [2014-02-03 166616]
R3 btwaudio;@oem21.inf,%btaudio.SvcDesc%;Bluetooth Audio Device Service; C:\Windows\system32\drivers\btwaudio.sys [2014-03-19 190168]
R3 btwavdt;@oem22.inf,%btwavdt.SVCDESC%;Bluetooth AVDT Service; C:\Windows\system32\drivers\btwavdt.sys [2014-03-19 229080]
R3 btwl2cap;@oem24.inf,%btwl2cap.SVCDESC%;Bluetooth L2CAP Service; C:\Windows\system32\DRIVERS\btwl2cap.sys [2012-07-27 40248]
R3 dtlitescsibus;@oem33.inf,%DTLITESCSIBUS.DeviceDesc%;DAEMON Tools Lite Virtual SCSI Bus; C:\Windows\System32\drivers\dtlitescsibus.sys [2015-05-22 30352]
R3 GPIO;@oem10.inf,%GPIO.SVCDESC%;Intel SoC GPIO Controller Driver; C:\Windows\System32\drivers\iaiogpioe.sys [2013-11-11 31232]
R3 HIDSwitch;@oem28.inf,%ASSW.DisplayName%;ASUS Wireless Radio Control; C:\Windows\System32\drivers\AsHIDSwitch64.sys [2013-10-08 20280]
R3 iaioi2c;@oem9.inf,%Driver_Service.Desc%;I2C Controller Service; C:\Windows\System32\drivers\iaioi2ce.sys [2013-11-11 67584]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2014-01-16 4222976]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2015-05-19 4466392]
R3 IntcDAud;@oem12.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\Windows\system32\DRIVERS\IntcDAud.sys [2014-01-16 450520]
R3 iwdbus;@oem15.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\Windows\System32\drivers\iwdbus.sys [2013-12-27 27032]
R3 kbfiltr;@oem27.inf,%kbfiltr.SvcDesc%;Keyboard Filter; C:\Windows\System32\drivers\kbfiltr.sys [2012-08-06 17280]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\System32\drivers\rfcomm.sys [2015-01-30 167424]
R3 RSBASTOR;@oem19.inf,%Rts5208%;Realtek PCIE CardReader Driver - BA; C:\Windows\system32\DRIVERS\RtsBaStor.sys [2013-07-12 309976]
R3 RTL8168;@oem18.inf,%rtl8168.Service.DispName%;Realtek 8168 NT Driver; C:\Windows\system32\DRIVERS\Rt630x64.sys [2014-01-08 848088]
R3 TXEIx64;@oem11.inf,%TEE_SvcDesc%;Intel(R) Trusted Execution Engine Interface ; C:\Windows\System32\drivers\TXEIx64.sys [2014-01-15 88592]
R3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;USB Video Device (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2014-06-21 212736]
R3 vwifimp;@%SystemRoot%\System32\drivers\vwifimp.sys,-261; C:\Windows\system32\DRIVERS\vwifimp.sys [2014-10-29 38912]
S0 iaStorA;iaStorA; C:\Windows\System32\drivers\iaStorA.sys [2014-06-26 670056]
S3 AgereSoftModem;@mdmags64.inf,%FullProductName%;Agere Systems Soft Modem; C:\Windows\system32\DRIVERS\agrsm64.sys [2013-06-18 1146880]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Bluetooth Port Driver; C:\Windows\System32\Drivers\BTHport.sys [2015-05-11 1201664]
S3 btwrchid;btwrchid; C:\Windows\System32\drivers\btwrchid.sys [2014-03-19 38616]
S3 dg_ssudbus;@oem34.inf,%ssud.Service.DeviceDesc%;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudbus.sys [2014-01-22 108800]
S3 e1iexpress;@net1ic64.inf,%e1iExpress.Service.DispName%;Intel(R) PRO/1000 PCI Express Network Connection Driver I; C:\Windows\system32\DRIVERS\e1i63x64.sys [2013-06-18 460288]
S3 intaud_WaveExtensible;@oem14.inf,%INTAUD_WEX.SvcDesc%;Intel WiDi Audio Device; C:\Windows\system32\drivers\intelaud.sys [2013-12-27 38296]
S3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\Windows\system32\drivers\MBAMSwissArmy.sys []
S3 NETwNs64;@netwsw00.inf,___ %NIC_Service_DispName_WIN7_64%;___ Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows 7 - 64 Bit; C:\Windows\system32\DRIVERS\Netwsw00.sys [2013-06-18 11518976]
S3 ssudmdm;@oem36.inf,%ssud.Service.Name%;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudmdm.sys [2014-01-22 206080]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2015-07-07 82128]
R2 ASLDRService;ASLDR Service; C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe [2014-03-26 115512]
R2 Asus WebStorage Windows Service;Asus WebStorage Windows Service; C:\Program Files (x86)\ASUS\WebStorage\2.1.11.399\AsusWSWinService.exe [2014-08-20 71168]
R2 ATKGFNEXSrv;ATKGFNEX Service; C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe [2011-11-21 96896]
R2 btwdins;Bluetooth Service; C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe [2014-03-18 976600]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2014-10-29 38792]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe [2015-01-28 1349576]
R2 GamesAppIntegrationService;GamesAppIntegrationService; C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe [2014-04-24 227904]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe [2013-07-01 733696]
S2 BcmBtRSupport;@oem25.inf,%BlueBcmBtRSupport.SVCNAME%;Bluetooth Driver Management Service; C:\Windows\system32\BtwRSupportService.exe [2013-11-14 2251992]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-05-18 107848]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2014-04-03 315008]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\Windows\System32\svchost.exe [2014-10-29 38792]
S3 cphs;Intel(R) Content Protection HECI Service; C:\Windows\SysWow64\IntelCpHeciSvc.exe [2014-02-19 279024]
S3 Disc Soft Lite Bus Service;Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe [2015-02-27 1272592]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2014-03-18 43696]
S3 GamesAppService;GamesAppService; C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe [2014-04-24 203344]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-05-18 107848]
S3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2012-04-24 169752]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\TXE Components\TCS\SocketHeciServer.exe [2013-07-01 822232]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2012-10-01 150648]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119675
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Zamrza notebook

#6 Příspěvek od Rudy »

Stáhněte OTM: http://oldtimer.geekstogo.com/OTM.exe a uložte na plochu. Spusťte a do levého okna zkopírujte:
:files
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore1d091868373629d.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA1d091868430e8d1.job

:reg
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"SunJavaUpdateSched"=-

:commands
[Purity]
[Emptytemp]
[Emptyflash]
a klikněte na >MoveIt!<. Po skenu restartujte PC a dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

roskild
Návštěvník
Návštěvník
Příspěvky: 299
Registrován: 05 říj 2008 08:57

Re: Zamrza notebook

#7 Příspěvek od roskild »

Logfile of random's system information tool 1.10 (written by random/random)
Run by vladovladis at 2015-08-11 16:54:29
Microsoft Windows 8.1 so službou Bing
System drive C: has 133 GB (70%) free of 191 GB
Total RAM: 3983 MB (76% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 16:54:34, on 11.8.2015
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17840)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
C:\Program Files (x86)\ASUS\WebStorage\2.1.11.399\ASUSWSLoader.exe
C:\Program Files (x86)\Microsoft Office\Office15\ONENOTEM.EXE
C:\Program Files\trend micro\vladovladis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://asus13.msn.com/?pc=ASJB
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://asus13.msn.com/?pc=ASJB
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe,
O2 - BHO: Lync Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_51\bin\ssv.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office15\URLREDIR.DLL
O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\PROGRA~2\MICROS~1\Office15\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_51\bin\jp2ssv.dll
O4 - HKLM\..\Run: [WebStorage] C:\Program Files (x86)\ASUS\WebStorage\2.1.11.399\ASUSWSLoader.exe
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [VideoDownloaderUltimate] C:\ProgramData\VideoDownloaderUltimateWinApp\VideoDownloaderUltimate.exe /repair
O4 - Startup: Send to OneNote.lnk = C:\Program Files (x86)\Microsoft Office\Office15\ONENOTEM.EXE
O4 - Global Startup: Bluetooth.lnk = ?
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Se&nd to OneNote - res://C:\PROGRA~2\MICROS~1\Office15\ONBttnIE.dll/105
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra button: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O9 - Extra 'Tools' menuitem: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files (x86)\Microsoft Office\Office15\MSOSB.DLL
O18 - Filter hijack: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: ASLDR Service (ASLDRService) - ASUSTek Computer Inc. - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
O23 - Service: Asus WebStorage Windows Service - ASUS Cloud Corporation - C:\Program Files (x86)\ASUS\WebStorage\2.1.11.399\AsusWSWinService.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
O23 - Service: @oem25.inf,%BlueBcmBtRSupport.SVCNAME%;Bluetooth Driver Management Service (BcmBtRSupport) - Unknown owner - C:\Windows\system32\BtwRSupportService.exe (file missing)
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\Windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: Disc Soft Lite Bus Service - Disc Soft Ltd - C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: GamesAppIntegrationService - WildTangent - C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe
O23 - Service: GamesAppService - WildTangent, Inc. - C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\TXE Components\TCS\SocketHeciServer.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 9627 bytes

======Listing Processes======





wininit.exe


winlogon.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe"
C:\Windows\system32\WLANExt.exe 775167117568
\??\C:\Windows\system32\conhost.exe 0x4
"C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe"
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\ASUS\WebStorage\2.1.11.399\AsusWSWinService.exe"
"C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe"
C:\Windows\System32\svchost.exe -k utcsvc
dashost.exe {ef03cc14-ac20-40a0-8ed49e454ddeed0a}
"C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe"
"C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe"
"C:\Program Files (x86)\Skype\Updater\Updater.exe"
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Windows\servicing\TrustedInstaller.exe
C:\Windows\winsxs\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.3.9600.17709_none_fa7932f59afc2e40\TiWorker.exe -Embedding
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe"
taskeng.exe {521B5715-5A9C-4B9C-BEF4-BF9F34474C17}
taskhostex.exe
"C:\Program Files (x86)\ASUS\Splendid\ACMON.exe"
"C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe"
C:\Windows\Explorer.EXE
KBFiltr.exe
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
"C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe"
"C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLoader.exe"
C:\Windows\system32\wbem\wmiprvse.exe

"C:\Windows\system32\igfxsrvc.exe" -Embedding
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe1_ Global\UsGthrCtrlFltPipeMssGthrPipe1 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 560 564 572 65536 568
"C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPCenter.exe"
"C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPHelper.exe"
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
"C:\Windows\system32\GWX\GWX.exe"

"C:\Windows\System32\igfxtray.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
"C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe"
"C:\Program Files (x86)\ASUS\WebStorage\2.1.11.399\ASUSWSLoader.exe"
"C:\Program Files\WIDCOMM\Bluetooth Software\BtStackServer.exe" -Embedding
"C:\Program Files (x86)\Microsoft Office\Office15\ONENOTEM.EXE" /tsr
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /MAXX4
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s

"C:\Users\vladovladis\Desktop\RSITx64.exe"

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Lync Browser Helper - C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2012-10-01 205416]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~1\Office15\URLREDIR.DLL [2012-10-01 877720]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~1\MICROS~1\Office15\GROOVEEX.DLL [2012-10-01 2322576]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Lync Browser Helper - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2012-10-01 139368]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_51\bin\ssv.dll [2015-07-16 460384]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office15\URLREDIR.DLL [2012-10-01 704664]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~2\MICROS~1\Office15\GROOVEEX.DLL [2012-10-01 1720976]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_51\bin\jp2ssv.dll [2015-07-16 172640]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2014-02-19 391152]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2014-02-19 771568]
"egui"=C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [2015-01-28 5595848]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2015-04-23 8204056]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\DTLite.exe [2015-02-27 5583120]
"VideoDownloaderUltimate"=C:\ProgramData\VideoDownloaderUltimateWinApp\VideoDownloaderUltimate.exe /repair []

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"WebStorage"=C:\Program Files (x86)\ASUS\WebStorage\2.1.11.399\ASUSWSLoader.exe [2014-08-20 63296]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe

C:\Users\vladovladis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Send to OneNote.lnk - C:\Program Files (x86)\Microsoft Office\Office15\ONENOTEM.EXE

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2014-01-16 624640]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iaioi2ce.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mcpltsvc]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"SoftwareSASGeneration"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2015-08-11 16:51:52 ----D---- C:\_OTM
2015-08-10 21:03:13 ----D---- C:\AdwCleaner
2015-07-28 13:36:57 ----D---- C:\rsit
2015-07-28 09:31:34 ----A---- C:\Windows\system32\appraiser.dll
2015-07-23 08:41:53 ----D---- C:\Program Files (x86)\Adobe
2015-07-23 08:41:20 ----D---- C:\ProgramData\Adobe
2015-07-22 10:41:07 ----A---- C:\Windows\system32\generaltel.dll
2015-07-22 10:41:07 ----A---- C:\Windows\system32\aeinv.dll
2015-07-22 10:41:06 ----A---- C:\Windows\system32\invagent.dll
2015-07-22 10:41:06 ----A---- C:\Windows\system32\devinv.dll
2015-07-22 10:41:06 ----A---- C:\Windows\system32\CompatTelRunner.exe
2015-07-22 10:41:06 ----A---- C:\Windows\system32\acmigration.dll
2015-07-22 10:41:05 ----A---- C:\Windows\system32\aepdu.dll
2015-07-21 07:29:43 ----A---- C:\Windows\SYSWOW64\atmlib.dll
2015-07-21 07:29:43 ----A---- C:\Windows\SYSWOW64\atmfd.dll
2015-07-21 07:29:43 ----A---- C:\Windows\system32\atmlib.dll
2015-07-21 07:29:43 ----A---- C:\Windows\system32\atmfd.dll
2015-07-19 18:52:18 ----D---- C:\Users\vladovladis\AppData\Roaming\FastStone
2015-07-19 18:52:00 ----D---- C:\Program Files (x86)\FastStone Image Viewer
2015-07-15 20:44:02 ----A---- C:\Windows\system32\WiFiDisplay.dll
2015-07-15 20:44:01 ----A---- C:\Windows\system32\profsvc.dll
2015-07-15 20:44:00 ----A---- C:\Windows\SYSWOW64\GeofenceMonitorService.dll
2015-07-15 20:44:00 ----A---- C:\Windows\system32\GeofenceMonitorService.dll
2015-07-15 20:43:58 ----A---- C:\Windows\system32\shell32.dll
2015-07-15 20:43:55 ----A---- C:\Windows\SYSWOW64\shell32.dll
2015-07-15 20:43:54 ----A---- C:\Windows\system32\ExplorerFrame.dll
2015-07-15 20:43:53 ----A---- C:\Windows\SYSWOW64\ExplorerFrame.dll
2015-07-15 20:43:46 ----A---- C:\Windows\system32\drivers\usb8023.sys
2015-07-15 20:43:46 ----A---- C:\Windows\system32\drivers\sermouse.sys
2015-07-15 20:43:46 ----A---- C:\Windows\system32\drivers\mouhid.sys
2015-07-15 20:43:46 ----A---- C:\Windows\system32\drivers\mouclass.sys
2015-07-15 20:43:46 ----A---- C:\Windows\system32\drivers\kbdhid.sys
2015-07-15 20:43:46 ----A---- C:\Windows\system32\drivers\kbdclass.sys
2015-07-15 20:43:46 ----A---- C:\Windows\system32\drivers\i8042prt.sys
2015-07-15 20:43:46 ----A---- C:\Windows\system32\drivers\bthport.sys
2015-07-15 20:43:45 ----A---- C:\Windows\system32\fhcpl.dll
2015-07-15 20:43:44 ----A---- C:\Windows\SYSWOW64\WSShared.dll
2015-07-15 20:43:44 ----A---- C:\Windows\system32\WSShared.dll
2015-07-15 20:43:43 ----A---- C:\Windows\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2015-07-15 20:43:43 ----A---- C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2015-07-15 20:43:42 ----A---- C:\Windows\SYSWOW64\msftedit.dll
2015-07-15 20:43:42 ----A---- C:\Windows\system32\msftedit.dll
2015-07-15 20:43:40 ----A---- C:\Windows\system32\SystemEventsBrokerServer.dll
2015-07-15 20:43:39 ----A---- C:\Windows\SYSWOW64\Windows.Data.Pdf.dll
2015-07-15 20:43:39 ----A---- C:\Windows\system32\Windows.Data.Pdf.dll
2015-07-15 15:11:17 ----A---- C:\Windows\system32\win32k.sys
2015-07-15 15:11:15 ----A---- C:\Windows\SYSWOW64\authui.dll
2015-07-15 15:11:15 ----A---- C:\Windows\system32\msi.dll
2015-07-15 15:11:15 ----A---- C:\Windows\system32\authui.dll
2015-07-15 15:11:14 ----A---- C:\Windows\SYSWOW64\msiexec.exe
2015-07-15 15:11:14 ----A---- C:\Windows\SYSWOW64\msi.dll
2015-07-15 15:11:14 ----A---- C:\Windows\system32\msiexec.exe
2015-07-15 15:11:11 ----A---- C:\Windows\system32\rpcrt4.dll
2015-07-15 15:11:11 ----A---- C:\Windows\system32\msv1_0.dll
2015-07-15 15:11:11 ----A---- C:\Windows\system32\kerberos.dll
2015-07-15 15:11:11 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2015-07-15 15:11:10 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2015-07-15 15:11:10 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2015-07-15 15:11:10 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2015-07-15 15:11:10 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2015-07-15 15:11:10 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2015-07-15 15:11:10 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2015-07-15 15:11:09 ----A---- C:\Windows\SYSWOW64\certcli.dll
2015-07-15 15:11:09 ----A---- C:\Windows\system32\lsasrv.dll
2015-07-15 15:11:09 ----A---- C:\Windows\system32\certcli.dll
2015-07-15 15:10:45 ----A---- C:\Windows\system32\werdiagcontroller.dll
2015-07-15 15:10:45 ----A---- C:\Windows\system32\audiosrv.dll
2015-07-15 15:10:45 ----A---- C:\Windows\system32\AudioEndpointBuilder.dll
2015-07-15 15:10:42 ----A---- C:\Windows\system32\jscript9.dll
2015-07-15 15:10:39 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2015-07-15 15:10:34 ----A---- C:\Windows\SYSWOW64\wups.dll
2015-07-15 15:10:34 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2015-07-15 15:10:34 ----A---- C:\Windows\system32\wuaueng.dll
2015-07-15 15:10:34 ----A---- C:\Windows\system32\wuapp.exe
2015-07-15 15:10:34 ----A---- C:\Windows\system32\wuapi.dll
2015-07-15 15:10:33 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2015-07-15 15:10:33 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2015-07-15 15:10:33 ----A---- C:\Windows\system32\wucltux.dll
2015-07-15 15:10:33 ----A---- C:\Windows\system32\wuauclt.exe
2015-07-15 15:10:33 ----A---- C:\Windows\system32\WinSetupUI.dll
2015-07-15 15:10:32 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2015-07-15 15:10:32 ----A---- C:\Windows\system32\wuwebv.dll
2015-07-15 15:10:32 ----A---- C:\Windows\system32\WUSettingsProvider.dll
2015-07-15 15:10:32 ----A---- C:\Windows\system32\wups.dll
2015-07-15 15:10:32 ----A---- C:\Windows\system32\wudriver.dll
2015-07-15 15:10:31 ----A---- C:\Windows\system32\wups2.dll
2015-07-15 15:09:49 ----A---- C:\Windows\system32\mshtml.dll
2015-07-15 15:09:48 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2015-07-15 15:09:18 ----A---- C:\Windows\system32\ieframe.dll
2015-07-15 15:09:15 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2015-07-15 15:09:12 ----A---- C:\Windows\system32\urlmon.dll
2015-07-15 15:09:12 ----A---- C:\Windows\system32\iertutil.dll
2015-07-15 15:09:11 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2015-07-15 15:09:11 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2015-07-15 15:08:56 ----A---- C:\Windows\system32\actxprxy.dll
2015-07-15 15:08:55 ----A---- C:\Windows\system32\wininet.dll
2015-07-15 15:08:54 ----A---- C:\Windows\SYSWOW64\wininet.dll
2015-07-15 15:08:53 ----A---- C:\Windows\SYSWOW64\actxprxy.dll
2015-07-15 15:08:52 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2015-07-15 15:08:52 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2015-07-15 15:08:52 ----A---- C:\Windows\system32\vbscript.dll
2015-07-15 15:08:52 ----A---- C:\Windows\system32\MshtmlDac.dll
2015-07-15 15:08:52 ----A---- C:\Windows\system32\ieui.dll
2015-07-15 15:08:52 ----A---- C:\Windows\system32\ieapfltr.dll
2015-07-15 15:08:51 ----A---- C:\Windows\SYSWOW64\msrating.dll
2015-07-15 15:08:51 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2015-07-15 15:08:51 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2015-07-15 15:08:51 ----A---- C:\Windows\SYSWOW64\ieui.dll
2015-07-15 15:08:51 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2015-07-15 15:08:51 ----A---- C:\Windows\system32\msfeeds.dll
2015-07-15 15:08:50 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2015-07-15 15:08:50 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2015-07-15 15:08:50 ----A---- C:\Windows\SYSWOW64\inetcomm.dll
2015-07-15 15:08:50 ----A---- C:\Windows\system32\webcheck.dll
2015-07-15 15:08:50 ----A---- C:\Windows\system32\msrating.dll
2015-07-15 15:08:50 ----A---- C:\Windows\system32\mshtmled.dll
2015-07-15 15:08:50 ----A---- C:\Windows\system32\inetcomm.dll
2015-07-15 15:08:50 ----A---- C:\Windows\system32\dxtrans.dll
2015-07-15 15:08:49 ----A---- C:\Windows\SYSWOW64\jscript.dll
2015-07-15 15:08:49 ----A---- C:\Windows\SYSWOW64\iepeers.dll
2015-07-15 15:08:49 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2015-07-15 15:08:49 ----A---- C:\Windows\system32\jscript.dll
2015-07-15 15:08:49 ----A---- C:\Windows\system32\iepeers.dll
2015-07-15 15:08:29 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2015-07-15 15:08:29 ----A---- C:\Windows\system32\gdi32.dll
2015-07-15 15:08:26 ----A---- C:\Windows\SYSWOW64\ole32.dll
2015-07-15 15:08:26 ----A---- C:\Windows\system32\ole32.dll
2015-07-15 15:08:25 ----A---- C:\Windows\system32\apphelp.dll

======List of files/folders modified in the last 1 month======

2015-08-11 16:54:33 ----D---- C:\Program Files\trend micro
2015-08-11 16:53:34 ----AD---- C:\Windows\Temp
2015-08-11 16:53:02 ----AD---- C:\Windows
2015-08-11 16:51:53 ----D---- C:\Windows\Tasks
2015-08-11 16:51:25 ----D---- C:\Windows\Prefetch
2015-08-11 16:49:31 ----D---- C:\Windows\system32\sru
2015-08-10 21:08:28 ----D---- C:\Windows\system32\catroot
2015-08-10 21:08:27 ----D---- C:\Windows\system32\DriverStore
2015-08-10 21:08:27 ----D---- C:\Windows\Inf
2015-08-10 21:05:14 ----HD---- C:\ProgramData
2015-08-10 20:32:51 ----D---- C:\Users\vladovladis\AppData\Roaming\uTorrent
2015-08-10 18:24:02 ----D---- C:\Windows\system32\Tasks
2015-08-09 08:05:04 ----D---- C:\Windows\system32\config
2015-08-08 06:58:03 ----D---- C:\Windows\WinSxS
2015-08-08 06:57:21 ----D---- C:\Windows\system32\catroot2
2015-08-08 06:49:12 ----D---- C:\Windows\Microsoft.NET
2015-08-08 05:20:38 ----HD---- C:\Program Files\WindowsApps
2015-08-08 05:20:38 ----D---- C:\Windows\AppReadiness
2015-07-28 13:52:38 ----D---- C:\Windows\SoftwareDistribution
2015-07-28 13:43:43 ----SHD---- C:\Windows\Installer
2015-07-28 13:15:53 ----D---- C:\Windows\debug
2015-07-28 09:55:19 ----D---- C:\Windows\CbsTemp
2015-07-28 09:54:18 ----D---- C:\Windows\System32
2015-07-28 09:54:00 ----SHD---- C:\System Volume Information
2015-07-28 08:36:37 ----D---- C:\Windows\Panther
2015-07-28 08:30:02 ----HD---- C:\$Windows.~BT
2015-07-28 06:39:14 ----D---- C:\Windows\Logs
2015-07-27 09:17:44 ----RSD---- C:\Windows\assembly
2015-07-25 07:21:14 ----SD---- C:\Windows\system32\GWX
2015-07-25 07:14:31 ----D---- C:\Windows\system32\drivers
2015-07-25 07:13:17 ----SD---- C:\Windows\system32\CompatTel
2015-07-25 07:13:17 ----D---- C:\Windows\system32\wbem
2015-07-25 07:13:17 ----D---- C:\Windows\system32\appraiser
2015-07-25 07:13:17 ----D---- C:\Windows\apppatch
2015-07-24 20:33:01 ----D---- C:\Windows\system32\MRT
2015-07-23 08:50:17 ----D---- C:\Windows\SysWOW64
2015-07-23 08:45:40 ----D---- C:\Users\vladovladis\AppData\Roaming\Adobe
2015-07-23 08:43:11 ----SD---- C:\Users\vladovladis\AppData\Roaming\Microsoft
2015-07-23 08:41:53 ----RD---- C:\Program Files (x86)
2015-07-23 08:41:53 ----D---- C:\Program Files (x86)\Common Files
2015-07-22 12:17:00 ----D---- C:\Windows\rescache
2015-07-21 22:51:34 ----D---- C:\Windows\WinStore
2015-07-21 22:51:31 ----RD---- C:\Windows\ToastData
2015-07-16 16:57:17 ----D---- C:\ProgramData\Oracle
2015-07-16 16:55:53 ----D---- C:\Program Files (x86)\Java
2015-07-16 16:54:33 ----A---- C:\Windows\SYSWOW64\WindowsAccessBridge-32.dll
2015-07-15 19:35:59 ----SD---- C:\Windows\SYSWOW64\GWX
2015-07-15 19:35:59 ----D---- C:\Windows\system32\sk-SK
2015-07-15 19:35:57 ----D---- C:\Windows\system32\CodeIntegrity
2015-07-15 19:35:56 ----D---- C:\Program Files\Internet Explorer
2015-07-15 19:35:56 ----D---- C:\Program Files (x86)\Internet Explorer
2015-07-13 23:10:13 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 edevmon;edevmon; C:\Windows\system32\DRIVERS\edevmon.sys [2015-03-10 241880]
R0 MBI;@oem8.inf,%MBI.SVCDESC%;Intel(R) Sideband Fabric Device Service; C:\Windows\System32\drivers\MBI.sys [2013-10-28 29464]
R1 ATKWMIACPIIO;ATKWMIACPI Driver; \??\C:\Program Files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys [2013-07-02 19768]
R1 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys [2015-03-10 246000]
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2015-03-10 169792]
R1 vwififlt;@%SystemRoot%\System32\drivers\vwififlt.sys,-259; C:\Windows\system32\DRIVERS\vwififlt.sys [2014-10-29 71680]
R2 ASMMAP64;ASMMAP64; \??\C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys [2009-07-02 15416]
R2 epfwwfpr;epfwwfpr; C:\Windows\system32\DRIVERS\epfwwfpr.sys [2015-03-10 159480]
R3 AiCharger;ASUS Charger Driver; C:\Windows\system32\DRIVERS\AiCharger.sys [2014-03-27 17152]
R3 ATP;@oem17.inf,%PS2.DeviceDesc%;ASUS Input Device; C:\Windows\System32\drivers\AsusTP.sys [2014-03-31 71952]
R3 bcbtums;@oem25.inf,%BCBTUMS.SvcDesc%;Bluetooth RAM Firmware Download USB Filter; C:\Windows\system32\drivers\bcbtums.sys [2013-11-14 170712]
R3 BCM43XX;@oem20.inf,%BCM43XX_Service_DispName%;Broadcom 802.11 Network Adapter Driver; C:\Windows\system32\DRIVERS\bcmwl63a.sys [2014-12-23 7546544]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Bluetooth Enumerator Service; C:\Windows\System32\drivers\BthEnum.sys [2014-10-29 53248]
R3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\Windows\system32\DRIVERS\BthLEEnum.sys [2014-03-18 226304]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2014-10-29 118272]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Bluetooth Radio USB Driver; C:\Windows\System32\Drivers\BTHUSB.sys [2014-10-29 81920]
R3 btwampfl;@oem25.inf,%btwampfl.ServiceName%;btwampfl; C:\Windows\system32\DRIVERS\btwampfl.sys [2014-02-03 166616]
R3 btwaudio;@oem21.inf,%btaudio.SvcDesc%;Bluetooth Audio Device Service; C:\Windows\system32\drivers\btwaudio.sys [2014-03-19 190168]
R3 btwavdt;@oem22.inf,%btwavdt.SVCDESC%;Bluetooth AVDT Service; C:\Windows\system32\drivers\btwavdt.sys [2014-03-19 229080]
R3 btwl2cap;@oem24.inf,%btwl2cap.SVCDESC%;Bluetooth L2CAP Service; C:\Windows\system32\DRIVERS\btwl2cap.sys [2012-07-27 40248]
R3 dtlitescsibus;@oem33.inf,%DTLITESCSIBUS.DeviceDesc%;DAEMON Tools Lite Virtual SCSI Bus; C:\Windows\System32\drivers\dtlitescsibus.sys [2015-05-22 30352]
R3 GPIO;@oem10.inf,%GPIO.SVCDESC%;Intel SoC GPIO Controller Driver; C:\Windows\System32\drivers\iaiogpioe.sys [2013-11-11 31232]
R3 HIDSwitch;@oem28.inf,%ASSW.DisplayName%;ASUS Wireless Radio Control; C:\Windows\System32\drivers\AsHIDSwitch64.sys [2013-10-08 20280]
R3 iaioi2c;@oem9.inf,%Driver_Service.Desc%;I2C Controller Service; C:\Windows\System32\drivers\iaioi2ce.sys [2013-11-11 67584]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2014-01-16 4222976]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2015-05-19 4466392]
R3 IntcDAud;@oem12.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\Windows\system32\DRIVERS\IntcDAud.sys [2014-01-16 450520]
R3 iwdbus;@oem15.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\Windows\System32\drivers\iwdbus.sys [2013-12-27 27032]
R3 kbfiltr;@oem27.inf,%kbfiltr.SvcDesc%;Keyboard Filter; C:\Windows\System32\drivers\kbfiltr.sys [2012-08-06 17280]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\System32\drivers\rfcomm.sys [2015-01-30 167424]
R3 RSBASTOR;@oem19.inf,%Rts5208%;Realtek PCIE CardReader Driver - BA; C:\Windows\system32\DRIVERS\RtsBaStor.sys [2013-07-12 309976]
R3 RTL8168;@oem18.inf,%rtl8168.Service.DispName%;Realtek 8168 NT Driver; C:\Windows\system32\DRIVERS\Rt630x64.sys [2014-01-08 848088]
R3 TXEIx64;@oem11.inf,%TEE_SvcDesc%;Intel(R) Trusted Execution Engine Interface ; C:\Windows\System32\drivers\TXEIx64.sys [2014-01-15 88592]
R3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;USB Video Device (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2014-06-21 212736]
R3 vwifimp;@%SystemRoot%\System32\drivers\vwifimp.sys,-261; C:\Windows\system32\DRIVERS\vwifimp.sys [2014-10-29 38912]
S0 iaStorA;iaStorA; C:\Windows\System32\drivers\iaStorA.sys [2014-06-26 670056]
S3 AgereSoftModem;@mdmags64.inf,%FullProductName%;Agere Systems Soft Modem; C:\Windows\system32\DRIVERS\agrsm64.sys [2013-06-18 1146880]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Bluetooth Port Driver; C:\Windows\System32\Drivers\BTHport.sys [2015-05-11 1201664]
S3 btwrchid;btwrchid; C:\Windows\System32\drivers\btwrchid.sys [2014-03-19 38616]
S3 dg_ssudbus;@oem34.inf,%ssud.Service.DeviceDesc%;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudbus.sys [2014-01-22 108800]
S3 e1iexpress;@net1ic64.inf,%e1iExpress.Service.DispName%;Intel(R) PRO/1000 PCI Express Network Connection Driver I; C:\Windows\system32\DRIVERS\e1i63x64.sys [2013-06-18 460288]
S3 intaud_WaveExtensible;@oem14.inf,%INTAUD_WEX.SvcDesc%;Intel WiDi Audio Device; C:\Windows\system32\drivers\intelaud.sys [2013-12-27 38296]
S3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\Windows\system32\drivers\MBAMSwissArmy.sys []
S3 NETwNs64;@netwsw00.inf,___ %NIC_Service_DispName_WIN7_64%;___ Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows 7 - 64 Bit; C:\Windows\system32\DRIVERS\Netwsw00.sys [2013-06-18 11518976]
S3 ssudmdm;@oem36.inf,%ssud.Service.Name%;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudmdm.sys [2014-01-22 206080]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2015-07-07 82128]
R2 ASLDRService;ASLDR Service; C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe [2014-03-26 115512]
R2 Asus WebStorage Windows Service;Asus WebStorage Windows Service; C:\Program Files (x86)\ASUS\WebStorage\2.1.11.399\AsusWSWinService.exe [2014-08-20 71168]
R2 ATKGFNEXSrv;ATKGFNEX Service; C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe [2011-11-21 96896]
R2 btwdins;Bluetooth Service; C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe [2014-03-18 976600]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2014-10-29 38792]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe [2015-01-28 1349576]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe [2013-07-01 733696]
R2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2014-04-03 315008]
S2 BcmBtRSupport;@oem25.inf,%BlueBcmBtRSupport.SVCNAME%;Bluetooth Driver Management Service; C:\Windows\system32\BtwRSupportService.exe [2013-11-14 2251992]
S2 GamesAppIntegrationService;GamesAppIntegrationService; C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe [2014-04-24 227904]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-05-18 107848]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\Windows\System32\svchost.exe [2014-10-29 38792]
S3 cphs;Intel(R) Content Protection HECI Service; C:\Windows\SysWow64\IntelCpHeciSvc.exe [2014-02-19 279024]
S3 Disc Soft Lite Bus Service;Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe [2015-02-27 1272592]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2014-03-18 43696]
S3 GamesAppService;GamesAppService; C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe [2014-04-24 203344]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-05-18 107848]
S3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2012-04-24 169752]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\TXE Components\TCS\SocketHeciServer.exe [2013-07-01 822232]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2012-10-01 150648]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119675
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Zamrza notebook

#8 Příspěvek od Rudy »

Smazáno. Znovu spusťte OTM a klikněte na >CleanUp!<. OTM po sobě uklidí. Nakonec restartujte PC. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

roskild
Návštěvník
Návštěvník
Příspěvky: 299
Registrován: 05 říj 2008 08:57

Re: Zamrza notebook

#9 Příspěvek od roskild »

Rudy píše:Smazáno. Znovu spusťte OTM a klikněte na >CleanUp!<. OTM po sobě uklidí. Nakonec restartujte PC. Nastala nějaká změna?
Vykonané . . . zatial nezamrzol,dúfam,že to bude ok.Ďakujem za pomoc :)

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119675
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Zamrza notebook

#10 Příspěvek od Rudy »

Uvidíte sám. Případně se přihlašte. Nemáte zač! :)
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Odpovědět