Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

PC má vysokou aktivitu a problém s Operou

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
Antusek
Návštěvník
Návštěvník
Příspěvky: 510
Registrován: 17 úno 2007 20:54

PC má vysokou aktivitu a problém s Operou

#1 Příspěvek od Antusek »

Dobrý večer prosím o kontrolu logu a nejspíše pročištění PC. PC má dnes velkou aktivitu (červená kontrolka) jako by se něco stahovalo a také byl problém se spuštěním prohlížeče Opera dlouho se načítal - načetl částečně jen okno a pak program neodpovídá a zablokovalo se to. Restart nepomohl. Byla stále v paměti. Až na počtvrté zmizela. Ve správci úloh se sice podařilo duplicitní opery odstranit ale ta jedna zablokovaná nešla uzavřít.Tatínek tam má nějaké odkazy. Google chrome fungoval O.K i když při brouzdání se některé stránky také načítaly trochu pomaleji. Stále má PC velkou aktivitu. Dale je problém u Opery i chromu, že při brouzdání se někdy načítají několikrát do paměti až se to zpomalí a musí se to ve správci úloh odstraňovat. Používám Avast, ZoneAlarm, CC Cleaner. Při vytváření logu jsem ZoneAlarm vypnul.
Moc děkuji za rady. :) Nemůže tam být nějaká potvora nebo mi to někdz připadá jestli někdo na dálku nešpehuje (Google, Microsoft,...).

Posílám log z programu RSIT.

Logfile of random's system information tool 1.10 (written by random/random)
Run by kuku at 2016-02-18 18:31:27
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 324 GB (68%) free of 477 GB
Total RAM: 2558 MB (51% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 18:31:33, on 18.2.2016
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.18205)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\UVC Video Camera\UVCSti.exe
C:\Program Files\UVC Video Camera\EffectDir\UVCTray.exe
C:\Windows\system32\taskhost.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\EMET\EMET_notifier.exe
C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
C:\Aviry\Avast\AvastUI.exe
C:\Prográmky\PDF24\pdf24.exe
C:\Program Files\Real\RealPlayer\Update\realsched.exe
C:\Windows\system32\taskeng.exe
C:\Programy\HP\Digital Imaging\bin\hpqtra08.exe
C:\Aviry\CCleaner\CCleaner.exe
C:\Program Files\WinZip\FAHWindow32.exe
C:\Program Files\Real\RealPlayer\RPDS\Bin\rpsystray.exe
C:\Program Files\Secunia\PSI\psi_tray.exe
C:\Program Files\WinZip\WZUpdateNotifier.exe
C:\Program Files\WinZip\WzPreloader.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Programy\HP\Digital Imaging\bin\hpqSTE08.exe
C:\Programy\HP\Digital Imaging\bin\hpqbam08.exe
C:\Programy\HP\Digital Imaging\bin\hpqgpc01.exe
C:\Aviry\RSIT\RSIT.exe
C:\Program Files\trend micro\kuku.exe

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: RealNetworks Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Aviry\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [UVCSti] "C:\Program Files\UVC Video Camera\UVCSti.exe"
O4 - HKLM\..\Run: [RunUVC] "C:\Program Files\UVC Video Camera\EffectDir\UVCtray.exe"
O4 - HKLM\..\Run: [Apoint] C:\Program Files\DellTPad\Apoint.exe
O4 - HKLM\..\Run: [EMET Notifier] C:\Program Files\EMET\EMET_notifier.exe
O4 - HKLM\..\Run: [hpqSRMon] C:\Programy\HP\Digital Imaging\bin\hpqSRMon.exe
O4 - HKLM\..\Run: [LifeCam] "C:\Program Files\Microsoft LifeCam\LifeExp.exe"
O4 - HKLM\..\Run: [Logitech Download Assistant] C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Aviry\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [AdobeAAMUpdater-1.0] "C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
O4 - HKLM\..\Run: [PDFPrint] C:\Prográmky\PDF24\pdf24.exe
O4 - HKLM\..\Run: [TkBellExe] "c:\program files\real\realplayer\Update\realsched.exe" -osboot
O4 - HKLM\..\Run: [RealDownloader] C:\Program Files\RealNetworks\RealDownloader\downloader2.exe
O4 - HKLM\..\Run: [ZoneAlarm] "C:\Aviry\CheckPoint\ZoneAlarm\zatray.exe"
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Aviry\CCleaner\CCleaner.exe" /MONITOR
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [ZoneAlarm Windows 10 Upgrader] "C:\ProgramData\CheckPoint\ZoneAlarm\Data\Updates\unpacked==win10=update_win10.zip\upgrade.exe" /delay (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [ZoneAlarm Windows 10 Upgrader] "C:\ProgramData\CheckPoint\ZoneAlarm\Data\Updates\unpacked==win10=update_win10.zip\upgrade.exe" /delay (User 'Default user')
O4 - Global Startup: FAH.lnk = C:\Program Files\WinZip\FAHConsole.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Programy\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: RealPlayer Cloud Service UI.lnk = C:\Program Files\Real\RealPlayer\RPDS\Bin\rpsystray.exe
O4 - Global Startup: RealTimes.lnk = C:\Program Files\Real\RealPlayer\RPDS\Bin\rpsystray.exe
O4 - Global Startup: Secunia PSI Tray.lnk = C:\Program Files\Secunia\PSI\psi_tray.exe
O4 - Global Startup: Update Notifier.lnk = C:\Program Files\WinZip\WZUpdateNotifier.exe
O4 - Global Startup: WinZip Preloader.lnk = C:\Program Files\WinZip\WzPreloader.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\Programy\MICROS~1\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Free YouTube to MP3 Converter - C:\Users\kuku\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm
O9 - Extra button: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Programy\MICROS~1\OFFICE11\REFIEBAR.DLL
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: Adobe Active File Monitor V10 (AdobeActiveFileMonitor10.0) - Adobe Systems Incorporated - C:\Fotoeditory\Adobe Photoshop Elements 10\Elements 10 Organizer\PhotoshopElementsFileAgent.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Aviry\Avast\AvastSvc.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: RealPlayer Cloud Service - RealNetworks, Inc. - c:\program files\real\realplayer\RPDS\Bin\rpdsvc.exe
O23 - Service: RealPlayer Update Service (RealPlayerUpdateSvc) - Unknown owner - C:\Program Files\Real\UpdateService\RealPlayerUpdateSvc.exe
O23 - Service: RealTimes Desktop Service - RealNetworks, Inc. - c:\program files\real\realplayer\RPDS\Bin\rpdsvc.exe
O23 - Service: Secunia PSI Agent - Secunia - C:\Program Files\Secunia\PSI\PSIA.exe
O23 - Service: Secunia Update Agent - Secunia - C:\Program Files\Secunia\PSI\sua.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Check Point Software Technologies Ltd. - C:\Aviry\CheckPoint\ZoneAlarm\vsmon.exe
O23 - Service: ZoneAlarm Privacy Service (ZAPrivacyService) - Check Point Software Technologies, Ltd. - C:\Aviry\CheckPoint\ZoneAlarm\ZaPrivacyService.exe

--
End of file - 8000 bytes

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files\Google\Update\GoogleUpdate.exe /ua /installsource scheduler

=========Mozilla firefox=========

ProfilePath - C:\Users\kuku\AppData\Roaming\Mozilla\Firefox\Profiles\9x5re7vu.default

prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "about:home"
prefs.js - "keyword.URL" - "https://www.google.com/search"

"wrc@avast.com"=C:\Aviry\Avast\WebRep\FF
"smartwebprinting@hp.com"=C:\Programy\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
"{ABDE892B-13A8-4d1b-88E6-365A6E755758}"=C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext
"sp@avast.com"=C:\Aviry\Avast\SafePrice\FF


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 20.0.0.306 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF32_20_0_0_306.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.1.41212.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WLPG,version=16.4.3528.0331]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nppl3260;version=18.0.1.9]
"Description"=RealPlayer(tm) LiveConnect-Enabled Plug-In
"Path"=c:\program files\real\realplayer\Netscape6\nppl3260.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nprpplugin;version=18.0.1.9]
"Description"=RealTimes Download Plugin
"Path"=c:\program files\real\realplayer\Netscape6\nprpplugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.29.5\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.29.5\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll


C:\Users\kuku\AppData\Roaming\Mozilla\Firefox\Profiles\9x5re7vu.default\extensions\
donottrack@checkpoint.com
{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7}

C:\Users\kuku\AppData\Roaming\Mozilla\Firefox\Profiles\9x5re7vu.default\searchplugins\
Google.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3049C3E9-B461-4BC5-8870-4C09146192CA}]
RealNetworks Download and Record Plugin for Internet Explorer - C:\Program Files\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll [2015-06-17 513600]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Aviry\Avast\aswWebRepIE.dll [2016-02-18 678656]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"UVCSti"=C:\Program Files\UVC Video Camera\UVCSti.exe [2010-08-23 245760]
"RunUVC"=C:\Program Files\UVC Video Camera\EffectDir\UVCtray.exe [2010-08-23 7548928]
"Apoint"=C:\Program Files\DellTPad\Apoint.exe [2011-07-20 505720]
"EMET Notifier"=C:\Program Files\EMET\EMET_notifier.exe [2012-05-09 152152]
"hpqSRMon"=C:\Programy\HP\Digital Imaging\bin\hpqSRMon.exe [2008-07-22 150528]
"LifeCam"=C:\Program Files\Microsoft LifeCam\LifeExp.exe [2010-12-13 135536]
"Logitech Download Assistant"=C:\Windows\System32\LogiLDA.dll [2012-09-20 1425208]
"AvastUI.exe"=C:\Aviry\Avast\AvastUI.exe [2016-02-18 7139768]
"AdobeAAMUpdater-1.0"=C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe []
"PDFPrint"=C:\Prográmky\PDF24\pdf24.exe [2014-11-28 193568]
"TkBellExe"=c:\program files\real\realplayer\Update\realsched.exe [2015-07-01 286272]
"RealDownloader"=C:\Program Files\RealNetworks\RealDownloader\downloader2.exe [2015-06-16 608320]
"ZoneAlarm"=C:\Aviry\CheckPoint\ZoneAlarm\zatray.exe [2015-11-07 134792]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CCleaner Monitoring"=C:\Aviry\CCleaner\CCleaner.exe [2016-01-15 6628056]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
FAH.lnk - C:\Program Files\WinZip\FAHConsole.exe
HP Digital Imaging Monitor.lnk - C:\Programy\HP\Digital Imaging\bin\hpqtra08.exe
RealPlayer Cloud Service UI.lnk - C:\Program Files\Real\RealPlayer\RPDS\Bin\rpsystray.exe
RealTimes.lnk - C:\Program Files\Real\RealPlayer\RPDS\Bin\rpsystray.exe
Secunia PSI Tray.lnk - C:\Program Files\Secunia\PSI\psi_tray.exe
Update Notifier.lnk - C:\Program Files\WinZip\WZUpdateNotifier.exe
WinZip Preloader.lnk - C:\Program Files\WinZip\WzPreloader.exe

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vsmon]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"SoftwareSASGeneration"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=l3codecp.acm
"vidc.cvid"=iccvid.dll
"MSVideo8"=VfWWDM32.dll
"VIDC.XVID"=xvidvfw.dll
"VIDC.LAGS"=lagarith.dll
"VIDC.FFDS"=ff_vfw.dll
"msacm.ac3acm"=ac3acm.acm
"wave1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave2"=wdmaud.drv
"mixer2"=wdmaud.drv
"msacm.siren"=sirenacm.dll
"wave3"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer3"=wdmaud.drv
"aux1"=wdmaud.drv
"wave4"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer4"=wdmaud.drv
"aux2"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2016-02-18 18:28:34 ----D---- C:\rsit
2016-02-18 15:51:32 ----A---- C:\Windows\system32\aswBoot.exe
2016-02-18 15:50:38 ----A---- C:\Windows\avastSS.scr
2016-02-10 18:05:36 ----A---- C:\Windows\system32\shell32.dll
2016-02-10 18:05:36 ----A---- C:\Windows\explorer.exe
2016-02-10 18:05:35 ----A---- C:\Windows\system32\ExplorerFrame.dll
2016-02-10 18:05:35 ----A---- C:\Windows\system32\authui.dll
2016-02-10 18:05:22 ----A---- C:\Windows\system32\rdpcorets.dll
2016-02-10 18:05:21 ----A---- C:\Windows\system32\rdpudd.dll
2016-02-10 18:05:21 ----A---- C:\Windows\system32\RdpGroupPolicyExtension.dll
2016-02-10 18:05:19 ----A---- C:\Windows\system32\invagent.dll
2016-02-10 18:05:19 ----A---- C:\Windows\system32\generaltel.dll
2016-02-10 18:05:19 ----A---- C:\Windows\system32\devinv.dll
2016-02-10 18:05:19 ----A---- C:\Windows\system32\CompatTelRunner.exe
2016-02-10 18:05:19 ----A---- C:\Windows\system32\appraiser.dll
2016-02-10 18:05:19 ----A---- C:\Windows\system32\aeinv.dll
2016-02-10 18:05:19 ----A---- C:\Windows\system32\acmigration.dll
2016-02-10 18:05:10 ----A---- C:\Windows\system32\ole32.dll
2016-02-10 18:00:19 ----A---- C:\Windows\system32\jnwmon.dll
2016-02-10 18:00:19 ----A---- C:\Windows\system32\InkEd.dll
2016-02-10 18:00:18 ----A---- C:\Windows\system32\win32k.sys
2016-02-10 18:00:17 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2016-02-10 18:00:07 ----A---- C:\Windows\system32\ntoskrnl.exe
2016-02-10 18:00:07 ----A---- C:\Windows\system32\ntkrnlpa.exe
2016-02-10 18:00:07 ----A---- C:\Windows\system32\ntdll.dll
2016-02-10 18:00:07 ----A---- C:\Windows\system32\KernelBase.dll
2016-02-10 18:00:07 ----A---- C:\Windows\system32\kernel32.dll
2016-02-10 18:00:07 ----A---- C:\Windows\system32\EncDec.dll
2016-02-10 18:00:07 ----A---- C:\Windows\system32\CPFilters.dll
2016-02-10 18:00:06 ----A---- C:\Windows\system32\mtxoci.dll
2016-02-10 18:00:06 ----A---- C:\Windows\system32\msorcl32.dll
2016-02-10 18:00:06 ----A---- C:\Windows\system32\kerberos.dll
2016-02-10 18:00:06 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2016-02-10 18:00:06 ----A---- C:\Windows\system32\advapi32.dll
2016-02-10 18:00:05 ----A---- C:\Windows\system32\winsrv.dll
2016-02-10 18:00:05 ----A---- C:\Windows\system32\wdigest.dll
2016-02-10 18:00:05 ----A---- C:\Windows\system32\TSpkg.dll
2016-02-10 18:00:05 ----A---- C:\Windows\system32\sspicli.dll
2016-02-10 18:00:05 ----A---- C:\Windows\system32\srcore.dll
2016-02-10 18:00:05 ----A---- C:\Windows\system32\smss.exe
2016-02-10 18:00:05 ----A---- C:\Windows\system32\schannel.dll
2016-02-10 18:00:05 ----A---- C:\Windows\system32\rpcrt4.dll
2016-02-10 18:00:05 ----A---- C:\Windows\system32\ncrypt.dll
2016-02-10 18:00:05 ----A---- C:\Windows\system32\msv1_0.dll
2016-02-10 18:00:05 ----A---- C:\Windows\system32\lsasrv.dll
2016-02-10 18:00:05 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2016-02-10 18:00:05 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2016-02-10 18:00:05 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2016-02-10 18:00:05 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2016-02-10 18:00:05 ----A---- C:\Windows\system32\conhost.exe
2016-02-10 18:00:04 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2016-02-10 18:00:04 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2016-02-10 18:00:04 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2016-02-10 18:00:04 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2016-02-10 18:00:04 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2016-02-10 18:00:04 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2016-02-10 18:00:04 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2016-02-10 18:00:04 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-02-10 18:00:04 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2016-02-10 18:00:04 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2016-02-10 18:00:04 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2016-02-10 18:00:04 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2016-02-10 18:00:04 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2016-02-10 18:00:04 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2016-02-10 18:00:04 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2016-02-10 18:00:04 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2016-02-10 18:00:04 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2016-02-10 18:00:04 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2016-02-10 18:00:04 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2016-02-10 18:00:04 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2016-02-10 18:00:04 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2016-02-10 18:00:04 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2016-02-10 18:00:04 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2016-02-10 18:00:04 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2016-02-10 18:00:04 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2016-02-10 18:00:04 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2016-02-10 18:00:04 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2016-02-10 18:00:04 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2016-02-10 18:00:04 ----A---- C:\Windows\system32\sspisrv.dll
2016-02-10 18:00:04 ----A---- C:\Windows\system32\srclient.dll
2016-02-10 18:00:04 ----A---- C:\Windows\system32\secur32.dll
2016-02-10 18:00:04 ----A---- C:\Windows\system32\rstrui.exe
2016-02-10 18:00:04 ----A---- C:\Windows\system32\lsass.exe
2016-02-10 18:00:04 ----A---- C:\Windows\system32\csrsrv.dll
2016-02-10 18:00:04 ----A---- C:\Windows\system32\cryptbase.dll
2016-02-10 18:00:04 ----A---- C:\Windows\system32\credssp.dll
2016-02-10 18:00:04 ----A---- C:\Windows\system32\auditpol.exe
2016-02-10 18:00:04 ----A---- C:\Windows\system32\apisetschema.dll
2016-02-10 18:00:03 ----A---- C:\Windows\system32\msobjs.dll
2016-02-10 18:00:03 ----A---- C:\Windows\system32\msaudite.dll
2016-02-10 18:00:03 ----A---- C:\Windows\system32\adtschema.dll
2016-02-10 17:59:36 ----A---- C:\Windows\system32\urlmon.dll
2016-02-10 17:59:36 ----A---- C:\Windows\system32\ieui.dll
2016-02-10 17:59:35 ----A---- C:\Windows\system32\ieframe.dll
2016-02-10 17:59:34 ----A---- C:\Windows\system32\mshtml.dll
2016-02-10 17:59:33 ----A---- C:\Windows\system32\iertutil.dll
2016-02-10 13:26:09 ----A---- C:\Windows\system32\occache.dll
2016-02-10 13:26:09 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2016-02-10 13:26:09 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2016-02-10 13:26:09 ----A---- C:\Windows\system32\iernonce.dll
2016-02-10 13:26:09 ----A---- C:\Windows\system32\ieetwproxystub.dll
2016-02-10 13:26:09 ----A---- C:\Windows\system32\ieetwcollector.exe
2016-02-10 13:26:09 ----A---- C:\Windows\system32\iedkcs32.dll
2016-02-10 13:26:09 ----A---- C:\Windows\system32\ie4uinit.exe
2016-02-10 13:26:08 ----A---- C:\Windows\system32\msfeeds.dll
2016-02-10 13:26:08 ----A---- C:\Windows\system32\jsproxy.dll
2016-02-10 13:26:08 ----A---- C:\Windows\system32\jscript9diag.dll
2016-02-10 13:26:08 ----A---- C:\Windows\system32\inseng.dll
2016-02-10 13:26:08 ----A---- C:\Windows\system32\ieUnatt.exe
2016-02-10 13:26:08 ----A---- C:\Windows\system32\ieapfltr.dll
2016-02-10 13:26:08 ----A---- C:\Windows\system32\dxtmsft.dll
2016-02-10 13:26:07 ----A---- C:\Windows\system32\webcheck.dll
2016-02-10 13:26:06 ----A---- C:\Windows\system32\msrating.dll
2016-02-10 13:26:05 ----A---- C:\Windows\system32\wininet.dll
2016-02-10 13:26:05 ----A---- C:\Windows\system32\iesetup.dll
2016-02-10 13:26:05 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2016-02-10 13:26:04 ----A---- C:\Windows\system32\dxtrans.dll
2016-02-10 13:26:02 ----A---- C:\Windows\system32\mshtmled.dll
2016-02-10 13:26:01 ----A---- C:\Windows\system32\mshtmlmedia.dll
2016-02-10 13:26:01 ----A---- C:\Windows\system32\MshtmlDac.dll
2016-02-10 13:25:59 ----A---- C:\Windows\system32\jscript9.dll
2016-02-10 13:25:58 ----A---- C:\Windows\system32\vbscript.dll
2016-02-10 13:25:58 ----A---- C:\Windows\system32\jscript.dll
2016-02-10 13:25:44 ----A---- C:\Windows\system32\wucltux.dll
2016-02-10 13:25:44 ----A---- C:\Windows\system32\wuaueng.dll
2016-02-10 13:25:44 ----A---- C:\Windows\system32\wuapi.dll
2016-02-10 13:25:43 ----A---- C:\Windows\system32\wuwebv.dll
2016-02-10 13:25:43 ----A---- C:\Windows\system32\wups2.dll
2016-02-10 13:25:43 ----A---- C:\Windows\system32\wups.dll
2016-02-10 13:25:43 ----A---- C:\Windows\system32\wudriver.dll
2016-02-10 13:25:43 ----A---- C:\Windows\system32\wuauclt.exe
2016-02-10 13:25:43 ----A---- C:\Windows\system32\wuapp.exe
2016-02-10 13:25:43 ----A---- C:\Windows\system32\wu.upgrade.ps.dll
2016-02-10 13:25:43 ----A---- C:\Windows\system32\WinSetupUI.dll
2016-01-31 22:12:03 ----A---- C:\Windows\system32\icaapi.dll
2016-01-31 22:12:03 ----A---- C:\Windows\system32\drivers\tssecsrv.sys
2016-01-31 22:10:51 ----A---- C:\Windows\system32\kbdgeoqw.dll
2016-01-31 22:10:51 ----A---- C:\Windows\system32\KBDAZEL.DLL
2016-01-31 22:10:50 ----A---- C:\Windows\system32\KBDAZE.DLL
2016-01-31 22:10:49 ----A---- C:\Windows\system32\nlsbres.dll
2016-01-23 22:48:09 ----D---- C:\Stati 2116

======List of files/folders modified in the last 1 month======

2016-02-18 18:31:27 ----D---- C:\Windows\Temp
2016-02-18 18:31:27 ----D---- C:\Program Files\trend micro
2016-02-18 18:31:19 ----D---- C:\Program Files\Opera
2016-02-18 18:26:28 ----D---- C:\Windows\system32\Tasks
2016-02-18 18:24:54 ----D---- C:\Windows\system32\config
2016-02-18 16:10:43 ----D---- C:\Windows\system32\drivers
2016-02-18 16:10:39 ----D---- C:\Windows
2016-02-18 16:05:25 ----D---- C:\Users\kuku\AppData\Roaming\Skype
2016-02-18 16:03:34 ----SHD---- C:\Windows\Installer
2016-02-18 16:03:34 ----SHD---- C:\Config.Msi
2016-02-18 16:02:17 ----D---- C:\ProgramData\Skype
2016-02-18 16:01:47 ----RD---- C:\Program Files\Skype
2016-02-18 16:00:25 ----D---- C:\Program Files\Mozilla Firefox
2016-02-18 15:51:36 ----D---- C:\Windows\winsxs
2016-02-18 15:51:32 ----D---- C:\Windows\System32
2016-02-18 11:32:47 ----D---- C:\Windows\inf
2016-02-18 11:32:47 ----A---- C:\Windows\system32\PerfStringBackup.INI
2016-02-17 22:49:16 ----D---- C:\Články 2016
2016-02-16 22:32:40 ----SHD---- C:\System Volume Information
2016-02-16 21:31:42 ----SD---- C:\Users\kuku\AppData\Roaming\Microsoft
2016-02-16 09:20:44 ----HD---- C:\ProgramData
2016-02-15 10:09:40 ----D---- C:\Windows\Prefetch
2016-02-13 09:11:57 ----D---- C:\Windows\system32\NDF
2016-02-12 12:46:37 ----D---- C:\Windows\rescache
2016-02-11 16:03:50 ----D---- C:\Windows\debug
2016-02-11 15:39:57 ----SD---- C:\Windows\system32\CompatTel
2016-02-11 15:39:57 ----D---- C:\Windows\system32\appraiser
2016-02-11 15:39:57 ----D---- C:\Windows\AppPatch
2016-02-11 15:39:56 ----D---- C:\Windows\system32\cs-CZ
2016-02-11 15:39:56 ----D---- C:\Windows\cs-CZ
2016-02-11 12:28:27 ----D---- C:\Windows\Microsoft.NET
2016-02-11 12:26:57 ----RSD---- C:\Windows\assembly
2016-02-11 08:11:18 ----D---- C:\Program Files\Windows Journal
2016-02-11 08:11:13 ----D---- C:\Windows\system32\en-US
2016-02-11 08:11:13 ----D---- C:\Program Files\Internet Explorer
2016-02-10 23:26:10 ----D---- C:\Windows\system32\MRT
2016-02-10 23:26:03 ----A---- C:\Windows\system32\MRT.exe
2016-02-10 21:44:56 ----A---- C:\Windows\system32\FlashPlayerApp.exe
2016-02-10 13:24:42 ----D---- C:\Windows\system32\catroot2
2016-02-10 10:32:00 ----D---- C:\Windows\system32\wbem
2016-02-10 10:31:11 ----D---- C:\Windows\Tasks
2016-02-10 10:31:11 ----D---- C:\Windows\system32\wfp
2016-02-10 10:31:11 ----D---- C:\Windows\system32\DriverStore
2016-02-10 10:31:09 ----D---- C:\Windows\registration
2016-02-10 10:31:04 ----D---- C:\ProgramData\Real
2016-02-04 21:58:06 ----D---- C:\články
2016-02-03 09:40:02 ----D---- C:\Album fotografií
2016-02-03 08:36:57 ----RD---- C:\Program Files
2016-01-31 22:20:58 ----RSD---- C:\Windows\Fonts
2016-01-27 09:41:27 ----D---- C:\Návody
2016-01-22 18:00:33 ----D---- C:\Došlé dopisy
2016-01-22 16:07:31 ----D---- C:\Prográmky
2016-01-21 21:32:12 ----D---- C:\Recepty
2016-01-21 07:50:48 ----SD---- C:\ProgramData\Microsoft
2016-01-19 17:33:46 ----D---- C:\Windows\system32\FxsTmp

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2016-02-18 58776]
R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2016-02-18 221240]
R0 KL1;kl1; C:\Windows\system32\DRIVERS\kl1.sys [2014-03-19 135776]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368]
R0 PxHelp20;PxHelp20; C:\Windows\System32\Drivers\PxHelp20.sys [2010-03-19 45648]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2016-02-18 91232]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2016-02-18 812720]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2016-02-18 447848]
R1 KLIF;Kaspersky Lab Driver; C:\Windows\system32\DRIVERS\klif.sys [2014-03-19 488032]
R1 Vsdatant;Zone Alarm Firewall Driver; C:\Windows\system32\DRIVERS\vsdatant.sys [2015-11-07 367064]
R2 aswHwid;avast! HardwareID; C:\Windows\system32\drivers\aswHwid.sys [2016-02-18 32792]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2016-02-18 91168]
R2 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2016-02-18 127432]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2012-06-19 3240400]
R3 MSHUSBVideo;NX6000/NX3000/VX2000/VX5000/VX5500/VX7000/Cinema Filter Driver; C:\Windows\System32\Drivers\nx6000.sys [2010-12-13 30576]
R3 NVNET;NVIDIA nForce Ethernet Driver; C:\Windows\system32\DRIVERS\nvmf6232.sys [2010-08-12 298216]
R3 nvsmu;nvsmu; C:\Windows\system32\DRIVERS\nvsmu.sys [2010-03-22 18944]
R3 PSI;PSI; C:\Windows\system32\DRIVERS\psi_mf.sys [2011-12-16 15544]
S2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 amdagp;Ovladač filtru AMD portu AGP; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 ApfiltrService;Alps Touch Pad Filter Driver for Windows x86; C:\Windows\system32\DRIVERS\Apfiltr.sys [2011-05-25 305488]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-13 229888]
S3 Cam3820;Cam3820 PC Camera Driver; C:\Windows\System32\Drivers\cam3820a.sys [2010-08-25 369024]
S3 Dot4;MS IEEE-1284.4 Driver; C:\Windows\system32\DRIVERS\Dot4.sys [2009-07-14 131072]
S3 Dot4Print;Print Class Driver for IEEE-1284.4; C:\Windows\system32\DRIVERS\Dot4Prt.sys [2010-11-20 16384]
S3 dot4usb;MS Dot4USB Filter Dot4USB Filter; C:\Windows\system32\DRIVERS\dot4usb.sys [2009-07-14 36864]
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2012-07-28 49088]
S3 HpqKbFiltr;HpqKbFilter Driver; C:\Windows\system32\DRIVERS\HpqKbFiltr.sys [2007-06-18 16768]
S3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\Windows\system32\drivers\MBAMSwissArmy.sys []
S3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\Windows\system32\DRIVERS\nvm62x32.sys [2009-07-13 347264]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-12-09 14848]
S3 sisagp;Filtr SIS sběrnice AGP; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2013-10-02 49152]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\drivers\usbscan.sys [2013-07-03 36352]
S3 viaagp;Filtr VIA sběrnice AGP; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]
S3 WinUsb;WinUsb; C:\Windows\system32\drivers\WinUsb.sys [2010-11-20 35968]
S4 VBoxAswDrv;VBoxAsw Support Driver; \??\C:\Aviry\Avast\ng\vbox\VBoxAswDrv.sys []

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeActiveFileMonitor10.0;Adobe Active File Monitor V10; C:\Fotoeditory\Adobe Photoshop Elements 10\Elements 10 Organizer\PhotoshopElementsFileAgent.exe [2011-09-14 169624]
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2015-12-13 82128]
R2 avast! Antivirus;Avast Antivirus; C:\Aviry\Avast\AvastSvc.exe [2016-02-18 237096]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 hpqddsvc;Služba HP CUE DeviceDiscovery; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 MSCamSvc;MSCamSvc; C:\Program Files\Microsoft LifeCam\MSCamS32.exe [2010-12-13 135536]
R2 Net Driver HPZ12;Net Driver HPZ12; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2013-02-10 634144]
R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 RealPlayerUpdateSvc;RealPlayer Update Service; C:\Program Files\Real\UpdateService\RealPlayerUpdateSvc.exe [2015-06-17 31856]
R2 Secunia PSI Agent;Secunia PSI Agent; C:\Program Files\Secunia\PSI\PSIA.exe [2012-09-24 1328736]
R2 Secunia Update Agent;Secunia Update Agent; C:\Program Files\Secunia\PSI\sua.exe [2012-09-24 656480]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2012-07-17 1713904]
R2 ZAPrivacyService;ZoneAlarm Privacy Service; C:\Aviry\CheckPoint\ZoneAlarm\ZaPrivacyService.exe [2015-10-19 96272]
R3 hpqcxs08;hpqcxs08; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2015-11-05 105144]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2015-08-31 144200]
S2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2013-02-10 1266464]
S2 RealPlayer Cloud Service;RealPlayer Cloud Service; c:\program files\real\realplayer\RPDS\Bin\rpdsvc.exe [2015-07-01 1115224]
S2 RealTimes Desktop Service;RealTimes Desktop Service; c:\program files\real\realplayer\RPDS\Bin\rpdsvc.exe [2015-07-01 1115224]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2015-07-09 327296]
S2 vsmon;TrueVector Internet Monitor; C:\Aviry\CheckPoint\ZoneAlarm\vsmon.exe [2015-11-07 3722912]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2016-02-10 270016]
S3 fsssvc;Windows Live Family Safety Service; C:\Program Files\Windows Live\Family Safety\fsssvc.exe [2014-03-31 1512640]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2015-08-31 144200]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2016-01-22 102912]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2016-01-03 147624]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2012-05-04 1343400]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2015-11-05 45744]
S4 ATMsrvc;ATM Service; C:\Windows\System32\ATMsrvc.exe [2000-05-24 15360]
S4 AvastVBoxSvc;AvastVBox COM Service; C:\Aviry\Avast\ng\vbox\AvastVBoxSVC.exe []
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2015-11-05 135848]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2015-11-05 135848]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2015-11-05 135848]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: PC má vysokou aktivitu a problém s Operou

#2 Příspěvek od Rudy »

Zdravím!
Spusťte tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Antusek
Návštěvník
Návštěvník
Příspěvky: 510
Registrován: 17 úno 2007 20:54

Re: PC má vysokou aktivitu a problém s Operou

#3 Příspěvek od Antusek »

Provedl jsem dle pokynů a posílám log. PC má stále vysokou aktivitu. Díky za další postup.

# AdwCleaner v5.035 - Logfile created 18/02/2016 at 19:50:56
# Updated 18/02/2016 by Xplode
# Database : 2016-02-18.1 [Server]
# Operating system : Windows 7 Home Premium Service Pack 1 (x86)
# Username : kuku - KUKU-PC
# Running from : C:\Aviry\ADWCleaner\adwcleaner_5.035.exe
# Option : Cleaning
# Support : http://toolslib.net/forum

***** [ Services ] *****


***** [ Folders ] *****

[-] Folder Deleted : C:\Program Files\Free Youtube Downloader
[-] Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Free FLV Converter
[-] Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Free Youtube Downloader
[-] Folder Deleted : C:\Users\kuku\AppData\Local\Free Youtube Downloader

***** [ Files ] *****

[-] File Deleted : C:\Users\kuku\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\mhkaekfpcppmmioggniknbnbdbcigpkk
[-] File Deleted : C:\Users\kuku\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Free Youtube Downloader.lnk

***** [ DLLs ] *****


***** [ Shortcuts ] *****


***** [ Scheduled tasks ] *****


***** [ Registry ] *****

[-] Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{DC97D932-ED6C-4AD3-A0D6-AA03C4C76A97}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{ECCA77AD-EF06-4650-B6FC-7A0E90687EB4}
[-] Key Deleted : HKCU\Software\APN PIP
[-] Key Deleted : HKCU\Software\Check Point Software Technologies LTD
[-] Key Deleted : HKCU\Software\CoinisRevShare
[-] Key Deleted : HKLM\SOFTWARE\Check Point Software Technologies LTD
[-] Key Deleted : HKLM\SOFTWARE\CheckPoint\ISW
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Applian FLV Player2.0.24
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Free FLV Converter_is1

***** [ Web browsers ] *****

[-] [C:\Users\kuku\AppData\Roaming\Mozilla\Firefox\Profiles\9x5re7vu.default\prefs.js] [Preference] Deleted : user_pref("extensions.AppGraffiti@AppGraffiti.com.install-event-fired", true);
[-] [C:\Users\kuku\AppData\Roaming\Mozilla\Firefox\Profiles\9x5re7vu.default\prefs.js] [Preference] Deleted : user_pref("extensions.zonealarm.srchPrvdr", "Search By ZoneAlarm");
[-] [C:\Users\kuku\AppData\Roaming\Mozilla\Firefox\Profiles\9x5re7vu.default\prefs.js] [Preference] Deleted : user_pref("network.hxxp.request.max-start-delay", 0);
[-] [C:\Users\kuku\AppData\Local\Google\Chrome\User Data\Default\Web Data] [Search Provider] Deleted : yahoo.com
[-] [C:\Users\kuku\AppData\Local\Google\Chrome\User Data\Default\Web Data] [Search Provider] Deleted : check point software technologies ltd
[-] [C:\Users\kuku\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Extension] Deleted : icdlfehblmklkikfigmjhbmmpmkmpooj
[-] [C:\Users\kuku\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Extension] Deleted : jkmljihjgjdghdhggolmhbjekicljfci
[-] [C:\Users\kuku\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Extension] Deleted : mhkaekfpcppmmioggniknbnbdbcigpkk
[-] [C:\Users\kuku\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Extension] Deleted : pfndaklgolladniicklehhancnlgocpp
[-] [C:\Users\kuku\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Homepage] Deleted : hxxp://search.zonealarm.com/?Source=Homepage&oemCode=ZLN26968324241468-1600&toolbarId=base&affiliateId=1025&Lan=en&utid=802db8600000000000000024810bb64e

*************************

:: "Tracing" keys removed
:: Winsock settings cleared

########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [3570 bytes] ##########

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: PC má vysokou aktivitu a problém s Operou

#4 Příspěvek od Rudy »

Dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Antusek
Návštěvník
Návštěvník
Příspěvky: 510
Registrován: 17 úno 2007 20:54

Re: PC má vysokou aktivitu a problém s Operou

#5 Příspěvek od Antusek »

Posílám log z RSIT a dík za další radu. PC má stále vysokou aktivitu (červená kontrolka). Že by se tak dlouho stahovaly aktualizace (windows 7 apod.)? Nebo je to něco jiného. Ale ikonka windows update na liště není.

Logfile of random's system information tool 1.10 (written by random/random)
Run by kuku at 2016-02-18 20:12:07
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 324 GB (68%) free of 477 GB
Total RAM: 2558 MB (65% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:12:15, on 18.2.2016
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.18205)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\UVC Video Camera\UVCSti.exe
C:\Program Files\UVC Video Camera\EffectDir\UVCTray.exe
C:\Program Files\EMET\EMET_notifier.exe
C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
C:\Windows\system32\taskhost.exe
C:\Aviry\Avast\AvastUI.exe
C:\Prográmky\PDF24\pdf24.exe
C:\Program Files\Real\RealPlayer\Update\realsched.exe
C:\Windows\system32\taskeng.exe
C:\Programy\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\WinZip\FAHWindow32.exe
C:\Aviry\CCleaner\CCleaner.exe
C:\Program Files\Real\RealPlayer\RPDS\Bin\rpsystray.exe
C:\Program Files\Secunia\PSI\psi_tray.exe
C:\Program Files\WinZip\WZUpdateNotifier.exe
C:\Program Files\WinZip\WzPreloader.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Programy\HP\Digital Imaging\bin\hpqSTE08.exe
C:\Programy\HP\Digital Imaging\bin\hpqbam08.exe
C:\Programy\HP\Digital Imaging\bin\hpqgpc01.exe
C:\Windows\system32\taskeng.exe
C:\Aviry\RSIT\RSIT.exe
C:\Program Files\trend micro\kuku.exe

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: RealNetworks Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Aviry\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [UVCSti] "C:\Program Files\UVC Video Camera\UVCSti.exe"
O4 - HKLM\..\Run: [RunUVC] "C:\Program Files\UVC Video Camera\EffectDir\UVCtray.exe"
O4 - HKLM\..\Run: [Apoint] C:\Program Files\DellTPad\Apoint.exe
O4 - HKLM\..\Run: [EMET Notifier] C:\Program Files\EMET\EMET_notifier.exe
O4 - HKLM\..\Run: [hpqSRMon] C:\Programy\HP\Digital Imaging\bin\hpqSRMon.exe
O4 - HKLM\..\Run: [LifeCam] "C:\Program Files\Microsoft LifeCam\LifeExp.exe"
O4 - HKLM\..\Run: [Logitech Download Assistant] C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Aviry\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [AdobeAAMUpdater-1.0] "C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
O4 - HKLM\..\Run: [PDFPrint] C:\Prográmky\PDF24\pdf24.exe
O4 - HKLM\..\Run: [TkBellExe] "c:\program files\real\realplayer\Update\realsched.exe" -osboot
O4 - HKLM\..\Run: [RealDownloader] C:\Program Files\RealNetworks\RealDownloader\downloader2.exe
O4 - HKLM\..\Run: [ZoneAlarm] "C:\Aviry\CheckPoint\ZoneAlarm\zatray.exe"
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Aviry\CCleaner\CCleaner.exe" /MONITOR
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [ZoneAlarm Windows 10 Upgrader] "C:\ProgramData\CheckPoint\ZoneAlarm\Data\Updates\unpacked==win10=update_win10.zip\upgrade.exe" /delay (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [ZoneAlarm Windows 10 Upgrader] "C:\ProgramData\CheckPoint\ZoneAlarm\Data\Updates\unpacked==win10=update_win10.zip\upgrade.exe" /delay (User 'Default user')
O4 - Global Startup: FAH.lnk = C:\Program Files\WinZip\FAHConsole.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Programy\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: RealPlayer Cloud Service UI.lnk = C:\Program Files\Real\RealPlayer\RPDS\Bin\rpsystray.exe
O4 - Global Startup: RealTimes.lnk = C:\Program Files\Real\RealPlayer\RPDS\Bin\rpsystray.exe
O4 - Global Startup: Secunia PSI Tray.lnk = C:\Program Files\Secunia\PSI\psi_tray.exe
O4 - Global Startup: Update Notifier.lnk = C:\Program Files\WinZip\WZUpdateNotifier.exe
O4 - Global Startup: WinZip Preloader.lnk = C:\Program Files\WinZip\WzPreloader.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\Programy\MICROS~1\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Free YouTube to MP3 Converter - C:\Users\kuku\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm
O9 - Extra button: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Programy\MICROS~1\OFFICE11\REFIEBAR.DLL
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: Adobe Active File Monitor V10 (AdobeActiveFileMonitor10.0) - Adobe Systems Incorporated - C:\Fotoeditory\Adobe Photoshop Elements 10\Elements 10 Organizer\PhotoshopElementsFileAgent.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Aviry\Avast\AvastSvc.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: RealPlayer Cloud Service - RealNetworks, Inc. - c:\program files\real\realplayer\RPDS\Bin\rpdsvc.exe
O23 - Service: RealPlayer Update Service (RealPlayerUpdateSvc) - Unknown owner - C:\Program Files\Real\UpdateService\RealPlayerUpdateSvc.exe
O23 - Service: RealTimes Desktop Service - RealNetworks, Inc. - c:\program files\real\realplayer\RPDS\Bin\rpdsvc.exe
O23 - Service: Secunia PSI Agent - Secunia - C:\Program Files\Secunia\PSI\PSIA.exe
O23 - Service: Secunia Update Agent - Secunia - C:\Program Files\Secunia\PSI\sua.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Check Point Software Technologies Ltd. - C:\Aviry\CheckPoint\ZoneAlarm\vsmon.exe
O23 - Service: ZoneAlarm Privacy Service (ZAPrivacyService) - Check Point Software Technologies, Ltd. - C:\Aviry\CheckPoint\ZoneAlarm\ZaPrivacyService.exe

--
End of file - 8000 bytes

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files\Google\Update\GoogleUpdate.exe /ua /installsource scheduler

=========Mozilla firefox=========

ProfilePath - C:\Users\kuku\AppData\Roaming\Mozilla\Firefox\Profiles\9x5re7vu.default

prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "about:home"
prefs.js - "keyword.URL" - "https://www.google.com/search"

"wrc@avast.com"=C:\Aviry\Avast\WebRep\FF
"smartwebprinting@hp.com"=C:\Programy\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
"{ABDE892B-13A8-4d1b-88E6-365A6E755758}"=C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext
"sp@avast.com"=C:\Aviry\Avast\SafePrice\FF


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 20.0.0.306 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF32_20_0_0_306.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.1.41212.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WLPG,version=16.4.3528.0331]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nppl3260;version=18.0.1.9]
"Description"=RealPlayer(tm) LiveConnect-Enabled Plug-In
"Path"=c:\program files\real\realplayer\Netscape6\nppl3260.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nprpplugin;version=18.0.1.9]
"Description"=RealTimes Download Plugin
"Path"=c:\program files\real\realplayer\Netscape6\nprpplugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.29.5\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.29.5\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll


C:\Users\kuku\AppData\Roaming\Mozilla\Firefox\Profiles\9x5re7vu.default\extensions\
donottrack@checkpoint.com
{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7}

C:\Users\kuku\AppData\Roaming\Mozilla\Firefox\Profiles\9x5re7vu.default\searchplugins\
Google.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3049C3E9-B461-4BC5-8870-4C09146192CA}]
RealNetworks Download and Record Plugin for Internet Explorer - C:\Program Files\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll [2015-06-17 513600]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Aviry\Avast\aswWebRepIE.dll [2016-02-18 678656]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"UVCSti"=C:\Program Files\UVC Video Camera\UVCSti.exe [2010-08-23 245760]
"RunUVC"=C:\Program Files\UVC Video Camera\EffectDir\UVCtray.exe [2010-08-23 7548928]
"Apoint"=C:\Program Files\DellTPad\Apoint.exe [2011-07-20 505720]
"EMET Notifier"=C:\Program Files\EMET\EMET_notifier.exe [2012-05-09 152152]
"hpqSRMon"=C:\Programy\HP\Digital Imaging\bin\hpqSRMon.exe [2008-07-22 150528]
"LifeCam"=C:\Program Files\Microsoft LifeCam\LifeExp.exe [2010-12-13 135536]
"Logitech Download Assistant"=C:\Windows\System32\LogiLDA.dll [2012-09-20 1425208]
"AvastUI.exe"=C:\Aviry\Avast\AvastUI.exe [2016-02-18 7139768]
"AdobeAAMUpdater-1.0"=C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe []
"PDFPrint"=C:\Prográmky\PDF24\pdf24.exe [2014-11-28 193568]
"TkBellExe"=c:\program files\real\realplayer\Update\realsched.exe [2015-07-01 286272]
"RealDownloader"=C:\Program Files\RealNetworks\RealDownloader\downloader2.exe [2015-06-16 608320]
"ZoneAlarm"=C:\Aviry\CheckPoint\ZoneAlarm\zatray.exe [2015-11-07 134792]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CCleaner Monitoring"=C:\Aviry\CCleaner\CCleaner.exe [2016-01-15 6628056]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
FAH.lnk - C:\Program Files\WinZip\FAHConsole.exe
HP Digital Imaging Monitor.lnk - C:\Programy\HP\Digital Imaging\bin\hpqtra08.exe
RealPlayer Cloud Service UI.lnk - C:\Program Files\Real\RealPlayer\RPDS\Bin\rpsystray.exe
RealTimes.lnk - C:\Program Files\Real\RealPlayer\RPDS\Bin\rpsystray.exe
Secunia PSI Tray.lnk - C:\Program Files\Secunia\PSI\psi_tray.exe
Update Notifier.lnk - C:\Program Files\WinZip\WZUpdateNotifier.exe
WinZip Preloader.lnk - C:\Program Files\WinZip\WzPreloader.exe

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vsmon]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"SoftwareSASGeneration"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=l3codecp.acm
"vidc.cvid"=iccvid.dll
"MSVideo8"=VfWWDM32.dll
"VIDC.XVID"=xvidvfw.dll
"VIDC.LAGS"=lagarith.dll
"VIDC.FFDS"=ff_vfw.dll
"msacm.ac3acm"=ac3acm.acm
"wave1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave2"=wdmaud.drv
"mixer2"=wdmaud.drv
"msacm.siren"=sirenacm.dll
"wave3"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer3"=wdmaud.drv
"aux1"=wdmaud.drv
"wave4"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer4"=wdmaud.drv
"aux2"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2016-02-18 19:49:07 ----D---- C:\AdwCleaner
2016-02-18 18:28:34 ----D---- C:\rsit
2016-02-18 15:51:32 ----A---- C:\Windows\system32\aswBoot.exe
2016-02-18 15:50:38 ----A---- C:\Windows\avastSS.scr
2016-02-10 18:05:36 ----A---- C:\Windows\system32\shell32.dll
2016-02-10 18:05:36 ----A---- C:\Windows\explorer.exe
2016-02-10 18:05:35 ----A---- C:\Windows\system32\ExplorerFrame.dll
2016-02-10 18:05:35 ----A---- C:\Windows\system32\authui.dll
2016-02-10 18:05:22 ----A---- C:\Windows\system32\rdpcorets.dll
2016-02-10 18:05:21 ----A---- C:\Windows\system32\rdpudd.dll
2016-02-10 18:05:21 ----A---- C:\Windows\system32\RdpGroupPolicyExtension.dll
2016-02-10 18:05:19 ----A---- C:\Windows\system32\invagent.dll
2016-02-10 18:05:19 ----A---- C:\Windows\system32\generaltel.dll
2016-02-10 18:05:19 ----A---- C:\Windows\system32\devinv.dll
2016-02-10 18:05:19 ----A---- C:\Windows\system32\CompatTelRunner.exe
2016-02-10 18:05:19 ----A---- C:\Windows\system32\appraiser.dll
2016-02-10 18:05:19 ----A---- C:\Windows\system32\aeinv.dll
2016-02-10 18:05:19 ----A---- C:\Windows\system32\acmigration.dll
2016-02-10 18:05:10 ----A---- C:\Windows\system32\ole32.dll
2016-02-10 18:00:19 ----A---- C:\Windows\system32\jnwmon.dll
2016-02-10 18:00:19 ----A---- C:\Windows\system32\InkEd.dll
2016-02-10 18:00:18 ----A---- C:\Windows\system32\win32k.sys
2016-02-10 18:00:17 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2016-02-10 18:00:07 ----A---- C:\Windows\system32\ntoskrnl.exe
2016-02-10 18:00:07 ----A---- C:\Windows\system32\ntkrnlpa.exe
2016-02-10 18:00:07 ----A---- C:\Windows\system32\ntdll.dll
2016-02-10 18:00:07 ----A---- C:\Windows\system32\KernelBase.dll
2016-02-10 18:00:07 ----A---- C:\Windows\system32\kernel32.dll
2016-02-10 18:00:07 ----A---- C:\Windows\system32\EncDec.dll
2016-02-10 18:00:07 ----A---- C:\Windows\system32\CPFilters.dll
2016-02-10 18:00:06 ----A---- C:\Windows\system32\mtxoci.dll
2016-02-10 18:00:06 ----A---- C:\Windows\system32\msorcl32.dll
2016-02-10 18:00:06 ----A---- C:\Windows\system32\kerberos.dll
2016-02-10 18:00:06 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2016-02-10 18:00:06 ----A---- C:\Windows\system32\advapi32.dll
2016-02-10 18:00:05 ----A---- C:\Windows\system32\winsrv.dll
2016-02-10 18:00:05 ----A---- C:\Windows\system32\wdigest.dll
2016-02-10 18:00:05 ----A---- C:\Windows\system32\TSpkg.dll
2016-02-10 18:00:05 ----A---- C:\Windows\system32\sspicli.dll
2016-02-10 18:00:05 ----A---- C:\Windows\system32\srcore.dll
2016-02-10 18:00:05 ----A---- C:\Windows\system32\smss.exe
2016-02-10 18:00:05 ----A---- C:\Windows\system32\schannel.dll
2016-02-10 18:00:05 ----A---- C:\Windows\system32\rpcrt4.dll
2016-02-10 18:00:05 ----A---- C:\Windows\system32\ncrypt.dll
2016-02-10 18:00:05 ----A---- C:\Windows\system32\msv1_0.dll
2016-02-10 18:00:05 ----A---- C:\Windows\system32\lsasrv.dll
2016-02-10 18:00:05 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2016-02-10 18:00:05 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2016-02-10 18:00:05 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2016-02-10 18:00:05 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2016-02-10 18:00:05 ----A---- C:\Windows\system32\conhost.exe
2016-02-10 18:00:04 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2016-02-10 18:00:04 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2016-02-10 18:00:04 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2016-02-10 18:00:04 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2016-02-10 18:00:04 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2016-02-10 18:00:04 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2016-02-10 18:00:04 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2016-02-10 18:00:04 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-02-10 18:00:04 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2016-02-10 18:00:04 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2016-02-10 18:00:04 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2016-02-10 18:00:04 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2016-02-10 18:00:04 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2016-02-10 18:00:04 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2016-02-10 18:00:04 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2016-02-10 18:00:04 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2016-02-10 18:00:04 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2016-02-10 18:00:04 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2016-02-10 18:00:04 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2016-02-10 18:00:04 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2016-02-10 18:00:04 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2016-02-10 18:00:04 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2016-02-10 18:00:04 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2016-02-10 18:00:04 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2016-02-10 18:00:04 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2016-02-10 18:00:04 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2016-02-10 18:00:04 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2016-02-10 18:00:04 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2016-02-10 18:00:04 ----A---- C:\Windows\system32\sspisrv.dll
2016-02-10 18:00:04 ----A---- C:\Windows\system32\srclient.dll
2016-02-10 18:00:04 ----A---- C:\Windows\system32\secur32.dll
2016-02-10 18:00:04 ----A---- C:\Windows\system32\rstrui.exe
2016-02-10 18:00:04 ----A---- C:\Windows\system32\lsass.exe
2016-02-10 18:00:04 ----A---- C:\Windows\system32\csrsrv.dll
2016-02-10 18:00:04 ----A---- C:\Windows\system32\cryptbase.dll
2016-02-10 18:00:04 ----A---- C:\Windows\system32\credssp.dll
2016-02-10 18:00:04 ----A---- C:\Windows\system32\auditpol.exe
2016-02-10 18:00:04 ----A---- C:\Windows\system32\apisetschema.dll
2016-02-10 18:00:03 ----A---- C:\Windows\system32\msobjs.dll
2016-02-10 18:00:03 ----A---- C:\Windows\system32\msaudite.dll
2016-02-10 18:00:03 ----A---- C:\Windows\system32\adtschema.dll
2016-02-10 17:59:36 ----A---- C:\Windows\system32\urlmon.dll
2016-02-10 17:59:36 ----A---- C:\Windows\system32\ieui.dll
2016-02-10 17:59:35 ----A---- C:\Windows\system32\ieframe.dll
2016-02-10 17:59:34 ----A---- C:\Windows\system32\mshtml.dll
2016-02-10 17:59:33 ----A---- C:\Windows\system32\iertutil.dll
2016-02-10 13:26:09 ----A---- C:\Windows\system32\occache.dll
2016-02-10 13:26:09 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2016-02-10 13:26:09 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2016-02-10 13:26:09 ----A---- C:\Windows\system32\iernonce.dll
2016-02-10 13:26:09 ----A---- C:\Windows\system32\ieetwproxystub.dll
2016-02-10 13:26:09 ----A---- C:\Windows\system32\ieetwcollector.exe
2016-02-10 13:26:09 ----A---- C:\Windows\system32\iedkcs32.dll
2016-02-10 13:26:09 ----A---- C:\Windows\system32\ie4uinit.exe
2016-02-10 13:26:08 ----A---- C:\Windows\system32\msfeeds.dll
2016-02-10 13:26:08 ----A---- C:\Windows\system32\jsproxy.dll
2016-02-10 13:26:08 ----A---- C:\Windows\system32\jscript9diag.dll
2016-02-10 13:26:08 ----A---- C:\Windows\system32\inseng.dll
2016-02-10 13:26:08 ----A---- C:\Windows\system32\ieUnatt.exe
2016-02-10 13:26:08 ----A---- C:\Windows\system32\ieapfltr.dll
2016-02-10 13:26:08 ----A---- C:\Windows\system32\dxtmsft.dll
2016-02-10 13:26:07 ----A---- C:\Windows\system32\webcheck.dll
2016-02-10 13:26:06 ----A---- C:\Windows\system32\msrating.dll
2016-02-10 13:26:05 ----A---- C:\Windows\system32\wininet.dll
2016-02-10 13:26:05 ----A---- C:\Windows\system32\iesetup.dll
2016-02-10 13:26:05 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2016-02-10 13:26:04 ----A---- C:\Windows\system32\dxtrans.dll
2016-02-10 13:26:02 ----A---- C:\Windows\system32\mshtmled.dll
2016-02-10 13:26:01 ----A---- C:\Windows\system32\mshtmlmedia.dll
2016-02-10 13:26:01 ----A---- C:\Windows\system32\MshtmlDac.dll
2016-02-10 13:25:59 ----A---- C:\Windows\system32\jscript9.dll
2016-02-10 13:25:58 ----A---- C:\Windows\system32\vbscript.dll
2016-02-10 13:25:58 ----A---- C:\Windows\system32\jscript.dll
2016-02-10 13:25:44 ----A---- C:\Windows\system32\wucltux.dll
2016-02-10 13:25:44 ----A---- C:\Windows\system32\wuaueng.dll
2016-02-10 13:25:44 ----A---- C:\Windows\system32\wuapi.dll
2016-02-10 13:25:43 ----A---- C:\Windows\system32\wuwebv.dll
2016-02-10 13:25:43 ----A---- C:\Windows\system32\wups2.dll
2016-02-10 13:25:43 ----A---- C:\Windows\system32\wups.dll
2016-02-10 13:25:43 ----A---- C:\Windows\system32\wudriver.dll
2016-02-10 13:25:43 ----A---- C:\Windows\system32\wuauclt.exe
2016-02-10 13:25:43 ----A---- C:\Windows\system32\wuapp.exe
2016-02-10 13:25:43 ----A---- C:\Windows\system32\wu.upgrade.ps.dll
2016-02-10 13:25:43 ----A---- C:\Windows\system32\WinSetupUI.dll
2016-01-31 22:12:03 ----A---- C:\Windows\system32\icaapi.dll
2016-01-31 22:12:03 ----A---- C:\Windows\system32\drivers\tssecsrv.sys
2016-01-31 22:10:51 ----A---- C:\Windows\system32\kbdgeoqw.dll
2016-01-31 22:10:51 ----A---- C:\Windows\system32\KBDAZEL.DLL
2016-01-31 22:10:50 ----A---- C:\Windows\system32\KBDAZE.DLL
2016-01-31 22:10:49 ----A---- C:\Windows\system32\nlsbres.dll
2016-01-23 22:48:09 ----D---- C:\Stati 2116

======List of files/folders modified in the last 1 month======

2016-02-18 20:12:09 ----D---- C:\Windows\Temp
2016-02-18 20:12:08 ----D---- C:\Program Files\trend micro
2016-02-18 20:03:12 ----D---- C:\Program Files\Opera
2016-02-18 19:51:39 ----D---- C:\Windows\system32\config
2016-02-18 19:50:56 ----RD---- C:\Program Files
2016-02-18 19:46:33 ----D---- C:\Aviry
2016-02-18 18:26:28 ----D---- C:\Windows\system32\Tasks
2016-02-18 16:10:43 ----D---- C:\Windows\system32\drivers
2016-02-18 16:10:39 ----D---- C:\Windows
2016-02-18 16:05:25 ----D---- C:\Users\kuku\AppData\Roaming\Skype
2016-02-18 16:03:34 ----SHD---- C:\Windows\Installer
2016-02-18 16:03:34 ----SHD---- C:\Config.Msi
2016-02-18 16:02:17 ----D---- C:\ProgramData\Skype
2016-02-18 16:01:47 ----RD---- C:\Program Files\Skype
2016-02-18 16:00:25 ----D---- C:\Program Files\Mozilla Firefox
2016-02-18 15:51:36 ----D---- C:\Windows\winsxs
2016-02-18 15:51:32 ----D---- C:\Windows\System32
2016-02-18 11:32:47 ----D---- C:\Windows\inf
2016-02-18 11:32:47 ----A---- C:\Windows\system32\PerfStringBackup.INI
2016-02-17 22:49:16 ----D---- C:\Články 2016
2016-02-16 22:32:40 ----SHD---- C:\System Volume Information
2016-02-16 21:31:42 ----SD---- C:\Users\kuku\AppData\Roaming\Microsoft
2016-02-16 09:20:44 ----HD---- C:\ProgramData
2016-02-15 10:09:40 ----D---- C:\Windows\Prefetch
2016-02-13 09:11:57 ----D---- C:\Windows\system32\NDF
2016-02-12 12:46:37 ----D---- C:\Windows\rescache
2016-02-11 16:03:50 ----D---- C:\Windows\debug
2016-02-11 15:39:57 ----SD---- C:\Windows\system32\CompatTel
2016-02-11 15:39:57 ----D---- C:\Windows\system32\appraiser
2016-02-11 15:39:57 ----D---- C:\Windows\AppPatch
2016-02-11 15:39:56 ----D---- C:\Windows\system32\cs-CZ
2016-02-11 15:39:56 ----D---- C:\Windows\cs-CZ
2016-02-11 12:28:27 ----D---- C:\Windows\Microsoft.NET
2016-02-11 12:26:57 ----RSD---- C:\Windows\assembly
2016-02-11 08:11:18 ----D---- C:\Program Files\Windows Journal
2016-02-11 08:11:13 ----D---- C:\Windows\system32\en-US
2016-02-11 08:11:13 ----D---- C:\Program Files\Internet Explorer
2016-02-10 23:26:10 ----D---- C:\Windows\system32\MRT
2016-02-10 23:26:03 ----A---- C:\Windows\system32\MRT.exe
2016-02-10 21:44:56 ----A---- C:\Windows\system32\FlashPlayerApp.exe
2016-02-10 13:24:42 ----D---- C:\Windows\system32\catroot2
2016-02-10 10:32:00 ----D---- C:\Windows\system32\wbem
2016-02-10 10:31:11 ----D---- C:\Windows\Tasks
2016-02-10 10:31:11 ----D---- C:\Windows\system32\wfp
2016-02-10 10:31:11 ----D---- C:\Windows\system32\DriverStore
2016-02-10 10:31:09 ----D---- C:\Windows\registration
2016-02-10 10:31:04 ----D---- C:\ProgramData\Real
2016-02-04 21:58:06 ----D---- C:\články
2016-02-03 09:40:02 ----D---- C:\Album fotografií
2016-01-31 22:20:58 ----RSD---- C:\Windows\Fonts
2016-01-27 09:41:27 ----D---- C:\Návody
2016-01-22 18:00:33 ----D---- C:\Došlé dopisy
2016-01-22 16:07:31 ----D---- C:\Prográmky
2016-01-21 21:32:12 ----D---- C:\Recepty
2016-01-21 07:50:48 ----SD---- C:\ProgramData\Microsoft
2016-01-19 17:33:46 ----D---- C:\Windows\system32\FxsTmp

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2016-02-18 58776]
R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2016-02-18 221240]
R0 KL1;kl1; C:\Windows\system32\DRIVERS\kl1.sys [2014-03-19 135776]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368]
R0 PxHelp20;PxHelp20; C:\Windows\System32\Drivers\PxHelp20.sys [2010-03-19 45648]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2016-02-18 91232]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2016-02-18 812720]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2016-02-18 447848]
R1 KLIF;Kaspersky Lab Driver; C:\Windows\system32\DRIVERS\klif.sys [2014-03-19 488032]
R1 Vsdatant;Zone Alarm Firewall Driver; C:\Windows\system32\DRIVERS\vsdatant.sys [2015-11-07 367064]
R2 aswHwid;avast! HardwareID; C:\Windows\system32\drivers\aswHwid.sys [2016-02-18 32792]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2016-02-18 91168]
R2 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2016-02-18 127432]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2012-06-19 3240400]
R3 MSHUSBVideo;NX6000/NX3000/VX2000/VX5000/VX5500/VX7000/Cinema Filter Driver; C:\Windows\System32\Drivers\nx6000.sys [2010-12-13 30576]
R3 NVNET;NVIDIA nForce Ethernet Driver; C:\Windows\system32\DRIVERS\nvmf6232.sys [2010-08-12 298216]
R3 nvsmu;nvsmu; C:\Windows\system32\DRIVERS\nvsmu.sys [2010-03-22 18944]
R3 PSI;PSI; C:\Windows\system32\DRIVERS\psi_mf.sys [2011-12-16 15544]
S2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 amdagp;Ovladač filtru AMD portu AGP; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 ApfiltrService;Alps Touch Pad Filter Driver for Windows x86; C:\Windows\system32\DRIVERS\Apfiltr.sys [2011-05-25 305488]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-13 229888]
S3 Cam3820;Cam3820 PC Camera Driver; C:\Windows\System32\Drivers\cam3820a.sys [2010-08-25 369024]
S3 Dot4;MS IEEE-1284.4 Driver; C:\Windows\system32\DRIVERS\Dot4.sys [2009-07-14 131072]
S3 Dot4Print;Print Class Driver for IEEE-1284.4; C:\Windows\system32\DRIVERS\Dot4Prt.sys [2010-11-20 16384]
S3 dot4usb;MS Dot4USB Filter Dot4USB Filter; C:\Windows\system32\DRIVERS\dot4usb.sys [2009-07-14 36864]
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2012-07-28 49088]
S3 HpqKbFiltr;HpqKbFilter Driver; C:\Windows\system32\DRIVERS\HpqKbFiltr.sys [2007-06-18 16768]
S3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\Windows\system32\drivers\MBAMSwissArmy.sys []
S3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\Windows\system32\DRIVERS\nvm62x32.sys [2009-07-13 347264]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-12-09 14848]
S3 sisagp;Filtr SIS sběrnice AGP; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2013-10-02 49152]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\drivers\usbscan.sys [2013-07-03 36352]
S3 viaagp;Filtr VIA sběrnice AGP; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]
S3 WinUsb;WinUsb; C:\Windows\system32\drivers\WinUsb.sys [2010-11-20 35968]
S4 VBoxAswDrv;VBoxAsw Support Driver; \??\C:\Aviry\Avast\ng\vbox\VBoxAswDrv.sys []

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeActiveFileMonitor10.0;Adobe Active File Monitor V10; C:\Fotoeditory\Adobe Photoshop Elements 10\Elements 10 Organizer\PhotoshopElementsFileAgent.exe [2011-09-14 169624]
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2015-12-13 82128]
R2 avast! Antivirus;Avast Antivirus; C:\Aviry\Avast\AvastSvc.exe [2016-02-18 237096]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 hpqddsvc;Služba HP CUE DeviceDiscovery; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 MSCamSvc;MSCamSvc; C:\Program Files\Microsoft LifeCam\MSCamS32.exe [2010-12-13 135536]
R2 Net Driver HPZ12;Net Driver HPZ12; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2013-02-10 634144]
R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 RealPlayerUpdateSvc;RealPlayer Update Service; C:\Program Files\Real\UpdateService\RealPlayerUpdateSvc.exe [2015-06-17 31856]
R2 Secunia PSI Agent;Secunia PSI Agent; C:\Program Files\Secunia\PSI\PSIA.exe [2012-09-24 1328736]
R2 Secunia Update Agent;Secunia Update Agent; C:\Program Files\Secunia\PSI\sua.exe [2012-09-24 656480]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2012-07-17 1713904]
R2 ZAPrivacyService;ZoneAlarm Privacy Service; C:\Aviry\CheckPoint\ZoneAlarm\ZaPrivacyService.exe [2015-10-19 96272]
R3 hpqcxs08;hpqcxs08; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2015-11-05 105144]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2015-08-31 144200]
S2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2013-02-10 1266464]
S2 RealPlayer Cloud Service;RealPlayer Cloud Service; c:\program files\real\realplayer\RPDS\Bin\rpdsvc.exe [2015-07-01 1115224]
S2 RealTimes Desktop Service;RealTimes Desktop Service; c:\program files\real\realplayer\RPDS\Bin\rpdsvc.exe [2015-07-01 1115224]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2015-07-09 327296]
S2 vsmon;TrueVector Internet Monitor; C:\Aviry\CheckPoint\ZoneAlarm\vsmon.exe [2015-11-07 3722912]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2016-02-10 270016]
S3 fsssvc;Windows Live Family Safety Service; C:\Program Files\Windows Live\Family Safety\fsssvc.exe [2014-03-31 1512640]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2015-08-31 144200]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2016-01-22 102912]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2016-01-03 147624]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2012-05-04 1343400]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2015-11-05 45744]
S4 ATMsrvc;ATM Service; C:\Windows\System32\ATMsrvc.exe [2000-05-24 15360]
S4 AvastVBoxSvc;AvastVBox COM Service; C:\Aviry\Avast\ng\vbox\AvastVBoxSVC.exe []
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2015-11-05 135848]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2015-11-05 135848]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2015-11-05 135848]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: PC má vysokou aktivitu a problém s Operou

#6 Příspěvek od Rudy »

Stáhněte OTM: http://oldtimer.geekstogo.com/OTM.exe a uložte na plochu. Spusťte a do levého okna zkopírujte:
:files
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job

:reg
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3049C3E9-B461-4BC5-8870-4C09146192CA}]

:coomands
[Purity]
[Emptytemp]
[Emptyflash]
a klikněte na >MoveIt!<. Před skenem vypněte antivir a po něm restartujte PC. Dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Antusek
Návštěvník
Návštěvník
Příspěvky: 510
Registrován: 17 úno 2007 20:54

Re: PC má vysokou aktivitu a problém s Operou

#7 Příspěvek od Antusek »

Vkládám log. Díky za další postup.

Logfile of random's system information tool 1.10 (written by random/random)
Run by kuku at 2016-02-18 21:16:34
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 324 GB (68%) free of 477 GB
Total RAM: 2558 MB (60% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 21:16:51, on 18.2.2016
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.18205)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\UVC Video Camera\UVCSti.exe
C:\Program Files\UVC Video Camera\EffectDir\UVCTray.exe
C:\Windows\system32\taskhost.exe
C:\Program Files\EMET\EMET_notifier.exe
C:\Windows\System32\rundll32.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
C:\Aviry\Avast\AvastUI.exe
C:\Prográmky\PDF24\pdf24.exe
C:\Program Files\Real\RealPlayer\Update\realsched.exe
C:\Windows\system32\taskeng.exe
C:\Aviry\CCleaner\CCleaner.exe
C:\Programy\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\WinZip\FAHWindow32.exe
C:\Program Files\Real\RealPlayer\RPDS\Bin\rpsystray.exe
C:\Program Files\Secunia\PSI\psi_tray.exe
C:\Program Files\WinZip\WZUpdateNotifier.exe
C:\Program Files\WinZip\WzPreloader.exe
C:\Programy\HP\Digital Imaging\bin\hpqSTE08.exe
C:\Programy\HP\Digital Imaging\bin\hpqbam08.exe
C:\Programy\HP\Digital Imaging\bin\hpqgpc01.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Aviry\RSIT\RSIT.exe
C:\Program Files\trend micro\kuku.exe

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Aviry\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [UVCSti] "C:\Program Files\UVC Video Camera\UVCSti.exe"
O4 - HKLM\..\Run: [RunUVC] "C:\Program Files\UVC Video Camera\EffectDir\UVCtray.exe"
O4 - HKLM\..\Run: [Apoint] C:\Program Files\DellTPad\Apoint.exe
O4 - HKLM\..\Run: [EMET Notifier] C:\Program Files\EMET\EMET_notifier.exe
O4 - HKLM\..\Run: [hpqSRMon] C:\Programy\HP\Digital Imaging\bin\hpqSRMon.exe
O4 - HKLM\..\Run: [LifeCam] "C:\Program Files\Microsoft LifeCam\LifeExp.exe"
O4 - HKLM\..\Run: [Logitech Download Assistant] C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Aviry\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [AdobeAAMUpdater-1.0] "C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
O4 - HKLM\..\Run: [PDFPrint] C:\Prográmky\PDF24\pdf24.exe
O4 - HKLM\..\Run: [TkBellExe] "c:\program files\real\realplayer\Update\realsched.exe" -osboot
O4 - HKLM\..\Run: [RealDownloader] C:\Program Files\RealNetworks\RealDownloader\downloader2.exe
O4 - HKLM\..\Run: [ZoneAlarm] "C:\Aviry\CheckPoint\ZoneAlarm\zatray.exe"
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Aviry\CCleaner\CCleaner.exe" /MONITOR
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [ZoneAlarm Windows 10 Upgrader] "C:\ProgramData\CheckPoint\ZoneAlarm\Data\Updates\unpacked==win10=update_win10.zip\upgrade.exe" /delay (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [ZoneAlarm Windows 10 Upgrader] "C:\ProgramData\CheckPoint\ZoneAlarm\Data\Updates\unpacked==win10=update_win10.zip\upgrade.exe" /delay (User 'Default user')
O4 - Global Startup: FAH.lnk = C:\Program Files\WinZip\FAHConsole.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Programy\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: RealPlayer Cloud Service UI.lnk = C:\Program Files\Real\RealPlayer\RPDS\Bin\rpsystray.exe
O4 - Global Startup: RealTimes.lnk = C:\Program Files\Real\RealPlayer\RPDS\Bin\rpsystray.exe
O4 - Global Startup: Secunia PSI Tray.lnk = C:\Program Files\Secunia\PSI\psi_tray.exe
O4 - Global Startup: Update Notifier.lnk = C:\Program Files\WinZip\WZUpdateNotifier.exe
O4 - Global Startup: WinZip Preloader.lnk = C:\Program Files\WinZip\WzPreloader.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\Programy\MICROS~1\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Free YouTube to MP3 Converter - C:\Users\kuku\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm
O9 - Extra button: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Programy\MICROS~1\OFFICE11\REFIEBAR.DLL
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: Adobe Active File Monitor V10 (AdobeActiveFileMonitor10.0) - Adobe Systems Incorporated - C:\Fotoeditory\Adobe Photoshop Elements 10\Elements 10 Organizer\PhotoshopElementsFileAgent.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Aviry\Avast\AvastSvc.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: RealPlayer Cloud Service - RealNetworks, Inc. - c:\program files\real\realplayer\RPDS\Bin\rpdsvc.exe
O23 - Service: RealPlayer Update Service (RealPlayerUpdateSvc) - Unknown owner - C:\Program Files\Real\UpdateService\RealPlayerUpdateSvc.exe
O23 - Service: RealTimes Desktop Service - RealNetworks, Inc. - c:\program files\real\realplayer\RPDS\Bin\rpdsvc.exe
O23 - Service: Secunia PSI Agent - Secunia - C:\Program Files\Secunia\PSI\PSIA.exe
O23 - Service: Secunia Update Agent - Secunia - C:\Program Files\Secunia\PSI\sua.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Check Point Software Technologies Ltd. - C:\Aviry\CheckPoint\ZoneAlarm\vsmon.exe
O23 - Service: ZoneAlarm Privacy Service (ZAPrivacyService) - Check Point Software Technologies, Ltd. - C:\Aviry\CheckPoint\ZoneAlarm\ZaPrivacyService.exe

--
End of file - 7827 bytes

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe

=========Mozilla firefox=========

ProfilePath - C:\Users\kuku\AppData\Roaming\Mozilla\Firefox\Profiles\9x5re7vu.default

prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "about:home"
prefs.js - "keyword.URL" - "https://www.google.com/search"

"wrc@avast.com"=C:\Aviry\Avast\WebRep\FF
"smartwebprinting@hp.com"=C:\Programy\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
"{ABDE892B-13A8-4d1b-88E6-365A6E755758}"=C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext
"sp@avast.com"=C:\Aviry\Avast\SafePrice\FF


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 20.0.0.306 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF32_20_0_0_306.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.1.41212.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WLPG,version=16.4.3528.0331]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nppl3260;version=18.0.1.9]
"Description"=RealPlayer(tm) LiveConnect-Enabled Plug-In
"Path"=c:\program files\real\realplayer\Netscape6\nppl3260.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nprpplugin;version=18.0.1.9]
"Description"=RealTimes Download Plugin
"Path"=c:\program files\real\realplayer\Netscape6\nprpplugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.29.5\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.29.5\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll


C:\Users\kuku\AppData\Roaming\Mozilla\Firefox\Profiles\9x5re7vu.default\extensions\
donottrack@checkpoint.com
{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7}

C:\Users\kuku\AppData\Roaming\Mozilla\Firefox\Profiles\9x5re7vu.default\searchplugins\
Google.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Aviry\Avast\aswWebRepIE.dll [2016-02-18 678656]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"UVCSti"=C:\Program Files\UVC Video Camera\UVCSti.exe [2010-08-23 245760]
"RunUVC"=C:\Program Files\UVC Video Camera\EffectDir\UVCtray.exe [2010-08-23 7548928]
"Apoint"=C:\Program Files\DellTPad\Apoint.exe [2011-07-20 505720]
"EMET Notifier"=C:\Program Files\EMET\EMET_notifier.exe [2012-05-09 152152]
"hpqSRMon"=C:\Programy\HP\Digital Imaging\bin\hpqSRMon.exe [2008-07-22 150528]
"LifeCam"=C:\Program Files\Microsoft LifeCam\LifeExp.exe [2010-12-13 135536]
"Logitech Download Assistant"=C:\Windows\System32\LogiLDA.dll [2012-09-20 1425208]
"AvastUI.exe"=C:\Aviry\Avast\AvastUI.exe [2016-02-18 7139768]
"AdobeAAMUpdater-1.0"=C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe []
"PDFPrint"=C:\Prográmky\PDF24\pdf24.exe [2014-11-28 193568]
"TkBellExe"=c:\program files\real\realplayer\Update\realsched.exe [2015-07-01 286272]
"RealDownloader"=C:\Program Files\RealNetworks\RealDownloader\downloader2.exe [2015-06-16 608320]
"ZoneAlarm"=C:\Aviry\CheckPoint\ZoneAlarm\zatray.exe [2015-11-07 134792]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CCleaner Monitoring"=C:\Aviry\CCleaner\CCleaner.exe [2016-01-15 6628056]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
FAH.lnk - C:\Program Files\WinZip\FAHConsole.exe
HP Digital Imaging Monitor.lnk - C:\Programy\HP\Digital Imaging\bin\hpqtra08.exe
RealPlayer Cloud Service UI.lnk - C:\Program Files\Real\RealPlayer\RPDS\Bin\rpsystray.exe
RealTimes.lnk - C:\Program Files\Real\RealPlayer\RPDS\Bin\rpsystray.exe
Secunia PSI Tray.lnk - C:\Program Files\Secunia\PSI\psi_tray.exe
Update Notifier.lnk - C:\Program Files\WinZip\WZUpdateNotifier.exe
WinZip Preloader.lnk - C:\Program Files\WinZip\WzPreloader.exe

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vsmon]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"SoftwareSASGeneration"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=l3codecp.acm
"vidc.cvid"=iccvid.dll
"MSVideo8"=VfWWDM32.dll
"VIDC.XVID"=xvidvfw.dll
"VIDC.LAGS"=lagarith.dll
"VIDC.FFDS"=ff_vfw.dll
"msacm.ac3acm"=ac3acm.acm
"wave1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave2"=wdmaud.drv
"mixer2"=wdmaud.drv
"msacm.siren"=sirenacm.dll
"wave3"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer3"=wdmaud.drv
"aux1"=wdmaud.drv
"wave4"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer4"=wdmaud.drv
"aux2"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2016-02-18 21:11:56 ----D---- C:\_OTM
2016-02-18 19:49:07 ----D---- C:\AdwCleaner
2016-02-18 18:28:34 ----D---- C:\rsit
2016-02-18 15:51:32 ----A---- C:\Windows\system32\aswBoot.exe
2016-02-18 15:50:38 ----A---- C:\Windows\avastSS.scr
2016-02-10 18:05:36 ----A---- C:\Windows\system32\shell32.dll
2016-02-10 18:05:36 ----A---- C:\Windows\explorer.exe
2016-02-10 18:05:35 ----A---- C:\Windows\system32\ExplorerFrame.dll
2016-02-10 18:05:35 ----A---- C:\Windows\system32\authui.dll
2016-02-10 18:05:22 ----A---- C:\Windows\system32\rdpcorets.dll
2016-02-10 18:05:21 ----A---- C:\Windows\system32\rdpudd.dll
2016-02-10 18:05:21 ----A---- C:\Windows\system32\RdpGroupPolicyExtension.dll
2016-02-10 18:05:19 ----A---- C:\Windows\system32\invagent.dll
2016-02-10 18:05:19 ----A---- C:\Windows\system32\generaltel.dll
2016-02-10 18:05:19 ----A---- C:\Windows\system32\devinv.dll
2016-02-10 18:05:19 ----A---- C:\Windows\system32\CompatTelRunner.exe
2016-02-10 18:05:19 ----A---- C:\Windows\system32\appraiser.dll
2016-02-10 18:05:19 ----A---- C:\Windows\system32\aeinv.dll
2016-02-10 18:05:19 ----A---- C:\Windows\system32\acmigration.dll
2016-02-10 18:05:10 ----A---- C:\Windows\system32\ole32.dll
2016-02-10 18:00:19 ----A---- C:\Windows\system32\jnwmon.dll
2016-02-10 18:00:19 ----A---- C:\Windows\system32\InkEd.dll
2016-02-10 18:00:18 ----A---- C:\Windows\system32\win32k.sys
2016-02-10 18:00:17 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2016-02-10 18:00:07 ----A---- C:\Windows\system32\ntoskrnl.exe
2016-02-10 18:00:07 ----A---- C:\Windows\system32\ntkrnlpa.exe
2016-02-10 18:00:07 ----A---- C:\Windows\system32\ntdll.dll
2016-02-10 18:00:07 ----A---- C:\Windows\system32\KernelBase.dll
2016-02-10 18:00:07 ----A---- C:\Windows\system32\kernel32.dll
2016-02-10 18:00:07 ----A---- C:\Windows\system32\EncDec.dll
2016-02-10 18:00:07 ----A---- C:\Windows\system32\CPFilters.dll
2016-02-10 18:00:06 ----A---- C:\Windows\system32\mtxoci.dll
2016-02-10 18:00:06 ----A---- C:\Windows\system32\msorcl32.dll
2016-02-10 18:00:06 ----A---- C:\Windows\system32\kerberos.dll
2016-02-10 18:00:06 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2016-02-10 18:00:06 ----A---- C:\Windows\system32\advapi32.dll
2016-02-10 18:00:05 ----A---- C:\Windows\system32\winsrv.dll
2016-02-10 18:00:05 ----A---- C:\Windows\system32\wdigest.dll
2016-02-10 18:00:05 ----A---- C:\Windows\system32\TSpkg.dll
2016-02-10 18:00:05 ----A---- C:\Windows\system32\sspicli.dll
2016-02-10 18:00:05 ----A---- C:\Windows\system32\srcore.dll
2016-02-10 18:00:05 ----A---- C:\Windows\system32\smss.exe
2016-02-10 18:00:05 ----A---- C:\Windows\system32\schannel.dll
2016-02-10 18:00:05 ----A---- C:\Windows\system32\rpcrt4.dll
2016-02-10 18:00:05 ----A---- C:\Windows\system32\ncrypt.dll
2016-02-10 18:00:05 ----A---- C:\Windows\system32\msv1_0.dll
2016-02-10 18:00:05 ----A---- C:\Windows\system32\lsasrv.dll
2016-02-10 18:00:05 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2016-02-10 18:00:05 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2016-02-10 18:00:05 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2016-02-10 18:00:05 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2016-02-10 18:00:05 ----A---- C:\Windows\system32\conhost.exe
2016-02-10 18:00:04 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2016-02-10 18:00:04 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2016-02-10 18:00:04 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2016-02-10 18:00:04 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2016-02-10 18:00:04 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2016-02-10 18:00:04 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2016-02-10 18:00:04 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2016-02-10 18:00:04 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-02-10 18:00:04 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2016-02-10 18:00:04 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2016-02-10 18:00:04 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2016-02-10 18:00:04 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2016-02-10 18:00:04 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2016-02-10 18:00:04 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2016-02-10 18:00:04 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2016-02-10 18:00:04 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2016-02-10 18:00:04 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2016-02-10 18:00:04 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2016-02-10 18:00:04 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2016-02-10 18:00:04 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2016-02-10 18:00:04 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2016-02-10 18:00:04 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2016-02-10 18:00:04 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2016-02-10 18:00:04 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2016-02-10 18:00:04 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2016-02-10 18:00:04 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2016-02-10 18:00:04 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2016-02-10 18:00:04 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2016-02-10 18:00:04 ----A---- C:\Windows\system32\sspisrv.dll
2016-02-10 18:00:04 ----A---- C:\Windows\system32\srclient.dll
2016-02-10 18:00:04 ----A---- C:\Windows\system32\secur32.dll
2016-02-10 18:00:04 ----A---- C:\Windows\system32\rstrui.exe
2016-02-10 18:00:04 ----A---- C:\Windows\system32\lsass.exe
2016-02-10 18:00:04 ----A---- C:\Windows\system32\csrsrv.dll
2016-02-10 18:00:04 ----A---- C:\Windows\system32\cryptbase.dll
2016-02-10 18:00:04 ----A---- C:\Windows\system32\credssp.dll
2016-02-10 18:00:04 ----A---- C:\Windows\system32\auditpol.exe
2016-02-10 18:00:04 ----A---- C:\Windows\system32\apisetschema.dll
2016-02-10 18:00:03 ----A---- C:\Windows\system32\msobjs.dll
2016-02-10 18:00:03 ----A---- C:\Windows\system32\msaudite.dll
2016-02-10 18:00:03 ----A---- C:\Windows\system32\adtschema.dll
2016-02-10 17:59:36 ----A---- C:\Windows\system32\urlmon.dll
2016-02-10 17:59:36 ----A---- C:\Windows\system32\ieui.dll
2016-02-10 17:59:35 ----A---- C:\Windows\system32\ieframe.dll
2016-02-10 17:59:34 ----A---- C:\Windows\system32\mshtml.dll
2016-02-10 17:59:33 ----A---- C:\Windows\system32\iertutil.dll
2016-02-10 13:26:09 ----A---- C:\Windows\system32\occache.dll
2016-02-10 13:26:09 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2016-02-10 13:26:09 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2016-02-10 13:26:09 ----A---- C:\Windows\system32\iernonce.dll
2016-02-10 13:26:09 ----A---- C:\Windows\system32\ieetwproxystub.dll
2016-02-10 13:26:09 ----A---- C:\Windows\system32\ieetwcollector.exe
2016-02-10 13:26:09 ----A---- C:\Windows\system32\iedkcs32.dll
2016-02-10 13:26:09 ----A---- C:\Windows\system32\ie4uinit.exe
2016-02-10 13:26:08 ----A---- C:\Windows\system32\msfeeds.dll
2016-02-10 13:26:08 ----A---- C:\Windows\system32\jsproxy.dll
2016-02-10 13:26:08 ----A---- C:\Windows\system32\jscript9diag.dll
2016-02-10 13:26:08 ----A---- C:\Windows\system32\inseng.dll
2016-02-10 13:26:08 ----A---- C:\Windows\system32\ieUnatt.exe
2016-02-10 13:26:08 ----A---- C:\Windows\system32\ieapfltr.dll
2016-02-10 13:26:08 ----A---- C:\Windows\system32\dxtmsft.dll
2016-02-10 13:26:07 ----A---- C:\Windows\system32\webcheck.dll
2016-02-10 13:26:06 ----A---- C:\Windows\system32\msrating.dll
2016-02-10 13:26:05 ----A---- C:\Windows\system32\wininet.dll
2016-02-10 13:26:05 ----A---- C:\Windows\system32\iesetup.dll
2016-02-10 13:26:05 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2016-02-10 13:26:04 ----A---- C:\Windows\system32\dxtrans.dll
2016-02-10 13:26:02 ----A---- C:\Windows\system32\mshtmled.dll
2016-02-10 13:26:01 ----A---- C:\Windows\system32\mshtmlmedia.dll
2016-02-10 13:26:01 ----A---- C:\Windows\system32\MshtmlDac.dll
2016-02-10 13:25:59 ----A---- C:\Windows\system32\jscript9.dll
2016-02-10 13:25:58 ----A---- C:\Windows\system32\vbscript.dll
2016-02-10 13:25:58 ----A---- C:\Windows\system32\jscript.dll
2016-02-10 13:25:44 ----A---- C:\Windows\system32\wucltux.dll
2016-02-10 13:25:44 ----A---- C:\Windows\system32\wuaueng.dll
2016-02-10 13:25:44 ----A---- C:\Windows\system32\wuapi.dll
2016-02-10 13:25:43 ----A---- C:\Windows\system32\wuwebv.dll
2016-02-10 13:25:43 ----A---- C:\Windows\system32\wups2.dll
2016-02-10 13:25:43 ----A---- C:\Windows\system32\wups.dll
2016-02-10 13:25:43 ----A---- C:\Windows\system32\wudriver.dll
2016-02-10 13:25:43 ----A---- C:\Windows\system32\wuauclt.exe
2016-02-10 13:25:43 ----A---- C:\Windows\system32\wuapp.exe
2016-02-10 13:25:43 ----A---- C:\Windows\system32\wu.upgrade.ps.dll
2016-02-10 13:25:43 ----A---- C:\Windows\system32\WinSetupUI.dll
2016-01-31 22:12:03 ----A---- C:\Windows\system32\icaapi.dll
2016-01-31 22:12:03 ----A---- C:\Windows\system32\drivers\tssecsrv.sys
2016-01-31 22:10:51 ----A---- C:\Windows\system32\kbdgeoqw.dll
2016-01-31 22:10:51 ----A---- C:\Windows\system32\KBDAZEL.DLL
2016-01-31 22:10:50 ----A---- C:\Windows\system32\KBDAZE.DLL
2016-01-31 22:10:49 ----A---- C:\Windows\system32\nlsbres.dll
2016-01-23 22:48:09 ----D---- C:\Stati 2116

======List of files/folders modified in the last 1 month======

2016-02-18 21:16:38 ----D---- C:\Windows\Temp
2016-02-18 21:16:36 ----D---- C:\Program Files\trend micro
2016-02-18 21:14:23 ----D---- C:\Windows\system32\Tasks
2016-02-18 21:13:10 ----D---- C:\Windows\system32\config
2016-02-18 21:12:51 ----D---- C:\Windows\Tasks
2016-02-18 20:03:12 ----D---- C:\Program Files\Opera
2016-02-18 19:50:56 ----RD---- C:\Program Files
2016-02-18 19:46:33 ----D---- C:\Aviry
2016-02-18 16:10:43 ----D---- C:\Windows\system32\drivers
2016-02-18 16:10:39 ----D---- C:\Windows
2016-02-18 16:05:25 ----D---- C:\Users\kuku\AppData\Roaming\Skype
2016-02-18 16:03:34 ----SHD---- C:\Windows\Installer
2016-02-18 16:03:34 ----SHD---- C:\Config.Msi
2016-02-18 16:02:17 ----D---- C:\ProgramData\Skype
2016-02-18 16:01:47 ----RD---- C:\Program Files\Skype
2016-02-18 16:00:25 ----D---- C:\Program Files\Mozilla Firefox
2016-02-18 15:51:36 ----D---- C:\Windows\winsxs
2016-02-18 15:51:32 ----D---- C:\Windows\System32
2016-02-18 11:32:47 ----D---- C:\Windows\inf
2016-02-18 11:32:47 ----A---- C:\Windows\system32\PerfStringBackup.INI
2016-02-17 22:49:16 ----D---- C:\Články 2016
2016-02-16 22:32:40 ----SHD---- C:\System Volume Information
2016-02-16 21:31:42 ----SD---- C:\Users\kuku\AppData\Roaming\Microsoft
2016-02-16 09:20:44 ----HD---- C:\ProgramData
2016-02-15 10:09:40 ----D---- C:\Windows\Prefetch
2016-02-13 09:11:57 ----D---- C:\Windows\system32\NDF
2016-02-12 12:46:37 ----D---- C:\Windows\rescache
2016-02-11 16:03:50 ----D---- C:\Windows\debug
2016-02-11 15:39:57 ----SD---- C:\Windows\system32\CompatTel
2016-02-11 15:39:57 ----D---- C:\Windows\system32\appraiser
2016-02-11 15:39:57 ----D---- C:\Windows\AppPatch
2016-02-11 15:39:56 ----D---- C:\Windows\system32\cs-CZ
2016-02-11 15:39:56 ----D---- C:\Windows\cs-CZ
2016-02-11 12:28:27 ----D---- C:\Windows\Microsoft.NET
2016-02-11 12:26:57 ----RSD---- C:\Windows\assembly
2016-02-11 08:11:18 ----D---- C:\Program Files\Windows Journal
2016-02-11 08:11:13 ----D---- C:\Windows\system32\en-US
2016-02-11 08:11:13 ----D---- C:\Program Files\Internet Explorer
2016-02-10 23:26:10 ----D---- C:\Windows\system32\MRT
2016-02-10 23:26:03 ----A---- C:\Windows\system32\MRT.exe
2016-02-10 21:44:56 ----A---- C:\Windows\system32\FlashPlayerApp.exe
2016-02-10 13:24:42 ----D---- C:\Windows\system32\catroot2
2016-02-10 10:32:00 ----D---- C:\Windows\system32\wbem
2016-02-10 10:31:11 ----D---- C:\Windows\system32\wfp
2016-02-10 10:31:11 ----D---- C:\Windows\system32\DriverStore
2016-02-10 10:31:09 ----D---- C:\Windows\registration
2016-02-10 10:31:04 ----D---- C:\ProgramData\Real
2016-02-04 21:58:06 ----D---- C:\články
2016-02-03 09:40:02 ----D---- C:\Album fotografií
2016-01-31 22:20:58 ----RSD---- C:\Windows\Fonts
2016-01-27 09:41:27 ----D---- C:\Návody
2016-01-22 18:00:33 ----D---- C:\Došlé dopisy
2016-01-22 16:07:31 ----D---- C:\Prográmky
2016-01-21 21:32:12 ----D---- C:\Recepty
2016-01-21 07:50:48 ----SD---- C:\ProgramData\Microsoft
2016-01-19 17:33:46 ----D---- C:\Windows\system32\FxsTmp

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2016-02-18 58776]
R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2016-02-18 221240]
R0 KL1;kl1; C:\Windows\system32\DRIVERS\kl1.sys [2014-03-19 135776]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368]
R0 PxHelp20;PxHelp20; C:\Windows\System32\Drivers\PxHelp20.sys [2010-03-19 45648]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2016-02-18 91232]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2016-02-18 812720]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2016-02-18 447848]
R1 KLIF;Kaspersky Lab Driver; C:\Windows\system32\DRIVERS\klif.sys [2014-03-19 488032]
R1 Vsdatant;Zone Alarm Firewall Driver; C:\Windows\system32\DRIVERS\vsdatant.sys [2015-11-07 367064]
R2 aswHwid;avast! HardwareID; C:\Windows\system32\drivers\aswHwid.sys [2016-02-18 32792]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2016-02-18 91168]
R2 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2016-02-18 127432]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2012-06-19 3240400]
R3 MSHUSBVideo;NX6000/NX3000/VX2000/VX5000/VX5500/VX7000/Cinema Filter Driver; C:\Windows\System32\Drivers\nx6000.sys [2010-12-13 30576]
R3 NVNET;NVIDIA nForce Ethernet Driver; C:\Windows\system32\DRIVERS\nvmf6232.sys [2010-08-12 298216]
R3 nvsmu;nvsmu; C:\Windows\system32\DRIVERS\nvsmu.sys [2010-03-22 18944]
R3 PSI;PSI; C:\Windows\system32\DRIVERS\psi_mf.sys [2011-12-16 15544]
S2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 amdagp;Ovladač filtru AMD portu AGP; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 ApfiltrService;Alps Touch Pad Filter Driver for Windows x86; C:\Windows\system32\DRIVERS\Apfiltr.sys [2011-05-25 305488]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-13 229888]
S3 Cam3820;Cam3820 PC Camera Driver; C:\Windows\System32\Drivers\cam3820a.sys [2010-08-25 369024]
S3 Dot4;MS IEEE-1284.4 Driver; C:\Windows\system32\DRIVERS\Dot4.sys [2009-07-14 131072]
S3 Dot4Print;Print Class Driver for IEEE-1284.4; C:\Windows\system32\DRIVERS\Dot4Prt.sys [2010-11-20 16384]
S3 dot4usb;MS Dot4USB Filter Dot4USB Filter; C:\Windows\system32\DRIVERS\dot4usb.sys [2009-07-14 36864]
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2012-07-28 49088]
S3 HpqKbFiltr;HpqKbFilter Driver; C:\Windows\system32\DRIVERS\HpqKbFiltr.sys [2007-06-18 16768]
S3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\Windows\system32\drivers\MBAMSwissArmy.sys []
S3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\Windows\system32\DRIVERS\nvm62x32.sys [2009-07-13 347264]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-12-09 14848]
S3 sisagp;Filtr SIS sběrnice AGP; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2013-10-02 49152]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\drivers\usbscan.sys [2013-07-03 36352]
S3 viaagp;Filtr VIA sběrnice AGP; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]
S3 WinUsb;WinUsb; C:\Windows\system32\drivers\WinUsb.sys [2010-11-20 35968]
S4 VBoxAswDrv;VBoxAsw Support Driver; \??\C:\Aviry\Avast\ng\vbox\VBoxAswDrv.sys []

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeActiveFileMonitor10.0;Adobe Active File Monitor V10; C:\Fotoeditory\Adobe Photoshop Elements 10\Elements 10 Organizer\PhotoshopElementsFileAgent.exe [2011-09-14 169624]
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2015-12-13 82128]
R2 avast! Antivirus;Avast Antivirus; C:\Aviry\Avast\AvastSvc.exe [2016-02-18 237096]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 hpqddsvc;Služba HP CUE DeviceDiscovery; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 MSCamSvc;MSCamSvc; C:\Program Files\Microsoft LifeCam\MSCamS32.exe [2010-12-13 135536]
R2 Net Driver HPZ12;Net Driver HPZ12; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2013-02-10 634144]
R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 RealPlayerUpdateSvc;RealPlayer Update Service; C:\Program Files\Real\UpdateService\RealPlayerUpdateSvc.exe [2015-06-17 31856]
R2 Secunia PSI Agent;Secunia PSI Agent; C:\Program Files\Secunia\PSI\PSIA.exe [2012-09-24 1328736]
R2 Secunia Update Agent;Secunia Update Agent; C:\Program Files\Secunia\PSI\sua.exe [2012-09-24 656480]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2012-07-17 1713904]
R2 ZAPrivacyService;ZoneAlarm Privacy Service; C:\Aviry\CheckPoint\ZoneAlarm\ZaPrivacyService.exe [2015-10-19 96272]
R3 hpqcxs08;hpqcxs08; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2015-11-05 105144]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2015-08-31 144200]
S2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2013-02-10 1266464]
S2 RealPlayer Cloud Service;RealPlayer Cloud Service; c:\program files\real\realplayer\RPDS\Bin\rpdsvc.exe [2015-07-01 1115224]
S2 RealTimes Desktop Service;RealTimes Desktop Service; c:\program files\real\realplayer\RPDS\Bin\rpdsvc.exe [2015-07-01 1115224]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2015-07-09 327296]
S2 vsmon;TrueVector Internet Monitor; C:\Aviry\CheckPoint\ZoneAlarm\vsmon.exe [2015-11-07 3722912]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2016-02-10 270016]
S3 fsssvc;Windows Live Family Safety Service; C:\Program Files\Windows Live\Family Safety\fsssvc.exe [2014-03-31 1512640]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2015-08-31 144200]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2016-01-22 102912]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2016-01-03 147624]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2012-05-04 1343400]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2015-11-05 45744]
S4 ATMsrvc;ATM Service; C:\Windows\System32\ATMsrvc.exe [2000-05-24 15360]
S4 AvastVBoxSvc;AvastVBox COM Service; C:\Aviry\Avast\ng\vbox\AvastVBoxSVC.exe []
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2015-11-05 135848]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2015-11-05 135848]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2015-11-05 135848]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: PC má vysokou aktivitu a problém s Operou

#8 Příspěvek od Rudy »

Smazáno. Znovu spusťte OTM a klikněte na >CleanUp!<. OTM po sobě uklidí. Nakonec restartujte PC. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Antusek
Návštěvník
Návštěvník
Příspěvky: 510
Registrován: 17 úno 2007 20:54

Re: PC má vysokou aktivitu a problém s Operou

#9 Příspěvek od Antusek »

Provedl jsem vše dle pokynu. Včera večer jsem byl nucen přeinstalovat Operu. Naštěstí odkazy zůstaly. Pak fungovala do doby než byl PC vypnut. Veze 35.0. Dopoledne to opět nefungovalo a tatínek mi napsal hlášení co to napsalo. Nejprve to ohlásilo, že program neodpovídá. Tatínek udělal bod obnovení. Pak to hlásilo, že nelze otevřít složku uživatelského profilu z důvodu nedostatečných oprávnění. Pokuste se problém vyřešit se správcem počítače. Tak jsem provedl To dočištění tím OTM. Ten něco udělal. A pak zkusil spustit Operu. Nešla. Po druhé reinstalaci, opět fungovala, ale po restartu PC opět nefunguje. A PC má stále vysokou aktivitu. Červená kontrolka bliká a slyším jak počítač pracuje. Podíval jsem se do správce úloh a opera tam je několikrát ač po neúspěšném otevření se jí podařilo zavřít. Sejmul jsem tři obrazovky (obrázky), aby bylo vidět, co v tu chvíli bylo zpuštěné za procesy. To už je divné. Nedělá to stále nějaká potvora, která v PC je nebo někdo na dálku (Google, Microsoft aj.) Také je ve správci úloh nějak podezřele hodně procesů windows.
Dík za další rady. :)
Přílohy
spuštěné procesy 1.jpg
spuštěné procesy 1.jpg (155.14 KiB) Zobrazeno 2637 x

Antusek
Návštěvník
Návštěvník
Příspěvky: 510
Registrován: 17 úno 2007 20:54

Re: PC má vysokou aktivitu a problém s Operou

#10 Příspěvek od Antusek »

spuštěné procesy 2.jpg
spuštěné procesy 2.jpg (157.77 KiB) Zobrazeno 2635 x

Antusek
Návštěvník
Návštěvník
Příspěvky: 510
Registrován: 17 úno 2007 20:54

Re: PC má vysokou aktivitu a problém s Operou

#11 Příspěvek od Antusek »

spuštěné procesy 3.jpg
spuštěné procesy 3.jpg (154.61 KiB) Zobrazeno 2635 x

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: PC má vysokou aktivitu a problém s Operou

#12 Příspěvek od Rudy »

Systém je zatížen pouhým jedním procentem (nečinné procesy, což je systémová rezerva, činí 99%). Nechápu, jak může mít PC vysokou aktivitu. Udělejte kompletní sken MBAM: http://www.malwarebytes.org/mbam.php a dejte log. Předem nic nemažte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Antusek
Návštěvník
Návštěvník
Příspěvky: 510
Registrován: 17 úno 2007 20:54

Re: PC má vysokou aktivitu a problém s Operou

#13 Příspěvek od Antusek »

Děkuji za další radu. Tou velkou aktivitou jsem myslel to, že stále slyším jak pracuje a bliká červená kontrolka, jako kdyby se něco nahrávalo. Jinak ta Opera stále zlobí. Zkusil jsem jí znova reinstalovat a šla, ale když jsem jí zavřel a okno se zavřelo a za chvíli spustil znovu tak už zase nešla.
Udělám ten sken s MBAM.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: PC má vysokou aktivitu a problém s Operou

#14 Příspěvek od Rudy »

Operu zazálohujte pomocí OperaBackup: http://www.stahuj.centrum.cz/utility_a_ ... ra-backup/ . Pak operu odinstalujte vč. jejího profilu. Znovu nainstalujte a zpět ze zálohy nakopírujte pouze záložky a hesla.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Antusek
Návštěvník
Návštěvník
Příspěvky: 510
Registrován: 17 úno 2007 20:54

Re: PC má vysokou aktivitu a problém s Operou

#15 Příspěvek od Antusek »

Posílám výsledek skenu z MBAM a díky za další rady. Také pak udělám tu Operu. Nic jsem nemazal.

Malwarebytes Anti-Malware
www.malwarebytes.org

Datum skenování: 19.2.2016
Čas skenování: 17:24
Protokol:
Správce: Ano

Verze: 2.2.0.1024
Databáze malwaru: v2016.02.19.04
Databáze rootkitů: v2016.02.17.01
Licence: Bezplatná verze
Ochrana proti malwaru: Vypnuto
Ochrana proti škodlivým webovým stránkám: Vypnuto
Ochrana programu: Vypnuto

OS: Windows 7 Service Pack 1
CPU: x86
Souborový systém: NTFS
Uživatel: kuku

Typ skenu: Sken hrozeb
Výsledek: Dokončeno
Prohledaných objektů: 360361
Uplynulý čas: 19 min, 14 sek

Paměť: Zapnuto
Po spuštění: Zapnuto
Souborový systém: Zapnuto
Archivy: Zapnuto
Rootkity: Zapnuto
Heuristika: Zapnuto
PUP: Zapnuto
PUM: Zapnuto

Procesy: 0
(Nenalezeny žádné škodlivé položky)

Moduly: 0
(Nenalezeny žádné škodlivé položky)

Klíče registru: 2
PUP.Optional.ICQToolbar, HKU\S-1-5-21-2566555506-497672473-4049909881-1004\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{855F3B16-6D32-4FE6-8A56-BBB695989046}, , [494798ca940591a552ab17888d75bb45],
PUP.Optional.ICQToolbar, HKU\S-1-5-21-2566555506-497672473-4049909881-1004\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{855F3B16-6D32-4FE6-8A56-BBB695989046}, , [494798ca940591a552ab17888d75bb45],

Hodnoty registru: 2
PUP.Optional.ICQToolbar, HKU\S-1-5-21-2566555506-497672473-4049909881-1004\SOFTWARE\MICROSOFT\INTERNET EXPLORER\URLSEARCHHOOKS|{855F3B16-6D32-4FE6-8A56-BBB695989046}, , [494798ca940591a552ab17888d75bb45],
PUP.Optional.ICQToolbar, HKU\S-1-5-21-2566555506-497672473-4049909881-1004\SOFTWARE\MICROSOFT\INTERNET EXPLORER\URLSEARCHHOOKS\{855F3B16-6D32-4fe6-8A56-BBB695989046}, , [6c249ac8118884b24ab3d5caff035ea2],

Data registru: 0
(Nenalezeny žádné škodlivé položky)

Složky: 1
PUP.Optional.Spigot, C:\Users\kuku\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\mhkaekfpcppmmioggniknbnbdbcigpkk, , [9ef25111f4a5ab8b2072895f04fe04fc],

Soubory: 0
(Nenalezeny žádné škodlivé položky)

Fyzické sektory: 0
(Nenalezeny žádné škodlivé položky)


(end)

Zamčeno