Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

nový log - Prosím o kontrolu - zpomalený ntb

Nemáte v tuto chvíli žádný problém s pc a chcete se jen ujistit, že je vše v pořádku?
Vložte log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zamčeno
Zpráva
Autor
Dubák
Návštěvník
Návštěvník
Příspěvky: 191
Registrován: 12 lis 2005 15:56
Bydliště: podkrkonoší

nový log - Prosím o kontrolu - zpomalený ntb

#1 Příspěvek od Dubák »

Poprosil bych o kontrolu zpomaleného ntb

děkuji

Logfile of random's system information tool 1.14 (written by random/random)
Run by Dubák J at 2017-02-06 14:58:54
Microsoft Windows 10 Home
System drive C: has 137 GB (59%) free of 232 GB
Total RAM: 3951 MB (47% free)
X64

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 14:58:56, on 6.2.2017
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.14393.0000)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Users\Dubák J\Documents\GIGABYTE\GIGABYTE Sim\Mouse.exe
C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe
C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE
C:\Program Files (x86)\Canon\Quick Menu\CNQMUPDT.EXE
C:\Program Files\trend micro\Dubák J_RSITx64.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: HP ProtectTools Security Manager Extension - {395610AE-C624-4f58-B89E-23733EA00F9A} - C:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpOtsPluginIe8.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [QLBController] C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\QLBController.exe /start
O4 - HKLM\..\Run: [GIGABYTEMOUSE] C:\Users\Dubák J\Documents\GIGABYTE\GIGABYTE Sim\Mouse.exe
O4 - HKLM\..\Run: [IJNetworkScannerSelectorEX] C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe /FORCE
O4 - HKLM\..\Run: [CanonQuickMenu] C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE /logon
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\Program Files\Microsoft Office\Office14\EXCEL.EXE/3000
O9 - Extra button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe (file missing)
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe (file missing)
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {5AE58FCF-6F6A-49B2-B064-02492C66E3F4} (MUCatalogWebControl Class) - http://catalog.update.microsoft.com/v7/ ... 5765621843
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\WINDOWS\system32\atiesrxx.exe (file missing)
O23 - Service: BlueStacks Log Rotator Service (BstHdLogRotatorSvc) - BlueStack Systems, Inc. - C:\Program Files (x86)\Bluestacks\HD-LogRotatorService.exe
O23 - Service: BlueStacks Plus Android Service (BstHdPlusAndroidSvc) - BlueStack Systems, Inc. - C:\Program Files (x86)\Bluestacks\HD-Plus-Service.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: Služba biometrického ověřování (DpHost) - DigitalPersona, Inc. - C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\ekrn.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: HP ProtectTools Service - Hewlett-Packard Development Company, L.P - C:\Program Files (x86)\Hewlett-Packard\2009 Password Filter for HP ProtectTools\PTChangeFilterService.exe
O23 - Service: HP Hotkey Monitor (hpHotkeyMonitor) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\hpHotkeyMonitor.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: @oem31.inf,%hpservice_desc%;HP Service (hpsrv) - Unknown owner - C:\WINDOWS\system32\Hpservice.exe (file missing)
O23 - Service: HP Support Solutions Framework Service (HPSupportSolutionsFrameworkService) - HP Inc. - C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @mqutil.dll,-6102 (MSMQ) - Unknown owner - C:\WINDOWS\system32\mqsvc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management & Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Validity VCS Fingerprint Service (vcsFPService) - Validity Sensors, Inc. - C:\Windows\system32\vcsFPService.exe
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Wondershare Application Framework Service (WsAppService) - Wondershare - C:\Program Files (x86)\Wondershare\WAF\2.2.4.1\WsAppService.exe

--
End of file - 9732 bytes

======Enumerating Processes======

C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
C:\WINDOWS\System32\svchost.exe -k NetworkService
C:\WINDOWS\system32\atiesrxx.exe
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\Hpservice.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k apphost
"C:\Program Files (x86)\Bluestacks\HD-LogRotatorService.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\hpHotkeyMonitor.exe"
"C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\Hewlett-Packard\2009 Password Filter for HP ProtectTools\PTChangeFilterService.exe"
C:\WINDOWS\system32\dashost.exe
C:\WINDOWS\system32\svchost.exe -k iissvcs
C:\WINDOWS\system32\mqsvc.exe
C:\WINDOWS\system32\svchost.exe -k appmodel
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe"
"C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe" -NetMsmqActivator
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
C:\WINDOWS\System32\WinLogon.exe -SpecialSession
C:\WINDOWS\System32\dwm.exe
C:\WINDOWS\system32\atieclxx.exe
"C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide
C:\WINDOWS\system32\sihost.exe
C:\WINDOWS\system32\taskhostw.exe
"C:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe"
C:\WINDOWS\Explorer.EXE
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe"
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Program Files\Synaptics\SynTP\SynTPHelper.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\QLBController.exe" /start
"C:\Users\Dubák J\Documents\GIGABYTE\GIGABYTE Sim\Mouse.exe"
C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
"C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe" /FORCE
"C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE" /logon
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
C:\WINDOWS\splwow64.exe 8192
"C:\Program Files (x86)\Canon\Quick Menu\CNQMUPDT.EXE"
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
C:\WINDOWS\system32\DllHost.exe /Processid:{49F6E667-6658-4BD1-9DE9-6AF87F9FAF85}
C:\WINDOWS\System32\fontdrvhost.exe
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
"C:\WINDOWS\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
C:\WINDOWS\System32\svchost.exe -k utcsvc
C:\WINDOWS\system32\ApplicationFrameHost.exe -Embedding
"C:\WINDOWS\ImmersiveControlPanel\SystemSettings.exe" -ServerName:microsoft.windows.immersivecontrolpanel
"C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.1118.10000.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe" -ServerName:App.AppXzst44mncqdg84v7sv6p7yznqwssy6f7f.mca
C:\WINDOWS\system32\AUDIODG.EXE 0x47c
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe11_ Global\UsGthrCtrlFltPipeMssGthrPipe11 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 656 660 668 8192 664
"C:\WINDOWS\system32\backgroundTaskHost.exe" -ServerName:CortanaUI.AppXy7vb4pc2dr3kc93kfc509b1d0arkfb2x.mca
"C:\Users\Dubák J\Desktop\RSITx64.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe

======Scheduled tasks folder======

C:\WINDOWS\tasks\Adobe Flash Player PPAPI Notifier.job - C:\WINDOWS\SysWoW64\Macromed\Flash\FlashUtil32_24_0_0_194_pepper.exe -check pepperplugin
C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\WINDOWS\SysWoW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\system32\tasks\Adobe Acrobat Update Task - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
C:\WINDOWS\system32\tasks\Adobe Flash Player PPAPI Notifier - C:\WINDOWS\SysWoW64\Macromed\Flash\FlashUtil32_24_0_0_194_pepper.exe -check pepperplugin
C:\WINDOWS\system32\tasks\Adobe Flash Player Updater - C:\WINDOWS\SysWoW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\system32\tasks\CCleanerSkipUAC - "C:\Program Files\CCleaner\CCleaner.exe" $(Arg0)
C:\WINDOWS\system32\tasks\GoogleUpdateTaskMachineCore - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\system32\tasks\GoogleUpdateTaskMachineUA - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\system32\tasks\GoogleUpdateTaskUserS-1-5-21-70487073-514515017-45116921-1000Core - C:\Users\Dubák J\AppData\Local\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\system32\tasks\GoogleUpdateTaskUserS-1-5-21-70487073-514515017-45116921-1000UA - C:\Users\Dubák J\AppData\Local\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\system32\tasks\OneDrive Standalone Update Task - C:\Users\Míra\AppData\Local\Microsoft\OneDrive\17.3.6517.0809\OneDriveStandaloneUpdater.exe
C:\WINDOWS\system32\tasks\OneDrive Standalone Update Task v2 - %localappdata%\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe
C:\WINDOWS\system32\tasks\Opera scheduled Autoupdate 1451474577 - C:\Program Files (x86)\Opera\launcher.exe --scheduledautoupdate $(Arg0)
C:\WINDOWS\system32\tasks\SidebarExecute - C:\Program Files\Windows Sidebar\sidebar.exe
C:\WINDOWS\system32\tasks\User_Feed_Synchronization-{EB9A12A5-1048-46A7-B5BC-FFCC7E0A0CF4} - C:\WINDOWS\system32\msfeedssync.exe sync
C:\WINDOWS\system32\tasks\Microsoft\XblGameSave\XblGameSaveTask - %windir%\System32\XblGameSaveTask.exe standby
C:\WINDOWS\system32\tasks\Microsoft\XblGameSave\XblGameSaveTaskLogon - %windir%\System32\XblGameSaveTask.exe logon
C:\WINDOWS\system32\tasks\Microsoft\Windows\Workplace Join\Automatic-Device-Join - %SystemRoot%\System32\dsregcmd.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start - C:\WINDOWS\system32\sc.exe start wuauserv
C:\WINDOWS\system32\tasks\Microsoft\Windows\WindowsUpdate\sih - %systemroot%\System32\sihclient.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\WindowsUpdate\sihboot - %systemroot%\System32\sihclient.exe /boot
C:\WINDOWS\system32\tasks\Microsoft\Windows\Windows Media Sharing\UpdateLibrary - "%ProgramFiles%\Windows Media Player\wmpnscfg.exe"
C:\WINDOWS\system32\tasks\Microsoft\Windows\Windows Filtering Platform\BfeOnServiceStartTypeChange - %windir%\system32\rundll32.exe bfe.dll,BfeOnServiceStartTypeChange
C:\WINDOWS\system32\tasks\Microsoft\Windows\Windows Error Reporting\QueueReporting - %windir%\system32\wermgr.exe -upload
C:\WINDOWS\system32\tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance - %ProgramFiles%\Windows Defender\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
C:\WINDOWS\system32\tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup - %ProgramFiles%\Windows Defender\MpCmdRun.exe -IdleTask -TaskName WdCleanup
C:\WINDOWS\system32\tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan - %ProgramFiles%\Windows Defender\MpCmdRun.exe Scan -ScheduleJob
C:\WINDOWS\system32\tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification - %ProgramFiles%\Windows Defender\MpCmdRun.exe -IdleTask -TaskName WdVerification
C:\WINDOWS\system32\tasks\Microsoft\Windows\WCM\WiFiTask - %SystemRoot%\System32\WiFiTask.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\UPnP\UPnPHostConfig - sc.exe config upnphost start= auto
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Maintenance Install - %systemroot%\system32\usoclient.exe StartInstall
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\MusUx_UpdateInterval - %systemroot%\system32\MusNotification.exe Display
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Policy Install - %systemroot%\system32\usoclient.exe StartInstall
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Reboot - %systemroot%\system32\MusNotification.exe Reboot
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Refresh Settings - %systemroot%\system32\usoclient.exe RefreshSettings
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Resume On Boot - %systemroot%\system32\usoclient.exe ResumeUpdate
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Schedule Scan - %systemroot%\system32\usoclient.exe StartScan
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker_Display - C:\windows\system32\MusNotification.exe Display
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker_ReadyToReboot - C:\windows\system32\MusNotification.exe ReadyToReboot
C:\WINDOWS\system32\tasks\Microsoft\Windows\Time Zone\SynchronizeTimeZone - %windir%\system32\tzsync.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Time Synchronization\SynchronizeTime - %windir%\system32\sc.exe start w32time task_started
C:\WINDOWS\system32\tasks\Microsoft\Windows\Tcpip\IpAddressConflict1 - %windir%\system32\rundll32.exe ndfapi.dll,NdfRunDllDuplicateIPOffendingSystem
C:\WINDOWS\system32\tasks\Microsoft\Windows\Tcpip\IpAddressConflict2 - %windir%\system32\rundll32.exe ndfapi.dll,NdfRunDllDuplicateIPDefendingSystem
C:\WINDOWS\system32\tasks\Microsoft\Windows\SystemRestore\SR - %windir%\system32\srtasks.exe ExecuteScheduledSPPCreation
C:\WINDOWS\system32\tasks\Microsoft\Windows\Sysmain\WsSwapAssessmentTask - %windir%\system32\rundll32.exe sysmain.dll,PfSvWsSwapAssessmentTask
C:\WINDOWS\system32\tasks\Microsoft\Windows\Storage Tiers Management\Storage Tiers Optimization - %windir%\system32\defrag.exe -c -h -g -# -m 8 -i 13500
C:\WINDOWS\system32\tasks\Microsoft\Windows\Speech\SpeechModelDownloadTask - %windir%\system32\speech_onecore\common\SpeechModelDownload.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\SpacePort\SpaceAgentTask - %windir%\system32\SpaceAgent.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\SpacePort\SpaceManagerTask - %windir%\system32\spaceman.exe /Work
C:\WINDOWS\system32\tasks\Microsoft\Windows\Shell\FamilySafetyMonitor - %windir%\System32\wpcmon.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\SharedPC\Account Cleanup - %windir%\System32\rundll32.exe %windir%\System32\Windows.SharedPC.AccountManager.dll,StartMaintenance
C:\WINDOWS\system32\tasks\Microsoft\Windows\RemoteAssistance\RemoteAssistanceTask - %windir%\system32\RAServer.exe /offerraupdate
C:\WINDOWS\system32\tasks\Microsoft\Windows\Plug and Play\Sysprep Generalize Drivers - %SystemRoot%\System32\drvinst.exe 6
C:\WINDOWS\system32\tasks\Microsoft\Windows\NlaSvc\WiFiTask - %SystemRoot%\System32\WiFiTask.exe nla
C:\WINDOWS\system32\tasks\Microsoft\Windows\NetTrace\GatherNetworkInfo - %windir%\system32\gatherNetworkInfo.vbs
C:\WINDOWS\system32\tasks\Microsoft\Windows\MUI\Lpksetup - C:\Windows\System32\lpksetup.exe -v
C:\WINDOWS\system32\tasks\Microsoft\Windows\MUI\LPRemove - %windir%\system32\lpremove.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\MUI\Mcbuilder - C:\Windows\System32\mcbuilder.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser - %SystemRoot%\System32\MbaeParserTask.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch - %SystemRoot%\ehome\ehPrivJob.exe /DoActivateWindowsSearch
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService - %SystemRoot%\ehome\ehPrivJob.exe /DoConfigureInternetTimeService
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks - %SystemRoot%\ehome\ehPrivJob.exe /DoRecoveryTasks $(Arg0)
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\ehDRMInit - %SystemRoot%\ehome\ehPrivJob.exe /DRMInit
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\InstallPlayReady - %SystemRoot%\ehome\ehPrivJob.exe /InstallPlayReady $(Arg0)
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\mcupdate - %SystemRoot%\ehome\mcupdate $(Arg0)
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\mcupdate_scheduled - %SystemRoot%\ehome\mcupdate -crl -hms -pscn 15
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask - %SystemRoot%\ehome\mcupdate.exe -MediaCenterRecoveryTask
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask - %SystemRoot%\ehome\mcupdate.exe -ObjectStoreRecoveryTask
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\OCURActivate - %SystemRoot%\ehome\ehPrivJob.exe /OCURActivate
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\OCURDiscovery - %SystemRoot%\ehome\ehPrivJob.exe /OCURDiscovery $(Arg0)
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\PBDADiscovery - %SystemRoot%\ehome\ehPrivJob.exe /PBDADiscovery
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 - %SystemRoot%\ehome\ehPrivJob.exe /wait:7 /PBDADiscovery
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 - %SystemRoot%\ehome\ehPrivJob.exe /wait:90 /PBDADiscovery
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\PeriodicScanRetry - %windir%\ehome\MCUpdate.exe -pscn 0
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\PvrRecoveryTask - %SystemRoot%\ehome\mcupdate.exe -PvrRecoveryTask
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\PvrScheduleTask - %SystemRoot%\ehome\mcupdate.exe -PvrSchedule
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\RecordingRestart - %SystemRoot%\ehome\ehrec /RestartRecording
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\RegisterSearch - %SystemRoot%\ehome\ehPrivJob.exe /DoRegisterSearch $(Arg0)
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\ReindexSearchRoot - %SystemRoot%\ehome\ehPrivJob.exe /DoReindexSearchRoot
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask - %SystemRoot%\ehome\mcupdate.exe -SqlLiteRecoveryTask
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\StartRecording - %SystemRoot%\ehome\ehrec /StartRecording
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\UpdateRecordPath - %SystemRoot%\ehome\ehPrivJob.exe /DoUpdateRecordPath $(Arg0)
C:\WINDOWS\system32\tasks\Microsoft\Windows\Management\Provisioning\Logon - %windir%\system32\ProvTool.exe /turn 5
C:\WINDOWS\system32\tasks\Microsoft\Windows\Location\Notifications - %windir%\System32\LocationNotificationWindows.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Location\WindowsActionDialog - %windir%\System32\WindowsActionDialog.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Feedback\Siuf\DmClient - %windir%\system32\dmclient.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Feedback\Siuf\DmClientOnScenarioDownload - %windir%\system32\dmclient.exe utcwnf
C:\WINDOWS\system32\tasks\Microsoft\Windows\EnterpriseMgmt\MDMMaintenenceTask - %windir%\system32\MDMAgent.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\DUSM\dusmtask - %SystemRoot%\System32\dusmtask.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\DiskFootprint\Diagnostics - %windir%\system32\disksnapshot.exe -z
C:\WINDOWS\system32\tasks\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticDataCollector - %windir%\system32\rundll32.exe dfdts.dll,DfdGetDefaultPolicyAndSMART
C:\WINDOWS\system32\tasks\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticResolver - %windir%\system32\DFDWiz.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\DiskCleanup\SilentCleanup - %windir%\system32\cleanmgr.exe /autoclean /d %systemdrive%
C:\WINDOWS\system32\tasks\Microsoft\Windows\Device Information\Device - %windir%\system32\devicecensus.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Defrag\ScheduledDefrag - %windir%\system32\defrag.exe -c -h -o -$
C:\WINDOWS\system32\tasks\Microsoft\Windows\Customer Experience Improvement Program\Consolidator - %SystemRoot%\System32\wsqmcons.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Clip\License Validation - %SystemRoot%\system32\ClipUp.exe -p -s -o
C:\WINDOWS\system32\tasks\Microsoft\Windows\Bluetooth\UninstallDeviceTask - BthUdTask.exe $(Arg0)
C:\WINDOWS\system32\tasks\Microsoft\Windows\Autochk\Proxy - %windir%\system32\rundll32.exe /d acproxy.dll,PerformAutochkOperations
C:\WINDOWS\system32\tasks\Microsoft\Windows\AppxDeploymentClient\Pre-staged app cleanup - %windir%\system32\rundll32.exe %windir%\system32\AppxDeploymentClient.dll,AppxPreStageCleanupRunTask
C:\WINDOWS\system32\tasks\Microsoft\Windows\ApplicationData\appuriverifierdaily - %windir%\system32\AppHostRegistrationVerifier.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\ApplicationData\appuriverifierinstall - %windir%\system32\AppHostRegistrationVerifier.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\ApplicationData\CleanupTemporaryState - %windir%\system32\rundll32.exe Windows.Storage.ApplicationData.dll,CleanupTemporaryState
C:\WINDOWS\system32\tasks\Microsoft\Windows\ApplicationData\DsSvcCleanup - %windir%\system32\dstokenclean.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser - %windir%\system32\compattelrunner.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater - %windir%\system32\compattelrunner.exe -maintenance
C:\WINDOWS\system32\tasks\Microsoft\Windows\Application Experience\StartupAppTask - %windir%\system32\rundll32.exe Startupscan.dll,SusRunTask
C:\WINDOWS\system32\tasks\Microsoft\Windows\AppID\PolicyConverter - %windir%\system32\appidpolicyconverter.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\AppID\VerifiedPublisherCertStoreCheck - %windir%\system32\appidcertstorecheck.exe
C:\WINDOWS\system32\tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report - C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe /send
C:\WINDOWS\system32\tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater - C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe /f

=========Mozilla firefox=========

ProfilePath - C:\Users\Dubák J\AppData\Roaming\Mozilla\Firefox\Profiles\mqihq4nn.default

prefs.js - "browser.startup.homepage" - "http://www.novinky.cz/"

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 24.0.0.194 Plugin
"Path"=C:\WINDOWS\SysWoW64\Macromed\Flash\NPSWF32_24_0_0_194.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@canon.com/EPPEX]
"Description"=Canon Easy-PhotoPrint EX
"Path"=C:\Program Files\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files (x86)\Microsoft Silverlight\5.1.50901.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 24.0.0.194 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF64_24_0_0_194.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.1.50901.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL


C:\Users\Dubák J\AppData\Roaming\Mozilla\Firefox\Profiles\mqihq4nn.default\addons.json
Google Translator for Firefox - extension - translator@zoli.bod
uBlock Origin - extension - uBlock0@raymondhill.net

C:\Users\Dubák J\AppData\Roaming\Mozilla\Firefox\Profiles\mqihq4nn.default\extensions.json
Application Update Service Helper - extension - aushelper@mozilla.org - C:\Program Files (x86)\Mozilla Firefox\browser\features\aushelper@mozilla.org.xpi
Multi-process staged rollout - extension - e10srollout@mozilla.org - C:\Program Files (x86)\Mozilla Firefox\browser\features\e10srollout@mozilla.org.xpi
Pocket - extension - firefox@getpocket.com - C:\Program Files (x86)\Mozilla Firefox\browser\features\firefox@getpocket.com.xpi
Web Compat - extension - webcompat@mozilla.org - C:\Program Files (x86)\Mozilla Firefox\browser\features\webcompat@mozilla.org.xpi
Default - theme - {972ce4c6-7e08-4474-a285-3208198ce6fd} - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}.xpi
DigitalPersona Extension - extension - otis@digitalpersona.com - C:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\FirefoxExt
uBlock Origin - extension - uBlock0@raymondhill.net - C:\Users\Dubák J\AppData\Roaming\Mozilla\Firefox\Profiles\mqihq4nn.default\extensions\uBlock0@raymondhill.net.xpi
Google Translator for Firefox - extension - translator@zoli.bod - C:\Users\Dubák J\AppData\Roaming\Mozilla\Firefox\Profiles\mqihq4nn.default\extensions\translator@zoli.bod.xpi
Diagnostics - extension - diagnostics@mozilla.org - C:\Users\Dubák J\AppData\Roaming\Mozilla\Firefox\Profiles\mqihq4nn.default\features\{ef5075ca-b4c5-48a0-831a-bcc48f5c8ba2}\diagnostics@mozilla.org.xpi
Send HSTS Priming Requests - extension - hsts-priming@mozilla.org - C:\Users\Dubák J\AppData\Roaming\Mozilla\Firefox\Profiles\mqihq4nn.default\features\{ef5075ca-b4c5-48a0-831a-bcc48f5c8ba2}\hsts-priming@mozilla.org.xpi

C:\Users\Dubák J\AppData\Roaming\Mozilla\Firefox\Profiles\mqihq4nn.default\pluginreg.dat
Plugin - Adobe Acrobat - 15.23.20053.15062 - C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll
Plugin - Google Update - 1.3.32.7 - C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll
Plugin - Microsoft Office 2010 - 14.0.4730.1010 - C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL
Plugin - Microsoft Office 2010 - 14.0.4761.1000 - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL
Plugin - Silverlight Plug-In - 5.1.50901.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.50901.0\npctrl.dll
Plugin - CANON iMAGE GATEWAY Album Plugin Utility for IJ - 4.0.0.0 - C:\Program Files\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL
Plugin - Shockwave Flash - 24.0.0.194 - C:\WINDOWS\SysWoW64\Macromed\Flash\NPSWF32_24_0_0_194.dll
Plugin - Google Update - 1.3.32.7 - C:\Users\Dubák J\AppData\Local\Google\Update\1.3.32.7\npGoogleUpdate3.dll

=========Google Chrome=========


[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\efaidnbmnnnibpcajpcglclefindmkaj]
"Path"=


======Registry dump======


[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"={0633EE93-D776-472f-A0FF-E1416B8B2E3A}
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}]
"URL"=http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC


[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"={0633EE93-D776-472f-A0FF-E1416B8B2E3A}
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}]
"URL"=http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{395610AE-C624-4f58-B89E-23733EA00F9A}]
HP ProtectTools Security Manager Extension - C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpOtsPluginIe8.dll [2009-12-02 2187528]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL [2013-03-06 690392]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{395610AE-C624-4f58-B89E-23733EA00F9A}]
HP ProtectTools Security Manager Extension - C:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpOtsPluginIe8.dll [2009-12-02 1471752]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL [2013-03-06 562904]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2010-06-04 2174760]
"SysTrayApp"=C:\Program Files\IDT\WDM\sttray64.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Dropbox]
C:\Program Files (x86)\Dropbox\Client\Dropbox.exe /systemstartup []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Zoner Photo Studio Autoupdate]
C:\Program Files\Zoner\Photo Studio 15\Program32\ZPSTRAY.EXE [2014-03-13 779776]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [2015-11-04 767176]
"QLBController"=C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\QLBController.exe [2010-03-01 256056]
"GIGABYTEMOUSE"=C:\Users\Dubák J\Documents\GIGABYTE\GIGABYTE Sim\Mouse.exe [2014-08-28 1311552]
"IJNetworkScannerSelectorEX"=C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe [2012-03-26 449168]
"CanonQuickMenu"=C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE [2016-03-11 1314432]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"notification packages"=DPPassFilter
scecli

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorUser"=3
"DSCAutomationHostEnabled"=2
"EnableCursorSuppression"=1
"EnableUIADesktopToggle"=0
"undockwithoutlogon"=1
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"EnableLinkedConnections"=1
"ConsentPromptBehaviorAdmin"=0
"PromptOnSecureDesktop"=0

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=221
"NoSimpleNetIDList"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"ForceActiveDesktopOn"=0
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]


[HKEY_LOCAL_MACHINE\Software\Microsoft\Active Setup\Installed Components\>{22d6f312-b0f6-11d0-94ab-0080c74c7e95}]
"StubPath"=%SystemRoot%\inf\unregmp2.exe /ShowWMP

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux"=wdmaud.drv
"VIDC.FPS1"=frapsv64.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux1"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2017-02-06 13:12:19 ----D---- C:\Program Files\trend micro
2017-02-06 13:12:18 ----D---- C:\rsit
2017-02-06 12:47:44 ----D---- C:\ESD
2017-02-06 12:45:20 ----D---- C:\$WINDOWS.~BT
2017-02-06 12:45:17 ----HD---- C:\$Windows.~WS
2017-02-06 11:49:25 ----D---- C:\SWSetup
2017-01-31 22:19:15 ----D---- C:\Users\Dubák J\AppData\Roaming\discord
2017-01-26 23:46:08 ----A---- C:\WINDOWS\SYSWOW64\lMMLDeleteUserData42107612FX.tmp
2017-01-25 23:18:50 ----A---- C:\WINDOWS\SYSWOW64\poqexec.exe
2017-01-25 23:18:41 ----A---- C:\WINDOWS\system32\poqexec.exe
2017-01-24 18:50:21 ----D---- C:\Users\Dubák J\AppData\Roaming\HTC
2017-01-24 18:50:00 ----D---- C:\ProgramData\HTC
2017-01-24 18:49:18 ----D---- C:\Program Files (x86)\HTC
2017-01-24 17:30:40 ----D---- C:\Users\Dubák J\AppData\Roaming\HYXDevPsnList
2017-01-24 17:06:16 ----D---- C:\Program Files (x86)\iMyFone
2017-01-17 22:11:05 ----D---- C:\Users\Dubák J\AppData\Roaming\Mozilla
2017-01-17 22:10:47 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2017-01-17 22:10:45 ----AD---- C:\Program Files (x86)\Mozilla Firefox
2017-01-15 11:51:38 ----D---- C:\Program Files (x86)\Microsoft ASP.NET
2017-01-14 14:25:40 ----D---- C:\Users\Dubák J\AppData\Roaming\ActiveDossierUploader
2017-01-11 14:56:03 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.Resources.dll
2017-01-11 14:56:02 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2017-01-11 14:56:00 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2017-01-11 14:55:59 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Logon.dll
2017-01-11 14:55:59 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2017-01-11 14:55:59 ----A---- C:\WINDOWS\system32\mfcore.dll
2017-01-11 14:55:58 ----A---- C:\WINDOWS\SYSWOW64\Windows.Storage.ApplicationData.dll
2017-01-11 14:55:58 ----A---- C:\WINDOWS\SYSWOW64\StoreAgent.dll
2017-01-11 14:55:58 ----A---- C:\WINDOWS\SYSWOW64\InstallAgentUserBroker.exe
2017-01-11 14:55:58 ----A---- C:\WINDOWS\SYSWOW64\InstallAgent.exe
2017-01-11 14:55:58 ----A---- C:\WINDOWS\system32\mfnetsrc.dll
2017-01-11 14:55:58 ----A---- C:\WINDOWS\system32\d2d1.dll
2017-01-11 14:55:57 ----A---- C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2017-01-11 14:55:57 ----A---- C:\WINDOWS\system32\D3DCompiler_47.dll
2017-01-11 14:55:56 ----A---- C:\WINDOWS\system32\rdpcore.dll
2017-01-11 14:55:56 ----A---- C:\WINDOWS\system32\mstscax.dll
2017-01-11 14:55:56 ----A---- C:\WINDOWS\system32\mfnetcore.dll
2017-01-11 14:55:56 ----A---- C:\WINDOWS\system32\mfasfsrcsnk.dll
2017-01-11 14:55:56 ----A---- C:\WINDOWS\system32\aeinv.dll
2017-01-11 14:55:55 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.CredDialogController.dll
2017-01-11 14:55:55 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.BlockedShutdown.dll
2017-01-11 14:55:55 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.BioFeedback.dll
2017-01-11 14:55:55 ----A---- C:\WINDOWS\system32\rdpencom.dll
2017-01-11 14:55:55 ----A---- C:\WINDOWS\system32\MCRecvSrc.dll
2017-01-11 14:55:54 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Cred.dll
2017-01-11 14:55:54 ----A---- C:\WINDOWS\SYSWOW64\offlinesam.dll
2017-01-11 14:55:54 ----A---- C:\WINDOWS\system32\wuuhext.dll
2017-01-11 14:55:54 ----A---- C:\WINDOWS\system32\wuaueng.dll
2017-01-11 14:55:54 ----A---- C:\WINDOWS\system32\winlogon.exe
2017-01-11 14:55:54 ----A---- C:\WINDOWS\system32\sppobjs.dll
2017-01-11 14:55:54 ----A---- C:\WINDOWS\system32\samsrv.dll
2017-01-11 14:55:54 ----A---- C:\WINDOWS\system32\D3D12.dll
2017-01-11 14:55:53 ----A---- C:\WINDOWS\SYSWOW64\msmpeg2vdec.dll
2017-01-11 14:55:53 ----A---- C:\WINDOWS\SYSWOW64\aclui.dll
2017-01-11 14:55:53 ----A---- C:\WINDOWS\system32\offlinesam.dll
2017-01-11 14:55:53 ----A---- C:\WINDOWS\system32\lsasrv.dll
2017-01-11 14:55:52 ----A---- C:\WINDOWS\system32\shell32.dll
2017-01-11 14:55:51 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2017-01-11 14:55:50 ----A---- C:\WINDOWS\system32\wuapi.dll
2017-01-11 14:55:50 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2017-01-11 14:55:49 ----A---- C:\WINDOWS\SYSWOW64\updatepolicy.dll
2017-01-11 14:55:49 ----A---- C:\WINDOWS\SYSWOW64\kerberos.dll
2017-01-11 14:55:49 ----A---- C:\WINDOWS\system32\updatepolicy.dll
2017-01-11 14:55:49 ----A---- C:\WINDOWS\system32\msv1_0.dll
2017-01-11 14:55:49 ----A---- C:\WINDOWS\system32\kerberos.dll
2017-01-11 14:55:49 ----A---- C:\WINDOWS\system32\ImplatSetup.dll
2017-01-11 14:55:48 ----A---- C:\WINDOWS\SYSWOW64\WinSCard.dll
2017-01-11 14:55:48 ----A---- C:\WINDOWS\SYSWOW64\MSVP9DEC.dll
2017-01-11 14:55:48 ----A---- C:\WINDOWS\SYSWOW64\cryptui.dll
2017-01-11 14:55:48 ----A---- C:\WINDOWS\system32\wow64.dll
2017-01-11 14:55:48 ----A---- C:\WINDOWS\system32\WinSCard.dll
2017-01-11 14:55:48 ----A---- C:\WINDOWS\system32\cryptui.dll
2017-01-11 14:55:48 ----A---- C:\WINDOWS\system32\certprop.dll
2017-01-11 14:55:47 ----A---- C:\WINDOWS\SYSWOW64\AUDIOKSE.dll
2017-01-11 14:55:47 ----A---- C:\WINDOWS\system32\ScDeviceEnum.dll
2017-01-11 14:55:46 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.Resources.dll
2017-01-11 14:55:46 ----A---- C:\WINDOWS\SYSWOW64\indexeddbserver.dll
2017-01-11 14:55:46 ----A---- C:\WINDOWS\SYSWOW64\AudioSes.dll
2017-01-11 14:55:45 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2017-01-11 14:55:45 ----A---- C:\WINDOWS\SYSWOW64\Chakradiag.dll
2017-01-11 14:55:43 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2017-01-11 14:55:42 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2017-01-11 14:55:42 ----A---- C:\WINDOWS\SYSWOW64\AzureSettingSyncProvider.dll
2017-01-11 14:55:42 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll
2017-01-11 14:55:41 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2017-01-11 14:55:40 ----A---- C:\WINDOWS\system32\AzureSettingSyncProvider.dll
2017-01-11 14:55:39 ----A---- C:\WINDOWS\SYSWOW64\mspaint.exe
2017-01-11 14:55:39 ----A---- C:\WINDOWS\system32\win32kbase.sys
2017-01-11 14:55:39 ----A---- C:\WINDOWS\system32\Chakra.dll
2017-01-11 14:55:38 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2017-01-11 14:55:38 ----A---- C:\WINDOWS\system32\SettingsHandlers_nt.dll
2017-01-11 14:55:37 ----A---- C:\WINDOWS\SYSWOW64\winmde.dll
2017-01-11 14:55:37 ----A---- C:\WINDOWS\system32\mspaint.exe
2017-01-11 14:55:37 ----A---- C:\WINDOWS\system32\msmpeg2vdec.dll
2017-01-11 14:55:36 ----A---- C:\WINDOWS\system32\mshtml.dll
2017-01-11 14:55:36 ----A---- C:\WINDOWS\system32\indexeddbserver.dll
2017-01-11 14:55:35 ----A---- C:\WINDOWS\system32\twinui.dll
2017-01-11 14:55:34 ----A---- C:\WINDOWS\system32\winmde.dll
2017-01-11 14:55:34 ----A---- C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll
2017-01-11 14:55:34 ----A---- C:\WINDOWS\system32\aadcloudap.dll
2017-01-11 14:55:32 ----A---- C:\WINDOWS\system32\edgehtml.dll
2017-01-11 14:55:30 ----A---- C:\WINDOWS\system32\aadtb.dll
2017-01-11 14:55:27 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.LockScreen.dll
2017-01-11 14:55:26 ----A---- C:\WINDOWS\system32\usocore.dll
2017-01-11 14:55:26 ----A---- C:\WINDOWS\system32\rdpcorets.dll
2017-01-11 14:55:26 ----A---- C:\WINDOWS\system32\LaunchWinApp.exe
2017-01-11 14:55:25 ----A---- C:\WINDOWS\SYSWOW64\rdpcore.dll
2017-01-11 14:55:25 ----A---- C:\WINDOWS\system32\Windows.Internal.UI.Logon.ProxyStub.dll
2017-01-11 14:55:25 ----A---- C:\WINDOWS\system32\updatehandlers.dll
2017-01-11 14:55:24 ----A---- C:\WINDOWS\SYSWOW64\remoteaudioendpoint.dll
2017-01-11 14:55:24 ----A---- C:\WINDOWS\SYSWOW64\LaunchWinApp.exe
2017-01-11 14:55:24 ----A---- C:\WINDOWS\system32\MSVP9DEC.dll
2017-01-11 14:55:23 ----A---- C:\WINDOWS\SYSWOW64\SyncSettings.dll
2017-01-11 14:55:23 ----A---- C:\WINDOWS\SYSWOW64\rdpencom.dll
2017-01-11 14:55:23 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2017-01-11 14:55:23 ----A---- C:\WINDOWS\system32\rdpudd.dll
2017-01-11 14:55:23 ----A---- C:\WINDOWS\system32\DeveloperOptionsSettingsHandlers.dll
2017-01-11 14:55:22 ----A---- C:\WINDOWS\SYSWOW64\MSVPXENC.dll
2017-01-11 14:55:22 ----A---- C:\WINDOWS\SYSWOW64\CloudBackupSettings.dll
2017-01-11 14:55:22 ----A---- C:\WINDOWS\system32\Windows.UI.Shell.dll
2017-01-11 14:55:22 ----A---- C:\WINDOWS\system32\win32kfull.sys
2017-01-11 14:55:22 ----A---- C:\WINDOWS\system32\win32k.sys
2017-01-11 14:55:22 ----A---- C:\WINDOWS\system32\OneBackupHandler.dll
2017-01-11 14:55:21 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2017-01-11 14:55:21 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2017-01-11 14:55:21 ----A---- C:\WINDOWS\SYSWOW64\LogonController.dll
2017-01-11 14:55:21 ----A---- C:\WINDOWS\system32\SRH.dll
2017-01-11 14:55:20 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2017-01-11 14:55:20 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2017-01-11 14:55:20 ----A---- C:\WINDOWS\system32\SRHInproc.dll
2017-01-11 14:55:20 ----A---- C:\WINDOWS\system32\domgmt.dll
2017-01-11 14:55:20 ----A---- C:\WINDOWS\system32\aclui.dll
2017-01-11 14:55:19 ----A---- C:\WINDOWS\system32\SettingSyncHost.exe
2017-01-11 14:55:19 ----A---- C:\WINDOWS\system32\SettingSyncCore.dll
2017-01-11 14:55:19 ----A---- C:\WINDOWS\system32\dosvc.dll
2017-01-11 14:55:19 ----A---- C:\WINDOWS\system32\ClipUp.exe
2017-01-11 14:55:19 ----A---- C:\WINDOWS\system32\audiosrv.dll
2017-01-11 14:55:19 ----A---- C:\WINDOWS\system32\AudioSes.dll
2017-01-11 14:55:19 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll
2017-01-11 14:55:19 ----A---- C:\WINDOWS\system32\AudioEng.dll
2017-01-11 14:55:19 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2017-01-11 14:55:18 ----A---- C:\WINDOWS\SYSWOW64\mfnetsrc.dll
2017-01-11 14:55:18 ----A---- C:\WINDOWS\system32\StoreAgent.dll
2017-01-11 14:55:18 ----A---- C:\WINDOWS\system32\InstallAgentUserBroker.exe
2017-01-11 14:55:18 ----A---- C:\WINDOWS\system32\InstallAgent.exe
2017-01-11 14:55:18 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2017-01-11 14:55:17 ----A---- C:\WINDOWS\SYSWOW64\mfasfsrcsnk.dll
2017-01-11 14:55:17 ----A---- C:\WINDOWS\system32\Windows.UI.CredDialogController.dll
2017-01-11 14:55:17 ----A---- C:\WINDOWS\system32\wbiosrvc.dll
2017-01-11 14:55:17 ----A---- C:\WINDOWS\system32\drivers\vhdmp.sys
2017-01-11 14:55:16 ----A---- C:\WINDOWS\SYSWOW64\wuapi.dll
2017-01-11 14:55:16 ----A---- C:\WINDOWS\SYSWOW64\mqmigplugin.dll
2017-01-11 14:55:16 ----A---- C:\WINDOWS\SYSWOW64\mfnetcore.dll
2017-01-11 14:55:16 ----A---- C:\WINDOWS\SYSWOW64\mfmpeg2srcsnk.dll
2017-01-11 14:55:16 ----A---- C:\WINDOWS\system32\SyncSettings.dll
2017-01-11 14:55:16 ----A---- C:\WINDOWS\system32\remoteaudioendpoint.dll
2017-01-11 14:55:16 ----A---- C:\WINDOWS\system32\mqcmiplugin.dll
2017-01-11 14:55:16 ----A---- C:\WINDOWS\system32\cloudAP.dll
2017-01-11 14:55:15 ----A---- C:\WINDOWS\SYSWOW64\MCRecvSrc.dll
2017-01-11 14:55:15 ----A---- C:\WINDOWS\system32\winsrv.dll
2017-01-11 14:55:15 ----A---- C:\WINDOWS\system32\Windows.UI.BlockedShutdown.dll
2017-01-11 14:55:15 ----A---- C:\WINDOWS\system32\Windows.UI.BioFeedback.dll
2017-01-11 14:55:15 ----A---- C:\WINDOWS\system32\fhsettingsprovider.dll
2017-01-11 14:55:15 ----A---- C:\WINDOWS\system32\fhcfg.dll
2017-01-11 14:55:15 ----A---- C:\WINDOWS\system32\CloudBackupSettings.dll
2017-01-11 14:55:14 ----A---- C:\WINDOWS\system32\securekernel.exe
2017-01-11 14:55:14 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2017-01-11 14:55:14 ----A---- C:\WINDOWS\system32\drivers\pci.sys
2017-01-11 14:55:06 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2017-01-11 14:55:05 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2017-01-11 14:55:04 ----A---- C:\WINDOWS\SYSWOW64\win32kfull.sys
2017-01-11 14:55:03 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncHost.exe
2017-01-11 14:55:03 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncCore.dll
2017-01-11 14:55:03 ----A---- C:\WINDOWS\SYSWOW64\d2d1.dll
2017-01-11 14:55:03 ----A---- C:\WINDOWS\SYSWOW64\aadtb.dll
2017-01-11 14:55:03 ----A---- C:\WINDOWS\system32\LogonController.dll
2017-01-11 14:55:01 ----A---- C:\WINDOWS\system32\ConsoleLogon.dll
2017-01-11 14:55:01 ----A---- C:\WINDOWS\system32\CloudExperienceHost.dll
2017-01-11 14:55:00 ----A---- C:\WINDOWS\SYSWOW64\win32k.sys
2017-01-11 14:55:00 ----A---- C:\WINDOWS\system32\MSVPXENC.dll
2017-01-11 14:54:59 ----A---- C:\WINDOWS\SYSWOW64\msv1_0.dll
2017-01-11 14:54:59 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_47.dll
2017-01-11 14:54:58 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.UI.Logon.ProxyStub.dll
2017-01-11 14:54:58 ----A---- C:\WINDOWS\system32\provengine.dll
2017-01-11 14:54:57 ----A---- C:\WINDOWS\system32\ProvPluginEng.dll
2017-01-11 14:54:57 ----A---- C:\WINDOWS\system32\KnobsCsp.dll
2017-01-11 14:54:57 ----A---- C:\WINDOWS\system32\KnobsCore.dll
2017-01-11 14:54:56 ----A---- C:\WINDOWS\SYSWOW64\D3D12.dll

======List of files/folders modified in the last 1 month======

2017-02-06 14:58:30 ----D---- C:\WINDOWS\Prefetch
2017-02-06 14:58:23 ----D---- C:\WINDOWS\Temp
2017-02-06 14:56:00 ----D---- C:\WINDOWS\system32\sru
2017-02-06 14:52:46 ----D---- C:\WINDOWS\system32\SleepStudy
2017-02-06 13:38:30 ----DC---- C:\WINDOWS\Panther
2017-02-06 13:12:19 ----RD---- C:\Program Files
2017-02-06 13:10:08 ----RD---- C:\WINDOWS\Microsoft.NET
2017-02-06 12:45:17 ----D---- C:\WINDOWS\Logs
2017-02-06 12:42:34 ----D---- C:\Windows10Upgrade
2017-02-06 12:32:16 ----AD---- C:\Program Files (x86)\Opera
2017-02-06 11:56:19 ----D---- C:\WINDOWS\System32
2017-02-06 11:56:19 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2017-02-06 11:52:24 ----A---- C:\WINDOWS\SYSWOW64\log.txt
2017-02-06 11:52:13 ----D---- C:\ProgramData\HPQLOG
2017-02-06 11:52:05 ----SHD---- C:\Config.Msi
2017-02-06 11:52:05 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2017-02-06 11:45:46 ----D---- C:\WINDOWS\INF
2017-02-06 11:45:46 ----D---- C:\Windows
2017-02-06 11:44:59 ----SHD---- C:\System Volume Information
2017-02-06 11:15:13 ----D---- C:\WINDOWS\AppReadiness
2017-02-06 11:14:59 ----HD---- C:\Program Files\WindowsApps
2017-02-05 07:43:49 ----D---- C:\WINDOWS\system32\config
2017-02-04 21:54:41 ----SHD---- C:\WINDOWS\Installer
2017-02-04 21:52:42 ----RD---- C:\Program Files (x86)
2017-02-04 21:52:38 ----D---- C:\WINDOWS\system32\Tasks
2017-02-04 21:52:22 ----D---- C:\WINDOWS\system32\DriverStore
2017-02-04 21:52:20 ----D---- C:\Program Files\Common Files
2017-02-04 20:17:08 ----D---- C:\WINDOWS\CbsTemp
2017-02-04 20:09:00 ----D---- C:\WINDOWS\WinSxS
2017-02-04 20:08:34 ----D---- C:\WINDOWS\SYSWOW64\inetsrv
2017-02-04 20:08:34 ----D---- C:\WINDOWS\system32\inetsrv
2017-02-04 20:08:34 ----D---- C:\inetpub
2017-02-04 19:56:55 ----RD---- C:\Users
2017-02-04 17:40:55 ----D---- C:\Users\Dubák J\AppData\Roaming\TeamViewer
2017-02-02 18:52:32 ----D---- C:\ProgramData\BlueStacksSetup
2017-01-28 23:27:20 ----D---- C:\ProgramData\Apple
2017-01-28 23:26:17 ----D---- C:\WINDOWS\SysWOW64
2017-01-28 23:07:57 ----D---- C:\WINDOWS\system32\drivers
2017-01-27 14:23:48 ----D---- C:\WINDOWS\SoftwareDistribution
2017-01-26 23:46:20 ----RSD---- C:\WINDOWS\Fonts
2017-01-26 23:46:20 ----D---- C:\Program Files (x86)\Common Files
2017-01-26 23:44:03 ----D---- C:\WINDOWS\system32\catroot2
2017-01-26 23:14:31 ----AD---- C:\Program Files (x86)\TeamViewer
2017-01-24 19:37:10 ----D---- C:\Program Files (x86)\Wondershare
2017-01-24 19:37:05 ----D---- C:\Users\Dubák J\AppData\Roaming\Wondershare
2017-01-24 18:51:09 ----SD---- C:\Users\Dubák J\AppData\Roaming\Microsoft
2017-01-24 18:50:00 ----HD---- C:\ProgramData
2017-01-24 18:49:30 ----D---- C:\WINDOWS\system32\CatRoot
2017-01-24 17:30:48 ----D---- C:\ProgramData\Wondershare
2017-01-17 21:44:40 ----AD---- C:\Program Files\Defraggler
2017-01-17 14:22:26 ----D---- C:\ProgramData\Ashampoo
2017-01-16 16:53:10 ----D---- C:\WINDOWS\debug
2017-01-16 16:37:15 ----RD---- C:\WINDOWS\assembly
2017-01-14 12:23:03 ----D---- C:\WINDOWS\rescache
2017-01-14 11:58:59 ----D---- C:\WINDOWS\system32\Macromed
2017-01-14 11:58:54 ----D---- C:\WINDOWS\SYSWOW64\Macromed
2017-01-11 17:38:38 ----D---- C:\WINDOWS\system32\WinBioPlugIns
2017-01-11 17:38:38 ----D---- C:\WINDOWS\system32\wbem
2017-01-11 17:38:37 ----D---- C:\WINDOWS\system32\oobe
2017-01-11 17:38:37 ----D---- C:\WINDOWS\ShellExperiences
2017-01-11 17:38:36 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2017-01-11 17:38:36 ----D---- C:\WINDOWS\Provisioning
2017-01-11 17:38:36 ----D---- C:\Program Files\Internet Explorer
2017-01-11 17:38:36 ----D---- C:\Program Files (x86)\Internet Explorer
2017-01-11 15:34:38 ----D---- C:\WINDOWS\system32\MRT
2017-01-11 15:30:41 ----AC---- C:\WINDOWS\system32\MRT.exe
2017-01-10 13:13:24 ----D---- C:\WINDOWS\system32\FxsTmp

File C:\WINDOWS\system32\winlogon.exe is digitally signed
File C:\WINDOWS\system32\wininit.exe is digitally signed
File C:\WINDOWS\explorer.exe is digitally signed
File C:\WINDOWS\SysWOW64\explorer.exe is digitally signed
File C:\WINDOWS\system32\svchost.exe is digitally signed
File C:\WINDOWS\SysWOW64\svchost.exe is digitally signed
File C:\WINDOWS\system32\services.exe is digitally signed
File C:\WINDOWS\system32\User32.dll is digitally signed
File C:\WINDOWS\SysWOW64\User32.dll is digitally signed
File C:\WINDOWS\system32\userinit.exe is digitally signed
File C:\WINDOWS\SysWOW64\userinit.exe is digitally signed
File C:\WINDOWS\system32\rpcss.dll is digitally signed
File C:\WINDOWS\system32\Drivers\volsnap.sys is digitally signed

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 epfwwfp;epfwwfp; C:\WINDOWS\system32\DRIVERS\epfwwfp.sys [2016-12-14 84616]
R0 hpdskflt;@oem31.inf,%service_desc%;HP Filter; C:\WINDOWS\system32\DRIVERS\hpdskflt.sys [2011-05-13 30008]
R0 iaStor;@oem30.inf,%*PNP0600.DeviceDesc%;Intel AHCI Controller; C:\WINDOWS\System32\drivers\iaStor.sys [2010-03-04 540696]
R0 iorate;@%SystemRoot%\system32\drivers\iorate.sys,-100; C:\WINDOWS\system32\drivers\iorate.sys [2016-11-02 48992]
R0 timounter;Acronis True Image Backup Archive Explorer; C:\WINDOWS\system32\DRIVERS\timntr.sys [2016-07-17 711712]
R1 eamonm;eamonm; C:\WINDOWS\system32\DRIVERS\eamonm.sys [2016-12-14 262792]
R1 ehdrv;ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [2016-12-14 197248]
R1 epfw;epfw; C:\WINDOWS\system32\DRIVERS\epfw.sys [2016-12-14 208520]
R1 EpfwLWF;@oem33.inf,%EpfwLWF_Desc%;ESET Personal Firewall; C:\WINDOWS\system32\DRIVERS\EpfwLWF.sys [2016-12-14 61568]
R2 clreg;@%SystemRoot%\system32\drivers\registry.sys,-100; C:\WINDOWS\System32\drivers\registry.sys [2016-07-16 70144]
R2 ekbdflt;ekbdflt; C:\WINDOWS\system32\DRIVERS\ekbdflt.sys [2016-12-14 153216]
R2 tifsfilter;Acronis True Image FS Filter; C:\WINDOWS\system32\DRIVERS\tifsfilt.sys [2016-07-17 81952]
R3 Accelerometer;@oem31.inf,%accelerometer_desc%;HP Mobile Data Protection Sensor; C:\WINDOWS\system32\DRIVERS\Accelerometer.sys [2011-05-13 43320]
R3 amdkmdag;amdkmdag; C:\WINDOWS\system32\DRIVERS\atikmdag.sys [2015-12-16 21648880]
R3 amdkmdap;amdkmdap; C:\WINDOWS\system32\DRIVERS\atikmpag.sys [2015-12-16 674288]
R3 ARCVCAM;@oem106.inf,%ArcSoftVCapture.DeviceDesc%;ARCVCAM, ArcSoft Webcam Sharing Manager Driver; C:\WINDOWS\system32\DRIVERS\ArcSoftVCapture.sys [2009-12-04 32640]
R3 AtiHDAudioService;@oem90.inf,%ATIHdAudioDriver.SvcDesc%;AMD Function Driver for HD Audio Service; C:\WINDOWS\system32\drivers\AtihdWT6.sys [2015-05-28 102912]
R3 HECIx64;@oem60.inf,%HECI_SvcDesc%;Intel(R) Management Engine Interface; C:\WINDOWS\System32\drivers\HECIx64.sys [2009-09-17 56344]
R3 HpqKbFiltr;@oem68.inf,%HpqKbFiltr.SvcDesc%;HpqKbFilter Driver; C:\WINDOWS\System32\drivers\HpqKbFiltr.sys [2010-02-16 25912]
R3 MQAC;@mqutil.dll,-6101; C:\WINDOWS\system32\drivers\mqac.sys [2016-09-03 175616]
R3 NETwNs64;___ Ovladač adaptéru řady Intel(R) Wireless WiFi Link 5000 pro systém Windows 7 64 Bit; C:\WINDOWS\System32\drivers\NETwsw00.sys [2014-01-26 11521024]
R3 rt640x64;@rt640x64.inf,%rt640.Service.DispName%;Realtek RT640 NT Driver; C:\WINDOWS\System32\drivers\rt640x64.sys [2016-07-16 589824]
R3 rtsuvc;@oem0.inf,%rtsuvc.DeviceDesc%;HP Webcam [2 MP Fixed]; C:\WINDOWS\system32\DRIVERS\rtsuvc.sys [2010-12-29 8200296]
R3 SynTP;@oem94.inf,%SynTP.SvcDesc%;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys [2010-06-04 1379376]
S0 eelam;eelam; C:\WINDOWS\system32\DRIVERS\eelam.sys [2016-10-08 15488]
S0 megasas2i;megasas2i; C:\WINDOWS\System32\drivers\MegaSas2i.sys [2016-10-05 64352]
S0 scmbus;@scmbus.inf,%scmbus.SvcDesc%;Microsoft Storage Class Memory Bus Driver; C:\WINDOWS\System32\drivers\scmbus.sys [2016-07-16 88416]
S3 AcpiDev;@acpidev.inf,%AcpiDev.SvcDesc%;ACPI Devices driver; C:\WINDOWS\System32\drivers\AcpiDev.sys [2016-07-16 18432]
S3 AMPPAL;Virtuální adaptér Intel(r) Centrino(r) Wireless Bluetooth(r) + High Speed; C:\WINDOWS\system32\DRIVERS\AMPPAL.sys [2013-07-29 164832]
S3 applockerfltr;@%systemroot%\system32\srpapi.dll,-102; C:\WINDOWS\system32\drivers\applockerfltr.sys [2016-07-16 15360]
S3 AtiHdmiService;ATI Function Driver for High Definition Audio Service; C:\WINDOWS\system32\drivers\AtiHdmi.sys [2010-05-06 125456]
S3 BstHdDrv;BlueStacks Hypervisor; \??\C:\Program Files (x86)\Bluestacks\HD-Hypervisor-amd64.sys [2016-11-18 152672]
S3 BstkDrv;BlueStacks Plus Hypervisor; \??\C:\Program Files (x86)\Bluestacks\BstkDrv.sys [2016-11-08 270904]
S3 htcnprot;@oem144.inf,%NDISPROT_Desc%;HTC NDIS Protocol Driver; C:\WINDOWS\system32\DRIVERS\htcnprot.sys [2013-10-17 36928]
S3 hvservice;@%SystemRoot%\system32\drivers\hvservice.sys,-16; C:\WINDOWS\system32\drivers\hvservice.sys [2016-08-06 73568]
S3 cht4iscsi;cht4iscsi; C:\WINDOWS\System32\drivers\cht4sx64.sys [2016-07-16 346976]
S3 cht4vbd;@cht4vx64.inf,%cht4vbd.generic%;Chelsio Virtual Bus Driver; C:\WINDOWS\System32\drivers\cht4vx64.sys [2016-07-16 2104160]
S3 iagpio;@iagpio.inf,%iagpio.SVCDESC%;Intel Serial IO GPIO Controller Driver; C:\WINDOWS\System32\drivers\iagpio.sys [2016-07-16 33280]
S3 iaLPSS2i_GPIO2;@iaLPSS2i_GPIO2_SKL.inf,%iaLPSS2i_GPIO2.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [2016-07-16 64512]
S3 IndirectKmd;@%SystemRoot%\system32\drivers\IndirectKmd.sys,-100; C:\WINDOWS\System32\drivers\IndirectKmd.sys [2016-07-16 35840]
S3 irda;IrDA; C:\WINDOWS\system32\drivers\irda.sys [2016-07-16 120320]
S3 NetAdapterCx;Network Adapter Wdf Class Extension Library; C:\WINDOWS\system32\drivers\NetAdapterCx.sys [2016-07-16 90624]
S3 RSUSBSTOR;@oem54.inf,%RSUSBSTOR.SvcDesc%;RtsUStor.Sys Realtek USB Card Reader; C:\WINDOWS\System32\Drivers\RtsUStor.sys [2009-11-11 232480]
S3 scmdisk0101;@scmdisk0101.inf,%scmdisk0101.SvcDesc%;Microsoft NVDIMM-N disk driver; C:\WINDOWS\System32\drivers\scmdisk0101.sys [2016-07-16 123904]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AMD External Events Utility;AMD External Events Utility; C:\WINDOWS\system32\atiesrxx.exe [2015-12-16 255472]
R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; %windir%\system32\svchost.exe -k apphost;"ServiceDll"=%windir%\system32\inetsrv\apphostsvc.dll
R2 BstHdLogRotatorSvc;BlueStacks Log Rotator Service; C:\Program Files (x86)\Bluestacks\HD-LogRotatorService.exe [2016-11-18 470552]
R2 DpHost;Služba biometrického ověřování; C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe [2009-11-24 462088]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [2016-12-14 2771848]
R2 HP ProtectTools Service;HP ProtectTools Service; C:\Program Files (x86)\Hewlett-Packard\2009 Password Filter for HP ProtectTools\PTChangeFilterService.exe [2009-11-18 36864]
R2 hpHotkeyMonitor;HP Hotkey Monitor; C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\hpHotkeyMonitor.exe [2010-03-01 264248]
R2 hpsrv;@oem31.inf,%hpservice_desc%;HP Service; C:\WINDOWS\system32\Hpservice.exe [2011-05-13 30520]
R2 HPSupportSolutionsFrameworkService;HP Support Solutions Framework Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [2016-12-07 31776]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2009-11-04 268824]
R2 MSMQ;@mqutil.dll,-6102; C:\WINDOWS\system32\mqsvc.exe [2016-09-03 26112]
R2 NetMsmqActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8195; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2016-07-16 136360]
R2 NetPipeActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8197; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2016-07-16 136360]
R2 OneSyncSvc_2c1e4b;Hostitel synchronizace_2c1e4b; C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup;"ServiceDll"=
R3 hpqwmiex;HP Software Framework Service; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe [2015-04-28 1102472]
R3 PimIndexMaintenanceSvc_2c1e4b;Data kontaktů_2c1e4b; C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup;"ServiceDll"=
R3 TimeBrokerSvc;@%windir%\system32\TimeBrokerServer.dll,-1001; %SystemRoot%\system32\svchost.exe -k LocalServiceNetworkRestricted;"ServiceDll"=%SystemRoot%\System32\TimeBrokerServer.dll
S2 CDPUserSvc;@%SystemRoot%\system32\cdpusersvc.dll,-100; %SystemRoot%\system32\svchost.exe -k UnistackSvcGroup;"ServiceDll"=%SystemRoot%\System32\CDPUserSvc.dll
S2 CDPUserSvc_2c1e4b;CDPUserSvc_2c1e4b; C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup;"ServiceDll"=
S2 NetTcpActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8199; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2016-07-16 136360]
S3 BstHdPlusAndroidSvc;BlueStacks Plus Android Service ; C:\Program Files (x86)\Bluestacks\HD-Plus-Service.exe [2016-11-18 511512]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2016-05-25 43696]
S3 FrameServer;@%systemroot%\system32\FrameServer.dll,-100; %SystemRoot%\System32\svchost.exe -k Camera;"ServiceDll"=%SystemRoot%\system32\FrameServer.dll
S3 HvHost;@%SystemRoot%\system32\hvhostsvc.dll,-100; %SystemRoot%\system32\svchost.exe -k LocalSystemNetworkRestricted;"ServiceDll"=%SystemRoot%\System32\hvhostsvc.dll
S3 irmon;@%SystemRoot%\System32\irmon.dll,-2000; %SystemRoot%\system32\svchost.exe -k LocalSystemNetworkRestricted;"ServiceDll"=%SystemRoot%\System32\irmon.dll
S3 MessagingService_2c1e4b;Služba zasílání zpráv_2c1e4b; C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup;"ServiceDll"=
S3 ose64;Office 64 Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 174440]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S3 RmSvc;@%SystemRoot%\system32\RMapi.dll,-1001; %SystemRoot%\System32\svchost.exe -k LocalServiceNetworkRestricted;"ServiceDll"=%SystemRoot%\System32\RMapi.dll
S4 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework64\v4.0.30319\aspnet_rc.dll,-1; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2016-07-16 52920]
S4 BstHdAndroidSvc;BlueStacks Android Service ; C:\Program Files (x86)\Bluestacks\HD-Service.exe [2016-11-18 486936]
S4 HuaweiHiSuiteService64.exe;HuaweiHiSuiteService64.exe; C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe [2016-08-26 192200]
S4 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2017-01-28 172488]
S4 PassThru Service;Internet Pass-Through Service; C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe [2013-10-17 166912]
S4 shpamsvc;@%SystemRoot%\System32\Windows.SharedPC.AccountManager.dll,-100; %SystemRoot%\System32\svchost.exe -k netsvcs;"ServiceDll"=%systemroot%\system32\Windows.SharedPC.AccountManager.dll
S4 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2016-09-20 324224]
S4 TeamViewer;TeamViewer 12; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [2016-12-15 10351856]

-----------------EOF-----------------

Uživatelský avatar
Roli
VIP
VIP
Příspěvky: 13399
Registrován: 26 lis 2006 13:37
Bydliště: ČR

Re: nový log - Prosím o kontrolu - zpomalený ntb

#2 Příspěvek od Roli »

Zdravím, nic špatného tam nevidím je tedy nějaký problém s PC ?
| Rsit | Mbam | AVPTool | Cure It |

O víkendu odpočívám :all_coholic:

Dubák
Návštěvník
Návštěvník
Příspěvky: 191
Registrován: 12 lis 2005 15:56
Bydliště: podkrkonoší

Re: nový log - Prosím o kontrolu - zpomalený ntb

#3 Příspěvek od Dubák »

pravě že ano, čekám na otevření firefox, čekám na načtení stránky. Když otvírám průzkumníka souborů čekám než se vykreslí složky a soubory. Také se mi zdá že cpu je vytížen i v době kdy se s ntb nepracuje a je vytěžován i HDD, jasně možná ESS ale když začnu něco dělat zase čekám než ntb začne reagovat.
Značně se toto zhoršilo po instalaci kecálka Discord, když jsem jej integroval do WOT značně kleslo FPS a problémy se znásobily, a neslyšel jsem některé zvuky ze hry.
Discord jsem odinstaloval, přeinstaloval ovladače zvuku, ntb trochu pookřál..

Nicmeně díky, alespoň vím, že to není zodpovědná jakási havěť.

Uživatelský avatar
Roli
VIP
VIP
Příspěvky: 13399
Registrován: 26 lis 2006 13:37
Bydliště: ČR

Re: nový log - Prosím o kontrolu - zpomalený ntb

#4 Příspěvek od Roli »

Nemáš na Ploše velké soubory (videa, fotky, hudbu, ...) ?


Stáhni HD Tune a otestuj HDD.

Benchmark - Test disku Klikni na tlačítko Start a vyčkej dokud se nezaplní celý graf. Poté se dozvíš přenosovou rychlost a přístupový čas pevného disku.

Info Přesná kapacita, souborový systém, podporované funkce, verze firmware, sériové číslo a typ zapojení disků.

Health - Kondice Seznam důležitých parametrů a jejich hodnoty. Ideální je mít všude OK.

Když je nějaká položka žlutá pravděpodobně brzy změní status na failed. Když je červená má status failed, to by znamenalo výměnu disku.

Error Scan - Hledání chyb Klikni na tlačítko Start a program prozkoumá disk zda na něm nejsou vadné bloky.

Pokud na konci testu jsou všechny zelené, je vše v pořádku. Když je byť jeden z nich červený, doporučuji zazálohovat data a počítat s výměnou disku.

Teplota Teploměr nahoře a číslo vedle něj znázorňují teplotu disku. Normální hodnota je pod 50°C. Teplota ale nesmí přesáhnout 60°C, program upozorní když dosáhne hranice 55°C.


Stáhni MEMTEST

soubor rozbal a spusť exe soubor.

Připoj flashdisk pozor vše co na něm je bude smazáno !,

v okénku Select your USB Flash Drive vyber tento disk a dej Create.

Během chvilky se Memtest nainstaluje.

Flashdisk nech v USB, restartuj PC a nabootuj z něj.

Před tím samozřemě musíš v Bios Setup do kterého se dostaneš při restartu mačkáním klávesy :

* DEL
* F2
* F1
* F10

záleží na PC, ale vždy je to na monitoru napsáno,

otevři nabídku ADVANCED BIOS FEATURES a vyhledej Boot Devices 0 až 4 nebo Boot Sequence.

Na první místo nastav Flashdisk,

na druhé pevný disk HDD, u obou položek bývá napsán i výrobce.

Stisknutím Save většinou je to F10 a potvrzením Entrem uložíš nastavení,

pak ještě stisknutím Save and Exit se dostaneš z Biosu.

Test nech projet minimálně jednou, ideálně však několikrát třeba přes noc a s každým RAM modulem zvlášť.


Pak dej vědět jak vše dopadlo.
| Rsit | Mbam | AVPTool | Cure It |

O víkendu odpočívám :all_coholic:

Dubák
Návštěvník
Návštěvník
Příspěvky: 191
Registrován: 12 lis 2005 15:56
Bydliště: podkrkonoší

Re: nový log - Prosím o kontrolu - zpomalený ntb

#5 Příspěvek od Dubák »

HD Tune: WDC WD5000BEKT-60KA9 Benchmark

Transfer Rate Minimum : 0.7 MB/sec
Transfer Rate Maximum : 77.3 MB/sec
Transfer Rate Average : 9.3 MB/sec
Access Time : 16.2 ms
Burst Rate : 88.9 MB/sec
CPU Usage : 4.6%


HD Tune: WDC WD5000BEKT-60KA9 Information

Firmware version : 01.0
Serial number :
Capacity : 465.8 GB (~500.1 GB)
Buffer size : n/a
Standard :
Supported mode :
Current mode :

S.M.A.R.T : no
48-bit Address : no
Read Look-Ahead : no
Write Cache : no
Host Protected Area : no
Device Configuration Overlay : no
Automatic Acoustic Management: no
Power Management : no
Advanced Power Management : no
Power-up in Standby : no
Security Mode : no
Firmware Upgradable : no

Partition : 1
Drive letter :
Label :
Capacity : 300 MB
Usage : 0.00%
Type : NTFS
Bootable : Yes

Partition : 2
Drive letter : C:\
Label :
Capacity : 231793 MB
Usage : 40.99%
Type : NTFS
Bootable : No

Partition : 3
Drive letter :
Label :
Capacity : 449 MB
Usage : 0.00%
Type : unknown (27h)
Bootable : No

Partition : 4
Drive letter : D:\
Label : Data
Capacity : 244392 MB
Usage : 74.44%
Type : NTFS
Bootable : No


HD Tune: WDC WD5000BEKT-60KA9 Error Scan

Scanned data : 476749 MB
Damaged Blocks : 0.0 %
Elapsed Time : 104:48



HD Tune: WDC WD5000BEKT-60KA9 Health

ID Current Worst ThresholdData Status

Power On Time : n/a
Health Status : n/a

záložka Healt zůstala čistě bílá

Memtest po jednom cyklu (nechám ještě do rána ):
4735126420609434803-account_id=2.jpg
4735126420609434803-account_id=2.jpg (155.05 KiB) Zobrazeno 4158 x

Dubák
Návštěvník
Návštěvník
Příspěvky: 191
Registrován: 12 lis 2005 15:56
Bydliště: podkrkonoší

Re: nový log - Prosím o kontrolu - zpomalený ntb

#6 Příspěvek od Dubák »

podruhé Bench dopadl trochu jinak:

HD Tune: WDC WD5000BEKT-60KA9 Benchmark

Transfer Rate Minimum : 53.6 MB/sec
Transfer Rate Maximum : 105.8 MB/sec
Transfer Rate Average : 85.4 MB/sec
Access Time : 19.0 ms
Burst Rate : 101.0 MB/sec
CPU Usage : 4.6%


MOhlo by se hodit jeeště tohle?

----------------------------------------------------------------------------
CrystalDiskInfo 7.0.5 (C) 2008-2016 hiyohiyo
Crystal Dew World : http://crystalmark.info/
----------------------------------------------------------------------------

OS : Windows 10 [10.0 Build 14393] (x64)
Date : 2017/02/07 22:51:42

-- Controller Map ----------------------------------------------------------
+ Intel(R) 5 Series 6 Port SATA AHCI Controller [ATA]
- WDC WD5000BEKT-60KA9T0
- hp DVDRAM GT31L
- Řadič prostorů úložišť [SCSI]

-- Disk List ---------------------------------------------------------------
(1) WDC WD5000BEKT-60KA9T0 : 500,1 GB [0/0/0, pd1] - wd

----------------------------------------------------------------------------
(1) WDC WD5000BEKT-60KA9T0
----------------------------------------------------------------------------
Model : WDC WD5000BEKT-60KA9T0
Firmware : 01.01A01
Serial Number : WD-WXH1A21A8823
Disk Size : 500,1 GB (8,4/137,4/500,1/500,1)
Buffer Size : 16384 KB
Queue Depth : 32
# of Sectors : 976773168
Rotation Rate : 7200 RPM
Interface : Serial ATA
Major Version : ATA8-ACS
Minor Version : ----
Transfer Mode : ---- | SATA/300
Power On Hours : 25137 hod.
Power On Count : 3481 krát
Temperature : 35 C (95 F)
Health Status : Dobrý
Features : S.M.A.R.T., APM, 48bit LBA, NCQ
APM Level : 0080h [ON]
AAM Level : ----
Drive Letter : C: D:

-- S.M.A.R.T. --------------------------------------------------------------
ID Cur Wor Thr RawValues(6) Attribute Name
01 200 200 _51 000000000000 Počet chyb čtení
03 174 172 _21 0000000008FC Čas na roztočení ploten
04 _97 _97 __0 000000000DB4 Počet spuštění/zastavení
05 200 200 140 000000000000 Počet přemapovaných sektorů
07 100 253 _51 000000000000 Počet chybných hledání
09 _66 _66 __0 000000006231 Hodin v činnosti
0A 100 100 _51 000000000000 Počet opakovaných pokusů o roztočení ploten
0B 100 100 __0 000000000000 Počet pokusů o překalibrování
0C _97 _97 __0 000000000D99 Počet cyklů zapnutí zařízení
B7 100 100 __0 000000000000 Specifický pro výrobce
B8 100 100 _97 000000000000 Ukončovacích chyb
BB 100 _73 __0 00000000002E Ohlášeno neopravitelných chyb
BC 100 _70 __0 000100010072 Časový limit příkazu
BE _65 _56 _40 00002B180023 Teplota toku vzduchu
BF __1 __1 __0 00000002780D Počet udalostí zaznamenaných otřesovým senzorem
C0 200 200 __0 0000000001A2 Počet vypnutí disku
C1 _70 _70 __0 00000005FED7 Počet cyklů načítání/vymazání
C2 112 103 __0 000000000023 Teplota
C4 200 200 __0 000000000000 Počet udalostí s číslem realokování sektorů
C5 200 200 __0 000000000000 Počet podezřelých sektorů
C6 100 253 __0 000000000000 Počet neopravitelných sektorů
C7 200 200 __0 000000000000 Počet chyb v kontrolním součtu UltraDMA
C8 100 253 _51 000000000000 Počet chyb při zápisu sektorů

Uživatelský avatar
Roli
VIP
VIP
Příspěvky: 13399
Registrován: 26 lis 2006 13:37
Bydliště: ČR

Re: nový log - Prosím o kontrolu - zpomalený ntb

#7 Příspěvek od Roli »

Dubák píše:podruhé Bench dopadl trochu jinak
To se může stát, jinak HDD i RAM jsou v pořádku.

Ještě dotaz, Windows 10 jsou tam od začátku nebo byla udělána aktualizace ? A když ano tak čistou instalací nebo jen aktualizací ?
| Rsit | Mbam | AVPTool | Cure It |

O víkendu odpočívám :all_coholic:

Dubák
Návštěvník
Návštěvník
Příspěvky: 191
Registrován: 12 lis 2005 15:56
Bydliště: podkrkonoší

Re: nový log - Prosím o kontrolu - zpomalený ntb

#8 Příspěvek od Dubák »

no právě jen přes win update

ale zprvu to běhalo dobře

ale než jsem to povolil udělal jsem si někam obraz disku s win 7 ... možná bych ještě asi našel

Uživatelský avatar
Roli
VIP
VIP
Příspěvky: 13399
Registrován: 26 lis 2006 13:37
Bydliště: ČR

Re: nový log - Prosím o kontrolu - zpomalený ntb

#9 Příspěvek od Roli »

Dubák píše:no právě jen přes win update
To je v pořádku jen se měla udělat čistá instalace ne aktualizace na což se systém ptá.
Dubák píše:ale zprvu to běhalo dobře
To tak bývá.
Dubák píše:ale než jsem to povolil udělal jsem si někam obraz disku s win 7 ... možná bych ještě asi našel
Nejsem si jistý zda by bylo dobré dělat downgrade systému.


A co ty velké soubory, nemáš nějaké na Ploše ?
| Rsit | Mbam | AVPTool | Cure It |

O víkendu odpočívám :all_coholic:

Dubák
Návštěvník
Návštěvník
Příspěvky: 191
Registrován: 12 lis 2005 15:56
Bydliště: podkrkonoší

Re: nový log - Prosím o kontrolu - zpomalený ntb

#10 Příspěvek od Dubák »

jee to se omlouvám to jsem si připravil, ale nedodal
Výstřižek 0001.PNG
Výstřižek 0001.PNG (16.6 KiB) Zobrazeno 4135 x

Uživatelský avatar
Roli
VIP
VIP
Příspěvky: 13399
Registrován: 26 lis 2006 13:37
Bydliště: ČR

Re: nový log - Prosím o kontrolu - zpomalený ntb

#11 Příspěvek od Roli »

Viry tam už nejsou, po stránce hardware také v pořádku jediné co mě napadá, že si nesedl nějaký software nebo PC rozhodil.

Zůstává možnost hodit jej do čistého továrního nastavení, samozřejmě před tím si vše zálohuj.
| Rsit | Mbam | AVPTool | Cure It |

O víkendu odpočívám :all_coholic:

Dubák
Návštěvník
Návštěvník
Příspěvky: 191
Registrován: 12 lis 2005 15:56
Bydliště: podkrkonoší

Re: nový log - Prosím o kontrolu - zpomalený ntb

#12 Příspěvek od Dubák »

No, rozchodil, i když mívá občas prostě ty stavy že se zpomalí (spíš zastaví), rozočí se ventilátor na max a po několika vteřinách se zase zklidní. Mě příjde že by to mohl být i win update..



Nu nic, dík za snahu a za pomoc

Uživatelský avatar
Roli
VIP
VIP
Příspěvky: 13399
Registrován: 26 lis 2006 13:37
Bydliště: ČR

Re: nový log - Prosím o kontrolu - zpomalený ntb

#13 Příspěvek od Roli »

Dubák píše:Mě příjde že by to mohl být i win update..
Ano Windows update umí občas PC pěkně zatopit.
Dubák píše:Nu nic, dík za snahu a za pomoc
Není zač a :closed:
| Rsit | Mbam | AVPTool | Cure It |

O víkendu odpočívám :all_coholic:

Zamčeno