Modra smrt
Napsal: 27 čer 2012 12:47
Zdravim, prosim Vas, mam problem s modrou smrti, nepomohlo ani preinstalovani windowsu. Je tu par "udalosti", ktere by na to mozna mohly mit vliv. Je to pocitac pritelkyne, pocitac pry padal tak jednou za 14 dni zhruba, pak jsem tam jednou zapojil druhy harddisk, protoze jsem potreboval prenest data, akorat na nem byly nainstalovane dalsi windowsy(to ze kazdy os si po instalaci pamatuje cislo zakladky jsem zjistil az pozdeji), zapojil jsem to a po spusteni bylo videt ze se to nejak pomichalo, (nabehly tam windowsy z pridaneho disku mensi rozliseni atd.) tak jsem to rychle odpojil. Po par dnech pocitac zacal padat nekolikrat denne, zajimave pro me bylo, ze kdyz jsem ho mel pripojeny k televizi a hral jsem hry tak nic ale kdyz jsem pustil film tak pc spadl za par minut. Nepomohlo ani preinstalovat windowsy. Prikladam vypis z RSIT. Predem diky
Logfile of random's system information tool 1.09 (written by random/random)
Run by petruse at 2012-06-27 13:33:51
Microsoft Windows 7 Ultimate
System drive C: has 118 GB (85%) free of 138 GB
Total RAM: 6142 MB (86% free)
HijackThis download failed
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\nvvsvc.exe
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"taskhost.exe"
"C:\Windows\system32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-cbcf2ffe-9330-4a35-ac21-37e04d7852d4 -SystemEventPortName:HostProcess-3682a776-beca-4625-8e6f-f7769e22c2d9 -IoCancelEventPortName:HostProcess-6a013726-4a5a-4ad9-8822-79af06d24584 -NonStateChangingEventPortName:HostProcess-a2229469-289a-4d34-a9e0-0f0ec4ba5d50 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:e846b873-f48a-4bc8-a76c-f0331afc78e1
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
C:\Windows\system32\SearchIndexer.exe /Embedding
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe"
C:\Windows\system32\sppsvc.exe
C:\Windows\System32\svchost.exe -k secsvcs
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\DllHost.exe /Processid:{AB8902B4-09CA-4BB6-B78D-A8F59079A8D5}
C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
"H:\komp\programy\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Windows\system32\rundll32.exe" "C:\Windows\system32\WININET.dll",DispatchAPICall 1
"C:\Windows\system32\rundll32.exe" "C:\Windows\system32\WININET.dll",DispatchAPICall 1
======Registry dump======
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2011-08-26 12681320]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"JMB36X IDE Setup"=C:\Windows\RaidTool\xInsIDE.exe [2007-03-20 36864]
"36X Raid Configurer"=C:\Windows\SysWOW64\xRaidSetup.exe [2007-11-19 1966080]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2012-06-27 13:33:51 ----D---- C:\rsit
2012-06-27 13:33:51 ----D---- C:\Program Files\trend micro
2012-06-27 01:25:56 ----D---- C:\ProgramData\Creative
2012-06-27 01:23:59 ----N---- C:\Windows\Ctregrun.exe
2012-06-27 01:23:47 ----N---- C:\Windows\SYSWOW64\AudioDrv.ini
2012-06-27 01:15:43 ----D---- C:\Windows\Minidump
2012-06-27 01:03:48 ----A---- C:\Windows\SYSWOW64\INRES.DLL
2012-06-27 01:03:00 ----D---- C:\Program Files (x86)\Creative
2012-06-27 00:51:06 ----D---- C:\Program Files (x86)\Western Digital Corporation
2012-06-27 00:50:06 ----D---- C:\RaidTool
2012-06-27 00:50:06 ----A---- C:\Windows\SYSWOW64\xRaidSetup.exe
2012-06-27 00:50:06 ----A---- C:\Windows\SYSWOW64\xRaidAPI.dll
2012-06-27 00:50:01 ----D---- C:\Windows\RaidTool
2012-06-27 00:48:18 ----D---- C:\Windows\SYSWOW64\RTCOM
2012-06-27 00:48:18 ----D---- C:\Program Files\Realtek
2012-06-27 00:48:08 ----A---- C:\Windows\system32\WavesGUILib.dll
2012-06-27 00:48:08 ----A---- C:\Windows\system32\SRSWOW64.dll
2012-06-27 00:48:08 ----A---- C:\Windows\system32\SRSTSX64.dll
2012-06-27 00:48:08 ----A---- C:\Windows\system32\SRSTSH64.dll
2012-06-27 00:48:08 ----A---- C:\Windows\system32\SRSHP64.dll
2012-06-27 00:48:08 ----A---- C:\Windows\system32\drivers\RTKVHD64.sys
2012-06-27 00:48:07 ----A---- C:\Windows\SYSWOW64\MBAPO32.dll
2012-06-27 00:48:07 ----A---- C:\Windows\system32\RtPgEx64.dll
2012-06-27 00:48:07 ----A---- C:\Windows\system32\RtlCPAPI64.dll
2012-06-27 00:48:07 ----A---- C:\Windows\system32\RtkCfg64.dll
2012-06-27 00:48:07 ----A---- C:\Windows\system32\RtkAPO64.dll
2012-06-27 00:48:07 ----A---- C:\Windows\system32\RtkApi64.dll
2012-06-27 00:48:07 ----A---- C:\Windows\system32\RTEEP64A.dll
2012-06-27 00:48:07 ----A---- C:\Windows\system32\RTEEL64A.dll
2012-06-27 00:48:07 ----A---- C:\Windows\system32\RTEEG64A.dll
2012-06-27 00:48:07 ----A---- C:\Windows\system32\RTEED64A.dll
2012-06-27 00:48:07 ----A---- C:\Windows\system32\RTCOM64.dll
2012-06-27 00:48:07 ----A---- C:\Windows\system32\RP3DHT64.dll
2012-06-27 00:48:07 ----A---- C:\Windows\system32\RP3DAA64.dll
2012-06-27 00:48:07 ----A---- C:\Windows\system32\RCoInst64.dll
2012-06-27 00:48:07 ----A---- C:\Windows\system32\MBWrp64.dll
2012-06-27 00:48:07 ----A---- C:\Windows\system32\MBppld64.dll
2012-06-27 00:48:07 ----A---- C:\Windows\system32\MBPPCn64.dll
2012-06-27 00:48:07 ----A---- C:\Windows\system32\MBAPO64.dll
2012-06-27 00:48:06 ----A---- C:\Windows\system32\MaxxAudioEQ.dll
2012-06-27 00:48:06 ----A---- C:\Windows\system32\MaxxAudioAPO20.dll
2012-06-27 00:48:06 ----A---- C:\Windows\system32\FMAPO64.dll
2012-06-27 00:48:05 ----A---- C:\Windows\system32\AERTAR64.dll
2012-06-27 00:48:05 ----A---- C:\Windows\system32\AERTAC64.dll
2012-06-27 00:48:01 ----HD---- C:\Program Files (x86)\Temp
2012-06-27 00:48:01 ----A---- C:\Windows\RtlExUpd.dll
2012-06-27 00:45:57 ----A---- C:\Windows\system32\RTNUninst64.dll
2012-06-27 00:45:57 ----A---- C:\Windows\system32\RtNicProp64.dll
2012-06-27 00:45:57 ----A---- C:\Windows\system32\drivers\Rt64win7.sys
2012-06-27 00:45:53 ----D---- C:\Program Files (x86)\Realtek
2012-06-27 00:43:24 ----D---- C:\Program Files (x86)\Intel
2012-06-27 00:43:24 ----A---- C:\Windows\SYSWOW64\CSVer.dll
2012-06-27 00:42:53 ----D---- C:\Intel
2012-06-27 00:39:47 ----D---- C:\Windows 7 Legalizátor.exe
2012-06-27 00:38:35 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2012-06-27 00:37:50 ----SHD---- C:\Windows\Installer
2012-06-27 00:37:43 ----D---- C:\ProgramData\NVIDIA
2012-06-27 00:37:43 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2012-06-27 00:37:41 ----A---- C:\Windows\system32\nvvsvc.exe
2012-06-27 00:37:41 ----A---- C:\Windows\system32\nvsvc64.dll
2012-06-27 00:37:41 ----A---- C:\Windows\system32\nvshext.dll
2012-06-27 00:37:41 ----A---- C:\Windows\system32\nvmctray.dll
2012-06-27 00:37:41 ----A---- C:\Windows\system32\nvcpl.dll
2012-06-27 00:37:41 ----A---- C:\Windows\system32\easyupdatusapiu64.dll
2012-06-27 00:37:37 ----D---- C:\ProgramData\NVIDIA Corporation
2012-06-27 00:37:24 ----A---- C:\Windows\SYSWOW64\OpenCL.dll
2012-06-27 00:37:24 ----A---- C:\Windows\SYSWOW64\nvwgf2um.dll
2012-06-27 00:37:24 ----A---- C:\Windows\SYSWOW64\nvoglv32.dll
2012-06-27 00:37:24 ----A---- C:\Windows\SYSWOW64\nvd3dum.dll
2012-06-27 00:37:24 ----A---- C:\Windows\SYSWOW64\nvcuvid.dll
2012-06-27 00:37:24 ----A---- C:\Windows\SYSWOW64\nvcuvenc.dll
2012-06-27 00:37:24 ----A---- C:\Windows\SYSWOW64\nvcuda.dll
2012-06-27 00:37:24 ----A---- C:\Windows\SYSWOW64\nvcompiler.dll
2012-06-27 00:37:24 ----A---- C:\Windows\SYSWOW64\nvapi.dll
2012-06-27 00:37:24 ----A---- C:\Windows\system32\OpenCL.dll
2012-06-27 00:37:24 ----A---- C:\Windows\system32\nvoglv64.dll
2012-06-27 00:37:24 ----A---- C:\Windows\system32\nvgenco64.dll
2012-06-27 00:37:24 ----A---- C:\Windows\system32\nvdispco64.dll
2012-06-27 00:37:24 ----A---- C:\Windows\system32\nvd3dumx.dll
2012-06-27 00:37:24 ----A---- C:\Windows\system32\nvcuvid.dll
2012-06-27 00:37:24 ----A---- C:\Windows\system32\nvcuvenc.dll
2012-06-27 00:37:24 ----A---- C:\Windows\system32\nvcuda.dll
2012-06-27 00:37:24 ----A---- C:\Windows\system32\nvcompiler.dll
2012-06-27 00:37:24 ----A---- C:\Windows\system32\nvapi64.dll
2012-06-27 00:37:24 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2012-06-27 00:36:24 ----D---- C:\Program Files\NVIDIA Corporation
2012-06-27 00:36:08 ----D---- C:\NVIDIA
2012-06-25 19:19:56 ----D---- C:\Windows\Panther
2012-06-25 18:29:56 ----D---- C:\Users\petruse\AppData\Roaming\Identities
2012-06-25 18:29:45 ----SD---- C:\Users\petruse\AppData\Roaming\Microsoft
2012-06-25 18:29:45 ----D---- C:\Users\petruse\AppData\Roaming\Media Center Programs
2012-06-25 18:29:37 ----SHD---- C:\Recovery
2012-06-25 18:29:37 ----SHD---- C:\ProgramData\Šablony
2012-06-25 18:29:37 ----SHD---- C:\ProgramData\Plocha
2012-06-25 18:29:37 ----SHD---- C:\ProgramData\Oblíbené položky
2012-06-25 18:29:37 ----SHD---- C:\ProgramData\Nabídka Start
2012-06-25 18:29:37 ----SHD---- C:\ProgramData\Dokumenty
2012-06-25 18:29:37 ----SHD---- C:\ProgramData\Data aplikací
2012-06-25 18:23:57 ----D---- C:\Windows\SoftwareDistribution
2012-06-25 18:21:28 ----D---- C:\Windows\Prefetch
2012-06-25 18:20:52 ----ASH---- C:\pagefile.sys
2012-06-25 18:20:51 ----SHD---- C:\System Volume Information
2012-06-25 18:20:51 ----ASH---- C:\hiberfil.sys
======List of files/folders modified in the last 1 month======
2012-06-27 13:33:51 ----RD---- C:\Program Files
2012-06-27 13:33:02 ----D---- C:\Windows\System32
2012-06-27 13:33:02 ----D---- C:\Windows\inf
2012-06-27 13:33:02 ----A---- C:\Windows\system32\PerfStringBackup.INI
2012-06-27 01:25:56 ----HD---- C:\ProgramData
2012-06-27 01:24:47 ----D---- C:\Windows\system32\catroot
2012-06-27 01:24:00 ----D---- C:\Windows\SysWOW64
2012-06-27 01:23:59 ----D---- C:\Windows\Temp
2012-06-27 01:23:59 ----D---- C:\Windows
2012-06-27 01:03:00 ----RD---- C:\Program Files (x86)
2012-06-27 00:50:04 ----D---- C:\Windows\system32\DriverStore
2012-06-27 00:50:04 ----D---- C:\Windows\system32\drivers
2012-06-27 00:49:47 ----D---- C:\Windows\system32\Tasks
2012-06-27 00:48:16 ----D---- C:\Windows\system32\catroot2
2012-06-27 00:47:59 ----D---- C:\Program Files (x86)\Common Files
2012-06-27 00:43:01 ----D---- C:\Windows\system32\wdi
2012-06-27 00:38:28 ----D---- C:\Windows\system32\restore
2012-06-27 00:37:45 ----RD---- C:\Users
2012-06-27 00:37:40 ----D---- C:\Windows\Help
2012-06-27 00:32:29 ----SD---- C:\ProgramData\Microsoft
2012-06-27 00:32:28 ----D---- C:\Windows\system32\drivers\UMDF
2012-06-27 00:22:09 ----D---- C:\Windows\system32\CodeIntegrity
2012-06-27 00:18:00 ----RSD---- C:\Windows\assembly
2012-06-27 00:18:00 ----D---- C:\Windows\Microsoft.NET
2012-06-25 19:19:31 ----D---- C:\Windows\system32\oobe
2012-06-25 19:19:31 ----D---- C:\Windows\Setup
2012-06-25 18:34:53 ----D---- C:\Windows\system32\config
2012-06-25 18:29:53 ----SHD---- C:\$Recycle.Bin
2012-06-25 18:29:37 ----D---- C:\Program Files\Windows NT
2012-06-25 18:27:41 ----D---- C:\Windows\rescache
2012-06-25 18:27:13 ----D---- C:\Windows\debug
2012-06-25 18:26:17 ----D---- C:\Windows\winsxs
2012-06-25 18:24:48 ----D---- C:\Windows\system32\sysprep
2012-06-25 18:21:24 ----D---- C:\Windows\CSC
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 JRAID;JRAID; C:\Windows\system32\DRIVERS\jraid.sys [2008-11-04 98144]
R0 pciide;pciide; C:\Windows\system32\DRIVERS\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2009-07-14 214096]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2009-07-14 514048]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2011-08-30 3069032]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2011-08-23 565352]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2009-07-14 165376]
S3 s3cap;s3cap; C:\Windows\system32\DRIVERS\vms3cap.sys [2009-07-14 6656]
S3 storvsc;storvsc; C:\Windows\system32\DRIVERS\storvsc.sys [2009-07-14 34896]
S3 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\DRIVERS\vmbus.sys [2009-07-14 200272]
S3 VMBusHID;VMBusHID; C:\Windows\system32\DRIVERS\VMBusHID.sys [2009-07-14 21760]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2011-08-03 980072]
R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe [2011-08-03 2255464]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2011-08-03 379496]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
-----------------EOF-----------------
Logfile of random's system information tool 1.09 (written by random/random)
Run by petruse at 2012-06-27 13:33:51
Microsoft Windows 7 Ultimate
System drive C: has 118 GB (85%) free of 138 GB
Total RAM: 6142 MB (86% free)
HijackThis download failed
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\nvvsvc.exe
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"taskhost.exe"
"C:\Windows\system32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-cbcf2ffe-9330-4a35-ac21-37e04d7852d4 -SystemEventPortName:HostProcess-3682a776-beca-4625-8e6f-f7769e22c2d9 -IoCancelEventPortName:HostProcess-6a013726-4a5a-4ad9-8822-79af06d24584 -NonStateChangingEventPortName:HostProcess-a2229469-289a-4d34-a9e0-0f0ec4ba5d50 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:e846b873-f48a-4bc8-a76c-f0331afc78e1
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
C:\Windows\system32\SearchIndexer.exe /Embedding
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe"
C:\Windows\system32\sppsvc.exe
C:\Windows\System32\svchost.exe -k secsvcs
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\DllHost.exe /Processid:{AB8902B4-09CA-4BB6-B78D-A8F59079A8D5}
C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
"H:\komp\programy\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Windows\system32\rundll32.exe" "C:\Windows\system32\WININET.dll",DispatchAPICall 1
"C:\Windows\system32\rundll32.exe" "C:\Windows\system32\WININET.dll",DispatchAPICall 1
======Registry dump======
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2011-08-26 12681320]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"JMB36X IDE Setup"=C:\Windows\RaidTool\xInsIDE.exe [2007-03-20 36864]
"36X Raid Configurer"=C:\Windows\SysWOW64\xRaidSetup.exe [2007-11-19 1966080]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2012-06-27 13:33:51 ----D---- C:\rsit
2012-06-27 13:33:51 ----D---- C:\Program Files\trend micro
2012-06-27 01:25:56 ----D---- C:\ProgramData\Creative
2012-06-27 01:23:59 ----N---- C:\Windows\Ctregrun.exe
2012-06-27 01:23:47 ----N---- C:\Windows\SYSWOW64\AudioDrv.ini
2012-06-27 01:15:43 ----D---- C:\Windows\Minidump
2012-06-27 01:03:48 ----A---- C:\Windows\SYSWOW64\INRES.DLL
2012-06-27 01:03:00 ----D---- C:\Program Files (x86)\Creative
2012-06-27 00:51:06 ----D---- C:\Program Files (x86)\Western Digital Corporation
2012-06-27 00:50:06 ----D---- C:\RaidTool
2012-06-27 00:50:06 ----A---- C:\Windows\SYSWOW64\xRaidSetup.exe
2012-06-27 00:50:06 ----A---- C:\Windows\SYSWOW64\xRaidAPI.dll
2012-06-27 00:50:01 ----D---- C:\Windows\RaidTool
2012-06-27 00:48:18 ----D---- C:\Windows\SYSWOW64\RTCOM
2012-06-27 00:48:18 ----D---- C:\Program Files\Realtek
2012-06-27 00:48:08 ----A---- C:\Windows\system32\WavesGUILib.dll
2012-06-27 00:48:08 ----A---- C:\Windows\system32\SRSWOW64.dll
2012-06-27 00:48:08 ----A---- C:\Windows\system32\SRSTSX64.dll
2012-06-27 00:48:08 ----A---- C:\Windows\system32\SRSTSH64.dll
2012-06-27 00:48:08 ----A---- C:\Windows\system32\SRSHP64.dll
2012-06-27 00:48:08 ----A---- C:\Windows\system32\drivers\RTKVHD64.sys
2012-06-27 00:48:07 ----A---- C:\Windows\SYSWOW64\MBAPO32.dll
2012-06-27 00:48:07 ----A---- C:\Windows\system32\RtPgEx64.dll
2012-06-27 00:48:07 ----A---- C:\Windows\system32\RtlCPAPI64.dll
2012-06-27 00:48:07 ----A---- C:\Windows\system32\RtkCfg64.dll
2012-06-27 00:48:07 ----A---- C:\Windows\system32\RtkAPO64.dll
2012-06-27 00:48:07 ----A---- C:\Windows\system32\RtkApi64.dll
2012-06-27 00:48:07 ----A---- C:\Windows\system32\RTEEP64A.dll
2012-06-27 00:48:07 ----A---- C:\Windows\system32\RTEEL64A.dll
2012-06-27 00:48:07 ----A---- C:\Windows\system32\RTEEG64A.dll
2012-06-27 00:48:07 ----A---- C:\Windows\system32\RTEED64A.dll
2012-06-27 00:48:07 ----A---- C:\Windows\system32\RTCOM64.dll
2012-06-27 00:48:07 ----A---- C:\Windows\system32\RP3DHT64.dll
2012-06-27 00:48:07 ----A---- C:\Windows\system32\RP3DAA64.dll
2012-06-27 00:48:07 ----A---- C:\Windows\system32\RCoInst64.dll
2012-06-27 00:48:07 ----A---- C:\Windows\system32\MBWrp64.dll
2012-06-27 00:48:07 ----A---- C:\Windows\system32\MBppld64.dll
2012-06-27 00:48:07 ----A---- C:\Windows\system32\MBPPCn64.dll
2012-06-27 00:48:07 ----A---- C:\Windows\system32\MBAPO64.dll
2012-06-27 00:48:06 ----A---- C:\Windows\system32\MaxxAudioEQ.dll
2012-06-27 00:48:06 ----A---- C:\Windows\system32\MaxxAudioAPO20.dll
2012-06-27 00:48:06 ----A---- C:\Windows\system32\FMAPO64.dll
2012-06-27 00:48:05 ----A---- C:\Windows\system32\AERTAR64.dll
2012-06-27 00:48:05 ----A---- C:\Windows\system32\AERTAC64.dll
2012-06-27 00:48:01 ----HD---- C:\Program Files (x86)\Temp
2012-06-27 00:48:01 ----A---- C:\Windows\RtlExUpd.dll
2012-06-27 00:45:57 ----A---- C:\Windows\system32\RTNUninst64.dll
2012-06-27 00:45:57 ----A---- C:\Windows\system32\RtNicProp64.dll
2012-06-27 00:45:57 ----A---- C:\Windows\system32\drivers\Rt64win7.sys
2012-06-27 00:45:53 ----D---- C:\Program Files (x86)\Realtek
2012-06-27 00:43:24 ----D---- C:\Program Files (x86)\Intel
2012-06-27 00:43:24 ----A---- C:\Windows\SYSWOW64\CSVer.dll
2012-06-27 00:42:53 ----D---- C:\Intel
2012-06-27 00:39:47 ----D---- C:\Windows 7 Legalizátor.exe
2012-06-27 00:38:35 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2012-06-27 00:37:50 ----SHD---- C:\Windows\Installer
2012-06-27 00:37:43 ----D---- C:\ProgramData\NVIDIA
2012-06-27 00:37:43 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2012-06-27 00:37:41 ----A---- C:\Windows\system32\nvvsvc.exe
2012-06-27 00:37:41 ----A---- C:\Windows\system32\nvsvc64.dll
2012-06-27 00:37:41 ----A---- C:\Windows\system32\nvshext.dll
2012-06-27 00:37:41 ----A---- C:\Windows\system32\nvmctray.dll
2012-06-27 00:37:41 ----A---- C:\Windows\system32\nvcpl.dll
2012-06-27 00:37:41 ----A---- C:\Windows\system32\easyupdatusapiu64.dll
2012-06-27 00:37:37 ----D---- C:\ProgramData\NVIDIA Corporation
2012-06-27 00:37:24 ----A---- C:\Windows\SYSWOW64\OpenCL.dll
2012-06-27 00:37:24 ----A---- C:\Windows\SYSWOW64\nvwgf2um.dll
2012-06-27 00:37:24 ----A---- C:\Windows\SYSWOW64\nvoglv32.dll
2012-06-27 00:37:24 ----A---- C:\Windows\SYSWOW64\nvd3dum.dll
2012-06-27 00:37:24 ----A---- C:\Windows\SYSWOW64\nvcuvid.dll
2012-06-27 00:37:24 ----A---- C:\Windows\SYSWOW64\nvcuvenc.dll
2012-06-27 00:37:24 ----A---- C:\Windows\SYSWOW64\nvcuda.dll
2012-06-27 00:37:24 ----A---- C:\Windows\SYSWOW64\nvcompiler.dll
2012-06-27 00:37:24 ----A---- C:\Windows\SYSWOW64\nvapi.dll
2012-06-27 00:37:24 ----A---- C:\Windows\system32\OpenCL.dll
2012-06-27 00:37:24 ----A---- C:\Windows\system32\nvoglv64.dll
2012-06-27 00:37:24 ----A---- C:\Windows\system32\nvgenco64.dll
2012-06-27 00:37:24 ----A---- C:\Windows\system32\nvdispco64.dll
2012-06-27 00:37:24 ----A---- C:\Windows\system32\nvd3dumx.dll
2012-06-27 00:37:24 ----A---- C:\Windows\system32\nvcuvid.dll
2012-06-27 00:37:24 ----A---- C:\Windows\system32\nvcuvenc.dll
2012-06-27 00:37:24 ----A---- C:\Windows\system32\nvcuda.dll
2012-06-27 00:37:24 ----A---- C:\Windows\system32\nvcompiler.dll
2012-06-27 00:37:24 ----A---- C:\Windows\system32\nvapi64.dll
2012-06-27 00:37:24 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2012-06-27 00:36:24 ----D---- C:\Program Files\NVIDIA Corporation
2012-06-27 00:36:08 ----D---- C:\NVIDIA
2012-06-25 19:19:56 ----D---- C:\Windows\Panther
2012-06-25 18:29:56 ----D---- C:\Users\petruse\AppData\Roaming\Identities
2012-06-25 18:29:45 ----SD---- C:\Users\petruse\AppData\Roaming\Microsoft
2012-06-25 18:29:45 ----D---- C:\Users\petruse\AppData\Roaming\Media Center Programs
2012-06-25 18:29:37 ----SHD---- C:\Recovery
2012-06-25 18:29:37 ----SHD---- C:\ProgramData\Šablony
2012-06-25 18:29:37 ----SHD---- C:\ProgramData\Plocha
2012-06-25 18:29:37 ----SHD---- C:\ProgramData\Oblíbené položky
2012-06-25 18:29:37 ----SHD---- C:\ProgramData\Nabídka Start
2012-06-25 18:29:37 ----SHD---- C:\ProgramData\Dokumenty
2012-06-25 18:29:37 ----SHD---- C:\ProgramData\Data aplikací
2012-06-25 18:23:57 ----D---- C:\Windows\SoftwareDistribution
2012-06-25 18:21:28 ----D---- C:\Windows\Prefetch
2012-06-25 18:20:52 ----ASH---- C:\pagefile.sys
2012-06-25 18:20:51 ----SHD---- C:\System Volume Information
2012-06-25 18:20:51 ----ASH---- C:\hiberfil.sys
======List of files/folders modified in the last 1 month======
2012-06-27 13:33:51 ----RD---- C:\Program Files
2012-06-27 13:33:02 ----D---- C:\Windows\System32
2012-06-27 13:33:02 ----D---- C:\Windows\inf
2012-06-27 13:33:02 ----A---- C:\Windows\system32\PerfStringBackup.INI
2012-06-27 01:25:56 ----HD---- C:\ProgramData
2012-06-27 01:24:47 ----D---- C:\Windows\system32\catroot
2012-06-27 01:24:00 ----D---- C:\Windows\SysWOW64
2012-06-27 01:23:59 ----D---- C:\Windows\Temp
2012-06-27 01:23:59 ----D---- C:\Windows
2012-06-27 01:03:00 ----RD---- C:\Program Files (x86)
2012-06-27 00:50:04 ----D---- C:\Windows\system32\DriverStore
2012-06-27 00:50:04 ----D---- C:\Windows\system32\drivers
2012-06-27 00:49:47 ----D---- C:\Windows\system32\Tasks
2012-06-27 00:48:16 ----D---- C:\Windows\system32\catroot2
2012-06-27 00:47:59 ----D---- C:\Program Files (x86)\Common Files
2012-06-27 00:43:01 ----D---- C:\Windows\system32\wdi
2012-06-27 00:38:28 ----D---- C:\Windows\system32\restore
2012-06-27 00:37:45 ----RD---- C:\Users
2012-06-27 00:37:40 ----D---- C:\Windows\Help
2012-06-27 00:32:29 ----SD---- C:\ProgramData\Microsoft
2012-06-27 00:32:28 ----D---- C:\Windows\system32\drivers\UMDF
2012-06-27 00:22:09 ----D---- C:\Windows\system32\CodeIntegrity
2012-06-27 00:18:00 ----RSD---- C:\Windows\assembly
2012-06-27 00:18:00 ----D---- C:\Windows\Microsoft.NET
2012-06-25 19:19:31 ----D---- C:\Windows\system32\oobe
2012-06-25 19:19:31 ----D---- C:\Windows\Setup
2012-06-25 18:34:53 ----D---- C:\Windows\system32\config
2012-06-25 18:29:53 ----SHD---- C:\$Recycle.Bin
2012-06-25 18:29:37 ----D---- C:\Program Files\Windows NT
2012-06-25 18:27:41 ----D---- C:\Windows\rescache
2012-06-25 18:27:13 ----D---- C:\Windows\debug
2012-06-25 18:26:17 ----D---- C:\Windows\winsxs
2012-06-25 18:24:48 ----D---- C:\Windows\system32\sysprep
2012-06-25 18:21:24 ----D---- C:\Windows\CSC
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 JRAID;JRAID; C:\Windows\system32\DRIVERS\jraid.sys [2008-11-04 98144]
R0 pciide;pciide; C:\Windows\system32\DRIVERS\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2009-07-14 214096]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2009-07-14 514048]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2011-08-30 3069032]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2011-08-23 565352]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2009-07-14 165376]
S3 s3cap;s3cap; C:\Windows\system32\DRIVERS\vms3cap.sys [2009-07-14 6656]
S3 storvsc;storvsc; C:\Windows\system32\DRIVERS\storvsc.sys [2009-07-14 34896]
S3 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\DRIVERS\vmbus.sys [2009-07-14 200272]
S3 VMBusHID;VMBusHID; C:\Windows\system32\DRIVERS\VMBusHID.sys [2009-07-14 21760]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2011-08-03 980072]
R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe [2011-08-03 2255464]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2011-08-03 379496]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
-----------------EOF-----------------