Stránka 1 z 4

Havěť nebo hardware?

Napsal: 23 srp 2012 22:28
od davidrohusch
Dobrý den někdy se mi pc sekne a buď se zotaví nebo ho musím vypnout .

nedavno mi perstala fungovat ram a pise to chybu nvidia tak nevim jestli je to virem nebo něco s pc prosím o pomoc

Re: Havěť nebo hardware?

Napsal: 26 srp 2012 17:19
od Rudy

Re: Havěť nebo hardware?

Napsal: 29 srp 2012 16:42
od davidrohusch
podle navodu jsem to pustil vsechno potvrdil a otevrelo se mu nejaky okno hijackthis ... miliony tlacitek a nejake soubory... muzu to zavrit?

Re: Havěť nebo hardware?

Napsal: 29 srp 2012 16:45
od davidrohusch
Logfile of random's system information tool 1.09 (written by random/random)
Run by Jan at 2012-08-29 17:40:02
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 11 GB (14%) free of 76 GB
Total RAM: 2046 MB (40% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 17:43:25, on 29.8.2012
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16446)
Boot mode: Normal

Running processes:
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
C:\Windows\PixArt\Pac7302\Monitor.exe
C:\Program Files\Common Files\Spigot\Search Settings\SearchSettings.exe
C:\Program Files\AVG\AVG2012\avgtray.exe
C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
C:\Program Files\D-Link AirPlus\AirPlus.exe
C:\Windows\system32\taskhost.exe
C:\Users\Jan\Desktop\Opera\opera.exe
C:\Users\Jan\Desktop\Opera\pluginwrapper\opera_plugin_wrapper.exe
C:\Users\Jan\AppData\Local\Opera\Opera\temporary_downloads\FSXDemo.exe
C:\Windows\system32\taskmgr.exe
C:\Users\Jan\AppData\Local\Temp\WZSE0.TMP\setup.exe
C:\PROGRA~1\COMMON~1\INSTAL~1\Driver\11\INTEL3~1\IDriver.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Windows\system32\Macromed\Flash\FlashUtil32_11_3_300_271_ActiveX.exe
C:\Users\Jan\Desktop\RSIT.exe
C:\Program Files\trend micro\Jan.exe
C:\Windows\system32\SearchFilterHost.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: YTD Toolbar - {F3FEE66E-E034-436a-86E4-9690573BEE8A} - C:\Program Files\YTD Toolbar\IE\6.2\ytdToolbarIE.dll (file missing)
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: AVG Do Not Track - {31332EEF-CB9F-458F-AFEB-D30E9A66B6BA} - C:\Program Files\AVG\AVG2012\avgdtiex.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\ssv.dll
O2 - BHO: IEHlprObj Class - {8CA5ED52-F3FB-4414-A105-2E3491156990} - C:\Program Files\iWin Games\iWinGamesHookIE.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\jp2ssv.dll
O2 - BHO: YTD Toolbar - {F3FEE66E-E034-436a-86E4-9690573BEE8A} - C:\Program Files\YTD Toolbar\IE\6.2\ytdToolbarIE.dll (file missing)
O3 - Toolbar: YTD Toolbar - {F3FEE66E-E034-436a-86E4-9690573BEE8A} - C:\Program Files\YTD Toolbar\IE\6.2\ytdToolbarIE.dll (file missing)
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [LogMeIn Hamachi Ui] "C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
O4 - HKLM\..\Run: [PAC7302_Monitor] C:\Windows\PixArt\PAC7302\Monitor.exe
O4 - HKLM\..\Run: [SearchSettings] "C:\Program Files\Common Files\Spigot\Search Settings\SearchSettings.exe"
O4 - HKLM\..\Run: [AVG_TRAY] "C:\Program Files\AVG\AVG2012\avgtray.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [AdobeAAMUpdater-1.0] "C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [Google Update] "C:\Users\Jan\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [ISUSPM Startup] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Global Startup: D-Link AirPlus.lnk = ?
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: AVG Do Not Track - {68BCFFE1-A2DA-4B40-9068-87ECBFC19D16} - C:\Program Files\AVG\AVG2012\avgdtiex.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O16 - DPF: {E6F480FC-BD44-4CBA-B74A-89AF7842937D} (SysInfo Class) - http://content.systemrequirementslab.co ... .5.1.0.cab
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG2012\avgpp.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: Adobe Active File Monitor V10 (AdobeActiveFileMonitor10.0) - Adobe Systems Incorporated - H:\Program Files\Adobe\Elements 10 Organizer\PhotoshopElementsFileAgent.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Application Updater - Spigot, Inc. - C:\Program Files\Application Updater\ApplicationUpdater.exe
O23 - Service: AVGIDSAgent - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG2012\avgidsagent.exe
O23 - Service: AVG WatchDog (avgwd) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG2012\avgwdsvc.exe
O23 - Service: CLHNServiceForPowerDVD12 - CyberLink Corp. - C:\Program Files\CyberLink\PowerDVD12\Kernel\DMP\CLHNServer\CLHNServiceForPowerDVD12.exe
O23 - Service: CyberLink PowerDVD 12 Media Server Monitor Service - CyberLink - C:\Program Files\CyberLink\PowerDVD12\Kernel\DMS\CLMSMonitorServicePDVD12.exe
O23 - Service: CyberLink PowerDVD 12 Media Server Service - CyberLink - C:\Program Files\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - C:\Program Files\LogMeIn Hamachi\hamachi-2.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iWinTrusted - iWin Inc. - C:\Program Files\iWin Games\iWinTrusted.exe
O23 - Service: Nero Update (NAUpdate) - Nero AG - C:\Program Files\Nero\Update\NASvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: PnkBstrB - Unknown owner - C:\Windows\system32\PnkBstrB.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe

--
End of file - 10352 bytes

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3411530430-4203148721-2646380515-1001Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3411530430-4203148721-2646380515-1001UA.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2011-06-06 63912]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31332EEF-CB9F-458F-AFEB-D30E9A66B6BA}]
AVG Do Not Track - C:\Program Files\AVG\AVG2012\avgdtiex.dll [2012-06-13 937592]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\ssv.dll [2012-05-04 453504]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8CA5ED52-F3FB-4414-A105-2E3491156990}]
IEHlprObj Class - C:\Program Files\iWin Games\iWinGamesHookIE.dll [2011-04-08 141312]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-28 441216]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2012-08-15 192144]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\jp2ssv.dll [2012-05-04 157576]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F3FEE66E-E034-436a-86E4-9690573BEE8A}]
YTD Toolbar - C:\Program Files\YTD Toolbar\IE\6.2\ytdToolbarIE.dll []

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{F3FEE66E-E034-436a-86E4-9690573BEE8A} - YTD Toolbar - C:\Program Files\YTD Toolbar\IE\6.2\ytdToolbarIE.dll []
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2012-08-15 192144]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2009-09-23 141848]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2009-09-23 173592]
"Persistence"=C:\Windows\system32\igfxpers.exe [2009-09-23 150552]
"GrooveMonitor"=C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-01-03 843712]
"LogMeIn Hamachi Ui"=C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe [2012-06-27 1996200]
"PAC7302_Monitor"=C:\Windows\PixArt\PAC7302\Monitor.exe [2006-11-03 319488]
""= []
"SearchSettings"=C:\Program Files\Common Files\Spigot\Search Settings\SearchSettings.exe [2012-07-26 1095560]
"AVG_TRAY"=C:\Program Files\AVG\AVG2012\avgtray.exe [2012-04-05 2587008]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2012-01-17 252296]
"AdobeAAMUpdater-1.0"=C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2011-06-16 499608]
"ISUSScheduler"=C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe [2004-06-16 81920]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Skype"=C:\Program Files\Skype\Phone\Skype.exe [2012-07-13 17418928]
"Google Update"=C:\Users\Jan\AppData\Local\Google\Update\GoogleUpdate.exe [2012-07-13 116648]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\DTLite.exe [2012-04-11 3672384]
"ISUSPM Startup"=C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe [2004-06-16 221184]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EA Core]
C:\Program Files\Electronic Arts\EADM\Core.exe -silent []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PowerDVD12Agent]
C:\Program Files\CyberLink\PowerDVD12\PowerDVD12Agent.exe [2012-01-12 371256]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PowerDVD12DMREngine]
C:\Program Files\CyberLink\PowerDVD12\Kernel\DMR\PowerDVD12DMREngine.exe [2012-01-02 501544]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files\Common Files\Java\Java Update\jusched.exe [2012-01-17 252296]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Jan^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^GameRanger.lnk]
C:\Users\Jan\AppData\Roaming\GAMERA~1\GAMERA~2\GAMERA~1.EXE [2012-08-10 1421024]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
D-Link AirPlus.lnk - C:\Program Files\D-Link AirPlus\AirPlus.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2009-09-23 218112]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Hamachi2Svc]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"msacm.l3codecp"=l3codecp.acm
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"vidc.VP60"=C:\Windows\system32\vp6vfw.dll
"vidc.VP61"=C:\Windows\system32\vp6vfw.dll
"VIDC.FPS1"=frapsvid.dll
"wave5"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer5"=wdmaud.drv
"aux1"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave6"=wdmaud.drv
"midi6"=wdmaud.drv
"mixer6"=wdmaud.drv
"wave7"=wdmaud.drv
"midi7"=wdmaud.drv
"mixer7"=wdmaud.drv
"wave8"=wdmaud.drv
"midi8"=wdmaud.drv
"mixer8"=wdmaud.drv
"wave9"=wdmaud.drv
"midi9"=wdmaud.drv
"mixer9"=wdmaud.drv
"VIDC.FFDS"=ff_vfw.dll
"msacm.l3codec"=l3codecp.acm

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2012-08-29 17:40:21 ----D---- C:\Program Files\trend micro
2012-08-29 17:40:02 ----D---- C:\rsit
2012-08-28 19:05:39 ----D---- C:\Program Files\Cheat Engine 6.2
2012-08-28 17:53:44 ----D---- C:\Bin
2012-08-24 18:27:45 ----D---- C:\Program Files\Common Files\GraphBoard 2.50
2012-08-24 18:27:42 ----D---- C:\Program Files\LANGMaster ŠKOLA hrou
2012-08-24 18:27:16 ----A---- C:\Windows\system32\LMRTREND.dll
2012-08-24 18:27:16 ----A---- C:\Windows\system32\LMRT.dll
2012-08-24 18:27:15 ----A---- C:\Windows\system32\dxtmsft3.dll
2012-08-24 18:27:13 ----A---- C:\Windows\system32\unam4ie.exe
2012-08-24 18:27:13 ----A---- C:\Windows\system32\strmdll.dll
2012-08-24 18:27:10 ----A---- C:\Windows\system32\vidx16.dll
2012-08-24 18:27:10 ----A---- C:\Windows\system32\qcut.dll
2012-08-24 18:27:10 ----A---- C:\Windows\system32\danim.dll
2012-08-24 18:27:09 ----A---- C:\Windows\system32\w95inf32.dll
2012-08-24 18:27:09 ----A---- C:\Windows\system32\w95inf16.dll
2012-08-23 15:15:48 ----D---- C:\Program Files\Neposeda
2012-08-23 15:12:04 ----D---- C:\Users\Jan\AppData\Roaming\Meridian93
2012-08-23 15:11:57 ----D---- C:\Program Files\Kouzelná farma
2012-08-23 15:11:34 ----D---- C:\Program Files\Kouzelné dárky
2012-08-23 14:48:43 ----D---- C:\Users\Jan\AppData\Roaming\BeachPartyCraze
2012-08-23 14:48:13 ----D---- C:\Program Files\Bláznivé prázdniny na pláži
2012-08-23 14:36:40 ----D---- C:\Program Files\Zvířecí salón krásy
2012-08-22 17:19:27 ----D---- C:\Program Files\Řečtí hrdinové
2012-08-22 16:39:20 ----D---- C:\Users\Jan\AppData\Roaming\BlamGames
2012-08-22 15:41:37 ----D---- C:\Users\Jan\AppData\Roaming\Špidla Data Processing, s.r.o
2012-08-22 15:41:37 ----D---- C:\ProgramData\Špidla Data Processing, s.r.o
2012-08-22 15:41:10 ----D---- C:\Program Files\Auta snu
2012-08-21 19:29:57 ----D---- C:\ProgramData\InstallShield
2012-08-21 19:28:26 ----D---- C:\Program Files\THQ
2012-08-21 13:26:03 ----D---- C:\Users\Jan\AppData\Roaming\aliasworlds
2012-08-21 13:26:03 ----D---- C:\ProgramData\aliasworlds
2012-08-21 13:17:25 ----D---- C:\Games
2012-08-19 18:21:11 ----D---- C:\Program Files\Paint.NET
2012-08-19 18:13:45 ----D---- C:\ProgramData\regid.1986-12.com.adobe
2012-08-19 18:12:00 ----D---- C:\Program Files\Common Files\Adobe AIR
2012-08-19 18:05:32 ----D---- C:\Program Files\Common Files\PX Storage Engine
2012-08-17 17:27:56 ----D---- C:\Users\Jan\AppData\Roaming\.techniclauncher
2012-08-16 20:15:43 ----D---- C:\Users\Jan\AppData\Roaming\DarksporeData
2012-08-14 15:50:55 ----D---- C:\Users\Jan\AppData\Roaming\iWin
2012-08-14 15:28:49 ----D---- C:\Program Files\iWin.com
2012-08-14 15:27:15 ----D---- C:\ProgramData\iWin Games
2012-08-14 15:27:04 ----D---- C:\Program Files\iWin Games
2012-08-13 22:59:08 ----D---- C:\Program Files\The Learning Company
2012-08-13 19:52:20 ----D---- C:\Program Files\Common Files\SWF Studio
2012-08-13 19:52:12 ----D---- C:\Program Files\Hero Fighter
2012-08-13 16:06:33 ----D---- C:\Program Files\Microsoft XNA
2012-08-13 15:57:23 ----D---- C:\Users\Jan\AppData\Roaming\Notepad++
2012-08-13 15:57:23 ----D---- C:\Program Files\Notepad++
2012-08-12 23:11:09 ----D---- C:\Windows\Sun
2012-08-12 12:24:47 ----D---- C:\Program Files\LittleFighter2
2012-08-11 07:57:43 ----D---- C:\Program Files\WME DevKit
2012-08-10 18:31:00 ----D---- C:\Program Files\Rovio
2012-08-10 18:26:25 ----D---- C:\Users\Jan\AppData\Roaming\Rovio
2012-08-09 22:02:43 ----A---- C:\Windows\system32\ff_vfw.dll
2012-08-09 22:02:42 ----D---- C:\Program Files\ffdshow
2012-08-09 22:02:41 ----D---- C:\ProgramData\IObit
2012-08-09 22:02:41 ----D---- C:\Program Files\IObit
2012-08-09 15:12:13 ----D---- C:\Users\Jan\AppData\Roaming\Screaming Bee
2012-08-09 15:11:44 ----D---- C:\Program Files\Screaming Bee
2012-08-09 15:01:40 ----D---- C:\Program Files\GIMP 2
2012-08-09 14:57:28 ----D---- C:\Program Files\AV Vcs 4.0
2012-08-08 20:04:59 ----A---- C:\Windows\system32\drivers\dtsoftbus01.sys
2012-08-08 20:04:52 ----D---- C:\Program Files\DAEMON Tools Lite
2012-08-08 10:26:03 ----D---- C:\ProgramData\NVIDIA
2012-08-08 10:25:53 ----A---- C:\Windows\system32\nvvsvc.exe
2012-08-08 10:25:53 ----A---- C:\Windows\system32\nvsvc.dll
2012-08-08 10:25:53 ----A---- C:\Windows\system32\nvshext.dll
2012-08-08 10:25:53 ----A---- C:\Windows\system32\nvmctray.dll
2012-08-08 10:25:53 ----A---- C:\Windows\system32\nvcpl.dll
2012-08-08 10:25:31 ----A---- C:\Windows\system32\OpenCL.dll
2012-08-08 10:25:23 ----D---- C:\ProgramData\NVIDIA Corporation
2012-08-08 10:24:25 ----A---- C:\Windows\system32\nvhdap32.dll
2012-08-08 10:24:24 ----A---- C:\Windows\system32\nvwgf2um.dll
2012-08-08 10:24:24 ----A---- C:\Windows\system32\nvoglv32.dll
2012-08-08 10:24:24 ----A---- C:\Windows\system32\nvhdagenco3220103.dll
2012-08-08 10:24:24 ----A---- C:\Windows\system32\nvgenco32.dll
2012-08-08 10:24:24 ----A---- C:\Windows\system32\nvdispco32.dll
2012-08-08 10:24:24 ----A---- C:\Windows\system32\nvd3dum.dll
2012-08-08 10:24:24 ----A---- C:\Windows\system32\nvcuvid.dll
2012-08-08 10:24:24 ----A---- C:\Windows\system32\nvcuvenc.dll
2012-08-08 10:24:24 ----A---- C:\Windows\system32\nvcuda.dll
2012-08-08 10:24:24 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2012-08-08 10:24:24 ----A---- C:\Windows\system32\drivers\nvhda32v.sys
2012-08-08 10:24:23 ----A---- C:\Windows\system32\nvcompiler.dll
2012-08-08 10:24:23 ----A---- C:\Windows\system32\nvapi.dll
2012-08-08 10:16:43 ----D---- C:\Program Files\Common Files\Java
2012-08-08 10:16:33 ----A---- C:\Windows\system32\javaws.exe
2012-08-08 10:16:25 ----A---- C:\Windows\system32\javaw.exe
2012-08-08 10:16:24 ----A---- C:\Windows\system32\java.exe
2012-08-07 18:28:33 ----A---- C:\Windows\system32\XAudio2_7.dll
2012-08-07 18:28:33 ----A---- C:\Windows\system32\XAPOFX1_5.dll
2012-08-07 18:28:33 ----A---- C:\Windows\system32\xactengine3_7.dll
2012-08-07 18:28:30 ----A---- C:\Windows\system32\XAudio2_6.dll
2012-08-07 18:28:30 ----A---- C:\Windows\system32\XAPOFX1_4.dll
2012-08-07 18:28:27 ----A---- C:\Windows\system32\xactengine3_6.dll
2012-08-07 18:28:27 ----A---- C:\Windows\system32\X3DAudio1_7.dll
2012-08-07 18:27:55 ----D---- C:\Windows\system32\directx
2012-08-05 19:01:52 ----D---- C:\Users\Jan\AppData\Roaming\AVG
2012-08-05 18:17:58 ----D---- C:\Users\Jan\AppData\Roaming\AVG2012
2012-08-05 18:11:36 ----HD---- C:\$AVG
2012-08-05 18:11:35 ----D---- C:\Windows\system32\drivers\AVG
2012-08-05 18:11:35 ----D---- C:\ProgramData\AVG2012
2012-08-05 18:11:06 ----D---- C:\Program Files\AVG
2012-08-05 18:09:38 ----HD---- C:\ProgramData\Common Files
2012-08-05 18:09:38 ----D---- C:\ProgramData\MFAData
2012-08-05 17:45:56 ----D---- C:\Program Files\Common Files\Spigot
2012-08-05 17:45:56 ----D---- C:\Program Files\Application Updater

======List of files/folders modified in the last 1 month======

2012-08-29 17:43:19 ----D---- C:\Windows
2012-08-29 17:43:17 ----SD---- C:\ProgramData\Microsoft
2012-08-29 17:43:17 ----D---- C:\Windows\Temp
2012-08-29 17:43:13 ----SHD---- C:\Windows\Installer
2012-08-29 17:43:02 ----D---- C:\Windows\winsxs
2012-08-29 17:41:33 ----D---- C:\Windows\inf
2012-08-29 17:41:24 ----RSD---- C:\Windows\Fonts
2012-08-29 17:40:21 ----RD---- C:\Program Files
2012-08-29 17:37:07 ----D---- C:\Users\Jan\AppData\Roaming\Skype
2012-08-29 17:32:35 ----D---- C:\Program Files\Microsoft Games
2012-08-29 17:32:09 ----D---- C:\Windows\system32\config
2012-08-29 17:31:47 ----SHD---- C:\System Volume Information
2012-08-29 16:44:23 ----HD---- C:\Program Files\InstallShield Installation Information
2012-08-28 16:44:27 ----D---- C:\Users\Jan\AppData\Roaming\uTorrent
2012-08-27 12:43:04 ----D---- C:\Windows\system32\NDF
2012-08-27 12:42:17 ----D---- C:\Windows\Prefetch
2012-08-25 15:24:16 ----D---- C:\ProgramData\YTD Video Downloader
2012-08-25 12:43:18 ----D---- C:\Users\Jan\AppData\Roaming\.minecraft
2012-08-24 18:27:45 ----D---- C:\Program Files\Common Files
2012-08-24 18:27:29 ----D---- C:\Windows\System32
2012-08-24 18:27:16 ----D---- C:\Program Files\Windows Media Player
2012-08-24 18:27:13 ----D---- C:\Windows\Help
2012-08-23 14:36:59 ----D---- C:\Windows\system32\Tasks
2012-08-22 15:41:37 ----HD---- C:\ProgramData
2012-08-21 19:29:35 ----D---- C:\Windows\Downloaded Program Files
2012-08-21 19:29:34 ----D---- C:\Program Files\Common Files\InstallShield
2012-08-19 18:22:27 ----RSD---- C:\Windows\assembly
2012-08-19 18:13:43 ----D---- C:\Users\Jan\AppData\Roaming\Adobe
2012-08-19 18:12:22 ----D---- C:\Program Files\Common Files\Adobe
2012-08-19 18:12:12 ----D---- C:\ProgramData\Adobe
2012-08-19 18:12:07 ----D---- C:\Program Files\Adobe
2012-08-19 18:06:51 ----D---- C:\Windows\system32\catroot
2012-08-19 18:05:32 ----D---- C:\Windows\system32\drivers
2012-08-18 17:26:06 ----A---- C:\Windows\system32\PerfStringBackup.INI
2012-08-15 22:28:05 ----D---- C:\Users\Jan\AppData\Roaming\CyberLink
2012-08-15 15:28:03 ----A---- C:\Windows\system32\FlashPlayerApp.exe
2012-08-14 15:50:54 ----AD---- C:\ProgramData\Temp
2012-08-13 16:06:33 ----D---- C:\Program Files\Common Files\microsoft shared
2012-08-10 19:05:21 ----D---- C:\Windows\system32\catroot2
2012-08-09 19:13:47 ----D---- C:\Windows\system32\Macromed
2012-08-09 15:11:52 ----D---- C:\Windows\system32\DriverStore
2012-08-08 20:07:25 ----D---- C:\Users\Jan\AppData\Roaming\DAEMON Tools Lite
2012-08-08 10:26:48 ----D---- C:\Program Files\NVIDIA Corporation
2012-08-08 10:26:31 ----RD---- C:\Users
2012-08-06 11:22:27 ----D---- C:\ProgramData\Norton
2012-08-05 18:07:36 ----D---- C:\ProgramData\NortonInstaller

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 AVGIDSHX;AVGIDSHX; C:\Windows\system32\DRIVERS\avgidshx.sys [2012-04-19 24896]
R0 Avgrkx86;AVG Anti-Rootkit Driver; C:\Windows\system32\DRIVERS\avgrkx86.sys [2012-01-31 31952]
R0 NBVol;Nero Backup Volume Filter Driver; C:\Windows\system32\DRIVERS\NBVol.sys [2011-12-01 56496]
R0 NBVolUp;Nero Backup Volume Upper Filter Driver; C:\Windows\system32\DRIVERS\NBVolUp.sys [2011-12-01 12464]
R0 PxHelp20;PxHelp20; C:\Windows\System32\Drivers\PxHelp20.sys [2010-03-19 45648]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R1 Avgldx86;AVG AVI Loader Driver; C:\Windows\system32\DRIVERS\avgldx86.sys [2012-02-22 235216]
R1 Avgmfx86;AVG Mini-Filter Resident Anti-Virus Shield; C:\Windows\system32\DRIVERS\avgmfx86.sys [2011-12-23 41040]
R1 Avgtdix;AVG TDI Driver; C:\Windows\system32\DRIVERS\avgtdix.sys [2012-03-19 301248]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2012-08-08 242240]
R2 {329F96B6-DF1E-4328-BFDA-39EA953C1312};Power Control [2012/06/22 18:27:07]; \??\C:\Program Files\CyberLink\PowerDVD12\Common\NavFilter\000.fcl [2012-01-11 87536]
R2 ntk_PowerDVD12;ntk_PowerDVD12; \??\C:\Program Files\CyberLink\PowerDVD12\Kernel\DMP\CLHNServer\ntk_PowerDVD12.sys [2011-10-27 120432]
R2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
R3 AIRPLUS;D-Link AirPlus Wireless Adapter; C:\Windows\system32\DRIVERS\airplus.sys [2003-06-05 155776]
R3 AVGIDSDriver;AVGIDSDriver; C:\Windows\system32\DRIVERS\avgidsdriverx.sys [2011-12-23 139856]
R3 AVGIDSFilter;AVGIDSFilter; C:\Windows\system32\DRIVERS\avgidsfilterx.sys [2011-12-23 24144]
R3 AVGIDSShim;AVGIDSShim; C:\Windows\system32\DRIVERS\avgidsshimx.sys [2011-12-23 17232]
R3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2012-06-01 375336]
R3 hamachi;Hamachi Network Interface; C:\Windows\system32\DRIVERS\hamachi.sys [2009-03-18 26176]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda32v.sys [2012-04-18 148800]
R3 SCREAMINGBDRIVER;Screaming Bee Audio; C:\Windows\system32\drivers\ScreamingBAudio.sys [2009-12-01 34384]
S3 aic78xx;aic78xx; C:\Windows\system32\drivers\djsvs.sys [2009-07-14 70720]
S3 amdagp;AMD AGP Bus Filter Driver; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd32.sys [2009-09-23 4808192]
S3 PAC7302;Eye 312; C:\Windows\system32\DRIVERS\PAC7302.SYS [2007-06-14 457856]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368]
S3 sisagp;SIS AGP Bus Filter; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2010-11-20 52224]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2010-11-20 27264]
S3 viaagp;VIA AGP Bus Filter; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\drivers\viac7.sys [2009-07-14 52736]
S3 WinRing0_1_2_0;WinRing0_1_2_0; \??\C:\Program Files\IObit\Game Booster 3\Driver\WinRing0.sys [2010-11-01 14416]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeActiveFileMonitor10.0;Adobe Active File Monitor V10; H:\Program Files\Adobe\Elements 10 Organizer\PhotoshopElementsFileAgent.exe [2011-09-01 169624]
R2 Application Updater;Application Updater; C:\Program Files\Application Updater\ApplicationUpdater.exe [2012-07-26 794560]
R2 AVGIDSAgent;AVGIDSAgent; C:\Program Files\AVG\AVG2012\avgidsagent.exe [2012-07-04 5160568]
R2 avgwd;AVG WatchDog; C:\Program Files\AVG\AVG2012\avgwdsvc.exe [2012-02-14 193288]
R2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine; C:\Program Files\LogMeIn Hamachi\hamachi-2.exe [2012-06-27 1385896]
R2 iWinTrusted;iWinTrusted; C:\Program Files\iWin Games\iWinTrusted.exe [2011-04-08 176848]
R2 MDM;Machine Debug Manager; C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe [2006-10-26 335872]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2012-05-15 645440]
R2 PnkBstrA;PnkBstrA; C:\Windows\system32\PnkBstrA.exe [2012-07-05 76888]
R2 PnkBstrB;PnkBstrB; C:\Windows\system32\PnkBstrB.exe [2012-07-05 189248]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2012-05-15 382272]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2011-03-28 1713536]
R3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2012-07-14 136176]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2012-06-07 160944]
S3 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2011-06-06 64952]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-08-15 250056]
S3 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2010-03-18 35160]
S3 CLHNServiceForPowerDVD12;CLHNServiceForPowerDVD12; C:\Program Files\CyberLink\PowerDVD12\Kernel\DMP\CLHNServer\CLHNServiceForPowerDVD12.exe [2012-01-12 87336]
S3 CyberLink PowerDVD 12 Media Server Monitor Service;CyberLink PowerDVD 12 Media Server Monitor Service; C:\Program Files\CyberLink\PowerDVD12\Kernel\DMS\CLMSMonitorServicePDVD12.exe [2012-01-12 75048]
S3 CyberLink PowerDVD 12 Media Server Service;CyberLink PowerDVD 12 Media Server Service; C:\Program Files\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe [2012-01-12 296232]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2012-07-14 136176]
S3 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2012-08-15 194032]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 NAUpdate;Nero Update; C:\Program Files\Nero\Update\NASvc.exe [2011-03-29 598312]
S3 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2012-05-15 1262400]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 Steam Client Service;Steam Client Service; C:\Program Files\Common Files\Steam\SteamService.exe [2012-07-05 529232]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2012-06-22 1343400]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]

-----------------EOF-----------------

Re: Havěť nebo hardware?

Napsal: 29 srp 2012 18:21
od Rudy
Stáhněte OTM: http://oldtimer.geekstogo.com/OTM.exe a uložte na plochu. Spusťte a do levého okna zkopírujte:
:files
C:\Program Files\YTD Toolbar
C:\Program Files\iWin Games\iWinGamesHookIE.dll
C:\Program Files\Google\Google Toolbar
C:\Program Files\Common Files\Spigot
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3411530430-4203148721-2646380515-1001Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3411530430-4203148721-2646380515-1001UA.job

:reg
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8CA5ED52-F3FB-4414-A105-2E3491156990}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F3FEE66E-E034-436a-86E4-9690573BEE8A}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SearchSettings"=-

:commands
[Purity]
[Emptytemp]
[Emptyflash]
a klikněte na >MoveIt!<. Před skenem vypněte antivir a po něm restartujte PC. Dejte log RSIT.

Re: Havěť nebo hardware?

Napsal: 29 srp 2012 18:54
od davidrohusch
AVG hlasil irus i po vypnuti :/ ale nevadi otm je uspesny ted jdu na rsit
Edit: netusil jsem ze mi to odstreli procesy takze jsem prisel o neuloznou praci

Re: Havěť nebo hardware?

Napsal: 29 srp 2012 18:56
od davidrohusch
Logfile of random's system information tool 1.09 (written by random/random)
Run by Jan at 2012-08-29 19:55:31
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 11 GB (15%) free of 76 GB
Total RAM: 3070 MB (62% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 19:55:48, on 29.8.2012
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16446)
Boot mode: Normal

Running processes:
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe
C:\Windows\PixArt\Pac7302\Monitor.exe
C:\Program Files\AVG\AVG2012\avgtray.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Users\Jan\AppData\Local\Google\Update\GoogleUpdate.exe
C:\Program Files\D-Link AirPlus\AirPlus.exe
C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
C:\Program Files\Internet Explorer\IELowutil.exe
C:\Users\Jan\Desktop\Opera\opera.exe
C:\Users\Jan\Desktop\Opera\pluginwrapper\opera_plugin_wrapper.exe
C:\Users\Jan\Desktop\RSIT.exe
C:\Program Files\trend micro\Jan.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - {F3FEE66E-E034-436a-86E4-9690573BEE8A} - (no file)
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: AVG Do Not Track - {31332EEF-CB9F-458F-AFEB-D30E9A66B6BA} - C:\Program Files\AVG\AVG2012\avgdtiex.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\ssv.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\jp2ssv.dll
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [LogMeIn Hamachi Ui] "C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
O4 - HKLM\..\Run: [PAC7302_Monitor] C:\Windows\PixArt\PAC7302\Monitor.exe
O4 - HKLM\..\Run: [AVG_TRAY] "C:\Program Files\AVG\AVG2012\avgtray.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [AdobeAAMUpdater-1.0] "C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [Google Update] "C:\Users\Jan\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [ISUSPM Startup] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Global Startup: D-Link AirPlus.lnk = ?
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: AVG Do Not Track - {68BCFFE1-A2DA-4B40-9068-87ECBFC19D16} - C:\Program Files\AVG\AVG2012\avgdtiex.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O16 - DPF: {E6F480FC-BD44-4CBA-B74A-89AF7842937D} (SysInfo Class) - http://content.systemrequirementslab.co ... .5.1.0.cab
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG2012\avgpp.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: Adobe Active File Monitor V10 (AdobeActiveFileMonitor10.0) - Adobe Systems Incorporated - H:\Program Files\Adobe\Elements 10 Organizer\PhotoshopElementsFileAgent.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Application Updater - Spigot, Inc. - C:\Program Files\Application Updater\ApplicationUpdater.exe
O23 - Service: AVGIDSAgent - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG2012\avgidsagent.exe
O23 - Service: AVG WatchDog (avgwd) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG2012\avgwdsvc.exe
O23 - Service: CLHNServiceForPowerDVD12 - CyberLink Corp. - C:\Program Files\CyberLink\PowerDVD12\Kernel\DMP\CLHNServer\CLHNServiceForPowerDVD12.exe
O23 - Service: CyberLink PowerDVD 12 Media Server Monitor Service - CyberLink - C:\Program Files\CyberLink\PowerDVD12\Kernel\DMS\CLMSMonitorServicePDVD12.exe
O23 - Service: CyberLink PowerDVD 12 Media Server Service - CyberLink - C:\Program Files\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - C:\Program Files\LogMeIn Hamachi\hamachi-2.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iWinTrusted - iWin Inc. - C:\Program Files\iWin Games\iWinTrusted.exe
O23 - Service: Nero Update (NAUpdate) - Nero AG - C:\Program Files\Nero\Update\NASvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: PnkBstrB - Unknown owner - C:\Windows\system32\PnkBstrB.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe

--
End of file - 9236 bytes

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2011-06-06 63912]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31332EEF-CB9F-458F-AFEB-D30E9A66B6BA}]
AVG Do Not Track - C:\Program Files\AVG\AVG2012\avgdtiex.dll [2012-06-13 937592]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\ssv.dll [2012-05-04 453504]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-28 441216]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\jp2ssv.dll [2012-05-04 157576]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2009-09-23 141848]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2009-09-23 173592]
"Persistence"=C:\Windows\system32\igfxpers.exe [2009-09-23 150552]
"GrooveMonitor"=C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-01-03 843712]
"LogMeIn Hamachi Ui"=C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe [2012-06-27 1996200]
"PAC7302_Monitor"=C:\Windows\PixArt\PAC7302\Monitor.exe [2006-11-03 319488]
""= []
"AVG_TRAY"=C:\Program Files\AVG\AVG2012\avgtray.exe [2012-04-05 2587008]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2012-01-17 252296]
"AdobeAAMUpdater-1.0"=C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2011-06-16 499608]
"ISUSScheduler"=C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe [2004-06-16 81920]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Skype"=C:\Program Files\Skype\Phone\Skype.exe [2012-07-13 17418928]
"Google Update"=C:\Users\Jan\AppData\Local\Google\Update\GoogleUpdate.exe [2012-07-13 116648]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\DTLite.exe [2012-04-11 3672384]
"ISUSPM Startup"=C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe [2004-06-16 221184]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EA Core]
C:\Program Files\Electronic Arts\EADM\Core.exe -silent []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PowerDVD12Agent]
C:\Program Files\CyberLink\PowerDVD12\PowerDVD12Agent.exe [2012-01-12 371256]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PowerDVD12DMREngine]
C:\Program Files\CyberLink\PowerDVD12\Kernel\DMR\PowerDVD12DMREngine.exe [2012-01-02 501544]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files\Common Files\Java\Java Update\jusched.exe [2012-01-17 252296]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Jan^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^GameRanger.lnk]
C:\Users\Jan\AppData\Roaming\GAMERA~1\GAMERA~2\GAMERA~1.EXE [2012-08-10 1421024]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
D-Link AirPlus.lnk - C:\Program Files\D-Link AirPlus\AirPlus.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2009-09-23 218112]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Hamachi2Svc]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"msacm.l3codecp"=l3codecp.acm
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"vidc.VP60"=C:\Windows\system32\vp6vfw.dll
"vidc.VP61"=C:\Windows\system32\vp6vfw.dll
"VIDC.FPS1"=frapsvid.dll
"wave5"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer5"=wdmaud.drv
"aux1"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave6"=wdmaud.drv
"midi6"=wdmaud.drv
"mixer6"=wdmaud.drv
"wave7"=wdmaud.drv
"midi7"=wdmaud.drv
"mixer7"=wdmaud.drv
"wave8"=wdmaud.drv
"midi8"=wdmaud.drv
"mixer8"=wdmaud.drv
"wave9"=wdmaud.drv
"midi9"=wdmaud.drv
"mixer9"=wdmaud.drv
"VIDC.FFDS"=ff_vfw.dll
"msacm.l3codec"=l3codecp.acm

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2012-08-29 19:50:30 ----D---- C:\_OTM
2012-08-29 17:40:21 ----D---- C:\Program Files\trend micro
2012-08-29 17:40:02 ----D---- C:\rsit
2012-08-28 19:05:39 ----D---- C:\Program Files\Cheat Engine 6.2
2012-08-28 17:53:44 ----D---- C:\Bin
2012-08-24 18:27:45 ----D---- C:\Program Files\Common Files\GraphBoard 2.50
2012-08-24 18:27:42 ----D---- C:\Program Files\LANGMaster ŠKOLA hrou
2012-08-24 18:27:16 ----A---- C:\Windows\system32\LMRTREND.dll
2012-08-24 18:27:16 ----A---- C:\Windows\system32\LMRT.dll
2012-08-24 18:27:15 ----A---- C:\Windows\system32\dxtmsft3.dll
2012-08-24 18:27:13 ----A---- C:\Windows\system32\unam4ie.exe
2012-08-24 18:27:13 ----A---- C:\Windows\system32\strmdll.dll
2012-08-24 18:27:10 ----A---- C:\Windows\system32\vidx16.dll
2012-08-24 18:27:10 ----A---- C:\Windows\system32\qcut.dll
2012-08-24 18:27:10 ----A---- C:\Windows\system32\danim.dll
2012-08-24 18:27:09 ----A---- C:\Windows\system32\w95inf32.dll
2012-08-24 18:27:09 ----A---- C:\Windows\system32\w95inf16.dll
2012-08-23 15:15:48 ----D---- C:\Program Files\Neposeda
2012-08-23 15:12:04 ----D---- C:\Users\Jan\AppData\Roaming\Meridian93
2012-08-23 15:11:57 ----D---- C:\Program Files\Kouzelná farma
2012-08-23 15:11:34 ----D---- C:\Program Files\Kouzelné dárky
2012-08-23 14:48:43 ----D---- C:\Users\Jan\AppData\Roaming\BeachPartyCraze
2012-08-23 14:48:13 ----D---- C:\Program Files\Bláznivé prázdniny na pláži
2012-08-23 14:36:40 ----D---- C:\Program Files\Zvířecí salón krásy
2012-08-22 17:19:27 ----D---- C:\Program Files\Řečtí hrdinové
2012-08-22 16:39:20 ----D---- C:\Users\Jan\AppData\Roaming\BlamGames
2012-08-22 15:41:37 ----D---- C:\Users\Jan\AppData\Roaming\Špidla Data Processing, s.r.o
2012-08-22 15:41:37 ----D---- C:\ProgramData\Špidla Data Processing, s.r.o
2012-08-22 15:41:10 ----D---- C:\Program Files\Auta snu
2012-08-21 19:29:57 ----D---- C:\ProgramData\InstallShield
2012-08-21 19:28:26 ----D---- C:\Program Files\THQ
2012-08-21 13:26:03 ----D---- C:\Users\Jan\AppData\Roaming\aliasworlds
2012-08-21 13:26:03 ----D---- C:\ProgramData\aliasworlds
2012-08-21 13:17:25 ----D---- C:\Games
2012-08-19 18:21:11 ----D---- C:\Program Files\Paint.NET
2012-08-19 18:13:45 ----D---- C:\ProgramData\regid.1986-12.com.adobe
2012-08-19 18:12:00 ----D---- C:\Program Files\Common Files\Adobe AIR
2012-08-19 18:05:32 ----D---- C:\Program Files\Common Files\PX Storage Engine
2012-08-17 17:27:56 ----D---- C:\Users\Jan\AppData\Roaming\.techniclauncher
2012-08-16 20:15:43 ----D---- C:\Users\Jan\AppData\Roaming\DarksporeData
2012-08-14 15:50:55 ----D---- C:\Users\Jan\AppData\Roaming\iWin
2012-08-14 15:28:49 ----D---- C:\Program Files\iWin.com
2012-08-14 15:27:15 ----D---- C:\ProgramData\iWin Games
2012-08-14 15:27:04 ----D---- C:\Program Files\iWin Games
2012-08-13 22:59:08 ----D---- C:\Program Files\The Learning Company
2012-08-13 19:52:20 ----D---- C:\Program Files\Common Files\SWF Studio
2012-08-13 19:52:12 ----D---- C:\Program Files\Hero Fighter
2012-08-13 16:06:33 ----D---- C:\Program Files\Microsoft XNA
2012-08-13 15:57:23 ----D---- C:\Users\Jan\AppData\Roaming\Notepad++
2012-08-13 15:57:23 ----D---- C:\Program Files\Notepad++
2012-08-12 23:11:09 ----D---- C:\Windows\Sun
2012-08-12 12:24:47 ----D---- C:\Program Files\LittleFighter2
2012-08-11 07:57:43 ----D---- C:\Program Files\WME DevKit
2012-08-10 18:31:00 ----D---- C:\Program Files\Rovio
2012-08-10 18:26:25 ----D---- C:\Users\Jan\AppData\Roaming\Rovio
2012-08-09 22:02:43 ----A---- C:\Windows\system32\ff_vfw.dll
2012-08-09 22:02:42 ----D---- C:\Program Files\ffdshow
2012-08-09 22:02:41 ----D---- C:\ProgramData\IObit
2012-08-09 22:02:41 ----D---- C:\Program Files\IObit
2012-08-09 15:12:13 ----D---- C:\Users\Jan\AppData\Roaming\Screaming Bee
2012-08-09 15:11:44 ----D---- C:\Program Files\Screaming Bee
2012-08-09 15:01:40 ----D---- C:\Program Files\GIMP 2
2012-08-09 14:57:28 ----D---- C:\Program Files\AV Vcs 4.0
2012-08-08 20:04:59 ----A---- C:\Windows\system32\drivers\dtsoftbus01.sys
2012-08-08 20:04:52 ----D---- C:\Program Files\DAEMON Tools Lite
2012-08-08 10:26:03 ----D---- C:\ProgramData\NVIDIA
2012-08-08 10:25:53 ----A---- C:\Windows\system32\nvvsvc.exe
2012-08-08 10:25:53 ----A---- C:\Windows\system32\nvsvc.dll
2012-08-08 10:25:53 ----A---- C:\Windows\system32\nvshext.dll
2012-08-08 10:25:53 ----A---- C:\Windows\system32\nvmctray.dll
2012-08-08 10:25:53 ----A---- C:\Windows\system32\nvcpl.dll
2012-08-08 10:25:31 ----A---- C:\Windows\system32\OpenCL.dll
2012-08-08 10:25:23 ----D---- C:\ProgramData\NVIDIA Corporation
2012-08-08 10:24:25 ----A---- C:\Windows\system32\nvhdap32.dll
2012-08-08 10:24:24 ----A---- C:\Windows\system32\nvwgf2um.dll
2012-08-08 10:24:24 ----A---- C:\Windows\system32\nvoglv32.dll
2012-08-08 10:24:24 ----A---- C:\Windows\system32\nvhdagenco3220103.dll
2012-08-08 10:24:24 ----A---- C:\Windows\system32\nvgenco32.dll
2012-08-08 10:24:24 ----A---- C:\Windows\system32\nvdispco32.dll
2012-08-08 10:24:24 ----A---- C:\Windows\system32\nvd3dum.dll
2012-08-08 10:24:24 ----A---- C:\Windows\system32\nvcuvid.dll
2012-08-08 10:24:24 ----A---- C:\Windows\system32\nvcuvenc.dll
2012-08-08 10:24:24 ----A---- C:\Windows\system32\nvcuda.dll
2012-08-08 10:24:24 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2012-08-08 10:24:24 ----A---- C:\Windows\system32\drivers\nvhda32v.sys
2012-08-08 10:24:23 ----A---- C:\Windows\system32\nvcompiler.dll
2012-08-08 10:24:23 ----A---- C:\Windows\system32\nvapi.dll
2012-08-08 10:16:43 ----D---- C:\Program Files\Common Files\Java
2012-08-08 10:16:33 ----A---- C:\Windows\system32\javaws.exe
2012-08-08 10:16:25 ----A---- C:\Windows\system32\javaw.exe
2012-08-08 10:16:24 ----A---- C:\Windows\system32\java.exe
2012-08-07 18:28:33 ----A---- C:\Windows\system32\XAudio2_7.dll
2012-08-07 18:28:33 ----A---- C:\Windows\system32\XAPOFX1_5.dll
2012-08-07 18:28:33 ----A---- C:\Windows\system32\xactengine3_7.dll
2012-08-07 18:28:30 ----A---- C:\Windows\system32\XAudio2_6.dll
2012-08-07 18:28:30 ----A---- C:\Windows\system32\XAPOFX1_4.dll
2012-08-07 18:28:27 ----A---- C:\Windows\system32\xactengine3_6.dll
2012-08-07 18:28:27 ----A---- C:\Windows\system32\X3DAudio1_7.dll
2012-08-07 18:27:55 ----D---- C:\Windows\system32\directx
2012-08-05 19:01:52 ----D---- C:\Users\Jan\AppData\Roaming\AVG
2012-08-05 18:17:58 ----D---- C:\Users\Jan\AppData\Roaming\AVG2012
2012-08-05 18:11:36 ----HD---- C:\$AVG
2012-08-05 18:11:35 ----D---- C:\Windows\system32\drivers\AVG
2012-08-05 18:11:35 ----D---- C:\ProgramData\AVG2012
2012-08-05 18:11:06 ----D---- C:\Program Files\AVG
2012-08-05 18:09:38 ----HD---- C:\ProgramData\Common Files
2012-08-05 18:09:38 ----D---- C:\ProgramData\MFAData
2012-08-05 17:45:56 ----D---- C:\Program Files\Application Updater

======List of files/folders modified in the last 1 month======

2012-08-29 19:55:40 ----D---- C:\Windows\Temp
2012-08-29 19:55:17 ----D---- C:\Users\Jan\AppData\Roaming\Skype
2012-08-29 19:50:34 ----D---- C:\Windows\Tasks
2012-08-29 19:50:34 ----D---- C:\Program Files\Common Files
2012-08-29 19:50:33 ----D---- C:\Program Files\Google
2012-08-29 17:53:11 ----D---- C:\Windows\system32\config
2012-08-29 17:43:19 ----D---- C:\Windows
2012-08-29 17:43:17 ----SD---- C:\ProgramData\Microsoft
2012-08-29 17:43:13 ----SHD---- C:\Windows\Installer
2012-08-29 17:43:02 ----D---- C:\Windows\winsxs
2012-08-29 17:41:33 ----D---- C:\Windows\inf
2012-08-29 17:41:24 ----RSD---- C:\Windows\Fonts
2012-08-29 17:40:21 ----RD---- C:\Program Files
2012-08-29 17:35:42 ----SHD---- C:\System Volume Information
2012-08-29 17:32:35 ----D---- C:\Program Files\Microsoft Games
2012-08-29 16:44:23 ----HD---- C:\Program Files\InstallShield Installation Information
2012-08-28 16:44:27 ----D---- C:\Users\Jan\AppData\Roaming\uTorrent
2012-08-27 12:43:04 ----D---- C:\Windows\system32\NDF
2012-08-27 12:42:17 ----D---- C:\Windows\Prefetch
2012-08-25 15:24:16 ----D---- C:\ProgramData\YTD Video Downloader
2012-08-25 12:43:18 ----D---- C:\Users\Jan\AppData\Roaming\.minecraft
2012-08-24 18:27:29 ----D---- C:\Windows\System32
2012-08-24 18:27:16 ----D---- C:\Program Files\Windows Media Player
2012-08-24 18:27:13 ----D---- C:\Windows\Help
2012-08-23 14:36:59 ----D---- C:\Windows\system32\Tasks
2012-08-22 15:41:37 ----HD---- C:\ProgramData
2012-08-21 19:29:35 ----D---- C:\Windows\Downloaded Program Files
2012-08-21 19:29:34 ----D---- C:\Program Files\Common Files\InstallShield
2012-08-19 18:22:27 ----RSD---- C:\Windows\assembly
2012-08-19 18:13:43 ----D---- C:\Users\Jan\AppData\Roaming\Adobe
2012-08-19 18:12:22 ----D---- C:\Program Files\Common Files\Adobe
2012-08-19 18:12:12 ----D---- C:\ProgramData\Adobe
2012-08-19 18:12:07 ----D---- C:\Program Files\Adobe
2012-08-19 18:06:51 ----D---- C:\Windows\system32\catroot
2012-08-19 18:05:32 ----D---- C:\Windows\system32\drivers
2012-08-18 17:26:06 ----A---- C:\Windows\system32\PerfStringBackup.INI
2012-08-15 22:28:05 ----D---- C:\Users\Jan\AppData\Roaming\CyberLink
2012-08-15 15:28:03 ----A---- C:\Windows\system32\FlashPlayerApp.exe
2012-08-14 15:50:54 ----AD---- C:\ProgramData\Temp
2012-08-13 16:06:33 ----D---- C:\Program Files\Common Files\microsoft shared
2012-08-10 19:05:21 ----D---- C:\Windows\system32\catroot2
2012-08-09 19:13:47 ----D---- C:\Windows\system32\Macromed
2012-08-09 15:11:52 ----D---- C:\Windows\system32\DriverStore
2012-08-08 20:07:25 ----D---- C:\Users\Jan\AppData\Roaming\DAEMON Tools Lite
2012-08-08 10:26:48 ----D---- C:\Program Files\NVIDIA Corporation
2012-08-08 10:26:31 ----RD---- C:\Users
2012-08-06 11:22:27 ----D---- C:\ProgramData\Norton
2012-08-05 18:07:36 ----D---- C:\ProgramData\NortonInstaller

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 AVGIDSHX;AVGIDSHX; C:\Windows\system32\DRIVERS\avgidshx.sys [2012-04-19 24896]
R0 Avgrkx86;AVG Anti-Rootkit Driver; C:\Windows\system32\DRIVERS\avgrkx86.sys [2012-01-31 31952]
R0 NBVol;Nero Backup Volume Filter Driver; C:\Windows\system32\DRIVERS\NBVol.sys [2011-12-01 56496]
R0 NBVolUp;Nero Backup Volume Upper Filter Driver; C:\Windows\system32\DRIVERS\NBVolUp.sys [2011-12-01 12464]
R0 PxHelp20;PxHelp20; C:\Windows\System32\Drivers\PxHelp20.sys [2010-03-19 45648]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R1 Avgldx86;AVG AVI Loader Driver; C:\Windows\system32\DRIVERS\avgldx86.sys [2012-02-22 235216]
R1 Avgmfx86;AVG Mini-Filter Resident Anti-Virus Shield; C:\Windows\system32\DRIVERS\avgmfx86.sys [2011-12-23 41040]
R1 Avgtdix;AVG TDI Driver; C:\Windows\system32\DRIVERS\avgtdix.sys [2012-03-19 301248]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2012-08-08 242240]
R2 {329F96B6-DF1E-4328-BFDA-39EA953C1312};Power Control [2012/06/22 18:27:07]; \??\C:\Program Files\CyberLink\PowerDVD12\Common\NavFilter\000.fcl [2012-01-11 87536]
R2 ntk_PowerDVD12;ntk_PowerDVD12; \??\C:\Program Files\CyberLink\PowerDVD12\Kernel\DMP\CLHNServer\ntk_PowerDVD12.sys [2011-10-27 120432]
R2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
R3 AIRPLUS;D-Link AirPlus Wireless Adapter; C:\Windows\system32\DRIVERS\airplus.sys [2003-06-05 155776]
R3 AVGIDSDriver;AVGIDSDriver; C:\Windows\system32\DRIVERS\avgidsdriverx.sys [2011-12-23 139856]
R3 AVGIDSFilter;AVGIDSFilter; C:\Windows\system32\DRIVERS\avgidsfilterx.sys [2011-12-23 24144]
R3 AVGIDSShim;AVGIDSShim; C:\Windows\system32\DRIVERS\avgidsshimx.sys [2011-12-23 17232]
R3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2012-06-01 375336]
R3 hamachi;Hamachi Network Interface; C:\Windows\system32\DRIVERS\hamachi.sys [2009-03-18 26176]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda32v.sys [2012-04-18 148800]
R3 SCREAMINGBDRIVER;Screaming Bee Audio; C:\Windows\system32\drivers\ScreamingBAudio.sys [2009-12-01 34384]
S3 aic78xx;aic78xx; C:\Windows\system32\drivers\djsvs.sys [2009-07-14 70720]
S3 amdagp;AMD AGP Bus Filter Driver; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd32.sys [2009-09-23 4808192]
S3 PAC7302;Eye 312; C:\Windows\system32\DRIVERS\PAC7302.SYS [2007-06-14 457856]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368]
S3 sisagp;SIS AGP Bus Filter; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2010-11-20 52224]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2010-11-20 27264]
S3 viaagp;VIA AGP Bus Filter; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\drivers\viac7.sys [2009-07-14 52736]
S3 WinRing0_1_2_0;WinRing0_1_2_0; \??\C:\Program Files\IObit\Game Booster 3\Driver\WinRing0.sys [2010-11-01 14416]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeActiveFileMonitor10.0;Adobe Active File Monitor V10; H:\Program Files\Adobe\Elements 10 Organizer\PhotoshopElementsFileAgent.exe [2011-09-01 169624]
R2 Application Updater;Application Updater; C:\Program Files\Application Updater\ApplicationUpdater.exe [2012-07-26 794560]
R2 AVGIDSAgent;AVGIDSAgent; C:\Program Files\AVG\AVG2012\avgidsagent.exe [2012-07-04 5160568]
R2 avgwd;AVG WatchDog; C:\Program Files\AVG\AVG2012\avgwdsvc.exe [2012-02-14 193288]
R2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine; C:\Program Files\LogMeIn Hamachi\hamachi-2.exe [2012-06-27 1385896]
R2 iWinTrusted;iWinTrusted; C:\Program Files\iWin Games\iWinTrusted.exe [2011-04-08 176848]
R2 MDM;Machine Debug Manager; C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe [2006-10-26 335872]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2012-05-15 645440]
R2 PnkBstrA;PnkBstrA; C:\Windows\system32\PnkBstrA.exe [2012-07-05 76888]
R2 PnkBstrB;PnkBstrB; C:\Windows\system32\PnkBstrB.exe [2012-07-05 189248]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2012-05-15 382272]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2011-03-28 1713536]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2012-07-14 136176]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2012-06-07 160944]
S3 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2011-06-06 64952]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-08-15 250056]
S3 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2010-03-18 35160]
S3 CLHNServiceForPowerDVD12;CLHNServiceForPowerDVD12; C:\Program Files\CyberLink\PowerDVD12\Kernel\DMP\CLHNServer\CLHNServiceForPowerDVD12.exe [2012-01-12 87336]
S3 CyberLink PowerDVD 12 Media Server Monitor Service;CyberLink PowerDVD 12 Media Server Monitor Service; C:\Program Files\CyberLink\PowerDVD12\Kernel\DMS\CLMSMonitorServicePDVD12.exe [2012-01-12 75048]
S3 CyberLink PowerDVD 12 Media Server Service;CyberLink PowerDVD 12 Media Server Service; C:\Program Files\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe [2012-01-12 296232]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2012-07-14 136176]
S3 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2012-08-15 194032]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 NAUpdate;Nero Update; C:\Program Files\Nero\Update\NASvc.exe [2011-03-29 598312]
S3 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2012-05-15 1262400]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 Steam Client Service;Steam Client Service; C:\Program Files\Common Files\Steam\SteamService.exe [2012-07-05 529232]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2012-06-22 1343400]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]

-----------------EOF-----------------

Re: Havěť nebo hardware?

Napsal: 29 srp 2012 18:58
od Rudy
Promiňte, ale pracovat na PC a zároveň ho čistit od šmejdů, je značně naivní. Spíš bych staral o zálohu dat pro případ pádu systému. :shock:

Re: Havěť nebo hardware?

Napsal: 29 srp 2012 19:03
od davidrohusch
me je to jedno :D teda jestli se prace pocita rozdelana hra HLEDANI MIN xDD

dobre co dal?

Re: Havěť nebo hardware?

Napsal: 29 srp 2012 19:11
od Rudy
Dvouklikem na soubor C:\Program Files\trend micro\Jan.exespusťte HijackThis. Klikněte na "Do a system scan only" a v otevřeném okně vlevo ve čtevrečcích zaškrtněte:
R3 - URLSearchHook: (no name) - {F3FEE66E-E034-436a-86E4-9690573BEE8A} - (no file)
Klikněte na >FixChecked<. Pak znovu spusťte OTM a klikněte na >CleanUp<. OTM po sobě uklidí. Nakonec restartujte PC.

Re: Havěť nebo hardware?

Napsal: 29 srp 2012 19:13
od davidrohusch
dostal jsem nejakou hijackthis chybu ale uz jdu na otm

Re: Havěť nebo hardware?

Napsal: 29 srp 2012 19:17
od davidrohusch
hotovo co dal?

Re: Havěť nebo hardware?

Napsal: 29 srp 2012 19:27
od Rudy
Nastala nějaká změna?

Re: Havěť nebo hardware?

Napsal: 29 srp 2012 19:31
od davidrohusch
:/ program iwin se pousti docela rychleji :D ale zatim nic :/ uvidime jestli mi pc zase vypadne nebo ne

Re: Havěť nebo hardware?

Napsal: 29 srp 2012 20:05
od Rudy
OK. Případně se ozvěte.