
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
BSOD - ntoskrnl.exe
Moderátor: Moderátoři
Pravidla fóra
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
BSOD - ntoskrnl.exe
Zdravim, pred chvilou mi vybehla prva BSOD na tomto pc, vzorne sa onho staram, previdelna av kontrola, cistenie, defrag a vsetky podobne veci takze ma modra smrt trosku zaskocila, aj ked
pravda ze vybehla pocas trosku narocnejsej hry takze ja by som to tipol na ramku ale ako som pozral predchodzie topici tak razeblade mal bsod taktiez vdaka ntoskrnl.exe
a jemu ste hladali virus takze prikladam minidump a rovno aj RSIT log a poprosil by som o zhodnotenie. Dakujem
RSIT:
Logfile of random's system information tool 1.08 (written by random/random)
Run by Tomáš at 2013-03-18 22:03:51
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 41 GB (50%) free of 81 GB
Total RAM: 3941 MB (50% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22:04:01, on 18. 3. 2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v10.0 (10.00.9200.16521)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\IObit\Advanced SystemCare 6\Monitor.exe
C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
C:\Program Files\Launch Manager\HotkeyApp.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Tomáš.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
O4 - HKLM\..\Run: [Dolby Advanced Audio v2] "C:\Program Files (x86)\Dolby Advanced Audio v2\pcee4.exe" -autostart
O4 - HKLM\..\Run: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
O4 - HKLM\..\Run: [UpdateP2GShortCut] "C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\Lenovo\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\5.0"
O4 - HKLM\..\Run: [UpdatePRCShortCut] "C:\Program Files\Lenovo\OneKey App\OneKey Recovery\MUITransfer\MUIStartMenu.exe" "C:\Program Files\Lenovo\OneKey App\OneKey Recovery" UpdateWithCreateOnce "Software\Lenovo\OneKey App\OneKey Recovery"
O4 - HKLM\..\Run: [{CDF13D74-E6AA-4006-818A-B360D6A3573C}] "C:\Program Files\Launch Manager\HotkeyApp.exe"
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [NBAgent] "D:\Programy\Nero 11 Multilingual\Nero 11\Nero BackItUp\NBAgent.exe" /WinStart
O4 - HKLM\..\Run: [FolderTransfer] D:\Programy\FolderTransfer\FolderTransfer.exe h
O4 - HKCU\..\Run: [Advanced SystemCare 6] "C:\Program Files (x86)\IObit\Advanced SystemCare 6\ASCTray.exe" /AutoStart
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-21-405297088-141919702-2609944810-1000\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-405297088-141919702-2609944810-1000\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-405297088-141919702-2609944810-500\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'Administrator')
O4 - HKUS\S-1-5-21-405297088-141919702-2609944810-500\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'Administrator')
O4 - HKUS\S-1-5-21-405297088-141919702-2609944810-501\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'Guest')
O4 - Startup: ThinkRightNow.lnk = D:\Programy\ThinkRightNow\Think Right Now 1.7\ThinkRightNow.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~3\Office12\EXCEL.EXE/3000
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Odoslať do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&oslať do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: ICQ7M - {781B39EC-2E18-41FC-9B00-B84E4FFCA85F} - D:\Programy\ICQ7M\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7M - {781B39EC-2E18-41FC-9B00-B84E4FFCA85F} - D:\Programy\ICQ7M\ICQ.exe
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~3\Office12\REFIEBAR.DLL
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O20 - AppInit_DLLs: c:\windows\syswow64\nvinit.dll c:\windows\syswow64\guard32.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Advanced SystemCare Service 6 (AdvancedSystemCareService6) - IObit - C:\Program Files (x86)\IObit\Advanced SystemCare 6\ASCService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe
O23 - Service: Capture Device Service - InterVideo Inc. - C:\Program Files (x86)\Common Files\InterVideo\DeviceService\DevSvc.exe
O23 - Service: COMODO Internet Security Helper Service (cmdAgent) - COMODO - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\Windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: COMODO Dragon Update Service (DragonUpdater) - Unknown owner - C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update Service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - D:\Programy\Hamachi\hamachi-2.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) ME Service - Unknown owner - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @C:\Program Files (x86)\Nero\Update\NASvc.exe,-200 (NAUpdate) - Nero AG - C:\Program Files (x86)\Nero\Update\NASvc.exe
O23 - Service: Nalpeiron Licensing Service (nlsX86cc) - Nalpeiron Ltd. - C:\Windows\SysWOW64\NLSSRV32.EXE
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: PnkBstrB - Unknown owner - C:\Windows\system32\PnkBstrB.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - CACE Technologies, Inc. - C:\Program Files (x86)\WinPcap\rpcapd.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: WisLMSvc - Wistron Corp. - C:\Program Files\Launch Manager\WisLMSvc.exe
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 14150 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\nvvsvc.exe
C:\Windows\system32\svchost.exe -k RPCSS
"C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe"
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\Windows\system32\WLANExt.exe 35946832
\??\C:\Windows\system32\conhost.exe "1739962476810860604-2044154466-929008715-1237518160601693845-16623120481116202128
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe"
"C:\Program Files (x86)\Common Files\InterVideo\DeviceService\DevSvc.exe"
"C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe"
D:\Programy\Hamachi\hamachi-2.exe -s
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
C:\Windows\SysWOW64\NLSSRV32.EXE
C:\Windows\SysWOW64\PnkBstrA.exe
C:\Windows\SysWOW64\PnkBstrB.exe
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files\Launch Manager\WisLMSvc.exe"
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"taskhost.exe"
taskeng.exe {D243A12E-F941-4E67-80A6-752109487D77}
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
C:\Windows\System32\rundll32.exe shell32.dll,SHCreateLocalServerRunDll {995C996E-D918-4a8c-A302-45719A6F4EA7} -Embedding
"C:\Program Files (x86)\IObit\Advanced SystemCare 6\Monitor.exe"
"C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe"
"C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe"
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /FORPCEE4
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Program Files\Synaptics\SynTP\SynLenovoGestureMgr.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe"
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
"C:\Program Files (x86)\Lenovo\Energy Management\utility.exe"
"C:\Program Files\COMODO\COMODO Internet Security\cfp.exe" -h
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
"C:\Program Files (x86)\Dolby Advanced Audio v2\pcee4.exe" -autostart
"C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-d5dcc53e-b7b8-4d42-81b0-e52ddd7962ab -SystemEventPortName:HostProcess-b18a46f7-be7a-4d2c-bbbe-2b81d54b3c74 -IoCancelEventPortName:HostProcess-a6584821-b4b3-4245-998a-4e249e4d146b -NonStateChangingEventPortName:HostProcess-29f77b0e-c9f9-46c7-99ff-8dc7375e73a5 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:b069566c-ee11-469f-9b70-bc56589bb67a -DeviceGroupId:WpdFsGroup
"C:\Program Files\Launch Manager\HotkeyApp.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\Nero\Update\NASvc.exe"
C:\Windows\System32\svchost.exe -k secsvcs
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
WLIDSvcM.exe 1180
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="4548.0.1225317259\1016723013" --supports-dual-gpus=false --gpu-vendor-id=0x8086 --gpu-device-id=0x0116 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=9.17.10.2932 --ignored=" --type=renderer " /prefetch:12
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=sk --force-fieldtrials=ForceCompositingMode/thread/InfiniteCache/No/NewTabButton/default/OmniboxHQPReplaceHUPRearrangeNumComponents/Standard/OmniboxSearchSuggestTrialStarted2013Q1/15/OneClickSignIn/Standard/OverlappedReadImpact/OverlappedReadEnabled/Prerender/PrerenderEnabled/PrerenderLocalPredictor/Disabled/SideloadWipeout/Enabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-1-Percent/group_89/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-50-Percent/group_01/ --extension-process --renderer-print-preview --enable-threaded-compositing --channel="4548.3.1837499318\2127275879" /prefetch:3
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=sk --force-fieldtrials=ForceCompositingMode/thread/InfiniteCache/No/NewTabButton/default/OmniboxHQPReplaceHUPRearrangeNumComponents/Standard/OmniboxSearchSuggestTrialStarted2013Q1/15/OneClickSignIn/Standard/OverlappedReadImpact/OverlappedReadEnabled/Prerender/PrerenderEnabled/PrerenderLocalPredictor/Disabled/SideloadWipeout/Enabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-1-Percent/group_89/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-50-Percent/group_01/ --extension-process --renderer-print-preview --enable-threaded-compositing --channel="4548.4.730272824\1324501908" /prefetch:3
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=sk --force-fieldtrials=ForceCompositingMode/thread/InfiniteCache/No/NewTabButton/default/OmniboxHQPReplaceHUPRearrangeNumComponents/Standard/OmniboxSearchSuggestTrialStarted2013Q1/15/OneClickSignIn/Standard/OverlappedReadImpact/OverlappedReadEnabled/Prerender/PrerenderEnabled/PrerenderLocalPredictor/Disabled/SideloadWipeout/Enabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-1-Percent/group_89/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-50-Percent/group_01/ --extension-process --renderer-print-preview --enable-threaded-compositing --channel="4548.5.1060068765\2068773373" /prefetch:3
"C:\Windows\system32\wuauclt.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=sk --force-fieldtrials=ForceCompositingMode/thread/InfiniteCache/No/NewTabButton/default/OmniboxHQPReplaceHUPRearrangeNumComponents/Standard/OmniboxSearchSuggestTrialStarted2013Q1/15/OneClickSignIn/Standard/OverlappedReadImpact/OverlappedReadEnabled/Prerender/PrerenderEnabled/PrerenderLocalPredictor/Disabled/SideloadWipeout/Enabled/SpdyCwnd/cwnd16/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-1-Percent/group_89/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-50-Percent/group_01/ --renderer-print-preview --enable-threaded-compositing --channel="4548.9.829289402\140684652" /prefetch:3
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=ppapi --channel="4548.12.1808388300\2017959759" --lang=sk --ignored=" --type=renderer " /prefetch:13
"C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe" -auto
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=sk --force-fieldtrials=ForceCompositingMode/thread/InfiniteCache/No/NewTabButton/default/OmniboxHQPReplaceHUPRearrangeNumComponents/Standard/OmniboxSearchSuggestTrialStarted2013Q1/15/OneClickSignIn/Standard/OverlappedReadImpact/OverlappedReadEnabled/Prerender/PrerenderEnabled/PrerenderLocalPredictor/Disabled/SideloadWipeout/Enabled/SpdyCwnd/cwnd16/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-1-Percent/group_89/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-50-Percent/group_01/ --renderer-print-preview --enable-threaded-compositing --channel="4548.16.1967679731\1290062469" /prefetch:3
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=sk --force-fieldtrials=ForceCompositingMode/thread/InfiniteCache/No/NewTabButton/default/OmniboxHQPReplaceHUPRearrangeNumComponents/Standard/OmniboxSearchSuggestTrialStarted2013Q1/15/OneClickSignIn/Standard/OverlappedReadImpact/OverlappedReadEnabled/Prerender/PrerenderEnabled/PrerenderLocalPredictor/Disabled/SideloadWipeout/Enabled/SpdyCwnd/cwnd16/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-1-Percent/group_89/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-50-Percent/group_01/ --renderer-print-preview --enable-threaded-compositing --channel="4548.19.1444814676\1000652735" /prefetch:3
C:\Windows\System32\svchost.exe -k swprv
"D:\Download\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\DllHost.exe /Processid:{F9717507-6651-4EDB-BFF7-AE615179BCCF}
======Scheduled tasks folder======
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon.job
C:\Windows\tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{318A227B-5E9F-45bd-8999-7F8F10CA4CF5}]
avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2012-08-21 1501776]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2013-02-25 551840]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 529280]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2013-02-25 209824]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-09-23 60568]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2013-01-12 461216]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2012-08-21 1227224]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 439168]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2013-01-12 170912]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2012-08-21 1501776]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2012-08-21 1227224]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"AmIcoSinglun64"=C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe [2012-04-27 368728]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2012-01-10 12445288]
"RtHDVBg_Dolby"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2011-11-15 1156712]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2012-04-17 2899216]
"SynLenovoGestureMgr"=C:\Program Files\Synaptics\SynTP\SynLenovoGestureMgr.exe [2012-04-17 410896]
"Energy Management"=C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [2012-08-08 8079408]
"EnergyUtility"=C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe [2012-08-08 6202416]
"COMODO Internet Security"=C:\Program Files\COMODO\COMODO Internet Security\cfp.exe [2012-11-08 9577680]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2012-12-14 172144]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2012-12-14 399984]
"Persistence"=C:\Windows\system32\igfxpers.exe [2012-12-14 441968]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Advanced SystemCare 6"=C:\Program Files (x86)\IObit\Advanced SystemCare 6\ASCTray.exe [2012-09-24 490880]
"AdobeBridge"= []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeAAMUpdater-1.0]
C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2012-04-04 446392]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeCS5ServiceManager]
c:\program files (x86)\common files\adobe\cs5servicemanager\cs5servicemanager.exe [2010-02-22 406992]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Advanced SystemCare 5]
D:\Programy\Advanced SystemCare with Antivirus 2013\ASCTray.exe /AutoStart []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CPA]
C:\Program Files\COMODO\COMODO GeekBuddy\VALA.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
D:\Programy\DAEMON Tools Lite\DTLite.exe [2012-04-17 3671872]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GoogleDriveSync]
C:\Program Files (x86)\Google\Drive\googledrivesync.exe [2012-12-17 16328976]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ICQ]
D:\Programy\ICQ7M\ICQ.exe [2012-10-16 127040]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Lenovo EE Boot Optimizer]
C:\Program Files (x86)\Lenovo\Boot Optimizer\PopWnd.exe [2012-08-08 206176]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LogMeIn Hamachi Ui]
D:\Programy\Hamachi\hamachi-2-ui.exe [2012-12-10 2254768]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
C:\Program Files (x86)\QuickTime\qttask.exe -atboottime []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SugarSync]
C:\Program Files (x86)\SugarSync\SugarSyncManager.exe [2012-02-15 9401424]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\UVS11 Preload]
d:\programy\ulead video studio11\uvpl.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\VeriFaceManager]
C:\Program Files (x86)\Lenovo\VeriFace\PManage.exe [2012-08-08 329056]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\YouCam Mirage]
c:\program files (x86)\lenovo\youcam\ycmmirage.exe [2011-01-29 136488]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\YouCam Tray]
C:\Program Files (x86)\Lenovo\YouCam\YouCam.exe [2011-01-29 228448]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Bluetooth.lnk]
C:\PROGRA~1\Lenovo\BLUETO~1\BTTray.exe [2012-03-21 1390368]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"IAStorIcon"=C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [2011-11-30 284440]
"Dolby Advanced Audio v2"=C:\Program Files (x86)\Dolby Advanced Audio v2\pcee4.exe [2011-12-21 507744]
"USB3MON"=C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [2012-01-26 291608]
"UpdateP2GShortCut"=C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe [2010-07-27 222504]
"UpdatePRCShortCut"=C:\Program Files\Lenovo\OneKey App\OneKey Recovery\MUITransfer\MUIStartMenu.exe [2009-05-14 222504]
"{CDF13D74-E6AA-4006-818A-B360D6A3573C}"=C:\Program Files\Launch Manager\HotkeyApp.exe [2012-03-01 415272]
"avast"=C:\Program Files\AVAST Software\Avast\avastUI.exe [2012-08-21 4282728]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-12-03 946352]
"GrooveMonitor"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040]
"SwitchBoard"=C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2012-07-03 252848]
"NBAgent"=D:\Programy\Nero 11 Multilingual\Nero 11\Nero BackItUp\NBAgent.exe [2011-09-20 1493288]
"FolderTransfer"=D:\Programy\FolderTransfer\FolderTransfer.exe h []
C:\Users\Tomáš\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
ThinkRightNow.lnk - D:\Programy\ThinkRightNow\Think Right Now 1.7\ThinkRightNow.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="c:\windows\system32\nvinitx.dll c:\windows\system32\guard64.dll "
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2012-12-14 442880]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"notification packages"=scecli
C:\Program Files\Lenovo\Bluetooth Software\BtwProximityCP.dll
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableLinkedConnections"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
"NoDriveTypeAutoRun"=95
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open -
======List of files/folders created in the last 1 months======
2013-03-18 22:03:51 ----D---- C:\rsit
2013-03-18 22:03:51 ----D---- C:\Program Files\trend micro
2013-03-17 10:10:03 ----A---- C:\Windows\SYSWOW64\wininet.dll
2013-03-17 10:10:03 ----A---- C:\Windows\SYSWOW64\wextract.exe
2013-03-17 10:10:03 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2013-03-17 10:10:03 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2013-03-17 10:10:03 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2013-03-17 10:10:03 ----A---- C:\Windows\SYSWOW64\RegisterIEPKEYs.exe
2013-03-17 10:10:03 ----A---- C:\Windows\SYSWOW64\pngfilt.dll
2013-03-17 10:10:03 ----A---- C:\Windows\SYSWOW64\occache.dll
2013-03-17 10:10:03 ----A---- C:\Windows\SYSWOW64\msrating.dll
2013-03-17 10:10:03 ----A---- C:\Windows\SYSWOW64\msls31.dll
2013-03-17 10:10:03 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2013-03-17 10:10:03 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2013-03-17 10:10:03 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2013-03-17 10:10:03 ----A---- C:\Windows\SYSWOW64\mshta.exe
2013-03-17 10:10:03 ----A---- C:\Windows\SYSWOW64\msfeedssync.exe
2013-03-17 10:10:03 ----A---- C:\Windows\SYSWOW64\msfeedsbs.dll
2013-03-17 10:10:03 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2013-03-17 10:10:03 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2013-03-17 10:10:03 ----A---- C:\Windows\SYSWOW64\jscript.dll
2013-03-17 10:10:03 ----A---- C:\Windows\SYSWOW64\inseng.dll
2013-03-17 10:10:03 ----A---- C:\Windows\SYSWOW64\imgutil.dll
2013-03-17 10:10:03 ----A---- C:\Windows\SYSWOW64\iexpress.exe
2013-03-17 10:10:03 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2013-03-17 10:10:03 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2013-03-17 10:10:03 ----A---- C:\Windows\SYSWOW64\iepeers.dll
2013-03-17 10:10:03 ----A---- C:\Windows\SYSWOW64\IEAdvpack.dll
2013-03-17 10:10:03 ----A---- C:\Windows\SYSWOW64\elshyph.dll
2013-03-17 10:10:03 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2013-03-17 10:10:03 ----A---- C:\Windows\system32\elshyph.dll
2013-03-17 10:10:02 ----A---- C:\Windows\SYSWOW64\url.dll
2013-03-17 10:10:02 ----A---- C:\Windows\SYSWOW64\SetIEInstalledDate.exe
2013-03-17 10:10:02 ----A---- C:\Windows\SYSWOW64\mshtmler.dll
2013-03-17 10:10:02 ----A---- C:\Windows\SYSWOW64\licmgr10.dll
2013-03-17 10:10:02 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2013-03-17 10:10:02 ----A---- C:\Windows\SYSWOW64\ieui.dll
2013-03-17 10:10:02 ----A---- C:\Windows\SYSWOW64\iesysprep.dll
2013-03-17 10:10:02 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2013-03-17 10:10:02 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2013-03-17 10:10:02 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2013-03-17 10:10:02 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2013-03-17 10:10:02 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2013-03-17 10:10:02 ----A---- C:\Windows\SYSWOW64\icardie.dll
2013-03-17 10:10:02 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2013-03-17 10:10:02 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2013-03-17 10:10:02 ----A---- C:\Windows\system32\wininet.dll
2013-03-17 10:10:02 ----A---- C:\Windows\system32\wextract.exe
2013-03-17 10:10:02 ----A---- C:\Windows\system32\webcheck.dll
2013-03-17 10:10:02 ----A---- C:\Windows\system32\vbscript.dll
2013-03-17 10:10:02 ----A---- C:\Windows\system32\urlmon.dll
2013-03-17 10:10:02 ----A---- C:\Windows\system32\url.dll
2013-03-17 10:10:02 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2013-03-17 10:10:02 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2013-03-17 10:10:02 ----A---- C:\Windows\system32\pngfilt.dll
2013-03-17 10:10:02 ----A---- C:\Windows\system32\occache.dll
2013-03-17 10:10:02 ----A---- C:\Windows\system32\msrating.dll
2013-03-17 10:10:02 ----A---- C:\Windows\system32\msls31.dll
2013-03-17 10:10:02 ----A---- C:\Windows\system32\mshtmlmedia.dll
2013-03-17 10:10:02 ----A---- C:\Windows\system32\mshtmler.dll
2013-03-17 10:10:02 ----A---- C:\Windows\system32\mshtmled.dll
2013-03-17 10:10:02 ----A---- C:\Windows\system32\mshtml.dll
2013-03-17 10:10:02 ----A---- C:\Windows\system32\mshta.exe
2013-03-17 10:10:02 ----A---- C:\Windows\system32\msfeedssync.exe
2013-03-17 10:10:02 ----A---- C:\Windows\system32\msfeedsbs.dll
2013-03-17 10:10:02 ----A---- C:\Windows\system32\msfeeds.dll
2013-03-17 10:10:02 ----A---- C:\Windows\system32\licmgr10.dll
2013-03-17 10:10:02 ----A---- C:\Windows\system32\jsproxy.dll
2013-03-17 10:10:02 ----A---- C:\Windows\system32\jscript9.dll
2013-03-17 10:10:02 ----A---- C:\Windows\system32\jscript.dll
2013-03-17 10:10:02 ----A---- C:\Windows\system32\inseng.dll
2013-03-17 10:10:02 ----A---- C:\Windows\system32\imgutil.dll
2013-03-17 10:10:02 ----A---- C:\Windows\system32\iexpress.exe
2013-03-17 10:10:02 ----A---- C:\Windows\system32\ieUnatt.exe
2013-03-17 10:10:02 ----A---- C:\Windows\system32\ieui.dll
2013-03-17 10:10:02 ----A---- C:\Windows\system32\iesysprep.dll
2013-03-17 10:10:02 ----A---- C:\Windows\system32\iesetup.dll
2013-03-17 10:10:02 ----A---- C:\Windows\system32\iertutil.dll
2013-03-17 10:10:02 ----A---- C:\Windows\system32\iernonce.dll
2013-03-17 10:10:02 ----A---- C:\Windows\system32\iepeers.dll
2013-03-17 10:10:02 ----A---- C:\Windows\system32\ieframe.dll
2013-03-17 10:10:02 ----A---- C:\Windows\system32\iedkcs32.dll
2013-03-17 10:10:02 ----A---- C:\Windows\system32\ieapfltr.dll
2013-03-17 10:10:02 ----A---- C:\Windows\system32\IEAdvpack.dll
2013-03-17 10:10:02 ----A---- C:\Windows\system32\ie4uinit.exe
2013-03-17 10:10:02 ----A---- C:\Windows\system32\icardie.dll
2013-03-17 10:10:02 ----A---- C:\Windows\system32\dxtrans.dll
2013-03-17 10:10:02 ----A---- C:\Windows\system32\dxtmsft.dll
2013-03-17 10:05:39 ----A---- C:\Windows\SYSWOW64\msmpeg2vdec.dll
2013-03-17 10:05:38 ----A---- C:\Windows\SYSWOW64\UIAnimation.dll
2013-03-17 10:05:38 ----A---- C:\Windows\system32\UIAnimation.dll
2013-03-17 10:05:38 ----A---- C:\Windows\system32\msmpeg2vdec.dll
2013-03-17 10:05:29 ----A---- C:\Windows\SYSWOW64\WMPhoto.dll
2013-03-17 10:05:28 ----A---- C:\Windows\system32\WMPhoto.dll
2013-03-17 10:05:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2013-03-17 10:05:17 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2013-03-17 10:05:17 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll
2013-03-17 10:05:17 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll
2013-03-17 10:05:17 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2013-03-17 10:05:17 ----AH---- C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2013-03-17 10:05:17 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2013-03-17 10:05:17 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2013-03-17 10:05:17 ----A---- C:\Windows\SYSWOW64\d3d10_1.dll
2013-03-17 10:05:17 ----A---- C:\Windows\system32\d3d10_1.dll
2013-03-17 10:05:16 ----A---- C:\Windows\SYSWOW64\d3d10warp.dll
2013-03-17 10:05:16 ----A---- C:\Windows\system32\d3d10warp.dll
2013-03-17 10:05:15 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-version-l1-1-0.dll
2013-03-17 10:05:15 ----AH---- C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2013-03-17 10:05:15 ----A---- C:\Windows\SYSWOW64\XpsGdiConverter.dll
2013-03-17 10:05:15 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2013-03-17 10:05:14 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-user32-l1-1-0.dll
2013-03-17 10:05:14 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2013-03-17 10:05:14 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
2013-03-17 10:05:14 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll
2013-03-17 10:05:14 ----AH---- C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2013-03-17 10:05:14 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2013-03-17 10:05:14 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2013-03-17 10:05:14 ----AH---- C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2013-03-17 10:05:14 ----A---- C:\Windows\SYSWOW64\dxgi.dll
2013-03-17 10:05:14 ----A---- C:\Windows\system32\dxgi.dll
2013-03-17 10:05:13 ----A---- C:\Windows\SYSWOW64\d3d10level9.dll
2013-03-17 10:05:13 ----A---- C:\Windows\SYSWOW64\d3d10core.dll
2013-03-17 10:05:13 ----A---- C:\Windows\SYSWOW64\d3d10_1core.dll
2013-03-17 10:05:13 ----A---- C:\Windows\system32\d3d10level9.dll
2013-03-17 10:05:13 ----A---- C:\Windows\system32\d3d10core.dll
2013-03-17 10:05:13 ----A---- C:\Windows\system32\d3d10_1core.dll
2013-03-17 10:05:12 ----A---- C:\Windows\SYSWOW64\d3d11.dll
2013-03-17 10:05:12 ----A---- C:\Windows\SYSWOW64\d3d10.dll
2013-03-17 10:05:12 ----A---- C:\Windows\system32\d3d11.dll
2013-03-17 10:05:12 ----A---- C:\Windows\system32\d3d10.dll
2013-03-17 10:05:11 ----A---- C:\Windows\SYSWOW64\XpsPrint.dll
2013-03-17 10:05:11 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2013-03-17 10:05:11 ----A---- C:\Windows\system32\XpsPrint.dll
2013-03-17 10:05:11 ----A---- C:\Windows\system32\FntCache.dll
2013-03-17 10:05:10 ----A---- C:\Windows\SYSWOW64\WindowsCodecsExt.dll
2013-03-17 10:05:10 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
2013-03-17 10:05:10 ----A---- C:\Windows\system32\DWrite.dll
2013-03-17 10:05:09 ----A---- C:\Windows\SYSWOW64\WindowsCodecs.dll
2013-03-17 10:05:09 ----A---- C:\Windows\system32\WindowsCodecs.dll
2013-03-17 10:05:08 ----A---- C:\Windows\system32\d2d1.dll
2013-03-17 10:05:07 ----A---- C:\Windows\SYSWOW64\d2d1.dll
2013-03-15 21:20:52 ----D---- C:\Program Files\Microsoft Silverlight
2013-03-15 21:20:52 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2013-03-15 21:08:25 ----A---- C:\Windows\system32\drivers\usb8023.sys
2013-03-12 17:05:07 ----A---- C:\Windows\SYSWOW64\certsentry.dll
2013-03-12 17:05:06 ----A---- C:\Windows\system32\certsentry.dll
2013-03-12 15:17:54 ----D---- C:\Users\Tomáš\AppData\Roaming\.techniclauncher
2013-03-09 14:06:07 ----D---- C:\Users\Tomáš\AppData\Roaming\Bioshock
2013-03-09 14:06:03 ----RHD---- C:\Users\Tomáš\AppData\Roaming\SecuROM
2013-03-02 13:41:38 ----D---- C:\Program Files (x86)\SystemRequirementsLab
2013-03-01 13:41:24 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2013-03-01 13:41:24 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2013-03-01 13:41:24 ----A---- C:\Windows\system32\ntoskrnl.exe
2013-03-01 13:34:03 ----A---- C:\Windows\system32\drivers\tcpip.sys
2013-03-01 13:34:03 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2013-03-01 13:31:55 ----A---- C:\Windows\system32\win32k.sys
2013-03-01 13:31:30 ----A---- C:\Windows\SYSWOW64\wow32.dll
2013-03-01 13:31:30 ----A---- C:\Windows\SYSWOW64\user.exe
2013-03-01 13:31:30 ----A---- C:\Windows\SYSWOW64\setup16.exe
2013-03-01 13:31:30 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2013-03-01 13:31:30 ----A---- C:\Windows\SYSWOW64\instnm.exe
2013-03-01 13:31:30 ----A---- C:\Windows\system32\winsrv.dll
2013-03-01 13:29:39 ----D---- C:\Program Files (x86)\MSXML 4.0
2013-02-25 15:19:42 ----A---- C:\Windows\system32\npDeployJava1.dll
2013-02-25 15:19:42 ----A---- C:\Windows\system32\javaws.exe
2013-02-25 15:19:42 ----A---- C:\Windows\system32\deployJava1.dll
2013-02-25 15:19:26 ----A---- C:\Windows\system32\WindowsAccessBridge-64.dll
2013-02-25 15:19:26 ----A---- C:\Windows\system32\javaw.exe
2013-02-25 15:19:26 ----A---- C:\Windows\system32\java.exe
2013-02-25 15:19:07 ----D---- C:\Program Files\Java
2013-02-22 11:51:06 ----A---- C:\Windows\SYSWOW64\msxml4r.dll
2013-02-19 19:35:56 ----D---- C:\ProgramData\FolderTransfer
======List of files/folders modified in the last 1 months======
2013-03-18 22:03:55 ----D---- C:\Windows\Temp
2013-03-18 22:03:51 ----RD---- C:\Program Files
2013-03-18 21:56:55 ----D---- C:\Windows\system32\config
2013-03-18 21:50:27 ----D---- C:\Windows\inf
2013-03-18 21:50:27 ----AD---- C:\Windows\System32
2013-03-18 21:50:27 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-03-18 21:49:06 ----A---- C:\IFRToolLog.txt
2013-03-18 21:49:02 ----A---- C:\Windows\SYSWOW64\log.txt
2013-03-18 21:46:11 ----D---- C:\Windows\Minidump
2013-03-18 21:45:51 ----AD---- C:\Windows
2013-03-18 19:36:02 ----D---- C:\Windows\Panther
2013-03-18 19:36:01 ----D---- C:\Windows\Logs
2013-03-18 19:18:44 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2013-03-18 19:18:15 ----SHD---- C:\System Volume Information
2013-03-18 19:17:47 ----SHD---- C:\Windows\Installer
2013-03-18 14:55:12 ----D---- C:\Users\Tomáš\AppData\Roaming\Skype
2013-03-17 20:27:58 ----D---- C:\Windows\winsxs
2013-03-17 10:18:37 ----D---- C:\Windows\SYSWOW64\sk-SK
2013-03-17 10:18:37 ----D---- C:\Windows\system32\sk-SK
2013-03-17 10:18:37 ----D---- C:\Program Files\Internet Explorer
2013-03-17 10:18:37 ----D---- C:\Program Files (x86)\Internet Explorer
2013-03-17 10:18:36 ----D---- C:\Windows\SYSWOW64\wbem
2013-03-17 10:18:36 ----D---- C:\Windows\SYSWOW64\migration
2013-03-17 10:18:32 ----D---- C:\Windows\SYSWOW64\en-US
2013-03-17 10:18:32 ----D---- C:\Windows\SYSWOW64\cs-CZ
2013-03-17 10:18:32 ----D---- C:\Windows\SysWOW64
2013-03-17 10:18:31 ----D---- C:\Windows\system32\wbem
2013-03-17 10:18:31 ----D---- C:\Windows\system32\migration
2013-03-17 10:18:31 ----D---- C:\Windows\system32\en-US
2013-03-17 10:18:31 ----D---- C:\Windows\system32\cs-CZ
2013-03-17 10:18:31 ----D---- C:\Windows\PolicyDefinitions
2013-03-17 10:18:30 ----RSD---- C:\Windows\Fonts
2013-03-17 10:18:29 ----D---- C:\Windows\SYSWOW64\zh-HK
2013-03-17 10:18:29 ----D---- C:\Windows\SYSWOW64\tr-TR
2013-03-17 10:18:29 ----D---- C:\Windows\SYSWOW64\sv-SE
2013-03-17 10:18:29 ----D---- C:\Windows\SYSWOW64\pt-PT
2013-03-17 10:18:29 ----D---- C:\Windows\SYSWOW64\pt-BR
2013-03-17 10:18:29 ----D---- C:\Windows\SYSWOW64\pl-PL
2013-03-17 10:18:29 ----D---- C:\Windows\SYSWOW64\nl-NL
2013-03-17 10:18:29 ----D---- C:\Windows\SYSWOW64\ko-KR
2013-03-17 10:18:29 ----D---- C:\Windows\SYSWOW64\it-IT
2013-03-17 10:18:29 ----D---- C:\Windows\SYSWOW64\hu-HU
2013-03-17 10:18:29 ----D---- C:\Windows\SYSWOW64\fr-FR
2013-03-17 10:18:29 ----D---- C:\Windows\SYSWOW64\fi-FI
2013-03-17 10:18:29 ----D---- C:\Windows\SYSWOW64\es-ES
2013-03-17 10:18:29 ----D---- C:\Windows\SYSWOW64\el-GR
2013-03-17 10:18:29 ----D---- C:\Windows\system32\drivers\en-US
2013-03-17 10:18:29 ----D---- C:\Windows\system32\drivers
2013-03-17 10:18:28 ----D---- C:\Windows\SYSWOW64\zh-TW
2013-03-17 10:18:28 ----D---- C:\Windows\SYSWOW64\zh-CN
2013-03-17 10:18:28 ----D---- C:\Windows\SYSWOW64\ru-RU
2013-03-17 10:18:28 ----D---- C:\Windows\SYSWOW64\nb-NO
2013-03-17 10:18:28 ----D---- C:\Windows\SYSWOW64\ja-JP
2013-03-17 10:18:28 ----D---- C:\Windows\SYSWOW64\de-DE
2013-03-17 10:18:28 ----D---- C:\Windows\SYSWOW64\da-DK
2013-03-17 10:18:28 ----D---- C:\Windows\system32\zh-TW
2013-03-17 10:18:28 ----D---- C:\Windows\system32\zh-HK
2013-03-17 10:18:28 ----D---- C:\Windows\system32\zh-CN
2013-03-17 10:18:28 ----D---- C:\Windows\system32\tr-TR
2013-03-17 10:18:28 ----D---- C:\Windows\system32\sv-SE
2013-03-17 10:18:28 ----D---- C:\Windows\system32\ru-RU
2013-03-17 10:18:28 ----D---- C:\Windows\system32\pt-PT
2013-03-17 10:18:28 ----D---- C:\Windows\system32\pt-BR
2013-03-17 10:18:28 ----D---- C:\Windows\system32\pl-PL
2013-03-17 10:18:28 ----D---- C:\Windows\system32\nl-NL
2013-03-17 10:18:28 ----D---- C:\Windows\system32\nb-NO
2013-03-17 10:18:28 ----D---- C:\Windows\system32\ko-KR
2013-03-17 10:18:28 ----D---- C:\Windows\system32\ja-JP
2013-03-17 10:18:28 ----D---- C:\Windows\system32\it-IT
2013-03-17 10:18:28 ----D---- C:\Windows\system32\hu-HU
2013-03-17 10:18:28 ----D---- C:\Windows\system32\fr-FR
2013-03-17 10:18:28 ----D---- C:\Windows\system32\fi-FI
2013-03-17 10:18:28 ----D---- C:\Windows\system32\es-ES
2013-03-17 10:18:28 ----D---- C:\Windows\system32\el-GR
2013-03-17 10:18:28 ----D---- C:\Windows\system32\de-DE
2013-03-17 10:18:28 ----D---- C:\Windows\system32\da-DK
2013-03-17 10:18:26 ----D---- C:\Windows\system32\DriverStore
2013-03-16 09:00:19 ----SHD---- C:\Boot
2013-03-16 08:55:09 ----D---- C:\Users\Tomáš\AppData\Roaming\uTorrent
2013-03-16 08:54:51 ----D---- C:\Windows\debug
2013-03-16 08:25:16 ----D---- C:\Windows\SYSWOW64\NV
2013-03-16 08:25:14 ----D---- C:\Windows\system32\NV
2013-03-15 23:47:35 ----D---- C:\Users\Tomáš\AppData\Roaming\vlc
2013-03-15 21:40:11 ----D---- C:\Windows\system32\catroot2
2013-03-15 21:40:11 ----D---- C:\Windows\system32\catroot
2013-03-15 21:20:52 ----RD---- C:\Program Files (x86)
2013-03-15 21:19:48 ----D---- C:\Program Files\Common Files
2013-03-15 21:19:45 ----D---- C:\Program Files (x86)\Common Files
2013-03-12 20:56:24 ----D---- C:\Users\Tomáš\AppData\Roaming\logs
2013-03-12 17:04:52 ----D---- C:\Program Files (x86)\Comodo
2013-03-11 21:46:16 ----D---- C:\Users\Tomáš\AppData\Roaming\DAEMON Tools Lite
2013-03-10 21:23:58 ----RSD---- C:\Windows\assembly
2013-03-09 23:07:29 ----D---- C:\Windows\rescache
2013-03-04 20:16:40 ----D---- C:\Windows\ModemLogs
2013-03-04 14:53:46 ----A---- C:\Windows\system32\MRT.exe
2013-03-03 17:59:08 ----D---- C:\Windows\Microsoft.NET
2013-03-02 15:47:58 ----D---- C:\Windows\system32\Tasks
2013-03-01 22:26:11 ----D---- C:\Windows\AppPatch
2013-03-01 20:36:30 ----HD---- C:\ProgramData
2013-03-01 20:36:30 ----D---- C:\Program Files (x86)\QuickTime
2013-03-01 20:30:30 ----D---- C:\Users\Tomáš\AppData\Roaming\GullySoft
2013-03-01 20:27:48 ----D---- C:\Program Files (x86)\Adobe
2013-03-01 13:34:04 ----D---- C:\Program Files (x86)\Lenovo Registration
2013-02-28 22:02:11 ----D---- C:\Users\Tomáš\AppData\Roaming\codeblocks
2013-02-25 14:50:10 ----D---- C:\Windows\SoftwareDistribution
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 fbfmon;fbfmon; C:\Windows\system32\drivers\fbfmon.sys [2012-08-08 57952]
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2011-11-30 568600]
R0 iusb3hcs;Intel(R) USB 3.0 Host Controller Switch Driver; C:\Windows\system32\DRIVERS\iusb3hcs.sys [2012-01-26 16152]
R0 LHDmgr;LHDmgr; C:\Windows\System32\DRIVERS\LhdX64.sys [2012-08-08 39008]
R0 NBVol;Nero Backup Volume Filter Driver; C:\Windows\system32\DRIVERS\NBVol.sys [2011-07-13 72240]
R0 NBVolUp;Nero Backup Volume Upper Filter Driver; C:\Windows\system32\DRIVERS\NBVolUp.sys [2011-07-13 15920]
R0 nvpciflt;nvpciflt; C:\Windows\system32\DRIVERS\nvpciflt.sys [2012-10-08 30056]
R0 PxHlpa64;PxHlpa64; C:\Windows\System32\Drivers\PxHlpa64.sys [2011-11-03 56208]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R1 aswRdr;aswRdr; C:\Windows\System32\Drivers\aswrdr2.sys [2012-08-21 54072]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2012-08-21 969200]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2012-08-21 359464]
R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2012-08-21 59728]
R1 BPntDrv;BPntDrv; C:\Windows\system32\drivers\BPntDrv.sys [2012-08-08 13408]
R1 cmdGuard;COMODO Internet Security Sandbox Driver; C:\Windows\System32\DRIVERS\cmdguard.sys [2012-11-08 584056]
R1 cmdHlp;COMODO Internet Security Helper Driver; C:\Windows\System32\DRIVERS\cmdhlp.sys [2012-11-08 38144]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2012-10-16 283200]
R1 inspect;COMODO Internet Security Firewall Driver; C:\Windows\system32\DRIVERS\inspect.sys [2012-11-08 94288]
R1 TsLwWfF;WiFi Capture Driver; C:\Windows\system32\DRIVERS\TsLwWfF.sys [2012-06-09 26768]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 aswFsBlk;aswFsBlk; C:\Windows\system32\drivers\aswFsBlk.sys [2012-08-21 25232]
R2 aswMonFlt;aswMonFlt; \??\C:\Windows\system32\drivers\aswMonFlt.sys [2012-08-21 71600]
R2 NPF;NetGroup Packet Filter Driver; C:\Windows\system32\drivers\npf.sys [2010-06-25 35344]
R3 ACPIVPC;Lenovo Virtual Power Controller Driver; C:\Windows\system32\DRIVERS\AcpiVpc.sys [2012-08-08 30816]
R3 AmUStor;AM USB Stroage Driver; C:\Windows\system32\drivers\AmUStor.SYS [2012-04-20 97880]
R3 BCM43XX;Broadcom 802.11 Network Adapter Driver; C:\Windows\system32\DRIVERS\bcmwl664.sys [2011-07-02 4745280]
R3 clwvd;CyberLink WebCam Virtual Driver; C:\Windows\system32\DRIVERS\clwvd.sys [2011-01-29 31088]
R3 hamachi;Hamachi Network Interface; C:\Windows\system32\DRIVERS\hamachi.sys [2009-03-18 33856]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2012-12-14 5353888]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2012-01-10 4731112]
R3 IntcDAud;Intel(R) Display Audio; C:\Windows\system32\DRIVERS\IntcDAud.sys [2011-12-05 331264]
R3 iusb3hub;Intel(R) USB 3.0 Hub Driver; C:\Windows\system32\DRIVERS\iusb3hub.sys [2012-01-26 356120]
R3 iusb3xhc;Intel(R) USB 3.0 eXtensible Host Controller Driver; C:\Windows\system32\DRIVERS\iusb3xhc.sys [2012-01-26 787736]
R3 L1C;NDIS Miniport Driver for Atheros AR81xx PCI-E Ethernet Controller; C:\Windows\system32\DRIVERS\L1C62x64.sys [2011-11-15 111216]
R3 MEIx64;Intel(R) Management Engine Interface ; C:\Windows\system32\DRIVERS\HECIx64.sys [2012-08-06 62784]
R3 SmbDrvIntel;SmbDrvIntel; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [2012-04-17 27408]
R3 SNP2UVC;USB2.0 PC Camera (SNP2UVC); C:\Windows\system32\DRIVERS\snp2uvc.sys [2011-10-11 3532160]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2012-04-17 428304]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S3 bcbtums;Bluetooth RAM Firmware Download USB Filter; C:\Windows\system32\drivers\bcbtums.sys [2012-03-20 163368]
S3 BthEnum;Bluetooth Request Block Driver; C:\Windows\system32\DRIVERS\BthEnum.sys [2009-07-14 41984]
S3 BthPan;Bluetooth Device (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
S3 BTHPORT;Bluetooth Port Driver; C:\Windows\System32\Drivers\BTHport.sys [2011-10-10 552960]
S3 BTHUSB;Bluetooth Radio USB Driver; C:\Windows\System32\Drivers\BTHUSB.sys [2011-10-10 80384]
S3 btwampfl;btwampfl Bluetooth filter driver; \??\C:\Windows\system32\drivers\btwampfl.sys [2012-03-21 594472]
S3 btwaudio;Bluetooth Audio Device Service; C:\Windows\system32\drivers\btwaudio.sys [2012-03-05 184872]
S3 btwavdt;Bluetooth AVDT Service; C:\Windows\system32\DRIVERS\btwavdt.sys [2012-03-05 210984]
S3 btwl2cap;Bluetooth L2CAP Service; C:\Windows\system32\DRIVERS\btwl2cap.sys [2011-09-17 39976]
S3 btwrchid;btwrchid; C:\Windows\system32\DRIVERS\btwrchid.sys [2012-03-05 21544]
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2010-09-23 48488]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 pwdrvio;pwdrvio; \??\C:\Windows\syswow64\pwdrvio.sys []
S3 pwdspio;pwdspio; \??\C:\Windows\syswow64\pwdspio.sys []
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-11-23 19456]
S3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
S3 TPM;TPM; C:\Windows\system32\drivers\tpm.sys [2009-07-14 38400]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2012-11-23 57856]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2012-11-23 30208]
S3 VMnetAdapter;VMware Virtual Ethernet Adapter Driver; C:\Windows\system32\DRIVERS\vmnetadapter.sys []
S4 DamageGuard;DamageGuard; C:\Windows\system32\DRIVERS\DamageGuardX64.sys [2012-02-11 217392]
S4 dgFltr;dgFltr; C:\Windows\system32\drivers\dgFltrX64.sys [2011-12-13 23648]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-12-18 65192]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2012-08-21 44808]
R2 btwdins;Bluetooth Service; C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe [2012-03-21 957216]
R2 Capture Device Service;Capture Device Service; C:\Program Files (x86)\Common Files\InterVideo\DeviceService\DevSvc.exe [2007-03-06 198168]
R2 cmdAgent;COMODO Internet Security Helper Service; C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe [2012-11-08 2828408]
R2 DragonUpdater;COMODO Dragon Update Service; C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe [2013-03-12 2074768]
R2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine; D:\Programy\Hamachi\hamachi-2.exe [2012-12-10 2465712]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2011-11-30 13592]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2011-12-09 607456]
R2 Intel(R) ME Service;Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [2011-12-16 128280]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2011-12-16 161560]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2011-12-16 277784]
R2 NAUpdate;@C:\Program Files (x86)\Nero\Update\NASvc.exe,-200; C:\Program Files (x86)\Nero\Update\NASvc.exe [2011-09-23 641832]
R2 nlsX86cc;Nalpeiron Licensing Service; C:\Windows\SysWOW64\NLSSRV32.EXE [2012-06-21 69640]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2012-10-02 891240]
R2 PnkBstrA;PnkBstrA; C:\Windows\syswow64\PnkBstrA.exe [2013-01-16 66872]
R2 PnkBstrB;PnkBstrB; C:\Windows\syswow64\PnkBstrB.exe [2013-01-16 107832]
R2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2011-12-16 363800]
S2 AdvancedSystemCareService6;Advanced SystemCare Service 6; C:\Program Files (x86)\IObit\Advanced SystemCare 6\ASCService.exe [2012-10-31 464256]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 gupdate;Google Update Service (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-08-08 136176]
S2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2012-10-08 1258856]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-01-08 161536]
S3 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2010-03-19 44376]
S3 cphs;Intel(R) Content Protection HECI Service; C:\Windows\SysWow64\IntelCpHeciSvc.exe [2012-12-14 277616]
S3 fsssvc;Windows Live Family Safety Service; C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2010-09-23 1493352]
S3 gupdatem;Google Update Service (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-08-08 136176]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 rpcapd;Remote Packet Capture Protocol v.0 (experimental); C:\Program Files (x86)\WinPcap\rpcapd.exe [2010-06-25 117264]
S3 SwitchBoard;SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2012-11-23 1255736]
S4 DamageGuardSvc;Lenovo Instant Reset Service; C:\Program Files\Lenovo\Instant Reset\DamageGuardSvc.exe [2012-03-26 572976]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
-----------------EOF-----------------
pravda ze vybehla pocas trosku narocnejsej hry takze ja by som to tipol na ramku ale ako som pozral predchodzie topici tak razeblade mal bsod taktiez vdaka ntoskrnl.exe
a jemu ste hladali virus takze prikladam minidump a rovno aj RSIT log a poprosil by som o zhodnotenie. Dakujem
RSIT:
Logfile of random's system information tool 1.08 (written by random/random)
Run by Tomáš at 2013-03-18 22:03:51
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 41 GB (50%) free of 81 GB
Total RAM: 3941 MB (50% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22:04:01, on 18. 3. 2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v10.0 (10.00.9200.16521)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\IObit\Advanced SystemCare 6\Monitor.exe
C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
C:\Program Files\Launch Manager\HotkeyApp.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Tomáš.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
O4 - HKLM\..\Run: [Dolby Advanced Audio v2] "C:\Program Files (x86)\Dolby Advanced Audio v2\pcee4.exe" -autostart
O4 - HKLM\..\Run: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
O4 - HKLM\..\Run: [UpdateP2GShortCut] "C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\Lenovo\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\5.0"
O4 - HKLM\..\Run: [UpdatePRCShortCut] "C:\Program Files\Lenovo\OneKey App\OneKey Recovery\MUITransfer\MUIStartMenu.exe" "C:\Program Files\Lenovo\OneKey App\OneKey Recovery" UpdateWithCreateOnce "Software\Lenovo\OneKey App\OneKey Recovery"
O4 - HKLM\..\Run: [{CDF13D74-E6AA-4006-818A-B360D6A3573C}] "C:\Program Files\Launch Manager\HotkeyApp.exe"
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [NBAgent] "D:\Programy\Nero 11 Multilingual\Nero 11\Nero BackItUp\NBAgent.exe" /WinStart
O4 - HKLM\..\Run: [FolderTransfer] D:\Programy\FolderTransfer\FolderTransfer.exe h
O4 - HKCU\..\Run: [Advanced SystemCare 6] "C:\Program Files (x86)\IObit\Advanced SystemCare 6\ASCTray.exe" /AutoStart
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-21-405297088-141919702-2609944810-1000\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-405297088-141919702-2609944810-1000\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-405297088-141919702-2609944810-500\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'Administrator')
O4 - HKUS\S-1-5-21-405297088-141919702-2609944810-500\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'Administrator')
O4 - HKUS\S-1-5-21-405297088-141919702-2609944810-501\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'Guest')
O4 - Startup: ThinkRightNow.lnk = D:\Programy\ThinkRightNow\Think Right Now 1.7\ThinkRightNow.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~3\Office12\EXCEL.EXE/3000
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Odoslať do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&oslať do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: ICQ7M - {781B39EC-2E18-41FC-9B00-B84E4FFCA85F} - D:\Programy\ICQ7M\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7M - {781B39EC-2E18-41FC-9B00-B84E4FFCA85F} - D:\Programy\ICQ7M\ICQ.exe
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~3\Office12\REFIEBAR.DLL
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O20 - AppInit_DLLs: c:\windows\syswow64\nvinit.dll c:\windows\syswow64\guard32.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Advanced SystemCare Service 6 (AdvancedSystemCareService6) - IObit - C:\Program Files (x86)\IObit\Advanced SystemCare 6\ASCService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe
O23 - Service: Capture Device Service - InterVideo Inc. - C:\Program Files (x86)\Common Files\InterVideo\DeviceService\DevSvc.exe
O23 - Service: COMODO Internet Security Helper Service (cmdAgent) - COMODO - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\Windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: COMODO Dragon Update Service (DragonUpdater) - Unknown owner - C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update Service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - D:\Programy\Hamachi\hamachi-2.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) ME Service - Unknown owner - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @C:\Program Files (x86)\Nero\Update\NASvc.exe,-200 (NAUpdate) - Nero AG - C:\Program Files (x86)\Nero\Update\NASvc.exe
O23 - Service: Nalpeiron Licensing Service (nlsX86cc) - Nalpeiron Ltd. - C:\Windows\SysWOW64\NLSSRV32.EXE
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: PnkBstrB - Unknown owner - C:\Windows\system32\PnkBstrB.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - CACE Technologies, Inc. - C:\Program Files (x86)\WinPcap\rpcapd.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: WisLMSvc - Wistron Corp. - C:\Program Files\Launch Manager\WisLMSvc.exe
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 14150 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\nvvsvc.exe
C:\Windows\system32\svchost.exe -k RPCSS
"C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe"
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\Windows\system32\WLANExt.exe 35946832
\??\C:\Windows\system32\conhost.exe "1739962476810860604-2044154466-929008715-1237518160601693845-16623120481116202128
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe"
"C:\Program Files (x86)\Common Files\InterVideo\DeviceService\DevSvc.exe"
"C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe"
D:\Programy\Hamachi\hamachi-2.exe -s
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
C:\Windows\SysWOW64\NLSSRV32.EXE
C:\Windows\SysWOW64\PnkBstrA.exe
C:\Windows\SysWOW64\PnkBstrB.exe
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files\Launch Manager\WisLMSvc.exe"
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"taskhost.exe"
taskeng.exe {D243A12E-F941-4E67-80A6-752109487D77}
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
C:\Windows\System32\rundll32.exe shell32.dll,SHCreateLocalServerRunDll {995C996E-D918-4a8c-A302-45719A6F4EA7} -Embedding
"C:\Program Files (x86)\IObit\Advanced SystemCare 6\Monitor.exe"
"C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe"
"C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe"
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /FORPCEE4
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Program Files\Synaptics\SynTP\SynLenovoGestureMgr.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe"
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
"C:\Program Files (x86)\Lenovo\Energy Management\utility.exe"
"C:\Program Files\COMODO\COMODO Internet Security\cfp.exe" -h
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
"C:\Program Files (x86)\Dolby Advanced Audio v2\pcee4.exe" -autostart
"C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-d5dcc53e-b7b8-4d42-81b0-e52ddd7962ab -SystemEventPortName:HostProcess-b18a46f7-be7a-4d2c-bbbe-2b81d54b3c74 -IoCancelEventPortName:HostProcess-a6584821-b4b3-4245-998a-4e249e4d146b -NonStateChangingEventPortName:HostProcess-29f77b0e-c9f9-46c7-99ff-8dc7375e73a5 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:b069566c-ee11-469f-9b70-bc56589bb67a -DeviceGroupId:WpdFsGroup
"C:\Program Files\Launch Manager\HotkeyApp.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\Nero\Update\NASvc.exe"
C:\Windows\System32\svchost.exe -k secsvcs
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
WLIDSvcM.exe 1180
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="4548.0.1225317259\1016723013" --supports-dual-gpus=false --gpu-vendor-id=0x8086 --gpu-device-id=0x0116 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=9.17.10.2932 --ignored=" --type=renderer " /prefetch:12
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=sk --force-fieldtrials=ForceCompositingMode/thread/InfiniteCache/No/NewTabButton/default/OmniboxHQPReplaceHUPRearrangeNumComponents/Standard/OmniboxSearchSuggestTrialStarted2013Q1/15/OneClickSignIn/Standard/OverlappedReadImpact/OverlappedReadEnabled/Prerender/PrerenderEnabled/PrerenderLocalPredictor/Disabled/SideloadWipeout/Enabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-1-Percent/group_89/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-50-Percent/group_01/ --extension-process --renderer-print-preview --enable-threaded-compositing --channel="4548.3.1837499318\2127275879" /prefetch:3
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=sk --force-fieldtrials=ForceCompositingMode/thread/InfiniteCache/No/NewTabButton/default/OmniboxHQPReplaceHUPRearrangeNumComponents/Standard/OmniboxSearchSuggestTrialStarted2013Q1/15/OneClickSignIn/Standard/OverlappedReadImpact/OverlappedReadEnabled/Prerender/PrerenderEnabled/PrerenderLocalPredictor/Disabled/SideloadWipeout/Enabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-1-Percent/group_89/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-50-Percent/group_01/ --extension-process --renderer-print-preview --enable-threaded-compositing --channel="4548.4.730272824\1324501908" /prefetch:3
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=sk --force-fieldtrials=ForceCompositingMode/thread/InfiniteCache/No/NewTabButton/default/OmniboxHQPReplaceHUPRearrangeNumComponents/Standard/OmniboxSearchSuggestTrialStarted2013Q1/15/OneClickSignIn/Standard/OverlappedReadImpact/OverlappedReadEnabled/Prerender/PrerenderEnabled/PrerenderLocalPredictor/Disabled/SideloadWipeout/Enabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-1-Percent/group_89/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-50-Percent/group_01/ --extension-process --renderer-print-preview --enable-threaded-compositing --channel="4548.5.1060068765\2068773373" /prefetch:3
"C:\Windows\system32\wuauclt.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=sk --force-fieldtrials=ForceCompositingMode/thread/InfiniteCache/No/NewTabButton/default/OmniboxHQPReplaceHUPRearrangeNumComponents/Standard/OmniboxSearchSuggestTrialStarted2013Q1/15/OneClickSignIn/Standard/OverlappedReadImpact/OverlappedReadEnabled/Prerender/PrerenderEnabled/PrerenderLocalPredictor/Disabled/SideloadWipeout/Enabled/SpdyCwnd/cwnd16/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-1-Percent/group_89/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-50-Percent/group_01/ --renderer-print-preview --enable-threaded-compositing --channel="4548.9.829289402\140684652" /prefetch:3
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=ppapi --channel="4548.12.1808388300\2017959759" --lang=sk --ignored=" --type=renderer " /prefetch:13
"C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe" -auto
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=sk --force-fieldtrials=ForceCompositingMode/thread/InfiniteCache/No/NewTabButton/default/OmniboxHQPReplaceHUPRearrangeNumComponents/Standard/OmniboxSearchSuggestTrialStarted2013Q1/15/OneClickSignIn/Standard/OverlappedReadImpact/OverlappedReadEnabled/Prerender/PrerenderEnabled/PrerenderLocalPredictor/Disabled/SideloadWipeout/Enabled/SpdyCwnd/cwnd16/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-1-Percent/group_89/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-50-Percent/group_01/ --renderer-print-preview --enable-threaded-compositing --channel="4548.16.1967679731\1290062469" /prefetch:3
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=sk --force-fieldtrials=ForceCompositingMode/thread/InfiniteCache/No/NewTabButton/default/OmniboxHQPReplaceHUPRearrangeNumComponents/Standard/OmniboxSearchSuggestTrialStarted2013Q1/15/OneClickSignIn/Standard/OverlappedReadImpact/OverlappedReadEnabled/Prerender/PrerenderEnabled/PrerenderLocalPredictor/Disabled/SideloadWipeout/Enabled/SpdyCwnd/cwnd16/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-1-Percent/group_89/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-50-Percent/group_01/ --renderer-print-preview --enable-threaded-compositing --channel="4548.19.1444814676\1000652735" /prefetch:3
C:\Windows\System32\svchost.exe -k swprv
"D:\Download\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\DllHost.exe /Processid:{F9717507-6651-4EDB-BFF7-AE615179BCCF}
======Scheduled tasks folder======
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon.job
C:\Windows\tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{318A227B-5E9F-45bd-8999-7F8F10CA4CF5}]
avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2012-08-21 1501776]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2013-02-25 551840]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 529280]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2013-02-25 209824]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-09-23 60568]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2013-01-12 461216]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2012-08-21 1227224]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 439168]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2013-01-12 170912]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2012-08-21 1501776]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2012-08-21 1227224]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"AmIcoSinglun64"=C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe [2012-04-27 368728]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2012-01-10 12445288]
"RtHDVBg_Dolby"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2011-11-15 1156712]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2012-04-17 2899216]
"SynLenovoGestureMgr"=C:\Program Files\Synaptics\SynTP\SynLenovoGestureMgr.exe [2012-04-17 410896]
"Energy Management"=C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [2012-08-08 8079408]
"EnergyUtility"=C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe [2012-08-08 6202416]
"COMODO Internet Security"=C:\Program Files\COMODO\COMODO Internet Security\cfp.exe [2012-11-08 9577680]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2012-12-14 172144]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2012-12-14 399984]
"Persistence"=C:\Windows\system32\igfxpers.exe [2012-12-14 441968]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Advanced SystemCare 6"=C:\Program Files (x86)\IObit\Advanced SystemCare 6\ASCTray.exe [2012-09-24 490880]
"AdobeBridge"= []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeAAMUpdater-1.0]
C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2012-04-04 446392]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeCS5ServiceManager]
c:\program files (x86)\common files\adobe\cs5servicemanager\cs5servicemanager.exe [2010-02-22 406992]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Advanced SystemCare 5]
D:\Programy\Advanced SystemCare with Antivirus 2013\ASCTray.exe /AutoStart []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CPA]
C:\Program Files\COMODO\COMODO GeekBuddy\VALA.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
D:\Programy\DAEMON Tools Lite\DTLite.exe [2012-04-17 3671872]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GoogleDriveSync]
C:\Program Files (x86)\Google\Drive\googledrivesync.exe [2012-12-17 16328976]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ICQ]
D:\Programy\ICQ7M\ICQ.exe [2012-10-16 127040]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Lenovo EE Boot Optimizer]
C:\Program Files (x86)\Lenovo\Boot Optimizer\PopWnd.exe [2012-08-08 206176]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LogMeIn Hamachi Ui]
D:\Programy\Hamachi\hamachi-2-ui.exe [2012-12-10 2254768]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
C:\Program Files (x86)\QuickTime\qttask.exe -atboottime []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SugarSync]
C:\Program Files (x86)\SugarSync\SugarSyncManager.exe [2012-02-15 9401424]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\UVS11 Preload]
d:\programy\ulead video studio11\uvpl.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\VeriFaceManager]
C:\Program Files (x86)\Lenovo\VeriFace\PManage.exe [2012-08-08 329056]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\YouCam Mirage]
c:\program files (x86)\lenovo\youcam\ycmmirage.exe [2011-01-29 136488]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\YouCam Tray]
C:\Program Files (x86)\Lenovo\YouCam\YouCam.exe [2011-01-29 228448]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Bluetooth.lnk]
C:\PROGRA~1\Lenovo\BLUETO~1\BTTray.exe [2012-03-21 1390368]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"IAStorIcon"=C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [2011-11-30 284440]
"Dolby Advanced Audio v2"=C:\Program Files (x86)\Dolby Advanced Audio v2\pcee4.exe [2011-12-21 507744]
"USB3MON"=C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [2012-01-26 291608]
"UpdateP2GShortCut"=C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe [2010-07-27 222504]
"UpdatePRCShortCut"=C:\Program Files\Lenovo\OneKey App\OneKey Recovery\MUITransfer\MUIStartMenu.exe [2009-05-14 222504]
"{CDF13D74-E6AA-4006-818A-B360D6A3573C}"=C:\Program Files\Launch Manager\HotkeyApp.exe [2012-03-01 415272]
"avast"=C:\Program Files\AVAST Software\Avast\avastUI.exe [2012-08-21 4282728]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-12-03 946352]
"GrooveMonitor"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040]
"SwitchBoard"=C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2012-07-03 252848]
"NBAgent"=D:\Programy\Nero 11 Multilingual\Nero 11\Nero BackItUp\NBAgent.exe [2011-09-20 1493288]
"FolderTransfer"=D:\Programy\FolderTransfer\FolderTransfer.exe h []
C:\Users\Tomáš\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
ThinkRightNow.lnk - D:\Programy\ThinkRightNow\Think Right Now 1.7\ThinkRightNow.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="c:\windows\system32\nvinitx.dll c:\windows\system32\guard64.dll "
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2012-12-14 442880]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"notification packages"=scecli
C:\Program Files\Lenovo\Bluetooth Software\BtwProximityCP.dll
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableLinkedConnections"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
"NoDriveTypeAutoRun"=95
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open -
======List of files/folders created in the last 1 months======
2013-03-18 22:03:51 ----D---- C:\rsit
2013-03-18 22:03:51 ----D---- C:\Program Files\trend micro
2013-03-17 10:10:03 ----A---- C:\Windows\SYSWOW64\wininet.dll
2013-03-17 10:10:03 ----A---- C:\Windows\SYSWOW64\wextract.exe
2013-03-17 10:10:03 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2013-03-17 10:10:03 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2013-03-17 10:10:03 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2013-03-17 10:10:03 ----A---- C:\Windows\SYSWOW64\RegisterIEPKEYs.exe
2013-03-17 10:10:03 ----A---- C:\Windows\SYSWOW64\pngfilt.dll
2013-03-17 10:10:03 ----A---- C:\Windows\SYSWOW64\occache.dll
2013-03-17 10:10:03 ----A---- C:\Windows\SYSWOW64\msrating.dll
2013-03-17 10:10:03 ----A---- C:\Windows\SYSWOW64\msls31.dll
2013-03-17 10:10:03 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2013-03-17 10:10:03 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2013-03-17 10:10:03 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2013-03-17 10:10:03 ----A---- C:\Windows\SYSWOW64\mshta.exe
2013-03-17 10:10:03 ----A---- C:\Windows\SYSWOW64\msfeedssync.exe
2013-03-17 10:10:03 ----A---- C:\Windows\SYSWOW64\msfeedsbs.dll
2013-03-17 10:10:03 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2013-03-17 10:10:03 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2013-03-17 10:10:03 ----A---- C:\Windows\SYSWOW64\jscript.dll
2013-03-17 10:10:03 ----A---- C:\Windows\SYSWOW64\inseng.dll
2013-03-17 10:10:03 ----A---- C:\Windows\SYSWOW64\imgutil.dll
2013-03-17 10:10:03 ----A---- C:\Windows\SYSWOW64\iexpress.exe
2013-03-17 10:10:03 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2013-03-17 10:10:03 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2013-03-17 10:10:03 ----A---- C:\Windows\SYSWOW64\iepeers.dll
2013-03-17 10:10:03 ----A---- C:\Windows\SYSWOW64\IEAdvpack.dll
2013-03-17 10:10:03 ----A---- C:\Windows\SYSWOW64\elshyph.dll
2013-03-17 10:10:03 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2013-03-17 10:10:03 ----A---- C:\Windows\system32\elshyph.dll
2013-03-17 10:10:02 ----A---- C:\Windows\SYSWOW64\url.dll
2013-03-17 10:10:02 ----A---- C:\Windows\SYSWOW64\SetIEInstalledDate.exe
2013-03-17 10:10:02 ----A---- C:\Windows\SYSWOW64\mshtmler.dll
2013-03-17 10:10:02 ----A---- C:\Windows\SYSWOW64\licmgr10.dll
2013-03-17 10:10:02 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2013-03-17 10:10:02 ----A---- C:\Windows\SYSWOW64\ieui.dll
2013-03-17 10:10:02 ----A---- C:\Windows\SYSWOW64\iesysprep.dll
2013-03-17 10:10:02 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2013-03-17 10:10:02 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2013-03-17 10:10:02 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2013-03-17 10:10:02 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2013-03-17 10:10:02 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2013-03-17 10:10:02 ----A---- C:\Windows\SYSWOW64\icardie.dll
2013-03-17 10:10:02 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2013-03-17 10:10:02 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2013-03-17 10:10:02 ----A---- C:\Windows\system32\wininet.dll
2013-03-17 10:10:02 ----A---- C:\Windows\system32\wextract.exe
2013-03-17 10:10:02 ----A---- C:\Windows\system32\webcheck.dll
2013-03-17 10:10:02 ----A---- C:\Windows\system32\vbscript.dll
2013-03-17 10:10:02 ----A---- C:\Windows\system32\urlmon.dll
2013-03-17 10:10:02 ----A---- C:\Windows\system32\url.dll
2013-03-17 10:10:02 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2013-03-17 10:10:02 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2013-03-17 10:10:02 ----A---- C:\Windows\system32\pngfilt.dll
2013-03-17 10:10:02 ----A---- C:\Windows\system32\occache.dll
2013-03-17 10:10:02 ----A---- C:\Windows\system32\msrating.dll
2013-03-17 10:10:02 ----A---- C:\Windows\system32\msls31.dll
2013-03-17 10:10:02 ----A---- C:\Windows\system32\mshtmlmedia.dll
2013-03-17 10:10:02 ----A---- C:\Windows\system32\mshtmler.dll
2013-03-17 10:10:02 ----A---- C:\Windows\system32\mshtmled.dll
2013-03-17 10:10:02 ----A---- C:\Windows\system32\mshtml.dll
2013-03-17 10:10:02 ----A---- C:\Windows\system32\mshta.exe
2013-03-17 10:10:02 ----A---- C:\Windows\system32\msfeedssync.exe
2013-03-17 10:10:02 ----A---- C:\Windows\system32\msfeedsbs.dll
2013-03-17 10:10:02 ----A---- C:\Windows\system32\msfeeds.dll
2013-03-17 10:10:02 ----A---- C:\Windows\system32\licmgr10.dll
2013-03-17 10:10:02 ----A---- C:\Windows\system32\jsproxy.dll
2013-03-17 10:10:02 ----A---- C:\Windows\system32\jscript9.dll
2013-03-17 10:10:02 ----A---- C:\Windows\system32\jscript.dll
2013-03-17 10:10:02 ----A---- C:\Windows\system32\inseng.dll
2013-03-17 10:10:02 ----A---- C:\Windows\system32\imgutil.dll
2013-03-17 10:10:02 ----A---- C:\Windows\system32\iexpress.exe
2013-03-17 10:10:02 ----A---- C:\Windows\system32\ieUnatt.exe
2013-03-17 10:10:02 ----A---- C:\Windows\system32\ieui.dll
2013-03-17 10:10:02 ----A---- C:\Windows\system32\iesysprep.dll
2013-03-17 10:10:02 ----A---- C:\Windows\system32\iesetup.dll
2013-03-17 10:10:02 ----A---- C:\Windows\system32\iertutil.dll
2013-03-17 10:10:02 ----A---- C:\Windows\system32\iernonce.dll
2013-03-17 10:10:02 ----A---- C:\Windows\system32\iepeers.dll
2013-03-17 10:10:02 ----A---- C:\Windows\system32\ieframe.dll
2013-03-17 10:10:02 ----A---- C:\Windows\system32\iedkcs32.dll
2013-03-17 10:10:02 ----A---- C:\Windows\system32\ieapfltr.dll
2013-03-17 10:10:02 ----A---- C:\Windows\system32\IEAdvpack.dll
2013-03-17 10:10:02 ----A---- C:\Windows\system32\ie4uinit.exe
2013-03-17 10:10:02 ----A---- C:\Windows\system32\icardie.dll
2013-03-17 10:10:02 ----A---- C:\Windows\system32\dxtrans.dll
2013-03-17 10:10:02 ----A---- C:\Windows\system32\dxtmsft.dll
2013-03-17 10:05:39 ----A---- C:\Windows\SYSWOW64\msmpeg2vdec.dll
2013-03-17 10:05:38 ----A---- C:\Windows\SYSWOW64\UIAnimation.dll
2013-03-17 10:05:38 ----A---- C:\Windows\system32\UIAnimation.dll
2013-03-17 10:05:38 ----A---- C:\Windows\system32\msmpeg2vdec.dll
2013-03-17 10:05:29 ----A---- C:\Windows\SYSWOW64\WMPhoto.dll
2013-03-17 10:05:28 ----A---- C:\Windows\system32\WMPhoto.dll
2013-03-17 10:05:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2013-03-17 10:05:17 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2013-03-17 10:05:17 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll
2013-03-17 10:05:17 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll
2013-03-17 10:05:17 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2013-03-17 10:05:17 ----AH---- C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2013-03-17 10:05:17 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2013-03-17 10:05:17 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2013-03-17 10:05:17 ----A---- C:\Windows\SYSWOW64\d3d10_1.dll
2013-03-17 10:05:17 ----A---- C:\Windows\system32\d3d10_1.dll
2013-03-17 10:05:16 ----A---- C:\Windows\SYSWOW64\d3d10warp.dll
2013-03-17 10:05:16 ----A---- C:\Windows\system32\d3d10warp.dll
2013-03-17 10:05:15 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-version-l1-1-0.dll
2013-03-17 10:05:15 ----AH---- C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2013-03-17 10:05:15 ----A---- C:\Windows\SYSWOW64\XpsGdiConverter.dll
2013-03-17 10:05:15 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2013-03-17 10:05:14 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-user32-l1-1-0.dll
2013-03-17 10:05:14 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2013-03-17 10:05:14 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
2013-03-17 10:05:14 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll
2013-03-17 10:05:14 ----AH---- C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2013-03-17 10:05:14 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2013-03-17 10:05:14 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2013-03-17 10:05:14 ----AH---- C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2013-03-17 10:05:14 ----A---- C:\Windows\SYSWOW64\dxgi.dll
2013-03-17 10:05:14 ----A---- C:\Windows\system32\dxgi.dll
2013-03-17 10:05:13 ----A---- C:\Windows\SYSWOW64\d3d10level9.dll
2013-03-17 10:05:13 ----A---- C:\Windows\SYSWOW64\d3d10core.dll
2013-03-17 10:05:13 ----A---- C:\Windows\SYSWOW64\d3d10_1core.dll
2013-03-17 10:05:13 ----A---- C:\Windows\system32\d3d10level9.dll
2013-03-17 10:05:13 ----A---- C:\Windows\system32\d3d10core.dll
2013-03-17 10:05:13 ----A---- C:\Windows\system32\d3d10_1core.dll
2013-03-17 10:05:12 ----A---- C:\Windows\SYSWOW64\d3d11.dll
2013-03-17 10:05:12 ----A---- C:\Windows\SYSWOW64\d3d10.dll
2013-03-17 10:05:12 ----A---- C:\Windows\system32\d3d11.dll
2013-03-17 10:05:12 ----A---- C:\Windows\system32\d3d10.dll
2013-03-17 10:05:11 ----A---- C:\Windows\SYSWOW64\XpsPrint.dll
2013-03-17 10:05:11 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2013-03-17 10:05:11 ----A---- C:\Windows\system32\XpsPrint.dll
2013-03-17 10:05:11 ----A---- C:\Windows\system32\FntCache.dll
2013-03-17 10:05:10 ----A---- C:\Windows\SYSWOW64\WindowsCodecsExt.dll
2013-03-17 10:05:10 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
2013-03-17 10:05:10 ----A---- C:\Windows\system32\DWrite.dll
2013-03-17 10:05:09 ----A---- C:\Windows\SYSWOW64\WindowsCodecs.dll
2013-03-17 10:05:09 ----A---- C:\Windows\system32\WindowsCodecs.dll
2013-03-17 10:05:08 ----A---- C:\Windows\system32\d2d1.dll
2013-03-17 10:05:07 ----A---- C:\Windows\SYSWOW64\d2d1.dll
2013-03-15 21:20:52 ----D---- C:\Program Files\Microsoft Silverlight
2013-03-15 21:20:52 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2013-03-15 21:08:25 ----A---- C:\Windows\system32\drivers\usb8023.sys
2013-03-12 17:05:07 ----A---- C:\Windows\SYSWOW64\certsentry.dll
2013-03-12 17:05:06 ----A---- C:\Windows\system32\certsentry.dll
2013-03-12 15:17:54 ----D---- C:\Users\Tomáš\AppData\Roaming\.techniclauncher
2013-03-09 14:06:07 ----D---- C:\Users\Tomáš\AppData\Roaming\Bioshock
2013-03-09 14:06:03 ----RHD---- C:\Users\Tomáš\AppData\Roaming\SecuROM
2013-03-02 13:41:38 ----D---- C:\Program Files (x86)\SystemRequirementsLab
2013-03-01 13:41:24 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2013-03-01 13:41:24 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2013-03-01 13:41:24 ----A---- C:\Windows\system32\ntoskrnl.exe
2013-03-01 13:34:03 ----A---- C:\Windows\system32\drivers\tcpip.sys
2013-03-01 13:34:03 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2013-03-01 13:31:55 ----A---- C:\Windows\system32\win32k.sys
2013-03-01 13:31:30 ----A---- C:\Windows\SYSWOW64\wow32.dll
2013-03-01 13:31:30 ----A---- C:\Windows\SYSWOW64\user.exe
2013-03-01 13:31:30 ----A---- C:\Windows\SYSWOW64\setup16.exe
2013-03-01 13:31:30 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2013-03-01 13:31:30 ----A---- C:\Windows\SYSWOW64\instnm.exe
2013-03-01 13:31:30 ----A---- C:\Windows\system32\winsrv.dll
2013-03-01 13:29:39 ----D---- C:\Program Files (x86)\MSXML 4.0
2013-02-25 15:19:42 ----A---- C:\Windows\system32\npDeployJava1.dll
2013-02-25 15:19:42 ----A---- C:\Windows\system32\javaws.exe
2013-02-25 15:19:42 ----A---- C:\Windows\system32\deployJava1.dll
2013-02-25 15:19:26 ----A---- C:\Windows\system32\WindowsAccessBridge-64.dll
2013-02-25 15:19:26 ----A---- C:\Windows\system32\javaw.exe
2013-02-25 15:19:26 ----A---- C:\Windows\system32\java.exe
2013-02-25 15:19:07 ----D---- C:\Program Files\Java
2013-02-22 11:51:06 ----A---- C:\Windows\SYSWOW64\msxml4r.dll
2013-02-19 19:35:56 ----D---- C:\ProgramData\FolderTransfer
======List of files/folders modified in the last 1 months======
2013-03-18 22:03:55 ----D---- C:\Windows\Temp
2013-03-18 22:03:51 ----RD---- C:\Program Files
2013-03-18 21:56:55 ----D---- C:\Windows\system32\config
2013-03-18 21:50:27 ----D---- C:\Windows\inf
2013-03-18 21:50:27 ----AD---- C:\Windows\System32
2013-03-18 21:50:27 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-03-18 21:49:06 ----A---- C:\IFRToolLog.txt
2013-03-18 21:49:02 ----A---- C:\Windows\SYSWOW64\log.txt
2013-03-18 21:46:11 ----D---- C:\Windows\Minidump
2013-03-18 21:45:51 ----AD---- C:\Windows
2013-03-18 19:36:02 ----D---- C:\Windows\Panther
2013-03-18 19:36:01 ----D---- C:\Windows\Logs
2013-03-18 19:18:44 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2013-03-18 19:18:15 ----SHD---- C:\System Volume Information
2013-03-18 19:17:47 ----SHD---- C:\Windows\Installer
2013-03-18 14:55:12 ----D---- C:\Users\Tomáš\AppData\Roaming\Skype
2013-03-17 20:27:58 ----D---- C:\Windows\winsxs
2013-03-17 10:18:37 ----D---- C:\Windows\SYSWOW64\sk-SK
2013-03-17 10:18:37 ----D---- C:\Windows\system32\sk-SK
2013-03-17 10:18:37 ----D---- C:\Program Files\Internet Explorer
2013-03-17 10:18:37 ----D---- C:\Program Files (x86)\Internet Explorer
2013-03-17 10:18:36 ----D---- C:\Windows\SYSWOW64\wbem
2013-03-17 10:18:36 ----D---- C:\Windows\SYSWOW64\migration
2013-03-17 10:18:32 ----D---- C:\Windows\SYSWOW64\en-US
2013-03-17 10:18:32 ----D---- C:\Windows\SYSWOW64\cs-CZ
2013-03-17 10:18:32 ----D---- C:\Windows\SysWOW64
2013-03-17 10:18:31 ----D---- C:\Windows\system32\wbem
2013-03-17 10:18:31 ----D---- C:\Windows\system32\migration
2013-03-17 10:18:31 ----D---- C:\Windows\system32\en-US
2013-03-17 10:18:31 ----D---- C:\Windows\system32\cs-CZ
2013-03-17 10:18:31 ----D---- C:\Windows\PolicyDefinitions
2013-03-17 10:18:30 ----RSD---- C:\Windows\Fonts
2013-03-17 10:18:29 ----D---- C:\Windows\SYSWOW64\zh-HK
2013-03-17 10:18:29 ----D---- C:\Windows\SYSWOW64\tr-TR
2013-03-17 10:18:29 ----D---- C:\Windows\SYSWOW64\sv-SE
2013-03-17 10:18:29 ----D---- C:\Windows\SYSWOW64\pt-PT
2013-03-17 10:18:29 ----D---- C:\Windows\SYSWOW64\pt-BR
2013-03-17 10:18:29 ----D---- C:\Windows\SYSWOW64\pl-PL
2013-03-17 10:18:29 ----D---- C:\Windows\SYSWOW64\nl-NL
2013-03-17 10:18:29 ----D---- C:\Windows\SYSWOW64\ko-KR
2013-03-17 10:18:29 ----D---- C:\Windows\SYSWOW64\it-IT
2013-03-17 10:18:29 ----D---- C:\Windows\SYSWOW64\hu-HU
2013-03-17 10:18:29 ----D---- C:\Windows\SYSWOW64\fr-FR
2013-03-17 10:18:29 ----D---- C:\Windows\SYSWOW64\fi-FI
2013-03-17 10:18:29 ----D---- C:\Windows\SYSWOW64\es-ES
2013-03-17 10:18:29 ----D---- C:\Windows\SYSWOW64\el-GR
2013-03-17 10:18:29 ----D---- C:\Windows\system32\drivers\en-US
2013-03-17 10:18:29 ----D---- C:\Windows\system32\drivers
2013-03-17 10:18:28 ----D---- C:\Windows\SYSWOW64\zh-TW
2013-03-17 10:18:28 ----D---- C:\Windows\SYSWOW64\zh-CN
2013-03-17 10:18:28 ----D---- C:\Windows\SYSWOW64\ru-RU
2013-03-17 10:18:28 ----D---- C:\Windows\SYSWOW64\nb-NO
2013-03-17 10:18:28 ----D---- C:\Windows\SYSWOW64\ja-JP
2013-03-17 10:18:28 ----D---- C:\Windows\SYSWOW64\de-DE
2013-03-17 10:18:28 ----D---- C:\Windows\SYSWOW64\da-DK
2013-03-17 10:18:28 ----D---- C:\Windows\system32\zh-TW
2013-03-17 10:18:28 ----D---- C:\Windows\system32\zh-HK
2013-03-17 10:18:28 ----D---- C:\Windows\system32\zh-CN
2013-03-17 10:18:28 ----D---- C:\Windows\system32\tr-TR
2013-03-17 10:18:28 ----D---- C:\Windows\system32\sv-SE
2013-03-17 10:18:28 ----D---- C:\Windows\system32\ru-RU
2013-03-17 10:18:28 ----D---- C:\Windows\system32\pt-PT
2013-03-17 10:18:28 ----D---- C:\Windows\system32\pt-BR
2013-03-17 10:18:28 ----D---- C:\Windows\system32\pl-PL
2013-03-17 10:18:28 ----D---- C:\Windows\system32\nl-NL
2013-03-17 10:18:28 ----D---- C:\Windows\system32\nb-NO
2013-03-17 10:18:28 ----D---- C:\Windows\system32\ko-KR
2013-03-17 10:18:28 ----D---- C:\Windows\system32\ja-JP
2013-03-17 10:18:28 ----D---- C:\Windows\system32\it-IT
2013-03-17 10:18:28 ----D---- C:\Windows\system32\hu-HU
2013-03-17 10:18:28 ----D---- C:\Windows\system32\fr-FR
2013-03-17 10:18:28 ----D---- C:\Windows\system32\fi-FI
2013-03-17 10:18:28 ----D---- C:\Windows\system32\es-ES
2013-03-17 10:18:28 ----D---- C:\Windows\system32\el-GR
2013-03-17 10:18:28 ----D---- C:\Windows\system32\de-DE
2013-03-17 10:18:28 ----D---- C:\Windows\system32\da-DK
2013-03-17 10:18:26 ----D---- C:\Windows\system32\DriverStore
2013-03-16 09:00:19 ----SHD---- C:\Boot
2013-03-16 08:55:09 ----D---- C:\Users\Tomáš\AppData\Roaming\uTorrent
2013-03-16 08:54:51 ----D---- C:\Windows\debug
2013-03-16 08:25:16 ----D---- C:\Windows\SYSWOW64\NV
2013-03-16 08:25:14 ----D---- C:\Windows\system32\NV
2013-03-15 23:47:35 ----D---- C:\Users\Tomáš\AppData\Roaming\vlc
2013-03-15 21:40:11 ----D---- C:\Windows\system32\catroot2
2013-03-15 21:40:11 ----D---- C:\Windows\system32\catroot
2013-03-15 21:20:52 ----RD---- C:\Program Files (x86)
2013-03-15 21:19:48 ----D---- C:\Program Files\Common Files
2013-03-15 21:19:45 ----D---- C:\Program Files (x86)\Common Files
2013-03-12 20:56:24 ----D---- C:\Users\Tomáš\AppData\Roaming\logs
2013-03-12 17:04:52 ----D---- C:\Program Files (x86)\Comodo
2013-03-11 21:46:16 ----D---- C:\Users\Tomáš\AppData\Roaming\DAEMON Tools Lite
2013-03-10 21:23:58 ----RSD---- C:\Windows\assembly
2013-03-09 23:07:29 ----D---- C:\Windows\rescache
2013-03-04 20:16:40 ----D---- C:\Windows\ModemLogs
2013-03-04 14:53:46 ----A---- C:\Windows\system32\MRT.exe
2013-03-03 17:59:08 ----D---- C:\Windows\Microsoft.NET
2013-03-02 15:47:58 ----D---- C:\Windows\system32\Tasks
2013-03-01 22:26:11 ----D---- C:\Windows\AppPatch
2013-03-01 20:36:30 ----HD---- C:\ProgramData
2013-03-01 20:36:30 ----D---- C:\Program Files (x86)\QuickTime
2013-03-01 20:30:30 ----D---- C:\Users\Tomáš\AppData\Roaming\GullySoft
2013-03-01 20:27:48 ----D---- C:\Program Files (x86)\Adobe
2013-03-01 13:34:04 ----D---- C:\Program Files (x86)\Lenovo Registration
2013-02-28 22:02:11 ----D---- C:\Users\Tomáš\AppData\Roaming\codeblocks
2013-02-25 14:50:10 ----D---- C:\Windows\SoftwareDistribution
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 fbfmon;fbfmon; C:\Windows\system32\drivers\fbfmon.sys [2012-08-08 57952]
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2011-11-30 568600]
R0 iusb3hcs;Intel(R) USB 3.0 Host Controller Switch Driver; C:\Windows\system32\DRIVERS\iusb3hcs.sys [2012-01-26 16152]
R0 LHDmgr;LHDmgr; C:\Windows\System32\DRIVERS\LhdX64.sys [2012-08-08 39008]
R0 NBVol;Nero Backup Volume Filter Driver; C:\Windows\system32\DRIVERS\NBVol.sys [2011-07-13 72240]
R0 NBVolUp;Nero Backup Volume Upper Filter Driver; C:\Windows\system32\DRIVERS\NBVolUp.sys [2011-07-13 15920]
R0 nvpciflt;nvpciflt; C:\Windows\system32\DRIVERS\nvpciflt.sys [2012-10-08 30056]
R0 PxHlpa64;PxHlpa64; C:\Windows\System32\Drivers\PxHlpa64.sys [2011-11-03 56208]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R1 aswRdr;aswRdr; C:\Windows\System32\Drivers\aswrdr2.sys [2012-08-21 54072]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2012-08-21 969200]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2012-08-21 359464]
R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2012-08-21 59728]
R1 BPntDrv;BPntDrv; C:\Windows\system32\drivers\BPntDrv.sys [2012-08-08 13408]
R1 cmdGuard;COMODO Internet Security Sandbox Driver; C:\Windows\System32\DRIVERS\cmdguard.sys [2012-11-08 584056]
R1 cmdHlp;COMODO Internet Security Helper Driver; C:\Windows\System32\DRIVERS\cmdhlp.sys [2012-11-08 38144]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2012-10-16 283200]
R1 inspect;COMODO Internet Security Firewall Driver; C:\Windows\system32\DRIVERS\inspect.sys [2012-11-08 94288]
R1 TsLwWfF;WiFi Capture Driver; C:\Windows\system32\DRIVERS\TsLwWfF.sys [2012-06-09 26768]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 aswFsBlk;aswFsBlk; C:\Windows\system32\drivers\aswFsBlk.sys [2012-08-21 25232]
R2 aswMonFlt;aswMonFlt; \??\C:\Windows\system32\drivers\aswMonFlt.sys [2012-08-21 71600]
R2 NPF;NetGroup Packet Filter Driver; C:\Windows\system32\drivers\npf.sys [2010-06-25 35344]
R3 ACPIVPC;Lenovo Virtual Power Controller Driver; C:\Windows\system32\DRIVERS\AcpiVpc.sys [2012-08-08 30816]
R3 AmUStor;AM USB Stroage Driver; C:\Windows\system32\drivers\AmUStor.SYS [2012-04-20 97880]
R3 BCM43XX;Broadcom 802.11 Network Adapter Driver; C:\Windows\system32\DRIVERS\bcmwl664.sys [2011-07-02 4745280]
R3 clwvd;CyberLink WebCam Virtual Driver; C:\Windows\system32\DRIVERS\clwvd.sys [2011-01-29 31088]
R3 hamachi;Hamachi Network Interface; C:\Windows\system32\DRIVERS\hamachi.sys [2009-03-18 33856]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2012-12-14 5353888]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2012-01-10 4731112]
R3 IntcDAud;Intel(R) Display Audio; C:\Windows\system32\DRIVERS\IntcDAud.sys [2011-12-05 331264]
R3 iusb3hub;Intel(R) USB 3.0 Hub Driver; C:\Windows\system32\DRIVERS\iusb3hub.sys [2012-01-26 356120]
R3 iusb3xhc;Intel(R) USB 3.0 eXtensible Host Controller Driver; C:\Windows\system32\DRIVERS\iusb3xhc.sys [2012-01-26 787736]
R3 L1C;NDIS Miniport Driver for Atheros AR81xx PCI-E Ethernet Controller; C:\Windows\system32\DRIVERS\L1C62x64.sys [2011-11-15 111216]
R3 MEIx64;Intel(R) Management Engine Interface ; C:\Windows\system32\DRIVERS\HECIx64.sys [2012-08-06 62784]
R3 SmbDrvIntel;SmbDrvIntel; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [2012-04-17 27408]
R3 SNP2UVC;USB2.0 PC Camera (SNP2UVC); C:\Windows\system32\DRIVERS\snp2uvc.sys [2011-10-11 3532160]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2012-04-17 428304]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S3 bcbtums;Bluetooth RAM Firmware Download USB Filter; C:\Windows\system32\drivers\bcbtums.sys [2012-03-20 163368]
S3 BthEnum;Bluetooth Request Block Driver; C:\Windows\system32\DRIVERS\BthEnum.sys [2009-07-14 41984]
S3 BthPan;Bluetooth Device (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
S3 BTHPORT;Bluetooth Port Driver; C:\Windows\System32\Drivers\BTHport.sys [2011-10-10 552960]
S3 BTHUSB;Bluetooth Radio USB Driver; C:\Windows\System32\Drivers\BTHUSB.sys [2011-10-10 80384]
S3 btwampfl;btwampfl Bluetooth filter driver; \??\C:\Windows\system32\drivers\btwampfl.sys [2012-03-21 594472]
S3 btwaudio;Bluetooth Audio Device Service; C:\Windows\system32\drivers\btwaudio.sys [2012-03-05 184872]
S3 btwavdt;Bluetooth AVDT Service; C:\Windows\system32\DRIVERS\btwavdt.sys [2012-03-05 210984]
S3 btwl2cap;Bluetooth L2CAP Service; C:\Windows\system32\DRIVERS\btwl2cap.sys [2011-09-17 39976]
S3 btwrchid;btwrchid; C:\Windows\system32\DRIVERS\btwrchid.sys [2012-03-05 21544]
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2010-09-23 48488]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 pwdrvio;pwdrvio; \??\C:\Windows\syswow64\pwdrvio.sys []
S3 pwdspio;pwdspio; \??\C:\Windows\syswow64\pwdspio.sys []
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-11-23 19456]
S3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
S3 TPM;TPM; C:\Windows\system32\drivers\tpm.sys [2009-07-14 38400]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2012-11-23 57856]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2012-11-23 30208]
S3 VMnetAdapter;VMware Virtual Ethernet Adapter Driver; C:\Windows\system32\DRIVERS\vmnetadapter.sys []
S4 DamageGuard;DamageGuard; C:\Windows\system32\DRIVERS\DamageGuardX64.sys [2012-02-11 217392]
S4 dgFltr;dgFltr; C:\Windows\system32\drivers\dgFltrX64.sys [2011-12-13 23648]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-12-18 65192]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2012-08-21 44808]
R2 btwdins;Bluetooth Service; C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe [2012-03-21 957216]
R2 Capture Device Service;Capture Device Service; C:\Program Files (x86)\Common Files\InterVideo\DeviceService\DevSvc.exe [2007-03-06 198168]
R2 cmdAgent;COMODO Internet Security Helper Service; C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe [2012-11-08 2828408]
R2 DragonUpdater;COMODO Dragon Update Service; C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe [2013-03-12 2074768]
R2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine; D:\Programy\Hamachi\hamachi-2.exe [2012-12-10 2465712]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2011-11-30 13592]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2011-12-09 607456]
R2 Intel(R) ME Service;Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [2011-12-16 128280]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2011-12-16 161560]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2011-12-16 277784]
R2 NAUpdate;@C:\Program Files (x86)\Nero\Update\NASvc.exe,-200; C:\Program Files (x86)\Nero\Update\NASvc.exe [2011-09-23 641832]
R2 nlsX86cc;Nalpeiron Licensing Service; C:\Windows\SysWOW64\NLSSRV32.EXE [2012-06-21 69640]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2012-10-02 891240]
R2 PnkBstrA;PnkBstrA; C:\Windows\syswow64\PnkBstrA.exe [2013-01-16 66872]
R2 PnkBstrB;PnkBstrB; C:\Windows\syswow64\PnkBstrB.exe [2013-01-16 107832]
R2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2011-12-16 363800]
S2 AdvancedSystemCareService6;Advanced SystemCare Service 6; C:\Program Files (x86)\IObit\Advanced SystemCare 6\ASCService.exe [2012-10-31 464256]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 gupdate;Google Update Service (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-08-08 136176]
S2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2012-10-08 1258856]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-01-08 161536]
S3 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2010-03-19 44376]
S3 cphs;Intel(R) Content Protection HECI Service; C:\Windows\SysWow64\IntelCpHeciSvc.exe [2012-12-14 277616]
S3 fsssvc;Windows Live Family Safety Service; C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2010-09-23 1493352]
S3 gupdatem;Google Update Service (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-08-08 136176]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 rpcapd;Remote Packet Capture Protocol v.0 (experimental); C:\Program Files (x86)\WinPcap\rpcapd.exe [2010-06-25 117264]
S3 SwitchBoard;SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2012-11-23 1255736]
S4 DamageGuardSvc;Lenovo Instant Reset Service; C:\Program Files\Lenovo\Instant Reset\DamageGuardSvc.exe [2012-03-26 572976]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
-----------------EOF-----------------
Úspech je zlý učiteľ. Kvôli nemu si múdri ľudia myslia, že nemôžu prehrať.
Bill Gates
Bill Gates
- Rudy
- Site Admin
- Příspěvky: 119488
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: BSOD - ntoskrnl.exe
Také zdravím!
Neinstaloval jste nějaký nový hw, nebo nemáte v PC něco přetaktováno?
Neinstaloval jste nějaký nový hw, nebo nemáte v PC něco přetaktováno?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: BSOD - ntoskrnl.exe
no posledne co sa instalovalo bol windows update asi vcera rano ale neake iny program uz dlho nie... a netaktoval som
Úspech je zlý učiteľ. Kvôli nemu si múdri ľudia myslia, že nemôžu prehrať.
Bill Gates
Bill Gates
Re: BSOD - ntoskrnl.exe
aha, pardon, az teraz som si vsimol ze sa pytate na hw nie sw, hw som neinstaloval... mam notebook
Úspech je zlý učiteľ. Kvôli nemu si múdri ľudia myslia, že nemôžu prehrať.
Bill Gates
Bill Gates
- Rudy
- Site Admin
- Příspěvky: 119488
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: BSOD - ntoskrnl.exe
Udělejte obnovu systému k datu, kdy korektně fugoval a NB chvíli testujte. Dokud si nebudete jist, že se BSOD nezobrazí, nic neinstalujte. Pokud se BSOD objeví, proveďte test RAM: http://forum.viry.cz/viewtopic.php?f=53&t=106788 .
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: BSOD - ntoskrnl.exe
Okej, idem na to a potom dam vediet, este jedna otazocka, je nahoda ze sa to vola memtest86 alebo je to urcene pre x86 wini?
Úspech je zlý učiteľ. Kvôli nemu si múdri ľudia myslia, že nemôžu prehrať.
Bill Gates
Bill Gates
- Rudy
- Site Admin
- Příspěvky: 119488
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: BSOD - ntoskrnl.exe
Ten soft se tak jmenuje, protože je určen na x86 architekturu. S Win nemá naprosto nic společného, neboť je budete spouštět z CD, pomocí něhož nabootujete.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: BSOD - ntoskrnl.exe
a ked mam x64 ? nebude to robit problem ?
Úspech je zlý učiteľ. Kvôli nemu si múdri ľudia myslia, že nemôžu prehrať.
Bill Gates
Bill Gates
- Rudy
- Site Admin
- Příspěvky: 119488
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: BSOD - ntoskrnl.exe
Nebude, máme to vyzkoušené. Skenování ale trvá déle, než u architektury x86.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: BSOD - ntoskrnl.exe
Omluva za vstup.
Ten test paměti určitě udělej, jinak to ale vypadá na chybu v grafickém ovladači Intel - igdkmd64.sys, který se snaží načíst do registru procesoru data z paměti pomocí nulového ukazatele.
Typnul bych to tedy spíše na nějakou chybu přímo v ovladači. Nicméně cesty počítačové, jsou nevyzpytatelné.
Ten test paměti určitě udělej, jinak to ale vypadá na chybu v grafickém ovladači Intel - igdkmd64.sys, který se snaží načíst do registru procesoru data z paměti pomocí nulového ukazatele.
Typnul bych to tedy spíše na nějakou chybu přímo v ovladači. Nicméně cesty počítačové, jsou nevyzpytatelné.
Pokud jste s naší pomocí spokojeni, můžete nás podpořit. Informace zde