Něco vypíná službu Centrum zabezpečení atd
Napsal: 25 bře 2013 23:28
Dobrý den, prosím o radu:
(ne moje PC) - nejde spustit Aero ani MicrosoftSecurityEssentials. Ve službách vidím vypnutou službu Centra zabezpečení, po jejím zapnutí je ale při pokusu o jakoukoli akci znovu vypnutá. V nouzovém režimu ale MSE jede a nic nenajde. Pokoušel jsem se sestřílet všechny toolbary a jiné služby, ale problémy přetrvávají - na víc už si netroufám, proto budu vděčný za každou radu nebo pomoc.
Logfile of random's system information tool 1.08 (written by random/random)
Run by Madlenka at 2013-03-25 23:25:13
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 201 GB (46%) free of 432 GB
Total RAM: 3959 MB (47% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 23:25:16, on 25.3.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16470)
Boot mode: Normal
Running processes:
C:\Users\Madlenka\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Madlenka\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Madlenka\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Madlenka\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Madlenka\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Madlenka\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Madlenka.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MIF5BA~1\Office14\URLREDIR.DLL
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Startup: Miranda IM.lnk = C:\Program Files (x86)\Mir4nda-IM-0.9.11-Pack-v2.9.4\miranda32.exe
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\windows\System32\alg.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\windows\system32\fxssvc.exe (file missing)
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: IGRS - Lenovo Group Limited - C:\Program Files (x86)\Lenovo\ReadyComm\common\IGRS.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\windows\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management & Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\windows\system32\wbem\WmiApSrv.exe (file missing)
--
End of file - 5108 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\windows\system32\services.exe
winlogon.exe
C:\windows\system32\lsass.exe
C:\windows\system32\lsm.exe
C:\windows\system32\svchost.exe -k DcomLaunch
C:\windows\system32\nvvsvc.exe
C:\windows\system32\svchost.exe -k RPCSS
"c:\Program Files\Microsoft Security Client\MsMpEng.exe"
C:\windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\windows\system32\svchost.exe -k LocalService
C:\windows\system32\svchost.exe -k netsvcs
C:\windows\system32\nvvsvc.exe -session -first
C:\windows\system32\svchost.exe -k NetworkService
C:\windows\system32\WLANExt.exe 29529888
\??\C:\windows\system32\conhost.exe "6735449856732726053641276192072293460424496119-242883614050809437174271
C:\windows\System32\spoolsv.exe
taskeng.exe {0F417D74-4CBF-4B14-AF3C-2D2C3FE00698}
C:\windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\windows\system32\rundll32.exe "C:\windows\SysWOW64\iasnap5.dll",Xdctpzxc
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
C:\windows\system32\rundll32.exe "C:\windows\SysWOW64\iasnap5.dll",Xdctpzxc
C:\windows\system32\svchost.exe -k imgsvc
"taskhost.exe"
"C:\windows\system32\Dwm.exe"
C:\windows\Explorer.EXE
"c:\Program Files\Microsoft Security Client\NisSrv.exe"
C:\windows\servicing\TrustedInstaller.exe
"C:\Program Files\CONEXANT\cAudioFilterAgent\cAudioFilterAgent64.exe"
"C:\Program Files\Elantech\ETDCtrl.exe"
"C:\Program Files (x86)\Lenovo\Energy Management\utility.exe"
"C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe"
"C:\windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-2959896c-d04f-49c0-8c51-4ac0f6a05d89 -SystemEventPortName:HostProcess-f5822da5-a0b9-4b92-b5cb-04d539c229d6 -IoCancelEventPortName:HostProcess-be9689e9-e5b9-497b-b81c-a8985ed3f7b9 -NonStateChangingEventPortName:HostProcess-2c0741ac-5385-4bde-8708-a91a728b7609 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:2dc7c5ef-5d69-4b2f-9c36-4d946d6e8837 -DeviceGroupId:WpdFsGroup
"C:\Program Files\Elantech\ETDCtrlHelper.exe"
C:\windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\windows\system32\SearchIndexer.exe /Embedding
C:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
C:\windows\system32\svchost.exe -k WindowsMobile
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"taskhost.exe"
"C:\windows\system32\wuauclt.exe"
"C:\Users\Madlenka\AppData\Local\Google\Chrome\Application\chrome.exe"
"C:\Users\Madlenka\AppData\Local\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="2296.0.88681616\416845261" --supports-dual-gpus=false --gpu-vendor-id=0x10de --gpu-device-id=0x0a70 --gpu-driver-vendor=NVIDIA --gpu-driver-version=8.16.11.8990 --ignored=" --type=renderer " /prefetch:12
"C:\Users\Madlenka\AppData\Local\Google\Chrome\Application\chrome.exe" --type=ppapi --channel="2296.3.1656154556\1061085118" --lang=cs --ignored=" --type=renderer " /prefetch:13
"C:\Users\Madlenka\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=CacheSensitivityAnalysis/No/ForceCompositingMode/thread/InfiniteCache/No/NewTabButton/default/OmniboxHQPNewScoringMax1400/Standard/OmniboxHQPOnlyCountMatchesAtWordBoundaries/Standard/OmniboxHQPReplaceHUPRearrangeNumComponents/Standard/OmniboxSearchSuggestTrialStarted2013Q1/9/OneClickSignIn/Standard/OverlappedReadImpact/OverlappedReadEnabled/Prerender/PrerenderEnabled/PrerenderLocalPredictor/Disabled/SideloadWipeout/Enabled/SpdyCwnd/cwndMin10/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_19/UMA-Uniformity-Trial-1-Percent/group_07/UMA-Uniformity-Trial-10-Percent/group_02/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-50-Percent/default/ --renderer-print-preview --enable-threaded-compositing --channel="2296.31.496535733\736644565" /prefetch:3
"C:\Users\Madlenka\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=CacheSensitivityAnalysis/No/ForceCompositingMode/thread/InfiniteCache/No/NewTabButton/default/OmniboxHQPNewScoringMax1400/Standard/OmniboxHQPOnlyCountMatchesAtWordBoundaries/Standard/OmniboxHQPReplaceHUPRearrangeNumComponents/Standard/OmniboxSearchSuggestTrialStarted2013Q1/9/OneClickSignIn/Standard/OverlappedReadImpact/OverlappedReadEnabled/Prerender/PrerenderEnabled/PrerenderLocalPredictor/Disabled/SideloadWipeout/Enabled/SpdyCwnd/cwndMin10/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_19/UMA-Uniformity-Trial-1-Percent/group_07/UMA-Uniformity-Trial-10-Percent/group_02/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-50-Percent/default/ --renderer-print-preview --enable-threaded-compositing --channel="2296.32.1560200660\2001505322" /prefetch:3
"C:\Users\Madlenka\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=CacheSensitivityAnalysis/No/ForceCompositingMode/thread/InfiniteCache/No/NewTabButton/default/OmniboxHQPNewScoringMax1400/Standard/OmniboxHQPOnlyCountMatchesAtWordBoundaries/Standard/OmniboxHQPReplaceHUPRearrangeNumComponents/Standard/OmniboxSearchSuggestTrialStarted2013Q1/9/OneClickSignIn/Standard/OverlappedReadImpact/OverlappedReadEnabled/Prerender/PrerenderEnabled/PrerenderLocalPredictor/Disabled/SideloadWipeout/Enabled/SpdyCwnd/cwndMin10/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_19/UMA-Uniformity-Trial-1-Percent/group_07/UMA-Uniformity-Trial-10-Percent/group_02/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-50-Percent/default/ --renderer-print-preview --enable-threaded-compositing --channel="2296.34.181935787\1242163325" /prefetch:3
"C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE"
"C:\Users\Madlenka\Downloads\RSITx64.exe"
C:\windows\system32\wbem\wmiprvse.exe
======Scheduled tasks folder======
C:\windows\tasks\Adobe Flash Player Updater.job
C:\windows\tasks\GoogleUpdateTaskMachineCore.job
C:\windows\tasks\GoogleUpdateTaskMachineUA.job
C:\windows\tasks\GoogleUpdateTaskUserS-1-5-21-2726130024-3543636998-1689767155-1001Core.job
C:\windows\tasks\GoogleUpdateTaskUserS-1-5-21-2726130024-3543636998-1689767155-1001UA.job
C:\windows\tasks\JQQN.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\AutorunsDisabled]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~3\Office14\GROOVEEX.DLL [2012-08-16 6670496]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2012-09-29 537576]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~3\Office14\URLREDIR.DLL [2010-12-21 689040]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2012-09-29 193512]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MIF5BA~1\Office14\URLREDIR.DLL [2010-12-21 561552]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"=C:\windows\system32\NvCpl.dll [2010-05-07 16416360]
"cAudioFilterAgent"=C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe [2010-03-22 521272]
"ETDWare"=C:\Program Files\Elantech\ETDCtrl.exe [2010-06-24 2598280]
"EnergyUtility"=C:\Program Files (x86)\Lenovo\Energy Management\utility.exe [2010-04-12 4462496]
"Energy Management"=C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [2010-03-18 7056800]
"MSC"=c:\Program Files\Microsoft Security Client\msseces.exe [2013-01-27 1281512]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
""= []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-12-18 946352]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\cz.seznam.software.autoupdate]
C:\Users\Madlenka\AppData\Roaming\Seznam.cz\szninstall.exe [2012-09-13 1009288]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\cz.seznam.software.szndesktop]
C:\Users\Madlenka\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [2013-01-22 92152]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Update]
C:\Users\Madlenka\AppData\Local\Google\Update\GoogleUpdate.exe [2011-04-22 136176]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IAStorIcon]
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [2010-03-03 284696]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NokiaSuite.exe]
C:\Program Files (x86)\Nokia\Nokia Suite\NokiaSuite.exe [2012-10-13 1088424]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\seznam-listicka-distribuce]
C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [2012-09-13 1009288]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Seznam.chromeUpdatePref]
C:\Users\Madlenka\AppData\Roaming\Seznam.cz\bin\chromeUpdatePref.exe [2013-02-13 942080]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\swg]
C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\UCam_Menu]
C:\Program Files (x86)\Lenovo\YouCam\MUITransfer\MUIStartMenu.exe [2009-05-19 222504]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\UpdateP2GShortCut]
C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe [2008-12-03 218408]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Windows Mobile Device Center]
C:\windows\WindowsMobile\wmdc.exe [2007-05-31 660360]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\YouCam Mirror Tray icon]
C:\Program Files (x86)\Lenovo\YouCam\YouCamTray.exe [2010-03-02 171104]
C:\Users\Madlenka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Miranda IM.lnk - C:\Program Files (x86)\Mir4nda-IM-0.9.11-Pack-v2.9.4\miranda32.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~3\Office14\GROOVEEX.DLL [2012-08-16 6670496]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 months======
2013-03-25 22:39:01 ----D---- C:\rsit
2013-03-25 22:39:01 ----D---- C:\Program Files\trend micro
2013-03-25 22:28:48 ----D---- C:\Program Files (x86)\ESET
2013-03-25 22:19:15 ----D---- C:\windows\LastGood
2013-03-25 21:41:39 ----A---- C:\windows\ntbtlog.txt
2013-03-17 10:10:52 ----A---- C:\windows\system32\drivers\usb8023x.sys
2013-03-17 10:10:52 ----A---- C:\windows\system32\drivers\usb8023.sys
2013-03-15 08:56:21 ----D---- C:\Program Files (x86)\Adobe
2013-03-15 08:55:33 ----SHD---- C:\Config.Msi
2013-03-14 00:32:14 ----A---- C:\windows\SYSWOW64\mshtmled.dll
2013-03-14 00:32:14 ----A---- C:\windows\system32\mshtmled.dll
2013-03-14 00:32:13 ----A---- C:\windows\SYSWOW64\vbscript.dll
2013-03-14 00:32:12 ----A---- C:\windows\SYSWOW64\ieui.dll
2013-03-14 00:32:11 ----A---- C:\windows\system32\ieUnatt.exe
2013-03-14 00:32:11 ----A---- C:\windows\system32\ieui.dll
2013-03-14 00:32:10 ----A---- C:\windows\SYSWOW64\url.dll
2013-03-14 00:32:10 ----A---- C:\windows\SYSWOW64\ieUnatt.exe
2013-03-14 00:32:10 ----A---- C:\windows\system32\url.dll
2013-03-14 00:32:09 ----A---- C:\windows\SYSWOW64\urlmon.dll
2013-03-14 00:32:09 ----A---- C:\windows\system32\urlmon.dll
2013-03-14 00:32:08 ----A---- C:\windows\system32\jscript9.dll
2013-03-14 00:32:07 ----A---- C:\windows\SYSWOW64\msfeeds.dll
2013-03-14 00:32:07 ----A---- C:\windows\system32\msfeeds.dll
2013-03-14 00:32:06 ----A---- C:\windows\SYSWOW64\wininet.dll
2013-03-14 00:32:05 ----A---- C:\windows\system32\wininet.dll
2013-03-14 00:32:04 ----A---- C:\windows\SYSWOW64\jscript9.dll
2013-03-14 00:32:04 ----A---- C:\windows\SYSWOW64\jscript.dll
2013-03-14 00:32:04 ----A---- C:\windows\system32\vbscript.dll
2013-03-14 00:32:04 ----A---- C:\windows\system32\jsproxy.dll
2013-03-14 00:32:03 ----A---- C:\windows\system32\jscript.dll
2013-03-14 00:32:02 ----A---- C:\windows\SYSWOW64\jsproxy.dll
2013-03-14 00:32:02 ----A---- C:\windows\SYSWOW64\iertutil.dll
2013-03-14 00:32:02 ----A---- C:\windows\system32\iertutil.dll
2013-03-14 00:31:59 ----A---- C:\windows\SYSWOW64\mshtml.dll
2013-03-14 00:31:54 ----A---- C:\windows\system32\mshtml.dll
2013-03-14 00:31:53 ----A---- C:\windows\system32\ieframe.dll
2013-03-14 00:31:52 ----A---- C:\windows\SYSWOW64\ieframe.dll
2013-03-14 00:29:28 ----D---- C:\Program Files\Microsoft Silverlight
2013-03-14 00:29:27 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2013-03-12 12:41:31 ----D---- C:\ProgramData\Samsung
2013-03-11 18:10:30 ----D---- C:\Program Files (x86)\Seznam.cz
2013-03-11 18:10:03 ----D---- C:\Users\Madlenka\AppData\Roaming\Seznam.cz
2013-03-11 18:07:47 ----D---- C:\Program Files\GIMP 2
2013-02-27 17:32:32 ----A---- C:\windows\SYSWOW64\msmpeg2vdec.dll
2013-02-27 17:32:31 ----A---- C:\windows\SYSWOW64\UIAnimation.dll
2013-02-27 17:32:31 ----A---- C:\windows\system32\UIAnimation.dll
2013-02-27 17:32:31 ----A---- C:\windows\system32\msmpeg2vdec.dll
2013-02-27 17:32:29 ----A---- C:\windows\SYSWOW64\WMPhoto.dll
2013-02-27 17:32:29 ----A---- C:\windows\system32\WMPhoto.dll
2013-02-27 17:32:27 ----AH---- C:\windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2013-02-27 17:32:27 ----AH---- C:\windows\SYSWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll
2013-02-27 17:32:27 ----AH---- C:\windows\SYSWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2013-02-27 17:32:27 ----AH---- C:\windows\SYSWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll
2013-02-27 17:32:27 ----AH---- C:\windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2013-02-27 17:32:27 ----AH---- C:\windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2013-02-27 17:32:27 ----AH---- C:\windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2013-02-27 17:32:27 ----AH---- C:\windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2013-02-27 17:32:27 ----A---- C:\windows\SYSWOW64\d3d10warp.dll
2013-02-27 17:32:27 ----A---- C:\windows\SYSWOW64\d3d10_1.dll
2013-02-27 17:32:27 ----A---- C:\windows\system32\XpsGdiConverter.dll
2013-02-27 17:32:27 ----A---- C:\windows\system32\d3d10warp.dll
2013-02-27 17:32:27 ----A---- C:\windows\system32\d3d10_1.dll
2013-02-27 17:32:26 ----AH---- C:\windows\SYSWOW64\api-ms-win-downlevel-version-l1-1-0.dll
2013-02-27 17:32:26 ----AH---- C:\windows\SYSWOW64\api-ms-win-downlevel-user32-l1-1-0.dll
2013-02-27 17:32:26 ----AH---- C:\windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2013-02-27 17:32:26 ----AH---- C:\windows\SYSWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
2013-02-27 17:32:26 ----AH---- C:\windows\SYSWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll
2013-02-27 17:32:26 ----AH---- C:\windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2013-02-27 17:32:26 ----AH---- C:\windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2013-02-27 17:32:26 ----AH---- C:\windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2013-02-27 17:32:26 ----AH---- C:\windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2013-02-27 17:32:26 ----AH---- C:\windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2013-02-27 17:32:26 ----A---- C:\windows\SYSWOW64\XpsPrint.dll
2013-02-27 17:32:26 ----A---- C:\windows\SYSWOW64\XpsGdiConverter.dll
2013-02-27 17:32:26 ----A---- C:\windows\SYSWOW64\dxgi.dll
2013-02-27 17:32:26 ----A---- C:\windows\SYSWOW64\d3d11.dll
2013-02-27 17:32:26 ----A---- C:\windows\SYSWOW64\d3d10level9.dll
2013-02-27 17:32:26 ----A---- C:\windows\SYSWOW64\d3d10core.dll
2013-02-27 17:32:26 ----A---- C:\windows\SYSWOW64\d3d10_1core.dll
2013-02-27 17:32:26 ----A---- C:\windows\SYSWOW64\d3d10.dll
2013-02-27 17:32:26 ----A---- C:\windows\system32\dxgi.dll
2013-02-27 17:32:26 ----A---- C:\windows\system32\d3d11.dll
2013-02-27 17:32:26 ----A---- C:\windows\system32\d3d10level9.dll
2013-02-27 17:32:26 ----A---- C:\windows\system32\d3d10core.dll
2013-02-27 17:32:26 ----A---- C:\windows\system32\d3d10_1core.dll
2013-02-27 17:32:26 ----A---- C:\windows\system32\d3d10.dll
2013-02-27 17:32:25 ----A---- C:\windows\SYSWOW64\WindowsCodecsExt.dll
2013-02-27 17:32:25 ----A---- C:\windows\SYSWOW64\WindowsCodecs.dll
2013-02-27 17:32:25 ----A---- C:\windows\SYSWOW64\DWrite.dll
2013-02-27 17:32:25 ----A---- C:\windows\SYSWOW64\d2d1.dll
2013-02-27 17:32:25 ----A---- C:\windows\system32\XpsPrint.dll
2013-02-27 17:32:25 ----A---- C:\windows\system32\WindowsCodecsExt.dll
2013-02-27 17:32:25 ----A---- C:\windows\system32\WindowsCodecs.dll
2013-02-27 17:32:25 ----A---- C:\windows\system32\FntCache.dll
2013-02-27 17:32:25 ----A---- C:\windows\system32\DWrite.dll
2013-02-27 17:32:25 ----A---- C:\windows\system32\d2d1.dll
======List of files/folders modified in the last 1 months======
2013-03-25 23:24:24 ----D---- C:\windows\SYSWOW64\AHS_S1_screensaver dir
2013-03-25 23:24:09 ----RD---- C:\Program Files (x86)
2013-03-25 23:24:08 ----D---- C:\windows\Temp
2013-03-25 22:58:10 ----D---- C:\windows\Downloaded Program Files
2013-03-25 22:39:01 ----RD---- C:\Program Files
2013-03-25 22:30:23 ----D---- C:\windows\Logs
2013-03-25 22:29:24 ----D---- C:\windows\winsxs
2013-03-25 22:29:14 ----D---- C:\windows\system32\catroot2
2013-03-25 22:29:14 ----D---- C:\windows\system32\catroot
2013-03-25 22:20:52 ----D---- C:\Windows
2013-03-25 22:19:53 ----D---- C:\windows\Prefetch
2013-03-25 22:19:18 ----D---- C:\Program Files\NVIDIA Corporation
2013-03-25 22:19:16 ----D---- C:\windows\System32
2013-03-25 22:19:15 ----D---- C:\windows\system32\drivers
2013-03-25 22:19:15 ----D---- C:\windows\inf
2013-03-25 22:19:13 ----D---- C:\windows\system32\DriverStore
2013-03-25 22:13:25 ----A---- C:\windows\system32\PerfStringBackup.INI
2013-03-25 22:08:47 ----D---- C:\windows\system32\config
2013-03-25 22:08:44 ----A---- C:\windows\SYSWOW64\log.txt
2013-03-18 09:10:16 ----D---- C:\ProgramData\Adobe
2013-03-16 18:13:42 ----D---- C:\windows\rescache
2013-03-15 10:06:11 ----SD---- C:\Users\Madlenka\AppData\Roaming\Microsoft
2013-03-15 10:06:11 ----D---- C:\Users\Madlenka\AppData\Roaming\Adobe
2013-03-15 08:57:48 ----SHD---- C:\windows\Installer
2013-03-15 08:57:00 ----D---- C:\windows\SysWOW64
2013-03-15 08:56:21 ----D---- C:\Program Files (x86)\Common Files
2013-03-14 05:50:37 ----D---- C:\windows\SYSWOW64\migration
2013-03-14 05:50:37 ----D---- C:\windows\system32\migration
2013-03-14 05:50:37 ----D---- C:\windows\AppPatch
2013-03-14 05:50:37 ----D---- C:\Program Files (x86)\Internet Explorer
2013-03-14 05:50:36 ----D---- C:\Program Files\Internet Explorer
2013-03-14 00:35:49 ----A---- C:\windows\system32\MRT.exe
2013-03-14 00:35:44 ----D---- C:\ProgramData\Microsoft Help
2013-03-12 12:41:31 ----HD---- C:\ProgramData
2013-03-03 08:37:13 ----A---- C:\windows\SYSWOW64\FlashPlayerApp.exe
2013-02-27 18:50:12 ----D---- C:\windows\SYSWOW64\zh-HK
2013-02-27 18:50:12 ----D---- C:\windows\SYSWOW64\pt-PT
2013-02-27 18:50:12 ----D---- C:\windows\SYSWOW64\pt-BR
2013-02-27 18:50:12 ----D---- C:\windows\SYSWOW64\pl-PL
2013-02-27 18:50:12 ----D---- C:\windows\SYSWOW64\nl-NL
2013-02-27 18:50:12 ----D---- C:\windows\SYSWOW64\ko-KR
2013-02-27 18:50:12 ----D---- C:\windows\SYSWOW64\it-IT
2013-02-27 18:50:12 ----D---- C:\windows\SYSWOW64\hu-HU
2013-02-27 18:50:12 ----D---- C:\windows\SYSWOW64\fr-FR
2013-02-27 18:50:12 ----D---- C:\windows\SYSWOW64\el-GR
2013-02-27 18:50:11 ----D---- C:\windows\SYSWOW64\zh-TW
2013-02-27 18:50:11 ----D---- C:\windows\SYSWOW64\zh-CN
2013-02-27 18:50:11 ----D---- C:\windows\SYSWOW64\tr-TR
2013-02-27 18:50:11 ----D---- C:\windows\SYSWOW64\sv-SE
2013-02-27 18:50:11 ----D---- C:\windows\SYSWOW64\ru-RU
2013-02-27 18:50:11 ----D---- C:\windows\SYSWOW64\nb-NO
2013-02-27 18:50:11 ----D---- C:\windows\SYSWOW64\ja-JP
2013-02-27 18:50:11 ----D---- C:\windows\SYSWOW64\fi-FI
2013-02-27 18:50:11 ----D---- C:\windows\SYSWOW64\es-ES
2013-02-27 18:50:11 ----D---- C:\windows\SYSWOW64\en-US
2013-02-27 18:50:11 ----D---- C:\windows\SYSWOW64\de-DE
2013-02-27 18:50:11 ----D---- C:\windows\SYSWOW64\da-DK
2013-02-27 18:50:11 ----D---- C:\windows\SYSWOW64\cs-CZ
2013-02-27 18:50:10 ----D---- C:\windows\system32\zh-HK
2013-02-27 18:50:10 ----D---- C:\windows\system32\pt-PT
2013-02-27 18:50:10 ----D---- C:\windows\system32\pt-BR
2013-02-27 18:50:10 ----D---- C:\windows\system32\pl-PL
2013-02-27 18:50:10 ----D---- C:\windows\system32\ko-KR
2013-02-27 18:50:10 ----D---- C:\windows\system32\it-IT
2013-02-27 18:50:10 ----D---- C:\windows\system32\hu-HU
2013-02-27 18:50:10 ----D---- C:\windows\system32\el-GR
2013-02-27 18:50:09 ----D---- C:\windows\system32\zh-TW
2013-02-27 18:50:09 ----D---- C:\windows\system32\zh-CN
2013-02-27 18:50:09 ----D---- C:\windows\system32\tr-TR
2013-02-27 18:50:09 ----D---- C:\windows\system32\sv-SE
2013-02-27 18:50:09 ----D---- C:\windows\system32\ru-RU
2013-02-27 18:50:09 ----D---- C:\windows\system32\nl-NL
2013-02-27 18:50:09 ----D---- C:\windows\system32\nb-NO
2013-02-27 18:50:09 ----D---- C:\windows\system32\ja-JP
2013-02-27 18:50:09 ----D---- C:\windows\system32\fr-FR
2013-02-27 18:50:09 ----D---- C:\windows\system32\fi-FI
2013-02-27 18:50:09 ----D---- C:\windows\system32\es-ES
2013-02-27 18:50:09 ----D---- C:\windows\system32\de-DE
2013-02-27 18:50:09 ----D---- C:\windows\system32\cs-CZ
2013-02-27 18:50:08 ----D---- C:\windows\system32\en-US
2013-02-27 18:50:08 ----D---- C:\windows\system32\da-DK
2013-02-27 08:49:17 ----D---- C:\Program Files\Microsoft Security Client
2013-02-27 08:49:16 ----D---- C:\Program Files (x86)\Microsoft Security Client
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 iaStor;Intel AHCI Controller; C:\windows\system32\DRIVERS\iaStor.sys [2010-03-03 540696]
R0 LHDmgr;LHDmgr; C:\windows\System32\DRIVERS\LhdX64.sys [2010-01-15 39008]
R0 MpFilter;Microsoft Malware Protection Driver; C:\windows\system32\DRIVERS\MpFilter.sys [2013-01-20 230320]
R0 rdyboost;ReadyBoost; C:\windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R1 vwififlt;Virtual WiFi Filter Driver; C:\windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 NisDrv;Microsoft Network Inspection System; C:\windows\system32\DRIVERS\NisDrvWFP.sys [2013-01-20 130008]
R3 ACPIVPC;Lenovo Virtual Power Controller Driver; C:\windows\system32\DRIVERS\AcpiVpc.sys [2009-10-19 28176]
R3 BCM43XX;Broadcom 802.11 Network Adapter Driver; C:\windows\system32\DRIVERS\bcmwl664.sys [2010-06-18 4170304]
R3 CnxtHdAudService;Conexant UAA Function Driver for High Definition Audio Service; C:\windows\system32\drivers\CHDRT64.sys [2010-01-18 717368]
R3 ETD;ELAN PS/2 Port Input Device; C:\windows\system32\DRIVERS\ETD.sys [2010-06-24 167816]
R3 HECIx64;Intel(R) Management Engine Interface; C:\windows\system32\DRIVERS\HECIx64.sys [2009-09-17 56344]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\windows\system32\drivers\nvhda64v.sys [2013-02-18 189288]
R3 RTL8167;Realtek 8167 NT Driver; C:\windows\system32\DRIVERS\Rt64win7.sys [2011-06-10 539240]
R3 usbsmi;Lenovo EasyCamera; C:\windows\system32\DRIVERS\SMIksdrv.sys [2010-04-20 200704]
R3 wdmirror;wdmirror; C:\windows\system32\DRIVERS\WDMirror.sys [2009-07-16 11280]
S3 Bridge0;Bridge0; C:\windows\system32\drivers\WDBridge.sys [2009-07-16 79376]
S3 BthEnum;Ovladač pro Bluetooth Request Block; C:\windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
S3 BthPan;Bluetooth Device (Personal Area Network); C:\windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
S3 BTHPORT;Ovladač portu Bluetooth; C:\windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
S3 btusbflt;Bluetooth USB Filter; C:\windows\system32\drivers\btusbflt.sys [2009-07-01 52264]
S3 btwaudio;Bluetooth Audio Device Service; C:\windows\system32\drivers\btwaudio.sys [2009-07-01 98344]
S3 btwavdt;Bluetooth AVDT Service; C:\windows\system32\DRIVERS\btwavdt.sys [2009-07-01 132648]
S3 btwl2cap;Bluetooth L2CAP Service; C:\windows\system32\DRIVERS\btwl2cap.sys [2009-04-07 35104]
S3 btwrchid;btwrchid; C:\windows\system32\DRIVERS\btwrchid.sys [2009-07-01 21160]
S3 igfx;igfx; C:\windows\system32\DRIVERS\igdkmd64.sys [2009-06-10 6108416]
S3 k57nd60a;Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0; C:\windows\system32\DRIVERS\k57nd60a.sys [2009-06-10 270848]
S3 netw5v64;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 64 Bit; C:\windows\system32\DRIVERS\netw5v64.sys [2009-06-10 5434368]
S3 nmwcd;Nokia USB Phone Parent Driver; C:\windows\system32\drivers\ccdcmbx64.sys [2012-06-11 19968]
S3 nmwcdc;Nokia USB Communication Driver; C:\windows\system32\drivers\ccdcmbox64.sys [2012-06-11 27136]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\windows\system32\DRIVERS\pccsmcfdx64.sys [2012-06-27 26112]
S3 pciide;pciide; C:\windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader; C:\windows\System32\Drivers\RtsUStor.sys [2010-03-12 242720]
S3 TsUsbFlt;TsUsbFlt; C:\windows\system32\drivers\tsusbflt.sys [2010-11-20 59392]
S3 upperdev;upperdev; C:\windows\system32\DRIVERS\usbser_lowerfltx64.sys [2012-06-11 9216]
S3 usb_rndisx;Adaptér USB RNDIS; C:\windows\system32\drivers\usb8023x.sys [2013-02-12 19968]
S3 usbser;USB Modem Driver; C:\windows\system32\drivers\usbser.sys [2010-11-20 32768]
S3 UsbserFilt;UsbserFilt; C:\windows\system32\DRIVERS\usbser_lowerfltjx64.sys [2012-06-11 9216]
S3 WimFltr;WimFltr; C:\windows\system32\DRIVERS\wimfltr.sys [2008-08-06 151656]
S3 WinUsb;WinUsb; C:\windows\system32\DRIVERS\WinUsb.sys [2010-11-20 41984]
S3 wsvd;wsvd; C:\windows\system32\DRIVERS\wsvd.sys [2009-07-21 121840]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2010-03-03 13336]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2009-12-09 268824]
R2 MsMpSvc;Microsoft Antimalware Service; c:\Program Files\Microsoft Security Client\MsMpEng.exe [2013-01-27 22056]
R2 nvsvc;NVIDIA Display Driver Service; C:\windows\system32\nvvsvc.exe [2010-05-07 392296]
R2 RapiMgr;@%windir%\WindowsMobile\rapimgr.dll,-104; C:\windows\system32\svchost.exe [2009-07-14 27136]
R2 UNS;Intel(R) Management & Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2009-12-09 2320920]
R2 WcesComm;@%windir%\WindowsMobile\wcescomm.dll,-40079; C:\windows\system32\svchost.exe [2009-07-14 27136]
R3 NisSrv;@c:\Program Files\Microsoft Security Client\MpAsDesc.dll,-243; c:\Program Files\Microsoft Security Client\NisSrv.exe [2013-01-27 379360]
R3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 ReadyComm.DirectRouter;ReadyComm.DirectRouter; C:\windows\System32\IgrsSvcs.exe -k IgrsSvcs []
S3 IGRS;IGRS; C:\Program Files (x86)\Lenovo\ReadyComm\common\IGRS.exe [2009-07-14 38152]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files\Microsoft Office\Office14\GROOVE.EXE [2012-09-20 50899608]
S3 ose64;Office 64 Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 174440]
S3 PS_MDP;ReadyComm Presentation Space Helper Service; C:\windows\System32\IgrsSvcs.exe -k IgrsSvcs []
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\windows\system32\Wat\WatAdminSvc.exe [2011-04-22 1255736]
S4 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-12-18 65192]
S4 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-03-03 251248]
S4 btwdins;Bluetooth Service; C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe [2009-08-11 864032]
S4 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-09-17 136176]
S4 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-09-17 136176]
S4 Lenovo ReadyComm AppSvc;Lenovo ReadyComm AppSvc; C:\Program Files\Lenovo\ReadyComm\AppSvc.exe [2009-08-14 509192]
S4 Lenovo ReadyComm ConnSvc;Lenovo ReadyComm ConnSvc; C:\Program Files\Lenovo\ReadyComm\ConnSvc.exe [2009-09-22 579400]
S4 ServiceLayer;ServiceLayer; C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe [2012-10-03 725400]
S4 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2012-07-13 160944]
S4 wlcrasvc;Windows Live Mesh remote connections service; C:\Program Files\Windows Live\Mesh\wlcrasvc.exe [2010-09-22 57184]
S4 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2010-09-21 2286976]
-----------------EOF-----------------
(ne moje PC) - nejde spustit Aero ani MicrosoftSecurityEssentials. Ve službách vidím vypnutou službu Centra zabezpečení, po jejím zapnutí je ale při pokusu o jakoukoli akci znovu vypnutá. V nouzovém režimu ale MSE jede a nic nenajde. Pokoušel jsem se sestřílet všechny toolbary a jiné služby, ale problémy přetrvávají - na víc už si netroufám, proto budu vděčný za každou radu nebo pomoc.
Logfile of random's system information tool 1.08 (written by random/random)
Run by Madlenka at 2013-03-25 23:25:13
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 201 GB (46%) free of 432 GB
Total RAM: 3959 MB (47% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 23:25:16, on 25.3.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16470)
Boot mode: Normal
Running processes:
C:\Users\Madlenka\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Madlenka\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Madlenka\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Madlenka\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Madlenka\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Madlenka\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Madlenka.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MIF5BA~1\Office14\URLREDIR.DLL
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Startup: Miranda IM.lnk = C:\Program Files (x86)\Mir4nda-IM-0.9.11-Pack-v2.9.4\miranda32.exe
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\windows\System32\alg.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\windows\system32\fxssvc.exe (file missing)
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: IGRS - Lenovo Group Limited - C:\Program Files (x86)\Lenovo\ReadyComm\common\IGRS.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\windows\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management & Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\windows\system32\wbem\WmiApSrv.exe (file missing)
--
End of file - 5108 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\windows\system32\services.exe
winlogon.exe
C:\windows\system32\lsass.exe
C:\windows\system32\lsm.exe
C:\windows\system32\svchost.exe -k DcomLaunch
C:\windows\system32\nvvsvc.exe
C:\windows\system32\svchost.exe -k RPCSS
"c:\Program Files\Microsoft Security Client\MsMpEng.exe"
C:\windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\windows\system32\svchost.exe -k LocalService
C:\windows\system32\svchost.exe -k netsvcs
C:\windows\system32\nvvsvc.exe -session -first
C:\windows\system32\svchost.exe -k NetworkService
C:\windows\system32\WLANExt.exe 29529888
\??\C:\windows\system32\conhost.exe "6735449856732726053641276192072293460424496119-242883614050809437174271
C:\windows\System32\spoolsv.exe
taskeng.exe {0F417D74-4CBF-4B14-AF3C-2D2C3FE00698}
C:\windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\windows\system32\rundll32.exe "C:\windows\SysWOW64\iasnap5.dll",Xdctpzxc
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
C:\windows\system32\rundll32.exe "C:\windows\SysWOW64\iasnap5.dll",Xdctpzxc
C:\windows\system32\svchost.exe -k imgsvc
"taskhost.exe"
"C:\windows\system32\Dwm.exe"
C:\windows\Explorer.EXE
"c:\Program Files\Microsoft Security Client\NisSrv.exe"
C:\windows\servicing\TrustedInstaller.exe
"C:\Program Files\CONEXANT\cAudioFilterAgent\cAudioFilterAgent64.exe"
"C:\Program Files\Elantech\ETDCtrl.exe"
"C:\Program Files (x86)\Lenovo\Energy Management\utility.exe"
"C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe"
"C:\windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-2959896c-d04f-49c0-8c51-4ac0f6a05d89 -SystemEventPortName:HostProcess-f5822da5-a0b9-4b92-b5cb-04d539c229d6 -IoCancelEventPortName:HostProcess-be9689e9-e5b9-497b-b81c-a8985ed3f7b9 -NonStateChangingEventPortName:HostProcess-2c0741ac-5385-4bde-8708-a91a728b7609 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:2dc7c5ef-5d69-4b2f-9c36-4d946d6e8837 -DeviceGroupId:WpdFsGroup
"C:\Program Files\Elantech\ETDCtrlHelper.exe"
C:\windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\windows\system32\SearchIndexer.exe /Embedding
C:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
C:\windows\system32\svchost.exe -k WindowsMobile
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"taskhost.exe"
"C:\windows\system32\wuauclt.exe"
"C:\Users\Madlenka\AppData\Local\Google\Chrome\Application\chrome.exe"
"C:\Users\Madlenka\AppData\Local\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="2296.0.88681616\416845261" --supports-dual-gpus=false --gpu-vendor-id=0x10de --gpu-device-id=0x0a70 --gpu-driver-vendor=NVIDIA --gpu-driver-version=8.16.11.8990 --ignored=" --type=renderer " /prefetch:12
"C:\Users\Madlenka\AppData\Local\Google\Chrome\Application\chrome.exe" --type=ppapi --channel="2296.3.1656154556\1061085118" --lang=cs --ignored=" --type=renderer " /prefetch:13
"C:\Users\Madlenka\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=CacheSensitivityAnalysis/No/ForceCompositingMode/thread/InfiniteCache/No/NewTabButton/default/OmniboxHQPNewScoringMax1400/Standard/OmniboxHQPOnlyCountMatchesAtWordBoundaries/Standard/OmniboxHQPReplaceHUPRearrangeNumComponents/Standard/OmniboxSearchSuggestTrialStarted2013Q1/9/OneClickSignIn/Standard/OverlappedReadImpact/OverlappedReadEnabled/Prerender/PrerenderEnabled/PrerenderLocalPredictor/Disabled/SideloadWipeout/Enabled/SpdyCwnd/cwndMin10/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_19/UMA-Uniformity-Trial-1-Percent/group_07/UMA-Uniformity-Trial-10-Percent/group_02/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-50-Percent/default/ --renderer-print-preview --enable-threaded-compositing --channel="2296.31.496535733\736644565" /prefetch:3
"C:\Users\Madlenka\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=CacheSensitivityAnalysis/No/ForceCompositingMode/thread/InfiniteCache/No/NewTabButton/default/OmniboxHQPNewScoringMax1400/Standard/OmniboxHQPOnlyCountMatchesAtWordBoundaries/Standard/OmniboxHQPReplaceHUPRearrangeNumComponents/Standard/OmniboxSearchSuggestTrialStarted2013Q1/9/OneClickSignIn/Standard/OverlappedReadImpact/OverlappedReadEnabled/Prerender/PrerenderEnabled/PrerenderLocalPredictor/Disabled/SideloadWipeout/Enabled/SpdyCwnd/cwndMin10/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_19/UMA-Uniformity-Trial-1-Percent/group_07/UMA-Uniformity-Trial-10-Percent/group_02/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-50-Percent/default/ --renderer-print-preview --enable-threaded-compositing --channel="2296.32.1560200660\2001505322" /prefetch:3
"C:\Users\Madlenka\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=CacheSensitivityAnalysis/No/ForceCompositingMode/thread/InfiniteCache/No/NewTabButton/default/OmniboxHQPNewScoringMax1400/Standard/OmniboxHQPOnlyCountMatchesAtWordBoundaries/Standard/OmniboxHQPReplaceHUPRearrangeNumComponents/Standard/OmniboxSearchSuggestTrialStarted2013Q1/9/OneClickSignIn/Standard/OverlappedReadImpact/OverlappedReadEnabled/Prerender/PrerenderEnabled/PrerenderLocalPredictor/Disabled/SideloadWipeout/Enabled/SpdyCwnd/cwndMin10/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_19/UMA-Uniformity-Trial-1-Percent/group_07/UMA-Uniformity-Trial-10-Percent/group_02/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-50-Percent/default/ --renderer-print-preview --enable-threaded-compositing --channel="2296.34.181935787\1242163325" /prefetch:3
"C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE"
"C:\Users\Madlenka\Downloads\RSITx64.exe"
C:\windows\system32\wbem\wmiprvse.exe
======Scheduled tasks folder======
C:\windows\tasks\Adobe Flash Player Updater.job
C:\windows\tasks\GoogleUpdateTaskMachineCore.job
C:\windows\tasks\GoogleUpdateTaskMachineUA.job
C:\windows\tasks\GoogleUpdateTaskUserS-1-5-21-2726130024-3543636998-1689767155-1001Core.job
C:\windows\tasks\GoogleUpdateTaskUserS-1-5-21-2726130024-3543636998-1689767155-1001UA.job
C:\windows\tasks\JQQN.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\AutorunsDisabled]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~3\Office14\GROOVEEX.DLL [2012-08-16 6670496]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2012-09-29 537576]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~3\Office14\URLREDIR.DLL [2010-12-21 689040]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2012-09-29 193512]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MIF5BA~1\Office14\URLREDIR.DLL [2010-12-21 561552]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"=C:\windows\system32\NvCpl.dll [2010-05-07 16416360]
"cAudioFilterAgent"=C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe [2010-03-22 521272]
"ETDWare"=C:\Program Files\Elantech\ETDCtrl.exe [2010-06-24 2598280]
"EnergyUtility"=C:\Program Files (x86)\Lenovo\Energy Management\utility.exe [2010-04-12 4462496]
"Energy Management"=C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [2010-03-18 7056800]
"MSC"=c:\Program Files\Microsoft Security Client\msseces.exe [2013-01-27 1281512]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
""= []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-12-18 946352]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\cz.seznam.software.autoupdate]
C:\Users\Madlenka\AppData\Roaming\Seznam.cz\szninstall.exe [2012-09-13 1009288]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\cz.seznam.software.szndesktop]
C:\Users\Madlenka\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [2013-01-22 92152]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Update]
C:\Users\Madlenka\AppData\Local\Google\Update\GoogleUpdate.exe [2011-04-22 136176]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IAStorIcon]
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [2010-03-03 284696]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NokiaSuite.exe]
C:\Program Files (x86)\Nokia\Nokia Suite\NokiaSuite.exe [2012-10-13 1088424]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\seznam-listicka-distribuce]
C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [2012-09-13 1009288]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Seznam.chromeUpdatePref]
C:\Users\Madlenka\AppData\Roaming\Seznam.cz\bin\chromeUpdatePref.exe [2013-02-13 942080]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\swg]
C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\UCam_Menu]
C:\Program Files (x86)\Lenovo\YouCam\MUITransfer\MUIStartMenu.exe [2009-05-19 222504]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\UpdateP2GShortCut]
C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe [2008-12-03 218408]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Windows Mobile Device Center]
C:\windows\WindowsMobile\wmdc.exe [2007-05-31 660360]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\YouCam Mirror Tray icon]
C:\Program Files (x86)\Lenovo\YouCam\YouCamTray.exe [2010-03-02 171104]
C:\Users\Madlenka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Miranda IM.lnk - C:\Program Files (x86)\Mir4nda-IM-0.9.11-Pack-v2.9.4\miranda32.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~3\Office14\GROOVEEX.DLL [2012-08-16 6670496]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 months======
2013-03-25 22:39:01 ----D---- C:\rsit
2013-03-25 22:39:01 ----D---- C:\Program Files\trend micro
2013-03-25 22:28:48 ----D---- C:\Program Files (x86)\ESET
2013-03-25 22:19:15 ----D---- C:\windows\LastGood
2013-03-25 21:41:39 ----A---- C:\windows\ntbtlog.txt
2013-03-17 10:10:52 ----A---- C:\windows\system32\drivers\usb8023x.sys
2013-03-17 10:10:52 ----A---- C:\windows\system32\drivers\usb8023.sys
2013-03-15 08:56:21 ----D---- C:\Program Files (x86)\Adobe
2013-03-15 08:55:33 ----SHD---- C:\Config.Msi
2013-03-14 00:32:14 ----A---- C:\windows\SYSWOW64\mshtmled.dll
2013-03-14 00:32:14 ----A---- C:\windows\system32\mshtmled.dll
2013-03-14 00:32:13 ----A---- C:\windows\SYSWOW64\vbscript.dll
2013-03-14 00:32:12 ----A---- C:\windows\SYSWOW64\ieui.dll
2013-03-14 00:32:11 ----A---- C:\windows\system32\ieUnatt.exe
2013-03-14 00:32:11 ----A---- C:\windows\system32\ieui.dll
2013-03-14 00:32:10 ----A---- C:\windows\SYSWOW64\url.dll
2013-03-14 00:32:10 ----A---- C:\windows\SYSWOW64\ieUnatt.exe
2013-03-14 00:32:10 ----A---- C:\windows\system32\url.dll
2013-03-14 00:32:09 ----A---- C:\windows\SYSWOW64\urlmon.dll
2013-03-14 00:32:09 ----A---- C:\windows\system32\urlmon.dll
2013-03-14 00:32:08 ----A---- C:\windows\system32\jscript9.dll
2013-03-14 00:32:07 ----A---- C:\windows\SYSWOW64\msfeeds.dll
2013-03-14 00:32:07 ----A---- C:\windows\system32\msfeeds.dll
2013-03-14 00:32:06 ----A---- C:\windows\SYSWOW64\wininet.dll
2013-03-14 00:32:05 ----A---- C:\windows\system32\wininet.dll
2013-03-14 00:32:04 ----A---- C:\windows\SYSWOW64\jscript9.dll
2013-03-14 00:32:04 ----A---- C:\windows\SYSWOW64\jscript.dll
2013-03-14 00:32:04 ----A---- C:\windows\system32\vbscript.dll
2013-03-14 00:32:04 ----A---- C:\windows\system32\jsproxy.dll
2013-03-14 00:32:03 ----A---- C:\windows\system32\jscript.dll
2013-03-14 00:32:02 ----A---- C:\windows\SYSWOW64\jsproxy.dll
2013-03-14 00:32:02 ----A---- C:\windows\SYSWOW64\iertutil.dll
2013-03-14 00:32:02 ----A---- C:\windows\system32\iertutil.dll
2013-03-14 00:31:59 ----A---- C:\windows\SYSWOW64\mshtml.dll
2013-03-14 00:31:54 ----A---- C:\windows\system32\mshtml.dll
2013-03-14 00:31:53 ----A---- C:\windows\system32\ieframe.dll
2013-03-14 00:31:52 ----A---- C:\windows\SYSWOW64\ieframe.dll
2013-03-14 00:29:28 ----D---- C:\Program Files\Microsoft Silverlight
2013-03-14 00:29:27 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2013-03-12 12:41:31 ----D---- C:\ProgramData\Samsung
2013-03-11 18:10:30 ----D---- C:\Program Files (x86)\Seznam.cz
2013-03-11 18:10:03 ----D---- C:\Users\Madlenka\AppData\Roaming\Seznam.cz
2013-03-11 18:07:47 ----D---- C:\Program Files\GIMP 2
2013-02-27 17:32:32 ----A---- C:\windows\SYSWOW64\msmpeg2vdec.dll
2013-02-27 17:32:31 ----A---- C:\windows\SYSWOW64\UIAnimation.dll
2013-02-27 17:32:31 ----A---- C:\windows\system32\UIAnimation.dll
2013-02-27 17:32:31 ----A---- C:\windows\system32\msmpeg2vdec.dll
2013-02-27 17:32:29 ----A---- C:\windows\SYSWOW64\WMPhoto.dll
2013-02-27 17:32:29 ----A---- C:\windows\system32\WMPhoto.dll
2013-02-27 17:32:27 ----AH---- C:\windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2013-02-27 17:32:27 ----AH---- C:\windows\SYSWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll
2013-02-27 17:32:27 ----AH---- C:\windows\SYSWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2013-02-27 17:32:27 ----AH---- C:\windows\SYSWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll
2013-02-27 17:32:27 ----AH---- C:\windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2013-02-27 17:32:27 ----AH---- C:\windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2013-02-27 17:32:27 ----AH---- C:\windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2013-02-27 17:32:27 ----AH---- C:\windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2013-02-27 17:32:27 ----A---- C:\windows\SYSWOW64\d3d10warp.dll
2013-02-27 17:32:27 ----A---- C:\windows\SYSWOW64\d3d10_1.dll
2013-02-27 17:32:27 ----A---- C:\windows\system32\XpsGdiConverter.dll
2013-02-27 17:32:27 ----A---- C:\windows\system32\d3d10warp.dll
2013-02-27 17:32:27 ----A---- C:\windows\system32\d3d10_1.dll
2013-02-27 17:32:26 ----AH---- C:\windows\SYSWOW64\api-ms-win-downlevel-version-l1-1-0.dll
2013-02-27 17:32:26 ----AH---- C:\windows\SYSWOW64\api-ms-win-downlevel-user32-l1-1-0.dll
2013-02-27 17:32:26 ----AH---- C:\windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2013-02-27 17:32:26 ----AH---- C:\windows\SYSWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
2013-02-27 17:32:26 ----AH---- C:\windows\SYSWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll
2013-02-27 17:32:26 ----AH---- C:\windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2013-02-27 17:32:26 ----AH---- C:\windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2013-02-27 17:32:26 ----AH---- C:\windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2013-02-27 17:32:26 ----AH---- C:\windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2013-02-27 17:32:26 ----AH---- C:\windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2013-02-27 17:32:26 ----A---- C:\windows\SYSWOW64\XpsPrint.dll
2013-02-27 17:32:26 ----A---- C:\windows\SYSWOW64\XpsGdiConverter.dll
2013-02-27 17:32:26 ----A---- C:\windows\SYSWOW64\dxgi.dll
2013-02-27 17:32:26 ----A---- C:\windows\SYSWOW64\d3d11.dll
2013-02-27 17:32:26 ----A---- C:\windows\SYSWOW64\d3d10level9.dll
2013-02-27 17:32:26 ----A---- C:\windows\SYSWOW64\d3d10core.dll
2013-02-27 17:32:26 ----A---- C:\windows\SYSWOW64\d3d10_1core.dll
2013-02-27 17:32:26 ----A---- C:\windows\SYSWOW64\d3d10.dll
2013-02-27 17:32:26 ----A---- C:\windows\system32\dxgi.dll
2013-02-27 17:32:26 ----A---- C:\windows\system32\d3d11.dll
2013-02-27 17:32:26 ----A---- C:\windows\system32\d3d10level9.dll
2013-02-27 17:32:26 ----A---- C:\windows\system32\d3d10core.dll
2013-02-27 17:32:26 ----A---- C:\windows\system32\d3d10_1core.dll
2013-02-27 17:32:26 ----A---- C:\windows\system32\d3d10.dll
2013-02-27 17:32:25 ----A---- C:\windows\SYSWOW64\WindowsCodecsExt.dll
2013-02-27 17:32:25 ----A---- C:\windows\SYSWOW64\WindowsCodecs.dll
2013-02-27 17:32:25 ----A---- C:\windows\SYSWOW64\DWrite.dll
2013-02-27 17:32:25 ----A---- C:\windows\SYSWOW64\d2d1.dll
2013-02-27 17:32:25 ----A---- C:\windows\system32\XpsPrint.dll
2013-02-27 17:32:25 ----A---- C:\windows\system32\WindowsCodecsExt.dll
2013-02-27 17:32:25 ----A---- C:\windows\system32\WindowsCodecs.dll
2013-02-27 17:32:25 ----A---- C:\windows\system32\FntCache.dll
2013-02-27 17:32:25 ----A---- C:\windows\system32\DWrite.dll
2013-02-27 17:32:25 ----A---- C:\windows\system32\d2d1.dll
======List of files/folders modified in the last 1 months======
2013-03-25 23:24:24 ----D---- C:\windows\SYSWOW64\AHS_S1_screensaver dir
2013-03-25 23:24:09 ----RD---- C:\Program Files (x86)
2013-03-25 23:24:08 ----D---- C:\windows\Temp
2013-03-25 22:58:10 ----D---- C:\windows\Downloaded Program Files
2013-03-25 22:39:01 ----RD---- C:\Program Files
2013-03-25 22:30:23 ----D---- C:\windows\Logs
2013-03-25 22:29:24 ----D---- C:\windows\winsxs
2013-03-25 22:29:14 ----D---- C:\windows\system32\catroot2
2013-03-25 22:29:14 ----D---- C:\windows\system32\catroot
2013-03-25 22:20:52 ----D---- C:\Windows
2013-03-25 22:19:53 ----D---- C:\windows\Prefetch
2013-03-25 22:19:18 ----D---- C:\Program Files\NVIDIA Corporation
2013-03-25 22:19:16 ----D---- C:\windows\System32
2013-03-25 22:19:15 ----D---- C:\windows\system32\drivers
2013-03-25 22:19:15 ----D---- C:\windows\inf
2013-03-25 22:19:13 ----D---- C:\windows\system32\DriverStore
2013-03-25 22:13:25 ----A---- C:\windows\system32\PerfStringBackup.INI
2013-03-25 22:08:47 ----D---- C:\windows\system32\config
2013-03-25 22:08:44 ----A---- C:\windows\SYSWOW64\log.txt
2013-03-18 09:10:16 ----D---- C:\ProgramData\Adobe
2013-03-16 18:13:42 ----D---- C:\windows\rescache
2013-03-15 10:06:11 ----SD---- C:\Users\Madlenka\AppData\Roaming\Microsoft
2013-03-15 10:06:11 ----D---- C:\Users\Madlenka\AppData\Roaming\Adobe
2013-03-15 08:57:48 ----SHD---- C:\windows\Installer
2013-03-15 08:57:00 ----D---- C:\windows\SysWOW64
2013-03-15 08:56:21 ----D---- C:\Program Files (x86)\Common Files
2013-03-14 05:50:37 ----D---- C:\windows\SYSWOW64\migration
2013-03-14 05:50:37 ----D---- C:\windows\system32\migration
2013-03-14 05:50:37 ----D---- C:\windows\AppPatch
2013-03-14 05:50:37 ----D---- C:\Program Files (x86)\Internet Explorer
2013-03-14 05:50:36 ----D---- C:\Program Files\Internet Explorer
2013-03-14 00:35:49 ----A---- C:\windows\system32\MRT.exe
2013-03-14 00:35:44 ----D---- C:\ProgramData\Microsoft Help
2013-03-12 12:41:31 ----HD---- C:\ProgramData
2013-03-03 08:37:13 ----A---- C:\windows\SYSWOW64\FlashPlayerApp.exe
2013-02-27 18:50:12 ----D---- C:\windows\SYSWOW64\zh-HK
2013-02-27 18:50:12 ----D---- C:\windows\SYSWOW64\pt-PT
2013-02-27 18:50:12 ----D---- C:\windows\SYSWOW64\pt-BR
2013-02-27 18:50:12 ----D---- C:\windows\SYSWOW64\pl-PL
2013-02-27 18:50:12 ----D---- C:\windows\SYSWOW64\nl-NL
2013-02-27 18:50:12 ----D---- C:\windows\SYSWOW64\ko-KR
2013-02-27 18:50:12 ----D---- C:\windows\SYSWOW64\it-IT
2013-02-27 18:50:12 ----D---- C:\windows\SYSWOW64\hu-HU
2013-02-27 18:50:12 ----D---- C:\windows\SYSWOW64\fr-FR
2013-02-27 18:50:12 ----D---- C:\windows\SYSWOW64\el-GR
2013-02-27 18:50:11 ----D---- C:\windows\SYSWOW64\zh-TW
2013-02-27 18:50:11 ----D---- C:\windows\SYSWOW64\zh-CN
2013-02-27 18:50:11 ----D---- C:\windows\SYSWOW64\tr-TR
2013-02-27 18:50:11 ----D---- C:\windows\SYSWOW64\sv-SE
2013-02-27 18:50:11 ----D---- C:\windows\SYSWOW64\ru-RU
2013-02-27 18:50:11 ----D---- C:\windows\SYSWOW64\nb-NO
2013-02-27 18:50:11 ----D---- C:\windows\SYSWOW64\ja-JP
2013-02-27 18:50:11 ----D---- C:\windows\SYSWOW64\fi-FI
2013-02-27 18:50:11 ----D---- C:\windows\SYSWOW64\es-ES
2013-02-27 18:50:11 ----D---- C:\windows\SYSWOW64\en-US
2013-02-27 18:50:11 ----D---- C:\windows\SYSWOW64\de-DE
2013-02-27 18:50:11 ----D---- C:\windows\SYSWOW64\da-DK
2013-02-27 18:50:11 ----D---- C:\windows\SYSWOW64\cs-CZ
2013-02-27 18:50:10 ----D---- C:\windows\system32\zh-HK
2013-02-27 18:50:10 ----D---- C:\windows\system32\pt-PT
2013-02-27 18:50:10 ----D---- C:\windows\system32\pt-BR
2013-02-27 18:50:10 ----D---- C:\windows\system32\pl-PL
2013-02-27 18:50:10 ----D---- C:\windows\system32\ko-KR
2013-02-27 18:50:10 ----D---- C:\windows\system32\it-IT
2013-02-27 18:50:10 ----D---- C:\windows\system32\hu-HU
2013-02-27 18:50:10 ----D---- C:\windows\system32\el-GR
2013-02-27 18:50:09 ----D---- C:\windows\system32\zh-TW
2013-02-27 18:50:09 ----D---- C:\windows\system32\zh-CN
2013-02-27 18:50:09 ----D---- C:\windows\system32\tr-TR
2013-02-27 18:50:09 ----D---- C:\windows\system32\sv-SE
2013-02-27 18:50:09 ----D---- C:\windows\system32\ru-RU
2013-02-27 18:50:09 ----D---- C:\windows\system32\nl-NL
2013-02-27 18:50:09 ----D---- C:\windows\system32\nb-NO
2013-02-27 18:50:09 ----D---- C:\windows\system32\ja-JP
2013-02-27 18:50:09 ----D---- C:\windows\system32\fr-FR
2013-02-27 18:50:09 ----D---- C:\windows\system32\fi-FI
2013-02-27 18:50:09 ----D---- C:\windows\system32\es-ES
2013-02-27 18:50:09 ----D---- C:\windows\system32\de-DE
2013-02-27 18:50:09 ----D---- C:\windows\system32\cs-CZ
2013-02-27 18:50:08 ----D---- C:\windows\system32\en-US
2013-02-27 18:50:08 ----D---- C:\windows\system32\da-DK
2013-02-27 08:49:17 ----D---- C:\Program Files\Microsoft Security Client
2013-02-27 08:49:16 ----D---- C:\Program Files (x86)\Microsoft Security Client
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 iaStor;Intel AHCI Controller; C:\windows\system32\DRIVERS\iaStor.sys [2010-03-03 540696]
R0 LHDmgr;LHDmgr; C:\windows\System32\DRIVERS\LhdX64.sys [2010-01-15 39008]
R0 MpFilter;Microsoft Malware Protection Driver; C:\windows\system32\DRIVERS\MpFilter.sys [2013-01-20 230320]
R0 rdyboost;ReadyBoost; C:\windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R1 vwififlt;Virtual WiFi Filter Driver; C:\windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 NisDrv;Microsoft Network Inspection System; C:\windows\system32\DRIVERS\NisDrvWFP.sys [2013-01-20 130008]
R3 ACPIVPC;Lenovo Virtual Power Controller Driver; C:\windows\system32\DRIVERS\AcpiVpc.sys [2009-10-19 28176]
R3 BCM43XX;Broadcom 802.11 Network Adapter Driver; C:\windows\system32\DRIVERS\bcmwl664.sys [2010-06-18 4170304]
R3 CnxtHdAudService;Conexant UAA Function Driver for High Definition Audio Service; C:\windows\system32\drivers\CHDRT64.sys [2010-01-18 717368]
R3 ETD;ELAN PS/2 Port Input Device; C:\windows\system32\DRIVERS\ETD.sys [2010-06-24 167816]
R3 HECIx64;Intel(R) Management Engine Interface; C:\windows\system32\DRIVERS\HECIx64.sys [2009-09-17 56344]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\windows\system32\drivers\nvhda64v.sys [2013-02-18 189288]
R3 RTL8167;Realtek 8167 NT Driver; C:\windows\system32\DRIVERS\Rt64win7.sys [2011-06-10 539240]
R3 usbsmi;Lenovo EasyCamera; C:\windows\system32\DRIVERS\SMIksdrv.sys [2010-04-20 200704]
R3 wdmirror;wdmirror; C:\windows\system32\DRIVERS\WDMirror.sys [2009-07-16 11280]
S3 Bridge0;Bridge0; C:\windows\system32\drivers\WDBridge.sys [2009-07-16 79376]
S3 BthEnum;Ovladač pro Bluetooth Request Block; C:\windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
S3 BthPan;Bluetooth Device (Personal Area Network); C:\windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
S3 BTHPORT;Ovladač portu Bluetooth; C:\windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
S3 btusbflt;Bluetooth USB Filter; C:\windows\system32\drivers\btusbflt.sys [2009-07-01 52264]
S3 btwaudio;Bluetooth Audio Device Service; C:\windows\system32\drivers\btwaudio.sys [2009-07-01 98344]
S3 btwavdt;Bluetooth AVDT Service; C:\windows\system32\DRIVERS\btwavdt.sys [2009-07-01 132648]
S3 btwl2cap;Bluetooth L2CAP Service; C:\windows\system32\DRIVERS\btwl2cap.sys [2009-04-07 35104]
S3 btwrchid;btwrchid; C:\windows\system32\DRIVERS\btwrchid.sys [2009-07-01 21160]
S3 igfx;igfx; C:\windows\system32\DRIVERS\igdkmd64.sys [2009-06-10 6108416]
S3 k57nd60a;Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0; C:\windows\system32\DRIVERS\k57nd60a.sys [2009-06-10 270848]
S3 netw5v64;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 64 Bit; C:\windows\system32\DRIVERS\netw5v64.sys [2009-06-10 5434368]
S3 nmwcd;Nokia USB Phone Parent Driver; C:\windows\system32\drivers\ccdcmbx64.sys [2012-06-11 19968]
S3 nmwcdc;Nokia USB Communication Driver; C:\windows\system32\drivers\ccdcmbox64.sys [2012-06-11 27136]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\windows\system32\DRIVERS\pccsmcfdx64.sys [2012-06-27 26112]
S3 pciide;pciide; C:\windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader; C:\windows\System32\Drivers\RtsUStor.sys [2010-03-12 242720]
S3 TsUsbFlt;TsUsbFlt; C:\windows\system32\drivers\tsusbflt.sys [2010-11-20 59392]
S3 upperdev;upperdev; C:\windows\system32\DRIVERS\usbser_lowerfltx64.sys [2012-06-11 9216]
S3 usb_rndisx;Adaptér USB RNDIS; C:\windows\system32\drivers\usb8023x.sys [2013-02-12 19968]
S3 usbser;USB Modem Driver; C:\windows\system32\drivers\usbser.sys [2010-11-20 32768]
S3 UsbserFilt;UsbserFilt; C:\windows\system32\DRIVERS\usbser_lowerfltjx64.sys [2012-06-11 9216]
S3 WimFltr;WimFltr; C:\windows\system32\DRIVERS\wimfltr.sys [2008-08-06 151656]
S3 WinUsb;WinUsb; C:\windows\system32\DRIVERS\WinUsb.sys [2010-11-20 41984]
S3 wsvd;wsvd; C:\windows\system32\DRIVERS\wsvd.sys [2009-07-21 121840]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2010-03-03 13336]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2009-12-09 268824]
R2 MsMpSvc;Microsoft Antimalware Service; c:\Program Files\Microsoft Security Client\MsMpEng.exe [2013-01-27 22056]
R2 nvsvc;NVIDIA Display Driver Service; C:\windows\system32\nvvsvc.exe [2010-05-07 392296]
R2 RapiMgr;@%windir%\WindowsMobile\rapimgr.dll,-104; C:\windows\system32\svchost.exe [2009-07-14 27136]
R2 UNS;Intel(R) Management & Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2009-12-09 2320920]
R2 WcesComm;@%windir%\WindowsMobile\wcescomm.dll,-40079; C:\windows\system32\svchost.exe [2009-07-14 27136]
R3 NisSrv;@c:\Program Files\Microsoft Security Client\MpAsDesc.dll,-243; c:\Program Files\Microsoft Security Client\NisSrv.exe [2013-01-27 379360]
R3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 ReadyComm.DirectRouter;ReadyComm.DirectRouter; C:\windows\System32\IgrsSvcs.exe -k IgrsSvcs []
S3 IGRS;IGRS; C:\Program Files (x86)\Lenovo\ReadyComm\common\IGRS.exe [2009-07-14 38152]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files\Microsoft Office\Office14\GROOVE.EXE [2012-09-20 50899608]
S3 ose64;Office 64 Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 174440]
S3 PS_MDP;ReadyComm Presentation Space Helper Service; C:\windows\System32\IgrsSvcs.exe -k IgrsSvcs []
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\windows\system32\Wat\WatAdminSvc.exe [2011-04-22 1255736]
S4 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-12-18 65192]
S4 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-03-03 251248]
S4 btwdins;Bluetooth Service; C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe [2009-08-11 864032]
S4 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-09-17 136176]
S4 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-09-17 136176]
S4 Lenovo ReadyComm AppSvc;Lenovo ReadyComm AppSvc; C:\Program Files\Lenovo\ReadyComm\AppSvc.exe [2009-08-14 509192]
S4 Lenovo ReadyComm ConnSvc;Lenovo ReadyComm ConnSvc; C:\Program Files\Lenovo\ReadyComm\ConnSvc.exe [2009-09-22 579400]
S4 ServiceLayer;ServiceLayer; C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe [2012-10-03 725400]
S4 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2012-07-13 160944]
S4 wlcrasvc;Windows Live Mesh remote connections service; C:\Program Files\Windows Live\Mesh\wlcrasvc.exe [2010-09-22 57184]
S4 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2010-09-21 2286976]
-----------------EOF-----------------