Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

PC - velmi pomálé reakce , prohližeč také línej

Nemáte v tuto chvíli žádný problém s pc a chcete se jen ujistit, že je vše v pořádku?
Vložte log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zamčeno
Zpráva
Autor
GlobalCZ
Návštěvník
Návštěvník
Příspěvky: 23
Registrován: 17 led 2013 21:36

PC - velmi pomálé reakce , prohližeč také línej

#1 Příspěvek od GlobalCZ »

Reinstaloval sem windowsi a po několika dnech běhu pc se začali projejovat známky lenosti ... kliknu na spuštění třeba google chrome a trvá to docela dost dlouho pak například taky načítání stránky trvá ,,hodinu".

Logfile of random's system information tool 1.09 (written by random/random)
Run by Global at 2013-04-14 18:34:03
Microsoft Windows 7 Ultimate
System drive C: has 382 GB (40%) free of 954 GB
Total RAM: 8173 MB (59% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 18:34:19, on 14.4.2013
Platform: Windows 7 (WinNT 6.00.3504)
MSIE: Internet Explorer v8.00 (8.00.7600.16385)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Users\Global\AppData\Roaming\uTorrent\uTorrent.exe
C:\Users\Global\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\ProgramData\BrowserProtect\2.6.1125.80\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserProtect.exe
C:\Program Files (x86)\DAEMON Tools Lite\DTShellHlp.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Windows Media Player\wmplayer.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Microsoft Games\Train Simulator\train.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Global.exe
C:\Windows\SysWOW64\rundll32.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www1.delta-search.com/?affID=119 ... 2B34A1CD7F
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [AMD AVT] Cmd.exe /c start "AMD Accelerated Video Transcoding device initialization" /min "C:\Program Files (x86)\AMD AVT\bin\kdbsync.exe" aml
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [Pando Media Booster] C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "C:\Users\Global\AppData\Roaming\Seznam.cz\szninstall.exe" -c
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "C:\Users\Global\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
O4 - HKCU\..\Run: [uTorrent] "C:\Users\Global\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: c:\progra~3\browse~1\261125~1.80\{c16c1~1\browse~1.dll
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: BrowserProtect - Unknown owner - C:\ProgramData\BrowserProtect\2.6.1125.80\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserProtect.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Hi-Rez Studios Authenticate and Update Service (HiPatchService) - Hi-Rez Studios - C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype C2C Service - Skype Technologies S.A. - C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 8985 bytes

======Listing Processes======

\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
atieclxx
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe" /launchService
C:\ProgramData\BrowserProtect\2.6.1125.80\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserProtect.exe
"C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe"
"C:\Windows\system32\schtasks.exe" /create /tn "BrowserProtect" /ru "SYSTEM" /sc minute /mo 1 /tr "C:\Windows\system32\sc.exe start BrowserProtect" /st 00:00:00
\??\C:\Windows\system32\conhost.exe
"C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe"
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
"C:\Program Files\Windows Sidebar\sidebar.exe" /autoRun
"C:\Users\Global\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED
szndesktop.exe default start
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\ProgramData\BrowserProtect\2.6.1125.80\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserProtect.exe" /PROTECT
"C:\Users\Global\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe"
\??\C:\Windows\system32\conhost.exe
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM" PriorityLow
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
"C:\Program Files (x86)\DAEMON Tools Lite\DTShellHlp.exe"
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\Windows\System32\svchost.exe -k secsvcs
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="4800.0.977174344\216206909" --supports-dual-gpus=false --gpu-vendor-id=0x1002 --gpu-device-id=0x9490 --gpu-driver-vendor="Advanced Micro Devices, Inc." --gpu-driver-version=8.970.100.7000 --ignored=" --type=renderer " /prefetch:12
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=AutocompleteDynamicTrial_0/LiveSpellingExperiment/BookmarkPrompt/Disabled/ForceCompositingMode/thread/InfiniteCache/No/OmniboxHQPUseCursorPosition/Standard/OmniboxSearchSuggestTrialStarted2013Q1/19/OneClickSignIn/Standard/OverlappedReadImpact/OverlappedReadDisabled/Prerender/PrerenderEnabled/PrerenderLocalPredictor/Disabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Session-Randomized-Uniformity-Trial-5-Percent/default/UMA-Uniformity-Trial-1-Percent/group_23/UMA-Uniformity-Trial-10-Percent/group_05/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_01/UMA-Uniformity-Trial-50-Percent/default/ --extension-process --renderer-print-preview --enable-threaded-compositing --channel="4800.1.1202260161\2139269160" /prefetch:3
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=AutocompleteDynamicTrial_0/LiveSpellingExperiment/BookmarkPrompt/Disabled/ForceCompositingMode/thread/InfiniteCache/No/NewMenuStyle/NewStyle/OmniboxHQPReplaceHUPProhibitTrumpingInlineableResult/Standard/OmniboxHQPUseCursorPosition/Standard/OmniboxSearchSuggestTrialStarted2013Q1/19/OneClickSignIn/Standard/OverlappedReadImpact/OverlappedReadDisabled/Prerender/PrerenderEnabled/PrerenderLocalPredictor/Disabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Session-Randomized-Uniformity-Trial-5-Percent/default/UMA-Uniformity-Trial-1-Percent/group_23/UMA-Uniformity-Trial-10-Percent/group_05/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_01/UMA-Uniformity-Trial-50-Percent/default/ --renderer-print-preview --enable-threaded-compositing --channel="4800.3.2007408139\900088311" /prefetch:3
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=AutocompleteDynamicTrial_0/LiveSpellingExperiment/BookmarkPrompt/Disabled/ForceCompositingMode/thread/InfiniteCache/No/NewMenuStyle/NewStyle/OmniboxHQPReplaceHUPProhibitTrumpingInlineableResult/Standard/OmniboxHQPUseCursorPosition/Standard/OmniboxSearchSuggestTrialStarted2013Q1/19/OneClickSignIn/Standard/OverlappedReadImpact/OverlappedReadDisabled/Prerender/PrerenderEnabled/PrerenderLocalPredictor/Disabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Session-Randomized-Uniformity-Trial-5-Percent/default/UMA-Uniformity-Trial-1-Percent/group_23/UMA-Uniformity-Trial-10-Percent/group_05/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_01/UMA-Uniformity-Trial-50-Percent/default/ --renderer-print-preview --enable-threaded-compositing --channel="4800.4.425170844\674665440" /prefetch:3
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=AutocompleteDynamicTrial_0/LiveSpellingExperiment/BookmarkPrompt/Disabled/ForceCompositingMode/thread/InfiniteCache/No/NewMenuStyle/NewStyle/NewTabButton/default/OmniboxHQPReplaceHUPProhibitTrumpingInlineableResult/Standard/OmniboxHQPUseCursorPosition/Standard/OmniboxSearchSuggestTrialStarted2013Q1/19/OneClickSignIn/Standard/OverlappedReadImpact/OverlappedReadDisabled/Prerender/PrerenderEnabled/PrerenderLocalPredictor/Disabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Session-Randomized-Uniformity-Trial-5-Percent/default/UMA-Uniformity-Trial-1-Percent/group_23/UMA-Uniformity-Trial-10-Percent/group_05/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_01/UMA-Uniformity-Trial-50-Percent/default/ --renderer-print-preview --enable-threaded-compositing --channel="4800.5.241594063\1990602377" /prefetch:3
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=AutocompleteDynamicTrial_0/LiveSpellingExperiment/BookmarkPrompt/Disabled/ForceCompositingMode/thread/InfiniteCache/No/NewMenuStyle/NewStyle/NewTabButton/default/OmniboxHQPReplaceHUPProhibitTrumpingInlineableResult/Standard/OmniboxHQPUseCursorPosition/Standard/OmniboxSearchSuggestTrialStarted2013Q1/19/OneClickSignIn/Standard/OverlappedReadImpact/OverlappedReadDisabled/Prerender/PrerenderEnabled/PrerenderLocalPredictor/Disabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Session-Randomized-Uniformity-Trial-5-Percent/default/UMA-Uniformity-Trial-1-Percent/group_23/UMA-Uniformity-Trial-10-Percent/group_05/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_01/UMA-Uniformity-Trial-50-Percent/default/ --renderer-print-preview --enable-threaded-compositing --channel="4800.6.618379691\819422919" /prefetch:3
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=AutocompleteDynamicTrial_0/LiveSpellingExperiment/BookmarkPrompt/Disabled/ForceCompositingMode/thread/InfiniteCache/No/NewMenuStyle/NewStyle/NewTabButton/default/OmniboxHQPReplaceHUPProhibitTrumpingInlineableResult/Standard/OmniboxHQPUseCursorPosition/Standard/OmniboxSearchSuggestTrialStarted2013Q1/19/OneClickSignIn/Standard/OverlappedReadImpact/OverlappedReadDisabled/Prerender/PrerenderEnabled/PrerenderLocalPredictor/Disabled/SpdyCwnd/cwndDynamic/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Session-Randomized-Uniformity-Trial-5-Percent/default/UMA-Uniformity-Trial-1-Percent/group_23/UMA-Uniformity-Trial-10-Percent/group_05/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_01/UMA-Uniformity-Trial-50-Percent/default/ --renderer-print-preview --enable-threaded-compositing --channel="4800.7.2079529595\771632751" /prefetch:3
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=AutocompleteDynamicTrial_0/LiveSpellingExperiment/BookmarkPrompt/Disabled/ForceCompositingMode/thread/InfiniteCache/No/NewMenuStyle/NewStyle/NewTabButton/default/OmniboxHQPReplaceHUPProhibitTrumpingInlineableResult/Standard/OmniboxHQPUseCursorPosition/Standard/OmniboxSearchSuggestTrialStarted2013Q1/19/OneClickSignIn/Standard/OverlappedReadImpact/OverlappedReadDisabled/Prerender/PrerenderEnabled/PrerenderLocalPredictor/Disabled/SpdyCwnd/cwndDynamic/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Session-Randomized-Uniformity-Trial-5-Percent/default/UMA-Uniformity-Trial-1-Percent/group_23/UMA-Uniformity-Trial-10-Percent/group_05/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_01/UMA-Uniformity-Trial-50-Percent/default/ --renderer-print-preview --enable-threaded-compositing --channel="4800.10.2002797814\39320204" /prefetch:3
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=AutocompleteDynamicTrial_0/LiveSpellingExperiment/BookmarkPrompt/Disabled/ForceCompositingMode/thread/InfiniteCache/No/NewMenuStyle/NewStyle/NewTabButton/default/OmniboxHQPNewScoringMax1400/Standard/OmniboxHQPOnlyCountMatchesAtWordBoundaries/Standard/OmniboxHQPReplaceHUPProhibitTrumpingInlineableResult/Standard/OmniboxHQPUseCursorPosition/Standard/OmniboxSearchSuggestTrialStarted2013Q1/19/OneClickSignIn/Standard/OverlappedReadImpact/OverlappedReadDisabled/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictor/Disabled/SpdyCwnd/cwndDynamic/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Session-Randomized-Uniformity-Trial-5-Percent/default/UMA-Uniformity-Trial-1-Percent/group_23/UMA-Uniformity-Trial-10-Percent/group_05/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_01/UMA-Uniformity-Trial-50-Percent/default/ --renderer-print-preview --enable-threaded-compositing --channel="4800.13.1185123488\1500875567" /prefetch:3
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=ppapi --channel="4800.14.1528570403\1454778032" --lang=cs --ignored=" --type=renderer " /prefetch:13
"C:\Program Files (x86)\Windows Media Player\wmplayer.exe" /Play -Embedding
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=AutocompleteDynamicTrial_0/LiveSpellingExperiment/BookmarkPrompt/Disabled/ForceCompositingMode/thread/InfiniteCache/No/NewMenuStyle/NewStyle/NewTabButton/default/OmniboxHQPNewScoringMax1400/Standard/OmniboxHQPOnlyCountMatchesAtWordBoundaries/Standard/OmniboxHQPReplaceHUPProhibitTrumpingInlineableResult/Standard/OmniboxHQPUseCursorPosition/Standard/OmniboxSearchSuggestTrialStarted2013Q1/19/OneClickSignIn/Standard/OverlappedReadImpact/OverlappedReadDisabled/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictor/Disabled/SpdyCwnd/cwndDynamic/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Session-Randomized-Uniformity-Trial-5-Percent/default/UMA-Uniformity-Trial-1-Percent/group_23/UMA-Uniformity-Trial-10-Percent/group_05/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_01/UMA-Uniformity-Trial-50-Percent/default/ --renderer-print-preview --instant-process --enable-threaded-compositing --channel="4800.41.1187769979\1109835652" /prefetch:3
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=AutocompleteDynamicTrial_0/LiveSpellingExperiment/BookmarkPrompt/Disabled/ForceCompositingMode/thread/InfiniteCache/No/NewMenuStyle/NewStyle/NewTabButton/default/OmniboxHQPNewScoringMax1400/Standard/OmniboxHQPOnlyCountMatchesAtWordBoundaries/Standard/OmniboxHQPReplaceHUPProhibitTrumpingInlineableResult/Standard/OmniboxHQPUseCursorPosition/Standard/OmniboxSearchSuggestTrialStarted2013Q1/19/OneClickSignIn/Standard/OverlappedReadImpact/OverlappedReadDisabled/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictor/Disabled/SpdyCwnd/cwndDynamic/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Session-Randomized-Uniformity-Trial-5-Percent/default/UMA-Uniformity-Trial-1-Percent/group_23/UMA-Uniformity-Trial-10-Percent/group_05/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_01/UMA-Uniformity-Trial-50-Percent/default/ --renderer-print-preview --enable-threaded-compositing --channel="4800.58.1400635678\1288607385" /prefetch:3
"C:\Program Files (x86)\Microsoft Games\Train Simulator\train.exe" -dev:hal -toolset
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=AutocompleteDynamicTrial_0/LiveSpellingExperiment/BookmarkPrompt/Disabled/ForceCompositingMode/thread/InfiniteCache/No/NewMenuStyle/NewStyle/NewTabButton/default/OmniboxHQPNewScoringMax1400/Standard/OmniboxHQPOnlyCountMatchesAtWordBoundaries/Standard/OmniboxHQPReplaceHUPProhibitTrumpingInlineableResult/Standard/OmniboxHQPUseCursorPosition/Standard/OmniboxSearchSuggestTrialStarted2013Q1/19/OneClickSignIn/Standard/OverlappedReadImpact/OverlappedReadDisabled/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictor/Disabled/SpdyCwnd/cwndDynamic/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Session-Randomized-Uniformity-Trial-5-Percent/default/UMA-Uniformity-Trial-1-Percent/group_23/UMA-Uniformity-Trial-10-Percent/group_05/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_01/UMA-Uniformity-Trial-50-Percent/default/ --renderer-print-preview --enable-threaded-compositing --channel="4800.84.232910790\416047610" /prefetch:3
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=AutocompleteDynamicTrial_0/LiveSpellingExperiment/BookmarkPrompt/Disabled/ForceCompositingMode/thread/InfiniteCache/No/NewMenuStyle/NewStyle/NewTabButton/default/OmniboxHQPNewScoringMax1400/Standard/OmniboxHQPOnlyCountMatchesAtWordBoundaries/Standard/OmniboxHQPReplaceHUPProhibitTrumpingInlineableResult/Standard/OmniboxHQPUseCursorPosition/Standard/OmniboxSearchSuggestTrialStarted2013Q1/19/OneClickSignIn/Standard/OverlappedReadImpact/OverlappedReadDisabled/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictor/Disabled/SpdyCwnd/cwndDynamic/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Session-Randomized-Uniformity-Trial-5-Percent/default/UMA-Uniformity-Trial-1-Percent/group_23/UMA-Uniformity-Trial-10-Percent/group_05/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_01/UMA-Uniformity-Trial-50-Percent/default/ --renderer-print-preview --enable-threaded-compositing --channel="4800.88.1422166338\2114300105" /prefetch:3
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\System32\svchost.exe -k WerSvcGroup
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=AutocompleteDynamicTrial_0/LiveSpellingExperiment/BookmarkPrompt/Disabled/ForceCompositingMode/thread/InfiniteCache/No/NewMenuStyle/NewStyle/NewTabButton/default/OmniboxHQPNewScoringMax1400/Standard/OmniboxHQPOnlyCountMatchesAtWordBoundaries/Standard/OmniboxHQPReplaceHUPProhibitTrumpingInlineableResult/Standard/OmniboxHQPUseCursorPosition/Standard/OmniboxSearchSuggestTrialStarted2013Q1/19/OneClickSignIn/Standard/OverlappedReadImpact/OverlappedReadDisabled/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictor/Disabled/SpdyCwnd/cwndDynamic/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Session-Randomized-Uniformity-Trial-5-Percent/default/UMA-Uniformity-Trial-1-Percent/group_23/UMA-Uniformity-Trial-10-Percent/group_05/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_01/UMA-Uniformity-Trial-50-Percent/default/ --renderer-print-preview --enable-threaded-compositing --channel="4800.90.209235259\660419689" /prefetch:3
"C:\Users\Global\Downloads\RSITx64.exe"

======Scheduled tasks folder======

C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype add-on for Internet Explorer - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2013-03-19 6305912]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2013-04-06 461216]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Browser Helper - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2013-03-19 4529272]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2013-04-06 170912]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2012-06-11 12503184]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2013-02-28 18672232]
"Pando Media Booster"=C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe [2013-04-07 4288048]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2009-07-14 1475072]
"cz.seznam.software.autoupdate"=C:\Users\Global\AppData\Roaming\Seznam.cz\szninstall.exe [2013-03-21 1061960]
"cz.seznam.software.szndesktop"=C:\Users\Global\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [2013-03-19 92664]
"uTorrent"=C:\Users\Global\AppData\Roaming\uTorrent\uTorrent.exe [2013-04-07 1051984]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2013-03-14 3672640]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2012-07-03 252848]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2012-11-16 641704]
"AMD AVT"=Cmd.exe /c start AMD Accelerated Video Transcoding device initialization /min C:\Program Files (x86)\AMD AVT\bin\kdbsync.exe aml []
"seznam-listicka-distribuce"=C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [2013-03-21 1061960]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2013-04-14 18:28:04 ----D---- C:\Program Files\trend micro
2013-04-13 12:18:12 ----D---- C:\Program Files (x86)\Microsoft Games
2013-04-12 10:31:34 ----A---- C:\Users\Global\AppData\Roaming\BabMaint.exe
2013-04-11 19:39:44 ----D---- C:\Program Files (x86)\ConBuilder
2013-04-10 20:03:36 ----D---- C:\Windows\SYSWOW64\searchplugins
2013-04-10 20:03:36 ----D---- C:\Windows\SYSWOW64\Extensions
2013-04-10 20:03:34 ----D---- C:\ProgramData\BrowserProtect
2013-04-10 20:03:26 ----D---- C:\Users\Global\AppData\Roaming\BabSolution
2013-04-10 20:03:01 ----D---- C:\Users\Global\AppData\Roaming\Babylon
2013-04-10 20:03:01 ----D---- C:\ProgramData\Babylon
2013-04-10 19:17:06 ----A---- C:\Windows\system32\drivers\dtsoftbus01.sys
2013-04-10 19:17:05 ----D---- C:\Users\Global\AppData\Roaming\DAEMON Tools Lite
2013-04-10 19:17:03 ----D---- C:\Program Files (x86)\DAEMON Tools Lite
2013-04-10 19:16:43 ----D---- C:\ProgramData\DAEMON Tools Lite
2013-04-07 23:47:00 ----D---- C:\Users\Global\AppData\Roaming\Unity
2013-04-07 17:24:10 ----D---- C:\Users\Global\AppData\Roaming\uTorrent
2013-04-07 17:23:02 ----D---- C:\Program Files (x86)\Seznam.cz
2013-04-07 17:22:45 ----D---- C:\Users\Global\AppData\Roaming\WinRAR
2013-04-07 17:22:44 ----D---- C:\Users\Global\AppData\Roaming\Seznam.cz
2013-04-07 17:22:43 ----D---- C:\Program Files (x86)\WinRAR
2013-04-07 13:56:14 ----A---- C:\Windows\SYSWOW64\XAudio2_5.dll
2013-04-07 13:56:14 ----A---- C:\Windows\SYSWOW64\xactengine3_5.dll
2013-04-07 13:56:14 ----A---- C:\Windows\SYSWOW64\D3DCompiler_42.dll
2013-04-07 13:56:14 ----A---- C:\Windows\system32\XAudio2_5.dll
2013-04-07 13:56:14 ----A---- C:\Windows\system32\xactengine3_5.dll
2013-04-07 13:56:14 ----A---- C:\Windows\system32\D3DCompiler_42.dll
2013-04-07 13:56:13 ----A---- C:\Windows\SYSWOW64\d3dx11_42.dll
2013-04-07 13:56:13 ----A---- C:\Windows\SYSWOW64\d3dx10_42.dll
2013-04-07 13:56:13 ----A---- C:\Windows\SYSWOW64\d3dcsx_42.dll
2013-04-07 13:56:13 ----A---- C:\Windows\system32\d3dx11_42.dll
2013-04-07 13:56:13 ----A---- C:\Windows\system32\d3dx10_42.dll
2013-04-07 13:56:13 ----A---- C:\Windows\system32\d3dcsx_42.dll
2013-04-07 13:56:12 ----A---- C:\Windows\SYSWOW64\D3DX9_42.dll
2013-04-07 13:56:12 ----A---- C:\Windows\SYSWOW64\d3dx10_41.dll
2013-04-07 13:56:12 ----A---- C:\Windows\SYSWOW64\D3DCompiler_41.dll
2013-04-07 13:56:12 ----A---- C:\Windows\system32\D3DX9_42.dll
2013-04-07 13:56:12 ----A---- C:\Windows\system32\d3dx10_41.dll
2013-04-07 13:56:12 ----A---- C:\Windows\system32\D3DCompiler_41.dll
2013-04-07 13:56:11 ----A---- C:\Windows\SYSWOW64\D3DX9_41.dll
2013-04-07 13:56:11 ----A---- C:\Windows\system32\D3DX9_41.dll
2013-04-07 13:56:08 ----A---- C:\Windows\SYSWOW64\XAudio2_4.dll
2013-04-07 13:56:08 ----A---- C:\Windows\SYSWOW64\XAPOFX1_3.dll
2013-04-07 13:56:08 ----A---- C:\Windows\system32\XAudio2_4.dll
2013-04-07 13:56:08 ----A---- C:\Windows\system32\XAPOFX1_3.dll
2013-04-07 13:56:07 ----A---- C:\Windows\SYSWOW64\xactengine3_4.dll
2013-04-07 13:56:07 ----A---- C:\Windows\system32\xactengine3_4.dll
2013-04-07 13:56:05 ----A---- C:\Windows\SYSWOW64\X3DAudio1_6.dll
2013-04-07 13:56:05 ----A---- C:\Windows\SYSWOW64\d3dx10_40.dll
2013-04-07 13:56:05 ----A---- C:\Windows\SYSWOW64\D3DCompiler_40.dll
2013-04-07 13:56:05 ----A---- C:\Windows\system32\X3DAudio1_6.dll
2013-04-07 13:56:05 ----A---- C:\Windows\system32\d3dx10_40.dll
2013-04-07 13:56:05 ----A---- C:\Windows\system32\D3DCompiler_40.dll
2013-04-07 13:56:04 ----A---- C:\Windows\SYSWOW64\D3DX9_40.dll
2013-04-07 13:56:04 ----A---- C:\Windows\system32\D3DX9_40.dll
2013-04-07 13:56:02 ----A---- C:\Windows\SYSWOW64\XAudio2_3.dll
2013-04-07 13:56:02 ----A---- C:\Windows\SYSWOW64\XAPOFX1_2.dll
2013-04-07 13:56:02 ----A---- C:\Windows\system32\XAudio2_3.dll
2013-04-07 13:56:02 ----A---- C:\Windows\system32\XAPOFX1_2.dll
2013-04-07 13:56:00 ----A---- C:\Windows\SYSWOW64\xactengine3_3.dll
2013-04-07 13:56:00 ----A---- C:\Windows\SYSWOW64\X3DAudio1_5.dll
2013-04-07 13:56:00 ----A---- C:\Windows\system32\xactengine3_3.dll
2013-04-07 13:56:00 ----A---- C:\Windows\system32\X3DAudio1_5.dll
2013-04-07 13:55:58 ----A---- C:\Windows\system32\XAudio2_2.dll
2013-04-07 13:55:58 ----A---- C:\Windows\system32\XAPOFX1_1.dll
2013-04-07 13:55:57 ----A---- C:\Windows\SYSWOW64\xactengine3_2.dll
2013-04-07 13:55:57 ----A---- C:\Windows\system32\xactengine3_2.dll
2013-04-07 13:55:56 ----A---- C:\Windows\system32\d3dx10_39.dll
2013-04-07 13:55:56 ----A---- C:\Windows\system32\D3DCompiler_39.dll
2013-04-07 13:55:53 ----A---- C:\Windows\system32\D3DX9_39.dll
2013-04-07 13:55:52 ----A---- C:\Windows\SYSWOW64\XAudio2_1.dll
2013-04-07 13:55:52 ----A---- C:\Windows\SYSWOW64\XAPOFX1_0.dll
2013-04-07 13:55:52 ----A---- C:\Windows\system32\XAudio2_1.dll
2013-04-07 13:55:52 ----A---- C:\Windows\system32\XAPOFX1_0.dll
2013-04-07 13:55:51 ----A---- C:\Windows\SYSWOW64\xactengine3_1.dll
2013-04-07 13:55:51 ----A---- C:\Windows\SYSWOW64\X3DAudio1_4.dll
2013-04-07 13:55:51 ----A---- C:\Windows\SYSWOW64\d3dx10_38.dll
2013-04-07 13:55:51 ----A---- C:\Windows\SYSWOW64\D3DCompiler_38.dll
2013-04-07 13:55:51 ----A---- C:\Windows\system32\xactengine3_1.dll
2013-04-07 13:55:51 ----A---- C:\Windows\system32\X3DAudio1_4.dll
2013-04-07 13:55:51 ----A---- C:\Windows\system32\d3dx10_38.dll
2013-04-07 13:55:51 ----A---- C:\Windows\system32\D3DCompiler_38.dll
2013-04-07 13:55:49 ----A---- C:\Windows\SYSWOW64\D3DX9_38.dll
2013-04-07 13:55:49 ----A---- C:\Windows\system32\D3DX9_38.dll
2013-04-07 13:55:47 ----A---- C:\Windows\SYSWOW64\XAudio2_0.dll
2013-04-07 13:55:47 ----A---- C:\Windows\system32\XAudio2_0.dll
2013-04-07 13:55:44 ----A---- C:\Windows\SYSWOW64\xactengine3_0.dll
2013-04-07 13:55:44 ----A---- C:\Windows\SYSWOW64\X3DAudio1_3.dll
2013-04-07 13:55:44 ----A---- C:\Windows\system32\xactengine3_0.dll
2013-04-07 13:55:44 ----A---- C:\Windows\system32\X3DAudio1_3.dll
2013-04-07 13:55:43 ----A---- C:\Windows\SYSWOW64\xactengine2_10.dll
2013-04-07 13:55:43 ----A---- C:\Windows\SYSWOW64\D3DX9_37.dll
2013-04-07 13:55:43 ----A---- C:\Windows\SYSWOW64\d3dx10_37.dll
2013-04-07 13:55:43 ----A---- C:\Windows\SYSWOW64\D3DCompiler_37.dll
2013-04-07 13:55:43 ----A---- C:\Windows\system32\xactengine2_10.dll
2013-04-07 13:55:43 ----A---- C:\Windows\system32\D3DX9_37.dll
2013-04-07 13:55:43 ----A---- C:\Windows\system32\d3dx10_37.dll
2013-04-07 13:55:43 ----A---- C:\Windows\system32\D3DCompiler_37.dll
2013-04-07 13:55:42 ----A---- C:\Windows\SYSWOW64\d3dx10_36.dll
2013-04-07 13:55:42 ----A---- C:\Windows\SYSWOW64\D3DCompiler_36.dll
2013-04-07 13:55:42 ----A---- C:\Windows\system32\d3dx10_36.dll
2013-04-07 13:55:42 ----A---- C:\Windows\system32\D3DCompiler_36.dll
2013-04-07 13:55:41 ----A---- C:\Windows\SYSWOW64\d3dx9_36.dll
2013-04-07 13:55:41 ----A---- C:\Windows\system32\d3dx9_36.dll
2013-04-07 13:55:36 ----A---- C:\Windows\SYSWOW64\xactengine2_9.dll
2013-04-07 13:55:36 ----A---- C:\Windows\SYSWOW64\d3dx9_35.dll
2013-04-07 13:55:36 ----A---- C:\Windows\SYSWOW64\d3dx10_35.dll
2013-04-07 13:55:36 ----A---- C:\Windows\SYSWOW64\D3DCompiler_35.dll
2013-04-07 13:55:36 ----A---- C:\Windows\system32\xactengine2_9.dll
2013-04-07 13:55:36 ----A---- C:\Windows\system32\d3dx9_35.dll
2013-04-07 13:55:36 ----A---- C:\Windows\system32\d3dx10_35.dll
2013-04-07 13:55:36 ----A---- C:\Windows\system32\D3DCompiler_35.dll
2013-04-07 13:55:34 ----A---- C:\Windows\SYSWOW64\xactengine2_8.dll
2013-04-07 13:55:34 ----A---- C:\Windows\SYSWOW64\X3DAudio1_2.dll
2013-04-07 13:55:34 ----A---- C:\Windows\SYSWOW64\d3dx9_34.dll
2013-04-07 13:55:34 ----A---- C:\Windows\SYSWOW64\d3dx10_34.dll
2013-04-07 13:55:34 ----A---- C:\Windows\SYSWOW64\D3DCompiler_34.dll
2013-04-07 13:55:34 ----A---- C:\Windows\system32\xactengine2_8.dll
2013-04-07 13:55:34 ----A---- C:\Windows\system32\X3DAudio1_2.dll
2013-04-07 13:55:34 ----A---- C:\Windows\system32\d3dx9_34.dll
2013-04-07 13:55:34 ----A---- C:\Windows\system32\d3dx10_34.dll
2013-04-07 13:55:34 ----A---- C:\Windows\system32\D3DCompiler_34.dll
2013-04-07 13:55:31 ----A---- C:\Windows\SYSWOW64\xactengine2_7.dll
2013-04-07 13:55:31 ----A---- C:\Windows\SYSWOW64\d3dx10_33.dll
2013-04-07 13:55:31 ----A---- C:\Windows\SYSWOW64\D3DCompiler_33.dll
2013-04-07 13:55:31 ----A---- C:\Windows\system32\xactengine2_7.dll
2013-04-07 13:55:31 ----A---- C:\Windows\system32\d3dx10_33.dll
2013-04-07 13:55:31 ----A---- C:\Windows\system32\D3DCompiler_33.dll
2013-04-07 13:55:30 ----A---- C:\Windows\SYSWOW64\d3dx9_33.dll
2013-04-07 13:55:30 ----A---- C:\Windows\system32\d3dx9_33.dll
2013-04-07 13:55:29 ----A---- C:\Windows\SYSWOW64\xactengine2_6.dll
2013-04-07 13:55:29 ----A---- C:\Windows\system32\xactengine2_6.dll
2013-04-07 13:55:28 ----A---- C:\Windows\SYSWOW64\xactengine2_5.dll
2013-04-07 13:55:28 ----A---- C:\Windows\SYSWOW64\d3dx10.dll
2013-04-07 13:55:28 ----A---- C:\Windows\system32\xactengine2_5.dll
2013-04-07 13:55:28 ----A---- C:\Windows\system32\d3dx10.dll
2013-04-07 13:55:27 ----A---- C:\Windows\SYSWOW64\xactengine2_4.dll
2013-04-07 13:55:27 ----A---- C:\Windows\SYSWOW64\x3daudio1_1.dll
2013-04-07 13:55:27 ----A---- C:\Windows\SYSWOW64\d3dx9_32.dll
2013-04-07 13:55:27 ----A---- C:\Windows\SYSWOW64\d3dx9_31.dll
2013-04-07 13:55:27 ----A---- C:\Windows\system32\xactengine2_4.dll
2013-04-07 13:55:27 ----A---- C:\Windows\system32\x3daudio1_1.dll
2013-04-07 13:55:27 ----A---- C:\Windows\system32\d3dx9_32.dll
2013-04-07 13:55:27 ----A---- C:\Windows\system32\d3dx9_31.dll
2013-04-07 13:55:25 ----A---- C:\Windows\SYSWOW64\xinput1_2.dll
2013-04-07 13:55:25 ----A---- C:\Windows\SYSWOW64\xactengine2_3.dll
2013-04-07 13:55:25 ----A---- C:\Windows\system32\xinput1_2.dll
2013-04-07 13:55:25 ----A---- C:\Windows\system32\xactengine2_3.dll
2013-04-07 13:55:24 ----A---- C:\Windows\SYSWOW64\xinput1_1.dll
2013-04-07 13:55:24 ----A---- C:\Windows\SYSWOW64\xactengine2_2.dll
2013-04-07 13:55:24 ----A---- C:\Windows\system32\xinput1_1.dll
2013-04-07 13:55:24 ----A---- C:\Windows\system32\xactengine2_2.dll
2013-04-07 13:55:23 ----A---- C:\Windows\SYSWOW64\xactengine2_1.dll
2013-04-07 13:55:23 ----A---- C:\Windows\system32\xactengine2_1.dll
2013-04-07 13:55:14 ----A---- C:\Windows\SYSWOW64\d3dx9_30.dll
2013-04-07 13:55:14 ----A---- C:\Windows\system32\d3dx9_30.dll
2013-04-07 13:55:13 ----A---- C:\Windows\SYSWOW64\xactengine2_0.dll
2013-04-07 13:55:13 ----A---- C:\Windows\SYSWOW64\x3daudio1_0.dll
2013-04-07 13:55:13 ----A---- C:\Windows\system32\xactengine2_0.dll
2013-04-07 13:55:13 ----A---- C:\Windows\system32\x3daudio1_0.dll
2013-04-07 13:55:12 ----A---- C:\Windows\SYSWOW64\d3dx9_29.dll
2013-04-07 13:55:12 ----A---- C:\Windows\SYSWOW64\d3dx9_28.dll
2013-04-07 13:55:12 ----A---- C:\Windows\SYSWOW64\d3dx9_27.dll
2013-04-07 13:55:12 ----A---- C:\Windows\system32\d3dx9_29.dll
2013-04-07 13:55:12 ----A---- C:\Windows\system32\d3dx9_28.dll
2013-04-07 13:55:12 ----A---- C:\Windows\system32\d3dx9_27.dll
2013-04-07 13:55:11 ----A---- C:\Windows\SYSWOW64\d3dx9_26.dll
2013-04-07 13:55:11 ----A---- C:\Windows\SYSWOW64\d3dx9_25.dll
2013-04-07 13:55:11 ----A---- C:\Windows\system32\d3dx9_26.dll
2013-04-07 13:55:11 ----A---- C:\Windows\system32\d3dx9_25.dll
2013-04-07 13:55:10 ----A---- C:\Windows\SYSWOW64\d3dx9_24.dll
2013-04-07 13:55:10 ----A---- C:\Windows\system32\d3dx9_24.dll
2013-04-07 13:32:54 ----D---- C:\Users\Global\AppData\Roaming\TS3Client
2013-04-07 13:15:36 ----D---- C:\Users\Global\AppData\Roaming\LolClient
2013-04-07 13:15:35 ----D---- C:\Users\Global\AppData\Roaming\Macromedia
2013-04-07 13:15:34 ----D---- C:\Users\Global\AppData\Roaming\Adobe
2013-04-07 12:39:23 ----D---- C:\Windows\SYSWOW64\Macromed
2013-04-07 12:39:15 ----A---- C:\Windows\SYSWOW64\XAPOFX1_5.dll
2013-04-07 12:39:15 ----A---- C:\Windows\system32\XAPOFX1_5.dll
2013-04-07 12:39:14 ----A---- C:\Windows\SYSWOW64\XAudio2_7.dll
2013-04-07 12:39:14 ----A---- C:\Windows\SYSWOW64\d3dx11_43.dll
2013-04-07 12:39:14 ----A---- C:\Windows\SYSWOW64\D3DCompiler_43.dll
2013-04-07 12:39:14 ----A---- C:\Windows\system32\XAudio2_7.dll
2013-04-07 12:39:14 ----A---- C:\Windows\system32\d3dx11_43.dll
2013-04-07 12:39:14 ----A---- C:\Windows\system32\D3DCompiler_43.dll
2013-04-07 12:39:13 ----A---- C:\Windows\SYSWOW64\D3DX9_43.dll
2013-04-07 12:39:13 ----A---- C:\Windows\SYSWOW64\d3dx10_43.dll
2013-04-07 12:39:13 ----A---- C:\Windows\system32\D3DX9_43.dll
2013-04-07 12:39:13 ----A---- C:\Windows\system32\d3dx10_43.dll
2013-04-07 12:39:12 ----A---- C:\Windows\SYSWOW64\X3DAudio1_7.dll
2013-04-07 12:39:12 ----A---- C:\Windows\system32\X3DAudio1_7.dll
2013-04-07 12:39:11 ----A---- C:\Windows\SYSWOW64\xinput1_3.dll
2013-04-07 12:39:11 ----A---- C:\Windows\system32\xinput1_3.dll
2013-04-07 12:31:18 ----A---- C:\Windows\SYSWOW64\XAudio2_2.dll
2013-04-07 12:31:18 ----A---- C:\Windows\SYSWOW64\XAPOFX1_1.dll
2013-04-07 12:31:18 ----A---- C:\Windows\SYSWOW64\d3dx10_39.dll
2013-04-07 12:31:18 ----A---- C:\Windows\SYSWOW64\D3DCompiler_39.dll
2013-04-07 12:31:17 ----A---- C:\Windows\SYSWOW64\D3DX9_39.dll
2013-04-07 03:08:09 ----D---- C:\ProgramData\Hi-Rez Studios
2013-04-07 03:08:03 ----D---- C:\Program Files (x86)\Hi-Rez Studios
2013-04-07 03:07:43 ----D---- C:\ProgramData\PMB Files
2013-04-07 03:07:22 ----D---- C:\Program Files (x86)\Pando Networks
2013-04-07 01:25:46 ----D---- C:\Windows\Panther
2013-04-07 01:25:17 ----D---- C:\Windows\system32\OEM
2013-04-07 01:13:58 ----D---- C:\Windows.old
2013-04-06 23:08:34 ----D---- C:\Users\Global\AppData\Roaming\andro
2013-04-06 23:08:03 ----D---- C:\Program Files (x86)\XS-Software
2013-04-06 23:02:58 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2013-04-06 22:53:50 ----D---- C:\Program Files (x86)\Microsoft.NET
2013-04-06 22:53:17 ----A---- C:\Windows\SYSWOW64\PresentationHostProxy.dll
2013-04-06 22:53:17 ----A---- C:\Windows\SYSWOW64\PresentationHost.exe
2013-04-06 22:53:17 ----A---- C:\Windows\SYSWOW64\netfxperf.dll
2013-04-06 22:53:17 ----A---- C:\Windows\SYSWOW64\mscoree.dll
2013-04-06 22:53:17 ----A---- C:\Windows\SYSWOW64\dfshim.dll
2013-04-06 22:53:17 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2013-04-06 22:53:17 ----A---- C:\Windows\system32\PresentationHost.exe
2013-04-06 22:53:17 ----A---- C:\Windows\system32\netfxperf.dll
2013-04-06 22:53:17 ----A---- C:\Windows\system32\mscoree.dll
2013-04-06 22:53:17 ----A---- C:\Windows\system32\dfshim.dll
2013-04-06 22:50:11 ----D---- C:\Users\Global\AppData\Roaming\ATI
2013-04-06 22:50:11 ----D---- C:\ProgramData\ATI
2013-04-06 22:50:09 ----D---- C:\Program Files (x86)\AMD AVT
2013-04-06 22:50:03 ----D---- C:\Program Files (x86)\AMD APP
2013-04-06 22:49:55 ----D---- C:\Program Files\Common Files\ATI Technologies
2013-04-06 22:48:45 ----D---- C:\ProgramData\AMD
2013-04-06 22:48:41 ----A---- C:\Windows\system32\drivers\amdiox64.sys
2013-04-06 22:46:53 ----D---- C:\Program Files (x86)\ATI Technologies
2013-04-06 22:46:40 ----D---- C:\Program Files\ATI Technologies
2013-04-06 22:46:38 ----D---- C:\Program Files\ATI
2013-04-06 22:34:47 ----D---- C:\Windows\SYSWOW64\RTCOM
2013-04-06 22:34:47 ----D---- C:\Program Files\Realtek
2013-04-06 22:34:31 ----A---- C:\Windows\system32\RtkHDM64.dll
2013-04-06 22:34:31 ----A---- C:\Windows\system32\RTEEP64H.dll
2013-04-06 22:34:31 ----A---- C:\Windows\system32\RTEEL64H.dll
2013-04-06 22:34:31 ----A---- C:\Windows\system32\RTEEG64H.dll
2013-04-06 22:34:31 ----A---- C:\Windows\system32\RTEED64H.dll
2013-04-06 22:34:31 ----A---- C:\Windows\system32\RHDMEx64.dll
2013-04-06 22:34:31 ----A---- C:\Windows\system32\RHCoInst64.dll
2013-04-06 22:34:31 ----A---- C:\Windows\system32\RH3DHT64.dll
2013-04-06 22:34:31 ----A---- C:\Windows\system32\RH3DAA64.dll
2013-04-06 22:34:31 ----A---- C:\Windows\system32\R4EEP64H.dll
2013-04-06 22:34:31 ----A---- C:\Windows\system32\R4EEL64H.dll
2013-04-06 22:34:31 ----A---- C:\Windows\system32\R4EEG64H.dll
2013-04-06 22:34:31 ----A---- C:\Windows\system32\R4EED64H.dll
2013-04-06 22:34:31 ----A---- C:\Windows\system32\R4EEA64H.dll
2013-04-06 22:34:31 ----A---- C:\Windows\system32\drivers\RtHDMIVX.sys
2013-04-06 22:34:28 ----A---- C:\Windows\SYSWOW64\MBAPO32.dll
2013-04-06 22:34:28 ----A---- C:\Windows\system32\WavesGUILib.dll
2013-04-06 22:34:28 ----A---- C:\Windows\system32\SRSWOW64.dll
2013-04-06 22:34:28 ----A---- C:\Windows\system32\SRSTSX64.dll
2013-04-06 22:34:28 ----A---- C:\Windows\system32\SRSTSH64.dll
2013-04-06 22:34:28 ----A---- C:\Windows\system32\SRSHP64.dll
2013-04-06 22:34:28 ----A---- C:\Windows\system32\RtPgEx64.dll
2013-04-06 22:34:28 ----A---- C:\Windows\system32\RtlCPAPI64.dll
2013-04-06 22:34:28 ----A---- C:\Windows\system32\RtkCoLDR64.dll
2013-04-06 22:34:28 ----A---- C:\Windows\system32\RtkCfg64.dll
2013-04-06 22:34:28 ----A---- C:\Windows\system32\RtkAPO64.dll
2013-04-06 22:34:28 ----A---- C:\Windows\system32\RtkApi64.dll
2013-04-06 22:34:28 ----A---- C:\Windows\system32\RTEEP64A.dll
2013-04-06 22:34:28 ----A---- C:\Windows\system32\RTEEL64A.dll
2013-04-06 22:34:28 ----A---- C:\Windows\system32\RTEEG64A.dll
2013-04-06 22:34:28 ----A---- C:\Windows\system32\RTEED64A.dll
2013-04-06 22:34:28 ----A---- C:\Windows\system32\RTCOM64.dll
2013-04-06 22:34:28 ----A---- C:\Windows\system32\RP3DHT64.dll
2013-04-06 22:34:28 ----A---- C:\Windows\system32\RP3DAA64.dll
2013-04-06 22:34:28 ----A---- C:\Windows\system32\RCoInstII64.dll
2013-04-06 22:34:28 ----A---- C:\Windows\system32\MBWrp64.dll
2013-04-06 22:34:28 ----A---- C:\Windows\system32\MBppld64.dll
2013-04-06 22:34:28 ----A---- C:\Windows\system32\MBPPCn64.dll
2013-04-06 22:34:28 ----A---- C:\Windows\system32\MBAPO64.dll
2013-04-06 22:34:28 ----A---- C:\Windows\system32\drivers\RTKVHD64.sys
2013-04-06 22:34:28 ----A---- C:\Windows\system32\drivers\RTAIODAT.DAT
2013-04-06 22:34:27 ----A---- C:\Windows\system32\MaxxAudioEQ.dll
2013-04-06 22:34:27 ----A---- C:\Windows\system32\MaxxAudioAPOShell64.dll
2013-04-06 22:34:27 ----A---- C:\Windows\system32\MaxxAudioAPO20.dll
2013-04-06 22:34:27 ----A---- C:\Windows\system32\FMAPO64.dll
2013-04-06 22:34:27 ----A---- C:\Windows\system32\AERTAR64.dll
2013-04-06 22:34:27 ----A---- C:\Windows\system32\AERTAC64.dll
2013-04-06 22:34:26 ----HD---- C:\Program Files (x86)\Temp
2013-04-06 22:34:26 ----A---- C:\Windows\RtlExUpd.dll
2013-04-06 22:29:00 ----D---- C:\Users\Global\AppData\Roaming\Skype
2013-04-06 22:28:57 ----RD---- C:\Program Files (x86)\Skype
2013-04-06 22:28:54 ----D---- C:\ProgramData\Skype
2013-04-06 22:27:09 ----N---- C:\Windows\system32\MpSigStub.exe
2013-04-06 22:21:32 ----D---- C:\ProgramData\Sun
2013-04-06 22:21:22 ----A---- C:\Windows\SYSWOW64\deployJava1.dll
2013-04-06 22:21:20 ----A---- C:\Windows\SYSWOW64\npDeployJava1.dll
2013-04-06 22:21:18 ----A---- C:\Windows\SYSWOW64\javaws.exe
2013-04-06 22:21:12 ----A---- C:\Windows\SYSWOW64\WindowsAccessBridge-32.dll
2013-04-06 22:21:12 ----A---- C:\Windows\SYSWOW64\javaw.exe
2013-04-06 22:21:12 ----A---- C:\Windows\SYSWOW64\java.exe
2013-04-06 22:21:04 ----D---- C:\Program Files (x86)\Java
2013-04-06 22:05:00 ----SHD---- C:\Windows\Installer
2013-04-06 22:00:48 ----D---- C:\Program Files (x86)\Google
2013-04-06 21:57:31 ----A---- C:\Windows\system32\drivers\RtVlan620.sys
2013-04-06 21:57:31 ----A---- C:\Windows\system32\drivers\RtTeam60.sys
2013-04-06 21:57:31 ----A---- C:\Windows\system32\drivers\RtNdPt60.sys
2013-04-06 21:52:53 ----A---- C:\Windows\system32\RTNUninst64.dll
2013-04-06 21:52:53 ----A---- C:\Windows\system32\RtNicProp64.dll
2013-04-06 21:52:53 ----A---- C:\Windows\system32\drivers\Rt64win7.sys
2013-04-06 21:52:49 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2013-04-06 21:52:49 ----D---- C:\Program Files (x86)\Realtek
2013-04-06 18:57:03 ----D---- C:\Users\Global\AppData\Roaming\Identities
2013-04-06 18:56:50 ----SD---- C:\Users\Global\AppData\Roaming\Microsoft
2013-04-06 18:56:50 ----D---- C:\Users\Global\AppData\Roaming\Media Center Programs
2013-04-06 18:53:41 ----SHD---- C:\ProgramData\Šablony
2013-04-06 18:53:41 ----SHD---- C:\ProgramData\Plocha
2013-04-06 18:53:41 ----SHD---- C:\ProgramData\Oblíbené položky
2013-04-06 18:53:41 ----SHD---- C:\ProgramData\Nabídka Start
2013-04-06 18:53:41 ----SHD---- C:\ProgramData\Dokumenty
2013-04-06 18:53:41 ----SHD---- C:\ProgramData\Data aplikací
2013-04-06 15:30:26 ----D---- C:\Windows\SoftwareDistribution
2013-04-06 15:27:09 ----D---- C:\Windows\Prefetch
2013-03-23 21:04:32 ----D---- C:\Hry
2013-03-20 21:36:56 ----D---- C:\rsit
2013-03-19 20:53:37 ----A---- C:\out.txt
2013-03-18 19:32:31 ----D---- C:\Fraps

======List of files/folders modified in the last 1 month======

2013-04-14 18:34:04 ----D---- C:\Windows\Temp
2013-04-14 18:28:04 ----RD---- C:\Program Files
2013-04-14 09:41:45 ----D---- C:\Windows\system32\config
2013-04-14 09:29:03 ----SHD---- C:\System Volume Information
2013-04-14 06:53:55 ----D---- C:\Windows\system32\Tasks
2013-04-13 15:49:58 ----D---- C:\Windows\SysWOW64
2013-04-13 15:31:46 ----D---- C:\Windows\System32
2013-04-13 15:31:46 ----D---- C:\Windows\inf
2013-04-13 15:31:46 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-04-13 12:18:12 ----RD---- C:\Program Files (x86)
2013-04-12 23:58:16 ----D---- C:\Windows\system32\catroot2
2013-04-10 22:01:37 ----RSD---- C:\Windows\Fonts
2013-04-10 20:03:34 ----HD---- C:\ProgramData
2013-04-10 19:17:38 ----D---- C:\Windows\system32\drivers
2013-04-10 19:17:37 ----D---- C:\Windows\system32\catroot
2013-04-10 19:17:36 ----D---- C:\Windows\system32\DriverStore
2013-04-09 21:15:31 ----D---- C:\Windows\winsxs
2013-04-07 13:55:23 ----RSD---- C:\Windows\assembly
2013-04-07 13:55:15 ----D---- C:\Windows\Microsoft.NET
2013-04-07 13:00:53 ----D---- C:\Windows\system32\wdi
2013-04-07 12:39:11 ----D---- C:\Windows
2013-04-07 12:31:14 ----D---- C:\Windows\Logs
2013-04-07 03:04:53 ----D---- C:\Windows\system32\drivers\UMDF
2013-04-06 23:03:45 ----D---- C:\Windows\SYSWOW64\cs-CZ
2013-04-06 23:03:45 ----D---- C:\Windows\system32\cs-CZ
2013-04-06 22:53:51 ----D---- C:\Windows\SYSWOW64\en-US
2013-04-06 22:53:51 ----D---- C:\Windows\system32\en-US
2013-04-06 22:49:55 ----D---- C:\Program Files\Common Files
2013-04-06 22:49:55 ----D---- C:\Program Files (x86)\Common Files
2013-04-06 22:46:51 ----D---- C:\Program Files\Common Files\Microsoft Shared
2013-04-06 22:00:51 ----D---- C:\Windows\Tasks
2013-04-06 21:54:05 ----SD---- C:\ProgramData\Microsoft
2013-04-06 21:53:55 ----D---- C:\Windows\system32\LogFiles
2013-04-06 21:52:40 ----D---- C:\Windows\system32\restore
2013-04-06 19:02:47 ----D---- C:\Windows\system32\NDF
2013-04-06 18:57:00 ----SHD---- C:\$Recycle.Bin
2013-04-06 18:56:49 ----RD---- C:\Users
2013-04-06 18:54:26 ----D---- C:\Windows\Setup
2013-04-06 18:54:21 ----D---- C:\Windows\rescache
2013-04-06 18:53:41 ----SHD---- C:\Recovery
2013-04-06 18:53:41 ----D---- C:\Windows\system32\Recovery
2013-04-06 18:53:41 ----D---- C:\Program Files\Windows NT
2013-04-06 18:53:14 ----D---- C:\Windows\debug
2013-04-06 15:36:34 ----D---- C:\Windows\system32\CodeIntegrity
2013-04-06 15:32:51 ----D---- C:\Windows\system32\sysprep
2013-04-06 15:27:37 ----D---- C:\Windows\CSC

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 pciide;pciide; C:\Windows\system32\DRIVERS\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2009-07-14 214096]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2009-07-14 514048]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2013-04-10 283200]
R2 AODDriver4.1;AODDriver4.1; \??\C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [2012-03-05 53888]
R2 RtNdPt60;Realtek NDIS Protocol Driver; C:\Windows\system32\DRIVERS\RtNdPt60.sys [2011-06-15 27136]
R3 amdiox64;AMD IO Driver; C:\Windows\system32\DRIVERS\amdiox64.sys [2010-02-18 46136]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2012-11-16 11922944]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2012-11-16 359936]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2012-06-19 4065296]
R3 RTHDMIAzAudService;Service for HDMI; C:\Windows\system32\drivers\RtHDMIVX.sys [2012-06-05 237968]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2011-09-29 646248]
S3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2012-11-16 11922944]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2009-07-14 165376]
S3 RTTEAMPT;Realtek Teaming Protocol Driver (NDIS 6.0); C:\Windows\system32\DRIVERS\RtTeam60.sys [2011-06-15 58472]
S3 RTVLANPT;Realtek Vlan Protocol Driver (NDIS 6.2); C:\Windows\system32\DRIVERS\RtVlan620.sys [2011-09-16 32360]
S3 s3cap;s3cap; C:\Windows\system32\DRIVERS\vms3cap.sys [2009-07-14 6656]
S3 storvsc;storvsc; C:\Windows\system32\DRIVERS\storvsc.sys [2009-07-14 34896]
S3 TEAM;Realtek Virtual Miniport Driver for Teaming (NDIS 6.0); C:\Windows\system32\DRIVERS\RtTeam60.sys [2011-06-15 58472]
S3 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\DRIVERS\vmbus.sys [2009-07-14 200272]
S3 VMBusHID;VMBusHID; C:\Windows\system32\DRIVERS\VMBusHID.sys [2009-07-14 21760]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2009-07-14 40448]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2012-11-16 238080]
R2 AMD FUEL Service;AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [2012-11-16 361984]
R2 BrowserProtect;BrowserProtect; C:\ProgramData\BrowserProtect\2.6.1125.80\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserProtect.exe [2013-04-08 2569168]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 HiPatchService;Hi-Rez Studios Authenticate and Update Service; C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe [2013-02-08 8704]
R2 Skype C2C Service;Skype C2C Service; C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe [2013-03-19 3289208]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-04-06 116648]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-02-28 161384]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2010-03-18 44376]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-04-06 116648]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]

-----------------EOF-----------------

Antivir sem ještě nestihl nainstalovat ... spíš sem zapoměl.

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: PC - velmi pomálé reakce , prohližeč také línej

#2 Příspěvek od Márty84 »

Zdravim :)

:arrow: Stahnete OTL http://oldtimer.geekstogo.com/OTL.exe a ulozte na plochu.
Kliknete na nej pravym mysidlem a levym na Spustit jako spravce
Oznacte polozky (dejte tam zatrzitka) Pro všechny uživatele, Kontrola na havěť "LOP" a Kontrola na havěť "Purity"
Do spodniho okna vlozte nasledujici text

Kód: Vybrat vše

CREATERESTOREPOINT

netsvcs
drivers32
savembr:0

/md5start
adp3132.sys
AGP440.sys
ahcix86.sys
ahcix86s.sys
atapi.sys
autochk.exe
cdrom.sys
cngaudit.dll
cryptsvc.dll
eNetHook.dll
eventlog.dll
explorer.exe
hal.dll
Changer.sys
iaStor.sys
iastorv.sys
IdeChnDr.sys
isapnp.sys
JakNDis.sys
KR10N.sys
logevent.dll
lsass.exe
mv61xx.sys
ndis.sys
netlogon.dll
ntelogon.dll
nvata.sys
nvatabus.sys
nvgts.sys
nvraid.sys
nvrd32.sys
nvstor.sys
nvstor32.sys
scecli.dll
sceclt.dll
smss.exe
svchost.exe
symmpi.sys
tcpip.sys
userinit.exe
vaxscsi.sys
viamraid.sys
viasraid.sys
ViPrt.sys
winlogon.exe
ws2_32.dll
/md5stop

%systemroot%*.* /U /s
%SYSTEMDRIVE%\*.exe
%ALLUSERSPROFILE%\Application Data\*.
%ALLUSERSPROFILE%\Application Data\*.exe /s
%APPDATA%\*.
%APPDATA%\*.exe /s
%systemroot%\*. /mp /s
%systemroot%\system32\*.dll /lockedfiles
%systemroot%\Tasks\*.job /lockedfiles
%systemroot%\system32\drivers\*.sys /lockedfiles
%systemroot%\System32\config\*.sav
%systemroot%\system32\*.dll /lockedfiles
%systemroot%\system32\drivers\*.sys /3
%systemroot%\system32\*.* /3
%SYSTEMDRIVE%\*.exe

HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s
reg query "HKLM\Software\Microsoft\Windows NT\CurrentVersion\winlogon" /v GinaDLL /c
reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wuauserv" /v ImagePath /c
reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BITS" /v ImagePath /c

type c:\boot.ini >> test.txt /c
%SystemDrive%\PhysicalMBR.bin /md5

*crack* /s
*keygen* /s
*loader* /s
*minodlogin* /s
*tnod* /s
*AutoKMS* /s
*activator* /s
*serial* /s
*w7lxe* /s
Kliknete na Prohledat
Po skenu se vytvori dva logy (OTL.Txt a Extras.txt), oba sem vlozte (kdyz budou dlouhe, rozdelte je do vice prispevku).
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

GlobalCZ
Návštěvník
Návštěvník
Příspěvky: 23
Registrován: 17 led 2013 21:36

Re: PC - velmi pomálé reakce , prohližeč také línej

#3 Příspěvek od GlobalCZ »

program už asi 20 minut dělá jakože dělá ale zatím mi to napsalo jen out of memory ...

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: PC - velmi pomálé reakce , prohližeč také línej

#4 Příspěvek od Márty84 »

Pokud dela, nechte ho delat. Jestli nepracuje, zkuste to v nouzovem rezimu.
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

Zamčeno