Stránka 1 z 1

Nenormální vytížení CPU

Napsal: 01 led 2014 17:01
od Ivošisko
I když nemám spuštěný žádný program (vyjma pár malých utilit na pozadí), tak mám vytížení procesoru mezi 50 až 100 %. Byl bych proto rád, kdyby se mi někdo kouknul na log z RSIT (tentokrát mi to vyplivlo logy dva - oba přikládám):

Log č.1:

Logfile of random's system information tool 1.09 (written by random/random)
Run by Renca at 2014-01-01 14:31:54
Microsoft Windows 7 Ultimate Service Pack 1
System drive C: has 1 GB (1%) free of 80 GB
Total RAM: 4095 MB (63% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 14:32:00, on 1.1.2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.16428)
Boot mode: Normal

Running processes:
C:\Program Files\Hide Folders 2012\hf.exe
C:\Program Files (x86)\FinalWire\AIDA64 Extreme\aida64.exe
C:\Program Files (x86)\uTorrent\uTorrent.exe
C:\Program Files (x86)\StickIt\StickIt3.exe
C:\Program Files (x86)\WinOrganizer\WinOrganizer.exe
C:\Program Files (x86)\T-Mobile\T-Mobile Internet Manager\Manager.exe
C:\ProgramData\Boxtools\Toolbox.exe
C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QLBCtrl.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Analog Devices\Core\smax4pnp.exe
C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\VolCtrl.exe
C:\Program Files (x86)\Mobogenie\DaemonProcess.exe
C:\Program Files (x86)\Squeezebox\SqueezeTray.exe
C:\Users\Renca\AppData\Roaming\Dropbox\bin\Dropbox.exe
C:\Program Files (x86)\Stardock\ObjectDock Plus\ObjectDock.exe
C:\PROGRA~2\SQUEEZ~1\server\SQUEEZ~3.EXE
C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe
C:\Program Files\trend micro\Renca.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Logitech SetPoint - {AF949550-9094-4807-95EC-D1C317803333} - C:\Program Files\Logitech\SetPointP\32-bit\SetPointSmooth.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: avast! Online Security - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [StartCCC] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe
O4 - HKLM\..\Run: [QlbCtrl.exe] C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start
O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O4 - HKLM\..\Run: [AdobeCS6ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files (x86)\Analog Devices\Core\smax4pnp.exe
O4 - HKLM\..\Run: [mobilegeni daemon] C:\Program Files (x86)\Mobogenie\DaemonProcess.exe
O4 - HKCU\..\Run: [uTorrent] "C:\Program Files (x86)\uTorrent\uTorrent.exe" /MINIMIZED
O4 - HKCU\..\Run: [StickIt] C:\Program Files (x86)\StickIt\StickIt3.exe
O4 - HKCU\..\Run: [WinOrganizer] C:\Program Files (x86)\WinOrganizer\WinOrganizer.exe
O4 - HKCU\..\Run: [Boxoft Tools] "C:\ProgramData\Boxtools\Boxofttoolbox.exe" -autorun
O4 - HKCU\..\Run: [T-Mobile CManager] "C:\Program Files (x86)\T-Mobile\T-Mobile Internet Manager\Manager.exe" -autorun
O4 - HKCU\..\Run: [AtomicAlarmClock6] C:\Program Files\Atomic Alarm Clock\AtomicAlarmClock.exe
O4 - HKCU\..\Run: [NextLive] C:\Windows\SysWOW64\rundll32.exe "C:\Users\Renca\AppData\Roaming\newnext.me\nengine.dll",EntryPoint -m l
O4 - Startup: Dropbox.lnk = Renca\AppData\Roaming\Dropbox\bin\Dropbox.exe
O4 - Startup: Logitech . Registrace produktu.lnk = C:\Program Files (x86)\Common Files\LogiShrd\eReg\SetPoint\eReg.exe
O4 - Startup: Stardock ObjectDock.lnk = C:\Program Files (x86)\Stardock\ObjectDock Plus\ObjectDock.exe
O4 - Global Startup: Install LastPass FF RunOnce.lnk = C:\Program Files (x86)\Common Files\lpuninstall.exe
O4 - Global Startup: Nástroj schránky Logitech Media Server.lnk = C:\Program Files (x86)\Squeezebox\SqueezeTray.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O17 - HKLM\System\CCS\Services\Tcpip\..\{788A3804-7946-4A50-BB32-DCCADDAF9CDC}: NameServer = 93.153.117.1 93.153.117.33
O17 - HKLM\System\CCS\Services\Tcpip\..\{850A5427-2841-4C2E-A225-654A46031765}: NameServer = 93.153.117.1 93.153.117.33
O17 - HKLM\System\CCS\Services\Tcpip\..\{EEC97EFE-C21F-42EC-96A6-65F0D9E132BD}: NameServer = 93.153.117.1 93.153.117.33
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Andrea ADI Filters Service (AEADIFilters) - Unknown owner - C:\Windows\system32\AEADISRV.EXE (file missing)
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Ati External Event Utility - Unknown owner - C:\Windows\system32\Ati2evxx.exe (file missing)
O23 - Service: Atomic Alarm Clock Time (AtomicAlarmClock) - Unknown owner - C:\Program Files\Atomic Alarm Clock\timeserv.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Com4QLBEx - Hewlett-Packard Development Company, L.P. - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: FSPro Filter Service 2 (fsproflt2) - FSPro Labs - C:\Windows\SysWOW64\fsproflt2.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Nalpeiron Licensing Service (nlsX86cc) - Nalpeiron Ltd. - C:\Windows\SysWOW64\nlssrv32.exe
O23 - Service: PandoraService (PanService) - Pandora.TV - C:\Program Files (x86)\PANDORA.TV\PanService\PandoraService.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: ServiceLayer - Nokia - C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 10466 bytes

======Listing Processes======

\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
C:\Windows\system32\services.exe
winlogon.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\Ati2evxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\SysWOW64\fsproflt2.exe
Ati2evxx.exe -Client
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Windows\system32\Dwm.exe"
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
"C:\Program Files\Hide Folders 2012\hf.exe" /s
C:\Windows\Explorer.EXE
C:\Windows\System32\spoolsv.exe
"taskhost.exe"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\Windows\system32\AEADISRV.EXE
"C:\Program Files\Atomic Alarm Clock\timeserv.exe"
taskeng.exe {5C0DF986-37B6-427E-9269-23884355F3FF}
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe"
C:\Windows\SysWOW64\nlssrv32.exe
"C:\Program Files (x86)\PANDORA.TV\PanService\PandoraService.exe"
"C:\Program Files (x86)\FinalWire\AIDA64 Extreme\aida64.exe"
"C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe"
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\SysWOW64\svchost.exe -k MbnExt
"C:\Program Files\Logitech\SetPointP\SetPoint.exe" /launchGaming
"C:\Program Files\Synaptics\SynTP\SynTPHelper.exe"
"C:\Program Files (x86)\uTorrent\uTorrent.exe" /MINIMIZED
KHALMNPR.EXE /API
"C:\Program Files (x86)\StickIt\StickIt3.exe"
"C:\Program Files (x86)\WinOrganizer\WinOrganizer.exe"
"C:\Program Files (x86)\T-Mobile\T-Mobile Internet Manager\Manager.exe" -autorun
"C:\ProgramData\Boxtools\Toolbox.exe" -autorun
"C:\Program Files\Atomic Alarm Clock\AtomicAlarmClock.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QLBCtrl.exe" /Start
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
"C:\Program Files (x86)\Analog Devices\Core\smax4pnp.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\VolCtrl.exe"
"C:\Program Files (x86)\Mobogenie\DaemonProcess.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
C:\Windows\system32\svchost.exe -k bthsvcs
"C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe"
"C:\Program Files (x86)\Squeezebox\SqueezeTray.exe"
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Users\Renca\AppData\Roaming\Dropbox\bin\Dropbox.exe" /systemstartup
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.EXE"
"C:\Program Files (x86)\Stardock\ObjectDock Plus\ObjectDock.exe"
"C:\Program Files (x86)\Stardock\ObjectDock Plus\Dock64.exe"
"C:\Program Files (x86)\Stardock\ObjectDock Plus\ObjectDockTray.exe"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
"C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe"
"C:\PROGRA~2\SQUEEZ~1\server\SQUEEZ~3.EXE"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files\Logitech\SetPointP\LogiAppBroker.exe"
"C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe"
taskeng.exe {C5A7865E-503F-4BC1-906A-A74F4C204A53}
"C:\Users\Renca\Desktop\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\DllHost.exe /Processid:{F9717507-6651-4EDB-BFF7-AE615179BCCF}

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job

=========Mozilla firefox=========

ProfilePath - C:\Users\Renca\AppData\Roaming\Mozilla\Firefox\Profiles\o86nuz98.default

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.9.900.170 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_170.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Google.com/GoogleEarthPlugin]
"Description"=Google Earth in your browser
"Path"=C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=10.21.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@lastpass.com/NPLastPass]
"Description"=
"Path"=C:\Program Files (x86)\LastPass\nplastpass.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=C:\Windows\system32\Wat\npWatWeb.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nokia.com/EnablerPlugin]
"Description"=Nokia Suite Enabler Plugin
"Path"=C:\Program Files (x86)\Nokia\Nokia Suite\npNokiaSuiteEnabler.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.9.900.170 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_170.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.11.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Windows\system32\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@lastpass.com/NPLastPass]
"Description"=
"Path"=C:\Program Files (x86)\LastPass\nplastpass64.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=C:\Windows\system32\Wat\npWatWeb.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll

C:\Program Files (x86)\Mozilla Firefox\extensions\
{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}

C:\Users\Renca\AppData\Roaming\Mozilla\Firefox\Profiles\o86nuz98.default\extensions\
foxmarks@kei.com
support@lastpass.com
{0538E3E3-7E9B-4d49-8831-A227C80A7AD3}
{ada4b710-8346-4b82-8199-5de2b400a6ae}

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{318A227B-5E9F-45bd-8999-7F8F10CA4CF5}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2013-12-31 1372864]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2013-12-31 1372864]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF949550-9094-4807-95EC-D1C317803333}]
Logitech SetPoint - C:\Program Files\Logitech\SetPointP\SetPointSmooth.dll [2013-07-31 433944]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2013-04-04 462752]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2013-12-31 1138536]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF949550-9094-4807-95EC-D1C317803333}]
Logitech SetPoint - C:\Program Files\Logitech\SetPointP\32-bit\SetPointSmooth.dll [2013-07-31 364824]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2013-04-04 171424]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2013-12-31 1372864]
{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2013-12-31 1372864]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2013-12-31 1138536]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2008-03-28 1234216]
"AdobeAAMUpdater-1.0"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2012-04-04 446392]
"EvtMgr6"=C:\Program Files\Logitech\SetPointP\SetPoint.exe [2013-07-31 3091224]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"uTorrent"=C:\Program Files (x86)\uTorrent\uTorrent.exe [2013-05-02 802136]
"StickIt"=C:\Program Files (x86)\StickIt\StickIt3.exe [2010-06-22 344064]
"WinOrganizer"=C:\Program Files (x86)\WinOrganizer\WinOrganizer.exe [2011-08-08 3629568]
"Boxoft Tools"=C:\ProgramData\Boxtools\Boxofttoolbox.exe [2010-12-15 514048]
"T-Mobile CManager"=C:\Program Files (x86)\T-Mobile\T-Mobile Internet Manager\Manager.exe [2013-10-31 2166552]
"AtomicAlarmClock6"=C:\Program Files\Atomic Alarm Clock\AtomicAlarmClock.exe [2013-12-20 1609728]
""= []
"NextLive"=C:\Windows\SysWOW64\rundll32.exe [2009-07-14 44544]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2006-11-10 90112]
"QlbCtrl.exe"=C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe [2009-11-11 287800]
"SwitchBoard"=C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
"AdobeCS6ServiceManager"=C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [2012-03-09 1073312]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-04-04 958576]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2013-12-31 3764024]
"SoundMAXPnP"=C:\Program Files (x86)\Analog Devices\Core\smax4pnp.exe [2007-02-21 1183744]
"mobilegeni daemon"=C:\Program Files (x86)\Mobogenie\DaemonProcess.exe [2013-12-29 761536]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Install LastPass FF RunOnce.lnk - C:\Program Files (x86)\Common Files\lpuninstall.exe
Nástroj schránky Logitech Media Server.lnk - C:\Program Files (x86)\Squeezebox\SqueezeTray.exe

C:\Users\Renca\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Dropbox.lnk - C:\Users\Renca\AppData\Roaming\Dropbox\bin\Dropbox.exe
Logitech . Registrace produktu.lnk - C:\Program Files (x86)\Common Files\LogiShrd\eReg\SetPoint\eReg.exe
Stardock ObjectDock.lnk - C:\Program Files (x86)\Stardock\ObjectDock Plus\ObjectDock.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\LBTWlgn]
c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll [2013-06-13 66328]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\fsproflt2]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\fsproflt2]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.txt - open - C:\Windows\NOTEPAD.EXE %1

======List of files/folders created in the last 1 month======

2014-01-01 14:31:54 ----D---- C:\rsit
2013-12-31 11:22:09 ----A---- C:\Windows\system32\drivers\aswstm.sys
2013-12-29 14:12:50 ----A---- C:\Windows\system32\WinUSBCoInstaller2.dll
2013-12-29 14:12:50 ----A---- C:\Windows\system32\USBCoInstaller.dll
2013-12-29 13:49:36 ----A---- C:\Windows\system32\drivers\ssudmdm.sys
2013-12-29 13:49:36 ----A---- C:\Windows\system32\drivers\ssudbus.sys
2013-12-29 13:46:25 ----D---- C:\Program Files\SAMSUNG
2013-12-29 13:44:32 ----D---- C:\ProgramData\Samsung
2013-12-29 13:02:49 ----D---- C:\Users\Renca\AppData\Roaming\newnext.me
2013-12-29 13:01:58 ----D---- C:\Program Files (x86)\Mobogenie
2013-12-29 12:58:13 ----D---- C:\ProgramData\TEMP
2013-12-29 12:00:40 ----A---- C:\Windows\system32\drivers\pccsmcfdx64.sys
2013-12-29 12:00:27 ----D---- C:\Program Files (x86)\PC Connectivity Solution
2013-12-28 11:46:03 ----D---- C:\Program Files\Microsoft Silverlight
2013-12-28 11:46:03 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2013-12-28 11:24:14 ----D---- C:\ProgramData\Medieval Software
2013-12-28 10:50:00 ----D---- C:\Program Files (x86)\Medieval Software
2013-12-28 10:48:41 ----A---- C:\Windows\SYSWOW64\BlueCiucc.dll
2013-12-28 06:12:54 ----D---- C:\Program Files (x86)\Analog Devices
2013-12-28 06:11:48 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2013-12-28 06:11:48 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2013-12-28 06:11:48 ----A---- C:\Windows\system32\RdpGroupPolicyExtension.dll
2013-12-28 06:11:41 ----A---- C:\Windows\system32\drivers\TsUsbFlt.sys
2013-12-28 06:11:41 ----A---- C:\Windows\system32\drivers\rdpvideominiport.sys
2013-12-28 06:11:32 ----A---- C:\Windows\SYSWOW64\wksprtPS.dll
2013-12-28 06:11:32 ----A---- C:\Windows\SYSWOW64\tsgqec.dll
2013-12-28 06:11:32 ----A---- C:\Windows\SYSWOW64\rdpendp_winip.dll
2013-12-28 06:11:32 ----A---- C:\Windows\system32\wksprtPS.dll
2013-12-28 06:11:32 ----A---- C:\Windows\system32\TsUsbGDCoInstaller.dll
2013-12-28 06:11:32 ----A---- C:\Windows\system32\tsgqec.dll
2013-12-28 06:11:31 ----A---- C:\Windows\SYSWOW64\MsRdpWebAccess.dll
2013-12-28 06:11:31 ----A---- C:\Windows\SYSWOW64\aaclient.dll
2013-12-28 06:11:31 ----A---- C:\Windows\system32\TSWbPrxy.exe
2013-12-28 06:11:31 ----A---- C:\Windows\system32\rdpudd.dll
2013-12-28 06:11:31 ----A---- C:\Windows\system32\MsRdpWebAccess.dll
2013-12-28 06:11:31 ----A---- C:\Windows\system32\aaclient.dll
2013-12-28 06:11:30 ----A---- C:\Windows\SYSWOW64\mstsc.exe
2013-12-28 06:11:30 ----A---- C:\Windows\system32\wksprt.exe
2013-12-28 06:11:30 ----A---- C:\Windows\system32\rdpendp_winip.dll
2013-12-28 06:11:30 ----A---- C:\Windows\system32\mstsc.exe
2013-12-28 06:11:29 ----A---- C:\Windows\SYSWOW64\mstscax.dll
2013-12-28 06:11:29 ----A---- C:\Windows\system32\rdpcorets.dll
2013-12-28 06:11:28 ----A---- C:\Windows\system32\mstscax.dll
2013-12-28 06:08:42 ----A---- C:\Windows\system32\ZSHP1020.EXE
2013-12-28 06:08:42 ----A---- C:\Windows\system32\ZLhp1020.DLL
2013-12-28 06:07:10 ----A---- C:\Windows\SYSWOW64\qdvd.dll
2013-12-28 06:07:09 ----A---- C:\Windows\system32\qdvd.dll
2013-12-28 05:35:52 ----D---- C:\updates
2013-12-28 05:35:14 ----D---- C:\ProgramData\Squeezebox
2013-12-28 05:35:14 ----D---- C:\Program Files (x86)\Squeezebox
2013-12-20 10:25:24 ----D---- C:\Users\Renca\AppData\Roaming\Atomic Alarm Clock 6
2013-12-20 10:23:37 ----D---- C:\Program Files\Atomic Alarm Clock
2013-12-20 09:59:57 ----D---- C:\Program Files (x86)\FinalWire
2013-12-18 19:32:01 ----D---- C:\Users\Renca\AppData\Roaming\Leadertech
2013-12-18 19:31:31 ----A---- C:\Windows\system32\drivers\LNonPnP.sys
2013-12-18 19:29:34 ----D---- C:\ProgramData\Logishrd
2013-12-18 19:29:22 ----D---- C:\Program Files\Logitech
2013-12-18 19:28:50 ----D---- C:\Program Files\Common Files\LogiShrd
2013-12-17 18:58:33 ----D---- C:\Users\Renca\AppData\Roaming\Logitech
2013-12-17 18:58:33 ----D---- C:\Users\Renca\AppData\Roaming\Logishrd
2013-12-14 09:13:09 ----A---- C:\Windows\system32\wmploc.DLL
2013-12-14 09:13:08 ----A---- C:\Windows\SYSWOW64\wmploc.DLL
2013-12-14 09:13:07 ----A---- C:\Windows\SYSWOW64\wmp.dll
2013-12-14 09:13:04 ----A---- C:\Windows\system32\wmp.dll
2013-12-14 09:10:29 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2013-12-14 09:10:28 ----A---- C:\Windows\system32\ieui.dll
2013-12-14 09:10:27 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2013-12-14 09:10:27 ----A---- C:\Windows\SYSWOW64\ieui.dll
2013-12-14 09:10:27 ----A---- C:\Windows\system32\jsproxy.dll
2013-12-14 09:10:27 ----A---- C:\Windows\system32\ieUnatt.exe
2013-12-14 09:10:26 ----A---- C:\Windows\system32\iesetup.dll
2013-12-14 09:10:26 ----A---- C:\Windows\system32\iernonce.dll
2013-12-14 09:10:26 ----A---- C:\Windows\system32\ieetwproxystub.dll
2013-12-14 09:10:26 ----A---- C:\Windows\system32\ie4uinit.exe
2013-12-14 09:10:25 ----A---- C:\Windows\system32\ieetwcollector.exe
2013-12-14 09:10:24 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2013-12-14 09:10:24 ----A---- C:\Windows\system32\mshtml.dll
2013-12-14 09:10:24 ----A---- C:\Windows\system32\jscript9diag.dll
2013-12-14 09:10:23 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2013-12-14 09:10:23 ----A---- C:\Windows\system32\ieapfltr.dll
2013-12-14 09:10:22 ----A---- C:\Windows\system32\iertutil.dll
2013-12-14 09:10:21 ----A---- C:\Windows\SYSWOW64\wininet.dll
2013-12-14 09:10:21 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2013-12-14 09:10:20 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2013-12-14 09:10:20 ----A---- C:\Windows\system32\wininet.dll
2013-12-14 09:10:20 ----A---- C:\Windows\system32\urlmon.dll
2013-12-14 09:10:18 ----A---- C:\Windows\system32\ieframe.dll
2013-12-14 09:10:17 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2013-12-14 09:10:15 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2013-12-14 09:10:15 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2013-12-14 09:10:14 ----A---- C:\Windows\system32\jscript9.dll
2013-12-13 10:49:41 ----A---- C:\Windows\system32\msieftp.dll
2013-12-13 10:49:40 ----A---- C:\Windows\SYSWOW64\msieftp.dll
2013-12-13 10:49:40 ----A---- C:\Windows\SYSWOW64\imagehlp.dll
2013-12-13 10:49:40 ----A---- C:\Windows\system32\imagehlp.dll
2013-12-13 10:49:36 ----A---- C:\Windows\SYSWOW64\WMPhoto.dll
2013-12-13 10:49:36 ----A---- C:\Windows\system32\WMPhoto.dll
2013-12-13 10:49:33 ----A---- C:\Windows\system32\win32k.sys
2013-12-13 10:49:24 ----A---- C:\Windows\SYSWOW64\tzres.dll
2013-12-13 10:49:24 ----A---- C:\Windows\system32\tzres.dll
2013-12-13 10:49:14 ----A---- C:\Windows\system32\drivers\portcls.sys
2013-12-13 10:49:14 ----A---- C:\Windows\system32\drivers\drmk.sys
2013-12-13 10:49:13 ----A---- C:\Windows\SYSWOW64\wscript.exe
2013-12-13 10:49:13 ----A---- C:\Windows\system32\scrrun.dll
2013-12-13 10:49:13 ----A---- C:\Windows\system32\cscript.exe
2013-12-13 10:49:12 ----A---- C:\Windows\SYSWOW64\scrrun.dll
2013-12-13 10:49:12 ----A---- C:\Windows\system32\wscript.exe
2013-12-13 10:49:11 ----A---- C:\Windows\SYSWOW64\cscript.exe
2013-12-11 10:36:54 ----D---- C:\Program Files (x86)\Mozilla Thunderbird
2013-12-10 19:41:37 ----D---- C:\Program Files (x86)\Mozilla Firefox
2013-12-10 18:52:04 ----D---- C:\ProgramData\{CC71B1CB-A2E4-4CF7-8EDB-A0E290BA1604}
2013-12-07 09:24:03 ----A---- C:\Windows\system32\IEUDINIT.EXE
2013-12-07 09:15:14 ----A---- C:\Windows\SYSWOW64\elshyph.dll
2013-12-07 09:15:14 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\wextract.exe
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\url.dll
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\RegisterIEPKEYs.exe
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\pngfilt.dll
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\occache.dll
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\msrating.dll
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\msls31.dll
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\mshta.exe
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\msfeedssync.exe
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\msfeedsbs.dll
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\licmgr10.dll
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\jsIntl.dll
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\jscript.dll
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\inseng.dll
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\imgutil.dll
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\iexpress.exe
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\iepeers.dll
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\ieapfltr.dat
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\icardie.dll
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2013-12-07 09:15:05 ----A---- C:\Windows\system32\elshyph.dll
2013-12-07 09:15:04 ----A---- C:\Windows\SYSWOW64\SetIEInstalledDate.exe
2013-12-07 09:15:04 ----A---- C:\Windows\SYSWOW64\mshtmler.dll
2013-12-07 09:15:04 ----A---- C:\Windows\SYSWOW64\iesysprep.dll
2013-12-07 09:15:04 ----A---- C:\Windows\SYSWOW64\IEAdvpack.dll
2013-12-07 09:15:04 ----A---- C:\Windows\system32\wextract.exe
2013-12-07 09:15:04 ----A---- C:\Windows\system32\webcheck.dll
2013-12-07 09:15:04 ----A---- C:\Windows\system32\vbscript.dll
2013-12-07 09:15:04 ----A---- C:\Windows\system32\url.dll
2013-12-07 09:15:04 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2013-12-07 09:15:04 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2013-12-07 09:15:04 ----A---- C:\Windows\system32\pngfilt.dll
2013-12-07 09:15:04 ----A---- C:\Windows\system32\occache.dll
2013-12-07 09:15:04 ----A---- C:\Windows\system32\msrating.dll
2013-12-07 09:15:04 ----A---- C:\Windows\system32\msls31.dll
2013-12-07 09:15:04 ----A---- C:\Windows\system32\mshtmlmedia.dll
2013-12-07 09:15:04 ----A---- C:\Windows\system32\mshtmler.dll
2013-12-07 09:15:04 ----A---- C:\Windows\system32\mshtmled.dll
2013-12-07 09:15:04 ----A---- C:\Windows\system32\MshtmlDac.dll
2013-12-07 09:15:04 ----A---- C:\Windows\system32\mshta.exe
2013-12-07 09:15:04 ----A---- C:\Windows\system32\msfeedssync.exe
2013-12-07 09:15:04 ----A---- C:\Windows\system32\msfeedsbs.dll
2013-12-07 09:15:04 ----A---- C:\Windows\system32\msfeeds.dll
2013-12-07 09:15:04 ----A---- C:\Windows\system32\licmgr10.dll
2013-12-07 09:15:04 ----A---- C:\Windows\system32\jsIntl.dll
2013-12-07 09:15:04 ----A---- C:\Windows\system32\jscript.dll
2013-12-07 09:15:04 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2013-12-07 09:15:04 ----A---- C:\Windows\system32\inseng.dll
2013-12-07 09:15:04 ----A---- C:\Windows\system32\imgutil.dll
2013-12-07 09:15:04 ----A---- C:\Windows\system32\iexpress.exe
2013-12-07 09:15:04 ----A---- C:\Windows\system32\iesysprep.dll
2013-12-07 09:15:04 ----A---- C:\Windows\system32\iepeers.dll
2013-12-07 09:15:04 ----A---- C:\Windows\system32\iedkcs32.dll
2013-12-07 09:15:04 ----A---- C:\Windows\system32\ieapfltr.dat
2013-12-07 09:15:04 ----A---- C:\Windows\system32\IEAdvpack.dll
2013-12-07 09:15:04 ----A---- C:\Windows\system32\icardie.dll
2013-12-07 09:15:04 ----A---- C:\Windows\system32\dxtrans.dll
2013-12-07 09:15:04 ----A---- C:\Windows\system32\dxtmsft.dll
2013-12-06 10:10:42 ----D---- C:\Program Files\WinDjView

======List of files/folders modified in the last 1 month======

2014-01-01 14:31:58 ----D---- C:\Program Files\trend micro
2014-01-01 14:28:45 ----D---- C:\Users\Renca\AppData\Roaming\uTorrent
2014-01-01 06:07:41 ----D---- C:\Windows\system32\config
2014-01-01 06:00:10 ----D---- C:\Users\Renca\AppData\Roaming\Dropbox
2014-01-01 05:47:20 ----D---- C:\Windows\temp
2013-12-31 11:56:50 ----D---- C:\ProgramData\Boxtools
2013-12-31 11:31:16 ----D---- C:\Windows\Microsoft.NET
2013-12-31 11:27:19 ----D---- C:\Windows\SysWOW64
2013-12-31 11:26:48 ----D---- C:\Program Files (x86)\StickIt
2013-12-31 11:25:20 ----D---- C:\Windows\system32\drivers
2013-12-31 11:22:11 ----D---- C:\Windows\system32\Tasks
2013-12-31 11:22:04 ----AD---- C:\Windows
2013-12-31 11:22:01 ----A---- C:\Windows\system32\aswBoot.exe
2013-12-31 11:20:48 ----SHD---- C:\System Volume Information
2013-12-30 10:26:01 ----D---- C:\Windows\system32\catroot
2013-12-30 08:23:57 ----D---- C:\Windows\System32
2013-12-30 08:23:57 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-12-30 08:23:56 ----D---- C:\Windows\inf
2013-12-29 14:14:47 ----D---- C:\Windows\system32\DriverStore
2013-12-29 14:06:14 ----D---- C:\Windows\system32\catroot2
2013-12-29 13:46:25 ----RD---- C:\Program Files
2013-12-29 13:44:32 ----D---- C:\ProgramData
2013-12-29 13:43:44 ----D---- C:\Windows\system32\drivers\UMDF
2013-12-29 13:01:58 ----RD---- C:\Program Files (x86)
2013-12-29 12:03:59 ----SHD---- C:\Windows\Installer
2013-12-29 12:02:17 ----D---- C:\Program Files (x86)\Nokia
2013-12-29 12:02:17 ----D---- C:\Program Files (x86)\Common Files
2013-12-29 12:00:39 ----DC---- C:\Windows\system32\DRVSTORE
2013-12-28 11:46:37 ----SD---- C:\ProgramData\Microsoft
2013-12-28 10:50:02 ----RSD---- C:\Windows\assembly
2013-12-28 06:17:59 ----D---- C:\Windows\winsxs
2013-12-28 06:14:52 ----D---- C:\Windows\SYSWOW64\cs-CZ
2013-12-28 06:14:51 ----D---- C:\Windows\SYSWOW64\wbem
2013-12-28 06:14:51 ----D---- C:\Windows\SYSWOW64\en-US
2013-12-28 06:14:51 ----D---- C:\Windows\system32\wbem
2013-12-28 06:14:51 ----D---- C:\Windows\system32\en-US
2013-12-28 06:14:51 ----D---- C:\Windows\system32\drivers\en-US
2013-12-28 06:14:51 ----D---- C:\Windows\system32\cs-CZ
2013-12-28 06:14:51 ----D---- C:\Windows\PolicyDefinitions
2013-12-28 06:10:13 ----D---- C:\Windows\QLB
2013-12-28 06:10:13 ----D---- C:\Users\Renca\AppData\Roaming\hpqLog
2013-12-26 23:13:17 ----D---- C:\Users\Renca\AppData\Roaming\Aegisub
2013-12-22 08:05:16 ----D---- C:\Program Files (x86)\The KMPlayer
2013-12-20 10:20:03 ----A---- C:\Users\Renca\AppData\Roaming\AtomicAlarmClock.ini
2013-12-18 20:45:26 ----D---- C:\Windows\Prefetch
2013-12-18 19:28:50 ----D---- C:\Program Files\Common Files
2013-12-17 21:16:51 ----D---- C:\BRON
2013-12-16 16:09:58 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2013-12-15 12:06:30 ----D---- C:\Windows\system32\MRT
2013-12-15 11:56:08 ----A---- C:\Windows\system32\MRT.exe
2013-12-15 11:43:59 ----D---- C:\Program Files (x86)\Windows Media Player
2013-12-15 11:43:58 ----D---- C:\Program Files\Windows Media Player
2013-12-15 11:43:55 ----D---- C:\Program Files\Internet Explorer
2013-12-15 11:43:55 ----D---- C:\Program Files (x86)\Internet Explorer
2013-12-14 00:13:17 ----D---- C:\BIG BANG THEORY
2013-12-13 21:29:50 ----D---- C:\Program Files (x86)\Google
2013-12-12 09:25:39 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2013-12-07 09:28:51 ----D---- C:\Windows\SYSWOW64\migration
2013-12-07 09:28:49 ----D---- C:\Windows\system32\migration
2013-12-07 09:13:25 ----D---- C:\Windows\Logs
2013-12-07 09:12:09 ----D---- C:\Windows\system32\NDF
2013-12-06 19:25:13 ----D---- C:\Windows\Tasks

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2013-11-22 65776]
R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2013-12-31 207904]
R0 FSProFilter2;FSPro File Filter 2; C:\Windows\System32\Drivers\FSPFltd2.sys [2011-06-03 57648]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 199552]
R1 aswRdr;aswRdr; \??\C:\Windows\system32\drivers\aswRdr2.sys [2013-11-22 92544]
R1 aswSnx;aswSnx; \??\C:\Windows\system32\drivers\aswSnx.sys [2013-12-31 1034464]
R1 aswSP;aswSP; \??\C:\Windows\system32\drivers\aswSP.sys [2013-12-31 422216]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 514560]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 aswMonFlt;aswMonFlt; \??\C:\Windows\system32\drivers\aswMonFlt.sys [2013-12-31 78648]
R3 ADIHdAudAddService;ADI UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\ADIHdAud.sys [2008-04-24 402432]
R3 AgereSoftModem;Agere Systems Soft Modem; C:\Windows\system32\DRIVERS\agrsm64.sys [2009-06-10 1146880]
R3 AIDA64Driver;FinalWire AIDA64 Kernel Driver; \??\C:\Program Files (x86)\FinalWire\AIDA64 Extreme\kerneld.x64 [2013-11-18 33112]
R3 aswStm;aswStm; \??\C:\Windows\system32\drivers\aswStm.sys [2013-12-31 79672]
R3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2007-07-21 3535872]
R3 BCM43XX;Broadcom 802.11 Network Adapter Driver; C:\Windows\system32\DRIVERS\bcmwl664.sys [2009-07-08 2769400]
R3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
R3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
R3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
R3 e1express;Intel(R) PRO/1000 – ovladač PCI Express síťového připojení; C:\Windows\system32\DRIVERS\e1e6032e.sys [2009-06-10 278016]
R3 HBtnKey;HP Hotkey Device; C:\Windows\system32\DRIVERS\cpqbttn.sys [2010-02-24 19000]
R3 HpqKbFiltr;HpqKbFilter Driver; C:\Windows\system32\DRIVERS\HpqKbFiltr.sys [2009-04-29 18432]
R3 huawei_enumerator;huawei_enumerator; C:\Windows\system32\DRIVERS\ew_jubusenum.sys [2012-08-20 90112]
R3 LHidFilt;Logitech SetPoint KMDF HID Filter Driver; C:\Windows\system32\DRIVERS\LHidFilt.Sys [2013-05-23 76568]
R3 LMouFilt;Logitech SetPoint KMDF Mouse Filter Driver; C:\Windows\system32\DRIVERS\LMouFilt.Sys [2013-05-23 59160]
R3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2008-03-28 324656]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S3 ATICDSDr;ATICDSDr; \??\C:\Users\Renca\AppData\Local\Temp\ATICDSDr.sys []
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 95232]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudbus.sys [2012-06-04 99384]
S3 ew_hwusbdev;Huawei MobileBroadband USB PNP Device; C:\Windows\system32\DRIVERS\ew_hwusbdev.sys [2010-07-27 117248]
S3 ew_usbenumfilter;huawei_CompositeFilter; C:\Windows\system32\DRIVERS\ew_usbenumfilter.sys [2012-10-30 14336]
S3 huawei_cdcacm;huawei_cdcacm; C:\Windows\system32\DRIVERS\ew_jucdcacm.sys [2012-08-20 104960]
S3 huawei_ext_ctrl;huawei_ext_ctrl; C:\Windows\system32\DRIVERS\ew_juextctrl.sys [2012-08-20 30720]
S3 huawei_wwanecm;huawei_wwanecm; C:\Windows\system32\DRIVERS\ew_juwwanecm.sys [2012-12-03 241152]
S3 massfilter;Mass Storage Filter Driver; C:\Windows\system32\drivers\massfilter.sys [2011-04-13 11776]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfdx64.sys [2012-10-17 26112]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 165888]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 6656]
S3 ssudmdm;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudmdm.sys [2012-06-04 203320]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 34688]
S3 Synth3dVsc;Synth3dVsc; C:\Windows\System32\drivers\synth3dvsc.sys []
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2012-08-23 57856]
S3 tsusbhub;@%SystemRoot%\system32\drivers\tsusbhub.sys,-1; C:\Windows\system32\drivers\tsusbhub.sys []
S3 usb_rndisx;Adaptér USB RNDIS; C:\Windows\system32\DRIVERS\usb8023x.sys [2013-02-12 19968]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2013-07-03 42496]
S3 VGPU;VGPU; C:\Windows\System32\drivers\rdvgkmd.sys []
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 21760]
S3 WinUsb;Android USB Driver; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 41984]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-05-11 65640]
R2 AEADIFilters;Andrea ADI Filters Service; C:\Windows\system32\AEADISRV.EXE [2007-02-06 80384]
R2 Ati External Event Utility;Ati External Event Utility; C:\Windows\system32\Ati2evxx.exe [2007-07-21 787968]
R2 AtomicAlarmClock;Atomic Alarm Clock Time; C:\Program Files\Atomic Alarm Clock\timeserv.exe [2013-04-24 2007040]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2013-12-31 50344]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 fsproflt2;FSPro Filter Service 2; C:\Windows\SysWOW64\fsproflt2.exe [2012-07-12 49512]
R2 MbnExt;Mobile Broadband Extension Service; C:\Windows\system32\svchost.exe [2009-07-14 27136]
R2 MDM;Machine Debug Manager; C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe [2006-10-26 335872]
R2 nlsX86cc;Nalpeiron Licensing Service; C:\Windows\SysWOW64\nlssrv32.exe [2012-07-05 66560]
R2 PanService;PandoraService; C:\Program Files (x86)\PANDORA.TV\PanService\PandoraService.exe [2012-06-22 625816]
R2 SQLWriter;SQL Server VSS Writer; C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe [2012-10-20 130024]
R3 Com4QLBEx;Com4QLBEx; C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe [2010-01-12 227896]
R3 hpqwmiex;hpqwmiex; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe [2009-04-30 229944]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-09-11 124088]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-09-16 116648]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2012-07-13 160944]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-12-12 257416]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-09-11 51808]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-09-16 116648]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2013-11-26 111616]
S3 LBTServ;Logitech Bluetooth Service; C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe [2013-06-13 357144]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2013-12-10 119408]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 ServiceLayer;ServiceLayer; C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe [2013-04-18 737616]
S3 SwitchBoard;SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 VsEtwService120;Visual Studio ETW Event Collection Service; C:\Program Files (x86)\Microsoft Visual Studio 12.0\Common7\Packages\Debugger\Services\VsEtwService.exe [2013-10-04 87728]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2012-08-18 1255736]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]

-----------------EOF-----------------



Log č.2:

info.txt logfile of random's system information tool 1.09 2014-01-01 14:32:09

======Uninstall list======

µTorrent-->"C:\Program Files (x86)\uTorrent\uTorrent.exe" /UNINSTALL
Adobe AIR-->c:\Program Files (x86)\Common Files\Adobe AIR\Versions\1.0\Resources\Adobe AIR Updater.exe -arp:uninstall
Adobe AIR-->MsiExec.exe /I{52E225FC-FCB4-41F7-837B-6E37FB05BD7B}
Adobe Flash Player 11 Plugin-->C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_11_9_900_170_Plugin.exe -maintain plugin
Adobe Help Manager-->msiexec /qb /x {AF37176A-78CA-545B-34EF-8B6A21514DD1}
Adobe Help Manager-->MsiExec.exe /I{AF37176A-78CA-545B-34EF-8B6A21514DD1}
Adobe Illustrator CS6-->C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\core\PDApp.exe --appletID="DWA_UI" --appletVersion="2.0" --mode="Uninstall" --mediaSignature="{4869414E-7AEA-4C8E-BE1C-8D40977FD517}"
Adobe Photoshop CS6-->C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\core\PDApp.exe --appletID="DWA_UI" --appletVersion="2.0" --mode="Uninstall" --mediaSignature="{74EB3499-8B95-4B5C-96EB-7B342F3FD0C6}"
Adobe Photoshop Lightroom 4 64-bit-->MsiExec.exe /I{669A82E0-43E2-4645-8A2E-1A3DE78F8312}
Adobe Reader XI (11.0.05) - Czech-->MsiExec.exe /I{AC76BA86-7AD7-1029-7B44-AB0000000001}
Advanced IP Scanner v1.4-->C:\Program Files (x86)\Advanced IP Scanner\uninstal.exe
Aegisub 3.0.2-->"C:\Program Files (x86)\Aegisub\unins000.exe"
AIDA64 Extreme v4.00-->"C:\Program Files (x86)\FinalWire\AIDA64 Extreme\unins000.exe"
AIMP3-->C:\PROGRA~2\AIMP3\Uninstall.exe
Aktualizace produktu Microsoft Office Excel 2007 Help (KB963678)-->msiexec /package {90120000-0016-0405-0000-0000000FF1CE} /uninstall {0A1FAC46-B899-421D-B1A2-470896DC45DB}
Aktualizace produktu Microsoft Office Powerpoint 2007 Help (KB963669)-->msiexec /package {90120000-0018-0405-0000-0000000FF1CE} /uninstall {5260BB53-C1F7-4A3B-9AEB-3EC9B37FF194}
Aktualizace produktu Microsoft Office Word 2007 Help (KB963665)-->msiexec /package {90120000-001B-0405-0000-0000000FF1CE} /uninstall {E68DD413-B834-4923-8181-0A03B7555187}
Ant Movie Catalog-->"C:\Program Files (x86)\Ant Movie Catalog\unins000.exe"
APE to MP3 Plus-->C:\Program Files (x86)\APE to MP3 Plus\uninst.exe
ATI Catalyst Install Manager-->msiexec /q/x{54A0FF28-05C4-81E3-3CC1-13D0C2519EFF} REBOOT=ReallySuppress
Atomic Alarm Clock 6.20-->"C:\Program Files\Atomic Alarm Clock\unins000.exe"
avast! Free Antivirus-->C:\Program Files\AVAST Software\Avast\Setup\Instup.exe /control_panel /instop:uninstall
Balíček ovladače systému Windows - Nokia pccsmcfd LegacyDriver (05/31/2012 7.1.2.0)-->C:\PROGRA~1\DIFX\F4092DA208C2C970\dpinst.exe /u C:\Windows\system32\DRVSTORE\pccsmcfdx6_95B9C4C4739674B910F22E6D0FB93B9D8DD7E72A\pccsmcfdx64.inf
Barvy 4.0-->"C:\Program Files\Barvy\unins000.exe"
Bluetooth OBEX File Transfer-->MsiExec.exe /I{D75BB2DA-5078-4922-81CD-17736A2D888B}
Boxoft free APE to MP3 (freeware)-->"C:\Program Files (x86)\Boxoft free APE to MP3 (freeware)\unins000.exe"
Build Tools - amd64-->MsiExec.exe /I{F74753A3-C93C-34F5-A199-993CAF602B7D}
Build Tools - x86-->MsiExec.exe /I{FB3A15FD-FC67-3A2F-892B-6890B0C56EA9}
Build Tools Language Resources - amd64-->MsiExec.exe /I{05198C22-FFCE-374A-B190-9F18CC99DAEA}
Build Tools Language Resources - x86-->MsiExec.exe /I{9347889B-C22A-3905-901F-C05D8F73C929}
Catalyst Control Center - Branding-->MsiExec.exe /I{021125D3-76FE-41CF-9022-ADB770265331}
Catalyst Control Center - Branding-->MsiExec.exe /I{30BF4E6C-D866-46F7-A4F6-81A45E97706E}
Catalyst Control Center - Branding-->MsiExec.exe /I{37AF26EB-ACCD-4F9C-A13E-81483F932203}
Catalyst Control Center - Branding-->MsiExec.exe /I{6346E85F-1CA6-4AA9-9718-A3E8BFCB572A}
Catalyst Control Center - Branding-->MsiExec.exe /I{C349C10C-1474-4000-9073-9299856C8A70}
Catalyst Control Center - Branding-->MsiExec.exe /I{F2C19209-8474-4BCB-89EC-AA0150C2B036}
CCleaner-->"C:\Program Files (x86)\CCleaner\uninst.exe"
Cisco Packet Tracer 6.0.1-->"C:\Program Files (x86)\Cisco Packet Tracer 6.0.1\unins000.exe"
ContinueToSave-->C:\PROGRA~3\INSTAL~1\{9D75D~1\Setup.exe /remove /q0
Corel Graphics - Windows Shell Extension 64 Bit-->MsiExec.exe /I{E3B264CE-D9CF-448B-960F-4F832FB1F990}
Corel Graphics - Windows Shell Extension-->c:\Program Files (x86)\Common Files\Corel\Shared\Shell Extension\ShellUninst.exe -ProductCode {B922902F-E9E9-4AD9-B87D-7F62FA9EA1AD} -arp
Corel Graphics - Windows Shell Extension-->MsiExec.exe /X{B922902F-E9E9-4AD9-B87D-7F62FA9EA1AD}
dBpoweramp [Calculate Audio CRC] Codec-->"C:\Windows\system32\SpoonUninstall.exe" <uninstall>C:\Windows\system32\SpoonUninstall-dBpoweramp [Calculate Audio CRC] Codec.dat
dBpoweramp FLAC Codec-->"C:\Windows\system32\SpoonUninstall.exe" <uninstall>C:\Windows\system32\SpoonUninstall-dBpoweramp FLAC Codec.dat
Entity Framework Tools for Visual Studio 2013-->MsiExec.exe /X{08AEF86A-1956-4846-B906-B01350E96E30}
eReg-->MsiExec.exe /I{3EE9BCAE-E9A9-45E5-9B1C-83A4D357E05C}
FastStone Image Viewer 4.6-->C:\Program Files (x86)\FastStone Image Viewer\uninst.exe
FileViewPro-->"C:\Program Files\FileViewPro\unins000.exe"
Friendly Pinger-->C:\Program Files (x86)\FPinger\Uninstal.exe /u
GeoGebra 4.2-->"C:\Program Files (x86)\GeoGebra 4.2\uninstaller.exe"
GoldWave v5.67-->"C:\Program Files (x86)\GoldWave\unstall.exe" "GoldWave v5.67" "C:\Program Files (x86)\GoldWave\unstall.log"
Google Earth Plug-in-->MsiExec.exe /X{4AB54F11-2F8C-11E3-B09F-B8AC6F97B88E}
Google Update Helper-->MsiExec.exe /I{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
HDR Efex Pro 2-->C:\Program Files\Nik Software\HDR Efex Pro 2\Uninstall HDR Efex Pro 2.exe
Hotfix for Microsoft Visual Studio 2007 Tools for Applications - ENU (KB946040)-->c:\Windows\SysWOW64\msiexec.exe /package {AA4A4B2C-0465-3CF8-BA76-27A027D8ACAB} /uninstall /qb+ REBOOTPROMPT=""
Hotfix for Microsoft Visual Studio 2007 Tools for Applications - ENU (KB946308)-->c:\Windows\SysWOW64\msiexec.exe /package {AA4A4B2C-0465-3CF8-BA76-27A027D8ACAB} /uninstall /qb+ REBOOTPROMPT=""
Hotfix for Microsoft Visual Studio 2007 Tools for Applications - ENU (KB946344)-->c:\Windows\SysWOW64\msiexec.exe /package {AA4A4B2C-0465-3CF8-BA76-27A027D8ACAB} /uninstall /qb+ REBOOTPROMPT=""
Hotfix for Microsoft Visual Studio 2007 Tools for Applications - ENU (KB947540)-->c:\Windows\SysWOW64\msiexec.exe /package {AA4A4B2C-0465-3CF8-BA76-27A027D8ACAB} /uninstall /qb+ REBOOTPROMPT=""
Hotfix for Microsoft Visual Studio 2007 Tools for Applications - ENU (KB947789)-->c:\Windows\SysWOW64\msiexec.exe /package {AA4A4B2C-0465-3CF8-BA76-27A027D8ACAB} /uninstall /qb+ REBOOTPROMPT=""
HP Quick Launch Buttons-->"C:\Program Files (x86)\InstallShield Installation Information\{34D2AB40-150D-475D-AE32-BD23FB5EE355}\setup.exe" -runfromtemp -l0x0405 -removeonly uninst
Huawei Drivers-->C:\Program Files (x86)\Huawei\Drivers\uninstall.exe
IconSaver-->C:\Program Files (x86)\IconSaver\uninstall.exe
inSSIDer 3-->MsiExec.exe /X{A80CEA4E-74C1-4F9F-806B-E1D9AFC01768}
jAlbum-->MsiExec.exe /I{D3BA6097-1693-46BE-B846-E6D1D85126D2}
Java 7 Update 21-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83217017FF}
Lame ACM MP3 Codec-->C:\Windows\system32\rundll32.exe setupapi,InstallHinfSection Remove_LameMP3 132 C:\Windows\INF\LameACM.inf
LastPass (pouze odinstalovat)-->C:\Program Files (x86)\LastPass\lastpass.exe --uninstall
Logitech Media Server 7.7.3-->"C:\Program Files (x86)\Squeezebox\unins000.exe"
Logitech SetPoint 6.61-->C:\Program Files\Common Files\LogiShrd\sp6_Uninstall\setup.exe
Microsoft .NET Framework 4 Multi-Targeting Pack-->MsiExec.exe /I{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}
Microsoft .NET Framework 4.5 Multi-Targeting Pack-->MsiExec.exe /X{56E962F0-4FB0-3C67-88DB-9EAA6EEFC493}
Microsoft .NET Framework 4.5 SDK - CSY Lang Pack-->MsiExec.exe /X{921A7733-44B1-4433-9562-4ECDDF0B7A37}
Microsoft .NET Framework 4.5 SDK-->MsiExec.exe /X{4AE57014-05C4-4864-A13D-86517A7E1BA4}
Microsoft .NET Framework 4.5.1 (CSY)-->MsiExec.exe /X{50813B8C-FCBB-3C61-8039-EAAA93029066}
Microsoft .NET Framework 4.5.1 (čeština)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\v4.5.50938\CSY\\Setup.exe /repair /x86 /x64 /lcid 1029
Microsoft .NET Framework 4.5.1 Multi-Targeting Pack (ENU)-->MsiExec.exe /X{964A79BD-5901-39B4-9288-E1E8F0EDD0CF}
Microsoft .NET Framework 4.5.1 Multi-Targeting Pack (ENU)-->MsiExec.exe /X{D3517C62-68A5-37CF-92F7-93C029A89681}
Microsoft .NET Framework 4.5.1 Multi-Targeting Pack-->MsiExec.exe /X{6A0C6700-EA93-372C-8871-DCCF13D160A4}
Microsoft .NET Framework 4.5.1 SDK (ENU)-->MsiExec.exe /X{7CCDA034-B4FF-4855-B8A4-E080AE3DC129}
Microsoft .NET Framework 4.5.1 SDK-->MsiExec.exe /X{19A5926D-66E1-46FC-854D-163AA10A52D3}
Microsoft .NET Framework 4.5.1-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\v4.5.50938\\Setup.exe /repair /x86 /x64
Microsoft .NET Framework 4.5.1-->MsiExec.exe /X{7DEBE4EB-6B40-3766-BB35-5CBBC385DA37}
Microsoft C++ REST SDK for Visual Studio 2013-->MsiExec.exe /I{A2CCB3C1-3DF9-4E3E-8D3F-DDBBCDDB28B5}
Microsoft Help Viewer 2.1 Language Pack - CSY-->MsiExec.exe /X{9E0D2C12-662A-3E59-9686-2771E0941424}
Microsoft Help Viewer 2.1 Language Pack - CSY-->msiexec.exe /X{9E0D2C12-662A-3E59-9686-2771E0941424}
Microsoft Help Viewer 2.1-->MsiExec.exe /X{0398BFBC-991B-3275-9463-D2BF91B3C80B}
Microsoft Help Viewer 2.1-->msiexec.exe /X{0398BFBC-991B-3275-9463-D2BF91B3C80B}
Microsoft NuGet - Visual Studio Express 2013 for Windows Desktop-->MsiExec.exe /I{ED885463-044B-436D-9DD9-B486A4FFF964}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-0015-0405-0000-0000000FF1CE} /uninstall {3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-0016-0405-0000-0000000FF1CE} /uninstall {3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-0018-0405-0000-0000000FF1CE} /uninstall {3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-0019-0405-0000-0000000FF1CE} /uninstall {3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-001A-0405-0000-0000000FF1CE} /uninstall {3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-001B-0405-0000-0000000FF1CE} /uninstall {3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-002A-0000-1000-0000000FF1CE} /uninstall {664655D8-B9BB-455D-8A58-7EAF7B0B2862}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-002A-0405-1000-0000000FF1CE} /uninstall {A0AAD4D5-9F9C-49BB-AB64-0FD4695424E8}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {6E107EB7-8B55-48BF-ACCB-199F86A2CD93}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-0044-0405-0000-0000000FF1CE} /uninstall {3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-006E-0405-0000-0000000FF1CE} /uninstall {A0AAD4D5-9F9C-49BB-AB64-0FD4695424E8}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-00A1-0405-0000-0000000FF1CE} /uninstall {3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-00BA-0405-0000-0000000FF1CE} /uninstall {3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}
Microsoft Office Access MUI (Czech) 2007-->MsiExec.exe /X{90120000-0015-0405-0000-0000000FF1CE}
Microsoft Office Enterprise 2007-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" /uninstall ENTERPRISE /dll OSETUP.DLL
Microsoft Office Enterprise 2007-->MsiExec.exe /X{90120000-0030-0000-0000-0000000FF1CE}
Microsoft Office Excel MUI (Czech) 2007-->MsiExec.exe /X{90120000-0016-0405-0000-0000000FF1CE}
Microsoft Office File Validation Add-In-->MsiExec.exe /I{90140000-2005-0000-0000-0000000FF1CE}
Microsoft Office Groove MUI (Czech) 2007-->MsiExec.exe /X{90120000-00BA-0405-0000-0000000FF1CE}
Microsoft Office InfoPath MUI (Czech) 2007-->MsiExec.exe /X{90120000-0044-0405-0000-0000000FF1CE}
Microsoft Office Office 64-bit Components 2007-->MsiExec.exe /X{90120000-002A-0000-1000-0000000FF1CE}
Microsoft Office OneNote MUI (Czech) 2007-->MsiExec.exe /X{90120000-00A1-0405-0000-0000000FF1CE}
Microsoft Office Outlook MUI (Czech) 2007-->MsiExec.exe /X{90120000-001A-0405-0000-0000000FF1CE}
Microsoft Office PowerPoint MUI (Czech) 2007-->MsiExec.exe /X{90120000-0018-0405-0000-0000000FF1CE}
Microsoft Office Proof (Czech) 2007-->MsiExec.exe /X{90120000-001F-0405-0000-0000000FF1CE}
Microsoft Office Proof (English) 2007-->MsiExec.exe /X{90120000-001F-0409-0000-0000000FF1CE}
Microsoft Office Proof (German) 2007-->MsiExec.exe /X{90120000-001F-0407-0000-0000000FF1CE}
Microsoft Office Proof (Slovak) 2007-->MsiExec.exe /X{90120000-001F-041B-0000-0000000FF1CE}
Microsoft Office Proofing (Czech) 2007-->MsiExec.exe /X{90120000-002C-0405-0000-0000000FF1CE}
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-001F-0405-0000-0000000FF1CE} /uninstall {0B7A4B67-2A38-42B1-9857-662FAB361E08}
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-001F-0407-0000-0000000FF1CE} /uninstall {928D7B99-2BEA-49F9-83B8-20FA57860643}
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-001F-0409-0000-0000000FF1CE} /uninstall {1FF96026-A04A-4C3E-B50A-BB7022654D0F}
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-001F-041B-0000-0000000FF1CE} /uninstall {FDF9A959-241A-4662-A8DE-7DED9C22D160}
Microsoft Office Publisher MUI (Czech) 2007-->MsiExec.exe /X{90120000-0019-0405-0000-0000000FF1CE}
Microsoft Office Shared 64-bit MUI (Czech) 2007-->MsiExec.exe /X{90120000-002A-0405-1000-0000000FF1CE}
Microsoft Office Shared MUI (Czech) 2007-->MsiExec.exe /X{90120000-006E-0405-0000-0000000FF1CE}
Microsoft Office Word MUI (Czech) 2007-->MsiExec.exe /X{90120000-001B-0405-0000-0000000FF1CE}
Microsoft Report Viewer Redistributable 2005-->C:\Windows\Microsoft.NET\Framework\v2.0.50727\Microsoft Report Viewer Redistributable 2005\install.exe
Microsoft Silverlight-->MsiExec.exe /X{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
Microsoft SQL Server 2012 Command Line Utilities -->MsiExec.exe /I{58FED865-4F13-408D-A5BF-996019C4B936}
Microsoft SQL Server 2012 Data-Tier App Framework (x64)-->MsiExec.exe /I{A6BA243E-85A3-4635-A269-32949C98AC7F}
Microsoft SQL Server 2012 Data-Tier App Framework -->MsiExec.exe /I{1B876496-B3A2-4D22-9B12-B608A3FD4B8B}
Microsoft SQL Server 2012 Express LocalDB -->MsiExec.exe /I{6C026A91-640F-4A23-8B68-05D589CC6F18}
Microsoft SQL Server 2012 Management Objects (x64)-->MsiExec.exe /I{43A5C316-9521-49C3-B9B6-FCE5E1005DF0}
Microsoft SQL Server 2012 Management Objects -->MsiExec.exe /I{2F7DBBE6-8EBC-495C-9041-46A772F4E311}
Microsoft SQL Server 2012 Native Client -->MsiExec.exe /I{D411E9C9-CE62-4DBF-9D92-4CB22B750ED5}
Microsoft SQL Server 2012 Transact-SQL ScriptDom -->MsiExec.exe /I{54C5041B-0E91-4E92-8417-AAA12493C790}
Microsoft SQL Server 2012 T-SQL Language Service -->MsiExec.exe /I{04DD7AF4-A6D3-4E30-9BB9-3B3670719234}
Microsoft SQL Server Compact 4.0 SP1 x64 ENU-->MsiExec.exe /X{78909610-D229-459C-A936-25D92283D3FD}
Microsoft SQL Server Data Tools - enu (12.0.30919.1)-->MsiExec.exe /X{0D7FCBFB-F478-4D32-901C-83F0BF5A3501}
Microsoft SQL Server Data Tools Build Utilities - enu (12.0.30919.1)-->MsiExec.exe /X{6781FF9B-E87D-4A03-9373-A55A288B83FA}
Microsoft System CLR Types for SQL Server 2012 (x64)-->MsiExec.exe /I{05FF8209-C4F1-4C77-BC28-791653156D20}
Microsoft System CLR Types for SQL Server 2012-->MsiExec.exe /I{070C38AC-05CE-43DF-9A20-141332F6AB2B}
Microsoft Team Foundation Server 2013 Object Model (x64)-->MsiExec.exe /I{65C91666-C3E8-3A42-BDA8-87932DD34F89}
Microsoft Team Foundation Server 2013 Object Model Language Pack (x64) – CSY-->MsiExec.exe /I{15114F24-C659-3F28-8113-8969B6F2AFB3}
Microsoft Team Foundation Server 2013 Object Model Language Pack (x64) - ENU-->MsiExec.exe /I{C41498FE-0BF8-3B22-9785-231CE53C728E}
Microsoft Visual C++ x64 Libraries-->MsiExec.exe /I{0B698858-DAB0-4F9E-A10A-125B274EDA06}
Microsoft Visual C++ x86 Libraries-->MsiExec.exe /I{A3B8D9FB-CA7D-4487-8CA2-A6A2C8AD1077}
Microsoft Visual C++ 2005 Redistributable (x64)-->MsiExec.exe /X{6E8E85E8-CE4B-4FF5-91F7-04999C9FAE6A}
Microsoft Visual C++ 2005 Redistributable (x64)-->MsiExec.exe /X{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17-->MsiExec.exe /X{8220EEFE-38CD-377E-8595-13398D740ACE}
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148-->MsiExec.exe /X{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161-->MsiExec.exe /X{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17-->MsiExec.exe /X{9A25302D-30C0-39D9-BD6F-21E6EC160475}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148-->MsiExec.exe /X{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161-->MsiExec.exe /X{9BE518E6-ECC6-35A9-88E4-87755C07200F}
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219-->MsiExec.exe /X{1D8E6291-B0D5-35EC-8441-6616F567A0F7}
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219-->MsiExec.exe /X{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}
Microsoft Visual C++ 2013 32bit Compilers - CSY Resources-->MsiExec.exe /X{05540247-FFFE-419E-A72A-9AA5B5FF3E6F}
Microsoft Visual C++ 2013 32bit Compilers - ENU Resources-->MsiExec.exe /X{6C06FEE9-C64E-453F-B8A5-D9E9B79ED040}
Microsoft Visual C++ 2013 Core Libraries-->MsiExec.exe /X{84D88F57-4130-30FE-A0B6-1E04428FE1F6}
Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005-->MsiExec.exe /X{929FBD26-9020-399B-9A7A-751D61F0B942}
Microsoft Visual C++ 2013 x64 Debug Runtime - 12.0.21005-->MsiExec.exe /X{C596D608-3E74-3232-8CA5-DF1DCB9F10DE}
Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005-->MsiExec.exe /X{A749D8E6-B613-3BE3-8F5F-045C84EBA29B}
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005-->MsiExec.exe /X{F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185}
Microsoft Visual C++ 2013 x86 Debug Runtime - 12.0.21005-->MsiExec.exe /X{E5CAE8D2-9F9F-3BEA-AA0F-B5B40611C704}
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005-->MsiExec.exe /X{13A4EE12-23EA-3371-91EE-EFB36DDFFF3E}
Microsoft Visual C++ 2013 x86-x64 Compilers-->MsiExec.exe /X{678800C0-D94E-4513-89CB-478F2B781A0B}
Microsoft Visual Studio 2013 Express Prerequisites x64 - ENU-->MsiExec.exe /I{60391499-BB97-3FC7-9F17-2BF560DCE231}
Microsoft Visual Studio 2013 Preparation-->MsiExec.exe /I{9E7DE17D-A9E2-4762-8C10-1E80F5976F4A}
Microsoft Visual Studio 2013 Shell (Minimum) Interop Assemblies-->MsiExec.exe /I{AE937DBA-FEFD-3BFE-9860-0591C0F91D61}
Microsoft Visual Studio 2013 Shell (Minimum) Resources-->MsiExec.exe /I{985EF141-95DD-3934-8F23-7C2C4C61E5F7}
Microsoft Visual Studio 2013 Shell (Minimum)-->MsiExec.exe /I{5411060C-8F8C-393D-8D3B-26AF2C92FABB}
Microsoft Visual Studio 2013 Team Explorer Language Pack - ENU-->MsiExec.exe /I{492FCC0B-45E1-383A-A2CF-9E7F305AC200}
Microsoft Visual Studio Express 2013 for Windows Desktop – CSY-->MsiExec.exe /X{6F0757FF-E2AF-3B91-89F8-07DE1CC5154C}
Microsoft Visual Studio Express 2013 for Windows Desktop - ENU-->"C:\ProgramData\Package Cache\{bec3d87e-1d6d-4b15-8383-29068c86b888}\wdexpress_full.exe" /uninstall
Microsoft Visual Studio Express 2013 for Windows Desktop - ENU-->MsiExec.exe /X{1F1AA110-D758-30C1-A1B4-5484C72BCACE}
Microsoft Visual Studio Express 2013 for Windows Desktop Language Pack – CSY-->"C:\ProgramData\Package Cache\{a742cecc-7f50-4aac-a250-b406935bbc24}\wdexpress_langpack.exe" /uninstall
Microsoft Visual Studio Express 2013 for Windows Desktop-->MsiExec.exe /X{64484316-E4BA-38B3-8954-0358522A8D40}
Microsoft Visual Studio Tools for Applications 2.0 - ENU-->MsiExec.exe /X{AA4A4B2C-0465-3CF8-BA76-27A027D8ACAB}
Microsoft Visual Studio Tools for Applications 2.0 Runtime-->MsiExec.exe /X{299C0434-4F4E-341F-A916-4E07AEB35E79}
Microsoft_VC100_CRT_SP1_x64-->MsiExec.exe /I{680EDA59-9266-44B4-949E-0C24F65DFF82}
Microsoft_VC100_CRT_SP1_x86-->MsiExec.exe /I{E3B64CC5-C011-40C0-92BC-7316CD5E5688}
Microsoft_VC80_CRT_x86-->MsiExec.exe /I{92D58719-BBC1-4CC3-A08B-56C9E884CC2C}
Microsoft_VC90_CRT_x86-->MsiExec.exe /I{08D2E121-7F6A-43EB-97FD-629B44903403}
Mobogenie-->C:\Program Files (x86)\Mobogenie\uninst.exe
MozBackup 1.5.1-->C:\Program Files (x86)\MozBackup\Uninstall.exe
Mozilla Firefox 26.0 (x86 cs)-->"C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe"
Mozilla Maintenance Service-->"C:\Program Files (x86)\Mozilla Maintenance Service\uninstall.exe"
Mozilla Thunderbird 24.2.0 (x86 cs)-->C:\Program Files (x86)\Mozilla Thunderbird\uninstall\helper.exe
MSVC80_x64_v2-->MsiExec.exe /I{4D668D4F-FAA2-4726-834C-31F4614F312E}
MSVC80_x86_v2-->MsiExec.exe /I{6D3245B1-8DB8-4A23-9CD2-2C90F40ABAF6}
MSVC90_x64-->MsiExec.exe /I{AB071C8B-873C-459F-ACA9-9EBE03C3E89B}
MSVC90_x86-->MsiExec.exe /I{AF111648-99A1-453E-81DD-80DBBF6DAD0D}
MSXML 4.0 SP2 (KB954430)-->MsiExec.exe /I{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
MSXML 4.0 SP2 (KB973688)-->MsiExec.exe /I{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}
Nástroj Preparation sady Microsoft Visual Studio 2013-->MsiExec.exe /I{20EEBE27-3EF6-49C3-A076-48F27C2664C0}
NCDownloader-->"C:\Program Files (x86)\Solibo Ltd\NCdownloader\unins000.exe"
NirSoft Wireless Network Watcher-->"C:\Program Files (x86)\NirSoft\Wireless Network Watcher\uninst.exe"
Nokia Connectivity Cable Driver-->MsiExec.exe /I{29373274-977E-413C-A4DE-DC0F8E80C429}
Nokia Suite-->C:\ProgramData\NokiaInstallerCache\ProductCache\{D5878294-C113-43c5-A24F-FC333C52015A}\{EDB188F5-D8E8-42EE-89E0-F212DA48CB81}\Installer.exe
Nokia Suite-->MsiExec.exe /X{EDB188F5-D8E8-42EE-89E0-F212DA48CB81}
ObjectDock Plus-->"C:\Program Files (x86)\Stardock\ObjectDock Plus\uninstall.exe" "/U:C:\Program Files (x86)\Stardock\ObjectDock Plus\Uninstall\uninstall.xml"
Pandora Service-->"C:\Program Files (x86)\PANDORA.TV\PanService\unins000.exe"
PC Connectivity Solution-->MsiExec.exe /I{6D01D1B1-17BD-4F10-BB11-F08F0C47D42B}
PDF Settings CS6-->MsiExec.exe /I{BFEAAE77-BD7F-4534-B286-9C5CB4697EB1}
Poznáváme C# a Microsoft.NET -->"C:\Program Files (x86)\Poznáváme C# a Microsoft.NET\unins000.exe"
Prerequisites for SSDT -->MsiExec.exe /I{35C1D9D6-87C0-46A3-B1B4-EDBCC063221C}
Průzkumník týmových projektů sady Microsoft Visual Studio 2013 – jazyková sada – CSY-->MsiExec.exe /I{9DD44168-5F13-3313-A7EE-D0526F64BEA3}
PSPad editor-->"C:\Program Files (x86)\PSPad editor\Uninst\unins000.exe"
QLBCASL-->MsiExec.exe /I{F1D7AC58-554A-4A58-B784-B61558B1449A}
Recepty doma-->"C:\Program Files (x86)\Recepty doma\unins000.exe"
SAMSUNG USB Driver for Mobile Phones-->C:\Program Files\SAMSUNG\USB Drivers\Uninstall.exe
Security Update for Microsoft Office 2007 suites (KB2596615) 32-Bit Edition -->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {C6997D22-CC93-4ED9-AD8A-02C3F3D2F1F9}
Security Update for Microsoft Office 2007 suites (KB2596672) 32-Bit Edition -->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {5DD3FF90-B302-45B2-A188-C5EA7ACD5D46}
Security Update for Microsoft Office 2007 suites (KB2596744) 32-Bit Edition -->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {D33B9EF5-3801-496A-A2D6-B7F4BE972D75}
Security Update for Microsoft Office 2007 suites (KB2596754) 32-Bit Edition -->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {B145DBBB-7778-4A5D-9D2B-DA6569F02391}
Security Update for Microsoft Office 2007 suites (KB2596785) 32-Bit Edition-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {A0D5F849-D9D5-48ED-99D0-C74D7BFA6A09}
Security Update for Microsoft Office 2007 suites (KB2596792) 32-Bit Edition-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {E34960DB-2A93-45DB-A208-02650F7AB09C}
Security Update for Microsoft Office 2007 suites (KB2596856) 32-Bit Edition -->msiexec /package {90120000-002A-0000-1000-0000000FF1CE} /uninstall {2623A96B-78E5-42CC-AB55-6A3969B32E36}
Security Update for Microsoft Office 2007 suites (KB2596856) 32-Bit Edition -->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {2623A96B-78E5-42CC-AB55-6A3969B32E36}
Security Update for Microsoft Office 2007 suites (KB2596871) 32-Bit Edition-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {293FB6BE-D3EB-4162-B522-F9108040B9FE}
Security Update for Microsoft Office 2007 suites (KB2597162) 32-Bit Edition -->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {3069CE04-082C-4669-9BA1-E6AA66330C1F}
Security Update for Microsoft Office 2007 suites (KB2597969) 32-Bit Edition-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {2B3C041A-A7F2-4A24-968D-4BEB6A123D15}
Security Update for Microsoft Office 2007 suites (KB2687314) 32-Bit Edition -->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {C8F44A46-5C2F-43D8-A0E7-B32E098EDA63}
Security Update for Microsoft Office 2007 suites (KB2687439) 32-Bit Edition -->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {3579CE34-B225-4B19-A3AF-DE5F562A212F}
Security Update for Microsoft Office 2007 suites (KB2687441) 32-Bit Edition -->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {EF5B5C7F-20CB-4A3A-AC3D-F5DE2C2BFDC7}
Security Update for Microsoft Office Excel 2007 (KB2597161) 32-Bit Edition -->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {B4C12F08-B0EF-4CC4-AD5F-381DD62BF640}
Security Update for Microsoft Office InfoPath 2007 (KB2687440) 32-Bit Edition -->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {8F311D6C-D8DD-4C32-9457-1A129CABD1A5}
Security Update for Microsoft Office PowerPoint 2007 (KB2596764) 32-Bit Edition-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {AEA16A27-0B97-4670-818F-A98D06EC0A6F}
Security Update for Microsoft Office PowerPoint 2007 (KB2596912) 32-Bit Edition-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {0EF0D4FB-BB23-4515-AAEA-1240AC2DA525}
Security Update for Microsoft Office Publisher 2007 (KB2596705) 32-Bit Edition-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {5A8732F0-C20F-4A9B-A2A9-66FE7A586C35}
Security Update for Microsoft Office Word 2007 (KB2687315) 32-Bit Edition -->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {71190DF4-8724-4A56-9054-AE97FDC57115}
Skype Click to Call-->MsiExec.exe /I{B6CF2967-C81E-40C0-9815-C05774FEF120}
Skype™ 5.10-->MsiExec.exe /X{EE7257A2-39A2-4D2F-9DAC-F9F25B8AE1D8}
StickIt-->"C:\Program Files (x86)\StickIt\unins000.exe"
SubEditor 1.02-->"C:\Program Files (x86)\SubEditor\unins000.exe"
Synaptics Pointing Device Driver-->rundll32.exe "C:\Program Files\Synaptics\SynTP\SynISDLL.dll",standAloneUninstall
Team Explorer for Microsoft Visual Studio 2013-->MsiExec.exe /I{C9E7751E-88ED-36CF-B610-71A1D262E906}
The KMPlayer (remove only)-->"C:\Program Files (x86)\The KMPlayer\uninstall.exe"
The Lord of the Rings FREE Trial -->MsiExec.exe /X{8ACC73AA-6511-7C55-B1A9-8E5D1DEAFAA3}
T-Mobile Internet Manager-->C:\Program Files (x86)\T-Mobile\T-Mobile Internet Manager\uninstall.exe
TopStyle 5-->"C:\Program Files (x86)\TopStyle 5\unins000.exe"
Total Commander 64-bit (Remove or Repair)-->C:\Program Files (x86)\totalcmd\tcunin64.exe
Total Uninstall 6.2.1-->"C:\Program Files\Total Uninstall 6\unins000.exe"
Ulož.to File Manager verze 1.6-->"C:\Program Files (x86)\Ulozto File Manager\unins000.exe"
Update for (KB2504637)-->C:\Windows\SysWOW64\msiexec.exe /package {CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE} /uninstall {815F0BC1-7E54-300C-9ACA-C9460FDF6F78} /qb+ REBOOTPROMPT=""
Update for 2007 Microsoft Office System (KB967642)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {C444285D-5E4F-48A4-91DD-47AAAA68E92D}
Update for Microsoft Office Outlook 2007 (KB2596598) 32-Bit Edition-->msiexec /package {90120000-001A-0405-0000-0000000FF1CE} /uninstall {406B16EF-A2B2-4DB3-8A27-D20349B71617}
Update for Microsoft Office Outlook 2007 (KB2596598) 32-Bit Edition-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {8B689F89-5E1C-4DA9-B2B1-7B3843275596}
Update for Microsoft Office Outlook 2007 Junk Email Filter (KB2687407) 32-Bit Edition-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {824C8467-C873-4D17-BDA5-80578FBF3D0A}
WIFi Locator verze 1.1-->"C:\Program Files (x86)\WIFi Locator\unins000.exe"
WinDjView 2.0.2-->C:\Program Files\WinDjView\uninstall.exe
Windows Software Development Kit DirectX x64 Remote-->MsiExec.exe /I{5247E16E-BCF8-95AB-1653-B3F8FBF8B3F1}
Windows Software Development Kit DirectX x64 Remote-->MsiExec.exe /I{B74B199A-EDD4-B657-E055-327D454402D2}
Windows Software Development Kit DirectX x86 Remote-->MsiExec.exe /I{A1CB8286-CFB3-A985-D799-721A0F2A27F3}
Windows Software Development Kit DirectX x86 Remote-->MsiExec.exe /I{A6030DAD-1600-F767-C8DD-C722ADFE8FBC}
Windows Software Development Kit for Windows Store Apps DirectX x64 Remote-->MsiExec.exe /I{96F4525A-470D-F15C-796E-58D9988C3E5F}
Windows Software Development Kit for Windows Store Apps DirectX x86 Remote-->MsiExec.exe /I{56AD3004-0B49-967F-F682-B05650B61A78}
Windows Software Development Kit for Windows Store Apps-->MsiExec.exe /I{37464E70-B0B9-9DFF-649A-CBE169BAD657}
Windows Software Development Kit-->MsiExec.exe /I{5D5CFAD6-9F93-8C63-3EB0-B6A0D3D4BD12}
Windows Software Development Kit-->MsiExec.exe /I{984022F2-9BCA-A41D-6A38-1AE658F01415}
Windows XP Targeting with C++-->MsiExec.exe /X{F361FE04-789E-42F3-BBAB-E7B380AA5E06}
WinOrganizer-->"C:\Program Files (x86)\WinOrganizer\uninstall.exe"
WinRAR 4.20 (64-bit)-->C:\Program Files\WinRAR\uninstall.exe
WinZip 16.5-->MsiExec.exe /X{CD95F661-A5C4-44F5-A6AA-ECDD91C240D3}
Zdroje prostředí sady Microsoft Visual Studio 2013 (minimální)-->MsiExec.exe /I{197C63A8-0847-3280-A010-9DB90779B825}
ZTE Drivers-->C:\Program Files (x86)\ZTE\Drivers\uninstall.exe

======System event log======

Computer Name: NB-IVO
Event Code: 7036
Message: Stav služby Funkčnost aplikací byl změněn na: Zastaveno
Record Number: 113060
Source Name: Service Control Manager
Time Written: 20130331131345.991380-000
Event Type: Informace
User:

Computer Name: NB-IVO
Event Code: 7036
Message: Stav služby Služba Plánovač multimédií byl změněn na: Zastaveno
Record Number: 113059
Source Name: Service Control Manager
Time Written: 20130331130743.401641-000
Event Type: Informace
User:

Computer Name: NB-IVO
Event Code: 7036
Message: Stav služby Adobe Flash Player Update Service byl změněn na: Zastaveno
Record Number: 113058
Source Name: Service Control Manager
Time Written: 20130331130700.145167-000
Event Type: Informace
User:

Computer Name: NB-IVO
Event Code: 7036
Message: Stav služby Adobe Flash Player Update Service byl změněn na: Spuštěno
Record Number: 113057
Source Name: Service Control Manager
Time Written: 20130331130700.144167-000
Event Type: Informace
User:

Computer Name: NB-IVO
Event Code: 7036
Message: Stav služby Funkčnost aplikací byl změněn na: Spuštěno
Record Number: 113056
Source Name: Service Control Manager
Time Written: 20130331130345.984062-000
Event Type: Informace
User:

=====Application event log=====

Computer Name: 37L4247E29-32
Event Code: 1001
Message: Chybný blok , typ 0
Název události: PnPDriverNotFound
Reakce: Není k dispozici
ID souboru CAB: 0

Podpis problému:
P1: x64
P2: ACPI\HPQ0006
P3:
P4:
P5:
P6:
P7:
P8:
P9:
P10:

Připojené soubory:
C:\Windows\Temp\DMI6D52.tmp.log.xml

Tyto soubory mohou být k dispozici zde:
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_x64_6dfe6c8ac5f65dd73102392594e3db05aab49e5_cab_03826dfe

Symbol analýzy:
Opětovné hledání řešení: 0
ID hlášení: 03c8dae9-dbb1-11e1-a941-e89c09729e79
Stav hlášení: 6
Record Number: 5
Source Name: Windows Error Reporting
Time Written: 20120801081512.000000-000
Event Type: Informace
User:

Computer Name: 37L4247E29-32
Event Code: 5617
Message: Windows Management Instrumentation Service subsystems initialized successfully
Record Number: 4
Source Name: Microsoft-Windows-WMI
Time Written: 20120801081357.000000-000
Event Type: Informace
User:

Computer Name: 37L4247E29-32
Event Code: 5615
Message: Windows Management Instrumentation Service started sucessfully
Record Number: 3
Source Name: Microsoft-Windows-WMI
Time Written: 20120801081348.000000-000
Event Type: Informace
User:

Computer Name: 37L4247E29-32
Event Code: 1531
Message: Služba Profil uživatele byla úspěšně spuštěna.


Record Number: 2
Source Name: Microsoft-Windows-User Profiles Service
Time Written: 20120801081341.784516-000
Event Type: Informace
User: NT AUTHORITY\SYSTEM

Computer Name: 37L4247E29-32
Event Code: 4625
Message: Subsystém EventSystem zabraňuje vytváření duplicitních záznamů v protokolu událostí po dobu 86400 sekund. Tuto dobu lze změnit pomocí hodnoty REG_DWORD s názvem SuppressDuplicateDuration v následujícím klíči registru: HKLM\Software\Microsoft\EventSystem\EventLog.
Record Number: 1
Source Name: Microsoft-Windows-EventSystem
Time Written: 20120801081342.000000-000
Event Type: Informace
User:

=====Security event log=====

Computer Name: NB-IVO
Event Code: 4738
Message: Byl změněn uživatelský účet.

Předmět:
ID zabezpečení: S-1-5-21-725503666-4252985257-3050127159-1000
Název účtu: Renca
Doména účtu: NB-IVO
ID přihlášení: 0x15bc7

Cílový účet:
ID zabezpečení: S-1-5-21-725503666-4252985257-3050127159-1000
Název účtu: Renca
Doména účtu: NB-IVO

Změněné atributy:
Název účtu SAM: Renca
Zobrazovaný název: Ivo
Zaregistrovaný název uživatele: -
Domovský adresář: <hodnota nebyla nastavena>
Domovská jednotka: <hodnota nebyla nastavena>
Cesta skriptu: <hodnota nebyla nastavena>
Cesta profilu: <hodnota nebyla nastavena>
Pracovní stanice uživatele: <hodnota nebyla nastavena>
Poslední nastavení hesla: 1.8.2012 10:23:30
Vypršení platnosti účtu: <nikdy>
ID primární skupiny: 513
Povolené delegování: -
Původní hodnota UAC: 0x214
Nová hodnota UAC: 0x214
Řízení účtu uživatele: -
Parametry uživatele: <hodnota nebyla nastavena>
Historie identifikátoru zabezpečení: -
Přihlašovací hodiny: Vše

Další informace:
Oprávnění: -
Record Number: 9515
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20121027230316.605393-000
Event Type: Úspěšný audit
User:

Computer Name: NB-IVO
Event Code: 4672
Message: Novému přihlášení byla přiřazena zvláštní oprávnění.

Předmět:
ID zabezpečení: S-1-5-18
Název účtu: SYSTEM
Doména účtu: NT AUTHORITY
ID přihlášení: 0x3e7

Oprávnění: SeAssignPrimaryTokenPrivilege
SeTcbPrivilege
SeSecurityPrivilege
SeTakeOwnershipPrivilege
SeLoadDriverPrivilege
SeBackupPrivilege
SeRestorePrivilege
SeDebugPrivilege
SeAuditPrivilege
SeSystemEnvironmentPrivilege
SeImpersonatePrivilege
Record Number: 9514
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20121027230142.489010-000
Event Type: Úspěšný audit
User:

Computer Name: NB-IVO
Event Code: 4624
Message: Účet byl úspěšně přihlášen.

Předmět:
ID zabezpečení: S-1-5-18
Název účtu: NB-IVO$
Doména účtu: MLYNSKA
ID přihlášení: 0x3e7

Typ přihlášení: 5

Nové přihlášení:
ID zabezpečení: S-1-5-18
Název účtu: SYSTEM
Doména účtu: NT AUTHORITY
ID přihlášení: 0x3e7
GUID přihlášení: {00000000-0000-0000-0000-000000000000}

Informace o procesu:
ID procesu: 0x22c
Název procesu: C:\Windows\System32\services.exe

Informace o síti:
Název pracovní stanice:
Adresa zdrojové sítě -
Zdrojový port: -

Podrobné informace o ověření:
Proces přihlášení: Advapi
Balíček ověření: Negotiate
Přenosové služby: -
Název balíčku (pouze NTLM): -
Délka klíče: 0

Tato událost je generována po vytvoření relace přihlášení. Je generována v počítači, ke kterému byl získán přístup.

Pole s předmětem označují účet v místním systému, který požadoval přihlášení. Jedná se nejčastěji o službu, například službu serveru nebo místní proces, například Winlogon.exe nebo Services.exe.

Pole Typ přihlášení označuje, k jakému typu přihlášení došlo. Nejběžnější typy jsou 2 (interaktivní) a 3 (síť).

Pole Nové přihlášení označují účet, pro který bylo nové přihlášení vytvořeno, tj. účet, který byl přihlášen.

Pole Síť označují původ požadavku na vzdálené přihlášení. Název pracovní stanice není vždy k dispozici a v některých případech může být toto pole prázdné.

Pole s informacemi o ověření poskytují podrobné informace o tomto konkrétním požadavku na přihlášení.
- GUID přihlášení je jednoznačný identifikátor, který je možné použít ke spojení této události s událostí KDC.
- Přenosové služby označují, které pomocné služby se podílely na tomto požadavku na přihlášení.
- Název balíčku označuje, který dílčí protokol z protokolů NTLM byl použit.
- Délka klíče označuje délku generovaného klíče relace. Tato hodnota bude 0, pokud nebyl požadován žádný klíč relace.
Record Number: 9513
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20121027230142.489010-000
Event Type: Úspěšný audit
User:

Computer Name: NB-IVO
Event Code: 4672
Message: Novému přihlášení byla přiřazena zvláštní oprávnění.

Předmět:
ID zabezpečení: S-1-5-18
Název účtu: SYSTEM
Doména účtu: NT AUTHORITY
ID přihlášení: 0x3e7

Oprávnění: SeAssignPrimaryTokenPrivilege
SeTcbPrivilege
SeSecurityPrivilege
SeTakeOwnershipPrivilege
SeLoadDriverPrivilege
SeBackupPrivilege
SeRestorePrivilege
SeDebugPrivilege
SeAuditPrivilege
SeSystemEnvironmentPrivilege
SeImpersonatePrivilege
Record Number: 9512
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20121027230142.091987-000
Event Type: Úspěšný audit
User:

Computer Name: NB-IVO
Event Code: 4624
Message: Účet byl úspěšně přihlášen.

Předmět:
ID zabezpečení: S-1-5-18
Název účtu: NB-IVO$
Doména účtu: MLYNSKA
ID přihlášení: 0x3e7

Typ přihlášení: 5

Nové přihlášení:
ID zabezpečení: S-1-5-18
Název účtu: SYSTEM
Doména účtu: NT AUTHORITY
ID přihlášení: 0x3e7
GUID přihlášení: {00000000-0000-0000-0000-000000000000}

Informace o procesu:
ID procesu: 0x22c
Název procesu: C:\Windows\System32\services.exe

Informace o síti:
Název pracovní stanice:
Adresa zdrojové sítě -
Zdrojový port: -

Podrobné informace o ověření:
Proces přihlášení: Advapi
Balíček ověření: Negotiate
Přenosové služby: -
Název balíčku (pouze NTLM): -
Délka klíče: 0

Tato událost je generována po vytvoření relace přihlášení. Je generována v počítači, ke kterému byl získán přístup.

Pole s předmětem označují účet v místním systému, který požadoval přihlášení. Jedná se nejčastěji o službu, například službu serveru nebo místní proces, například Winlogon.exe nebo Services.exe.

Pole Typ přihlášení označuje, k jakému typu přihlášení došlo. Nejběžnější typy jsou 2 (interaktivní) a 3 (síť).

Pole Nové přihlášení označují účet, pro který bylo nové přihlášení vytvořeno, tj. účet, který byl přihlášen.

Pole Síť označují původ požadavku na vzdálené přihlášení. Název pracovní stanice není vždy k dispozici a v některých případech může být toto pole prázdné.

Pole s informacemi o ověření poskytují podrobné informace o tomto konkrétním požadavku na přihlášení.
- GUID přihlášení je jednoznačný identifikátor, který je možné použít ke spojení této události s událostí KDC.
- Přenosové služby označují, které pomocné služby se podílely na tomto požadavku na přihlášení.
- Název balíčku označuje, který dílčí protokol z protokolů NTLM byl použit.
- Délka klíče označuje délku generovaného klíče relace. Tato hodnota bude 0, pokud nebyl požadován žádný klíč relace.
Record Number: 9511
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20121027230142.091987-000
Event Type: Úspěšný audit
User:

======Environment variables======

"ComSpec"=%SystemRoot%\system32\cmd.exe
"FP_NO_HOST_CHECK"=NO
"OS"=Windows_NT
"Path"=C:\Program Files (x86)\PC Connectivity Solution\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\system32\wbem;C:\Program Files (x86)\PC Connectivity Solution;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0;C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static;C:\Program Files (x86)\Calibre2;C:\Program Files\Microsoft SQL Server\110\Tools\Binn\
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC
"PROCESSOR_ARCHITECTURE"=AMD64
"TEMP"=%SystemRoot%\TEMP
"TMP"=%SystemRoot%\TEMP
"USERNAME"=SYSTEM
"windir"=%SystemRoot%
"PSModulePath"=%SystemRoot%\system32\WindowsPowerShell\v1.0\Modules\
"NUMBER_OF_PROCESSORS"=2
"PROCESSOR_LEVEL"=6
"PROCESSOR_IDENTIFIER"=Intel64 Family 6 Model 15 Stepping 13, GenuineIntel
"PROCESSOR_REVISION"=0f0d
"PT6HOME"=C:\Program Files (x86)\Cisco Packet Tracer 6.0.1
"PT5HOME"=C:\Program Files (x86)\Cisco Packet Tracer 6.0.1
"VS120COMNTOOLS"=C:\Program Files (x86)\Microsoft Visual Studio 12.0\Common7\Tools\

-----------------EOF-----------------

Re: Nenormální vytížení CPU

Napsal: 01 led 2014 17:13
od Rudy
Zdravím!
Nemáte skoro žádné volné místo na disku. Spusťte nejprve tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.

Re: Nenormální vytížení CPU

Napsal: 01 led 2014 19:10
od Ivošisko
Log z AdwCleaneru:

# AdwCleaner v3.016 - Report created 01/01/2014 at 19:00:24
# Updated 23/12/2013 by Xplode
# Operating System : Windows 7 Ultimate Service Pack 1 (64 bits)
# Username : Renca - NB-IVO
# Running from : C:\Users\Renca\Desktop\adwcleaner.exe
# Option : Clean

***** [ Services ] *****


***** [ Files / Folders ] *****

Folder Deleted : C:\Program Files (x86)\Mobogenie
Folder Deleted : C:\Users\Renca\AppData\Local\Mobogenie
Folder Deleted : C:\Users\Renca\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Mobogenie
Folder Deleted : C:\Users\Renca\Documents\Mobogenie

***** [ Shortcuts ] *****


***** [ Registry ] *****

Value Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [NextLive]
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\Mobogenie.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\MobogenieAdd
Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [mobilegeni daemon]
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{813A22E0-3E2B-4188-9BDA-ECA9878B8D48}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{BCFF5F55-6F44-11D2-86F8-00104B265ED5}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{813A22E0-3E2B-4188-9BDA-ECA9878B8D48}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{BCFF5F55-6F44-11D2-86F8-00104B265ED5}
Key Deleted : HKCU\Software\Softonic
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Mobogenie

***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.16428


-\\ Mozilla Firefox v26.0 (cs)

[ File : C:\Users\Renca\AppData\Roaming\Mozilla\Firefox\Profiles\o86nuz98.default\prefs.js ]


[ File : C:\Users\Renca\AppData\Roaming\Mozilla\Firefox\Profiles\wpojyk64.Karla\prefs.js ]


*************************

AdwCleaner[R2].txt - [1938 octets] - [01/01/2014 18:38:09]
AdwCleaner[S2].txt - [1845 octets] - [01/01/2014 19:00:24]

########## EOF - C:\AdwCleaner\AdwCleaner[S2].txt - [1905 octets] ##########

Re: Nenormální vytížení CPU

Napsal: 01 led 2014 19:16
od Rudy
Dejte nový log RSIT.

Re: Nenormální vytížení CPU

Napsal: 01 led 2014 20:44
od Ivošisko
To vytížení CPU je stále vysoké...

Log z RSIT:

Logfile of random's system information tool 1.09 (written by random/random)
Run by Renca at 2014-01-01 20:42:24
Microsoft Windows 7 Ultimate Service Pack 1
System drive C: has 5 GB (6%) free of 80 GB
Total RAM: 4095 MB (45% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:42:30, on 1.1.2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.16428)
Boot mode: Normal

Running processes:
C:\Program Files\Hide Folders 2012\hf.exe
C:\Program Files (x86)\FinalWire\AIDA64 Extreme\aida64.exe
C:\Program Files (x86)\uTorrent\uTorrent.exe
C:\Program Files (x86)\StickIt\StickIt3.exe
C:\Program Files (x86)\WinOrganizer\WinOrganizer.exe
C:\ProgramData\Boxtools\Toolbox.exe
C:\Program Files (x86)\T-Mobile\T-Mobile Internet Manager\Manager.exe
C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QLBCtrl.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Analog Devices\Core\smax4pnp.exe
C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\VolCtrl.exe
C:\Program Files (x86)\Squeezebox\SqueezeTray.exe
C:\Users\Renca\AppData\Roaming\Dropbox\bin\Dropbox.exe
C:\Program Files (x86)\Stardock\ObjectDock Plus\ObjectDock.exe
C:\PROGRA~2\SQUEEZ~1\server\SQUEEZ~3.EXE
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_170.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_170.exe
C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe
C:\Program Files\trend micro\Renca.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Logitech SetPoint - {AF949550-9094-4807-95EC-D1C317803333} - C:\Program Files\Logitech\SetPointP\32-bit\SetPointSmooth.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: avast! Online Security - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [StartCCC] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe
O4 - HKLM\..\Run: [QlbCtrl.exe] C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start
O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O4 - HKLM\..\Run: [AdobeCS6ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files (x86)\Analog Devices\Core\smax4pnp.exe
O4 - HKCU\..\Run: [uTorrent] "C:\Program Files (x86)\uTorrent\uTorrent.exe" /MINIMIZED
O4 - HKCU\..\Run: [StickIt] C:\Program Files (x86)\StickIt\StickIt3.exe
O4 - HKCU\..\Run: [WinOrganizer] C:\Program Files (x86)\WinOrganizer\WinOrganizer.exe
O4 - HKCU\..\Run: [Boxoft Tools] "C:\ProgramData\Boxtools\Boxofttoolbox.exe" -autorun
O4 - HKCU\..\Run: [T-Mobile CManager] "C:\Program Files (x86)\T-Mobile\T-Mobile Internet Manager\Manager.exe" -autorun
O4 - HKCU\..\Run: [AtomicAlarmClock6] C:\Program Files\Atomic Alarm Clock\AtomicAlarmClock.exe
O4 - Startup: Dropbox.lnk = Renca\AppData\Roaming\Dropbox\bin\Dropbox.exe
O4 - Startup: Logitech . Registrace produktu.lnk = C:\Program Files (x86)\Common Files\LogiShrd\eReg\SetPoint\eReg.exe
O4 - Startup: Stardock ObjectDock.lnk = C:\Program Files (x86)\Stardock\ObjectDock Plus\ObjectDock.exe
O4 - Global Startup: Install LastPass FF RunOnce.lnk = C:\Program Files (x86)\Common Files\lpuninstall.exe
O4 - Global Startup: Nástroj schránky Logitech Media Server.lnk = C:\Program Files (x86)\Squeezebox\SqueezeTray.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O17 - HKLM\System\CCS\Services\Tcpip\..\{788A3804-7946-4A50-BB32-DCCADDAF9CDC}: NameServer = 93.153.117.1 93.153.117.33
O17 - HKLM\System\CCS\Services\Tcpip\..\{850A5427-2841-4C2E-A225-654A46031765}: NameServer = 93.153.117.1 93.153.117.33
O17 - HKLM\System\CCS\Services\Tcpip\..\{EEC97EFE-C21F-42EC-96A6-65F0D9E132BD}: NameServer = 93.153.117.1 93.153.117.33
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Andrea ADI Filters Service (AEADIFilters) - Unknown owner - C:\Windows\system32\AEADISRV.EXE (file missing)
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Ati External Event Utility - Unknown owner - C:\Windows\system32\Ati2evxx.exe (file missing)
O23 - Service: Atomic Alarm Clock Time (AtomicAlarmClock) - Unknown owner - C:\Program Files\Atomic Alarm Clock\timeserv.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Com4QLBEx - Hewlett-Packard Development Company, L.P. - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: FSPro Filter Service 2 (fsproflt2) - FSPro Labs - C:\Windows\SysWOW64\fsproflt2.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Nalpeiron Licensing Service (nlsX86cc) - Nalpeiron Ltd. - C:\Windows\SysWOW64\nlssrv32.exe
O23 - Service: PandoraService (PanService) - Pandora.TV - C:\Program Files (x86)\PANDORA.TV\PanService\PandoraService.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: ServiceLayer - Nokia - C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 10421 bytes

======Listing Processes======

\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
C:\Windows\system32\services.exe
winlogon.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\Ati2evxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\SysWOW64\fsproflt2.exe
Ati2evxx.exe -Client
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
"C:\Windows\system32\Dwm.exe"
"C:\Program Files\Hide Folders 2012\hf.exe" /s
C:\Windows\Explorer.EXE
C:\Windows\System32\spoolsv.exe
"taskhost.exe"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
taskeng.exe {34B915FD-6489-4DA5-BCCA-7090EF275F6E}
C:\Windows\system32\AEADISRV.EXE
"C:\Program Files\Atomic Alarm Clock\timeserv.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe"
C:\Windows\SysWOW64\nlssrv32.exe
"C:\Program Files (x86)\PANDORA.TV\PanService\PandoraService.exe"
"C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe"
"C:\Program Files (x86)\FinalWire\AIDA64 Extreme\aida64.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
C:\Windows\SysWOW64\svchost.exe -k MbnExt
"C:\Program Files\Synaptics\SynTP\SynTPHelper.exe"
"C:\Program Files\Logitech\SetPointP\SetPoint.exe" /launchGaming
"C:\Program Files (x86)\uTorrent\uTorrent.exe" /MINIMIZED
"C:\Program Files (x86)\StickIt\StickIt3.exe"
"C:\Program Files (x86)\WinOrganizer\WinOrganizer.exe"
"C:\ProgramData\Boxtools\Toolbox.exe" -autorun
"C:\Program Files (x86)\T-Mobile\T-Mobile Internet Manager\Manager.exe" -autorun
KHALMNPR.EXE /API
"C:\Program Files\Atomic Alarm Clock\AtomicAlarmClock.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QLBCtrl.exe" /Start
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
"C:\Program Files (x86)\Analog Devices\Core\smax4pnp.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\VolCtrl.exe"
"C:\Program Files (x86)\Squeezebox\SqueezeTray.exe"
"C:\Users\Renca\AppData\Roaming\Dropbox\bin\Dropbox.exe" /systemstartup
"C:\Program Files (x86)\Stardock\ObjectDock Plus\ObjectDock.exe"
"C:\Program Files (x86)\Stardock\ObjectDock Plus\Dock64.exe"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.EXE"
"C:\PROGRA~2\SQUEEZ~1\server\SQUEEZ~3.EXE"
"C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\svchost.exe -k bthsvcs
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe" --channel=3980.226b3a00.1380787161 "C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_170.dll" -greomni "C:\Program Files (x86)\Mozilla Firefox\omni.ja" -appomni "C:\Program Files (x86)\Mozilla Firefox\browser\omni.ja" -appdir "C:\Program Files (x86)\Mozilla Firefox\browser" E7CF176E110C211B 3980 "\\.\pipe\gecko-crash-server-pipe.3980" plugin
"C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_170.exe" --proxy-stub-channel=Flash4552.6304B990.19506 --host-broker-channel=Flash4552.6304B990.28194 --host-pid=4552 --host-npapi-version=27 --plugin-path="C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_170.dll"
"C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_170.exe" --channel=2056.0038F3F8.1227387086 --proxy-stub-channel=Flash4552.6304B990.19506 --plugin-path="C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_170.dll" --host-npapi-version=27 --type=renderer
"C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe"
"C:\Program Files\Logitech\SetPointP\LogiAppBroker.exe"
"C:\Program Files (x86)\Stardock\ObjectDock Plus\ObjectDockTray.exe" /delaystart
"C:\Users\Renca\Desktop\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\DllHost.exe /Processid:{F9717507-6651-4EDB-BFF7-AE615179BCCF}

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job

=========Mozilla firefox=========

ProfilePath - C:\Users\Renca\AppData\Roaming\Mozilla\Firefox\Profiles\o86nuz98.default

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.9.900.170 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_170.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Google.com/GoogleEarthPlugin]
"Description"=Google Earth in your browser
"Path"=C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=10.21.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@lastpass.com/NPLastPass]
"Description"=
"Path"=C:\Program Files (x86)\LastPass\nplastpass.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=C:\Windows\system32\Wat\npWatWeb.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nokia.com/EnablerPlugin]
"Description"=Nokia Suite Enabler Plugin
"Path"=C:\Program Files (x86)\Nokia\Nokia Suite\npNokiaSuiteEnabler.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.9.900.170 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_170.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.11.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Windows\system32\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@lastpass.com/NPLastPass]
"Description"=
"Path"=C:\Program Files (x86)\LastPass\nplastpass64.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=C:\Windows\system32\Wat\npWatWeb.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll

C:\Program Files (x86)\Mozilla Firefox\extensions\
{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}

C:\Users\Renca\AppData\Roaming\Mozilla\Firefox\Profiles\o86nuz98.default\extensions\
foxmarks@kei.com
support@lastpass.com
{0538E3E3-7E9B-4d49-8831-A227C80A7AD3}
{ada4b710-8346-4b82-8199-5de2b400a6ae}

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{318A227B-5E9F-45bd-8999-7F8F10CA4CF5}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2013-12-31 1372864]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2013-12-31 1372864]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF949550-9094-4807-95EC-D1C317803333}]
Logitech SetPoint - C:\Program Files\Logitech\SetPointP\SetPointSmooth.dll [2013-07-31 433944]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2013-04-04 462752]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2013-12-31 1138536]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF949550-9094-4807-95EC-D1C317803333}]
Logitech SetPoint - C:\Program Files\Logitech\SetPointP\32-bit\SetPointSmooth.dll [2013-07-31 364824]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2013-04-04 171424]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2013-12-31 1372864]
{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2013-12-31 1372864]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2013-12-31 1138536]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2008-03-28 1234216]
"AdobeAAMUpdater-1.0"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2012-04-04 446392]
"EvtMgr6"=C:\Program Files\Logitech\SetPointP\SetPoint.exe [2013-07-31 3091224]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"uTorrent"=C:\Program Files (x86)\uTorrent\uTorrent.exe [2013-05-02 802136]
"StickIt"=C:\Program Files (x86)\StickIt\StickIt3.exe [2010-06-22 344064]
"WinOrganizer"=C:\Program Files (x86)\WinOrganizer\WinOrganizer.exe [2011-08-08 3629568]
"Boxoft Tools"=C:\ProgramData\Boxtools\Boxofttoolbox.exe [2010-12-15 514048]
"T-Mobile CManager"=C:\Program Files (x86)\T-Mobile\T-Mobile Internet Manager\Manager.exe [2013-10-31 2166552]
"AtomicAlarmClock6"=C:\Program Files\Atomic Alarm Clock\AtomicAlarmClock.exe [2013-12-20 1609728]
""= []

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2006-11-10 90112]
"QlbCtrl.exe"=C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe [2009-11-11 287800]
"SwitchBoard"=C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
"AdobeCS6ServiceManager"=C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [2012-03-09 1073312]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-04-04 958576]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2013-12-31 3764024]
"SoundMAXPnP"=C:\Program Files (x86)\Analog Devices\Core\smax4pnp.exe [2007-02-21 1183744]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Install LastPass FF RunOnce.lnk - C:\Program Files (x86)\Common Files\lpuninstall.exe
Nástroj schránky Logitech Media Server.lnk - C:\Program Files (x86)\Squeezebox\SqueezeTray.exe

C:\Users\Renca\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Dropbox.lnk - C:\Users\Renca\AppData\Roaming\Dropbox\bin\Dropbox.exe
Logitech . Registrace produktu.lnk - C:\Program Files (x86)\Common Files\LogiShrd\eReg\SetPoint\eReg.exe
Stardock ObjectDock.lnk - C:\Program Files (x86)\Stardock\ObjectDock Plus\ObjectDock.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\LBTWlgn]
c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll [2013-06-13 66328]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\fsproflt2]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\fsproflt2]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.txt - open - C:\Windows\NOTEPAD.EXE %1

======List of files/folders created in the last 1 month======

2014-01-01 18:38:00 ----D---- C:\AdwCleaner
2014-01-01 18:18:54 ----D---- C:\Users\Renca\AppData\Roaming\IcoFX2X
2014-01-01 18:13:20 ----D---- C:\ProgramData\IcoFX2X
2014-01-01 18:13:15 ----D---- C:\Program Files (x86)\IcoFX 2
2014-01-01 14:31:54 ----D---- C:\rsit
2013-12-31 11:22:09 ----A---- C:\Windows\system32\drivers\aswstm.sys
2013-12-29 14:12:50 ----A---- C:\Windows\system32\WinUSBCoInstaller2.dll
2013-12-29 14:12:50 ----A---- C:\Windows\system32\USBCoInstaller.dll
2013-12-29 13:49:36 ----A---- C:\Windows\system32\drivers\ssudmdm.sys
2013-12-29 13:49:36 ----A---- C:\Windows\system32\drivers\ssudbus.sys
2013-12-29 13:46:25 ----D---- C:\Program Files\SAMSUNG
2013-12-29 13:44:32 ----D---- C:\ProgramData\Samsung
2013-12-29 13:02:49 ----D---- C:\Users\Renca\AppData\Roaming\newnext.me
2013-12-29 12:58:13 ----D---- C:\ProgramData\TEMP
2013-12-29 12:00:40 ----A---- C:\Windows\system32\drivers\pccsmcfdx64.sys
2013-12-29 12:00:27 ----D---- C:\Program Files (x86)\PC Connectivity Solution
2013-12-28 11:46:03 ----D---- C:\Program Files\Microsoft Silverlight
2013-12-28 11:46:03 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2013-12-28 11:24:14 ----D---- C:\ProgramData\Medieval Software
2013-12-28 10:50:00 ----D---- C:\Program Files (x86)\Medieval Software
2013-12-28 10:48:41 ----A---- C:\Windows\SYSWOW64\BlueCiucc.dll
2013-12-28 06:12:54 ----D---- C:\Program Files (x86)\Analog Devices
2013-12-28 06:11:48 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2013-12-28 06:11:48 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2013-12-28 06:11:48 ----A---- C:\Windows\system32\RdpGroupPolicyExtension.dll
2013-12-28 06:11:41 ----A---- C:\Windows\system32\drivers\TsUsbFlt.sys
2013-12-28 06:11:41 ----A---- C:\Windows\system32\drivers\rdpvideominiport.sys
2013-12-28 06:11:32 ----A---- C:\Windows\SYSWOW64\wksprtPS.dll
2013-12-28 06:11:32 ----A---- C:\Windows\SYSWOW64\tsgqec.dll
2013-12-28 06:11:32 ----A---- C:\Windows\SYSWOW64\rdpendp_winip.dll
2013-12-28 06:11:32 ----A---- C:\Windows\system32\wksprtPS.dll
2013-12-28 06:11:32 ----A---- C:\Windows\system32\TsUsbGDCoInstaller.dll
2013-12-28 06:11:32 ----A---- C:\Windows\system32\tsgqec.dll
2013-12-28 06:11:31 ----A---- C:\Windows\SYSWOW64\MsRdpWebAccess.dll
2013-12-28 06:11:31 ----A---- C:\Windows\SYSWOW64\aaclient.dll
2013-12-28 06:11:31 ----A---- C:\Windows\system32\TSWbPrxy.exe
2013-12-28 06:11:31 ----A---- C:\Windows\system32\rdpudd.dll
2013-12-28 06:11:31 ----A---- C:\Windows\system32\MsRdpWebAccess.dll
2013-12-28 06:11:31 ----A---- C:\Windows\system32\aaclient.dll
2013-12-28 06:11:30 ----A---- C:\Windows\SYSWOW64\mstsc.exe
2013-12-28 06:11:30 ----A---- C:\Windows\system32\wksprt.exe
2013-12-28 06:11:30 ----A---- C:\Windows\system32\rdpendp_winip.dll
2013-12-28 06:11:30 ----A---- C:\Windows\system32\mstsc.exe
2013-12-28 06:11:29 ----A---- C:\Windows\SYSWOW64\mstscax.dll
2013-12-28 06:11:29 ----A---- C:\Windows\system32\rdpcorets.dll
2013-12-28 06:11:28 ----A---- C:\Windows\system32\mstscax.dll
2013-12-28 06:08:42 ----A---- C:\Windows\system32\ZSHP1020.EXE
2013-12-28 06:08:42 ----A---- C:\Windows\system32\ZLhp1020.DLL
2013-12-28 06:07:10 ----A---- C:\Windows\SYSWOW64\qdvd.dll
2013-12-28 06:07:09 ----A---- C:\Windows\system32\qdvd.dll
2013-12-28 05:35:52 ----D---- C:\updates
2013-12-28 05:35:14 ----D---- C:\ProgramData\Squeezebox
2013-12-28 05:35:14 ----D---- C:\Program Files (x86)\Squeezebox
2013-12-20 10:25:24 ----D---- C:\Users\Renca\AppData\Roaming\Atomic Alarm Clock 6
2013-12-20 10:23:37 ----D---- C:\Program Files\Atomic Alarm Clock
2013-12-20 09:59:57 ----D---- C:\Program Files (x86)\FinalWire
2013-12-18 19:32:01 ----D---- C:\Users\Renca\AppData\Roaming\Leadertech
2013-12-18 19:31:31 ----A---- C:\Windows\system32\drivers\LNonPnP.sys
2013-12-18 19:29:34 ----D---- C:\ProgramData\Logishrd
2013-12-18 19:29:22 ----D---- C:\Program Files\Logitech
2013-12-18 19:28:50 ----D---- C:\Program Files\Common Files\LogiShrd
2013-12-17 18:58:33 ----D---- C:\Users\Renca\AppData\Roaming\Logitech
2013-12-17 18:58:33 ----D---- C:\Users\Renca\AppData\Roaming\Logishrd
2013-12-14 09:13:09 ----A---- C:\Windows\system32\wmploc.DLL
2013-12-14 09:13:08 ----A---- C:\Windows\SYSWOW64\wmploc.DLL
2013-12-14 09:13:07 ----A---- C:\Windows\SYSWOW64\wmp.dll
2013-12-14 09:13:04 ----A---- C:\Windows\system32\wmp.dll
2013-12-14 09:10:29 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2013-12-14 09:10:28 ----A---- C:\Windows\system32\ieui.dll
2013-12-14 09:10:27 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2013-12-14 09:10:27 ----A---- C:\Windows\SYSWOW64\ieui.dll
2013-12-14 09:10:27 ----A---- C:\Windows\system32\jsproxy.dll
2013-12-14 09:10:27 ----A---- C:\Windows\system32\ieUnatt.exe
2013-12-14 09:10:26 ----A---- C:\Windows\system32\iesetup.dll
2013-12-14 09:10:26 ----A---- C:\Windows\system32\iernonce.dll
2013-12-14 09:10:26 ----A---- C:\Windows\system32\ieetwproxystub.dll
2013-12-14 09:10:26 ----A---- C:\Windows\system32\ie4uinit.exe
2013-12-14 09:10:25 ----A---- C:\Windows\system32\ieetwcollector.exe
2013-12-14 09:10:24 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2013-12-14 09:10:24 ----A---- C:\Windows\system32\mshtml.dll
2013-12-14 09:10:24 ----A---- C:\Windows\system32\jscript9diag.dll
2013-12-14 09:10:23 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2013-12-14 09:10:23 ----A---- C:\Windows\system32\ieapfltr.dll
2013-12-14 09:10:22 ----A---- C:\Windows\system32\iertutil.dll
2013-12-14 09:10:21 ----A---- C:\Windows\SYSWOW64\wininet.dll
2013-12-14 09:10:21 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2013-12-14 09:10:20 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2013-12-14 09:10:20 ----A---- C:\Windows\system32\wininet.dll
2013-12-14 09:10:20 ----A---- C:\Windows\system32\urlmon.dll
2013-12-14 09:10:18 ----A---- C:\Windows\system32\ieframe.dll
2013-12-14 09:10:17 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2013-12-14 09:10:15 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2013-12-14 09:10:15 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2013-12-14 09:10:14 ----A---- C:\Windows\system32\jscript9.dll
2013-12-13 10:49:41 ----A---- C:\Windows\system32\msieftp.dll
2013-12-13 10:49:40 ----A---- C:\Windows\SYSWOW64\msieftp.dll
2013-12-13 10:49:40 ----A---- C:\Windows\SYSWOW64\imagehlp.dll
2013-12-13 10:49:40 ----A---- C:\Windows\system32\imagehlp.dll
2013-12-13 10:49:36 ----A---- C:\Windows\SYSWOW64\WMPhoto.dll
2013-12-13 10:49:36 ----A---- C:\Windows\system32\WMPhoto.dll
2013-12-13 10:49:33 ----A---- C:\Windows\system32\win32k.sys
2013-12-13 10:49:24 ----A---- C:\Windows\SYSWOW64\tzres.dll
2013-12-13 10:49:24 ----A---- C:\Windows\system32\tzres.dll
2013-12-13 10:49:14 ----A---- C:\Windows\system32\drivers\portcls.sys
2013-12-13 10:49:14 ----A---- C:\Windows\system32\drivers\drmk.sys
2013-12-13 10:49:13 ----A---- C:\Windows\SYSWOW64\wscript.exe
2013-12-13 10:49:13 ----A---- C:\Windows\system32\scrrun.dll
2013-12-13 10:49:13 ----A---- C:\Windows\system32\cscript.exe
2013-12-13 10:49:12 ----A---- C:\Windows\SYSWOW64\scrrun.dll
2013-12-13 10:49:12 ----A---- C:\Windows\system32\wscript.exe
2013-12-13 10:49:11 ----A---- C:\Windows\SYSWOW64\cscript.exe
2013-12-11 10:36:54 ----D---- C:\Program Files (x86)\Mozilla Thunderbird
2013-12-10 19:41:37 ----D---- C:\Program Files (x86)\Mozilla Firefox
2013-12-10 18:52:04 ----D---- C:\ProgramData\{CC71B1CB-A2E4-4CF7-8EDB-A0E290BA1604}
2013-12-07 09:24:03 ----A---- C:\Windows\system32\IEUDINIT.EXE
2013-12-07 09:15:14 ----A---- C:\Windows\SYSWOW64\elshyph.dll
2013-12-07 09:15:14 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\wextract.exe
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\url.dll
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\RegisterIEPKEYs.exe
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\pngfilt.dll
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\occache.dll
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\msrating.dll
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\msls31.dll
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\mshta.exe
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\msfeedssync.exe
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\msfeedsbs.dll
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\licmgr10.dll
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\jsIntl.dll
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\jscript.dll
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\inseng.dll
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\imgutil.dll
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\iexpress.exe
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\iepeers.dll
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\ieapfltr.dat
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\icardie.dll
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2013-12-07 09:15:05 ----A---- C:\Windows\system32\elshyph.dll
2013-12-07 09:15:04 ----A---- C:\Windows\SYSWOW64\SetIEInstalledDate.exe
2013-12-07 09:15:04 ----A---- C:\Windows\SYSWOW64\mshtmler.dll
2013-12-07 09:15:04 ----A---- C:\Windows\SYSWOW64\iesysprep.dll
2013-12-07 09:15:04 ----A---- C:\Windows\SYSWOW64\IEAdvpack.dll
2013-12-07 09:15:04 ----A---- C:\Windows\system32\wextract.exe
2013-12-07 09:15:04 ----A---- C:\Windows\system32\webcheck.dll
2013-12-07 09:15:04 ----A---- C:\Windows\system32\vbscript.dll
2013-12-07 09:15:04 ----A---- C:\Windows\system32\url.dll
2013-12-07 09:15:04 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2013-12-07 09:15:04 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2013-12-07 09:15:04 ----A---- C:\Windows\system32\pngfilt.dll
2013-12-07 09:15:04 ----A---- C:\Windows\system32\occache.dll
2013-12-07 09:15:04 ----A---- C:\Windows\system32\msrating.dll
2013-12-07 09:15:04 ----A---- C:\Windows\system32\msls31.dll
2013-12-07 09:15:04 ----A---- C:\Windows\system32\mshtmlmedia.dll
2013-12-07 09:15:04 ----A---- C:\Windows\system32\mshtmler.dll
2013-12-07 09:15:04 ----A---- C:\Windows\system32\mshtmled.dll
2013-12-07 09:15:04 ----A---- C:\Windows\system32\MshtmlDac.dll
2013-12-07 09:15:04 ----A---- C:\Windows\system32\mshta.exe
2013-12-07 09:15:04 ----A---- C:\Windows\system32\msfeedssync.exe
2013-12-07 09:15:04 ----A---- C:\Windows\system32\msfeedsbs.dll
2013-12-07 09:15:04 ----A---- C:\Windows\system32\msfeeds.dll
2013-12-07 09:15:04 ----A---- C:\Windows\system32\licmgr10.dll
2013-12-07 09:15:04 ----A---- C:\Windows\system32\jsIntl.dll
2013-12-07 09:15:04 ----A---- C:\Windows\system32\jscript.dll
2013-12-07 09:15:04 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2013-12-07 09:15:04 ----A---- C:\Windows\system32\inseng.dll
2013-12-07 09:15:04 ----A---- C:\Windows\system32\imgutil.dll
2013-12-07 09:15:04 ----A---- C:\Windows\system32\iexpress.exe
2013-12-07 09:15:04 ----A---- C:\Windows\system32\iesysprep.dll
2013-12-07 09:15:04 ----A---- C:\Windows\system32\iepeers.dll
2013-12-07 09:15:04 ----A---- C:\Windows\system32\iedkcs32.dll
2013-12-07 09:15:04 ----A---- C:\Windows\system32\ieapfltr.dat
2013-12-07 09:15:04 ----A---- C:\Windows\system32\IEAdvpack.dll
2013-12-07 09:15:04 ----A---- C:\Windows\system32\icardie.dll
2013-12-07 09:15:04 ----A---- C:\Windows\system32\dxtrans.dll
2013-12-07 09:15:04 ----A---- C:\Windows\system32\dxtmsft.dll
2013-12-06 10:10:42 ----D---- C:\Program Files\WinDjView

======List of files/folders modified in the last 1 month======

2014-01-01 20:42:27 ----D---- C:\Program Files\trend micro
2014-01-01 20:41:46 ----D---- C:\Users\Renca\AppData\Roaming\uTorrent
2014-01-01 19:34:19 ----D---- C:\ProgramData\Boxtools
2014-01-01 19:07:57 ----D---- C:\Windows\Microsoft.NET
2014-01-01 19:06:55 ----D---- C:\Users\Renca\AppData\Roaming\Dropbox
2014-01-01 19:04:39 ----D---- C:\Windows\SysWOW64
2014-01-01 19:04:37 ----D---- C:\Program Files (x86)\StickIt
2014-01-01 19:04:04 ----D---- C:\Windows\temp
2014-01-01 19:02:22 ----D---- C:\Windows\system32\config
2014-01-01 19:00:35 ----RD---- C:\Program Files (x86)
2014-01-01 18:13:20 ----D---- C:\ProgramData
2013-12-31 11:25:20 ----D---- C:\Windows\system32\drivers
2013-12-31 11:22:11 ----D---- C:\Windows\system32\Tasks
2013-12-31 11:22:04 ----AD---- C:\Windows
2013-12-31 11:22:01 ----A---- C:\Windows\system32\aswBoot.exe
2013-12-31 11:20:48 ----SHD---- C:\System Volume Information
2013-12-30 10:26:01 ----D---- C:\Windows\system32\catroot
2013-12-30 08:23:57 ----D---- C:\Windows\System32
2013-12-30 08:23:57 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-12-30 08:23:56 ----D---- C:\Windows\inf
2013-12-29 14:14:47 ----D---- C:\Windows\system32\DriverStore
2013-12-29 14:06:14 ----D---- C:\Windows\system32\catroot2
2013-12-29 13:46:25 ----RD---- C:\Program Files
2013-12-29 13:43:44 ----D---- C:\Windows\system32\drivers\UMDF
2013-12-29 12:03:59 ----SHD---- C:\Windows\Installer
2013-12-29 12:02:17 ----D---- C:\Program Files (x86)\Nokia
2013-12-29 12:02:17 ----D---- C:\Program Files (x86)\Common Files
2013-12-29 12:00:39 ----DC---- C:\Windows\system32\DRVSTORE
2013-12-28 11:46:37 ----SD---- C:\ProgramData\Microsoft
2013-12-28 10:50:02 ----RSD---- C:\Windows\assembly
2013-12-28 06:17:59 ----D---- C:\Windows\winsxs
2013-12-28 06:14:52 ----D---- C:\Windows\SYSWOW64\cs-CZ
2013-12-28 06:14:51 ----D---- C:\Windows\SYSWOW64\wbem
2013-12-28 06:14:51 ----D---- C:\Windows\SYSWOW64\en-US
2013-12-28 06:14:51 ----D---- C:\Windows\system32\wbem
2013-12-28 06:14:51 ----D---- C:\Windows\system32\en-US
2013-12-28 06:14:51 ----D---- C:\Windows\system32\drivers\en-US
2013-12-28 06:14:51 ----D---- C:\Windows\system32\cs-CZ
2013-12-28 06:14:51 ----D---- C:\Windows\PolicyDefinitions
2013-12-28 06:10:13 ----D---- C:\Windows\QLB
2013-12-28 06:10:13 ----D---- C:\Users\Renca\AppData\Roaming\hpqLog
2013-12-26 23:13:17 ----D---- C:\Users\Renca\AppData\Roaming\Aegisub
2013-12-22 08:05:16 ----D---- C:\Program Files (x86)\The KMPlayer
2013-12-20 10:20:03 ----A---- C:\Users\Renca\AppData\Roaming\AtomicAlarmClock.ini
2013-12-18 20:45:26 ----D---- C:\Windows\Prefetch
2013-12-18 19:28:50 ----D---- C:\Program Files\Common Files
2013-12-17 21:16:51 ----D---- C:\BRON
2013-12-16 16:09:58 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2013-12-15 12:06:30 ----D---- C:\Windows\system32\MRT
2013-12-15 11:56:08 ----A---- C:\Windows\system32\MRT.exe
2013-12-15 11:43:59 ----D---- C:\Program Files (x86)\Windows Media Player
2013-12-15 11:43:58 ----D---- C:\Program Files\Windows Media Player
2013-12-15 11:43:55 ----D---- C:\Program Files\Internet Explorer
2013-12-15 11:43:55 ----D---- C:\Program Files (x86)\Internet Explorer
2013-12-14 00:13:17 ----D---- C:\BIG BANG THEORY
2013-12-13 21:29:50 ----D---- C:\Program Files (x86)\Google
2013-12-12 09:25:39 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2013-12-07 09:28:51 ----D---- C:\Windows\SYSWOW64\migration
2013-12-07 09:28:49 ----D---- C:\Windows\system32\migration
2013-12-07 09:13:25 ----D---- C:\Windows\Logs
2013-12-07 09:12:09 ----D---- C:\Windows\system32\NDF
2013-12-06 19:25:13 ----D---- C:\Windows\Tasks

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2013-11-22 65776]
R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2013-12-31 207904]
R0 FSProFilter2;FSPro File Filter 2; C:\Windows\System32\Drivers\FSPFltd2.sys [2011-06-03 57648]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 199552]
R1 aswRdr;aswRdr; \??\C:\Windows\system32\drivers\aswRdr2.sys [2013-11-22 92544]
R1 aswSnx;aswSnx; \??\C:\Windows\system32\drivers\aswSnx.sys [2013-12-31 1034464]
R1 aswSP;aswSP; \??\C:\Windows\system32\drivers\aswSP.sys [2013-12-31 422216]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 514560]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 aswMonFlt;aswMonFlt; \??\C:\Windows\system32\drivers\aswMonFlt.sys [2013-12-31 78648]
R3 ADIHdAudAddService;ADI UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\ADIHdAud.sys [2008-04-24 402432]
R3 AgereSoftModem;Agere Systems Soft Modem; C:\Windows\system32\DRIVERS\agrsm64.sys [2009-06-10 1146880]
R3 AIDA64Driver;FinalWire AIDA64 Kernel Driver; \??\C:\Program Files (x86)\FinalWire\AIDA64 Extreme\kerneld.x64 [2013-11-18 33112]
R3 aswStm;aswStm; \??\C:\Windows\system32\drivers\aswStm.sys [2013-12-31 79672]
R3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2007-07-21 3535872]
R3 BCM43XX;Broadcom 802.11 Network Adapter Driver; C:\Windows\system32\DRIVERS\bcmwl664.sys [2009-07-08 2769400]
R3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
R3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
R3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
R3 e1express;Intel(R) PRO/1000 – ovladač PCI Express síťového připojení; C:\Windows\system32\DRIVERS\e1e6032e.sys [2009-06-10 278016]
R3 HBtnKey;HP Hotkey Device; C:\Windows\system32\DRIVERS\cpqbttn.sys [2010-02-24 19000]
R3 HpqKbFiltr;HpqKbFilter Driver; C:\Windows\system32\DRIVERS\HpqKbFiltr.sys [2009-04-29 18432]
R3 huawei_enumerator;huawei_enumerator; C:\Windows\system32\DRIVERS\ew_jubusenum.sys [2012-08-20 90112]
R3 LHidFilt;Logitech SetPoint KMDF HID Filter Driver; C:\Windows\system32\DRIVERS\LHidFilt.Sys [2013-05-23 76568]
R3 LMouFilt;Logitech SetPoint KMDF Mouse Filter Driver; C:\Windows\system32\DRIVERS\LMouFilt.Sys [2013-05-23 59160]
R3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2008-03-28 324656]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S3 ATICDSDr;ATICDSDr; \??\C:\Users\Renca\AppData\Local\Temp\ATICDSDr.sys []
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 95232]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudbus.sys [2012-06-04 99384]
S3 ew_hwusbdev;Huawei MobileBroadband USB PNP Device; C:\Windows\system32\DRIVERS\ew_hwusbdev.sys [2010-07-27 117248]
S3 ew_usbenumfilter;huawei_CompositeFilter; C:\Windows\system32\DRIVERS\ew_usbenumfilter.sys [2012-10-30 14336]
S3 huawei_cdcacm;huawei_cdcacm; C:\Windows\system32\DRIVERS\ew_jucdcacm.sys [2012-08-20 104960]
S3 huawei_ext_ctrl;huawei_ext_ctrl; C:\Windows\system32\DRIVERS\ew_juextctrl.sys [2012-08-20 30720]
S3 huawei_wwanecm;huawei_wwanecm; C:\Windows\system32\DRIVERS\ew_juwwanecm.sys [2012-12-03 241152]
S3 massfilter;Mass Storage Filter Driver; C:\Windows\system32\drivers\massfilter.sys [2011-04-13 11776]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfdx64.sys [2012-10-17 26112]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 165888]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 6656]
S3 ssudmdm;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudmdm.sys [2012-06-04 203320]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 34688]
S3 Synth3dVsc;Synth3dVsc; C:\Windows\System32\drivers\synth3dvsc.sys []
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2012-08-23 57856]
S3 tsusbhub;@%SystemRoot%\system32\drivers\tsusbhub.sys,-1; C:\Windows\system32\drivers\tsusbhub.sys []
S3 usb_rndisx;Adaptér USB RNDIS; C:\Windows\system32\DRIVERS\usb8023x.sys [2013-02-12 19968]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2013-07-03 42496]
S3 VGPU;VGPU; C:\Windows\System32\drivers\rdvgkmd.sys []
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 21760]
S3 WinUsb;Android USB Driver; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 41984]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-05-11 65640]
R2 AEADIFilters;Andrea ADI Filters Service; C:\Windows\system32\AEADISRV.EXE [2007-02-06 80384]
R2 Ati External Event Utility;Ati External Event Utility; C:\Windows\system32\Ati2evxx.exe [2007-07-21 787968]
R2 AtomicAlarmClock;Atomic Alarm Clock Time; C:\Program Files\Atomic Alarm Clock\timeserv.exe [2013-04-24 2007040]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2013-12-31 50344]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 fsproflt2;FSPro Filter Service 2; C:\Windows\SysWOW64\fsproflt2.exe [2012-07-12 49512]
R2 MbnExt;Mobile Broadband Extension Service; C:\Windows\system32\svchost.exe [2009-07-14 27136]
R2 MDM;Machine Debug Manager; C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe [2006-10-26 335872]
R2 nlsX86cc;Nalpeiron Licensing Service; C:\Windows\SysWOW64\nlssrv32.exe [2012-07-05 66560]
R2 PanService;PandoraService; C:\Program Files (x86)\PANDORA.TV\PanService\PandoraService.exe [2012-06-22 625816]
R2 SQLWriter;SQL Server VSS Writer; C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe [2012-10-20 130024]
R3 hpqwmiex;hpqwmiex; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe [2009-04-30 229944]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-09-11 124088]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-09-16 116648]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2012-07-13 160944]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-12-12 257416]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-09-11 51808]
S3 Com4QLBEx;Com4QLBEx; C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe [2010-01-12 227896]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-09-16 116648]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2013-11-26 111616]
S3 LBTServ;Logitech Bluetooth Service; C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe [2013-06-13 357144]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2013-12-10 119408]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 ServiceLayer;ServiceLayer; C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe [2013-04-18 737616]
S3 SwitchBoard;SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 VsEtwService120;Visual Studio ETW Event Collection Service; C:\Program Files (x86)\Microsoft Visual Studio 12.0\Common7\Packages\Debugger\Services\VsEtwService.exe [2013-10-04 87728]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2012-08-18 1255736]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]

-----------------EOF-----------------

Re: Nenormální vytížení CPU

Napsal: 01 led 2014 21:11
od Rudy
Stáhněte OTM: http://oldtimer.geekstogo.com/OTM.exe a uložte na plochu. Spusťte a do levého okna zkopírujte:
:files
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job

:commands
[Purity]
[Emptytemp]
[Emptyflash]
a klikněte na >MoveIt!<. Před skenem vypněte antivir a po něm restartujte PC. Dejte nový log RSIT.

Re: Nenormální vytížení CPU

Napsal: 02 led 2014 19:53
od Ivošisko
Log z RSIT:

Logfile of random's system information tool 1.09 (written by random/random)
Run by Renca at 2014-01-02 19:44:16
Microsoft Windows 7 Ultimate Service Pack 1
System drive C: has 2 GB (2%) free of 80 GB
Total RAM: 4095 MB (52% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 19:44:23, on 2.1.2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.16428)
Boot mode: Normal

Running processes:
C:\Program Files\Hide Folders 2012\hf.exe
C:\Program Files (x86)\FinalWire\AIDA64 Extreme\aida64.exe
C:\Program Files (x86)\uTorrent\uTorrent.exe
C:\Program Files (x86)\StickIt\StickIt3.exe
C:\Program Files (x86)\WinOrganizer\WinOrganizer.exe
C:\Program Files (x86)\T-Mobile\T-Mobile Internet Manager\Manager.exe
C:\ProgramData\Boxtools\Toolbox.exe
C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QLBCtrl.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Analog Devices\Core\smax4pnp.exe
C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\VolCtrl.exe
C:\Program Files (x86)\Squeezebox\SqueezeTray.exe
C:\Users\Renca\AppData\Roaming\Dropbox\bin\Dropbox.exe
C:\Program Files (x86)\Stardock\ObjectDock Plus\ObjectDock.exe
C:\PROGRA~2\SQUEEZ~1\server\SQUEEZ~3.EXE
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_170.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_170.exe
C:\Program Files\trend micro\Renca.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Logitech SetPoint - {AF949550-9094-4807-95EC-D1C317803333} - C:\Program Files\Logitech\SetPointP\32-bit\SetPointSmooth.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: avast! Online Security - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [StartCCC] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe
O4 - HKLM\..\Run: [QlbCtrl.exe] C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start
O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O4 - HKLM\..\Run: [AdobeCS6ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files (x86)\Analog Devices\Core\smax4pnp.exe
O4 - HKCU\..\Run: [uTorrent] "C:\Program Files (x86)\uTorrent\uTorrent.exe" /MINIMIZED
O4 - HKCU\..\Run: [StickIt] C:\Program Files (x86)\StickIt\StickIt3.exe
O4 - HKCU\..\Run: [WinOrganizer] C:\Program Files (x86)\WinOrganizer\WinOrganizer.exe
O4 - HKCU\..\Run: [Boxoft Tools] "C:\ProgramData\Boxtools\Boxofttoolbox.exe" -autorun
O4 - HKCU\..\Run: [T-Mobile CManager] "C:\Program Files (x86)\T-Mobile\T-Mobile Internet Manager\Manager.exe" -autorun
O4 - HKCU\..\Run: [AtomicAlarmClock6] C:\Program Files\Atomic Alarm Clock\AtomicAlarmClock.exe
O4 - Startup: Dropbox.lnk = Renca\AppData\Roaming\Dropbox\bin\Dropbox.exe
O4 - Startup: Logitech . Registrace produktu.lnk = C:\Program Files (x86)\Common Files\LogiShrd\eReg\SetPoint\eReg.exe
O4 - Startup: Stardock ObjectDock.lnk = C:\Program Files (x86)\Stardock\ObjectDock Plus\ObjectDock.exe
O4 - Global Startup: Install LastPass FF RunOnce.lnk = C:\Program Files (x86)\Common Files\lpuninstall.exe
O4 - Global Startup: Nástroj schránky Logitech Media Server.lnk = C:\Program Files (x86)\Squeezebox\SqueezeTray.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O17 - HKLM\System\CCS\Services\Tcpip\..\{788A3804-7946-4A50-BB32-DCCADDAF9CDC}: NameServer = 93.153.117.1 93.153.117.33
O17 - HKLM\System\CCS\Services\Tcpip\..\{850A5427-2841-4C2E-A225-654A46031765}: NameServer = 93.153.117.1 93.153.117.33
O17 - HKLM\System\CCS\Services\Tcpip\..\{EEC97EFE-C21F-42EC-96A6-65F0D9E132BD}: NameServer = 93.153.117.1 93.153.117.33
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Andrea ADI Filters Service (AEADIFilters) - Unknown owner - C:\Windows\system32\AEADISRV.EXE (file missing)
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Ati External Event Utility - Unknown owner - C:\Windows\system32\Ati2evxx.exe (file missing)
O23 - Service: Atomic Alarm Clock Time (AtomicAlarmClock) - Unknown owner - C:\Program Files\Atomic Alarm Clock\timeserv.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Com4QLBEx - Hewlett-Packard Development Company, L.P. - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: FSPro Filter Service 2 (fsproflt2) - FSPro Labs - C:\Windows\SysWOW64\fsproflt2.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Nalpeiron Licensing Service (nlsX86cc) - Nalpeiron Ltd. - C:\Windows\SysWOW64\nlssrv32.exe
O23 - Service: PandoraService (PanService) - Pandora.TV - C:\Program Files (x86)\PANDORA.TV\PanService\PandoraService.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: ServiceLayer - Nokia - C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 10361 bytes

======Listing Processes======

\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
C:\Windows\system32\services.exe
winlogon.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\Ati2evxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\SysWOW64\fsproflt2.exe
Ati2evxx.exe -Client
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files\Hide Folders 2012\hf.exe" /s
C:\Windows\System32\spoolsv.exe
"taskhost.exe"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
taskeng.exe {338C2E7A-038E-44F1-B531-37A5B3C7E8FE}
C:\Windows\system32\AEADISRV.EXE
taskeng.exe {9E62C367-C6AC-4D03-A569-98AC4BEB9E2A}
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
"C:\Program Files\Atomic Alarm Clock\timeserv.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe"
C:\Windows\SysWOW64\nlssrv32.exe
"C:\Program Files (x86)\PANDORA.TV\PanService\PandoraService.exe"
"C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe"
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\SysWOW64\svchost.exe -k MbnExt
"C:\Program Files (x86)\FinalWire\AIDA64 Extreme\aida64.exe"
C:\Windows\system32\svchost.exe -k bthsvcs
C:\Windows\System32\rundll32.exe shell32.dll,SHCreateLocalServerRunDll {995C996E-D918-4a8c-A302-45719A6F4EA7} -Embedding
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Program Files\Synaptics\SynTP\SynTPHelper.exe"
"C:\Program Files\Logitech\SetPointP\SetPoint.exe" /launchGaming
"C:\Program Files (x86)\uTorrent\uTorrent.exe" /MINIMIZED
"C:\Program Files (x86)\StickIt\StickIt3.exe"
"C:\Program Files (x86)\WinOrganizer\WinOrganizer.exe"
"C:\Program Files (x86)\T-Mobile\T-Mobile Internet Manager\Manager.exe" -autorun
"C:\ProgramData\Boxtools\Toolbox.exe" -autorun
"C:\Program Files\Atomic Alarm Clock\AtomicAlarmClock.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QLBCtrl.exe" /Start
C:\Windows\system32\SearchIndexer.exe /Embedding
KHALMNPR.EXE /API
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
"C:\Program Files (x86)\Analog Devices\Core\smax4pnp.exe"
C:\Windows\splwow64.exe 12288
"C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\VolCtrl.exe"
"C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe"
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Squeezebox\SqueezeTray.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe"
"C:\Users\Renca\AppData\Roaming\Dropbox\bin\Dropbox.exe" /systemstartup
"C:\Program Files (x86)\Stardock\ObjectDock Plus\ObjectDock.exe"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.EXE"
"C:\PROGRA~2\SQUEEZ~1\server\SQUEEZ~3.EXE"
"C:\Program Files (x86)\Stardock\ObjectDock Plus\Dock64.exe"
"C:\Program Files (x86)\Stardock\ObjectDock Plus\ObjectDockTray.exe"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe" --channel=5000.1403b000.854729587 "C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_170.dll" -greomni "C:\Program Files (x86)\Mozilla Firefox\omni.ja" -appomni "C:\Program Files (x86)\Mozilla Firefox\browser\omni.ja" -appdir "C:\Program Files (x86)\Mozilla Firefox\browser" E7CF176E110C211B 5000 "\\.\pipe\gecko-crash-server-pipe.5000" plugin
"C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_170.exe" --proxy-stub-channel=Flash4036.64A1B990.30787 --host-broker-channel=Flash4036.64A1B990.4581 --host-pid=4036 --host-npapi-version=27 --plugin-path="C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_170.dll"
"C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_170.exe" --channel=3180.0035F7A4.1907202488 --proxy-stub-channel=Flash4036.64A1B990.30787 --plugin-path="C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_170.dll" --host-npapi-version=27 --type=renderer
"C:\Program Files\Logitech\SetPointP\LogiAppBroker.exe"
"C:\Users\Renca\Desktop\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\DllHost.exe /Processid:{F9717507-6651-4EDB-BFF7-AE615179BCCF}

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job

=========Mozilla firefox=========

ProfilePath - C:\Users\Renca\AppData\Roaming\Mozilla\Firefox\Profiles\o86nuz98.default

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.9.900.170 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_170.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Google.com/GoogleEarthPlugin]
"Description"=Google Earth in your browser
"Path"=C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=10.21.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@lastpass.com/NPLastPass]
"Description"=
"Path"=C:\Program Files (x86)\LastPass\nplastpass.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=C:\Windows\system32\Wat\npWatWeb.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nokia.com/EnablerPlugin]
"Description"=Nokia Suite Enabler Plugin
"Path"=C:\Program Files (x86)\Nokia\Nokia Suite\npNokiaSuiteEnabler.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.9.900.170 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_170.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.11.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Windows\system32\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@lastpass.com/NPLastPass]
"Description"=
"Path"=C:\Program Files (x86)\LastPass\nplastpass64.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=C:\Windows\system32\Wat\npWatWeb.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll

C:\Program Files (x86)\Mozilla Firefox\extensions\
{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}

C:\Users\Renca\AppData\Roaming\Mozilla\Firefox\Profiles\o86nuz98.default\extensions\
foxmarks@kei.com
support@lastpass.com
{0538E3E3-7E9B-4d49-8831-A227C80A7AD3}
{ada4b710-8346-4b82-8199-5de2b400a6ae}

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{318A227B-5E9F-45bd-8999-7F8F10CA4CF5}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2013-12-31 1372864]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2013-12-31 1372864]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF949550-9094-4807-95EC-D1C317803333}]
Logitech SetPoint - C:\Program Files\Logitech\SetPointP\SetPointSmooth.dll [2013-07-31 433944]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2013-04-04 462752]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2013-12-31 1138536]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF949550-9094-4807-95EC-D1C317803333}]
Logitech SetPoint - C:\Program Files\Logitech\SetPointP\32-bit\SetPointSmooth.dll [2013-07-31 364824]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2013-04-04 171424]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2013-12-31 1372864]
{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2013-12-31 1372864]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2013-12-31 1138536]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2008-03-28 1234216]
"AdobeAAMUpdater-1.0"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2012-04-04 446392]
"EvtMgr6"=C:\Program Files\Logitech\SetPointP\SetPoint.exe [2013-07-31 3091224]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"uTorrent"=C:\Program Files (x86)\uTorrent\uTorrent.exe [2013-05-02 802136]
"StickIt"=C:\Program Files (x86)\StickIt\StickIt3.exe [2010-06-22 344064]
"WinOrganizer"=C:\Program Files (x86)\WinOrganizer\WinOrganizer.exe [2011-08-08 3629568]
"Boxoft Tools"=C:\ProgramData\Boxtools\Boxofttoolbox.exe [2010-12-15 514048]
"T-Mobile CManager"=C:\Program Files (x86)\T-Mobile\T-Mobile Internet Manager\Manager.exe [2013-10-31 2166552]
"AtomicAlarmClock6"=C:\Program Files\Atomic Alarm Clock\AtomicAlarmClock.exe [2013-12-20 1609728]
""= []

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2006-11-10 90112]
"QlbCtrl.exe"=C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe [2009-11-11 287800]
"SwitchBoard"=C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
"AdobeCS6ServiceManager"=C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [2012-03-09 1073312]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-04-04 958576]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2013-12-31 3764024]
"SoundMAXPnP"=C:\Program Files (x86)\Analog Devices\Core\smax4pnp.exe [2007-02-21 1183744]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Install LastPass FF RunOnce.lnk - C:\Program Files (x86)\Common Files\lpuninstall.exe
Nástroj schránky Logitech Media Server.lnk - C:\Program Files (x86)\Squeezebox\SqueezeTray.exe

C:\Users\Renca\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Dropbox.lnk - C:\Users\Renca\AppData\Roaming\Dropbox\bin\Dropbox.exe
Logitech . Registrace produktu.lnk - C:\Program Files (x86)\Common Files\LogiShrd\eReg\SetPoint\eReg.exe
Stardock ObjectDock.lnk - C:\Program Files (x86)\Stardock\ObjectDock Plus\ObjectDock.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\LBTWlgn]
c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll [2013-06-13 66328]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\fsproflt2]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\fsproflt2]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.txt - open - C:\Windows\NOTEPAD.EXE %1

======List of files/folders created in the last 1 month======

2014-01-02 19:31:56 ----ASH---- C:\pagefile.sys
2014-01-02 19:26:01 ----D---- C:\_OTM
2014-01-01 18:38:00 ----D---- C:\AdwCleaner
2014-01-01 18:18:54 ----D---- C:\Users\Renca\AppData\Roaming\IcoFX2X
2014-01-01 18:13:20 ----D---- C:\ProgramData\IcoFX2X
2014-01-01 18:13:15 ----D---- C:\Program Files (x86)\IcoFX 2
2014-01-01 14:31:54 ----D---- C:\rsit
2013-12-31 11:22:09 ----A---- C:\Windows\system32\drivers\aswstm.sys
2013-12-29 14:12:50 ----A---- C:\Windows\system32\WinUSBCoInstaller2.dll
2013-12-29 14:12:50 ----A---- C:\Windows\system32\USBCoInstaller.dll
2013-12-29 13:49:36 ----A---- C:\Windows\system32\drivers\ssudmdm.sys
2013-12-29 13:49:36 ----A---- C:\Windows\system32\drivers\ssudbus.sys
2013-12-29 13:46:25 ----D---- C:\Program Files\SAMSUNG
2013-12-29 13:44:32 ----D---- C:\ProgramData\Samsung
2013-12-29 13:02:49 ----D---- C:\Users\Renca\AppData\Roaming\newnext.me
2013-12-29 12:58:13 ----D---- C:\ProgramData\TEMP
2013-12-29 12:00:40 ----A---- C:\Windows\system32\drivers\pccsmcfdx64.sys
2013-12-29 12:00:27 ----D---- C:\Program Files (x86)\PC Connectivity Solution
2013-12-28 11:46:03 ----D---- C:\Program Files\Microsoft Silverlight
2013-12-28 11:46:03 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2013-12-28 11:24:14 ----D---- C:\ProgramData\Medieval Software
2013-12-28 10:50:00 ----D---- C:\Program Files (x86)\Medieval Software
2013-12-28 10:48:41 ----A---- C:\Windows\SYSWOW64\BlueCiucc.dll
2013-12-28 06:12:54 ----D---- C:\Program Files (x86)\Analog Devices
2013-12-28 06:11:48 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2013-12-28 06:11:48 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2013-12-28 06:11:48 ----A---- C:\Windows\system32\RdpGroupPolicyExtension.dll
2013-12-28 06:11:41 ----A---- C:\Windows\system32\drivers\TsUsbFlt.sys
2013-12-28 06:11:41 ----A---- C:\Windows\system32\drivers\rdpvideominiport.sys
2013-12-28 06:11:32 ----A---- C:\Windows\SYSWOW64\wksprtPS.dll
2013-12-28 06:11:32 ----A---- C:\Windows\SYSWOW64\tsgqec.dll
2013-12-28 06:11:32 ----A---- C:\Windows\SYSWOW64\rdpendp_winip.dll
2013-12-28 06:11:32 ----A---- C:\Windows\system32\wksprtPS.dll
2013-12-28 06:11:32 ----A---- C:\Windows\system32\TsUsbGDCoInstaller.dll
2013-12-28 06:11:32 ----A---- C:\Windows\system32\tsgqec.dll
2013-12-28 06:11:31 ----A---- C:\Windows\SYSWOW64\MsRdpWebAccess.dll
2013-12-28 06:11:31 ----A---- C:\Windows\SYSWOW64\aaclient.dll
2013-12-28 06:11:31 ----A---- C:\Windows\system32\TSWbPrxy.exe
2013-12-28 06:11:31 ----A---- C:\Windows\system32\rdpudd.dll
2013-12-28 06:11:31 ----A---- C:\Windows\system32\MsRdpWebAccess.dll
2013-12-28 06:11:31 ----A---- C:\Windows\system32\aaclient.dll
2013-12-28 06:11:30 ----A---- C:\Windows\SYSWOW64\mstsc.exe
2013-12-28 06:11:30 ----A---- C:\Windows\system32\wksprt.exe
2013-12-28 06:11:30 ----A---- C:\Windows\system32\rdpendp_winip.dll
2013-12-28 06:11:30 ----A---- C:\Windows\system32\mstsc.exe
2013-12-28 06:11:29 ----A---- C:\Windows\SYSWOW64\mstscax.dll
2013-12-28 06:11:29 ----A---- C:\Windows\system32\rdpcorets.dll
2013-12-28 06:11:28 ----A---- C:\Windows\system32\mstscax.dll
2013-12-28 06:08:42 ----A---- C:\Windows\system32\ZSHP1020.EXE
2013-12-28 06:08:42 ----A---- C:\Windows\system32\ZLhp1020.DLL
2013-12-28 06:07:10 ----A---- C:\Windows\SYSWOW64\qdvd.dll
2013-12-28 06:07:09 ----A---- C:\Windows\system32\qdvd.dll
2013-12-28 05:35:52 ----D---- C:\updates
2013-12-28 05:35:14 ----D---- C:\ProgramData\Squeezebox
2013-12-28 05:35:14 ----D---- C:\Program Files (x86)\Squeezebox
2013-12-20 10:25:24 ----D---- C:\Users\Renca\AppData\Roaming\Atomic Alarm Clock 6
2013-12-20 10:23:37 ----D---- C:\Program Files\Atomic Alarm Clock
2013-12-20 09:59:57 ----D---- C:\Program Files (x86)\FinalWire
2013-12-18 19:32:01 ----D---- C:\Users\Renca\AppData\Roaming\Leadertech
2013-12-18 19:31:31 ----A---- C:\Windows\system32\drivers\LNonPnP.sys
2013-12-18 19:29:34 ----D---- C:\ProgramData\Logishrd
2013-12-18 19:29:22 ----D---- C:\Program Files\Logitech
2013-12-18 19:28:50 ----D---- C:\Program Files\Common Files\LogiShrd
2013-12-17 18:58:33 ----D---- C:\Users\Renca\AppData\Roaming\Logitech
2013-12-17 18:58:33 ----D---- C:\Users\Renca\AppData\Roaming\Logishrd
2013-12-14 09:13:09 ----A---- C:\Windows\system32\wmploc.DLL
2013-12-14 09:13:08 ----A---- C:\Windows\SYSWOW64\wmploc.DLL
2013-12-14 09:13:07 ----A---- C:\Windows\SYSWOW64\wmp.dll
2013-12-14 09:13:04 ----A---- C:\Windows\system32\wmp.dll
2013-12-14 09:10:29 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2013-12-14 09:10:28 ----A---- C:\Windows\system32\ieui.dll
2013-12-14 09:10:27 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2013-12-14 09:10:27 ----A---- C:\Windows\SYSWOW64\ieui.dll
2013-12-14 09:10:27 ----A---- C:\Windows\system32\jsproxy.dll
2013-12-14 09:10:27 ----A---- C:\Windows\system32\ieUnatt.exe
2013-12-14 09:10:26 ----A---- C:\Windows\system32\iesetup.dll
2013-12-14 09:10:26 ----A---- C:\Windows\system32\iernonce.dll
2013-12-14 09:10:26 ----A---- C:\Windows\system32\ieetwproxystub.dll
2013-12-14 09:10:26 ----A---- C:\Windows\system32\ie4uinit.exe
2013-12-14 09:10:25 ----A---- C:\Windows\system32\ieetwcollector.exe
2013-12-14 09:10:24 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2013-12-14 09:10:24 ----A---- C:\Windows\system32\mshtml.dll
2013-12-14 09:10:24 ----A---- C:\Windows\system32\jscript9diag.dll
2013-12-14 09:10:23 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2013-12-14 09:10:23 ----A---- C:\Windows\system32\ieapfltr.dll
2013-12-14 09:10:22 ----A---- C:\Windows\system32\iertutil.dll
2013-12-14 09:10:21 ----A---- C:\Windows\SYSWOW64\wininet.dll
2013-12-14 09:10:21 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2013-12-14 09:10:20 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2013-12-14 09:10:20 ----A---- C:\Windows\system32\wininet.dll
2013-12-14 09:10:20 ----A---- C:\Windows\system32\urlmon.dll
2013-12-14 09:10:18 ----A---- C:\Windows\system32\ieframe.dll
2013-12-14 09:10:17 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2013-12-14 09:10:15 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2013-12-14 09:10:15 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2013-12-14 09:10:14 ----A---- C:\Windows\system32\jscript9.dll
2013-12-13 10:49:41 ----A---- C:\Windows\system32\msieftp.dll
2013-12-13 10:49:40 ----A---- C:\Windows\SYSWOW64\msieftp.dll
2013-12-13 10:49:40 ----A---- C:\Windows\SYSWOW64\imagehlp.dll
2013-12-13 10:49:40 ----A---- C:\Windows\system32\imagehlp.dll
2013-12-13 10:49:36 ----A---- C:\Windows\SYSWOW64\WMPhoto.dll
2013-12-13 10:49:36 ----A---- C:\Windows\system32\WMPhoto.dll
2013-12-13 10:49:33 ----A---- C:\Windows\system32\win32k.sys
2013-12-13 10:49:24 ----A---- C:\Windows\SYSWOW64\tzres.dll
2013-12-13 10:49:24 ----A---- C:\Windows\system32\tzres.dll
2013-12-13 10:49:14 ----A---- C:\Windows\system32\drivers\portcls.sys
2013-12-13 10:49:14 ----A---- C:\Windows\system32\drivers\drmk.sys
2013-12-13 10:49:13 ----A---- C:\Windows\SYSWOW64\wscript.exe
2013-12-13 10:49:13 ----A---- C:\Windows\system32\scrrun.dll
2013-12-13 10:49:13 ----A---- C:\Windows\system32\cscript.exe
2013-12-13 10:49:12 ----A---- C:\Windows\SYSWOW64\scrrun.dll
2013-12-13 10:49:12 ----A---- C:\Windows\system32\wscript.exe
2013-12-13 10:49:11 ----A---- C:\Windows\SYSWOW64\cscript.exe
2013-12-11 10:36:54 ----D---- C:\Program Files (x86)\Mozilla Thunderbird
2013-12-10 19:41:37 ----D---- C:\Program Files (x86)\Mozilla Firefox
2013-12-10 18:52:04 ----D---- C:\ProgramData\{CC71B1CB-A2E4-4CF7-8EDB-A0E290BA1604}
2013-12-07 09:24:03 ----A---- C:\Windows\system32\IEUDINIT.EXE
2013-12-07 09:15:14 ----A---- C:\Windows\SYSWOW64\elshyph.dll
2013-12-07 09:15:14 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\wextract.exe
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\url.dll
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\RegisterIEPKEYs.exe
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\pngfilt.dll
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\occache.dll
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\msrating.dll
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\msls31.dll
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\mshta.exe
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\msfeedssync.exe
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\msfeedsbs.dll
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\licmgr10.dll
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\jsIntl.dll
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\jscript.dll
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\inseng.dll
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\imgutil.dll
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\iexpress.exe
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\iepeers.dll
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\ieapfltr.dat
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\icardie.dll
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2013-12-07 09:15:05 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2013-12-07 09:15:05 ----A---- C:\Windows\system32\elshyph.dll
2013-12-07 09:15:04 ----A---- C:\Windows\SYSWOW64\SetIEInstalledDate.exe
2013-12-07 09:15:04 ----A---- C:\Windows\SYSWOW64\mshtmler.dll
2013-12-07 09:15:04 ----A---- C:\Windows\SYSWOW64\iesysprep.dll
2013-12-07 09:15:04 ----A---- C:\Windows\SYSWOW64\IEAdvpack.dll
2013-12-07 09:15:04 ----A---- C:\Windows\system32\wextract.exe
2013-12-07 09:15:04 ----A---- C:\Windows\system32\webcheck.dll
2013-12-07 09:15:04 ----A---- C:\Windows\system32\vbscript.dll
2013-12-07 09:15:04 ----A---- C:\Windows\system32\url.dll
2013-12-07 09:15:04 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2013-12-07 09:15:04 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2013-12-07 09:15:04 ----A---- C:\Windows\system32\pngfilt.dll
2013-12-07 09:15:04 ----A---- C:\Windows\system32\occache.dll
2013-12-07 09:15:04 ----A---- C:\Windows\system32\msrating.dll
2013-12-07 09:15:04 ----A---- C:\Windows\system32\msls31.dll
2013-12-07 09:15:04 ----A---- C:\Windows\system32\mshtmlmedia.dll
2013-12-07 09:15:04 ----A---- C:\Windows\system32\mshtmler.dll
2013-12-07 09:15:04 ----A---- C:\Windows\system32\mshtmled.dll
2013-12-07 09:15:04 ----A---- C:\Windows\system32\MshtmlDac.dll
2013-12-07 09:15:04 ----A---- C:\Windows\system32\mshta.exe
2013-12-07 09:15:04 ----A---- C:\Windows\system32\msfeedssync.exe
2013-12-07 09:15:04 ----A---- C:\Windows\system32\msfeedsbs.dll
2013-12-07 09:15:04 ----A---- C:\Windows\system32\msfeeds.dll
2013-12-07 09:15:04 ----A---- C:\Windows\system32\licmgr10.dll
2013-12-07 09:15:04 ----A---- C:\Windows\system32\jsIntl.dll
2013-12-07 09:15:04 ----A---- C:\Windows\system32\jscript.dll
2013-12-07 09:15:04 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2013-12-07 09:15:04 ----A---- C:\Windows\system32\inseng.dll
2013-12-07 09:15:04 ----A---- C:\Windows\system32\imgutil.dll
2013-12-07 09:15:04 ----A---- C:\Windows\system32\iexpress.exe
2013-12-07 09:15:04 ----A---- C:\Windows\system32\iesysprep.dll
2013-12-07 09:15:04 ----A---- C:\Windows\system32\iepeers.dll
2013-12-07 09:15:04 ----A---- C:\Windows\system32\iedkcs32.dll
2013-12-07 09:15:04 ----A---- C:\Windows\system32\ieapfltr.dat
2013-12-07 09:15:04 ----A---- C:\Windows\system32\IEAdvpack.dll
2013-12-07 09:15:04 ----A---- C:\Windows\system32\icardie.dll
2013-12-07 09:15:04 ----A---- C:\Windows\system32\dxtrans.dll
2013-12-07 09:15:04 ----A---- C:\Windows\system32\dxtmsft.dll
2013-12-06 10:10:42 ----D---- C:\Program Files\WinDjView

======List of files/folders modified in the last 1 month======

2014-01-02 19:44:21 ----D---- C:\Program Files\trend micro
2014-01-02 19:40:14 ----D---- C:\Users\Renca\AppData\Roaming\uTorrent
2014-01-02 19:38:14 ----D---- C:\Windows\temp
2014-01-02 19:37:18 ----D---- C:\Windows\Microsoft.NET
2014-01-02 19:37:09 ----D---- C:\Users\Renca\AppData\Roaming\Dropbox
2014-01-02 19:35:39 ----SHD---- C:\System Volume Information
2014-01-02 19:35:30 ----D---- C:\Windows\SysWOW64
2014-01-02 19:35:02 ----D---- C:\Program Files (x86)\StickIt
2014-01-02 19:35:01 ----D---- C:\ProgramData\Boxtools
2014-01-02 19:29:34 ----D---- C:\Windows\system32\config
2014-01-02 19:26:02 ----D---- C:\Windows\Tasks
2014-01-01 19:00:35 ----RD---- C:\Program Files (x86)
2014-01-01 18:13:20 ----D---- C:\ProgramData
2013-12-31 11:25:20 ----D---- C:\Windows\system32\drivers
2013-12-31 11:22:11 ----D---- C:\Windows\system32\Tasks
2013-12-31 11:22:04 ----AD---- C:\Windows
2013-12-31 11:22:01 ----A---- C:\Windows\system32\aswBoot.exe
2013-12-30 10:26:01 ----D---- C:\Windows\system32\catroot
2013-12-30 08:23:57 ----D---- C:\Windows\System32
2013-12-30 08:23:57 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-12-30 08:23:56 ----D---- C:\Windows\inf
2013-12-29 14:14:47 ----D---- C:\Windows\system32\DriverStore
2013-12-29 14:06:14 ----D---- C:\Windows\system32\catroot2
2013-12-29 13:46:25 ----RD---- C:\Program Files
2013-12-29 13:43:44 ----D---- C:\Windows\system32\drivers\UMDF
2013-12-29 12:03:59 ----SHD---- C:\Windows\Installer
2013-12-29 12:02:17 ----D---- C:\Program Files (x86)\Nokia
2013-12-29 12:02:17 ----D---- C:\Program Files (x86)\Common Files
2013-12-29 12:00:39 ----DC---- C:\Windows\system32\DRVSTORE
2013-12-28 11:46:37 ----SD---- C:\ProgramData\Microsoft
2013-12-28 10:50:02 ----RSD---- C:\Windows\assembly
2013-12-28 06:17:59 ----D---- C:\Windows\winsxs
2013-12-28 06:14:52 ----D---- C:\Windows\SYSWOW64\cs-CZ
2013-12-28 06:14:51 ----D---- C:\Windows\SYSWOW64\wbem
2013-12-28 06:14:51 ----D---- C:\Windows\SYSWOW64\en-US
2013-12-28 06:14:51 ----D---- C:\Windows\system32\wbem
2013-12-28 06:14:51 ----D---- C:\Windows\system32\en-US
2013-12-28 06:14:51 ----D---- C:\Windows\system32\drivers\en-US
2013-12-28 06:14:51 ----D---- C:\Windows\system32\cs-CZ
2013-12-28 06:14:51 ----D---- C:\Windows\PolicyDefinitions
2013-12-28 06:10:13 ----D---- C:\Windows\QLB
2013-12-28 06:10:13 ----D---- C:\Users\Renca\AppData\Roaming\hpqLog
2013-12-26 23:13:17 ----D---- C:\Users\Renca\AppData\Roaming\Aegisub
2013-12-22 08:05:16 ----D---- C:\Program Files (x86)\The KMPlayer
2013-12-20 10:20:03 ----A---- C:\Users\Renca\AppData\Roaming\AtomicAlarmClock.ini
2013-12-18 20:45:26 ----D---- C:\Windows\Prefetch
2013-12-18 19:28:50 ----D---- C:\Program Files\Common Files
2013-12-17 21:16:51 ----D---- C:\BRON
2013-12-16 16:09:58 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2013-12-15 12:06:30 ----D---- C:\Windows\system32\MRT
2013-12-15 11:56:08 ----A---- C:\Windows\system32\MRT.exe
2013-12-15 11:43:59 ----D---- C:\Program Files (x86)\Windows Media Player
2013-12-15 11:43:58 ----D---- C:\Program Files\Windows Media Player
2013-12-15 11:43:55 ----D---- C:\Program Files\Internet Explorer
2013-12-15 11:43:55 ----D---- C:\Program Files (x86)\Internet Explorer
2013-12-14 00:13:17 ----D---- C:\BIG BANG THEORY
2013-12-13 21:29:50 ----D---- C:\Program Files (x86)\Google
2013-12-12 09:25:39 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2013-12-07 09:28:51 ----D---- C:\Windows\SYSWOW64\migration
2013-12-07 09:28:49 ----D---- C:\Windows\system32\migration
2013-12-07 09:13:25 ----D---- C:\Windows\Logs
2013-12-07 09:12:09 ----D---- C:\Windows\system32\NDF

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2013-11-22 65776]
R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2013-12-31 207904]
R0 FSProFilter2;FSPro File Filter 2; C:\Windows\System32\Drivers\FSPFltd2.sys [2011-06-03 57648]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 199552]
R1 aswRdr;aswRdr; \??\C:\Windows\system32\drivers\aswRdr2.sys [2013-11-22 92544]
R1 aswSnx;aswSnx; \??\C:\Windows\system32\drivers\aswSnx.sys [2013-12-31 1034464]
R1 aswSP;aswSP; \??\C:\Windows\system32\drivers\aswSP.sys [2013-12-31 422216]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 514560]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 aswMonFlt;aswMonFlt; \??\C:\Windows\system32\drivers\aswMonFlt.sys [2013-12-31 78648]
R3 ADIHdAudAddService;ADI UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\ADIHdAud.sys [2008-04-24 402432]
R3 AgereSoftModem;Agere Systems Soft Modem; C:\Windows\system32\DRIVERS\agrsm64.sys [2009-06-10 1146880]
R3 AIDA64Driver;FinalWire AIDA64 Kernel Driver; \??\C:\Program Files (x86)\FinalWire\AIDA64 Extreme\kerneld.x64 [2013-11-18 33112]
R3 aswStm;aswStm; \??\C:\Windows\system32\drivers\aswStm.sys [2013-12-31 79672]
R3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2007-07-21 3535872]
R3 BCM43XX;Broadcom 802.11 Network Adapter Driver; C:\Windows\system32\DRIVERS\bcmwl664.sys [2009-07-08 2769400]
R3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
R3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
R3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
R3 e1express;Intel(R) PRO/1000 – ovladač PCI Express síťového připojení; C:\Windows\system32\DRIVERS\e1e6032e.sys [2009-06-10 278016]
R3 HBtnKey;HP Hotkey Device; C:\Windows\system32\DRIVERS\cpqbttn.sys [2010-02-24 19000]
R3 HpqKbFiltr;HpqKbFilter Driver; C:\Windows\system32\DRIVERS\HpqKbFiltr.sys [2009-04-29 18432]
R3 huawei_enumerator;huawei_enumerator; C:\Windows\system32\DRIVERS\ew_jubusenum.sys [2012-08-20 90112]
R3 LHidFilt;Logitech SetPoint KMDF HID Filter Driver; C:\Windows\system32\DRIVERS\LHidFilt.Sys [2013-05-23 76568]
R3 LMouFilt;Logitech SetPoint KMDF Mouse Filter Driver; C:\Windows\system32\DRIVERS\LMouFilt.Sys [2013-05-23 59160]
R3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2008-03-28 324656]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S3 ATICDSDr;ATICDSDr; \??\C:\Users\Renca\AppData\Local\Temp\ATICDSDr.sys []
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 95232]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudbus.sys [2012-06-04 99384]
S3 ew_hwusbdev;Huawei MobileBroadband USB PNP Device; C:\Windows\system32\DRIVERS\ew_hwusbdev.sys [2010-07-27 117248]
S3 ew_usbenumfilter;huawei_CompositeFilter; C:\Windows\system32\DRIVERS\ew_usbenumfilter.sys [2012-10-30 14336]
S3 huawei_cdcacm;huawei_cdcacm; C:\Windows\system32\DRIVERS\ew_jucdcacm.sys [2012-08-20 104960]
S3 huawei_ext_ctrl;huawei_ext_ctrl; C:\Windows\system32\DRIVERS\ew_juextctrl.sys [2012-08-20 30720]
S3 huawei_wwanecm;huawei_wwanecm; C:\Windows\system32\DRIVERS\ew_juwwanecm.sys [2012-12-03 241152]
S3 massfilter;Mass Storage Filter Driver; C:\Windows\system32\drivers\massfilter.sys [2011-04-13 11776]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfdx64.sys [2012-10-17 26112]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 165888]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 6656]
S3 ssudmdm;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudmdm.sys [2012-06-04 203320]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 34688]
S3 Synth3dVsc;Synth3dVsc; C:\Windows\System32\drivers\synth3dvsc.sys []
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2012-08-23 57856]
S3 tsusbhub;@%SystemRoot%\system32\drivers\tsusbhub.sys,-1; C:\Windows\system32\drivers\tsusbhub.sys []
S3 usb_rndisx;Adaptér USB RNDIS; C:\Windows\system32\DRIVERS\usb8023x.sys [2013-02-12 19968]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2013-07-03 42496]
S3 VGPU;VGPU; C:\Windows\System32\drivers\rdvgkmd.sys []
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 21760]
S3 WinUsb;Android USB Driver; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 41984]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-05-11 65640]
R2 AEADIFilters;Andrea ADI Filters Service; C:\Windows\system32\AEADISRV.EXE [2007-02-06 80384]
R2 Ati External Event Utility;Ati External Event Utility; C:\Windows\system32\Ati2evxx.exe [2007-07-21 787968]
R2 AtomicAlarmClock;Atomic Alarm Clock Time; C:\Program Files\Atomic Alarm Clock\timeserv.exe [2013-04-24 2007040]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2013-12-31 50344]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 fsproflt2;FSPro Filter Service 2; C:\Windows\SysWOW64\fsproflt2.exe [2012-07-12 49512]
R2 MbnExt;Mobile Broadband Extension Service; C:\Windows\system32\svchost.exe [2009-07-14 27136]
R2 MDM;Machine Debug Manager; C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe [2006-10-26 335872]
R2 nlsX86cc;Nalpeiron Licensing Service; C:\Windows\SysWOW64\nlssrv32.exe [2012-07-05 66560]
R2 PanService;PandoraService; C:\Program Files (x86)\PANDORA.TV\PanService\PandoraService.exe [2012-06-22 625816]
R2 SQLWriter;SQL Server VSS Writer; C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe [2012-10-20 130024]
R3 Com4QLBEx;Com4QLBEx; C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe [2010-01-12 227896]
R3 hpqwmiex;hpqwmiex; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe [2009-04-30 229944]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-09-11 124088]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-09-16 116648]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2012-07-13 160944]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-12-12 257416]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-09-11 51808]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-09-16 116648]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2013-11-26 111616]
S3 LBTServ;Logitech Bluetooth Service; C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe [2013-06-13 357144]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2013-12-10 119408]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 ServiceLayer;ServiceLayer; C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe [2013-04-18 737616]
S3 SwitchBoard;SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 VsEtwService120;Visual Studio ETW Event Collection Service; C:\Program Files (x86)\Microsoft Visual Studio 12.0\Common7\Packages\Debugger\Services\VsEtwService.exe [2013-10-04 87728]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2012-08-18 1255736]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]

-----------------EOF-----------------

Re: Nenormální vytížení CPU

Napsal: 02 led 2014 20:17
od Rudy
Smazáno. Znovu spusťte OTM a klikněte na >CleanUp!<. OTM po sobě uklidí. Nakonec restartujte PC. Nastala nějaká změna?

Re: Nenormální vytížení CPU

Napsal: 02 led 2014 21:20
od Ivošisko
Můj dojem je, že se to zlepšilo - když nemám nic spuštěného (až na ty nějaké drobnosti na pozadí), tak se to točí mezi 4-7%, když otevřu Firefox, tak se to po pozotvírání oken ustálí někde kolem 10% (6-16%) a když k tomu zapnu Thunderbird, tak ještě o 10% vyleze, ale tam mám 4 účty, které v minutových intervalech šahají na server, takže to dost komíhá. Ale v celku se to výrazně zklidnilo. Asi to bylo způsobené tím, že jsem teď pár dnů zápasil s Bluetoothem a instaloval jsem různé blbosti (ze zoufalství, neboť mi nechtějí notebooky komunikovat prostřednictvím BT s žádným zařízením (Win7), což ještě nemám vyřešené) a tyto nainstalované managery byli asi dost "aktivní a agresivní". Tak si to alespoň vysvětluji.

Takže děkuji za skvělou práci a ať se daří.

Re: Nenormální vytížení CPU

Napsal: 02 led 2014 21:37
od Rudy
Nemáte zač a díky za uznání! :)