Stránka 1 z 1

Problem s PC

Napsal: 22 srp 2014 13:57
od tvanis
dobry den mam problem s pc program winlog.exe vytezuje muj Cpu cca 15% a GPU na 95%
Predem dekuji za pomoc.

Logfile of random's system information tool 1.08 (written by random/random)
Run by sosemo at 2014-08-22 14:51:36
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 20 GB (17%) free of 122 GB
Total RAM: 8141 MB (62% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 14:52:09, on 22.8.2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17239)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe
C:\Users\sosemo\AppData\Roaming\WinUpdate\g\windrv.exe
D:\software\fraps.exe
C:\Program Files (x86)\Creative\Sound Blaster Cinema\Sound Blaster Cinema\SBCinema.exe
C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
C:\Program Files (x86)\MSI\Fast Boot\FastBoot.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Windows\SysWOW64\cmd.exe
C:\Users\sosemo\AppData\Roaming\WinUpdate\g\winlog.exe
C:\Program Files\trend micro\sosemo.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MIF5BA~1\Office14\GROOVEEX.DLL
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MIF5BA~1\Office14\URLREDIR.DLL
O4 - HKLM\..\Run: [Sound Blaster Cinema] "C:\Program Files (x86)\Creative\Sound Blaster Cinema\Sound Blaster Cinema\SBCinema.exe" /r
O4 - HKLM\..\Run: [UpdReg] C:\Windows\UpdReg.EXE
O4 - HKLM\..\Run: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
O4 - HKLM\..\Run: [Live Update] C:\Program Files (x86)\MSI\Live Update\StartLiveUpdate.exe /REMINDER
O4 - HKLM\..\Run: [Command Center] C:\Program Files (x86)\MSI\Command Center\StartCommandCenter.exe
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [Fast Boot] C:\Program Files (x86)\MSI\Fast Boot\StartFastBoot.exe
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [DAEMON Tools Lite] "D:\software\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [Windows Drivers] "C:\Users\sosemo\AppData\Roaming\WinUpdate\g\windrv.exe"
O4 - HKCU\..\Run: [DIMProbíhá stahování aktualizace...1338924290338] "C:\Program Files\Corel\CorelDRAW Graphics Suite X6\Draw\DIM.EXE" "c:\programdata\corel\downloads\540240626_410003\1338924290338\dim_params.xml" -Launch=3 -uibase="c:\users\sosemo\appdata\roaming\corel\messages\540240626_410003\cz\messagecache1\workflow"
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\RunOnce: [{80655FC2-A38F-4B8C-8775-9A3C68A6C305}] "C:\Program Files (x86)\MSI\Live Update\LU5\DL_FILE\Killer_Network_Drivers_1.1.42.1045\Setup.exe" /silent (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [{80655FC2-A38F-4B8C-8775-9A3C68A6C305}] "C:\Program Files (x86)\MSI\Live Update\LU5\DL_FILE\Killer_Network_Drivers_1.1.42.1045\Setup.exe" /silent (User 'Default user')
O4 - Global Startup: Killer Network Manager.lnk = ?
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~4\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~1\MICROS~4\Office14\ONBttnIE.dll/105
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: MSIBIOSData_CC - MSI - C:\Program Files (x86)\MSI\Command Center\BIOSData\MSIBIOSDataService.exe
O23 - Service: MSIClock_CC - MSI - C:\Program Files (x86)\MSI\Command Center\ClockGen\MSIClockService.exe
O23 - Service: MSICOMM_CC - Unknown owner - C:\Program Files (x86)\MSI\Command Center\MSICommService.exe
O23 - Service: MSICPU_CC - Unknown owner - C:\Program Files (x86)\MSI\Command Center\CPU\MSICPUService.exe
O23 - Service: MSICTL_CC - Unknown owner - C:\Program Files (x86)\MSI\Command Center\MSIControlService.exe
O23 - Service: MSIDDR_CC - Unknown owner - C:\Program Files (x86)\MSI\Command Center\DDR\MSIDDRService.exe
O23 - Service: MSISMB_CC - Unknown owner - C:\Program Files (x86)\MSI\Command Center\SMBus\MSISMBService.exe
O23 - Service: MSISuperIO_CC - Unknown owner - C:\Program Files (x86)\MSI\Command Center\SuperIO\MSISuperIOService.exe
O23 - Service: MSI_FastBoot - MSI - C:\Program Files (x86)\MSI\Fast Boot\FastBootService.exe
O23 - Service: MSI_LiveUpdate_Service - Micro-Star International - C:\Program Files (x86)\MSI\Live Update\MSI_LiveUpdate_Service.exe
O23 - Service: MSI_Trigger_Service - MICRO-STAR INTERNATIONAL CO., LTD. - C:\Program Files (x86)\MSI\MSITrigger\MSI_Trigger_Service.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Protexis Licensing V2 x64 (PSI_SVC_2_x64) - arvato digital services llc - c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
O23 - Service: Qualcomm Atheros Killer Service V2 - Qualcomm Atheros - C:\Program Files\Qualcomm Atheros\Network Manager\KillerService.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: SuperRAIDSvc - Micro-Star International - C:\MSI\Smart Utilities\SuperRAIDSvc.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Intel(R) Extreme Tuning Utility Service (XTU3SERVICE) - Intel(R) Corporation - C:\Program Files (x86)\Intel\Extreme Tuning Utility\XtuService.exe

--
End of file - 11991 bytes

======Listing Processes======

\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
"C:\Program Files\Microsoft Security Client\MsMpEng.exe"
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k NetworkService
atieclxx
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
taskeng.exe {B2C9C8A1-E7CF-442F-88AE-9584C9299B07}
"C:\Program Files (x86)\MSI\Command Center\MSIControlService.exe"
"C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe" /s
"C:\Program Files (x86)\MSI\Fast Boot\FastBootService.exe"
"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
"C:\Windows\System32\rundll32.exe" C:\Windows\system32\MBCfg64.dll,RunDLLEntry MBCfg64
"C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
"C:\Program Files (x86)\MSI\Live Update\MSI_LiveUpdate_Service.exe"
"C:\Program Files\Logitech\Gaming Software\LWEMon.exe" /noui
"C:\Program Files\Windows Sidebar\sidebar.exe" /autoRun
"C:\Program Files (x86)\MSI\MSITrigger\MSI_Trigger_Service.exe"
"C:\Users\sosemo\AppData\Roaming\WinUpdate\g\windrv.exe"
"C:\Program Files\Qualcomm Atheros\Network Manager\NetworkManager.exe" -minimize
D:\software\fraps.exe
"C:\Program Files (x86)\Creative\Sound Blaster Cinema\Sound Blaster Cinema\SBCinema.exe" /r
"C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
C:\Windows\system32\PnkBstrA.exe
"c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe"
"C:\Program Files (x86)\MSI\Fast Boot\FastBoot.exe"
"C:\Program Files\Qualcomm Atheros\Network Manager\KillerService.exe"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM" PriorityLow
C:\Windows\system32\svchost.exe -k imgsvc
"C:\MSI\Smart Utilities\SuperRAIDSvc.exe"
/REMINDER
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files\Microsoft Security Client\NisSrv.exe"
WLIDSvcM.exe 3296
taskmgr.exe /3
"D:\software\fraps64.dat"
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\Windows\System32\cmd.exe" /c setx GPU_MAX_ALLOC_PERCENT 100 &&setx GPU_USE_SYNC_OBJECTS 1 &&C:\Users\sosemo\AppData\Roaming\WinUpdate\g/winlog.exe --scrypt -S opencl:auto -o stratum+tcp://pool.litecoinrain.org:3333 -u woody -p x -I 9
\??\C:\Windows\system32\conhost.exe "1071564937-12574376841617961002-120537084810027934362066143886-445065099-1213827615
C:\Users\sosemo\AppData\Roaming\WinUpdate\g/winlog.exe --scrypt -S opencl:auto -o stratum+tcp://pool.litecoinrain.org:3333 -u woody -p x -I 9
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\Intel\Extreme Tuning Utility\XtuService.exe"
"C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe"
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe2_ Global\UsGthrCtrlFltPipeMssGthrPipe2 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 512 516 524 65536 520
"C:\Users\sosemo\Desktop\RSITx64.exe"

======Scheduled tasks folder======

C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~4\Office14\GROOVEEX.DLL [2013-03-09 6669000]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 532336]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~4\Office14\URLREDIR.DLL [2013-03-06 690392]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~2\MIF5BA~1\Office14\GROOVEEX.DLL [2013-03-09 4171464]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 403840]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MIF5BA~1\Office14\URLREDIR.DLL [2013-03-06 562904]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2014-05-12 7575256]
"MBCfg64"=C:\Windows\system32\MBCfg64.dll [2013-08-29 40576]
"MSC"=C:\Program Files\Microsoft Security Client\msseces.exe [2014-03-11 1271072]
"Start WingMan Profiler"=C:\Program Files\Logitech\Gaming Software\LWEMon.exe [2010-06-14 190536]
"BCSSync"=C:\Program Files\Microsoft Office\Office14\BCSSync.exe [2012-11-05 108144]
"AutoKMS"=C:\Windows\AutoKMS.exe []

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-21 1475584]
"DAEMON Tools Lite"=D:\software\DAEMON Tools Lite\DTLite.exe [2014-03-04 3696912]
"Windows Drivers"=C:\Users\sosemo\AppData\Roaming\WinUpdate\g\windrv.exe [2014-04-29 6656]
"DIMProbíhá stahování aktualizace...1338924290338"=C:\Program Files\Corel\CorelDRAW Graphics Suite X6\Draw\DIM.EXE [2012-02-23 237944]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"Sound Blaster Cinema"=C:\Program Files (x86)\Creative\Sound Blaster Cinema\Sound Blaster Cinema\SBCinema.exe [2013-08-16 711680]
"UpdReg"=C:\Windows\UpdReg.EXE [2000-05-11 90112]
"USB3MON"=C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [2014-02-21 292848]
"Live Update"=C:\Program Files (x86)\MSI\Live Update\StartLiveUpdate.exe [2014-07-01 579024]
"Command Center"=C:\Program Files (x86)\MSI\Command Center\StartCommandCenter.exe [2014-06-06 796328]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [2014-08-11 767200]
"Fast Boot"=C:\Program Files (x86)\MSI\Fast Boot\StartFastBoot.exe [2012-09-19 764472]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Killer Network Manager.lnk - C:\Windows\Installer\{4692B750-DE88-4DCF-9163-745AF5604B24}\NetworkManager.exe_130C27D738F34C89BDDF21BCFD74B56D.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~4\Office14\GROOVEEX.DLL [2013-03-09 6669000]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~2\MIF5BA~1\Office14\GROOVEEX.DLL [2013-03-09 4171464]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 months======

2014-08-22 14:51:36 ----D---- C:\rsit
2014-08-22 14:51:36 ----D---- C:\Program Files\trend micro
2014-08-22 11:36:47 ----D---- C:\Program Files (x86)\RivaTuner Statistics Server
2014-08-22 11:35:11 ----D---- C:\Program Files (x86)\MSI Afterburner
2014-08-22 11:34:25 ----D---- C:\Program Files (x86)\MSI Kombustor 2.5
2014-08-22 11:21:47 ----HD---- C:\msiFastBoot
2014-08-20 01:21:45 ----D---- C:\ProgramData\Qualcomm
2014-08-20 01:21:30 ----D---- C:\Program Files\Qualcomm Atheros
2014-08-20 01:14:51 ----D---- C:\Program Files (x86)\Setup Files
2014-08-19 23:33:25 ----D---- C:\Program Files (x86)\GPU-Z
2014-08-19 23:27:55 ----A---- C:\Users\sosemo\AppData\Roaming\GPU MeterV2_Settings.ini
2014-08-19 23:05:18 ----A---- C:\Windows\system32\RdpGroupPolicyExtension.dll
2014-08-19 23:05:18 ----A---- C:\Windows\system32\rdpcorets.dll
2014-08-19 23:05:17 ----A---- C:\Windows\SYSWOW64\mstscax.dll
2014-08-19 23:05:17 ----A---- C:\Windows\system32\mstscax.dll
2014-08-18 21:45:25 ----A---- C:\Windows\system32\TsUsbGDCoInstaller.dll
2014-08-18 21:45:23 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2014-08-18 21:45:23 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2014-08-18 21:45:23 ----A---- C:\Windows\system32\drivers\TsUsbFlt.sys
2014-08-18 21:45:22 ----A---- C:\Windows\SYSWOW64\wksprtPS.dll
2014-08-18 21:45:22 ----A---- C:\Windows\SYSWOW64\tsgqec.dll
2014-08-18 21:45:22 ----A---- C:\Windows\SYSWOW64\rdvidcrl.dll
2014-08-18 21:45:22 ----A---- C:\Windows\SYSWOW64\mstsc.exe
2014-08-18 21:45:22 ----A---- C:\Windows\SYSWOW64\MsRdpWebAccess.dll
2014-08-18 21:45:22 ----A---- C:\Windows\system32\wksprtPS.dll
2014-08-18 21:45:22 ----A---- C:\Windows\system32\wksprt.exe
2014-08-18 21:45:22 ----A---- C:\Windows\system32\TSWbPrxy.exe
2014-08-18 21:45:22 ----A---- C:\Windows\system32\tsgqec.dll
2014-08-18 21:45:22 ----A---- C:\Windows\system32\rdvidcrl.dll
2014-08-18 21:45:22 ----A---- C:\Windows\system32\mstsc.exe
2014-08-18 21:45:22 ----A---- C:\Windows\system32\MsRdpWebAccess.dll
2014-08-18 21:45:15 ----A---- C:\Windows\system32\drivers\TsUsbGD.sys
2014-08-18 21:45:15 ----A---- C:\Windows\system32\drivers\rdpvideominiport.sys
2014-08-18 21:45:14 ----A---- C:\Windows\SYSWOW64\rdpendp_winip.dll
2014-08-18 21:45:14 ----A---- C:\Windows\system32\rdpudd.dll
2014-08-18 21:45:14 ----A---- C:\Windows\system32\rdpendp_winip.dll
2014-08-18 21:44:43 ----D---- C:\Program Files\Microsoft Silverlight
2014-08-18 21:44:43 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2014-08-18 21:43:57 ----A---- C:\Windows\SYSWOW64\TSWorkspace.dll
2014-08-18 21:43:57 ----A---- C:\Windows\system32\TSWorkspace.dll
2014-08-18 21:43:54 ----A---- C:\Windows\SYSWOW64\qdvd.dll
2014-08-18 21:43:54 ----A---- C:\Windows\system32\qdvd.dll
2014-08-18 11:35:16 ----D---- C:\Users\sosemo\AppData\Roaming\Corel
2014-08-18 11:35:16 ----D---- C:\ProgramData\Protexis64
2014-08-18 11:34:04 ----D---- C:\Program Files (x86)\Microsoft SDKs
2014-08-18 11:34:03 ----D---- C:\Program Files (x86)\Microsoft Visual Studio 9.0
2014-08-18 11:33:54 ----D---- C:\Program Files\Common Files\Corel
2014-08-18 11:33:46 ----D---- C:\Program Files\Common Files\Protexis
2014-08-18 11:33:44 ----D---- C:\ProgramData\Corel
2014-08-18 11:32:52 ----D---- C:\Program Files\Corel
2014-08-18 11:32:10 ----D---- C:\ProgramData\CorelDRAW Graphics Suite X6
2014-08-18 11:28:44 ----A---- C:\Windows\AutoKMS.ini
2014-08-18 11:24:52 ----D---- C:\Program Files\Common Files\DESIGNER
2014-08-18 11:24:25 ----D---- C:\Windows\PCHEALTH
2014-08-18 11:24:25 ----D---- C:\Program Files\Microsoft Sync Framework
2014-08-18 11:22:10 ----D---- C:\Program Files (x86)\Microsoft Visual Studio 8
2014-08-18 11:21:50 ----D---- C:\Program Files\Microsoft Analysis Services
2014-08-18 11:21:50 ----D---- C:\Program Files (x86)\Microsoft Analysis Services
2014-08-18 11:21:49 ----D---- C:\Program Files (x86)\Microsoft Office
2014-08-18 11:21:48 ----D---- C:\ProgramData\Microsoft Help
2014-08-18 11:21:48 ----D---- C:\Program Files\Microsoft Office
2014-08-18 11:21:43 ----RHD---- C:\MSOCache
2014-08-17 21:46:21 ----D---- C:\Program Files (x86)\SpeedFan
2014-08-17 19:39:49 ----D---- C:\Program Files\CPUID
2014-08-16 20:48:48 ----D---- C:\Users\sosemo\AppData\Roaming\TS3Client
2014-08-16 20:48:45 ----D---- C:\Program Files\TeamSpeak 3 Client
2014-08-16 20:40:00 ----D---- C:\ProgramData\ATI
2014-08-16 20:39:59 ----D---- C:\Program Files (x86)\AMD AVT
2014-08-16 20:30:05 ----A---- C:\Windows\system32\PnkBstrA.exe
2014-08-16 19:14:32 ----D---- C:\Program Files (x86)\Origin Games
2014-08-16 19:05:31 ----D---- C:\Users\sosemo\AppData\Roaming\Origin
2014-08-16 19:04:57 ----D---- C:\ProgramData\Electronic Arts
2014-08-16 19:04:56 ----D---- C:\Program Files (x86)\Origin
2014-08-15 11:16:06 ----HD---- C:\Windows\system32\CanonIJ Uninstaller Information
2014-08-15 11:15:59 ----A---- C:\Windows\system32\CNMLM8R.DLL
2014-08-15 11:15:56 ----A---- C:\Windows\system32\cnco140.dll
2014-08-15 11:15:56 ----A---- C:\Windows\system32\CNCL140.DLL
2014-08-15 11:15:56 ----A---- C:\Windows\system32\CNCI140.DLL
2014-08-15 11:15:56 ----A---- C:\Windows\system32\CNCC140.DLL
2014-08-15 11:13:48 ----HD---- C:\Program Files\CanonBJ
2014-08-15 11:10:56 ----HD---- C:\ProgramData\CanonBJ
2014-08-13 08:27:17 ----A---- C:\Windows\SYSWOW64\infocardapi.dll
2014-08-13 08:27:17 ----A---- C:\Windows\SYSWOW64\icardagt.exe
2014-08-13 08:27:17 ----A---- C:\Windows\system32\infocardapi.dll
2014-08-13 08:27:17 ----A---- C:\Windows\system32\icardagt.exe
2014-08-13 08:27:16 ----A---- C:\Windows\SYSWOW64\icardres.dll
2014-08-13 08:27:16 ----A---- C:\Windows\system32\icardres.dll
2014-08-13 08:27:10 ----A---- C:\Windows\SYSWOW64\TsWpfWrp.exe
2014-08-13 08:27:10 ----A---- C:\Windows\system32\TsWpfWrp.exe
2014-08-13 08:24:31 ----A---- C:\Windows\SYSWOW64\KBDYAK.DLL
2014-08-13 08:24:31 ----A---- C:\Windows\SYSWOW64\KBDTAT.DLL
2014-08-13 08:24:31 ----A---- C:\Windows\SYSWOW64\KBDRU1.DLL
2014-08-13 08:24:31 ----A---- C:\Windows\SYSWOW64\KBDRU.DLL
2014-08-13 08:24:31 ----A---- C:\Windows\SYSWOW64\KBDBASH.DLL
2014-08-13 08:24:31 ----A---- C:\Windows\system32\KBDYAK.DLL
2014-08-13 08:24:31 ----A---- C:\Windows\system32\KBDTAT.DLL
2014-08-13 08:24:31 ----A---- C:\Windows\system32\KBDRU1.DLL
2014-08-13 08:24:31 ----A---- C:\Windows\system32\KBDRU.DLL
2014-08-13 08:24:31 ----A---- C:\Windows\system32\KBDBASH.DLL
2014-08-13 08:24:30 ----A---- C:\Windows\SYSWOW64\tzres.dll
2014-08-13 08:24:30 ----A---- C:\Windows\system32\tzres.dll
2014-08-13 08:24:28 ----A---- C:\Windows\SYSWOW64\msihnd.dll
2014-08-13 08:24:28 ----A---- C:\Windows\SYSWOW64\msi.dll
2014-08-13 08:24:28 ----A---- C:\Windows\SYSWOW64\authui.dll
2014-08-13 08:24:28 ----A---- C:\Windows\system32\msihnd.dll
2014-08-13 08:24:28 ----A---- C:\Windows\system32\msi.dll
2014-08-13 08:24:28 ----A---- C:\Windows\system32\consent.exe
2014-08-13 08:24:28 ----A---- C:\Windows\system32\authui.dll
2014-08-13 08:24:27 ----A---- C:\Windows\SYSWOW64\shell32.dll
2014-08-13 08:24:27 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2014-08-13 08:24:27 ----A---- C:\Windows\system32\win32k.sys
2014-08-13 08:24:27 ----A---- C:\Windows\system32\shell32.dll
2014-08-13 08:24:27 ----A---- C:\Windows\system32\gdi32.dll
2014-08-13 08:24:27 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2014-08-13 08:24:26 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2014-08-13 08:24:26 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2014-08-13 08:24:26 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2014-08-13 08:24:25 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2014-08-13 08:24:25 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2014-08-13 08:24:25 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2014-08-13 08:24:25 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2014-08-13 08:24:25 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2014-08-13 08:24:25 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2014-08-13 08:24:25 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2014-08-13 08:24:25 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2014-08-13 08:24:25 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2014-08-13 08:24:25 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2014-08-13 08:24:25 ----A---- C:\Windows\system32\urlmon.dll
2014-08-13 08:24:25 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-08-13 08:24:25 ----A---- C:\Windows\system32\iernonce.dll
2014-08-13 08:24:25 ----A---- C:\Windows\system32\ieetwproxystub.dll
2014-08-13 08:24:25 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2014-08-13 08:24:25 ----A---- C:\Windows\system32\ie4uinit.exe
2014-08-13 08:24:24 ----A---- C:\Windows\SYSWOW64\ieui.dll
2014-08-13 08:24:24 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2014-08-13 08:24:24 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2014-08-13 08:24:24 ----A---- C:\Windows\system32\msfeeds.dll
2014-08-13 08:24:24 ----A---- C:\Windows\system32\iesetup.dll
2014-08-13 08:24:24 ----A---- C:\Windows\system32\iertutil.dll
2014-08-13 08:24:24 ----A---- C:\Windows\system32\ieetwcollector.exe
2014-08-13 08:24:24 ----A---- C:\Windows\system32\iedkcs32.dll
2014-08-13 08:24:24 ----A---- C:\Windows\system32\dxtmsft.dll
2014-08-13 08:24:23 ----A---- C:\Windows\SYSWOW64\wininet.dll
2014-08-13 08:24:23 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2014-08-13 08:24:23 ----A---- C:\Windows\SYSWOW64\msrating.dll
2014-08-13 08:24:23 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2014-08-13 08:24:23 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2014-08-13 08:24:23 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2014-08-13 08:24:23 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2014-08-13 08:24:23 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2014-08-13 08:24:23 ----A---- C:\Windows\system32\jsproxy.dll
2014-08-13 08:24:23 ----A---- C:\Windows\system32\ieui.dll
2014-08-13 08:24:23 ----A---- C:\Windows\system32\ieframe.dll
2014-08-13 08:24:23 ----A---- C:\Windows\system32\dxtrans.dll
2014-08-13 08:24:22 ----A---- C:\Windows\system32\wininet.dll
2014-08-13 08:24:22 ----A---- C:\Windows\system32\vbscript.dll
2014-08-13 08:24:22 ----A---- C:\Windows\system32\msrating.dll
2014-08-13 08:24:22 ----A---- C:\Windows\system32\mshtmlmedia.dll
2014-08-13 08:24:22 ----A---- C:\Windows\system32\mshtmled.dll
2014-08-13 08:24:22 ----A---- C:\Windows\system32\MshtmlDac.dll
2014-08-13 08:24:22 ----A---- C:\Windows\system32\jscript9diag.dll
2014-08-13 08:24:22 ----A---- C:\Windows\system32\jscript9.dll
2014-08-13 08:24:22 ----A---- C:\Windows\system32\ieUnatt.exe
2014-08-13 08:24:22 ----A---- C:\Windows\system32\ieapfltr.dll
2014-08-13 08:24:21 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2014-08-13 08:24:21 ----A---- C:\Windows\system32\mshtml.dll
2014-08-13 08:24:15 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2014-08-13 08:24:15 ----A---- C:\Windows\system32\rpcrt4.dll
2014-08-12 05:32:34 ----A---- C:\Windows\system32\amdhcp64.dll
2014-08-12 05:32:32 ----A---- C:\Windows\SYSWOW64\amdhcp32.dll
2014-08-12 05:32:30 ----A---- C:\Windows\SYSWOW64\atimpc32.dll
2014-08-12 05:32:30 ----A---- C:\Windows\SYSWOW64\amdpcom32.dll
2014-08-12 05:32:30 ----A---- C:\Windows\system32\atimpc64.dll
2014-08-12 05:32:30 ----A---- C:\Windows\system32\amdpcom64.dll
2014-08-12 05:28:48 ----A---- C:\Windows\system32\drivers\amdacpksd.sys
2014-08-12 05:24:16 ----A---- C:\Windows\system32\drivers\atikmdag.sys
2014-08-12 05:10:04 ----A---- C:\Windows\system32\clinfo.exe
2014-08-12 05:09:48 ----A---- C:\Windows\system32\OpenVideo64.dll
2014-08-12 05:09:40 ----A---- C:\Windows\SYSWOW64\OpenVideo.dll
2014-08-12 05:09:34 ----A---- C:\Windows\system32\OVDecode64.dll
2014-08-12 05:09:30 ----A---- C:\Windows\SYSWOW64\OVDecode.dll
2014-08-12 05:09:24 ----A---- C:\Windows\system32\amdocl64.dll
2014-08-12 05:03:26 ----A---- C:\Windows\system32\OpenCL.dll
2014-08-12 04:51:08 ----A---- C:\Windows\system32\mantle64.dll
2014-08-12 04:50:48 ----A---- C:\Windows\SYSWOW64\mantle32.dll
2014-08-12 04:50:26 ----A---- C:\Windows\system32\amdmantle64.dll
2014-08-12 04:44:12 ----A---- C:\Windows\system32\atio6axx.dll
2014-08-12 04:34:14 ----A---- C:\Windows\SYSWOW64\amdmantle32.dll
2014-08-12 04:24:04 ----A---- C:\Windows\SYSWOW64\atioglxx.dll
2014-08-12 04:20:00 ----A---- C:\Windows\system32\mantleaxl64.dll
2014-08-12 04:19:48 ----A---- C:\Windows\SYSWOW64\mantleaxl32.dll
2014-08-12 04:18:48 ----A---- C:\Windows\system32\atiapfxx.exe
2014-08-12 04:18:40 ----A---- C:\Windows\system32\aticalrt64.dll
2014-08-12 04:18:38 ----A---- C:\Windows\SYSWOW64\aticalrt.dll
2014-08-12 04:18:30 ----A---- C:\Windows\system32\aticalcl64.dll
2014-08-12 04:18:28 ----A---- C:\Windows\SYSWOW64\aticalcl.dll
2014-08-12 04:18:14 ----A---- C:\Windows\system32\aticaldd64.dll
2014-08-12 04:14:58 ----A---- C:\Windows\SYSWOW64\aticaldd.dll
2014-08-12 04:01:20 ----A---- C:\Windows\system32\atimuixx.dll
2014-08-12 04:01:10 ----A---- C:\Windows\system32\atieclxx.exe
2014-08-12 04:00:38 ----A---- C:\Windows\system32\atiesrxx.exe
2014-08-12 03:59:34 ----A---- C:\Windows\system32\atitmm64.dll
2014-08-12 03:57:56 ----A---- C:\Windows\system32\amdmmcl6.dll
2014-08-12 03:57:50 ----A---- C:\Windows\SYSWOW64\amdmmcl.dll
2014-08-12 03:43:28 ----A---- C:\Windows\system32\coinst_14.20.dll
2014-08-12 03:34:32 ----A---- C:\Windows\system32\atig6pxx.dll
2014-08-12 03:34:28 ----A---- C:\Windows\SYSWOW64\atiglpxx.dll
2014-08-12 03:34:28 ----A---- C:\Windows\system32\atiglpxx.dll
2014-08-12 03:34:26 ----A---- C:\Windows\system32\atig6txx.dll
2014-08-12 03:34:12 ----A---- C:\Windows\system32\amdave64.dll
2014-08-12 03:34:06 ----A---- C:\Windows\SYSWOW64\amdave32.dll
2014-08-12 03:33:58 ----A---- C:\Windows\system32\drivers\atikmpag.sys
2014-08-12 03:33:54 ----A---- C:\Windows\system32\atisamu64.dll
2014-08-12 03:33:48 ----A---- C:\Windows\SYSWOW64\atisamu32.dll
2014-08-12 03:32:04 ----A---- C:\Windows\system32\drivers\ati2erec.dll
2014-08-11 23:20:52 ----A---- C:\Windows\system32\kdbsdk64.dll
2014-08-11 23:15:56 ----A---- C:\Windows\SYSWOW64\kdbsdk32.dll
2014-08-01 11:25:02 ----A---- C:\Windows\system32\wups2.dll
2014-08-01 11:25:02 ----A---- C:\Windows\system32\wucltux.dll
2014-08-01 11:25:02 ----A---- C:\Windows\system32\wuaueng.dll
2014-08-01 11:25:02 ----A---- C:\Windows\system32\wuauclt.exe
2014-08-01 11:25:00 ----A---- C:\Windows\SYSWOW64\wups.dll
2014-08-01 11:25:00 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2014-08-01 11:25:00 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2014-08-01 11:25:00 ----A---- C:\Windows\system32\wups.dll
2014-08-01 11:25:00 ----A---- C:\Windows\system32\wudriver.dll
2014-08-01 11:25:00 ----A---- C:\Windows\system32\wuapi.dll
2014-08-01 11:24:58 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2014-08-01 11:24:58 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2014-08-01 11:24:58 ----A---- C:\Windows\system32\wuwebv.dll
2014-08-01 11:24:58 ----A---- C:\Windows\system32\wuapp.exe
2014-07-31 09:34:49 ----D---- C:\Program Files (x86)\Adobe
2014-07-31 09:34:28 ----D---- C:\ProgramData\Adobe
2014-07-30 17:59:59 ----D---- C:\Program Files (x86)\AC3Filter
2014-07-30 17:58:39 ----D---- C:\Users\sosemo\AppData\Roaming\AVG
2014-07-30 17:58:29 ----D---- C:\ProgramData\AVG
2014-07-30 17:58:28 ----D---- C:\ProgramData\GRETECH
2014-07-30 17:58:23 ----SHD---- C:\ProgramData\{01BD4FC9-2F86-4706-A62E-774BB7E9D308}
2014-07-30 17:58:23 ----HD---- C:\ProgramData\Common Files
2014-07-30 17:58:20 ----D---- C:\Users\sosemo\AppData\Roaming\GRETECH
2014-07-30 17:58:16 ----D---- C:\Users\sosemo\AppData\Roaming\OpenCandy
2014-07-30 17:58:16 ----D---- C:\Program Files (x86)\GRETECH
2014-07-30 12:28:42 ----SHD---- C:\ProgramData\DSS
2014-07-30 12:27:55 ----D---- C:\Windows\SYSWOW64\xlive
2014-07-30 12:27:54 ----D---- C:\Program Files (x86)\Microsoft Games for Windows - LIVE
2014-07-30 12:27:42 ----A---- C:\Windows\SYSWOW64\rapture3d_oal.dll
2014-07-30 12:27:42 ----A---- C:\Windows\SYSWOW64\mkl_blueripple.dll
2014-07-30 12:27:41 ----D---- C:\Program Files (x86)\BRS
2014-07-30 12:27:40 ----D---- C:\Program Files (x86)\OpenAL
2014-07-30 12:27:40 ----A---- C:\Windows\SYSWOW64\wrap_oal.dll
2014-07-30 12:27:40 ----A---- C:\Windows\SYSWOW64\OpenAL32.dll
2014-07-30 12:27:40 ----A---- C:\Windows\system32\wrap_oal.dll
2014-07-30 12:27:40 ----A---- C:\Windows\system32\OpenAL32.dll
2014-07-30 12:07:10 ----D---- C:\Program Files (x86)\Steam
2014-07-25 14:56:26 ----D---- C:\Program Files\Logitech
2014-07-25 14:56:26 ----D---- C:\Program Files\Common Files\Logitech
2014-07-25 11:50:35 ----A---- C:\Windows\SYSWOW64\PnkBstrB.exe
2014-07-25 11:50:35 ----A---- C:\Windows\SYSWOW64\PnkBstrA.exe
2014-07-25 11:50:35 ----A---- C:\Windows\SYSWOW64\pbsvc_bc2.exe
2014-07-25 11:38:37 ----D---- C:\Program Files (x86)\Electronic Arts
2014-07-25 11:29:13 ----D---- C:\ProgramData\Codemasters

======List of files/folders modified in the last 1 months======

2014-08-22 14:51:36 ----RD---- C:\Program Files
2014-08-22 14:51:30 ----D---- C:\Windows\system32\config
2014-08-22 14:47:17 ----D---- C:\Windows\System32
2014-08-22 14:47:17 ----D---- C:\Windows\inf
2014-08-22 14:47:17 ----A---- C:\Windows\system32\PerfStringBackup.INI
2014-08-22 14:42:17 ----D---- C:\Windows\Temp
2014-08-22 14:41:31 ----D---- C:\Windows\system32\Tasks
2014-08-22 14:41:19 ----HD---- C:\MSIServiceCfg_CC
2014-08-22 14:22:30 ----D---- C:\Windows\Microsoft.NET
2014-08-22 12:17:01 ----D---- C:\Windows\SysWOW64
2014-08-22 12:02:45 ----D---- C:\ProgramData\Origin
2014-08-22 11:58:08 ----D---- C:\Program Files (x86)\MSI
2014-08-22 11:57:19 ----SHD---- C:\Windows\Installer
2014-08-22 11:57:15 ----D---- C:\ProgramData\Package Cache
2014-08-22 11:57:12 ----SHD---- C:\System Volume Information
2014-08-22 11:49:50 ----RSD---- C:\Windows\assembly
2014-08-22 11:36:55 ----D---- C:\Windows\SYSWOW64\directx
2014-08-22 11:36:47 ----RD---- C:\Program Files (x86)
2014-08-22 11:32:42 ----D---- C:\MSI
2014-08-22 11:25:57 ----D---- C:\Windows\system32\appmgmt
2014-08-22 11:25:55 ----D---- C:\Program Files\Intel
2014-08-22 11:25:54 ----D---- C:\Windows\system32\DriverStore
2014-08-22 11:25:54 ----D---- C:\Windows\system32\drivers
2014-08-22 11:25:54 ----D---- C:\Windows\system32\catroot
2014-08-22 11:21:47 ----D---- C:\Windows
2014-08-20 01:26:04 ----D---- C:\Users\sosemo\AppData\Roaming\Raptr
2014-08-20 01:21:45 ----HD---- C:\ProgramData
2014-08-20 01:18:56 ----D---- C:\ProgramData\Downloaded Installations
2014-08-20 01:12:48 ----D---- C:\Windows\winsxs
2014-08-20 01:12:46 ----D---- C:\Windows\SYSWOW64\cs-CZ
2014-08-20 01:12:46 ----D---- C:\Windows\system32\cs-CZ
2014-08-20 01:12:44 ----D---- C:\Windows\system32\catroot2
2014-08-19 23:06:15 ----D---- C:\Program Files\Common Files\System
2014-08-19 23:06:15 ----A---- C:\Windows\win.ini
2014-08-18 21:45:48 ----D---- C:\Windows\SYSWOW64\wbem
2014-08-18 21:45:48 ----D---- C:\Windows\SYSWOW64\en-US
2014-08-18 21:45:48 ----D---- C:\Windows\system32\wbem
2014-08-18 21:45:48 ----D---- C:\Windows\system32\en-US
2014-08-18 21:45:48 ----D---- C:\Windows\system32\drivers\en-US
2014-08-18 21:45:48 ----D---- C:\Windows\PolicyDefinitions
2014-08-18 21:45:10 ----SD---- C:\ProgramData\Microsoft
2014-08-18 21:44:37 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2014-08-18 15:32:54 ----D---- C:\Windows\Minidump
2014-08-18 11:34:34 ----SD---- C:\Users\sosemo\AppData\Roaming\Microsoft
2014-08-18 11:33:54 ----D---- C:\Program Files\Common Files
2014-08-18 11:33:52 ----D---- C:\Program Files\Common Files\Microsoft Shared
2014-08-18 11:33:00 ----RSD---- C:\Windows\Fonts
2014-08-18 11:24:52 ----D---- C:\Windows\ShellNew
2014-08-18 11:24:31 ----D---- C:\Program Files (x86)\MSBuild
2014-08-18 11:24:25 ----D---- C:\Program Files (x86)\Microsoft.NET
2014-08-16 20:45:57 ----D---- C:\Program Files (x86)\Battlelog Web Plugins
2014-08-16 20:40:49 ----D---- C:\Program Files (x86)\Raptr
2014-08-16 20:40:00 ----D---- C:\ProgramData\AMD
2014-08-16 20:39:49 ----D---- C:\Program Files\ATI Technologies
2014-08-16 20:35:25 ----D---- C:\AMD
2014-08-15 11:17:29 ----RSD---- C:\Windows\Media
2014-08-15 11:16:06 ----D---- C:\Windows\twain_32
2014-08-14 20:57:52 ----D---- C:\Windows\rescache
2014-08-14 07:54:53 ----D---- C:\Windows\ehome
2014-08-14 07:54:51 ----D---- C:\Program Files\Internet Explorer
2014-08-14 07:54:50 ----D---- C:\Windows\SYSWOW64\sk-SK
2014-08-14 07:54:50 ----D---- C:\Windows\system32\sk-SK
2014-08-14 07:54:50 ----D---- C:\Program Files (x86)\Internet Explorer
2014-08-13 08:28:47 ----D---- C:\Windows\system32\MRT
2014-08-13 08:28:47 ----A---- C:\Windows\system32\MRT.exe
2014-08-12 05:32:24 ----A---- C:\Windows\SYSWOW64\atiuxpag.dll
2014-08-12 05:32:24 ----A---- C:\Windows\system32\atiuxp64.dll
2014-08-12 05:32:22 ----A---- C:\Windows\SYSWOW64\atiu9pag.dll
2014-08-12 05:32:22 ----A---- C:\Windows\system32\atiu9p64.dll
2014-08-12 05:32:20 ----A---- C:\Windows\system32\aticfx64.dll
2014-08-12 05:32:18 ----A---- C:\Windows\SYSWOW64\aticfx32.dll
2014-08-12 05:32:14 ----A---- C:\Windows\system32\atidxx64.dll
2014-08-12 05:32:10 ----A---- C:\Windows\SYSWOW64\atidxx32.dll
2014-08-12 05:32:04 ----A---- C:\Windows\SYSWOW64\atiumdva.dll
2014-08-12 05:32:00 ----A---- C:\Windows\SYSWOW64\atiumdag.dll
2014-08-12 05:31:54 ----A---- C:\Windows\system32\atiumd6a.dll
2014-08-12 05:31:52 ----A---- C:\Windows\system32\atiumd64.dll
2014-08-12 05:06:20 ----A---- C:\Windows\SYSWOW64\amdocl.dll
2014-08-12 05:03:22 ----A---- C:\Windows\SYSWOW64\OpenCL.dll
2014-08-12 04:01:34 ----A---- C:\Windows\system32\atidemgy.dll
2014-08-12 03:34:56 ----A---- C:\Windows\system32\atiadlxx.dll
2014-08-12 03:34:46 ----A---- C:\Windows\SYSWOW64\atiadlxy.dll
2014-08-12 03:34:12 ----A---- C:\Windows\SYSWOW64\atigktxx.dll
2014-07-31 09:36:16 ----D---- C:\Users\sosemo\AppData\Roaming\Adobe
2014-07-31 09:34:49 ----D---- C:\Program Files (x86)\Common Files
2014-07-30 18:49:16 ----D---- C:\Windows\SYSWOW64\migwiz
2014-07-30 18:49:16 ----D---- C:\Windows\SYSWOW64\en
2014-07-30 18:49:16 ----D---- C:\Windows\servicing
2014-07-30 18:49:16 ----D---- C:\Program Files\Windows Sidebar
2014-07-30 18:49:16 ----D---- C:\Program Files\Windows Photo Viewer
2014-07-30 18:49:16 ----D---- C:\Program Files\Windows Media Player
2014-07-30 18:49:16 ----D---- C:\Program Files\Windows Mail
2014-07-30 18:49:16 ----D---- C:\Program Files\Windows Journal
2014-07-30 18:49:16 ----D---- C:\Program Files\Windows Defender
2014-07-30 18:49:16 ----D---- C:\Program Files\DVD Maker
2014-07-30 18:49:16 ----D---- C:\Program Files (x86)\Windows Sidebar
2014-07-30 18:49:16 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2014-07-30 18:49:16 ----D---- C:\Program Files (x86)\Windows Media Player
2014-07-30 18:49:16 ----D---- C:\Program Files (x86)\Windows Mail
2014-07-30 18:49:16 ----D---- C:\Program Files (x86)\Windows Defender
2014-07-30 18:49:15 ----D---- C:\Windows\SYSWOW64\drivers\en-US
2014-07-30 18:49:15 ----D---- C:\Windows\SYSWOW64\drivers
2014-07-30 18:49:13 ----D---- C:\Windows\SYSWOW64\Dism
2014-07-30 18:49:12 ----D---- C:\Windows\system32\winrm
2014-07-30 18:49:12 ----D---- C:\Windows\system32\sysprep
2014-07-30 18:49:12 ----D---- C:\Windows\system32\slmgr
2014-07-30 18:49:12 ----D---- C:\Windows\system32\oobe
2014-07-30 18:49:12 ----D---- C:\Windows\system32\migwiz
2014-07-30 18:49:12 ----D---- C:\Windows\system32\en
2014-07-30 18:49:12 ----D---- C:\Windows\system32\Boot
2014-07-30 18:49:12 ----D---- C:\Windows\en-US
2014-07-30 18:49:09 ----D---- C:\Windows\system32\WCN
2014-07-30 18:49:09 ----D---- C:\Windows\system32\Dism
2014-07-30 18:49:08 ----D---- C:\Windows\system32\Printing_Admin_Scripts
2014-07-30 15:00:51 ----D---- C:\Windows\LiveKernelReports
2014-07-30 14:25:03 ----D---- C:\Windows\Logs
2014-07-30 13:43:57 ----D---- C:\ProgramData\Intel
2014-07-25 12:35:39 ----D---- C:\Windows\system32\wdi
2014-07-25 11:50:34 ----D---- C:\Windows\system32\LogFiles
2014-07-25 10:31:55 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 iusb3hcs;Ovladač přepínání hostitelského řadiče Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3hcs.sys [2014-02-21 20464]
R0 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2014-01-25 268512]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R0 speedfan;speedfan; C:\Windows\SysWOW64\speedfan.sys [2012-12-29 28664]
R1 BfLwf;Qualcomm Atheros Bandwidth Control; C:\Windows\system32\DRIVERS\bflwfx64.sys [2014-04-10 82096]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-21 514560]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2014-07-20 283064]
R2 iocbios2;iocbios2; \??\C:\Program Files (x86)\Intel\Extreme Tuning Utility\Drivers\IocDriver\64bit\iocbios2.sys [2014-02-18 28912]
R2 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2014-03-11 133928]
R3 AcpiCtlDrv;AcpiCtlDrv; C:\Windows\system32\DRIVERS\AcpiCtlDrv.sys [2012-07-17 25880]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2014-08-12 15961088]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2014-08-12 557056]
R3 AtiHDAudioService;AMD Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdW76.sys [2014-06-21 94720]
R3 ICCWDT;Intel(R) Watchdog Timer Driver (Intel(R) WDT); C:\Windows\system32\DRIVERS\ICCWDT.sys [2013-08-13 27608]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2014-05-13 3962840]
R3 iusb3hub;Ovladač rozbočovače Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3hub.sys [2014-02-21 370672]
R3 iusb3xhc;Ovladač rozšiřitelného hostitelského řadiče Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3xhc.sys [2014-02-21 791024]
R3 Ke2200;NDIS Miniport Driver for Killer e2201/e2202 PCI-E Ethernet Controller; C:\Windows\system32\DRIVERS\e22w7x64.sys [2014-03-27 129200]
R3 MBfilt;MBfilt; C:\Windows\system32\drivers\MBfilt64.sys [2009-11-18 32344]
R3 MEIx64;Intel(R) Management Engine Interface ; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [2014-02-19 116736]
R3 NTIOLib_1_0_4;NTIOLib_1_0_4; \??\C:\Program Files (x86)\MSI\Live Update\NTIOLib_X64.sys [2010-10-22 14136]
R3 NTIOLib_FastBoot;NTIOLib_FastBoot; \??\C:\Program Files (x86)\MSI\Fast Boot\NTIOLib_X64.sys [2012-10-26 13368]
R3 NTIOLib_MSI_RAID;NTIOLib_MSI_RAID; \??\C:\MSI\Smart Utilities\NTIOLib_X64.sys [2014-03-17 13808]
R3 RTCore64;RTCore64; \??\C:\Program Files (x86)\MSI Afterburner\RTCore64.sys [2014-06-10 13480]
R3 WmBEnum;Logitech Virtual Bus Enumerator Driver; C:\Windows\system32\drivers\WmBEnum.sys [2010-04-27 26440]
R3 WmVirHid;Logitech Virtual Hid Device Driver; C:\Windows\system32\drivers\WmVirHid.sys [2010-04-27 16200]
R3 WmXlCore;Logitech Translation Layer Driver; C:\Windows\system32\drivers\WmXlCore.sys [2010-04-27 77512]
S3 dmvsc;dmvsc; C:\Windows\system32\drivers\dmvsc.sys [2010-11-21 71168]
S3 INETMON;INETMON; \??\C:\Windows\System32\Drivers\INETMON.sys [2014-02-03 23936]
S3 ISCT;Intel(R) Smart Connect Technology Device Driver; C:\Windows\system32\DRIVERS\ISCTD.sys [2014-02-03 44744]
S3 MSICDSetup;MSICDSetup; \??\D:\CDriver64.sys []
S3 NTIOLib_1_0_3;NTIOLib_1_0_3; \??\C:\Program Files (x86)\MSI\Super Charger\NTIOLib_X64.sys []
S3 NTIOLib_1_0_C;NTIOLib_1_0_C; \??\D:\NTIOLib_X64.sys []
S3 NTIOLib_MSIClock_CC;NTIOLib_MSIClock_CC; \??\C:\Program Files (x86)\MSI\Command Center\ClockGen\NTIOLib_X64.sys [2012-11-20 13368]
S3 NTIOLib_MSICOMM_CC;NTIOLib_MSICOMM_CC; \??\C:\Program Files (x86)\MSI\Command Center\NTIOLib_X64.sys [2012-11-19 13368]
S3 NTIOLib_MSICPU_CC;NTIOLib_MSICPU_CC; \??\C:\Program Files (x86)\MSI\Command Center\CPU\NTIOLib_X64.sys [2012-11-20 13368]
S3 NTIOLib_MSIDDR_CC;NTIOLib_MSIDDR_CC; \??\C:\Program Files (x86)\MSI\Command Center\DDR\NTIOLib_X64.sys [2012-11-26 13368]
S3 NTIOLib_MSIFrequency_CC;NTIOLib_MSIFrequency_CC; \??\C:\Program Files (x86)\MSI\Command Center\ClockGen\CPU_Frequency\NTIOLib_X64.sys [2012-11-20 13368]
S3 NTIOLib_MSIRatio_CC;NTIOLib_MSIRatio_CC; \??\C:\Program Files (x86)\MSI\Command Center\CPU\CPU_Ratio\NTIOLib_X64.sys [2012-11-20 13368]
S3 NTIOLib_MSISMB_CC;NTIOLib_MSISMB_CC; \??\C:\Program Files (x86)\MSI\Command Center\SMBus\NTIOLib_X64.sys [2012-11-19 13368]
S3 NTIOLib_MSISuperIO_CC;NTIOLib_MSISuperIO_CC; \??\C:\Program Files (x86)\MSI\Command Center\SuperIO\NTIOLib_X64.sys [2012-11-19 13368]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-21 165888]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-21 6656]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-21 34688]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2013-10-02 56832]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2012-08-23 30208]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2013-07-03 42496]
S3 vmbus;vmbus; C:\Windows\system32\drivers\vmbus.sys [2010-11-21 199552]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-21 21760]
S3 WmFilter;Logitech Gaming HID Filter Driver; C:\Windows\system32\drivers\WmFilter.sys [2010-04-27 43976]
S3 WmHidLo;Logitech Gaming USB Filter Driver; C:\Windows\system32\drivers\WmHidLo.sys [2010-04-27 36936]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2014-05-08 65432]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2014-08-12 239616]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2014-02-19 154584]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2014-02-19 398296]
R2 MSI_FastBoot;MSI_FastBoot; C:\Program Files (x86)\MSI\Fast Boot\FastBootService.exe [2012-10-26 103992]
R2 MSI_LiveUpdate_Service;MSI_LiveUpdate_Service; C:\Program Files (x86)\MSI\Live Update\MSI_LiveUpdate_Service.exe [2014-07-01 84432]
R2 MSI_Trigger_Service;MSI_Trigger_Service; C:\Program Files (x86)\MSI\MSITrigger\MSI_Trigger_Service.exe [2013-09-26 30240]
R2 MSICTL_CC;MSICTL_CC; C:\Program Files (x86)\MSI\Command Center\MSIControlService.exe [2014-06-03 1990144]
R2 MsMpSvc;Microsoft Antimalware Service; C:\Program Files\Microsoft Security Client\MsMpEng.exe [2014-03-11 23808]
R2 PnkBstrA;PnkBstrA; C:\Windows\system32\PnkBstrA.exe [2014-08-16 76152]
R2 PSI_SVC_2_x64;Protexis Licensing V2 x64; c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe [2010-11-30 336824]
R2 Qualcomm Atheros Killer Service V2;Qualcomm Atheros Killer Service V2; C:\Program Files\Qualcomm Atheros\Network Manager\KillerService.exe [2014-04-17 344576]
R2 SuperRAIDSvc;SuperRAIDSvc; C:\MSI\Smart Utilities\SuperRAIDSvc.exe [2014-06-26 28328]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2009-08-18 2291568]
R3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2013-03-04 171480]
R3 NisSrv;@C:\Program Files\Microsoft Security Client\MpAsDesc.dll,-243; C:\Program Files\Microsoft Security Client\NisSrv.exe [2014-03-11 347872]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-09-11 124088]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-07-18 116648]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-09-11 51808]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-07-18 116648]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2014-07-25 111616]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2014-01-31 887232]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files\Microsoft Office\Office14\GROOVE.EXE [2013-03-09 50921648]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2014-07-22 119408]
S3 MSIBIOSData_CC;MSIBIOSData_CC; C:\Program Files (x86)\MSI\Command Center\BIOSData\MSIBIOSDataService.exe [2014-06-04 2100736]
S3 MSIClock_CC;MSIClock_CC; C:\Program Files (x86)\MSI\Command Center\ClockGen\MSIClockService.exe [2014-06-06 4026368]
S3 MSICOMM_CC;MSICOMM_CC; C:\Program Files (x86)\MSI\Command Center\MSICommService.exe [2014-06-03 2118144]
S3 MSICPU_CC;MSICPU_CC; C:\Program Files (x86)\MSI\Command Center\CPU\MSICPUService.exe [2014-06-17 4157440]
S3 MSIDDR_CC;MSIDDR_CC; C:\Program Files (x86)\MSI\Command Center\DDR\MSIDDRService.exe [2014-06-06 2250240]
S3 MSISMB_CC;MSISMB_CC; C:\Program Files (x86)\MSI\Command Center\SMBus\MSISMBService.exe [2014-06-04 2063360]
S3 MSISuperIO_CC;MSISuperIO_CC; C:\Program Files (x86)\MSI\Command Center\SuperIO\MSISuperIOService.exe [2014-06-10 549888]
S3 ose64;Office 64 Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 174440]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2014-07-16 542912]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2014-07-20 1255736]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]

-----------------EOF-----------------

Re: Problem s PC

Napsal: 23 srp 2014 20:07
od vyosek
Zdravim :)

:arrow: Stahnete RKill http://download.bleepingcomputer.com/grinler/rkill.com PROSIM CTETE DUKLADNE NAVOD - TATO UTILITA MA VELKOU SCHOPNOST MAZAT A JE NUTNE JI APLIKOVAT JEN NA DOPORUCENI, JINAK VAM MUZE JIT SYSTEM DO KYTEK
:arrow: Stahnete a ulozte na plochu Combofix http://download.bleepingcomputer.com/sUBs/ComboFix.exe
  • Vypnete vsechny rezidentni bezpecnostní programy - firewally, antiviry, antispywary apod.
  • Pokud mate Win XP spustte pod uctem Spravce\Administratora
  • Pokud mate Win Vista ci Win 7, kliknete na Combofix pravym a dejte Run As Administrator ci Spustit jako spravce
  • Ihned po startu se zobrazi stranka s licencnim ujednanim, pokracujte kliknutim na Ano
  • Pokud Vam CF nabidne instalaci Konzoly pro zotaveni, tak souhlaste
  • Dale postupujte dle pokynu, behem scanu nechte PC naprosto v klidu - nespoustejte zadne aplikace a neklikejte do zobrazujiciho se okna
  • Scan by mel trvat cca 10 min, ale pokud bude PC hodne zaneseno, muze se cas prodlouzit
  • Po dokonceni skenu a pripadnem restartu CF zobrazi log, pripadne jej najdete zde C:\ComboFix.txt, jeho obsah sem vlozte
  • Detailni postup vc. obrazku mate zde http://www.bleepingcomputer.com/combofi ... t-combofix

Re: Problem s PC

Napsal: 24 srp 2014 08:23
od tvanis
Rkill 2.6.8 by Lawrence Abrams (Grinler)
http://www.bleepingcomputer.com/
Copyright 2008-2014 BleepingComputer.com
More Information about Rkill can be found at this link:
http://www.bleepingcomputer.com/forums/topic308364.html

Program started at: 08/24/2014 09:22:06 AM in x64 mode.
Windows Version: Windows 7 Professional Service Pack 1

Checking for Windows services to stop:

* No malware services found to stop.

Checking for processes to terminate:

* C:\Users\sosemo\AppData\Roaming\WinUpdate\g\windrv.exe (PID: 2384) [UP-HEUR]
* C:\Users\sosemo\AppData\Roaming\WinUpdate\g\winlog.exe (PID: 3212) [UP-HEUR]

2 proccesses terminated!

Checking Registry for malware related settings:

* No issues found in the Registry.

Resetting .EXE, .COM, & .BAT associations in the Windows Registry.

Performing miscellaneous checks:

* No issues found.

Checking Windows Service Integrity:

* No issues found.

Searching for Missing Digital Signatures:

* No issues found.

Checking HOSTS File:

* No issues found.

Program finished at: 08/24/2014 09:22:17 AM
Execution time: 0 hours(s), 0 minute(s), and 11 seconds(s)

Re: Problem s PC

Napsal: 24 srp 2014 08:30
od tvanis
ComboFix 14-08-24.01 - sosemo 24.08.2014 9:26.1.2 - x64
Microsoft Windows 7 Professional 6.1.7601.1.1250.420.1029.18.8141.6125 [GMT 2:00]
Spuštěný z: c:\users\sosemo\Desktop\ComboFix.exe
AV: Microsoft Security Essentials *Disabled/Updated* {641105E6-77ED-3F35-A304-765193BCB75F}
SP: Microsoft Security Essentials *Disabled/Updated* {DF70E402-51D7-30BB-99B4-4D23E83BFDE2}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
* Vytvořen nový Bod Obnovení
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\users\sosemo\AppData\Roaming\winupdate
c:\users\sosemo\AppData\Roaming\winupdate\c\libcurl-4.dll
c:\users\sosemo\AppData\Roaming\winupdate\c\pthreadGC2.dll
c:\users\sosemo\AppData\Roaming\winupdate\c\windrv.exe
c:\users\sosemo\AppData\Roaming\winupdate\c\winlog.exe
c:\users\sosemo\AppData\Roaming\winupdate\c\zlib1.dll
c:\users\sosemo\AppData\Roaming\winupdate\g\backtrace.dll
c:\users\sosemo\AppData\Roaming\winupdate\g\diablo130302.cl
c:\users\sosemo\AppData\Roaming\winupdate\g\diakgcn121016.cl
c:\users\sosemo\AppData\Roaming\winupdate\g\example.conf
c:\users\sosemo\AppData\Roaming\winupdate\g\libblkmaker-0.1-0.dll
c:\users\sosemo\AppData\Roaming\winupdate\g\libblkmaker_jansson-0.1-0.dll
c:\users\sosemo\AppData\Roaming\winupdate\g\libcurl-4.dll
c:\users\sosemo\AppData\Roaming\winupdate\g\libevent-2-0-5.dll
c:\users\sosemo\AppData\Roaming\winupdate\g\libhidapi-0.dll
c:\users\sosemo\AppData\Roaming\winupdate\g\libjansson-4.dll
c:\users\sosemo\AppData\Roaming\winupdate\g\libmicrohttpd-10.dll
c:\users\sosemo\AppData\Roaming\winupdate\g\libplibc-1.dll
c:\users\sosemo\AppData\Roaming\winupdate\g\libusb-1.0.dll
c:\users\sosemo\AppData\Roaming\winupdate\g\miner.php
c:\users\sosemo\AppData\Roaming\winupdate\g\pdcurses.dll
c:\users\sosemo\AppData\Roaming\winupdate\g\phatk121016.cl
c:\users\sosemo\AppData\Roaming\winupdate\g\poclbm130302.cl
c:\users\sosemo\AppData\Roaming\winupdate\g\pthreadGC2.dll
c:\users\sosemo\AppData\Roaming\winupdate\g\scrypt130511.cl
c:\users\sosemo\AppData\Roaming\winupdate\g\windrv.exe
c:\users\sosemo\AppData\Roaming\winupdate\g\winlog.exe
c:\users\sosemo\AppData\Roaming\winupdate\g\zlib1.dll
c:\users\sosemo\AppData\Roaming\winupdate\Redist.exe
c:\windows\Installer\{4692B750-DE88-4DCF-9163-745AF5604B24}\NetworkManager.exe_130C27D738F34C89BDDF21BCFD74B56D.exe
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2014-07-24 do 2014-08-24 )))))))))))))))))))))))))))))))
.
.
2014-08-24 07:27 . 2014-08-24 07:27 -------- d-----w- c:\users\Default\AppData\Local\temp
2014-08-22 13:02 . 2014-08-22 13:02 512 ----a-w- C:\PhysicalMBR.bin
2014-08-22 12:51 . 2014-08-22 12:52 -------- d-----w- C:\rsit
2014-08-22 12:51 . 2014-08-22 12:52 -------- d-----w- c:\program files\trend micro
2014-08-22 09:36 . 2014-08-22 09:36 -------- d-----w- c:\program files (x86)\RivaTuner Statistics Server
2014-08-22 09:35 . 2014-08-24 07:19 -------- d-----w- c:\program files (x86)\MSI Afterburner
2014-08-22 09:34 . 2014-08-22 09:34 -------- d-----w- c:\program files (x86)\MSI Kombustor 2.5
2014-08-22 09:21 . 2014-08-22 09:21 -------- d-----w- C:\msiFastBoot
2014-08-22 09:07 . 2014-08-21 03:43 11319192 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{80C181CA-7DC6-4373-A84D-87303D434C52}\mpengine.dll
2014-08-21 20:00 . 2014-08-21 20:00 1169712 ------w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{8E7F709F-E4A1-496F-BB51-DC7AEA96BAE1}\gapaengine.dll
2014-08-21 20:00 . 2014-08-07 08:59 11319200 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpengine.dll
2014-08-19 23:21 . 2014-08-19 23:21 -------- d-----w- c:\programdata\Qualcomm
2014-08-19 23:21 . 2014-08-19 23:21 -------- d-----w- c:\program files\Qualcomm Atheros
2014-08-19 23:14 . 2014-08-19 23:14 -------- d-----w- c:\program files (x86)\Setup Files
2014-08-19 21:33 . 2014-08-19 21:33 -------- d-----w- c:\program files (x86)\GPU-Z
2014-08-19 21:05 . 2014-05-08 09:32 3178496 ----a-w- c:\windows\system32\rdpcorets.dll
2014-08-19 21:05 . 2014-05-08 09:32 16384 ----a-w- c:\windows\system32\RdpGroupPolicyExtension.dll
2014-08-19 21:05 . 2014-01-09 02:22 5694464 ----a-w- c:\windows\SysWow64\mstscax.dll
2014-08-19 21:05 . 2014-01-03 22:44 6574592 ----a-w- c:\windows\system32\mstscax.dll
2014-08-19 21:04 . 2014-08-19 21:04 -------- d-----w- c:\users\Default\AppData\Local\Microsoft Help
2014-08-18 19:44 . 2014-08-18 19:44 -------- d-----w- c:\program files\Microsoft Silverlight
2014-08-18 19:44 . 2014-08-18 19:44 -------- d-----w- c:\program files (x86)\Microsoft Silverlight
2014-08-18 19:43 . 2013-09-25 02:23 1030144 ----a-w- c:\windows\system32\TSWorkspace.dll
2014-08-18 19:43 . 2013-09-25 01:57 792576 ----a-w- c:\windows\SysWow64\TSWorkspace.dll
2014-08-18 19:43 . 2012-05-04 11:00 366592 ----a-w- c:\windows\system32\qdvd.dll
2014-08-18 19:43 . 2012-05-04 09:59 514560 ----a-w- c:\windows\SysWow64\qdvd.dll
2014-08-18 09:35 . 2014-08-18 09:37 -------- d-----w- c:\users\sosemo\AppData\Roaming\Corel
2014-08-18 09:35 . 2014-08-18 09:37 -------- d-----w- c:\programdata\Protexis64
2014-08-18 09:34 . 2014-08-18 09:34 -------- d-----w- c:\program files (x86)\Microsoft SDKs
2014-08-18 09:34 . 2014-08-18 09:34 -------- d-----w- c:\program files (x86)\Microsoft Visual Studio 9.0
2014-08-18 09:33 . 2014-08-18 09:33 -------- d-----w- c:\program files\Common Files\Corel
2014-08-18 09:33 . 2014-08-18 09:33 -------- d-----w- c:\program files\Common Files\Protexis
2014-08-18 09:33 . 2014-08-18 09:35 -------- d-----w- c:\programdata\Corel
2014-08-18 09:32 . 2014-08-18 09:32 -------- d-----w- c:\program files\Corel
2014-08-18 09:24 . 2014-08-18 09:24 -------- d-----w- c:\program files\Common Files\DESIGNER
2014-08-18 09:24 . 2014-08-18 09:24 -------- d-----w- c:\windows\PCHEALTH
2014-08-18 09:24 . 2014-08-18 09:24 -------- d-----w- c:\program files\Microsoft Sync Framework
2014-08-18 09:22 . 2014-08-18 09:22 -------- d-----w- c:\program files (x86)\Microsoft Visual Studio 8
2014-08-18 09:21 . 2014-08-18 09:21 -------- d-----w- c:\program files\Microsoft Analysis Services
2014-08-18 09:21 . 2014-08-18 09:21 -------- d-----w- c:\program files (x86)\Microsoft Analysis Services
2014-08-18 09:21 . 2014-08-18 09:21 -------- d-----w- c:\users\sosemo\AppData\Local\Microsoft Help
2014-08-18 09:21 . 2014-08-19 21:06 -------- d-----w- c:\programdata\Microsoft Help
2014-08-18 09:21 . 2014-08-18 09:24 -------- d-----w- c:\program files\Microsoft Office
2014-08-18 09:21 . 2014-08-18 09:21 -------- d-----r- C:\MSOCache
2014-08-17 19:46 . 2014-08-19 21:10 -------- d-----w- c:\program files (x86)\SpeedFan
2014-08-17 17:39 . 2014-08-17 17:39 -------- d-----w- c:\program files\CPUID
2014-08-16 18:48 . 2014-08-22 15:34 -------- d-----w- c:\users\sosemo\AppData\Roaming\TS3Client
2014-08-16 18:48 . 2014-08-16 18:48 -------- d-----w- c:\program files\TeamSpeak 3 Client
2014-08-16 18:40 . 2014-08-16 18:40 -------- d-----w- c:\programdata\ATI
2014-08-16 18:39 . 2014-08-16 18:39 -------- d-----w- c:\program files (x86)\AMD AVT
2014-08-16 18:30 . 2014-08-16 18:30 76152 ----a-w- c:\windows\system32\PnkBstrA.exe
2014-08-16 18:02 . 2014-08-16 18:02 -------- d-----w- c:\users\sosemo\AppData\Local\ESN
2014-08-16 17:14 . 2014-08-16 17:25 -------- d-----w- c:\program files (x86)\Origin Games
2014-08-16 17:05 . 2014-08-16 18:46 -------- d-----w- c:\users\sosemo\AppData\Roaming\Origin
2014-08-16 17:05 . 2014-08-16 18:09 -------- d-----w- c:\users\sosemo\AppData\Local\Origin
2014-08-16 17:04 . 2014-08-16 18:03 -------- d-----w- c:\programdata\Electronic Arts
2014-08-16 17:04 . 2014-08-22 13:18 -------- d-----w- c:\program files (x86)\Origin
2014-08-15 09:16 . 2007-03-19 03:00 82944 ----a-w- c:\windows\system32\Spool\prtprocs\x64\CNMPP8R.DLL
2014-08-15 09:16 . 2007-03-19 03:00 27648 ----a-w- c:\windows\system32\Spool\prtprocs\x64\CNMPD8R.DLL
2014-08-15 09:16 . 2014-08-15 09:16 -------- d--h--w- c:\windows\system32\CanonIJ Uninstaller Information
2014-08-15 09:15 . 2008-02-06 03:00 259584 ----a-w- c:\windows\system32\CNMLM8R.DLL
2014-08-15 09:15 . 2008-01-30 09:14 1338368 ----a-w- c:\windows\system32\CNCC140.DLL
2014-08-15 09:15 . 2008-01-30 09:13 49664 ----a-w- c:\windows\system32\CNCI140.DLL
2014-08-15 09:15 . 2006-06-29 12:30 17408 ----a-w- c:\windows\system32\cnco140.dll
2014-08-15 09:15 . 2006-05-26 14:23 90624 ----a-w- c:\windows\system32\CNCL140.DLL
2014-08-15 09:13 . 2014-08-15 09:13 -------- d--h--w- c:\program files\CanonBJ
2014-08-15 09:10 . 2014-08-15 09:10 -------- d--h--w- c:\programdata\CanonBJ
2014-08-15 09:10 . 2009-07-14 01:40 84992 ----a-w- c:\windows\system32\Spool\prtprocs\x64\CNBPP4.DLL
2014-08-13 06:27 . 2014-03-09 21:48 171160 ----a-w- c:\windows\system32\infocardapi.dll
2014-08-13 06:27 . 2014-03-09 21:48 1389208 ----a-w- c:\windows\system32\icardagt.exe
2014-08-13 06:27 . 2014-03-09 21:47 99480 ----a-w- c:\windows\SysWow64\infocardapi.dll
2014-08-13 06:27 . 2014-03-09 21:47 619672 ----a-w- c:\windows\SysWow64\icardagt.exe
2014-08-13 06:27 . 2014-06-30 22:24 8856 ----a-w- c:\windows\system32\icardres.dll
2014-08-13 06:27 . 2014-06-30 22:14 8856 ----a-w- c:\windows\SysWow64\icardres.dll
2014-08-13 06:27 . 2014-06-06 06:16 35480 ----a-w- c:\windows\SysWow64\TsWpfWrp.exe
2014-08-13 06:27 . 2014-06-06 06:12 35480 ----a-w- c:\windows\system32\TsWpfWrp.exe
2014-08-12 03:32 . 2014-08-12 03:32 127872 ----a-w- c:\windows\system32\amdhcp64.dll
2014-08-12 03:32 . 2014-08-12 03:32 117560 ----a-w- c:\windows\SysWow64\amdhcp32.dll
2014-08-12 03:32 . 2014-08-12 03:32 78432 ----a-w- c:\windows\system32\atimpc64.dll
2014-08-12 03:32 . 2014-08-12 03:32 78432 ----a-w- c:\windows\system32\amdpcom64.dll
2014-08-12 03:32 . 2014-08-12 03:32 71704 ----a-w- c:\windows\SysWow64\atimpc32.dll
2014-08-12 03:32 . 2014-08-12 03:32 71704 ----a-w- c:\windows\SysWow64\amdpcom32.dll
2014-08-12 03:28 . 2014-08-12 03:28 276192 ----a-w- c:\windows\system32\drivers\amdacpksd.sys
2014-08-12 03:24 . 2014-08-12 03:24 15961088 ----a-w- c:\windows\system32\drivers\atikmdag.sys
2014-08-12 03:10 . 2014-08-12 03:10 231424 ----a-w- c:\windows\system32\clinfo.exe
2014-08-12 03:09 . 2014-08-12 03:09 98816 ----a-w- c:\windows\system32\OpenVideo64.dll
2014-08-12 03:09 . 2014-08-12 03:09 83456 ----a-w- c:\windows\SysWow64\OpenVideo.dll
2014-08-12 03:09 . 2014-08-12 03:09 86528 ----a-w- c:\windows\system32\OVDecode64.dll
2014-08-12 03:09 . 2014-08-12 03:09 73216 ----a-w- c:\windows\SysWow64\OVDecode.dll
2014-08-12 03:09 . 2014-08-12 03:09 32877056 ----a-w- c:\windows\system32\amdocl64.dll
2014-08-12 03:03 . 2014-08-12 03:03 65024 ----a-w- c:\windows\system32\OpenCL.dll
2014-08-12 02:51 . 2014-08-12 02:51 127488 ----a-w- c:\windows\system32\mantle64.dll
2014-08-12 02:50 . 2014-08-12 02:50 113664 ----a-w- c:\windows\SysWow64\mantle32.dll
2014-08-12 02:50 . 2014-08-12 02:50 5225472 ----a-w- c:\windows\system32\amdmantle64.dll
2014-08-12 02:44 . 2014-08-12 02:44 27529216 ----a-w- c:\windows\system32\atio6axx.dll
2014-08-12 02:34 . 2014-08-12 02:34 4180992 ----a-w- c:\windows\SysWow64\amdmantle32.dll
2014-08-12 02:24 . 2014-08-12 02:24 23028224 ----a-w- c:\windows\SysWow64\atioglxx.dll
2014-08-12 02:20 . 2014-08-12 02:20 91648 ----a-w- c:\windows\system32\mantleaxl64.dll
2014-08-12 02:19 . 2014-08-12 02:19 85504 ----a-w- c:\windows\SysWow64\mantleaxl32.dll
2014-08-12 02:18 . 2014-08-12 02:18 366592 ----a-w- c:\windows\system32\atiapfxx.exe
2014-08-12 02:18 . 2014-08-12 02:18 62464 ----a-w- c:\windows\system32\aticalrt64.dll
2014-08-12 02:18 . 2014-08-12 02:18 52224 ----a-w- c:\windows\SysWow64\aticalrt.dll
2014-08-12 02:18 . 2014-08-12 02:18 55808 ----a-w- c:\windows\system32\aticalcl64.dll
2014-08-12 02:18 . 2014-08-12 02:18 49152 ----a-w- c:\windows\SysWow64\aticalcl.dll
2014-08-12 02:18 . 2014-08-12 02:18 15716352 ----a-w- c:\windows\system32\aticaldd64.dll
2014-08-12 02:14 . 2014-08-12 02:14 14302208 ----a-w- c:\windows\SysWow64\aticaldd.dll
2014-08-12 02:01 . 2014-08-12 02:01 31232 ----a-w- c:\windows\system32\atimuixx.dll
2014-08-12 02:01 . 2014-08-12 02:01 588800 ----a-w- c:\windows\system32\atieclxx.exe
2014-08-12 02:00 . 2014-08-12 02:00 239616 ----a-w- c:\windows\system32\atiesrxx.exe
2014-08-12 01:59 . 2014-08-12 01:59 190976 ----a-w- c:\windows\system32\atitmm64.dll
2014-08-12 01:57 . 2014-08-12 01:57 48128 ----a-w- c:\windows\system32\amdmmcl6.dll
2014-08-12 01:57 . 2014-08-12 01:57 37888 ----a-w- c:\windows\SysWow64\amdmmcl.dll
2014-08-12 01:43 . 2014-08-12 01:43 826368 ----a-w- c:\windows\system32\coinst_14.20.dll
2014-08-12 01:34 . 2014-08-12 01:34 75264 ----a-w- c:\windows\system32\atig6pxx.dll
2014-08-12 01:34 . 2014-08-12 01:34 69632 ----a-w- c:\windows\SysWow64\atiglpxx.dll
2014-08-12 01:34 . 2014-08-12 01:34 69632 ----a-w- c:\windows\system32\atiglpxx.dll
2014-08-12 01:34 . 2014-08-12 01:34 146944 ----a-w- c:\windows\system32\atig6txx.dll
2014-08-12 01:34 . 2014-08-12 01:34 95744 ----a-w- c:\windows\system32\amdave64.dll
2014-08-12 01:34 . 2014-08-12 01:34 90112 ----a-w- c:\windows\SysWow64\amdave32.dll
2014-08-12 01:33 . 2014-08-12 01:33 557056 ----a-w- c:\windows\system32\drivers\atikmpag.sys
2014-08-12 01:33 . 2014-08-12 01:33 89088 ----a-w- c:\windows\system32\atisamu64.dll
2014-08-12 01:33 . 2014-08-12 01:33 80896 ----a-w- c:\windows\SysWow64\atisamu32.dll
2014-08-12 01:32 . 2014-08-12 01:32 43520 ----a-w- c:\windows\system32\drivers\ati2erec.dll
2014-08-11 21:20 . 2014-08-11 21:20 51200 ----a-w- c:\windows\system32\kdbsdk64.dll
2014-08-11 21:15 . 2014-08-11 21:15 38912 ----a-w- c:\windows\SysWow64\kdbsdk32.dll
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2014-08-13 06:28 . 2014-07-20 15:58 99218768 ----a-w- c:\windows\system32\MRT.exe
2014-08-12 03:32 . 2014-04-18 02:43 143304 ----a-w- c:\windows\system32\atiuxp64.dll
2014-08-12 03:32 . 2014-04-18 02:42 126336 ----a-w- c:\windows\SysWow64\atiuxpag.dll
2014-08-12 03:32 . 2014-04-18 02:42 117584 ----a-w- c:\windows\system32\atiu9p64.dll
2014-08-12 03:32 . 2014-04-18 02:42 99520 ----a-w- c:\windows\SysWow64\atiu9pag.dll
2014-08-12 03:32 . 2014-04-18 02:42 1331424 ----a-w- c:\windows\system32\aticfx64.dll
2014-08-12 03:32 . 2014-04-18 02:42 1110992 ----a-w- c:\windows\SysWow64\aticfx32.dll
2014-08-12 03:32 . 2014-04-18 02:42 10521632 ----a-w- c:\windows\system32\atidxx64.dll
2014-08-12 03:32 . 2014-04-18 02:42 9018320 ----a-w- c:\windows\SysWow64\atidxx32.dll
2014-08-12 03:32 . 2014-04-18 02:42 7102496 ----a-w- c:\windows\SysWow64\atiumdva.dll
2014-08-12 03:32 . 2014-04-18 02:42 6879016 ----a-w- c:\windows\SysWow64\atiumdag.dll
2014-08-12 03:31 . 2014-04-18 02:42 7892000 ----a-w- c:\windows\system32\atiumd6a.dll
2014-08-12 03:31 . 2014-04-18 02:42 8108312 ----a-w- c:\windows\system32\atiumd64.dll
2014-08-12 03:06 . 2014-04-18 02:19 27843072 ----a-w- c:\windows\SysWow64\amdocl.dll
2014-08-12 03:03 . 2014-04-18 02:17 58880 ----a-w- c:\windows\SysWow64\OpenCL.dll
2014-08-12 02:01 . 2014-04-18 01:30 442368 ----a-w- c:\windows\system32\atidemgy.dll
2014-08-12 01:34 . 2014-04-18 01:09 1207296 ----a-w- c:\windows\system32\atiadlxx.dll
2014-08-12 01:34 . 2014-04-18 01:09 898560 ----a-w- c:\windows\SysWow64\atiadlxy.dll
2014-08-12 01:34 . 2014-04-18 01:07 133632 ----a-w- c:\windows\SysWow64\atigktxx.dll
2014-07-30 11:51 . 2009-08-18 10:49 564632 ----a-w- c:\programdata\Microsoft\IdentityCRL\production\wlidui.dll
2014-07-30 11:51 . 2009-08-18 09:24 23256 ----a-w- c:\programdata\Microsoft\IdentityCRL\production\ppcrlconfig600.dll
2014-07-20 20:07 . 2014-07-20 20:07 283064 ----a-w- c:\windows\system32\drivers\dtsoftbus01.sys
2014-07-20 16:57 . 2014-07-21 17:38 1031560 ------w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\NISBackup\gapaengine.dll
2014-07-20 16:11 . 2014-07-20 16:11 194048 ----a-w- c:\windows\SysWow64\elshyph.dll
2014-07-20 16:11 . 2014-07-20 16:11 71680 ----a-w- c:\windows\SysWow64\RegisterIEPKEYs.exe
2014-07-20 16:11 . 2014-07-20 16:11 645120 ----a-w- c:\windows\SysWow64\jsIntl.dll
2014-07-20 16:11 . 2014-07-20 16:11 235008 ----a-w- c:\windows\system32\elshyph.dll
2014-07-20 16:11 . 2014-07-20 16:11 182272 ----a-w- c:\windows\SysWow64\msls31.dll
2014-07-20 16:11 . 2014-07-20 16:11 942592 ----a-w- c:\windows\system32\jsIntl.dll
2014-07-20 16:11 . 2014-07-20 16:11 90112 ----a-w- c:\windows\system32\SetIEInstalledDate.exe
2014-07-20 16:11 . 2014-07-20 16:11 86016 ----a-w- c:\windows\SysWow64\iesysprep.dll
2014-07-20 16:11 . 2014-07-20 16:11 86016 ----a-w- c:\windows\system32\RegisterIEPKEYs.exe
2014-07-20 16:11 . 2014-07-20 16:11 81408 ----a-w- c:\windows\system32\icardie.dll
2014-07-20 16:11 . 2014-07-20 16:11 774144 ----a-w- c:\windows\system32\jscript.dll
2014-07-20 16:11 . 2014-07-20 16:11 77312 ----a-w- c:\windows\system32\tdc.ocx
2014-07-20 16:11 . 2014-07-20 16:11 74240 ----a-w- c:\windows\SysWow64\SetIEInstalledDate.exe
2014-07-20 16:11 . 2014-07-20 16:11 62464 ----a-w- c:\windows\SysWow64\tdc.ocx
2014-07-20 16:11 . 2014-07-20 16:11 62464 ----a-w- c:\windows\system32\pngfilt.dll
2014-07-20 16:11 . 2014-07-20 16:11 616104 ----a-w- c:\windows\system32\ieapfltr.dat
2014-07-20 16:11 . 2014-07-20 16:11 52224 ----a-w- c:\windows\system32\msfeedsbs.dll
2014-07-20 16:11 . 2014-07-20 16:11 48640 ----a-w- c:\windows\SysWow64\mshtmler.dll
2014-07-20 16:11 . 2014-07-20 16:11 48640 ----a-w- c:\windows\system32\mshtmler.dll
2014-07-20 16:11 . 2014-07-20 16:11 48128 ----a-w- c:\windows\system32\imgutil.dll
2014-07-20 16:11 . 2014-07-20 16:11 413696 ----a-w- c:\windows\system32\html.iec
2014-07-20 16:11 . 2014-07-20 16:11 36352 ----a-w- c:\windows\SysWow64\imgutil.dll
2014-07-20 16:11 . 2014-07-20 16:11 337408 ----a-w- c:\windows\SysWow64\html.iec
2014-07-20 16:11 . 2014-07-20 16:11 30208 ----a-w- c:\windows\system32\licmgr10.dll
2014-07-20 16:11 . 2014-07-20 16:11 247808 ----a-w- c:\windows\system32\msls31.dll
2014-07-20 16:11 . 2014-07-20 16:11 24576 ----a-w- c:\windows\SysWow64\licmgr10.dll
2014-07-20 16:11 . 2014-07-20 16:11 243200 ----a-w- c:\windows\system32\webcheck.dll
2014-07-20 16:11 . 2014-07-20 16:11 235520 ----a-w- c:\windows\system32\url.dll
2014-07-20 16:11 . 2014-07-20 16:11 167424 ----a-w- c:\windows\system32\iexpress.exe
2014-07-20 16:11 . 2014-07-20 16:11 151552 ----a-w- c:\windows\SysWow64\iexpress.exe
2014-07-20 16:11 . 2014-07-20 16:11 147968 ----a-w- c:\windows\system32\occache.dll
2014-07-20 16:11 . 2014-07-20 16:11 143872 ----a-w- c:\windows\system32\wextract.exe
2014-07-20 16:11 . 2014-07-20 16:11 139264 ----a-w- c:\windows\SysWow64\wextract.exe
2014-07-20 16:11 . 2014-07-20 16:11 13824 ----a-w- c:\windows\system32\mshta.exe
2014-07-20 16:11 . 2014-07-20 16:11 135680 ----a-w- c:\windows\system32\iepeers.dll
2014-07-20 16:11 . 2014-07-20 16:11 13312 ----a-w- c:\windows\SysWow64\mshta.exe
2014-07-20 16:11 . 2014-07-20 16:11 13312 ----a-w- c:\windows\system32\msfeedssync.exe
2014-07-20 16:11 . 2014-07-20 16:11 131072 ----a-w- c:\windows\system32\IEAdvpack.dll
2014-07-20 16:11 . 2014-07-20 16:11 111616 ----a-w- c:\windows\SysWow64\IEAdvpack.dll
2014-07-20 16:11 . 2014-07-20 16:11 105984 ----a-w- c:\windows\system32\iesysprep.dll
2014-07-20 16:11 . 2014-07-20 16:11 101376 ----a-w- c:\windows\system32\inseng.dll
2014-07-20 16:09 . 2014-07-20 16:09 9728 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2014-07-20 16:09 . 2014-07-20 16:09 9728 ---ha-w- c:\windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2014-07-20 16:09 . 2014-07-20 16:09 648192 ----a-w- c:\windows\system32\d3d10level9.dll
2014-07-20 16:09 . 2014-07-20 16:09 604160 ----a-w- c:\windows\SysWow64\d3d10level9.dll
2014-07-20 16:09 . 2014-07-20 16:09 5632 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2014-07-20 16:09 . 2014-07-20 16:09 5632 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-ole32-l1-1-0.dll
2014-07-20 16:09 . 2014-07-20 16:09 5632 ---ha-w- c:\windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2014-07-20 16:09 . 2014-07-20 16:09 5632 ---ha-w- c:\windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2014-07-20 16:09 . 2014-07-20 16:09 522752 ----a-w- c:\windows\system32\XpsGdiConverter.dll
2014-07-20 16:09 . 2014-07-20 16:09 4096 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-user32-l1-1-0.dll
2014-07-20 16:09 . 2014-07-20 16:09 4096 ---ha-w- c:\windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2014-07-20 16:09 . 2014-07-20 16:09 364544 ----a-w- c:\windows\SysWow64\XpsGdiConverter.dll
2014-07-20 16:09 . 2014-07-20 16:09 363008 ----a-w- c:\windows\system32\dxgi.dll
2014-07-20 16:09 . 2014-07-20 16:09 3584 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2014-07-20 16:09 . 2014-07-20 16:09 3584 ---ha-w- c:\windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2014-07-20 16:09 . 2014-07-20 16:09 333312 ----a-w- c:\windows\system32\d3d10_1core.dll
2014-07-20 16:09 . 2014-07-20 16:09 3072 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-version-l1-1-0.dll
2014-07-20 16:09 . 2014-07-20 16:09 3072 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-shell32-l1-1-0.dll
2014-07-20 16:09 . 2014-07-20 16:09 3072 ---ha-w- c:\windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2014-07-20 16:09 . 2014-07-20 16:09 3072 ---ha-w- c:\windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2014-07-20 16:09 . 2014-07-20 16:09 296960 ----a-w- c:\windows\system32\d3d10core.dll
2014-07-20 16:09 . 2014-07-20 16:09 293376 ----a-w- c:\windows\SysWow64\dxgi.dll
2014-07-20 16:09 . 2014-07-20 16:09 2776576 ----a-w- c:\windows\system32\msmpeg2vdec.dll
2014-07-20 16:09 . 2014-07-20 16:09 2560 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-normaliz-l1-1-0.dll
2014-07-20 16:09 . 2014-07-20 16:09 2560 ---ha-w- c:\windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2014-07-20 16:09 . 2014-07-20 16:09 249856 ----a-w- c:\windows\SysWow64\d3d10_1core.dll
2014-07-20 16:09 . 2014-07-20 16:09 245248 ----a-w- c:\windows\system32\WindowsCodecsExt.dll
2014-07-20 16:09 . 2014-07-20 16:09 2284544 ----a-w- c:\windows\SysWow64\msmpeg2vdec.dll
2014-07-20 16:09 . 2014-07-20 16:09 221184 ----a-w- c:\windows\system32\UIAnimation.dll
2014-07-20 16:09 . 2014-07-20 16:09 220160 ----a-w- c:\windows\SysWow64\d3d10core.dll
2014-07-20 16:09 . 2014-07-20 16:09 207872 ----a-w- c:\windows\SysWow64\WindowsCodecsExt.dll
2014-07-20 16:09 . 2014-07-20 16:09 194560 ----a-w- c:\windows\system32\d3d10_1.dll
2014-07-20 16:09 . 2014-07-20 16:09 187392 ----a-w- c:\windows\SysWow64\UIAnimation.dll
2014-07-20 16:09 . 2014-07-20 16:09 1682432 ----a-w- c:\windows\system32\XpsPrint.dll
2014-07-20 16:09 . 2014-07-20 16:09 1643520 ----a-w- c:\windows\system32\DWrite.dll
2014-07-20 16:09 . 2014-07-20 16:09 161792 ----a-w- c:\windows\SysWow64\d3d10_1.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2010-11-21 1475584]
"DAEMON Tools Lite"="d:\software\DAEMON Tools Lite\DTLite.exe" [2014-03-04 3696912]
"DIMProbíhá stahování aktualizace...1338924290338"="c:\program files\Corel\CorelDRAW Graphics Suite X6\Draw\DIM.EXE" [2012-02-23 237944]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"Sound Blaster Cinema"="c:\program files (x86)\Creative\Sound Blaster Cinema\Sound Blaster Cinema\SBCinema.exe" [2013-08-16 711680]
"UpdReg"="c:\windows\UpdReg.EXE" [2000-05-10 90112]
"USB3MON"="c:\program files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe" [2014-02-21 292848]
"Live Update"="c:\program files (x86)\MSI\Live Update\StartLiveUpdate.exe" [2014-07-01 579024]
"Command Center"="c:\program files (x86)\MSI\Command Center\StartCommandCenter.exe" [2014-06-06 796328]
"Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2013-11-21 959904]
"StartCCC"="c:\program files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe" [2014-08-11 767200]
"Fast Boot"="c:\program files (x86)\MSI\Fast Boot\StartFastBoot.exe" [2012-09-19 764472]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"{80655FC2-A38F-4B8C-8775-9A3C68A6C305}"="c:\program files (x86)\MSI\Live Update\LU5\DL_FILE\Killer_Network_Drivers_1.1.42.1045\Setup.exe" [2014-04-17 126154328]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32]
"aux1"=wdmaud.drv
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
@="Service"
.
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x]
R2 MSICTL_CC;MSICTL_CC;c:\program files (x86)\MSI\Command Center\MSIControlService.exe;c:\program files (x86)\MSI\Command Center\MSIControlService.exe [x]
R3 dmvsc;dmvsc;c:\windows\system32\drivers\dmvsc.sys;c:\windows\SYSNATIVE\drivers\dmvsc.sys [x]
R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\IEEtwCollector.exe;c:\windows\SYSNATIVE\IEEtwCollector.exe [x]
R3 INETMON;INETMON;c:\windows\System32\Drivers\INETMON.sys;c:\windows\SYSNATIVE\Drivers\INETMON.sys [x]
R3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface;c:\program files\Intel\iCLS Client\SocketHeciServer.exe;c:\program files\Intel\iCLS Client\SocketHeciServer.exe [x]
R3 ISCT;Intel(R) Smart Connect Technology Device Driver;c:\windows\system32\DRIVERS\ISCTD.sys;c:\windows\SYSNATIVE\DRIVERS\ISCTD.sys [x]
R3 MSIBIOSData_CC;MSIBIOSData_CC;c:\program files (x86)\MSI\Command Center\BIOSData\MSIBIOSDataService.exe;c:\program files (x86)\MSI\Command Center\BIOSData\MSIBIOSDataService.exe [x]
R3 MSICDSetup;MSICDSetup;d:\cdriver64.sys;d:\CDriver64.sys [x]
R3 MSIClock_CC;MSIClock_CC;c:\program files (x86)\MSI\Command Center\ClockGen\MSIClockService.exe;c:\program files (x86)\MSI\Command Center\ClockGen\MSIClockService.exe [x]
R3 MSICOMM_CC;MSICOMM_CC;c:\program files (x86)\MSI\Command Center\MSICommService.exe;c:\program files (x86)\MSI\Command Center\MSICommService.exe [x]
R3 MSICPU_CC;MSICPU_CC;c:\program files (x86)\MSI\Command Center\CPU\MSICPUService.exe;c:\program files (x86)\MSI\Command Center\CPU\MSICPUService.exe [x]
R3 MSIDDR_CC;MSIDDR_CC;c:\program files (x86)\MSI\Command Center\DDR\MSIDDRService.exe;c:\program files (x86)\MSI\Command Center\DDR\MSIDDRService.exe [x]
R3 MSISMB_CC;MSISMB_CC;c:\program files (x86)\MSI\Command Center\SMBus\MSISMBService.exe;c:\program files (x86)\MSI\Command Center\SMBus\MSISMBService.exe [x]
R3 MSISuperIO_CC;MSISuperIO_CC;c:\program files (x86)\MSI\Command Center\SuperIO\MSISuperIOService.exe;c:\program files (x86)\MSI\Command Center\SuperIO\MSISuperIOService.exe [x]
R3 NisDrv;Microsoft Network Inspection System;c:\windows\system32\DRIVERS\NisDrvWFP.sys;c:\windows\SYSNATIVE\DRIVERS\NisDrvWFP.sys [x]
R3 NisSrv;Kontrola sítě Microsoft;c:\program files\Microsoft Security Client\NisSrv.exe;c:\program files\Microsoft Security Client\NisSrv.exe [x]
R3 NTIOLib_1_0_3;NTIOLib_1_0_3;c:\program files (x86)\MSI\Super Charger\NTIOLib_X64.sys;c:\program files (x86)\MSI\Super Charger\NTIOLib_X64.sys [x]
R3 NTIOLib_1_0_C;NTIOLib_1_0_C;d:\ntiolib_x64.sys;d:\NTIOLib_X64.sys [x]
R3 NTIOLib_MSIClock_CC;NTIOLib_MSIClock_CC;c:\program files (x86)\MSI\Command Center\ClockGen\NTIOLib_X64.sys;c:\program files (x86)\MSI\Command Center\ClockGen\NTIOLib_X64.sys [x]
R3 NTIOLib_MSICOMM_CC;NTIOLib_MSICOMM_CC;c:\program files (x86)\MSI\Command Center\NTIOLib_X64.sys;c:\program files (x86)\MSI\Command Center\NTIOLib_X64.sys [x]
R3 NTIOLib_MSICPU_CC;NTIOLib_MSICPU_CC;c:\program files (x86)\MSI\Command Center\CPU\NTIOLib_X64.sys;c:\program files (x86)\MSI\Command Center\CPU\NTIOLib_X64.sys [x]
R3 NTIOLib_MSIDDR_CC;NTIOLib_MSIDDR_CC;c:\program files (x86)\MSI\Command Center\DDR\NTIOLib_X64.sys;c:\program files (x86)\MSI\Command Center\DDR\NTIOLib_X64.sys [x]
R3 NTIOLib_MSIFrequency_CC;NTIOLib_MSIFrequency_CC;c:\program files (x86)\MSI\Command Center\ClockGen\CPU_Frequency\NTIOLib_X64.sys;c:\program files (x86)\MSI\Command Center\ClockGen\CPU_Frequency\NTIOLib_X64.sys [x]
R3 NTIOLib_MSIRatio_CC;NTIOLib_MSIRatio_CC;c:\program files (x86)\MSI\Command Center\CPU\CPU_Ratio\NTIOLib_X64.sys;c:\program files (x86)\MSI\Command Center\CPU\CPU_Ratio\NTIOLib_X64.sys [x]
R3 NTIOLib_MSISMB_CC;NTIOLib_MSISMB_CC;c:\program files (x86)\MSI\Command Center\SMBus\NTIOLib_X64.sys;c:\program files (x86)\MSI\Command Center\SMBus\NTIOLib_X64.sys [x]
R3 NTIOLib_MSISuperIO_CC;NTIOLib_MSISuperIO_CC;c:\program files (x86)\MSI\Command Center\SuperIO\NTIOLib_X64.sys;c:\program files (x86)\MSI\Command Center\SuperIO\NTIOLib_X64.sys [x]
R3 ose64;Office 64 Source Engine;c:\program files\Common Files\Microsoft Shared\Source Engine\OSE.EXE;c:\program files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [x]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys;c:\windows\SYSNATIVE\drivers\rdpvideominiport.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x]
R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys;c:\windows\SYSNATIVE\drivers\TsUsbGD.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe;c:\windows\SYSNATIVE\Wat\WatAdminSvc.exe [x]
S0 iusb3hcs;Ovladač přepínání hostitelského řadiče Intel(R) USB 3.0;c:\windows\system32\DRIVERS\iusb3hcs.sys;c:\windows\SYSNATIVE\DRIVERS\iusb3hcs.sys [x]
S1 BfLwf;Qualcomm Atheros Bandwidth Control;c:\windows\system32\DRIVERS\bflwfx64.sys;c:\windows\SYSNATIVE\DRIVERS\bflwfx64.sys [x]
S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys;c:\windows\SYSNATIVE\DRIVERS\dtsoftbus01.sys [x]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe;c:\windows\SYSNATIVE\atiesrxx.exe [x]
S2 iocbios2;iocbios2;c:\program files (x86)\Intel\Extreme Tuning Utility\Drivers\IocDriver\64bit\iocbios2.sys;c:\program files (x86)\Intel\Extreme Tuning Utility\Drivers\IocDriver\64bit\iocbios2.sys [x]
S2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe;c:\program files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [x]
S2 MSI_FastBoot;MSI_FastBoot;c:\program files (x86)\MSI\Fast Boot\FastBootService.exe;c:\program files (x86)\MSI\Fast Boot\FastBootService.exe [x]
S2 MSI_LiveUpdate_Service;MSI_LiveUpdate_Service;c:\program files (x86)\MSI\Live Update\MSI_LiveUpdate_Service.exe;c:\program files (x86)\MSI\Live Update\MSI_LiveUpdate_Service.exe [x]
S2 MSI_Trigger_Service;MSI_Trigger_Service;c:\program files (x86)\MSI\MSITrigger\MSI_Trigger_Service.exe;c:\program files (x86)\MSI\MSITrigger\MSI_Trigger_Service.exe [x]
S2 PSI_SVC_2_x64;Protexis Licensing V2 x64;c:\program files\Common Files\Protexis\License Service\PsiService_2.exe;c:\program files\Common Files\Protexis\License Service\PsiService_2.exe [x]
S2 Qualcomm Atheros Killer Service V2;Qualcomm Atheros Killer Service V2;c:\program files\Qualcomm Atheros\Network Manager\KillerService.exe;c:\program files\Qualcomm Atheros\Network Manager\KillerService.exe [x]
S2 SuperRAIDSvc;SuperRAIDSvc;c:\msi\Smart Utilities\SuperRAIDSvc.exe;c:\msi\Smart Utilities\SuperRAIDSvc.exe [x]
S2 XTU3SERVICE;Intel(R) Extreme Tuning Utility Service;c:\program files (x86)\Intel\Extreme Tuning Utility\XtuService.exe;c:\program files (x86)\Intel\Extreme Tuning Utility\XtuService.exe [x]
S3 AcpiCtlDrv;AcpiCtlDrv;c:\windows\system32\DRIVERS\AcpiCtlDrv.sys;c:\windows\SYSNATIVE\DRIVERS\AcpiCtlDrv.sys [x]
S3 AtiHDAudioService;AMD Function Driver for HD Audio Service;c:\windows\system32\drivers\AtihdW76.sys;c:\windows\SYSNATIVE\drivers\AtihdW76.sys [x]
S3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS;c:\program files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe;c:\program files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [x]
S3 ICCWDT;Intel(R) Watchdog Timer Driver (Intel(R) WDT);c:\windows\system32\DRIVERS\ICCWDT.sys;c:\windows\SYSNATIVE\DRIVERS\ICCWDT.sys [x]
S3 iusb3hub;Ovladač rozbočovače Intel(R) USB 3.0;c:\windows\system32\DRIVERS\iusb3hub.sys;c:\windows\SYSNATIVE\DRIVERS\iusb3hub.sys [x]
S3 iusb3xhc;Ovladač rozšiřitelného hostitelského řadiče Intel(R) USB 3.0;c:\windows\system32\DRIVERS\iusb3xhc.sys;c:\windows\SYSNATIVE\DRIVERS\iusb3xhc.sys [x]
S3 Ke2200;NDIS Miniport Driver for Killer e2201/e2202 PCI-E Ethernet Controller;c:\windows\system32\DRIVERS\e22w7x64.sys;c:\windows\SYSNATIVE\DRIVERS\e22w7x64.sys [x]
S3 MBfilt;MBfilt;c:\windows\system32\drivers\MBfilt64.sys;c:\windows\SYSNATIVE\drivers\MBfilt64.sys [x]
S3 NTIOLib_1_0_4;NTIOLib_1_0_4;c:\program files (x86)\MSI\Live Update\NTIOLib_X64.sys;c:\program files (x86)\MSI\Live Update\NTIOLib_X64.sys [x]
S3 NTIOLib_FastBoot;NTIOLib_FastBoot;c:\program files (x86)\MSI\Fast Boot\NTIOLib_X64.sys;c:\program files (x86)\MSI\Fast Boot\NTIOLib_X64.sys [x]
S3 NTIOLib_MSI_RAID;NTIOLib_MSI_RAID;c:\msi\Smart Utilities\NTIOLib_X64.sys;c:\msi\Smart Utilities\NTIOLib_X64.sys [x]
S3 RTCore64;RTCore64;c:\program files (x86)\MSI Afterburner\RTCore64.sys;c:\program files (x86)\MSI Afterburner\RTCore64.sys [x]
.
.
--- Ostatní služby/ovladače v paměti ---
.
*NewlyCreated* - RTCORE64
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2014-07-18 17:48 1210320 ----a-w- c:\program files (x86)\Google\Chrome\Application\31.0.1650.59\Installer\chrmstp.exe
.
Obsah adresáře 'Naplánované úlohy'
.
2014-08-24 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2014-07-18 17:48]
.
2014-08-22 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2014-07-18 17:48]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RTHDVCPL"="c:\program files\Realtek\Audio\HDA\RtkNGUI64.exe" [2014-05-12 7575256]
"MBCfg64"="c:\windows\system32\MBCfg64.dll" [2013-08-29 40576]
"MSC"="c:\program files\Microsoft Security Client\msseces.exe" [2014-03-11 1271072]
"Start WingMan Profiler"="c:\program files\Logitech\Gaming Software\LWEMon.exe" [2010-06-14 190536]
"BCSSync"="c:\program files\Microsoft Office\Office14\BCSSync.exe" [2012-11-05 108144]
.
------- Doplňkový sken -------
.
uLocal Page = c:\windows\system32\blank.htm
uStart Page = hxxp://www.google.com/
mLocal Page = c:\windows\SysWOW64\blank.htm
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~4\Office14\EXCEL.EXE/3000
IE: Od&eslat do aplikace OneNote - c:\progra~1\MICROS~4\Office14\ONBttnIE.dll/105
TCP: DhcpNameServer = 213.46.172.37 192.168.0.1
FF - ProfilePath - c:\users\sosemo\AppData\Roaming\Mozilla\Firefox\Profiles\v1q19lfu.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.seznam.cz/
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
Wow6432Node-HKCU-Run-Windows Drivers - c:\users\sosemo\AppData\Roaming\WinUpdate\g\windrv.exe
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\Killer Network Manager.lnk - c:\windows\Installer\{4692B750-DE88-4DCF-9163-745AF5604B24}\NetworkManager.exe_130C27D738F34C89BDDF21BCFD74B56D.exe -minimize
HKLM-Run-AutoKMS - c:\windows\AutoKMS.exe
AddRemove-553E35CD-0415-41bc-B39A-410375E88534 - c:\program files (x86)\Intel\ACPI Driver Installer\Uninstall\setup.exe
AddRemove-Battlelog Web Plugins - c:\program files (x86)\Battlelog Web Plugins\uninstall.exe
AddRemove-{4F46CF54-47D2-41F4-B230-B0954C544420}}_is1 - c:\program files (x86)\MSI\Live Update\unins000.exe
.
.
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Celkový čas: 2014-08-24 09:29:00
ComboFix-quarantined-files.txt 2014-08-24 07:29
.
Před spuštěním: Volných bajtů: 20 781 363 200
Po spuštění: Volných bajtů: 20 682 784 768
.
- - End Of File - - 25FC1C8BCCA26895DCD7304D3A1D7DF4
A36C5E4F47E84449FF07ED3517B43A31

Re: Problem s PC

Napsal: 24 srp 2014 08:38
od tvanis
Moooc dekuji za pomoc, vse vypada v poradku.
Mate nejaka doporuceni co ted, pripadne jak jsem k tomu prisel a jak se tomu vyvarovat.

Re: Problem s PC

Napsal: 24 srp 2014 14:28
od vyosek
:arrow: Jeste docistime

:arrow: Pokud nemate, tak presunte Combofix na plochu
  • Spustte poznamkovy blok (Start-spustit-notepad)
  • Zkopirujte skript nize
  • Kód: Vybrat vše

    KillAll::
    
    Registry::
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    "MBCfg64"=-
    "BCSSync"=-
    [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    "DAEMON Tools Lite"=-
    "DIMProbíhá stahování aktualizace...1338924290338"=-
    [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
    "Adobe ARM"=-
    [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce]
    "{80655FC2-A38F-4B8C-8775-9A3C68A6C305}"=-
    
    RegLock::
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
    
    File::
    c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
    c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
    
    ClearJavaCache::
    
    Reboot::
  • Ulozte vytvoreny TXT jako CFScript.txt
  • Pretahnete vytvoreny CFScript.txt nad Combofix a pustte (viz obrazek nize)
    Obrázek
  • Po aplikaci skriptu (a pripadnem restartu) na Vas vypadne log, jeho obsah sem vlozte
:arrow: Pokud vyskoci hlaska "Pokus pouzit neplatnou operaci na klic registru, ktery je oznacen pro odstraneni", tak jen restartujte PC - registr se da do kupy - jedna se o vnitrni chybu, kterou zpusobuje CF a autor ji zatim neumi bohuzel opravit

:arrow: Muze se stat, ze po aplikaci skriptu nenabehnou windows, v tomto pripade restartuje PC a mackejte F8 a zvolte Posledni znamou konfiguraci

Re: Problem s PC

Napsal: 24 srp 2014 15:06
od tvanis
ComboFix 14-08-24.01 - sosemo 24.08.2014 16:02:11.3.2 - x64
Microsoft Windows 7 Professional 6.1.7601.1.1250.420.1029.18.8141.6422 [GMT 2:00]
Spuštěný z: c:\users\sosemo\Desktop\ComboFix.exe
Použité ovládací přepínače :: c:\users\sosemo\Desktop\CFScript.txt
AV: Avira Desktop *Enabled/Updated* {4D041356-F94D-285F-8768-AAE50FA36859}
FW: ZoneAlarm Free Firewall Firewall *Enabled* {1B8D532F-88B1-B2AD-ED22-AED92687A1D2}
SP: Avira Desktop *Enabled/Updated* {F665F2B2-DF77-27D1-BDD8-9197742422E4}
SP: Windows Defender *Disabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
FILE ::
"c:\windows\Tasks\GoogleUpdateTaskMachineCore.job"
"c:\windows\Tasks\GoogleUpdateTaskMachineUA.job"
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\users\sosemo\AppData\Local\Temp\avgnt.exe\Avira.OE.ExtApi.dll
c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2014-07-24 do 2014-08-24 )))))))))))))))))))))))))))))))
.
.
2014-08-24 14:03 . 2014-08-24 14:03 -------- d-----w- c:\users\Default\AppData\Local\temp
2014-08-24 07:48 . 2014-08-24 07:48 -------- d-----w- c:\users\sosemo\AppData\Roaming\Avira
2014-08-24 07:46 . 2014-08-24 07:46 -------- d-----w- c:\users\sosemo\AppData\Roaming\Check Point Software Technologies LTD
2014-08-24 07:46 . 2014-08-24 07:46 -------- d-----w- c:\program files (x86)\Check Point Software Technologies LTD
2014-08-24 07:46 . 2014-08-24 07:47 -------- d-----w- c:\program files (x86)\CheckPoint
2014-08-24 07:46 . 2014-08-24 07:46 -------- d-----w- c:\programdata\CheckPoint
2014-08-24 07:45 . 2014-08-15 08:30 28600 ----a-w- c:\windows\system32\drivers\avkmgr.sys
2014-08-24 07:45 . 2014-08-15 08:30 130584 ----a-w- c:\windows\system32\drivers\avipbb.sys
2014-08-24 07:45 . 2014-08-15 08:30 117712 ----a-w- c:\windows\system32\drivers\avgntflt.sys
2014-08-24 07:44 . 2014-08-24 07:45 -------- d-----w- c:\program files (x86)\Avira
2014-08-24 07:44 . 2014-08-24 07:45 -------- d-----w- c:\programdata\Avira
2014-08-22 13:02 . 2014-08-22 13:02 512 ----a-w- C:\PhysicalMBR.bin
2014-08-22 12:51 . 2014-08-22 12:52 -------- d-----w- C:\rsit
2014-08-22 12:51 . 2014-08-22 12:52 -------- d-----w- c:\program files\trend micro
2014-08-22 09:36 . 2014-08-22 09:36 -------- d-----w- c:\program files (x86)\RivaTuner Statistics Server
2014-08-22 09:35 . 2014-08-24 14:04 -------- d-----w- c:\program files (x86)\MSI Afterburner
2014-08-22 09:34 . 2014-08-22 09:34 -------- d-----w- c:\program files (x86)\MSI Kombustor 2.5
2014-08-22 09:21 . 2014-08-22 09:21 -------- d-----w- C:\msiFastBoot
2014-08-19 23:21 . 2014-08-19 23:21 -------- d-----w- c:\programdata\Qualcomm
2014-08-19 23:21 . 2014-08-19 23:21 -------- d-----w- c:\program files\Qualcomm Atheros
2014-08-19 23:14 . 2014-08-19 23:14 -------- d-----w- c:\program files (x86)\Setup Files
2014-08-19 21:33 . 2014-08-19 21:33 -------- d-----w- c:\program files (x86)\GPU-Z
2014-08-19 21:05 . 2014-05-08 09:32 3178496 ----a-w- c:\windows\system32\rdpcorets.dll
2014-08-19 21:05 . 2014-05-08 09:32 16384 ----a-w- c:\windows\system32\RdpGroupPolicyExtension.dll
2014-08-19 21:05 . 2014-01-09 02:22 5694464 ----a-w- c:\windows\SysWow64\mstscax.dll
2014-08-19 21:05 . 2014-01-03 22:44 6574592 ----a-w- c:\windows\system32\mstscax.dll
2014-08-19 21:04 . 2014-08-19 21:04 -------- d-----w- c:\users\Default\AppData\Local\Microsoft Help
2014-08-18 19:44 . 2014-08-18 19:44 -------- d-----w- c:\program files\Microsoft Silverlight
2014-08-18 19:44 . 2014-08-18 19:44 -------- d-----w- c:\program files (x86)\Microsoft Silverlight
2014-08-18 19:43 . 2013-09-25 02:23 1030144 ----a-w- c:\windows\system32\TSWorkspace.dll
2014-08-18 19:43 . 2013-09-25 01:57 792576 ----a-w- c:\windows\SysWow64\TSWorkspace.dll
2014-08-18 19:43 . 2012-05-04 11:00 366592 ----a-w- c:\windows\system32\qdvd.dll
2014-08-18 19:43 . 2012-05-04 09:59 514560 ----a-w- c:\windows\SysWow64\qdvd.dll
2014-08-18 09:35 . 2014-08-18 09:37 -------- d-----w- c:\users\sosemo\AppData\Roaming\Corel
2014-08-18 09:35 . 2014-08-18 09:37 -------- d-----w- c:\programdata\Protexis64
2014-08-18 09:34 . 2014-08-18 09:34 -------- d-----w- c:\program files (x86)\Microsoft SDKs
2014-08-18 09:34 . 2014-08-18 09:34 -------- d-----w- c:\program files (x86)\Microsoft Visual Studio 9.0
2014-08-18 09:33 . 2014-08-18 09:33 -------- d-----w- c:\program files\Common Files\Corel
2014-08-18 09:33 . 2014-08-18 09:33 -------- d-----w- c:\program files\Common Files\Protexis
2014-08-18 09:33 . 2014-08-18 09:35 -------- d-----w- c:\programdata\Corel
2014-08-18 09:32 . 2014-08-18 09:32 -------- d-----w- c:\program files\Corel
2014-08-18 09:24 . 2014-08-18 09:24 -------- d-----w- c:\program files\Common Files\DESIGNER
2014-08-18 09:24 . 2014-08-18 09:24 -------- d-----w- c:\windows\PCHEALTH
2014-08-18 09:24 . 2014-08-18 09:24 -------- d-----w- c:\program files\Microsoft Sync Framework
2014-08-18 09:22 . 2014-08-18 09:22 -------- d-----w- c:\program files (x86)\Microsoft Visual Studio 8
2014-08-18 09:21 . 2014-08-18 09:21 -------- d-----w- c:\program files\Microsoft Analysis Services
2014-08-18 09:21 . 2014-08-18 09:21 -------- d-----w- c:\program files (x86)\Microsoft Analysis Services
2014-08-18 09:21 . 2014-08-18 09:21 -------- d-----w- c:\users\sosemo\AppData\Local\Microsoft Help
2014-08-18 09:21 . 2014-08-19 21:06 -------- d-----w- c:\programdata\Microsoft Help
2014-08-18 09:21 . 2014-08-18 09:24 -------- d-----w- c:\program files\Microsoft Office
2014-08-18 09:21 . 2014-08-18 09:21 -------- d-----r- C:\MSOCache
2014-08-17 19:46 . 2014-08-19 21:10 -------- d-----w- c:\program files (x86)\SpeedFan
2014-08-17 17:39 . 2014-08-17 17:39 -------- d-----w- c:\program files\CPUID
2014-08-16 18:48 . 2014-08-24 13:39 -------- d-----w- c:\users\sosemo\AppData\Roaming\TS3Client
2014-08-16 18:48 . 2014-08-16 18:48 -------- d-----w- c:\program files\TeamSpeak 3 Client
2014-08-16 18:40 . 2014-08-16 18:40 -------- d-----w- c:\programdata\ATI
2014-08-16 18:39 . 2014-08-16 18:39 -------- d-----w- c:\program files (x86)\AMD AVT
2014-08-16 18:30 . 2014-08-16 18:30 76152 ----a-w- c:\windows\system32\PnkBstrA.exe
2014-08-16 18:02 . 2014-08-16 18:02 -------- d-----w- c:\users\sosemo\AppData\Local\ESN
2014-08-16 17:14 . 2014-08-16 17:25 -------- d-----w- c:\program files (x86)\Origin Games
2014-08-16 17:05 . 2014-08-16 18:46 -------- d-----w- c:\users\sosemo\AppData\Roaming\Origin
2014-08-16 17:05 . 2014-08-16 18:09 -------- d-----w- c:\users\sosemo\AppData\Local\Origin
2014-08-16 17:04 . 2014-08-16 18:03 -------- d-----w- c:\programdata\Electronic Arts
2014-08-16 17:04 . 2014-08-24 13:38 -------- d-----w- c:\program files (x86)\Origin
2014-08-15 09:16 . 2007-03-19 03:00 82944 ----a-w- c:\windows\system32\Spool\prtprocs\x64\CNMPP8R.DLL
2014-08-15 09:16 . 2007-03-19 03:00 27648 ----a-w- c:\windows\system32\Spool\prtprocs\x64\CNMPD8R.DLL
2014-08-15 09:16 . 2014-08-15 09:16 -------- d--h--w- c:\windows\system32\CanonIJ Uninstaller Information
2014-08-15 09:15 . 2008-02-06 03:00 259584 ----a-w- c:\windows\system32\CNMLM8R.DLL
2014-08-15 09:15 . 2008-01-30 09:14 1338368 ----a-w- c:\windows\system32\CNCC140.DLL
2014-08-15 09:15 . 2008-01-30 09:13 49664 ----a-w- c:\windows\system32\CNCI140.DLL
2014-08-15 09:15 . 2006-06-29 12:30 17408 ----a-w- c:\windows\system32\cnco140.dll
2014-08-15 09:15 . 2006-05-26 14:23 90624 ----a-w- c:\windows\system32\CNCL140.DLL
2014-08-15 09:13 . 2014-08-15 09:13 -------- d--h--w- c:\program files\CanonBJ
2014-08-15 09:10 . 2014-08-15 09:10 -------- d--h--w- c:\programdata\CanonBJ
2014-08-15 09:10 . 2009-07-14 01:40 84992 ----a-w- c:\windows\system32\Spool\prtprocs\x64\CNBPP4.DLL
2014-08-13 08:16 . 2014-08-13 08:16 450456 ----a-w- c:\windows\system32\drivers\vsdatant.sys
2014-08-13 06:27 . 2014-03-09 21:48 171160 ----a-w- c:\windows\system32\infocardapi.dll
2014-08-13 06:27 . 2014-03-09 21:48 1389208 ----a-w- c:\windows\system32\icardagt.exe
2014-08-13 06:27 . 2014-03-09 21:47 99480 ----a-w- c:\windows\SysWow64\infocardapi.dll
2014-08-13 06:27 . 2014-03-09 21:47 619672 ----a-w- c:\windows\SysWow64\icardagt.exe
2014-08-13 06:27 . 2014-06-30 22:24 8856 ----a-w- c:\windows\system32\icardres.dll
2014-08-13 06:27 . 2014-06-30 22:14 8856 ----a-w- c:\windows\SysWow64\icardres.dll
2014-08-13 06:27 . 2014-06-06 06:16 35480 ----a-w- c:\windows\SysWow64\TsWpfWrp.exe
2014-08-13 06:27 . 2014-06-06 06:12 35480 ----a-w- c:\windows\system32\TsWpfWrp.exe
2014-08-12 03:32 . 2014-08-12 03:32 127872 ----a-w- c:\windows\system32\amdhcp64.dll
2014-08-12 03:32 . 2014-08-12 03:32 117560 ----a-w- c:\windows\SysWow64\amdhcp32.dll
2014-08-12 03:32 . 2014-08-12 03:32 78432 ----a-w- c:\windows\system32\atimpc64.dll
2014-08-12 03:32 . 2014-08-12 03:32 78432 ----a-w- c:\windows\system32\amdpcom64.dll
2014-08-12 03:32 . 2014-08-12 03:32 71704 ----a-w- c:\windows\SysWow64\atimpc32.dll
2014-08-12 03:32 . 2014-08-12 03:32 71704 ----a-w- c:\windows\SysWow64\amdpcom32.dll
2014-08-12 03:28 . 2014-08-12 03:28 276192 ----a-w- c:\windows\system32\drivers\amdacpksd.sys
2014-08-12 03:24 . 2014-08-12 03:24 15961088 ----a-w- c:\windows\system32\drivers\atikmdag.sys
2014-08-12 03:10 . 2014-08-12 03:10 231424 ----a-w- c:\windows\system32\clinfo.exe
2014-08-12 03:09 . 2014-08-12 03:09 98816 ----a-w- c:\windows\system32\OpenVideo64.dll
2014-08-12 03:09 . 2014-08-12 03:09 83456 ----a-w- c:\windows\SysWow64\OpenVideo.dll
2014-08-12 03:09 . 2014-08-12 03:09 86528 ----a-w- c:\windows\system32\OVDecode64.dll
2014-08-12 03:09 . 2014-08-12 03:09 73216 ----a-w- c:\windows\SysWow64\OVDecode.dll
2014-08-12 03:09 . 2014-08-12 03:09 32877056 ----a-w- c:\windows\system32\amdocl64.dll
2014-08-12 03:03 . 2014-08-12 03:03 65024 ----a-w- c:\windows\system32\OpenCL.dll
2014-08-12 02:51 . 2014-08-12 02:51 127488 ----a-w- c:\windows\system32\mantle64.dll
2014-08-12 02:50 . 2014-08-12 02:50 113664 ----a-w- c:\windows\SysWow64\mantle32.dll
2014-08-12 02:50 . 2014-08-12 02:50 5225472 ----a-w- c:\windows\system32\amdmantle64.dll
2014-08-12 02:44 . 2014-08-12 02:44 27529216 ----a-w- c:\windows\system32\atio6axx.dll
2014-08-12 02:34 . 2014-08-12 02:34 4180992 ----a-w- c:\windows\SysWow64\amdmantle32.dll
2014-08-12 02:24 . 2014-08-12 02:24 23028224 ----a-w- c:\windows\SysWow64\atioglxx.dll
2014-08-12 02:20 . 2014-08-12 02:20 91648 ----a-w- c:\windows\system32\mantleaxl64.dll
2014-08-12 02:19 . 2014-08-12 02:19 85504 ----a-w- c:\windows\SysWow64\mantleaxl32.dll
2014-08-12 02:18 . 2014-08-12 02:18 366592 ----a-w- c:\windows\system32\atiapfxx.exe
2014-08-12 02:18 . 2014-08-12 02:18 62464 ----a-w- c:\windows\system32\aticalrt64.dll
2014-08-12 02:18 . 2014-08-12 02:18 52224 ----a-w- c:\windows\SysWow64\aticalrt.dll
2014-08-12 02:18 . 2014-08-12 02:18 55808 ----a-w- c:\windows\system32\aticalcl64.dll
2014-08-12 02:18 . 2014-08-12 02:18 49152 ----a-w- c:\windows\SysWow64\aticalcl.dll
2014-08-12 02:18 . 2014-08-12 02:18 15716352 ----a-w- c:\windows\system32\aticaldd64.dll
2014-08-12 02:14 . 2014-08-12 02:14 14302208 ----a-w- c:\windows\SysWow64\aticaldd.dll
2014-08-12 02:01 . 2014-08-12 02:01 31232 ----a-w- c:\windows\system32\atimuixx.dll
2014-08-12 02:01 . 2014-08-12 02:01 588800 ----a-w- c:\windows\system32\atieclxx.exe
2014-08-12 02:00 . 2014-08-12 02:00 239616 ----a-w- c:\windows\system32\atiesrxx.exe
2014-08-12 01:59 . 2014-08-12 01:59 190976 ----a-w- c:\windows\system32\atitmm64.dll
2014-08-12 01:57 . 2014-08-12 01:57 48128 ----a-w- c:\windows\system32\amdmmcl6.dll
2014-08-12 01:57 . 2014-08-12 01:57 37888 ----a-w- c:\windows\SysWow64\amdmmcl.dll
2014-08-12 01:43 . 2014-08-12 01:43 826368 ----a-w- c:\windows\system32\coinst_14.20.dll
2014-08-12 01:34 . 2014-08-12 01:34 75264 ----a-w- c:\windows\system32\atig6pxx.dll
2014-08-12 01:34 . 2014-08-12 01:34 69632 ----a-w- c:\windows\SysWow64\atiglpxx.dll
2014-08-12 01:34 . 2014-08-12 01:34 69632 ----a-w- c:\windows\system32\atiglpxx.dll
2014-08-12 01:34 . 2014-08-12 01:34 146944 ----a-w- c:\windows\system32\atig6txx.dll
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2014-08-22 13:21 . 2014-07-25 09:50 215416 ----a-w- c:\windows\SysWow64\PnkBstrB.exe
2014-08-22 13:20 . 2014-07-25 09:50 214392 ----a-w- c:\windows\SysWow64\PnkBstrB.ex0
2014-08-16 18:00 . 2014-07-25 09:50 76888 ----a-w- c:\windows\SysWow64\PnkBstrA.exe
2014-08-13 06:28 . 2014-07-20 15:58 99218768 ----a-w- c:\windows\system32\MRT.exe
2014-08-12 03:32 . 2014-04-18 02:43 143304 ----a-w- c:\windows\system32\atiuxp64.dll
2014-08-12 03:32 . 2014-04-18 02:42 126336 ----a-w- c:\windows\SysWow64\atiuxpag.dll
2014-08-12 03:32 . 2014-04-18 02:42 117584 ----a-w- c:\windows\system32\atiu9p64.dll
2014-08-12 03:32 . 2014-04-18 02:42 99520 ----a-w- c:\windows\SysWow64\atiu9pag.dll
2014-08-12 03:32 . 2014-04-18 02:42 1331424 ----a-w- c:\windows\system32\aticfx64.dll
2014-08-12 03:32 . 2014-04-18 02:42 1110992 ----a-w- c:\windows\SysWow64\aticfx32.dll
2014-08-12 03:32 . 2014-04-18 02:42 10521632 ----a-w- c:\windows\system32\atidxx64.dll
2014-08-12 03:32 . 2014-04-18 02:42 9018320 ----a-w- c:\windows\SysWow64\atidxx32.dll
2014-08-12 03:32 . 2014-04-18 02:42 7102496 ----a-w- c:\windows\SysWow64\atiumdva.dll
2014-08-12 03:32 . 2014-04-18 02:42 6879016 ----a-w- c:\windows\SysWow64\atiumdag.dll
2014-08-12 03:31 . 2014-04-18 02:42 7892000 ----a-w- c:\windows\system32\atiumd6a.dll
2014-08-12 03:31 . 2014-04-18 02:42 8108312 ----a-w- c:\windows\system32\atiumd64.dll
2014-08-12 03:06 . 2014-04-18 02:19 27843072 ----a-w- c:\windows\SysWow64\amdocl.dll
2014-08-12 03:03 . 2014-04-18 02:17 58880 ----a-w- c:\windows\SysWow64\OpenCL.dll
2014-08-12 02:01 . 2014-04-18 01:30 442368 ----a-w- c:\windows\system32\atidemgy.dll
2014-08-12 01:34 . 2014-04-18 01:09 1207296 ----a-w- c:\windows\system32\atiadlxx.dll
2014-08-12 01:34 . 2014-04-18 01:09 898560 ----a-w- c:\windows\SysWow64\atiadlxy.dll
2014-08-12 01:34 . 2014-04-18 01:07 133632 ----a-w- c:\windows\SysWow64\atigktxx.dll
2014-08-01 11:09 . 2014-07-25 10:39 215128 ----a-w- c:\windows\SysWow64\PnkBstrB.xtr
2014-07-30 11:51 . 2009-08-18 10:49 564632 ----a-w- c:\programdata\Microsoft\IdentityCRL\production\wlidui.dll
2014-07-30 11:51 . 2009-08-18 09:24 23256 ----a-w- c:\programdata\Microsoft\IdentityCRL\production\ppcrlconfig600.dll
2014-07-25 09:50 . 2014-07-25 09:50 2434856 ----a-w- c:\windows\SysWow64\pbsvc_bc2.exe
2014-07-20 20:07 . 2014-07-20 20:07 283064 ----a-w- c:\windows\system32\drivers\dtsoftbus01.sys
2014-07-20 16:11 . 2014-07-20 16:11 194048 ----a-w- c:\windows\SysWow64\elshyph.dll
2014-07-20 16:11 . 2014-07-20 16:11 71680 ----a-w- c:\windows\SysWow64\RegisterIEPKEYs.exe
2014-07-20 16:11 . 2014-07-20 16:11 645120 ----a-w- c:\windows\SysWow64\jsIntl.dll
2014-07-20 16:11 . 2014-07-20 16:11 235008 ----a-w- c:\windows\system32\elshyph.dll
2014-07-20 16:11 . 2014-07-20 16:11 182272 ----a-w- c:\windows\SysWow64\msls31.dll
2014-07-20 16:11 . 2014-07-20 16:11 942592 ----a-w- c:\windows\system32\jsIntl.dll
2014-07-20 16:11 . 2014-07-20 16:11 90112 ----a-w- c:\windows\system32\SetIEInstalledDate.exe
2014-07-20 16:11 . 2014-07-20 16:11 86016 ----a-w- c:\windows\SysWow64\iesysprep.dll
2014-07-20 16:11 . 2014-07-20 16:11 86016 ----a-w- c:\windows\system32\RegisterIEPKEYs.exe
2014-07-20 16:11 . 2014-07-20 16:11 81408 ----a-w- c:\windows\system32\icardie.dll
2014-07-20 16:11 . 2014-07-20 16:11 774144 ----a-w- c:\windows\system32\jscript.dll
2014-07-20 16:11 . 2014-07-20 16:11 77312 ----a-w- c:\windows\system32\tdc.ocx
2014-07-20 16:11 . 2014-07-20 16:11 74240 ----a-w- c:\windows\SysWow64\SetIEInstalledDate.exe
2014-07-20 16:11 . 2014-07-20 16:11 62464 ----a-w- c:\windows\SysWow64\tdc.ocx
2014-07-20 16:11 . 2014-07-20 16:11 62464 ----a-w- c:\windows\system32\pngfilt.dll
2014-07-20 16:11 . 2014-07-20 16:11 616104 ----a-w- c:\windows\system32\ieapfltr.dat
2014-07-20 16:11 . 2014-07-20 16:11 52224 ----a-w- c:\windows\system32\msfeedsbs.dll
2014-07-20 16:11 . 2014-07-20 16:11 48640 ----a-w- c:\windows\SysWow64\mshtmler.dll
2014-07-20 16:11 . 2014-07-20 16:11 48640 ----a-w- c:\windows\system32\mshtmler.dll
2014-07-20 16:11 . 2014-07-20 16:11 48128 ----a-w- c:\windows\system32\imgutil.dll
2014-07-20 16:11 . 2014-07-20 16:11 413696 ----a-w- c:\windows\system32\html.iec
2014-07-20 16:11 . 2014-07-20 16:11 36352 ----a-w- c:\windows\SysWow64\imgutil.dll
2014-07-20 16:11 . 2014-07-20 16:11 337408 ----a-w- c:\windows\SysWow64\html.iec
2014-07-20 16:11 . 2014-07-20 16:11 30208 ----a-w- c:\windows\system32\licmgr10.dll
2014-07-20 16:11 . 2014-07-20 16:11 247808 ----a-w- c:\windows\system32\msls31.dll
2014-07-20 16:11 . 2014-07-20 16:11 24576 ----a-w- c:\windows\SysWow64\licmgr10.dll
2014-07-20 16:11 . 2014-07-20 16:11 243200 ----a-w- c:\windows\system32\webcheck.dll
2014-07-20 16:11 . 2014-07-20 16:11 235520 ----a-w- c:\windows\system32\url.dll
2014-07-20 16:11 . 2014-07-20 16:11 167424 ----a-w- c:\windows\system32\iexpress.exe
2014-07-20 16:11 . 2014-07-20 16:11 151552 ----a-w- c:\windows\SysWow64\iexpress.exe
2014-07-20 16:11 . 2014-07-20 16:11 147968 ----a-w- c:\windows\system32\occache.dll
2014-07-20 16:11 . 2014-07-20 16:11 143872 ----a-w- c:\windows\system32\wextract.exe
2014-07-20 16:11 . 2014-07-20 16:11 139264 ----a-w- c:\windows\SysWow64\wextract.exe
2014-07-20 16:11 . 2014-07-20 16:11 13824 ----a-w- c:\windows\system32\mshta.exe
2014-07-20 16:11 . 2014-07-20 16:11 135680 ----a-w- c:\windows\system32\iepeers.dll
2014-07-20 16:11 . 2014-07-20 16:11 13312 ----a-w- c:\windows\SysWow64\mshta.exe
2014-07-20 16:11 . 2014-07-20 16:11 13312 ----a-w- c:\windows\system32\msfeedssync.exe
2014-07-20 16:11 . 2014-07-20 16:11 131072 ----a-w- c:\windows\system32\IEAdvpack.dll
2014-07-20 16:11 . 2014-07-20 16:11 111616 ----a-w- c:\windows\SysWow64\IEAdvpack.dll
2014-07-20 16:11 . 2014-07-20 16:11 105984 ----a-w- c:\windows\system32\iesysprep.dll
2014-07-20 16:11 . 2014-07-20 16:11 101376 ----a-w- c:\windows\system32\inseng.dll
2014-07-20 16:09 . 2014-07-20 16:09 9728 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2014-07-20 16:09 . 2014-07-20 16:09 9728 ---ha-w- c:\windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2014-07-20 16:09 . 2014-07-20 16:09 648192 ----a-w- c:\windows\system32\d3d10level9.dll
2014-07-20 16:09 . 2014-07-20 16:09 604160 ----a-w- c:\windows\SysWow64\d3d10level9.dll
2014-07-20 16:09 . 2014-07-20 16:09 5632 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2014-07-20 16:09 . 2014-07-20 16:09 5632 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-ole32-l1-1-0.dll
2014-07-20 16:09 . 2014-07-20 16:09 5632 ---ha-w- c:\windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2014-07-20 16:09 . 2014-07-20 16:09 5632 ---ha-w- c:\windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2014-07-20 16:09 . 2014-07-20 16:09 522752 ----a-w- c:\windows\system32\XpsGdiConverter.dll
2014-07-20 16:09 . 2014-07-20 16:09 4096 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-user32-l1-1-0.dll
2014-07-20 16:09 . 2014-07-20 16:09 4096 ---ha-w- c:\windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2014-07-20 16:09 . 2014-07-20 16:09 364544 ----a-w- c:\windows\SysWow64\XpsGdiConverter.dll
2014-07-20 16:09 . 2014-07-20 16:09 363008 ----a-w- c:\windows\system32\dxgi.dll
2014-07-20 16:09 . 2014-07-20 16:09 3584 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2014-07-20 16:09 . 2014-07-20 16:09 3584 ---ha-w- c:\windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2014-07-20 16:09 . 2014-07-20 16:09 333312 ----a-w- c:\windows\system32\d3d10_1core.dll
2014-07-20 16:09 . 2014-07-20 16:09 3072 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-version-l1-1-0.dll
2014-07-20 16:09 . 2014-07-20 16:09 3072 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-shell32-l1-1-0.dll
2014-07-20 16:09 . 2014-07-20 16:09 3072 ---ha-w- c:\windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2014-07-20 16:09 . 2014-07-20 16:09 3072 ---ha-w- c:\windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2014-07-20 16:09 . 2014-07-20 16:09 296960 ----a-w- c:\windows\system32\d3d10core.dll
2014-07-20 16:09 . 2014-07-20 16:09 293376 ----a-w- c:\windows\SysWow64\dxgi.dll
2014-07-20 16:09 . 2014-07-20 16:09 2776576 ----a-w- c:\windows\system32\msmpeg2vdec.dll
2014-07-20 16:09 . 2014-07-20 16:09 2560 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-normaliz-l1-1-0.dll
2014-07-20 16:09 . 2014-07-20 16:09 2560 ---ha-w- c:\windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2014-07-20 16:09 . 2014-07-20 16:09 249856 ----a-w- c:\windows\SysWow64\d3d10_1core.dll
2014-07-20 16:09 . 2014-07-20 16:09 245248 ----a-w- c:\windows\system32\WindowsCodecsExt.dll
2014-07-20 16:09 . 2014-07-20 16:09 2284544 ----a-w- c:\windows\SysWow64\msmpeg2vdec.dll
2014-07-20 16:09 . 2014-07-20 16:09 221184 ----a-w- c:\windows\system32\UIAnimation.dll
2014-07-20 16:09 . 2014-07-20 16:09 220160 ----a-w- c:\windows\SysWow64\d3d10core.dll
2014-07-20 16:09 . 2014-07-20 16:09 207872 ----a-w- c:\windows\SysWow64\WindowsCodecsExt.dll
2014-07-20 16:09 . 2014-07-20 16:09 194560 ----a-w- c:\windows\system32\d3d10_1.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2010-11-21 1475584]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"Sound Blaster Cinema"="c:\program files (x86)\Creative\Sound Blaster Cinema\Sound Blaster Cinema\SBCinema.exe" [2013-08-16 711680]
"UpdReg"="c:\windows\UpdReg.EXE" [2000-05-10 90112]
"USB3MON"="c:\program files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe" [2014-02-21 292848]
"Live Update"="c:\program files (x86)\MSI\Live Update\StartLiveUpdate.exe" [2014-07-01 579024]
"Command Center"="c:\program files (x86)\MSI\Command Center\StartCommandCenter.exe" [2014-06-06 796328]
"StartCCC"="c:\program files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe" [2014-08-11 767200]
"Fast Boot"="c:\program files (x86)\MSI\Fast Boot\StartFastBoot.exe" [2012-09-19 764472]
"Avira Systray"="c:\program files (x86)\Avira\My Avira\Avira.OE.Systray.exe" [2014-08-04 161584]
"avgnt"="c:\program files (x86)\Avira\AntiVir Desktop\avgnt.exe" [2014-08-15 751184]
"ZoneAlarm"="c:\program files (x86)\CheckPoint\ZoneAlarm\zatray.exe" [2014-08-13 137352]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32]
"aux1"=wdmaud.drv
.
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe;c:\program files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [x]
R2 XTU3SERVICE;Intel(R) Extreme Tuning Utility Service;c:\program files (x86)\Intel\Extreme Tuning Utility\XtuService.exe;c:\program files (x86)\Intel\Extreme Tuning Utility\XtuService.exe [x]
R3 dmvsc;dmvsc;c:\windows\system32\drivers\dmvsc.sys;c:\windows\SYSNATIVE\drivers\dmvsc.sys [x]
R3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS;c:\program files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe;c:\program files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [x]
R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\IEEtwCollector.exe;c:\windows\SYSNATIVE\IEEtwCollector.exe [x]
R3 INETMON;INETMON;c:\windows\System32\Drivers\INETMON.sys;c:\windows\SYSNATIVE\Drivers\INETMON.sys [x]
R3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface;c:\program files\Intel\iCLS Client\SocketHeciServer.exe;c:\program files\Intel\iCLS Client\SocketHeciServer.exe [x]
R3 ISCT;Intel(R) Smart Connect Technology Device Driver;c:\windows\system32\DRIVERS\ISCTD.sys;c:\windows\SYSNATIVE\DRIVERS\ISCTD.sys [x]
R3 MSIBIOSData_CC;MSIBIOSData_CC;c:\program files (x86)\MSI\Command Center\BIOSData\MSIBIOSDataService.exe;c:\program files (x86)\MSI\Command Center\BIOSData\MSIBIOSDataService.exe [x]
R3 MSICDSetup;MSICDSetup;d:\cdriver64.sys;d:\CDriver64.sys [x]
R3 MSIClock_CC;MSIClock_CC;c:\program files (x86)\MSI\Command Center\ClockGen\MSIClockService.exe;c:\program files (x86)\MSI\Command Center\ClockGen\MSIClockService.exe [x]
R3 MSICOMM_CC;MSICOMM_CC;c:\program files (x86)\MSI\Command Center\MSICommService.exe;c:\program files (x86)\MSI\Command Center\MSICommService.exe [x]
R3 MSICPU_CC;MSICPU_CC;c:\program files (x86)\MSI\Command Center\CPU\MSICPUService.exe;c:\program files (x86)\MSI\Command Center\CPU\MSICPUService.exe [x]
R3 MSIDDR_CC;MSIDDR_CC;c:\program files (x86)\MSI\Command Center\DDR\MSIDDRService.exe;c:\program files (x86)\MSI\Command Center\DDR\MSIDDRService.exe [x]
R3 MSISMB_CC;MSISMB_CC;c:\program files (x86)\MSI\Command Center\SMBus\MSISMBService.exe;c:\program files (x86)\MSI\Command Center\SMBus\MSISMBService.exe [x]
R3 MSISuperIO_CC;MSISuperIO_CC;c:\program files (x86)\MSI\Command Center\SuperIO\MSISuperIOService.exe;c:\program files (x86)\MSI\Command Center\SuperIO\MSISuperIOService.exe [x]
R3 NTIOLib_1_0_3;NTIOLib_1_0_3;c:\program files (x86)\MSI\Super Charger\NTIOLib_X64.sys;c:\program files (x86)\MSI\Super Charger\NTIOLib_X64.sys [x]
R3 NTIOLib_1_0_4;NTIOLib_1_0_4;c:\program files (x86)\MSI\Live Update\NTIOLib_X64.sys;c:\program files (x86)\MSI\Live Update\NTIOLib_X64.sys [x]
R3 NTIOLib_1_0_C;NTIOLib_1_0_C;d:\ntiolib_x64.sys;d:\NTIOLib_X64.sys [x]
R3 NTIOLib_MSIClock_CC;NTIOLib_MSIClock_CC;c:\program files (x86)\MSI\Command Center\ClockGen\NTIOLib_X64.sys;c:\program files (x86)\MSI\Command Center\ClockGen\NTIOLib_X64.sys [x]
R3 NTIOLib_MSICOMM_CC;NTIOLib_MSICOMM_CC;c:\program files (x86)\MSI\Command Center\NTIOLib_X64.sys;c:\program files (x86)\MSI\Command Center\NTIOLib_X64.sys [x]
R3 NTIOLib_MSICPU_CC;NTIOLib_MSICPU_CC;c:\program files (x86)\MSI\Command Center\CPU\NTIOLib_X64.sys;c:\program files (x86)\MSI\Command Center\CPU\NTIOLib_X64.sys [x]
R3 NTIOLib_MSIDDR_CC;NTIOLib_MSIDDR_CC;c:\program files (x86)\MSI\Command Center\DDR\NTIOLib_X64.sys;c:\program files (x86)\MSI\Command Center\DDR\NTIOLib_X64.sys [x]
R3 NTIOLib_MSIFrequency_CC;NTIOLib_MSIFrequency_CC;c:\program files (x86)\MSI\Command Center\ClockGen\CPU_Frequency\NTIOLib_X64.sys;c:\program files (x86)\MSI\Command Center\ClockGen\CPU_Frequency\NTIOLib_X64.sys [x]
R3 NTIOLib_MSIRatio_CC;NTIOLib_MSIRatio_CC;c:\program files (x86)\MSI\Command Center\CPU\CPU_Ratio\NTIOLib_X64.sys;c:\program files (x86)\MSI\Command Center\CPU\CPU_Ratio\NTIOLib_X64.sys [x]
R3 NTIOLib_MSISMB_CC;NTIOLib_MSISMB_CC;c:\program files (x86)\MSI\Command Center\SMBus\NTIOLib_X64.sys;c:\program files (x86)\MSI\Command Center\SMBus\NTIOLib_X64.sys [x]
R3 NTIOLib_MSISuperIO_CC;NTIOLib_MSISuperIO_CC;c:\program files (x86)\MSI\Command Center\SuperIO\NTIOLib_X64.sys;c:\program files (x86)\MSI\Command Center\SuperIO\NTIOLib_X64.sys [x]
R3 ose64;Office 64 Source Engine;c:\program files\Common Files\Microsoft Shared\Source Engine\OSE.EXE;c:\program files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [x]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys;c:\windows\SYSNATIVE\drivers\rdpvideominiport.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x]
R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys;c:\windows\SYSNATIVE\drivers\TsUsbGD.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe;c:\windows\SYSNATIVE\Wat\WatAdminSvc.exe [x]
S0 iusb3hcs;Ovladač přepínání hostitelského řadiče Intel(R) USB 3.0;c:\windows\system32\DRIVERS\iusb3hcs.sys;c:\windows\SYSNATIVE\DRIVERS\iusb3hcs.sys [x]
S1 avkmgr;avkmgr;c:\windows\system32\DRIVERS\avkmgr.sys;c:\windows\SYSNATIVE\DRIVERS\avkmgr.sys [x]
S1 BfLwf;Qualcomm Atheros Bandwidth Control;c:\windows\system32\DRIVERS\bflwfx64.sys;c:\windows\SYSNATIVE\DRIVERS\bflwfx64.sys [x]
S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys;c:\windows\SYSNATIVE\DRIVERS\dtsoftbus01.sys [x]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe;c:\windows\SYSNATIVE\atiesrxx.exe [x]
S2 AntiVirSchedulerService;Avira Scheduler;c:\program files (x86)\Avira\AntiVir Desktop\sched.exe;c:\program files (x86)\Avira\AntiVir Desktop\sched.exe [x]
S2 Avira.OE.ServiceHost;Avira Service Host;c:\program files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe;c:\program files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe [x]
S2 iocbios2;iocbios2;c:\program files (x86)\Intel\Extreme Tuning Utility\Drivers\IocDriver\64bit\iocbios2.sys;c:\program files (x86)\Intel\Extreme Tuning Utility\Drivers\IocDriver\64bit\iocbios2.sys [x]
S2 MSI_FastBoot;MSI_FastBoot;c:\program files (x86)\MSI\Fast Boot\FastBootService.exe;c:\program files (x86)\MSI\Fast Boot\FastBootService.exe [x]
S2 MSI_LiveUpdate_Service;MSI_LiveUpdate_Service;c:\program files (x86)\MSI\Live Update\MSI_LiveUpdate_Service.exe;c:\program files (x86)\MSI\Live Update\MSI_LiveUpdate_Service.exe [x]
S2 MSI_Trigger_Service;MSI_Trigger_Service;c:\program files (x86)\MSI\MSITrigger\MSI_Trigger_Service.exe;c:\program files (x86)\MSI\MSITrigger\MSI_Trigger_Service.exe [x]
S2 MSICTL_CC;MSICTL_CC;c:\program files (x86)\MSI\Command Center\MSIControlService.exe;c:\program files (x86)\MSI\Command Center\MSIControlService.exe [x]
S2 PSI_SVC_2_x64;Protexis Licensing V2 x64;c:\program files\Common Files\Protexis\License Service\PsiService_2.exe;c:\program files\Common Files\Protexis\License Service\PsiService_2.exe [x]
S2 Qualcomm Atheros Killer Service V2;Qualcomm Atheros Killer Service V2;c:\program files\Qualcomm Atheros\Network Manager\KillerService.exe;c:\program files\Qualcomm Atheros\Network Manager\KillerService.exe [x]
S2 SuperRAIDSvc;SuperRAIDSvc;c:\msi\Smart Utilities\SuperRAIDSvc.exe;c:\msi\Smart Utilities\SuperRAIDSvc.exe [x]
S2 ZAPrivacyService;ZoneAlarm Privacy Service;c:\program files (x86)\CheckPoint\ZoneAlarm\ZaPrivacyService.exe;c:\program files (x86)\CheckPoint\ZoneAlarm\ZaPrivacyService.exe [x]
S3 AcpiCtlDrv;AcpiCtlDrv;c:\windows\system32\DRIVERS\AcpiCtlDrv.sys;c:\windows\SYSNATIVE\DRIVERS\AcpiCtlDrv.sys [x]
S3 AtiHDAudioService;AMD Function Driver for HD Audio Service;c:\windows\system32\drivers\AtihdW76.sys;c:\windows\SYSNATIVE\drivers\AtihdW76.sys [x]
S3 ICCWDT;Intel(R) Watchdog Timer Driver (Intel(R) WDT);c:\windows\system32\DRIVERS\ICCWDT.sys;c:\windows\SYSNATIVE\DRIVERS\ICCWDT.sys [x]
S3 iusb3hub;Ovladač rozbočovače Intel(R) USB 3.0;c:\windows\system32\DRIVERS\iusb3hub.sys;c:\windows\SYSNATIVE\DRIVERS\iusb3hub.sys [x]
S3 iusb3xhc;Ovladač rozšiřitelného hostitelského řadiče Intel(R) USB 3.0;c:\windows\system32\DRIVERS\iusb3xhc.sys;c:\windows\SYSNATIVE\DRIVERS\iusb3xhc.sys [x]
S3 Ke2200;NDIS Miniport Driver for Killer e2201/e2202 PCI-E Ethernet Controller;c:\windows\system32\DRIVERS\e22w7x64.sys;c:\windows\SYSNATIVE\DRIVERS\e22w7x64.sys [x]
S3 MBfilt;MBfilt;c:\windows\system32\drivers\MBfilt64.sys;c:\windows\SYSNATIVE\drivers\MBfilt64.sys [x]
S3 NTIOLib_FastBoot;NTIOLib_FastBoot;c:\program files (x86)\MSI\Fast Boot\NTIOLib_X64.sys;c:\program files (x86)\MSI\Fast Boot\NTIOLib_X64.sys [x]
S3 NTIOLib_MSI_RAID;NTIOLib_MSI_RAID;c:\msi\Smart Utilities\NTIOLib_X64.sys;c:\msi\Smart Utilities\NTIOLib_X64.sys [x]
S3 RTCore64;RTCore64;c:\program files (x86)\MSI Afterburner\RTCore64.sys;c:\program files (x86)\MSI Afterburner\RTCore64.sys [x]
.
.
--- Ostatní služby/ovladače v paměti ---
.
*NewlyCreated* - NTIOLIB_FASTBOOT
*NewlyCreated* - NTIOLIB_MSI_RAID
*NewlyCreated* - RTCORE64
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2014-07-18 17:48 1210320 ----a-w- c:\program files (x86)\Google\Chrome\Application\31.0.1650.59\Installer\chrmstp.exe
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RTHDVCPL"="c:\program files\Realtek\Audio\HDA\RtkNGUI64.exe" [2014-05-12 7575256]
"Start WingMan Profiler"="c:\program files\Logitech\Gaming Software\LWEMon.exe" [2010-06-14 190536]
"AutoKMS"="c:\windows\AutoKMS.exe" [BU]
.
------- Doplňkový sken -------
.
uLocal Page = c:\windows\system32\blank.htm
uStart Page = hxxp://www.google.com/
mLocal Page = c:\windows\SysWOW64\blank.htm
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~4\Office14\EXCEL.EXE/3000
IE: Od&eslat do aplikace OneNote - c:\progra~1\MICROS~4\Office14\ONBttnIE.dll/105
TCP: DhcpNameServer = 213.46.172.37 192.168.0.1
FF - ProfilePath - c:\users\sosemo\AppData\Roaming\Mozilla\Firefox\Profiles\v1q19lfu.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.seznam.cz/
FF - user.js: extensions.zonealarm.tlbrSrchUrl - hxxp://search.zonealarm.com/search?src=tb&tbid=HFA5&Lan={dfltLng}&gu=184b01fe6bfd4e789d5cab5216c9daa4&tu=10G9y00Fa2D33N0&sku=&tstsId=&ver=&&q=
FF - user.js: extensions.zonealarm.id - b013c459000000000000448a5b9eb585
FF - user.js: extensions.zonealarm.appId - {C56C48A0-DA4E-46F6-9859-1553DC865F84}
FF - user.js: extensions.zonealarm.instlDay - 16306
FF - user.js: extensions.zonealarm.vrsn - 1.8.29.17
FF - user.js: extensions.zonealarm.vrsni - 1.8.29.17
FF - user.js: extensions.zonealarm.vrsnTs - 1.8.29.179:46
FF - user.js: extensions.zonealarm.prtnrId - checkpoint
FF - user.js: extensions.zonealarm.prdct - zonealarm
FF - user.js: extensions.zonealarm.aflt - 1001
FF - user.js: extensions.zonealarm.smplGrp - NewUSR
FF - user.js: extensions.zonealarm.tlbrId - HFA5
FF - user.js: extensions.zonealarm.instlRef - ZLN124503456789258-1001
FF - user.js: extensions.zonealarm.dfltLng - EN
FF - user.js: extensions.zonealarm.excTlbr - false
FF - user.js: extensions.zonealarm.ffxUnstlRst - false
FF - user.js: extensions.zonealarm.admin - false
FF - user.js: extensions.zonealarm.autoRvrt - false
FF - user.js: extensions.zonealarm.rvrt - false
FF - user.js: extensions.zonealarm.newTab - false
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
AddRemove-553E35CD-0415-41bc-B39A-410375E88534 - c:\program files (x86)\Intel\ACPI Driver Installer\Uninstall\setup.exe
AddRemove-Battlelog Web Plugins - c:\program files (x86)\Battlelog Web Plugins\uninstall.exe
AddRemove-{4F46CF54-47D2-41F4-B230-B0954C544420}}_is1 - c:\program files (x86)\MSI\Live Update\unins000.exe
.
.
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\program files (x86)\Google\Update\GoogleUpdate.exe
c:\program files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
c:\program files (x86)\Avira\AntiVir Desktop\avguard.exe
c:\program files (x86)\MSI Afterburner\MSIAfterburner.exe
d:\software\fraps.exe
c:\windows\system32\PnkBstrA.exe
.
**************************************************************************
.
Celkový čas: 2014-08-24 16:05:32 - počítač byl restartován
ComboFix-quarantined-files.txt 2014-08-24 14:05
ComboFix2.txt 2014-08-24 13:55
ComboFix3.txt 2014-08-24 07:29
.
Před spuštěním: Volných bajtů: 20 214 550 528
Po spuštění: Volných bajtů: 20 129 071 104
.
- - End Of File - - E82515B5927EE5BDC283585F5BB91435
A36C5E4F47E84449FF07ED3517B43A31

Re: Problem s PC

Napsal: 24 srp 2014 15:36
od vyosek
Tak jeste uklidime :James008:

:arrow: Odinstalujte Combofix
  • Prejmenujte ComboFix na Uninstall
  • Spustte jej
  • Tohle smaze Combofix a jeho slozky
:arrow: T-Cleaner http://vyosek.ic.cz/pro_usery/T-Cleaner.exe
  • Stahnete a spustte
  • Pro potvrzeni volby mackejte A, Enter
  • Po pouziti utilitu smazte
  • Antiviry touhou utilitu chybne oznacit jako vir - jedna se o falesny poplach - takze v pohode stahnete (pripadne vypnete pri stahovani antivir)
:arrow: OTC http://oldtimer.geekstogo.com/OTC.exe
  • Stahnete a spustte
  • Kliknete na CleanUp a potvrdte YES
  • Program uklidi a restartuje PC

:arrow: TFC http://oldtimer.geekstogo.com/TFC.exe
  • Stahnete a spustte
  • Kliknete na Start a potvrdte OK
  • Program uklidi a restartuje pc
  • Po pouziti utilitu smazte
:arrow: Stahnete Ccleaner http://forum.viry.cz/viewtopic.php?t=7478
Panel čistič
  • Vse nechte jak je, jen dejte Analyzovat a pote Spustit CCleaner
Panel registry
  • dejte Hledej problémy
  • nasledne Opravit problémy - zalohu registru doporucuji udelat, opravte vsechny problemy
  • postup opakujte dokud nebude bez problemu - vetsinou cca 3x
Panel nástroje
  • Zde muzete odinstalovat nepotrebne programy
CCleaner doporucuji pouzivat cca jednou za tyden

:arrow: A pokud nejsou problemy ci dotazy, je to z me strany vse :|

Re: Problem s PC

Napsal: 27 srp 2014 22:09
od tvanis
Jeste jednou dekuji pc uz se chova stadartne :happy:

Re: Problem s PC

Napsal: 28 srp 2014 08:33
od vyosek
Nemate zac, rad jsem pomohl :worship: Zase nekdy Obrázek

A na zaklade Pravidla o zamykani temat :lock: