Kontrola logu
Napsal: 01 pro 2014 22:02
Zdravím,poprosil bych o kontolu logu.Webové stránky načítají dost pomalu někdy se ani nenačtou a vyhodí chybu.Díky
Logfile of random's system information tool 1.10 (written by random/random)
Run by Lukas at 2014-12-01 21:53:27
Microsoft Windows 7 Home Premium
System drive C: has 37 GB (61%) free of 61 GB
Total RAM: 3037 MB (47% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 21:53:38, on 1.12.2014
Platform: Windows 7 (WinNT 6.00.3504)
MSIE: Internet Explorer v8.00 (8.00.7600.16385)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe
C:\Program Files (x86)\IObit\Advanced SystemCare 7\Monitor.exe
C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCTray.exe
C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe
C:\Program Files (x86)\ASUS\ATK Hotkey\HControlUser.exe
C:\Program Files (x86)\SpeedFan\speedfan.exe
C:\Program Files (x86)\ASUS\ATKOSD2\ATKOSD2.exe
C:\Program Files (x86)\ASUS\ATK Media\DMedia.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Program Files (x86)\Windows Media Player\wmplayer.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Lukas.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Advanced SystemCare Browser Protection - {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} - C:\PROGRA~2\IObit\SURFIN~1\BROWER~1\ASCPLU~1.DLL
O4 - HKLM\..\Run: [HControlUser] C:\Program Files (x86)\ASUS\ATK Hotkey\HControlUser.exe
O4 - HKLM\..\Run: [ATKOSD2] C:\Program Files (x86)\ASUS\ATKOSD2\ATKOSD2.exe
O4 - HKLM\..\Run: [ATKMEDIA] C:\Program Files (x86)\ASUS\ATK Media\DMedia.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [HDAudDeck] C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe -r
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [Advanced SystemCare 7] "C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCTray.exe" /Auto
O4 - HKCU\..\Run: [uTorrent] "C:\Users\Lukas\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [Clock Widget (HTC Home)] "C:\Program Files (x86)\HtcHome\Clock.exe"
O4 - HKCU\..\RunOnce: [121_212305652054] "C:\Users\Lukas\AppData\Local\LMIR0001.tmp_r.bat"
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Global Startup: SpeedFan.lnk = C:\Program Files (x86)\SpeedFan\speedfan.exe
O23 - Service: ADSM Service (ADSMService) - Unknown owner - C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ADSMSrv.exe (file missing)
O23 - Service: Advanced SystemCare Service 7 (AdvancedSystemCareService7) - IObit - C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: ASLDR Service (ASLDRService) - ASUS - C:\Program Files (x86)\ASUS\ATK Hotkey\ASLDRSrv.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - Unknown owner - C:\Program Files\ATKGFNEX\GFNEXSrv.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: avast! Firewall - AVAST Software - C:\Program Files\AVAST Software\Avast\afwServ.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: LiveUpdate (LiveUpdateSvc) - IObit - C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe
O23 - Service: WinMetro Service (MetroServ) - IObit - C:\Program Files (x86)\UX Pack\WinMetro\MetroSvc.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Unsigned Themes (UnsignedThemes) - The Within Network, LLC - C:\Windows\UnsignedThemesSvc.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: VIA Karaoke digital mixer Service (VIAKaraokeService) - Unknown owner - C:\Windows\system32\viakaraokesrv.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 8181 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
"C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCService.exe"
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\UnsignedThemesSvc.exe
C:\Windows\system32\AUDIODG.EXE 0x2ac
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files (x86)\ASUS\ATK Hotkey\ASLDRSrv.exe"
"C:\Program Files\ATKGFNEX\GFNEXSrv.exe"
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\ASUS\ATK Hotkey\HControl.exe"
Atouch64.exe
C:\Windows\System32\spoolsv.exe
"taskhost.exe"
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\AVAST Software\Avast\afwServ.exe"
taskeng.exe {38CCE00E-422B-43B6-A175-73FF042BFFA3}
"C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe"
"C:\Program Files (x86)\IObit\Advanced SystemCare 7\Monitor.exe"
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\system32\viakaraokesrv.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe"
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files\Elantech\ETDCtrl.exe"
"C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe" -r
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\System32\hkcmd.exe"
ATKOSD.exe
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files\Windows Sidebar\sidebar.exe" /autoRun
KBFiltr.exe
WDC.exe
"C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCTray.exe" /Auto
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
"C:\Program Files (x86)\HtcHome\Clock.exe"
"C:\Program Files (x86)\ASUS\ATK Hotkey\HControlUser.exe"
"C:\Program Files (x86)\SpeedFan\speedfan.exe"
"C:\Program Files (x86)\ASUS\ATKOSD2\ATKOSD2.exe"
"C:\Program Files (x86)\ASUS\ATK Media\DMedia.exe"
"C:\Program Files\AVAST Software\Avast\avastui.exe" /nogui
"C:\Program Files (x86)\Windows Media Player\wmplayer.exe" /Play -Embedding
C:\Windows\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="5056.0.328979802\1760101181" --disable-d3d11 --supports-dual-gpus=false --gpu-driver-bug-workarounds=1,6,17,38 --gpu-vendor-id=0x8086 --gpu-device-id=0x2a42 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=8.15.10.2869 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/DomRel-Enable/enable/EmbeddedSearch/Group6 pct:10f stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/Bootstrap/ExtensionInstallVerification/Enforce/GoogleNow/Enable/NewProfileManagement/OldAvatarMenu/OmniboxBundledExperimentV1/NewSuggestType_A5_Stable_R2/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/RapporRollout/Enabled/RememberCertificateErrorDecisions/Default/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_06/UMA-Uniformity-Trial-1-Percent/group_13/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_10/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="5056.2.1108673502\79735843" /prefetch:673131151
C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/DomRel-Enable/enable/EmbeddedSearch/Group6 pct:10f stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/Bootstrap/ExtensionInstallVerification/Enforce/GoogleNow/Enable/NewProfileManagement/OldAvatarMenu/OmniboxBundledExperimentV1/NewSuggestType_A5_Stable_R2/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/RapporRollout/Enabled/RememberCertificateErrorDecisions/Default/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_06/UMA-Uniformity-Trial-1-Percent/group_13/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_10/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="5056.5.129977902\1210177994" /prefetch:673131151
C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
C:\Windows\system32\sppsvc.exe
C:\Windows\System32\svchost.exe -k secsvcs
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/DomRel-Enable/enable/EmbeddedSearch/Group6 pct:10f stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/Bootstrap/ExtensionInstallVerification/Enforce/GoogleNow/Enable/NewProfileManagement/OldAvatarMenu/OmniboxBundledExperimentV1/NewSuggestType_A5_Stable_R2/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/RapporRollout/Enabled/RememberCertificateErrorDecisions/Default/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_06/UMA-Uniformity-Trial-1-Percent/group_13/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_10/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="5056.18.485796248\1829456349" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/DomRel-Enable/enable/EmbeddedSearch/Group6 pct:10f stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/Bootstrap/ExtensionInstallVerification/Enforce/GoogleNow/Enable/NewProfileManagement/OldAvatarMenu/OmniboxBundledExperimentV1/NewSuggestType_A5_Stable_R2/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/RapporRollout/Enabled/RememberCertificateErrorDecisions/Default/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_06/UMA-Uniformity-Trial-1-Percent/group_13/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_10/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="5056.21.1099759362\1491629230" /prefetch:673131151
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe6_ Global\UsGthrCtrlFltPipeMssGthrPipe6 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 508 512 520 65536 516
"C:\Users\Lukas\Downloads\RSITx64.exe"
======Scheduled tasks folder======
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{10921475-03CE-4E04-90CE-E2E7EF20C814}]
ExplorerWnd Helper - C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer64.dll [2014-11-26 2486592]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2014-11-26 705448]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2008-06-11 75128]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-11-26 586968]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6}]
Advanced SystemCare Browser Protection - C:\PROGRA~2\IObit\SURFIN~1\BROWER~1\ASCPLU~1.DLL [2013-11-25 665408]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{32099AAC-C132-4136-9E9A-4E364A424E17}
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"AmIcoSinglun64"=C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe [2009-09-01 323584]
"ETDWare"=C:\Program Files\Elantech\ETDCtrl.exe [2009-09-30 621440]
"HDAudDeck"=C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe [2014-05-27 4688048]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2012-11-14 163360]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2012-11-14 387616]
"Persistence"=C:\Windows\system32\igfxpers.exe [2012-11-14 418336]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2009-07-14 1475072]
"Advanced SystemCare 7"=C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCTray.exe [2013-12-09 2285344]
"uTorrent"=C:\Users\Lukas\AppData\Roaming\uTorrent\uTorrent.exe [2014-11-26 1680464]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2011-01-20 1305408]
"Clock Widget (HTC Home)"=C:\Program Files (x86)\HtcHome\Clock.exe [2011-11-28 2036736]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"121_212305652054"=C:\Users\Lukas\AppData\Local\LMIR0001.tmp_r.bat [2014-12-01 331]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\UX Launcher]
C:\Program Files (x86)\UX Pack\uxlaunch.exe [2013-03-20 236802]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^SRS Premium Sound.lnk]
C:\Windows\Installer\{E5CF6B9C-3ABE-43C9-9413-AD5FFC98F049}\NewShortcut5_21C7B668029A47458B27645FE6E4A715.exe [2014-11-26 156952]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"HControlUser"=C:\Program Files (x86)\ASUS\ATK Hotkey\HControlUser.exe [2009-06-19 105016]
"ATKOSD2"=C:\Program Files (x86)\ASUS\ATKOSD2\ATKOSD2.exe [2009-08-17 6859392]
"ATKMEDIA"=C:\Program Files (x86)\ASUS\ATK Media\DMedia.exe [2009-08-19 170624]
"Adobe Reader Speed Launcher"=C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe [2008-12-03 35184]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2014-11-26 5226600]
"HDAudDeck"=C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe [2014-05-27 4688048]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
SpeedFan.lnk - C:\Program Files (x86)\SpeedFan\speedfan.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2012-11-14 272384]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"SoftwareSASGeneration"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2014-12-01 21:53:28 ----D---- C:\Program Files\trend micro
2014-12-01 21:53:27 ----D---- C:\rsit
2014-12-01 19:52:35 ----D---- C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-12-01 19:35:19 ----D---- C:\Windows\system32\log
2014-12-01 19:27:32 ----D---- C:\Users\Lukas\AppData\Roaming\Malwarebytes
2014-12-01 19:27:25 ----D---- C:\ProgramData\Malwarebytes
2014-12-01 19:27:21 ----D---- C:\Program Files (x86)\Malwarebytes' Anti-Malware
2014-12-01 18:08:16 ----D---- C:\ProgramData\DriverGenius
2014-12-01 18:01:03 ----D---- C:\Users\Lukas\AppData\Roaming\Driver-Soft
2014-12-01 17:57:42 ----A---- C:\Windows\system32\drivers\L1E62x64.sys
2014-12-01 15:58:36 ----D---- C:\Program Files (x86)\HtcHome
2014-12-01 13:53:39 ----D---- C:\Windows\pss
2014-12-01 12:44:17 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2014-12-01 12:40:02 ----D---- C:\Program Files (x86)\Microsoft.NET
2014-12-01 12:38:27 ----A---- C:\Windows\SYSWOW64\PresentationHostProxy.dll
2014-12-01 12:38:27 ----A---- C:\Windows\SYSWOW64\PresentationHost.exe
2014-12-01 12:38:26 ----A---- C:\Windows\SYSWOW64\mscoree.dll
2014-12-01 12:38:23 ----A---- C:\Windows\SYSWOW64\netfxperf.dll
2014-12-01 12:38:23 ----A---- C:\Windows\SYSWOW64\dfshim.dll
2014-12-01 12:38:22 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2014-12-01 12:38:22 ----A---- C:\Windows\system32\PresentationHost.exe
2014-12-01 12:38:22 ----A---- C:\Windows\system32\netfxperf.dll
2014-12-01 12:38:22 ----A---- C:\Windows\system32\mscoree.dll
2014-12-01 12:38:21 ----A---- C:\Windows\system32\dfshim.dll
2014-12-01 12:24:10 ----A---- C:\Windows\system32\stobject.dll
2014-12-01 12:24:07 ----A---- C:\Windows\system32\SndVolSSO.dll
2014-12-01 12:24:05 ----A---- C:\Windows\system32\shell32.dll
2014-12-01 12:24:02 ----A---- C:\Windows\system32\pnidui.dll
2014-12-01 12:23:40 ----A---- C:\Windows\system32\imageres.dll
2014-12-01 12:23:39 ----A---- C:\Windows\system32\ExplorerFrame.dll
2014-12-01 12:23:37 ----A---- C:\Windows\system32\batmeter.dll
2014-12-01 12:23:35 ----A---- C:\Windows\system32\authui.dll
2014-12-01 12:23:30 ----D---- C:\Windows\UXBackup
2014-12-01 12:23:30 ----A---- C:\Windows\explorer.exe
2014-12-01 12:22:05 ----D---- C:\Program Files (x86)\UX Pack
2014-12-01 12:22:04 ----A---- C:\Windows\SYSWOW64\moveex.exe
2014-11-27 16:24:19 ----A---- C:\Windows\SYSWOW64\CmdLineExt.dll
2014-11-27 16:07:19 ----D---- C:\Program Files (x86)\Rockstar Games
2014-11-27 16:02:19 ----A---- C:\Windows\system32\drivers\dtsoftbus01.sys
2014-11-27 16:01:46 ----D---- C:\Program Files (x86)\DAEMON Tools Toolbar
2014-11-27 16:01:38 ----D---- C:\Program Files (x86)\DAEMON Tools Lite
2014-11-27 16:01:28 ----D---- C:\Users\Lukas\AppData\Roaming\DAEMON Tools Lite
2014-11-27 16:01:28 ----D---- C:\ProgramData\DAEMON Tools Lite
2014-11-27 08:41:55 ----A---- C:\Windows\SYSWOW64\CSVer.dll
2014-11-27 05:26:33 ----D---- C:\Windows\Panther
2014-11-27 05:26:28 ----RASH---- C:\BOOTSECT.BAK
2014-11-27 05:26:26 ----SHD---- C:\Boot
2014-11-27 01:58:02 ----A---- C:\Windows\SYSWOW64\fmcodec.DLL
2014-11-27 01:21:43 ----D---- C:\Program Files (x86)\DsNET Corp
2014-11-27 01:13:36 ----D---- C:\Program Files (x86)\SpeedFan
2014-11-27 00:21:23 ----D---- C:\ProgramData\Ad Muncher
2014-11-27 00:21:23 ----D---- C:\Program Files (x86)\Ad Muncher
2014-11-26 23:36:55 ----D---- C:\Program Files\VIA
2014-11-26 23:36:44 ----A---- C:\Windows\SYSWOW64\VMAPO32.DLL
2014-11-26 23:36:44 ----A---- C:\Windows\system32\VMAPO64.DLL
2014-11-26 23:36:44 ----A---- C:\Windows\system32\VIAPropPageExt.dll
2014-11-26 23:36:44 ----A---- C:\Windows\system32\ViaMicArrayAPO.dll
2014-11-26 23:36:44 ----A---- C:\Windows\system32\nQPropPageExt.dll
2014-11-26 23:36:44 ----A---- C:\Windows\system32\nQAPO.dll
2014-11-26 23:36:44 ----A---- C:\Windows\system32\MaxxAudioAPOShell64.dll
2014-11-26 23:36:44 ----A---- C:\Windows\system32\Dts2PropPageExt.dll
2014-11-26 23:36:43 ----A---- C:\Windows\system32\VtSrdAPO.dll
2014-11-26 23:36:43 ----A---- C:\Windows\system32\VIASysFx.dll
2014-11-26 23:36:43 ----A---- C:\Windows\system32\ViaMicArrayPropPageExt.dll
2014-11-26 23:36:43 ----A---- C:\Windows\system32\ViakaraokeSrv.exe
2014-11-26 23:36:43 ----A---- C:\Windows\system32\ViaKaraokeApo.dll
2014-11-26 23:36:43 ----A---- C:\Windows\system32\MaxxAudioVnA64.dll
2014-11-26 23:36:43 ----A---- C:\Windows\system32\MaxxAudioAPO30.dll
2014-11-26 23:36:43 ----A---- C:\Windows\system32\drivers\VMfilt64.sys
2014-11-26 23:36:43 ----A---- C:\Windows\system32\drivers\viahduaa.sys
2014-11-26 23:36:42 ----A---- C:\Windows\system32\WavesGUILib64.dll
2014-11-26 23:36:42 ----A---- C:\Windows\system32\VMPPLD64.DLL
2014-11-26 23:36:42 ----A---- C:\Windows\system32\VMPPCN64.DLL
2014-11-26 23:36:42 ----A---- C:\Windows\system32\VMAPO264.DLL
2014-11-26 23:36:42 ----A---- C:\Windows\system32\ViaKaraokePropPageExt.dll
2014-11-26 23:36:42 ----A---- C:\Windows\system32\Dts2APO.dll
2014-11-26 23:36:41 ----A---- C:\Windows\SYSWOW64\VMTHX32.DLL
2014-11-26 23:36:41 ----A---- C:\Windows\SYSWOW64\VMAPO232.DLL
2014-11-26 23:36:41 ----A---- C:\Windows\system32\VMWRP64.DLL
2014-11-26 23:36:41 ----A---- C:\Windows\system32\VMTHX64.DLL
2014-11-26 23:36:41 ----A---- C:\Windows\system32\PropPageExt.dll
2014-11-26 23:36:41 ----A---- C:\Windows\system32\EEL64A.dll
2014-11-26 23:36:41 ----A---- C:\Windows\system32\EEG64H.dll
2014-11-26 23:36:41 ----A---- C:\Windows\system32\EEG64A.dll
2014-11-26 23:36:41 ----A---- C:\Windows\system32\EED64H.dll
2014-11-26 23:36:41 ----A---- C:\Windows\system32\EED64A.dll
2014-11-26 23:36:41 ----A---- C:\Windows\system32\EEA64H.dll
2014-11-26 23:36:41 ----A---- C:\Windows\system32\EEA64A.dll
2014-11-26 23:36:40 ----A---- C:\Windows\system32\EEP64H.dll
2014-11-26 23:36:40 ----A---- C:\Windows\system32\EEL64H.dll
2014-11-26 23:36:33 ----A---- C:\Windows\SetupTemp.ini
2014-11-26 23:30:35 ----A---- C:\Windows\system32\EEP64A.dll
2014-11-26 22:58:44 ----D---- C:\Program Files (x86)\Driver-Soft
2014-11-26 22:32:21 ----D---- C:\Program Files (x86)\Realtek
2014-11-26 22:32:19 ----HD---- C:\Program Files (x86)\Temp
2014-11-26 21:43:38 ----D---- C:\ProgramData\APN
2014-11-26 21:42:45 ----D---- C:\Users\Lukas\AppData\Roaming\uTorrent
2014-11-26 21:21:36 ----D---- C:\Users\Lukas\AppData\Roaming\Apple Computer
2014-11-26 21:21:23 ----D---- C:\ProgramData\ProductData
2014-11-26 21:21:22 ----D---- C:\ProgramData\{3C5CBD7B-3D1D-411E-96C2-513FFCA84D2D}
2014-11-26 21:21:13 ----D---- C:\ProgramData\IObit
2014-11-26 21:20:52 ----D---- C:\Program Files (x86)\IObit
2014-11-26 21:18:43 ----D---- C:\Users\Lukas\AppData\Roaming\AVAST Software
2014-11-26 21:17:39 ----D---- C:\Program Files\SRS Labs
2014-11-26 21:17:07 ----A---- C:\Windows\system32\drivers\aswStm.sys
2014-11-26 21:17:06 ----A---- C:\Windows\system32\drivers\aswVmm.sys
2014-11-26 21:17:06 ----A---- C:\Windows\system32\drivers\aswSP.sys
2014-11-26 21:17:06 ----A---- C:\Windows\system32\drivers\aswRvrt.sys
2014-11-26 21:17:05 ----A---- C:\Windows\system32\drivers\aswRdr2.sys
2014-11-26 21:17:05 ----A---- C:\Windows\system32\drivers\aswMonFlt.sys
2014-11-26 21:17:05 ----A---- C:\Windows\system32\drivers\aswHwid.sys
2014-11-26 21:17:04 ----A---- C:\Windows\system32\drivers\aswsnx.sys
2014-11-26 21:17:03 ----A---- C:\Windows\system32\drivers\aswKbd.sys
2014-11-26 21:16:58 ----A---- C:\Windows\system32\aswBoot.exe
2014-11-26 21:16:50 ----A---- C:\Windows\avastSS.scr
2014-11-26 21:16:44 ----A---- C:\Windows\system32\drivers\aswNdisFlt.sys
2014-11-26 21:15:43 ----D---- C:\Users\Lukas\AppData\Roaming\IObit
2014-11-26 21:14:56 ----N---- C:\Windows\system32\MpSigStub.exe
2014-11-26 21:14:36 ----D---- C:\Users\Lukas\AppData\Roaming\WinRAR
2014-11-26 21:09:54 ----D---- C:\Program Files\AVAST Software
2014-11-26 21:08:54 ----D---- C:\ProgramData\AVAST Software
2014-11-26 21:02:10 ----D---- C:\Program Files\WinRAR
2014-11-26 21:00:28 ----D---- C:\Program Files (x86)\Google
2014-11-26 20:57:56 ----D---- C:\ProgramData\Adobe
2014-11-26 20:57:13 ----D---- C:\Program Files (x86)\Adobe
2014-11-26 20:56:59 ----D---- C:\Users\Lukas\AppData\Roaming\Macromedia
2014-11-26 20:56:59 ----D---- C:\Users\Lukas\AppData\Roaming\Adobe
2014-11-26 20:55:54 ----D---- C:\Program Files (x86)\ASUS
2014-11-26 20:53:35 ----D---- C:\Program Files\ATKGFNEX
2014-11-26 20:53:24 ----D---- C:\Users\Lukas\AppData\Roaming\InstallShield
2014-11-26 20:52:24 ----D---- C:\Windows\system32\SRSLabs
2014-11-26 20:52:04 ----N---- C:\Windows\difxapi.dll
2014-11-26 20:52:03 ----D---- C:\Program Files (x86)\VIA
2014-11-26 20:51:23 ----A---- C:\Windows\system32\drivers\athrx.sys
2014-11-26 20:51:10 ----A---- C:\Windows\Uninstvga.bat
2014-11-26 20:51:10 ----A---- C:\Windows\Uninstuxga.bat
2014-11-26 20:51:10 ----A---- C:\Windows\Uninstsxga.bat
2014-11-26 20:51:10 ----A---- C:\Windows\system32\drivers\snp2uvc.sys
2014-11-26 20:51:10 ----A---- C:\Windows\system32\drivers\sncduvc.sys
2014-11-26 20:51:10 ----A---- C:\Windows\DrvInst.exe
2014-11-26 20:49:51 ----D---- C:\Program Files\Elantech
2014-11-26 20:49:49 ----A---- C:\Windows\system32\drivers\ETD.sys
2014-11-26 20:48:09 ----RA---- C:\Windows\system32\athurx.sys
2014-11-26 20:48:09 ----D---- C:\Windows\Options
2014-11-26 20:48:09 ----A---- C:\Windows\system32\drivers\athurx.sys
2014-11-26 20:48:05 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2014-11-26 20:48:01 ----D---- C:\ProgramData\AmUStor
2014-11-26 20:47:59 ----D---- C:\Program Files (x86)\AmIcoSingLun
2014-11-26 20:47:44 ----D---- C:\ProgramData\TP-LINK
2014-11-26 20:47:22 ----SHD---- C:\Windows\Installer
2014-11-26 20:44:58 ----D---- C:\Program Files (x86)\Intel
2014-11-26 20:44:53 ----D---- C:\Program Files\Common Files\Intel
2014-11-26 20:44:01 ----A---- C:\Windows\SYSWOW64\oemdspif.dll
2014-11-26 20:44:01 ----A---- C:\Windows\SYSWOW64\igdumdx32.dll
2014-11-26 20:44:01 ----A---- C:\Windows\SYSWOW64\igdumd32.dll
2014-11-26 20:44:01 ----A---- C:\Windows\SYSWOW64\ig4dev32.dll
2014-11-26 20:44:01 ----A---- C:\Windows\system32\igfxsrvc.dll
2014-11-26 20:44:01 ----A---- C:\Windows\system32\igfxress.dll
2014-11-26 20:44:01 ----A---- C:\Windows\system32\igfxdev.dll
2014-11-26 20:44:01 ----A---- C:\Windows\system32\igfxCoIn_v1995.dll
2014-11-26 20:44:01 ----A---- C:\Windows\system32\ig4dev64.dll
2014-11-26 20:44:01 ----A---- C:\Windows\system32\hccutils.dll
2014-11-26 20:42:57 ----D---- C:\Intel
2014-11-26 20:41:22 ----A---- C:\Windows\system32\drivers\kbfiltr.sys
2014-11-26 20:33:57 ----D---- C:\Users\Lukas\AppData\Roaming\Identities
2014-11-26 20:33:24 ----SD---- C:\Users\Lukas\AppData\Roaming\Microsoft
2014-11-26 20:33:24 ----D---- C:\Users\Lukas\AppData\Roaming\Media Center Programs
2014-11-26 20:33:15 ----SHD---- C:\Recovery
2014-11-26 20:33:15 ----SHD---- C:\ProgramData\Šablony
2014-11-26 20:33:15 ----SHD---- C:\ProgramData\Plocha
2014-11-26 20:33:15 ----SHD---- C:\ProgramData\Oblíbené položky
2014-11-26 20:33:15 ----SHD---- C:\ProgramData\Nabídka Start
2014-11-26 20:33:15 ----SHD---- C:\ProgramData\Dokumenty
2014-11-26 20:33:15 ----SHD---- C:\ProgramData\Data aplikací
2014-11-26 20:30:08 ----D---- C:\Windows\SoftwareDistribution
2014-11-26 20:27:22 ----D---- C:\Windows\Prefetch
2014-11-26 20:27:02 ----ASH---- C:\pagefile.sys
2014-11-26 20:26:57 ----SHD---- C:\System Volume Information
2014-11-26 20:26:57 ----ASH---- C:\hiberfil.sys
======List of files/folders modified in the last 1 month======
2014-12-01 21:53:34 ----D---- C:\Windows\Temp
2014-12-01 21:53:28 ----RD---- C:\Program Files
2014-12-01 21:37:05 ----D---- C:\Windows\system32\config
2014-12-01 21:16:56 ----D---- C:\Windows
2014-12-01 21:15:44 ----D---- C:\Windows\Tasks
2014-12-01 21:15:44 ----D---- C:\Windows\system32\wfp
2014-12-01 21:15:42 ----D---- C:\Windows\system32\wbem
2014-12-01 21:14:58 ----D---- C:\Windows\system32\DriverStore
2014-12-01 21:14:58 ----D---- C:\Windows\system32\catroot2
2014-12-01 21:14:58 ----D---- C:\Windows\System32
2014-12-01 21:14:57 ----D---- C:\Windows\system32\Tasks
2014-12-01 21:14:57 ----D---- C:\Windows\system32\catroot
2014-12-01 21:14:55 ----D---- C:\Windows\inf
2014-12-01 21:14:51 ----D---- C:\Windows\registration
2014-12-01 21:14:41 ----HD---- C:\ProgramData
2014-12-01 21:14:40 ----RD---- C:\Program Files (x86)
2014-12-01 21:12:40 ----D---- C:\Windows\Logs
2014-12-01 17:57:55 ----D---- C:\Windows\system32\drivers
2014-12-01 17:40:19 ----D---- C:\Windows\Microsoft.NET
2014-12-01 13:55:13 ----RSD---- C:\Windows\assembly
2014-12-01 13:51:19 ----D---- C:\Windows\winsxs
2014-12-01 13:50:19 ----RSD---- C:\Windows\Fonts
2014-12-01 13:49:22 ----D---- C:\Windows\system32\wdi
2014-12-01 13:49:11 ----D---- C:\Windows\SysWOW64
2014-12-01 12:44:38 ----A---- C:\Windows\system32\PerfStringBackup.INI
2014-12-01 12:40:50 ----D---- C:\Windows\SYSWOW64\en-US
2014-12-01 12:40:49 ----D---- C:\Windows\system32\en-US
2014-12-01 12:22:45 ----D---- C:\Windows\system32\oobe
2014-12-01 12:22:45 ----D---- C:\Windows\Cursors
2014-12-01 12:22:43 ----RSD---- C:\Windows\Media
2014-11-30 16:53:41 ----D---- C:\Windows\LiveKernelReports
2014-11-26 20:58:43 ----SD---- C:\ProgramData\Microsoft
2014-11-26 20:58:18 ----D---- C:\Program Files (x86)\Common Files
2014-11-26 20:55:30 ----D---- C:\Windows\system32\drivers\UMDF
2014-11-26 20:47:35 ----D---- C:\Windows\system32\restore
2014-11-26 20:44:53 ----D---- C:\Program Files\Common Files
2014-11-26 20:41:32 ----D---- C:\Windows\system32\CodeIntegrity
2014-11-26 20:34:23 ----D---- C:\Windows\rescache
2014-11-26 20:33:50 ----SHD---- C:\$Recycle.Bin
2014-11-26 20:33:23 ----RD---- C:\Users
2014-11-26 20:33:15 ----D---- C:\Program Files\Windows NT
2014-11-26 20:33:03 ----D---- C:\Windows\debug
2014-11-26 20:30:43 ----D---- C:\Windows\system32\sysprep
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswNdisFlt;Avast! Firewall Driver; C:\Windows\system32\DRIVERS\aswNdisFlt.sys [2014-11-26 449936]
R0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2014-11-26 65776]
R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2014-11-26 267632]
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2009-08-06 408600]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2009-07-14 214096]
R0 speedfan;speedfan; C:\Windows\SysWOW64\speedfan.sys [2012-12-29 28664]
R1 aswKbd;aswKbd; C:\Windows\system32\drivers\aswKbd.sys [2014-11-26 28184]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2014-11-26 93568]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2014-11-26 1050432]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2014-11-26 436624]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2014-11-27 254528]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 ASMMAP64;ASMMAP64; \??\C:\Program Files\ATKGFNEX\ASMMAP64.sys [2007-07-24 14904]
R2 aswHwid;avast! HardwareID; C:\Windows\system32\drivers\aswHwid.sys [2014-11-26 29208]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2014-11-26 83280]
R2 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2014-11-26 116728]
R2 uxpatch;uxpatch; \??\C:\Windows\system32\drivers\uxpatch.sys [2009-07-13 30568]
R3 athur;Wireless Network Adapter Service; C:\Windows\system32\DRIVERS\athurx.sys [2010-01-05 1847296]
R3 ETD;ELAN PS/2 Port Input Device; C:\Windows\system32\DRIVERS\ETD.sys [2009-10-15 117760]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2012-11-14 10629408]
R3 kbfiltr;Keyboard Filter; C:\Windows\system32\DRIVERS\kbfiltr.sys [2009-07-20 15416]
R3 L1E;NDIS Miniport Driver for Atheros AR8121/AR8113/AR8114 PCI-E Ethernet Controller; C:\Windows\system32\DRIVERS\L1E62x64.sys [2014-12-01 64040]
R3 MTsensor;ATK0100 ACPI UTILITY; C:\Windows\system32\DRIVERS\ATK64AMD.sys [2009-05-13 15928]
R3 SNP2UVC;USB2.0 PC Camera (SNP2UVC); C:\Windows\system32\DRIVERS\snp2uvc.sys [2009-06-05 1806400]
R3 VIAHdAudAddService;VIA High Definition Audio Driver Service; C:\Windows\system32\drivers\viahduaa.sys [2014-05-28 688648]
S3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athrx.sys [2009-10-05 1542656]
S3 kgloapow;kgloapow; \??\C:\Users\Lukas\AppData\Local\Temp\kgloapow.sys []
S3 pciide;pciide; C:\Windows\system32\DRIVERS\pciide.sys [2009-07-14 12352]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2009-07-14 40448]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdvancedSystemCareService7;Advanced SystemCare Service 7; C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCService.exe [2013-12-09 881440]
R2 ASLDRService;ASLDR Service; C:\Program Files (x86)\ASUS\ATK Hotkey\ASLDRSrv.exe [2009-06-15 84536]
R2 ATKGFNEXSrv;ATKGFNEX Service; C:\Program Files\ATKGFNEX\GFNEXSrv.exe [2007-08-08 94208]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2014-11-26 50344]
R2 avast! Firewall;avast! Firewall; C:\Program Files\AVAST Software\Avast\afwServ.exe [2014-11-26 104416]
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2012-07-09 104912]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2012-07-08 123856]
R2 UnsignedThemes;Unsigned Themes; C:\Windows\UnsignedThemesSvc.exe [2009-07-13 24168]
R2 VIAKaraokeService;VIA Karaoke digital mixer Service; C:\Windows\system32\viakaraokesrv.exe [2012-12-11 27768]
S2 ADSMService;ADSM Service; C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ADSMSrv.exe []
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-11-26 107912]
S2 LiveUpdateSvc;LiveUpdate; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2013-12-03 2151200]
S2 MetroServ;WinMetro Service; C:\Program Files (x86)\UX Pack\WinMetro\MetroSvc.exe [2013-01-25 314176]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-11-26 107912]
S4 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2012-07-08 51648]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2012-07-09 139696]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2012-07-09 139696]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2012-07-09 139696]
-----------------EOF-----------------
Logfile of random's system information tool 1.10 (written by random/random)
Run by Lukas at 2014-12-01 21:53:27
Microsoft Windows 7 Home Premium
System drive C: has 37 GB (61%) free of 61 GB
Total RAM: 3037 MB (47% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 21:53:38, on 1.12.2014
Platform: Windows 7 (WinNT 6.00.3504)
MSIE: Internet Explorer v8.00 (8.00.7600.16385)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe
C:\Program Files (x86)\IObit\Advanced SystemCare 7\Monitor.exe
C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCTray.exe
C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe
C:\Program Files (x86)\ASUS\ATK Hotkey\HControlUser.exe
C:\Program Files (x86)\SpeedFan\speedfan.exe
C:\Program Files (x86)\ASUS\ATKOSD2\ATKOSD2.exe
C:\Program Files (x86)\ASUS\ATK Media\DMedia.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Program Files (x86)\Windows Media Player\wmplayer.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Lukas.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Advanced SystemCare Browser Protection - {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} - C:\PROGRA~2\IObit\SURFIN~1\BROWER~1\ASCPLU~1.DLL
O4 - HKLM\..\Run: [HControlUser] C:\Program Files (x86)\ASUS\ATK Hotkey\HControlUser.exe
O4 - HKLM\..\Run: [ATKOSD2] C:\Program Files (x86)\ASUS\ATKOSD2\ATKOSD2.exe
O4 - HKLM\..\Run: [ATKMEDIA] C:\Program Files (x86)\ASUS\ATK Media\DMedia.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [HDAudDeck] C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe -r
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [Advanced SystemCare 7] "C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCTray.exe" /Auto
O4 - HKCU\..\Run: [uTorrent] "C:\Users\Lukas\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [Clock Widget (HTC Home)] "C:\Program Files (x86)\HtcHome\Clock.exe"
O4 - HKCU\..\RunOnce: [121_212305652054] "C:\Users\Lukas\AppData\Local\LMIR0001.tmp_r.bat"
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Global Startup: SpeedFan.lnk = C:\Program Files (x86)\SpeedFan\speedfan.exe
O23 - Service: ADSM Service (ADSMService) - Unknown owner - C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ADSMSrv.exe (file missing)
O23 - Service: Advanced SystemCare Service 7 (AdvancedSystemCareService7) - IObit - C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: ASLDR Service (ASLDRService) - ASUS - C:\Program Files (x86)\ASUS\ATK Hotkey\ASLDRSrv.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - Unknown owner - C:\Program Files\ATKGFNEX\GFNEXSrv.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: avast! Firewall - AVAST Software - C:\Program Files\AVAST Software\Avast\afwServ.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: LiveUpdate (LiveUpdateSvc) - IObit - C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe
O23 - Service: WinMetro Service (MetroServ) - IObit - C:\Program Files (x86)\UX Pack\WinMetro\MetroSvc.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Unsigned Themes (UnsignedThemes) - The Within Network, LLC - C:\Windows\UnsignedThemesSvc.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: VIA Karaoke digital mixer Service (VIAKaraokeService) - Unknown owner - C:\Windows\system32\viakaraokesrv.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 8181 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
"C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCService.exe"
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\UnsignedThemesSvc.exe
C:\Windows\system32\AUDIODG.EXE 0x2ac
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files (x86)\ASUS\ATK Hotkey\ASLDRSrv.exe"
"C:\Program Files\ATKGFNEX\GFNEXSrv.exe"
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\ASUS\ATK Hotkey\HControl.exe"
Atouch64.exe
C:\Windows\System32\spoolsv.exe
"taskhost.exe"
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\AVAST Software\Avast\afwServ.exe"
taskeng.exe {38CCE00E-422B-43B6-A175-73FF042BFFA3}
"C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe"
"C:\Program Files (x86)\IObit\Advanced SystemCare 7\Monitor.exe"
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\system32\viakaraokesrv.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe"
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files\Elantech\ETDCtrl.exe"
"C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe" -r
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\System32\hkcmd.exe"
ATKOSD.exe
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files\Windows Sidebar\sidebar.exe" /autoRun
KBFiltr.exe
WDC.exe
"C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCTray.exe" /Auto
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
"C:\Program Files (x86)\HtcHome\Clock.exe"
"C:\Program Files (x86)\ASUS\ATK Hotkey\HControlUser.exe"
"C:\Program Files (x86)\SpeedFan\speedfan.exe"
"C:\Program Files (x86)\ASUS\ATKOSD2\ATKOSD2.exe"
"C:\Program Files (x86)\ASUS\ATK Media\DMedia.exe"
"C:\Program Files\AVAST Software\Avast\avastui.exe" /nogui
"C:\Program Files (x86)\Windows Media Player\wmplayer.exe" /Play -Embedding
C:\Windows\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="5056.0.328979802\1760101181" --disable-d3d11 --supports-dual-gpus=false --gpu-driver-bug-workarounds=1,6,17,38 --gpu-vendor-id=0x8086 --gpu-device-id=0x2a42 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=8.15.10.2869 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/DomRel-Enable/enable/EmbeddedSearch/Group6 pct:10f stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/Bootstrap/ExtensionInstallVerification/Enforce/GoogleNow/Enable/NewProfileManagement/OldAvatarMenu/OmniboxBundledExperimentV1/NewSuggestType_A5_Stable_R2/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/RapporRollout/Enabled/RememberCertificateErrorDecisions/Default/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_06/UMA-Uniformity-Trial-1-Percent/group_13/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_10/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="5056.2.1108673502\79735843" /prefetch:673131151
C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/DomRel-Enable/enable/EmbeddedSearch/Group6 pct:10f stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/Bootstrap/ExtensionInstallVerification/Enforce/GoogleNow/Enable/NewProfileManagement/OldAvatarMenu/OmniboxBundledExperimentV1/NewSuggestType_A5_Stable_R2/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/RapporRollout/Enabled/RememberCertificateErrorDecisions/Default/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_06/UMA-Uniformity-Trial-1-Percent/group_13/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_10/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="5056.5.129977902\1210177994" /prefetch:673131151
C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
C:\Windows\system32\sppsvc.exe
C:\Windows\System32\svchost.exe -k secsvcs
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/DomRel-Enable/enable/EmbeddedSearch/Group6 pct:10f stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/Bootstrap/ExtensionInstallVerification/Enforce/GoogleNow/Enable/NewProfileManagement/OldAvatarMenu/OmniboxBundledExperimentV1/NewSuggestType_A5_Stable_R2/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/RapporRollout/Enabled/RememberCertificateErrorDecisions/Default/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_06/UMA-Uniformity-Trial-1-Percent/group_13/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_10/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="5056.18.485796248\1829456349" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/DomRel-Enable/enable/EmbeddedSearch/Group6 pct:10f stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/Bootstrap/ExtensionInstallVerification/Enforce/GoogleNow/Enable/NewProfileManagement/OldAvatarMenu/OmniboxBundledExperimentV1/NewSuggestType_A5_Stable_R2/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/RapporRollout/Enabled/RememberCertificateErrorDecisions/Default/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_06/UMA-Uniformity-Trial-1-Percent/group_13/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_10/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="5056.21.1099759362\1491629230" /prefetch:673131151
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe6_ Global\UsGthrCtrlFltPipeMssGthrPipe6 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 508 512 520 65536 516
"C:\Users\Lukas\Downloads\RSITx64.exe"
======Scheduled tasks folder======
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{10921475-03CE-4E04-90CE-E2E7EF20C814}]
ExplorerWnd Helper - C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer64.dll [2014-11-26 2486592]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2014-11-26 705448]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2008-06-11 75128]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-11-26 586968]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6}]
Advanced SystemCare Browser Protection - C:\PROGRA~2\IObit\SURFIN~1\BROWER~1\ASCPLU~1.DLL [2013-11-25 665408]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{32099AAC-C132-4136-9E9A-4E364A424E17}
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"AmIcoSinglun64"=C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe [2009-09-01 323584]
"ETDWare"=C:\Program Files\Elantech\ETDCtrl.exe [2009-09-30 621440]
"HDAudDeck"=C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe [2014-05-27 4688048]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2012-11-14 163360]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2012-11-14 387616]
"Persistence"=C:\Windows\system32\igfxpers.exe [2012-11-14 418336]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2009-07-14 1475072]
"Advanced SystemCare 7"=C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCTray.exe [2013-12-09 2285344]
"uTorrent"=C:\Users\Lukas\AppData\Roaming\uTorrent\uTorrent.exe [2014-11-26 1680464]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2011-01-20 1305408]
"Clock Widget (HTC Home)"=C:\Program Files (x86)\HtcHome\Clock.exe [2011-11-28 2036736]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"121_212305652054"=C:\Users\Lukas\AppData\Local\LMIR0001.tmp_r.bat [2014-12-01 331]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\UX Launcher]
C:\Program Files (x86)\UX Pack\uxlaunch.exe [2013-03-20 236802]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^SRS Premium Sound.lnk]
C:\Windows\Installer\{E5CF6B9C-3ABE-43C9-9413-AD5FFC98F049}\NewShortcut5_21C7B668029A47458B27645FE6E4A715.exe [2014-11-26 156952]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"HControlUser"=C:\Program Files (x86)\ASUS\ATK Hotkey\HControlUser.exe [2009-06-19 105016]
"ATKOSD2"=C:\Program Files (x86)\ASUS\ATKOSD2\ATKOSD2.exe [2009-08-17 6859392]
"ATKMEDIA"=C:\Program Files (x86)\ASUS\ATK Media\DMedia.exe [2009-08-19 170624]
"Adobe Reader Speed Launcher"=C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe [2008-12-03 35184]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2014-11-26 5226600]
"HDAudDeck"=C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe [2014-05-27 4688048]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
SpeedFan.lnk - C:\Program Files (x86)\SpeedFan\speedfan.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2012-11-14 272384]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"SoftwareSASGeneration"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2014-12-01 21:53:28 ----D---- C:\Program Files\trend micro
2014-12-01 21:53:27 ----D---- C:\rsit
2014-12-01 19:52:35 ----D---- C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-12-01 19:35:19 ----D---- C:\Windows\system32\log
2014-12-01 19:27:32 ----D---- C:\Users\Lukas\AppData\Roaming\Malwarebytes
2014-12-01 19:27:25 ----D---- C:\ProgramData\Malwarebytes
2014-12-01 19:27:21 ----D---- C:\Program Files (x86)\Malwarebytes' Anti-Malware
2014-12-01 18:08:16 ----D---- C:\ProgramData\DriverGenius
2014-12-01 18:01:03 ----D---- C:\Users\Lukas\AppData\Roaming\Driver-Soft
2014-12-01 17:57:42 ----A---- C:\Windows\system32\drivers\L1E62x64.sys
2014-12-01 15:58:36 ----D---- C:\Program Files (x86)\HtcHome
2014-12-01 13:53:39 ----D---- C:\Windows\pss
2014-12-01 12:44:17 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2014-12-01 12:40:02 ----D---- C:\Program Files (x86)\Microsoft.NET
2014-12-01 12:38:27 ----A---- C:\Windows\SYSWOW64\PresentationHostProxy.dll
2014-12-01 12:38:27 ----A---- C:\Windows\SYSWOW64\PresentationHost.exe
2014-12-01 12:38:26 ----A---- C:\Windows\SYSWOW64\mscoree.dll
2014-12-01 12:38:23 ----A---- C:\Windows\SYSWOW64\netfxperf.dll
2014-12-01 12:38:23 ----A---- C:\Windows\SYSWOW64\dfshim.dll
2014-12-01 12:38:22 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2014-12-01 12:38:22 ----A---- C:\Windows\system32\PresentationHost.exe
2014-12-01 12:38:22 ----A---- C:\Windows\system32\netfxperf.dll
2014-12-01 12:38:22 ----A---- C:\Windows\system32\mscoree.dll
2014-12-01 12:38:21 ----A---- C:\Windows\system32\dfshim.dll
2014-12-01 12:24:10 ----A---- C:\Windows\system32\stobject.dll
2014-12-01 12:24:07 ----A---- C:\Windows\system32\SndVolSSO.dll
2014-12-01 12:24:05 ----A---- C:\Windows\system32\shell32.dll
2014-12-01 12:24:02 ----A---- C:\Windows\system32\pnidui.dll
2014-12-01 12:23:40 ----A---- C:\Windows\system32\imageres.dll
2014-12-01 12:23:39 ----A---- C:\Windows\system32\ExplorerFrame.dll
2014-12-01 12:23:37 ----A---- C:\Windows\system32\batmeter.dll
2014-12-01 12:23:35 ----A---- C:\Windows\system32\authui.dll
2014-12-01 12:23:30 ----D---- C:\Windows\UXBackup
2014-12-01 12:23:30 ----A---- C:\Windows\explorer.exe
2014-12-01 12:22:05 ----D---- C:\Program Files (x86)\UX Pack
2014-12-01 12:22:04 ----A---- C:\Windows\SYSWOW64\moveex.exe
2014-11-27 16:24:19 ----A---- C:\Windows\SYSWOW64\CmdLineExt.dll
2014-11-27 16:07:19 ----D---- C:\Program Files (x86)\Rockstar Games
2014-11-27 16:02:19 ----A---- C:\Windows\system32\drivers\dtsoftbus01.sys
2014-11-27 16:01:46 ----D---- C:\Program Files (x86)\DAEMON Tools Toolbar
2014-11-27 16:01:38 ----D---- C:\Program Files (x86)\DAEMON Tools Lite
2014-11-27 16:01:28 ----D---- C:\Users\Lukas\AppData\Roaming\DAEMON Tools Lite
2014-11-27 16:01:28 ----D---- C:\ProgramData\DAEMON Tools Lite
2014-11-27 08:41:55 ----A---- C:\Windows\SYSWOW64\CSVer.dll
2014-11-27 05:26:33 ----D---- C:\Windows\Panther
2014-11-27 05:26:28 ----RASH---- C:\BOOTSECT.BAK
2014-11-27 05:26:26 ----SHD---- C:\Boot
2014-11-27 01:58:02 ----A---- C:\Windows\SYSWOW64\fmcodec.DLL
2014-11-27 01:21:43 ----D---- C:\Program Files (x86)\DsNET Corp
2014-11-27 01:13:36 ----D---- C:\Program Files (x86)\SpeedFan
2014-11-27 00:21:23 ----D---- C:\ProgramData\Ad Muncher
2014-11-27 00:21:23 ----D---- C:\Program Files (x86)\Ad Muncher
2014-11-26 23:36:55 ----D---- C:\Program Files\VIA
2014-11-26 23:36:44 ----A---- C:\Windows\SYSWOW64\VMAPO32.DLL
2014-11-26 23:36:44 ----A---- C:\Windows\system32\VMAPO64.DLL
2014-11-26 23:36:44 ----A---- C:\Windows\system32\VIAPropPageExt.dll
2014-11-26 23:36:44 ----A---- C:\Windows\system32\ViaMicArrayAPO.dll
2014-11-26 23:36:44 ----A---- C:\Windows\system32\nQPropPageExt.dll
2014-11-26 23:36:44 ----A---- C:\Windows\system32\nQAPO.dll
2014-11-26 23:36:44 ----A---- C:\Windows\system32\MaxxAudioAPOShell64.dll
2014-11-26 23:36:44 ----A---- C:\Windows\system32\Dts2PropPageExt.dll
2014-11-26 23:36:43 ----A---- C:\Windows\system32\VtSrdAPO.dll
2014-11-26 23:36:43 ----A---- C:\Windows\system32\VIASysFx.dll
2014-11-26 23:36:43 ----A---- C:\Windows\system32\ViaMicArrayPropPageExt.dll
2014-11-26 23:36:43 ----A---- C:\Windows\system32\ViakaraokeSrv.exe
2014-11-26 23:36:43 ----A---- C:\Windows\system32\ViaKaraokeApo.dll
2014-11-26 23:36:43 ----A---- C:\Windows\system32\MaxxAudioVnA64.dll
2014-11-26 23:36:43 ----A---- C:\Windows\system32\MaxxAudioAPO30.dll
2014-11-26 23:36:43 ----A---- C:\Windows\system32\drivers\VMfilt64.sys
2014-11-26 23:36:43 ----A---- C:\Windows\system32\drivers\viahduaa.sys
2014-11-26 23:36:42 ----A---- C:\Windows\system32\WavesGUILib64.dll
2014-11-26 23:36:42 ----A---- C:\Windows\system32\VMPPLD64.DLL
2014-11-26 23:36:42 ----A---- C:\Windows\system32\VMPPCN64.DLL
2014-11-26 23:36:42 ----A---- C:\Windows\system32\VMAPO264.DLL
2014-11-26 23:36:42 ----A---- C:\Windows\system32\ViaKaraokePropPageExt.dll
2014-11-26 23:36:42 ----A---- C:\Windows\system32\Dts2APO.dll
2014-11-26 23:36:41 ----A---- C:\Windows\SYSWOW64\VMTHX32.DLL
2014-11-26 23:36:41 ----A---- C:\Windows\SYSWOW64\VMAPO232.DLL
2014-11-26 23:36:41 ----A---- C:\Windows\system32\VMWRP64.DLL
2014-11-26 23:36:41 ----A---- C:\Windows\system32\VMTHX64.DLL
2014-11-26 23:36:41 ----A---- C:\Windows\system32\PropPageExt.dll
2014-11-26 23:36:41 ----A---- C:\Windows\system32\EEL64A.dll
2014-11-26 23:36:41 ----A---- C:\Windows\system32\EEG64H.dll
2014-11-26 23:36:41 ----A---- C:\Windows\system32\EEG64A.dll
2014-11-26 23:36:41 ----A---- C:\Windows\system32\EED64H.dll
2014-11-26 23:36:41 ----A---- C:\Windows\system32\EED64A.dll
2014-11-26 23:36:41 ----A---- C:\Windows\system32\EEA64H.dll
2014-11-26 23:36:41 ----A---- C:\Windows\system32\EEA64A.dll
2014-11-26 23:36:40 ----A---- C:\Windows\system32\EEP64H.dll
2014-11-26 23:36:40 ----A---- C:\Windows\system32\EEL64H.dll
2014-11-26 23:36:33 ----A---- C:\Windows\SetupTemp.ini
2014-11-26 23:30:35 ----A---- C:\Windows\system32\EEP64A.dll
2014-11-26 22:58:44 ----D---- C:\Program Files (x86)\Driver-Soft
2014-11-26 22:32:21 ----D---- C:\Program Files (x86)\Realtek
2014-11-26 22:32:19 ----HD---- C:\Program Files (x86)\Temp
2014-11-26 21:43:38 ----D---- C:\ProgramData\APN
2014-11-26 21:42:45 ----D---- C:\Users\Lukas\AppData\Roaming\uTorrent
2014-11-26 21:21:36 ----D---- C:\Users\Lukas\AppData\Roaming\Apple Computer
2014-11-26 21:21:23 ----D---- C:\ProgramData\ProductData
2014-11-26 21:21:22 ----D---- C:\ProgramData\{3C5CBD7B-3D1D-411E-96C2-513FFCA84D2D}
2014-11-26 21:21:13 ----D---- C:\ProgramData\IObit
2014-11-26 21:20:52 ----D---- C:\Program Files (x86)\IObit
2014-11-26 21:18:43 ----D---- C:\Users\Lukas\AppData\Roaming\AVAST Software
2014-11-26 21:17:39 ----D---- C:\Program Files\SRS Labs
2014-11-26 21:17:07 ----A---- C:\Windows\system32\drivers\aswStm.sys
2014-11-26 21:17:06 ----A---- C:\Windows\system32\drivers\aswVmm.sys
2014-11-26 21:17:06 ----A---- C:\Windows\system32\drivers\aswSP.sys
2014-11-26 21:17:06 ----A---- C:\Windows\system32\drivers\aswRvrt.sys
2014-11-26 21:17:05 ----A---- C:\Windows\system32\drivers\aswRdr2.sys
2014-11-26 21:17:05 ----A---- C:\Windows\system32\drivers\aswMonFlt.sys
2014-11-26 21:17:05 ----A---- C:\Windows\system32\drivers\aswHwid.sys
2014-11-26 21:17:04 ----A---- C:\Windows\system32\drivers\aswsnx.sys
2014-11-26 21:17:03 ----A---- C:\Windows\system32\drivers\aswKbd.sys
2014-11-26 21:16:58 ----A---- C:\Windows\system32\aswBoot.exe
2014-11-26 21:16:50 ----A---- C:\Windows\avastSS.scr
2014-11-26 21:16:44 ----A---- C:\Windows\system32\drivers\aswNdisFlt.sys
2014-11-26 21:15:43 ----D---- C:\Users\Lukas\AppData\Roaming\IObit
2014-11-26 21:14:56 ----N---- C:\Windows\system32\MpSigStub.exe
2014-11-26 21:14:36 ----D---- C:\Users\Lukas\AppData\Roaming\WinRAR
2014-11-26 21:09:54 ----D---- C:\Program Files\AVAST Software
2014-11-26 21:08:54 ----D---- C:\ProgramData\AVAST Software
2014-11-26 21:02:10 ----D---- C:\Program Files\WinRAR
2014-11-26 21:00:28 ----D---- C:\Program Files (x86)\Google
2014-11-26 20:57:56 ----D---- C:\ProgramData\Adobe
2014-11-26 20:57:13 ----D---- C:\Program Files (x86)\Adobe
2014-11-26 20:56:59 ----D---- C:\Users\Lukas\AppData\Roaming\Macromedia
2014-11-26 20:56:59 ----D---- C:\Users\Lukas\AppData\Roaming\Adobe
2014-11-26 20:55:54 ----D---- C:\Program Files (x86)\ASUS
2014-11-26 20:53:35 ----D---- C:\Program Files\ATKGFNEX
2014-11-26 20:53:24 ----D---- C:\Users\Lukas\AppData\Roaming\InstallShield
2014-11-26 20:52:24 ----D---- C:\Windows\system32\SRSLabs
2014-11-26 20:52:04 ----N---- C:\Windows\difxapi.dll
2014-11-26 20:52:03 ----D---- C:\Program Files (x86)\VIA
2014-11-26 20:51:23 ----A---- C:\Windows\system32\drivers\athrx.sys
2014-11-26 20:51:10 ----A---- C:\Windows\Uninstvga.bat
2014-11-26 20:51:10 ----A---- C:\Windows\Uninstuxga.bat
2014-11-26 20:51:10 ----A---- C:\Windows\Uninstsxga.bat
2014-11-26 20:51:10 ----A---- C:\Windows\system32\drivers\snp2uvc.sys
2014-11-26 20:51:10 ----A---- C:\Windows\system32\drivers\sncduvc.sys
2014-11-26 20:51:10 ----A---- C:\Windows\DrvInst.exe
2014-11-26 20:49:51 ----D---- C:\Program Files\Elantech
2014-11-26 20:49:49 ----A---- C:\Windows\system32\drivers\ETD.sys
2014-11-26 20:48:09 ----RA---- C:\Windows\system32\athurx.sys
2014-11-26 20:48:09 ----D---- C:\Windows\Options
2014-11-26 20:48:09 ----A---- C:\Windows\system32\drivers\athurx.sys
2014-11-26 20:48:05 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2014-11-26 20:48:01 ----D---- C:\ProgramData\AmUStor
2014-11-26 20:47:59 ----D---- C:\Program Files (x86)\AmIcoSingLun
2014-11-26 20:47:44 ----D---- C:\ProgramData\TP-LINK
2014-11-26 20:47:22 ----SHD---- C:\Windows\Installer
2014-11-26 20:44:58 ----D---- C:\Program Files (x86)\Intel
2014-11-26 20:44:53 ----D---- C:\Program Files\Common Files\Intel
2014-11-26 20:44:01 ----A---- C:\Windows\SYSWOW64\oemdspif.dll
2014-11-26 20:44:01 ----A---- C:\Windows\SYSWOW64\igdumdx32.dll
2014-11-26 20:44:01 ----A---- C:\Windows\SYSWOW64\igdumd32.dll
2014-11-26 20:44:01 ----A---- C:\Windows\SYSWOW64\ig4dev32.dll
2014-11-26 20:44:01 ----A---- C:\Windows\system32\igfxsrvc.dll
2014-11-26 20:44:01 ----A---- C:\Windows\system32\igfxress.dll
2014-11-26 20:44:01 ----A---- C:\Windows\system32\igfxdev.dll
2014-11-26 20:44:01 ----A---- C:\Windows\system32\igfxCoIn_v1995.dll
2014-11-26 20:44:01 ----A---- C:\Windows\system32\ig4dev64.dll
2014-11-26 20:44:01 ----A---- C:\Windows\system32\hccutils.dll
2014-11-26 20:42:57 ----D---- C:\Intel
2014-11-26 20:41:22 ----A---- C:\Windows\system32\drivers\kbfiltr.sys
2014-11-26 20:33:57 ----D---- C:\Users\Lukas\AppData\Roaming\Identities
2014-11-26 20:33:24 ----SD---- C:\Users\Lukas\AppData\Roaming\Microsoft
2014-11-26 20:33:24 ----D---- C:\Users\Lukas\AppData\Roaming\Media Center Programs
2014-11-26 20:33:15 ----SHD---- C:\Recovery
2014-11-26 20:33:15 ----SHD---- C:\ProgramData\Šablony
2014-11-26 20:33:15 ----SHD---- C:\ProgramData\Plocha
2014-11-26 20:33:15 ----SHD---- C:\ProgramData\Oblíbené položky
2014-11-26 20:33:15 ----SHD---- C:\ProgramData\Nabídka Start
2014-11-26 20:33:15 ----SHD---- C:\ProgramData\Dokumenty
2014-11-26 20:33:15 ----SHD---- C:\ProgramData\Data aplikací
2014-11-26 20:30:08 ----D---- C:\Windows\SoftwareDistribution
2014-11-26 20:27:22 ----D---- C:\Windows\Prefetch
2014-11-26 20:27:02 ----ASH---- C:\pagefile.sys
2014-11-26 20:26:57 ----SHD---- C:\System Volume Information
2014-11-26 20:26:57 ----ASH---- C:\hiberfil.sys
======List of files/folders modified in the last 1 month======
2014-12-01 21:53:34 ----D---- C:\Windows\Temp
2014-12-01 21:53:28 ----RD---- C:\Program Files
2014-12-01 21:37:05 ----D---- C:\Windows\system32\config
2014-12-01 21:16:56 ----D---- C:\Windows
2014-12-01 21:15:44 ----D---- C:\Windows\Tasks
2014-12-01 21:15:44 ----D---- C:\Windows\system32\wfp
2014-12-01 21:15:42 ----D---- C:\Windows\system32\wbem
2014-12-01 21:14:58 ----D---- C:\Windows\system32\DriverStore
2014-12-01 21:14:58 ----D---- C:\Windows\system32\catroot2
2014-12-01 21:14:58 ----D---- C:\Windows\System32
2014-12-01 21:14:57 ----D---- C:\Windows\system32\Tasks
2014-12-01 21:14:57 ----D---- C:\Windows\system32\catroot
2014-12-01 21:14:55 ----D---- C:\Windows\inf
2014-12-01 21:14:51 ----D---- C:\Windows\registration
2014-12-01 21:14:41 ----HD---- C:\ProgramData
2014-12-01 21:14:40 ----RD---- C:\Program Files (x86)
2014-12-01 21:12:40 ----D---- C:\Windows\Logs
2014-12-01 17:57:55 ----D---- C:\Windows\system32\drivers
2014-12-01 17:40:19 ----D---- C:\Windows\Microsoft.NET
2014-12-01 13:55:13 ----RSD---- C:\Windows\assembly
2014-12-01 13:51:19 ----D---- C:\Windows\winsxs
2014-12-01 13:50:19 ----RSD---- C:\Windows\Fonts
2014-12-01 13:49:22 ----D---- C:\Windows\system32\wdi
2014-12-01 13:49:11 ----D---- C:\Windows\SysWOW64
2014-12-01 12:44:38 ----A---- C:\Windows\system32\PerfStringBackup.INI
2014-12-01 12:40:50 ----D---- C:\Windows\SYSWOW64\en-US
2014-12-01 12:40:49 ----D---- C:\Windows\system32\en-US
2014-12-01 12:22:45 ----D---- C:\Windows\system32\oobe
2014-12-01 12:22:45 ----D---- C:\Windows\Cursors
2014-12-01 12:22:43 ----RSD---- C:\Windows\Media
2014-11-30 16:53:41 ----D---- C:\Windows\LiveKernelReports
2014-11-26 20:58:43 ----SD---- C:\ProgramData\Microsoft
2014-11-26 20:58:18 ----D---- C:\Program Files (x86)\Common Files
2014-11-26 20:55:30 ----D---- C:\Windows\system32\drivers\UMDF
2014-11-26 20:47:35 ----D---- C:\Windows\system32\restore
2014-11-26 20:44:53 ----D---- C:\Program Files\Common Files
2014-11-26 20:41:32 ----D---- C:\Windows\system32\CodeIntegrity
2014-11-26 20:34:23 ----D---- C:\Windows\rescache
2014-11-26 20:33:50 ----SHD---- C:\$Recycle.Bin
2014-11-26 20:33:23 ----RD---- C:\Users
2014-11-26 20:33:15 ----D---- C:\Program Files\Windows NT
2014-11-26 20:33:03 ----D---- C:\Windows\debug
2014-11-26 20:30:43 ----D---- C:\Windows\system32\sysprep
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswNdisFlt;Avast! Firewall Driver; C:\Windows\system32\DRIVERS\aswNdisFlt.sys [2014-11-26 449936]
R0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2014-11-26 65776]
R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2014-11-26 267632]
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2009-08-06 408600]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2009-07-14 214096]
R0 speedfan;speedfan; C:\Windows\SysWOW64\speedfan.sys [2012-12-29 28664]
R1 aswKbd;aswKbd; C:\Windows\system32\drivers\aswKbd.sys [2014-11-26 28184]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2014-11-26 93568]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2014-11-26 1050432]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2014-11-26 436624]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2014-11-27 254528]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 ASMMAP64;ASMMAP64; \??\C:\Program Files\ATKGFNEX\ASMMAP64.sys [2007-07-24 14904]
R2 aswHwid;avast! HardwareID; C:\Windows\system32\drivers\aswHwid.sys [2014-11-26 29208]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2014-11-26 83280]
R2 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2014-11-26 116728]
R2 uxpatch;uxpatch; \??\C:\Windows\system32\drivers\uxpatch.sys [2009-07-13 30568]
R3 athur;Wireless Network Adapter Service; C:\Windows\system32\DRIVERS\athurx.sys [2010-01-05 1847296]
R3 ETD;ELAN PS/2 Port Input Device; C:\Windows\system32\DRIVERS\ETD.sys [2009-10-15 117760]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2012-11-14 10629408]
R3 kbfiltr;Keyboard Filter; C:\Windows\system32\DRIVERS\kbfiltr.sys [2009-07-20 15416]
R3 L1E;NDIS Miniport Driver for Atheros AR8121/AR8113/AR8114 PCI-E Ethernet Controller; C:\Windows\system32\DRIVERS\L1E62x64.sys [2014-12-01 64040]
R3 MTsensor;ATK0100 ACPI UTILITY; C:\Windows\system32\DRIVERS\ATK64AMD.sys [2009-05-13 15928]
R3 SNP2UVC;USB2.0 PC Camera (SNP2UVC); C:\Windows\system32\DRIVERS\snp2uvc.sys [2009-06-05 1806400]
R3 VIAHdAudAddService;VIA High Definition Audio Driver Service; C:\Windows\system32\drivers\viahduaa.sys [2014-05-28 688648]
S3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athrx.sys [2009-10-05 1542656]
S3 kgloapow;kgloapow; \??\C:\Users\Lukas\AppData\Local\Temp\kgloapow.sys []
S3 pciide;pciide; C:\Windows\system32\DRIVERS\pciide.sys [2009-07-14 12352]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2009-07-14 40448]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdvancedSystemCareService7;Advanced SystemCare Service 7; C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCService.exe [2013-12-09 881440]
R2 ASLDRService;ASLDR Service; C:\Program Files (x86)\ASUS\ATK Hotkey\ASLDRSrv.exe [2009-06-15 84536]
R2 ATKGFNEXSrv;ATKGFNEX Service; C:\Program Files\ATKGFNEX\GFNEXSrv.exe [2007-08-08 94208]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2014-11-26 50344]
R2 avast! Firewall;avast! Firewall; C:\Program Files\AVAST Software\Avast\afwServ.exe [2014-11-26 104416]
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2012-07-09 104912]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2012-07-08 123856]
R2 UnsignedThemes;Unsigned Themes; C:\Windows\UnsignedThemesSvc.exe [2009-07-13 24168]
R2 VIAKaraokeService;VIA Karaoke digital mixer Service; C:\Windows\system32\viakaraokesrv.exe [2012-12-11 27768]
S2 ADSMService;ADSM Service; C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ADSMSrv.exe []
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-11-26 107912]
S2 LiveUpdateSvc;LiveUpdate; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2013-12-03 2151200]
S2 MetroServ;WinMetro Service; C:\Program Files (x86)\UX Pack\WinMetro\MetroSvc.exe [2013-01-25 314176]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-11-26 107912]
S4 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2012-07-08 51648]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2012-07-09 139696]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2012-07-09 139696]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2012-07-09 139696]
-----------------EOF-----------------