Zatížení ntb, prosím o kontrolu logu
Napsal: 30 bře 2015 20:42
Dobrý den, v poslední době mám problém s notebookem. Seká se, je zpomalený, při otevření správce úloh zjišťuji, že mám vysoké zatížení disku, RAMek a procesoru. Nedávno jsem dávala ntb do reklamace s tím, že se daný problém vyřeší a nevyřešil se. Proto prosím o kontrolu logu a postup jak se zbavit havěti. Děkuji
Logfile of random's system information tool 1.10 (written by random/random)
Run by Kateřina at 2015-03-30 21:20:54
Microsoft Windows 8
System drive C: has 232 GB (91%) free of 256 GB
Total RAM: 1893 MB (11% free)
HijackThis download failed
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
C:\windows\system32\services.exe
C:\windows\system32\lsass.exe
C:\windows\system32\svchost.exe -k DcomLaunch
C:\windows\system32\svchost.exe -k RPCSS
C:\windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\windows\system32\svchost.exe -k netsvcs
C:\windows\system32\svchost.exe -k LocalService
C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\windows\system32\svchost.exe -k NetworkService
C:\windows\System32\spoolsv.exe
C:\windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
dashost.exe {80c0e5c2-5698-4d94-bec00caf3a452d9f}
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\windows\system32\mfevtps.exe"
"C:\Program Files\McAfee\MSC\McAPExe.exe"
"C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe"
"C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe"
C:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-cc1148b2-1367-4164-8d90-c24fdc549623 -SystemEventPortName:HostProcess-9d93899a-e778-47a0-a809-89f509355285 -IoCancelEventPortName:HostProcess-d0ae27a0-3bdc-4884-832d-b5201eeb7625 -NonStateChangingEventPortName:HostProcess-d2347e95-51b6-4b57-8776-5151c0cfde3d -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:5a88526f-c309-4abb-8c18-bbcf8b0b2273 -DeviceGroupId:WudfDefaultDevicePool
C:\windows\System32\svchost.exe -k LocalServicePeerNet
C:\windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\windows\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
C:\windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe" /McCoreSvc
C:\PROGRA~1\McAfee\MSM\McSmtFwk.exe {CF10C3DD-7FC1-476f-8546-A12D7DA24BBF}|{327c188b-e480-4b8d-aebb-24ef3878f8e5}
"C:\Program Files\Bonjour\mDNSResponder.exe"
"C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe"
"C:\Program Files\iPod\bin\iPodService.exe"
C:\windows\system32\svchost.exe -k imgsvc
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\windows\System32\WinLogon.exe -SpecialSession
-hiberboot
taskhostex.exe
C:\windows\Explorer.EXE
"C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16.4.4206.722_x64__8wekyb3d8bbwe\LiveComm.exe" -ServerName:Microsoft.WindowsLive.Platform.Server
C:\windows\WinStore\WSHost.exe -Embedding
"C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe"
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /FORPCEE4
"C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe"
"C:\Program Files\Elantech\ETDCtrl.exe"
"C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe"
"C:\Program Files (x86)\Lenovo\Energy Management\utility.exe"
"C:\Program Files\iTunes\iTunesHelper.exe"
"C:\Program Files\Elantech\ETDCtrlHelper.exe"
"C:\Program Files\Elantech\ETDIntelligent.exe"
"C:\Program Files (x86)\Dolby Advanced Audio v2\pcee4.exe" -autostart
"C:\Program Files (x86)\Lenovo EasyCamera\Monitor.exe"
"C:\Program Files (x86)\Lenovo\YouCam\YouCamTray.exe" /s
"C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe"
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="2448.0.782921818\485870226" --supports-dual-gpus=false --gpu-driver-bug-workarounds=1,18,40 --gpu-vendor-id=0x8086 --gpu-device-id=0x0106 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=9.17.10.2843 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/CTRequiredForEVTrial/RequirementEnforced/ChromeSuggestions/Default/DomRel-Enable/enable/EmbeddedSearch/Group1 pct:10a stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnhancedBookmarks/Default/ExtensionContentVerification/Enforce/ExtensionInstallVerification/Enforce/GoogleNow/Enable/NewProfileManagement/Enabled/OmniboxBundledExperimentV1/Unused_6/PasswordGeneration/Disabled/QUIC/Enabled/RememberCertificateErrorDecisions/Default/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-Population-Restrict/normal/UMA-Uniformity-Trial-1-Percent/group_04/UMA-Uniformity-Trial-10-Percent/default/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_02/UMA-Uniformity-Trial-50-Percent/group_01/UwSInterstitialStatus/On/VoiceTrigger/Install/WebRTC-IPv6Default/Disabled/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --font-cache-shared-mem-suffix=2448 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=1 --channel="2448.2.1825405240\1536752994" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/CTRequiredForEVTrial/RequirementEnforced/ChromeSuggestions/Default/DomRel-Enable/enable/EmbeddedSearch/Group1 pct:10a stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnhancedBookmarks/Default/ExtensionContentVerification/Enforce/ExtensionInstallVerification/Enforce/GoogleNow/Enable/NewProfileManagement/Enabled/OmniboxBundledExperimentV1/Unused_6/PasswordGeneration/Disabled/QUIC/Enabled/RefreshTokenDeviceId/Disabled/RememberCertificateErrorDecisions/Default/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-Population-Restrict/normal/UMA-Uniformity-Trial-1-Percent/group_04/UMA-Uniformity-Trial-10-Percent/default/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_02/UMA-Uniformity-Trial-50-Percent/group_01/UwSInterstitialStatus/On/VoiceTrigger/Install/WebRTC-IPv6Default/Disabled/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --font-cache-shared-mem-suffix=2448 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=1 --channel="2448.3.1777468078\1475722932" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/CTRequiredForEVTrial/RequirementEnforced/ChromeSuggestions/Default/DomRel-Enable/enable/EmbeddedSearch/Group1 pct:10a stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnhancedBookmarks/Default/ExtensionContentVerification/Enforce/ExtensionInstallVerification/Enforce/GoogleNow/Enable/NewProfileManagement/Enabled/OmniboxBundledExperimentV1/Unused_6/PasswordGeneration/Disabled/QUIC/Enabled/RefreshTokenDeviceId/Disabled/RememberCertificateErrorDecisions/Default/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-Population-Restrict/normal/UMA-Uniformity-Trial-1-Percent/group_04/UMA-Uniformity-Trial-10-Percent/default/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_02/UMA-Uniformity-Trial-50-Percent/group_01/UwSInterstitialStatus/On/VoiceTrigger/Install/WebRTC-IPv6Default/Disabled/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --font-cache-shared-mem-suffix=2448 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=1 --channel="2448.4.529095920\2116336429" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/CTRequiredForEVTrial/RequirementEnforced/ChromeSuggestions/Default/DomRel-Enable/enable/EmbeddedSearch/Group1 pct:10a stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnhancedBookmarks/Default/ExtensionContentVerification/Enforce/ExtensionInstallVerification/Enforce/GoogleNow/Enable/NewProfileManagement/Enabled/OmniboxBundledExperimentV1/Unused_6/PasswordGeneration/Disabled/QUIC/Enabled/RefreshTokenDeviceId/Disabled/RememberCertificateErrorDecisions/Default/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-Population-Restrict/normal/UMA-Uniformity-Trial-1-Percent/group_04/UMA-Uniformity-Trial-10-Percent/default/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_02/UMA-Uniformity-Trial-50-Percent/group_01/UwSInterstitialStatus/On/VoiceTrigger/Install/WebRTC-IPv6Default/Disabled/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --font-cache-shared-mem-suffix=2448 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=1 --channel="2448.5.652046414\1354045588" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/CTRequiredForEVTrial/RequirementEnforced/ChromeSuggestions/Default/DomRel-Enable/enable/EmbeddedSearch/Group1 pct:10a stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnhancedBookmarks/Default/ExtensionContentVerification/Enforce/ExtensionInstallVerification/Enforce/GoogleNow/Enable/NewProfileManagement/Enabled/OmniboxBundledExperimentV1/Unused_6/PasswordGeneration/Disabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/QUIC/Enabled/RefreshTokenDeviceId/Disabled/RememberCertificateErrorDecisions/Default/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-Population-Restrict/normal/UMA-Uniformity-Trial-1-Percent/group_04/UMA-Uniformity-Trial-10-Percent/default/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_02/UMA-Uniformity-Trial-50-Percent/group_01/UwSInterstitialStatus/On/VoiceTrigger/Install/WebRTC-IPv6Default/Disabled/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --font-cache-shared-mem-suffix=2448 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=1 --channel="2448.11.1073437935\2071177091" /prefetch:673131151
"C:\Program Files\Internet Explorer\iexplore.exe" http://www.amazon.co.uk/gp/bit/pin?tagb ... .0&url=%2f
"C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE" SCODEF:4300 CREDAT:267521 /prefetch:2
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=ppapi --channel="2448.12.546703170\1805825878" --ppapi-flash-args=enable_hw_video_decode=1 --lang=cs --ignored=" --type=renderer " /prefetch:-632637702
"C:\PROGRA~1\McAfee\MSC\MCMIGR~1.EXE"
"c:\PROGRA~1\COMMON~1\mcafee\updmgr\30259~1.1\MCUPDA~1.EXE" -Embedding
"c:\PROGRA~1\mcafee\msc\MCMIGR~1.EXE" -Embedding
C:\windows\servicing\TrustedInstaller.exe
C:\windows\winsxs\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe -Embedding
"C:\Program Files\Common Files\McAfee\Platform\mcuicnt.exe" /simplemode /platui
"C:\windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe34_ Global\UsGthrCtrlFltPipeMssGthrPipe34 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\windows\system32\SearchFilterHost.exe" 0 556 560 568 65536 564
"C:\Users\Kateřina\Downloads\RSITx64.exe"
C:\windows\system32\wbem\wmiprvse.exe
C:\windows\System32\svchost.exe -k WerSvcGroup
======Scheduled tasks folder======
C:\windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
======Registry dump======
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"=C:\windows\system32\igfxtray.exe [2012-08-24 170304]
"HotKeysCmds"=C:\windows\system32\hkcmd.exe [2012-08-24 398656]
"Persistence"=C:\windows\system32\igfxpers.exe [2012-08-24 441152]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2012-07-02 12921488]
"RtHDVBg_Dolby"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2012-06-13 1212560]
"AmIcoSinglun64"=C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe [2012-06-26 366720]
"ETDCtrl"=C:\Program Files\Elantech\ETDCtrl.exe [2012-08-09 2864016]
"Energy Management"=C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [2012-10-17 17079376]
"EnergyUtility"=C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe [2012-10-17 191568]
"iTunesHelper"=C:\Program Files\iTunes\iTunesHelper.exe [2015-02-13 169768]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"Dolby Advanced Audio v2"=C:\Program Files (x86)\Dolby Advanced Audio v2\pcee4.exe [2012-04-23 508256]
"Lenovo EasyCamera_Monitor"=C:\Program Files (x86)\Lenovo EasyCamera\monitor.exe [2010-08-24 257224]
"YouCam Mirage"=C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe [2012-07-27 136488]
"YouCam Tray"=C:\Program Files (x86)\Lenovo\YouCam\YouCamTray.exe [2012-07-27 167024]
"UpdateP2GShortCut"=C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe [2012-04-19 217088]
"RemoteControl10"=C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe [2012-03-29 91432]
"mcui_exe"=C:\Program Files\McAfee.com\Agent\mcagent.exe [2014-04-25 537992]
"mcpltui_exe"=C:\Program Files\McAfee.com\Agent\mcagent.exe [2014-04-25 537992]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\windows\system32\igfxdev.dll [2012-08-23 441856]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\McMPFSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mcpltsvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfefire]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfefirek]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfefirek.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfehidk]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfehidk.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfevtp]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2015-03-30 21:21:01 ----D---- C:\Program Files\trend micro
2015-03-30 21:20:54 ----D---- C:\rsit
2015-03-29 21:32:07 ----A---- C:\windows\system32\netcfg-35462500.txt
2015-03-29 21:31:04 ----A---- C:\windows\system32\netcfg-35399265.txt
2015-03-29 21:27:07 ----A---- C:\windows\system32\netcfg-35162671.txt
2015-03-29 21:27:01 ----A---- C:\windows\system32\netcfg-35156218.txt
2015-03-29 21:26:56 ----A---- C:\windows\system32\netcfg-35151156.txt
2015-03-29 21:26:42 ----A---- C:\windows\system32\netcfg-35137765.txt
2015-03-29 21:22:51 ----A---- C:\windows\system32\netcfg-34906593.txt
2015-03-29 21:22:42 ----A---- C:\windows\system32\netcfg-34897531.txt
2015-03-29 20:54:57 ----D---- C:\Users\Kateřina\AppData\Roaming\Apple Computer
2015-03-29 20:54:13 ----A---- C:\windows\system32\drivers\GEARAspiWDM.sys
2015-03-29 20:54:12 ----DC---- C:\windows\system32\DRVSTORE
2015-03-29 20:52:21 ----D---- C:\Program Files (x86)\iTunes
2015-03-29 20:52:20 ----D---- C:\Program Files\iPod
2015-03-29 20:51:59 ----D---- C:\ProgramData\E1864A66-75E3-486a-BD95-D1B7D99A84A7
2015-03-29 20:51:59 ----D---- C:\ProgramData\Apple Computer
2015-03-29 20:51:59 ----D---- C:\Program Files\iTunes
2015-03-29 20:45:21 ----D---- C:\Program Files (x86)\Apple Software Update
2015-03-29 20:44:40 ----D---- C:\Program Files\Bonjour
2015-03-29 20:44:40 ----D---- C:\Program Files (x86)\Bonjour
2015-03-29 20:44:04 ----D---- C:\Program Files\Common Files\Apple
2015-03-29 20:43:26 ----D---- C:\ProgramData\Apple
2015-03-29 12:20:39 ----A---- C:\windows\system32\netcfg-2381062.txt
2015-03-29 11:46:48 ----A---- C:\windows\system32\netcfg-356562.txt
2015-03-29 11:44:59 ----A---- C:\windows\system32\netcfg-247453.txt
2015-03-29 11:43:08 ----A---- C:\windows\system32\netcfg-136703.txt
2015-03-29 11:42:22 ----A---- C:\windows\system32\netcfg-90453.txt
2015-03-29 11:40:18 ----A---- C:\windows\system32\netcfg-216228750.txt
2015-03-29 11:38:36 ----A---- C:\windows\system32\netcfg-216127265.txt
2015-03-29 11:37:49 ----A---- C:\windows\system32\netcfg-216080234.txt
2015-03-29 11:36:46 ----A---- C:\windows\system32\netcfg-216017421.txt
2015-03-29 11:36:42 ----A---- C:\windows\system32\netcfg-216012890.txt
2015-03-29 11:36:29 ----A---- C:\windows\system32\netcfg-215999906.txt
2015-03-29 11:36:26 ----A---- C:\windows\system32\netcfg-215996734.txt
2015-03-29 11:25:00 ----D---- C:\Program Files (x86)\GUM63E0.tmp
2015-03-29 11:25:00 ----A---- C:\Program Files (x86)\GUT63E1.tmp
2015-03-29 11:17:03 ----D---- C:\Program Files (x86)\Google
2015-03-29 11:08:10 ----A---- C:\windows\system32\drivers\HipShieldK.sys
2015-03-29 11:07:30 ----A---- C:\windows\SYSWOW64\wudriver.dll
2015-03-29 11:07:29 ----A---- C:\windows\SYSWOW64\wups.dll
2015-03-29 11:07:29 ----A---- C:\windows\system32\wudriver.dll
2015-03-29 11:07:29 ----A---- C:\windows\system32\storewuauth.dll
2015-03-29 11:07:26 ----A---- C:\windows\system32\wushareduxresources.dll
2015-03-29 11:07:26 ----A---- C:\windows\system32\wups2.dll
2015-03-29 11:07:26 ----A---- C:\windows\system32\wups.dll
2015-03-29 11:07:25 ----A---- C:\windows\system32\WUSettingsProvider.dll
2015-03-29 11:07:25 ----A---- C:\windows\system32\wuauclt.exe
2015-03-29 11:07:25 ----A---- C:\windows\system32\wuaext.dll
2015-03-29 11:07:21 ----A---- C:\windows\SYSWOW64\wuapi.dll
2015-03-29 11:07:21 ----A---- C:\windows\system32\wucltux.dll
2015-03-29 11:07:21 ----A---- C:\windows\system32\wuaueng.dll
2015-03-29 11:07:21 ----A---- C:\windows\system32\wuapi.dll
2015-03-29 11:06:13 ----A---- C:\windows\system32\netcfg-214183546.txt
2015-03-29 11:06:10 ----A---- C:\windows\system32\netcfg-214180781.txt
2015-03-27 08:25:19 ----A---- C:\Recovery.txt
2015-03-27 07:28:34 ----A---- C:\windows\system32\netcfg-184250.txt
2015-03-27 07:25:44 ----ASH---- C:\swapfile.sys
2015-03-27 07:25:43 ----ASH---- C:\pagefile.sys
2015-03-27 07:25:42 ----SHD---- C:\System Volume Information
2015-03-27 07:25:41 ----ASH---- C:\hiberfil.sys
2015-03-27 00:17:28 ----A---- C:\windows\SYSWOW64\wuwebv.dll
2015-03-27 00:17:28 ----A---- C:\windows\SYSWOW64\wuapp.exe
2015-03-27 00:17:28 ----A---- C:\windows\system32\wuwebv.dll
2015-03-27 00:17:28 ----A---- C:\windows\system32\wuapp.exe
2015-03-26 23:48:16 ----D---- C:\Users\Kateřina\AppData\Roaming\LSC
2015-03-26 23:40:25 ----D---- C:\Users\Kateřina\AppData\Roaming\Lenovo
2015-03-26 23:39:49 ----SHD---- C:\$RECYCLE.BIN
2015-03-26 23:38:48 ----D---- C:\Users\Kateřina\AppData\Roaming\Adobe
2015-03-26 23:37:27 ----A---- C:\windows\system32\netcfg-63500.txt
2015-03-26 23:36:10 ----A---- C:\windows\system32\netcfg-652359.txt
2015-03-26 23:35:55 ----SD---- C:\Users\Kateřina\AppData\Roaming\Microsoft
2015-03-26 23:35:55 ----D---- C:\Users\Kateřina\AppData\Roaming\Macromedia
2015-03-26 23:28:34 ----A---- C:\windows\system32\netcfg-195671.txt
2015-03-26 23:28:29 ----A---- C:\windows\system32\netcfg-191093.txt
======List of files/folders modified in the last 1 month======
2015-03-30 21:21:03 ----D---- C:\windows\Temp
2015-03-30 21:21:01 ----RD---- C:\Program Files
2015-03-30 21:14:52 ----D---- C:\windows\system32\catroot2
2015-03-30 21:14:50 ----D---- C:\windows\WinSxS
2015-03-30 21:00:05 ----D---- C:\windows\system32\sru
2015-03-29 22:10:34 ----D---- C:\windows\Prefetch
2015-03-29 21:50:26 ----D---- C:\windows\system32\config
2015-03-29 21:43:15 ----D---- C:\windows\system32\Drivers
2015-03-29 21:43:14 ----AD---- C:\windows\System32
2015-03-29 21:31:01 ----D---- C:\windows\Inf
2015-03-29 21:07:14 ----A---- C:\windows\system32\PerfStringBackup.INI
2015-03-29 21:01:18 ----D---- C:\windows\SoftwareDistribution
2015-03-29 20:55:10 ----SHD---- C:\windows\Installer
2015-03-29 20:54:35 ----D---- C:\windows\SysWOW64
2015-03-29 20:52:21 ----RD---- C:\Program Files (x86)
2015-03-29 20:51:59 ----HD---- C:\ProgramData
2015-03-29 20:45:27 ----D---- C:\windows\system32\Tasks
2015-03-29 20:45:11 ----D---- C:\windows\system32\catroot
2015-03-29 20:45:10 ----D---- C:\windows\system32\DriverStore
2015-03-29 20:44:04 ----D---- C:\Program Files\Common Files
2015-03-29 20:43:26 ----D---- C:\Program Files (x86)\Common Files
2015-03-29 11:46:35 ----A---- C:\windows\SYSWOW64\log.txt
2015-03-29 11:43:39 ----D---- C:\windows\CbsTemp
2015-03-29 11:42:18 ----D---- C:\Program Files (x86)\McAfee
2015-03-29 11:42:04 ----D---- C:\ProgramData\McAfee
2015-03-29 11:42:04 ----D---- C:\Program Files\Common Files\mcafee
2015-03-29 11:41:08 ----D---- C:\windows\SYSWOW64\sk-SK
2015-03-29 11:41:08 ----D---- C:\windows\SYSWOW64\en-US
2015-03-29 11:41:08 ----D---- C:\windows\SYSWOW64\cs-CZ
2015-03-29 11:41:07 ----D---- C:\windows\system32\sk-SK
2015-03-29 11:41:07 ----D---- C:\windows\system32\en-US
2015-03-29 11:41:07 ----D---- C:\windows\system32\cs-CZ
2015-03-29 11:33:27 ----D---- C:\windows\Logs
2015-03-29 11:25:54 ----D---- C:\windows\Tasks
2015-03-29 11:09:53 ----SD---- C:\ProgramData\Microsoft
2015-03-29 11:08:13 ----D---- C:\windows\system32\wdi
2015-03-27 00:17:56 ----AD---- C:\Windows
2015-03-27 00:16:44 ----HD---- C:\windows\ELAMBKUP
2015-03-27 00:15:18 ----D---- C:\windows\system32\restore
2015-03-26 23:38:00 ----D---- C:\windows\WinStore
2015-03-26 23:37:54 ----RD---- C:\windows\ImmersiveControlPanel
2015-03-26 23:37:49 ----HD---- C:\Program Files\WindowsApps
2015-03-26 23:34:25 ----AD---- C:\Users
2015-03-26 23:29:04 ----D---- C:\windows\rescache
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 iaStorA;iaStorA; C:\windows\System32\drivers\iaStorA.sys [2012-07-09 645952]
R0 LHDmgr;LHDmgr; C:\windows\System32\DRIVERS\LhdX64.sys [2012-10-17 39008]
R0 mfehidk;McAfee Inc. mfehidk; C:\windows\system32\drivers\mfehidk.sys [2014-06-20 786296]
R0 mfewfpk;McAfee Inc. mfewfpk; C:\windows\system32\drivers\mfewfpk.sys [2014-06-20 348552]
R1 vwififlt;@%SystemRoot%\System32\drivers\vwififlt.sys,-259; C:\windows\system32\DRIVERS\vwififlt.sys [2012-07-26 64000]
R3 ACPIVPC;@oem11.inf,%ACPIVPC.SvcDesc%;Lenovo Virtual Power Controller Driver; C:\windows\System32\drivers\AcpiVpc.sys [2012-10-17 33560]
R3 AmUStor;@oem6.inf,%AmUStor.SvcDesc%;AM USB Stroage Driver; C:\windows\system32\drivers\AmUStor.SYS [2012-06-13 100992]
R3 athr;@oem8.inf,%ATHR.Service.DispName%;Qualcomm Atheros Extensible Wireless LAN device driver; C:\windows\system32\DRIVERS\athw8x.sys [2012-07-24 3618304]
R3 cfwids;McAfee Inc. cfwids; C:\windows\system32\drivers\cfwids.sys [2014-06-20 72128]
R3 ETD;@oem10.inf,%PS2DeviceDesc%;ELAN PS/2 Port Input Device; C:\windows\system32\DRIVERS\ETD.sys [2012-08-09 315216]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\windows\system32\DRIVERS\GEARAspiWDM.sys [2012-10-03 33240]
R3 igfx;igfx; C:\windows\system32\DRIVERS\igdkmd64.sys [2012-08-23 9000256]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\windows\system32\drivers\RTKVHD64.sys [2012-07-03 4074256]
R3 L1C;@oem7.inf,%L1C.Service.DispName%;NDIS Miniport Driver for Qualcomm Atheros AR81xx PCI-E Ethernet Controller; C:\windows\system32\DRIVERS\L1C63x64.sys [2012-06-21 110744]
R3 MEIx64;@oem3.inf,%HECI_SvcDesc%;Intel(R) Management Engine Interface ; C:\windows\System32\drivers\HECIx64.sys [2012-07-02 62784]
R3 mfeapfk;McAfee Inc. mfeapfk; C:\windows\system32\drivers\mfeapfk.sys [2014-06-20 181704]
R3 mfeavfk;McAfee Inc. mfeavfk; C:\windows\system32\drivers\mfeavfk.sys [2014-06-20 313544]
R3 mfefirek;McAfee Inc. mfefirek; C:\windows\system32\drivers\mfefirek.sys [2014-06-20 523792]
R3 mfencbdc;McAfee Inc. mfencbdc; C:\windows\system32\DRIVERS\mfencbdc.sys [2014-08-20 445512]
R3 SPUVCbv;@oem9.inf,%SPUVCb.ServiceName%;SPUVCb Driver Service; C:\windows\System32\Drivers\SPUVCbv_x64.sys [2012-08-24 1059064]
R3 vwifimp;@%SystemRoot%\System32\drivers\vwifimp.sys,-261; C:\windows\system32\DRIVERS\vwifimp.sys [2012-07-26 17920]
S0 mfeelamk;McAfee Inc. mfeelamk; C:\windows\system32\drivers\mfeelamk.sys [2014-06-20 70600]
S3 e1iexpress;@net1ic64.inf,%E1IExpress.Service.DispName%;Intel(R) PRO/1000 PCI Express Network Connection Driver I; C:\windows\system32\DRIVERS\e1i63x64.sys [2012-06-02 333824]
S3 HipShieldK;McAfee Inc. HipShieldK; C:\windows\system32\drivers\HipShieldK.sys [2013-09-23 197704]
S3 mfencrk;McAfee Inc. mfencrk; C:\windows\system32\DRIVERS\mfencrk.sys [2014-08-20 96592]
S3 NETwNs64;@netwns64.inf,___ %NIC_Service_DispName_WIN7_64%;___ Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows 7 - 64 Bit; C:\windows\system32\DRIVERS\NETwNs64.sys [2012-06-02 8604672]
S3 USBAAPL64;@oem13.inf,%USBAAPL64.SvcDesc%;Apple Mobile USB Driver; C:\windows\System32\Drivers\usbaapl64.sys [2014-08-15 54784]
S3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;USB Video Device (WDM); C:\windows\System32\Drivers\usbvideo.sys [2012-07-26 210304]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 Apple Mobile Device Service;Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2015-01-19 77128]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-30 462184]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-04-20 635104]
R2 Intel(R) ME Service;Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [2012-07-17 128896]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2012-07-17 165760]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-07-17 276864]
R2 McAPExe;McAfee AP Service; C:\Program Files\McAfee\MSC\McAPExe.exe [2014-04-25 178528]
R2 mfecore;McAfee Anti-Malware Core; C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe [2014-08-20 1041192]
R2 mfefire;McAfee Firewall Core Service; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [2014-06-20 219752]
R2 mfevtp;McAfee Validation Trust Protection Service; C:\windows\system32\mfevtps.exe [2014-06-20 189912]
R3 iPod Service;iPod Service; C:\Program Files\iPod\bin\iPodService.exe [2015-02-13 643880]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-03-29 116648]
S2 HomeNetSvc;McAfee Home Network; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [2013-07-30 328928]
S2 McMPFSvc;McAfee Personal Firewall Service; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [2013-07-30 328928]
S2 McNaiAnn;McAfee VirusScan Announcer; C:\Program Files\Common Files\mcafee\Platform\McSvcHost\McSvHost.exe [2013-07-30 328928]
S2 McOobeSv;McAfee OOBE Service; C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe [2012-05-11 200728]
S2 mcpltsvc;McAfee Platform Services; C:\Program Files\Common Files\mcafee\Platform\McSvcHost\McSvHost.exe [2013-07-30 328928]
S2 McProxy;McAfee Proxy Service; C:\Program Files\Common Files\mcafee\Platform\McSvcHost\McSvHost.exe [2013-07-30 328928]
S2 MSK80Service;McAfee Anti-Spam Service; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [2013-07-30 328928]
S2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2012-07-17 364416]
S3 cphs;Intel(R) Content Protection HECI Service; C:\windows\SysWow64\IntelCpHeciSvc.exe [2012-08-24 276288]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2012-07-26 43616]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-03-29 116648]
S3 McAWFwk;McAfee Activation Service; c:\PROGRA~1\mcafee\msc\mcawfwk.exe [2012-01-26 332080]
S3 McODS;McAfee Scanner; C:\Program Files\mcafee\VirusScan\mcods.exe [2014-10-08 603424]
-----------------EOF-----------------
Logfile of random's system information tool 1.10 (written by random/random)
Run by Kateřina at 2015-03-30 21:20:54
Microsoft Windows 8
System drive C: has 232 GB (91%) free of 256 GB
Total RAM: 1893 MB (11% free)
HijackThis download failed
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
C:\windows\system32\services.exe
C:\windows\system32\lsass.exe
C:\windows\system32\svchost.exe -k DcomLaunch
C:\windows\system32\svchost.exe -k RPCSS
C:\windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\windows\system32\svchost.exe -k netsvcs
C:\windows\system32\svchost.exe -k LocalService
C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\windows\system32\svchost.exe -k NetworkService
C:\windows\System32\spoolsv.exe
C:\windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
dashost.exe {80c0e5c2-5698-4d94-bec00caf3a452d9f}
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\windows\system32\mfevtps.exe"
"C:\Program Files\McAfee\MSC\McAPExe.exe"
"C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe"
"C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe"
C:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-cc1148b2-1367-4164-8d90-c24fdc549623 -SystemEventPortName:HostProcess-9d93899a-e778-47a0-a809-89f509355285 -IoCancelEventPortName:HostProcess-d0ae27a0-3bdc-4884-832d-b5201eeb7625 -NonStateChangingEventPortName:HostProcess-d2347e95-51b6-4b57-8776-5151c0cfde3d -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:5a88526f-c309-4abb-8c18-bbcf8b0b2273 -DeviceGroupId:WudfDefaultDevicePool
C:\windows\System32\svchost.exe -k LocalServicePeerNet
C:\windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\windows\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
C:\windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe" /McCoreSvc
C:\PROGRA~1\McAfee\MSM\McSmtFwk.exe {CF10C3DD-7FC1-476f-8546-A12D7DA24BBF}|{327c188b-e480-4b8d-aebb-24ef3878f8e5}
"C:\Program Files\Bonjour\mDNSResponder.exe"
"C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe"
"C:\Program Files\iPod\bin\iPodService.exe"
C:\windows\system32\svchost.exe -k imgsvc
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\windows\System32\WinLogon.exe -SpecialSession
-hiberboot
taskhostex.exe
C:\windows\Explorer.EXE
"C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16.4.4206.722_x64__8wekyb3d8bbwe\LiveComm.exe" -ServerName:Microsoft.WindowsLive.Platform.Server
C:\windows\WinStore\WSHost.exe -Embedding
"C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe"
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /FORPCEE4
"C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe"
"C:\Program Files\Elantech\ETDCtrl.exe"
"C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe"
"C:\Program Files (x86)\Lenovo\Energy Management\utility.exe"
"C:\Program Files\iTunes\iTunesHelper.exe"
"C:\Program Files\Elantech\ETDCtrlHelper.exe"
"C:\Program Files\Elantech\ETDIntelligent.exe"
"C:\Program Files (x86)\Dolby Advanced Audio v2\pcee4.exe" -autostart
"C:\Program Files (x86)\Lenovo EasyCamera\Monitor.exe"
"C:\Program Files (x86)\Lenovo\YouCam\YouCamTray.exe" /s
"C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe"
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="2448.0.782921818\485870226" --supports-dual-gpus=false --gpu-driver-bug-workarounds=1,18,40 --gpu-vendor-id=0x8086 --gpu-device-id=0x0106 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=9.17.10.2843 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/CTRequiredForEVTrial/RequirementEnforced/ChromeSuggestions/Default/DomRel-Enable/enable/EmbeddedSearch/Group1 pct:10a stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnhancedBookmarks/Default/ExtensionContentVerification/Enforce/ExtensionInstallVerification/Enforce/GoogleNow/Enable/NewProfileManagement/Enabled/OmniboxBundledExperimentV1/Unused_6/PasswordGeneration/Disabled/QUIC/Enabled/RememberCertificateErrorDecisions/Default/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-Population-Restrict/normal/UMA-Uniformity-Trial-1-Percent/group_04/UMA-Uniformity-Trial-10-Percent/default/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_02/UMA-Uniformity-Trial-50-Percent/group_01/UwSInterstitialStatus/On/VoiceTrigger/Install/WebRTC-IPv6Default/Disabled/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --font-cache-shared-mem-suffix=2448 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=1 --channel="2448.2.1825405240\1536752994" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/CTRequiredForEVTrial/RequirementEnforced/ChromeSuggestions/Default/DomRel-Enable/enable/EmbeddedSearch/Group1 pct:10a stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnhancedBookmarks/Default/ExtensionContentVerification/Enforce/ExtensionInstallVerification/Enforce/GoogleNow/Enable/NewProfileManagement/Enabled/OmniboxBundledExperimentV1/Unused_6/PasswordGeneration/Disabled/QUIC/Enabled/RefreshTokenDeviceId/Disabled/RememberCertificateErrorDecisions/Default/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-Population-Restrict/normal/UMA-Uniformity-Trial-1-Percent/group_04/UMA-Uniformity-Trial-10-Percent/default/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_02/UMA-Uniformity-Trial-50-Percent/group_01/UwSInterstitialStatus/On/VoiceTrigger/Install/WebRTC-IPv6Default/Disabled/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --font-cache-shared-mem-suffix=2448 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=1 --channel="2448.3.1777468078\1475722932" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/CTRequiredForEVTrial/RequirementEnforced/ChromeSuggestions/Default/DomRel-Enable/enable/EmbeddedSearch/Group1 pct:10a stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnhancedBookmarks/Default/ExtensionContentVerification/Enforce/ExtensionInstallVerification/Enforce/GoogleNow/Enable/NewProfileManagement/Enabled/OmniboxBundledExperimentV1/Unused_6/PasswordGeneration/Disabled/QUIC/Enabled/RefreshTokenDeviceId/Disabled/RememberCertificateErrorDecisions/Default/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-Population-Restrict/normal/UMA-Uniformity-Trial-1-Percent/group_04/UMA-Uniformity-Trial-10-Percent/default/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_02/UMA-Uniformity-Trial-50-Percent/group_01/UwSInterstitialStatus/On/VoiceTrigger/Install/WebRTC-IPv6Default/Disabled/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --font-cache-shared-mem-suffix=2448 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=1 --channel="2448.4.529095920\2116336429" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/CTRequiredForEVTrial/RequirementEnforced/ChromeSuggestions/Default/DomRel-Enable/enable/EmbeddedSearch/Group1 pct:10a stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnhancedBookmarks/Default/ExtensionContentVerification/Enforce/ExtensionInstallVerification/Enforce/GoogleNow/Enable/NewProfileManagement/Enabled/OmniboxBundledExperimentV1/Unused_6/PasswordGeneration/Disabled/QUIC/Enabled/RefreshTokenDeviceId/Disabled/RememberCertificateErrorDecisions/Default/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-Population-Restrict/normal/UMA-Uniformity-Trial-1-Percent/group_04/UMA-Uniformity-Trial-10-Percent/default/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_02/UMA-Uniformity-Trial-50-Percent/group_01/UwSInterstitialStatus/On/VoiceTrigger/Install/WebRTC-IPv6Default/Disabled/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --font-cache-shared-mem-suffix=2448 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=1 --channel="2448.5.652046414\1354045588" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/CTRequiredForEVTrial/RequirementEnforced/ChromeSuggestions/Default/DomRel-Enable/enable/EmbeddedSearch/Group1 pct:10a stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnhancedBookmarks/Default/ExtensionContentVerification/Enforce/ExtensionInstallVerification/Enforce/GoogleNow/Enable/NewProfileManagement/Enabled/OmniboxBundledExperimentV1/Unused_6/PasswordGeneration/Disabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/QUIC/Enabled/RefreshTokenDeviceId/Disabled/RememberCertificateErrorDecisions/Default/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-Population-Restrict/normal/UMA-Uniformity-Trial-1-Percent/group_04/UMA-Uniformity-Trial-10-Percent/default/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_02/UMA-Uniformity-Trial-50-Percent/group_01/UwSInterstitialStatus/On/VoiceTrigger/Install/WebRTC-IPv6Default/Disabled/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --font-cache-shared-mem-suffix=2448 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=1 --channel="2448.11.1073437935\2071177091" /prefetch:673131151
"C:\Program Files\Internet Explorer\iexplore.exe" http://www.amazon.co.uk/gp/bit/pin?tagb ... .0&url=%2f
"C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE" SCODEF:4300 CREDAT:267521 /prefetch:2
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=ppapi --channel="2448.12.546703170\1805825878" --ppapi-flash-args=enable_hw_video_decode=1 --lang=cs --ignored=" --type=renderer " /prefetch:-632637702
"C:\PROGRA~1\McAfee\MSC\MCMIGR~1.EXE"
"c:\PROGRA~1\COMMON~1\mcafee\updmgr\30259~1.1\MCUPDA~1.EXE" -Embedding
"c:\PROGRA~1\mcafee\msc\MCMIGR~1.EXE" -Embedding
C:\windows\servicing\TrustedInstaller.exe
C:\windows\winsxs\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe -Embedding
"C:\Program Files\Common Files\McAfee\Platform\mcuicnt.exe" /simplemode /platui
"C:\windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe34_ Global\UsGthrCtrlFltPipeMssGthrPipe34 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\windows\system32\SearchFilterHost.exe" 0 556 560 568 65536 564
"C:\Users\Kateřina\Downloads\RSITx64.exe"
C:\windows\system32\wbem\wmiprvse.exe
C:\windows\System32\svchost.exe -k WerSvcGroup
======Scheduled tasks folder======
C:\windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
======Registry dump======
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"=C:\windows\system32\igfxtray.exe [2012-08-24 170304]
"HotKeysCmds"=C:\windows\system32\hkcmd.exe [2012-08-24 398656]
"Persistence"=C:\windows\system32\igfxpers.exe [2012-08-24 441152]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2012-07-02 12921488]
"RtHDVBg_Dolby"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2012-06-13 1212560]
"AmIcoSinglun64"=C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe [2012-06-26 366720]
"ETDCtrl"=C:\Program Files\Elantech\ETDCtrl.exe [2012-08-09 2864016]
"Energy Management"=C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [2012-10-17 17079376]
"EnergyUtility"=C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe [2012-10-17 191568]
"iTunesHelper"=C:\Program Files\iTunes\iTunesHelper.exe [2015-02-13 169768]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"Dolby Advanced Audio v2"=C:\Program Files (x86)\Dolby Advanced Audio v2\pcee4.exe [2012-04-23 508256]
"Lenovo EasyCamera_Monitor"=C:\Program Files (x86)\Lenovo EasyCamera\monitor.exe [2010-08-24 257224]
"YouCam Mirage"=C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe [2012-07-27 136488]
"YouCam Tray"=C:\Program Files (x86)\Lenovo\YouCam\YouCamTray.exe [2012-07-27 167024]
"UpdateP2GShortCut"=C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe [2012-04-19 217088]
"RemoteControl10"=C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe [2012-03-29 91432]
"mcui_exe"=C:\Program Files\McAfee.com\Agent\mcagent.exe [2014-04-25 537992]
"mcpltui_exe"=C:\Program Files\McAfee.com\Agent\mcagent.exe [2014-04-25 537992]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\windows\system32\igfxdev.dll [2012-08-23 441856]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\McMPFSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mcpltsvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfefire]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfefirek]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfefirek.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfehidk]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfehidk.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mfevtp]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2015-03-30 21:21:01 ----D---- C:\Program Files\trend micro
2015-03-30 21:20:54 ----D---- C:\rsit
2015-03-29 21:32:07 ----A---- C:\windows\system32\netcfg-35462500.txt
2015-03-29 21:31:04 ----A---- C:\windows\system32\netcfg-35399265.txt
2015-03-29 21:27:07 ----A---- C:\windows\system32\netcfg-35162671.txt
2015-03-29 21:27:01 ----A---- C:\windows\system32\netcfg-35156218.txt
2015-03-29 21:26:56 ----A---- C:\windows\system32\netcfg-35151156.txt
2015-03-29 21:26:42 ----A---- C:\windows\system32\netcfg-35137765.txt
2015-03-29 21:22:51 ----A---- C:\windows\system32\netcfg-34906593.txt
2015-03-29 21:22:42 ----A---- C:\windows\system32\netcfg-34897531.txt
2015-03-29 20:54:57 ----D---- C:\Users\Kateřina\AppData\Roaming\Apple Computer
2015-03-29 20:54:13 ----A---- C:\windows\system32\drivers\GEARAspiWDM.sys
2015-03-29 20:54:12 ----DC---- C:\windows\system32\DRVSTORE
2015-03-29 20:52:21 ----D---- C:\Program Files (x86)\iTunes
2015-03-29 20:52:20 ----D---- C:\Program Files\iPod
2015-03-29 20:51:59 ----D---- C:\ProgramData\E1864A66-75E3-486a-BD95-D1B7D99A84A7
2015-03-29 20:51:59 ----D---- C:\ProgramData\Apple Computer
2015-03-29 20:51:59 ----D---- C:\Program Files\iTunes
2015-03-29 20:45:21 ----D---- C:\Program Files (x86)\Apple Software Update
2015-03-29 20:44:40 ----D---- C:\Program Files\Bonjour
2015-03-29 20:44:40 ----D---- C:\Program Files (x86)\Bonjour
2015-03-29 20:44:04 ----D---- C:\Program Files\Common Files\Apple
2015-03-29 20:43:26 ----D---- C:\ProgramData\Apple
2015-03-29 12:20:39 ----A---- C:\windows\system32\netcfg-2381062.txt
2015-03-29 11:46:48 ----A---- C:\windows\system32\netcfg-356562.txt
2015-03-29 11:44:59 ----A---- C:\windows\system32\netcfg-247453.txt
2015-03-29 11:43:08 ----A---- C:\windows\system32\netcfg-136703.txt
2015-03-29 11:42:22 ----A---- C:\windows\system32\netcfg-90453.txt
2015-03-29 11:40:18 ----A---- C:\windows\system32\netcfg-216228750.txt
2015-03-29 11:38:36 ----A---- C:\windows\system32\netcfg-216127265.txt
2015-03-29 11:37:49 ----A---- C:\windows\system32\netcfg-216080234.txt
2015-03-29 11:36:46 ----A---- C:\windows\system32\netcfg-216017421.txt
2015-03-29 11:36:42 ----A---- C:\windows\system32\netcfg-216012890.txt
2015-03-29 11:36:29 ----A---- C:\windows\system32\netcfg-215999906.txt
2015-03-29 11:36:26 ----A---- C:\windows\system32\netcfg-215996734.txt
2015-03-29 11:25:00 ----D---- C:\Program Files (x86)\GUM63E0.tmp
2015-03-29 11:25:00 ----A---- C:\Program Files (x86)\GUT63E1.tmp
2015-03-29 11:17:03 ----D---- C:\Program Files (x86)\Google
2015-03-29 11:08:10 ----A---- C:\windows\system32\drivers\HipShieldK.sys
2015-03-29 11:07:30 ----A---- C:\windows\SYSWOW64\wudriver.dll
2015-03-29 11:07:29 ----A---- C:\windows\SYSWOW64\wups.dll
2015-03-29 11:07:29 ----A---- C:\windows\system32\wudriver.dll
2015-03-29 11:07:29 ----A---- C:\windows\system32\storewuauth.dll
2015-03-29 11:07:26 ----A---- C:\windows\system32\wushareduxresources.dll
2015-03-29 11:07:26 ----A---- C:\windows\system32\wups2.dll
2015-03-29 11:07:26 ----A---- C:\windows\system32\wups.dll
2015-03-29 11:07:25 ----A---- C:\windows\system32\WUSettingsProvider.dll
2015-03-29 11:07:25 ----A---- C:\windows\system32\wuauclt.exe
2015-03-29 11:07:25 ----A---- C:\windows\system32\wuaext.dll
2015-03-29 11:07:21 ----A---- C:\windows\SYSWOW64\wuapi.dll
2015-03-29 11:07:21 ----A---- C:\windows\system32\wucltux.dll
2015-03-29 11:07:21 ----A---- C:\windows\system32\wuaueng.dll
2015-03-29 11:07:21 ----A---- C:\windows\system32\wuapi.dll
2015-03-29 11:06:13 ----A---- C:\windows\system32\netcfg-214183546.txt
2015-03-29 11:06:10 ----A---- C:\windows\system32\netcfg-214180781.txt
2015-03-27 08:25:19 ----A---- C:\Recovery.txt
2015-03-27 07:28:34 ----A---- C:\windows\system32\netcfg-184250.txt
2015-03-27 07:25:44 ----ASH---- C:\swapfile.sys
2015-03-27 07:25:43 ----ASH---- C:\pagefile.sys
2015-03-27 07:25:42 ----SHD---- C:\System Volume Information
2015-03-27 07:25:41 ----ASH---- C:\hiberfil.sys
2015-03-27 00:17:28 ----A---- C:\windows\SYSWOW64\wuwebv.dll
2015-03-27 00:17:28 ----A---- C:\windows\SYSWOW64\wuapp.exe
2015-03-27 00:17:28 ----A---- C:\windows\system32\wuwebv.dll
2015-03-27 00:17:28 ----A---- C:\windows\system32\wuapp.exe
2015-03-26 23:48:16 ----D---- C:\Users\Kateřina\AppData\Roaming\LSC
2015-03-26 23:40:25 ----D---- C:\Users\Kateřina\AppData\Roaming\Lenovo
2015-03-26 23:39:49 ----SHD---- C:\$RECYCLE.BIN
2015-03-26 23:38:48 ----D---- C:\Users\Kateřina\AppData\Roaming\Adobe
2015-03-26 23:37:27 ----A---- C:\windows\system32\netcfg-63500.txt
2015-03-26 23:36:10 ----A---- C:\windows\system32\netcfg-652359.txt
2015-03-26 23:35:55 ----SD---- C:\Users\Kateřina\AppData\Roaming\Microsoft
2015-03-26 23:35:55 ----D---- C:\Users\Kateřina\AppData\Roaming\Macromedia
2015-03-26 23:28:34 ----A---- C:\windows\system32\netcfg-195671.txt
2015-03-26 23:28:29 ----A---- C:\windows\system32\netcfg-191093.txt
======List of files/folders modified in the last 1 month======
2015-03-30 21:21:03 ----D---- C:\windows\Temp
2015-03-30 21:21:01 ----RD---- C:\Program Files
2015-03-30 21:14:52 ----D---- C:\windows\system32\catroot2
2015-03-30 21:14:50 ----D---- C:\windows\WinSxS
2015-03-30 21:00:05 ----D---- C:\windows\system32\sru
2015-03-29 22:10:34 ----D---- C:\windows\Prefetch
2015-03-29 21:50:26 ----D---- C:\windows\system32\config
2015-03-29 21:43:15 ----D---- C:\windows\system32\Drivers
2015-03-29 21:43:14 ----AD---- C:\windows\System32
2015-03-29 21:31:01 ----D---- C:\windows\Inf
2015-03-29 21:07:14 ----A---- C:\windows\system32\PerfStringBackup.INI
2015-03-29 21:01:18 ----D---- C:\windows\SoftwareDistribution
2015-03-29 20:55:10 ----SHD---- C:\windows\Installer
2015-03-29 20:54:35 ----D---- C:\windows\SysWOW64
2015-03-29 20:52:21 ----RD---- C:\Program Files (x86)
2015-03-29 20:51:59 ----HD---- C:\ProgramData
2015-03-29 20:45:27 ----D---- C:\windows\system32\Tasks
2015-03-29 20:45:11 ----D---- C:\windows\system32\catroot
2015-03-29 20:45:10 ----D---- C:\windows\system32\DriverStore
2015-03-29 20:44:04 ----D---- C:\Program Files\Common Files
2015-03-29 20:43:26 ----D---- C:\Program Files (x86)\Common Files
2015-03-29 11:46:35 ----A---- C:\windows\SYSWOW64\log.txt
2015-03-29 11:43:39 ----D---- C:\windows\CbsTemp
2015-03-29 11:42:18 ----D---- C:\Program Files (x86)\McAfee
2015-03-29 11:42:04 ----D---- C:\ProgramData\McAfee
2015-03-29 11:42:04 ----D---- C:\Program Files\Common Files\mcafee
2015-03-29 11:41:08 ----D---- C:\windows\SYSWOW64\sk-SK
2015-03-29 11:41:08 ----D---- C:\windows\SYSWOW64\en-US
2015-03-29 11:41:08 ----D---- C:\windows\SYSWOW64\cs-CZ
2015-03-29 11:41:07 ----D---- C:\windows\system32\sk-SK
2015-03-29 11:41:07 ----D---- C:\windows\system32\en-US
2015-03-29 11:41:07 ----D---- C:\windows\system32\cs-CZ
2015-03-29 11:33:27 ----D---- C:\windows\Logs
2015-03-29 11:25:54 ----D---- C:\windows\Tasks
2015-03-29 11:09:53 ----SD---- C:\ProgramData\Microsoft
2015-03-29 11:08:13 ----D---- C:\windows\system32\wdi
2015-03-27 00:17:56 ----AD---- C:\Windows
2015-03-27 00:16:44 ----HD---- C:\windows\ELAMBKUP
2015-03-27 00:15:18 ----D---- C:\windows\system32\restore
2015-03-26 23:38:00 ----D---- C:\windows\WinStore
2015-03-26 23:37:54 ----RD---- C:\windows\ImmersiveControlPanel
2015-03-26 23:37:49 ----HD---- C:\Program Files\WindowsApps
2015-03-26 23:34:25 ----AD---- C:\Users
2015-03-26 23:29:04 ----D---- C:\windows\rescache
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 iaStorA;iaStorA; C:\windows\System32\drivers\iaStorA.sys [2012-07-09 645952]
R0 LHDmgr;LHDmgr; C:\windows\System32\DRIVERS\LhdX64.sys [2012-10-17 39008]
R0 mfehidk;McAfee Inc. mfehidk; C:\windows\system32\drivers\mfehidk.sys [2014-06-20 786296]
R0 mfewfpk;McAfee Inc. mfewfpk; C:\windows\system32\drivers\mfewfpk.sys [2014-06-20 348552]
R1 vwififlt;@%SystemRoot%\System32\drivers\vwififlt.sys,-259; C:\windows\system32\DRIVERS\vwififlt.sys [2012-07-26 64000]
R3 ACPIVPC;@oem11.inf,%ACPIVPC.SvcDesc%;Lenovo Virtual Power Controller Driver; C:\windows\System32\drivers\AcpiVpc.sys [2012-10-17 33560]
R3 AmUStor;@oem6.inf,%AmUStor.SvcDesc%;AM USB Stroage Driver; C:\windows\system32\drivers\AmUStor.SYS [2012-06-13 100992]
R3 athr;@oem8.inf,%ATHR.Service.DispName%;Qualcomm Atheros Extensible Wireless LAN device driver; C:\windows\system32\DRIVERS\athw8x.sys [2012-07-24 3618304]
R3 cfwids;McAfee Inc. cfwids; C:\windows\system32\drivers\cfwids.sys [2014-06-20 72128]
R3 ETD;@oem10.inf,%PS2DeviceDesc%;ELAN PS/2 Port Input Device; C:\windows\system32\DRIVERS\ETD.sys [2012-08-09 315216]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\windows\system32\DRIVERS\GEARAspiWDM.sys [2012-10-03 33240]
R3 igfx;igfx; C:\windows\system32\DRIVERS\igdkmd64.sys [2012-08-23 9000256]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\windows\system32\drivers\RTKVHD64.sys [2012-07-03 4074256]
R3 L1C;@oem7.inf,%L1C.Service.DispName%;NDIS Miniport Driver for Qualcomm Atheros AR81xx PCI-E Ethernet Controller; C:\windows\system32\DRIVERS\L1C63x64.sys [2012-06-21 110744]
R3 MEIx64;@oem3.inf,%HECI_SvcDesc%;Intel(R) Management Engine Interface ; C:\windows\System32\drivers\HECIx64.sys [2012-07-02 62784]
R3 mfeapfk;McAfee Inc. mfeapfk; C:\windows\system32\drivers\mfeapfk.sys [2014-06-20 181704]
R3 mfeavfk;McAfee Inc. mfeavfk; C:\windows\system32\drivers\mfeavfk.sys [2014-06-20 313544]
R3 mfefirek;McAfee Inc. mfefirek; C:\windows\system32\drivers\mfefirek.sys [2014-06-20 523792]
R3 mfencbdc;McAfee Inc. mfencbdc; C:\windows\system32\DRIVERS\mfencbdc.sys [2014-08-20 445512]
R3 SPUVCbv;@oem9.inf,%SPUVCb.ServiceName%;SPUVCb Driver Service; C:\windows\System32\Drivers\SPUVCbv_x64.sys [2012-08-24 1059064]
R3 vwifimp;@%SystemRoot%\System32\drivers\vwifimp.sys,-261; C:\windows\system32\DRIVERS\vwifimp.sys [2012-07-26 17920]
S0 mfeelamk;McAfee Inc. mfeelamk; C:\windows\system32\drivers\mfeelamk.sys [2014-06-20 70600]
S3 e1iexpress;@net1ic64.inf,%E1IExpress.Service.DispName%;Intel(R) PRO/1000 PCI Express Network Connection Driver I; C:\windows\system32\DRIVERS\e1i63x64.sys [2012-06-02 333824]
S3 HipShieldK;McAfee Inc. HipShieldK; C:\windows\system32\drivers\HipShieldK.sys [2013-09-23 197704]
S3 mfencrk;McAfee Inc. mfencrk; C:\windows\system32\DRIVERS\mfencrk.sys [2014-08-20 96592]
S3 NETwNs64;@netwns64.inf,___ %NIC_Service_DispName_WIN7_64%;___ Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows 7 - 64 Bit; C:\windows\system32\DRIVERS\NETwNs64.sys [2012-06-02 8604672]
S3 USBAAPL64;@oem13.inf,%USBAAPL64.SvcDesc%;Apple Mobile USB Driver; C:\windows\System32\Drivers\usbaapl64.sys [2014-08-15 54784]
S3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;USB Video Device (WDM); C:\windows\System32\Drivers\usbvideo.sys [2012-07-26 210304]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 Apple Mobile Device Service;Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2015-01-19 77128]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-30 462184]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-04-20 635104]
R2 Intel(R) ME Service;Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [2012-07-17 128896]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2012-07-17 165760]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-07-17 276864]
R2 McAPExe;McAfee AP Service; C:\Program Files\McAfee\MSC\McAPExe.exe [2014-04-25 178528]
R2 mfecore;McAfee Anti-Malware Core; C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe [2014-08-20 1041192]
R2 mfefire;McAfee Firewall Core Service; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [2014-06-20 219752]
R2 mfevtp;McAfee Validation Trust Protection Service; C:\windows\system32\mfevtps.exe [2014-06-20 189912]
R3 iPod Service;iPod Service; C:\Program Files\iPod\bin\iPodService.exe [2015-02-13 643880]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-03-29 116648]
S2 HomeNetSvc;McAfee Home Network; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [2013-07-30 328928]
S2 McMPFSvc;McAfee Personal Firewall Service; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [2013-07-30 328928]
S2 McNaiAnn;McAfee VirusScan Announcer; C:\Program Files\Common Files\mcafee\Platform\McSvcHost\McSvHost.exe [2013-07-30 328928]
S2 McOobeSv;McAfee OOBE Service; C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe [2012-05-11 200728]
S2 mcpltsvc;McAfee Platform Services; C:\Program Files\Common Files\mcafee\Platform\McSvcHost\McSvHost.exe [2013-07-30 328928]
S2 McProxy;McAfee Proxy Service; C:\Program Files\Common Files\mcafee\Platform\McSvcHost\McSvHost.exe [2013-07-30 328928]
S2 MSK80Service;McAfee Anti-Spam Service; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [2013-07-30 328928]
S2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2012-07-17 364416]
S3 cphs;Intel(R) Content Protection HECI Service; C:\windows\SysWow64\IntelCpHeciSvc.exe [2012-08-24 276288]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2012-07-26 43616]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-03-29 116648]
S3 McAWFwk;McAfee Activation Service; c:\PROGRA~1\mcafee\msc\mcawfwk.exe [2012-01-26 332080]
S3 McODS;McAfee Scanner; C:\Program Files\mcafee\VirusScan\mcods.exe [2014-10-08 603424]
-----------------EOF-----------------