Stránka 1 z 1

chrome se seka, prosim o kontrolu, dekuji

Napsal: 02 kvě 2015 20:31
od vinnoo
Logfile of random's system information tool 1.10 (written by random/random)
Run by George at 2015-05-02 21:31:38
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 235 GB (77%) free of 305 GB
Total RAM: 3263 MB (52% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 21:31:51, on 2.5.2015
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17728)
Boot mode: Normal

Running processes:
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\SOUNDMAN.EXE
C:\Program Files\HP\HP Software Update\hpwuSchd2.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files\OpenOffice.org 3\program\soffice.exe
C:\Program Files\OpenOffice.org 3\program\soffice.bin
C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
C:\Program Files\Common Files\Microsoft Shared\Ink\InputPersonalization.exe
C:\Program Files\CCleaner\CCleaner.exe
C:\Windows\system32\taskmgr.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\George\Downloads\RSIT (2).exe
C:\Program Files\trend micro\George.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~2\Office12\GR469A~1.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files\Winamp\winampa.exe"
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
O4 - HKLM\..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe -s
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [NvBackend] "C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe"
O4 - HKLM\..\Run: [ShadowPlay] C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap.dll,ShadowPlayOnSystemStart
O4 - HKCU\..\Run: [Google Update] "C:\Users\George\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [Google+ Auto Backup] "C:\Users\George\AppData\Local\Programs\Google\Google+ Auto Backup\Google+ Auto Backup.exe" /autostart
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner.exe" /MONITOR
O4 - HKCU\..\RunOnce: [FlashPlayerUpdate] C:\Windows\system32\Macromed\Flash\FlashUtil10h_Plugin.exe -update plugin
O4 - Startup: OpenOffice.org 3.1.lnk = C:\Program Files\OpenOffice.org 3\program\quickstart.exe
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xportovať do programu Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: Odoslať do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&oslať do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Skype Click to Call settings - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~1\MICROS~2\Office12\GRA32A~1.DLL
O18 - Protocol: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Futuremark SystemInfo Service - Futuremark - C:\Program Files\Futuremark\SystemInfo\FMSISvc.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: TeamViewer 5 (TeamViewer5) - TeamViewer GmbH - C:\Program Files\TeamViewer\Version5\TeamViewer_Service.exe

--
End of file - 6701 bytes

======Scheduled tasks folder======

C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-575251766-227617794-3401262809-1000Core.job - C:\Users\George\AppData\Local\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-575251766-227617794-3401262809-1000Core1d041748e8357c3.job - C:\Users\George\AppData\Local\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-575251766-227617794-3401262809-1000UA1cf8c8c32a52bf0.job - C:\Users\George\AppData\Local\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-575251766-227617794-3401262809-1000UA1d041748f26a8d8.job - C:\Users\George\AppData\Local\Google\Update\GoogleUpdate.exe /ua /installsource scheduler

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~2\Office12\GR469A~1.DLL [2006-10-27 2210608]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2013-06-12 463272]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Click to Call for Internet Explorer - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2014-07-14 1709152]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2013-06-12 171944]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SoundMan"=C:\Windows\SOUNDMAN.EXE [2009-04-14 604704]
"WinampAgent"=C:\Program Files\Winamp\winampa.exe []
"HP Software Update"=C:\Program Files\HP\HP Software Update\HPWuSchd2.exe [2007-03-11 49152]
"egui"=C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [2012-11-26 5074384]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [2009-08-18 7711264]
"GrooveMonitor"=C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2006-10-27 31016]
"NvBackend"=C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe [2014-04-30 2199840]
"ShadowPlay"=C:\Windows\system32\nvspcap.dll [2014-04-30 1081112]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Google Update"=C:\Users\George\AppData\Local\Google\Update\GoogleUpdate.exe [2014-10-24 107912]
"Google+ Auto Backup"=C:\Users\George\AppData\Local\Programs\Google\Google+ Auto Backup\Google+ Auto Backup.exe [2015-02-13 3754312]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner.exe [2015-04-23 6278424]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"FlashPlayerUpdate"=C:\Windows\system32\Macromed\Flash\FlashUtil10h_Plugin.exe [2010-06-11 231888]

C:\Users\George\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
OpenOffice.org 3.1.lnk - C:\Program Files\OpenOffice.org 3\program\quickstart.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{AEB6717E-7E19-11d0-97EE-00C04FD91972}"= []
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~2\Office12\GR469A~1.DLL [2006-10-27 2210608]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"VIDC.I420"=lvcodec2.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"MSVideo"=vfwwdm32.dll
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave5"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer5"=wdmaud.drv
"wave6"=wdmaud.drv
"midi6"=wdmaud.drv
"mixer6"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1

======List of files/folders created in the last 1 month======

2015-05-02 20:47:13 ----D---- C:\Users\George\AppData\Roaming\Opera Software
2015-05-02 20:35:15 ----D---- C:\Program Files\CCleaner
2015-04-15 13:38:26 ----A---- C:\Windows\system32\invagent.dll
2015-04-15 13:38:26 ----A---- C:\Windows\system32\generaltel.dll
2015-04-15 13:38:26 ----A---- C:\Windows\system32\devinv.dll
2015-04-15 13:38:26 ----A---- C:\Windows\system32\appraiser.dll
2015-04-15 13:38:26 ----A---- C:\Windows\system32\aeinv.dll
2015-04-15 13:38:26 ----A---- C:\Windows\system32\acmigration.dll
2015-04-15 13:38:25 ----A---- C:\Windows\system32\aepic.dll
2015-04-15 13:38:25 ----A---- C:\Windows\system32\aepdu.dll
2015-04-15 13:34:07 ----A---- C:\Windows\system32\clfsw32.dll
2015-04-15 13:34:07 ----A---- C:\Windows\system32\clfs.sys
2015-04-15 13:33:47 ----A---- C:\Windows\system32\ntoskrnl.exe
2015-04-15 13:33:47 ----A---- C:\Windows\system32\ntdll.dll
2015-04-15 13:33:46 ----A---- C:\Windows\system32\ntkrnlpa.exe
2015-04-15 13:33:45 ----A---- C:\Windows\system32\srcore.dll
2015-04-15 13:33:45 ----A---- C:\Windows\system32\smss.exe
2015-04-15 13:33:45 ----A---- C:\Windows\system32\schannel.dll
2015-04-15 13:33:45 ----A---- C:\Windows\system32\rstrui.exe
2015-04-15 13:33:45 ----A---- C:\Windows\system32\ncrypt.dll
2015-04-15 13:33:45 ----A---- C:\Windows\system32\msv1_0.dll
2015-04-15 13:33:45 ----A---- C:\Windows\system32\lsasrv.dll
2015-04-15 13:33:45 ----A---- C:\Windows\system32\kerberos.dll
2015-04-15 13:33:45 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2015-04-15 13:33:45 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2015-04-15 13:33:44 ----A---- C:\Windows\system32\wdigest.dll
2015-04-15 13:33:44 ----A---- C:\Windows\system32\TSpkg.dll
2015-04-15 13:33:44 ----A---- C:\Windows\system32\sspisrv.dll
2015-04-15 13:33:44 ----A---- C:\Windows\system32\sspicli.dll
2015-04-15 13:33:44 ----A---- C:\Windows\system32\srclient.dll
2015-04-15 13:33:44 ----A---- C:\Windows\system32\secur32.dll
2015-04-15 13:33:44 ----A---- C:\Windows\system32\lsass.exe
2015-04-15 13:33:44 ----A---- C:\Windows\system32\csrsrv.dll
2015-04-15 13:33:44 ----A---- C:\Windows\system32\credssp.dll
2015-04-15 13:33:44 ----A---- C:\Windows\system32\auditpol.exe
2015-04-15 13:33:43 ----A---- C:\Windows\system32\msaudite.dll
2015-04-15 13:33:43 ----A---- C:\Windows\system32\apisetschema.dll
2015-04-15 13:33:43 ----A---- C:\Windows\system32\adtschema.dll
2015-04-15 13:33:42 ----A---- C:\Windows\system32\msobjs.dll
2015-04-15 13:33:13 ----A---- C:\Windows\system32\gdi32.dll
2015-04-15 13:33:09 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-04-15 13:33:09 ----A---- C:\Windows\system32\ieetwproxystub.dll
2015-04-15 13:33:09 ----A---- C:\Windows\system32\ieetwcollector.exe
2015-04-15 13:33:08 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2015-04-15 13:33:08 ----A---- C:\Windows\system32\iernonce.dll
2015-04-15 13:33:08 ----A---- C:\Windows\system32\iedkcs32.dll
2015-04-15 13:33:08 ----A---- C:\Windows\system32\ie4uinit.exe
2015-04-15 13:33:07 ----A---- C:\Windows\system32\urlmon.dll
2015-04-15 13:33:07 ----A---- C:\Windows\system32\jsproxy.dll
2015-04-15 13:33:07 ----A---- C:\Windows\system32\jscript9diag.dll
2015-04-15 13:33:07 ----A---- C:\Windows\system32\ieUnatt.exe
2015-04-15 13:33:07 ----A---- C:\Windows\system32\dxtmsft.dll
2015-04-15 13:33:06 ----A---- C:\Windows\system32\msfeeds.dll
2015-04-15 13:33:06 ----A---- C:\Windows\system32\ieapfltr.dll
2015-04-15 13:33:05 ----A---- C:\Windows\system32\msrating.dll
2015-04-15 13:33:05 ----A---- C:\Windows\system32\iesetup.dll
2015-04-15 13:33:04 ----A---- C:\Windows\system32\wininet.dll
2015-04-15 13:33:04 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2015-04-15 13:33:03 ----A---- C:\Windows\system32\dxtrans.dll
2015-04-15 13:33:02 ----A---- C:\Windows\system32\ieui.dll
2015-04-15 13:33:02 ----A---- C:\Windows\system32\ieframe.dll
2015-04-15 13:33:00 ----A---- C:\Windows\system32\mshtmlmedia.dll
2015-04-15 13:33:00 ----A---- C:\Windows\system32\mshtmled.dll
2015-04-15 13:32:59 ----A---- C:\Windows\system32\MshtmlDac.dll
2015-04-15 13:32:59 ----A---- C:\Windows\system32\iertutil.dll
2015-04-15 13:32:58 ----A---- C:\Windows\system32\mshtml.dll
2015-04-15 13:32:57 ----A---- C:\Windows\system32\vbscript.dll
2015-04-15 13:32:56 ----A---- C:\Windows\system32\jscript9.dll
2015-04-15 13:30:11 ----A---- C:\Windows\system32\wuwebv.dll
2015-04-15 13:30:11 ----A---- C:\Windows\system32\wups2.dll
2015-04-15 13:30:11 ----A---- C:\Windows\system32\wups.dll
2015-04-15 13:30:11 ----A---- C:\Windows\system32\wudriver.dll
2015-04-15 13:30:11 ----A---- C:\Windows\system32\wucltux.dll
2015-04-15 13:30:11 ----A---- C:\Windows\system32\wuaueng.dll
2015-04-15 13:30:11 ----A---- C:\Windows\system32\wuauclt.exe
2015-04-15 13:30:11 ----A---- C:\Windows\system32\wuapp.exe
2015-04-15 13:30:11 ----A---- C:\Windows\system32\wuapi.dll
2015-04-15 13:30:11 ----A---- C:\Windows\system32\wu.upgrade.ps.dll
2015-04-15 13:30:11 ----A---- C:\Windows\system32\WinSetupUI.dll
2015-04-15 13:29:46 ----A---- C:\Windows\system32\drivers\http.sys
2015-04-15 13:29:45 ----A---- C:\Windows\system32\msxml3.dll
2015-04-15 13:29:44 ----A---- C:\Windows\system32\msxml3r.dll
2015-04-04 19:00:51 ----SD---- C:\Windows\system32\GWX

======List of files/folders modified in the last 1 month======

2015-05-02 21:31:50 ----D---- C:\Windows\Prefetch
2015-05-02 21:31:41 ----D---- C:\Program Files\trend micro
2015-05-02 21:31:40 ----D---- C:\Windows\Temp
2015-05-02 21:22:25 ----D---- C:\Windows
2015-05-02 21:21:30 ----D---- C:\Windows\system32\config
2015-05-02 21:20:58 ----D---- C:\Windows\inf
2015-05-02 21:08:22 ----SHD---- C:\Windows\Installer
2015-05-02 21:08:22 ----D---- C:\Config.Msi
2015-05-02 21:04:12 ----D---- C:\Program Files
2015-05-02 21:03:38 ----D---- C:\Program Files\Google
2015-05-02 21:03:17 ----D---- C:\Windows\Tasks
2015-05-02 21:03:17 ----D---- C:\Windows\system32\Tasks
2015-05-02 20:43:19 ----D---- C:\Program Files\Winamp
2015-05-02 20:40:24 ----D---- C:\Users\George\AppData\Roaming\FileZilla
2015-05-02 20:40:24 ----D---- C:\Users\George\AppData\Roaming\Azureus
2015-05-02 20:39:28 ----D---- C:\Windows\Panther
2015-05-02 20:39:26 ----D---- C:\Windows\Minidump
2015-05-02 20:39:26 ----D---- C:\Windows\Logs
2015-05-02 20:39:26 ----D---- C:\Windows\debug
2015-05-02 20:25:31 ----D---- C:\Users\George\AppData\Roaming\Adobe
2015-05-02 10:32:06 ----D---- C:\Windows\System32
2015-05-02 10:32:06 ----A---- C:\Windows\system32\PerfStringBackup.INI
2015-05-02 10:25:14 ----D---- C:\ProgramData\NVIDIA
2015-04-29 01:17:42 ----D---- C:\Users\George\AppData\Roaming\vlc
2015-04-28 20:31:56 ----D---- C:\Windows\system32\wfp
2015-04-28 20:31:56 ----D---- C:\Windows\system32\DriverStore
2015-04-28 20:31:55 ----D---- C:\Windows\system32\wbem
2015-04-28 20:31:55 ----D---- C:\Windows\system32\catroot2
2015-04-28 20:31:53 ----D---- C:\Windows\registration
2015-04-28 19:39:33 ----SHD---- C:\System Volume Information
2015-04-17 17:17:54 ----D---- C:\Windows\rescache
2015-04-17 17:14:36 ----D---- C:\Windows\AppCompat
2015-04-17 17:00:20 ----D---- C:\Windows\Microsoft.NET
2015-04-17 16:58:38 ----RSD---- C:\Windows\assembly
2015-04-16 15:19:57 ----D---- C:\Windows\winsxs
2015-04-16 01:11:40 ----SD---- C:\Windows\system32\CompatTel
2015-04-16 01:11:40 ----D---- C:\Windows\system32\appraiser
2015-04-16 01:11:39 ----D---- C:\Windows\AppPatch
2015-04-16 01:11:38 ----D---- C:\Windows\system32\cs-CZ
2015-04-16 01:11:37 ----D---- C:\Windows\system32\en-US
2015-04-16 01:11:37 ----D---- C:\Windows\system32\drivers
2015-04-16 01:11:36 ----D---- C:\Program Files\Internet Explorer
2015-04-16 01:11:35 ----D---- C:\Windows\PolicyDefinitions
2015-04-15 19:18:31 ----D---- C:\Windows\system32\MRT
2015-04-15 19:07:18 ----A---- C:\Windows\system32\MRT.exe
2015-04-15 15:22:29 ----D---- C:\Windows\system32\NDF

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 giveio;giveio; C:\Windows\system32\giveio.sys [1996-04-03 5248]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R0 speedfan;speedfan; C:\Windows\system32\speedfan.sys [2012-12-29 24184]
R1 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys [2012-10-08 170656]
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2012-10-08 121216]
R2 epfwwfpr;epfwwfpr; C:\Windows\system32\DRIVERS\epfwwfpr.sys [2012-10-08 104712]
R2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2009-08-18 2752352]
R3 LVUSBSta;Logitech USB Monitor Filter; C:\Windows\system32\drivers\lvusbsta.sys [2006-11-11 40352]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda32v.sys [2014-06-11 162592]
R3 NvStreamKms;NvStreamKms; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2014-04-30 17240]
R3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\Windows\system32\drivers\nvvad32v.sys [2014-03-31 34080]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt86win7.sys [2009-07-30 187392]
S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 ALCXWDM;Service for Realtek AC97 Audio (WDM); C:\Windows\system32\drivers\RTKVAC.SYS [2009-06-18 4172832]
S3 amdagp;Ovladač filtru AMD portu AGP; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888]
S3 cpuz136;cpuz136; \??\C:\Windows\TEMP\cpuz136\cpuz136_x32.sys []
S3 EverestDriver;Lavalys EVEREST Kernel Driver; \??\C:\Program Files\Lavalys\EVEREST Ultimate Edition\kerneld.wnt []
S3 GPUZ;GPUZ; \??\C:\Windows\TEMP\GPUZ.sys []
S3 LVcKap;Logitech AEC Driver; C:\Windows\system32\DRIVERS\LVcKap.sys []
S3 LVPr2Mon;Logitech LVPr2Mon Driver; C:\Windows\system32\DRIVERS\LVPr2Mon.sys []
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368]
S3 PID_0928;Logitech QuickCam Express(PID_0928); C:\Windows\system32\DRIVERS\LV561AV.SYS [2006-11-11 487328]
S3 sisagp;Filtr SIS sběrnice AGP; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2010-11-20 52224]
S3 viaagp;Filtr VIA sběrnice AGP; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2014-12-19 81088]
R2 c2cautoupdatesvc;Skype Click to Call Updater; C:\Program Files\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [2014-07-14 1390176]
R2 c2cpnrsvc;Skype Click to Call PNR Service; C:\Program Files\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [2014-07-14 1767520]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe [2012-11-26 1329304]
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe [2014-04-30 1617696]
R2 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [2014-04-30 19702048]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2014-05-20 668104]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2014-05-20 410968]
R2 TeamViewer5;TeamViewer 5; C:\Program Files\TeamViewer\Version5\TeamViewer_Service.exe [2010-03-18 172328]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2014-04-12 103608]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2015-05-02 107848]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2014-04-03 315008]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2012-12-29 654848]
S3 Futuremark SystemInfo Service;Futuremark SystemInfo Service; C:\Program Files\Futuremark\SystemInfo\FMSISvc.exe [2014-01-09 520416]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2015-05-02 107848]
S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-12-22 136120]
S3 hpqcxs08;hpqcxs08; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2015-03-13 102912]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2006-10-27 65824]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2010-06-16 1343400]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2014-04-12 45744]
S4 Bonjour Service;##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762##; C:\Program Files\Bonjour\mDNSResponder.exe [2006-02-28 229376]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]

-----------------EOF-----------------

Re: chrome se seka, prosim o kontrolu, dekuji

Napsal: 02 kvě 2015 20:35
od Rudy
Zdravím!
Spusťte tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte
.

Re: chrome se seka, prosim o kontrolu, dekuji

Napsal: 02 kvě 2015 20:51
od vinnoo
# AdwCleaner v4.203 - Log vytvořen 02/05/2015 v 21:43:12
# Aktualizováno 30/04/2015 by Xplode
# Databáze : 2015-05-02.1 [Server]
# Operační system : Windows 7 Home Premium Service Pack 1 (x86)
# Uživatelské jméno : George - MYPC
# Spuštěno z : C:\Users\George\Desktop\adwcleaner_4.203.exe
# Nastavení : Čištění

***** [ Služby ] *****


***** [ Soubory / Složky ] *****

Složka Smazáno : C:\ProgramData\PC Drivers HeadQuarters

***** [ Naplánované úlohy ] *****


***** [ Zástupci ] *****


***** [ Registry ] *****

Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A2D81E70-2A98-4A08-A628-94388B063C5E}
Data Smazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings [ProxyOverride] - *.local

***** [ Prohlížeče ] *****

-\\ Internet Explorer v11.0.9600.17728


-\\ Mozilla Firefox v

Dobry vecer
dekuji
zde log

-\\ Google Chrome v42.0.2311.135

[C:\Users\George\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Smazáno [Search Provider] : hxxp://www.softonic.com/s/{searchTerms}

-\\ Opera v0.0.0.0


*************************

AdwCleaner[R0].txt - [1235 bytů] - [02/05/2015 21:39:00]
AdwCleaner[S0].txt - [1156 bytů] - [02/05/2015 21:43:12]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [1214 bytů] ##########

Re: chrome se seka, prosim o kontrolu, dekuji

Napsal: 02 kvě 2015 21:51
od Rudy
Dejte nový log RSIT.

Re: chrome se seka, prosim o kontrolu, dekuji

Napsal: 02 kvě 2015 21:55
od vinnoo
Logfile of random's system information tool 1.10 (written by random/random)
Run by George at 2015-05-02 22:55:02
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 234 GB (77%) free of 305 GB
Total RAM: 3263 MB (55% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22:55:14, on 2.5.2015
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17728)
Boot mode: Normal

Running processes:
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\SOUNDMAN.EXE
C:\Program Files\HP\HP Software Update\hpwuSchd2.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Users\George\AppData\Local\Programs\Google\Google+ Auto Backup\Google+ Auto Backup.exe
C:\Program Files\OpenOffice.org 3\program\soffice.exe
C:\Program Files\OpenOffice.org 3\program\soffice.bin
C:\Windows\system32\taskeng.exe
C:\Program Files\CCleaner\CCleaner.exe
C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Common Files\Microsoft Shared\Ink\InputPersonalization.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Users\George\Downloads\RSIT (2).exe
C:\Windows\system32\taskeng.exe
C:\Program Files\trend micro\George.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~2\Office12\GR469A~1.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files\Winamp\winampa.exe"
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
O4 - HKLM\..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe -s
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [NvBackend] "C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe"
O4 - HKLM\..\Run: [ShadowPlay] C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap.dll,ShadowPlayOnSystemStart
O4 - HKCU\..\Run: [Google Update] "C:\Users\George\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [Google+ Auto Backup] "C:\Users\George\AppData\Local\Programs\Google\Google+ Auto Backup\Google+ Auto Backup.exe" /autostart
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner.exe" /MONITOR
O4 - Startup: OpenOffice.org 3.1.lnk = C:\Program Files\OpenOffice.org 3\program\quickstart.exe
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xportovať do programu Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: Odoslať do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&oslať do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Skype Click to Call settings - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~1\MICROS~2\Office12\GRA32A~1.DLL
O18 - Protocol: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Futuremark SystemInfo Service - Futuremark - C:\Program Files\Futuremark\SystemInfo\FMSISvc.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Process Monitor (LVPrcSrv) - Unknown owner - c:\program files\common files\logitech\lvmvfm\LVPrcSrv.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: TeamViewer 5 (TeamViewer5) - TeamViewer GmbH - C:\Program Files\TeamViewer\Version5\TeamViewer_Service.exe

--
End of file - 6682 bytes

======Scheduled tasks folder======

C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-575251766-227617794-3401262809-1000Core.job - C:\Users\George\AppData\Local\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-575251766-227617794-3401262809-1000Core1d041748e8357c3.job - C:\Users\George\AppData\Local\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-575251766-227617794-3401262809-1000UA1cf8c8c32a52bf0.job - C:\Users\George\AppData\Local\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-575251766-227617794-3401262809-1000UA1d041748f26a8d8.job - C:\Users\George\AppData\Local\Google\Update\GoogleUpdate.exe /ua /installsource scheduler

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~2\Office12\GR469A~1.DLL [2006-10-27 2210608]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2013-06-12 463272]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Click to Call for Internet Explorer - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2014-07-14 1709152]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2013-06-12 171944]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SoundMan"=C:\Windows\SOUNDMAN.EXE [2009-04-14 604704]
"WinampAgent"=C:\Program Files\Winamp\winampa.exe []
"HP Software Update"=C:\Program Files\HP\HP Software Update\HPWuSchd2.exe [2007-03-11 49152]
"egui"=C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [2012-11-26 5074384]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [2009-08-18 7711264]
"GrooveMonitor"=C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2006-10-27 31016]
"NvBackend"=C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe [2014-04-30 2199840]
"ShadowPlay"=C:\Windows\system32\nvspcap.dll [2014-04-30 1081112]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Google Update"=C:\Users\George\AppData\Local\Google\Update\GoogleUpdate.exe [2014-10-24 107912]
"Google+ Auto Backup"=C:\Users\George\AppData\Local\Programs\Google\Google+ Auto Backup\Google+ Auto Backup.exe [2015-02-13 3754312]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner.exe [2015-04-23 6278424]

C:\Users\George\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
OpenOffice.org 3.1.lnk - C:\Program Files\OpenOffice.org 3\program\quickstart.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{AEB6717E-7E19-11d0-97EE-00C04FD91972}"= []
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~2\Office12\GR469A~1.DLL [2006-10-27 2210608]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"VIDC.I420"=lvcodec2.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"MSVideo"=vfwwdm32.dll
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave5"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer5"=wdmaud.drv
"wave6"=wdmaud.drv
"midi6"=wdmaud.drv
"mixer6"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1

======List of files/folders created in the last 1 month======

2015-05-02 21:38:58 ----D---- C:\AdwCleaner
2015-05-02 20:47:13 ----D---- C:\Users\George\AppData\Roaming\Opera Software
2015-05-02 20:35:15 ----D---- C:\Program Files\CCleaner
2015-04-15 13:38:26 ----A---- C:\Windows\system32\invagent.dll
2015-04-15 13:38:26 ----A---- C:\Windows\system32\generaltel.dll
2015-04-15 13:38:26 ----A---- C:\Windows\system32\devinv.dll
2015-04-15 13:38:26 ----A---- C:\Windows\system32\appraiser.dll
2015-04-15 13:38:26 ----A---- C:\Windows\system32\aeinv.dll
2015-04-15 13:38:26 ----A---- C:\Windows\system32\acmigration.dll
2015-04-15 13:38:25 ----A---- C:\Windows\system32\aepic.dll
2015-04-15 13:38:25 ----A---- C:\Windows\system32\aepdu.dll
2015-04-15 13:34:07 ----A---- C:\Windows\system32\clfsw32.dll
2015-04-15 13:34:07 ----A---- C:\Windows\system32\clfs.sys
2015-04-15 13:33:47 ----A---- C:\Windows\system32\ntoskrnl.exe
2015-04-15 13:33:47 ----A---- C:\Windows\system32\ntdll.dll
2015-04-15 13:33:46 ----A---- C:\Windows\system32\ntkrnlpa.exe
2015-04-15 13:33:45 ----A---- C:\Windows\system32\srcore.dll
2015-04-15 13:33:45 ----A---- C:\Windows\system32\smss.exe
2015-04-15 13:33:45 ----A---- C:\Windows\system32\schannel.dll
2015-04-15 13:33:45 ----A---- C:\Windows\system32\rstrui.exe
2015-04-15 13:33:45 ----A---- C:\Windows\system32\ncrypt.dll
2015-04-15 13:33:45 ----A---- C:\Windows\system32\msv1_0.dll
2015-04-15 13:33:45 ----A---- C:\Windows\system32\lsasrv.dll
2015-04-15 13:33:45 ----A---- C:\Windows\system32\kerberos.dll
2015-04-15 13:33:45 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2015-04-15 13:33:45 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2015-04-15 13:33:44 ----A---- C:\Windows\system32\wdigest.dll
2015-04-15 13:33:44 ----A---- C:\Windows\system32\TSpkg.dll
2015-04-15 13:33:44 ----A---- C:\Windows\system32\sspisrv.dll
2015-04-15 13:33:44 ----A---- C:\Windows\system32\sspicli.dll
2015-04-15 13:33:44 ----A---- C:\Windows\system32\srclient.dll
2015-04-15 13:33:44 ----A---- C:\Windows\system32\secur32.dll
2015-04-15 13:33:44 ----A---- C:\Windows\system32\lsass.exe
2015-04-15 13:33:44 ----A---- C:\Windows\system32\csrsrv.dll
2015-04-15 13:33:44 ----A---- C:\Windows\system32\credssp.dll
2015-04-15 13:33:44 ----A---- C:\Windows\system32\auditpol.exe
2015-04-15 13:33:43 ----A---- C:\Windows\system32\msaudite.dll
2015-04-15 13:33:43 ----A---- C:\Windows\system32\apisetschema.dll
2015-04-15 13:33:43 ----A---- C:\Windows\system32\adtschema.dll
2015-04-15 13:33:42 ----A---- C:\Windows\system32\msobjs.dll
2015-04-15 13:33:13 ----A---- C:\Windows\system32\gdi32.dll
2015-04-15 13:33:09 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-04-15 13:33:09 ----A---- C:\Windows\system32\ieetwproxystub.dll
2015-04-15 13:33:09 ----A---- C:\Windows\system32\ieetwcollector.exe
2015-04-15 13:33:08 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2015-04-15 13:33:08 ----A---- C:\Windows\system32\iernonce.dll
2015-04-15 13:33:08 ----A---- C:\Windows\system32\iedkcs32.dll
2015-04-15 13:33:08 ----A---- C:\Windows\system32\ie4uinit.exe
2015-04-15 13:33:07 ----A---- C:\Windows\system32\urlmon.dll
2015-04-15 13:33:07 ----A---- C:\Windows\system32\jsproxy.dll
2015-04-15 13:33:07 ----A---- C:\Windows\system32\jscript9diag.dll
2015-04-15 13:33:07 ----A---- C:\Windows\system32\ieUnatt.exe
2015-04-15 13:33:07 ----A---- C:\Windows\system32\dxtmsft.dll
2015-04-15 13:33:06 ----A---- C:\Windows\system32\msfeeds.dll
2015-04-15 13:33:06 ----A---- C:\Windows\system32\ieapfltr.dll
2015-04-15 13:33:05 ----A---- C:\Windows\system32\msrating.dll
2015-04-15 13:33:05 ----A---- C:\Windows\system32\iesetup.dll
2015-04-15 13:33:04 ----A---- C:\Windows\system32\wininet.dll
2015-04-15 13:33:04 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2015-04-15 13:33:03 ----A---- C:\Windows\system32\dxtrans.dll
2015-04-15 13:33:02 ----A---- C:\Windows\system32\ieui.dll
2015-04-15 13:33:02 ----A---- C:\Windows\system32\ieframe.dll
2015-04-15 13:33:00 ----A---- C:\Windows\system32\mshtmlmedia.dll
2015-04-15 13:33:00 ----A---- C:\Windows\system32\mshtmled.dll
2015-04-15 13:32:59 ----A---- C:\Windows\system32\MshtmlDac.dll
2015-04-15 13:32:59 ----A---- C:\Windows\system32\iertutil.dll
2015-04-15 13:32:58 ----A---- C:\Windows\system32\mshtml.dll
2015-04-15 13:32:57 ----A---- C:\Windows\system32\vbscript.dll
2015-04-15 13:32:56 ----A---- C:\Windows\system32\jscript9.dll
2015-04-15 13:30:11 ----A---- C:\Windows\system32\wuwebv.dll
2015-04-15 13:30:11 ----A---- C:\Windows\system32\wups2.dll
2015-04-15 13:30:11 ----A---- C:\Windows\system32\wups.dll
2015-04-15 13:30:11 ----A---- C:\Windows\system32\wudriver.dll
2015-04-15 13:30:11 ----A---- C:\Windows\system32\wucltux.dll
2015-04-15 13:30:11 ----A---- C:\Windows\system32\wuaueng.dll
2015-04-15 13:30:11 ----A---- C:\Windows\system32\wuauclt.exe
2015-04-15 13:30:11 ----A---- C:\Windows\system32\wuapp.exe
2015-04-15 13:30:11 ----A---- C:\Windows\system32\wuapi.dll
2015-04-15 13:30:11 ----A---- C:\Windows\system32\wu.upgrade.ps.dll
2015-04-15 13:30:11 ----A---- C:\Windows\system32\WinSetupUI.dll
2015-04-15 13:29:46 ----A---- C:\Windows\system32\drivers\http.sys
2015-04-15 13:29:45 ----A---- C:\Windows\system32\msxml3.dll
2015-04-15 13:29:44 ----A---- C:\Windows\system32\msxml3r.dll
2015-04-04 19:00:51 ----SD---- C:\Windows\system32\GWX

======List of files/folders modified in the last 1 month======

2015-05-02 22:55:11 ----D---- C:\Program Files\trend micro
2015-05-02 22:54:56 ----D---- C:\Windows\Temp
2015-05-02 22:40:38 ----D---- C:\Windows\system32\config
2015-05-02 21:57:11 ----D---- C:\Windows\System32
2015-05-02 21:57:11 ----A---- C:\Windows\system32\PerfStringBackup.INI
2015-05-02 21:57:10 ----D---- C:\Windows\inf
2015-05-02 21:49:49 ----D---- C:\ProgramData\NVIDIA
2015-05-02 21:43:18 ----D---- C:\Windows\Prefetch
2015-05-02 21:43:12 ----D---- C:\ProgramData
2015-05-02 21:22:25 ----D---- C:\Windows
2015-05-02 21:08:22 ----SHD---- C:\Windows\Installer
2015-05-02 21:08:22 ----D---- C:\Config.Msi
2015-05-02 21:04:12 ----D---- C:\Program Files
2015-05-02 21:03:38 ----D---- C:\Program Files\Google
2015-05-02 21:03:17 ----D---- C:\Windows\Tasks
2015-05-02 21:03:17 ----D---- C:\Windows\system32\Tasks
2015-05-02 20:43:19 ----D---- C:\Program Files\Winamp
2015-05-02 20:40:24 ----D---- C:\Users\George\AppData\Roaming\FileZilla
2015-05-02 20:40:24 ----D---- C:\Users\George\AppData\Roaming\Azureus
2015-05-02 20:39:28 ----D---- C:\Windows\Panther
2015-05-02 20:39:26 ----D---- C:\Windows\Minidump
2015-05-02 20:39:26 ----D---- C:\Windows\Logs
2015-05-02 20:39:26 ----D---- C:\Windows\debug
2015-05-02 20:25:31 ----D---- C:\Users\George\AppData\Roaming\Adobe
2015-04-29 01:17:42 ----D---- C:\Users\George\AppData\Roaming\vlc
2015-04-28 20:31:56 ----D---- C:\Windows\system32\wfp
2015-04-28 20:31:56 ----D---- C:\Windows\system32\DriverStore
2015-04-28 20:31:55 ----D---- C:\Windows\system32\wbem
2015-04-28 20:31:55 ----D---- C:\Windows\system32\catroot2
2015-04-28 20:31:53 ----D---- C:\Windows\registration
2015-04-28 19:39:33 ----SHD---- C:\System Volume Information
2015-04-17 17:17:54 ----D---- C:\Windows\rescache
2015-04-17 17:14:36 ----D---- C:\Windows\AppCompat
2015-04-17 17:00:20 ----D---- C:\Windows\Microsoft.NET
2015-04-17 16:58:38 ----RSD---- C:\Windows\assembly
2015-04-16 15:19:57 ----D---- C:\Windows\winsxs
2015-04-16 01:11:40 ----SD---- C:\Windows\system32\CompatTel
2015-04-16 01:11:40 ----D---- C:\Windows\system32\appraiser
2015-04-16 01:11:39 ----D---- C:\Windows\AppPatch
2015-04-16 01:11:38 ----D---- C:\Windows\system32\cs-CZ
2015-04-16 01:11:37 ----D---- C:\Windows\system32\en-US
2015-04-16 01:11:37 ----D---- C:\Windows\system32\drivers
2015-04-16 01:11:36 ----D---- C:\Program Files\Internet Explorer
2015-04-16 01:11:35 ----D---- C:\Windows\PolicyDefinitions
2015-04-15 19:18:31 ----D---- C:\Windows\system32\MRT
2015-04-15 19:07:18 ----A---- C:\Windows\system32\MRT.exe
2015-04-15 15:22:29 ----D---- C:\Windows\system32\NDF

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 giveio;giveio; C:\Windows\system32\giveio.sys [1996-04-03 5248]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R0 speedfan;speedfan; C:\Windows\system32\speedfan.sys [2012-12-29 24184]
R1 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys [2012-10-08 170656]
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2012-10-08 121216]
R2 epfwwfpr;epfwwfpr; C:\Windows\system32\DRIVERS\epfwwfpr.sys [2012-10-08 104712]
R2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2009-08-18 2752352]
R3 LVUSBSta;Logitech USB Monitor Filter; C:\Windows\system32\drivers\lvusbsta.sys [2006-11-11 40352]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda32v.sys [2014-06-11 162592]
R3 NvStreamKms;NvStreamKms; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2014-04-30 17240]
R3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\Windows\system32\drivers\nvvad32v.sys [2014-03-31 34080]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt86win7.sys [2009-07-30 187392]
S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 ALCXWDM;Service for Realtek AC97 Audio (WDM); C:\Windows\system32\drivers\RTKVAC.SYS [2009-06-18 4172832]
S3 amdagp;Ovladač filtru AMD portu AGP; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888]
S3 cpuz136;cpuz136; \??\C:\Windows\TEMP\cpuz136\cpuz136_x32.sys []
S3 EverestDriver;Lavalys EVEREST Kernel Driver; \??\C:\Program Files\Lavalys\EVEREST Ultimate Edition\kerneld.wnt []
S3 GPUZ;GPUZ; \??\C:\Windows\TEMP\GPUZ.sys []
S3 LVcKap;Logitech AEC Driver; C:\Windows\system32\DRIVERS\LVcKap.sys []
S3 LVPr2Mon;Logitech LVPr2Mon Driver; C:\Windows\system32\DRIVERS\LVPr2Mon.sys []
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368]
S3 PID_0928;Logitech QuickCam Express(PID_0928); C:\Windows\system32\DRIVERS\LV561AV.SYS [2006-11-11 487328]
S3 sisagp;Filtr SIS sběrnice AGP; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2010-11-20 52224]
S3 viaagp;Filtr VIA sběrnice AGP; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2014-12-19 81088]
R2 c2cautoupdatesvc;Skype Click to Call Updater; C:\Program Files\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [2014-07-14 1390176]
R2 c2cpnrsvc;Skype Click to Call PNR Service; C:\Program Files\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [2014-07-14 1767520]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe [2012-11-26 1329304]
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe [2014-04-30 1617696]
R2 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [2014-04-30 19702048]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2014-05-20 668104]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2014-05-20 410968]
R2 TeamViewer5;TeamViewer 5; C:\Program Files\TeamViewer\Version5\TeamViewer_Service.exe [2010-03-18 172328]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2014-04-12 103608]
S2 LVPrcSrv;Process Monitor; c:\program files\common files\logitech\lvmvfm\LVPrcSrv.exe []
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2014-04-03 315008]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2012-12-29 654848]
S3 Futuremark SystemInfo Service;Futuremark SystemInfo Service; C:\Program Files\Futuremark\SystemInfo\FMSISvc.exe [2014-01-09 520416]
S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-12-22 136120]
S3 hpqcxs08;hpqcxs08; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2015-03-13 102912]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2006-10-27 65824]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2010-06-16 1343400]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2014-04-12 45744]
S4 Bonjour Service;##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762##; C:\Program Files\Bonjour\mDNSResponder.exe [2006-02-28 229376]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]

-----------------EOF-----------------

Re: chrome se seka, prosim o kontrolu, dekuji

Napsal: 02 kvě 2015 22:00
od Rudy
Stáhněte OTM: http://oldtimer.geekstogo.com/OTM.exe a uložte na plochu. Spusťte a do levého okna zkopírujte:
:files
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-575251766-227617794-3401262809-1000Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-575251766-227617794-3401262809-1000Core1d041748e8357c3.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-575251766-227617794-3401262809-1000UA1cf8c8c32a52bf0.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-575251766-227617794-3401262809-1000UA1d041748f26a8d8.job
C:\Program Files\Skype\Toolbars

:reg
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]/64

:services
c2cautoupdatesvc
c2cpnrsvc

:commands
[Purity]
[Emptytemp]
[Emptyflash]
a klikněte na >MoveIt!<. Po skenu restartujte PC a dejte nový log RSIT.

Re: chrome se seka, prosim o kontrolu, dekuji

Napsal: 02 kvě 2015 23:48
od vinnoo
Logfile of random's system information tool 1.10 (written by random/random)
Run by George at 2015-05-03 00:47:54
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 236 GB (77%) free of 305 GB
Total RAM: 3263 MB (54% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 0:48:00, on 3.5.2015
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17728)
Boot mode: Normal

Running processes:
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\SOUNDMAN.EXE
C:\Program Files\Winamp\winampa.exe
C:\Program Files\HP\HP Software Update\hpwuSchd2.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files\OpenOffice.org 3\program\soffice.exe
C:\Program Files\OpenOffice.org 3\program\soffice.bin
C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
C:\Program Files\Common Files\Microsoft Shared\Ink\InputPersonalization.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\George\Downloads\RSIT (2).exe
C:\Program Files\trend micro\George.exe
C:\Windows\system32\DllHost.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~2\Office12\GR469A~1.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files\Winamp\winampa.exe"
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
O4 - HKLM\..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe -s
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [NvBackend] "C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe"
O4 - HKLM\..\Run: [ShadowPlay] C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap.dll,ShadowPlayOnSystemStart
O4 - HKCU\..\Run: [Google Update] "C:\Users\George\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [Google+ Auto Backup] "C:\Users\George\AppData\Local\Programs\Google\Google+ Auto Backup\Google+ Auto Backup.exe" /autostart
O4 - Startup: OpenOffice.org 3.1.lnk = C:\Program Files\OpenOffice.org 3\program\quickstart.exe
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xportovať do programu Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: Odoslať do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&oslať do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Skype Click to Call settings - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~1\MICROS~2\Office12\GRA32A~1.DLL
O18 - Protocol: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Futuremark SystemInfo Service - Futuremark - C:\Program Files\Futuremark\SystemInfo\FMSISvc.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Process Monitor (LVPrcSrv) - Unknown owner - c:\program files\common files\logitech\lvmvfm\LVPrcSrv.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: TeamViewer 5 (TeamViewer5) - TeamViewer GmbH - C:\Program Files\TeamViewer\Version5\TeamViewer_Service.exe

--
End of file - 6569 bytes

======Scheduled tasks folder======

C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-575251766-227617794-3401262809-1000Core.job - C:\Users\George\AppData\Local\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-575251766-227617794-3401262809-1000Core1d041748e8357c3.job - C:\Users\George\AppData\Local\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-575251766-227617794-3401262809-1000UA1cf8c8c32a52bf0.job - C:\Users\George\AppData\Local\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-575251766-227617794-3401262809-1000UA1d041748f26a8d8.job - C:\Users\George\AppData\Local\Google\Update\GoogleUpdate.exe /ua /installsource scheduler

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~2\Office12\GR469A~1.DLL [2006-10-27 2210608]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2013-06-12 463272]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Click to Call for Internet Explorer - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2014-07-14 1709152]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2013-06-12 171944]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SoundMan"=C:\Windows\SOUNDMAN.EXE [2009-04-14 604704]
"WinampAgent"=C:\Program Files\Winamp\winampa.exe [2010-01-14 37888]
"HP Software Update"=C:\Program Files\HP\HP Software Update\HPWuSchd2.exe [2007-03-11 49152]
"egui"=C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [2012-11-26 5074384]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [2009-08-18 7711264]
"GrooveMonitor"=C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2006-10-27 31016]
"NvBackend"=C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe [2014-04-30 2199840]
"ShadowPlay"=C:\Windows\system32\nvspcap.dll [2014-04-30 1081112]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Google Update"=C:\Users\George\AppData\Local\Google\Update\GoogleUpdate.exe [2014-10-24 107912]
"Google+ Auto Backup"=C:\Users\George\AppData\Local\Programs\Google\Google+ Auto Backup\Google+ Auto Backup.exe [2015-02-13 3754312]

C:\Users\George\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
OpenOffice.org 3.1.lnk - C:\Program Files\OpenOffice.org 3\program\quickstart.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{AEB6717E-7E19-11d0-97EE-00C04FD91972}"= []
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~2\Office12\GR469A~1.DLL [2006-10-27 2210608]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"VIDC.I420"=lvcodec2.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"MSVideo"=vfwwdm32.dll
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave5"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer5"=wdmaud.drv
"wave6"=wdmaud.drv
"midi6"=wdmaud.drv
"mixer6"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1

======List of files/folders created in the last 1 month======

2015-05-02 23:14:34 ----D---- C:\_OTM
2015-05-02 21:38:58 ----D---- C:\AdwCleaner
2015-05-02 20:47:13 ----D---- C:\Users\George\AppData\Roaming\Opera Software
2015-05-02 20:35:15 ----D---- C:\Program Files\CCleaner
2015-04-15 13:38:26 ----A---- C:\Windows\system32\invagent.dll
2015-04-15 13:38:26 ----A---- C:\Windows\system32\generaltel.dll
2015-04-15 13:38:26 ----A---- C:\Windows\system32\devinv.dll
2015-04-15 13:38:26 ----A---- C:\Windows\system32\appraiser.dll
2015-04-15 13:38:26 ----A---- C:\Windows\system32\aeinv.dll
2015-04-15 13:38:26 ----A---- C:\Windows\system32\acmigration.dll
2015-04-15 13:38:25 ----A---- C:\Windows\system32\aepic.dll
2015-04-15 13:38:25 ----A---- C:\Windows\system32\aepdu.dll
2015-04-15 13:34:07 ----A---- C:\Windows\system32\clfsw32.dll
2015-04-15 13:34:07 ----A---- C:\Windows\system32\clfs.sys
2015-04-15 13:33:47 ----A---- C:\Windows\system32\ntoskrnl.exe
2015-04-15 13:33:47 ----A---- C:\Windows\system32\ntdll.dll
2015-04-15 13:33:46 ----A---- C:\Windows\system32\ntkrnlpa.exe
2015-04-15 13:33:45 ----A---- C:\Windows\system32\srcore.dll
2015-04-15 13:33:45 ----A---- C:\Windows\system32\smss.exe
2015-04-15 13:33:45 ----A---- C:\Windows\system32\schannel.dll
2015-04-15 13:33:45 ----A---- C:\Windows\system32\rstrui.exe
2015-04-15 13:33:45 ----A---- C:\Windows\system32\ncrypt.dll
2015-04-15 13:33:45 ----A---- C:\Windows\system32\msv1_0.dll
2015-04-15 13:33:45 ----A---- C:\Windows\system32\lsasrv.dll
2015-04-15 13:33:45 ----A---- C:\Windows\system32\kerberos.dll
2015-04-15 13:33:45 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2015-04-15 13:33:45 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2015-04-15 13:33:44 ----A---- C:\Windows\system32\wdigest.dll
2015-04-15 13:33:44 ----A---- C:\Windows\system32\TSpkg.dll
2015-04-15 13:33:44 ----A---- C:\Windows\system32\sspisrv.dll
2015-04-15 13:33:44 ----A---- C:\Windows\system32\sspicli.dll
2015-04-15 13:33:44 ----A---- C:\Windows\system32\srclient.dll
2015-04-15 13:33:44 ----A---- C:\Windows\system32\secur32.dll
2015-04-15 13:33:44 ----A---- C:\Windows\system32\lsass.exe
2015-04-15 13:33:44 ----A---- C:\Windows\system32\csrsrv.dll
2015-04-15 13:33:44 ----A---- C:\Windows\system32\credssp.dll
2015-04-15 13:33:44 ----A---- C:\Windows\system32\auditpol.exe
2015-04-15 13:33:43 ----A---- C:\Windows\system32\msaudite.dll
2015-04-15 13:33:43 ----A---- C:\Windows\system32\apisetschema.dll
2015-04-15 13:33:43 ----A---- C:\Windows\system32\adtschema.dll
2015-04-15 13:33:42 ----A---- C:\Windows\system32\msobjs.dll
2015-04-15 13:33:13 ----A---- C:\Windows\system32\gdi32.dll
2015-04-15 13:33:09 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-04-15 13:33:09 ----A---- C:\Windows\system32\ieetwproxystub.dll
2015-04-15 13:33:09 ----A---- C:\Windows\system32\ieetwcollector.exe
2015-04-15 13:33:08 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2015-04-15 13:33:08 ----A---- C:\Windows\system32\iernonce.dll
2015-04-15 13:33:08 ----A---- C:\Windows\system32\iedkcs32.dll
2015-04-15 13:33:08 ----A---- C:\Windows\system32\ie4uinit.exe
2015-04-15 13:33:07 ----A---- C:\Windows\system32\urlmon.dll
2015-04-15 13:33:07 ----A---- C:\Windows\system32\jsproxy.dll
2015-04-15 13:33:07 ----A---- C:\Windows\system32\jscript9diag.dll
2015-04-15 13:33:07 ----A---- C:\Windows\system32\ieUnatt.exe
2015-04-15 13:33:07 ----A---- C:\Windows\system32\dxtmsft.dll
2015-04-15 13:33:06 ----A---- C:\Windows\system32\msfeeds.dll
2015-04-15 13:33:06 ----A---- C:\Windows\system32\ieapfltr.dll
2015-04-15 13:33:05 ----A---- C:\Windows\system32\msrating.dll
2015-04-15 13:33:05 ----A---- C:\Windows\system32\iesetup.dll
2015-04-15 13:33:04 ----A---- C:\Windows\system32\wininet.dll
2015-04-15 13:33:04 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2015-04-15 13:33:03 ----A---- C:\Windows\system32\dxtrans.dll
2015-04-15 13:33:02 ----A---- C:\Windows\system32\ieui.dll
2015-04-15 13:33:02 ----A---- C:\Windows\system32\ieframe.dll
2015-04-15 13:33:00 ----A---- C:\Windows\system32\mshtmlmedia.dll
2015-04-15 13:33:00 ----A---- C:\Windows\system32\mshtmled.dll
2015-04-15 13:32:59 ----A---- C:\Windows\system32\MshtmlDac.dll
2015-04-15 13:32:59 ----A---- C:\Windows\system32\iertutil.dll
2015-04-15 13:32:58 ----A---- C:\Windows\system32\mshtml.dll
2015-04-15 13:32:57 ----A---- C:\Windows\system32\vbscript.dll
2015-04-15 13:32:56 ----A---- C:\Windows\system32\jscript9.dll
2015-04-15 13:30:11 ----A---- C:\Windows\system32\wuwebv.dll
2015-04-15 13:30:11 ----A---- C:\Windows\system32\wups2.dll
2015-04-15 13:30:11 ----A---- C:\Windows\system32\wups.dll
2015-04-15 13:30:11 ----A---- C:\Windows\system32\wudriver.dll
2015-04-15 13:30:11 ----A---- C:\Windows\system32\wucltux.dll
2015-04-15 13:30:11 ----A---- C:\Windows\system32\wuaueng.dll
2015-04-15 13:30:11 ----A---- C:\Windows\system32\wuauclt.exe
2015-04-15 13:30:11 ----A---- C:\Windows\system32\wuapp.exe
2015-04-15 13:30:11 ----A---- C:\Windows\system32\wuapi.dll
2015-04-15 13:30:11 ----A---- C:\Windows\system32\wu.upgrade.ps.dll
2015-04-15 13:30:11 ----A---- C:\Windows\system32\WinSetupUI.dll
2015-04-15 13:29:46 ----A---- C:\Windows\system32\drivers\http.sys
2015-04-15 13:29:45 ----A---- C:\Windows\system32\msxml3.dll
2015-04-15 13:29:44 ----A---- C:\Windows\system32\msxml3r.dll
2015-04-04 19:00:51 ----SD---- C:\Windows\system32\GWX

======List of files/folders modified in the last 1 month======

2015-05-03 01:40:00 ----D---- C:\Windows\winsxs
2015-05-03 01:40:00 ----D---- C:\Windows\system32\wfp
2015-05-03 01:40:00 ----D---- C:\Windows\system32\DriverStore
2015-05-03 01:40:00 ----D---- C:\Windows\system32\drivers\etc
2015-05-03 01:40:00 ----D---- C:\Windows\system32\drivers
2015-05-03 01:40:00 ----D---- C:\Windows\system32\catroot2
2015-05-03 01:40:00 ----D---- C:\Windows\System32
2015-05-03 01:40:00 ----D---- C:\Windows\Minidump
2015-05-03 01:40:00 ----D---- C:\Windows\inf
2015-05-03 01:40:00 ----D---- C:\Windows
2015-05-03 01:40:00 ----D---- C:\Program Files\Internet Explorer
2015-05-03 01:39:59 ----D---- C:\Users\George\AppData\Roaming\Winamp
2015-05-03 01:39:59 ----D---- C:\Users\George\AppData\Roaming\vlc
2015-05-03 01:39:58 ----D---- C:\Users\George\AppData\Roaming\Azureus
2015-05-03 01:39:56 ----D---- C:\ProgramData\FLEXnet
2015-05-03 01:39:56 ----D---- C:\Program Files\Winamp
2015-05-03 01:39:45 ----D---- C:\Windows\registration
2015-05-03 01:39:41 ----D---- C:\Windows\system32\wbem
2015-05-03 01:39:09 ----D---- C:\Users\George\AppData\Roaming\Adobe
2015-05-03 01:38:48 ----D---- C:\ProgramData\PC Drivers HeadQuarters
2015-05-03 01:38:48 ----D---- C:\ProgramData
2015-05-03 01:38:40 ----RD---- C:\Program Files\Skype
2015-05-03 01:38:19 ----D---- C:\NVIDIA
2015-05-03 00:47:59 ----D---- C:\Program Files\trend micro
2015-05-03 00:47:55 ----D---- C:\Windows\Temp
2015-05-03 00:46:34 ----D---- C:\Program Files
2015-05-03 00:46:20 ----D---- C:\Windows\Prefetch
2015-05-03 00:45:55 ----D---- C:\Windows\Tasks
2015-05-03 00:45:55 ----D---- C:\Windows\system32\Tasks
2015-05-03 00:44:46 ----SHD---- C:\System Volume Information
2015-05-03 00:43:19 ----D---- C:\Windows\system32\config
2015-05-03 00:42:06 ----D---- C:\ProgramData\NVIDIA
2015-05-02 21:08:22 ----D---- C:\Config.Msi
2015-05-02 20:40:24 ----D---- C:\Users\George\AppData\Roaming\FileZilla
2015-05-02 20:39:28 ----D---- C:\Windows\Panther
2015-05-02 20:39:26 ----D---- C:\Windows\Logs
2015-05-02 20:39:26 ----D---- C:\Windows\debug
2015-04-20 15:35:32 ----A---- C:\Windows\system32\PerfStringBackup.INI
2015-04-17 17:17:54 ----D---- C:\Windows\rescache
2015-04-17 17:14:36 ----D---- C:\Windows\AppCompat
2015-04-17 17:00:20 ----D---- C:\Windows\Microsoft.NET
2015-04-17 16:58:38 ----RSD---- C:\Windows\assembly
2015-04-16 01:11:40 ----SD---- C:\Windows\system32\CompatTel
2015-04-16 01:11:40 ----D---- C:\Windows\system32\appraiser
2015-04-16 01:11:39 ----D---- C:\Windows\AppPatch
2015-04-16 01:11:38 ----D---- C:\Windows\system32\cs-CZ
2015-04-16 01:11:37 ----D---- C:\Windows\system32\en-US
2015-04-16 01:11:35 ----D---- C:\Windows\PolicyDefinitions
2015-04-15 19:18:31 ----D---- C:\Windows\system32\MRT
2015-04-15 19:07:18 ----A---- C:\Windows\system32\MRT.exe
2015-04-15 19:07:05 ----SHD---- C:\Windows\Installer
2015-04-15 15:22:29 ----D---- C:\Windows\system32\NDF

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 giveio;giveio; C:\Windows\system32\giveio.sys [1996-04-03 5248]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R0 speedfan;speedfan; C:\Windows\system32\speedfan.sys [2012-12-29 24184]
R1 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys [2012-10-08 170656]
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2012-10-08 121216]
R2 epfwwfpr;epfwwfpr; C:\Windows\system32\DRIVERS\epfwwfpr.sys [2012-10-08 104712]
R2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2009-08-18 2752352]
R3 LVUSBSta;Logitech USB Monitor Filter; C:\Windows\system32\drivers\lvusbsta.sys [2006-11-11 40352]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda32v.sys [2014-06-11 162592]
R3 NvStreamKms;NvStreamKms; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2014-04-30 17240]
R3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\Windows\system32\drivers\nvvad32v.sys [2014-03-31 34080]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt86win7.sys [2009-07-30 187392]
S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 ALCXWDM;Service for Realtek AC97 Audio (WDM); C:\Windows\system32\drivers\RTKVAC.SYS [2009-06-18 4172832]
S3 amdagp;Ovladač filtru AMD portu AGP; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888]
S3 cpuz136;cpuz136; \??\C:\Windows\TEMP\cpuz136\cpuz136_x32.sys []
S3 EverestDriver;Lavalys EVEREST Kernel Driver; \??\C:\Program Files\Lavalys\EVEREST Ultimate Edition\kerneld.wnt []
S3 GPUZ;GPUZ; \??\C:\Windows\TEMP\GPUZ.sys []
S3 LVcKap;Logitech AEC Driver; C:\Windows\system32\DRIVERS\LVcKap.sys []
S3 LVPr2Mon;Logitech LVPr2Mon Driver; C:\Windows\system32\DRIVERS\LVPr2Mon.sys []
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368]
S3 PID_0928;Logitech QuickCam Express(PID_0928); C:\Windows\system32\DRIVERS\LV561AV.SYS [2006-11-11 487328]
S3 sisagp;Filtr SIS sběrnice AGP; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2010-11-20 52224]
S3 viaagp;Filtr VIA sběrnice AGP; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2014-12-19 81088]
R2 c2cautoupdatesvc;Skype Click to Call Updater; C:\Program Files\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [2014-07-14 1390176]
R2 c2cpnrsvc;Skype Click to Call PNR Service; C:\Program Files\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [2014-07-14 1767520]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe [2012-11-26 1329304]
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe [2014-04-30 1617696]
R2 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [2014-04-30 19702048]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2014-05-20 668104]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2014-05-20 410968]
R2 TeamViewer5;TeamViewer 5; C:\Program Files\TeamViewer\Version5\TeamViewer_Service.exe [2010-03-18 172328]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2014-04-12 103608]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2015-05-03 107848]
S2 LVPrcSrv;Process Monitor; c:\program files\common files\logitech\lvmvfm\LVPrcSrv.exe []
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2014-04-03 315008]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2012-12-29 654848]
S3 Futuremark SystemInfo Service;Futuremark SystemInfo Service; C:\Program Files\Futuremark\SystemInfo\FMSISvc.exe [2014-01-09 520416]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2015-05-03 107848]
S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-12-22 136120]
S3 hpqcxs08;hpqcxs08; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2015-03-13 102912]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2006-10-27 65824]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2010-06-16 1343400]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2014-04-12 45744]
S4 Bonjour Service;##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762##; C:\Program Files\Bonjour\mDNSResponder.exe [2006-02-28 229376]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]

-----------------EOF-----------------

Re: chrome se seka, prosim o kontrolu, dekuji

Napsal: 03 kvě 2015 11:02
od Rudy
OTM nemazal. Zkuste znovu, se stejným skriptem, ale v nouz. režimu.

Re: chrome se seka, prosim o kontrolu, dekuji

Napsal: 03 kvě 2015 15:12
od vinnoo
dobry den, pocitac ma problem, pri restartu a naslednem startu win zamrzne, musi se vypnout a chvili pockat, pote se pusti pri obnove kdy bezel ok
proto to OTM tam nebylo asi.
ted se mi to jiz podarilo ale problem pretrvava, byl uz predtim, nez jste mi zacal radit s cistenim
zde log OTM, jeste poslu rsit


All processes killed
========== FILES ==========
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job moved successfully.
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job moved successfully.
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-575251766-227617794-3401262809-1000Core.job moved successfully.
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-575251766-227617794-3401262809-1000Core1d041748e8357c3.job moved successfully.
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-575251766-227617794-3401262809-1000UA1cf8c8c32a52bf0.job moved successfully.
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-575251766-227617794-3401262809-1000UA1d041748f26a8d8.job moved successfully.
C:\Program Files\Skype\Toolbars\PNRSvc folder moved successfully.
C:\Program Files\Skype\Toolbars\Internet Explorer folder moved successfully.
C:\Program Files\Skype\Toolbars\AutoUpdate folder moved successfully.
C:\Program Files\Skype\Toolbars folder moved successfully.
========== REGISTRY ==========
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]/6\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]/6\ not found.
========== SERVICES/DRIVERS ==========
Service c2cautoupdatesvc stopped successfully!
Service c2cautoupdatesvc deleted successfully!
Service c2cpnrsvc stopped successfully!
Service c2cpnrsvc deleted successfully!
========== COMMANDS ==========

[EMPTYTEMP]

User: All Users

User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: George
->Temp folder emptied: 94861104 bytes
->Temporary Internet Files folder emptied: 11186073 bytes
->Java cache emptied: 0 bytes
->FireFox cache emptied: 0 bytes
->Google Chrome cache emptied: 388221059 bytes
->Opera cache emptied: 188 bytes
->Flash cache emptied: 0 bytes

User: Public
->Temp folder emptied: 0 bytes

User: UpdatusUser
->Temp folder emptied: 0 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 537380 bytes
%systemroot%\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 128 bytes
%systemroot%\system32\config\systemprofile\AppData\LocalLow\Sun\Java\Deployment folder emptied: 0 bytes
RecycleBin emptied: 1516083 bytes

Total Files Cleaned = 473,00 mb


[EMPTYFLASH]

User: All Users

User: Default

User: Default User

User: George
->Flash cache emptied: 0 bytes

User: Public

User: UpdatusUser

Total Flash Files Cleaned = 0,00 mb


OTM by OldTimer - Version 3.1.21.0 log created on 05032015_160410

Files moved on Reboot...
File move failed. C:\Users\George\AppData\Local\Temp\NVIDIA Corporation\NV_Cache\e9b18cad781d4506d38eec2879a7b781_fce8394c8fd8a807_6229ccd76215aea1_0_0.bin scheduled to be moved on reboot.
File move failed. C:\Users\George\AppData\Local\Temp\NVIDIA Corporation\NV_Cache\e9b18cad781d4506d38eec2879a7b781_fce8394c8fd8a807_6229ccd76215aea1_0_0.toc scheduled to be moved on reboot.
File C:\Windows\temp\TMP00000001D3208C3DB2A69E18 not found!

Registry entries deleted on Reboot...

Re: chrome se seka, prosim o kontrolu, dekuji

Napsal: 03 kvě 2015 15:13
od vinnoo
chrome uz je na tom vyrazne lepe, dekuji



Logfile of random's system information tool 1.10 (written by random/random)
Run by George at 2015-05-03 16:12:59
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 235 GB (77%) free of 305 GB
Total RAM: 3263 MB (64% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 16:13:04, on 3.5.2015
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17728)
Boot mode: Normal

Running processes:
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
C:\Windows\notepad.exe
C:\Windows\SOUNDMAN.EXE
C:\Program Files\Winamp\winampa.exe
C:\Program Files\HP\HP Software Update\hpwuSchd2.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Users\George\AppData\Local\Google\Update\GoogleUpdate.exe
C:\Users\George\AppData\Local\Programs\Google\Google+ Auto Backup\Google+ Auto Backup.exe
C:\Program Files\OpenOffice.org 3\program\soffice.exe
C:\Program Files\OpenOffice.org 3\program\soffice.bin
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Common Files\Microsoft Shared\Ink\InputPersonalization.exe
C:\totalcmd\TOTALCMD.EXE
C:\Users\George\Downloads\RSIT (2).exe
C:\Program Files\trend micro\George.exe
C:\Windows\system32\DllHost.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~2\Office12\GR469A~1.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (file missing)
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files\Winamp\winampa.exe"
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
O4 - HKLM\..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe -s
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [NvBackend] "C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe"
O4 - HKLM\..\Run: [ShadowPlay] C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap.dll,ShadowPlayOnSystemStart
O4 - HKCU\..\Run: [Google Update] "C:\Users\George\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [Google+ Auto Backup] "C:\Users\George\AppData\Local\Programs\Google\Google+ Auto Backup\Google+ Auto Backup.exe" /autostart
O4 - Startup: OpenOffice.org 3.1.lnk = C:\Program Files\OpenOffice.org 3\program\quickstart.exe
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xportovať do programu Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: Odoslať do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&oslať do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Skype Click to Call settings - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (file missing)
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~1\MICROS~2\Office12\GRA32A~1.DLL
O18 - Protocol: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (file missing)
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Futuremark SystemInfo Service - Futuremark - C:\Program Files\Futuremark\SystemInfo\FMSISvc.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Process Monitor (LVPrcSrv) - Unknown owner - c:\program files\common files\logitech\lvmvfm\LVPrcSrv.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: TeamViewer 5 (TeamViewer5) - TeamViewer GmbH - C:\Program Files\TeamViewer\Version5\TeamViewer_Service.exe

--
End of file - 6755 bytes

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~2\Office12\GR469A~1.DLL [2006-10-27 2210608]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2013-06-12 463272]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Click to Call for Internet Explorer - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll []

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2013-06-12 171944]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SoundMan"=C:\Windows\SOUNDMAN.EXE [2009-04-14 604704]
"WinampAgent"=C:\Program Files\Winamp\winampa.exe [2010-01-14 37888]
"HP Software Update"=C:\Program Files\HP\HP Software Update\HPWuSchd2.exe [2007-03-11 49152]
"egui"=C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [2012-11-26 5074384]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [2009-08-18 7711264]
"GrooveMonitor"=C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2006-10-27 31016]
"NvBackend"=C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe [2014-04-30 2199840]
"ShadowPlay"=C:\Windows\system32\nvspcap.dll [2014-04-30 1081112]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Google Update"=C:\Users\George\AppData\Local\Google\Update\GoogleUpdate.exe [2014-10-24 107912]
"Google+ Auto Backup"=C:\Users\George\AppData\Local\Programs\Google\Google+ Auto Backup\Google+ Auto Backup.exe [2015-02-13 3754312]

C:\Users\George\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
OpenOffice.org 3.1.lnk - C:\Program Files\OpenOffice.org 3\program\quickstart.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{AEB6717E-7E19-11d0-97EE-00C04FD91972}"= []
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~2\Office12\GR469A~1.DLL [2006-10-27 2210608]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"VIDC.I420"=lvcodec2.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"MSVideo"=vfwwdm32.dll
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave5"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer5"=wdmaud.drv
"wave6"=wdmaud.drv
"midi6"=wdmaud.drv
"mixer6"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1

======List of files/folders created in the last 1 month======

2015-05-02 23:14:34 ----D---- C:\_OTM
2015-05-02 21:38:58 ----D---- C:\AdwCleaner
2015-05-02 20:47:13 ----D---- C:\Users\George\AppData\Roaming\Opera Software
2015-05-02 20:35:15 ----D---- C:\Program Files\CCleaner
2015-04-15 13:38:26 ----A---- C:\Windows\system32\invagent.dll
2015-04-15 13:38:26 ----A---- C:\Windows\system32\generaltel.dll
2015-04-15 13:38:26 ----A---- C:\Windows\system32\devinv.dll
2015-04-15 13:38:26 ----A---- C:\Windows\system32\appraiser.dll
2015-04-15 13:38:26 ----A---- C:\Windows\system32\aeinv.dll
2015-04-15 13:38:26 ----A---- C:\Windows\system32\acmigration.dll
2015-04-15 13:38:25 ----A---- C:\Windows\system32\aepic.dll
2015-04-15 13:38:25 ----A---- C:\Windows\system32\aepdu.dll
2015-04-15 13:34:07 ----A---- C:\Windows\system32\clfsw32.dll
2015-04-15 13:34:07 ----A---- C:\Windows\system32\clfs.sys
2015-04-15 13:33:47 ----A---- C:\Windows\system32\ntoskrnl.exe
2015-04-15 13:33:47 ----A---- C:\Windows\system32\ntdll.dll
2015-04-15 13:33:46 ----A---- C:\Windows\system32\ntkrnlpa.exe
2015-04-15 13:33:45 ----A---- C:\Windows\system32\srcore.dll
2015-04-15 13:33:45 ----A---- C:\Windows\system32\smss.exe
2015-04-15 13:33:45 ----A---- C:\Windows\system32\schannel.dll
2015-04-15 13:33:45 ----A---- C:\Windows\system32\rstrui.exe
2015-04-15 13:33:45 ----A---- C:\Windows\system32\ncrypt.dll
2015-04-15 13:33:45 ----A---- C:\Windows\system32\msv1_0.dll
2015-04-15 13:33:45 ----A---- C:\Windows\system32\lsasrv.dll
2015-04-15 13:33:45 ----A---- C:\Windows\system32\kerberos.dll
2015-04-15 13:33:45 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2015-04-15 13:33:45 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2015-04-15 13:33:44 ----A---- C:\Windows\system32\wdigest.dll
2015-04-15 13:33:44 ----A---- C:\Windows\system32\TSpkg.dll
2015-04-15 13:33:44 ----A---- C:\Windows\system32\sspisrv.dll
2015-04-15 13:33:44 ----A---- C:\Windows\system32\sspicli.dll
2015-04-15 13:33:44 ----A---- C:\Windows\system32\srclient.dll
2015-04-15 13:33:44 ----A---- C:\Windows\system32\secur32.dll
2015-04-15 13:33:44 ----A---- C:\Windows\system32\lsass.exe
2015-04-15 13:33:44 ----A---- C:\Windows\system32\csrsrv.dll
2015-04-15 13:33:44 ----A---- C:\Windows\system32\credssp.dll
2015-04-15 13:33:44 ----A---- C:\Windows\system32\auditpol.exe
2015-04-15 13:33:43 ----A---- C:\Windows\system32\msaudite.dll
2015-04-15 13:33:43 ----A---- C:\Windows\system32\apisetschema.dll
2015-04-15 13:33:43 ----A---- C:\Windows\system32\adtschema.dll
2015-04-15 13:33:42 ----A---- C:\Windows\system32\msobjs.dll
2015-04-15 13:33:13 ----A---- C:\Windows\system32\gdi32.dll
2015-04-15 13:33:09 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-04-15 13:33:09 ----A---- C:\Windows\system32\ieetwproxystub.dll
2015-04-15 13:33:09 ----A---- C:\Windows\system32\ieetwcollector.exe
2015-04-15 13:33:08 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2015-04-15 13:33:08 ----A---- C:\Windows\system32\iernonce.dll
2015-04-15 13:33:08 ----A---- C:\Windows\system32\iedkcs32.dll
2015-04-15 13:33:08 ----A---- C:\Windows\system32\ie4uinit.exe
2015-04-15 13:33:07 ----A---- C:\Windows\system32\urlmon.dll
2015-04-15 13:33:07 ----A---- C:\Windows\system32\jsproxy.dll
2015-04-15 13:33:07 ----A---- C:\Windows\system32\jscript9diag.dll
2015-04-15 13:33:07 ----A---- C:\Windows\system32\ieUnatt.exe
2015-04-15 13:33:07 ----A---- C:\Windows\system32\dxtmsft.dll
2015-04-15 13:33:06 ----A---- C:\Windows\system32\msfeeds.dll
2015-04-15 13:33:06 ----A---- C:\Windows\system32\ieapfltr.dll
2015-04-15 13:33:05 ----A---- C:\Windows\system32\msrating.dll
2015-04-15 13:33:05 ----A---- C:\Windows\system32\iesetup.dll
2015-04-15 13:33:04 ----A---- C:\Windows\system32\wininet.dll
2015-04-15 13:33:04 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2015-04-15 13:33:03 ----A---- C:\Windows\system32\dxtrans.dll
2015-04-15 13:33:02 ----A---- C:\Windows\system32\ieui.dll
2015-04-15 13:33:02 ----A---- C:\Windows\system32\ieframe.dll
2015-04-15 13:33:00 ----A---- C:\Windows\system32\mshtmlmedia.dll
2015-04-15 13:33:00 ----A---- C:\Windows\system32\mshtmled.dll
2015-04-15 13:32:59 ----A---- C:\Windows\system32\MshtmlDac.dll
2015-04-15 13:32:59 ----A---- C:\Windows\system32\iertutil.dll
2015-04-15 13:32:58 ----A---- C:\Windows\system32\mshtml.dll
2015-04-15 13:32:57 ----A---- C:\Windows\system32\vbscript.dll
2015-04-15 13:32:56 ----A---- C:\Windows\system32\jscript9.dll
2015-04-15 13:30:11 ----A---- C:\Windows\system32\wuwebv.dll
2015-04-15 13:30:11 ----A---- C:\Windows\system32\wups2.dll
2015-04-15 13:30:11 ----A---- C:\Windows\system32\wups.dll
2015-04-15 13:30:11 ----A---- C:\Windows\system32\wudriver.dll
2015-04-15 13:30:11 ----A---- C:\Windows\system32\wucltux.dll
2015-04-15 13:30:11 ----A---- C:\Windows\system32\wuaueng.dll
2015-04-15 13:30:11 ----A---- C:\Windows\system32\wuauclt.exe
2015-04-15 13:30:11 ----A---- C:\Windows\system32\wuapp.exe
2015-04-15 13:30:11 ----A---- C:\Windows\system32\wuapi.dll
2015-04-15 13:30:11 ----A---- C:\Windows\system32\wu.upgrade.ps.dll
2015-04-15 13:30:11 ----A---- C:\Windows\system32\WinSetupUI.dll
2015-04-15 13:29:46 ----A---- C:\Windows\system32\drivers\http.sys
2015-04-15 13:29:45 ----A---- C:\Windows\system32\msxml3.dll
2015-04-15 13:29:44 ----A---- C:\Windows\system32\msxml3r.dll
2015-04-04 19:00:51 ----SD---- C:\Windows\system32\GWX

======List of files/folders modified in the last 1 month======

2015-05-03 16:13:05 ----D---- C:\Windows\Prefetch
2015-05-03 16:13:01 ----D---- C:\Program Files\trend micro
2015-05-03 16:13:00 ----D---- C:\Windows\Temp
2015-05-03 16:08:10 ----D---- C:\ProgramData\NVIDIA
2015-05-03 16:05:11 ----D---- C:\Windows\system32\config
2015-05-03 16:04:14 ----RD---- C:\Program Files\Skype
2015-05-03 16:04:13 ----D---- C:\Windows\Tasks
2015-05-03 15:52:07 ----D---- C:\Users\George\AppData\Roaming\Adobe
2015-05-03 13:49:53 ----D---- C:\Users\George\AppData\Roaming\FileZilla
2015-05-03 12:54:37 ----D---- C:\Windows\System32
2015-05-03 12:54:37 ----A---- C:\Windows\system32\PerfStringBackup.INI
2015-05-03 12:54:36 ----D---- C:\Windows\inf
2015-05-03 01:40:00 ----D---- C:\Windows\winsxs
2015-05-03 01:40:00 ----D---- C:\Windows\system32\wfp
2015-05-03 01:40:00 ----D---- C:\Windows\system32\DriverStore
2015-05-03 01:40:00 ----D---- C:\Windows\system32\drivers\etc
2015-05-03 01:40:00 ----D---- C:\Windows\system32\drivers
2015-05-03 01:40:00 ----D---- C:\Windows\system32\catroot2
2015-05-03 01:40:00 ----D---- C:\Windows\Minidump
2015-05-03 01:40:00 ----D---- C:\Windows
2015-05-03 01:40:00 ----D---- C:\Program Files\Internet Explorer
2015-05-03 01:39:59 ----D---- C:\Users\George\AppData\Roaming\Winamp
2015-05-03 01:39:59 ----D---- C:\Users\George\AppData\Roaming\vlc
2015-05-03 01:39:58 ----D---- C:\Users\George\AppData\Roaming\Azureus
2015-05-03 01:39:56 ----D---- C:\ProgramData\FLEXnet
2015-05-03 01:39:56 ----D---- C:\Program Files\Winamp
2015-05-03 01:39:45 ----D---- C:\Windows\registration
2015-05-03 01:39:41 ----D---- C:\Windows\system32\wbem
2015-05-03 01:38:48 ----D---- C:\ProgramData\PC Drivers HeadQuarters
2015-05-03 01:38:48 ----D---- C:\ProgramData
2015-05-03 01:38:19 ----D---- C:\NVIDIA
2015-05-03 00:50:05 ----SHD---- C:\Windows\Installer
2015-05-03 00:50:05 ----D---- C:\Config.Msi
2015-05-03 00:47:19 ----SHD---- C:\System Volume Information
2015-05-03 00:46:34 ----D---- C:\Program Files
2015-05-03 00:45:55 ----D---- C:\Windows\system32\Tasks
2015-05-02 20:39:28 ----D---- C:\Windows\Panther
2015-05-02 20:39:26 ----D---- C:\Windows\Logs
2015-05-02 20:39:26 ----D---- C:\Windows\debug
2015-04-17 17:17:54 ----D---- C:\Windows\rescache
2015-04-17 17:14:36 ----D---- C:\Windows\AppCompat
2015-04-17 17:00:20 ----D---- C:\Windows\Microsoft.NET
2015-04-17 16:58:38 ----RSD---- C:\Windows\assembly
2015-04-16 01:11:40 ----SD---- C:\Windows\system32\CompatTel
2015-04-16 01:11:40 ----D---- C:\Windows\system32\appraiser
2015-04-16 01:11:39 ----D---- C:\Windows\AppPatch
2015-04-16 01:11:38 ----D---- C:\Windows\system32\cs-CZ
2015-04-16 01:11:37 ----D---- C:\Windows\system32\en-US
2015-04-16 01:11:35 ----D---- C:\Windows\PolicyDefinitions
2015-04-15 19:18:31 ----D---- C:\Windows\system32\MRT
2015-04-15 19:07:18 ----A---- C:\Windows\system32\MRT.exe
2015-04-15 15:22:29 ----D---- C:\Windows\system32\NDF

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 giveio;giveio; C:\Windows\system32\giveio.sys [1996-04-03 5248]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R0 speedfan;speedfan; C:\Windows\system32\speedfan.sys [2012-12-29 24184]
R1 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys [2012-10-08 170656]
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2012-10-08 121216]
R2 epfwwfpr;epfwwfpr; C:\Windows\system32\DRIVERS\epfwwfpr.sys [2012-10-08 104712]
R2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2009-08-18 2752352]
R3 LVUSBSta;Logitech USB Monitor Filter; C:\Windows\system32\drivers\lvusbsta.sys [2006-11-11 40352]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda32v.sys [2014-06-11 162592]
R3 NvStreamKms;NvStreamKms; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2014-04-30 17240]
R3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\Windows\system32\drivers\nvvad32v.sys [2014-03-31 34080]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt86win7.sys [2009-07-30 187392]
S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 ALCXWDM;Service for Realtek AC97 Audio (WDM); C:\Windows\system32\drivers\RTKVAC.SYS [2009-06-18 4172832]
S3 amdagp;Ovladač filtru AMD portu AGP; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888]
S3 cpuz136;cpuz136; \??\C:\Windows\TEMP\cpuz136\cpuz136_x32.sys []
S3 EverestDriver;Lavalys EVEREST Kernel Driver; \??\C:\Program Files\Lavalys\EVEREST Ultimate Edition\kerneld.wnt []
S3 GPUZ;GPUZ; \??\C:\Windows\TEMP\GPUZ.sys []
S3 LVcKap;Logitech AEC Driver; C:\Windows\system32\DRIVERS\LVcKap.sys []
S3 LVPr2Mon;Logitech LVPr2Mon Driver; C:\Windows\system32\DRIVERS\LVPr2Mon.sys []
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368]
S3 PID_0928;Logitech QuickCam Express(PID_0928); C:\Windows\system32\DRIVERS\LV561AV.SYS [2006-11-11 487328]
S3 sisagp;Filtr SIS sběrnice AGP; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2010-11-20 52224]
S3 viaagp;Filtr VIA sběrnice AGP; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2014-12-19 81088]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe [2012-11-26 1329304]
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe [2014-04-30 1617696]
R2 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [2014-04-30 19702048]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2014-05-20 668104]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2014-05-20 410968]
R2 TeamViewer5;TeamViewer 5; C:\Program Files\TeamViewer\Version5\TeamViewer_Service.exe [2010-03-18 172328]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2014-04-12 103608]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2015-05-03 107848]
S2 LVPrcSrv;Process Monitor; c:\program files\common files\logitech\lvmvfm\LVPrcSrv.exe []
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2014-04-03 315008]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2012-12-29 654848]
S3 Futuremark SystemInfo Service;Futuremark SystemInfo Service; C:\Program Files\Futuremark\SystemInfo\FMSISvc.exe [2014-01-09 520416]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2015-05-03 107848]
S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-12-22 136120]
S3 hpqcxs08;hpqcxs08; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2015-03-13 102912]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2006-10-27 65824]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2010-06-16 1343400]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2014-04-12 45744]
S4 Bonjour Service;##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762##; C:\Program Files\Bonjour\mDNSResponder.exe [2006-02-28 229376]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]

-----------------EOF-----------------

Re: chrome se seka, prosim o kontrolu, dekuji

Napsal: 03 kvě 2015 17:34
od Rudy
Dvouklikem na soubor C:\Program Files\trend micro\George.exe spusťte HijackThis. Klikněte na "Do a system scan only" a v otevřeném okně vlevo ve čtverečcích zaškrtněte:
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (file missing)
O9 - Extra button: Skype Click to Call settings - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (file missing)
O18 - Protocol: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (file missing)
Klikněte na >FixChecked<. Pak znovu spusťte OTM a klikněte na >CleanUp!<. OTM po sobě uklidí. Nakonec restartujte PC.

Re: chrome se seka, prosim o kontrolu, dekuji

Napsal: 04 kvě 2015 10:11
od vinnoo
hotovo

Logfile of random's system information tool 1.10 (written by random/random)
Run by George at 2015-05-04 11:11:00
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 234 GB (77%) free of 305 GB
Total RAM: 3263 MB (46% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 11:11:05, on 4.5.2015
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17728)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskhost.exe
C:\Windows\SOUNDMAN.EXE
C:\Program Files\Winamp\winampa.exe
C:\Program Files\HP\HP Software Update\hpwuSchd2.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Users\George\AppData\Local\Google\Update\GoogleUpdate.exe
C:\Program Files\OpenOffice.org 3\program\soffice.exe
C:\Program Files\OpenOffice.org 3\program\soffice.bin
C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Common Files\Microsoft Shared\Ink\InputPersonalization.exe
C:\Windows\system32\taskmgr.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\George\Desktop\RSIT (2).exe
C:\Program Files\trend micro\George.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~2\Office12\GR469A~1.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files\Winamp\winampa.exe"
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
O4 - HKLM\..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe -s
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [NvBackend] "C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe"
O4 - HKLM\..\Run: [ShadowPlay] C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap.dll,ShadowPlayOnSystemStart
O4 - HKCU\..\Run: [Google Update] "C:\Users\George\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [Google+ Auto Backup] "C:\Users\George\AppData\Local\Programs\Google\Google+ Auto Backup\Google+ Auto Backup.exe" /autostart
O4 - Startup: OpenOffice.org 3.1.lnk = C:\Program Files\OpenOffice.org 3\program\quickstart.exe
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xportovať do programu Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: Odoslať do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&oslať do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~1\MICROS~2\Office12\GRA32A~1.DLL
O18 - Protocol: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (file missing)
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Futuremark SystemInfo Service - Futuremark - C:\Program Files\Futuremark\SystemInfo\FMSISvc.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Process Monitor (LVPrcSrv) - Unknown owner - c:\program files\common files\logitech\lvmvfm\LVPrcSrv.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: TeamViewer 5 (TeamViewer5) - TeamViewer GmbH - C:\Program Files\TeamViewer\Version5\TeamViewer_Service.exe

--
End of file - 6291 bytes

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~2\Office12\GR469A~1.DLL [2006-10-27 2210608]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2013-06-12 463272]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2013-06-12 171944]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SoundMan"=C:\Windows\SOUNDMAN.EXE [2009-04-14 604704]
"WinampAgent"=C:\Program Files\Winamp\winampa.exe [2010-01-14 37888]
"HP Software Update"=C:\Program Files\HP\HP Software Update\HPWuSchd2.exe [2007-03-11 49152]
"egui"=C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [2012-11-26 5074384]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [2009-08-18 7711264]
"GrooveMonitor"=C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2006-10-27 31016]
"NvBackend"=C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe [2014-04-30 2199840]
"ShadowPlay"=C:\Windows\system32\nvspcap.dll [2014-04-30 1081112]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Google Update"=C:\Users\George\AppData\Local\Google\Update\GoogleUpdate.exe [2014-10-24 107912]
"Google+ Auto Backup"=C:\Users\George\AppData\Local\Programs\Google\Google+ Auto Backup\Google+ Auto Backup.exe [2015-02-13 3754312]

C:\Users\George\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
OpenOffice.org 3.1.lnk - C:\Program Files\OpenOffice.org 3\program\quickstart.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{AEB6717E-7E19-11d0-97EE-00C04FD91972}"= []
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~2\Office12\GR469A~1.DLL [2006-10-27 2210608]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"VIDC.I420"=lvcodec2.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"MSVideo"=vfwwdm32.dll
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave5"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer5"=wdmaud.drv
"wave6"=wdmaud.drv
"midi6"=wdmaud.drv
"mixer6"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1

======List of files/folders created in the last 1 month======

2015-05-04 11:08:36 ----D---- C:\rsit
2015-05-02 21:38:58 ----D---- C:\AdwCleaner
2015-05-02 20:47:13 ----D---- C:\Users\George\AppData\Roaming\Opera Software
2015-05-02 20:35:15 ----D---- C:\Program Files\CCleaner
2015-04-15 13:38:26 ----A---- C:\Windows\system32\invagent.dll
2015-04-15 13:38:26 ----A---- C:\Windows\system32\generaltel.dll
2015-04-15 13:38:26 ----A---- C:\Windows\system32\devinv.dll
2015-04-15 13:38:26 ----A---- C:\Windows\system32\appraiser.dll
2015-04-15 13:38:26 ----A---- C:\Windows\system32\aeinv.dll
2015-04-15 13:38:26 ----A---- C:\Windows\system32\acmigration.dll
2015-04-15 13:38:25 ----A---- C:\Windows\system32\aepic.dll
2015-04-15 13:38:25 ----A---- C:\Windows\system32\aepdu.dll
2015-04-15 13:34:07 ----A---- C:\Windows\system32\clfsw32.dll
2015-04-15 13:34:07 ----A---- C:\Windows\system32\clfs.sys
2015-04-15 13:33:47 ----A---- C:\Windows\system32\ntoskrnl.exe
2015-04-15 13:33:47 ----A---- C:\Windows\system32\ntdll.dll
2015-04-15 13:33:46 ----A---- C:\Windows\system32\ntkrnlpa.exe
2015-04-15 13:33:45 ----A---- C:\Windows\system32\srcore.dll
2015-04-15 13:33:45 ----A---- C:\Windows\system32\smss.exe
2015-04-15 13:33:45 ----A---- C:\Windows\system32\schannel.dll
2015-04-15 13:33:45 ----A---- C:\Windows\system32\rstrui.exe
2015-04-15 13:33:45 ----A---- C:\Windows\system32\ncrypt.dll
2015-04-15 13:33:45 ----A---- C:\Windows\system32\msv1_0.dll
2015-04-15 13:33:45 ----A---- C:\Windows\system32\lsasrv.dll
2015-04-15 13:33:45 ----A---- C:\Windows\system32\kerberos.dll
2015-04-15 13:33:45 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2015-04-15 13:33:45 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2015-04-15 13:33:44 ----A---- C:\Windows\system32\wdigest.dll
2015-04-15 13:33:44 ----A---- C:\Windows\system32\TSpkg.dll
2015-04-15 13:33:44 ----A---- C:\Windows\system32\sspisrv.dll
2015-04-15 13:33:44 ----A---- C:\Windows\system32\sspicli.dll
2015-04-15 13:33:44 ----A---- C:\Windows\system32\srclient.dll
2015-04-15 13:33:44 ----A---- C:\Windows\system32\secur32.dll
2015-04-15 13:33:44 ----A---- C:\Windows\system32\lsass.exe
2015-04-15 13:33:44 ----A---- C:\Windows\system32\csrsrv.dll
2015-04-15 13:33:44 ----A---- C:\Windows\system32\credssp.dll
2015-04-15 13:33:44 ----A---- C:\Windows\system32\auditpol.exe
2015-04-15 13:33:43 ----A---- C:\Windows\system32\msaudite.dll
2015-04-15 13:33:43 ----A---- C:\Windows\system32\apisetschema.dll
2015-04-15 13:33:43 ----A---- C:\Windows\system32\adtschema.dll
2015-04-15 13:33:42 ----A---- C:\Windows\system32\msobjs.dll
2015-04-15 13:33:13 ----A---- C:\Windows\system32\gdi32.dll
2015-04-15 13:33:09 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-04-15 13:33:09 ----A---- C:\Windows\system32\ieetwproxystub.dll
2015-04-15 13:33:09 ----A---- C:\Windows\system32\ieetwcollector.exe
2015-04-15 13:33:08 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2015-04-15 13:33:08 ----A---- C:\Windows\system32\iernonce.dll
2015-04-15 13:33:08 ----A---- C:\Windows\system32\iedkcs32.dll
2015-04-15 13:33:08 ----A---- C:\Windows\system32\ie4uinit.exe
2015-04-15 13:33:07 ----A---- C:\Windows\system32\urlmon.dll
2015-04-15 13:33:07 ----A---- C:\Windows\system32\jsproxy.dll
2015-04-15 13:33:07 ----A---- C:\Windows\system32\jscript9diag.dll
2015-04-15 13:33:07 ----A---- C:\Windows\system32\ieUnatt.exe
2015-04-15 13:33:07 ----A---- C:\Windows\system32\dxtmsft.dll
2015-04-15 13:33:06 ----A---- C:\Windows\system32\msfeeds.dll
2015-04-15 13:33:06 ----A---- C:\Windows\system32\ieapfltr.dll
2015-04-15 13:33:05 ----A---- C:\Windows\system32\msrating.dll
2015-04-15 13:33:05 ----A---- C:\Windows\system32\iesetup.dll
2015-04-15 13:33:04 ----A---- C:\Windows\system32\wininet.dll
2015-04-15 13:33:04 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2015-04-15 13:33:03 ----A---- C:\Windows\system32\dxtrans.dll
2015-04-15 13:33:02 ----A---- C:\Windows\system32\ieui.dll
2015-04-15 13:33:02 ----A---- C:\Windows\system32\ieframe.dll
2015-04-15 13:33:00 ----A---- C:\Windows\system32\mshtmlmedia.dll
2015-04-15 13:33:00 ----A---- C:\Windows\system32\mshtmled.dll
2015-04-15 13:32:59 ----A---- C:\Windows\system32\MshtmlDac.dll
2015-04-15 13:32:59 ----A---- C:\Windows\system32\iertutil.dll
2015-04-15 13:32:58 ----A---- C:\Windows\system32\mshtml.dll
2015-04-15 13:32:57 ----A---- C:\Windows\system32\vbscript.dll
2015-04-15 13:32:56 ----A---- C:\Windows\system32\jscript9.dll
2015-04-15 13:30:11 ----A---- C:\Windows\system32\wuwebv.dll
2015-04-15 13:30:11 ----A---- C:\Windows\system32\wups2.dll
2015-04-15 13:30:11 ----A---- C:\Windows\system32\wups.dll
2015-04-15 13:30:11 ----A---- C:\Windows\system32\wudriver.dll
2015-04-15 13:30:11 ----A---- C:\Windows\system32\wucltux.dll
2015-04-15 13:30:11 ----A---- C:\Windows\system32\wuaueng.dll
2015-04-15 13:30:11 ----A---- C:\Windows\system32\wuauclt.exe
2015-04-15 13:30:11 ----A---- C:\Windows\system32\wuapp.exe
2015-04-15 13:30:11 ----A---- C:\Windows\system32\wuapi.dll
2015-04-15 13:30:11 ----A---- C:\Windows\system32\wu.upgrade.ps.dll
2015-04-15 13:30:11 ----A---- C:\Windows\system32\WinSetupUI.dll
2015-04-15 13:29:46 ----A---- C:\Windows\system32\drivers\http.sys
2015-04-15 13:29:45 ----A---- C:\Windows\system32\msxml3.dll
2015-04-15 13:29:44 ----A---- C:\Windows\system32\msxml3r.dll

======List of files/folders modified in the last 1 month======

2015-05-04 11:11:04 ----D---- C:\Program Files\trend micro
2015-05-04 11:11:03 ----D---- C:\Windows\Temp
2015-05-04 11:10:39 ----D---- C:\Windows\Prefetch
2015-05-04 11:10:20 ----D---- C:\Windows\system32\config
2015-05-04 11:06:28 ----D---- C:\ProgramData\NVIDIA
2015-05-03 23:40:57 ----D---- C:\Users\George\AppData\Roaming\vlc
2015-05-03 19:57:02 ----D---- C:\Users\George\AppData\Roaming\Adobe
2015-05-03 16:04:14 ----RD---- C:\Program Files\Skype
2015-05-03 16:04:13 ----D---- C:\Windows\Tasks
2015-05-03 13:49:53 ----D---- C:\Users\George\AppData\Roaming\FileZilla
2015-05-03 12:54:37 ----D---- C:\Windows\System32
2015-05-03 12:54:37 ----A---- C:\Windows\system32\PerfStringBackup.INI
2015-05-03 12:54:36 ----D---- C:\Windows\inf
2015-05-03 01:40:00 ----SD---- C:\Windows\system32\GWX
2015-05-03 01:40:00 ----D---- C:\Windows\winsxs
2015-05-03 01:40:00 ----D---- C:\Windows\system32\wfp
2015-05-03 01:40:00 ----D---- C:\Windows\system32\DriverStore
2015-05-03 01:40:00 ----D---- C:\Windows\system32\drivers\etc
2015-05-03 01:40:00 ----D---- C:\Windows\system32\drivers
2015-05-03 01:40:00 ----D---- C:\Windows\system32\catroot2
2015-05-03 01:40:00 ----D---- C:\Windows\Minidump
2015-05-03 01:40:00 ----D---- C:\Windows
2015-05-03 01:40:00 ----D---- C:\Program Files\Internet Explorer
2015-05-03 01:39:59 ----D---- C:\Users\George\AppData\Roaming\Winamp
2015-05-03 01:39:58 ----D---- C:\Users\George\AppData\Roaming\Azureus
2015-05-03 01:39:56 ----D---- C:\ProgramData\FLEXnet
2015-05-03 01:39:56 ----D---- C:\Program Files\Winamp
2015-05-03 01:39:45 ----D---- C:\Windows\registration
2015-05-03 01:39:41 ----D---- C:\Windows\system32\wbem
2015-05-03 01:38:48 ----D---- C:\ProgramData\PC Drivers HeadQuarters
2015-05-03 01:38:48 ----D---- C:\ProgramData
2015-05-03 01:38:19 ----D---- C:\NVIDIA
2015-05-03 00:50:05 ----SHD---- C:\Windows\Installer
2015-05-03 00:50:05 ----D---- C:\Config.Msi
2015-05-03 00:47:19 ----SHD---- C:\System Volume Information
2015-05-03 00:46:34 ----D---- C:\Program Files
2015-05-03 00:45:55 ----D---- C:\Windows\system32\Tasks
2015-05-02 20:39:28 ----D---- C:\Windows\Panther
2015-05-02 20:39:26 ----D---- C:\Windows\Logs
2015-05-02 20:39:26 ----D---- C:\Windows\debug
2015-04-17 17:17:54 ----D---- C:\Windows\rescache
2015-04-17 17:14:36 ----D---- C:\Windows\AppCompat
2015-04-17 17:00:20 ----D---- C:\Windows\Microsoft.NET
2015-04-17 16:58:38 ----RSD---- C:\Windows\assembly
2015-04-16 01:11:40 ----SD---- C:\Windows\system32\CompatTel
2015-04-16 01:11:40 ----D---- C:\Windows\system32\appraiser
2015-04-16 01:11:39 ----D---- C:\Windows\AppPatch
2015-04-16 01:11:38 ----D---- C:\Windows\system32\cs-CZ
2015-04-16 01:11:37 ----D---- C:\Windows\system32\en-US
2015-04-16 01:11:35 ----D---- C:\Windows\PolicyDefinitions
2015-04-15 19:18:31 ----D---- C:\Windows\system32\MRT
2015-04-15 19:07:18 ----A---- C:\Windows\system32\MRT.exe
2015-04-15 15:22:29 ----D---- C:\Windows\system32\NDF

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 giveio;giveio; C:\Windows\system32\giveio.sys [1996-04-03 5248]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R0 speedfan;speedfan; C:\Windows\system32\speedfan.sys [2012-12-29 24184]
R1 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys [2012-10-08 170656]
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2012-10-08 121216]
R2 epfwwfpr;epfwwfpr; C:\Windows\system32\DRIVERS\epfwwfpr.sys [2012-10-08 104712]
R2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2009-08-18 2752352]
R3 LVUSBSta;Logitech USB Monitor Filter; C:\Windows\system32\drivers\lvusbsta.sys [2006-11-11 40352]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda32v.sys [2014-06-11 162592]
R3 NvStreamKms;NvStreamKms; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2014-04-30 17240]
R3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\Windows\system32\drivers\nvvad32v.sys [2014-03-31 34080]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt86win7.sys [2009-07-30 187392]
S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 ALCXWDM;Service for Realtek AC97 Audio (WDM); C:\Windows\system32\drivers\RTKVAC.SYS [2009-06-18 4172832]
S3 amdagp;Ovladač filtru AMD portu AGP; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888]
S3 cpuz136;cpuz136; \??\C:\Windows\TEMP\cpuz136\cpuz136_x32.sys []
S3 EverestDriver;Lavalys EVEREST Kernel Driver; \??\C:\Program Files\Lavalys\EVEREST Ultimate Edition\kerneld.wnt []
S3 GPUZ;GPUZ; \??\C:\Windows\TEMP\GPUZ.sys []
S3 LVcKap;Logitech AEC Driver; C:\Windows\system32\DRIVERS\LVcKap.sys []
S3 LVPr2Mon;Logitech LVPr2Mon Driver; C:\Windows\system32\DRIVERS\LVPr2Mon.sys []
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368]
S3 PID_0928;Logitech QuickCam Express(PID_0928); C:\Windows\system32\DRIVERS\LV561AV.SYS [2006-11-11 487328]
S3 sisagp;Filtr SIS sběrnice AGP; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2010-11-20 52224]
S3 viaagp;Filtr VIA sběrnice AGP; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2014-12-19 81088]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe [2012-11-26 1329304]
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe [2014-04-30 1617696]
R2 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [2014-04-30 19702048]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2014-05-20 668104]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2014-05-20 410968]
R2 TeamViewer5;TeamViewer 5; C:\Program Files\TeamViewer\Version5\TeamViewer_Service.exe [2010-03-18 172328]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2014-04-12 103608]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2015-05-03 107848]
S2 LVPrcSrv;Process Monitor; c:\program files\common files\logitech\lvmvfm\LVPrcSrv.exe []
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2014-04-03 315008]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2012-12-29 654848]
S3 Futuremark SystemInfo Service;Futuremark SystemInfo Service; C:\Program Files\Futuremark\SystemInfo\FMSISvc.exe [2014-01-09 520416]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2015-05-03 107848]
S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-12-22 136120]
S3 hpqcxs08;hpqcxs08; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2015-03-13 102912]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2006-10-27 65824]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2010-06-16 1343400]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2014-04-12 45744]
S4 Bonjour Service;##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762##; C:\Program Files\Bonjour\mDNSResponder.exe [2006-02-28 229376]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]

-----------------EOF-----------------

Re: chrome se seka, prosim o kontrolu, dekuji

Napsal: 04 kvě 2015 16:53
od Rudy
OK. Nastala nějaká změna?

Re: chrome se seka, prosim o kontrolu, dekuji

Napsal: 04 kvě 2015 18:06
od vinnoo
Dobry den,
ano, psal jsem v predchozich postech. Chovani chrome i celeho pocitace se vyrazne zlepsilo.
Mockrat dekuji. Podpora vyslana vcera :)
Jiri

Re: chrome se seka, prosim o kontrolu, dekuji

Napsal: 04 kvě 2015 18:52
od Rudy
Rádo se stalo a za podporu děkujeme! :)