
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
problém s PC - prosím o kontrolu logu
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
problém s PC - prosím o kontrolu logu
Zdravím všechny, příde mi, že se mi do PC dostala nějaká havěť, prosil bych o kontrolu logu, jedná se o dvě věci, paměť RAM a druhá věc, co si myslím, bude nějakej keylogger
přikládám log, a pedem děkuji za pomoc.
Logfile of random's system information tool 1.10 (written by random/random)
Run by Jury at 2015-12-18 15:59:45
Microsoft Windows 8.1 Pro
System drive C: has 44 GB (19%) free of 228 GB
Total RAM: 16210 MB (85% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 15:59:49, on 18. 12. 2015
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.18123)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Gigabyte\AppCenter\ApCent.exe
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files (x86)\Steam\Steam.exe
C:\Program Files\Qualcomm Atheros\Network Manager\NetworkManager.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Genius\Imperator Pro\IMProHid.exe
C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
C:\Program Files (x86)\Genius\Imperator Pro\OSD.exe
C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
C:\Program Files\trend micro\Jury.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: ExplorerBHO Class - {449D0D6E-2412-4E61-B68F-1CB625CD9E52} - C:\Program Files\Classic Shell\ClassicExplorer32.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~2\SPYBOT~1\SDHelper.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_66\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_66\bin\jp2ssv.dll
O2 - BHO: ClassicIEBHO Class - {EA801577-E6AD-4BD5-8F71-4BE0154331A4} - C:\Program Files\Classic Shell\ClassicIEDLL_32.dll
O3 - Toolbar: Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer32.dll
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O4 - HKLM\..\Run: [AdobeCS5ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [Imperator pro] "C:\Program Files (x86)\Genius\Imperator Pro\IMProhid.exe"
O4 - HKLM\..\RunOnce: [EasyTune] C:\Program Files (x86)\Gigabyte\EasyTune\etro.exe
O4 - HKLM\..\RunOnce: [PreRun] C:\Program Files (x86)\Gigabyte\AppCenter\PreRun.exe
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [Steam] "C:\Program Files (x86)\Steam\steam.exe" -silent
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - Startup: Desktop.scf
O4 - Global Startup: Killer Network Manager.lnk = ?
O9 - Extra button: (no name) - {56753E59-AF1D-4FBA-9E15-31557124ADA2} - C:\Program Files\Classic Shell\ClassicIE_32.exe
O9 - Extra 'Tools' menuitem: Classic IE Settings - {56753E59-AF1D-4FBA-9E15-31557124ADA2} - C:\Program Files\Classic Shell\ClassicIE_32.exe
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~2\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~2\SPYBOT~1\SDHelper.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: *.clonewarsadventures.com
O15 - Trusted Zone: *.freerealms.com
O15 - Trusted Zone: *.soe.com
O15 - Trusted Zone: *.sony.com
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: BattlEye Service (BEService) - Unknown owner - C:\Program Files (x86)\Common Files\BattlEye\BEService.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\Windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: EasyAntiCheat - EasyAntiCheat Ltd - C:\Windows\system32\EasyAntiCheat.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: GIGABYTE Adjust (gadjservice) - Unknown owner - C:\Program Files (x86)\Gigabyte\AppCenter\AdjustService.exe
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\Windows\system32\igfxCUIService.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) PROSet Monitoring Service - Unknown owner - C:\Windows\system32\IProsetMonitor.exe (file missing)
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Network Service (NvStreamNetworkSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: Origin Client Service - Electronic Arts - C:\Program Files (x86)\Origin\OriginClientService.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: Qualcomm Atheros Killer Service V2 - Qualcomm Atheros - C:\Program Files\Qualcomm Atheros\Network Manager\KillerService.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: SBSD Security Center Service (SBSDWSCService) - Safer Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 11241 bytes
======Listing Processes======
wininit.exe
C:\Windows\system32\lsass.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
"C:\Windows\system32\nvvsvc.exe"
"dwm.exe"
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\igfxCUIService.exe
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\Windows\System32\svchost.exe -k utcsvc
"C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe"
"C:\Program Files (x86)\Gigabyte\AppCenter\AdjustService.exe"
taskhostex.exe
C:\Windows\Explorer.EXE
"C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe"
C:\Windows\system32\IProsetMonitor.exe
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe"
C:\Windows\SysWOW64\PnkBstrA.exe
"C:\Program Files\Qualcomm Atheros\Network Manager\KillerService.exe"
"C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe"
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
igfxEM.exe
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Gigabyte\AppCenter\ApCent.exe"
ClassicStartMenu.exe -startup
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe" serviceapp
\??\C:\Windows\system32\conhost.exe 0x4
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe"
"C:\Windows\system32\GWX\GWX.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
"C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe"
"C:\Program Files\NVIDIA Corporation\ShadowPlay\nvspcaps64.exe" -Embedding
"C:\Program Files (x86)\Steam\Steam.exe" -silent
"C:\Program Files\Qualcomm Atheros\Network Manager\NetworkManager.exe" -minimize
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac
"C:\Program Files (x86)\Genius\Imperator Pro\IMProHid.exe"
"C:\Program Files (x86)\Steam\bin\steamwebhelper.exe" -cachedir="C:\Users\Jury\AppData\Local\Steam\htmlcache" -steampid=5096 -buildid=1450127196 -steamid="0" --disable-gpu-compositing --disable-gpu --process-per-tab --enable-system-flash --disable-spell-checking --enable-widevine-cdm --enable-direct-write
"C:\Program Files (x86)\Common Files\Steam\SteamService.exe" /RunAsService
"C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
"C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\Program Files (x86)\Steam\bin\steamwebhelper.exe" --type=renderer --disable-gpu-compositing --enable-pinch --lang=en-US --lang=en-US --log-file="C:\Program Files (x86)\Steam\bin\debug.log" --product-version="Valve Steam Client" --disable-spell-checking --enable-system-flash --enable-pinch --device-scale-factor=1 --num-raster-threads=4 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --disable-gpu-compositing --channel="4656.0.1965062469\389238919" --font-cache-shared-handle=1392 /prefetch:673131151
"C:\Program Files (x86)\Genius\Imperator Pro\OSD.exe"
"C:\Program Files (x86)\Steam\bin\steamwebhelper.exe" --type=renderer --disable-gpu-compositing --enable-pinch --lang=en-US --lang=en-US --log-file="C:\Program Files (x86)\Steam\bin\debug.log" --product-version="Valve Steam Client" --disable-spell-checking --enable-system-flash --enable-pinch --device-scale-factor=1 --num-raster-threads=4 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --disable-gpu-compositing --channel="4656.2.353605\2051381043" --font-cache-shared-handle=2636 /prefetch:673131151
"C:\Windows\system32\taskmgr.exe" /4
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe2_ Global\UsGthrCtrlFltPipeMssGthrPipe2 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 556 560 584 65536 580
"C:\Users\Jury\Downloads\RSITx64.exe"
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
=========Mozilla firefox=========
ProfilePath - C:\Users\Jury\AppData\Roaming\Mozilla\Firefox\Profiles\j7z66b47.default
prefs.js - "browser.startup.homepage" - "https://www.seznam.cz/"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 20.0.0.235 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_20_0_0_235.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@esn/npbattlelog,version=2.7.1]
"Description"=
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\2.7.1\npbattlelog.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5]
"Description"=Intel IPT WebApi plugin
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater]
"Description"=This plugin updates Intel WebAPI component
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=11.66.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre1.8.0_66\bin\dtplugin\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=11.66.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre1.8.0_66\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVision]
"Description"=NVIDIA stereo images plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVisionStreaming]
"Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.1]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 20.0.0.235 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_20_0_0_235.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@esn/npbattlelog,version=2.7.1]
"Description"=
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\2.7.1\npbattlelogx64.dll
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{449D0D6E-2412-4E61-B68F-1CB625CD9E52}]
ExplorerBHO Class - C:\Program Files\Classic Shell\ClassicExplorer64.dll [2014-04-20 803520]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EA801577-E6AD-4BD5-8F71-4BE0154331A4}]
ClassicIEBHO Class - C:\Program Files\Classic Shell\ClassicIEDLL_64.dll [2014-04-20 483520]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{449D0D6E-2412-4E61-B68F-1CB625CD9E52}]
ExplorerBHO Class - C:\Program Files\Classic Shell\ClassicExplorer32.dll [2014-04-20 683200]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{53707962-6F74-2D53-2644-206D7942484F}]
Spybot-S&D IE Protection - C:\PROGRA~2\SPYBOT~1\SDHelper.dll [2009-01-26 1879896]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_66\bin\ssv.dll [2015-11-21 460384]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_66\bin\jp2ssv.dll [2015-11-21 172640]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EA801577-E6AD-4BD5-8F71-4BE0154331A4}]
ClassicIEBHO Class - C:\Program Files\Classic Shell\ClassicIEDLL_32.dll [2014-04-20 440512]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{553891B7-A0D5-4526-BE18-D3CE461D6310} - Classic Explorer Bar - C:\Program Files\Classic Shell\ClassicExplorer64.dll [2014-04-20 803520]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{553891B7-A0D5-4526-BE18-D3CE461D6310} - Classic Explorer Bar - C:\Program Files\Classic Shell\ClassicExplorer32.dll [2014-04-20 683200]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Classic Start Menu"=C:\Program Files\Classic Shell\ClassicStartMenu.exe [2014-04-20 161984]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2014-03-14 13671792]
"IAStorIcon"=C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe [2014-04-11 36352]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2015-12-09 2771576]
"ShadowPlay"=C:\Windows\system32\nvspcap64.dll [2015-12-09 1846016]
"egui"=C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [2015-07-08 5595848]
"AdobeAAMUpdater-1.0"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2010-03-06 500208]
"Logitech Download Assistant"=C:\Windows\System32\LogiLDA.dll [2012-09-20 3933496]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"SpybotSD TeaTimer"=C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe [2009-03-05 2260480]
"Steam"=C:\Program Files (x86)\Steam\steam.exe [2015-12-14 3013712]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2015-09-16 8461224]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2015-11-09 596528]
"SwitchBoard"=C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
"AdobeCS5ServiceManager"=C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe [2010-02-22 406992]
"Imperator pro"=C:\Program Files (x86)\Genius\Imperator Pro\IMProhid.exe [2012-02-24 287232]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\RunOnce]
"EasyTune"=C:\Program Files (x86)\Gigabyte\EasyTune\etro.exe [2014-08-18 5632]
"PreRun"=C:\Program Files (x86)\Gigabyte\AppCenter\PreRun.exe [2013-04-29 8192]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Killer Network Manager.lnk - C:\Windows\Installer\{401FADAA-1C16-4721-9F02-19067E1A1CA8}\NetworkManager.exe_130C27D738F34C89BDDF21BCFD74B56D.exe
C:\Users\Jury\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Desktop.scf
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux2"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave6"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer6"=wdmaud.drv
"aux1"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2015-12-18 15:59:45 ----D---- C:\rsit
2015-12-18 15:59:45 ----D---- C:\Program Files\trend micro
2015-12-18 15:35:28 ----D---- C:\Windows\LastGood
2015-12-18 15:31:27 ----D---- C:\Users\Jury\AppData\Roaming\KYE ImperatorPro
2015-12-18 15:30:19 ----A---- C:\Windows\unins000.exe
2015-12-18 15:30:19 ----A---- C:\Windows\unins000.dat
2015-12-18 15:27:18 ----SHD---- C:\Config.Msi
2015-12-18 15:19:24 ----A---- C:\Windows\system32\NvRtmpStreamer64.dll
2015-12-18 15:11:38 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2015-12-18 15:11:38 ----A---- C:\Windows\system32\gdi32.dll
2015-12-18 15:11:38 ----A---- C:\Windows\system32\drivers\tunnel.sys
2015-12-18 15:11:38 ----A---- C:\Windows\system32\drivers\tpm.sys
2015-12-18 15:11:32 ----A---- C:\Windows\system32\dpapisrv.dll
2015-12-18 15:11:31 ----A---- C:\Windows\SYSWOW64\Windows.Globalization.dll
2015-12-18 15:11:31 ----A---- C:\Windows\SYSWOW64\kbdgeoqw.dll
2015-12-18 15:11:31 ----A---- C:\Windows\SYSWOW64\KBDAZST.DLL
2015-12-18 15:11:31 ----A---- C:\Windows\SYSWOW64\KBDAZEL.DLL
2015-12-18 15:11:31 ----A---- C:\Windows\SYSWOW64\KBDAZE.DLL
2015-12-18 15:11:31 ----A---- C:\Windows\SYSWOW64\GlobCollationHost.dll
2015-12-18 15:11:31 ----A---- C:\Windows\system32\Windows.Globalization.dll
2015-12-18 15:11:31 ----A---- C:\Windows\system32\kbdgeoqw.dll
2015-12-18 15:11:31 ----A---- C:\Windows\system32\KBDAZST.DLL
2015-12-18 15:11:31 ----A---- C:\Windows\system32\KBDAZEL.DLL
2015-12-18 15:11:31 ----A---- C:\Windows\system32\KBDAZE.DLL
2015-12-18 15:11:31 ----A---- C:\Windows\system32\GlobCollationHost.dll
2015-12-18 15:11:31 ----A---- C:\Windows\system32\AuthHost.exe
2015-12-18 15:11:29 ----A---- C:\Windows\SYSWOW64\wininet.dll
2015-12-18 15:11:29 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2015-12-18 15:11:29 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2015-12-18 15:11:29 ----A---- C:\Windows\SYSWOW64\jscript.dll
2015-12-18 15:11:29 ----A---- C:\Windows\SYSWOW64\inetcomm.dll
2015-12-18 15:11:29 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2015-12-18 15:11:29 ----A---- C:\Windows\system32\vbscript.dll
2015-12-18 15:11:29 ----A---- C:\Windows\system32\jscript9.dll
2015-12-18 15:11:29 ----A---- C:\Windows\system32\jscript.dll
2015-12-18 15:11:29 ----A---- C:\Windows\system32\inetcomm.dll
2015-12-18 15:11:29 ----A---- C:\Windows\system32\ieapfltr.dll
2015-12-18 15:11:28 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2015-12-18 15:11:28 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2015-12-18 15:11:28 ----A---- C:\Windows\system32\wininet.dll
2015-12-18 15:11:28 ----A---- C:\Windows\system32\mshtml.dll
2015-12-18 15:11:28 ----A---- C:\Windows\system32\iertutil.dll
2015-12-18 15:11:27 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2015-12-18 15:11:27 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2015-12-18 15:11:27 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2015-12-18 15:11:27 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2015-12-18 15:11:27 ----A---- C:\Windows\SYSWOW64\ieui.dll
2015-12-18 15:11:27 ----A---- C:\Windows\SYSWOW64\iepeers.dll
2015-12-18 15:11:27 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2015-12-18 15:11:27 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2015-12-18 15:11:27 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2015-12-18 15:11:27 ----A---- C:\Windows\SYSWOW64\actxprxy.dll
2015-12-18 15:11:27 ----A---- C:\Windows\system32\webcheck.dll
2015-12-18 15:11:27 ----A---- C:\Windows\system32\urlmon.dll
2015-12-18 15:11:27 ----A---- C:\Windows\system32\mshtmled.dll
2015-12-18 15:11:27 ----A---- C:\Windows\system32\msfeeds.dll
2015-12-18 15:11:27 ----A---- C:\Windows\system32\ieui.dll
2015-12-18 15:11:27 ----A---- C:\Windows\system32\iepeers.dll
2015-12-18 15:11:27 ----A---- C:\Windows\system32\ieframe.dll
2015-12-18 15:11:27 ----A---- C:\Windows\system32\iedkcs32.dll
2015-12-18 15:11:27 ----A---- C:\Windows\system32\ie4uinit.exe
2015-12-18 15:11:27 ----A---- C:\Windows\system32\dxtrans.dll
2015-12-18 15:11:27 ----A---- C:\Windows\system32\actxprxy.dll
2015-12-18 15:11:26 ----A---- C:\Windows\SYSWOW64\msctf.dll
2015-12-18 15:11:26 ----A---- C:\Windows\system32\msctf.dll
2015-12-18 15:11:11 ----A---- C:\Windows\SYSWOW64\PCPKsp.dll
2015-12-18 15:11:11 ----A---- C:\Windows\system32\PCPKsp.dll
2015-12-18 15:11:11 ----A---- C:\Windows\system32\invagent.dll
2015-12-18 15:11:11 ----A---- C:\Windows\system32\generaltel.dll
2015-12-18 15:11:11 ----A---- C:\Windows\system32\devinv.dll
2015-12-18 15:11:11 ----A---- C:\Windows\system32\appraiser.dll
2015-12-18 15:11:11 ----A---- C:\Windows\system32\aeinv.dll
2015-12-18 15:11:10 ----A---- C:\Windows\system32\drivers\usbuhci.sys
2015-12-18 15:11:10 ----A---- C:\Windows\system32\drivers\usbport.sys
2015-12-18 15:11:10 ----A---- C:\Windows\system32\drivers\usbohci.sys
2015-12-18 15:11:10 ----A---- C:\Windows\system32\drivers\USBHUB3.SYS
2015-12-18 15:11:10 ----A---- C:\Windows\system32\drivers\usbhub.sys
2015-12-18 15:11:10 ----A---- C:\Windows\system32\drivers\usbehci.sys
2015-12-18 15:11:10 ----A---- C:\Windows\system32\drivers\usbd.sys
2015-12-18 15:11:10 ----A---- C:\Windows\system32\CompatTelRunner.exe
2015-12-18 15:11:10 ----A---- C:\Windows\system32\acmigration.dll
2015-12-18 15:11:09 ----A---- C:\Windows\system32\winlogon.exe
2015-12-18 15:11:09 ----A---- C:\Windows\system32\wininit.exe
2015-12-18 15:11:01 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2015-12-18 15:11:01 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2015-12-18 15:11:01 ----A---- C:\Windows\SYSWOW64\comsvcs.dll
2015-12-18 15:11:01 ----A---- C:\Windows\SYSWOW64\catsrvut.dll
2015-12-18 15:11:01 ----A---- C:\Windows\system32\winresume.exe
2015-12-18 15:11:01 ----A---- C:\Windows\system32\winload.exe
2015-12-18 15:11:01 ----A---- C:\Windows\system32\win32k.sys
2015-12-18 15:11:01 ----A---- C:\Windows\system32\user32.dll
2015-12-18 15:11:01 ----A---- C:\Windows\system32\ntvdm64.dll
2015-12-18 15:11:01 ----A---- C:\Windows\system32\ntoskrnl.exe
2015-12-18 15:11:01 ----A---- C:\Windows\system32\ntdll.dll
2015-12-18 15:11:01 ----A---- C:\Windows\system32\FntCache.dll
2015-12-18 15:11:01 ----A---- C:\Windows\system32\DWrite.dll
2015-12-18 15:11:01 ----A---- C:\Windows\system32\drivers\rmcast.sys
2015-12-18 15:11:01 ----A---- C:\Windows\system32\comsvcs.dll
2015-12-18 15:11:01 ----A---- C:\Windows\system32\catsrvut.dll
2015-12-18 15:11:00 ----A---- C:\Windows\SYSWOW64\user32.dll
2015-12-18 15:11:00 ----A---- C:\Windows\SYSWOW64\GdiPlus.dll
2015-12-18 15:11:00 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2015-12-18 15:11:00 ----A---- C:\Windows\system32\GdiPlus.dll
2015-12-18 15:10:47 ----A---- C:\Windows\SYSWOW64\authui.dll
2015-12-18 15:10:47 ----A---- C:\Windows\system32\wuaueng.dll
2015-12-18 15:10:47 ----A---- C:\Windows\system32\authui.dll
2015-12-18 15:10:46 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2015-12-18 15:10:46 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2015-12-18 15:10:46 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2015-12-18 15:10:46 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2015-12-18 15:10:46 ----A---- C:\Windows\system32\wuwebv.dll
2015-12-18 15:10:46 ----A---- C:\Windows\system32\WUSettingsProvider.dll
2015-12-18 15:10:46 ----A---- C:\Windows\system32\wups2.dll
2015-12-18 15:10:46 ----A---- C:\Windows\system32\wudriver.dll
2015-12-18 15:10:46 ----A---- C:\Windows\system32\wucltux.dll
2015-12-18 15:10:46 ----A---- C:\Windows\system32\wuauclt.exe
2015-12-18 15:10:46 ----A---- C:\Windows\system32\wuapp.exe
2015-12-18 15:10:46 ----A---- C:\Windows\system32\wuapi.dll
2015-12-18 14:46:34 ----D---- C:\Users\Jury\AppData\Roaming\KYE Imperator
2015-12-05 22:01:37 ----D---- C:\Users\Jury\AppData\Roaming\Skype
2015-12-05 22:01:34 ----D---- C:\Program Files (x86)\Skype
2015-12-02 14:56:30 ----A---- C:\Windows\SYSWOW64\nvStreaming.exe
2015-12-02 14:55:36 ----A---- C:\Windows\SYSWOW64\nvumdshim.dll
2015-12-02 14:55:36 ----A---- C:\Windows\SYSWOW64\nvopencl.dll
2015-12-02 14:55:36 ----A---- C:\Windows\SYSWOW64\nvoglv32.dll
2015-12-02 14:55:36 ----A---- C:\Windows\SYSWOW64\nvoglshim32.dll
2015-12-02 14:55:36 ----A---- C:\Windows\SYSWOW64\nvinit.dll
2015-12-02 14:55:36 ----A---- C:\Windows\SYSWOW64\NvIFROpenGL.dll
2015-12-02 14:55:36 ----A---- C:\Windows\SYSWOW64\NvIFR.dll
2015-12-02 14:55:36 ----A---- C:\Windows\SYSWOW64\NvFBC.dll
2015-12-02 14:55:36 ----A---- C:\Windows\SYSWOW64\nvEncodeAPI.dll
2015-12-02 14:55:36 ----A---- C:\Windows\system32\nvumdshimx.dll
2015-12-02 14:55:36 ----A---- C:\Windows\system32\nvopencl.dll
2015-12-02 14:55:36 ----A---- C:\Windows\system32\nvoglv64.dll
2015-12-02 14:55:36 ----A---- C:\Windows\system32\nvoglshim64.dll
2015-12-02 14:55:36 ----A---- C:\Windows\system32\nvmcumd.dll
2015-12-02 14:55:36 ----A---- C:\Windows\system32\nvinitx.dll
2015-12-02 14:55:36 ----A---- C:\Windows\system32\NvIFROpenGL.dll
2015-12-02 14:55:36 ----A---- C:\Windows\system32\NvIFR64.dll
2015-12-02 14:55:36 ----A---- C:\Windows\system32\NvFBC64.dll
2015-12-02 14:55:36 ----A---- C:\Windows\system32\nvEncodeAPI64.dll
2015-12-02 14:55:36 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2015-12-02 14:55:35 ----A---- C:\Windows\SYSWOW64\nvcuvid.dll
2015-12-02 14:55:35 ----A---- C:\Windows\SYSWOW64\nvcuda.dll
2015-12-02 14:55:35 ----A---- C:\Windows\SYSWOW64\nvcompiler.dll
2015-12-02 14:55:35 ----A---- C:\Windows\system32\nvdispgenco6435906.dll
2015-12-02 14:55:35 ----A---- C:\Windows\system32\nvdispco6435906.dll
2015-12-02 14:55:35 ----A---- C:\Windows\system32\nvcuvid.dll
2015-12-02 14:55:35 ----A---- C:\Windows\system32\nvcuda.dll
2015-12-02 14:55:35 ----A---- C:\Windows\system32\nvcompiler.dll
2015-12-02 14:55:35 ----A---- C:\Windows\system32\nvaudcaparm.dll
2015-12-02 14:55:35 ----A---- C:\Windows\system32\drivers\nvvadarm.sys
2015-11-24 15:48:28 ----D---- C:\ProgramData\EA Core
2015-11-24 15:48:27 ----D---- C:\ProgramData\EA Logs
2015-11-24 15:06:31 ----A---- C:\Windows\SYSWOW64\XAudio2_7.dll
2015-11-24 15:06:31 ----A---- C:\Windows\SYSWOW64\D3DX9_43.dll
2015-11-24 15:06:30 ----A---- C:\Windows\SYSWOW64\X3DAudio1_7.dll
2015-11-24 15:06:24 ----A---- C:\Windows\SYSWOW64\xinput1_3.dll
2015-11-23 11:05:13 ----D---- C:\Program Files (x86)\MJPEG decoder
2015-11-22 22:13:05 ----D---- C:\Users\Jury\AppData\Roaming\Screaming Bee
2015-11-22 22:13:05 ----D---- C:\ProgramData\Screaming Bee
2015-11-21 14:17:33 ----D---- C:\Program Files (x86)\Adobe Media Player
2015-11-21 12:48:30 ----A---- C:\Windows\system32\nvdispgenco6435900.dll
2015-11-21 12:48:30 ----A---- C:\Windows\system32\nvdispco6435900.dll
======List of files/folders modified in the last 1 month======
2015-12-18 15:59:45 ----RD---- C:\Program Files
2015-12-18 15:59:22 ----D---- C:\Windows\Temp
2015-12-18 15:55:31 ----D---- C:\Program Files (x86)\Steam
2015-12-18 15:55:27 ----D---- C:\Windows\system32\drivers
2015-12-18 15:42:57 ----D---- C:\Users\Jury\AppData\Roaming\ClassicShell
2015-12-18 15:41:06 ----D---- C:\Windows\SysWOW64
2015-12-18 15:37:03 ----RD---- C:\Windows\System32
2015-12-18 15:37:03 ----D---- C:\Windows\Inf
2015-12-18 15:37:03 ----A---- C:\Windows\system32\PerfStringBackup.INI
2015-12-18 15:35:28 ----D---- C:\Windows\system32\DriverStore
2015-12-18 15:35:28 ----D---- C:\Windows
2015-12-18 15:30:54 ----D---- C:\ProgramData\NVIDIA
2015-12-18 15:30:20 ----D---- C:\Windows\system32\catroot
2015-12-18 15:30:19 ----D---- C:\Program Files (x86)\Genius
2015-12-18 15:27:19 ----SHD---- C:\Windows\Installer
2015-12-18 15:27:19 ----RD---- C:\Program Files (x86)
2015-12-18 15:27:19 ----D---- C:\ProgramData\Package Cache
2015-12-18 15:25:14 ----D---- C:\Windows\Prefetch
2015-12-18 15:19:18 ----D---- C:\ProgramData\NVIDIA Corporation
2015-12-18 15:18:28 ----D---- C:\Windows\system32\config
2015-12-18 15:18:27 ----D---- C:\Windows\WinSxS
2015-12-18 15:18:27 ----D---- C:\Windows\Microsoft.NET
2015-12-18 15:17:04 ----SD---- C:\Windows\SYSWOW64\GWX
2015-12-18 15:17:04 ----SD---- C:\Windows\system32\GWX
2015-12-18 15:17:04 ----D---- C:\Windows\SYSWOW64\cs-CZ
2015-12-18 15:17:04 ----D---- C:\Windows\system32\cs-CZ
2015-12-18 15:17:04 ----D---- C:\Windows\apppatch
2015-12-18 15:17:04 ----D---- C:\Program Files\Internet Explorer
2015-12-18 15:17:04 ----D---- C:\Program Files (x86)\Internet Explorer
2015-12-18 15:17:03 ----RSD---- C:\Windows\Fonts
2015-12-18 15:17:03 ----D---- C:\Windows\system32\Boot
2015-12-18 15:14:37 ----D---- C:\Windows\CbsTemp
2015-12-18 15:14:15 ----D---- C:\Users\Jury\AppData\Roaming\BitTorrent
2015-12-18 15:14:13 ----D---- C:\Windows\debug
2015-12-18 15:12:05 ----D---- C:\Windows\system32\MRT
2015-12-18 15:12:04 ----A---- C:\Windows\system32\MRT.exe
2015-12-18 15:11:42 ----SD---- C:\Windows\system32\CompatTel
2015-12-18 15:11:42 ----D---- C:\Windows\system32\appraiser
2015-12-18 15:10:57 ----D---- C:\Windows\system32\catroot2
2015-12-18 15:05:25 ----D---- C:\Users\Jury\AppData\Roaming\TS3Client
2015-12-18 15:02:23 ----D---- C:\Windows\system32\wdi
2015-12-18 15:00:10 ----D---- C:\Windows\system32\wbem
2015-12-18 14:59:53 ----RSD---- C:\Windows\Media
2015-12-18 14:59:53 ----D---- C:\Windows\Tasks
2015-12-18 14:59:53 ----D---- C:\Windows\SYSWOW64\wbem
2015-12-18 14:59:53 ----D---- C:\Windows\SYSWOW64\migration
2015-12-18 14:59:53 ----D---- C:\Windows\system32\Tasks
2015-12-18 14:59:53 ----D---- C:\Windows\system32\Sysprep
2015-12-18 14:59:53 ----D---- C:\Windows\system32\sru
2015-12-18 14:59:53 ----D---- C:\Windows\system32\migration
2015-12-18 14:59:53 ----D---- C:\Windows\system32\CodeIntegrity
2015-12-18 14:59:53 ----D---- C:\Windows\rescache
2015-12-18 14:59:53 ----D---- C:\Windows\PolicyDefinitions
2015-12-18 14:59:52 ----D---- C:\Windows\AppCompat
2015-12-18 14:59:52 ----D---- C:\Users\Jury\AppData\Roaming\vlc
2015-12-18 14:59:52 ----D---- C:\ProgramData\Spybot - Search & Destroy
2015-12-18 14:59:52 ----D---- C:\Program Files\Common Files\microsoft shared
2015-12-18 14:59:52 ----D---- C:\Program Files (x86)\Common Files
2015-12-18 14:59:46 ----HD---- C:\Program Files\WindowsApps
2015-12-18 14:59:36 ----D---- C:\Windows\registration
2015-12-18 14:59:28 ----RSD---- C:\Windows\assembly
2015-12-18 14:59:26 ----HD---- C:\ProgramData
2015-12-18 14:58:52 ----SHD---- C:\System Volume Information
2015-12-10 12:01:30 ----D---- C:\ProgramData\GFACE
2015-12-09 02:51:39 ----A---- C:\Windows\SYSWOW64\nvspcap.dll
2015-12-09 02:51:39 ----A---- C:\Windows\SYSWOW64\nvspbridge.dll
2015-12-09 02:51:20 ----A---- C:\Windows\system32\nvspcap64.dll
2015-12-09 02:51:19 ----A---- C:\Windows\system32\nvspbridge64.dll
2015-12-06 12:29:12 ----D---- C:\Windows\AppReadiness
2015-12-01 18:19:27 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2015-11-27 18:16:00 ----D---- C:\Windows\SoftwareDistribution
2015-11-27 18:05:35 ----D---- C:\Windows\Logs
2015-11-25 15:56:46 ----D---- C:\Users\Jury\AppData\Roaming\OBS
2015-11-25 15:52:59 ----D---- C:\Program Files (x86)\OBS
2015-11-25 00:10:29 ----A---- C:\Windows\SYSWOW64\nvwgf2um.dll
2015-11-25 00:10:29 ----A---- C:\Windows\SYSWOW64\nvd3dum.dll
2015-11-25 00:10:29 ----A---- C:\Windows\SYSWOW64\nvapi.dll
2015-11-25 00:10:29 ----A---- C:\Windows\system32\nvwgf2umx.dll
2015-11-25 00:10:29 ----A---- C:\Windows\system32\nvmcvadgenco64.dll
2015-11-25 00:10:29 ----A---- C:\Windows\system32\nvd3dumx.dll
2015-11-25 00:10:29 ----A---- C:\Windows\system32\nvapi64.dll
2015-11-24 19:40:40 ----A---- C:\Windows\system32\nvsvc64.dll
2015-11-24 19:40:40 ----A---- C:\Windows\system32\nvcpl.dll
2015-11-24 19:40:37 ----A---- C:\Windows\system32\nvvsvc.exe
2015-11-24 19:40:37 ----A---- C:\Windows\system32\nvsvcr.dll
2015-11-24 19:40:37 ----A---- C:\Windows\system32\nvshext.dll
2015-11-24 19:40:37 ----A---- C:\Windows\system32\nvmctray.dll
2015-11-24 18:37:37 ----D---- C:\ProgramData\Origin
2015-11-24 15:55:22 ----A---- C:\Windows\SYSWOW64\PnkBstrA.exe
2015-11-24 15:55:15 ----A---- C:\Windows\SYSWOW64\PnkBstrB.exe
2015-11-24 15:38:33 ----D---- C:\Program Files (x86)\Origin Games
2015-11-24 14:12:48 ----D---- C:\Program Files (x86)\Origin
2015-11-21 14:46:07 ----D---- C:\ProgramData\regid.1986-12.com.adobe
2015-11-21 14:18:39 ----D---- C:\Program Files\Common Files\Adobe
2015-11-21 14:18:27 ----D---- C:\Users\Jury\AppData\Roaming\Adobe
2015-11-21 14:17:41 ----D---- C:\ProgramData\Adobe
2015-11-21 14:17:07 ----D---- C:\Program Files (x86)\Adobe
2015-11-21 12:47:40 ----D---- C:\ProgramData\Oracle
2015-11-21 12:47:36 ----D---- C:\Program Files (x86)\Java
2015-11-21 12:47:04 ----A---- C:\Windows\SYSWOW64\WindowsAccessBridge-32.dll
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 edevmon;edevmon; C:\Windows\system32\DRIVERS\edevmon.sys [2015-07-14 251632]
R0 iaStorA;iaStorA; C:\Windows\System32\drivers\iaStorA.sys [2014-04-11 645480]
R0 mvs91xx;mvs91xx; C:\Windows\System32\drivers\mvs91xx.sys [2013-09-06 327464]
R1 BfLwf;@oem19.inf,%BfLwf_Desc%;Qualcomm Atheros Bandwidth Control; C:\Windows\system32\DRIVERS\bwcW8x64.sys [2013-02-13 75056]
R1 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys [2015-07-14 255240]
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2015-07-14 178520]
R2 epfwwfpr;epfwwfpr; C:\Windows\system32\DRIVERS\epfwwfpr.sys [2015-07-14 168208]
R3 e1dexpress;@oem9.inf,%e1dExpress.Service.DispName%;Intel(R) PRO/1000 PCI Express Network Connection Driver D; C:\Windows\system32\DRIVERS\e1d64x64.sys [2013-08-29 468240]
R3 etocdrv;etocdrv; \??\C:\Windows\etocdrv.sys [2013-10-31 15584]
R3 gdrv;gdrv; \??\C:\Windows\gdrv.sys [2015-12-18 26192]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2015-08-09 4928256]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2014-03-14 3896920]
R3 IntcDAud;@oem3.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\Windows\system32\DRIVERS\IntcDAud.sys [2014-03-31 450520]
R3 iwdbus;@oem6.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\Windows\System32\drivers\iwdbus.sys [2015-05-26 30512]
R3 Ke2200;@oem18.inf,%L1C.Service.DispName%;NDIS Miniport Driver for the Killer e2200 Gigabit Ethernet Controller; C:\Windows\system32\DRIVERS\e22w8x64.sys [2013-03-20 163536]
R3 KYEKBPRO;@oem36.inf,%KYEKBPRO.SvcDesc%;IMPERATOR PRO Gaming Keyboard; C:\Windows\system32\drivers\KYEKBPRO.sys [2011-10-14 25600]
R3 MEIx64;@oem48.inf,%TEE_SvcDesc%;Intel(R) Management Engine Interface ; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [2014-09-30 129312]
R3 NVHDA;@oem58.inf,%NVHDA.SvcDesc%;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda64v.sys [2015-11-05 205456]
R3 nvlddmkm;nvlddmkm; C:\Windows\system32\DRIVERS\nvlddmkm.sys [2015-11-25 11131184]
R3 NvStreamKms;NvStreamKms; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2015-12-09 19576]
R3 nvvad_WaveExtensible;@oem44.inf,%nvvad_WaveExtensible.SvcDesc%;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\Windows\system32\drivers\nvvad64v.sys [2015-08-11 50472]
R3 NVVADARM;@oem62.inf,%NVVADARM.SvcDesc%;NVIDIA Miracast Audio; C:\Windows\system32\drivers\nvvadarm.sys [2015-11-25 39032]
S3 AIDA64Driver;FinalWire AIDA64 Kernel Driver; \??\C:\Program Files (x86)\FinalWire\AIDA64 Extreme\kerneld.x64 [2014-12-08 34136]
S3 dtultrascsibus;@oem37.inf,%DTULTRASCSIBUS.DeviceDesc%;DAEMON Tools Ultra Virtual SCSI Bus; C:\Windows\System32\drivers\dtultrascsibus.sys [2015-07-15 30264]
S3 dtultrausbbus;@oem38.inf,%DTULTRAUSBBUS.DeviceDesc%;DAEMON Tools Ultra Virtual USB Bus; C:\Windows\System32\drivers\dtultrausbbus.sys [2015-07-15 47160]
S3 e1iexpress;@net1ic64.inf,%e1iExpress.Service.DispName%;Intel(R) PRO/1000 - ovladač I pro síťová připojení PCI Express; C:\Windows\system32\DRIVERS\e1i63x64.sys [2013-06-18 460288]
S3 intaud_WaveExtensible;@oem5.inf,%INTAUD_WEX.SvcDesc%;Intel WiDi Audio Device; C:\Windows\system32\drivers\intelaud.sys [2015-05-26 42288]
S3 ScreamBAudioSvc;@oem61.inf,%sbee_audio.SvcDesc%;ScreamBee Audio; C:\Windows\system32\drivers\ScreamingBAudio64.sys [2014-02-07 38992]
S3 usbaudio;@wdma_usb.inf,%USBAudio.SvcDesc%;Ovladač zvuků USB (WDM); C:\Windows\system32\drivers\usbaudio.sys [2013-12-13 121088]
S3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;Zobrazovací zařízení USB (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2014-06-21 212736]
S3 WDC_SAM;@oem33.inf,%WDC_SAM_ServiceName%;WD SCSI Pass Thru driver; C:\Windows\System32\drivers\wdcsam64.sys [2015-04-29 23200]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2015-10-28 82128]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2014-10-29 38792]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe [2015-07-08 1353720]
R2 gadjservice;GIGABYTE Adjust; C:\Program Files (x86)\Gigabyte\AppCenter\AdjustService.exe [2015-04-14 16896]
R2 GfExperienceService;NVIDIA GeForce Experience Service; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [2015-12-09 1156216]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2014-04-11 16232]
R2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\Windows\system32\igfxCUIService.exe [2015-08-09 355232]
R2 Intel(R) PROSet Monitoring Service;Intel(R) PROSet Monitoring Service; C:\Windows\system32\IProsetMonitor.exe [2013-11-01 241416]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2014-03-20 154584]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2014-03-20 398296]
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2015-12-09 1872504]
R2 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [2015-12-09 6477432]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2015-11-24 938616]
R2 PnkBstrA;PnkBstrA; C:\Windows\syswow64\PnkBstrA.exe [2015-11-24 76152]
R2 Qualcomm Atheros Killer Service V2;Qualcomm Atheros Killer Service V2; C:\Program Files\Qualcomm Atheros\Network Manager\KillerService.exe [2013-08-08 343040]
R2 SBSDWSCService;SBSD Security Center Service; C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe [2009-01-26 1153368]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2015-11-24 417584]
R3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696]
R3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2014-02-18 171480]
R3 NvStreamNetworkSvc;NVIDIA Streamer Network Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [2015-12-09 8185464]
R3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2015-12-14 836176]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-12-18 269504]
S3 BEService;BattlEye Service; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [2015-12-02 1257504]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\Windows\System32\svchost.exe [2014-10-29 38792]
S3 cphs;Intel(R) Content Protection HECI Service; C:\Windows\SysWow64\IntelCpHeciSvc.exe [2015-08-09 288688]
S3 EasyAntiCheat;EasyAntiCheat; C:\Windows\syswow64\EasyAntiCheat.exe [2015-08-23 238376]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2014-01-31 887232]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2015-11-06 147624]
S3 Origin Client Service;Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2015-11-24 2099720]
S3 SwitchBoard;SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
-----------------EOF-----------------
přikládám log, a pedem děkuji za pomoc.
Logfile of random's system information tool 1.10 (written by random/random)
Run by Jury at 2015-12-18 15:59:45
Microsoft Windows 8.1 Pro
System drive C: has 44 GB (19%) free of 228 GB
Total RAM: 16210 MB (85% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 15:59:49, on 18. 12. 2015
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.18123)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Gigabyte\AppCenter\ApCent.exe
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files (x86)\Steam\Steam.exe
C:\Program Files\Qualcomm Atheros\Network Manager\NetworkManager.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Genius\Imperator Pro\IMProHid.exe
C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
C:\Program Files (x86)\Genius\Imperator Pro\OSD.exe
C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
C:\Program Files\trend micro\Jury.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: ExplorerBHO Class - {449D0D6E-2412-4E61-B68F-1CB625CD9E52} - C:\Program Files\Classic Shell\ClassicExplorer32.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~2\SPYBOT~1\SDHelper.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_66\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_66\bin\jp2ssv.dll
O2 - BHO: ClassicIEBHO Class - {EA801577-E6AD-4BD5-8F71-4BE0154331A4} - C:\Program Files\Classic Shell\ClassicIEDLL_32.dll
O3 - Toolbar: Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer32.dll
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O4 - HKLM\..\Run: [AdobeCS5ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [Imperator pro] "C:\Program Files (x86)\Genius\Imperator Pro\IMProhid.exe"
O4 - HKLM\..\RunOnce: [EasyTune] C:\Program Files (x86)\Gigabyte\EasyTune\etro.exe
O4 - HKLM\..\RunOnce: [PreRun] C:\Program Files (x86)\Gigabyte\AppCenter\PreRun.exe
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [Steam] "C:\Program Files (x86)\Steam\steam.exe" -silent
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - Startup: Desktop.scf
O4 - Global Startup: Killer Network Manager.lnk = ?
O9 - Extra button: (no name) - {56753E59-AF1D-4FBA-9E15-31557124ADA2} - C:\Program Files\Classic Shell\ClassicIE_32.exe
O9 - Extra 'Tools' menuitem: Classic IE Settings - {56753E59-AF1D-4FBA-9E15-31557124ADA2} - C:\Program Files\Classic Shell\ClassicIE_32.exe
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~2\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~2\SPYBOT~1\SDHelper.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: *.clonewarsadventures.com
O15 - Trusted Zone: *.freerealms.com
O15 - Trusted Zone: *.soe.com
O15 - Trusted Zone: *.sony.com
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: BattlEye Service (BEService) - Unknown owner - C:\Program Files (x86)\Common Files\BattlEye\BEService.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\Windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: EasyAntiCheat - EasyAntiCheat Ltd - C:\Windows\system32\EasyAntiCheat.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: GIGABYTE Adjust (gadjservice) - Unknown owner - C:\Program Files (x86)\Gigabyte\AppCenter\AdjustService.exe
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\Windows\system32\igfxCUIService.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) PROSet Monitoring Service - Unknown owner - C:\Windows\system32\IProsetMonitor.exe (file missing)
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Network Service (NvStreamNetworkSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: Origin Client Service - Electronic Arts - C:\Program Files (x86)\Origin\OriginClientService.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: Qualcomm Atheros Killer Service V2 - Qualcomm Atheros - C:\Program Files\Qualcomm Atheros\Network Manager\KillerService.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: SBSD Security Center Service (SBSDWSCService) - Safer Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 11241 bytes
======Listing Processes======
wininit.exe
C:\Windows\system32\lsass.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
"C:\Windows\system32\nvvsvc.exe"
"dwm.exe"
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\igfxCUIService.exe
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\Windows\System32\svchost.exe -k utcsvc
"C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe"
"C:\Program Files (x86)\Gigabyte\AppCenter\AdjustService.exe"
taskhostex.exe
C:\Windows\Explorer.EXE
"C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe"
C:\Windows\system32\IProsetMonitor.exe
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe"
C:\Windows\SysWOW64\PnkBstrA.exe
"C:\Program Files\Qualcomm Atheros\Network Manager\KillerService.exe"
"C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe"
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
igfxEM.exe
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Gigabyte\AppCenter\ApCent.exe"
ClassicStartMenu.exe -startup
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe" serviceapp
\??\C:\Windows\system32\conhost.exe 0x4
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe"
"C:\Windows\system32\GWX\GWX.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
"C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe"
"C:\Program Files\NVIDIA Corporation\ShadowPlay\nvspcaps64.exe" -Embedding
"C:\Program Files (x86)\Steam\Steam.exe" -silent
"C:\Program Files\Qualcomm Atheros\Network Manager\NetworkManager.exe" -minimize
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac
"C:\Program Files (x86)\Genius\Imperator Pro\IMProHid.exe"
"C:\Program Files (x86)\Steam\bin\steamwebhelper.exe" -cachedir="C:\Users\Jury\AppData\Local\Steam\htmlcache" -steampid=5096 -buildid=1450127196 -steamid="0" --disable-gpu-compositing --disable-gpu --process-per-tab --enable-system-flash --disable-spell-checking --enable-widevine-cdm --enable-direct-write
"C:\Program Files (x86)\Common Files\Steam\SteamService.exe" /RunAsService
"C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
"C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\Program Files (x86)\Steam\bin\steamwebhelper.exe" --type=renderer --disable-gpu-compositing --enable-pinch --lang=en-US --lang=en-US --log-file="C:\Program Files (x86)\Steam\bin\debug.log" --product-version="Valve Steam Client" --disable-spell-checking --enable-system-flash --enable-pinch --device-scale-factor=1 --num-raster-threads=4 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --disable-gpu-compositing --channel="4656.0.1965062469\389238919" --font-cache-shared-handle=1392 /prefetch:673131151
"C:\Program Files (x86)\Genius\Imperator Pro\OSD.exe"
"C:\Program Files (x86)\Steam\bin\steamwebhelper.exe" --type=renderer --disable-gpu-compositing --enable-pinch --lang=en-US --lang=en-US --log-file="C:\Program Files (x86)\Steam\bin\debug.log" --product-version="Valve Steam Client" --disable-spell-checking --enable-system-flash --enable-pinch --device-scale-factor=1 --num-raster-threads=4 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --disable-gpu-compositing --channel="4656.2.353605\2051381043" --font-cache-shared-handle=2636 /prefetch:673131151
"C:\Windows\system32\taskmgr.exe" /4
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe2_ Global\UsGthrCtrlFltPipeMssGthrPipe2 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 556 560 584 65536 580
"C:\Users\Jury\Downloads\RSITx64.exe"
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
=========Mozilla firefox=========
ProfilePath - C:\Users\Jury\AppData\Roaming\Mozilla\Firefox\Profiles\j7z66b47.default
prefs.js - "browser.startup.homepage" - "https://www.seznam.cz/"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 20.0.0.235 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_20_0_0_235.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@esn/npbattlelog,version=2.7.1]
"Description"=
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\2.7.1\npbattlelog.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5]
"Description"=Intel IPT WebApi plugin
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater]
"Description"=This plugin updates Intel WebAPI component
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=11.66.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre1.8.0_66\bin\dtplugin\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=11.66.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre1.8.0_66\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVision]
"Description"=NVIDIA stereo images plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVisionStreaming]
"Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.1]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 20.0.0.235 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_20_0_0_235.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@esn/npbattlelog,version=2.7.1]
"Description"=
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\2.7.1\npbattlelogx64.dll
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{449D0D6E-2412-4E61-B68F-1CB625CD9E52}]
ExplorerBHO Class - C:\Program Files\Classic Shell\ClassicExplorer64.dll [2014-04-20 803520]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EA801577-E6AD-4BD5-8F71-4BE0154331A4}]
ClassicIEBHO Class - C:\Program Files\Classic Shell\ClassicIEDLL_64.dll [2014-04-20 483520]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{449D0D6E-2412-4E61-B68F-1CB625CD9E52}]
ExplorerBHO Class - C:\Program Files\Classic Shell\ClassicExplorer32.dll [2014-04-20 683200]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{53707962-6F74-2D53-2644-206D7942484F}]
Spybot-S&D IE Protection - C:\PROGRA~2\SPYBOT~1\SDHelper.dll [2009-01-26 1879896]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_66\bin\ssv.dll [2015-11-21 460384]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_66\bin\jp2ssv.dll [2015-11-21 172640]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EA801577-E6AD-4BD5-8F71-4BE0154331A4}]
ClassicIEBHO Class - C:\Program Files\Classic Shell\ClassicIEDLL_32.dll [2014-04-20 440512]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{553891B7-A0D5-4526-BE18-D3CE461D6310} - Classic Explorer Bar - C:\Program Files\Classic Shell\ClassicExplorer64.dll [2014-04-20 803520]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{553891B7-A0D5-4526-BE18-D3CE461D6310} - Classic Explorer Bar - C:\Program Files\Classic Shell\ClassicExplorer32.dll [2014-04-20 683200]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Classic Start Menu"=C:\Program Files\Classic Shell\ClassicStartMenu.exe [2014-04-20 161984]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2014-03-14 13671792]
"IAStorIcon"=C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe [2014-04-11 36352]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2015-12-09 2771576]
"ShadowPlay"=C:\Windows\system32\nvspcap64.dll [2015-12-09 1846016]
"egui"=C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [2015-07-08 5595848]
"AdobeAAMUpdater-1.0"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2010-03-06 500208]
"Logitech Download Assistant"=C:\Windows\System32\LogiLDA.dll [2012-09-20 3933496]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"SpybotSD TeaTimer"=C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe [2009-03-05 2260480]
"Steam"=C:\Program Files (x86)\Steam\steam.exe [2015-12-14 3013712]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2015-09-16 8461224]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2015-11-09 596528]
"SwitchBoard"=C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
"AdobeCS5ServiceManager"=C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe [2010-02-22 406992]
"Imperator pro"=C:\Program Files (x86)\Genius\Imperator Pro\IMProhid.exe [2012-02-24 287232]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\RunOnce]
"EasyTune"=C:\Program Files (x86)\Gigabyte\EasyTune\etro.exe [2014-08-18 5632]
"PreRun"=C:\Program Files (x86)\Gigabyte\AppCenter\PreRun.exe [2013-04-29 8192]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Killer Network Manager.lnk - C:\Windows\Installer\{401FADAA-1C16-4721-9F02-19067E1A1CA8}\NetworkManager.exe_130C27D738F34C89BDDF21BCFD74B56D.exe
C:\Users\Jury\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Desktop.scf
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux2"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave6"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer6"=wdmaud.drv
"aux1"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2015-12-18 15:59:45 ----D---- C:\rsit
2015-12-18 15:59:45 ----D---- C:\Program Files\trend micro
2015-12-18 15:35:28 ----D---- C:\Windows\LastGood
2015-12-18 15:31:27 ----D---- C:\Users\Jury\AppData\Roaming\KYE ImperatorPro
2015-12-18 15:30:19 ----A---- C:\Windows\unins000.exe
2015-12-18 15:30:19 ----A---- C:\Windows\unins000.dat
2015-12-18 15:27:18 ----SHD---- C:\Config.Msi
2015-12-18 15:19:24 ----A---- C:\Windows\system32\NvRtmpStreamer64.dll
2015-12-18 15:11:38 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2015-12-18 15:11:38 ----A---- C:\Windows\system32\gdi32.dll
2015-12-18 15:11:38 ----A---- C:\Windows\system32\drivers\tunnel.sys
2015-12-18 15:11:38 ----A---- C:\Windows\system32\drivers\tpm.sys
2015-12-18 15:11:32 ----A---- C:\Windows\system32\dpapisrv.dll
2015-12-18 15:11:31 ----A---- C:\Windows\SYSWOW64\Windows.Globalization.dll
2015-12-18 15:11:31 ----A---- C:\Windows\SYSWOW64\kbdgeoqw.dll
2015-12-18 15:11:31 ----A---- C:\Windows\SYSWOW64\KBDAZST.DLL
2015-12-18 15:11:31 ----A---- C:\Windows\SYSWOW64\KBDAZEL.DLL
2015-12-18 15:11:31 ----A---- C:\Windows\SYSWOW64\KBDAZE.DLL
2015-12-18 15:11:31 ----A---- C:\Windows\SYSWOW64\GlobCollationHost.dll
2015-12-18 15:11:31 ----A---- C:\Windows\system32\Windows.Globalization.dll
2015-12-18 15:11:31 ----A---- C:\Windows\system32\kbdgeoqw.dll
2015-12-18 15:11:31 ----A---- C:\Windows\system32\KBDAZST.DLL
2015-12-18 15:11:31 ----A---- C:\Windows\system32\KBDAZEL.DLL
2015-12-18 15:11:31 ----A---- C:\Windows\system32\KBDAZE.DLL
2015-12-18 15:11:31 ----A---- C:\Windows\system32\GlobCollationHost.dll
2015-12-18 15:11:31 ----A---- C:\Windows\system32\AuthHost.exe
2015-12-18 15:11:29 ----A---- C:\Windows\SYSWOW64\wininet.dll
2015-12-18 15:11:29 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2015-12-18 15:11:29 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2015-12-18 15:11:29 ----A---- C:\Windows\SYSWOW64\jscript.dll
2015-12-18 15:11:29 ----A---- C:\Windows\SYSWOW64\inetcomm.dll
2015-12-18 15:11:29 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2015-12-18 15:11:29 ----A---- C:\Windows\system32\vbscript.dll
2015-12-18 15:11:29 ----A---- C:\Windows\system32\jscript9.dll
2015-12-18 15:11:29 ----A---- C:\Windows\system32\jscript.dll
2015-12-18 15:11:29 ----A---- C:\Windows\system32\inetcomm.dll
2015-12-18 15:11:29 ----A---- C:\Windows\system32\ieapfltr.dll
2015-12-18 15:11:28 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2015-12-18 15:11:28 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2015-12-18 15:11:28 ----A---- C:\Windows\system32\wininet.dll
2015-12-18 15:11:28 ----A---- C:\Windows\system32\mshtml.dll
2015-12-18 15:11:28 ----A---- C:\Windows\system32\iertutil.dll
2015-12-18 15:11:27 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2015-12-18 15:11:27 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2015-12-18 15:11:27 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2015-12-18 15:11:27 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2015-12-18 15:11:27 ----A---- C:\Windows\SYSWOW64\ieui.dll
2015-12-18 15:11:27 ----A---- C:\Windows\SYSWOW64\iepeers.dll
2015-12-18 15:11:27 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2015-12-18 15:11:27 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2015-12-18 15:11:27 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2015-12-18 15:11:27 ----A---- C:\Windows\SYSWOW64\actxprxy.dll
2015-12-18 15:11:27 ----A---- C:\Windows\system32\webcheck.dll
2015-12-18 15:11:27 ----A---- C:\Windows\system32\urlmon.dll
2015-12-18 15:11:27 ----A---- C:\Windows\system32\mshtmled.dll
2015-12-18 15:11:27 ----A---- C:\Windows\system32\msfeeds.dll
2015-12-18 15:11:27 ----A---- C:\Windows\system32\ieui.dll
2015-12-18 15:11:27 ----A---- C:\Windows\system32\iepeers.dll
2015-12-18 15:11:27 ----A---- C:\Windows\system32\ieframe.dll
2015-12-18 15:11:27 ----A---- C:\Windows\system32\iedkcs32.dll
2015-12-18 15:11:27 ----A---- C:\Windows\system32\ie4uinit.exe
2015-12-18 15:11:27 ----A---- C:\Windows\system32\dxtrans.dll
2015-12-18 15:11:27 ----A---- C:\Windows\system32\actxprxy.dll
2015-12-18 15:11:26 ----A---- C:\Windows\SYSWOW64\msctf.dll
2015-12-18 15:11:26 ----A---- C:\Windows\system32\msctf.dll
2015-12-18 15:11:11 ----A---- C:\Windows\SYSWOW64\PCPKsp.dll
2015-12-18 15:11:11 ----A---- C:\Windows\system32\PCPKsp.dll
2015-12-18 15:11:11 ----A---- C:\Windows\system32\invagent.dll
2015-12-18 15:11:11 ----A---- C:\Windows\system32\generaltel.dll
2015-12-18 15:11:11 ----A---- C:\Windows\system32\devinv.dll
2015-12-18 15:11:11 ----A---- C:\Windows\system32\appraiser.dll
2015-12-18 15:11:11 ----A---- C:\Windows\system32\aeinv.dll
2015-12-18 15:11:10 ----A---- C:\Windows\system32\drivers\usbuhci.sys
2015-12-18 15:11:10 ----A---- C:\Windows\system32\drivers\usbport.sys
2015-12-18 15:11:10 ----A---- C:\Windows\system32\drivers\usbohci.sys
2015-12-18 15:11:10 ----A---- C:\Windows\system32\drivers\USBHUB3.SYS
2015-12-18 15:11:10 ----A---- C:\Windows\system32\drivers\usbhub.sys
2015-12-18 15:11:10 ----A---- C:\Windows\system32\drivers\usbehci.sys
2015-12-18 15:11:10 ----A---- C:\Windows\system32\drivers\usbd.sys
2015-12-18 15:11:10 ----A---- C:\Windows\system32\CompatTelRunner.exe
2015-12-18 15:11:10 ----A---- C:\Windows\system32\acmigration.dll
2015-12-18 15:11:09 ----A---- C:\Windows\system32\winlogon.exe
2015-12-18 15:11:09 ----A---- C:\Windows\system32\wininit.exe
2015-12-18 15:11:01 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2015-12-18 15:11:01 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2015-12-18 15:11:01 ----A---- C:\Windows\SYSWOW64\comsvcs.dll
2015-12-18 15:11:01 ----A---- C:\Windows\SYSWOW64\catsrvut.dll
2015-12-18 15:11:01 ----A---- C:\Windows\system32\winresume.exe
2015-12-18 15:11:01 ----A---- C:\Windows\system32\winload.exe
2015-12-18 15:11:01 ----A---- C:\Windows\system32\win32k.sys
2015-12-18 15:11:01 ----A---- C:\Windows\system32\user32.dll
2015-12-18 15:11:01 ----A---- C:\Windows\system32\ntvdm64.dll
2015-12-18 15:11:01 ----A---- C:\Windows\system32\ntoskrnl.exe
2015-12-18 15:11:01 ----A---- C:\Windows\system32\ntdll.dll
2015-12-18 15:11:01 ----A---- C:\Windows\system32\FntCache.dll
2015-12-18 15:11:01 ----A---- C:\Windows\system32\DWrite.dll
2015-12-18 15:11:01 ----A---- C:\Windows\system32\drivers\rmcast.sys
2015-12-18 15:11:01 ----A---- C:\Windows\system32\comsvcs.dll
2015-12-18 15:11:01 ----A---- C:\Windows\system32\catsrvut.dll
2015-12-18 15:11:00 ----A---- C:\Windows\SYSWOW64\user32.dll
2015-12-18 15:11:00 ----A---- C:\Windows\SYSWOW64\GdiPlus.dll
2015-12-18 15:11:00 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2015-12-18 15:11:00 ----A---- C:\Windows\system32\GdiPlus.dll
2015-12-18 15:10:47 ----A---- C:\Windows\SYSWOW64\authui.dll
2015-12-18 15:10:47 ----A---- C:\Windows\system32\wuaueng.dll
2015-12-18 15:10:47 ----A---- C:\Windows\system32\authui.dll
2015-12-18 15:10:46 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2015-12-18 15:10:46 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2015-12-18 15:10:46 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2015-12-18 15:10:46 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2015-12-18 15:10:46 ----A---- C:\Windows\system32\wuwebv.dll
2015-12-18 15:10:46 ----A---- C:\Windows\system32\WUSettingsProvider.dll
2015-12-18 15:10:46 ----A---- C:\Windows\system32\wups2.dll
2015-12-18 15:10:46 ----A---- C:\Windows\system32\wudriver.dll
2015-12-18 15:10:46 ----A---- C:\Windows\system32\wucltux.dll
2015-12-18 15:10:46 ----A---- C:\Windows\system32\wuauclt.exe
2015-12-18 15:10:46 ----A---- C:\Windows\system32\wuapp.exe
2015-12-18 15:10:46 ----A---- C:\Windows\system32\wuapi.dll
2015-12-18 14:46:34 ----D---- C:\Users\Jury\AppData\Roaming\KYE Imperator
2015-12-05 22:01:37 ----D---- C:\Users\Jury\AppData\Roaming\Skype
2015-12-05 22:01:34 ----D---- C:\Program Files (x86)\Skype
2015-12-02 14:56:30 ----A---- C:\Windows\SYSWOW64\nvStreaming.exe
2015-12-02 14:55:36 ----A---- C:\Windows\SYSWOW64\nvumdshim.dll
2015-12-02 14:55:36 ----A---- C:\Windows\SYSWOW64\nvopencl.dll
2015-12-02 14:55:36 ----A---- C:\Windows\SYSWOW64\nvoglv32.dll
2015-12-02 14:55:36 ----A---- C:\Windows\SYSWOW64\nvoglshim32.dll
2015-12-02 14:55:36 ----A---- C:\Windows\SYSWOW64\nvinit.dll
2015-12-02 14:55:36 ----A---- C:\Windows\SYSWOW64\NvIFROpenGL.dll
2015-12-02 14:55:36 ----A---- C:\Windows\SYSWOW64\NvIFR.dll
2015-12-02 14:55:36 ----A---- C:\Windows\SYSWOW64\NvFBC.dll
2015-12-02 14:55:36 ----A---- C:\Windows\SYSWOW64\nvEncodeAPI.dll
2015-12-02 14:55:36 ----A---- C:\Windows\system32\nvumdshimx.dll
2015-12-02 14:55:36 ----A---- C:\Windows\system32\nvopencl.dll
2015-12-02 14:55:36 ----A---- C:\Windows\system32\nvoglv64.dll
2015-12-02 14:55:36 ----A---- C:\Windows\system32\nvoglshim64.dll
2015-12-02 14:55:36 ----A---- C:\Windows\system32\nvmcumd.dll
2015-12-02 14:55:36 ----A---- C:\Windows\system32\nvinitx.dll
2015-12-02 14:55:36 ----A---- C:\Windows\system32\NvIFROpenGL.dll
2015-12-02 14:55:36 ----A---- C:\Windows\system32\NvIFR64.dll
2015-12-02 14:55:36 ----A---- C:\Windows\system32\NvFBC64.dll
2015-12-02 14:55:36 ----A---- C:\Windows\system32\nvEncodeAPI64.dll
2015-12-02 14:55:36 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2015-12-02 14:55:35 ----A---- C:\Windows\SYSWOW64\nvcuvid.dll
2015-12-02 14:55:35 ----A---- C:\Windows\SYSWOW64\nvcuda.dll
2015-12-02 14:55:35 ----A---- C:\Windows\SYSWOW64\nvcompiler.dll
2015-12-02 14:55:35 ----A---- C:\Windows\system32\nvdispgenco6435906.dll
2015-12-02 14:55:35 ----A---- C:\Windows\system32\nvdispco6435906.dll
2015-12-02 14:55:35 ----A---- C:\Windows\system32\nvcuvid.dll
2015-12-02 14:55:35 ----A---- C:\Windows\system32\nvcuda.dll
2015-12-02 14:55:35 ----A---- C:\Windows\system32\nvcompiler.dll
2015-12-02 14:55:35 ----A---- C:\Windows\system32\nvaudcaparm.dll
2015-12-02 14:55:35 ----A---- C:\Windows\system32\drivers\nvvadarm.sys
2015-11-24 15:48:28 ----D---- C:\ProgramData\EA Core
2015-11-24 15:48:27 ----D---- C:\ProgramData\EA Logs
2015-11-24 15:06:31 ----A---- C:\Windows\SYSWOW64\XAudio2_7.dll
2015-11-24 15:06:31 ----A---- C:\Windows\SYSWOW64\D3DX9_43.dll
2015-11-24 15:06:30 ----A---- C:\Windows\SYSWOW64\X3DAudio1_7.dll
2015-11-24 15:06:24 ----A---- C:\Windows\SYSWOW64\xinput1_3.dll
2015-11-23 11:05:13 ----D---- C:\Program Files (x86)\MJPEG decoder
2015-11-22 22:13:05 ----D---- C:\Users\Jury\AppData\Roaming\Screaming Bee
2015-11-22 22:13:05 ----D---- C:\ProgramData\Screaming Bee
2015-11-21 14:17:33 ----D---- C:\Program Files (x86)\Adobe Media Player
2015-11-21 12:48:30 ----A---- C:\Windows\system32\nvdispgenco6435900.dll
2015-11-21 12:48:30 ----A---- C:\Windows\system32\nvdispco6435900.dll
======List of files/folders modified in the last 1 month======
2015-12-18 15:59:45 ----RD---- C:\Program Files
2015-12-18 15:59:22 ----D---- C:\Windows\Temp
2015-12-18 15:55:31 ----D---- C:\Program Files (x86)\Steam
2015-12-18 15:55:27 ----D---- C:\Windows\system32\drivers
2015-12-18 15:42:57 ----D---- C:\Users\Jury\AppData\Roaming\ClassicShell
2015-12-18 15:41:06 ----D---- C:\Windows\SysWOW64
2015-12-18 15:37:03 ----RD---- C:\Windows\System32
2015-12-18 15:37:03 ----D---- C:\Windows\Inf
2015-12-18 15:37:03 ----A---- C:\Windows\system32\PerfStringBackup.INI
2015-12-18 15:35:28 ----D---- C:\Windows\system32\DriverStore
2015-12-18 15:35:28 ----D---- C:\Windows
2015-12-18 15:30:54 ----D---- C:\ProgramData\NVIDIA
2015-12-18 15:30:20 ----D---- C:\Windows\system32\catroot
2015-12-18 15:30:19 ----D---- C:\Program Files (x86)\Genius
2015-12-18 15:27:19 ----SHD---- C:\Windows\Installer
2015-12-18 15:27:19 ----RD---- C:\Program Files (x86)
2015-12-18 15:27:19 ----D---- C:\ProgramData\Package Cache
2015-12-18 15:25:14 ----D---- C:\Windows\Prefetch
2015-12-18 15:19:18 ----D---- C:\ProgramData\NVIDIA Corporation
2015-12-18 15:18:28 ----D---- C:\Windows\system32\config
2015-12-18 15:18:27 ----D---- C:\Windows\WinSxS
2015-12-18 15:18:27 ----D---- C:\Windows\Microsoft.NET
2015-12-18 15:17:04 ----SD---- C:\Windows\SYSWOW64\GWX
2015-12-18 15:17:04 ----SD---- C:\Windows\system32\GWX
2015-12-18 15:17:04 ----D---- C:\Windows\SYSWOW64\cs-CZ
2015-12-18 15:17:04 ----D---- C:\Windows\system32\cs-CZ
2015-12-18 15:17:04 ----D---- C:\Windows\apppatch
2015-12-18 15:17:04 ----D---- C:\Program Files\Internet Explorer
2015-12-18 15:17:04 ----D---- C:\Program Files (x86)\Internet Explorer
2015-12-18 15:17:03 ----RSD---- C:\Windows\Fonts
2015-12-18 15:17:03 ----D---- C:\Windows\system32\Boot
2015-12-18 15:14:37 ----D---- C:\Windows\CbsTemp
2015-12-18 15:14:15 ----D---- C:\Users\Jury\AppData\Roaming\BitTorrent
2015-12-18 15:14:13 ----D---- C:\Windows\debug
2015-12-18 15:12:05 ----D---- C:\Windows\system32\MRT
2015-12-18 15:12:04 ----A---- C:\Windows\system32\MRT.exe
2015-12-18 15:11:42 ----SD---- C:\Windows\system32\CompatTel
2015-12-18 15:11:42 ----D---- C:\Windows\system32\appraiser
2015-12-18 15:10:57 ----D---- C:\Windows\system32\catroot2
2015-12-18 15:05:25 ----D---- C:\Users\Jury\AppData\Roaming\TS3Client
2015-12-18 15:02:23 ----D---- C:\Windows\system32\wdi
2015-12-18 15:00:10 ----D---- C:\Windows\system32\wbem
2015-12-18 14:59:53 ----RSD---- C:\Windows\Media
2015-12-18 14:59:53 ----D---- C:\Windows\Tasks
2015-12-18 14:59:53 ----D---- C:\Windows\SYSWOW64\wbem
2015-12-18 14:59:53 ----D---- C:\Windows\SYSWOW64\migration
2015-12-18 14:59:53 ----D---- C:\Windows\system32\Tasks
2015-12-18 14:59:53 ----D---- C:\Windows\system32\Sysprep
2015-12-18 14:59:53 ----D---- C:\Windows\system32\sru
2015-12-18 14:59:53 ----D---- C:\Windows\system32\migration
2015-12-18 14:59:53 ----D---- C:\Windows\system32\CodeIntegrity
2015-12-18 14:59:53 ----D---- C:\Windows\rescache
2015-12-18 14:59:53 ----D---- C:\Windows\PolicyDefinitions
2015-12-18 14:59:52 ----D---- C:\Windows\AppCompat
2015-12-18 14:59:52 ----D---- C:\Users\Jury\AppData\Roaming\vlc
2015-12-18 14:59:52 ----D---- C:\ProgramData\Spybot - Search & Destroy
2015-12-18 14:59:52 ----D---- C:\Program Files\Common Files\microsoft shared
2015-12-18 14:59:52 ----D---- C:\Program Files (x86)\Common Files
2015-12-18 14:59:46 ----HD---- C:\Program Files\WindowsApps
2015-12-18 14:59:36 ----D---- C:\Windows\registration
2015-12-18 14:59:28 ----RSD---- C:\Windows\assembly
2015-12-18 14:59:26 ----HD---- C:\ProgramData
2015-12-18 14:58:52 ----SHD---- C:\System Volume Information
2015-12-10 12:01:30 ----D---- C:\ProgramData\GFACE
2015-12-09 02:51:39 ----A---- C:\Windows\SYSWOW64\nvspcap.dll
2015-12-09 02:51:39 ----A---- C:\Windows\SYSWOW64\nvspbridge.dll
2015-12-09 02:51:20 ----A---- C:\Windows\system32\nvspcap64.dll
2015-12-09 02:51:19 ----A---- C:\Windows\system32\nvspbridge64.dll
2015-12-06 12:29:12 ----D---- C:\Windows\AppReadiness
2015-12-01 18:19:27 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2015-11-27 18:16:00 ----D---- C:\Windows\SoftwareDistribution
2015-11-27 18:05:35 ----D---- C:\Windows\Logs
2015-11-25 15:56:46 ----D---- C:\Users\Jury\AppData\Roaming\OBS
2015-11-25 15:52:59 ----D---- C:\Program Files (x86)\OBS
2015-11-25 00:10:29 ----A---- C:\Windows\SYSWOW64\nvwgf2um.dll
2015-11-25 00:10:29 ----A---- C:\Windows\SYSWOW64\nvd3dum.dll
2015-11-25 00:10:29 ----A---- C:\Windows\SYSWOW64\nvapi.dll
2015-11-25 00:10:29 ----A---- C:\Windows\system32\nvwgf2umx.dll
2015-11-25 00:10:29 ----A---- C:\Windows\system32\nvmcvadgenco64.dll
2015-11-25 00:10:29 ----A---- C:\Windows\system32\nvd3dumx.dll
2015-11-25 00:10:29 ----A---- C:\Windows\system32\nvapi64.dll
2015-11-24 19:40:40 ----A---- C:\Windows\system32\nvsvc64.dll
2015-11-24 19:40:40 ----A---- C:\Windows\system32\nvcpl.dll
2015-11-24 19:40:37 ----A---- C:\Windows\system32\nvvsvc.exe
2015-11-24 19:40:37 ----A---- C:\Windows\system32\nvsvcr.dll
2015-11-24 19:40:37 ----A---- C:\Windows\system32\nvshext.dll
2015-11-24 19:40:37 ----A---- C:\Windows\system32\nvmctray.dll
2015-11-24 18:37:37 ----D---- C:\ProgramData\Origin
2015-11-24 15:55:22 ----A---- C:\Windows\SYSWOW64\PnkBstrA.exe
2015-11-24 15:55:15 ----A---- C:\Windows\SYSWOW64\PnkBstrB.exe
2015-11-24 15:38:33 ----D---- C:\Program Files (x86)\Origin Games
2015-11-24 14:12:48 ----D---- C:\Program Files (x86)\Origin
2015-11-21 14:46:07 ----D---- C:\ProgramData\regid.1986-12.com.adobe
2015-11-21 14:18:39 ----D---- C:\Program Files\Common Files\Adobe
2015-11-21 14:18:27 ----D---- C:\Users\Jury\AppData\Roaming\Adobe
2015-11-21 14:17:41 ----D---- C:\ProgramData\Adobe
2015-11-21 14:17:07 ----D---- C:\Program Files (x86)\Adobe
2015-11-21 12:47:40 ----D---- C:\ProgramData\Oracle
2015-11-21 12:47:36 ----D---- C:\Program Files (x86)\Java
2015-11-21 12:47:04 ----A---- C:\Windows\SYSWOW64\WindowsAccessBridge-32.dll
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 edevmon;edevmon; C:\Windows\system32\DRIVERS\edevmon.sys [2015-07-14 251632]
R0 iaStorA;iaStorA; C:\Windows\System32\drivers\iaStorA.sys [2014-04-11 645480]
R0 mvs91xx;mvs91xx; C:\Windows\System32\drivers\mvs91xx.sys [2013-09-06 327464]
R1 BfLwf;@oem19.inf,%BfLwf_Desc%;Qualcomm Atheros Bandwidth Control; C:\Windows\system32\DRIVERS\bwcW8x64.sys [2013-02-13 75056]
R1 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys [2015-07-14 255240]
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2015-07-14 178520]
R2 epfwwfpr;epfwwfpr; C:\Windows\system32\DRIVERS\epfwwfpr.sys [2015-07-14 168208]
R3 e1dexpress;@oem9.inf,%e1dExpress.Service.DispName%;Intel(R) PRO/1000 PCI Express Network Connection Driver D; C:\Windows\system32\DRIVERS\e1d64x64.sys [2013-08-29 468240]
R3 etocdrv;etocdrv; \??\C:\Windows\etocdrv.sys [2013-10-31 15584]
R3 gdrv;gdrv; \??\C:\Windows\gdrv.sys [2015-12-18 26192]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2015-08-09 4928256]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2014-03-14 3896920]
R3 IntcDAud;@oem3.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\Windows\system32\DRIVERS\IntcDAud.sys [2014-03-31 450520]
R3 iwdbus;@oem6.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\Windows\System32\drivers\iwdbus.sys [2015-05-26 30512]
R3 Ke2200;@oem18.inf,%L1C.Service.DispName%;NDIS Miniport Driver for the Killer e2200 Gigabit Ethernet Controller; C:\Windows\system32\DRIVERS\e22w8x64.sys [2013-03-20 163536]
R3 KYEKBPRO;@oem36.inf,%KYEKBPRO.SvcDesc%;IMPERATOR PRO Gaming Keyboard; C:\Windows\system32\drivers\KYEKBPRO.sys [2011-10-14 25600]
R3 MEIx64;@oem48.inf,%TEE_SvcDesc%;Intel(R) Management Engine Interface ; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [2014-09-30 129312]
R3 NVHDA;@oem58.inf,%NVHDA.SvcDesc%;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda64v.sys [2015-11-05 205456]
R3 nvlddmkm;nvlddmkm; C:\Windows\system32\DRIVERS\nvlddmkm.sys [2015-11-25 11131184]
R3 NvStreamKms;NvStreamKms; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2015-12-09 19576]
R3 nvvad_WaveExtensible;@oem44.inf,%nvvad_WaveExtensible.SvcDesc%;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\Windows\system32\drivers\nvvad64v.sys [2015-08-11 50472]
R3 NVVADARM;@oem62.inf,%NVVADARM.SvcDesc%;NVIDIA Miracast Audio; C:\Windows\system32\drivers\nvvadarm.sys [2015-11-25 39032]
S3 AIDA64Driver;FinalWire AIDA64 Kernel Driver; \??\C:\Program Files (x86)\FinalWire\AIDA64 Extreme\kerneld.x64 [2014-12-08 34136]
S3 dtultrascsibus;@oem37.inf,%DTULTRASCSIBUS.DeviceDesc%;DAEMON Tools Ultra Virtual SCSI Bus; C:\Windows\System32\drivers\dtultrascsibus.sys [2015-07-15 30264]
S3 dtultrausbbus;@oem38.inf,%DTULTRAUSBBUS.DeviceDesc%;DAEMON Tools Ultra Virtual USB Bus; C:\Windows\System32\drivers\dtultrausbbus.sys [2015-07-15 47160]
S3 e1iexpress;@net1ic64.inf,%e1iExpress.Service.DispName%;Intel(R) PRO/1000 - ovladač I pro síťová připojení PCI Express; C:\Windows\system32\DRIVERS\e1i63x64.sys [2013-06-18 460288]
S3 intaud_WaveExtensible;@oem5.inf,%INTAUD_WEX.SvcDesc%;Intel WiDi Audio Device; C:\Windows\system32\drivers\intelaud.sys [2015-05-26 42288]
S3 ScreamBAudioSvc;@oem61.inf,%sbee_audio.SvcDesc%;ScreamBee Audio; C:\Windows\system32\drivers\ScreamingBAudio64.sys [2014-02-07 38992]
S3 usbaudio;@wdma_usb.inf,%USBAudio.SvcDesc%;Ovladač zvuků USB (WDM); C:\Windows\system32\drivers\usbaudio.sys [2013-12-13 121088]
S3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;Zobrazovací zařízení USB (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2014-06-21 212736]
S3 WDC_SAM;@oem33.inf,%WDC_SAM_ServiceName%;WD SCSI Pass Thru driver; C:\Windows\System32\drivers\wdcsam64.sys [2015-04-29 23200]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2015-10-28 82128]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2014-10-29 38792]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe [2015-07-08 1353720]
R2 gadjservice;GIGABYTE Adjust; C:\Program Files (x86)\Gigabyte\AppCenter\AdjustService.exe [2015-04-14 16896]
R2 GfExperienceService;NVIDIA GeForce Experience Service; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [2015-12-09 1156216]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2014-04-11 16232]
R2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\Windows\system32\igfxCUIService.exe [2015-08-09 355232]
R2 Intel(R) PROSet Monitoring Service;Intel(R) PROSet Monitoring Service; C:\Windows\system32\IProsetMonitor.exe [2013-11-01 241416]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2014-03-20 154584]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2014-03-20 398296]
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2015-12-09 1872504]
R2 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [2015-12-09 6477432]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2015-11-24 938616]
R2 PnkBstrA;PnkBstrA; C:\Windows\syswow64\PnkBstrA.exe [2015-11-24 76152]
R2 Qualcomm Atheros Killer Service V2;Qualcomm Atheros Killer Service V2; C:\Program Files\Qualcomm Atheros\Network Manager\KillerService.exe [2013-08-08 343040]
R2 SBSDWSCService;SBSD Security Center Service; C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe [2009-01-26 1153368]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2015-11-24 417584]
R3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696]
R3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2014-02-18 171480]
R3 NvStreamNetworkSvc;NVIDIA Streamer Network Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [2015-12-09 8185464]
R3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2015-12-14 836176]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-12-18 269504]
S3 BEService;BattlEye Service; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [2015-12-02 1257504]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\Windows\System32\svchost.exe [2014-10-29 38792]
S3 cphs;Intel(R) Content Protection HECI Service; C:\Windows\SysWow64\IntelCpHeciSvc.exe [2015-08-09 288688]
S3 EasyAntiCheat;EasyAntiCheat; C:\Windows\syswow64\EasyAntiCheat.exe [2015-08-23 238376]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2014-01-31 887232]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2015-11-06 147624]
S3 Origin Client Service;Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2015-11-24 2099720]
S3 SwitchBoard;SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
-----------------EOF-----------------
- Rudy
- Site Admin

- Příspěvky: 119673
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: problém s PC - prosím o kontrolu logu
Zdravím!
Spusťte tuto utilitu:
Spusťte tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: problém s PC - prosím o kontrolu logu
přidávám log C1
ještě dotaz, je možné že kvůli tomuto blbne klávesnice? Přestala mi fungovat klávesa w s kombinácí jiných, např. shift+w nereaguje na napsání velkého písmene atd. ostatní písmena fungují v pohodě?
# AdwCleaner v5.025 - Logfile created 18/12/2015 at 20:52:09
# Updated 13/12/2015 by Xplode
# Database : 2015-12-13.2 [Server]
# Operating system : Windows 8.1 Pro (x64)
# Username : Jury - PC-JURY
# Running from : C:\Users\Jury\Downloads\adwcleaner_5.025.exe
# Option : Cleaning
# Support : http://toolslib.net/forum
***** [ Services ] *****
***** [ Folders ] *****
[-] Folder Deleted : C:\Program Files (x86)\Genius
[-] Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Genius
***** [ Files ] *****
***** [ DLLs ] *****
***** [ Shortcuts ] *****
***** [ Scheduled tasks ] *****
***** [ Registry ] *****
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{35B8892D-C3FB-4D88-990D-31DB2EBD72BD}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{3F607E46-0D3C-4442-B1DE-DE7FA4768F5C}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{FE0273D1-99DF-4AC0-87D5-1371C6271785}
[-] Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{93E3D79C-0786-48FF-9329-93BC9F6DC2B3}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{3F607E46-0D3C-4442-B1DE-DE7FA4768F5C}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{FE0273D1-99DF-4AC0-87D5-1371C6271785}
[-] Key Deleted : HKCU\Software\PRODUCTSETUP
***** [ Web browsers ] *****
*************************
:: "Tracing" keys removed
:: Winsock settings cleared
########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [1376 bytes] ##########
ještě dotaz, je možné že kvůli tomuto blbne klávesnice? Přestala mi fungovat klávesa w s kombinácí jiných, např. shift+w nereaguje na napsání velkého písmene atd. ostatní písmena fungují v pohodě?
# AdwCleaner v5.025 - Logfile created 18/12/2015 at 20:52:09
# Updated 13/12/2015 by Xplode
# Database : 2015-12-13.2 [Server]
# Operating system : Windows 8.1 Pro (x64)
# Username : Jury - PC-JURY
# Running from : C:\Users\Jury\Downloads\adwcleaner_5.025.exe
# Option : Cleaning
# Support : http://toolslib.net/forum
***** [ Services ] *****
***** [ Folders ] *****
[-] Folder Deleted : C:\Program Files (x86)\Genius
[-] Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Genius
***** [ Files ] *****
***** [ DLLs ] *****
***** [ Shortcuts ] *****
***** [ Scheduled tasks ] *****
***** [ Registry ] *****
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{35B8892D-C3FB-4D88-990D-31DB2EBD72BD}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{3F607E46-0D3C-4442-B1DE-DE7FA4768F5C}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{FE0273D1-99DF-4AC0-87D5-1371C6271785}
[-] Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{93E3D79C-0786-48FF-9329-93BC9F6DC2B3}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{3F607E46-0D3C-4442-B1DE-DE7FA4768F5C}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{FE0273D1-99DF-4AC0-87D5-1371C6271785}
[-] Key Deleted : HKCU\Software\PRODUCTSETUP
***** [ Web browsers ] *****
*************************
:: "Tracing" keys removed
:: Winsock settings cleared
########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [1376 bytes] ##########
- Rudy
- Site Admin

- Příspěvky: 119673
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: problém s PC - prosím o kontrolu logu
Dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: problém s PC - prosím o kontrolu logu
Logfile of random's system information tool 1.10 (written by random/random)
Run by Jury at 2015-12-19 07:00:17
Microsoft Windows 8.1 Pro
System drive C: has 44 GB (19%) free of 228 GB
Total RAM: 16210 MB (86% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 7:00:20, on 19. 12. 2015
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.18123)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files (x86)\Gigabyte\AppCenter\ApCent.exe
C:\Users\Jury\AppData\Local\NVIDIA\NvBackend\ApplicationOntology\NvOAWrapperCache.exe
C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files (x86)\Steam\Steam.exe
C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
C:\Program Files\Qualcomm Atheros\Network Manager\NetworkManager.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files\trend micro\Jury.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: ExplorerBHO Class - {449D0D6E-2412-4E61-B68F-1CB625CD9E52} - C:\Program Files\Classic Shell\ClassicExplorer32.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~2\SPYBOT~1\SDHelper.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_66\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_66\bin\jp2ssv.dll
O2 - BHO: ClassicIEBHO Class - {EA801577-E6AD-4BD5-8F71-4BE0154331A4} - C:\Program Files\Classic Shell\ClassicIEDLL_32.dll
O3 - Toolbar: Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer32.dll
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O4 - HKLM\..\Run: [AdobeCS5ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\RunOnce: [EasyTune] C:\Program Files (x86)\Gigabyte\EasyTune\etro.exe
O4 - HKLM\..\RunOnce: [PreRun] C:\Program Files (x86)\Gigabyte\AppCenter\PreRun.exe
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [Steam] "C:\Program Files (x86)\Steam\steam.exe" -silent
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - Startup: Desktop.scf
O4 - Global Startup: Killer Network Manager.lnk = ?
O9 - Extra button: (no name) - {56753E59-AF1D-4FBA-9E15-31557124ADA2} - C:\Program Files\Classic Shell\ClassicIE_32.exe
O9 - Extra 'Tools' menuitem: Classic IE Settings - {56753E59-AF1D-4FBA-9E15-31557124ADA2} - C:\Program Files\Classic Shell\ClassicIE_32.exe
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~2\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~2\SPYBOT~1\SDHelper.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: *.clonewarsadventures.com
O15 - Trusted Zone: *.freerealms.com
O15 - Trusted Zone: *.soe.com
O15 - Trusted Zone: *.sony.com
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: BattlEye Service (BEService) - Unknown owner - C:\Program Files (x86)\Common Files\BattlEye\BEService.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\Windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: EasyAntiCheat - EasyAntiCheat Ltd - C:\Windows\system32\EasyAntiCheat.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: GIGABYTE Adjust (gadjservice) - Unknown owner - C:\Program Files (x86)\Gigabyte\AppCenter\AdjustService.exe
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\Windows\system32\igfxCUIService.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) PROSet Monitoring Service - Unknown owner - C:\Windows\system32\IProsetMonitor.exe (file missing)
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Network Service (NvStreamNetworkSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: Origin Client Service - Electronic Arts - C:\Program Files (x86)\Origin\OriginClientService.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: Qualcomm Atheros Killer Service V2 - Qualcomm Atheros - C:\Program Files\Qualcomm Atheros\Network Manager\KillerService.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: SBSD Security Center Service (SBSDWSCService) - Safer Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 11016 bytes
======Listing Processes======
wininit.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
"C:\Windows\system32\nvvsvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\igfxCUIService.exe
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\Windows\System32\svchost.exe -k utcsvc
"C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe"
"C:\Program Files (x86)\Gigabyte\AppCenter\AdjustService.exe"
"C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe"
C:\Windows\system32\IProsetMonitor.exe
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe"
C:\Windows\SysWOW64\PnkBstrA.exe
"C:\Program Files\Qualcomm Atheros\Network Manager\KillerService.exe"
"C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe"
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe"
"C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
C:\Windows\System32\WinLogon.exe -SpecialSession
-hiberboot
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
taskhostex.exe
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
igfxEM.exe
"C:\Program Files (x86)\Gigabyte\AppCenter\ApCent.exe"
ClassicStartMenu.exe -startup
"C:\Users\Jury\AppData\Local\NVIDIA\NvBackend\ApplicationOntology\NvOAWrapperCache.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
"C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe"
"C:\Program Files\NVIDIA Corporation\ShadowPlay\nvspcaps64.exe" -Embedding
"C:\Program Files (x86)\Steam\Steam.exe" -silent
"C:\Windows\system32\GWX\GWX.exe"
"C:\Program Files (x86)\Steam\bin\steamwebhelper.exe" -cachedir="C:\Users\Jury\AppData\Local\Steam\htmlcache" -steampid=824 -buildid=1450127196 -steamid="0" --disable-gpu-compositing --disable-gpu --process-per-tab --enable-system-flash --disable-spell-checking --enable-widevine-cdm --enable-direct-write
"C:\Program Files (x86)\Common Files\Steam\SteamService.exe" /RunAsService
"C:\Program Files\Qualcomm Atheros\Network Manager\NetworkManager.exe" -minimize
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe" serviceapp
\??\C:\Windows\system32\conhost.exe 0x4
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
"C:\Users\Jury\Downloads\RSITx64.exe"
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
=========Mozilla firefox=========
ProfilePath - C:\Users\Jury\AppData\Roaming\Mozilla\Firefox\Profiles\j7z66b47.default
prefs.js - "browser.startup.homepage" - "https://www.seznam.cz/"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 20.0.0.235 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_20_0_0_235.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@esn/npbattlelog,version=2.7.1]
"Description"=
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\2.7.1\npbattlelog.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5]
"Description"=Intel IPT WebApi plugin
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater]
"Description"=This plugin updates Intel WebAPI component
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=11.66.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre1.8.0_66\bin\dtplugin\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=11.66.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre1.8.0_66\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVision]
"Description"=NVIDIA stereo images plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVisionStreaming]
"Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.1]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 20.0.0.235 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_20_0_0_235.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@esn/npbattlelog,version=2.7.1]
"Description"=
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\2.7.1\npbattlelogx64.dll
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{449D0D6E-2412-4E61-B68F-1CB625CD9E52}]
ExplorerBHO Class - C:\Program Files\Classic Shell\ClassicExplorer64.dll [2014-04-20 803520]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EA801577-E6AD-4BD5-8F71-4BE0154331A4}]
ClassicIEBHO Class - C:\Program Files\Classic Shell\ClassicIEDLL_64.dll [2014-04-20 483520]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{449D0D6E-2412-4E61-B68F-1CB625CD9E52}]
ExplorerBHO Class - C:\Program Files\Classic Shell\ClassicExplorer32.dll [2014-04-20 683200]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{53707962-6F74-2D53-2644-206D7942484F}]
Spybot-S&D IE Protection - C:\PROGRA~2\SPYBOT~1\SDHelper.dll [2009-01-26 1879896]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_66\bin\ssv.dll [2015-11-21 460384]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_66\bin\jp2ssv.dll [2015-11-21 172640]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EA801577-E6AD-4BD5-8F71-4BE0154331A4}]
ClassicIEBHO Class - C:\Program Files\Classic Shell\ClassicIEDLL_32.dll [2014-04-20 440512]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{553891B7-A0D5-4526-BE18-D3CE461D6310} - Classic Explorer Bar - C:\Program Files\Classic Shell\ClassicExplorer64.dll [2014-04-20 803520]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{553891B7-A0D5-4526-BE18-D3CE461D6310} - Classic Explorer Bar - C:\Program Files\Classic Shell\ClassicExplorer32.dll [2014-04-20 683200]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Classic Start Menu"=C:\Program Files\Classic Shell\ClassicStartMenu.exe [2014-04-20 161984]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2014-03-14 13671792]
"IAStorIcon"=C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe [2014-04-11 36352]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2015-12-09 2771576]
"ShadowPlay"=C:\Windows\system32\nvspcap64.dll [2015-12-09 1846016]
"egui"=C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [2015-07-08 5595848]
"AdobeAAMUpdater-1.0"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2010-03-06 500208]
"Logitech Download Assistant"=C:\Windows\System32\LogiLDA.dll [2012-09-20 3933496]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"SpybotSD TeaTimer"=C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe [2009-03-05 2260480]
"Steam"=C:\Program Files (x86)\Steam\steam.exe [2015-12-14 3013712]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2015-09-16 8461224]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2015-11-09 596528]
"SwitchBoard"=C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
"AdobeCS5ServiceManager"=C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe [2010-02-22 406992]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\RunOnce]
"EasyTune"=C:\Program Files (x86)\Gigabyte\EasyTune\etro.exe [2014-08-18 5632]
"PreRun"=C:\Program Files (x86)\Gigabyte\AppCenter\PreRun.exe [2013-04-29 8192]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Killer Network Manager.lnk - C:\Windows\Installer\{401FADAA-1C16-4721-9F02-19067E1A1CA8}\NetworkManager.exe_130C27D738F34C89BDDF21BCFD74B56D.exe
C:\Users\Jury\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Desktop.scf
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux2"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave6"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer6"=wdmaud.drv
"aux1"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2015-12-18 20:51:38 ----D---- C:\AdwCleaner
2015-12-18 15:59:45 ----D---- C:\rsit
2015-12-18 15:59:45 ----D---- C:\Program Files\trend micro
2015-12-18 15:35:28 ----D---- C:\Windows\LastGood.Tmp
2015-12-18 15:31:27 ----D---- C:\Users\Jury\AppData\Roaming\KYE ImperatorPro
2015-12-18 15:30:19 ----A---- C:\Windows\unins000.exe
2015-12-18 15:30:19 ----A---- C:\Windows\unins000.dat
2015-12-18 15:27:18 ----SHD---- C:\Config.Msi
2015-12-18 15:19:24 ----A---- C:\Windows\system32\NvRtmpStreamer64.dll
2015-12-18 15:11:38 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2015-12-18 15:11:38 ----A---- C:\Windows\system32\gdi32.dll
2015-12-18 15:11:38 ----A---- C:\Windows\system32\drivers\tunnel.sys
2015-12-18 15:11:38 ----A---- C:\Windows\system32\drivers\tpm.sys
2015-12-18 15:11:32 ----A---- C:\Windows\system32\dpapisrv.dll
2015-12-18 15:11:31 ----A---- C:\Windows\SYSWOW64\Windows.Globalization.dll
2015-12-18 15:11:31 ----A---- C:\Windows\SYSWOW64\kbdgeoqw.dll
2015-12-18 15:11:31 ----A---- C:\Windows\SYSWOW64\KBDAZST.DLL
2015-12-18 15:11:31 ----A---- C:\Windows\SYSWOW64\KBDAZEL.DLL
2015-12-18 15:11:31 ----A---- C:\Windows\SYSWOW64\KBDAZE.DLL
2015-12-18 15:11:31 ----A---- C:\Windows\SYSWOW64\GlobCollationHost.dll
2015-12-18 15:11:31 ----A---- C:\Windows\system32\Windows.Globalization.dll
2015-12-18 15:11:31 ----A---- C:\Windows\system32\kbdgeoqw.dll
2015-12-18 15:11:31 ----A---- C:\Windows\system32\KBDAZST.DLL
2015-12-18 15:11:31 ----A---- C:\Windows\system32\KBDAZEL.DLL
2015-12-18 15:11:31 ----A---- C:\Windows\system32\KBDAZE.DLL
2015-12-18 15:11:31 ----A---- C:\Windows\system32\GlobCollationHost.dll
2015-12-18 15:11:31 ----A---- C:\Windows\system32\AuthHost.exe
2015-12-18 15:11:29 ----A---- C:\Windows\SYSWOW64\wininet.dll
2015-12-18 15:11:29 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2015-12-18 15:11:29 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2015-12-18 15:11:29 ----A---- C:\Windows\SYSWOW64\jscript.dll
2015-12-18 15:11:29 ----A---- C:\Windows\SYSWOW64\inetcomm.dll
2015-12-18 15:11:29 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2015-12-18 15:11:29 ----A---- C:\Windows\system32\vbscript.dll
2015-12-18 15:11:29 ----A---- C:\Windows\system32\jscript9.dll
2015-12-18 15:11:29 ----A---- C:\Windows\system32\jscript.dll
2015-12-18 15:11:29 ----A---- C:\Windows\system32\inetcomm.dll
2015-12-18 15:11:29 ----A---- C:\Windows\system32\ieapfltr.dll
2015-12-18 15:11:28 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2015-12-18 15:11:28 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2015-12-18 15:11:28 ----A---- C:\Windows\system32\wininet.dll
2015-12-18 15:11:28 ----A---- C:\Windows\system32\mshtml.dll
2015-12-18 15:11:28 ----A---- C:\Windows\system32\iertutil.dll
2015-12-18 15:11:27 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2015-12-18 15:11:27 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2015-12-18 15:11:27 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2015-12-18 15:11:27 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2015-12-18 15:11:27 ----A---- C:\Windows\SYSWOW64\ieui.dll
2015-12-18 15:11:27 ----A---- C:\Windows\SYSWOW64\iepeers.dll
2015-12-18 15:11:27 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2015-12-18 15:11:27 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2015-12-18 15:11:27 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2015-12-18 15:11:27 ----A---- C:\Windows\SYSWOW64\actxprxy.dll
2015-12-18 15:11:27 ----A---- C:\Windows\system32\webcheck.dll
2015-12-18 15:11:27 ----A---- C:\Windows\system32\urlmon.dll
2015-12-18 15:11:27 ----A---- C:\Windows\system32\mshtmled.dll
2015-12-18 15:11:27 ----A---- C:\Windows\system32\msfeeds.dll
2015-12-18 15:11:27 ----A---- C:\Windows\system32\ieui.dll
2015-12-18 15:11:27 ----A---- C:\Windows\system32\iepeers.dll
2015-12-18 15:11:27 ----A---- C:\Windows\system32\ieframe.dll
2015-12-18 15:11:27 ----A---- C:\Windows\system32\iedkcs32.dll
2015-12-18 15:11:27 ----A---- C:\Windows\system32\ie4uinit.exe
2015-12-18 15:11:27 ----A---- C:\Windows\system32\dxtrans.dll
2015-12-18 15:11:27 ----A---- C:\Windows\system32\actxprxy.dll
2015-12-18 15:11:26 ----A---- C:\Windows\SYSWOW64\msctf.dll
2015-12-18 15:11:26 ----A---- C:\Windows\system32\msctf.dll
2015-12-18 15:11:11 ----A---- C:\Windows\SYSWOW64\PCPKsp.dll
2015-12-18 15:11:11 ----A---- C:\Windows\system32\PCPKsp.dll
2015-12-18 15:11:11 ----A---- C:\Windows\system32\invagent.dll
2015-12-18 15:11:11 ----A---- C:\Windows\system32\generaltel.dll
2015-12-18 15:11:11 ----A---- C:\Windows\system32\devinv.dll
2015-12-18 15:11:11 ----A---- C:\Windows\system32\appraiser.dll
2015-12-18 15:11:11 ----A---- C:\Windows\system32\aeinv.dll
2015-12-18 15:11:10 ----A---- C:\Windows\system32\drivers\usbuhci.sys
2015-12-18 15:11:10 ----A---- C:\Windows\system32\drivers\usbport.sys
2015-12-18 15:11:10 ----A---- C:\Windows\system32\drivers\usbohci.sys
2015-12-18 15:11:10 ----A---- C:\Windows\system32\drivers\USBHUB3.SYS
2015-12-18 15:11:10 ----A---- C:\Windows\system32\drivers\usbhub.sys
2015-12-18 15:11:10 ----A---- C:\Windows\system32\drivers\usbehci.sys
2015-12-18 15:11:10 ----A---- C:\Windows\system32\drivers\usbd.sys
2015-12-18 15:11:10 ----A---- C:\Windows\system32\CompatTelRunner.exe
2015-12-18 15:11:10 ----A---- C:\Windows\system32\acmigration.dll
2015-12-18 15:11:09 ----A---- C:\Windows\system32\winlogon.exe
2015-12-18 15:11:09 ----A---- C:\Windows\system32\wininit.exe
2015-12-18 15:11:01 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2015-12-18 15:11:01 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2015-12-18 15:11:01 ----A---- C:\Windows\SYSWOW64\comsvcs.dll
2015-12-18 15:11:01 ----A---- C:\Windows\SYSWOW64\catsrvut.dll
2015-12-18 15:11:01 ----A---- C:\Windows\system32\winresume.exe
2015-12-18 15:11:01 ----A---- C:\Windows\system32\winload.exe
2015-12-18 15:11:01 ----A---- C:\Windows\system32\win32k.sys
2015-12-18 15:11:01 ----A---- C:\Windows\system32\user32.dll
2015-12-18 15:11:01 ----A---- C:\Windows\system32\ntvdm64.dll
2015-12-18 15:11:01 ----A---- C:\Windows\system32\ntoskrnl.exe
2015-12-18 15:11:01 ----A---- C:\Windows\system32\ntdll.dll
2015-12-18 15:11:01 ----A---- C:\Windows\system32\FntCache.dll
2015-12-18 15:11:01 ----A---- C:\Windows\system32\DWrite.dll
2015-12-18 15:11:01 ----A---- C:\Windows\system32\drivers\rmcast.sys
2015-12-18 15:11:01 ----A---- C:\Windows\system32\comsvcs.dll
2015-12-18 15:11:01 ----A---- C:\Windows\system32\catsrvut.dll
2015-12-18 15:11:00 ----A---- C:\Windows\SYSWOW64\user32.dll
2015-12-18 15:11:00 ----A---- C:\Windows\SYSWOW64\GdiPlus.dll
2015-12-18 15:11:00 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2015-12-18 15:11:00 ----A---- C:\Windows\system32\GdiPlus.dll
2015-12-18 15:10:47 ----A---- C:\Windows\SYSWOW64\authui.dll
2015-12-18 15:10:47 ----A---- C:\Windows\system32\wuaueng.dll
2015-12-18 15:10:47 ----A---- C:\Windows\system32\authui.dll
2015-12-18 15:10:46 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2015-12-18 15:10:46 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2015-12-18 15:10:46 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2015-12-18 15:10:46 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2015-12-18 15:10:46 ----A---- C:\Windows\system32\wuwebv.dll
2015-12-18 15:10:46 ----A---- C:\Windows\system32\WUSettingsProvider.dll
2015-12-18 15:10:46 ----A---- C:\Windows\system32\wups2.dll
2015-12-18 15:10:46 ----A---- C:\Windows\system32\wudriver.dll
2015-12-18 15:10:46 ----A---- C:\Windows\system32\wucltux.dll
2015-12-18 15:10:46 ----A---- C:\Windows\system32\wuauclt.exe
2015-12-18 15:10:46 ----A---- C:\Windows\system32\wuapp.exe
2015-12-18 15:10:46 ----A---- C:\Windows\system32\wuapi.dll
2015-12-18 14:46:34 ----D---- C:\Users\Jury\AppData\Roaming\KYE Imperator
2015-12-05 22:01:37 ----D---- C:\Users\Jury\AppData\Roaming\Skype
2015-12-05 22:01:34 ----D---- C:\Program Files (x86)\Skype
2015-12-02 14:56:30 ----A---- C:\Windows\SYSWOW64\nvStreaming.exe
2015-12-02 14:55:36 ----A---- C:\Windows\SYSWOW64\nvumdshim.dll
2015-12-02 14:55:36 ----A---- C:\Windows\SYSWOW64\nvopencl.dll
2015-12-02 14:55:36 ----A---- C:\Windows\SYSWOW64\nvoglv32.dll
2015-12-02 14:55:36 ----A---- C:\Windows\SYSWOW64\nvoglshim32.dll
2015-12-02 14:55:36 ----A---- C:\Windows\SYSWOW64\nvinit.dll
2015-12-02 14:55:36 ----A---- C:\Windows\SYSWOW64\NvIFROpenGL.dll
2015-12-02 14:55:36 ----A---- C:\Windows\SYSWOW64\NvIFR.dll
2015-12-02 14:55:36 ----A---- C:\Windows\SYSWOW64\NvFBC.dll
2015-12-02 14:55:36 ----A---- C:\Windows\SYSWOW64\nvEncodeAPI.dll
2015-12-02 14:55:36 ----A---- C:\Windows\system32\nvumdshimx.dll
2015-12-02 14:55:36 ----A---- C:\Windows\system32\nvopencl.dll
2015-12-02 14:55:36 ----A---- C:\Windows\system32\nvoglv64.dll
2015-12-02 14:55:36 ----A---- C:\Windows\system32\nvoglshim64.dll
2015-12-02 14:55:36 ----A---- C:\Windows\system32\nvmcumd.dll
2015-12-02 14:55:36 ----A---- C:\Windows\system32\nvinitx.dll
2015-12-02 14:55:36 ----A---- C:\Windows\system32\NvIFROpenGL.dll
2015-12-02 14:55:36 ----A---- C:\Windows\system32\NvIFR64.dll
2015-12-02 14:55:36 ----A---- C:\Windows\system32\NvFBC64.dll
2015-12-02 14:55:36 ----A---- C:\Windows\system32\nvEncodeAPI64.dll
2015-12-02 14:55:36 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2015-12-02 14:55:35 ----A---- C:\Windows\SYSWOW64\nvcuvid.dll
2015-12-02 14:55:35 ----A---- C:\Windows\SYSWOW64\nvcuda.dll
2015-12-02 14:55:35 ----A---- C:\Windows\SYSWOW64\nvcompiler.dll
2015-12-02 14:55:35 ----A---- C:\Windows\system32\nvdispgenco6435906.dll
2015-12-02 14:55:35 ----A---- C:\Windows\system32\nvdispco6435906.dll
2015-12-02 14:55:35 ----A---- C:\Windows\system32\nvcuvid.dll
2015-12-02 14:55:35 ----A---- C:\Windows\system32\nvcuda.dll
2015-12-02 14:55:35 ----A---- C:\Windows\system32\nvcompiler.dll
2015-12-02 14:55:35 ----A---- C:\Windows\system32\nvaudcaparm.dll
2015-12-02 14:55:35 ----A---- C:\Windows\system32\drivers\nvvadarm.sys
2015-11-24 15:48:28 ----D---- C:\ProgramData\EA Core
2015-11-24 15:48:27 ----D---- C:\ProgramData\EA Logs
2015-11-24 15:06:31 ----A---- C:\Windows\SYSWOW64\XAudio2_7.dll
2015-11-24 15:06:31 ----A---- C:\Windows\SYSWOW64\D3DX9_43.dll
2015-11-24 15:06:30 ----A---- C:\Windows\SYSWOW64\X3DAudio1_7.dll
2015-11-24 15:06:24 ----A---- C:\Windows\SYSWOW64\xinput1_3.dll
2015-11-23 11:05:13 ----D---- C:\Program Files (x86)\MJPEG decoder
2015-11-22 22:13:05 ----D---- C:\Users\Jury\AppData\Roaming\Screaming Bee
2015-11-22 22:13:05 ----D---- C:\ProgramData\Screaming Bee
2015-11-21 14:17:33 ----D---- C:\Program Files (x86)\Adobe Media Player
2015-11-21 12:48:30 ----A---- C:\Windows\system32\nvdispgenco6435900.dll
2015-11-21 12:48:30 ----A---- C:\Windows\system32\nvdispco6435900.dll
======List of files/folders modified in the last 1 month======
2015-12-19 07:00:00 ----D---- C:\Windows\system32\sru
2015-12-19 06:59:49 ----D---- C:\Users\Jury\AppData\Roaming\ClassicShell
2015-12-19 06:58:29 ----D---- C:\Windows\Temp
2015-12-19 06:58:15 ----RSD---- C:\Windows\assembly
2015-12-19 06:57:46 ----D---- C:\Program Files (x86)\Steam
2015-12-18 21:21:35 ----D---- C:\Windows
2015-12-18 21:10:26 ----D---- C:\Windows\SoftwareDistribution
2015-12-18 21:09:13 ----RD---- C:\Windows\System32
2015-12-18 21:09:13 ----D---- C:\Windows\Inf
2015-12-18 21:09:13 ----A---- C:\Windows\system32\PerfStringBackup.INI
2015-12-18 21:03:14 ----D---- C:\ProgramData\NVIDIA
2015-12-18 21:01:08 ----D---- C:\Windows\Prefetch
2015-12-18 20:52:10 ----RD---- C:\Program Files (x86)
2015-12-18 20:51:33 ----D---- C:\Users\Jury\AppData\Roaming\TS3Client
2015-12-18 16:09:12 ----D---- C:\Windows\system32\drivers
2015-12-18 15:59:45 ----RD---- C:\Program Files
2015-12-18 15:41:06 ----D---- C:\Windows\SysWOW64
2015-12-18 15:35:28 ----D---- C:\Windows\system32\DriverStore
2015-12-18 15:30:20 ----D---- C:\Windows\system32\catroot
2015-12-18 15:27:19 ----SHD---- C:\Windows\Installer
2015-12-18 15:27:19 ----D---- C:\ProgramData\Package Cache
2015-12-18 15:19:18 ----D---- C:\ProgramData\NVIDIA Corporation
2015-12-18 15:18:28 ----D---- C:\Windows\system32\config
2015-12-18 15:18:27 ----D---- C:\Windows\WinSxS
2015-12-18 15:18:27 ----D---- C:\Windows\Microsoft.NET
2015-12-18 15:17:04 ----SD---- C:\Windows\SYSWOW64\GWX
2015-12-18 15:17:04 ----SD---- C:\Windows\system32\GWX
2015-12-18 15:17:04 ----D---- C:\Windows\SYSWOW64\cs-CZ
2015-12-18 15:17:04 ----D---- C:\Windows\system32\cs-CZ
2015-12-18 15:17:04 ----D---- C:\Windows\apppatch
2015-12-18 15:17:04 ----D---- C:\Program Files\Internet Explorer
2015-12-18 15:17:04 ----D---- C:\Program Files (x86)\Internet Explorer
2015-12-18 15:17:03 ----RSD---- C:\Windows\Fonts
2015-12-18 15:17:03 ----D---- C:\Windows\system32\Boot
2015-12-18 15:14:45 ----D---- C:\Windows\CbsTemp
2015-12-18 15:14:15 ----D---- C:\Users\Jury\AppData\Roaming\BitTorrent
2015-12-18 15:14:13 ----D---- C:\Windows\debug
2015-12-18 15:13:21 ----D---- C:\Windows\system32\MRT
2015-12-18 15:12:04 ----A---- C:\Windows\system32\MRT.exe
2015-12-18 15:11:42 ----SD---- C:\Windows\system32\CompatTel
2015-12-18 15:11:42 ----D---- C:\Windows\system32\appraiser
2015-12-18 15:10:57 ----D---- C:\Windows\system32\catroot2
2015-12-18 15:02:23 ----D---- C:\Windows\system32\wdi
2015-12-18 15:00:10 ----D---- C:\Windows\system32\wbem
2015-12-18 14:59:53 ----RSD---- C:\Windows\Media
2015-12-18 14:59:53 ----D---- C:\Windows\Tasks
2015-12-18 14:59:53 ----D---- C:\Windows\SYSWOW64\wbem
2015-12-18 14:59:53 ----D---- C:\Windows\SYSWOW64\migration
2015-12-18 14:59:53 ----D---- C:\Windows\system32\Tasks
2015-12-18 14:59:53 ----D---- C:\Windows\system32\Sysprep
2015-12-18 14:59:53 ----D---- C:\Windows\system32\migration
2015-12-18 14:59:53 ----D---- C:\Windows\system32\CodeIntegrity
2015-12-18 14:59:53 ----D---- C:\Windows\rescache
2015-12-18 14:59:53 ----D---- C:\Windows\PolicyDefinitions
2015-12-18 14:59:52 ----D---- C:\Windows\AppCompat
2015-12-18 14:59:52 ----D---- C:\Users\Jury\AppData\Roaming\vlc
2015-12-18 14:59:52 ----D---- C:\ProgramData\Spybot - Search & Destroy
2015-12-18 14:59:52 ----D---- C:\Program Files\Common Files\microsoft shared
2015-12-18 14:59:52 ----D---- C:\Program Files (x86)\Common Files
2015-12-18 14:59:46 ----HD---- C:\Program Files\WindowsApps
2015-12-18 14:59:36 ----D---- C:\Windows\registration
2015-12-18 14:59:26 ----HD---- C:\ProgramData
2015-12-18 14:58:52 ----SHD---- C:\System Volume Information
2015-12-10 12:01:30 ----D---- C:\ProgramData\GFACE
2015-12-09 02:51:39 ----A---- C:\Windows\SYSWOW64\nvspcap.dll
2015-12-09 02:51:39 ----A---- C:\Windows\SYSWOW64\nvspbridge.dll
2015-12-09 02:51:20 ----A---- C:\Windows\system32\nvspcap64.dll
2015-12-09 02:51:19 ----A---- C:\Windows\system32\nvspbridge64.dll
2015-12-06 12:29:12 ----D---- C:\Windows\AppReadiness
2015-12-01 18:19:27 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2015-11-27 18:05:35 ----D---- C:\Windows\Logs
2015-11-25 15:56:46 ----D---- C:\Users\Jury\AppData\Roaming\OBS
2015-11-25 15:52:59 ----D---- C:\Program Files (x86)\OBS
2015-11-25 00:10:29 ----A---- C:\Windows\SYSWOW64\nvwgf2um.dll
2015-11-25 00:10:29 ----A---- C:\Windows\SYSWOW64\nvd3dum.dll
2015-11-25 00:10:29 ----A---- C:\Windows\SYSWOW64\nvapi.dll
2015-11-25 00:10:29 ----A---- C:\Windows\system32\nvwgf2umx.dll
2015-11-25 00:10:29 ----A---- C:\Windows\system32\nvmcvadgenco64.dll
2015-11-25 00:10:29 ----A---- C:\Windows\system32\nvd3dumx.dll
2015-11-25 00:10:29 ----A---- C:\Windows\system32\nvapi64.dll
2015-11-24 19:40:40 ----A---- C:\Windows\system32\nvsvc64.dll
2015-11-24 19:40:40 ----A---- C:\Windows\system32\nvcpl.dll
2015-11-24 19:40:37 ----A---- C:\Windows\system32\nvvsvc.exe
2015-11-24 19:40:37 ----A---- C:\Windows\system32\nvsvcr.dll
2015-11-24 19:40:37 ----A---- C:\Windows\system32\nvshext.dll
2015-11-24 19:40:37 ----A---- C:\Windows\system32\nvmctray.dll
2015-11-24 18:37:37 ----D---- C:\ProgramData\Origin
2015-11-24 15:55:22 ----A---- C:\Windows\SYSWOW64\PnkBstrA.exe
2015-11-24 15:55:15 ----A---- C:\Windows\SYSWOW64\PnkBstrB.exe
2015-11-24 15:38:33 ----D---- C:\Program Files (x86)\Origin Games
2015-11-24 14:12:48 ----D---- C:\Program Files (x86)\Origin
2015-11-21 14:46:07 ----D---- C:\ProgramData\regid.1986-12.com.adobe
2015-11-21 14:18:39 ----D---- C:\Program Files\Common Files\Adobe
2015-11-21 14:18:27 ----D---- C:\Users\Jury\AppData\Roaming\Adobe
2015-11-21 14:17:41 ----D---- C:\ProgramData\Adobe
2015-11-21 14:17:07 ----D---- C:\Program Files (x86)\Adobe
2015-11-21 12:47:40 ----D---- C:\ProgramData\Oracle
2015-11-21 12:47:36 ----D---- C:\Program Files (x86)\Java
2015-11-21 12:47:04 ----A---- C:\Windows\SYSWOW64\WindowsAccessBridge-32.dll
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 edevmon;edevmon; C:\Windows\system32\DRIVERS\edevmon.sys [2015-07-14 251632]
R0 iaStorA;iaStorA; C:\Windows\System32\drivers\iaStorA.sys [2014-04-11 645480]
R0 mvs91xx;mvs91xx; C:\Windows\System32\drivers\mvs91xx.sys [2013-09-06 327464]
R1 BfLwf;@oem19.inf,%BfLwf_Desc%;Qualcomm Atheros Bandwidth Control; C:\Windows\system32\DRIVERS\bwcW8x64.sys [2013-02-13 75056]
R1 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys [2015-07-14 255240]
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2015-07-14 178520]
R2 epfwwfpr;epfwwfpr; C:\Windows\system32\DRIVERS\epfwwfpr.sys [2015-07-14 168208]
R3 e1dexpress;@oem9.inf,%e1dExpress.Service.DispName%;Intel(R) PRO/1000 PCI Express Network Connection Driver D; C:\Windows\system32\DRIVERS\e1d64x64.sys [2013-08-29 468240]
R3 etocdrv;etocdrv; \??\C:\Windows\etocdrv.sys [2013-10-31 15584]
R3 gdrv;gdrv; \??\C:\Windows\gdrv.sys [2015-12-19 26192]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2015-08-09 4928256]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2014-03-14 3896920]
R3 IntcDAud;@oem3.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\Windows\system32\DRIVERS\IntcDAud.sys [2014-03-31 450520]
R3 iwdbus;@oem6.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\Windows\System32\drivers\iwdbus.sys [2015-05-26 30512]
R3 Ke2200;@oem18.inf,%L1C.Service.DispName%;NDIS Miniport Driver for the Killer e2200 Gigabit Ethernet Controller; C:\Windows\system32\DRIVERS\e22w8x64.sys [2013-03-20 163536]
R3 KYEKBPRO;@oem36.inf,%KYEKBPRO.SvcDesc%;IMPERATOR PRO Gaming Keyboard; C:\Windows\system32\drivers\KYEKBPRO.sys [2011-10-14 25600]
R3 MEIx64;@oem48.inf,%TEE_SvcDesc%;Intel(R) Management Engine Interface ; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [2014-09-30 129312]
R3 NVHDA;@oem58.inf,%NVHDA.SvcDesc%;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda64v.sys [2015-11-05 205456]
R3 nvlddmkm;nvlddmkm; C:\Windows\system32\DRIVERS\nvlddmkm.sys [2015-11-25 11131184]
R3 NvStreamKms;NvStreamKms; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2015-12-09 19576]
R3 nvvad_WaveExtensible;@oem44.inf,%nvvad_WaveExtensible.SvcDesc%;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\Windows\system32\drivers\nvvad64v.sys [2015-08-11 50472]
R3 NVVADARM;@oem62.inf,%NVVADARM.SvcDesc%;NVIDIA Miracast Audio; C:\Windows\system32\drivers\nvvadarm.sys [2015-11-25 39032]
S3 AIDA64Driver;FinalWire AIDA64 Kernel Driver; \??\C:\Program Files (x86)\FinalWire\AIDA64 Extreme\kerneld.x64 [2014-12-08 34136]
S3 dtultrascsibus;@oem37.inf,%DTULTRASCSIBUS.DeviceDesc%;DAEMON Tools Ultra Virtual SCSI Bus; C:\Windows\System32\drivers\dtultrascsibus.sys [2015-07-15 30264]
S3 dtultrausbbus;@oem38.inf,%DTULTRAUSBBUS.DeviceDesc%;DAEMON Tools Ultra Virtual USB Bus; C:\Windows\System32\drivers\dtultrausbbus.sys [2015-07-15 47160]
S3 e1iexpress;@net1ic64.inf,%e1iExpress.Service.DispName%;Intel(R) PRO/1000 - ovladač I pro síťová připojení PCI Express; C:\Windows\system32\DRIVERS\e1i63x64.sys [2013-06-18 460288]
S3 intaud_WaveExtensible;@oem5.inf,%INTAUD_WEX.SvcDesc%;Intel WiDi Audio Device; C:\Windows\system32\drivers\intelaud.sys [2015-05-26 42288]
S3 ScreamBAudioSvc;@oem61.inf,%sbee_audio.SvcDesc%;ScreamBee Audio; C:\Windows\system32\drivers\ScreamingBAudio64.sys [2014-02-07 38992]
S3 usbaudio;@wdma_usb.inf,%USBAudio.SvcDesc%;Ovladač zvuků USB (WDM); C:\Windows\system32\drivers\usbaudio.sys [2013-12-13 121088]
S3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;Zobrazovací zařízení USB (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2014-06-21 212736]
S3 WDC_SAM;@oem33.inf,%WDC_SAM_ServiceName%;WD SCSI Pass Thru driver; C:\Windows\System32\drivers\wdcsam64.sys [2015-04-29 23200]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2015-10-28 82128]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2014-10-29 38792]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe [2015-07-08 1353720]
R2 gadjservice;GIGABYTE Adjust; C:\Program Files (x86)\Gigabyte\AppCenter\AdjustService.exe [2015-04-14 16896]
R2 GfExperienceService;NVIDIA GeForce Experience Service; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [2015-12-09 1156216]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2014-04-11 16232]
R2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\Windows\system32\igfxCUIService.exe [2015-08-09 355232]
R2 Intel(R) PROSet Monitoring Service;Intel(R) PROSet Monitoring Service; C:\Windows\system32\IProsetMonitor.exe [2013-11-01 241416]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2014-03-20 154584]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2014-03-20 398296]
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2015-12-09 1872504]
R2 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [2015-12-09 6477432]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2015-11-24 938616]
R2 PnkBstrA;PnkBstrA; C:\Windows\syswow64\PnkBstrA.exe [2015-11-24 76152]
R2 Qualcomm Atheros Killer Service V2;Qualcomm Atheros Killer Service V2; C:\Program Files\Qualcomm Atheros\Network Manager\KillerService.exe [2013-08-08 343040]
R2 SBSDWSCService;SBSD Security Center Service; C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe [2009-01-26 1153368]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2015-11-24 417584]
R3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696]
R3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2014-02-18 171480]
R3 NvStreamNetworkSvc;NVIDIA Streamer Network Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [2015-12-09 8185464]
R3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2015-12-14 836176]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-12-18 269504]
S3 BEService;BattlEye Service; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [2015-12-02 1257504]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\Windows\System32\svchost.exe [2014-10-29 38792]
S3 cphs;Intel(R) Content Protection HECI Service; C:\Windows\SysWow64\IntelCpHeciSvc.exe [2015-08-09 288688]
S3 EasyAntiCheat;EasyAntiCheat; C:\Windows\syswow64\EasyAntiCheat.exe [2015-08-23 238376]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2014-01-31 887232]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2015-11-06 147624]
S3 Origin Client Service;Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2015-11-24 2099720]
S3 SwitchBoard;SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
-----------------EOF-----------------
Run by Jury at 2015-12-19 07:00:17
Microsoft Windows 8.1 Pro
System drive C: has 44 GB (19%) free of 228 GB
Total RAM: 16210 MB (86% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 7:00:20, on 19. 12. 2015
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.18123)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files (x86)\Gigabyte\AppCenter\ApCent.exe
C:\Users\Jury\AppData\Local\NVIDIA\NvBackend\ApplicationOntology\NvOAWrapperCache.exe
C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files (x86)\Steam\Steam.exe
C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
C:\Program Files\Qualcomm Atheros\Network Manager\NetworkManager.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files\trend micro\Jury.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: ExplorerBHO Class - {449D0D6E-2412-4E61-B68F-1CB625CD9E52} - C:\Program Files\Classic Shell\ClassicExplorer32.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~2\SPYBOT~1\SDHelper.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_66\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_66\bin\jp2ssv.dll
O2 - BHO: ClassicIEBHO Class - {EA801577-E6AD-4BD5-8F71-4BE0154331A4} - C:\Program Files\Classic Shell\ClassicIEDLL_32.dll
O3 - Toolbar: Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer32.dll
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O4 - HKLM\..\Run: [AdobeCS5ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\RunOnce: [EasyTune] C:\Program Files (x86)\Gigabyte\EasyTune\etro.exe
O4 - HKLM\..\RunOnce: [PreRun] C:\Program Files (x86)\Gigabyte\AppCenter\PreRun.exe
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [Steam] "C:\Program Files (x86)\Steam\steam.exe" -silent
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - Startup: Desktop.scf
O4 - Global Startup: Killer Network Manager.lnk = ?
O9 - Extra button: (no name) - {56753E59-AF1D-4FBA-9E15-31557124ADA2} - C:\Program Files\Classic Shell\ClassicIE_32.exe
O9 - Extra 'Tools' menuitem: Classic IE Settings - {56753E59-AF1D-4FBA-9E15-31557124ADA2} - C:\Program Files\Classic Shell\ClassicIE_32.exe
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~2\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~2\SPYBOT~1\SDHelper.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: *.clonewarsadventures.com
O15 - Trusted Zone: *.freerealms.com
O15 - Trusted Zone: *.soe.com
O15 - Trusted Zone: *.sony.com
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: BattlEye Service (BEService) - Unknown owner - C:\Program Files (x86)\Common Files\BattlEye\BEService.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\Windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: EasyAntiCheat - EasyAntiCheat Ltd - C:\Windows\system32\EasyAntiCheat.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: GIGABYTE Adjust (gadjservice) - Unknown owner - C:\Program Files (x86)\Gigabyte\AppCenter\AdjustService.exe
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\Windows\system32\igfxCUIService.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) PROSet Monitoring Service - Unknown owner - C:\Windows\system32\IProsetMonitor.exe (file missing)
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Network Service (NvStreamNetworkSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: Origin Client Service - Electronic Arts - C:\Program Files (x86)\Origin\OriginClientService.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: Qualcomm Atheros Killer Service V2 - Qualcomm Atheros - C:\Program Files\Qualcomm Atheros\Network Manager\KillerService.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: SBSD Security Center Service (SBSDWSCService) - Safer Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 11016 bytes
======Listing Processes======
wininit.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
"C:\Windows\system32\nvvsvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\igfxCUIService.exe
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\Windows\System32\svchost.exe -k utcsvc
"C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe"
"C:\Program Files (x86)\Gigabyte\AppCenter\AdjustService.exe"
"C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe"
C:\Windows\system32\IProsetMonitor.exe
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe"
C:\Windows\SysWOW64\PnkBstrA.exe
"C:\Program Files\Qualcomm Atheros\Network Manager\KillerService.exe"
"C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe"
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe"
"C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
C:\Windows\System32\WinLogon.exe -SpecialSession
-hiberboot
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
taskhostex.exe
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
igfxEM.exe
"C:\Program Files (x86)\Gigabyte\AppCenter\ApCent.exe"
ClassicStartMenu.exe -startup
"C:\Users\Jury\AppData\Local\NVIDIA\NvBackend\ApplicationOntology\NvOAWrapperCache.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
"C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe"
"C:\Program Files\NVIDIA Corporation\ShadowPlay\nvspcaps64.exe" -Embedding
"C:\Program Files (x86)\Steam\Steam.exe" -silent
"C:\Windows\system32\GWX\GWX.exe"
"C:\Program Files (x86)\Steam\bin\steamwebhelper.exe" -cachedir="C:\Users\Jury\AppData\Local\Steam\htmlcache" -steampid=824 -buildid=1450127196 -steamid="0" --disable-gpu-compositing --disable-gpu --process-per-tab --enable-system-flash --disable-spell-checking --enable-widevine-cdm --enable-direct-write
"C:\Program Files (x86)\Common Files\Steam\SteamService.exe" /RunAsService
"C:\Program Files\Qualcomm Atheros\Network Manager\NetworkManager.exe" -minimize
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe" serviceapp
\??\C:\Windows\system32\conhost.exe 0x4
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
"C:\Users\Jury\Downloads\RSITx64.exe"
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
=========Mozilla firefox=========
ProfilePath - C:\Users\Jury\AppData\Roaming\Mozilla\Firefox\Profiles\j7z66b47.default
prefs.js - "browser.startup.homepage" - "https://www.seznam.cz/"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 20.0.0.235 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_20_0_0_235.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@esn/npbattlelog,version=2.7.1]
"Description"=
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\2.7.1\npbattlelog.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5]
"Description"=Intel IPT WebApi plugin
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater]
"Description"=This plugin updates Intel WebAPI component
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=11.66.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre1.8.0_66\bin\dtplugin\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=11.66.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre1.8.0_66\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVision]
"Description"=NVIDIA stereo images plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVisionStreaming]
"Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.1]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 20.0.0.235 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_20_0_0_235.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@esn/npbattlelog,version=2.7.1]
"Description"=
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\2.7.1\npbattlelogx64.dll
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{449D0D6E-2412-4E61-B68F-1CB625CD9E52}]
ExplorerBHO Class - C:\Program Files\Classic Shell\ClassicExplorer64.dll [2014-04-20 803520]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EA801577-E6AD-4BD5-8F71-4BE0154331A4}]
ClassicIEBHO Class - C:\Program Files\Classic Shell\ClassicIEDLL_64.dll [2014-04-20 483520]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{449D0D6E-2412-4E61-B68F-1CB625CD9E52}]
ExplorerBHO Class - C:\Program Files\Classic Shell\ClassicExplorer32.dll [2014-04-20 683200]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{53707962-6F74-2D53-2644-206D7942484F}]
Spybot-S&D IE Protection - C:\PROGRA~2\SPYBOT~1\SDHelper.dll [2009-01-26 1879896]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_66\bin\ssv.dll [2015-11-21 460384]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_66\bin\jp2ssv.dll [2015-11-21 172640]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EA801577-E6AD-4BD5-8F71-4BE0154331A4}]
ClassicIEBHO Class - C:\Program Files\Classic Shell\ClassicIEDLL_32.dll [2014-04-20 440512]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{553891B7-A0D5-4526-BE18-D3CE461D6310} - Classic Explorer Bar - C:\Program Files\Classic Shell\ClassicExplorer64.dll [2014-04-20 803520]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{553891B7-A0D5-4526-BE18-D3CE461D6310} - Classic Explorer Bar - C:\Program Files\Classic Shell\ClassicExplorer32.dll [2014-04-20 683200]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Classic Start Menu"=C:\Program Files\Classic Shell\ClassicStartMenu.exe [2014-04-20 161984]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2014-03-14 13671792]
"IAStorIcon"=C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe [2014-04-11 36352]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2015-12-09 2771576]
"ShadowPlay"=C:\Windows\system32\nvspcap64.dll [2015-12-09 1846016]
"egui"=C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [2015-07-08 5595848]
"AdobeAAMUpdater-1.0"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2010-03-06 500208]
"Logitech Download Assistant"=C:\Windows\System32\LogiLDA.dll [2012-09-20 3933496]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"SpybotSD TeaTimer"=C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe [2009-03-05 2260480]
"Steam"=C:\Program Files (x86)\Steam\steam.exe [2015-12-14 3013712]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2015-09-16 8461224]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2015-11-09 596528]
"SwitchBoard"=C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
"AdobeCS5ServiceManager"=C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe [2010-02-22 406992]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\RunOnce]
"EasyTune"=C:\Program Files (x86)\Gigabyte\EasyTune\etro.exe [2014-08-18 5632]
"PreRun"=C:\Program Files (x86)\Gigabyte\AppCenter\PreRun.exe [2013-04-29 8192]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Killer Network Manager.lnk - C:\Windows\Installer\{401FADAA-1C16-4721-9F02-19067E1A1CA8}\NetworkManager.exe_130C27D738F34C89BDDF21BCFD74B56D.exe
C:\Users\Jury\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Desktop.scf
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux2"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave6"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer6"=wdmaud.drv
"aux1"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2015-12-18 20:51:38 ----D---- C:\AdwCleaner
2015-12-18 15:59:45 ----D---- C:\rsit
2015-12-18 15:59:45 ----D---- C:\Program Files\trend micro
2015-12-18 15:35:28 ----D---- C:\Windows\LastGood.Tmp
2015-12-18 15:31:27 ----D---- C:\Users\Jury\AppData\Roaming\KYE ImperatorPro
2015-12-18 15:30:19 ----A---- C:\Windows\unins000.exe
2015-12-18 15:30:19 ----A---- C:\Windows\unins000.dat
2015-12-18 15:27:18 ----SHD---- C:\Config.Msi
2015-12-18 15:19:24 ----A---- C:\Windows\system32\NvRtmpStreamer64.dll
2015-12-18 15:11:38 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2015-12-18 15:11:38 ----A---- C:\Windows\system32\gdi32.dll
2015-12-18 15:11:38 ----A---- C:\Windows\system32\drivers\tunnel.sys
2015-12-18 15:11:38 ----A---- C:\Windows\system32\drivers\tpm.sys
2015-12-18 15:11:32 ----A---- C:\Windows\system32\dpapisrv.dll
2015-12-18 15:11:31 ----A---- C:\Windows\SYSWOW64\Windows.Globalization.dll
2015-12-18 15:11:31 ----A---- C:\Windows\SYSWOW64\kbdgeoqw.dll
2015-12-18 15:11:31 ----A---- C:\Windows\SYSWOW64\KBDAZST.DLL
2015-12-18 15:11:31 ----A---- C:\Windows\SYSWOW64\KBDAZEL.DLL
2015-12-18 15:11:31 ----A---- C:\Windows\SYSWOW64\KBDAZE.DLL
2015-12-18 15:11:31 ----A---- C:\Windows\SYSWOW64\GlobCollationHost.dll
2015-12-18 15:11:31 ----A---- C:\Windows\system32\Windows.Globalization.dll
2015-12-18 15:11:31 ----A---- C:\Windows\system32\kbdgeoqw.dll
2015-12-18 15:11:31 ----A---- C:\Windows\system32\KBDAZST.DLL
2015-12-18 15:11:31 ----A---- C:\Windows\system32\KBDAZEL.DLL
2015-12-18 15:11:31 ----A---- C:\Windows\system32\KBDAZE.DLL
2015-12-18 15:11:31 ----A---- C:\Windows\system32\GlobCollationHost.dll
2015-12-18 15:11:31 ----A---- C:\Windows\system32\AuthHost.exe
2015-12-18 15:11:29 ----A---- C:\Windows\SYSWOW64\wininet.dll
2015-12-18 15:11:29 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2015-12-18 15:11:29 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2015-12-18 15:11:29 ----A---- C:\Windows\SYSWOW64\jscript.dll
2015-12-18 15:11:29 ----A---- C:\Windows\SYSWOW64\inetcomm.dll
2015-12-18 15:11:29 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2015-12-18 15:11:29 ----A---- C:\Windows\system32\vbscript.dll
2015-12-18 15:11:29 ----A---- C:\Windows\system32\jscript9.dll
2015-12-18 15:11:29 ----A---- C:\Windows\system32\jscript.dll
2015-12-18 15:11:29 ----A---- C:\Windows\system32\inetcomm.dll
2015-12-18 15:11:29 ----A---- C:\Windows\system32\ieapfltr.dll
2015-12-18 15:11:28 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2015-12-18 15:11:28 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2015-12-18 15:11:28 ----A---- C:\Windows\system32\wininet.dll
2015-12-18 15:11:28 ----A---- C:\Windows\system32\mshtml.dll
2015-12-18 15:11:28 ----A---- C:\Windows\system32\iertutil.dll
2015-12-18 15:11:27 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2015-12-18 15:11:27 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2015-12-18 15:11:27 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2015-12-18 15:11:27 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2015-12-18 15:11:27 ----A---- C:\Windows\SYSWOW64\ieui.dll
2015-12-18 15:11:27 ----A---- C:\Windows\SYSWOW64\iepeers.dll
2015-12-18 15:11:27 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2015-12-18 15:11:27 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2015-12-18 15:11:27 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2015-12-18 15:11:27 ----A---- C:\Windows\SYSWOW64\actxprxy.dll
2015-12-18 15:11:27 ----A---- C:\Windows\system32\webcheck.dll
2015-12-18 15:11:27 ----A---- C:\Windows\system32\urlmon.dll
2015-12-18 15:11:27 ----A---- C:\Windows\system32\mshtmled.dll
2015-12-18 15:11:27 ----A---- C:\Windows\system32\msfeeds.dll
2015-12-18 15:11:27 ----A---- C:\Windows\system32\ieui.dll
2015-12-18 15:11:27 ----A---- C:\Windows\system32\iepeers.dll
2015-12-18 15:11:27 ----A---- C:\Windows\system32\ieframe.dll
2015-12-18 15:11:27 ----A---- C:\Windows\system32\iedkcs32.dll
2015-12-18 15:11:27 ----A---- C:\Windows\system32\ie4uinit.exe
2015-12-18 15:11:27 ----A---- C:\Windows\system32\dxtrans.dll
2015-12-18 15:11:27 ----A---- C:\Windows\system32\actxprxy.dll
2015-12-18 15:11:26 ----A---- C:\Windows\SYSWOW64\msctf.dll
2015-12-18 15:11:26 ----A---- C:\Windows\system32\msctf.dll
2015-12-18 15:11:11 ----A---- C:\Windows\SYSWOW64\PCPKsp.dll
2015-12-18 15:11:11 ----A---- C:\Windows\system32\PCPKsp.dll
2015-12-18 15:11:11 ----A---- C:\Windows\system32\invagent.dll
2015-12-18 15:11:11 ----A---- C:\Windows\system32\generaltel.dll
2015-12-18 15:11:11 ----A---- C:\Windows\system32\devinv.dll
2015-12-18 15:11:11 ----A---- C:\Windows\system32\appraiser.dll
2015-12-18 15:11:11 ----A---- C:\Windows\system32\aeinv.dll
2015-12-18 15:11:10 ----A---- C:\Windows\system32\drivers\usbuhci.sys
2015-12-18 15:11:10 ----A---- C:\Windows\system32\drivers\usbport.sys
2015-12-18 15:11:10 ----A---- C:\Windows\system32\drivers\usbohci.sys
2015-12-18 15:11:10 ----A---- C:\Windows\system32\drivers\USBHUB3.SYS
2015-12-18 15:11:10 ----A---- C:\Windows\system32\drivers\usbhub.sys
2015-12-18 15:11:10 ----A---- C:\Windows\system32\drivers\usbehci.sys
2015-12-18 15:11:10 ----A---- C:\Windows\system32\drivers\usbd.sys
2015-12-18 15:11:10 ----A---- C:\Windows\system32\CompatTelRunner.exe
2015-12-18 15:11:10 ----A---- C:\Windows\system32\acmigration.dll
2015-12-18 15:11:09 ----A---- C:\Windows\system32\winlogon.exe
2015-12-18 15:11:09 ----A---- C:\Windows\system32\wininit.exe
2015-12-18 15:11:01 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2015-12-18 15:11:01 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2015-12-18 15:11:01 ----A---- C:\Windows\SYSWOW64\comsvcs.dll
2015-12-18 15:11:01 ----A---- C:\Windows\SYSWOW64\catsrvut.dll
2015-12-18 15:11:01 ----A---- C:\Windows\system32\winresume.exe
2015-12-18 15:11:01 ----A---- C:\Windows\system32\winload.exe
2015-12-18 15:11:01 ----A---- C:\Windows\system32\win32k.sys
2015-12-18 15:11:01 ----A---- C:\Windows\system32\user32.dll
2015-12-18 15:11:01 ----A---- C:\Windows\system32\ntvdm64.dll
2015-12-18 15:11:01 ----A---- C:\Windows\system32\ntoskrnl.exe
2015-12-18 15:11:01 ----A---- C:\Windows\system32\ntdll.dll
2015-12-18 15:11:01 ----A---- C:\Windows\system32\FntCache.dll
2015-12-18 15:11:01 ----A---- C:\Windows\system32\DWrite.dll
2015-12-18 15:11:01 ----A---- C:\Windows\system32\drivers\rmcast.sys
2015-12-18 15:11:01 ----A---- C:\Windows\system32\comsvcs.dll
2015-12-18 15:11:01 ----A---- C:\Windows\system32\catsrvut.dll
2015-12-18 15:11:00 ----A---- C:\Windows\SYSWOW64\user32.dll
2015-12-18 15:11:00 ----A---- C:\Windows\SYSWOW64\GdiPlus.dll
2015-12-18 15:11:00 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2015-12-18 15:11:00 ----A---- C:\Windows\system32\GdiPlus.dll
2015-12-18 15:10:47 ----A---- C:\Windows\SYSWOW64\authui.dll
2015-12-18 15:10:47 ----A---- C:\Windows\system32\wuaueng.dll
2015-12-18 15:10:47 ----A---- C:\Windows\system32\authui.dll
2015-12-18 15:10:46 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2015-12-18 15:10:46 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2015-12-18 15:10:46 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2015-12-18 15:10:46 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2015-12-18 15:10:46 ----A---- C:\Windows\system32\wuwebv.dll
2015-12-18 15:10:46 ----A---- C:\Windows\system32\WUSettingsProvider.dll
2015-12-18 15:10:46 ----A---- C:\Windows\system32\wups2.dll
2015-12-18 15:10:46 ----A---- C:\Windows\system32\wudriver.dll
2015-12-18 15:10:46 ----A---- C:\Windows\system32\wucltux.dll
2015-12-18 15:10:46 ----A---- C:\Windows\system32\wuauclt.exe
2015-12-18 15:10:46 ----A---- C:\Windows\system32\wuapp.exe
2015-12-18 15:10:46 ----A---- C:\Windows\system32\wuapi.dll
2015-12-18 14:46:34 ----D---- C:\Users\Jury\AppData\Roaming\KYE Imperator
2015-12-05 22:01:37 ----D---- C:\Users\Jury\AppData\Roaming\Skype
2015-12-05 22:01:34 ----D---- C:\Program Files (x86)\Skype
2015-12-02 14:56:30 ----A---- C:\Windows\SYSWOW64\nvStreaming.exe
2015-12-02 14:55:36 ----A---- C:\Windows\SYSWOW64\nvumdshim.dll
2015-12-02 14:55:36 ----A---- C:\Windows\SYSWOW64\nvopencl.dll
2015-12-02 14:55:36 ----A---- C:\Windows\SYSWOW64\nvoglv32.dll
2015-12-02 14:55:36 ----A---- C:\Windows\SYSWOW64\nvoglshim32.dll
2015-12-02 14:55:36 ----A---- C:\Windows\SYSWOW64\nvinit.dll
2015-12-02 14:55:36 ----A---- C:\Windows\SYSWOW64\NvIFROpenGL.dll
2015-12-02 14:55:36 ----A---- C:\Windows\SYSWOW64\NvIFR.dll
2015-12-02 14:55:36 ----A---- C:\Windows\SYSWOW64\NvFBC.dll
2015-12-02 14:55:36 ----A---- C:\Windows\SYSWOW64\nvEncodeAPI.dll
2015-12-02 14:55:36 ----A---- C:\Windows\system32\nvumdshimx.dll
2015-12-02 14:55:36 ----A---- C:\Windows\system32\nvopencl.dll
2015-12-02 14:55:36 ----A---- C:\Windows\system32\nvoglv64.dll
2015-12-02 14:55:36 ----A---- C:\Windows\system32\nvoglshim64.dll
2015-12-02 14:55:36 ----A---- C:\Windows\system32\nvmcumd.dll
2015-12-02 14:55:36 ----A---- C:\Windows\system32\nvinitx.dll
2015-12-02 14:55:36 ----A---- C:\Windows\system32\NvIFROpenGL.dll
2015-12-02 14:55:36 ----A---- C:\Windows\system32\NvIFR64.dll
2015-12-02 14:55:36 ----A---- C:\Windows\system32\NvFBC64.dll
2015-12-02 14:55:36 ----A---- C:\Windows\system32\nvEncodeAPI64.dll
2015-12-02 14:55:36 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2015-12-02 14:55:35 ----A---- C:\Windows\SYSWOW64\nvcuvid.dll
2015-12-02 14:55:35 ----A---- C:\Windows\SYSWOW64\nvcuda.dll
2015-12-02 14:55:35 ----A---- C:\Windows\SYSWOW64\nvcompiler.dll
2015-12-02 14:55:35 ----A---- C:\Windows\system32\nvdispgenco6435906.dll
2015-12-02 14:55:35 ----A---- C:\Windows\system32\nvdispco6435906.dll
2015-12-02 14:55:35 ----A---- C:\Windows\system32\nvcuvid.dll
2015-12-02 14:55:35 ----A---- C:\Windows\system32\nvcuda.dll
2015-12-02 14:55:35 ----A---- C:\Windows\system32\nvcompiler.dll
2015-12-02 14:55:35 ----A---- C:\Windows\system32\nvaudcaparm.dll
2015-12-02 14:55:35 ----A---- C:\Windows\system32\drivers\nvvadarm.sys
2015-11-24 15:48:28 ----D---- C:\ProgramData\EA Core
2015-11-24 15:48:27 ----D---- C:\ProgramData\EA Logs
2015-11-24 15:06:31 ----A---- C:\Windows\SYSWOW64\XAudio2_7.dll
2015-11-24 15:06:31 ----A---- C:\Windows\SYSWOW64\D3DX9_43.dll
2015-11-24 15:06:30 ----A---- C:\Windows\SYSWOW64\X3DAudio1_7.dll
2015-11-24 15:06:24 ----A---- C:\Windows\SYSWOW64\xinput1_3.dll
2015-11-23 11:05:13 ----D---- C:\Program Files (x86)\MJPEG decoder
2015-11-22 22:13:05 ----D---- C:\Users\Jury\AppData\Roaming\Screaming Bee
2015-11-22 22:13:05 ----D---- C:\ProgramData\Screaming Bee
2015-11-21 14:17:33 ----D---- C:\Program Files (x86)\Adobe Media Player
2015-11-21 12:48:30 ----A---- C:\Windows\system32\nvdispgenco6435900.dll
2015-11-21 12:48:30 ----A---- C:\Windows\system32\nvdispco6435900.dll
======List of files/folders modified in the last 1 month======
2015-12-19 07:00:00 ----D---- C:\Windows\system32\sru
2015-12-19 06:59:49 ----D---- C:\Users\Jury\AppData\Roaming\ClassicShell
2015-12-19 06:58:29 ----D---- C:\Windows\Temp
2015-12-19 06:58:15 ----RSD---- C:\Windows\assembly
2015-12-19 06:57:46 ----D---- C:\Program Files (x86)\Steam
2015-12-18 21:21:35 ----D---- C:\Windows
2015-12-18 21:10:26 ----D---- C:\Windows\SoftwareDistribution
2015-12-18 21:09:13 ----RD---- C:\Windows\System32
2015-12-18 21:09:13 ----D---- C:\Windows\Inf
2015-12-18 21:09:13 ----A---- C:\Windows\system32\PerfStringBackup.INI
2015-12-18 21:03:14 ----D---- C:\ProgramData\NVIDIA
2015-12-18 21:01:08 ----D---- C:\Windows\Prefetch
2015-12-18 20:52:10 ----RD---- C:\Program Files (x86)
2015-12-18 20:51:33 ----D---- C:\Users\Jury\AppData\Roaming\TS3Client
2015-12-18 16:09:12 ----D---- C:\Windows\system32\drivers
2015-12-18 15:59:45 ----RD---- C:\Program Files
2015-12-18 15:41:06 ----D---- C:\Windows\SysWOW64
2015-12-18 15:35:28 ----D---- C:\Windows\system32\DriverStore
2015-12-18 15:30:20 ----D---- C:\Windows\system32\catroot
2015-12-18 15:27:19 ----SHD---- C:\Windows\Installer
2015-12-18 15:27:19 ----D---- C:\ProgramData\Package Cache
2015-12-18 15:19:18 ----D---- C:\ProgramData\NVIDIA Corporation
2015-12-18 15:18:28 ----D---- C:\Windows\system32\config
2015-12-18 15:18:27 ----D---- C:\Windows\WinSxS
2015-12-18 15:18:27 ----D---- C:\Windows\Microsoft.NET
2015-12-18 15:17:04 ----SD---- C:\Windows\SYSWOW64\GWX
2015-12-18 15:17:04 ----SD---- C:\Windows\system32\GWX
2015-12-18 15:17:04 ----D---- C:\Windows\SYSWOW64\cs-CZ
2015-12-18 15:17:04 ----D---- C:\Windows\system32\cs-CZ
2015-12-18 15:17:04 ----D---- C:\Windows\apppatch
2015-12-18 15:17:04 ----D---- C:\Program Files\Internet Explorer
2015-12-18 15:17:04 ----D---- C:\Program Files (x86)\Internet Explorer
2015-12-18 15:17:03 ----RSD---- C:\Windows\Fonts
2015-12-18 15:17:03 ----D---- C:\Windows\system32\Boot
2015-12-18 15:14:45 ----D---- C:\Windows\CbsTemp
2015-12-18 15:14:15 ----D---- C:\Users\Jury\AppData\Roaming\BitTorrent
2015-12-18 15:14:13 ----D---- C:\Windows\debug
2015-12-18 15:13:21 ----D---- C:\Windows\system32\MRT
2015-12-18 15:12:04 ----A---- C:\Windows\system32\MRT.exe
2015-12-18 15:11:42 ----SD---- C:\Windows\system32\CompatTel
2015-12-18 15:11:42 ----D---- C:\Windows\system32\appraiser
2015-12-18 15:10:57 ----D---- C:\Windows\system32\catroot2
2015-12-18 15:02:23 ----D---- C:\Windows\system32\wdi
2015-12-18 15:00:10 ----D---- C:\Windows\system32\wbem
2015-12-18 14:59:53 ----RSD---- C:\Windows\Media
2015-12-18 14:59:53 ----D---- C:\Windows\Tasks
2015-12-18 14:59:53 ----D---- C:\Windows\SYSWOW64\wbem
2015-12-18 14:59:53 ----D---- C:\Windows\SYSWOW64\migration
2015-12-18 14:59:53 ----D---- C:\Windows\system32\Tasks
2015-12-18 14:59:53 ----D---- C:\Windows\system32\Sysprep
2015-12-18 14:59:53 ----D---- C:\Windows\system32\migration
2015-12-18 14:59:53 ----D---- C:\Windows\system32\CodeIntegrity
2015-12-18 14:59:53 ----D---- C:\Windows\rescache
2015-12-18 14:59:53 ----D---- C:\Windows\PolicyDefinitions
2015-12-18 14:59:52 ----D---- C:\Windows\AppCompat
2015-12-18 14:59:52 ----D---- C:\Users\Jury\AppData\Roaming\vlc
2015-12-18 14:59:52 ----D---- C:\ProgramData\Spybot - Search & Destroy
2015-12-18 14:59:52 ----D---- C:\Program Files\Common Files\microsoft shared
2015-12-18 14:59:52 ----D---- C:\Program Files (x86)\Common Files
2015-12-18 14:59:46 ----HD---- C:\Program Files\WindowsApps
2015-12-18 14:59:36 ----D---- C:\Windows\registration
2015-12-18 14:59:26 ----HD---- C:\ProgramData
2015-12-18 14:58:52 ----SHD---- C:\System Volume Information
2015-12-10 12:01:30 ----D---- C:\ProgramData\GFACE
2015-12-09 02:51:39 ----A---- C:\Windows\SYSWOW64\nvspcap.dll
2015-12-09 02:51:39 ----A---- C:\Windows\SYSWOW64\nvspbridge.dll
2015-12-09 02:51:20 ----A---- C:\Windows\system32\nvspcap64.dll
2015-12-09 02:51:19 ----A---- C:\Windows\system32\nvspbridge64.dll
2015-12-06 12:29:12 ----D---- C:\Windows\AppReadiness
2015-12-01 18:19:27 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2015-11-27 18:05:35 ----D---- C:\Windows\Logs
2015-11-25 15:56:46 ----D---- C:\Users\Jury\AppData\Roaming\OBS
2015-11-25 15:52:59 ----D---- C:\Program Files (x86)\OBS
2015-11-25 00:10:29 ----A---- C:\Windows\SYSWOW64\nvwgf2um.dll
2015-11-25 00:10:29 ----A---- C:\Windows\SYSWOW64\nvd3dum.dll
2015-11-25 00:10:29 ----A---- C:\Windows\SYSWOW64\nvapi.dll
2015-11-25 00:10:29 ----A---- C:\Windows\system32\nvwgf2umx.dll
2015-11-25 00:10:29 ----A---- C:\Windows\system32\nvmcvadgenco64.dll
2015-11-25 00:10:29 ----A---- C:\Windows\system32\nvd3dumx.dll
2015-11-25 00:10:29 ----A---- C:\Windows\system32\nvapi64.dll
2015-11-24 19:40:40 ----A---- C:\Windows\system32\nvsvc64.dll
2015-11-24 19:40:40 ----A---- C:\Windows\system32\nvcpl.dll
2015-11-24 19:40:37 ----A---- C:\Windows\system32\nvvsvc.exe
2015-11-24 19:40:37 ----A---- C:\Windows\system32\nvsvcr.dll
2015-11-24 19:40:37 ----A---- C:\Windows\system32\nvshext.dll
2015-11-24 19:40:37 ----A---- C:\Windows\system32\nvmctray.dll
2015-11-24 18:37:37 ----D---- C:\ProgramData\Origin
2015-11-24 15:55:22 ----A---- C:\Windows\SYSWOW64\PnkBstrA.exe
2015-11-24 15:55:15 ----A---- C:\Windows\SYSWOW64\PnkBstrB.exe
2015-11-24 15:38:33 ----D---- C:\Program Files (x86)\Origin Games
2015-11-24 14:12:48 ----D---- C:\Program Files (x86)\Origin
2015-11-21 14:46:07 ----D---- C:\ProgramData\regid.1986-12.com.adobe
2015-11-21 14:18:39 ----D---- C:\Program Files\Common Files\Adobe
2015-11-21 14:18:27 ----D---- C:\Users\Jury\AppData\Roaming\Adobe
2015-11-21 14:17:41 ----D---- C:\ProgramData\Adobe
2015-11-21 14:17:07 ----D---- C:\Program Files (x86)\Adobe
2015-11-21 12:47:40 ----D---- C:\ProgramData\Oracle
2015-11-21 12:47:36 ----D---- C:\Program Files (x86)\Java
2015-11-21 12:47:04 ----A---- C:\Windows\SYSWOW64\WindowsAccessBridge-32.dll
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 edevmon;edevmon; C:\Windows\system32\DRIVERS\edevmon.sys [2015-07-14 251632]
R0 iaStorA;iaStorA; C:\Windows\System32\drivers\iaStorA.sys [2014-04-11 645480]
R0 mvs91xx;mvs91xx; C:\Windows\System32\drivers\mvs91xx.sys [2013-09-06 327464]
R1 BfLwf;@oem19.inf,%BfLwf_Desc%;Qualcomm Atheros Bandwidth Control; C:\Windows\system32\DRIVERS\bwcW8x64.sys [2013-02-13 75056]
R1 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys [2015-07-14 255240]
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2015-07-14 178520]
R2 epfwwfpr;epfwwfpr; C:\Windows\system32\DRIVERS\epfwwfpr.sys [2015-07-14 168208]
R3 e1dexpress;@oem9.inf,%e1dExpress.Service.DispName%;Intel(R) PRO/1000 PCI Express Network Connection Driver D; C:\Windows\system32\DRIVERS\e1d64x64.sys [2013-08-29 468240]
R3 etocdrv;etocdrv; \??\C:\Windows\etocdrv.sys [2013-10-31 15584]
R3 gdrv;gdrv; \??\C:\Windows\gdrv.sys [2015-12-19 26192]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2015-08-09 4928256]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2014-03-14 3896920]
R3 IntcDAud;@oem3.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\Windows\system32\DRIVERS\IntcDAud.sys [2014-03-31 450520]
R3 iwdbus;@oem6.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\Windows\System32\drivers\iwdbus.sys [2015-05-26 30512]
R3 Ke2200;@oem18.inf,%L1C.Service.DispName%;NDIS Miniport Driver for the Killer e2200 Gigabit Ethernet Controller; C:\Windows\system32\DRIVERS\e22w8x64.sys [2013-03-20 163536]
R3 KYEKBPRO;@oem36.inf,%KYEKBPRO.SvcDesc%;IMPERATOR PRO Gaming Keyboard; C:\Windows\system32\drivers\KYEKBPRO.sys [2011-10-14 25600]
R3 MEIx64;@oem48.inf,%TEE_SvcDesc%;Intel(R) Management Engine Interface ; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [2014-09-30 129312]
R3 NVHDA;@oem58.inf,%NVHDA.SvcDesc%;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda64v.sys [2015-11-05 205456]
R3 nvlddmkm;nvlddmkm; C:\Windows\system32\DRIVERS\nvlddmkm.sys [2015-11-25 11131184]
R3 NvStreamKms;NvStreamKms; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2015-12-09 19576]
R3 nvvad_WaveExtensible;@oem44.inf,%nvvad_WaveExtensible.SvcDesc%;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\Windows\system32\drivers\nvvad64v.sys [2015-08-11 50472]
R3 NVVADARM;@oem62.inf,%NVVADARM.SvcDesc%;NVIDIA Miracast Audio; C:\Windows\system32\drivers\nvvadarm.sys [2015-11-25 39032]
S3 AIDA64Driver;FinalWire AIDA64 Kernel Driver; \??\C:\Program Files (x86)\FinalWire\AIDA64 Extreme\kerneld.x64 [2014-12-08 34136]
S3 dtultrascsibus;@oem37.inf,%DTULTRASCSIBUS.DeviceDesc%;DAEMON Tools Ultra Virtual SCSI Bus; C:\Windows\System32\drivers\dtultrascsibus.sys [2015-07-15 30264]
S3 dtultrausbbus;@oem38.inf,%DTULTRAUSBBUS.DeviceDesc%;DAEMON Tools Ultra Virtual USB Bus; C:\Windows\System32\drivers\dtultrausbbus.sys [2015-07-15 47160]
S3 e1iexpress;@net1ic64.inf,%e1iExpress.Service.DispName%;Intel(R) PRO/1000 - ovladač I pro síťová připojení PCI Express; C:\Windows\system32\DRIVERS\e1i63x64.sys [2013-06-18 460288]
S3 intaud_WaveExtensible;@oem5.inf,%INTAUD_WEX.SvcDesc%;Intel WiDi Audio Device; C:\Windows\system32\drivers\intelaud.sys [2015-05-26 42288]
S3 ScreamBAudioSvc;@oem61.inf,%sbee_audio.SvcDesc%;ScreamBee Audio; C:\Windows\system32\drivers\ScreamingBAudio64.sys [2014-02-07 38992]
S3 usbaudio;@wdma_usb.inf,%USBAudio.SvcDesc%;Ovladač zvuků USB (WDM); C:\Windows\system32\drivers\usbaudio.sys [2013-12-13 121088]
S3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;Zobrazovací zařízení USB (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2014-06-21 212736]
S3 WDC_SAM;@oem33.inf,%WDC_SAM_ServiceName%;WD SCSI Pass Thru driver; C:\Windows\System32\drivers\wdcsam64.sys [2015-04-29 23200]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2015-10-28 82128]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2014-10-29 38792]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe [2015-07-08 1353720]
R2 gadjservice;GIGABYTE Adjust; C:\Program Files (x86)\Gigabyte\AppCenter\AdjustService.exe [2015-04-14 16896]
R2 GfExperienceService;NVIDIA GeForce Experience Service; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [2015-12-09 1156216]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2014-04-11 16232]
R2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\Windows\system32\igfxCUIService.exe [2015-08-09 355232]
R2 Intel(R) PROSet Monitoring Service;Intel(R) PROSet Monitoring Service; C:\Windows\system32\IProsetMonitor.exe [2013-11-01 241416]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2014-03-20 154584]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2014-03-20 398296]
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2015-12-09 1872504]
R2 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [2015-12-09 6477432]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2015-11-24 938616]
R2 PnkBstrA;PnkBstrA; C:\Windows\syswow64\PnkBstrA.exe [2015-11-24 76152]
R2 Qualcomm Atheros Killer Service V2;Qualcomm Atheros Killer Service V2; C:\Program Files\Qualcomm Atheros\Network Manager\KillerService.exe [2013-08-08 343040]
R2 SBSDWSCService;SBSD Security Center Service; C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe [2009-01-26 1153368]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2015-11-24 417584]
R3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696]
R3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2014-02-18 171480]
R3 NvStreamNetworkSvc;NVIDIA Streamer Network Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [2015-12-09 8185464]
R3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2015-12-14 836176]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-12-18 269504]
S3 BEService;BattlEye Service; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [2015-12-02 1257504]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\Windows\System32\svchost.exe [2014-10-29 38792]
S3 cphs;Intel(R) Content Protection HECI Service; C:\Windows\SysWow64\IntelCpHeciSvc.exe [2015-08-09 288688]
S3 EasyAntiCheat;EasyAntiCheat; C:\Windows\syswow64\EasyAntiCheat.exe [2015-08-23 238376]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2014-01-31 887232]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2015-11-06 147624]
S3 Origin Client Service;Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2015-11-24 2099720]
S3 SwitchBoard;SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
-----------------EOF-----------------
- Rudy
- Site Admin

- Příspěvky: 119673
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: problém s PC - prosím o kontrolu logu
Stáhněte OTM: http://oldtimer.geekstogo.com/OTM.exe a uložte na plochu. Spusťte a do levého okna zkopírujte:
a klikněte na >MoveIt!<. Po skenu restartujte PC a dejte nový log RSIT.:reg
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"SunJavaUpdateSched"=-
:commands
[Purity]
[Emptytemp]
[Emptyflash]
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: problém s PC - prosím o kontrolu logu
Logfile of random's system information tool 1.10 (written by random/random)
Run by Jury at 2015-12-19 14:13:06
Microsoft Windows 8.1 Pro
System drive C: has 44 GB (19%) free of 228 GB
Total RAM: 16210 MB (88% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 14:13:09, on 19. 12. 2015
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.18123)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Gigabyte\AppCenter\ApCent.exe
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Users\Jury\AppData\Local\NVIDIA\NvBackend\ApplicationOntology\NvOAWrapperCache.exe
C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe
C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files (x86)\Steam\Steam.exe
C:\Program Files\Qualcomm Atheros\Network Manager\NetworkManager.exe
C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files\trend micro\Jury.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: ExplorerBHO Class - {449D0D6E-2412-4E61-B68F-1CB625CD9E52} - C:\Program Files\Classic Shell\ClassicExplorer32.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~2\SPYBOT~1\SDHelper.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_66\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_66\bin\jp2ssv.dll
O2 - BHO: ClassicIEBHO Class - {EA801577-E6AD-4BD5-8F71-4BE0154331A4} - C:\Program Files\Classic Shell\ClassicIEDLL_32.dll
O3 - Toolbar: Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer32.dll
O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O4 - HKLM\..\Run: [AdobeCS5ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\RunOnce: [EasyTune] C:\Program Files (x86)\Gigabyte\EasyTune\etro.exe
O4 - HKLM\..\RunOnce: [PreRun] C:\Program Files (x86)\Gigabyte\AppCenter\PreRun.exe
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [Steam] "C:\Program Files (x86)\Steam\steam.exe" -silent
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - Startup: Desktop.scf
O4 - Global Startup: Killer Network Manager.lnk = ?
O9 - Extra button: (no name) - {56753E59-AF1D-4FBA-9E15-31557124ADA2} - C:\Program Files\Classic Shell\ClassicIE_32.exe
O9 - Extra 'Tools' menuitem: Classic IE Settings - {56753E59-AF1D-4FBA-9E15-31557124ADA2} - C:\Program Files\Classic Shell\ClassicIE_32.exe
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~2\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~2\SPYBOT~1\SDHelper.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: *.clonewarsadventures.com
O15 - Trusted Zone: *.freerealms.com
O15 - Trusted Zone: *.soe.com
O15 - Trusted Zone: *.sony.com
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: BattlEye Service (BEService) - Unknown owner - C:\Program Files (x86)\Common Files\BattlEye\BEService.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\Windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: EasyAntiCheat - EasyAntiCheat Ltd - C:\Windows\system32\EasyAntiCheat.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: GIGABYTE Adjust (gadjservice) - Unknown owner - C:\Program Files (x86)\Gigabyte\AppCenter\AdjustService.exe
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\Windows\system32\igfxCUIService.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) PROSet Monitoring Service - Unknown owner - C:\Windows\system32\IProsetMonitor.exe (file missing)
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Network Service (NvStreamNetworkSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: Origin Client Service - Electronic Arts - C:\Program Files (x86)\Origin\OriginClientService.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: Qualcomm Atheros Killer Service V2 - Qualcomm Atheros - C:\Program Files\Qualcomm Atheros\Network Manager\KillerService.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: SBSD Security Center Service (SBSDWSCService) - Safer Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 10850 bytes
======Listing Processes======
wininit.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
winlogon.exe
"C:\Windows\system32\nvvsvc.exe"
"dwm.exe"
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\igfxCUIService.exe
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\Windows\System32\svchost.exe -k utcsvc
"C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe"
"C:\Program Files (x86)\Gigabyte\AppCenter\AdjustService.exe"
C:\Windows\Explorer.EXE
"C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe"
C:\Windows\system32\IProsetMonitor.exe
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
taskhostex.exe
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe"
C:\Windows\SysWOW64\PnkBstrA.exe
"C:\Program Files\Qualcomm Atheros\Network Manager\KillerService.exe"
"C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe"
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Gigabyte\AppCenter\ApCent.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Windows\notepad.exe" C:\_OTM\MovedFiles\12192015_141116.log
ClassicStartMenu.exe -startup
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe" serviceapp
\??\C:\Windows\system32\conhost.exe 0x4
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Users\Jury\AppData\Local\NVIDIA\NvBackend\ApplicationOntology\NvOAWrapperCache.exe"
"C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe"
"C:\Windows\system32\GWX\GWX.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe" "C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" 60
"C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
"C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe"
"C:\Program Files\NVIDIA Corporation\ShadowPlay\nvspcaps64.exe" -Embedding
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe1_ Global\UsGthrCtrlFltPipeMssGthrPipe1 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 560 564 572 65536 568
"C:\Program Files (x86)\Steam\Steam.exe" -silent
"C:\Program Files\Qualcomm Atheros\Network Manager\NetworkManager.exe" -minimize
"C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac
"C:\Program Files (x86)\Steam\bin\steamwebhelper.exe" -cachedir="C:\Users\Jury\AppData\Local\Steam\htmlcache" -steampid=4976 -buildid=1450127196 -steamid="0" --disable-gpu-compositing --disable-gpu --process-per-tab --enable-system-flash --disable-spell-checking --enable-widevine-cdm --enable-direct-write
"C:\Program Files (x86)\Common Files\Steam\SteamService.exe" /RunAsService
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
"C:\Users\Jury\Downloads\RSITx64.exe"
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
=========Mozilla firefox=========
ProfilePath - C:\Users\Jury\AppData\Roaming\Mozilla\Firefox\Profiles\j7z66b47.default
prefs.js - "browser.startup.homepage" - "https://www.seznam.cz/"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 20.0.0.235 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_20_0_0_235.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@esn/npbattlelog,version=2.7.1]
"Description"=
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\2.7.1\npbattlelog.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5]
"Description"=Intel IPT WebApi plugin
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater]
"Description"=This plugin updates Intel WebAPI component
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=11.66.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre1.8.0_66\bin\dtplugin\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=11.66.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre1.8.0_66\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVision]
"Description"=NVIDIA stereo images plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVisionStreaming]
"Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.1]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 20.0.0.235 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_20_0_0_235.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@esn/npbattlelog,version=2.7.1]
"Description"=
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\2.7.1\npbattlelogx64.dll
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{449D0D6E-2412-4E61-B68F-1CB625CD9E52}]
ExplorerBHO Class - C:\Program Files\Classic Shell\ClassicExplorer64.dll [2014-04-20 803520]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EA801577-E6AD-4BD5-8F71-4BE0154331A4}]
ClassicIEBHO Class - C:\Program Files\Classic Shell\ClassicIEDLL_64.dll [2014-04-20 483520]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{449D0D6E-2412-4E61-B68F-1CB625CD9E52}]
ExplorerBHO Class - C:\Program Files\Classic Shell\ClassicExplorer32.dll [2014-04-20 683200]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{53707962-6F74-2D53-2644-206D7942484F}]
Spybot-S&D IE Protection - C:\PROGRA~2\SPYBOT~1\SDHelper.dll [2009-01-26 1879896]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_66\bin\ssv.dll [2015-11-21 460384]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_66\bin\jp2ssv.dll [2015-11-21 172640]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EA801577-E6AD-4BD5-8F71-4BE0154331A4}]
ClassicIEBHO Class - C:\Program Files\Classic Shell\ClassicIEDLL_32.dll [2014-04-20 440512]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{553891B7-A0D5-4526-BE18-D3CE461D6310} - Classic Explorer Bar - C:\Program Files\Classic Shell\ClassicExplorer64.dll [2014-04-20 803520]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{553891B7-A0D5-4526-BE18-D3CE461D6310} - Classic Explorer Bar - C:\Program Files\Classic Shell\ClassicExplorer32.dll [2014-04-20 683200]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Classic Start Menu"=C:\Program Files\Classic Shell\ClassicStartMenu.exe [2014-04-20 161984]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2014-03-14 13671792]
"IAStorIcon"=C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe [2014-04-11 36352]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2015-12-09 2771576]
"ShadowPlay"=C:\Windows\system32\nvspcap64.dll [2015-12-09 1846016]
"egui"=C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [2015-07-08 5595848]
"AdobeAAMUpdater-1.0"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2010-03-06 500208]
"Logitech Download Assistant"=C:\Windows\System32\LogiLDA.dll [2012-09-20 3933496]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"SpybotSD TeaTimer"=C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe [2009-03-05 2260480]
"Steam"=C:\Program Files (x86)\Steam\steam.exe [2015-12-14 3013712]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2015-09-16 8461224]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"SwitchBoard"=C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
"AdobeCS5ServiceManager"=C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe [2010-02-22 406992]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\RunOnce]
"EasyTune"=C:\Program Files (x86)\Gigabyte\EasyTune\etro.exe [2014-08-18 5632]
"PreRun"=C:\Program Files (x86)\Gigabyte\AppCenter\PreRun.exe [2013-04-29 8192]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Killer Network Manager.lnk - C:\Windows\Installer\{401FADAA-1C16-4721-9F02-19067E1A1CA8}\NetworkManager.exe_130C27D738F34C89BDDF21BCFD74B56D.exe
C:\Users\Jury\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Desktop.scf
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux2"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave6"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer6"=wdmaud.drv
"aux1"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2015-12-19 14:11:16 ----D---- C:\_OTM
2015-12-18 20:51:38 ----D---- C:\AdwCleaner
2015-12-18 15:59:45 ----D---- C:\rsit
2015-12-18 15:59:45 ----D---- C:\Program Files\trend micro
2015-12-18 15:31:27 ----D---- C:\Users\Jury\AppData\Roaming\KYE ImperatorPro
2015-12-18 15:30:19 ----A---- C:\Windows\unins000.exe
2015-12-18 15:30:19 ----A---- C:\Windows\unins000.dat
2015-12-18 15:27:18 ----SHD---- C:\Config.Msi
2015-12-18 15:19:24 ----A---- C:\Windows\system32\NvRtmpStreamer64.dll
2015-12-18 15:11:38 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2015-12-18 15:11:38 ----A---- C:\Windows\system32\gdi32.dll
2015-12-18 15:11:38 ----A---- C:\Windows\system32\drivers\tunnel.sys
2015-12-18 15:11:38 ----A---- C:\Windows\system32\drivers\tpm.sys
2015-12-18 15:11:32 ----A---- C:\Windows\system32\dpapisrv.dll
2015-12-18 15:11:31 ----A---- C:\Windows\SYSWOW64\Windows.Globalization.dll
2015-12-18 15:11:31 ----A---- C:\Windows\SYSWOW64\kbdgeoqw.dll
2015-12-18 15:11:31 ----A---- C:\Windows\SYSWOW64\KBDAZST.DLL
2015-12-18 15:11:31 ----A---- C:\Windows\SYSWOW64\KBDAZEL.DLL
2015-12-18 15:11:31 ----A---- C:\Windows\SYSWOW64\KBDAZE.DLL
2015-12-18 15:11:31 ----A---- C:\Windows\SYSWOW64\GlobCollationHost.dll
2015-12-18 15:11:31 ----A---- C:\Windows\system32\Windows.Globalization.dll
2015-12-18 15:11:31 ----A---- C:\Windows\system32\kbdgeoqw.dll
2015-12-18 15:11:31 ----A---- C:\Windows\system32\KBDAZST.DLL
2015-12-18 15:11:31 ----A---- C:\Windows\system32\KBDAZEL.DLL
2015-12-18 15:11:31 ----A---- C:\Windows\system32\KBDAZE.DLL
2015-12-18 15:11:31 ----A---- C:\Windows\system32\GlobCollationHost.dll
2015-12-18 15:11:31 ----A---- C:\Windows\system32\AuthHost.exe
2015-12-18 15:11:29 ----A---- C:\Windows\SYSWOW64\wininet.dll
2015-12-18 15:11:29 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2015-12-18 15:11:29 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2015-12-18 15:11:29 ----A---- C:\Windows\SYSWOW64\jscript.dll
2015-12-18 15:11:29 ----A---- C:\Windows\SYSWOW64\inetcomm.dll
2015-12-18 15:11:29 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2015-12-18 15:11:29 ----A---- C:\Windows\system32\vbscript.dll
2015-12-18 15:11:29 ----A---- C:\Windows\system32\jscript9.dll
2015-12-18 15:11:29 ----A---- C:\Windows\system32\jscript.dll
2015-12-18 15:11:29 ----A---- C:\Windows\system32\inetcomm.dll
2015-12-18 15:11:29 ----A---- C:\Windows\system32\ieapfltr.dll
2015-12-18 15:11:28 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2015-12-18 15:11:28 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2015-12-18 15:11:28 ----A---- C:\Windows\system32\wininet.dll
2015-12-18 15:11:28 ----A---- C:\Windows\system32\mshtml.dll
2015-12-18 15:11:28 ----A---- C:\Windows\system32\iertutil.dll
2015-12-18 15:11:27 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2015-12-18 15:11:27 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2015-12-18 15:11:27 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2015-12-18 15:11:27 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2015-12-18 15:11:27 ----A---- C:\Windows\SYSWOW64\ieui.dll
2015-12-18 15:11:27 ----A---- C:\Windows\SYSWOW64\iepeers.dll
2015-12-18 15:11:27 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2015-12-18 15:11:27 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2015-12-18 15:11:27 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2015-12-18 15:11:27 ----A---- C:\Windows\SYSWOW64\actxprxy.dll
2015-12-18 15:11:27 ----A---- C:\Windows\system32\webcheck.dll
2015-12-18 15:11:27 ----A---- C:\Windows\system32\urlmon.dll
2015-12-18 15:11:27 ----A---- C:\Windows\system32\mshtmled.dll
2015-12-18 15:11:27 ----A---- C:\Windows\system32\msfeeds.dll
2015-12-18 15:11:27 ----A---- C:\Windows\system32\ieui.dll
2015-12-18 15:11:27 ----A---- C:\Windows\system32\iepeers.dll
2015-12-18 15:11:27 ----A---- C:\Windows\system32\ieframe.dll
2015-12-18 15:11:27 ----A---- C:\Windows\system32\iedkcs32.dll
2015-12-18 15:11:27 ----A---- C:\Windows\system32\ie4uinit.exe
2015-12-18 15:11:27 ----A---- C:\Windows\system32\dxtrans.dll
2015-12-18 15:11:27 ----A---- C:\Windows\system32\actxprxy.dll
2015-12-18 15:11:26 ----A---- C:\Windows\SYSWOW64\msctf.dll
2015-12-18 15:11:26 ----A---- C:\Windows\system32\msctf.dll
2015-12-18 15:11:11 ----A---- C:\Windows\SYSWOW64\PCPKsp.dll
2015-12-18 15:11:11 ----A---- C:\Windows\system32\PCPKsp.dll
2015-12-18 15:11:11 ----A---- C:\Windows\system32\invagent.dll
2015-12-18 15:11:11 ----A---- C:\Windows\system32\generaltel.dll
2015-12-18 15:11:11 ----A---- C:\Windows\system32\devinv.dll
2015-12-18 15:11:11 ----A---- C:\Windows\system32\appraiser.dll
2015-12-18 15:11:11 ----A---- C:\Windows\system32\aeinv.dll
2015-12-18 15:11:10 ----A---- C:\Windows\system32\drivers\usbuhci.sys
2015-12-18 15:11:10 ----A---- C:\Windows\system32\drivers\usbport.sys
2015-12-18 15:11:10 ----A---- C:\Windows\system32\drivers\usbohci.sys
2015-12-18 15:11:10 ----A---- C:\Windows\system32\drivers\USBHUB3.SYS
2015-12-18 15:11:10 ----A---- C:\Windows\system32\drivers\usbhub.sys
2015-12-18 15:11:10 ----A---- C:\Windows\system32\drivers\usbehci.sys
2015-12-18 15:11:10 ----A---- C:\Windows\system32\drivers\usbd.sys
2015-12-18 15:11:10 ----A---- C:\Windows\system32\CompatTelRunner.exe
2015-12-18 15:11:10 ----A---- C:\Windows\system32\acmigration.dll
2015-12-18 15:11:09 ----A---- C:\Windows\system32\winlogon.exe
2015-12-18 15:11:09 ----A---- C:\Windows\system32\wininit.exe
2015-12-18 15:11:01 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2015-12-18 15:11:01 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2015-12-18 15:11:01 ----A---- C:\Windows\SYSWOW64\comsvcs.dll
2015-12-18 15:11:01 ----A---- C:\Windows\SYSWOW64\catsrvut.dll
2015-12-18 15:11:01 ----A---- C:\Windows\system32\winresume.exe
2015-12-18 15:11:01 ----A---- C:\Windows\system32\winload.exe
2015-12-18 15:11:01 ----A---- C:\Windows\system32\win32k.sys
2015-12-18 15:11:01 ----A---- C:\Windows\system32\user32.dll
2015-12-18 15:11:01 ----A---- C:\Windows\system32\ntvdm64.dll
2015-12-18 15:11:01 ----A---- C:\Windows\system32\ntoskrnl.exe
2015-12-18 15:11:01 ----A---- C:\Windows\system32\ntdll.dll
2015-12-18 15:11:01 ----A---- C:\Windows\system32\FntCache.dll
2015-12-18 15:11:01 ----A---- C:\Windows\system32\DWrite.dll
2015-12-18 15:11:01 ----A---- C:\Windows\system32\drivers\rmcast.sys
2015-12-18 15:11:01 ----A---- C:\Windows\system32\comsvcs.dll
2015-12-18 15:11:01 ----A---- C:\Windows\system32\catsrvut.dll
2015-12-18 15:11:00 ----A---- C:\Windows\SYSWOW64\user32.dll
2015-12-18 15:11:00 ----A---- C:\Windows\SYSWOW64\GdiPlus.dll
2015-12-18 15:11:00 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2015-12-18 15:11:00 ----A---- C:\Windows\system32\GdiPlus.dll
2015-12-18 15:10:47 ----A---- C:\Windows\SYSWOW64\authui.dll
2015-12-18 15:10:47 ----A---- C:\Windows\system32\wuaueng.dll
2015-12-18 15:10:47 ----A---- C:\Windows\system32\authui.dll
2015-12-18 15:10:46 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2015-12-18 15:10:46 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2015-12-18 15:10:46 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2015-12-18 15:10:46 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2015-12-18 15:10:46 ----A---- C:\Windows\system32\wuwebv.dll
2015-12-18 15:10:46 ----A---- C:\Windows\system32\WUSettingsProvider.dll
2015-12-18 15:10:46 ----A---- C:\Windows\system32\wups2.dll
2015-12-18 15:10:46 ----A---- C:\Windows\system32\wudriver.dll
2015-12-18 15:10:46 ----A---- C:\Windows\system32\wucltux.dll
2015-12-18 15:10:46 ----A---- C:\Windows\system32\wuauclt.exe
2015-12-18 15:10:46 ----A---- C:\Windows\system32\wuapp.exe
2015-12-18 15:10:46 ----A---- C:\Windows\system32\wuapi.dll
2015-12-18 14:46:34 ----D---- C:\Users\Jury\AppData\Roaming\KYE Imperator
2015-12-05 22:01:37 ----D---- C:\Users\Jury\AppData\Roaming\Skype
2015-12-05 22:01:34 ----D---- C:\Program Files (x86)\Skype
2015-12-02 14:56:30 ----A---- C:\Windows\SYSWOW64\nvStreaming.exe
2015-12-02 14:55:36 ----A---- C:\Windows\SYSWOW64\nvumdshim.dll
2015-12-02 14:55:36 ----A---- C:\Windows\SYSWOW64\nvopencl.dll
2015-12-02 14:55:36 ----A---- C:\Windows\SYSWOW64\nvoglv32.dll
2015-12-02 14:55:36 ----A---- C:\Windows\SYSWOW64\nvoglshim32.dll
2015-12-02 14:55:36 ----A---- C:\Windows\SYSWOW64\nvinit.dll
2015-12-02 14:55:36 ----A---- C:\Windows\SYSWOW64\NvIFROpenGL.dll
2015-12-02 14:55:36 ----A---- C:\Windows\SYSWOW64\NvIFR.dll
2015-12-02 14:55:36 ----A---- C:\Windows\SYSWOW64\NvFBC.dll
2015-12-02 14:55:36 ----A---- C:\Windows\SYSWOW64\nvEncodeAPI.dll
2015-12-02 14:55:36 ----A---- C:\Windows\system32\nvumdshimx.dll
2015-12-02 14:55:36 ----A---- C:\Windows\system32\nvopencl.dll
2015-12-02 14:55:36 ----A---- C:\Windows\system32\nvoglv64.dll
2015-12-02 14:55:36 ----A---- C:\Windows\system32\nvoglshim64.dll
2015-12-02 14:55:36 ----A---- C:\Windows\system32\nvmcumd.dll
2015-12-02 14:55:36 ----A---- C:\Windows\system32\nvinitx.dll
2015-12-02 14:55:36 ----A---- C:\Windows\system32\NvIFROpenGL.dll
2015-12-02 14:55:36 ----A---- C:\Windows\system32\NvIFR64.dll
2015-12-02 14:55:36 ----A---- C:\Windows\system32\NvFBC64.dll
2015-12-02 14:55:36 ----A---- C:\Windows\system32\nvEncodeAPI64.dll
2015-12-02 14:55:36 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2015-12-02 14:55:35 ----A---- C:\Windows\SYSWOW64\nvcuvid.dll
2015-12-02 14:55:35 ----A---- C:\Windows\SYSWOW64\nvcuda.dll
2015-12-02 14:55:35 ----A---- C:\Windows\SYSWOW64\nvcompiler.dll
2015-12-02 14:55:35 ----A---- C:\Windows\system32\nvdispgenco6435906.dll
2015-12-02 14:55:35 ----A---- C:\Windows\system32\nvdispco6435906.dll
2015-12-02 14:55:35 ----A---- C:\Windows\system32\nvcuvid.dll
2015-12-02 14:55:35 ----A---- C:\Windows\system32\nvcuda.dll
2015-12-02 14:55:35 ----A---- C:\Windows\system32\nvcompiler.dll
2015-12-02 14:55:35 ----A---- C:\Windows\system32\nvaudcaparm.dll
2015-12-02 14:55:35 ----A---- C:\Windows\system32\drivers\nvvadarm.sys
2015-11-24 15:48:28 ----D---- C:\ProgramData\EA Core
2015-11-24 15:48:27 ----D---- C:\ProgramData\EA Logs
2015-11-24 15:06:31 ----A---- C:\Windows\SYSWOW64\XAudio2_7.dll
2015-11-24 15:06:31 ----A---- C:\Windows\SYSWOW64\D3DX9_43.dll
2015-11-24 15:06:30 ----A---- C:\Windows\SYSWOW64\X3DAudio1_7.dll
2015-11-24 15:06:24 ----A---- C:\Windows\SYSWOW64\xinput1_3.dll
2015-11-23 11:05:13 ----D---- C:\Program Files (x86)\MJPEG decoder
2015-11-22 22:13:05 ----D---- C:\Users\Jury\AppData\Roaming\Screaming Bee
2015-11-22 22:13:05 ----D---- C:\ProgramData\Screaming Bee
2015-11-21 14:17:33 ----D---- C:\Program Files (x86)\Adobe Media Player
2015-11-21 12:48:30 ----A---- C:\Windows\system32\nvdispgenco6435900.dll
2015-11-21 12:48:30 ----A---- C:\Windows\system32\nvdispco6435900.dll
======List of files/folders modified in the last 1 month======
2015-12-19 14:13:04 ----D---- C:\Users\Jury\AppData\Roaming\ClassicShell
2015-12-19 14:12:33 ----D---- C:\Program Files (x86)\Steam
2015-12-19 14:12:07 ----D---- C:\ProgramData\NVIDIA
2015-12-19 14:11:35 ----D---- C:\Windows\Temp
2015-12-19 14:11:35 ----D---- C:\Windows
2015-12-19 14:08:34 ----D---- C:\Windows\Prefetch
2015-12-19 14:00:00 ----D---- C:\Windows\system32\sru
2015-12-19 07:00:26 ----D---- C:\Windows\Inf
2015-12-19 06:58:15 ----RSD---- C:\Windows\assembly
2015-12-19 06:58:15 ----D---- C:\Windows\Microsoft.NET
2015-12-18 21:10:26 ----D---- C:\Windows\SoftwareDistribution
2015-12-18 21:09:13 ----RD---- C:\Windows\System32
2015-12-18 21:09:13 ----A---- C:\Windows\system32\PerfStringBackup.INI
2015-12-18 20:52:10 ----RD---- C:\Program Files (x86)
2015-12-18 20:51:33 ----D---- C:\Users\Jury\AppData\Roaming\TS3Client
2015-12-18 16:09:12 ----D---- C:\Windows\system32\drivers
2015-12-18 15:59:45 ----RD---- C:\Program Files
2015-12-18 15:41:06 ----D---- C:\Windows\SysWOW64
2015-12-18 15:35:28 ----D---- C:\Windows\system32\DriverStore
2015-12-18 15:30:20 ----D---- C:\Windows\system32\catroot
2015-12-18 15:27:19 ----SHD---- C:\Windows\Installer
2015-12-18 15:27:19 ----D---- C:\ProgramData\Package Cache
2015-12-18 15:19:18 ----D---- C:\ProgramData\NVIDIA Corporation
2015-12-18 15:18:28 ----D---- C:\Windows\system32\config
2015-12-18 15:18:27 ----D---- C:\Windows\WinSxS
2015-12-18 15:17:04 ----SD---- C:\Windows\SYSWOW64\GWX
2015-12-18 15:17:04 ----SD---- C:\Windows\system32\GWX
2015-12-18 15:17:04 ----D---- C:\Windows\SYSWOW64\cs-CZ
2015-12-18 15:17:04 ----D---- C:\Windows\system32\cs-CZ
2015-12-18 15:17:04 ----D---- C:\Windows\apppatch
2015-12-18 15:17:04 ----D---- C:\Program Files\Internet Explorer
2015-12-18 15:17:04 ----D---- C:\Program Files (x86)\Internet Explorer
2015-12-18 15:17:03 ----RSD---- C:\Windows\Fonts
2015-12-18 15:17:03 ----D---- C:\Windows\system32\Boot
2015-12-18 15:14:45 ----D---- C:\Windows\CbsTemp
2015-12-18 15:14:15 ----D---- C:\Users\Jury\AppData\Roaming\BitTorrent
2015-12-18 15:14:13 ----D---- C:\Windows\debug
2015-12-18 15:13:21 ----D---- C:\Windows\system32\MRT
2015-12-18 15:12:04 ----A---- C:\Windows\system32\MRT.exe
2015-12-18 15:11:42 ----SD---- C:\Windows\system32\CompatTel
2015-12-18 15:11:42 ----D---- C:\Windows\system32\appraiser
2015-12-18 15:10:57 ----D---- C:\Windows\system32\catroot2
2015-12-18 15:02:23 ----D---- C:\Windows\system32\wdi
2015-12-18 15:00:10 ----D---- C:\Windows\system32\wbem
2015-12-18 14:59:53 ----RSD---- C:\Windows\Media
2015-12-18 14:59:53 ----D---- C:\Windows\Tasks
2015-12-18 14:59:53 ----D---- C:\Windows\SYSWOW64\wbem
2015-12-18 14:59:53 ----D---- C:\Windows\SYSWOW64\migration
2015-12-18 14:59:53 ----D---- C:\Windows\system32\Tasks
2015-12-18 14:59:53 ----D---- C:\Windows\system32\Sysprep
2015-12-18 14:59:53 ----D---- C:\Windows\system32\migration
2015-12-18 14:59:53 ----D---- C:\Windows\system32\CodeIntegrity
2015-12-18 14:59:53 ----D---- C:\Windows\rescache
2015-12-18 14:59:53 ----D---- C:\Windows\PolicyDefinitions
2015-12-18 14:59:52 ----D---- C:\Windows\AppCompat
2015-12-18 14:59:52 ----D---- C:\Users\Jury\AppData\Roaming\vlc
2015-12-18 14:59:52 ----D---- C:\ProgramData\Spybot - Search & Destroy
2015-12-18 14:59:52 ----D---- C:\Program Files\Common Files\microsoft shared
2015-12-18 14:59:52 ----D---- C:\Program Files (x86)\Common Files
2015-12-18 14:59:46 ----HD---- C:\Program Files\WindowsApps
2015-12-18 14:59:36 ----D---- C:\Windows\registration
2015-12-18 14:59:26 ----HD---- C:\ProgramData
2015-12-18 14:58:52 ----SHD---- C:\System Volume Information
2015-12-10 12:01:30 ----D---- C:\ProgramData\GFACE
2015-12-09 02:51:39 ----A---- C:\Windows\SYSWOW64\nvspcap.dll
2015-12-09 02:51:39 ----A---- C:\Windows\SYSWOW64\nvspbridge.dll
2015-12-09 02:51:20 ----A---- C:\Windows\system32\nvspcap64.dll
2015-12-09 02:51:19 ----A---- C:\Windows\system32\nvspbridge64.dll
2015-12-06 12:29:12 ----D---- C:\Windows\AppReadiness
2015-12-01 18:19:27 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2015-11-27 18:05:35 ----D---- C:\Windows\Logs
2015-11-25 15:56:46 ----D---- C:\Users\Jury\AppData\Roaming\OBS
2015-11-25 15:52:59 ----D---- C:\Program Files (x86)\OBS
2015-11-25 00:10:29 ----A---- C:\Windows\SYSWOW64\nvwgf2um.dll
2015-11-25 00:10:29 ----A---- C:\Windows\SYSWOW64\nvd3dum.dll
2015-11-25 00:10:29 ----A---- C:\Windows\SYSWOW64\nvapi.dll
2015-11-25 00:10:29 ----A---- C:\Windows\system32\nvwgf2umx.dll
2015-11-25 00:10:29 ----A---- C:\Windows\system32\nvmcvadgenco64.dll
2015-11-25 00:10:29 ----A---- C:\Windows\system32\nvd3dumx.dll
2015-11-25 00:10:29 ----A---- C:\Windows\system32\nvapi64.dll
2015-11-24 19:40:40 ----A---- C:\Windows\system32\nvsvc64.dll
2015-11-24 19:40:40 ----A---- C:\Windows\system32\nvcpl.dll
2015-11-24 19:40:37 ----A---- C:\Windows\system32\nvvsvc.exe
2015-11-24 19:40:37 ----A---- C:\Windows\system32\nvsvcr.dll
2015-11-24 19:40:37 ----A---- C:\Windows\system32\nvshext.dll
2015-11-24 19:40:37 ----A---- C:\Windows\system32\nvmctray.dll
2015-11-24 18:37:37 ----D---- C:\ProgramData\Origin
2015-11-24 15:55:22 ----A---- C:\Windows\SYSWOW64\PnkBstrA.exe
2015-11-24 15:55:15 ----A---- C:\Windows\SYSWOW64\PnkBstrB.exe
2015-11-24 15:38:33 ----D---- C:\Program Files (x86)\Origin Games
2015-11-24 14:12:48 ----D---- C:\Program Files (x86)\Origin
2015-11-21 14:46:07 ----D---- C:\ProgramData\regid.1986-12.com.adobe
2015-11-21 14:18:39 ----D---- C:\Program Files\Common Files\Adobe
2015-11-21 14:18:27 ----D---- C:\Users\Jury\AppData\Roaming\Adobe
2015-11-21 14:17:41 ----D---- C:\ProgramData\Adobe
2015-11-21 14:17:07 ----D---- C:\Program Files (x86)\Adobe
2015-11-21 12:47:40 ----D---- C:\ProgramData\Oracle
2015-11-21 12:47:36 ----D---- C:\Program Files (x86)\Java
2015-11-21 12:47:04 ----A---- C:\Windows\SYSWOW64\WindowsAccessBridge-32.dll
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 edevmon;edevmon; C:\Windows\system32\DRIVERS\edevmon.sys [2015-07-14 251632]
R0 iaStorA;iaStorA; C:\Windows\System32\drivers\iaStorA.sys [2014-04-11 645480]
R0 mvs91xx;mvs91xx; C:\Windows\System32\drivers\mvs91xx.sys [2013-09-06 327464]
R1 BfLwf;@oem19.inf,%BfLwf_Desc%;Qualcomm Atheros Bandwidth Control; C:\Windows\system32\DRIVERS\bwcW8x64.sys [2013-02-13 75056]
R1 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys [2015-07-14 255240]
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2015-07-14 178520]
R2 epfwwfpr;epfwwfpr; C:\Windows\system32\DRIVERS\epfwwfpr.sys [2015-07-14 168208]
R3 e1dexpress;@oem9.inf,%e1dExpress.Service.DispName%;Intel(R) PRO/1000 PCI Express Network Connection Driver D; C:\Windows\system32\DRIVERS\e1d64x64.sys [2013-08-29 468240]
R3 etocdrv;etocdrv; \??\C:\Windows\etocdrv.sys [2013-10-31 15584]
R3 gdrv;gdrv; \??\C:\Windows\gdrv.sys [2015-12-19 26192]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2015-08-09 4928256]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2014-03-14 3896920]
R3 IntcDAud;@oem3.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\Windows\system32\DRIVERS\IntcDAud.sys [2014-03-31 450520]
R3 iwdbus;@oem6.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\Windows\System32\drivers\iwdbus.sys [2015-05-26 30512]
R3 Ke2200;@oem18.inf,%L1C.Service.DispName%;NDIS Miniport Driver for the Killer e2200 Gigabit Ethernet Controller; C:\Windows\system32\DRIVERS\e22w8x64.sys [2013-03-20 163536]
R3 KYEKBPRO;@oem36.inf,%KYEKBPRO.SvcDesc%;IMPERATOR PRO Gaming Keyboard; C:\Windows\system32\drivers\KYEKBPRO.sys [2011-10-14 25600]
R3 MEIx64;@oem48.inf,%TEE_SvcDesc%;Intel(R) Management Engine Interface ; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [2014-09-30 129312]
R3 NVHDA;@oem58.inf,%NVHDA.SvcDesc%;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda64v.sys [2015-11-05 205456]
R3 nvlddmkm;nvlddmkm; C:\Windows\system32\DRIVERS\nvlddmkm.sys [2015-11-25 11131184]
R3 NvStreamKms;NvStreamKms; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2015-12-09 19576]
R3 nvvad_WaveExtensible;@oem44.inf,%nvvad_WaveExtensible.SvcDesc%;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\Windows\system32\drivers\nvvad64v.sys [2015-08-11 50472]
R3 NVVADARM;@oem62.inf,%NVVADARM.SvcDesc%;NVIDIA Miracast Audio; C:\Windows\system32\drivers\nvvadarm.sys [2015-11-25 39032]
S3 AIDA64Driver;FinalWire AIDA64 Kernel Driver; \??\C:\Program Files (x86)\FinalWire\AIDA64 Extreme\kerneld.x64 [2014-12-08 34136]
S3 dtultrascsibus;@oem37.inf,%DTULTRASCSIBUS.DeviceDesc%;DAEMON Tools Ultra Virtual SCSI Bus; C:\Windows\System32\drivers\dtultrascsibus.sys [2015-07-15 30264]
S3 dtultrausbbus;@oem38.inf,%DTULTRAUSBBUS.DeviceDesc%;DAEMON Tools Ultra Virtual USB Bus; C:\Windows\System32\drivers\dtultrausbbus.sys [2015-07-15 47160]
S3 e1iexpress;@net1ic64.inf,%e1iExpress.Service.DispName%;Intel(R) PRO/1000 - ovladač I pro síťová připojení PCI Express; C:\Windows\system32\DRIVERS\e1i63x64.sys [2013-06-18 460288]
S3 intaud_WaveExtensible;@oem5.inf,%INTAUD_WEX.SvcDesc%;Intel WiDi Audio Device; C:\Windows\system32\drivers\intelaud.sys [2015-05-26 42288]
S3 ScreamBAudioSvc;@oem61.inf,%sbee_audio.SvcDesc%;ScreamBee Audio; C:\Windows\system32\drivers\ScreamingBAudio64.sys [2014-02-07 38992]
S3 usbaudio;@wdma_usb.inf,%USBAudio.SvcDesc%;Ovladač zvuků USB (WDM); C:\Windows\system32\drivers\usbaudio.sys [2013-12-13 121088]
S3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;Zobrazovací zařízení USB (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2014-06-21 212736]
S3 WDC_SAM;@oem33.inf,%WDC_SAM_ServiceName%;WD SCSI Pass Thru driver; C:\Windows\System32\drivers\wdcsam64.sys [2015-04-29 23200]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2015-10-28 82128]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2014-10-29 38792]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe [2015-07-08 1353720]
R2 gadjservice;GIGABYTE Adjust; C:\Program Files (x86)\Gigabyte\AppCenter\AdjustService.exe [2015-04-14 16896]
R2 GfExperienceService;NVIDIA GeForce Experience Service; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [2015-12-09 1156216]
R2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\Windows\system32\igfxCUIService.exe [2015-08-09 355232]
R2 Intel(R) PROSet Monitoring Service;Intel(R) PROSet Monitoring Service; C:\Windows\system32\IProsetMonitor.exe [2013-11-01 241416]
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2015-12-09 1872504]
R2 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [2015-12-09 6477432]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2015-11-24 938616]
R2 PnkBstrA;PnkBstrA; C:\Windows\syswow64\PnkBstrA.exe [2015-11-24 76152]
R2 Qualcomm Atheros Killer Service V2;Qualcomm Atheros Killer Service V2; C:\Program Files\Qualcomm Atheros\Network Manager\KillerService.exe [2013-08-08 343040]
R2 SBSDWSCService;SBSD Security Center Service; C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe [2009-01-26 1153368]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2015-11-24 417584]
R3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696]
R3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2014-02-18 171480]
R3 NvStreamNetworkSvc;NVIDIA Streamer Network Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [2015-12-09 8185464]
R3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2015-12-14 836176]
S2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2014-04-11 16232]
S2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2014-03-20 154584]
S2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2014-03-20 398296]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-12-18 269504]
S3 BEService;BattlEye Service; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [2015-12-02 1257504]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\Windows\System32\svchost.exe [2014-10-29 38792]
S3 cphs;Intel(R) Content Protection HECI Service; C:\Windows\SysWow64\IntelCpHeciSvc.exe [2015-08-09 288688]
S3 EasyAntiCheat;EasyAntiCheat; C:\Windows\syswow64\EasyAntiCheat.exe [2015-08-23 238376]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2014-01-31 887232]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2015-11-06 147624]
S3 Origin Client Service;Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2015-11-24 2099720]
S3 SwitchBoard;SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
-----------------EOF-----------------
Run by Jury at 2015-12-19 14:13:06
Microsoft Windows 8.1 Pro
System drive C: has 44 GB (19%) free of 228 GB
Total RAM: 16210 MB (88% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 14:13:09, on 19. 12. 2015
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.18123)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Gigabyte\AppCenter\ApCent.exe
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Users\Jury\AppData\Local\NVIDIA\NvBackend\ApplicationOntology\NvOAWrapperCache.exe
C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe
C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files (x86)\Steam\Steam.exe
C:\Program Files\Qualcomm Atheros\Network Manager\NetworkManager.exe
C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files\trend micro\Jury.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: ExplorerBHO Class - {449D0D6E-2412-4E61-B68F-1CB625CD9E52} - C:\Program Files\Classic Shell\ClassicExplorer32.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~2\SPYBOT~1\SDHelper.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_66\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_66\bin\jp2ssv.dll
O2 - BHO: ClassicIEBHO Class - {EA801577-E6AD-4BD5-8F71-4BE0154331A4} - C:\Program Files\Classic Shell\ClassicIEDLL_32.dll
O3 - Toolbar: Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer32.dll
O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O4 - HKLM\..\Run: [AdobeCS5ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\RunOnce: [EasyTune] C:\Program Files (x86)\Gigabyte\EasyTune\etro.exe
O4 - HKLM\..\RunOnce: [PreRun] C:\Program Files (x86)\Gigabyte\AppCenter\PreRun.exe
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [Steam] "C:\Program Files (x86)\Steam\steam.exe" -silent
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - Startup: Desktop.scf
O4 - Global Startup: Killer Network Manager.lnk = ?
O9 - Extra button: (no name) - {56753E59-AF1D-4FBA-9E15-31557124ADA2} - C:\Program Files\Classic Shell\ClassicIE_32.exe
O9 - Extra 'Tools' menuitem: Classic IE Settings - {56753E59-AF1D-4FBA-9E15-31557124ADA2} - C:\Program Files\Classic Shell\ClassicIE_32.exe
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~2\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~2\SPYBOT~1\SDHelper.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: *.clonewarsadventures.com
O15 - Trusted Zone: *.freerealms.com
O15 - Trusted Zone: *.soe.com
O15 - Trusted Zone: *.sony.com
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: BattlEye Service (BEService) - Unknown owner - C:\Program Files (x86)\Common Files\BattlEye\BEService.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\Windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: EasyAntiCheat - EasyAntiCheat Ltd - C:\Windows\system32\EasyAntiCheat.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: GIGABYTE Adjust (gadjservice) - Unknown owner - C:\Program Files (x86)\Gigabyte\AppCenter\AdjustService.exe
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\Windows\system32\igfxCUIService.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) PROSet Monitoring Service - Unknown owner - C:\Windows\system32\IProsetMonitor.exe (file missing)
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Network Service (NvStreamNetworkSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: Origin Client Service - Electronic Arts - C:\Program Files (x86)\Origin\OriginClientService.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: Qualcomm Atheros Killer Service V2 - Qualcomm Atheros - C:\Program Files\Qualcomm Atheros\Network Manager\KillerService.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: SBSD Security Center Service (SBSDWSCService) - Safer Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 10850 bytes
======Listing Processes======
wininit.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
winlogon.exe
"C:\Windows\system32\nvvsvc.exe"
"dwm.exe"
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\igfxCUIService.exe
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\Windows\System32\svchost.exe -k utcsvc
"C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe"
"C:\Program Files (x86)\Gigabyte\AppCenter\AdjustService.exe"
C:\Windows\Explorer.EXE
"C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe"
C:\Windows\system32\IProsetMonitor.exe
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
taskhostex.exe
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe"
C:\Windows\SysWOW64\PnkBstrA.exe
"C:\Program Files\Qualcomm Atheros\Network Manager\KillerService.exe"
"C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe"
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Gigabyte\AppCenter\ApCent.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Windows\notepad.exe" C:\_OTM\MovedFiles\12192015_141116.log
ClassicStartMenu.exe -startup
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe" serviceapp
\??\C:\Windows\system32\conhost.exe 0x4
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Users\Jury\AppData\Local\NVIDIA\NvBackend\ApplicationOntology\NvOAWrapperCache.exe"
"C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe"
"C:\Windows\system32\GWX\GWX.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe" "C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" 60
"C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
"C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe"
"C:\Program Files\NVIDIA Corporation\ShadowPlay\nvspcaps64.exe" -Embedding
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe1_ Global\UsGthrCtrlFltPipeMssGthrPipe1 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 560 564 572 65536 568
"C:\Program Files (x86)\Steam\Steam.exe" -silent
"C:\Program Files\Qualcomm Atheros\Network Manager\NetworkManager.exe" -minimize
"C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac
"C:\Program Files (x86)\Steam\bin\steamwebhelper.exe" -cachedir="C:\Users\Jury\AppData\Local\Steam\htmlcache" -steampid=4976 -buildid=1450127196 -steamid="0" --disable-gpu-compositing --disable-gpu --process-per-tab --enable-system-flash --disable-spell-checking --enable-widevine-cdm --enable-direct-write
"C:\Program Files (x86)\Common Files\Steam\SteamService.exe" /RunAsService
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
"C:\Users\Jury\Downloads\RSITx64.exe"
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
=========Mozilla firefox=========
ProfilePath - C:\Users\Jury\AppData\Roaming\Mozilla\Firefox\Profiles\j7z66b47.default
prefs.js - "browser.startup.homepage" - "https://www.seznam.cz/"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 20.0.0.235 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_20_0_0_235.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@esn/npbattlelog,version=2.7.1]
"Description"=
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\2.7.1\npbattlelog.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5]
"Description"=Intel IPT WebApi plugin
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater]
"Description"=This plugin updates Intel WebAPI component
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=11.66.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre1.8.0_66\bin\dtplugin\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=11.66.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre1.8.0_66\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVision]
"Description"=NVIDIA stereo images plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVisionStreaming]
"Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.1]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 20.0.0.235 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_20_0_0_235.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@esn/npbattlelog,version=2.7.1]
"Description"=
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\2.7.1\npbattlelogx64.dll
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{449D0D6E-2412-4E61-B68F-1CB625CD9E52}]
ExplorerBHO Class - C:\Program Files\Classic Shell\ClassicExplorer64.dll [2014-04-20 803520]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EA801577-E6AD-4BD5-8F71-4BE0154331A4}]
ClassicIEBHO Class - C:\Program Files\Classic Shell\ClassicIEDLL_64.dll [2014-04-20 483520]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{449D0D6E-2412-4E61-B68F-1CB625CD9E52}]
ExplorerBHO Class - C:\Program Files\Classic Shell\ClassicExplorer32.dll [2014-04-20 683200]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{53707962-6F74-2D53-2644-206D7942484F}]
Spybot-S&D IE Protection - C:\PROGRA~2\SPYBOT~1\SDHelper.dll [2009-01-26 1879896]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_66\bin\ssv.dll [2015-11-21 460384]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_66\bin\jp2ssv.dll [2015-11-21 172640]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EA801577-E6AD-4BD5-8F71-4BE0154331A4}]
ClassicIEBHO Class - C:\Program Files\Classic Shell\ClassicIEDLL_32.dll [2014-04-20 440512]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{553891B7-A0D5-4526-BE18-D3CE461D6310} - Classic Explorer Bar - C:\Program Files\Classic Shell\ClassicExplorer64.dll [2014-04-20 803520]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{553891B7-A0D5-4526-BE18-D3CE461D6310} - Classic Explorer Bar - C:\Program Files\Classic Shell\ClassicExplorer32.dll [2014-04-20 683200]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Classic Start Menu"=C:\Program Files\Classic Shell\ClassicStartMenu.exe [2014-04-20 161984]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2014-03-14 13671792]
"IAStorIcon"=C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe [2014-04-11 36352]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2015-12-09 2771576]
"ShadowPlay"=C:\Windows\system32\nvspcap64.dll [2015-12-09 1846016]
"egui"=C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [2015-07-08 5595848]
"AdobeAAMUpdater-1.0"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2010-03-06 500208]
"Logitech Download Assistant"=C:\Windows\System32\LogiLDA.dll [2012-09-20 3933496]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"SpybotSD TeaTimer"=C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe [2009-03-05 2260480]
"Steam"=C:\Program Files (x86)\Steam\steam.exe [2015-12-14 3013712]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2015-09-16 8461224]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"SwitchBoard"=C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
"AdobeCS5ServiceManager"=C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe [2010-02-22 406992]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\RunOnce]
"EasyTune"=C:\Program Files (x86)\Gigabyte\EasyTune\etro.exe [2014-08-18 5632]
"PreRun"=C:\Program Files (x86)\Gigabyte\AppCenter\PreRun.exe [2013-04-29 8192]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Killer Network Manager.lnk - C:\Windows\Installer\{401FADAA-1C16-4721-9F02-19067E1A1CA8}\NetworkManager.exe_130C27D738F34C89BDDF21BCFD74B56D.exe
C:\Users\Jury\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Desktop.scf
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux2"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave6"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer6"=wdmaud.drv
"aux1"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2015-12-19 14:11:16 ----D---- C:\_OTM
2015-12-18 20:51:38 ----D---- C:\AdwCleaner
2015-12-18 15:59:45 ----D---- C:\rsit
2015-12-18 15:59:45 ----D---- C:\Program Files\trend micro
2015-12-18 15:31:27 ----D---- C:\Users\Jury\AppData\Roaming\KYE ImperatorPro
2015-12-18 15:30:19 ----A---- C:\Windows\unins000.exe
2015-12-18 15:30:19 ----A---- C:\Windows\unins000.dat
2015-12-18 15:27:18 ----SHD---- C:\Config.Msi
2015-12-18 15:19:24 ----A---- C:\Windows\system32\NvRtmpStreamer64.dll
2015-12-18 15:11:38 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2015-12-18 15:11:38 ----A---- C:\Windows\system32\gdi32.dll
2015-12-18 15:11:38 ----A---- C:\Windows\system32\drivers\tunnel.sys
2015-12-18 15:11:38 ----A---- C:\Windows\system32\drivers\tpm.sys
2015-12-18 15:11:32 ----A---- C:\Windows\system32\dpapisrv.dll
2015-12-18 15:11:31 ----A---- C:\Windows\SYSWOW64\Windows.Globalization.dll
2015-12-18 15:11:31 ----A---- C:\Windows\SYSWOW64\kbdgeoqw.dll
2015-12-18 15:11:31 ----A---- C:\Windows\SYSWOW64\KBDAZST.DLL
2015-12-18 15:11:31 ----A---- C:\Windows\SYSWOW64\KBDAZEL.DLL
2015-12-18 15:11:31 ----A---- C:\Windows\SYSWOW64\KBDAZE.DLL
2015-12-18 15:11:31 ----A---- C:\Windows\SYSWOW64\GlobCollationHost.dll
2015-12-18 15:11:31 ----A---- C:\Windows\system32\Windows.Globalization.dll
2015-12-18 15:11:31 ----A---- C:\Windows\system32\kbdgeoqw.dll
2015-12-18 15:11:31 ----A---- C:\Windows\system32\KBDAZST.DLL
2015-12-18 15:11:31 ----A---- C:\Windows\system32\KBDAZEL.DLL
2015-12-18 15:11:31 ----A---- C:\Windows\system32\KBDAZE.DLL
2015-12-18 15:11:31 ----A---- C:\Windows\system32\GlobCollationHost.dll
2015-12-18 15:11:31 ----A---- C:\Windows\system32\AuthHost.exe
2015-12-18 15:11:29 ----A---- C:\Windows\SYSWOW64\wininet.dll
2015-12-18 15:11:29 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2015-12-18 15:11:29 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2015-12-18 15:11:29 ----A---- C:\Windows\SYSWOW64\jscript.dll
2015-12-18 15:11:29 ----A---- C:\Windows\SYSWOW64\inetcomm.dll
2015-12-18 15:11:29 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2015-12-18 15:11:29 ----A---- C:\Windows\system32\vbscript.dll
2015-12-18 15:11:29 ----A---- C:\Windows\system32\jscript9.dll
2015-12-18 15:11:29 ----A---- C:\Windows\system32\jscript.dll
2015-12-18 15:11:29 ----A---- C:\Windows\system32\inetcomm.dll
2015-12-18 15:11:29 ----A---- C:\Windows\system32\ieapfltr.dll
2015-12-18 15:11:28 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2015-12-18 15:11:28 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2015-12-18 15:11:28 ----A---- C:\Windows\system32\wininet.dll
2015-12-18 15:11:28 ----A---- C:\Windows\system32\mshtml.dll
2015-12-18 15:11:28 ----A---- C:\Windows\system32\iertutil.dll
2015-12-18 15:11:27 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2015-12-18 15:11:27 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2015-12-18 15:11:27 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2015-12-18 15:11:27 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2015-12-18 15:11:27 ----A---- C:\Windows\SYSWOW64\ieui.dll
2015-12-18 15:11:27 ----A---- C:\Windows\SYSWOW64\iepeers.dll
2015-12-18 15:11:27 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2015-12-18 15:11:27 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2015-12-18 15:11:27 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2015-12-18 15:11:27 ----A---- C:\Windows\SYSWOW64\actxprxy.dll
2015-12-18 15:11:27 ----A---- C:\Windows\system32\webcheck.dll
2015-12-18 15:11:27 ----A---- C:\Windows\system32\urlmon.dll
2015-12-18 15:11:27 ----A---- C:\Windows\system32\mshtmled.dll
2015-12-18 15:11:27 ----A---- C:\Windows\system32\msfeeds.dll
2015-12-18 15:11:27 ----A---- C:\Windows\system32\ieui.dll
2015-12-18 15:11:27 ----A---- C:\Windows\system32\iepeers.dll
2015-12-18 15:11:27 ----A---- C:\Windows\system32\ieframe.dll
2015-12-18 15:11:27 ----A---- C:\Windows\system32\iedkcs32.dll
2015-12-18 15:11:27 ----A---- C:\Windows\system32\ie4uinit.exe
2015-12-18 15:11:27 ----A---- C:\Windows\system32\dxtrans.dll
2015-12-18 15:11:27 ----A---- C:\Windows\system32\actxprxy.dll
2015-12-18 15:11:26 ----A---- C:\Windows\SYSWOW64\msctf.dll
2015-12-18 15:11:26 ----A---- C:\Windows\system32\msctf.dll
2015-12-18 15:11:11 ----A---- C:\Windows\SYSWOW64\PCPKsp.dll
2015-12-18 15:11:11 ----A---- C:\Windows\system32\PCPKsp.dll
2015-12-18 15:11:11 ----A---- C:\Windows\system32\invagent.dll
2015-12-18 15:11:11 ----A---- C:\Windows\system32\generaltel.dll
2015-12-18 15:11:11 ----A---- C:\Windows\system32\devinv.dll
2015-12-18 15:11:11 ----A---- C:\Windows\system32\appraiser.dll
2015-12-18 15:11:11 ----A---- C:\Windows\system32\aeinv.dll
2015-12-18 15:11:10 ----A---- C:\Windows\system32\drivers\usbuhci.sys
2015-12-18 15:11:10 ----A---- C:\Windows\system32\drivers\usbport.sys
2015-12-18 15:11:10 ----A---- C:\Windows\system32\drivers\usbohci.sys
2015-12-18 15:11:10 ----A---- C:\Windows\system32\drivers\USBHUB3.SYS
2015-12-18 15:11:10 ----A---- C:\Windows\system32\drivers\usbhub.sys
2015-12-18 15:11:10 ----A---- C:\Windows\system32\drivers\usbehci.sys
2015-12-18 15:11:10 ----A---- C:\Windows\system32\drivers\usbd.sys
2015-12-18 15:11:10 ----A---- C:\Windows\system32\CompatTelRunner.exe
2015-12-18 15:11:10 ----A---- C:\Windows\system32\acmigration.dll
2015-12-18 15:11:09 ----A---- C:\Windows\system32\winlogon.exe
2015-12-18 15:11:09 ----A---- C:\Windows\system32\wininit.exe
2015-12-18 15:11:01 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2015-12-18 15:11:01 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2015-12-18 15:11:01 ----A---- C:\Windows\SYSWOW64\comsvcs.dll
2015-12-18 15:11:01 ----A---- C:\Windows\SYSWOW64\catsrvut.dll
2015-12-18 15:11:01 ----A---- C:\Windows\system32\winresume.exe
2015-12-18 15:11:01 ----A---- C:\Windows\system32\winload.exe
2015-12-18 15:11:01 ----A---- C:\Windows\system32\win32k.sys
2015-12-18 15:11:01 ----A---- C:\Windows\system32\user32.dll
2015-12-18 15:11:01 ----A---- C:\Windows\system32\ntvdm64.dll
2015-12-18 15:11:01 ----A---- C:\Windows\system32\ntoskrnl.exe
2015-12-18 15:11:01 ----A---- C:\Windows\system32\ntdll.dll
2015-12-18 15:11:01 ----A---- C:\Windows\system32\FntCache.dll
2015-12-18 15:11:01 ----A---- C:\Windows\system32\DWrite.dll
2015-12-18 15:11:01 ----A---- C:\Windows\system32\drivers\rmcast.sys
2015-12-18 15:11:01 ----A---- C:\Windows\system32\comsvcs.dll
2015-12-18 15:11:01 ----A---- C:\Windows\system32\catsrvut.dll
2015-12-18 15:11:00 ----A---- C:\Windows\SYSWOW64\user32.dll
2015-12-18 15:11:00 ----A---- C:\Windows\SYSWOW64\GdiPlus.dll
2015-12-18 15:11:00 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2015-12-18 15:11:00 ----A---- C:\Windows\system32\GdiPlus.dll
2015-12-18 15:10:47 ----A---- C:\Windows\SYSWOW64\authui.dll
2015-12-18 15:10:47 ----A---- C:\Windows\system32\wuaueng.dll
2015-12-18 15:10:47 ----A---- C:\Windows\system32\authui.dll
2015-12-18 15:10:46 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2015-12-18 15:10:46 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2015-12-18 15:10:46 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2015-12-18 15:10:46 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2015-12-18 15:10:46 ----A---- C:\Windows\system32\wuwebv.dll
2015-12-18 15:10:46 ----A---- C:\Windows\system32\WUSettingsProvider.dll
2015-12-18 15:10:46 ----A---- C:\Windows\system32\wups2.dll
2015-12-18 15:10:46 ----A---- C:\Windows\system32\wudriver.dll
2015-12-18 15:10:46 ----A---- C:\Windows\system32\wucltux.dll
2015-12-18 15:10:46 ----A---- C:\Windows\system32\wuauclt.exe
2015-12-18 15:10:46 ----A---- C:\Windows\system32\wuapp.exe
2015-12-18 15:10:46 ----A---- C:\Windows\system32\wuapi.dll
2015-12-18 14:46:34 ----D---- C:\Users\Jury\AppData\Roaming\KYE Imperator
2015-12-05 22:01:37 ----D---- C:\Users\Jury\AppData\Roaming\Skype
2015-12-05 22:01:34 ----D---- C:\Program Files (x86)\Skype
2015-12-02 14:56:30 ----A---- C:\Windows\SYSWOW64\nvStreaming.exe
2015-12-02 14:55:36 ----A---- C:\Windows\SYSWOW64\nvumdshim.dll
2015-12-02 14:55:36 ----A---- C:\Windows\SYSWOW64\nvopencl.dll
2015-12-02 14:55:36 ----A---- C:\Windows\SYSWOW64\nvoglv32.dll
2015-12-02 14:55:36 ----A---- C:\Windows\SYSWOW64\nvoglshim32.dll
2015-12-02 14:55:36 ----A---- C:\Windows\SYSWOW64\nvinit.dll
2015-12-02 14:55:36 ----A---- C:\Windows\SYSWOW64\NvIFROpenGL.dll
2015-12-02 14:55:36 ----A---- C:\Windows\SYSWOW64\NvIFR.dll
2015-12-02 14:55:36 ----A---- C:\Windows\SYSWOW64\NvFBC.dll
2015-12-02 14:55:36 ----A---- C:\Windows\SYSWOW64\nvEncodeAPI.dll
2015-12-02 14:55:36 ----A---- C:\Windows\system32\nvumdshimx.dll
2015-12-02 14:55:36 ----A---- C:\Windows\system32\nvopencl.dll
2015-12-02 14:55:36 ----A---- C:\Windows\system32\nvoglv64.dll
2015-12-02 14:55:36 ----A---- C:\Windows\system32\nvoglshim64.dll
2015-12-02 14:55:36 ----A---- C:\Windows\system32\nvmcumd.dll
2015-12-02 14:55:36 ----A---- C:\Windows\system32\nvinitx.dll
2015-12-02 14:55:36 ----A---- C:\Windows\system32\NvIFROpenGL.dll
2015-12-02 14:55:36 ----A---- C:\Windows\system32\NvIFR64.dll
2015-12-02 14:55:36 ----A---- C:\Windows\system32\NvFBC64.dll
2015-12-02 14:55:36 ----A---- C:\Windows\system32\nvEncodeAPI64.dll
2015-12-02 14:55:36 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2015-12-02 14:55:35 ----A---- C:\Windows\SYSWOW64\nvcuvid.dll
2015-12-02 14:55:35 ----A---- C:\Windows\SYSWOW64\nvcuda.dll
2015-12-02 14:55:35 ----A---- C:\Windows\SYSWOW64\nvcompiler.dll
2015-12-02 14:55:35 ----A---- C:\Windows\system32\nvdispgenco6435906.dll
2015-12-02 14:55:35 ----A---- C:\Windows\system32\nvdispco6435906.dll
2015-12-02 14:55:35 ----A---- C:\Windows\system32\nvcuvid.dll
2015-12-02 14:55:35 ----A---- C:\Windows\system32\nvcuda.dll
2015-12-02 14:55:35 ----A---- C:\Windows\system32\nvcompiler.dll
2015-12-02 14:55:35 ----A---- C:\Windows\system32\nvaudcaparm.dll
2015-12-02 14:55:35 ----A---- C:\Windows\system32\drivers\nvvadarm.sys
2015-11-24 15:48:28 ----D---- C:\ProgramData\EA Core
2015-11-24 15:48:27 ----D---- C:\ProgramData\EA Logs
2015-11-24 15:06:31 ----A---- C:\Windows\SYSWOW64\XAudio2_7.dll
2015-11-24 15:06:31 ----A---- C:\Windows\SYSWOW64\D3DX9_43.dll
2015-11-24 15:06:30 ----A---- C:\Windows\SYSWOW64\X3DAudio1_7.dll
2015-11-24 15:06:24 ----A---- C:\Windows\SYSWOW64\xinput1_3.dll
2015-11-23 11:05:13 ----D---- C:\Program Files (x86)\MJPEG decoder
2015-11-22 22:13:05 ----D---- C:\Users\Jury\AppData\Roaming\Screaming Bee
2015-11-22 22:13:05 ----D---- C:\ProgramData\Screaming Bee
2015-11-21 14:17:33 ----D---- C:\Program Files (x86)\Adobe Media Player
2015-11-21 12:48:30 ----A---- C:\Windows\system32\nvdispgenco6435900.dll
2015-11-21 12:48:30 ----A---- C:\Windows\system32\nvdispco6435900.dll
======List of files/folders modified in the last 1 month======
2015-12-19 14:13:04 ----D---- C:\Users\Jury\AppData\Roaming\ClassicShell
2015-12-19 14:12:33 ----D---- C:\Program Files (x86)\Steam
2015-12-19 14:12:07 ----D---- C:\ProgramData\NVIDIA
2015-12-19 14:11:35 ----D---- C:\Windows\Temp
2015-12-19 14:11:35 ----D---- C:\Windows
2015-12-19 14:08:34 ----D---- C:\Windows\Prefetch
2015-12-19 14:00:00 ----D---- C:\Windows\system32\sru
2015-12-19 07:00:26 ----D---- C:\Windows\Inf
2015-12-19 06:58:15 ----RSD---- C:\Windows\assembly
2015-12-19 06:58:15 ----D---- C:\Windows\Microsoft.NET
2015-12-18 21:10:26 ----D---- C:\Windows\SoftwareDistribution
2015-12-18 21:09:13 ----RD---- C:\Windows\System32
2015-12-18 21:09:13 ----A---- C:\Windows\system32\PerfStringBackup.INI
2015-12-18 20:52:10 ----RD---- C:\Program Files (x86)
2015-12-18 20:51:33 ----D---- C:\Users\Jury\AppData\Roaming\TS3Client
2015-12-18 16:09:12 ----D---- C:\Windows\system32\drivers
2015-12-18 15:59:45 ----RD---- C:\Program Files
2015-12-18 15:41:06 ----D---- C:\Windows\SysWOW64
2015-12-18 15:35:28 ----D---- C:\Windows\system32\DriverStore
2015-12-18 15:30:20 ----D---- C:\Windows\system32\catroot
2015-12-18 15:27:19 ----SHD---- C:\Windows\Installer
2015-12-18 15:27:19 ----D---- C:\ProgramData\Package Cache
2015-12-18 15:19:18 ----D---- C:\ProgramData\NVIDIA Corporation
2015-12-18 15:18:28 ----D---- C:\Windows\system32\config
2015-12-18 15:18:27 ----D---- C:\Windows\WinSxS
2015-12-18 15:17:04 ----SD---- C:\Windows\SYSWOW64\GWX
2015-12-18 15:17:04 ----SD---- C:\Windows\system32\GWX
2015-12-18 15:17:04 ----D---- C:\Windows\SYSWOW64\cs-CZ
2015-12-18 15:17:04 ----D---- C:\Windows\system32\cs-CZ
2015-12-18 15:17:04 ----D---- C:\Windows\apppatch
2015-12-18 15:17:04 ----D---- C:\Program Files\Internet Explorer
2015-12-18 15:17:04 ----D---- C:\Program Files (x86)\Internet Explorer
2015-12-18 15:17:03 ----RSD---- C:\Windows\Fonts
2015-12-18 15:17:03 ----D---- C:\Windows\system32\Boot
2015-12-18 15:14:45 ----D---- C:\Windows\CbsTemp
2015-12-18 15:14:15 ----D---- C:\Users\Jury\AppData\Roaming\BitTorrent
2015-12-18 15:14:13 ----D---- C:\Windows\debug
2015-12-18 15:13:21 ----D---- C:\Windows\system32\MRT
2015-12-18 15:12:04 ----A---- C:\Windows\system32\MRT.exe
2015-12-18 15:11:42 ----SD---- C:\Windows\system32\CompatTel
2015-12-18 15:11:42 ----D---- C:\Windows\system32\appraiser
2015-12-18 15:10:57 ----D---- C:\Windows\system32\catroot2
2015-12-18 15:02:23 ----D---- C:\Windows\system32\wdi
2015-12-18 15:00:10 ----D---- C:\Windows\system32\wbem
2015-12-18 14:59:53 ----RSD---- C:\Windows\Media
2015-12-18 14:59:53 ----D---- C:\Windows\Tasks
2015-12-18 14:59:53 ----D---- C:\Windows\SYSWOW64\wbem
2015-12-18 14:59:53 ----D---- C:\Windows\SYSWOW64\migration
2015-12-18 14:59:53 ----D---- C:\Windows\system32\Tasks
2015-12-18 14:59:53 ----D---- C:\Windows\system32\Sysprep
2015-12-18 14:59:53 ----D---- C:\Windows\system32\migration
2015-12-18 14:59:53 ----D---- C:\Windows\system32\CodeIntegrity
2015-12-18 14:59:53 ----D---- C:\Windows\rescache
2015-12-18 14:59:53 ----D---- C:\Windows\PolicyDefinitions
2015-12-18 14:59:52 ----D---- C:\Windows\AppCompat
2015-12-18 14:59:52 ----D---- C:\Users\Jury\AppData\Roaming\vlc
2015-12-18 14:59:52 ----D---- C:\ProgramData\Spybot - Search & Destroy
2015-12-18 14:59:52 ----D---- C:\Program Files\Common Files\microsoft shared
2015-12-18 14:59:52 ----D---- C:\Program Files (x86)\Common Files
2015-12-18 14:59:46 ----HD---- C:\Program Files\WindowsApps
2015-12-18 14:59:36 ----D---- C:\Windows\registration
2015-12-18 14:59:26 ----HD---- C:\ProgramData
2015-12-18 14:58:52 ----SHD---- C:\System Volume Information
2015-12-10 12:01:30 ----D---- C:\ProgramData\GFACE
2015-12-09 02:51:39 ----A---- C:\Windows\SYSWOW64\nvspcap.dll
2015-12-09 02:51:39 ----A---- C:\Windows\SYSWOW64\nvspbridge.dll
2015-12-09 02:51:20 ----A---- C:\Windows\system32\nvspcap64.dll
2015-12-09 02:51:19 ----A---- C:\Windows\system32\nvspbridge64.dll
2015-12-06 12:29:12 ----D---- C:\Windows\AppReadiness
2015-12-01 18:19:27 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2015-11-27 18:05:35 ----D---- C:\Windows\Logs
2015-11-25 15:56:46 ----D---- C:\Users\Jury\AppData\Roaming\OBS
2015-11-25 15:52:59 ----D---- C:\Program Files (x86)\OBS
2015-11-25 00:10:29 ----A---- C:\Windows\SYSWOW64\nvwgf2um.dll
2015-11-25 00:10:29 ----A---- C:\Windows\SYSWOW64\nvd3dum.dll
2015-11-25 00:10:29 ----A---- C:\Windows\SYSWOW64\nvapi.dll
2015-11-25 00:10:29 ----A---- C:\Windows\system32\nvwgf2umx.dll
2015-11-25 00:10:29 ----A---- C:\Windows\system32\nvmcvadgenco64.dll
2015-11-25 00:10:29 ----A---- C:\Windows\system32\nvd3dumx.dll
2015-11-25 00:10:29 ----A---- C:\Windows\system32\nvapi64.dll
2015-11-24 19:40:40 ----A---- C:\Windows\system32\nvsvc64.dll
2015-11-24 19:40:40 ----A---- C:\Windows\system32\nvcpl.dll
2015-11-24 19:40:37 ----A---- C:\Windows\system32\nvvsvc.exe
2015-11-24 19:40:37 ----A---- C:\Windows\system32\nvsvcr.dll
2015-11-24 19:40:37 ----A---- C:\Windows\system32\nvshext.dll
2015-11-24 19:40:37 ----A---- C:\Windows\system32\nvmctray.dll
2015-11-24 18:37:37 ----D---- C:\ProgramData\Origin
2015-11-24 15:55:22 ----A---- C:\Windows\SYSWOW64\PnkBstrA.exe
2015-11-24 15:55:15 ----A---- C:\Windows\SYSWOW64\PnkBstrB.exe
2015-11-24 15:38:33 ----D---- C:\Program Files (x86)\Origin Games
2015-11-24 14:12:48 ----D---- C:\Program Files (x86)\Origin
2015-11-21 14:46:07 ----D---- C:\ProgramData\regid.1986-12.com.adobe
2015-11-21 14:18:39 ----D---- C:\Program Files\Common Files\Adobe
2015-11-21 14:18:27 ----D---- C:\Users\Jury\AppData\Roaming\Adobe
2015-11-21 14:17:41 ----D---- C:\ProgramData\Adobe
2015-11-21 14:17:07 ----D---- C:\Program Files (x86)\Adobe
2015-11-21 12:47:40 ----D---- C:\ProgramData\Oracle
2015-11-21 12:47:36 ----D---- C:\Program Files (x86)\Java
2015-11-21 12:47:04 ----A---- C:\Windows\SYSWOW64\WindowsAccessBridge-32.dll
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 edevmon;edevmon; C:\Windows\system32\DRIVERS\edevmon.sys [2015-07-14 251632]
R0 iaStorA;iaStorA; C:\Windows\System32\drivers\iaStorA.sys [2014-04-11 645480]
R0 mvs91xx;mvs91xx; C:\Windows\System32\drivers\mvs91xx.sys [2013-09-06 327464]
R1 BfLwf;@oem19.inf,%BfLwf_Desc%;Qualcomm Atheros Bandwidth Control; C:\Windows\system32\DRIVERS\bwcW8x64.sys [2013-02-13 75056]
R1 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys [2015-07-14 255240]
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2015-07-14 178520]
R2 epfwwfpr;epfwwfpr; C:\Windows\system32\DRIVERS\epfwwfpr.sys [2015-07-14 168208]
R3 e1dexpress;@oem9.inf,%e1dExpress.Service.DispName%;Intel(R) PRO/1000 PCI Express Network Connection Driver D; C:\Windows\system32\DRIVERS\e1d64x64.sys [2013-08-29 468240]
R3 etocdrv;etocdrv; \??\C:\Windows\etocdrv.sys [2013-10-31 15584]
R3 gdrv;gdrv; \??\C:\Windows\gdrv.sys [2015-12-19 26192]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2015-08-09 4928256]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2014-03-14 3896920]
R3 IntcDAud;@oem3.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\Windows\system32\DRIVERS\IntcDAud.sys [2014-03-31 450520]
R3 iwdbus;@oem6.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\Windows\System32\drivers\iwdbus.sys [2015-05-26 30512]
R3 Ke2200;@oem18.inf,%L1C.Service.DispName%;NDIS Miniport Driver for the Killer e2200 Gigabit Ethernet Controller; C:\Windows\system32\DRIVERS\e22w8x64.sys [2013-03-20 163536]
R3 KYEKBPRO;@oem36.inf,%KYEKBPRO.SvcDesc%;IMPERATOR PRO Gaming Keyboard; C:\Windows\system32\drivers\KYEKBPRO.sys [2011-10-14 25600]
R3 MEIx64;@oem48.inf,%TEE_SvcDesc%;Intel(R) Management Engine Interface ; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [2014-09-30 129312]
R3 NVHDA;@oem58.inf,%NVHDA.SvcDesc%;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda64v.sys [2015-11-05 205456]
R3 nvlddmkm;nvlddmkm; C:\Windows\system32\DRIVERS\nvlddmkm.sys [2015-11-25 11131184]
R3 NvStreamKms;NvStreamKms; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2015-12-09 19576]
R3 nvvad_WaveExtensible;@oem44.inf,%nvvad_WaveExtensible.SvcDesc%;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\Windows\system32\drivers\nvvad64v.sys [2015-08-11 50472]
R3 NVVADARM;@oem62.inf,%NVVADARM.SvcDesc%;NVIDIA Miracast Audio; C:\Windows\system32\drivers\nvvadarm.sys [2015-11-25 39032]
S3 AIDA64Driver;FinalWire AIDA64 Kernel Driver; \??\C:\Program Files (x86)\FinalWire\AIDA64 Extreme\kerneld.x64 [2014-12-08 34136]
S3 dtultrascsibus;@oem37.inf,%DTULTRASCSIBUS.DeviceDesc%;DAEMON Tools Ultra Virtual SCSI Bus; C:\Windows\System32\drivers\dtultrascsibus.sys [2015-07-15 30264]
S3 dtultrausbbus;@oem38.inf,%DTULTRAUSBBUS.DeviceDesc%;DAEMON Tools Ultra Virtual USB Bus; C:\Windows\System32\drivers\dtultrausbbus.sys [2015-07-15 47160]
S3 e1iexpress;@net1ic64.inf,%e1iExpress.Service.DispName%;Intel(R) PRO/1000 - ovladač I pro síťová připojení PCI Express; C:\Windows\system32\DRIVERS\e1i63x64.sys [2013-06-18 460288]
S3 intaud_WaveExtensible;@oem5.inf,%INTAUD_WEX.SvcDesc%;Intel WiDi Audio Device; C:\Windows\system32\drivers\intelaud.sys [2015-05-26 42288]
S3 ScreamBAudioSvc;@oem61.inf,%sbee_audio.SvcDesc%;ScreamBee Audio; C:\Windows\system32\drivers\ScreamingBAudio64.sys [2014-02-07 38992]
S3 usbaudio;@wdma_usb.inf,%USBAudio.SvcDesc%;Ovladač zvuků USB (WDM); C:\Windows\system32\drivers\usbaudio.sys [2013-12-13 121088]
S3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;Zobrazovací zařízení USB (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2014-06-21 212736]
S3 WDC_SAM;@oem33.inf,%WDC_SAM_ServiceName%;WD SCSI Pass Thru driver; C:\Windows\System32\drivers\wdcsam64.sys [2015-04-29 23200]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2015-10-28 82128]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2014-10-29 38792]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe [2015-07-08 1353720]
R2 gadjservice;GIGABYTE Adjust; C:\Program Files (x86)\Gigabyte\AppCenter\AdjustService.exe [2015-04-14 16896]
R2 GfExperienceService;NVIDIA GeForce Experience Service; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [2015-12-09 1156216]
R2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\Windows\system32\igfxCUIService.exe [2015-08-09 355232]
R2 Intel(R) PROSet Monitoring Service;Intel(R) PROSet Monitoring Service; C:\Windows\system32\IProsetMonitor.exe [2013-11-01 241416]
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2015-12-09 1872504]
R2 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [2015-12-09 6477432]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2015-11-24 938616]
R2 PnkBstrA;PnkBstrA; C:\Windows\syswow64\PnkBstrA.exe [2015-11-24 76152]
R2 Qualcomm Atheros Killer Service V2;Qualcomm Atheros Killer Service V2; C:\Program Files\Qualcomm Atheros\Network Manager\KillerService.exe [2013-08-08 343040]
R2 SBSDWSCService;SBSD Security Center Service; C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe [2009-01-26 1153368]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2015-11-24 417584]
R3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696]
R3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2014-02-18 171480]
R3 NvStreamNetworkSvc;NVIDIA Streamer Network Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [2015-12-09 8185464]
R3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2015-12-14 836176]
S2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2014-04-11 16232]
S2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2014-03-20 154584]
S2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2014-03-20 398296]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-12-18 269504]
S3 BEService;BattlEye Service; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [2015-12-02 1257504]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\Windows\System32\svchost.exe [2014-10-29 38792]
S3 cphs;Intel(R) Content Protection HECI Service; C:\Windows\SysWow64\IntelCpHeciSvc.exe [2015-08-09 288688]
S3 EasyAntiCheat;EasyAntiCheat; C:\Windows\syswow64\EasyAntiCheat.exe [2015-08-23 238376]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2014-01-31 887232]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2015-11-06 147624]
S3 Origin Client Service;Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2015-11-24 2099720]
S3 SwitchBoard;SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
-----------------EOF-----------------
- Rudy
- Site Admin

- Příspěvky: 119673
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: problém s PC - prosím o kontrolu logu
Smazáno. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: problém s PC - prosím o kontrolu logu
RAMky se stále občas vyšplhají na zatěž 97% vytížení, když mam zaplou jen mozilu, což mi příde divné, když mám 16gb a píše, mi že je nedostatek volné paměti
- Rudy
- Site Admin

- Příspěvky: 119673
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: problém s PC - prosím o kontrolu logu
OK. Udělejte kompletní sken MBAM: http://www.malwarebytes.org/mbam.php a dejte log. Předem nic nemažte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Přispějete na provoz fóra?