Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prosim o kontrolu...dekuji

Nemáte v tuto chvíli žádný problém s pc a chcete se jen ujistit, že je vše v pořádku?
Vložte log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zamčeno
Zpráva
Autor
franni
Návštěvník
Návštěvník
Příspěvky: 167
Registrován: 19 kvě 2009 18:55
Bydliště: žďár u mnichova Hradiste

Prosim o kontrolu...dekuji

#1 Příspěvek od franni »

Logfile of random's system information tool 1.10 (written by random/random)
Run by Franni at 2015-12-31 09:47:38
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 112 GB (37%) free of 305 GB
Total RAM: 4044 MB (49% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 9:47:42, on 31.12.2015
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.18123)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Users\Franni\AppData\Local\MyComGames\MyComGames.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files\trend micro\Franni.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,SearchAssistant = http://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRYSttY34mamef947lyucr_RRfpjzIC4jnN0OHIhdDha_VAS1DuLXh6QKiB1IGKTN2MjDxb-ENar0RnNRruPz9xAG73AwD-qQRky9Hpuh1GLKl_4HI0KhPBDoQPyJvUKNE0SrRhuUtpAhbyIHaw1rbxR4tZNCv9EPXg,,&q={searchTerms}
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRYSttY34mamef947lyucr_RRfpjzIC4jnN0OHIhdDha_VAS1DuLXh6QKiB1IGKTN2MjDxb-ENar0RnNRruPz9xAG73AwD-qQRky9Hpuh1GLKl_4HI0KhPBDoQPyJvUKNE0SrRhuUtpAhbyIHaw1rbxR4tZNCv9EPXg,,&q={searchTerms}
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRYSttY34mamef947lyucr_RRfpjzIC4jnN0OHIhdDha_VAS1DuLXh6QKiB1IGKTN2MjDxb-ENar0RnNRruPz9xAG73AwD-qQRky9Hpuh1GLKl_4HI0KhPBDoQPyJvUKNE0SrRhuUtpAhbyIHaw1rbxR4tZNCv9EPXg,,&q={searchTerms}
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://%66%65%65%64.%73%6E%61%70%64%6F.%63%6F%6D/?p=mKO_AwFzXIpYRYSttY34mamef947lyucr_RRfpjzIC4jnN0OHIhdDha_VAS1DuLXh6QKiB1IGKTN2MjDxb-ENar0RnNRruPz9xAG73AwD-qQSui71FXx5SkvEILxx6Vgcf6kVnPTs6tjyqXdxpiQTFffli8N-MqBgotAnUNqFcnXxQ,,
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://f.jiss360.cn
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,Default_Search_URL = http://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRYSttY34mamef947lyucr_RRfpjzIC4jnN0OHIhdDha_VAS1DuLXh6QKiB1IGKTN2MjDxb-ENar0RnNRruPz9xAG73AwD-qQRky9Hpuh1GLKl_4HI0KhPBDoQPyJvUKNE0SrRhuUtpAhbyIHaw1rbxR4tZNCv9EPXg,,&q={searchTerms}
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe,
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_66\bin\ssv.dll
O2 - BHO: Pomocná služba pro přihlášení k účtu Microsoft - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_66\bin\jp2ssv.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [Web Companion] C:\Program Files (x86)\Lavasoft\Web Companion\Application\WebCompanion.exe --minimize
O4 - HKCU\..\Run: [MyComGames] "C:\Users\Franni\AppData\Local\MyComGames\MyComGames.exe" -autostart
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - https://fpdownload.macromedia.com/get/s ... wflash.cab
O20 - AppInit_DLLs: C:\ProgramData\Vaiafineco\CanString.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: AODService - Unknown owner - C:\Program Files (x86)\AMD\OverDrive\AODAssist.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: MBAMService - Malwarebytes - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: MSI_SuperCharger - MSI - C:\Program Files (x86)\MSI\Super-Charger\ChargeService.exe
O23 - Service: @C:\Program Files (x86)\Nero\Update\NASvc.exe,-200 (NAUpdate) - Nero AG - C:\Program Files (x86)\Nero\Update\NASvc.exe
O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Network Service (NvStreamNetworkSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: ServiceLayer - Nokia - C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: SAMSUNG Mobile Connectivity Service (ss_conn_service) - DEVGURU Co., LTD. - C:\Program Files\SAMSUNG\USB Drivers\25_escape\conn\ss_conn_service.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: System Tester Service (SysTesterSvc) - Unknown owner - C:\Program Files\NixController\bin\8d251941-deb5-49cf-88c4-b39455f7bf60\runner.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Vaiafineco - Unknown owner - C:\ProgramData\\Vaiafineco\\Vaiafineco.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 11082 bytes

======Listing Processes======



\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
winlogon.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
"C:\Windows\system32\nvvsvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
C:\Windows\system32\svchost.exe -k RPCSS
"c:\Program Files\Microsoft Security Client\MsMpEng.exe"
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
atieclxx
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
"C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe" /launchService
C:\Windows\Explorer.EXE
taskeng.exe {A193718A-5783-4B65-9C65-BA92B45665B7}
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
C:\Windows\System32\svchost.exe -k utcsvc
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe"
"C:\Windows\system32\GWX\GWX.exe"
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
"C:\Program Files (x86)\MSI\Super-Charger\ChargeService.exe"
"C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe"
C:\Windows\SysWOW64\PnkBstrA.exe
C:\Windows\system32\svchost.exe -k regsvc
"C:\Users\Franni\AppData\Local\MyComGames\MyComGames.exe" -autostart
"C:\Program Files\SAMSUNG\USB Drivers\25_escape\conn\ss_conn_service.exe"
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\ProgramData\\Vaiafineco\\Vaiafineco.exe -f "C:\ProgramData\\Vaiafineco\\Vaiafineco.dat" -l -a
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1"
WLIDSvcM.exe 3076
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
C:\Windows\system32\sppsvc.exe
"c:\Program Files\Microsoft Security Client\NisSrv.exe"
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\SearchIndexer.exe /Embedding
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe" serviceapp
\??\C:\Windows\system32\conhost.exe "202941264-174349080732432887-13826548361705379907-1613245418-2157154021554975070
C:\Windows\system32\wbem\wmiprvse.exe
"C:\ProgramData\Vaiafineco\Vaiafineco.exe" -f "C:\ProgramData\Vaiafineco\Daltstatjob.dat" -l -a regname Stpro.exe
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files (x86)\Nero\Update\NASvc.exe"
"C:\Windows\system32\rundll32.exe" "C:\Users\Franni\AppData\Local\Mail.Ru\GameCenter\NPDetector.dll",DllEntryPoint UnregisterPlugin
C:\Windows\servicing\TrustedInstaller.exe
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe2_ Global\UsGthrCtrlFltPipeMssGthrPipe2 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 516 520 528 65536 524
"C:\Users\Franni\Downloads\RSITx64.exe"

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler

=========Mozilla firefox=========

ProfilePath - C:\Users\Franni\AppData\Roaming\Mozilla\Firefox\Profiles\4z6sabfx.default-1443298549001

prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "C:\\ProgramData\\Vaiafineco\\ff.HP"

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 20.0.0.267 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_20_0_0_267.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/ShockwavePlayer]
"Description"=Adobe Shockwave Player
"Path"=C:\Windows\SysWOW64\Adobe\Director\np32dsw_1217157.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=11.66.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre1.8.0_66\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=11.66.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre1.8.0_66\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files (x86)\Microsoft Silverlight\5.1.41105.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Nero.com/KM]
"Description"=
"Path"=C:\PROGRA~2\COMMON~1\Nero\BROWSE~1\NPBROW~1.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVision]
"Description"=NVIDIA stereo images plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVisionStreaming]
"Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 20.0.0.267 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_20_0_0_267.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files\Microsoft Silverlight\5.1.41105.0\npctrl.dll


C:\Users\Franni\AppData\Roaming\Mozilla\Firefox\Profiles\4z6sabfx.default-1443298549001\searchplugins\
findit.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17 529664]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2015-12-19 256456]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_66\bin\ssv.dll [2015-12-07 460384]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocná služba pro přihlášení k účtu Microsoft - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17 441592]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2015-12-19 194504]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_66\bin\jp2ssv.dll [2015-12-07 172640]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2015-12-19 256456]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2015-12-19 194504]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2015-12-16 2771576]
"ShadowPlay"=C:\Windows\system32\nvspcap64.dll [2015-12-16 1846016]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Web Companion"=C:\Program Files (x86)\Lavasoft\Web Companion\Application\WebCompanion.exe --minimize []
"MyComGames"=C:\Users\Franni\AppData\Local\MyComGames\MyComGames.exe [2015-12-30 4741064]
""= []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AMD AVT]
Cmd.exe /c start AMD Accelerated Video Transcoding device initialization /min C:\Program Files (x86)\AMD AVT\bin\kdbsync.exe aml []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSC]
c:\Program Files\Microsoft Security Client\msseces.exe [2015-04-30 1337000]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvBackend]
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2015-12-16 2771576]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PWRISOVM.EXE]
C:\Program Files\PowerISO\PWRISOVM.EXE [2014-10-08 408888]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RUSB3MON]
C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\rusb3mon.exe [2011-09-20 115048]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\StartCCC]
C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2013-04-29 642304]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Super-Charger]
C:\Program Files (x86)\MSI\Super-Charger\Super-Charger.exe [2012-10-23 502328]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Trend Micro Titanium]
C:\Program Files\Trend Micro\Titanium\UIFramework\uiWinMgr.exe [2013-09-16 1382568]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Yahoo! Search]
C:\Users\Franni\AppData\Local\Pay-By-Ads\Yahoo! Search\1.3.12.4\dsrlte.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^McAfee Security Scan Plus.lnk]
C:\PROGRA~1\MCAFEE~1\385C9A~1.150\SSSCHE~1.EXE []

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2015-11-09 596528]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\ProgramData\Vaiafineco\SingleLam.dll"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\QQPCRTP]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\QQPCRTP]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
"NoDriveTypeAutoRun"=221

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"aux3"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"aux"=wdmaud.drv
"wave5"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer5"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"wave6"=wdmaud.drv
"midi6"=wdmaud.drv
"mixer6"=wdmaud.drv
"wave7"=wdmaud.drv
"midi7"=wdmaud.drv
"mixer7"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2015-12-31 09:47:38 ----D---- C:\rsit
2015-12-31 09:38:40 ----D---- C:\Users\Franni\AppData\Roaming\NVIDIA
2015-12-31 09:22:32 ----A---- C:\Windows\system32\nvspbridge64.dll
2015-12-31 09:22:32 ----A---- C:\Windows\system32\NvRtmpStreamer64.dll
2015-12-31 09:22:31 ----A---- C:\Windows\system32\nvspcap64.dll
2015-12-31 09:22:30 ----A---- C:\Windows\SYSWOW64\nvspcap.dll
2015-12-31 09:22:30 ----A---- C:\Windows\SYSWOW64\nvspbridge.dll
2015-12-31 09:21:42 ----A---- C:\Windows\SYSWOW64\nvStreaming.exe
2015-12-31 09:21:12 ----A---- C:\Windows\system32\nv3dappshextr.dll
2015-12-31 09:21:12 ----A---- C:\Windows\system32\nv3dappshext.dll
2015-12-31 09:18:51 ----A---- C:\Windows\SYSWOW64\nvaudcap32v.dll
2015-12-31 09:18:51 ----A---- C:\Windows\system32\nvaudcap64v.dll
2015-12-31 09:18:51 ----A---- C:\Windows\system32\drivers\nvvad64v.sys
2015-12-31 09:18:49 ----A---- C:\Windows\SYSWOW64\nvwgf2um.dll
2015-12-31 09:18:49 ----A---- C:\Windows\SYSWOW64\nvumdshim.dll
2015-12-31 09:18:49 ----A---- C:\Windows\SYSWOW64\nvopencl.dll
2015-12-31 09:18:49 ----A---- C:\Windows\SYSWOW64\nvoglv32.dll
2015-12-31 09:18:49 ----A---- C:\Windows\SYSWOW64\nvoglshim32.dll
2015-12-31 09:18:49 ----A---- C:\Windows\system32\nvwgf2umx.dll
2015-12-31 09:18:49 ----A---- C:\Windows\system32\nvumdshimx.dll
2015-12-31 09:18:49 ----A---- C:\Windows\system32\nvopencl.dll
2015-12-31 09:18:49 ----A---- C:\Windows\system32\nvoglv64.dll
2015-12-31 09:18:49 ----A---- C:\Windows\system32\nvoglshim64.dll
2015-12-31 09:18:48 ----A---- C:\Windows\SYSWOW64\nvinit.dll
2015-12-31 09:18:48 ----A---- C:\Windows\SYSWOW64\NvIFROpenGL.dll
2015-12-31 09:18:48 ----A---- C:\Windows\SYSWOW64\NvIFR.dll
2015-12-31 09:18:48 ----A---- C:\Windows\SYSWOW64\NvFBC.dll
2015-12-31 09:18:48 ----A---- C:\Windows\SYSWOW64\nvEncodeAPI.dll
2015-12-31 09:18:48 ----A---- C:\Windows\SYSWOW64\nvd3dum.dll
2015-12-31 09:18:48 ----A---- C:\Windows\SYSWOW64\nvcuvid.dll
2015-12-31 09:18:48 ----A---- C:\Windows\SYSWOW64\nvcuda.dll
2015-12-31 09:18:48 ----A---- C:\Windows\system32\nvinitx.dll
2015-12-31 09:18:48 ----A---- C:\Windows\system32\NvIFROpenGL.dll
2015-12-31 09:18:48 ----A---- C:\Windows\system32\NvIFR64.dll
2015-12-31 09:18:48 ----A---- C:\Windows\system32\NvFBC64.dll
2015-12-31 09:18:48 ----A---- C:\Windows\system32\nvEncodeAPI64.dll
2015-12-31 09:18:48 ----A---- C:\Windows\system32\nvdispgenco6436143.dll
2015-12-31 09:18:48 ----A---- C:\Windows\system32\nvdispco6436143.dll
2015-12-31 09:18:48 ----A---- C:\Windows\system32\nvd3dumx.dll
2015-12-31 09:18:48 ----A---- C:\Windows\system32\nvcuvid.dll
2015-12-31 09:18:48 ----A---- C:\Windows\system32\nvcuda.dll
2015-12-31 09:18:48 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2015-12-31 09:18:44 ----A---- C:\Windows\SYSWOW64\nvcompiler.dll
2015-12-31 09:18:44 ----A---- C:\Windows\SYSWOW64\nvapi.dll
2015-12-31 09:18:44 ----A---- C:\Windows\system32\nvcompiler.dll
2015-12-31 09:18:44 ----A---- C:\Windows\system32\nvapi64.dll
2015-12-31 09:10:34 ----D---- C:\ProgramData\NVIDIA
2015-12-31 09:09:46 ----A---- C:\Windows\system32\nvvsvc.exe
2015-12-31 09:09:46 ----A---- C:\Windows\system32\nvsvcr.dll
2015-12-31 09:09:46 ----A---- C:\Windows\system32\nvsvc64.dll
2015-12-31 09:09:46 ----A---- C:\Windows\system32\nvshext.dll
2015-12-31 09:09:46 ----A---- C:\Windows\system32\nvmctray.dll
2015-12-31 09:09:46 ----A---- C:\Windows\system32\nvcpl.dll
2015-12-30 13:54:23 ----A---- C:\Windows\system32\nvdispgenco6434709.dll
2015-12-30 13:54:23 ----A---- C:\Windows\system32\nvdispco6434709.dll
2015-12-30 13:11:36 ----A---- C:\Windows\system32\nvhdap64.dll
2015-12-30 13:11:36 ----A---- C:\Windows\system32\nvhdagenco6420103.dll
2015-12-30 13:11:36 ----A---- C:\Windows\system32\drivers\nvhda64v.sys
2015-12-29 21:50:01 ----A---- C:\Program Files\Common Files\hvvgmgtz.exe
2015-12-29 21:49:38 ----D---- C:\ProgramData\Vaiafineco
2015-12-29 21:48:52 ----A---- C:\Program Files\Common Files\ff1jxowl.exe
2015-12-29 09:46:50 ----D---- C:\Program Files (x86)\Mozilla Firefox
2015-12-28 21:29:08 ----A---- C:\Windows\SYSWOW64\FlashPlayerInstaller.exe
2015-12-23 21:33:52 ----A---- C:\Program Files\Common Files\wlop2a03.exe
2015-12-23 21:33:52 ----A---- C:\Program Files\Common Files\a0ngluum.exe
2015-12-23 09:24:19 ----A---- C:\Program Files\Common Files\kvidpujs.exe
2015-12-23 09:24:17 ----A---- C:\Program Files\Common Files\2zg5pqwl.exe
2015-12-16 21:40:11 ----D---- C:\esoterika
2015-12-08 22:21:06 ----A---- C:\Windows\SYSWOW64\tzres.dll
2015-12-08 22:21:06 ----A---- C:\Windows\system32\tzres.dll
2015-12-08 22:21:01 ----A---- C:\Windows\SYSWOW64\usp10.dll
2015-12-08 22:21:01 ----A---- C:\Windows\system32\usp10.dll
2015-12-08 22:20:59 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2015-12-08 22:20:59 ----A---- C:\Windows\system32\wuaueng.dll
2015-12-08 22:20:59 ----A---- C:\Windows\system32\wuapi.dll
2015-12-08 22:20:58 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2015-12-08 22:20:58 ----A---- C:\Windows\SYSWOW64\wups.dll
2015-12-08 22:20:58 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2015-12-08 22:20:58 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2015-12-08 22:20:58 ----A---- C:\Windows\system32\wuwebv.dll
2015-12-08 22:20:58 ----A---- C:\Windows\system32\wups2.dll
2015-12-08 22:20:58 ----A---- C:\Windows\system32\wups.dll
2015-12-08 22:20:58 ----A---- C:\Windows\system32\wudriver.dll
2015-12-08 22:20:58 ----A---- C:\Windows\system32\wucltux.dll
2015-12-08 22:20:58 ----A---- C:\Windows\system32\wuauclt.exe
2015-12-08 22:20:58 ----A---- C:\Windows\system32\wuapp.exe
2015-12-08 22:20:58 ----A---- C:\Windows\system32\wu.upgrade.ps.dll
2015-12-08 22:20:58 ----A---- C:\Windows\system32\WinSetupUI.dll
2015-12-08 22:20:51 ----A---- C:\Windows\SYSWOW64\nlsbres.dll
2015-12-08 22:20:51 ----A---- C:\Windows\SYSWOW64\kbdgeoqw.dll
2015-12-08 22:20:51 ----A---- C:\Windows\SYSWOW64\KBDAZEL.DLL
2015-12-08 22:20:51 ----A---- C:\Windows\SYSWOW64\KBDAZE.DLL
2015-12-08 22:20:51 ----A---- C:\Windows\system32\nlsbres.dll
2015-12-08 22:20:51 ----A---- C:\Windows\system32\kbdgeoqw.dll
2015-12-08 22:20:51 ----A---- C:\Windows\system32\KBDAZEL.DLL
2015-12-08 22:20:51 ----A---- C:\Windows\system32\KBDAZE.DLL
2015-12-08 22:20:47 ----A---- C:\Windows\system32\win32k.sys
2015-12-08 22:20:47 ----A---- C:\Windows\system32\DWrite.dll
2015-12-08 22:20:46 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2015-12-08 22:20:46 ----A---- C:\Windows\system32\user32.dll
2015-12-08 22:20:46 ----A---- C:\Windows\system32\FntCache.dll
2015-12-08 22:20:44 ----A---- C:\Windows\SYSWOW64\user32.dll
2015-12-08 22:20:40 ----A---- C:\Windows\SYSWOW64\wshrm.dll
2015-12-08 22:20:40 ----A---- C:\Windows\system32\wshrm.dll
2015-12-08 22:20:40 ----A---- C:\Windows\system32\drivers\rmcast.sys
2015-12-08 22:20:40 ----A---- C:\Windows\system32\comsvcs.dll
2015-12-08 22:20:40 ----A---- C:\Windows\system32\catsrvut.dll
2015-12-08 22:20:39 ----A---- C:\Windows\SYSWOW64\comsvcs.dll
2015-12-08 22:20:39 ----A---- C:\Windows\SYSWOW64\catsrvut.dll
2015-12-08 22:20:35 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2015-12-08 22:20:35 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2015-12-08 22:20:35 ----A---- C:\Windows\system32\iertutil.dll
2015-12-08 22:20:34 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2015-12-08 22:20:34 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2015-12-08 22:20:34 ----A---- C:\Windows\system32\ieetwproxystub.dll
2015-12-08 22:20:34 ----A---- C:\Windows\system32\ieetwcollector.exe
2015-12-08 22:20:33 ----A---- C:\Windows\SYSWOW64\occache.dll
2015-12-08 22:20:33 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2015-12-08 22:20:33 ----A---- C:\Windows\system32\iernonce.dll
2015-12-08 22:20:33 ----A---- C:\Windows\system32\ie4uinit.exe
2015-12-08 22:20:32 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2015-12-08 22:20:32 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2015-12-08 22:20:32 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2015-12-08 22:20:32 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2015-12-08 22:20:32 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2015-12-08 22:20:32 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2015-12-08 22:20:32 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-12-08 22:20:31 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2015-12-08 22:20:30 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2015-12-08 22:20:30 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2015-12-08 22:20:30 ----A---- C:\Windows\system32\occache.dll
2015-12-08 22:20:30 ----A---- C:\Windows\system32\iedkcs32.dll
2015-12-08 22:20:29 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2015-12-08 22:20:29 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2015-12-08 22:20:29 ----A---- C:\Windows\SYSWOW64\jscript.dll
2015-12-08 22:20:29 ----A---- C:\Windows\system32\urlmon.dll
2015-12-08 22:20:29 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2015-12-08 22:20:28 ----A---- C:\Windows\SYSWOW64\ieui.dll
2015-12-08 22:20:28 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2015-12-08 22:20:28 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2015-12-08 22:20:28 ----A---- C:\Windows\system32\msfeeds.dll
2015-12-08 22:20:28 ----A---- C:\Windows\system32\dxtrans.dll
2015-12-08 22:20:27 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2015-12-08 22:20:26 ----A---- C:\Windows\system32\iesetup.dll
2015-12-08 22:20:26 ----A---- C:\Windows\system32\ieapfltr.dll
2015-12-08 22:20:25 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2015-12-08 22:20:25 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2015-12-08 22:20:25 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2015-12-08 22:20:24 ----A---- C:\Windows\SYSWOW64\wininet.dll
2015-12-08 22:20:24 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2015-12-08 22:20:24 ----A---- C:\Windows\system32\vbscript.dll
2015-12-08 22:20:24 ----A---- C:\Windows\system32\jsproxy.dll
2015-12-08 22:20:23 ----A---- C:\Windows\SYSWOW64\msrating.dll
2015-12-08 22:20:23 ----A---- C:\Windows\system32\dxtmsft.dll
2015-12-08 22:20:22 ----A---- C:\Windows\system32\ieui.dll
2015-12-08 22:20:22 ----A---- C:\Windows\system32\ieframe.dll
2015-12-08 22:20:21 ----A---- C:\Windows\system32\webcheck.dll
2015-12-08 22:20:21 ----A---- C:\Windows\system32\mshtmlmedia.dll
2015-12-08 22:20:21 ----A---- C:\Windows\system32\mshtmled.dll
2015-12-08 22:20:21 ----A---- C:\Windows\system32\ieUnatt.exe
2015-12-08 22:20:20 ----A---- C:\Windows\system32\wininet.dll
2015-12-08 22:20:20 ----A---- C:\Windows\system32\jscript9diag.dll
2015-12-08 22:20:20 ----A---- C:\Windows\system32\jscript9.dll
2015-12-08 22:20:20 ----A---- C:\Windows\system32\jscript.dll
2015-12-08 22:20:19 ----A---- C:\Windows\system32\MshtmlDac.dll
2015-12-08 22:20:18 ----A---- C:\Windows\system32\msrating.dll
2015-12-08 22:20:17 ----A---- C:\Windows\system32\mshtml.dll
2015-12-08 22:18:30 ----A---- C:\Windows\SYSWOW64\els.dll
2015-12-08 22:18:30 ----A---- C:\Windows\system32\els.dll
2015-12-08 16:31:43 ----D---- C:\NVIDIA
2015-12-07 21:15:01 ----D---- C:\Users\Franni\AppData\Roaming\Sun
2015-12-07 16:43:54 ----D---- C:\Program Files (x86)\Geeks3D
2015-12-07 16:13:25 ----D---- C:\ProgramData\Package Cache

======List of files/folders modified in the last 1 month======

2015-12-31 09:47:39 ----D---- C:\Program Files\Trend Micro
2015-12-31 09:46:40 ----D---- C:\Windows\Temp
2015-12-31 09:45:53 ----D---- C:\FRST
2015-12-31 09:44:30 ----D---- C:\Windows\Prefetch
2015-12-31 09:42:56 ----RD---- C:\Program Files
2015-12-31 09:42:56 ----D---- C:\Windows\system32\Tasks
2015-12-31 09:28:53 ----D---- C:\Windows\system32\config
2015-12-31 09:26:12 ----D---- C:\Windows
2015-12-31 09:24:02 ----D---- C:\Windows\inf
2015-12-31 09:22:59 ----D---- C:\ProgramData\NVIDIA Corporation
2015-12-31 09:22:32 ----D---- C:\Windows\System32
2015-12-31 09:22:30 ----D---- C:\Windows\SysWOW64
2015-12-31 09:22:30 ----D---- C:\Program Files\NVIDIA Corporation
2015-12-31 09:22:29 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2015-12-31 09:22:18 ----D---- C:\Windows\system32\DriverStore
2015-12-31 09:22:08 ----D---- C:\Windows\system32\drivers
2015-12-31 09:22:06 ----D---- C:\temp
2015-12-31 09:20:14 ----D---- C:\Windows\system32\catroot2
2015-12-31 09:10:34 ----HD---- C:\ProgramData
2015-12-31 09:09:45 ----D---- C:\Windows\Help
2015-12-31 01:07:34 ----SHD---- C:\System Volume Information
2015-12-30 14:28:32 ----D---- C:\Windows\Minidump
2015-12-29 21:50:01 ----D---- C:\Program Files\Common Files
2015-12-29 21:36:19 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2015-12-29 13:55:44 ----RD---- C:\Program Files (x86)
2015-12-28 21:29:24 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2015-12-22 15:26:08 ----D---- C:\Windows\Globalization
2015-12-19 17:13:53 ----SHD---- C:\Windows\Installer
2015-12-17 23:54:42 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2015-12-17 23:54:22 ----A---- C:\Windows\system32\PerfStringBackup.INI
2015-12-17 23:52:38 ----D---- C:\Windows\winsxs
2015-12-17 23:52:28 ----SD---- C:\Windows\SYSWOW64\GWX
2015-12-17 23:52:28 ----SD---- C:\Windows\system32\GWX
2015-12-16 18:34:16 ----A---- C:\Windows\SYSWOW64\OpenCL.dll
2015-12-16 18:34:16 ----A---- C:\Windows\system32\OpenCL.dll
2015-12-09 19:36:45 ----D---- C:\Windows\rescache
2015-12-09 18:56:21 ----D---- C:\Windows\Microsoft.NET
2015-12-09 18:55:55 ----RSD---- C:\Windows\assembly
2015-12-09 17:10:08 ----D---- C:\Program Files (x86)\Opera
2015-12-09 04:39:31 ----N---- C:\Windows\system32\MpSigStub.exe
2015-12-09 03:31:30 ----D---- C:\Program Files\Microsoft Silverlight
2015-12-09 03:31:28 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2015-12-09 03:30:04 ----D---- C:\Windows\SYSWOW64\cs-CZ
2015-12-09 03:30:04 ----D---- C:\Windows\system32\cs-CZ
2015-12-09 03:30:03 ----RSD---- C:\Windows\Fonts
2015-12-09 03:30:02 ----D---- C:\Windows\SYSWOW64\en-US
2015-12-09 03:30:02 ----D---- C:\Windows\system32\en-US
2015-12-09 03:30:02 ----D---- C:\Windows\ehome
2015-12-09 03:30:02 ----D---- C:\Program Files\Internet Explorer
2015-12-09 03:30:01 ----D---- C:\Program Files (x86)\Internet Explorer
2015-12-09 03:10:28 ----D---- C:\Windows\system32\MRT
2015-12-09 03:03:29 ----D---- C:\Windows\debug
2015-12-09 03:03:18 ----A---- C:\Windows\system32\MRT.exe
2015-12-07 21:18:42 ----D---- C:\ProgramData\Oracle
2015-12-07 21:16:27 ----D---- C:\Program Files (x86)\Java
2015-12-07 21:15:20 ----D---- C:\Program Files (x86)\Common Files
2015-12-07 21:14:42 ----A---- C:\Windows\SYSWOW64\WindowsAccessBridge-32.dll
2015-12-07 21:06:07 ----D---- C:\CrashHandlerCache
2015-12-02 15:36:56 ----D---- C:\Windows\Tasks

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2015-03-04 280376]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R0 speedfan;speedfan; C:\Windows\SysWOW64\speedfan.sys [2012-12-29 28664]
R1 SCDEmu;SCDEmu; C:\Windows\system32\drivers\SCDEmu.sys [2014-10-08 127760]
R2 AODDriver4.1;AODDriver4.1; \??\C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [2012-03-05 53888]
R2 AODDriver4.3.0;AODDriver4.3.0; \??\C:\Program Files (x86)\AMD\OverDrive\amd64\AODDriver2.sys [2014-09-19 60104]
R2 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2015-03-04 124568]
R3 amdiox64;AMD IO Driver; C:\Windows\system32\DRIVERS\amdiox64.sys [2010-02-18 46136]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2014-05-14 3962840]
R3 MBAMProtector;MBAMProtector; \??\C:\Windows\system32\drivers\mbam.sys [2015-10-05 25816]
R3 NTIOLib_1_0_3;NTIOLib_1_0_3; \??\C:\Program Files (x86)\MSI\Super-Charger\NTIOLib_X64.sys [2012-10-25 13368]
R3 NvStreamKms;NvStreamKms; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2015-12-16 19576]
R3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\Windows\system32\drivers\nvvad64v.sys [2015-12-16 50472]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2012-02-16 676968]
R3 rusb3hub;Renesas Electronics USB 3.0 Hub Driver (Version 3.0); C:\Windows\system32\DRIVERS\rusb3hub.sys [2011-11-21 101376]
R3 rusb3xhc;Renesas Electronics USB 3.0 Host Controller Driver (Version 3.0); C:\Windows\system32\DRIVERS\rusb3xhc.sys [2011-11-21 217088]
R3 usbfilter;AMD USB Filter Driver; C:\Windows\system32\DRIVERS\usbfilter.sys [2010-11-28 44672]
S0 lqwvfw;lqwvfw; C:\Windows\System32\drivers\jcvuos.sys []
S1 QMUdisk;tencent QMUdisk; \??\C:\Program Files (x86)\Tencent\QQPCMgr\11.0.16794.227\QMUdisk64.sys []
S2 Aspi32;Aspi32; C:\Windows\System32\drivers\aspi32.sys []
S3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2013-04-30 11922944]
S3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2013-04-30 359936]
S3 AtiHDAudioService;AMD Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdW76.sys [2012-05-14 96896]
S3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2013-04-30 11922944]
S3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudbus.sys [2014-10-13 110336]
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2013-02-05 57840]
S3 MBAMWebAccessControl;MBAMWebAccessControl; \??\C:\Windows\system32\drivers\mwac.sys [2015-10-05 63704]
S3 MTsensor;ATK0110 ACPI UTILITY; C:\Windows\system32\DRIVERS\ASACPI.sys [2005-03-29 8192]
S3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\Windows\system32\DRIVERS\nvm62x64.sys [2009-06-10 408960]
S3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda64v.sys [2015-12-16 205456]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfdx64.sys [2012-06-11 26112]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 RTL8023x64;Realtek 10/100 NIC Family NDIS x64 Driver; C:\Windows\system32\DRIVERS\Rtnic64.sys [2009-06-10 51712]
S3 ssudmdm;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudmdm.sys [2014-10-13 206080]
S3 TSSKX64;TSSKX64; C:\Windows\System32\drivers\tsskx64.sys [2015-11-16 38200]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2013-10-02 56832]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2012-08-23 30208]
S3 WinUsb;SAMSUNG Android USB Driver; C:\Windows\system32\DRIVERS\WinUSB.sys [2010-11-21 41984]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2013-04-30 238080]
R2 AMD FUEL Service;AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [2013-04-29 361984]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 GfExperienceService;NVIDIA GeForce Experience Service; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [2015-12-16 1156216]
R2 MSI_SuperCharger;MSI_SuperCharger; C:\Program Files (x86)\MSI\Super-Charger\ChargeService.exe [2012-10-25 143416]
R2 MsMpSvc;Microsoft Antimalware Service; c:\Program Files\Microsoft Security Client\MsMpEng.exe [2015-04-30 23816]
R2 NAUpdate;@C:\Program Files (x86)\Nero\Update\NASvc.exe,-200; C:\Program Files (x86)\Nero\Update\NASvc.exe [2014-01-27 773968]
R2 Nero BackItUp Scheduler 4.0;Nero BackItUp Scheduler 4.0; C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe [2009-07-20 935208]
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2015-12-16 1872504]
R2 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [2015-12-16 6477432]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2015-12-16 1256240]
R2 PnkBstrA;PnkBstrA; C:\Windows\syswow64\PnkBstrA.exe [2014-12-29 76888]
R2 ss_conn_service;SAMSUNG Mobile Connectivity Service; C:\Program Files\SAMSUNG\USB Drivers\25_escape\conn\ss_conn_service.exe [2014-10-13 743688]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2015-12-16 417400]
R2 Vaiafineco;Vaiafineco; C:\ProgramData\\Vaiafineco\\Vaiafineco.exe [2015-12-29 534016]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2012-07-17 2292480]
R3 NisSrv;@c:\Program Files\Microsoft Security Client\MpAsDesc.dll,-243; c:\Program Files\Microsoft Security Client\NisSrv.exe [2015-04-30 366544]
R3 NvStreamNetworkSvc;NVIDIA Streamer Network Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [2015-12-16 8185464]
S2 AODService;AODService; C:\Program Files (x86)\AMD\OverDrive\AODAssist.exe [2014-09-19 137584]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2014-04-11 103608]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2014-04-11 124088]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-30 144200]
S2 MBAMService;MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [2015-10-05 1135416]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2015-02-18 315488]
S2 SysTesterSvc;System Tester Service; C:\Program Files\NixController\bin\8d251941-deb5-49cf-88c4-b39455f7bf60\runner.exe []
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-12-28 269504]
S3 fsssvc;Windows Live Family Safety Service; C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2013-02-05 1512448]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-30 144200]
S3 gusvc;Google Software Updater; C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe [2015-01-04 194032]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2015-11-08 114688]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2015-12-29 146888]
S3 ServiceLayer;ServiceLayer; C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe [2012-06-11 724376]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2015-11-10 836176]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2014-05-29 1255736]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2014-04-11 50864]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-11 139944]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-11 139944]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-11 139944]

-----------------EOF-----------------
......................................................................................................................................................................

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119420
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosim o kontrolu...dekuji

#2 Příspěvek od Rudy »

Zdravím!
Spusťte tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

franni
Návštěvník
Návštěvník
Příspěvky: 167
Registrován: 19 kvě 2009 18:55
Bydliště: žďár u mnichova Hradiste

Re: Prosim o kontrolu...dekuji

#3 Příspěvek od franni »

# AdwCleaner v5.027 - Logfile created 02/01/2016 at 16:50:02
# Updated 30/12/2015 by Xplode
# Database : 2015-12-30.1 [Server]
# Operating system : Windows 7 Home Premium Service Pack 1 (x64)
# Username : Franni - FRANNI-PC
# Running from : C:\Users\Franni\Downloads\adwcleaner_5.027.exe
# Option : Scan
# Support : http://toolslib.net/forum

***** [ Services ] *****

Service Found : QMUdisk
Service Found : TSSKX64

***** [ Folders ] *****

Folder Found : C:\Program Files (x86)\Notation
Folder Found : C:\Program Files (x86)\tencent
Folder Found : C:\Program Files (x86)\myfree codec
Folder Found : C:\Program Files (x86)\Common Files\tencent
Folder Found : C:\Program Files\Common Files\tencent
Folder Found : C:\ProgramData\tencent
Folder Found : C:\ProgramData\TXQMPC
Folder Found : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\myfree codec
Folder Found : C:\Users\Franni\AppData\Local\Mail.Ru
Folder Found : C:\Users\Franni\AppData\Roaming\tencent
Folder Found : C:\Users\Franni\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Mail.Ru
Folder Found : C:\Users\Franni\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\腾讯软件
Folder Found : C:\Users\Public\Documents\Notation
Folder Found : C:\Windows\SysWOW64\config\systemprofile\AppData\Local\SearchProtect
Folder Found : C:\Windows\SysWOW64\config\systemprofile\AppData\Roaming\tencent

***** [ Files ] *****

File Found : C:\ProgramData\{262E20B8-6E20-4CEF-B1FD-D022AB1085F5}.dat
File Found : C:\Users\Franni\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_ogminpmldncgcmokldnmmapddoccmhfl_0.localstorage
File Found : C:\Users\Franni\AppData\Roaming\Mozilla\Firefox\Profiles\4z6sabfx.default-1443298549001\searchplugins\findit.xml
File Found : C:\Users\Franni\Desktop\Continue installation .lnk
File Found : C:\Windows\SysNative\drivers\TSSKX64.sys
File Found : C:\Windows\SysNative\drivers\TFsFltX64.sys
File Found : C:\Windows\SysWOW64\findit.xml

***** [ DLL ] *****


***** [ Shortcuts ] *****


***** [ Scheduled tasks ] *****


***** [ Registry ] *****

Key Found : HKLM\SOFTWARE\Classes\AppID\escort.DLL
Key Found : HKLM\SOFTWARE\Classes\AppID\escortApp.DLL
Key Found : HKLM\SOFTWARE\Classes\AppID\escortEng.DLL
Key Found : HKLM\SOFTWARE\Classes\AppID\escorTlbr.DLL
Key Found : HKLM\SOFTWARE\Classes\AppID\esrv.EXE
Key Found : HKLM\SOFTWARE\Classes\AppID\DownloadProxy.EXE
Key Found : HKLM\SOFTWARE\CLASSES\METNSD
Key Found : HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\QQPCRTP
Key Found : HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\QQPCRTP
Key Found : HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\IELNKSRCH
Key Found : HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\APP PATHS\Stpro.exe
Key Found : HKLM\SOFTWARE\Classes\AppID\{09C554C3-109B-483C-A06B-F14172F1A947}
Key Found : HKLM\SOFTWARE\Classes\AppID\{4D076AB4-7562-427A-B5D2-BD96E19DEE56}
Key Found : HKLM\SOFTWARE\Classes\AppID\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}
Key Found : HKLM\SOFTWARE\Classes\AppID\{B12E99ED-69BD-437C-86BE-C862B9E5444D}
Key Found : HKLM\SOFTWARE\Classes\AppID\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
Key Found : HKLM\SOFTWARE\Classes\AppID\{51BEE30D-EEC8-4BA3-930B-298B8E759EB1}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{70DE12EA-79F4-46BC-9812-86DB50A2FD64}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{826D7151-8D99-434B-8540-082B8C2AE556}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{5C3B5DAA-0AFF-4808-90FB-0F2F2D760E36}
Key Found : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8FFE}
Key Found : HKLM\SOFTWARE\Classes\Interface\{813A22E0-3E2B-4188-9BDA-ECA9878B8D48}
Key Found : HKLM\SOFTWARE\Classes\Interface\{BCFF5F55-6F44-11D2-86F8-00104B265ED5}
Key Found : HKLM\SOFTWARE\Classes\Interface\{E7270EC6-0113-4A78-B610-E501D0A9E48E}
Key Found : HKLM\SOFTWARE\Classes\Interface\{A8F7D0A5-7074-40B8-9BDC-1174BDD0A132}
Key Found : HKLM\SOFTWARE\Classes\Interface\{D14D64BC-A0E4-42E3-BB72-FB41EA43C198}
Key Found : HKLM\SOFTWARE\Classes\Interface\{DD1F043F-ABC8-4643-8B95-D2C5B22BB019}
Key Found : HKLM\SOFTWARE\Classes\Interface\{E3F3E8F9-F747-4DD6-BA6B-82A6CE1E0860}
Key Found : HKLM\SOFTWARE\Classes\Interface\{ED0B64D4-BF27-4521-AD27-190F49BF5EA7}
Key Found : HKLM\SOFTWARE\Classes\Interface\{023E9EC8-B147-40EB-B0B3-DF90618FB371}
Key Found : HKLM\SOFTWARE\Classes\Interface\{0522D9A4-4D57-437D-978D-E5B3B6C9005D}
Key Found : HKLM\SOFTWARE\Classes\Interface\{07F41522-AF7D-4F26-B394-094F059FDB8A}
Key Found : HKLM\SOFTWARE\Classes\Interface\{0C40F472-7407-4467-8914-1DEA7C326972}
Key Found : HKLM\SOFTWARE\Classes\Interface\{212E6D43-6062-492A-B8CC-144669FF11ED}
Key Found : HKLM\SOFTWARE\Classes\Interface\{224FE662-1E6D-4BC0-AEBB-9E2FB4057BE9}
Key Found : HKLM\SOFTWARE\Classes\Interface\{3A807417-B46D-4D37-8C9A-19AC6DE204F9}
Key Found : HKLM\SOFTWARE\Classes\Interface\{3CC60715-D6C5-429D-830E-43FA3F86C61D}
Key Found : HKLM\SOFTWARE\Classes\Interface\{4517D94C-19BA-46FA-BE66-2A30CEAC4A85}
Key Found : HKLM\SOFTWARE\Classes\Interface\{555D7146-94A8-4C94-AE76-C39CDC7F7705}
Key Found : HKLM\SOFTWARE\Classes\Interface\{59D188FA-757A-424E-8C93-F58FFD896BD7}
Key Found : HKLM\SOFTWARE\Classes\Interface\{8120D9D6-785C-4413-9C0C-DF2028C56FAD}
Key Found : HKLM\SOFTWARE\Classes\Interface\{823AE2EB-E62C-4847-B192-C99B91B92416}
Key Found : HKLM\SOFTWARE\Classes\Interface\{9B4F7CFE-987D-410E-A8E4-20182E0B3C24}
Key Found : HKLM\SOFTWARE\Classes\Interface\{9B9A45F4-18FC-484A-BACA-076D78273D8E}
Key Found : HKLM\SOFTWARE\Classes\Interface\{A6D54287-7939-466A-8579-92546D946C8C}
Key Found : HKLM\SOFTWARE\Classes\Interface\{A78EDAFB-926F-4D93-AB13-8232D7378EB1}
Key Found : HKLM\SOFTWARE\Classes\Interface\{EB9002DE-1180-77AB-1628-44A235C5D828}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{11549FE4-7C5A-4C17-9FC3-56FC5162A994}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{82351433-9094-11D1-A24B-00A0C932C7DF}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{D6D98B1C-CD10-2B1B-0108-78E48446B4BC}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A2159D33-3CE2-401B-8967-1B270628A311}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8FFE}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{813A22E0-3E2B-4188-9BDA-ECA9878B8D48}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{BCFF5F55-6F44-11D2-86F8-00104B265ED5}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{E7270EC6-0113-4A78-B610-E501D0A9E48E}
Key Found : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A2159D33-3CE2-401B-8967-1B270628A311}
Key Found : HKCU\Software\IM
Key Found : HKCU\Software\Myfree Codec
Key Found : HKCU\Software\PRODUCTSETUP
Key Found : HKCU\Software\WEBAPP
Key Found : HKCU\Software\AppDataLow\{12DA0E6F-5543-440C-BAA2-28BF01070AFA}
Key Found : HKLM\SOFTWARE\Myfree Codec
Key Found : HKLM\SOFTWARE\{12DA0E6F-5543-440C-BAA2-28BF01070AFA}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\GUPlayer
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\MyFreeCodec
Key Found : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\WarThunder
Key Found : HKU\.DEFAULT\Software\AppDataLow\{12DA0E6F-5543-440C-BAA2-28BF01070AFA}
Key Found : HKU\.DEFAULT\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\windows_ie_ac_001\Software\_CrossriderRegNamePlaceHolder_
Data Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURls [Tabs] - hxxp://search.creativetoolbars.com/?src=nt&id=smartbar&g=
Data Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURls [Tab] - hxxp://guanjia.qq.com/comm-htdocs/quickaccess/
Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{ielnksrch}
Data Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes [DefaultScope] - {ielnksrch}
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\ielnksrch

***** [ Web browsers ] *****

[C:\Users\Franni\AppData\Roaming\Mozilla\Firefox\Profiles\4z6sabfx.default-1443298549001\prefs.js] [Preference] Found : user_pref("browser.search.defaultenginename", "findit");
[C:\Users\Franni\AppData\Roaming\Mozilla\Firefox\Profiles\4z6sabfx.default-1443298549001\prefs.js] [Preference] Found : user_pref("extensions.quick_start.enable_search1", false);
[C:\Users\Franni\AppData\Roaming\Mozilla\Firefox\Profiles\4z6sabfx.default-1443298549001\prefs.js] [Preference] Found : user_pref("extensions.quick_start.sd.closeWindowWithLastTab_prev_state", false);
[C:\Users\Franni\AppData\Local\Google\Chrome\User Data\Default\Web data] [Search Provider] Found : bechiro s.l.
[C:\Users\Franni\AppData\Local\Google\Chrome\User Data\Default\Web data] [Search Provider] Found : trovi.search
[C:\Users\Franni\AppData\Local\Google\Chrome\User Data\Default\Web data] [Search Provider] Found : istartsurf
[C:\Users\Franni\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Startup_URLs] Found : hxxp://www.istartsurf.com/?type=hp&ts=14446069 ... 4378543785
[C:\Users\Franni\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Default_Search_Provider] Found : hxxp://www.istartsurf.com/webfavicon.ico
[C:\Users\Franni\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Extension] Found : booedmolknjekdopkepjjeckmjkdpfgl
[C:\Users\Franni\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Extension] Found : flpcjncodpafbgdpnkljologafpionhb
[C:\Users\Franni\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Extension] Found : ogminpmldncgcmokldnmmapddoccmhfl

########## EOF - C:\AdwCleaner\AdwCleaner[S6].txt - [10108 bytes] ##########

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119420
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosim o kontrolu...dekuji

#4 Příspěvek od Rudy »

ADW nemazal, neklikl jste na >clean<. Postup zopakujte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

franni
Návštěvník
Návštěvník
Příspěvky: 167
Registrován: 19 kvě 2009 18:55
Bydliště: žďár u mnichova Hradiste

Re: Prosim o kontrolu...dekuji

#5 Příspěvek od franni »

omlouvam se,,zapomel jsem na to,,,dekuji tu je :

# AdwCleaner v5.027 - Logfile created 02/01/2016 at 21:21:37
# Updated 30/12/2015 by Xplode
# Database : 2015-12-30.1 [Server]
# Operating system : Windows 7 Home Premium Service Pack 1 (x64)
# Username : Franni - FRANNI-PC
# Running from : C:\Users\Franni\Downloads\adwcleaner_5.027.exe
# Option : Cleaning
# Support : http://toolslib.net/forum

***** [ Services ] *****

[-] Service Deleted : QMUdisk
[-] Service Deleted : TSSKX64

***** [ Folders ] *****

[-] Folder Deleted : C:\Program Files (x86)\Notation
[-] Folder Deleted : C:\Program Files (x86)\tencent
[-] Folder Deleted : C:\Program Files (x86)\myfree codec
[-] Folder Deleted : C:\Program Files (x86)\Common Files\tencent
[-] Folder Deleted : C:\Program Files\Common Files\tencent
[-] Folder Deleted : C:\ProgramData\tencent
[-] Folder Deleted : C:\ProgramData\TXQMPC
[-] Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\myfree codec
[-] Folder Deleted : C:\Users\Franni\AppData\Local\Mail.Ru
[-] Folder Deleted : C:\Users\Franni\AppData\Roaming\tencent
[-] Folder Deleted : C:\Users\Franni\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Mail.Ru
[-] Folder Deleted : C:\Users\Franni\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\腾讯软件
[-] Folder Deleted : C:\Users\Public\Documents\Notation
[-] Folder Deleted : C:\Windows\SysWOW64\config\systemprofile\AppData\Local\SearchProtect
[-] Folder Deleted : C:\Windows\SysWOW64\config\systemprofile\AppData\Roaming\tencent

***** [ Files ] *****

[-] File Deleted : C:\ProgramData\{262E20B8-6E20-4CEF-B1FD-D022AB1085F5}.dat
[-] File Deleted : C:\Users\Franni\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_ogminpmldncgcmokldnmmapddoccmhfl_0.localstorage
[-] File Deleted : C:\Users\Franni\AppData\Roaming\Mozilla\Firefox\Profiles\4z6sabfx.default-1443298549001\searchplugins\findit.xml
[-] File Deleted : C:\Users\Franni\Desktop\Continue installation .lnk
[-] File Deleted : C:\Windows\SysNative\drivers\TSSKX64.sys
[-] File Deleted : C:\Windows\SysNative\drivers\TFsFltX64.sys
[-] File Deleted : C:\Windows\SysWOW64\findit.xml

***** [ DLLs ] *****


***** [ Shortcuts ] *****


***** [ Scheduled tasks ] *****


***** [ Registry ] *****

[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\escort.DLL
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\escortApp.DLL
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\escortEng.DLL
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\escorTlbr.DLL
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\esrv.EXE
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\DownloadProxy.EXE
[-] Key Deleted : HKLM\SOFTWARE\CLASSES\METNSD
[-] Key Deleted : HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\QQPCRTP
[-] Key Deleted : HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\QQPCRTP
[-] Key Deleted : HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\IELNKSRCH
[-] Key Deleted : HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\APP PATHS\Stpro.exe
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{09C554C3-109B-483C-A06B-F14172F1A947}
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{4D076AB4-7562-427A-B5D2-BD96E19DEE56}
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{B12E99ED-69BD-437C-86BE-C862B9E5444D}
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{51BEE30D-EEC8-4BA3-930B-298B8E759EB1}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{70DE12EA-79F4-46BC-9812-86DB50A2FD64}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{826D7151-8D99-434B-8540-082B8C2AE556}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5C3B5DAA-0AFF-4808-90FB-0F2F2D760E36}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8FFE}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{813A22E0-3E2B-4188-9BDA-ECA9878B8D48}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{BCFF5F55-6F44-11D2-86F8-00104B265ED5}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{E7270EC6-0113-4A78-B610-E501D0A9E48E}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{A8F7D0A5-7074-40B8-9BDC-1174BDD0A132}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{D14D64BC-A0E4-42E3-BB72-FB41EA43C198}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{DD1F043F-ABC8-4643-8B95-D2C5B22BB019}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{E3F3E8F9-F747-4DD6-BA6B-82A6CE1E0860}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{ED0B64D4-BF27-4521-AD27-190F49BF5EA7}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{023E9EC8-B147-40EB-B0B3-DF90618FB371}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{0522D9A4-4D57-437D-978D-E5B3B6C9005D}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{07F41522-AF7D-4F26-B394-094F059FDB8A}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{0C40F472-7407-4467-8914-1DEA7C326972}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{212E6D43-6062-492A-B8CC-144669FF11ED}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{224FE662-1E6D-4BC0-AEBB-9E2FB4057BE9}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{3A807417-B46D-4D37-8C9A-19AC6DE204F9}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{3CC60715-D6C5-429D-830E-43FA3F86C61D}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{4517D94C-19BA-46FA-BE66-2A30CEAC4A85}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{555D7146-94A8-4C94-AE76-C39CDC7F7705}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{59D188FA-757A-424E-8C93-F58FFD896BD7}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{8120D9D6-785C-4413-9C0C-DF2028C56FAD}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{823AE2EB-E62C-4847-B192-C99B91B92416}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{9B4F7CFE-987D-410E-A8E4-20182E0B3C24}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{9B9A45F4-18FC-484A-BACA-076D78273D8E}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{A6D54287-7939-466A-8579-92546D946C8C}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{A78EDAFB-926F-4D93-AB13-8232D7378EB1}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{EB9002DE-1180-77AB-1628-44A235C5D828}
[-] Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{11549FE4-7C5A-4C17-9FC3-56FC5162A994}
[-] Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}
[-] Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
[-] Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{82351433-9094-11D1-A24B-00A0C932C7DF}
[-] Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{D6D98B1C-CD10-2B1B-0108-78E48446B4BC}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A2159D33-3CE2-401B-8967-1B270628A311}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8FFE}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{813A22E0-3E2B-4188-9BDA-ECA9878B8D48}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{BCFF5F55-6F44-11D2-86F8-00104B265ED5}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{E7270EC6-0113-4A78-B610-E501D0A9E48E}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A2159D33-3CE2-401B-8967-1B270628A311}
[-] Key Deleted : HKCU\Software\IM
[-] Key Deleted : HKCU\Software\Myfree Codec
[-] Key Deleted : HKCU\Software\PRODUCTSETUP
[-] Key Deleted : HKCU\Software\WEBAPP
[-] Key Deleted : HKCU\Software\AppDataLow\{12DA0E6F-5543-440C-BAA2-28BF01070AFA}
[-] Key Deleted : HKLM\SOFTWARE\Myfree Codec
[-] Key Deleted : HKLM\SOFTWARE\{12DA0E6F-5543-440C-BAA2-28BF01070AFA}
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\GUPlayer
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\MyFreeCodec
[-] Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\WarThunder
[-] Key Deleted : HKU\.DEFAULT\Software\AppDataLow\{12DA0E6F-5543-440C-BAA2-28BF01070AFA}
[-] Key Deleted : HKU\.DEFAULT\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\windows_ie_ac_001\Software\_CrossriderRegNamePlaceHolder_
[-] Data Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURls [Tabs]
[-] Data Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURls [Tab]
[-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{ielnksrch}
[-] Data Restored : HKCU\Software\Microsoft\Internet Explorer\SearchScopes [DefaultScope]
[!] Key Not Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\ielnksrch

***** [ Web browsers ] *****

[-] [C:\Users\Franni\AppData\Roaming\Mozilla\Firefox\Profiles\4z6sabfx.default-1443298549001\prefs.js] [Preference] Deleted : user_pref("browser.search.defaultenginename", "findit");
[-] [C:\Users\Franni\AppData\Roaming\Mozilla\Firefox\Profiles\4z6sabfx.default-1443298549001\prefs.js] [Preference] Deleted : user_pref("extensions.quick_start.enable_search1", false);
[-] [C:\Users\Franni\AppData\Roaming\Mozilla\Firefox\Profiles\4z6sabfx.default-1443298549001\prefs.js] [Preference] Deleted : user_pref("extensions.quick_start.sd.closeWindowWithLastTab_prev_state", false);
[-] [C:\Users\Franni\AppData\Local\Google\Chrome\User Data\Default\Web Data] [Search Provider] Deleted : bechiro s.l.
[-] [C:\Users\Franni\AppData\Local\Google\Chrome\User Data\Default\Web Data] [Search Provider] Deleted : trovi.search
[-] [C:\Users\Franni\AppData\Local\Google\Chrome\User Data\Default\Web Data] [Search Provider] Deleted : istartsurf
[-] [C:\Users\Franni\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Startup_URLs] Deleted : hxxp://www.istartsurf.com/?type=hp&ts=14446069 ... 4378543785
[-] [C:\Users\Franni\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Default_Search_Provider] Deleted : hxxp://www.istartsurf.com/webfavicon.ico
[-] [C:\Users\Franni\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Extension] Deleted : booedmolknjekdopkepjjeckmjkdpfgl
[-] [C:\Users\Franni\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Extension] Deleted : flpcjncodpafbgdpnkljologafpionhb
[-] [C:\Users\Franni\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Extension] Deleted : ogminpmldncgcmokldnmmapddoccmhfl

*************************

:: "Tracing" keys removed
:: Winsock settings cleared

########## EOF - C:\AdwCleaner\AdwCleaner[C6].txt - [10756 bytes] ##########

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119420
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosim o kontrolu...dekuji

#6 Příspěvek od Rudy »

Teď je to v pořádku. Dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

franni
Návštěvník
Návštěvník
Příspěvky: 167
Registrován: 19 kvě 2009 18:55
Bydliště: žďár u mnichova Hradiste

Re: Prosim o kontrolu...dekuji

#7 Příspěvek od franni »

Logfile of random's system information tool 1.10 (written by random/random)
Run by Franni at 2016-01-03 12:18:32
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 110 GB (36%) free of 305 GB
Total RAM: 4044 MB (67% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 12:18:44, on 3.1.2016
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.18123)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Users\Franni\AppData\Local\MyComGames\MyComGames.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Users\Franni\AppData\Local\MyComGames\MyComGames.exe
C:\Program Files\trend micro\Franni.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,SearchAssistant = http://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRYSttY34mamef947lyucr_RRfpjzIC4jnN0OHIhdDha_VAS1DuLXh6QKiB1IGKTN2MjDxb-ENar0RnNRruPz9xAG73AwD-qQRky9Hpuh1GLKl_4HI0KhPBDoQPyJvUKNE0SrRhuUtpAhbyIHaw1rbxR4tZNCv9EPXg,,&q={searchTerms}
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRYSttY34mamef947lyucr_RRfpjzIC4jnN0OHIhdDha_VAS1DuLXh6QKiB1IGKTN2MjDxb-ENar0RnNRruPz9xAG73AwD-qQRky9Hpuh1GLKl_4HI0KhPBDoQPyJvUKNE0SrRhuUtpAhbyIHaw1rbxR4tZNCv9EPXg,,&q={searchTerms}
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRYSttY34mamef947lyucr_RRfpjzIC4jnN0OHIhdDha_VAS1DuLXh6QKiB1IGKTN2MjDxb-ENar0RnNRruPz9xAG73AwD-qQRky9Hpuh1GLKl_4HI0KhPBDoQPyJvUKNE0SrRhuUtpAhbyIHaw1rbxR4tZNCv9EPXg,,&q={searchTerms}
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://%66%65%65%64.%73%6E%61%70%64%6F.%63%6F%6D/?p=mKO_AwFzXIpYRYSttY34mamef947lyucr_RRfpjzIC4jnN0OHIhdDha_VAS1DuLXh6QKiB1IGKTN2MjDxb-ENar0RnNRruPz9xAG73AwD-qQSui71FXx5SkvEILxx6Vgcf6kVnPTs6tjyqXdxpiQTFffli8N-MqBgotAnUNqFcnXxQ,,
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://f.jiss360.cn
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,Default_Search_URL = http://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRYSttY34mamef947lyucr_RRfpjzIC4jnN0OHIhdDha_VAS1DuLXh6QKiB1IGKTN2MjDxb-ENar0RnNRruPz9xAG73AwD-qQRky9Hpuh1GLKl_4HI0KhPBDoQPyJvUKNE0SrRhuUtpAhbyIHaw1rbxR4tZNCv9EPXg,,&q={searchTerms}
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe,
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_66\bin\ssv.dll
O2 - BHO: Pomocná služba pro přihlášení k účtu Microsoft - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_66\bin\jp2ssv.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [Web Companion] C:\Program Files (x86)\Lavasoft\Web Companion\Application\WebCompanion.exe --minimize
O4 - HKCU\..\Run: [MyComGames] "C:\Users\Franni\AppData\Local\MyComGames\MyComGames.exe" -autostart
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - https://fpdownload.macromedia.com/get/s ... wflash.cab
O20 - AppInit_DLLs: C:\ProgramData\Vaiafineco\CanString.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: AODService - Unknown owner - C:\Program Files (x86)\AMD\OverDrive\AODAssist.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: MBAMService - Malwarebytes - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: MSI_SuperCharger - MSI - C:\Program Files (x86)\MSI\Super-Charger\ChargeService.exe
O23 - Service: @C:\Program Files (x86)\Nero\Update\NASvc.exe,-200 (NAUpdate) - Nero AG - C:\Program Files (x86)\Nero\Update\NASvc.exe
O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Network Service (NvStreamNetworkSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: ServiceLayer - Nokia - C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: SAMSUNG Mobile Connectivity Service (ss_conn_service) - DEVGURU Co., LTD. - C:\Program Files\SAMSUNG\USB Drivers\25_escape\conn\ss_conn_service.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: System Tester Service (SysTesterSvc) - Unknown owner - C:\Program Files\NixController\bin\8d251941-deb5-49cf-88c4-b39455f7bf60\runner.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Vaiafineco - Unknown owner - C:\ProgramData\\Vaiafineco\\Vaiafineco.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 11190 bytes

======Listing Processes======



\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
"C:\Windows\system32\nvvsvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
C:\Windows\system32\svchost.exe -k RPCSS
"c:\Program Files\Microsoft Security Client\MsMpEng.exe"
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs

C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k NetworkService
atieclxx
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
"C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe" /launchService
"C:\Windows\system32\Dwm.exe"
"taskhost.exe"
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\AMD\OverDrive\AODAssist.exe"
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
taskeng.exe {3EDA4315-7F44-4C20-949D-4BF74FF04AEA}
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
"C:\Users\Franni\AppData\Local\MyComGames\MyComGames.exe" -autostart
"C:\Windows\system32\NOTEPAD.EXE" C:\AdwCleaner\AdwCleaner[C6].txt
"C:\Windows\system32\GWX\GWX.exe"
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
C:\Windows\System32\svchost.exe -k utcsvc
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe"
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe" -osint -url "C:\Users\Franni\Desktop\pbgame.htm"
"C:\Program Files (x86)\MSI\Super-Charger\ChargeService.exe"
"C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe"
C:\Windows\SysWOW64\PnkBstrA.exe
C:\Windows\system32\svchost.exe -k regsvc
"C:\Program Files\SAMSUNG\USB Drivers\25_escape\conn\ss_conn_service.exe"
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\ProgramData\\Vaiafineco\\Vaiafineco.exe -f "C:\ProgramData\\Vaiafineco\\Vaiafineco.dat" -l -a
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
WLIDSvcM.exe 3960
"c:\Program Files\Microsoft Security Client\NisSrv.exe"
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\SearchIndexer.exe /Embedding
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe"
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:\ProgramData\Vaiafineco\Vaiafineco.exe" -f "C:\ProgramData\Vaiafineco\Daltstatjob.dat" -l -a regname Stpro.exe
"C:\Program Files (x86)\Nero\Update\NASvc.exe"
C:\Windows\servicing\TrustedInstaller.exe
"taskhost.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe" serviceapp
\??\C:\Windows\system32\conhost.exe "-19955034431789173817102592333611871664983280449361128120028648180601-873214150
"C:\Users\Franni\AppData\Local\MyComGames\MyComGames.exe" --type=renderer --disable-gpu-compositing --no-sandbox --lang=en-US --disable-pack-loading --lang=ru --log-file="C:\Users\Franni\AppData\Local\MyComGames\Chrome.log" --log-severity=error --product-version="Chrome/45.0.2454.62 Downloader/1650 MyComGameCenter/165" --disable-extensions --ppapi-flash-path="C:\Users\Franni\AppData\Local\MyComGames\Chrome\3.2454.1317\pepflashplayer32_18_0_0_232.dll" --ppapi-flash-version=18.0.0.232 --device-scale-factor=1 --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --content-image-texture-target=3553 --video-image-texture-target=3553 --disable-gpu-compositing --channel="2464.3.52119556\309047314" /prefetch:673131151
taskeng.exe {CB1358EF-FE0D-4D98-AA3A-4CE2D964CA9B}
C:\Windows\system32\sppsvc.exe
"C:\Users\Franni\Downloads\RSITx64.exe"

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler

=========Mozilla firefox=========

ProfilePath - C:\Users\Franni\AppData\Roaming\Mozilla\Firefox\Profiles\4z6sabfx.default-1443298549001

prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "C:\\ProgramData\\Vaiafineco\\ff.HP"

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 20.0.0.267 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_20_0_0_267.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/ShockwavePlayer]
"Description"=Adobe Shockwave Player
"Path"=C:\Windows\SysWOW64\Adobe\Director\np32dsw_1217157.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=11.66.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre1.8.0_66\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=11.66.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre1.8.0_66\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files (x86)\Microsoft Silverlight\5.1.41105.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Nero.com/KM]
"Description"=
"Path"=C:\PROGRA~2\COMMON~1\Nero\BROWSE~1\NPBROW~1.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVision]
"Description"=NVIDIA stereo images plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVisionStreaming]
"Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 20.0.0.267 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_20_0_0_267.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files\Microsoft Silverlight\5.1.41105.0\npctrl.dll


======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17 529664]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2015-12-19 256456]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_66\bin\ssv.dll [2015-12-07 460384]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocná služba pro přihlášení k účtu Microsoft - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17 441592]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2015-12-19 194504]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_66\bin\jp2ssv.dll [2015-12-07 172640]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2015-12-19 256456]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2015-12-19 194504]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2015-12-16 2771576]
"ShadowPlay"=C:\Windows\system32\nvspcap64.dll [2015-12-16 1846016]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Web Companion"=C:\Program Files (x86)\Lavasoft\Web Companion\Application\WebCompanion.exe --minimize []
"MyComGames"=C:\Users\Franni\AppData\Local\MyComGames\MyComGames.exe [2015-12-30 4741064]
""= []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AMD AVT]
Cmd.exe /c start AMD Accelerated Video Transcoding device initialization /min C:\Program Files (x86)\AMD AVT\bin\kdbsync.exe aml []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSC]
c:\Program Files\Microsoft Security Client\msseces.exe [2015-04-30 1337000]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvBackend]
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2015-12-16 2771576]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PWRISOVM.EXE]
C:\Program Files\PowerISO\PWRISOVM.EXE [2014-10-08 408888]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RUSB3MON]
C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\rusb3mon.exe [2011-09-20 115048]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\StartCCC]
C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2013-04-29 642304]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Super-Charger]
C:\Program Files (x86)\MSI\Super-Charger\Super-Charger.exe [2012-10-23 502328]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Trend Micro Titanium]
C:\Program Files\Trend Micro\Titanium\UIFramework\uiWinMgr.exe [2013-09-16 1382568]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Yahoo! Search]
C:\Users\Franni\AppData\Local\Pay-By-Ads\Yahoo! Search\1.3.12.4\dsrlte.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^McAfee Security Scan Plus.lnk]
C:\PROGRA~1\MCAFEE~1\385C9A~1.150\SSSCHE~1.EXE []

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2015-11-09 596528]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\ProgramData\Vaiafineco\SingleLam.dll"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
"NoDriveTypeAutoRun"=221

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"aux3"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"aux"=wdmaud.drv
"wave5"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer5"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"wave7"=wdmaud.drv
"midi7"=wdmaud.drv
"mixer7"=wdmaud.drv
"wave6"=wdmaud.drv
"midi6"=wdmaud.drv
"mixer6"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2015-12-31 10:55:01 ----A---- C:\Windows\SYSWOW64\nvStreaming.exe
2015-12-31 10:52:01 ----A---- C:\Windows\SYSWOW64\nvumdshim.dll
2015-12-31 10:52:01 ----A---- C:\Windows\SYSWOW64\nvopencl.dll
2015-12-31 10:52:01 ----A---- C:\Windows\SYSWOW64\nvoglv32.dll
2015-12-31 10:52:01 ----A---- C:\Windows\SYSWOW64\nvoglshim32.dll
2015-12-31 10:52:01 ----A---- C:\Windows\SYSWOW64\nvinit.dll
2015-12-31 10:52:01 ----A---- C:\Windows\SYSWOW64\NvIFROpenGL.dll
2015-12-31 10:52:01 ----A---- C:\Windows\SYSWOW64\NvIFR.dll
2015-12-31 10:52:01 ----A---- C:\Windows\SYSWOW64\NvFBC.dll
2015-12-31 10:52:01 ----A---- C:\Windows\SYSWOW64\nvEncodeAPI.dll
2015-12-31 10:52:01 ----A---- C:\Windows\SYSWOW64\nvd3dum.dll
2015-12-31 10:52:01 ----A---- C:\Windows\SYSWOW64\nvcuvid.dll
2015-12-31 10:52:01 ----A---- C:\Windows\SYSWOW64\nvcuda.dll
2015-12-31 10:52:01 ----A---- C:\Windows\system32\nvwgf2umx.dll
2015-12-31 10:52:01 ----A---- C:\Windows\system32\nvopencl.dll
2015-12-31 10:52:01 ----A---- C:\Windows\system32\nvoglv64.dll
2015-12-31 10:52:01 ----A---- C:\Windows\system32\nvoglshim64.dll
2015-12-31 10:52:01 ----A---- C:\Windows\system32\nvinitx.dll
2015-12-31 10:52:01 ----A---- C:\Windows\system32\NvIFROpenGL.dll
2015-12-31 10:52:01 ----A---- C:\Windows\system32\NvIFR64.dll
2015-12-31 10:52:01 ----A---- C:\Windows\system32\nvhdap64.dll
2015-12-31 10:52:01 ----A---- C:\Windows\system32\NvFBC64.dll
2015-12-31 10:52:01 ----A---- C:\Windows\system32\nvEncodeAPI64.dll
2015-12-31 10:52:01 ----A---- C:\Windows\system32\nvdispgenco6434144.dll
2015-12-31 10:52:01 ----A---- C:\Windows\system32\nvdispco6434144.dll
2015-12-31 10:52:01 ----A---- C:\Windows\system32\nvd3dumx.dll
2015-12-31 10:52:01 ----A---- C:\Windows\system32\nvcuvid.dll
2015-12-31 10:52:01 ----A---- C:\Windows\system32\nvcuda.dll
2015-12-31 10:52:01 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2015-12-31 10:52:01 ----A---- C:\Windows\system32\drivers\nvhda64v.sys
2015-12-31 10:52:00 ----A---- C:\Windows\SYSWOW64\nvcompiler.dll
2015-12-31 10:52:00 ----A---- C:\Windows\system32\nvcompiler.dll
2015-12-31 10:35:58 ----D---- C:\Users\Franni\AppData\Roaming\NVIDIA
2015-12-31 10:32:04 ----D---- C:\ProgramData\NVIDIA
2015-12-31 10:31:23 ----A---- C:\Windows\system32\nvvsvc.exe
2015-12-31 10:31:23 ----A---- C:\Windows\system32\nvsvcr.dll
2015-12-31 10:31:23 ----A---- C:\Windows\system32\nvsvc64.dll
2015-12-31 10:31:23 ----A---- C:\Windows\system32\nvshext.dll
2015-12-31 10:31:23 ----A---- C:\Windows\system32\nvmctray.dll
2015-12-31 10:31:23 ----A---- C:\Windows\system32\nvcpl.dll
2015-12-31 10:29:36 ----A---- C:\Windows\SYSWOW64\nvwgf2um.dll
2015-12-31 10:29:36 ----A---- C:\Windows\system32\nvumdshimx.dll
2015-12-31 10:29:33 ----A---- C:\Windows\system32\nvdispgenco6435598.dll
2015-12-31 10:29:33 ----A---- C:\Windows\system32\nvdispco6435598.dll
2015-12-31 10:29:29 ----A---- C:\Windows\SYSWOW64\nvapi.dll
2015-12-31 10:29:29 ----A---- C:\Windows\system32\nvapi64.dll
2015-12-31 09:47:38 ----D---- C:\rsit
2015-12-31 09:22:32 ----A---- C:\Windows\system32\nvspbridge64.dll
2015-12-31 09:22:32 ----A---- C:\Windows\system32\NvRtmpStreamer64.dll
2015-12-31 09:22:31 ----A---- C:\Windows\system32\nvspcap64.dll
2015-12-31 09:22:30 ----A---- C:\Windows\SYSWOW64\nvspcap.dll
2015-12-31 09:22:30 ----A---- C:\Windows\SYSWOW64\nvspbridge.dll
2015-12-31 09:18:51 ----A---- C:\Windows\SYSWOW64\nvaudcap32v.dll
2015-12-31 09:18:51 ----A---- C:\Windows\system32\nvaudcap64v.dll
2015-12-31 09:18:51 ----A---- C:\Windows\system32\drivers\nvvad64v.sys
2015-12-30 13:11:36 ----A---- C:\Windows\system32\nvhdagenco6420103.dll
2015-12-29 21:50:01 ----A---- C:\Program Files\Common Files\hvvgmgtz.exe
2015-12-29 21:49:38 ----D---- C:\ProgramData\Vaiafineco
2015-12-29 21:48:52 ----A---- C:\Program Files\Common Files\ff1jxowl.exe
2015-12-29 09:46:50 ----D---- C:\Program Files (x86)\Mozilla Firefox
2015-12-23 21:33:52 ----A---- C:\Program Files\Common Files\wlop2a03.exe
2015-12-23 21:33:52 ----A---- C:\Program Files\Common Files\a0ngluum.exe
2015-12-23 09:24:19 ----A---- C:\Program Files\Common Files\kvidpujs.exe
2015-12-23 09:24:17 ----A---- C:\Program Files\Common Files\2zg5pqwl.exe
2015-12-16 21:40:11 ----D---- C:\esoterika
2015-12-08 22:21:06 ----A---- C:\Windows\SYSWOW64\tzres.dll
2015-12-08 22:21:06 ----A---- C:\Windows\system32\tzres.dll
2015-12-08 22:21:01 ----A---- C:\Windows\SYSWOW64\usp10.dll
2015-12-08 22:21:01 ----A---- C:\Windows\system32\usp10.dll
2015-12-08 22:20:59 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2015-12-08 22:20:59 ----A---- C:\Windows\system32\wuaueng.dll
2015-12-08 22:20:59 ----A---- C:\Windows\system32\wuapi.dll
2015-12-08 22:20:58 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2015-12-08 22:20:58 ----A---- C:\Windows\SYSWOW64\wups.dll
2015-12-08 22:20:58 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2015-12-08 22:20:58 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2015-12-08 22:20:58 ----A---- C:\Windows\system32\wuwebv.dll
2015-12-08 22:20:58 ----A---- C:\Windows\system32\wups2.dll
2015-12-08 22:20:58 ----A---- C:\Windows\system32\wups.dll
2015-12-08 22:20:58 ----A---- C:\Windows\system32\wudriver.dll
2015-12-08 22:20:58 ----A---- C:\Windows\system32\wucltux.dll
2015-12-08 22:20:58 ----A---- C:\Windows\system32\wuauclt.exe
2015-12-08 22:20:58 ----A---- C:\Windows\system32\wuapp.exe
2015-12-08 22:20:58 ----A---- C:\Windows\system32\wu.upgrade.ps.dll
2015-12-08 22:20:58 ----A---- C:\Windows\system32\WinSetupUI.dll
2015-12-08 22:20:51 ----A---- C:\Windows\SYSWOW64\nlsbres.dll
2015-12-08 22:20:51 ----A---- C:\Windows\SYSWOW64\kbdgeoqw.dll
2015-12-08 22:20:51 ----A---- C:\Windows\SYSWOW64\KBDAZEL.DLL
2015-12-08 22:20:51 ----A---- C:\Windows\SYSWOW64\KBDAZE.DLL
2015-12-08 22:20:51 ----A---- C:\Windows\system32\nlsbres.dll
2015-12-08 22:20:51 ----A---- C:\Windows\system32\kbdgeoqw.dll
2015-12-08 22:20:51 ----A---- C:\Windows\system32\KBDAZEL.DLL
2015-12-08 22:20:51 ----A---- C:\Windows\system32\KBDAZE.DLL
2015-12-08 22:20:47 ----A---- C:\Windows\system32\win32k.sys
2015-12-08 22:20:47 ----A---- C:\Windows\system32\DWrite.dll
2015-12-08 22:20:46 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2015-12-08 22:20:46 ----A---- C:\Windows\system32\user32.dll
2015-12-08 22:20:46 ----A---- C:\Windows\system32\FntCache.dll
2015-12-08 22:20:44 ----A---- C:\Windows\SYSWOW64\user32.dll
2015-12-08 22:20:40 ----A---- C:\Windows\SYSWOW64\wshrm.dll
2015-12-08 22:20:40 ----A---- C:\Windows\system32\wshrm.dll
2015-12-08 22:20:40 ----A---- C:\Windows\system32\drivers\rmcast.sys
2015-12-08 22:20:40 ----A---- C:\Windows\system32\comsvcs.dll
2015-12-08 22:20:40 ----A---- C:\Windows\system32\catsrvut.dll
2015-12-08 22:20:39 ----A---- C:\Windows\SYSWOW64\comsvcs.dll
2015-12-08 22:20:39 ----A---- C:\Windows\SYSWOW64\catsrvut.dll
2015-12-08 22:20:35 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2015-12-08 22:20:35 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2015-12-08 22:20:35 ----A---- C:\Windows\system32\iertutil.dll
2015-12-08 22:20:34 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2015-12-08 22:20:34 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2015-12-08 22:20:34 ----A---- C:\Windows\system32\ieetwproxystub.dll
2015-12-08 22:20:34 ----A---- C:\Windows\system32\ieetwcollector.exe
2015-12-08 22:20:33 ----A---- C:\Windows\SYSWOW64\occache.dll
2015-12-08 22:20:33 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2015-12-08 22:20:33 ----A---- C:\Windows\system32\iernonce.dll
2015-12-08 22:20:33 ----A---- C:\Windows\system32\ie4uinit.exe
2015-12-08 22:20:32 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2015-12-08 22:20:32 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2015-12-08 22:20:32 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2015-12-08 22:20:32 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2015-12-08 22:20:32 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2015-12-08 22:20:32 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2015-12-08 22:20:32 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-12-08 22:20:31 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2015-12-08 22:20:30 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2015-12-08 22:20:30 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2015-12-08 22:20:30 ----A---- C:\Windows\system32\occache.dll
2015-12-08 22:20:30 ----A---- C:\Windows\system32\iedkcs32.dll
2015-12-08 22:20:29 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2015-12-08 22:20:29 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2015-12-08 22:20:29 ----A---- C:\Windows\SYSWOW64\jscript.dll
2015-12-08 22:20:29 ----A---- C:\Windows\system32\urlmon.dll
2015-12-08 22:20:29 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2015-12-08 22:20:28 ----A---- C:\Windows\SYSWOW64\ieui.dll
2015-12-08 22:20:28 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2015-12-08 22:20:28 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2015-12-08 22:20:28 ----A---- C:\Windows\system32\msfeeds.dll
2015-12-08 22:20:28 ----A---- C:\Windows\system32\dxtrans.dll
2015-12-08 22:20:27 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2015-12-08 22:20:26 ----A---- C:\Windows\system32\iesetup.dll
2015-12-08 22:20:26 ----A---- C:\Windows\system32\ieapfltr.dll
2015-12-08 22:20:25 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2015-12-08 22:20:25 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2015-12-08 22:20:25 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2015-12-08 22:20:24 ----A---- C:\Windows\SYSWOW64\wininet.dll
2015-12-08 22:20:24 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2015-12-08 22:20:24 ----A---- C:\Windows\system32\vbscript.dll
2015-12-08 22:20:24 ----A---- C:\Windows\system32\jsproxy.dll
2015-12-08 22:20:23 ----A---- C:\Windows\SYSWOW64\msrating.dll
2015-12-08 22:20:23 ----A---- C:\Windows\system32\dxtmsft.dll
2015-12-08 22:20:22 ----A---- C:\Windows\system32\ieui.dll
2015-12-08 22:20:22 ----A---- C:\Windows\system32\ieframe.dll
2015-12-08 22:20:21 ----A---- C:\Windows\system32\webcheck.dll
2015-12-08 22:20:21 ----A---- C:\Windows\system32\mshtmlmedia.dll
2015-12-08 22:20:21 ----A---- C:\Windows\system32\mshtmled.dll
2015-12-08 22:20:21 ----A---- C:\Windows\system32\ieUnatt.exe
2015-12-08 22:20:20 ----A---- C:\Windows\system32\wininet.dll
2015-12-08 22:20:20 ----A---- C:\Windows\system32\jscript9diag.dll
2015-12-08 22:20:20 ----A---- C:\Windows\system32\jscript9.dll
2015-12-08 22:20:20 ----A---- C:\Windows\system32\jscript.dll
2015-12-08 22:20:19 ----A---- C:\Windows\system32\MshtmlDac.dll
2015-12-08 22:20:18 ----A---- C:\Windows\system32\msrating.dll
2015-12-08 22:20:17 ----A---- C:\Windows\system32\mshtml.dll
2015-12-08 22:18:30 ----A---- C:\Windows\SYSWOW64\els.dll
2015-12-08 22:18:30 ----A---- C:\Windows\system32\els.dll
2015-12-08 16:31:43 ----D---- C:\NVIDIA
2015-12-07 21:15:01 ----D---- C:\Users\Franni\AppData\Roaming\Sun
2015-12-07 16:43:54 ----D---- C:\Program Files (x86)\Geeks3D
2015-12-07 16:13:25 ----D---- C:\ProgramData\Package Cache

======List of files/folders modified in the last 1 month======

2016-01-03 12:18:38 ----D---- C:\Program Files\Trend Micro
2016-01-03 12:15:30 ----D---- C:\Windows\Temp
2016-01-03 12:08:57 ----D---- C:\Windows\SysWOW64
2016-01-03 12:08:48 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2016-01-02 21:27:53 ----D---- C:\Windows\system32\config
2016-01-02 21:25:16 ----D---- C:\Windows\system32\Tasks
2016-01-02 21:25:15 ----D---- C:\Windows
2016-01-02 21:22:59 ----D---- C:\Windows\System32
2016-01-02 21:22:22 ----D---- C:\Windows\system32\catroot
2016-01-02 21:21:43 ----HD---- C:\ProgramData
2016-01-02 21:21:43 ----D---- C:\Windows\system32\drivers
2016-01-02 21:21:39 ----RD---- C:\Program Files (x86)
2016-01-02 21:21:39 ----D---- C:\Program Files\Common Files
2016-01-02 21:21:39 ----D---- C:\Program Files (x86)\Common Files
2016-01-02 21:21:38 ----D---- C:\AdwCleaner
2016-01-02 16:55:31 ----SHD---- C:\System Volume Information
2016-01-02 16:47:37 ----SHD---- C:\Windows\Installer
2016-01-02 16:47:37 ----D---- C:\Program Files (x86)\Nokia
2016-01-02 16:47:31 ----D---- C:\Windows\system32\DriverStore
2016-01-02 16:47:31 ----D---- C:\Windows\inf
2015-12-31 10:55:29 ----D---- C:\temp
2015-12-31 10:55:28 ----D---- C:\ProgramData\NVIDIA Corporation
2015-12-31 10:55:08 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2015-12-31 10:53:35 ----D---- C:\Program Files\NVIDIA Corporation
2015-12-31 10:31:21 ----D---- C:\Windows\Help
2015-12-31 10:04:39 ----D---- C:\Windows\Prefetch
2015-12-31 09:45:53 ----D---- C:\FRST
2015-12-31 09:42:56 ----RD---- C:\Program Files
2015-12-31 09:20:14 ----D---- C:\Windows\system32\catroot2
2015-12-30 14:28:32 ----D---- C:\Windows\Minidump
2015-12-29 21:36:19 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2015-12-22 15:26:08 ----D---- C:\Windows\Globalization
2015-12-17 23:54:42 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2015-12-17 23:54:22 ----A---- C:\Windows\system32\PerfStringBackup.INI
2015-12-17 23:52:38 ----D---- C:\Windows\winsxs
2015-12-17 23:52:28 ----SD---- C:\Windows\SYSWOW64\GWX
2015-12-17 23:52:28 ----SD---- C:\Windows\system32\GWX
2015-12-16 18:34:16 ----A---- C:\Windows\SYSWOW64\OpenCL.dll
2015-12-16 18:34:16 ----A---- C:\Windows\system32\OpenCL.dll
2015-12-09 19:36:45 ----D---- C:\Windows\rescache
2015-12-09 18:56:21 ----D---- C:\Windows\Microsoft.NET
2015-12-09 18:55:55 ----RSD---- C:\Windows\assembly
2015-12-09 17:10:08 ----D---- C:\Program Files (x86)\Opera
2015-12-09 04:39:31 ----N---- C:\Windows\system32\MpSigStub.exe
2015-12-09 03:31:30 ----D---- C:\Program Files\Microsoft Silverlight
2015-12-09 03:31:28 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2015-12-09 03:30:04 ----D---- C:\Windows\SYSWOW64\cs-CZ
2015-12-09 03:30:04 ----D---- C:\Windows\system32\cs-CZ
2015-12-09 03:30:03 ----RSD---- C:\Windows\Fonts
2015-12-09 03:30:02 ----D---- C:\Windows\SYSWOW64\en-US
2015-12-09 03:30:02 ----D---- C:\Windows\system32\en-US
2015-12-09 03:30:02 ----D---- C:\Windows\ehome
2015-12-09 03:30:02 ----D---- C:\Program Files\Internet Explorer
2015-12-09 03:30:01 ----D---- C:\Program Files (x86)\Internet Explorer
2015-12-09 03:10:28 ----D---- C:\Windows\system32\MRT
2015-12-09 03:03:29 ----D---- C:\Windows\debug
2015-12-09 03:03:18 ----A---- C:\Windows\system32\MRT.exe
2015-12-07 21:18:42 ----D---- C:\ProgramData\Oracle
2015-12-07 21:16:27 ----D---- C:\Program Files (x86)\Java
2015-12-07 21:14:42 ----A---- C:\Windows\SYSWOW64\WindowsAccessBridge-32.dll
2015-12-07 21:06:07 ----D---- C:\CrashHandlerCache

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2015-03-04 280376]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R0 speedfan;speedfan; C:\Windows\SysWOW64\speedfan.sys [2012-12-29 28664]
R1 SCDEmu;SCDEmu; C:\Windows\system32\drivers\SCDEmu.sys [2014-10-08 127760]
R2 AODDriver4.1;AODDriver4.1; \??\C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [2012-03-05 53888]
R2 AODDriver4.3.0;AODDriver4.3.0; \??\C:\Program Files (x86)\AMD\OverDrive\amd64\AODDriver2.sys [2014-09-19 60104]
R2 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2015-03-04 124568]
R3 amdiox64;AMD IO Driver; C:\Windows\system32\DRIVERS\amdiox64.sys [2010-02-18 46136]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2014-05-14 3962840]
R3 MBAMProtector;MBAMProtector; \??\C:\Windows\system32\drivers\mbam.sys [2015-10-05 25816]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda64v.sys [2015-02-11 197408]
R3 NvStreamKms;NvStreamKms; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2015-12-16 19576]
R3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\Windows\system32\drivers\nvvad64v.sys [2015-12-16 50472]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2012-02-16 676968]
R3 rusb3hub;Renesas Electronics USB 3.0 Hub Driver (Version 3.0); C:\Windows\system32\DRIVERS\rusb3hub.sys [2011-11-21 101376]
R3 rusb3xhc;Renesas Electronics USB 3.0 Host Controller Driver (Version 3.0); C:\Windows\system32\DRIVERS\rusb3xhc.sys [2011-11-21 217088]
R3 usbfilter;AMD USB Filter Driver; C:\Windows\system32\DRIVERS\usbfilter.sys [2010-11-28 44672]
S0 lqwvfw;lqwvfw; C:\Windows\System32\drivers\jcvuos.sys []
S2 Aspi32;Aspi32; C:\Windows\System32\drivers\aspi32.sys []
S3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2013-04-30 11922944]
S3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2013-04-30 359936]
S3 AtiHDAudioService;AMD Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdW76.sys [2012-05-14 96896]
S3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2013-04-30 11922944]
S3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudbus.sys [2014-10-13 110336]
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2013-02-05 57840]
S3 MBAMWebAccessControl;MBAMWebAccessControl; \??\C:\Windows\system32\drivers\mwac.sys [2015-10-05 63704]
S3 MTsensor;ATK0110 ACPI UTILITY; C:\Windows\system32\DRIVERS\ASACPI.sys [2005-03-29 8192]
S3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\Windows\system32\DRIVERS\nvm62x64.sys [2009-06-10 408960]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfdx64.sys [2012-06-11 26112]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 RTL8023x64;Realtek 10/100 NIC Family NDIS x64 Driver; C:\Windows\system32\DRIVERS\Rtnic64.sys [2009-06-10 51712]
S3 ssudmdm;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudmdm.sys [2014-10-13 206080]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2013-10-02 56832]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2012-08-23 30208]
S3 WinUsb;SAMSUNG Android USB Driver; C:\Windows\system32\DRIVERS\WinUSB.sys [2010-11-21 41984]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2013-04-30 238080]
R2 AMD FUEL Service;AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [2013-04-29 361984]
R2 AODService;AODService; C:\Program Files (x86)\AMD\OverDrive\AODAssist.exe [2014-09-19 137584]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 GfExperienceService;NVIDIA GeForce Experience Service; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [2015-12-16 1156216]
R2 MSI_SuperCharger;MSI_SuperCharger; C:\Program Files (x86)\MSI\Super-Charger\ChargeService.exe [2012-10-25 143416]
R2 MsMpSvc;Microsoft Antimalware Service; c:\Program Files\Microsoft Security Client\MsMpEng.exe [2015-04-30 23816]
R2 NAUpdate;@C:\Program Files (x86)\Nero\Update\NASvc.exe,-200; C:\Program Files (x86)\Nero\Update\NASvc.exe [2014-01-27 773968]
R2 Nero BackItUp Scheduler 4.0;Nero BackItUp Scheduler 4.0; C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe [2009-07-20 935208]
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2015-12-16 1872504]
R2 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [2015-12-16 6477432]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2015-02-04 932040]
R2 PnkBstrA;PnkBstrA; C:\Windows\syswow64\PnkBstrA.exe [2014-12-29 76888]
R2 ss_conn_service;SAMSUNG Mobile Connectivity Service; C:\Program Files\SAMSUNG\USB Drivers\25_escape\conn\ss_conn_service.exe [2014-10-13 743688]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2015-02-04 409800]
R2 Vaiafineco;Vaiafineco; C:\ProgramData\\Vaiafineco\\Vaiafineco.exe [2015-12-29 534016]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2012-07-17 2292480]
R3 NisSrv;@c:\Program Files\Microsoft Security Client\MpAsDesc.dll,-243; c:\Program Files\Microsoft Security Client\NisSrv.exe [2015-04-30 366544]
R3 NvStreamNetworkSvc;NVIDIA Streamer Network Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [2015-12-16 8185464]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2014-04-11 103608]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2014-04-11 124088]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-30 144200]
S2 MBAMService;MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [2015-10-05 1135416]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2015-02-18 315488]
S2 SysTesterSvc;System Tester Service; C:\Program Files\NixController\bin\8d251941-deb5-49cf-88c4-b39455f7bf60\runner.exe []
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-01-03 269504]
S3 fsssvc;Windows Live Family Safety Service; C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2013-02-05 1512448]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-30 144200]
S3 gusvc;Google Software Updater; C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe [2015-01-04 194032]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2015-11-08 114688]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2015-12-29 146888]
S3 ServiceLayer;ServiceLayer; C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe [2012-06-11 724376]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2015-11-10 836176]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2014-05-29 1255736]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2014-04-11 50864]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-11 139944]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-11 139944]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-11 139944]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119420
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosim o kontrolu...dekuji

#8 Příspěvek od Rudy »

Stáhněte OTM: http://oldtimer.geekstogo.com/OTM.exe a uložte na plochu. Spusťte a do levého okna zkopírujte:
:files
C:\Program Files (x86)\Google\Google Toolbar
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\System32\drivers\jcvuos.sys

:reg
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]/64
[-HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]/64
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]/64
[-HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]/64
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^McAfee Security Scan Plus.lnk]/64
[-HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]/64

:services
lqwvfw

:commands
[Purity]
[Emptytemp]
[Emptyflash]
a klikněte na >MoveIt!<. Po skenu restartujte PC a dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

franni
Návštěvník
Návštěvník
Příspěvky: 167
Registrován: 19 kvě 2009 18:55
Bydliště: žďár u mnichova Hradiste

Re: Prosim o kontrolu...dekuji

#9 Příspěvek od franni »

Logfile of random's system information tool 1.10 (written by random/random)
Run by Franni at 2016-01-03 21:36:48
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 111 GB (36%) free of 305 GB
Total RAM: 4044 MB (60% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 21:36:53, on 3.1.2016
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.18123)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Users\Franni\AppData\Local\MyComGames\MyComGames.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\Program Files\trend micro\Franni.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,SearchAssistant = http://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRYSttY34mamef947lyucr_RRfpjzIC4jnN0OHIhdDha_VAS1DuLXh6QKiB1IGKTN2MjDxb-ENar0RnNRruPz9xAG73AwD-qQRky9Hpuh1GLKl_4HI0KhPBDoQPyJvUKNE0SrRhuUtpAhbyIHaw1rbxR4tZNCv9EPXg,,&q={searchTerms}
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRYSttY34mamef947lyucr_RRfpjzIC4jnN0OHIhdDha_VAS1DuLXh6QKiB1IGKTN2MjDxb-ENar0RnNRruPz9xAG73AwD-qQRky9Hpuh1GLKl_4HI0KhPBDoQPyJvUKNE0SrRhuUtpAhbyIHaw1rbxR4tZNCv9EPXg,,&q={searchTerms}
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRYSttY34mamef947lyucr_RRfpjzIC4jnN0OHIhdDha_VAS1DuLXh6QKiB1IGKTN2MjDxb-ENar0RnNRruPz9xAG73AwD-qQRky9Hpuh1GLKl_4HI0KhPBDoQPyJvUKNE0SrRhuUtpAhbyIHaw1rbxR4tZNCv9EPXg,,&q={searchTerms}
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://%66%65%65%64.%73%6E%61%70%64%6F.%63%6F%6D/?p=mKO_AwFzXIpYRYSttY34mamef947lyucr_RRfpjzIC4jnN0OHIhdDha_VAS1DuLXh6QKiB1IGKTN2MjDxb-ENar0RnNRruPz9xAG73AwD-qQSui71FXx5SkvEILxx6Vgcf6kVnPTs6tjyqXdxpiQTFffli8N-MqBgotAnUNqFcnXxQ,,
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://f.jiss360.cn
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,Default_Search_URL = http://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRYSttY34mamef947lyucr_RRfpjzIC4jnN0OHIhdDha_VAS1DuLXh6QKiB1IGKTN2MjDxb-ENar0RnNRruPz9xAG73AwD-qQRky9Hpuh1GLKl_4HI0KhPBDoQPyJvUKNE0SrRhuUtpAhbyIHaw1rbxR4tZNCv9EPXg,,&q={searchTerms}
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe,
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_66\bin\ssv.dll
O2 - BHO: Pomocná služba pro přihlášení k účtu Microsoft - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_66\bin\jp2ssv.dll
O4 - HKCU\..\Run: [Web Companion] C:\Program Files (x86)\Lavasoft\Web Companion\Application\WebCompanion.exe --minimize
O4 - HKCU\..\Run: [MyComGames] "C:\Users\Franni\AppData\Local\MyComGames\MyComGames.exe" -autostart
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - https://fpdownload.macromedia.com/get/s ... wflash.cab
O20 - AppInit_DLLs: C:\ProgramData\Vaiafineco\CanString.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: AODService - Unknown owner - C:\Program Files (x86)\AMD\OverDrive\AODAssist.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: MBAMService - Malwarebytes - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: MSI_SuperCharger - MSI - C:\Program Files (x86)\MSI\Super-Charger\ChargeService.exe
O23 - Service: @C:\Program Files (x86)\Nero\Update\NASvc.exe,-200 (NAUpdate) - Nero AG - C:\Program Files (x86)\Nero\Update\NASvc.exe
O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Network Service (NvStreamNetworkSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: ServiceLayer - Nokia - C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: SAMSUNG Mobile Connectivity Service (ss_conn_service) - DEVGURU Co., LTD. - C:\Program Files\SAMSUNG\USB Drivers\25_escape\conn\ss_conn_service.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: System Tester Service (SysTesterSvc) - Unknown owner - C:\Program Files\NixController\bin\8d251941-deb5-49cf-88c4-b39455f7bf60\runner.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Vaiafineco - Unknown owner - C:\ProgramData\\Vaiafineco\\Vaiafineco.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 10740 bytes

======Listing Processes======



\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
winlogon.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
"C:\Windows\system32\nvvsvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
C:\Windows\system32\svchost.exe -k RPCSS
"c:\Program Files\Microsoft Security Client\MsMpEng.exe"
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k NetworkService
atieclxx
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"taskhost.exe"
"C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe" /launchService
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\AMD\OverDrive\AODAssist.exe"
taskeng.exe {A42ED2DE-D207-4065-9CCF-7CCC772C5782}
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
C:\Windows\System32\svchost.exe -k utcsvc
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe"
"C:\Windows\system32\GWX\GWX.exe"
"C:\Program Files (x86)\MSI\Super-Charger\ChargeService.exe"
"C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe"
C:\Windows\SysWOW64\PnkBstrA.exe
C:\Windows\system32\svchost.exe -k regsvc
"C:\Program Files\SAMSUNG\USB Drivers\25_escape\conn\ss_conn_service.exe"
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\ProgramData\\Vaiafineco\\Vaiafineco.exe -f "C:\ProgramData\\Vaiafineco\\Vaiafineco.dat" -l -a
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
WLIDSvcM.exe 2272
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
C:\Windows\system32\sppsvc.exe
"c:\Program Files\Microsoft Security Client\NisSrv.exe"
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe" serviceapp
\??\C:\Windows\system32\conhost.exe "-821118281-1806018595-1366662556-1190103356911414970-394052904118862241236723132
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Windows\notepad.exe" C:\_OTM\MovedFiles\01032016_212618.log
"C:\ProgramData\Vaiafineco\Vaiafineco.exe" -f "C:\ProgramData\Vaiafineco\Daltstatjob.dat" -l -a regname Stpro.exe
"C:\Users\Franni\AppData\Local\MyComGames\MyComGames.exe" -autostart
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files (x86)\Nero\Update\NASvc.exe"
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe" -osint -url "C:\Users\Franni\Desktop\pbuser.htm"
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe2_ Global\UsGthrCtrlFltPipeMssGthrPipe2 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 516 520 528 65536 524
"C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe" --channel="4820.0.1703107587\714081195" -greomni "C:\Program Files (x86)\Mozilla Firefox\omni.ja" -appomni "C:\Program Files (x86)\Mozilla Firefox\browser\omni.ja" -appdir "C:\Program Files (x86)\Mozilla Firefox\browser" 4820 "\\.\pipe\gecko-crash-server-pipe.4820" tab

"C:\Users\Franni\Downloads\RSITx64.exe"

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe

=========Mozilla firefox=========

ProfilePath - C:\Users\Franni\AppData\Roaming\Mozilla\Firefox\Profiles\4z6sabfx.default-1443298549001

prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "C:\\ProgramData\\Vaiafineco\\ff.HP"

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 20.0.0.267 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_20_0_0_267.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/ShockwavePlayer]
"Description"=Adobe Shockwave Player
"Path"=C:\Windows\SysWOW64\Adobe\Director\np32dsw_1217157.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=11.66.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre1.8.0_66\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=11.66.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre1.8.0_66\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files (x86)\Microsoft Silverlight\5.1.41105.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Nero.com/KM]
"Description"=
"Path"=C:\PROGRA~2\COMMON~1\Nero\BROWSE~1\NPBROW~1.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVision]
"Description"=NVIDIA stereo images plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVisionStreaming]
"Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 20.0.0.267 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_20_0_0_267.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files\Microsoft Silverlight\5.1.41105.0\npctrl.dll


======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17 529664]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_66\bin\ssv.dll [2015-12-07 460384]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocná služba pro přihlášení k účtu Microsoft - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17 441592]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_66\bin\jp2ssv.dll [2015-12-07 172640]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2015-12-16 2771576]
"ShadowPlay"=C:\Windows\system32\nvspcap64.dll [2015-12-16 1846016]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Web Companion"=C:\Program Files (x86)\Lavasoft\Web Companion\Application\WebCompanion.exe --minimize []
"MyComGames"=C:\Users\Franni\AppData\Local\MyComGames\MyComGames.exe [2015-12-30 4741064]
""= []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AMD AVT]
Cmd.exe /c start AMD Accelerated Video Transcoding device initialization /min C:\Program Files (x86)\AMD AVT\bin\kdbsync.exe aml []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSC]
c:\Program Files\Microsoft Security Client\msseces.exe [2015-04-30 1337000]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvBackend]
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2015-12-16 2771576]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PWRISOVM.EXE]
C:\Program Files\PowerISO\PWRISOVM.EXE [2014-10-08 408888]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RUSB3MON]
C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\rusb3mon.exe [2011-09-20 115048]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\StartCCC]
C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2013-04-29 642304]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Super-Charger]
C:\Program Files (x86)\MSI\Super-Charger\Super-Charger.exe [2012-10-23 502328]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Trend Micro Titanium]
C:\Program Files\Trend Micro\Titanium\UIFramework\uiWinMgr.exe [2013-09-16 1382568]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Yahoo! Search]
C:\Users\Franni\AppData\Local\Pay-By-Ads\Yahoo! Search\1.3.12.4\dsrlte.exe []

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\ProgramData\Vaiafineco\SingleLam.dll"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
"NoDriveTypeAutoRun"=221

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"aux3"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"aux"=wdmaud.drv
"wave5"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer5"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"wave7"=wdmaud.drv
"midi7"=wdmaud.drv
"mixer7"=wdmaud.drv
"wave6"=wdmaud.drv
"midi6"=wdmaud.drv
"mixer6"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2016-01-03 21:26:18 ----D---- C:\_OTM
2015-12-31 10:55:01 ----A---- C:\Windows\SYSWOW64\nvStreaming.exe
2015-12-31 10:52:01 ----A---- C:\Windows\SYSWOW64\nvumdshim.dll
2015-12-31 10:52:01 ----A---- C:\Windows\SYSWOW64\nvopencl.dll
2015-12-31 10:52:01 ----A---- C:\Windows\SYSWOW64\nvoglv32.dll
2015-12-31 10:52:01 ----A---- C:\Windows\SYSWOW64\nvoglshim32.dll
2015-12-31 10:52:01 ----A---- C:\Windows\SYSWOW64\nvinit.dll
2015-12-31 10:52:01 ----A---- C:\Windows\SYSWOW64\NvIFROpenGL.dll
2015-12-31 10:52:01 ----A---- C:\Windows\SYSWOW64\NvIFR.dll
2015-12-31 10:52:01 ----A---- C:\Windows\SYSWOW64\NvFBC.dll
2015-12-31 10:52:01 ----A---- C:\Windows\SYSWOW64\nvEncodeAPI.dll
2015-12-31 10:52:01 ----A---- C:\Windows\SYSWOW64\nvd3dum.dll
2015-12-31 10:52:01 ----A---- C:\Windows\SYSWOW64\nvcuvid.dll
2015-12-31 10:52:01 ----A---- C:\Windows\SYSWOW64\nvcuda.dll
2015-12-31 10:52:01 ----A---- C:\Windows\system32\nvwgf2umx.dll
2015-12-31 10:52:01 ----A---- C:\Windows\system32\nvopencl.dll
2015-12-31 10:52:01 ----A---- C:\Windows\system32\nvoglv64.dll
2015-12-31 10:52:01 ----A---- C:\Windows\system32\nvoglshim64.dll
2015-12-31 10:52:01 ----A---- C:\Windows\system32\nvinitx.dll
2015-12-31 10:52:01 ----A---- C:\Windows\system32\NvIFROpenGL.dll
2015-12-31 10:52:01 ----A---- C:\Windows\system32\NvIFR64.dll
2015-12-31 10:52:01 ----A---- C:\Windows\system32\nvhdap64.dll
2015-12-31 10:52:01 ----A---- C:\Windows\system32\NvFBC64.dll
2015-12-31 10:52:01 ----A---- C:\Windows\system32\nvEncodeAPI64.dll
2015-12-31 10:52:01 ----A---- C:\Windows\system32\nvdispgenco6434144.dll
2015-12-31 10:52:01 ----A---- C:\Windows\system32\nvdispco6434144.dll
2015-12-31 10:52:01 ----A---- C:\Windows\system32\nvd3dumx.dll
2015-12-31 10:52:01 ----A---- C:\Windows\system32\nvcuvid.dll
2015-12-31 10:52:01 ----A---- C:\Windows\system32\nvcuda.dll
2015-12-31 10:52:01 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2015-12-31 10:52:01 ----A---- C:\Windows\system32\drivers\nvhda64v.sys
2015-12-31 10:52:00 ----A---- C:\Windows\SYSWOW64\nvcompiler.dll
2015-12-31 10:52:00 ----A---- C:\Windows\system32\nvcompiler.dll
2015-12-31 10:35:58 ----D---- C:\Users\Franni\AppData\Roaming\NVIDIA
2015-12-31 10:32:04 ----D---- C:\ProgramData\NVIDIA
2015-12-31 10:31:23 ----A---- C:\Windows\system32\nvvsvc.exe
2015-12-31 10:31:23 ----A---- C:\Windows\system32\nvsvcr.dll
2015-12-31 10:31:23 ----A---- C:\Windows\system32\nvsvc64.dll
2015-12-31 10:31:23 ----A---- C:\Windows\system32\nvshext.dll
2015-12-31 10:31:23 ----A---- C:\Windows\system32\nvmctray.dll
2015-12-31 10:31:23 ----A---- C:\Windows\system32\nvcpl.dll
2015-12-31 10:29:36 ----A---- C:\Windows\SYSWOW64\nvwgf2um.dll
2015-12-31 10:29:36 ----A---- C:\Windows\system32\nvumdshimx.dll
2015-12-31 10:29:33 ----A---- C:\Windows\system32\nvdispgenco6435598.dll
2015-12-31 10:29:33 ----A---- C:\Windows\system32\nvdispco6435598.dll
2015-12-31 10:29:29 ----A---- C:\Windows\SYSWOW64\nvapi.dll
2015-12-31 10:29:29 ----A---- C:\Windows\system32\nvapi64.dll
2015-12-31 09:47:38 ----D---- C:\rsit
2015-12-31 09:22:32 ----A---- C:\Windows\system32\nvspbridge64.dll
2015-12-31 09:22:32 ----A---- C:\Windows\system32\NvRtmpStreamer64.dll
2015-12-31 09:22:31 ----A---- C:\Windows\system32\nvspcap64.dll
2015-12-31 09:22:30 ----A---- C:\Windows\SYSWOW64\nvspcap.dll
2015-12-31 09:22:30 ----A---- C:\Windows\SYSWOW64\nvspbridge.dll
2015-12-31 09:18:51 ----A---- C:\Windows\SYSWOW64\nvaudcap32v.dll
2015-12-31 09:18:51 ----A---- C:\Windows\system32\nvaudcap64v.dll
2015-12-31 09:18:51 ----A---- C:\Windows\system32\drivers\nvvad64v.sys
2015-12-30 13:11:36 ----A---- C:\Windows\system32\nvhdagenco6420103.dll
2015-12-29 21:50:01 ----A---- C:\Program Files\Common Files\hvvgmgtz.exe
2015-12-29 21:49:38 ----D---- C:\ProgramData\Vaiafineco
2015-12-29 21:48:52 ----A---- C:\Program Files\Common Files\ff1jxowl.exe
2015-12-29 09:46:50 ----D---- C:\Program Files (x86)\Mozilla Firefox
2015-12-23 21:33:52 ----A---- C:\Program Files\Common Files\wlop2a03.exe
2015-12-23 21:33:52 ----A---- C:\Program Files\Common Files\a0ngluum.exe
2015-12-23 09:24:19 ----A---- C:\Program Files\Common Files\kvidpujs.exe
2015-12-23 09:24:17 ----A---- C:\Program Files\Common Files\2zg5pqwl.exe
2015-12-16 21:40:11 ----D---- C:\esoterika
2015-12-08 22:21:06 ----A---- C:\Windows\SYSWOW64\tzres.dll
2015-12-08 22:21:06 ----A---- C:\Windows\system32\tzres.dll
2015-12-08 22:21:01 ----A---- C:\Windows\SYSWOW64\usp10.dll
2015-12-08 22:21:01 ----A---- C:\Windows\system32\usp10.dll
2015-12-08 22:20:59 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2015-12-08 22:20:59 ----A---- C:\Windows\system32\wuaueng.dll
2015-12-08 22:20:59 ----A---- C:\Windows\system32\wuapi.dll
2015-12-08 22:20:58 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2015-12-08 22:20:58 ----A---- C:\Windows\SYSWOW64\wups.dll
2015-12-08 22:20:58 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2015-12-08 22:20:58 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2015-12-08 22:20:58 ----A---- C:\Windows\system32\wuwebv.dll
2015-12-08 22:20:58 ----A---- C:\Windows\system32\wups2.dll
2015-12-08 22:20:58 ----A---- C:\Windows\system32\wups.dll
2015-12-08 22:20:58 ----A---- C:\Windows\system32\wudriver.dll
2015-12-08 22:20:58 ----A---- C:\Windows\system32\wucltux.dll
2015-12-08 22:20:58 ----A---- C:\Windows\system32\wuauclt.exe
2015-12-08 22:20:58 ----A---- C:\Windows\system32\wuapp.exe
2015-12-08 22:20:58 ----A---- C:\Windows\system32\wu.upgrade.ps.dll
2015-12-08 22:20:58 ----A---- C:\Windows\system32\WinSetupUI.dll
2015-12-08 22:20:51 ----A---- C:\Windows\SYSWOW64\nlsbres.dll
2015-12-08 22:20:51 ----A---- C:\Windows\SYSWOW64\kbdgeoqw.dll
2015-12-08 22:20:51 ----A---- C:\Windows\SYSWOW64\KBDAZEL.DLL
2015-12-08 22:20:51 ----A---- C:\Windows\SYSWOW64\KBDAZE.DLL
2015-12-08 22:20:51 ----A---- C:\Windows\system32\nlsbres.dll
2015-12-08 22:20:51 ----A---- C:\Windows\system32\kbdgeoqw.dll
2015-12-08 22:20:51 ----A---- C:\Windows\system32\KBDAZEL.DLL
2015-12-08 22:20:51 ----A---- C:\Windows\system32\KBDAZE.DLL
2015-12-08 22:20:47 ----A---- C:\Windows\system32\win32k.sys
2015-12-08 22:20:47 ----A---- C:\Windows\system32\DWrite.dll
2015-12-08 22:20:46 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2015-12-08 22:20:46 ----A---- C:\Windows\system32\user32.dll
2015-12-08 22:20:46 ----A---- C:\Windows\system32\FntCache.dll
2015-12-08 22:20:44 ----A---- C:\Windows\SYSWOW64\user32.dll
2015-12-08 22:20:40 ----A---- C:\Windows\SYSWOW64\wshrm.dll
2015-12-08 22:20:40 ----A---- C:\Windows\system32\wshrm.dll
2015-12-08 22:20:40 ----A---- C:\Windows\system32\drivers\rmcast.sys
2015-12-08 22:20:40 ----A---- C:\Windows\system32\comsvcs.dll
2015-12-08 22:20:40 ----A---- C:\Windows\system32\catsrvut.dll
2015-12-08 22:20:39 ----A---- C:\Windows\SYSWOW64\comsvcs.dll
2015-12-08 22:20:39 ----A---- C:\Windows\SYSWOW64\catsrvut.dll
2015-12-08 22:20:35 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2015-12-08 22:20:35 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2015-12-08 22:20:35 ----A---- C:\Windows\system32\iertutil.dll
2015-12-08 22:20:34 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2015-12-08 22:20:34 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2015-12-08 22:20:34 ----A---- C:\Windows\system32\ieetwproxystub.dll
2015-12-08 22:20:34 ----A---- C:\Windows\system32\ieetwcollector.exe
2015-12-08 22:20:33 ----A---- C:\Windows\SYSWOW64\occache.dll
2015-12-08 22:20:33 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2015-12-08 22:20:33 ----A---- C:\Windows\system32\iernonce.dll
2015-12-08 22:20:33 ----A---- C:\Windows\system32\ie4uinit.exe
2015-12-08 22:20:32 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2015-12-08 22:20:32 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2015-12-08 22:20:32 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2015-12-08 22:20:32 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2015-12-08 22:20:32 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2015-12-08 22:20:32 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2015-12-08 22:20:32 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-12-08 22:20:31 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2015-12-08 22:20:30 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2015-12-08 22:20:30 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2015-12-08 22:20:30 ----A---- C:\Windows\system32\occache.dll
2015-12-08 22:20:30 ----A---- C:\Windows\system32\iedkcs32.dll
2015-12-08 22:20:29 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2015-12-08 22:20:29 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2015-12-08 22:20:29 ----A---- C:\Windows\SYSWOW64\jscript.dll
2015-12-08 22:20:29 ----A---- C:\Windows\system32\urlmon.dll
2015-12-08 22:20:29 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2015-12-08 22:20:28 ----A---- C:\Windows\SYSWOW64\ieui.dll
2015-12-08 22:20:28 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2015-12-08 22:20:28 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2015-12-08 22:20:28 ----A---- C:\Windows\system32\msfeeds.dll
2015-12-08 22:20:28 ----A---- C:\Windows\system32\dxtrans.dll
2015-12-08 22:20:27 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2015-12-08 22:20:26 ----A---- C:\Windows\system32\iesetup.dll
2015-12-08 22:20:26 ----A---- C:\Windows\system32\ieapfltr.dll
2015-12-08 22:20:25 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2015-12-08 22:20:25 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2015-12-08 22:20:25 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2015-12-08 22:20:24 ----A---- C:\Windows\SYSWOW64\wininet.dll
2015-12-08 22:20:24 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2015-12-08 22:20:24 ----A---- C:\Windows\system32\vbscript.dll
2015-12-08 22:20:24 ----A---- C:\Windows\system32\jsproxy.dll
2015-12-08 22:20:23 ----A---- C:\Windows\SYSWOW64\msrating.dll
2015-12-08 22:20:23 ----A---- C:\Windows\system32\dxtmsft.dll
2015-12-08 22:20:22 ----A---- C:\Windows\system32\ieui.dll
2015-12-08 22:20:22 ----A---- C:\Windows\system32\ieframe.dll
2015-12-08 22:20:21 ----A---- C:\Windows\system32\webcheck.dll
2015-12-08 22:20:21 ----A---- C:\Windows\system32\mshtmlmedia.dll
2015-12-08 22:20:21 ----A---- C:\Windows\system32\mshtmled.dll
2015-12-08 22:20:21 ----A---- C:\Windows\system32\ieUnatt.exe
2015-12-08 22:20:20 ----A---- C:\Windows\system32\wininet.dll
2015-12-08 22:20:20 ----A---- C:\Windows\system32\jscript9diag.dll
2015-12-08 22:20:20 ----A---- C:\Windows\system32\jscript9.dll
2015-12-08 22:20:20 ----A---- C:\Windows\system32\jscript.dll
2015-12-08 22:20:19 ----A---- C:\Windows\system32\MshtmlDac.dll
2015-12-08 22:20:18 ----A---- C:\Windows\system32\msrating.dll
2015-12-08 22:20:17 ----A---- C:\Windows\system32\mshtml.dll
2015-12-08 22:18:30 ----A---- C:\Windows\SYSWOW64\els.dll
2015-12-08 22:18:30 ----A---- C:\Windows\system32\els.dll
2015-12-08 16:31:43 ----D---- C:\NVIDIA
2015-12-07 21:15:01 ----D---- C:\Users\Franni\AppData\Roaming\Sun
2015-12-07 16:43:54 ----D---- C:\Program Files (x86)\Geeks3D
2015-12-07 16:13:25 ----D---- C:\ProgramData\Package Cache

======List of files/folders modified in the last 1 month======

2016-01-03 21:36:50 ----D---- C:\Program Files\Trend Micro
2016-01-03 21:36:43 ----D---- C:\Windows\Temp
2016-01-03 21:29:59 ----D---- C:\Windows\system32\Tasks
2016-01-03 21:27:13 ----D---- C:\Windows
2016-01-03 21:26:20 ----D---- C:\Windows\Tasks
2016-01-03 21:26:20 ----D---- C:\Program Files (x86)\Google
2016-01-03 12:08:57 ----D---- C:\Windows\SysWOW64
2016-01-03 12:08:48 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2016-01-02 21:27:53 ----D---- C:\Windows\system32\config
2016-01-02 21:22:59 ----D---- C:\Windows\System32
2016-01-02 21:22:22 ----D---- C:\Windows\system32\catroot
2016-01-02 21:21:43 ----HD---- C:\ProgramData
2016-01-02 21:21:43 ----D---- C:\Windows\system32\drivers
2016-01-02 21:21:39 ----RD---- C:\Program Files (x86)
2016-01-02 21:21:39 ----D---- C:\Program Files\Common Files
2016-01-02 21:21:39 ----D---- C:\Program Files (x86)\Common Files
2016-01-02 21:21:38 ----D---- C:\AdwCleaner
2016-01-02 16:55:31 ----SHD---- C:\System Volume Information
2016-01-02 16:47:37 ----SHD---- C:\Windows\Installer
2016-01-02 16:47:37 ----D---- C:\Program Files (x86)\Nokia
2016-01-02 16:47:31 ----D---- C:\Windows\system32\DriverStore
2016-01-02 16:47:31 ----D---- C:\Windows\inf
2015-12-31 10:55:29 ----D---- C:\temp
2015-12-31 10:55:28 ----D---- C:\ProgramData\NVIDIA Corporation
2015-12-31 10:55:08 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2015-12-31 10:53:35 ----D---- C:\Program Files\NVIDIA Corporation
2015-12-31 10:31:21 ----D---- C:\Windows\Help
2015-12-31 10:04:39 ----D---- C:\Windows\Prefetch
2015-12-31 09:45:53 ----D---- C:\FRST
2015-12-31 09:42:56 ----RD---- C:\Program Files
2015-12-31 09:20:14 ----D---- C:\Windows\system32\catroot2
2015-12-30 14:28:32 ----D---- C:\Windows\Minidump
2015-12-29 21:36:19 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2015-12-22 15:26:08 ----D---- C:\Windows\Globalization
2015-12-17 23:54:42 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2015-12-17 23:54:22 ----A---- C:\Windows\system32\PerfStringBackup.INI
2015-12-17 23:52:38 ----D---- C:\Windows\winsxs
2015-12-17 23:52:28 ----SD---- C:\Windows\SYSWOW64\GWX
2015-12-17 23:52:28 ----SD---- C:\Windows\system32\GWX
2015-12-16 18:34:16 ----A---- C:\Windows\SYSWOW64\OpenCL.dll
2015-12-16 18:34:16 ----A---- C:\Windows\system32\OpenCL.dll
2015-12-09 19:36:45 ----D---- C:\Windows\rescache
2015-12-09 18:56:21 ----D---- C:\Windows\Microsoft.NET
2015-12-09 18:55:55 ----RSD---- C:\Windows\assembly
2015-12-09 17:10:08 ----D---- C:\Program Files (x86)\Opera
2015-12-09 04:39:31 ----N---- C:\Windows\system32\MpSigStub.exe
2015-12-09 03:31:30 ----D---- C:\Program Files\Microsoft Silverlight
2015-12-09 03:31:28 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2015-12-09 03:30:04 ----D---- C:\Windows\SYSWOW64\cs-CZ
2015-12-09 03:30:04 ----D---- C:\Windows\system32\cs-CZ
2015-12-09 03:30:03 ----RSD---- C:\Windows\Fonts
2015-12-09 03:30:02 ----D---- C:\Windows\SYSWOW64\en-US
2015-12-09 03:30:02 ----D---- C:\Windows\system32\en-US
2015-12-09 03:30:02 ----D---- C:\Windows\ehome
2015-12-09 03:30:02 ----D---- C:\Program Files\Internet Explorer
2015-12-09 03:30:01 ----D---- C:\Program Files (x86)\Internet Explorer
2015-12-09 03:10:28 ----D---- C:\Windows\system32\MRT
2015-12-09 03:03:29 ----D---- C:\Windows\debug
2015-12-09 03:03:18 ----A---- C:\Windows\system32\MRT.exe
2015-12-07 21:18:42 ----D---- C:\ProgramData\Oracle
2015-12-07 21:16:27 ----D---- C:\Program Files (x86)\Java
2015-12-07 21:14:42 ----A---- C:\Windows\SYSWOW64\WindowsAccessBridge-32.dll
2015-12-07 21:06:07 ----D---- C:\CrashHandlerCache

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2015-03-04 280376]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R0 speedfan;speedfan; C:\Windows\SysWOW64\speedfan.sys [2012-12-29 28664]
R1 SCDEmu;SCDEmu; C:\Windows\system32\drivers\SCDEmu.sys [2014-10-08 127760]
R2 AODDriver4.1;AODDriver4.1; \??\C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [2012-03-05 53888]
R2 AODDriver4.3.0;AODDriver4.3.0; \??\C:\Program Files (x86)\AMD\OverDrive\amd64\AODDriver2.sys [2014-09-19 60104]
R2 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2015-03-04 124568]
R3 amdiox64;AMD IO Driver; C:\Windows\system32\DRIVERS\amdiox64.sys [2010-02-18 46136]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2014-05-14 3962840]
R3 MBAMProtector;MBAMProtector; \??\C:\Windows\system32\drivers\mbam.sys [2015-10-05 25816]
R3 NTIOLib_1_0_3;NTIOLib_1_0_3; \??\C:\Program Files (x86)\MSI\Super-Charger\NTIOLib_X64.sys [2012-10-25 13368]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda64v.sys [2015-02-11 197408]
R3 NvStreamKms;NvStreamKms; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2015-12-16 19576]
R3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\Windows\system32\drivers\nvvad64v.sys [2015-12-16 50472]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2012-02-16 676968]
R3 rusb3hub;Renesas Electronics USB 3.0 Hub Driver (Version 3.0); C:\Windows\system32\DRIVERS\rusb3hub.sys [2011-11-21 101376]
R3 rusb3xhc;Renesas Electronics USB 3.0 Host Controller Driver (Version 3.0); C:\Windows\system32\DRIVERS\rusb3xhc.sys [2011-11-21 217088]
R3 usbfilter;AMD USB Filter Driver; C:\Windows\system32\DRIVERS\usbfilter.sys [2010-11-28 44672]
S2 Aspi32;Aspi32; C:\Windows\System32\drivers\aspi32.sys []
S3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2013-04-30 11922944]
S3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2013-04-30 359936]
S3 AtiHDAudioService;AMD Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdW76.sys [2012-05-14 96896]
S3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2013-04-30 11922944]
S3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudbus.sys [2014-10-13 110336]
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2013-02-05 57840]
S3 MBAMWebAccessControl;MBAMWebAccessControl; \??\C:\Windows\system32\drivers\mwac.sys [2015-10-05 63704]
S3 MTsensor;ATK0110 ACPI UTILITY; C:\Windows\system32\DRIVERS\ASACPI.sys [2005-03-29 8192]
S3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\Windows\system32\DRIVERS\nvm62x64.sys [2009-06-10 408960]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfdx64.sys [2012-06-11 26112]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 RTL8023x64;Realtek 10/100 NIC Family NDIS x64 Driver; C:\Windows\system32\DRIVERS\Rtnic64.sys [2009-06-10 51712]
S3 ssudmdm;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudmdm.sys [2014-10-13 206080]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2013-10-02 56832]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2012-08-23 30208]
S3 WinUsb;SAMSUNG Android USB Driver; C:\Windows\system32\DRIVERS\WinUSB.sys [2010-11-21 41984]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2013-04-30 238080]
R2 AMD FUEL Service;AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [2013-04-29 361984]
R2 AODService;AODService; C:\Program Files (x86)\AMD\OverDrive\AODAssist.exe [2014-09-19 137584]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 GfExperienceService;NVIDIA GeForce Experience Service; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [2015-12-16 1156216]
R2 MSI_SuperCharger;MSI_SuperCharger; C:\Program Files (x86)\MSI\Super-Charger\ChargeService.exe [2012-10-25 143416]
R2 MsMpSvc;Microsoft Antimalware Service; c:\Program Files\Microsoft Security Client\MsMpEng.exe [2015-04-30 23816]
R2 NAUpdate;@C:\Program Files (x86)\Nero\Update\NASvc.exe,-200; C:\Program Files (x86)\Nero\Update\NASvc.exe [2014-01-27 773968]
R2 Nero BackItUp Scheduler 4.0;Nero BackItUp Scheduler 4.0; C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe [2009-07-20 935208]
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2015-12-16 1872504]
R2 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [2015-12-16 6477432]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2015-02-04 932040]
R2 PnkBstrA;PnkBstrA; C:\Windows\syswow64\PnkBstrA.exe [2014-12-29 76888]
R2 ss_conn_service;SAMSUNG Mobile Connectivity Service; C:\Program Files\SAMSUNG\USB Drivers\25_escape\conn\ss_conn_service.exe [2014-10-13 743688]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2015-02-04 409800]
R2 Vaiafineco;Vaiafineco; C:\ProgramData\\Vaiafineco\\Vaiafineco.exe [2015-12-29 534016]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2012-07-17 2292480]
R3 NisSrv;@c:\Program Files\Microsoft Security Client\MpAsDesc.dll,-243; c:\Program Files\Microsoft Security Client\NisSrv.exe [2015-04-30 366544]
R3 NvStreamNetworkSvc;NVIDIA Streamer Network Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [2015-12-16 8185464]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2014-04-11 103608]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2014-04-11 124088]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-30 144200]
S2 MBAMService;MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [2015-10-05 1135416]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2015-02-18 315488]
S2 SysTesterSvc;System Tester Service; C:\Program Files\NixController\bin\8d251941-deb5-49cf-88c4-b39455f7bf60\runner.exe []
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-01-03 269504]
S3 fsssvc;Windows Live Family Safety Service; C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2013-02-05 1512448]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-30 144200]
S3 gusvc;Google Software Updater; C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe [2015-01-04 194032]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2015-11-08 114688]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2015-12-29 146888]
S3 ServiceLayer;ServiceLayer; C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe [2012-06-11 724376]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2015-11-10 836176]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2014-05-29 1255736]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2014-04-11 50864]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-11 139944]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-11 139944]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-11 139944]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119420
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosim o kontrolu...dekuji

#10 Příspěvek od Rudy »

Smazáno. Znovu spusťte OTM a klikněte na >CleanUp!<. OTM po sobě uklidí. Nakonec restartujte PC. Log je již OK.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

franni
Návštěvník
Návštěvník
Příspěvky: 167
Registrován: 19 kvě 2009 18:55
Bydliště: žďár u mnichova Hradiste

Re: Prosim o kontrolu...dekuji

#11 Příspěvek od franni »

dekuju jste zlaty clovek...dobrou noc

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119420
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosim o kontrolu...dekuji

#12 Příspěvek od Rudy »

Rádo se stalo! Dobrou! :)
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Zamčeno