
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Divně, zpomaleně/zabržděně chovající se NTB!
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Divně, zpomaleně/zabržděně chovající se NTB!
Dobrý podvečer/večer přeji. Mam takový problém, domnívám se, že chování NTB není úplně v pořádku.
Poslední dobou nestíhá to co dříve zvládal úplně bez problému.
Surfování po internetu s několika relacemi, přehrávání HD videa bez dlouhého načítání mezi okny.
Včetně hrání her, které dle specifikací v klidu rozjede
(chci podotknout, že se snažím NTB nedrtit a hry hraji na nejmenší detaily).
Notebook je nastavený na max. výkon a vypnuté některé včetně nepotřebné služby superfetch, window search
(snad to nemá vliv na chování ntb, popř. doložim screen)
Poslední dobou podezřívám dost avast, jelikož po startu žere cca 30-40% procíku a 100% vytěžuje disk.
Zkusil jsem ho vymazat s tím, že budu používat windows deffender. Okamžitě se začal začal bránit a vytěžovat procík, disk, celkově celé PC, přes to po restartu byl ntb ještě zabržděnější. Napadlo mě ho vymazat přes nouzový režim,
ale u Windows 8 nevím jak se tam dostat. Teploty hlídám, při max. vytížení si drží standartní teploty.
Hw specifikace ntb:
Intel Celeron N2840 2x 2,16 (1mb cache)
Intel HD Grafika
4gb Ram DDR3
500 Gb Disk..
LOG Z RSITU:
---------------------------------------------------------------------
Logfile of random's system information tool 1.10 (written by random/random)
Run by eva at 2016-04-18 21:47:59
Microsoft Windows 8.1 s aplikací Bing
System drive C: has 179 GB (41%) free of 435 GB
Total RAM: 3979 MB (44% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 21:48:06, on 18. 4. 2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.18123)
Boot mode: Normal
Running processes:
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Riot Games\League of Legends\RADS\system\rads_user_kernel.exe
C:\Riot Games\League of Legends\RADS\projects\lol_launcher\releases\0.0.1.14\deploy\LoLLauncher.exe
C:\Riot Games\League of Legends\RADS\projects\lol_patcher\releases\0.0.0.54\deploy\LoLPatcher.exe
C:\Riot Games\League of Legends\RADS\projects\lol_air_client\releases\0.0.1.196\deploy\LolClient.exe
C:\Program Files (x86)\TeamSpeak 3 Client\ts3client_win32.exe
C:\Program Files (x86)\GRETECH\GomPlayer\GOM.EXE
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\eva.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://lenovo13.msn.com/?pc=LCJB
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://lenovo13.msn.com/?pc=LCJB
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe,
O2 - BHO: Lync Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office15\URLREDIR.DLL
O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\PROGRA~2\MICROS~1\Office15\GROOVEEX.DLL
O4 - HKLM\..\Run: [UpdateP2GShortCut] "C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\Lenovo\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\5.0"
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [Wondershare Helper Compact.exe] C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\Run: [AlcoholAutomount] "C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe" -automount
O8 - Extra context menu item: E&xportovat do Microsoft Excelu - res://C:\PROGRA~1\MICROS~1\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do OneNotu - res://C:\PROGRA~1\MICROS~1\Office15\ONBttnIE.dll/105
O9 - Extra button: Odeslat do OneNotu - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do OneNotu - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra button: Volání kliknutím v Lyncu - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O9 - Extra 'Tools' menuitem: Volání kliknutím v Lyncu - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files (x86)\Microsoft Office\Office15\MSOSB.DLL
O18 - Filter hijack: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\windows\System32\alg.exe (file missing)
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\windows\System32\lsass.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: Hi-Rez Studios Authenticate and Update Service (HiPatchService) - Hi-Rez Studios - C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\windows\system32\igfxCUIService.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\TXE Components\TCS\SocketHeciServer.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\windows\System32\msdtc.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Samsung Printer Dianostics Service - Unknown owner - C:\windows\system32\\spdsvc.exe
O23 - Service: Conexant SmartAudio service (SAService) - Conexant Systems, Inc. - C:\windows\system32\SAsrv.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\windows\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: Adaptér výkonu rozhraní WMI (wmiApSrv) - Unknown owner - C:\windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Zero Configuration Service (ZeroConfigService) - Intel® Corporation - C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
--
End of file - 9153 bytes
======Listing Processes======
wininit.exe
winlogon.exe
C:\windows\system32\lsass.exe
C:\windows\system32\svchost.exe -k DcomLaunch
C:\windows\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\windows\system32\svchost.exe -k NetworkService
C:\windows\system32\svchost.exe -k netsvcs
C:\windows\system32\svchost.exe -k LocalService
C:\windows\system32\igfxCUIService.exe
C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\windows\system32\WLANExt.exe 494655709440
\??\C:\windows\system32\conhost.exe 0x4
C:\windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\windows\System32\svchost.exe -k utcsvc
dashost.exe {9e8ed340-02bf-4740-8082503d750f0ab8}
"C:\Program Files\Intel\WiFi\bin\EvtEng.exe"
C:\windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
"C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe"
"C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe"
C:\windows\SysWOW64\\spdsvc.exe
C:\windows\SysWOW64\SAsrv.exe
C:\windows\system32\svchost.exe -k imgsvc
C:\windows\system32\wbem\unsecapp.exe -Embedding
C:\windows\system32\wbem\wmiprvse.exe
C:\windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-e7ca3ea4-adc7-461f-a884-ab9b24221577 -SystemEventPortName:HostProcess-e12ca3d9-f45b-48fa-91b5-481f52157ede -IoCancelEventPortName:HostProcess-8802489d-6647-4556-8523-3f832b57d985 -NonStateChangingEventPortName:HostProcess-488a7718-4132-44b0-a90e-9c578916eea5 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:c581f0fe-56ae-4ced-94e6-b3cf67083391 -DeviceGroupId:WudfDefaultDevicePool
C:\windows\System32\svchost.exe -k LocalServicePeerNet
taskhostex.exe
C:\windows\Explorer.EXE
igfxEM.exe
igfxHK.exe
igfxTray.exe
"C:\Program Files\CONEXANT\ForteConfig\fmapp.exe"
"C:\Windows\System32\rundll32.exe" "C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll",TrayApp
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
"C:\Riot Games\League of Legends\RADS\system\rads_user_kernel.exe" updateandrun lol_launcher LoLLauncher.exe
C:\windows\system32\wbem\unsecapp.exe -Embedding
LoLLauncher.exe
C:\windows\system32\wbem\wmiprvse.exe
"C:/Riot Games/League of Legends/RADS/projects/lol_patcher/releases/0.0.0.54/deploy/LoLPatcher.exe"
"C:/Riot Games/League of Legends/RADS/projects/lol_air_client/releases/0.0.1.196/deploy//LolClient.exe" -runtime .\ -nodebug META-INF\AIR\application.xml .\ -- 8393
"C:\Program Files (x86)\TeamSpeak 3 Client\ts3client_win32.exe"
taskhost.exe
"C:\Program Files (x86)\GRETECH\GomPlayer\GOM.EXE"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" http://searchomepage.com/?uuid=56ce7fa6 ... i5deeseici
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=crashpad-handler /prefetch:7 --no-rate-limit "--database=C:\Users\eva\AppData\Local\Google\Chrome\User Data\Crashpad" --url=https://clients2.google.com/cr/report --annotation=channel=m --annotation=plat=Win32 --annotation=prod=Chrome --annotation=ver=49.0.2623.112 --handshake-handle=0x158
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=watcher --main-thread-id=4148 --on-initialized-event-handle=628 --parent-handle=640 /prefetch:6
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="1964.0.1097342000\220750710" --supports-dual-gpus=false --gpu-driver-bug-workarounds=3,11,16,25,54 --gpu-vendor-id=0x8086 --gpu-device-id=0x0f31 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=10.18.10.3496 --ignored=" --type=renderer " /prefetch:2
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,WebFontsIntervention<WebFontsIntervention --disable-features=UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/*CrossDevicePromo/1DaySingleProfile/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PreRead/Default/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Launch50pct_11011_1_1_10/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/SSLCommonNameMismatchHandling/Disabled/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_80/*UMA-Uniformity-Trial-10-Percent/group_09/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_17/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*WebFontsIntervention/Enabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --blink-settings=fetchDeferLateScripts=true,fetchIncreaseFontPriority=true,fetchIncreasePriorities=true --enable-pinch --device-scale-factor=1 --num-raster-threads=1 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="1964.3.34956120\236962794" /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,WebFontsIntervention<WebFontsIntervention --disable-features=UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/*CrossDevicePromo/1DaySingleProfile/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PreRead/Default/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Launch50pct_11011_1_1_10/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/SSLCommonNameMismatchHandling/Disabled/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_80/*UMA-Uniformity-Trial-10-Percent/group_09/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_17/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*WebFontsIntervention/Enabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --blink-settings=fetchDeferLateScripts=true,fetchIncreaseFontPriority=true,fetchIncreasePriorities=true --enable-pinch --device-scale-factor=1 --num-raster-threads=1 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="1964.6.1359677913\1989367068" /prefetch:1
"C:\Users\eva\Desktop\RSITx64.exe"
"C:\Program Files\CPUID\HWMonitor\HWMonitor.exe"
======Scheduled tasks folder======
C:\windows\tasks\Adobe Flash Player Updater.job - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Lync Browser Helper - C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2012-10-01 205416]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-09-01 655480]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~1\Office15\URLREDIR.DLL [2012-10-01 877720]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~1\MICROS~1\Office15\GROOVEEX.DLL [2012-10-01 2322576]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Lync Browser Helper - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2012-10-01 139368]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-09-01 559624]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office15\URLREDIR.DLL [2012-10-01 704664]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~2\MICROS~1\Office15\GROOVEEX.DLL [2012-10-01 1720976]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"cAudioFilterAgent"=C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe [2013-09-05 907480]
"ForteConfig"=C:\Program Files\Conexant\ForteConfig\fmapp.exe [2010-10-26 49056]
"SmartAudio"=C:\Program Files\CONEXANT\SAII\SACpl.exe [2012-06-13 1647616]
"BTMTrayAgent"=C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll [2013-11-07 7818552]
"PhoneCompanion"=C:\Program Files\Lenovo PhoneCompanion\Phone Companion.exe [2014-11-01 836592]
"Energy Manager"=C:\Program Files (x86)\Lenovo\Energy Manager\Energy Manager.exe [2014-11-01 16094704]
"Lenovo Utility"=C:\Program Files (x86)\Lenovo\Energy Manager\Utility.exe [2014-11-01 10841584]
"CDAServer"=C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe [2014-09-08 464608]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2015-08-20 8455960]
"AlcoholAutomount"=C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe [2012-01-05 75624]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"UpdateP2GShortCut"=C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe [2011-12-07 214312]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2016-03-04 6111312]
"Wondershare Helper Compact.exe"=C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [2013-08-26 1989920]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\McNaiAnn]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\VDWFP]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\VisualDiscovery]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"PromptOnSecureDesktop"=0
"ConsentPromptBehaviorAdmin"=0
"SoftwareSASGeneration"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2016-04-18 20:47:09 ----D---- C:\rsit
2016-04-13 11:47:50 ----A---- C:\windows\system32\mfmp4srcsnk.dll
2016-04-13 11:47:49 ----A---- C:\windows\SYSWOW64\mfmp4srcsnk.dll
2016-04-13 11:47:47 ----A---- C:\windows\system32\drivers\rasl2tp.sys
2016-04-13 11:47:37 ----A---- C:\windows\system32\appraiser.dll
2016-04-13 11:47:36 ----A---- C:\windows\system32\invagent.dll
2016-04-13 11:47:36 ----A---- C:\windows\system32\generaltel.dll
2016-04-13 11:47:36 ----A---- C:\windows\system32\aepic.dll
2016-04-13 11:47:36 ----A---- C:\windows\system32\aeinv.dll
2016-04-13 11:47:35 ----A---- C:\windows\system32\devinv.dll
2016-04-13 11:47:35 ----A---- C:\windows\system32\CompatTelRunner.exe
2016-04-13 11:47:35 ----A---- C:\windows\system32\acmigration.dll
2016-04-13 11:47:31 ----A---- C:\windows\system32\rpcss.dll
2016-04-13 11:47:29 ----A---- C:\windows\system32\VSSVC.exe
2016-04-13 11:47:26 ----A---- C:\windows\system32\WsmSvc.dll
2016-04-13 11:47:25 ----A---- C:\windows\SYSWOW64\WsmSvc.dll
2016-04-13 11:47:24 ----A---- C:\windows\SYSWOW64\WsmWmiPl.dll
2016-04-13 11:47:24 ----A---- C:\windows\SYSWOW64\WsmAuto.dll
2016-04-13 11:47:24 ----A---- C:\windows\SYSWOW64\WsmAgent.dll
2016-04-13 11:47:24 ----A---- C:\windows\system32\WsmWmiPl.dll
2016-04-13 11:47:24 ----A---- C:\windows\system32\WsmAuto.dll
2016-04-13 11:47:24 ----A---- C:\windows\system32\WsmAgent.dll
2016-04-13 11:47:22 ----A---- C:\windows\system32\drivers\IPMIDrv.sys
2016-04-13 11:47:18 ----A---- C:\windows\SYSWOW64\twinui.dll
2016-04-13 11:46:45 ----A---- C:\windows\system32\twinui.dll
2016-04-13 11:46:08 ----A---- C:\windows\SYSWOW64\shell32.dll
2016-04-13 11:45:16 ----A---- C:\windows\SYSWOW64\explorer.exe
2016-04-13 11:45:12 ----A---- C:\windows\explorer.exe
2016-04-13 11:44:58 ----A---- C:\windows\system32\SystemSettingsAdminFlowUI.dll
2016-04-13 11:44:30 ----A---- C:\windows\system32\shell32.dll
2016-04-13 11:44:29 ----A---- C:\windows\system32\ExplorerFrame.dll
2016-04-13 11:44:28 ----A---- C:\windows\SYSWOW64\ExplorerFrame.dll
2016-04-13 11:44:28 ----A---- C:\windows\system32\SystemSettingsAdminFlows.exe
2016-04-13 11:44:27 ----A---- C:\windows\SYSWOW64\twinui.appcore.dll
2016-04-13 11:44:27 ----A---- C:\windows\system32\twinui.appcore.dll
2016-04-13 11:44:27 ----A---- C:\windows\system32\SettingsHandlers.dll
2016-04-13 11:44:26 ----A---- C:\windows\SYSWOW64\AppxAllUserStore.dll
2016-04-13 11:44:26 ----A---- C:\windows\system32\SettingSyncCore.dll
2016-04-13 11:44:26 ----A---- C:\windows\system32\SettingSync.dll
2016-04-13 11:44:26 ----A---- C:\windows\system32\AppxAllUserStore.dll
2016-04-13 11:44:25 ----A---- C:\windows\SYSWOW64\SettingSyncCore.dll
2016-04-13 11:44:25 ----A---- C:\windows\SYSWOW64\SettingSync.dll
2016-04-13 11:44:25 ----A---- C:\windows\system32\SettingSyncHost.exe
2016-04-13 11:44:25 ----A---- C:\windows\system32\hgcpl.dll
2016-04-13 11:44:24 ----A---- C:\windows\system32\usercpl.dll
2016-04-13 11:44:24 ----A---- C:\windows\system32\themecpl.dll
2016-04-13 11:44:24 ----A---- C:\windows\system32\stobject.dll
2016-04-13 11:44:24 ----A---- C:\windows\system32\SettingMonitor.dll
2016-04-13 11:44:24 ----A---- C:\windows\system32\AppXDeploymentExtensions.dll
2016-04-13 11:44:23 ----A---- C:\windows\SYSWOW64\themecpl.dll
2016-04-13 11:44:23 ----A---- C:\windows\SYSWOW64\hgcpl.dll
2016-04-13 11:44:22 ----A---- C:\windows\SYSWOW64\usercpl.dll
2016-04-13 11:44:22 ----A---- C:\windows\SYSWOW64\stobject.dll
2016-04-13 11:44:22 ----A---- C:\windows\SYSWOW64\SettingSyncHost.exe
2016-04-13 11:44:21 ----A---- C:\windows\SYSWOW64\SettingMonitor.dll
2016-04-13 11:44:17 ----A---- C:\windows\system32\AppXDeploymentServer.dll
2016-04-13 11:43:51 ----A---- C:\windows\system32\workfolderssvc.dll
2016-04-13 11:43:50 ----A---- C:\windows\system32\WorkfoldersControl.dll
2016-04-13 11:43:47 ----A---- C:\windows\SYSWOW64\msorcl32.dll
2016-04-13 11:43:47 ----A---- C:\windows\SYSWOW64\KernelBase.dll
2016-04-13 11:43:46 ----A---- C:\windows\SYSWOW64\mtxoci.dll
2016-04-13 11:43:46 ----A---- C:\windows\system32\winresume.exe
2016-04-13 11:43:46 ----A---- C:\windows\system32\winload.exe
2016-04-13 11:43:46 ----A---- C:\windows\system32\ntoskrnl.exe
2016-04-13 11:43:46 ----A---- C:\windows\system32\mtxoci.dll
2016-04-13 11:43:45 ----A---- C:\windows\system32\KernelBase.dll
2016-04-13 11:43:42 ----A---- C:\windows\system32\drivers\vpci.sys
2016-04-13 11:43:42 ----A---- C:\windows\system32\drivers\storport.sys
2016-04-13 11:43:41 ----A---- C:\windows\SYSWOW64\dhcpsapi.dll
2016-04-13 11:43:41 ----A---- C:\windows\system32\dhcpsapi.dll
2016-04-13 11:43:38 ----A---- C:\windows\SYSWOW64\storagewmi.dll
2016-04-13 11:43:38 ----A---- C:\windows\system32\storagewmi.dll
2016-04-13 11:43:34 ----A---- C:\windows\system32\wbengine.exe
2016-04-13 11:43:33 ----A---- C:\windows\system32\WindowsAnytimeUpgradeui.exe
2016-04-13 11:43:33 ----A---- C:\windows\system32\drivers\disk.sys
2016-04-13 10:25:25 ----A---- C:\windows\SYSWOW64\FWPUCLNT.DLL
2016-04-13 10:25:25 ----A---- C:\windows\system32\nshwfp.dll
2016-04-13 10:25:25 ----A---- C:\windows\system32\IKEEXT.DLL
2016-04-13 10:25:25 ----A---- C:\windows\system32\FWPUCLNT.DLL
2016-04-13 10:25:25 ----A---- C:\windows\system32\BFE.DLL
2016-04-13 10:25:24 ----A---- C:\windows\SYSWOW64\nshwfp.dll
2016-04-13 10:25:20 ----A---- C:\windows\system32\drivers\vhdmp.sys
2016-04-13 10:25:17 ----A---- C:\windows\system32\drivers\volsnap.sys
2016-04-13 08:05:39 ----A---- C:\windows\system32\mshtml.dll
2016-04-13 08:05:37 ----A---- C:\windows\SYSWOW64\mshtml.dll
2016-04-13 08:05:34 ----A---- C:\windows\system32\ieframe.dll
2016-04-13 08:05:32 ----A---- C:\windows\SYSWOW64\ieframe.dll
2016-04-13 08:05:31 ----A---- C:\windows\SYSWOW64\iertutil.dll
2016-04-13 08:05:31 ----A---- C:\windows\system32\iertutil.dll
2016-04-13 08:05:30 ----A---- C:\windows\SYSWOW64\iedkcs32.dll
2016-04-13 08:05:30 ----A---- C:\windows\system32\wininet.dll
2016-04-13 08:05:30 ----A---- C:\windows\system32\jscript9.dll
2016-04-13 08:05:30 ----A---- C:\windows\system32\iedkcs32.dll
2016-04-13 08:05:29 ----A---- C:\windows\SYSWOW64\wininet.dll
2016-04-13 08:05:29 ----A---- C:\windows\system32\ie4uinit.exe
2016-04-13 08:05:28 ----A---- C:\windows\SYSWOW64\msfeeds.dll
2016-04-13 08:05:28 ----A---- C:\windows\system32\urlmon.dll
2016-04-13 08:05:28 ----A---- C:\windows\system32\msfeeds.dll
2016-04-13 08:05:27 ----A---- C:\windows\SYSWOW64\urlmon.dll
2016-04-13 08:05:26 ----A---- C:\windows\SYSWOW64\dxtrans.dll
2016-04-13 08:05:26 ----A---- C:\windows\system32\iepeers.dll
2016-04-13 08:05:26 ----A---- C:\windows\system32\dxtrans.dll
2016-04-13 08:05:25 ----A---- C:\windows\SYSWOW64\webcheck.dll
2016-04-13 08:05:25 ----A---- C:\windows\SYSWOW64\jscript9.dll
2016-04-13 08:05:25 ----A---- C:\windows\SYSWOW64\iepeers.dll
2016-04-13 08:05:25 ----A---- C:\windows\system32\webcheck.dll
2016-04-13 08:05:24 ----A---- C:\windows\SYSWOW64\vbscript.dll
2016-04-13 08:05:24 ----A---- C:\windows\SYSWOW64\jscript.dll
2016-04-13 08:05:24 ----A---- C:\windows\SYSWOW64\inetcomm.dll
2016-04-13 08:05:24 ----A---- C:\windows\system32\vbscript.dll
2016-04-13 08:05:24 ----A---- C:\windows\system32\mshtmled.dll
2016-04-13 08:05:24 ----A---- C:\windows\system32\jscript.dll
2016-04-13 08:05:24 ----A---- C:\windows\system32\inetcomm.dll
2016-04-13 08:05:24 ----A---- C:\windows\system32\ieapfltr.dll
2016-04-13 08:05:23 ----A---- C:\windows\SYSWOW64\ieapfltr.dll
2016-04-13 08:04:01 ----A---- C:\windows\SYSWOW64\msxml3.dll
2016-04-13 08:04:01 ----A---- C:\windows\system32\msxml3.dll
2016-04-13 08:03:59 ----A---- C:\windows\SYSWOW64\ole32.dll
2016-04-13 08:03:59 ----A---- C:\windows\system32\ole32.dll
2016-04-13 08:03:54 ----A---- C:\windows\SYSWOW64\certcli.dll
2016-04-13 08:03:54 ----A---- C:\windows\system32\samsrv.dll
2016-04-13 08:03:54 ----A---- C:\windows\system32\lsasrv.dll
2016-04-13 08:03:54 ----A---- C:\windows\system32\drivers\mrxsmb20.sys
2016-04-13 08:03:54 ----A---- C:\windows\system32\drivers\mrxsmb10.sys
2016-04-13 08:03:54 ----A---- C:\windows\system32\drivers\cng.sys
2016-04-13 08:03:53 ----A---- C:\windows\system32\drivers\mrxsmb.sys
2016-04-13 08:03:52 ----A---- C:\windows\system32\samlib.dll
2016-04-13 08:03:51 ----A---- C:\windows\SYSWOW64\samlib.dll
2016-04-13 08:03:50 ----A---- C:\windows\system32\certcli.dll
2016-04-13 08:03:43 ----A---- C:\windows\system32\basesrv.dll
2016-04-13 08:03:37 ----A---- C:\windows\system32\win32k.sys
2016-04-11 16:21:25 ----D---- C:\Users\eva\AppData\Roaming\PhotoFiltre 7
2016-04-11 16:21:20 ----D---- C:\Program Files (x86)\PhotoFiltre 7
2016-04-11 12:56:39 ----D---- C:\ProgramData\Razer
2016-04-07 16:37:50 ----D---- C:\Program Files\CPUID
2016-04-01 15:55:24 ----SHD---- C:\Config.Msi
2016-03-20 21:04:27 ----A---- C:\windows\SYSWOW64\psfind.dll
2016-03-20 21:00:48 ----D---- C:\Program Files (x86)\THQ
======List of files/folders modified in the last 1 month======
2016-04-18 21:48:04 ----D---- C:\Program Files\trend micro
2016-04-18 21:00:00 ----D---- C:\windows\system32\sru
2016-04-18 20:43:46 ----D---- C:\Users\eva\AppData\Roaming\TS3Client
2016-04-18 20:36:09 ----AD---- C:\Windows
2016-04-18 20:32:29 ----D---- C:\windows\Temp
2016-04-18 20:31:36 ----D---- C:\windows\SoftwareDistribution
2016-04-18 19:28:25 ----D---- C:\windows\system32\NDF
2016-04-18 19:03:33 ----D---- C:\Program Files (x86)\Hi-Rez Studios
2016-04-18 19:02:17 ----D---- C:\ProgramData\Hi-Rez Studios
2016-04-18 19:02:09 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2016-04-18 19:01:59 ----SHD---- C:\System Volume Information
2016-04-18 19:00:07 ----D---- C:\windows\Inf
2016-04-18 18:59:29 ----D---- C:\windows\debug
2016-04-18 18:57:06 ----D---- C:\Users\eva\AppData\Roaming\uTorrent
2016-04-18 12:08:18 ----D---- C:\windows\system32\config
2016-04-18 12:08:13 ----D---- C:\windows\WinSxS
2016-04-18 12:06:25 ----D---- C:\windows\system32\drivers
2016-04-16 20:16:20 ----D---- C:\windows\rescache
2016-04-16 20:01:20 ----D---- C:\windows\Microsoft.NET
2016-04-16 20:00:39 ----D---- C:\windows\CbsTemp
2016-04-16 20:00:15 ----RSD---- C:\windows\assembly
2016-04-16 19:59:31 ----D---- C:\windows\apppatch
2016-04-16 19:59:17 ----D---- C:\windows\SysWOW64
2016-04-16 19:59:16 ----RAD---- C:\windows\System32
2016-04-16 13:40:56 ----A---- C:\windows\system32\PerfStringBackup.INI
2016-04-14 21:47:50 ----D---- C:\windows\SYSWOW64\en-US
2016-04-14 21:47:50 ----D---- C:\windows\SYSWOW64\cs-CZ
2016-04-14 21:47:50 ----D---- C:\windows\system32\en-US
2016-04-14 21:47:50 ----D---- C:\windows\system32\cs-CZ
2016-04-14 21:47:50 ----D---- C:\windows\system32\appraiser
2016-04-14 21:47:49 ----RD---- C:\windows\ToastData
2016-04-14 21:47:48 ----D---- C:\windows\system32\wbem
2016-04-14 21:47:46 ----D---- C:\windows\system32\Boot
2016-04-14 21:47:43 ----D---- C:\Program Files\Internet Explorer
2016-04-14 21:47:43 ----D---- C:\Program Files (x86)\Internet Explorer
2016-04-14 21:47:39 ----D---- C:\windows\system32\DriverStore
2016-04-14 21:44:34 ----D---- C:\windows\system32\MRT
2016-04-14 21:35:25 ----A---- C:\windows\system32\MRT.exe
2016-04-14 14:25:23 ----HD---- C:\Program Files\WindowsApps
2016-04-14 14:25:23 ----D---- C:\windows\AppReadiness
2016-04-13 10:20:58 ----D---- C:\windows\system32\catroot2
2016-04-11 16:54:29 ----D---- C:\Users\eva\AppData\Roaming\Samsung
2016-04-11 16:21:20 ----RD---- C:\Program Files (x86)
2016-04-11 16:14:27 ----HD---- C:\ProgramData
2016-04-11 13:11:52 ----SHD---- C:\windows\Installer
2016-04-07 16:37:50 ----RD---- C:\Program Files
2016-04-05 23:53:01 ----A---- C:\windows\SYSWOW64\FlashPlayerApp.exe
2016-03-27 19:49:11 ----SD---- C:\windows\SYSWOW64\GWX
2016-03-27 19:49:11 ----SD---- C:\windows\system32\GWX
2016-03-25 08:23:33 ----D---- C:\windows\system32\drivers\en-US
2016-03-25 08:23:33 ----D---- C:\windows\system32\drivers\cs-CZ
2016-03-22 07:48:30 ----D---- C:\windows\Logs
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswRvrt;avast! Revert; C:\windows\system32\drivers\aswRvrt.sys [2015-09-01 65224]
R0 aswVmm;avast! VM Monitor; C:\windows\system32\drivers\aswVmm.sys [2015-09-01 274808]
R0 MBI;@oem10.inf,%MBI.SVCDESC%;Intel(R) Sideband Fabric Device Service; C:\windows\System32\drivers\MBI.sys [2013-10-10 29464]
R0 sptd;sptd; C:\windows\System32\Drivers\sptd.sys [2015-11-17 381608]
R1 aswRdr;aswRdr; C:\windows\system32\drivers\aswRdr2.sys [2015-09-01 93528]
R1 aswSnx;aswSnx; C:\windows\system32\drivers\aswSnx.sys [2016-03-04 1059656]
R1 aswSP;aswSP; C:\windows\system32\drivers\aswSP.sys [2016-03-04 449992]
R1 vwififlt;@%SystemRoot%\System32\drivers\vwififlt.sys,-259; C:\windows\system32\DRIVERS\vwififlt.sys [2013-08-22 71680]
R2 aswHwid;avast! HardwareID; C:\windows\system32\drivers\aswHwid.sys [2015-09-01 28656]
R2 aswMonFlt;aswMonFlt; C:\windows\system32\drivers\aswMonFlt.sys [2015-09-01 90968]
R2 aswStm;aswStm; C:\windows\system32\drivers\aswStm.sys [2015-09-01 150672]
R2 SSPORT;SSPORT; \??\C:\windows\system32\Drivers\SSPORT.sys [2014-05-07 11576]
R3 ACPIVPC;@oem23.inf,%ACPIVPC.SvcDesc%;Lenovo Virtual Power Controller Driver; C:\windows\System32\drivers\AcpiVpc.sys [2014-11-01 35576]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\windows\System32\Drivers\BTHUSB.sys [2014-10-29 81920]
R3 btmhsf;btmhsf; C:\windows\system32\DRIVERS\btmhsf.sys [2013-11-07 1411384]
R3 CnxtHdAudService;@oem11.inf,%UAAFunctionDriverForHdAudio.SvcDesc%;Conexant UAA Function Driver for High Definition Audio Service; C:\windows\system32\drivers\CHDRT64.sys [2014-01-27 1474240]
R3 cpuz138;cpuz138; \??\C:\Users\eva\AppData\Local\Temp\cpuz138\cpuz138_x64.sys [2016-04-18 27320]
R3 ibtusb;@oem16.inf,%ibtusb.SVCDESC_IBT%;Intel(R) Wireless Bluetooth(R) 4.0 + HS Adapter; C:\windows\system32\DRIVERS\ibtusb.sys [2014-01-22 149448]
R3 igfx;igfx; C:\windows\system32\DRIVERS\igdkmd64.sys [2014-03-07 3729920]
R3 IntcDAud;@oem4.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\windows\system32\DRIVERS\IntcDAud.sys [2014-03-07 450520]
R3 iwdbus;@oem7.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\windows\System32\drivers\iwdbus.sys [2014-03-01 27032]
R3 NETwNb64;@oem17.inf,___ %NIC_Service_DispName_WINB_64%;___ Intel(R) Wireless Adapter Driver for Windows 8.1 - 64 Bit; C:\windows\system32\DRIVERS\Netwbw02.sys [2014-06-01 3443680]
R3 RSUSBVSTOR;@oem21.inf,%RSUSBVSTOR.SvcDesc%;RtsUVStor.Sys Realtek USB Card Reader; C:\windows\System32\Drivers\RtsUVStor.sys [2013-09-24 329944]
R3 RTL8168;@oem8.inf,%rtl8168.Service.DispName%;Realtek 8168 NT Driver; C:\windows\system32\DRIVERS\Rt630x64.sys [2013-08-15 830680]
R3 SmbDrvI;SmbDrvI; C:\windows\system32\DRIVERS\Smb_driver_Intel.sys [2013-12-24 34544]
R3 SNP2UVC;@oem20.inf,%SERVICE_DISPLAY_NAME%;USB2.0 PC Camera (SNP2UVC); C:\windows\system32\DRIVERS\snp2uvc.sys [2014-01-24 2853400]
R3 SynTP;@oem13.inf,%SynTP.SvcDesc%;Synaptics TouchPad Driver; C:\windows\system32\DRIVERS\SynTP.sys [2013-12-24 532720]
R3 TXEIx64;@oem9.inf,%TEE_SvcDesc%;Intel(R) Trusted Execution Engine Interface ; C:\windows\System32\drivers\TXEIx64.sys [2014-01-15 88592]
R3 vwifimp;@%SystemRoot%\System32\drivers\vwifimp.sys,-261; C:\windows\system32\DRIVERS\vwifimp.sys [2013-08-22 36864]
S3 andnetadb;@oem37.inf,%androidusb.SvcDesc%;ADB Interface DriverNet; C:\windows\System32\Drivers\lgandnetadb.sys []
S3 AndNetDiag;@oem38.inf,%Lgsi.Service.Name%;LGE AndroidNet USB Serial Port; C:\windows\system32\DRIVERS\lgandnetdiag64.sys []
S3 ANDNetModem;@oem41.inf,%LGSI.Service.Name%;LGE AndroidNet USB Modem; C:\windows\system32\DRIVERS\lgandnetmodem64.sys []
S3 axscsidrv;axscsidrv; C:\windows\system32\drivers\axscsidrv.sys [2016-02-16 293888]
S3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\windows\System32\drivers\BthEnum.sys [2014-10-29 53248]
S3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\windows\system32\DRIVERS\BthLEEnum.sys [2014-03-18 226304]
S3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\windows\System32\drivers\bthpan.sys [2015-07-10 118272]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\windows\System32\Drivers\BTHport.sys [2015-05-11 1201664]
S3 btmaux;@oem15.inf,%BTMAUX.ServiceDesc%;Intel Bluetooth Auxiliary Service; C:\windows\system32\DRIVERS\btmaux.sys [2013-11-07 140600]
S3 dtlitescsibus;@oem29.inf,%DTLITESCSIBUS.DeviceDesc%;DAEMON Tools Lite Virtual SCSI Bus; C:\windows\System32\drivers\dtlitescsibus.sys [2015-09-01 30264]
S3 e1iexpress;@net1ic64.inf,%e1iExpress.Service.DispName%;Intel(R) PRO/1000 PCI Express Network Connection Driver I; C:\windows\system32\DRIVERS\e1i63x64.sys [2013-06-18 460288]
S3 HTCAND64;@oem32.inf,%HTCAND64.SvcDesc%;HTC Device Driver; C:\windows\System32\Drivers\ANDROIDUSB.sys [2009-11-02 33736]
S3 htcnprot;@oem36.inf,%NDISPROT_Desc%;HTC NDIS Protocol Driver; C:\windows\system32\DRIVERS\htcnprot.sys [2013-10-17 36928]
S3 intaud_WaveExtensible;@oem6.inf,%INTAUD_WEX.SvcDesc%;Intel WiDi Audio Device; C:\windows\system32\drivers\intelaud.sys [2014-03-01 38296]
S3 NETwNe64;@netwew02.inf,___ %NIC_Service_DispName_WIN8_64%;___ Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows 8 - 64 Bit; C:\windows\system32\DRIVERS\NETwew02.sys [2013-06-18 4649440]
S3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\windows\System32\drivers\rfcomm.sys [2015-01-30 167424]
S3 tap0901;@oem37.inf,%DeviceDescription%;TAP-Windows Adapter V9; C:\windows\system32\DRIVERS\tap0901.sys [2013-08-22 40664]
S3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;USB Video Device (WDM); C:\windows\System32\Drivers\usbvideo.sys [2014-06-21 212736]
S3 VClone;VClone; C:\windows\System32\drivers\VClone.sys [2014-05-03 34816]
S3 VirtualDVD;VirtualDVD; C:\windows\system32\DRIVERS\VirtualDVD.sys []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2015-09-01 146600]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\windows\System32\svchost.exe [2014-10-29 38792]
R2 EvtEng;Intel(R) PROSet/Wireless Event Log; C:\Program Files\Intel\WiFi\bin\EvtEng.exe [2014-01-18 632048]
R2 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2014-03-18 43696]
R2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\windows\system32\igfxCUIService.exe [2014-03-12 282096]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe [2013-07-02 733696]
R2 RegSrvc;Intel(R) PROSet/Wireless Registry Service; C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe [2014-01-18 154864]
R2 Samsung Printer Dianostics Service;Samsung Printer Dianostics Service; C:\windows\syswow64\\spdsvc.exe [2015-11-05 491328]
R2 SAService;Conexant SmartAudio service; C:\windows\system32\SAsrv.exe []
S2 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-12-03 269000]
S2 HiPatchService;Hi-Rez Studios Authenticate and Update Service; C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe [2016-03-14 9728]
S3 cphs;Intel(R) Content Protection HECI Service; C:\windows\SysWow64\IntelCpHeciSvc.exe [2014-03-12 279024]
S3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2012-04-24 169752]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\TXE Components\TCS\SocketHeciServer.exe [2013-07-02 822232]
S4 AxAutoMntSrv;Alcohol Virtual Drive Auto-mount Service; C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe [2012-01-05 75624]
S4 Bluetooth Device Monitor;Bluetooth Device Monitor; C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe [2013-11-07 1186168]
S4 Bluetooth OBEX Service;Bluetooth OBEX Service; C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe [2013-11-07 1161592]
S4 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\windows\System32\svchost.exe [2014-10-29 38792]
S4 CxAudMsg;Conexant Audio Message Service; C:\windows\system32\CxAudMsg64.exe [2013-07-25 206552]
S4 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-01 144200]
S4 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-01 144200]
S4 iBtSiva;Intel Bluetooth Service; C:\Program Files (x86)\Intel\Bluetooth\ibtsiva.exe [2014-01-22 130008]
S4 Lenovo EasyPlus Hotspot;Lenovo EasyPlus Hotspot; C:\Program Files (x86)\Common Files\lenovo\easyplussdk\bin\EPHotspot64.exe [2014-06-03 533760]
S4 Lenovo System Agent Service;Lenovo System Agent Service; C:\Program Files\Lenovo\iMController\SystemAgentService.exe [2014-05-22 584960]
S4 LenovoWiFiHotspotSvr;Lenovo WiFiHotspot Service; C:\Windows\System32\LenovoWiFiHotspotSvr.exe [2014-11-01 198192]
S4 LSCWinService;LSCWinService; C:\Program Files\Lenovo\Lenovo Solution Center\App\LSCWinService.exe [2016-01-08 272864]
S4 LUService;LUService; C:\Program Files (x86)\Lenovo\Lenovo Updates\LUService.exe [2014-04-21 37624]
S4 MyWiFiDHCPDNS;Wireless PAN DHCP Server; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [2014-01-18 284912]
S4 ose64;Office 64 Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2012-12-08 178760]
S4 PassThru Service;Internet Pass-Through Service; C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe [2013-10-17 166912]
S4 PhoneCompanionPusher;Lenovo PhoneCompanionPusher Service; C:\Program Files\Lenovo PhoneCompanion\PhoneCompanionPusher.exe [2014-11-01 288240]
S4 PhoneCompanionVap;Lenovo PhoneCompanionVap Service; C:\Program Files\Lenovo PhoneCompanion\PhoneCompanionVap.exe [2014-11-01 305136]
S4 RichVideo64;Cyberlink RichVideo64 Service(CRVS); C:\Program Files\CyberLink\Shared files\RichVideo64.exe [2012-04-24 390632]
S4 StarWindServiceAE;StarWind AE Service; C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [2009-12-23 370688]
S4 VeriFaceSrv;VeriFaceSrv; C:\Program Files (x86)\Lenovo\Lenovo VeriFace Pro\VfConnectorService.exe [2014-11-01 67856]
-----------------EOF-----------------
Poslední dobou nestíhá to co dříve zvládal úplně bez problému.
Surfování po internetu s několika relacemi, přehrávání HD videa bez dlouhého načítání mezi okny.
Včetně hrání her, které dle specifikací v klidu rozjede
(chci podotknout, že se snažím NTB nedrtit a hry hraji na nejmenší detaily).
Notebook je nastavený na max. výkon a vypnuté některé včetně nepotřebné služby superfetch, window search
(snad to nemá vliv na chování ntb, popř. doložim screen)
Poslední dobou podezřívám dost avast, jelikož po startu žere cca 30-40% procíku a 100% vytěžuje disk.
Zkusil jsem ho vymazat s tím, že budu používat windows deffender. Okamžitě se začal začal bránit a vytěžovat procík, disk, celkově celé PC, přes to po restartu byl ntb ještě zabržděnější. Napadlo mě ho vymazat přes nouzový režim,
ale u Windows 8 nevím jak se tam dostat. Teploty hlídám, při max. vytížení si drží standartní teploty.
Hw specifikace ntb:
Intel Celeron N2840 2x 2,16 (1mb cache)
Intel HD Grafika
4gb Ram DDR3
500 Gb Disk..
LOG Z RSITU:
---------------------------------------------------------------------
Logfile of random's system information tool 1.10 (written by random/random)
Run by eva at 2016-04-18 21:47:59
Microsoft Windows 8.1 s aplikací Bing
System drive C: has 179 GB (41%) free of 435 GB
Total RAM: 3979 MB (44% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 21:48:06, on 18. 4. 2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.18123)
Boot mode: Normal
Running processes:
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Riot Games\League of Legends\RADS\system\rads_user_kernel.exe
C:\Riot Games\League of Legends\RADS\projects\lol_launcher\releases\0.0.1.14\deploy\LoLLauncher.exe
C:\Riot Games\League of Legends\RADS\projects\lol_patcher\releases\0.0.0.54\deploy\LoLPatcher.exe
C:\Riot Games\League of Legends\RADS\projects\lol_air_client\releases\0.0.1.196\deploy\LolClient.exe
C:\Program Files (x86)\TeamSpeak 3 Client\ts3client_win32.exe
C:\Program Files (x86)\GRETECH\GomPlayer\GOM.EXE
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\eva.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://lenovo13.msn.com/?pc=LCJB
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://lenovo13.msn.com/?pc=LCJB
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe,
O2 - BHO: Lync Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office15\URLREDIR.DLL
O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\PROGRA~2\MICROS~1\Office15\GROOVEEX.DLL
O4 - HKLM\..\Run: [UpdateP2GShortCut] "C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\Lenovo\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\5.0"
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [Wondershare Helper Compact.exe] C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\Run: [AlcoholAutomount] "C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe" -automount
O8 - Extra context menu item: E&xportovat do Microsoft Excelu - res://C:\PROGRA~1\MICROS~1\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do OneNotu - res://C:\PROGRA~1\MICROS~1\Office15\ONBttnIE.dll/105
O9 - Extra button: Odeslat do OneNotu - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do OneNotu - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra button: Volání kliknutím v Lyncu - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O9 - Extra 'Tools' menuitem: Volání kliknutím v Lyncu - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files (x86)\Microsoft Office\Office15\MSOSB.DLL
O18 - Filter hijack: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\windows\System32\alg.exe (file missing)
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\windows\System32\lsass.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: Hi-Rez Studios Authenticate and Update Service (HiPatchService) - Hi-Rez Studios - C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\windows\system32\igfxCUIService.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\TXE Components\TCS\SocketHeciServer.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\windows\System32\msdtc.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Samsung Printer Dianostics Service - Unknown owner - C:\windows\system32\\spdsvc.exe
O23 - Service: Conexant SmartAudio service (SAService) - Conexant Systems, Inc. - C:\windows\system32\SAsrv.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\windows\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: Adaptér výkonu rozhraní WMI (wmiApSrv) - Unknown owner - C:\windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Zero Configuration Service (ZeroConfigService) - Intel® Corporation - C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
--
End of file - 9153 bytes
======Listing Processes======
wininit.exe
winlogon.exe
C:\windows\system32\lsass.exe
C:\windows\system32\svchost.exe -k DcomLaunch
C:\windows\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\windows\system32\svchost.exe -k NetworkService
C:\windows\system32\svchost.exe -k netsvcs
C:\windows\system32\svchost.exe -k LocalService
C:\windows\system32\igfxCUIService.exe
C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\windows\system32\WLANExt.exe 494655709440
\??\C:\windows\system32\conhost.exe 0x4
C:\windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\windows\System32\svchost.exe -k utcsvc
dashost.exe {9e8ed340-02bf-4740-8082503d750f0ab8}
"C:\Program Files\Intel\WiFi\bin\EvtEng.exe"
C:\windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
"C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe"
"C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe"
C:\windows\SysWOW64\\spdsvc.exe
C:\windows\SysWOW64\SAsrv.exe
C:\windows\system32\svchost.exe -k imgsvc
C:\windows\system32\wbem\unsecapp.exe -Embedding
C:\windows\system32\wbem\wmiprvse.exe
C:\windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-e7ca3ea4-adc7-461f-a884-ab9b24221577 -SystemEventPortName:HostProcess-e12ca3d9-f45b-48fa-91b5-481f52157ede -IoCancelEventPortName:HostProcess-8802489d-6647-4556-8523-3f832b57d985 -NonStateChangingEventPortName:HostProcess-488a7718-4132-44b0-a90e-9c578916eea5 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:c581f0fe-56ae-4ced-94e6-b3cf67083391 -DeviceGroupId:WudfDefaultDevicePool
C:\windows\System32\svchost.exe -k LocalServicePeerNet
taskhostex.exe
C:\windows\Explorer.EXE
igfxEM.exe
igfxHK.exe
igfxTray.exe
"C:\Program Files\CONEXANT\ForteConfig\fmapp.exe"
"C:\Windows\System32\rundll32.exe" "C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll",TrayApp
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
"C:\Riot Games\League of Legends\RADS\system\rads_user_kernel.exe" updateandrun lol_launcher LoLLauncher.exe
C:\windows\system32\wbem\unsecapp.exe -Embedding
LoLLauncher.exe
C:\windows\system32\wbem\wmiprvse.exe
"C:/Riot Games/League of Legends/RADS/projects/lol_patcher/releases/0.0.0.54/deploy/LoLPatcher.exe"
"C:/Riot Games/League of Legends/RADS/projects/lol_air_client/releases/0.0.1.196/deploy//LolClient.exe" -runtime .\ -nodebug META-INF\AIR\application.xml .\ -- 8393
"C:\Program Files (x86)\TeamSpeak 3 Client\ts3client_win32.exe"
taskhost.exe
"C:\Program Files (x86)\GRETECH\GomPlayer\GOM.EXE"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" http://searchomepage.com/?uuid=56ce7fa6 ... i5deeseici
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=crashpad-handler /prefetch:7 --no-rate-limit "--database=C:\Users\eva\AppData\Local\Google\Chrome\User Data\Crashpad" --url=https://clients2.google.com/cr/report --annotation=channel=m --annotation=plat=Win32 --annotation=prod=Chrome --annotation=ver=49.0.2623.112 --handshake-handle=0x158
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=watcher --main-thread-id=4148 --on-initialized-event-handle=628 --parent-handle=640 /prefetch:6
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="1964.0.1097342000\220750710" --supports-dual-gpus=false --gpu-driver-bug-workarounds=3,11,16,25,54 --gpu-vendor-id=0x8086 --gpu-device-id=0x0f31 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=10.18.10.3496 --ignored=" --type=renderer " /prefetch:2
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,WebFontsIntervention<WebFontsIntervention --disable-features=UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/*CrossDevicePromo/1DaySingleProfile/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PreRead/Default/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Launch50pct_11011_1_1_10/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/SSLCommonNameMismatchHandling/Disabled/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_80/*UMA-Uniformity-Trial-10-Percent/group_09/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_17/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*WebFontsIntervention/Enabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --blink-settings=fetchDeferLateScripts=true,fetchIncreaseFontPriority=true,fetchIncreasePriorities=true --enable-pinch --device-scale-factor=1 --num-raster-threads=1 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="1964.3.34956120\236962794" /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,WebFontsIntervention<WebFontsIntervention --disable-features=UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/*CrossDevicePromo/1DaySingleProfile/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PreRead/Default/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Launch50pct_11011_1_1_10/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/SSLCommonNameMismatchHandling/Disabled/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_80/*UMA-Uniformity-Trial-10-Percent/group_09/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_17/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*WebFontsIntervention/Enabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --blink-settings=fetchDeferLateScripts=true,fetchIncreaseFontPriority=true,fetchIncreasePriorities=true --enable-pinch --device-scale-factor=1 --num-raster-threads=1 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="1964.6.1359677913\1989367068" /prefetch:1
"C:\Users\eva\Desktop\RSITx64.exe"
"C:\Program Files\CPUID\HWMonitor\HWMonitor.exe"
======Scheduled tasks folder======
C:\windows\tasks\Adobe Flash Player Updater.job - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Lync Browser Helper - C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2012-10-01 205416]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-09-01 655480]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~1\Office15\URLREDIR.DLL [2012-10-01 877720]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~1\MICROS~1\Office15\GROOVEEX.DLL [2012-10-01 2322576]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Lync Browser Helper - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2012-10-01 139368]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-09-01 559624]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office15\URLREDIR.DLL [2012-10-01 704664]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~2\MICROS~1\Office15\GROOVEEX.DLL [2012-10-01 1720976]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"cAudioFilterAgent"=C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe [2013-09-05 907480]
"ForteConfig"=C:\Program Files\Conexant\ForteConfig\fmapp.exe [2010-10-26 49056]
"SmartAudio"=C:\Program Files\CONEXANT\SAII\SACpl.exe [2012-06-13 1647616]
"BTMTrayAgent"=C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll [2013-11-07 7818552]
"PhoneCompanion"=C:\Program Files\Lenovo PhoneCompanion\Phone Companion.exe [2014-11-01 836592]
"Energy Manager"=C:\Program Files (x86)\Lenovo\Energy Manager\Energy Manager.exe [2014-11-01 16094704]
"Lenovo Utility"=C:\Program Files (x86)\Lenovo\Energy Manager\Utility.exe [2014-11-01 10841584]
"CDAServer"=C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe [2014-09-08 464608]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2015-08-20 8455960]
"AlcoholAutomount"=C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe [2012-01-05 75624]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"UpdateP2GShortCut"=C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe [2011-12-07 214312]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2016-03-04 6111312]
"Wondershare Helper Compact.exe"=C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [2013-08-26 1989920]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\McNaiAnn]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\VDWFP]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\VisualDiscovery]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"PromptOnSecureDesktop"=0
"ConsentPromptBehaviorAdmin"=0
"SoftwareSASGeneration"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2016-04-18 20:47:09 ----D---- C:\rsit
2016-04-13 11:47:50 ----A---- C:\windows\system32\mfmp4srcsnk.dll
2016-04-13 11:47:49 ----A---- C:\windows\SYSWOW64\mfmp4srcsnk.dll
2016-04-13 11:47:47 ----A---- C:\windows\system32\drivers\rasl2tp.sys
2016-04-13 11:47:37 ----A---- C:\windows\system32\appraiser.dll
2016-04-13 11:47:36 ----A---- C:\windows\system32\invagent.dll
2016-04-13 11:47:36 ----A---- C:\windows\system32\generaltel.dll
2016-04-13 11:47:36 ----A---- C:\windows\system32\aepic.dll
2016-04-13 11:47:36 ----A---- C:\windows\system32\aeinv.dll
2016-04-13 11:47:35 ----A---- C:\windows\system32\devinv.dll
2016-04-13 11:47:35 ----A---- C:\windows\system32\CompatTelRunner.exe
2016-04-13 11:47:35 ----A---- C:\windows\system32\acmigration.dll
2016-04-13 11:47:31 ----A---- C:\windows\system32\rpcss.dll
2016-04-13 11:47:29 ----A---- C:\windows\system32\VSSVC.exe
2016-04-13 11:47:26 ----A---- C:\windows\system32\WsmSvc.dll
2016-04-13 11:47:25 ----A---- C:\windows\SYSWOW64\WsmSvc.dll
2016-04-13 11:47:24 ----A---- C:\windows\SYSWOW64\WsmWmiPl.dll
2016-04-13 11:47:24 ----A---- C:\windows\SYSWOW64\WsmAuto.dll
2016-04-13 11:47:24 ----A---- C:\windows\SYSWOW64\WsmAgent.dll
2016-04-13 11:47:24 ----A---- C:\windows\system32\WsmWmiPl.dll
2016-04-13 11:47:24 ----A---- C:\windows\system32\WsmAuto.dll
2016-04-13 11:47:24 ----A---- C:\windows\system32\WsmAgent.dll
2016-04-13 11:47:22 ----A---- C:\windows\system32\drivers\IPMIDrv.sys
2016-04-13 11:47:18 ----A---- C:\windows\SYSWOW64\twinui.dll
2016-04-13 11:46:45 ----A---- C:\windows\system32\twinui.dll
2016-04-13 11:46:08 ----A---- C:\windows\SYSWOW64\shell32.dll
2016-04-13 11:45:16 ----A---- C:\windows\SYSWOW64\explorer.exe
2016-04-13 11:45:12 ----A---- C:\windows\explorer.exe
2016-04-13 11:44:58 ----A---- C:\windows\system32\SystemSettingsAdminFlowUI.dll
2016-04-13 11:44:30 ----A---- C:\windows\system32\shell32.dll
2016-04-13 11:44:29 ----A---- C:\windows\system32\ExplorerFrame.dll
2016-04-13 11:44:28 ----A---- C:\windows\SYSWOW64\ExplorerFrame.dll
2016-04-13 11:44:28 ----A---- C:\windows\system32\SystemSettingsAdminFlows.exe
2016-04-13 11:44:27 ----A---- C:\windows\SYSWOW64\twinui.appcore.dll
2016-04-13 11:44:27 ----A---- C:\windows\system32\twinui.appcore.dll
2016-04-13 11:44:27 ----A---- C:\windows\system32\SettingsHandlers.dll
2016-04-13 11:44:26 ----A---- C:\windows\SYSWOW64\AppxAllUserStore.dll
2016-04-13 11:44:26 ----A---- C:\windows\system32\SettingSyncCore.dll
2016-04-13 11:44:26 ----A---- C:\windows\system32\SettingSync.dll
2016-04-13 11:44:26 ----A---- C:\windows\system32\AppxAllUserStore.dll
2016-04-13 11:44:25 ----A---- C:\windows\SYSWOW64\SettingSyncCore.dll
2016-04-13 11:44:25 ----A---- C:\windows\SYSWOW64\SettingSync.dll
2016-04-13 11:44:25 ----A---- C:\windows\system32\SettingSyncHost.exe
2016-04-13 11:44:25 ----A---- C:\windows\system32\hgcpl.dll
2016-04-13 11:44:24 ----A---- C:\windows\system32\usercpl.dll
2016-04-13 11:44:24 ----A---- C:\windows\system32\themecpl.dll
2016-04-13 11:44:24 ----A---- C:\windows\system32\stobject.dll
2016-04-13 11:44:24 ----A---- C:\windows\system32\SettingMonitor.dll
2016-04-13 11:44:24 ----A---- C:\windows\system32\AppXDeploymentExtensions.dll
2016-04-13 11:44:23 ----A---- C:\windows\SYSWOW64\themecpl.dll
2016-04-13 11:44:23 ----A---- C:\windows\SYSWOW64\hgcpl.dll
2016-04-13 11:44:22 ----A---- C:\windows\SYSWOW64\usercpl.dll
2016-04-13 11:44:22 ----A---- C:\windows\SYSWOW64\stobject.dll
2016-04-13 11:44:22 ----A---- C:\windows\SYSWOW64\SettingSyncHost.exe
2016-04-13 11:44:21 ----A---- C:\windows\SYSWOW64\SettingMonitor.dll
2016-04-13 11:44:17 ----A---- C:\windows\system32\AppXDeploymentServer.dll
2016-04-13 11:43:51 ----A---- C:\windows\system32\workfolderssvc.dll
2016-04-13 11:43:50 ----A---- C:\windows\system32\WorkfoldersControl.dll
2016-04-13 11:43:47 ----A---- C:\windows\SYSWOW64\msorcl32.dll
2016-04-13 11:43:47 ----A---- C:\windows\SYSWOW64\KernelBase.dll
2016-04-13 11:43:46 ----A---- C:\windows\SYSWOW64\mtxoci.dll
2016-04-13 11:43:46 ----A---- C:\windows\system32\winresume.exe
2016-04-13 11:43:46 ----A---- C:\windows\system32\winload.exe
2016-04-13 11:43:46 ----A---- C:\windows\system32\ntoskrnl.exe
2016-04-13 11:43:46 ----A---- C:\windows\system32\mtxoci.dll
2016-04-13 11:43:45 ----A---- C:\windows\system32\KernelBase.dll
2016-04-13 11:43:42 ----A---- C:\windows\system32\drivers\vpci.sys
2016-04-13 11:43:42 ----A---- C:\windows\system32\drivers\storport.sys
2016-04-13 11:43:41 ----A---- C:\windows\SYSWOW64\dhcpsapi.dll
2016-04-13 11:43:41 ----A---- C:\windows\system32\dhcpsapi.dll
2016-04-13 11:43:38 ----A---- C:\windows\SYSWOW64\storagewmi.dll
2016-04-13 11:43:38 ----A---- C:\windows\system32\storagewmi.dll
2016-04-13 11:43:34 ----A---- C:\windows\system32\wbengine.exe
2016-04-13 11:43:33 ----A---- C:\windows\system32\WindowsAnytimeUpgradeui.exe
2016-04-13 11:43:33 ----A---- C:\windows\system32\drivers\disk.sys
2016-04-13 10:25:25 ----A---- C:\windows\SYSWOW64\FWPUCLNT.DLL
2016-04-13 10:25:25 ----A---- C:\windows\system32\nshwfp.dll
2016-04-13 10:25:25 ----A---- C:\windows\system32\IKEEXT.DLL
2016-04-13 10:25:25 ----A---- C:\windows\system32\FWPUCLNT.DLL
2016-04-13 10:25:25 ----A---- C:\windows\system32\BFE.DLL
2016-04-13 10:25:24 ----A---- C:\windows\SYSWOW64\nshwfp.dll
2016-04-13 10:25:20 ----A---- C:\windows\system32\drivers\vhdmp.sys
2016-04-13 10:25:17 ----A---- C:\windows\system32\drivers\volsnap.sys
2016-04-13 08:05:39 ----A---- C:\windows\system32\mshtml.dll
2016-04-13 08:05:37 ----A---- C:\windows\SYSWOW64\mshtml.dll
2016-04-13 08:05:34 ----A---- C:\windows\system32\ieframe.dll
2016-04-13 08:05:32 ----A---- C:\windows\SYSWOW64\ieframe.dll
2016-04-13 08:05:31 ----A---- C:\windows\SYSWOW64\iertutil.dll
2016-04-13 08:05:31 ----A---- C:\windows\system32\iertutil.dll
2016-04-13 08:05:30 ----A---- C:\windows\SYSWOW64\iedkcs32.dll
2016-04-13 08:05:30 ----A---- C:\windows\system32\wininet.dll
2016-04-13 08:05:30 ----A---- C:\windows\system32\jscript9.dll
2016-04-13 08:05:30 ----A---- C:\windows\system32\iedkcs32.dll
2016-04-13 08:05:29 ----A---- C:\windows\SYSWOW64\wininet.dll
2016-04-13 08:05:29 ----A---- C:\windows\system32\ie4uinit.exe
2016-04-13 08:05:28 ----A---- C:\windows\SYSWOW64\msfeeds.dll
2016-04-13 08:05:28 ----A---- C:\windows\system32\urlmon.dll
2016-04-13 08:05:28 ----A---- C:\windows\system32\msfeeds.dll
2016-04-13 08:05:27 ----A---- C:\windows\SYSWOW64\urlmon.dll
2016-04-13 08:05:26 ----A---- C:\windows\SYSWOW64\dxtrans.dll
2016-04-13 08:05:26 ----A---- C:\windows\system32\iepeers.dll
2016-04-13 08:05:26 ----A---- C:\windows\system32\dxtrans.dll
2016-04-13 08:05:25 ----A---- C:\windows\SYSWOW64\webcheck.dll
2016-04-13 08:05:25 ----A---- C:\windows\SYSWOW64\jscript9.dll
2016-04-13 08:05:25 ----A---- C:\windows\SYSWOW64\iepeers.dll
2016-04-13 08:05:25 ----A---- C:\windows\system32\webcheck.dll
2016-04-13 08:05:24 ----A---- C:\windows\SYSWOW64\vbscript.dll
2016-04-13 08:05:24 ----A---- C:\windows\SYSWOW64\jscript.dll
2016-04-13 08:05:24 ----A---- C:\windows\SYSWOW64\inetcomm.dll
2016-04-13 08:05:24 ----A---- C:\windows\system32\vbscript.dll
2016-04-13 08:05:24 ----A---- C:\windows\system32\mshtmled.dll
2016-04-13 08:05:24 ----A---- C:\windows\system32\jscript.dll
2016-04-13 08:05:24 ----A---- C:\windows\system32\inetcomm.dll
2016-04-13 08:05:24 ----A---- C:\windows\system32\ieapfltr.dll
2016-04-13 08:05:23 ----A---- C:\windows\SYSWOW64\ieapfltr.dll
2016-04-13 08:04:01 ----A---- C:\windows\SYSWOW64\msxml3.dll
2016-04-13 08:04:01 ----A---- C:\windows\system32\msxml3.dll
2016-04-13 08:03:59 ----A---- C:\windows\SYSWOW64\ole32.dll
2016-04-13 08:03:59 ----A---- C:\windows\system32\ole32.dll
2016-04-13 08:03:54 ----A---- C:\windows\SYSWOW64\certcli.dll
2016-04-13 08:03:54 ----A---- C:\windows\system32\samsrv.dll
2016-04-13 08:03:54 ----A---- C:\windows\system32\lsasrv.dll
2016-04-13 08:03:54 ----A---- C:\windows\system32\drivers\mrxsmb20.sys
2016-04-13 08:03:54 ----A---- C:\windows\system32\drivers\mrxsmb10.sys
2016-04-13 08:03:54 ----A---- C:\windows\system32\drivers\cng.sys
2016-04-13 08:03:53 ----A---- C:\windows\system32\drivers\mrxsmb.sys
2016-04-13 08:03:52 ----A---- C:\windows\system32\samlib.dll
2016-04-13 08:03:51 ----A---- C:\windows\SYSWOW64\samlib.dll
2016-04-13 08:03:50 ----A---- C:\windows\system32\certcli.dll
2016-04-13 08:03:43 ----A---- C:\windows\system32\basesrv.dll
2016-04-13 08:03:37 ----A---- C:\windows\system32\win32k.sys
2016-04-11 16:21:25 ----D---- C:\Users\eva\AppData\Roaming\PhotoFiltre 7
2016-04-11 16:21:20 ----D---- C:\Program Files (x86)\PhotoFiltre 7
2016-04-11 12:56:39 ----D---- C:\ProgramData\Razer
2016-04-07 16:37:50 ----D---- C:\Program Files\CPUID
2016-04-01 15:55:24 ----SHD---- C:\Config.Msi
2016-03-20 21:04:27 ----A---- C:\windows\SYSWOW64\psfind.dll
2016-03-20 21:00:48 ----D---- C:\Program Files (x86)\THQ
======List of files/folders modified in the last 1 month======
2016-04-18 21:48:04 ----D---- C:\Program Files\trend micro
2016-04-18 21:00:00 ----D---- C:\windows\system32\sru
2016-04-18 20:43:46 ----D---- C:\Users\eva\AppData\Roaming\TS3Client
2016-04-18 20:36:09 ----AD---- C:\Windows
2016-04-18 20:32:29 ----D---- C:\windows\Temp
2016-04-18 20:31:36 ----D---- C:\windows\SoftwareDistribution
2016-04-18 19:28:25 ----D---- C:\windows\system32\NDF
2016-04-18 19:03:33 ----D---- C:\Program Files (x86)\Hi-Rez Studios
2016-04-18 19:02:17 ----D---- C:\ProgramData\Hi-Rez Studios
2016-04-18 19:02:09 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2016-04-18 19:01:59 ----SHD---- C:\System Volume Information
2016-04-18 19:00:07 ----D---- C:\windows\Inf
2016-04-18 18:59:29 ----D---- C:\windows\debug
2016-04-18 18:57:06 ----D---- C:\Users\eva\AppData\Roaming\uTorrent
2016-04-18 12:08:18 ----D---- C:\windows\system32\config
2016-04-18 12:08:13 ----D---- C:\windows\WinSxS
2016-04-18 12:06:25 ----D---- C:\windows\system32\drivers
2016-04-16 20:16:20 ----D---- C:\windows\rescache
2016-04-16 20:01:20 ----D---- C:\windows\Microsoft.NET
2016-04-16 20:00:39 ----D---- C:\windows\CbsTemp
2016-04-16 20:00:15 ----RSD---- C:\windows\assembly
2016-04-16 19:59:31 ----D---- C:\windows\apppatch
2016-04-16 19:59:17 ----D---- C:\windows\SysWOW64
2016-04-16 19:59:16 ----RAD---- C:\windows\System32
2016-04-16 13:40:56 ----A---- C:\windows\system32\PerfStringBackup.INI
2016-04-14 21:47:50 ----D---- C:\windows\SYSWOW64\en-US
2016-04-14 21:47:50 ----D---- C:\windows\SYSWOW64\cs-CZ
2016-04-14 21:47:50 ----D---- C:\windows\system32\en-US
2016-04-14 21:47:50 ----D---- C:\windows\system32\cs-CZ
2016-04-14 21:47:50 ----D---- C:\windows\system32\appraiser
2016-04-14 21:47:49 ----RD---- C:\windows\ToastData
2016-04-14 21:47:48 ----D---- C:\windows\system32\wbem
2016-04-14 21:47:46 ----D---- C:\windows\system32\Boot
2016-04-14 21:47:43 ----D---- C:\Program Files\Internet Explorer
2016-04-14 21:47:43 ----D---- C:\Program Files (x86)\Internet Explorer
2016-04-14 21:47:39 ----D---- C:\windows\system32\DriverStore
2016-04-14 21:44:34 ----D---- C:\windows\system32\MRT
2016-04-14 21:35:25 ----A---- C:\windows\system32\MRT.exe
2016-04-14 14:25:23 ----HD---- C:\Program Files\WindowsApps
2016-04-14 14:25:23 ----D---- C:\windows\AppReadiness
2016-04-13 10:20:58 ----D---- C:\windows\system32\catroot2
2016-04-11 16:54:29 ----D---- C:\Users\eva\AppData\Roaming\Samsung
2016-04-11 16:21:20 ----RD---- C:\Program Files (x86)
2016-04-11 16:14:27 ----HD---- C:\ProgramData
2016-04-11 13:11:52 ----SHD---- C:\windows\Installer
2016-04-07 16:37:50 ----RD---- C:\Program Files
2016-04-05 23:53:01 ----A---- C:\windows\SYSWOW64\FlashPlayerApp.exe
2016-03-27 19:49:11 ----SD---- C:\windows\SYSWOW64\GWX
2016-03-27 19:49:11 ----SD---- C:\windows\system32\GWX
2016-03-25 08:23:33 ----D---- C:\windows\system32\drivers\en-US
2016-03-25 08:23:33 ----D---- C:\windows\system32\drivers\cs-CZ
2016-03-22 07:48:30 ----D---- C:\windows\Logs
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswRvrt;avast! Revert; C:\windows\system32\drivers\aswRvrt.sys [2015-09-01 65224]
R0 aswVmm;avast! VM Monitor; C:\windows\system32\drivers\aswVmm.sys [2015-09-01 274808]
R0 MBI;@oem10.inf,%MBI.SVCDESC%;Intel(R) Sideband Fabric Device Service; C:\windows\System32\drivers\MBI.sys [2013-10-10 29464]
R0 sptd;sptd; C:\windows\System32\Drivers\sptd.sys [2015-11-17 381608]
R1 aswRdr;aswRdr; C:\windows\system32\drivers\aswRdr2.sys [2015-09-01 93528]
R1 aswSnx;aswSnx; C:\windows\system32\drivers\aswSnx.sys [2016-03-04 1059656]
R1 aswSP;aswSP; C:\windows\system32\drivers\aswSP.sys [2016-03-04 449992]
R1 vwififlt;@%SystemRoot%\System32\drivers\vwififlt.sys,-259; C:\windows\system32\DRIVERS\vwififlt.sys [2013-08-22 71680]
R2 aswHwid;avast! HardwareID; C:\windows\system32\drivers\aswHwid.sys [2015-09-01 28656]
R2 aswMonFlt;aswMonFlt; C:\windows\system32\drivers\aswMonFlt.sys [2015-09-01 90968]
R2 aswStm;aswStm; C:\windows\system32\drivers\aswStm.sys [2015-09-01 150672]
R2 SSPORT;SSPORT; \??\C:\windows\system32\Drivers\SSPORT.sys [2014-05-07 11576]
R3 ACPIVPC;@oem23.inf,%ACPIVPC.SvcDesc%;Lenovo Virtual Power Controller Driver; C:\windows\System32\drivers\AcpiVpc.sys [2014-11-01 35576]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\windows\System32\Drivers\BTHUSB.sys [2014-10-29 81920]
R3 btmhsf;btmhsf; C:\windows\system32\DRIVERS\btmhsf.sys [2013-11-07 1411384]
R3 CnxtHdAudService;@oem11.inf,%UAAFunctionDriverForHdAudio.SvcDesc%;Conexant UAA Function Driver for High Definition Audio Service; C:\windows\system32\drivers\CHDRT64.sys [2014-01-27 1474240]
R3 cpuz138;cpuz138; \??\C:\Users\eva\AppData\Local\Temp\cpuz138\cpuz138_x64.sys [2016-04-18 27320]
R3 ibtusb;@oem16.inf,%ibtusb.SVCDESC_IBT%;Intel(R) Wireless Bluetooth(R) 4.0 + HS Adapter; C:\windows\system32\DRIVERS\ibtusb.sys [2014-01-22 149448]
R3 igfx;igfx; C:\windows\system32\DRIVERS\igdkmd64.sys [2014-03-07 3729920]
R3 IntcDAud;@oem4.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\windows\system32\DRIVERS\IntcDAud.sys [2014-03-07 450520]
R3 iwdbus;@oem7.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\windows\System32\drivers\iwdbus.sys [2014-03-01 27032]
R3 NETwNb64;@oem17.inf,___ %NIC_Service_DispName_WINB_64%;___ Intel(R) Wireless Adapter Driver for Windows 8.1 - 64 Bit; C:\windows\system32\DRIVERS\Netwbw02.sys [2014-06-01 3443680]
R3 RSUSBVSTOR;@oem21.inf,%RSUSBVSTOR.SvcDesc%;RtsUVStor.Sys Realtek USB Card Reader; C:\windows\System32\Drivers\RtsUVStor.sys [2013-09-24 329944]
R3 RTL8168;@oem8.inf,%rtl8168.Service.DispName%;Realtek 8168 NT Driver; C:\windows\system32\DRIVERS\Rt630x64.sys [2013-08-15 830680]
R3 SmbDrvI;SmbDrvI; C:\windows\system32\DRIVERS\Smb_driver_Intel.sys [2013-12-24 34544]
R3 SNP2UVC;@oem20.inf,%SERVICE_DISPLAY_NAME%;USB2.0 PC Camera (SNP2UVC); C:\windows\system32\DRIVERS\snp2uvc.sys [2014-01-24 2853400]
R3 SynTP;@oem13.inf,%SynTP.SvcDesc%;Synaptics TouchPad Driver; C:\windows\system32\DRIVERS\SynTP.sys [2013-12-24 532720]
R3 TXEIx64;@oem9.inf,%TEE_SvcDesc%;Intel(R) Trusted Execution Engine Interface ; C:\windows\System32\drivers\TXEIx64.sys [2014-01-15 88592]
R3 vwifimp;@%SystemRoot%\System32\drivers\vwifimp.sys,-261; C:\windows\system32\DRIVERS\vwifimp.sys [2013-08-22 36864]
S3 andnetadb;@oem37.inf,%androidusb.SvcDesc%;ADB Interface DriverNet; C:\windows\System32\Drivers\lgandnetadb.sys []
S3 AndNetDiag;@oem38.inf,%Lgsi.Service.Name%;LGE AndroidNet USB Serial Port; C:\windows\system32\DRIVERS\lgandnetdiag64.sys []
S3 ANDNetModem;@oem41.inf,%LGSI.Service.Name%;LGE AndroidNet USB Modem; C:\windows\system32\DRIVERS\lgandnetmodem64.sys []
S3 axscsidrv;axscsidrv; C:\windows\system32\drivers\axscsidrv.sys [2016-02-16 293888]
S3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\windows\System32\drivers\BthEnum.sys [2014-10-29 53248]
S3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\windows\system32\DRIVERS\BthLEEnum.sys [2014-03-18 226304]
S3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\windows\System32\drivers\bthpan.sys [2015-07-10 118272]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\windows\System32\Drivers\BTHport.sys [2015-05-11 1201664]
S3 btmaux;@oem15.inf,%BTMAUX.ServiceDesc%;Intel Bluetooth Auxiliary Service; C:\windows\system32\DRIVERS\btmaux.sys [2013-11-07 140600]
S3 dtlitescsibus;@oem29.inf,%DTLITESCSIBUS.DeviceDesc%;DAEMON Tools Lite Virtual SCSI Bus; C:\windows\System32\drivers\dtlitescsibus.sys [2015-09-01 30264]
S3 e1iexpress;@net1ic64.inf,%e1iExpress.Service.DispName%;Intel(R) PRO/1000 PCI Express Network Connection Driver I; C:\windows\system32\DRIVERS\e1i63x64.sys [2013-06-18 460288]
S3 HTCAND64;@oem32.inf,%HTCAND64.SvcDesc%;HTC Device Driver; C:\windows\System32\Drivers\ANDROIDUSB.sys [2009-11-02 33736]
S3 htcnprot;@oem36.inf,%NDISPROT_Desc%;HTC NDIS Protocol Driver; C:\windows\system32\DRIVERS\htcnprot.sys [2013-10-17 36928]
S3 intaud_WaveExtensible;@oem6.inf,%INTAUD_WEX.SvcDesc%;Intel WiDi Audio Device; C:\windows\system32\drivers\intelaud.sys [2014-03-01 38296]
S3 NETwNe64;@netwew02.inf,___ %NIC_Service_DispName_WIN8_64%;___ Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows 8 - 64 Bit; C:\windows\system32\DRIVERS\NETwew02.sys [2013-06-18 4649440]
S3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\windows\System32\drivers\rfcomm.sys [2015-01-30 167424]
S3 tap0901;@oem37.inf,%DeviceDescription%;TAP-Windows Adapter V9; C:\windows\system32\DRIVERS\tap0901.sys [2013-08-22 40664]
S3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;USB Video Device (WDM); C:\windows\System32\Drivers\usbvideo.sys [2014-06-21 212736]
S3 VClone;VClone; C:\windows\System32\drivers\VClone.sys [2014-05-03 34816]
S3 VirtualDVD;VirtualDVD; C:\windows\system32\DRIVERS\VirtualDVD.sys []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2015-09-01 146600]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\windows\System32\svchost.exe [2014-10-29 38792]
R2 EvtEng;Intel(R) PROSet/Wireless Event Log; C:\Program Files\Intel\WiFi\bin\EvtEng.exe [2014-01-18 632048]
R2 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2014-03-18 43696]
R2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\windows\system32\igfxCUIService.exe [2014-03-12 282096]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe [2013-07-02 733696]
R2 RegSrvc;Intel(R) PROSet/Wireless Registry Service; C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe [2014-01-18 154864]
R2 Samsung Printer Dianostics Service;Samsung Printer Dianostics Service; C:\windows\syswow64\\spdsvc.exe [2015-11-05 491328]
R2 SAService;Conexant SmartAudio service; C:\windows\system32\SAsrv.exe []
S2 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-12-03 269000]
S2 HiPatchService;Hi-Rez Studios Authenticate and Update Service; C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe [2016-03-14 9728]
S3 cphs;Intel(R) Content Protection HECI Service; C:\windows\SysWow64\IntelCpHeciSvc.exe [2014-03-12 279024]
S3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2012-04-24 169752]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\TXE Components\TCS\SocketHeciServer.exe [2013-07-02 822232]
S4 AxAutoMntSrv;Alcohol Virtual Drive Auto-mount Service; C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe [2012-01-05 75624]
S4 Bluetooth Device Monitor;Bluetooth Device Monitor; C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe [2013-11-07 1186168]
S4 Bluetooth OBEX Service;Bluetooth OBEX Service; C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe [2013-11-07 1161592]
S4 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\windows\System32\svchost.exe [2014-10-29 38792]
S4 CxAudMsg;Conexant Audio Message Service; C:\windows\system32\CxAudMsg64.exe [2013-07-25 206552]
S4 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-01 144200]
S4 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-01 144200]
S4 iBtSiva;Intel Bluetooth Service; C:\Program Files (x86)\Intel\Bluetooth\ibtsiva.exe [2014-01-22 130008]
S4 Lenovo EasyPlus Hotspot;Lenovo EasyPlus Hotspot; C:\Program Files (x86)\Common Files\lenovo\easyplussdk\bin\EPHotspot64.exe [2014-06-03 533760]
S4 Lenovo System Agent Service;Lenovo System Agent Service; C:\Program Files\Lenovo\iMController\SystemAgentService.exe [2014-05-22 584960]
S4 LenovoWiFiHotspotSvr;Lenovo WiFiHotspot Service; C:\Windows\System32\LenovoWiFiHotspotSvr.exe [2014-11-01 198192]
S4 LSCWinService;LSCWinService; C:\Program Files\Lenovo\Lenovo Solution Center\App\LSCWinService.exe [2016-01-08 272864]
S4 LUService;LUService; C:\Program Files (x86)\Lenovo\Lenovo Updates\LUService.exe [2014-04-21 37624]
S4 MyWiFiDHCPDNS;Wireless PAN DHCP Server; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [2014-01-18 284912]
S4 ose64;Office 64 Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2012-12-08 178760]
S4 PassThru Service;Internet Pass-Through Service; C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe [2013-10-17 166912]
S4 PhoneCompanionPusher;Lenovo PhoneCompanionPusher Service; C:\Program Files\Lenovo PhoneCompanion\PhoneCompanionPusher.exe [2014-11-01 288240]
S4 PhoneCompanionVap;Lenovo PhoneCompanionVap Service; C:\Program Files\Lenovo PhoneCompanion\PhoneCompanionVap.exe [2014-11-01 305136]
S4 RichVideo64;Cyberlink RichVideo64 Service(CRVS); C:\Program Files\CyberLink\Shared files\RichVideo64.exe [2012-04-24 390632]
S4 StarWindServiceAE;StarWind AE Service; C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [2009-12-23 370688]
S4 VeriFaceSrv;VeriFaceSrv; C:\Program Files (x86)\Lenovo\Lenovo VeriFace Pro\VfConnectorService.exe [2014-11-01 67856]
-----------------EOF-----------------
- Rudy
- Site Admin

- Příspěvky: 119653
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Divně, zpomaleně/zabržděně chovající se NTB!
Zdravím!
Spusťte tuto utilitu:
Spusťte tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Divně, zpomaleně/zabržděně chovající se NTB!
# AdwCleaner v5.011 - Logfile created 08/10/2015 at 10:41:34
# Updated 07/10/2015 by Xplode
# Database : 2015-10-07.1 [Server]
# Operating system : Windows 8.1 Connected (x64)
# Username : eva - LENOVO-PC
# Running from : C:\Users\eva\Downloads\adwcleaner_5.011.exe
# Option : Cleaning
# Support : http://toolslib.net/forum
***** [ Services ] *****
***** [ Folders ] *****
[-] Folder Deleted : C:\Program Files (x86)\Lenovo\VisualDiscovery
[-] Folder Deleted : C:\ProgramData\pokki
[-] Folder Deleted : C:\Users\eva\AppData\Local\pokki
[-] Folder Deleted : C:\Users\eva\AppData\Roaming\tencent
***** [ Files ] *****
[-] File Deleted : C:\windows\SysNative\VisualDiscoveryOff.ini
[-] File Deleted : C:\windows\SysWOW64\VisualDiscovery.ini
[-] File Deleted : C:\windows\SysWOW64\VisualDiscoveryOff.ini
***** [ DLLs ] *****
***** [ Shortcuts ] *****
***** [ Scheduled tasks ] *****
[-] Task Deleted : Pokki
***** [ Registry ] *****
[-] Key Deleted : HKCU\Software\Classes\pokki
[-] Key Deleted : HKCU\Software\Classes\AllFileSystemObjects\shell\pokki
[-] Key Deleted : HKCU\Software\Classes\Directory\shell\pokki
[-] Key Deleted : HKCU\Software\Classes\Drive\shell\pokki
[-] Key Deleted : HKCU\Software\Classes\lnkfile\shell\pokki
[-] Key Deleted : HKLM\SOFTWARE\CLASSES\VISUALDISCOVERYLIB.WFPCONTROLLER.1
[-] Key Deleted : HKLM\SOFTWARE\CLASSES\VISUALDISCOVERYLIB.WFPCONTROLLER
[-] Key Deleted : HKLM\SOFTWARE\CLASSES\VISUALDISCOVERYLIB.READONLYMANAGER.1
[-] Key Deleted : HKLM\SOFTWARE\CLASSES\VISUALDISCOVERYLIB.READONLYMANAGER
[-] Key Deleted : HKLM\SOFTWARE\CLASSES\VISUALDISCOVERYLIB.LSPLOGIC.1
[-] Key Deleted : HKLM\SOFTWARE\CLASSES\VISUALDISCOVERYLIB.LSPLOGIC
[-] Key Deleted : HKLM\SOFTWARE\CLASSES\VISUALDISCOVERYLIB.DATATABLEHOLDER.1
[-] Key Deleted : HKLM\SOFTWARE\CLASSES\VISUALDISCOVERYLIB.DATATABLEHOLDER
[-] Key Deleted : HKLM\SOFTWARE\CLASSES\VISUALDISCOVERYLIB.DATATABLEFIELDS.1
[-] Key Deleted : HKLM\SOFTWARE\CLASSES\VISUALDISCOVERYLIB.DATATABLEFIELDS
[-] Key Deleted : HKLM\SOFTWARE\CLASSES\VISUALDISCOVERYLIB.DATATABLE.1
[-] Key Deleted : HKLM\SOFTWARE\CLASSES\VISUALDISCOVERYLIB.DATATABLE
[-] Key Deleted : HKLM\SOFTWARE\CLASSES\VISUALDISCOVERYLIB.DATACONTROLLER.1
[-] Key Deleted : HKLM\SOFTWARE\CLASSES\VISUALDISCOVERYLIB.DATACONTROLLER
[-] Key Deleted : HKLM\SOFTWARE\CLASSES\VISUALDISCOVERYLIB.DATACONTAINER.1
[-] Key Deleted : HKLM\SOFTWARE\CLASSES\VISUALDISCOVERYLIB.DATACONTAINER
[-] Key Deleted : HKLM\SOFTWARE\CLASSES\APPID\VISUALDISCOVERY.EXE
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Pokki_04bb6df446330549a2cb8d67fbd1a745025b7bd1
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Pokki_Start_Menu
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{533403E2-6E21-4615-9E28-43F4E97E977B}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{02966FA9-C01A-47E7-A169-C83AEA1FB0BA}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{9AD5C084-B6E6-456A-8BA2-A559663780E5}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{70C7334A-66D9-46DE-A4E2-6B923C7DB94E}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5780633B-414C-446F-8EB2-FF1C9A731C99}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{4EECDED2-40FB-4500-85B4-86FB0EBECA68}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{10A7F29D-4B00-40EC-B07D-8616DF8135E6}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{05FF6A00-76A3-4AA1-A9A4-A782152ABE60}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{0FCE4F01-64EC-42F1-83E1-1E08D38605D2}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{1A2A195A-A0F9-4006-AF02-3F05EEFDE792}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{2D9DB233-DC4B-4677-946C-5FA5ABCF506B}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{3AE76A17-C344-4A83-81CE-65EFEE41E42D}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{4C0A69B0-CE97-42B7-86FC-08280C99C74D}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{4E9EB4D5-C929-4005-AC62-1856B1DA5A24}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{8FAF962C-3EDE-405E-B1D0-62B8235C6044}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{C1F5E799-B218-4C32-B189-3C389BA140BB}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{F60C9408-3110-4C98-A139-ABE1EE1111DD}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{2E5FA7B4-61A2-4662-BBCE-62BBB20FC649}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{5D7F05E3-075A-43AF-8BC7-21E2F7F38845}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{617E26CE-E6E1-4C75-A68A-A001F2B98491}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{79FBDBEA-A722-4ABD-BEC0-B7D463F6BA0E}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{8128586C-DF69-4266-873F-CF4C6F705A7C}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{C1F9CFCE-A7DC-4072-8B31-1DEA57004C86}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{EA4AD895-2A7F-430E-B973-DEE6C4E743A9}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{EBF4B60F-A863-426F-BE6F-5DFE83BC574F}
[-] Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{CB6BF8B6-E12B-42FA-A478-91BCCDE475DC}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{0FCE4F01-64EC-42F1-83E1-1E08D38605D2}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{1A2A195A-A0F9-4006-AF02-3F05EEFDE792}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{2D9DB233-DC4B-4677-946C-5FA5ABCF506B}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{3AE76A17-C344-4A83-81CE-65EFEE41E42D}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{4C0A69B0-CE97-42B7-86FC-08280C99C74D}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{4E9EB4D5-C929-4005-AC62-1856B1DA5A24}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{8FAF962C-3EDE-405E-B1D0-62B8235C6044}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{C1F5E799-B218-4C32-B189-3C389BA140BB}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{F60C9408-3110-4C98-A139-ABE1EE1111DD}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{2E5FA7B4-61A2-4662-BBCE-62BBB20FC649}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{5D7F05E3-075A-43AF-8BC7-21E2F7F38845}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{617E26CE-E6E1-4C75-A68A-A001F2B98491}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{79FBDBEA-A722-4ABD-BEC0-B7D463F6BA0E}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{8128586C-DF69-4266-873F-CF4C6F705A7C}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{C1F9CFCE-A7DC-4072-8B31-1DEA57004C86}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{EA4AD895-2A7F-430E-B973-DEE6C4E743A9}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{EBF4B60F-A863-426F-BE6F-5DFE83BC574F}
[-] Key Deleted : HKLM\SOFTWARE\VisualDiscovery
[-] Key Deleted : HKLM\SOFTWARE\Superfish Inc. VisualDiscovery
[-] Key Deleted : HKLM\SOFTWARE\LENOVO\VisualDiscovery
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Pokki
[!] Key Not Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Pokki_Start_Menu
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Superfish Inc. VisualDiscovery
***** [ Web browsers ] *****
*************************
:: Winsock settings cleared
########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [7183 bytes] ##########
# AdwCleaner v5.033 - Logfile created 11/02/2016 at 13:15:09
# Updated 07/02/2016 by Xplode
# Database : 2016-02-07.2 [Server]
# Operating system : Windows 8.1 Connected (x64)
# Username : eva - LENOVO-PC
# Running from : C:\Users\eva\Desktop\adwcleaner_5.033.exe
# Option : Cleaning
# Support : http://toolslib.net/forum
***** [ Services ] *****
***** [ Folders ] *****
***** [ Files ] *****
[-] File Deleted : C:\Users\eva\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PC App Store.lnk
***** [ DLLs ] *****
***** [ Shortcuts ] *****
***** [ Scheduled tasks ] *****
***** [ Registry ] *****
***** [ Web browsers ] *****
*************************
:: "Tracing" keys removed
:: Winsock settings cleared
########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [8096 bytes] ##########
# AdwCleaner v5.112 - Logfile created 19/04/2016 at 06:25:41
# Updated 17/04/2016 by Xplode
# Database : 2016-04-17.1 [Server]
# Operating system : Windows 8.1 Connected (X64)
# Username : eva - LENOVO-PC
# Running from : C:\Users\eva\Desktop\adwcleaner_5.112.exe
# Option : Clean
# Support : http://toolslib.net/forum
***** [ Services ] *****
***** [ Folders ] *****
[-] Folder Deleted : C:\ProgramData\Kromtech
[#] Folder Deleted : C:\ProgramData\Application Data\Kromtech
[-] Folder Deleted : C:\Users\eva\AppData\Local\Kromtech
***** [ Files ] *****
***** [ DLLs ] *****
***** [ Shortcuts ] *****
[-] Shortcut Disinfected : C:\Users\Public\Desktop\Google Chrome.lnk
[-] Shortcut Disinfected : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
[-] Shortcut Disinfected : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hry\The Sims 4\The Sims 4.lnk
[-] Shortcut Disinfected : C:\Users\eva\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
[-] Shortcut Disinfected : C:\Users\eva\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[-] Shortcut Disinfected : C:\Users\eva\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
[-] Shortcut Disinfected : C:\Users\eva\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk
***** [ Scheduled tasks ] *****
***** [ Registry ] *****
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{6E993643-8FBC-44FE-BC85-D318495C4D96}
[-] Key Deleted : HKCU\Software\Kromtech
[-] Key Deleted : HKCU\Software\PRODUCTSETUP
[-] Key Deleted : [x64] HKLM\SOFTWARE\Kromtech
[-] Value Deleted : HKU\S-1-5-21-3955195605-3468642088-1212717444-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run [PCKeeper2]
***** [ Web browsers ] *****
*************************
:: "Tracing" keys deleted
:: Winsock settings cleared
*************************
C:\AdwCleaner\AdwCleaner[C1].txt - [10189 bytes] - [08/10/2015 10:41:34]
C:\AdwCleaner\AdwCleaner[C2].txt - [844 bytes] - [20/12/2015 16:57:59]
C:\AdwCleaner\AdwCleaner[S1].txt - [10433 bytes] - [08/10/2015 10:20:48]
C:\AdwCleaner\AdwCleaner[S2].txt - [740 bytes] - [20/12/2015 16:55:34]
########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [10481 bytes] ##########
# Updated 07/10/2015 by Xplode
# Database : 2015-10-07.1 [Server]
# Operating system : Windows 8.1 Connected (x64)
# Username : eva - LENOVO-PC
# Running from : C:\Users\eva\Downloads\adwcleaner_5.011.exe
# Option : Cleaning
# Support : http://toolslib.net/forum
***** [ Services ] *****
***** [ Folders ] *****
[-] Folder Deleted : C:\Program Files (x86)\Lenovo\VisualDiscovery
[-] Folder Deleted : C:\ProgramData\pokki
[-] Folder Deleted : C:\Users\eva\AppData\Local\pokki
[-] Folder Deleted : C:\Users\eva\AppData\Roaming\tencent
***** [ Files ] *****
[-] File Deleted : C:\windows\SysNative\VisualDiscoveryOff.ini
[-] File Deleted : C:\windows\SysWOW64\VisualDiscovery.ini
[-] File Deleted : C:\windows\SysWOW64\VisualDiscoveryOff.ini
***** [ DLLs ] *****
***** [ Shortcuts ] *****
***** [ Scheduled tasks ] *****
[-] Task Deleted : Pokki
***** [ Registry ] *****
[-] Key Deleted : HKCU\Software\Classes\pokki
[-] Key Deleted : HKCU\Software\Classes\AllFileSystemObjects\shell\pokki
[-] Key Deleted : HKCU\Software\Classes\Directory\shell\pokki
[-] Key Deleted : HKCU\Software\Classes\Drive\shell\pokki
[-] Key Deleted : HKCU\Software\Classes\lnkfile\shell\pokki
[-] Key Deleted : HKLM\SOFTWARE\CLASSES\VISUALDISCOVERYLIB.WFPCONTROLLER.1
[-] Key Deleted : HKLM\SOFTWARE\CLASSES\VISUALDISCOVERYLIB.WFPCONTROLLER
[-] Key Deleted : HKLM\SOFTWARE\CLASSES\VISUALDISCOVERYLIB.READONLYMANAGER.1
[-] Key Deleted : HKLM\SOFTWARE\CLASSES\VISUALDISCOVERYLIB.READONLYMANAGER
[-] Key Deleted : HKLM\SOFTWARE\CLASSES\VISUALDISCOVERYLIB.LSPLOGIC.1
[-] Key Deleted : HKLM\SOFTWARE\CLASSES\VISUALDISCOVERYLIB.LSPLOGIC
[-] Key Deleted : HKLM\SOFTWARE\CLASSES\VISUALDISCOVERYLIB.DATATABLEHOLDER.1
[-] Key Deleted : HKLM\SOFTWARE\CLASSES\VISUALDISCOVERYLIB.DATATABLEHOLDER
[-] Key Deleted : HKLM\SOFTWARE\CLASSES\VISUALDISCOVERYLIB.DATATABLEFIELDS.1
[-] Key Deleted : HKLM\SOFTWARE\CLASSES\VISUALDISCOVERYLIB.DATATABLEFIELDS
[-] Key Deleted : HKLM\SOFTWARE\CLASSES\VISUALDISCOVERYLIB.DATATABLE.1
[-] Key Deleted : HKLM\SOFTWARE\CLASSES\VISUALDISCOVERYLIB.DATATABLE
[-] Key Deleted : HKLM\SOFTWARE\CLASSES\VISUALDISCOVERYLIB.DATACONTROLLER.1
[-] Key Deleted : HKLM\SOFTWARE\CLASSES\VISUALDISCOVERYLIB.DATACONTROLLER
[-] Key Deleted : HKLM\SOFTWARE\CLASSES\VISUALDISCOVERYLIB.DATACONTAINER.1
[-] Key Deleted : HKLM\SOFTWARE\CLASSES\VISUALDISCOVERYLIB.DATACONTAINER
[-] Key Deleted : HKLM\SOFTWARE\CLASSES\APPID\VISUALDISCOVERY.EXE
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Pokki_04bb6df446330549a2cb8d67fbd1a745025b7bd1
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Pokki_Start_Menu
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{533403E2-6E21-4615-9E28-43F4E97E977B}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{02966FA9-C01A-47E7-A169-C83AEA1FB0BA}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{9AD5C084-B6E6-456A-8BA2-A559663780E5}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{70C7334A-66D9-46DE-A4E2-6B923C7DB94E}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5780633B-414C-446F-8EB2-FF1C9A731C99}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{4EECDED2-40FB-4500-85B4-86FB0EBECA68}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{10A7F29D-4B00-40EC-B07D-8616DF8135E6}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{05FF6A00-76A3-4AA1-A9A4-A782152ABE60}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{0FCE4F01-64EC-42F1-83E1-1E08D38605D2}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{1A2A195A-A0F9-4006-AF02-3F05EEFDE792}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{2D9DB233-DC4B-4677-946C-5FA5ABCF506B}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{3AE76A17-C344-4A83-81CE-65EFEE41E42D}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{4C0A69B0-CE97-42B7-86FC-08280C99C74D}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{4E9EB4D5-C929-4005-AC62-1856B1DA5A24}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{8FAF962C-3EDE-405E-B1D0-62B8235C6044}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{C1F5E799-B218-4C32-B189-3C389BA140BB}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{F60C9408-3110-4C98-A139-ABE1EE1111DD}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{2E5FA7B4-61A2-4662-BBCE-62BBB20FC649}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{5D7F05E3-075A-43AF-8BC7-21E2F7F38845}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{617E26CE-E6E1-4C75-A68A-A001F2B98491}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{79FBDBEA-A722-4ABD-BEC0-B7D463F6BA0E}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{8128586C-DF69-4266-873F-CF4C6F705A7C}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{C1F9CFCE-A7DC-4072-8B31-1DEA57004C86}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{EA4AD895-2A7F-430E-B973-DEE6C4E743A9}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{EBF4B60F-A863-426F-BE6F-5DFE83BC574F}
[-] Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{CB6BF8B6-E12B-42FA-A478-91BCCDE475DC}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{0FCE4F01-64EC-42F1-83E1-1E08D38605D2}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{1A2A195A-A0F9-4006-AF02-3F05EEFDE792}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{2D9DB233-DC4B-4677-946C-5FA5ABCF506B}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{3AE76A17-C344-4A83-81CE-65EFEE41E42D}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{4C0A69B0-CE97-42B7-86FC-08280C99C74D}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{4E9EB4D5-C929-4005-AC62-1856B1DA5A24}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{8FAF962C-3EDE-405E-B1D0-62B8235C6044}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{C1F5E799-B218-4C32-B189-3C389BA140BB}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{F60C9408-3110-4C98-A139-ABE1EE1111DD}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{2E5FA7B4-61A2-4662-BBCE-62BBB20FC649}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{5D7F05E3-075A-43AF-8BC7-21E2F7F38845}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{617E26CE-E6E1-4C75-A68A-A001F2B98491}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{79FBDBEA-A722-4ABD-BEC0-B7D463F6BA0E}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{8128586C-DF69-4266-873F-CF4C6F705A7C}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{C1F9CFCE-A7DC-4072-8B31-1DEA57004C86}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{EA4AD895-2A7F-430E-B973-DEE6C4E743A9}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{EBF4B60F-A863-426F-BE6F-5DFE83BC574F}
[-] Key Deleted : HKLM\SOFTWARE\VisualDiscovery
[-] Key Deleted : HKLM\SOFTWARE\Superfish Inc. VisualDiscovery
[-] Key Deleted : HKLM\SOFTWARE\LENOVO\VisualDiscovery
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Pokki
[!] Key Not Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Pokki_Start_Menu
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Superfish Inc. VisualDiscovery
***** [ Web browsers ] *****
*************************
:: Winsock settings cleared
########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [7183 bytes] ##########
# AdwCleaner v5.033 - Logfile created 11/02/2016 at 13:15:09
# Updated 07/02/2016 by Xplode
# Database : 2016-02-07.2 [Server]
# Operating system : Windows 8.1 Connected (x64)
# Username : eva - LENOVO-PC
# Running from : C:\Users\eva\Desktop\adwcleaner_5.033.exe
# Option : Cleaning
# Support : http://toolslib.net/forum
***** [ Services ] *****
***** [ Folders ] *****
***** [ Files ] *****
[-] File Deleted : C:\Users\eva\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PC App Store.lnk
***** [ DLLs ] *****
***** [ Shortcuts ] *****
***** [ Scheduled tasks ] *****
***** [ Registry ] *****
***** [ Web browsers ] *****
*************************
:: "Tracing" keys removed
:: Winsock settings cleared
########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [8096 bytes] ##########
# AdwCleaner v5.112 - Logfile created 19/04/2016 at 06:25:41
# Updated 17/04/2016 by Xplode
# Database : 2016-04-17.1 [Server]
# Operating system : Windows 8.1 Connected (X64)
# Username : eva - LENOVO-PC
# Running from : C:\Users\eva\Desktop\adwcleaner_5.112.exe
# Option : Clean
# Support : http://toolslib.net/forum
***** [ Services ] *****
***** [ Folders ] *****
[-] Folder Deleted : C:\ProgramData\Kromtech
[#] Folder Deleted : C:\ProgramData\Application Data\Kromtech
[-] Folder Deleted : C:\Users\eva\AppData\Local\Kromtech
***** [ Files ] *****
***** [ DLLs ] *****
***** [ Shortcuts ] *****
[-] Shortcut Disinfected : C:\Users\Public\Desktop\Google Chrome.lnk
[-] Shortcut Disinfected : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
[-] Shortcut Disinfected : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hry\The Sims 4\The Sims 4.lnk
[-] Shortcut Disinfected : C:\Users\eva\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
[-] Shortcut Disinfected : C:\Users\eva\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[-] Shortcut Disinfected : C:\Users\eva\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
[-] Shortcut Disinfected : C:\Users\eva\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk
***** [ Scheduled tasks ] *****
***** [ Registry ] *****
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{6E993643-8FBC-44FE-BC85-D318495C4D96}
[-] Key Deleted : HKCU\Software\Kromtech
[-] Key Deleted : HKCU\Software\PRODUCTSETUP
[-] Key Deleted : [x64] HKLM\SOFTWARE\Kromtech
[-] Value Deleted : HKU\S-1-5-21-3955195605-3468642088-1212717444-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run [PCKeeper2]
***** [ Web browsers ] *****
*************************
:: "Tracing" keys deleted
:: Winsock settings cleared
*************************
C:\AdwCleaner\AdwCleaner[C1].txt - [10189 bytes] - [08/10/2015 10:41:34]
C:\AdwCleaner\AdwCleaner[C2].txt - [844 bytes] - [20/12/2015 16:57:59]
C:\AdwCleaner\AdwCleaner[S1].txt - [10433 bytes] - [08/10/2015 10:20:48]
C:\AdwCleaner\AdwCleaner[S2].txt - [740 bytes] - [20/12/2015 16:55:34]
########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [10481 bytes] ##########
- Rudy
- Site Admin

- Příspěvky: 119653
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Divně, zpomaleně/zabržděně chovající se NTB!
Dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Divně, zpomaleně/zabržděně chovající se NTB!
Logfile of random's system information tool 1.10 (written by random/random)
Run by eva at 2016-04-19 22:40:58
Microsoft Windows 8.1 s aplikací Bing
System drive C: has 176 GB (40%) free of 435 GB
Total RAM: 3979 MB (47% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22:41:05, on 19. 4. 2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.18123)
Boot mode: Normal
Running processes:
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Riot Games\League of Legends\RADS\system\rads_user_kernel.exe
C:\Riot Games\League of Legends\RADS\projects\lol_launcher\releases\0.0.1.14\deploy\LoLLauncher.exe
C:\Riot Games\League of Legends\RADS\projects\lol_patcher\releases\0.0.0.54\deploy\LoLPatcher.exe
C:\Riot Games\League of Legends\RADS\projects\lol_air_client\releases\0.0.1.196\deploy\LolClient.exe
C:\Program Files (x86)\TeamSpeak 3 Client\ts3client_win32.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\eva.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://lenovo13.msn.com/?pc=LCJB
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://lenovo13.msn.com/?pc=LCJB
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe,
O2 - BHO: Lync Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office15\URLREDIR.DLL
O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\PROGRA~2\MICROS~1\Office15\GROOVEEX.DLL
O4 - HKLM\..\Run: [UpdateP2GShortCut] "C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\Lenovo\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\5.0"
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [Wondershare Helper Compact.exe] C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\Run: [AlcoholAutomount] "C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe" -automount
O8 - Extra context menu item: E&xportovat do Microsoft Excelu - res://C:\PROGRA~1\MICROS~1\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do OneNotu - res://C:\PROGRA~1\MICROS~1\Office15\ONBttnIE.dll/105
O9 - Extra button: Odeslat do OneNotu - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do OneNotu - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra button: Volání kliknutím v Lyncu - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O9 - Extra 'Tools' menuitem: Volání kliknutím v Lyncu - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files (x86)\Microsoft Office\Office15\MSOSB.DLL
O18 - Filter hijack: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\windows\System32\alg.exe (file missing)
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\windows\System32\lsass.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: Hi-Rez Studios Authenticate and Update Service (HiPatchService) - Hi-Rez Studios - C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\windows\system32\igfxCUIService.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\TXE Components\TCS\SocketHeciServer.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\windows\System32\msdtc.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Samsung Printer Dianostics Service - Unknown owner - C:\windows\system32\\spdsvc.exe
O23 - Service: Conexant SmartAudio service (SAService) - Conexant Systems, Inc. - C:\windows\system32\SAsrv.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\windows\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: Adaptér výkonu rozhraní WMI (wmiApSrv) - Unknown owner - C:\windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Zero Configuration Service (ZeroConfigService) - Intel® Corporation - C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
--
End of file - 9042 bytes
======Listing Processes======
wininit.exe
winlogon.exe
C:\windows\system32\lsass.exe
C:\windows\system32\svchost.exe -k DcomLaunch
C:\windows\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\windows\system32\svchost.exe -k NetworkService
C:\windows\system32\svchost.exe -k netsvcs
C:\windows\system32\svchost.exe -k LocalService
C:\windows\system32\igfxCUIService.exe
C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\windows\system32\WLANExt.exe 1097172826144
\??\C:\windows\system32\conhost.exe 0x4
C:\windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\windows\System32\svchost.exe -k utcsvc
"C:\Program Files\Intel\WiFi\bin\EvtEng.exe"
dashost.exe {b005ebf6-4fb0-43c3-8945e8f8932f3610}
C:\windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
"C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe"
"C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe"
C:\windows\SysWOW64\\spdsvc.exe
C:\windows\SysWOW64\SAsrv.exe
C:\windows\system32\svchost.exe -k imgsvc
"C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe"
C:\windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-b6964e77-393d-4f86-a51c-0394ab5e28ff -SystemEventPortName:HostProcess-511ea174-aa37-4a23-8085-4fba4a866705 -IoCancelEventPortName:HostProcess-199dd63d-dc98-40b5-a328-f7d3ddbe0804 -NonStateChangingEventPortName:HostProcess-87b77ff6-d53e-4552-ae82-c687ff076c1b -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:ade1964f-6727-42d9-ac3b-9073ac614cfa -DeviceGroupId:WudfDefaultDevicePool
C:\windows\system32\wbem\unsecapp.exe -Embedding
C:\windows\System32\svchost.exe -k LocalServicePeerNet
C:\windows\system32\wbem\wmiprvse.exe
taskhostex.exe
C:\windows\Explorer.EXE
igfxEM.exe
igfxHK.exe
igfxTray.exe
"C:\Program Files\CONEXANT\ForteConfig\fmapp.exe"
"C:\Windows\System32\rundll32.exe" "C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll",TrayApp
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
C:\windows\system32\wbem\unsecapp.exe -Embedding
C:\windows\system32\wbem\wmiprvse.exe
"C:\Riot Games\League of Legends\RADS\system\rads_user_kernel.exe" updateandrun lol_launcher LoLLauncher.exe
LoLLauncher.exe
"C:/Riot Games/League of Legends/RADS/projects/lol_patcher/releases/0.0.0.54/deploy/LoLPatcher.exe"
"C:/Riot Games/League of Legends/RADS/projects/lol_air_client/releases/0.0.1.196/deploy//LolClient.exe" -runtime .\ -nodebug META-INF\AIR\application.xml .\ -- 8393
"C:\Program Files (x86)\TeamSpeak 3 Client\ts3client_win32.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=crashpad-handler /prefetch:7 --no-rate-limit "--database=C:\Users\eva\AppData\Local\Google\Chrome\User Data\Crashpad" --url=https://clients2.google.com/cr/report --annotation=channel=m --annotation=plat=Win32 --annotation=prod=Chrome --annotation=ver=49.0.2623.112 --handshake-handle=0x158
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=watcher --main-thread-id=1352 --on-initialized-event-handle=632 --parent-handle=636 /prefetch:6
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="3736.0.1193858875\1137800303" --supports-dual-gpus=false --gpu-driver-bug-workarounds=3,11,16,25,54 --gpu-vendor-id=0x8086 --gpu-device-id=0x0f31 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=10.18.10.3496 --ignored=" --type=renderer " /prefetch:2
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,WebFontsIntervention<WebFontsIntervention --disable-features=UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/*CrossDevicePromo/1DaySingleProfile/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PreRead/Default/*QUIC/Enabled/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Control50pct/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/SSLCommonNameMismatchHandling/Disabled/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_80/*UMA-Uniformity-Trial-10-Percent/group_09/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_17/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*WebFontsIntervention/Enabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=1 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="3736.3.1282043704\1234041368" /prefetch:1
"C:\Users\eva\Desktop\RSITx64.exe"
======Scheduled tasks folder======
C:\windows\tasks\Adobe Flash Player Updater.job - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Lync Browser Helper - C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2012-10-01 205416]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-09-01 655480]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~1\Office15\URLREDIR.DLL [2012-10-01 877720]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~1\MICROS~1\Office15\GROOVEEX.DLL [2012-10-01 2322576]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Lync Browser Helper - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2012-10-01 139368]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-09-01 559624]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office15\URLREDIR.DLL [2012-10-01 704664]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~2\MICROS~1\Office15\GROOVEEX.DLL [2012-10-01 1720976]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"cAudioFilterAgent"=C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe [2013-09-05 907480]
"ForteConfig"=C:\Program Files\Conexant\ForteConfig\fmapp.exe [2010-10-26 49056]
"SmartAudio"=C:\Program Files\CONEXANT\SAII\SACpl.exe [2012-06-13 1647616]
"BTMTrayAgent"=C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll [2013-11-07 7818552]
"PhoneCompanion"=C:\Program Files\Lenovo PhoneCompanion\Phone Companion.exe [2014-11-01 836592]
"Energy Manager"=C:\Program Files (x86)\Lenovo\Energy Manager\Energy Manager.exe [2014-11-01 16094704]
"Lenovo Utility"=C:\Program Files (x86)\Lenovo\Energy Manager\Utility.exe [2014-11-01 10841584]
"CDAServer"=C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe [2014-09-08 464608]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2015-08-20 8455960]
"AlcoholAutomount"=C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe [2012-01-05 75624]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"UpdateP2GShortCut"=C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe [2011-12-07 214312]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2016-03-04 6111312]
"Wondershare Helper Compact.exe"=C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [2013-08-26 1989920]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\McNaiAnn]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\VDWFP]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\VisualDiscovery]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"PromptOnSecureDesktop"=0
"ConsentPromptBehaviorAdmin"=0
"SoftwareSASGeneration"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2016-04-19 19:25:45 ----HD---- C:\windows\AxInstSV
2016-04-18 20:47:09 ----D---- C:\rsit
2016-04-13 11:47:50 ----A---- C:\windows\system32\mfmp4srcsnk.dll
2016-04-13 11:47:49 ----A---- C:\windows\SYSWOW64\mfmp4srcsnk.dll
2016-04-13 11:47:47 ----A---- C:\windows\system32\drivers\rasl2tp.sys
2016-04-13 11:47:37 ----A---- C:\windows\system32\appraiser.dll
2016-04-13 11:47:36 ----A---- C:\windows\system32\invagent.dll
2016-04-13 11:47:36 ----A---- C:\windows\system32\generaltel.dll
2016-04-13 11:47:36 ----A---- C:\windows\system32\aepic.dll
2016-04-13 11:47:36 ----A---- C:\windows\system32\aeinv.dll
2016-04-13 11:47:35 ----A---- C:\windows\system32\devinv.dll
2016-04-13 11:47:35 ----A---- C:\windows\system32\CompatTelRunner.exe
2016-04-13 11:47:35 ----A---- C:\windows\system32\acmigration.dll
2016-04-13 11:47:31 ----A---- C:\windows\system32\rpcss.dll
2016-04-13 11:47:29 ----A---- C:\windows\system32\VSSVC.exe
2016-04-13 11:47:26 ----A---- C:\windows\system32\WsmSvc.dll
2016-04-13 11:47:25 ----A---- C:\windows\SYSWOW64\WsmSvc.dll
2016-04-13 11:47:24 ----A---- C:\windows\SYSWOW64\WsmWmiPl.dll
2016-04-13 11:47:24 ----A---- C:\windows\SYSWOW64\WsmAuto.dll
2016-04-13 11:47:24 ----A---- C:\windows\SYSWOW64\WsmAgent.dll
2016-04-13 11:47:24 ----A---- C:\windows\system32\WsmWmiPl.dll
2016-04-13 11:47:24 ----A---- C:\windows\system32\WsmAuto.dll
2016-04-13 11:47:24 ----A---- C:\windows\system32\WsmAgent.dll
2016-04-13 11:47:22 ----A---- C:\windows\system32\drivers\IPMIDrv.sys
2016-04-13 11:47:18 ----A---- C:\windows\SYSWOW64\twinui.dll
2016-04-13 11:46:45 ----A---- C:\windows\system32\twinui.dll
2016-04-13 11:46:08 ----A---- C:\windows\SYSWOW64\shell32.dll
2016-04-13 11:45:16 ----A---- C:\windows\SYSWOW64\explorer.exe
2016-04-13 11:45:12 ----A---- C:\windows\explorer.exe
2016-04-13 11:44:58 ----A---- C:\windows\system32\SystemSettingsAdminFlowUI.dll
2016-04-13 11:44:30 ----A---- C:\windows\system32\shell32.dll
2016-04-13 11:44:29 ----A---- C:\windows\system32\ExplorerFrame.dll
2016-04-13 11:44:28 ----A---- C:\windows\SYSWOW64\ExplorerFrame.dll
2016-04-13 11:44:28 ----A---- C:\windows\system32\SystemSettingsAdminFlows.exe
2016-04-13 11:44:27 ----A---- C:\windows\SYSWOW64\twinui.appcore.dll
2016-04-13 11:44:27 ----A---- C:\windows\system32\twinui.appcore.dll
2016-04-13 11:44:27 ----A---- C:\windows\system32\SettingsHandlers.dll
2016-04-13 11:44:26 ----A---- C:\windows\SYSWOW64\AppxAllUserStore.dll
2016-04-13 11:44:26 ----A---- C:\windows\system32\SettingSyncCore.dll
2016-04-13 11:44:26 ----A---- C:\windows\system32\SettingSync.dll
2016-04-13 11:44:26 ----A---- C:\windows\system32\AppxAllUserStore.dll
2016-04-13 11:44:25 ----A---- C:\windows\SYSWOW64\SettingSyncCore.dll
2016-04-13 11:44:25 ----A---- C:\windows\SYSWOW64\SettingSync.dll
2016-04-13 11:44:25 ----A---- C:\windows\system32\SettingSyncHost.exe
2016-04-13 11:44:25 ----A---- C:\windows\system32\hgcpl.dll
2016-04-13 11:44:24 ----A---- C:\windows\system32\usercpl.dll
2016-04-13 11:44:24 ----A---- C:\windows\system32\themecpl.dll
2016-04-13 11:44:24 ----A---- C:\windows\system32\stobject.dll
2016-04-13 11:44:24 ----A---- C:\windows\system32\SettingMonitor.dll
2016-04-13 11:44:24 ----A---- C:\windows\system32\AppXDeploymentExtensions.dll
2016-04-13 11:44:23 ----A---- C:\windows\SYSWOW64\themecpl.dll
2016-04-13 11:44:23 ----A---- C:\windows\SYSWOW64\hgcpl.dll
2016-04-13 11:44:22 ----A---- C:\windows\SYSWOW64\usercpl.dll
2016-04-13 11:44:22 ----A---- C:\windows\SYSWOW64\stobject.dll
2016-04-13 11:44:22 ----A---- C:\windows\SYSWOW64\SettingSyncHost.exe
2016-04-13 11:44:21 ----A---- C:\windows\SYSWOW64\SettingMonitor.dll
2016-04-13 11:44:17 ----A---- C:\windows\system32\AppXDeploymentServer.dll
2016-04-13 11:43:51 ----A---- C:\windows\system32\workfolderssvc.dll
2016-04-13 11:43:50 ----A---- C:\windows\system32\WorkfoldersControl.dll
2016-04-13 11:43:47 ----A---- C:\windows\SYSWOW64\msorcl32.dll
2016-04-13 11:43:47 ----A---- C:\windows\SYSWOW64\KernelBase.dll
2016-04-13 11:43:46 ----A---- C:\windows\SYSWOW64\mtxoci.dll
2016-04-13 11:43:46 ----A---- C:\windows\system32\winresume.exe
2016-04-13 11:43:46 ----A---- C:\windows\system32\winload.exe
2016-04-13 11:43:46 ----A---- C:\windows\system32\ntoskrnl.exe
2016-04-13 11:43:46 ----A---- C:\windows\system32\mtxoci.dll
2016-04-13 11:43:45 ----A---- C:\windows\system32\KernelBase.dll
2016-04-13 11:43:42 ----A---- C:\windows\system32\drivers\vpci.sys
2016-04-13 11:43:42 ----A---- C:\windows\system32\drivers\storport.sys
2016-04-13 11:43:41 ----A---- C:\windows\SYSWOW64\dhcpsapi.dll
2016-04-13 11:43:41 ----A---- C:\windows\system32\dhcpsapi.dll
2016-04-13 11:43:38 ----A---- C:\windows\SYSWOW64\storagewmi.dll
2016-04-13 11:43:38 ----A---- C:\windows\system32\storagewmi.dll
2016-04-13 11:43:34 ----A---- C:\windows\system32\wbengine.exe
2016-04-13 11:43:33 ----A---- C:\windows\system32\WindowsAnytimeUpgradeui.exe
2016-04-13 11:43:33 ----A---- C:\windows\system32\drivers\disk.sys
2016-04-13 10:25:25 ----A---- C:\windows\SYSWOW64\FWPUCLNT.DLL
2016-04-13 10:25:25 ----A---- C:\windows\system32\nshwfp.dll
2016-04-13 10:25:25 ----A---- C:\windows\system32\IKEEXT.DLL
2016-04-13 10:25:25 ----A---- C:\windows\system32\FWPUCLNT.DLL
2016-04-13 10:25:25 ----A---- C:\windows\system32\BFE.DLL
2016-04-13 10:25:24 ----A---- C:\windows\SYSWOW64\nshwfp.dll
2016-04-13 10:25:20 ----A---- C:\windows\system32\drivers\vhdmp.sys
2016-04-13 10:25:17 ----A---- C:\windows\system32\drivers\volsnap.sys
2016-04-13 08:05:39 ----A---- C:\windows\system32\mshtml.dll
2016-04-13 08:05:37 ----A---- C:\windows\SYSWOW64\mshtml.dll
2016-04-13 08:05:34 ----A---- C:\windows\system32\ieframe.dll
2016-04-13 08:05:32 ----A---- C:\windows\SYSWOW64\ieframe.dll
2016-04-13 08:05:31 ----A---- C:\windows\SYSWOW64\iertutil.dll
2016-04-13 08:05:31 ----A---- C:\windows\system32\iertutil.dll
2016-04-13 08:05:30 ----A---- C:\windows\SYSWOW64\iedkcs32.dll
2016-04-13 08:05:30 ----A---- C:\windows\system32\wininet.dll
2016-04-13 08:05:30 ----A---- C:\windows\system32\jscript9.dll
2016-04-13 08:05:30 ----A---- C:\windows\system32\iedkcs32.dll
2016-04-13 08:05:29 ----A---- C:\windows\SYSWOW64\wininet.dll
2016-04-13 08:05:29 ----A---- C:\windows\system32\ie4uinit.exe
2016-04-13 08:05:28 ----A---- C:\windows\SYSWOW64\msfeeds.dll
2016-04-13 08:05:28 ----A---- C:\windows\system32\urlmon.dll
2016-04-13 08:05:28 ----A---- C:\windows\system32\msfeeds.dll
2016-04-13 08:05:27 ----A---- C:\windows\SYSWOW64\urlmon.dll
2016-04-13 08:05:26 ----A---- C:\windows\SYSWOW64\dxtrans.dll
2016-04-13 08:05:26 ----A---- C:\windows\system32\iepeers.dll
2016-04-13 08:05:26 ----A---- C:\windows\system32\dxtrans.dll
2016-04-13 08:05:25 ----A---- C:\windows\SYSWOW64\webcheck.dll
2016-04-13 08:05:25 ----A---- C:\windows\SYSWOW64\jscript9.dll
2016-04-13 08:05:25 ----A---- C:\windows\SYSWOW64\iepeers.dll
2016-04-13 08:05:25 ----A---- C:\windows\system32\webcheck.dll
2016-04-13 08:05:24 ----A---- C:\windows\SYSWOW64\vbscript.dll
2016-04-13 08:05:24 ----A---- C:\windows\SYSWOW64\jscript.dll
2016-04-13 08:05:24 ----A---- C:\windows\SYSWOW64\inetcomm.dll
2016-04-13 08:05:24 ----A---- C:\windows\system32\vbscript.dll
2016-04-13 08:05:24 ----A---- C:\windows\system32\mshtmled.dll
2016-04-13 08:05:24 ----A---- C:\windows\system32\jscript.dll
2016-04-13 08:05:24 ----A---- C:\windows\system32\inetcomm.dll
2016-04-13 08:05:24 ----A---- C:\windows\system32\ieapfltr.dll
2016-04-13 08:05:23 ----A---- C:\windows\SYSWOW64\ieapfltr.dll
2016-04-13 08:04:01 ----A---- C:\windows\SYSWOW64\msxml3.dll
2016-04-13 08:04:01 ----A---- C:\windows\system32\msxml3.dll
2016-04-13 08:03:59 ----A---- C:\windows\SYSWOW64\ole32.dll
2016-04-13 08:03:59 ----A---- C:\windows\system32\ole32.dll
2016-04-13 08:03:54 ----A---- C:\windows\SYSWOW64\certcli.dll
2016-04-13 08:03:54 ----A---- C:\windows\system32\samsrv.dll
2016-04-13 08:03:54 ----A---- C:\windows\system32\lsasrv.dll
2016-04-13 08:03:54 ----A---- C:\windows\system32\drivers\mrxsmb20.sys
2016-04-13 08:03:54 ----A---- C:\windows\system32\drivers\mrxsmb10.sys
2016-04-13 08:03:54 ----A---- C:\windows\system32\drivers\cng.sys
2016-04-13 08:03:53 ----A---- C:\windows\system32\drivers\mrxsmb.sys
2016-04-13 08:03:52 ----A---- C:\windows\system32\samlib.dll
2016-04-13 08:03:51 ----A---- C:\windows\SYSWOW64\samlib.dll
2016-04-13 08:03:50 ----A---- C:\windows\system32\certcli.dll
2016-04-13 08:03:43 ----A---- C:\windows\system32\basesrv.dll
2016-04-13 08:03:37 ----A---- C:\windows\system32\win32k.sys
2016-04-11 16:21:25 ----D---- C:\Users\eva\AppData\Roaming\PhotoFiltre 7
2016-04-11 16:21:20 ----D---- C:\Program Files (x86)\PhotoFiltre 7
2016-04-11 12:56:39 ----D---- C:\ProgramData\Razer
2016-04-07 16:37:50 ----D---- C:\Program Files\CPUID
2016-04-01 15:55:24 ----SHD---- C:\Config.Msi
2016-03-20 21:04:27 ----A---- C:\windows\SYSWOW64\psfind.dll
2016-03-20 21:00:48 ----D---- C:\Program Files (x86)\THQ
======List of files/folders modified in the last 1 month======
2016-04-19 22:41:03 ----D---- C:\Program Files\trend micro
2016-04-19 22:00:00 ----D---- C:\windows\system32\sru
2016-04-19 19:59:04 ----D---- C:\windows\Temp
2016-04-19 19:42:43 ----D---- C:\Users\eva\AppData\Roaming\TS3Client
2016-04-19 19:26:57 ----D---- C:\windows\SoftwareDistribution
2016-04-19 19:25:45 ----AD---- C:\Windows
2016-04-19 18:37:01 ----D---- C:\windows\Microsoft.NET
2016-04-19 17:55:55 ----D---- C:\windows\Inf
2016-04-19 17:55:51 ----D---- C:\windows\debug
2016-04-19 14:54:14 ----RAD---- C:\windows\System32
2016-04-19 14:54:14 ----A---- C:\windows\system32\PerfStringBackup.INI
2016-04-19 06:25:43 ----HD---- C:\ProgramData
2016-04-19 06:22:39 ----D---- C:\AdwCleaner
2016-04-19 02:34:53 ----D---- C:\windows\system32\config
2016-04-18 19:28:25 ----D---- C:\windows\system32\NDF
2016-04-18 19:03:33 ----D---- C:\Program Files (x86)\Hi-Rez Studios
2016-04-18 19:02:17 ----D---- C:\ProgramData\Hi-Rez Studios
2016-04-18 19:02:09 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2016-04-18 19:01:59 ----SHD---- C:\System Volume Information
2016-04-18 18:57:06 ----D---- C:\Users\eva\AppData\Roaming\uTorrent
2016-04-18 12:08:13 ----D---- C:\windows\WinSxS
2016-04-18 12:06:25 ----D---- C:\windows\system32\drivers
2016-04-16 20:16:20 ----D---- C:\windows\rescache
2016-04-16 20:00:39 ----D---- C:\windows\CbsTemp
2016-04-16 20:00:15 ----RSD---- C:\windows\assembly
2016-04-16 19:59:31 ----D---- C:\windows\apppatch
2016-04-16 19:59:17 ----D---- C:\windows\SysWOW64
2016-04-14 21:47:50 ----D---- C:\windows\SYSWOW64\en-US
2016-04-14 21:47:50 ----D---- C:\windows\SYSWOW64\cs-CZ
2016-04-14 21:47:50 ----D---- C:\windows\system32\en-US
2016-04-14 21:47:50 ----D---- C:\windows\system32\cs-CZ
2016-04-14 21:47:50 ----D---- C:\windows\system32\appraiser
2016-04-14 21:47:49 ----RD---- C:\windows\ToastData
2016-04-14 21:47:48 ----D---- C:\windows\system32\wbem
2016-04-14 21:47:46 ----D---- C:\windows\system32\Boot
2016-04-14 21:47:43 ----D---- C:\Program Files\Internet Explorer
2016-04-14 21:47:43 ----D---- C:\Program Files (x86)\Internet Explorer
2016-04-14 21:47:39 ----D---- C:\windows\system32\DriverStore
2016-04-14 21:44:34 ----D---- C:\windows\system32\MRT
2016-04-14 21:35:25 ----A---- C:\windows\system32\MRT.exe
2016-04-14 14:25:23 ----HD---- C:\Program Files\WindowsApps
2016-04-14 14:25:23 ----D---- C:\windows\AppReadiness
2016-04-13 10:20:58 ----D---- C:\windows\system32\catroot2
2016-04-11 16:54:29 ----D---- C:\Users\eva\AppData\Roaming\Samsung
2016-04-11 16:21:20 ----RD---- C:\Program Files (x86)
2016-04-11 13:11:52 ----SHD---- C:\windows\Installer
2016-04-07 16:37:50 ----RD---- C:\Program Files
2016-04-05 23:53:01 ----A---- C:\windows\SYSWOW64\FlashPlayerApp.exe
2016-03-27 19:49:11 ----SD---- C:\windows\SYSWOW64\GWX
2016-03-27 19:49:11 ----SD---- C:\windows\system32\GWX
2016-03-25 08:23:33 ----D---- C:\windows\system32\drivers\en-US
2016-03-25 08:23:33 ----D---- C:\windows\system32\drivers\cs-CZ
2016-03-22 07:48:30 ----D---- C:\windows\Logs
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswRvrt;avast! Revert; C:\windows\system32\drivers\aswRvrt.sys [2015-09-01 65224]
R0 aswVmm;avast! VM Monitor; C:\windows\system32\drivers\aswVmm.sys [2015-09-01 274808]
R0 MBI;@oem10.inf,%MBI.SVCDESC%;Intel(R) Sideband Fabric Device Service; C:\windows\System32\drivers\MBI.sys [2013-10-10 29464]
R0 sptd;sptd; C:\windows\System32\Drivers\sptd.sys [2015-11-17 381608]
R1 aswRdr;aswRdr; C:\windows\system32\drivers\aswRdr2.sys [2015-09-01 93528]
R1 aswSnx;aswSnx; C:\windows\system32\drivers\aswSnx.sys [2016-03-04 1059656]
R1 aswSP;aswSP; C:\windows\system32\drivers\aswSP.sys [2016-03-04 449992]
R1 vwififlt;@%SystemRoot%\System32\drivers\vwififlt.sys,-259; C:\windows\system32\DRIVERS\vwififlt.sys [2013-08-22 71680]
R2 aswHwid;avast! HardwareID; C:\windows\system32\drivers\aswHwid.sys [2015-09-01 28656]
R2 aswMonFlt;aswMonFlt; C:\windows\system32\drivers\aswMonFlt.sys [2015-09-01 90968]
R2 aswStm;aswStm; C:\windows\system32\drivers\aswStm.sys [2015-09-01 150672]
R2 SSPORT;SSPORT; \??\C:\windows\system32\Drivers\SSPORT.sys [2014-05-07 11576]
R3 ACPIVPC;@oem23.inf,%ACPIVPC.SvcDesc%;Lenovo Virtual Power Controller Driver; C:\windows\System32\drivers\AcpiVpc.sys [2014-11-01 35576]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\windows\System32\Drivers\BTHUSB.sys [2014-10-29 81920]
R3 btmhsf;btmhsf; C:\windows\system32\DRIVERS\btmhsf.sys [2013-11-07 1411384]
R3 CnxtHdAudService;@oem11.inf,%UAAFunctionDriverForHdAudio.SvcDesc%;Conexant UAA Function Driver for High Definition Audio Service; C:\windows\system32\drivers\CHDRT64.sys [2014-01-27 1474240]
R3 ibtusb;@oem16.inf,%ibtusb.SVCDESC_IBT%;Intel(R) Wireless Bluetooth(R) 4.0 + HS Adapter; C:\windows\system32\DRIVERS\ibtusb.sys [2014-01-22 149448]
R3 igfx;igfx; C:\windows\system32\DRIVERS\igdkmd64.sys [2014-03-07 3729920]
R3 IntcDAud;@oem4.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\windows\system32\DRIVERS\IntcDAud.sys [2014-03-07 450520]
R3 iwdbus;@oem7.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\windows\System32\drivers\iwdbus.sys [2014-03-01 27032]
R3 NETwNb64;@oem17.inf,___ %NIC_Service_DispName_WINB_64%;___ Intel(R) Wireless Adapter Driver for Windows 8.1 - 64 Bit; C:\windows\system32\DRIVERS\Netwbw02.sys [2014-06-01 3443680]
R3 RSUSBVSTOR;@oem21.inf,%RSUSBVSTOR.SvcDesc%;RtsUVStor.Sys Realtek USB Card Reader; C:\windows\System32\Drivers\RtsUVStor.sys [2013-09-24 329944]
R3 RTL8168;@oem8.inf,%rtl8168.Service.DispName%;Realtek 8168 NT Driver; C:\windows\system32\DRIVERS\Rt630x64.sys [2013-08-15 830680]
R3 SmbDrvI;SmbDrvI; C:\windows\system32\DRIVERS\Smb_driver_Intel.sys [2013-12-24 34544]
R3 SNP2UVC;@oem20.inf,%SERVICE_DISPLAY_NAME%;USB2.0 PC Camera (SNP2UVC); C:\windows\system32\DRIVERS\snp2uvc.sys [2014-01-24 2853400]
R3 SynTP;@oem13.inf,%SynTP.SvcDesc%;Synaptics TouchPad Driver; C:\windows\system32\DRIVERS\SynTP.sys [2013-12-24 532720]
R3 TXEIx64;@oem9.inf,%TEE_SvcDesc%;Intel(R) Trusted Execution Engine Interface ; C:\windows\System32\drivers\TXEIx64.sys [2014-01-15 88592]
R3 vwifimp;@%SystemRoot%\System32\drivers\vwifimp.sys,-261; C:\windows\system32\DRIVERS\vwifimp.sys [2013-08-22 36864]
S3 andnetadb;@oem37.inf,%androidusb.SvcDesc%;ADB Interface DriverNet; C:\windows\System32\Drivers\lgandnetadb.sys []
S3 AndNetDiag;@oem38.inf,%Lgsi.Service.Name%;LGE AndroidNet USB Serial Port; C:\windows\system32\DRIVERS\lgandnetdiag64.sys []
S3 ANDNetModem;@oem41.inf,%LGSI.Service.Name%;LGE AndroidNet USB Modem; C:\windows\system32\DRIVERS\lgandnetmodem64.sys []
S3 axscsidrv;axscsidrv; C:\windows\system32\drivers\axscsidrv.sys [2016-02-16 293888]
S3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\windows\System32\drivers\BthEnum.sys [2014-10-29 53248]
S3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\windows\system32\DRIVERS\BthLEEnum.sys [2014-03-18 226304]
S3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\windows\System32\drivers\bthpan.sys [2015-07-10 118272]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\windows\System32\Drivers\BTHport.sys [2015-05-11 1201664]
S3 btmaux;@oem15.inf,%BTMAUX.ServiceDesc%;Intel Bluetooth Auxiliary Service; C:\windows\system32\DRIVERS\btmaux.sys [2013-11-07 140600]
S3 dtlitescsibus;@oem29.inf,%DTLITESCSIBUS.DeviceDesc%;DAEMON Tools Lite Virtual SCSI Bus; C:\windows\System32\drivers\dtlitescsibus.sys [2015-09-01 30264]
S3 e1iexpress;@net1ic64.inf,%e1iExpress.Service.DispName%;Intel(R) PRO/1000 PCI Express Network Connection Driver I; C:\windows\system32\DRIVERS\e1i63x64.sys [2013-06-18 460288]
S3 HTCAND64;@oem32.inf,%HTCAND64.SvcDesc%;HTC Device Driver; C:\windows\System32\Drivers\ANDROIDUSB.sys [2009-11-02 33736]
S3 htcnprot;@oem36.inf,%NDISPROT_Desc%;HTC NDIS Protocol Driver; C:\windows\system32\DRIVERS\htcnprot.sys [2013-10-17 36928]
S3 intaud_WaveExtensible;@oem6.inf,%INTAUD_WEX.SvcDesc%;Intel WiDi Audio Device; C:\windows\system32\drivers\intelaud.sys [2014-03-01 38296]
S3 NETwNe64;@netwew02.inf,___ %NIC_Service_DispName_WIN8_64%;___ Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows 8 - 64 Bit; C:\windows\system32\DRIVERS\NETwew02.sys [2013-06-18 4649440]
S3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\windows\System32\drivers\rfcomm.sys [2015-01-30 167424]
S3 tap0901;@oem37.inf,%DeviceDescription%;TAP-Windows Adapter V9; C:\windows\system32\DRIVERS\tap0901.sys [2013-08-22 40664]
S3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;USB Video Device (WDM); C:\windows\System32\Drivers\usbvideo.sys [2014-06-21 212736]
S3 VClone;VClone; C:\windows\System32\drivers\VClone.sys [2014-05-03 34816]
S3 VirtualDVD;VirtualDVD; C:\windows\system32\DRIVERS\VirtualDVD.sys []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2015-09-01 146600]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\windows\System32\svchost.exe [2014-10-29 38792]
R2 EvtEng;Intel(R) PROSet/Wireless Event Log; C:\Program Files\Intel\WiFi\bin\EvtEng.exe [2014-01-18 632048]
R2 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2014-03-18 43696]
R2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\windows\system32\igfxCUIService.exe [2014-03-12 282096]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe [2013-07-02 733696]
R2 RegSrvc;Intel(R) PROSet/Wireless Registry Service; C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe [2014-01-18 154864]
R2 Samsung Printer Dianostics Service;Samsung Printer Dianostics Service; C:\windows\syswow64\\spdsvc.exe [2015-11-05 491328]
R2 SAService;Conexant SmartAudio service; C:\windows\system32\SAsrv.exe []
S2 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-12-03 269000]
S2 HiPatchService;Hi-Rez Studios Authenticate and Update Service; C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe [2016-03-14 9728]
S3 cphs;Intel(R) Content Protection HECI Service; C:\windows\SysWow64\IntelCpHeciSvc.exe [2014-03-12 279024]
S3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2012-04-24 169752]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\TXE Components\TCS\SocketHeciServer.exe [2013-07-02 822232]
S4 AxAutoMntSrv;Alcohol Virtual Drive Auto-mount Service; C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe [2012-01-05 75624]
S4 Bluetooth Device Monitor;Bluetooth Device Monitor; C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe [2013-11-07 1186168]
S4 Bluetooth OBEX Service;Bluetooth OBEX Service; C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe [2013-11-07 1161592]
S4 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\windows\System32\svchost.exe [2014-10-29 38792]
S4 CxAudMsg;Conexant Audio Message Service; C:\windows\system32\CxAudMsg64.exe [2013-07-25 206552]
S4 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-01 144200]
S4 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-01 144200]
S4 iBtSiva;Intel Bluetooth Service; C:\Program Files (x86)\Intel\Bluetooth\ibtsiva.exe [2014-01-22 130008]
S4 Lenovo EasyPlus Hotspot;Lenovo EasyPlus Hotspot; C:\Program Files (x86)\Common Files\lenovo\easyplussdk\bin\EPHotspot64.exe [2014-06-03 533760]
S4 Lenovo System Agent Service;Lenovo System Agent Service; C:\Program Files\Lenovo\iMController\SystemAgentService.exe [2014-05-22 584960]
S4 LenovoWiFiHotspotSvr;Lenovo WiFiHotspot Service; C:\Windows\System32\LenovoWiFiHotspotSvr.exe [2014-11-01 198192]
S4 LSCWinService;LSCWinService; C:\Program Files\Lenovo\Lenovo Solution Center\App\LSCWinService.exe [2016-01-08 272864]
S4 LUService;LUService; C:\Program Files (x86)\Lenovo\Lenovo Updates\LUService.exe [2014-04-21 37624]
S4 MyWiFiDHCPDNS;Wireless PAN DHCP Server; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [2014-01-18 284912]
S4 ose64;Office 64 Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2012-12-08 178760]
S4 PassThru Service;Internet Pass-Through Service; C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe [2013-10-17 166912]
S4 PhoneCompanionPusher;Lenovo PhoneCompanionPusher Service; C:\Program Files\Lenovo PhoneCompanion\PhoneCompanionPusher.exe [2014-11-01 288240]
S4 PhoneCompanionVap;Lenovo PhoneCompanionVap Service; C:\Program Files\Lenovo PhoneCompanion\PhoneCompanionVap.exe [2014-11-01 305136]
S4 RichVideo64;Cyberlink RichVideo64 Service(CRVS); C:\Program Files\CyberLink\Shared files\RichVideo64.exe [2012-04-24 390632]
S4 StarWindServiceAE;StarWind AE Service; C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [2009-12-23 370688]
S4 VeriFaceSrv;VeriFaceSrv; C:\Program Files (x86)\Lenovo\Lenovo VeriFace Pro\VfConnectorService.exe [2014-11-01 67856]
-----------------EOF-----------------
Run by eva at 2016-04-19 22:40:58
Microsoft Windows 8.1 s aplikací Bing
System drive C: has 176 GB (40%) free of 435 GB
Total RAM: 3979 MB (47% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22:41:05, on 19. 4. 2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.18123)
Boot mode: Normal
Running processes:
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Riot Games\League of Legends\RADS\system\rads_user_kernel.exe
C:\Riot Games\League of Legends\RADS\projects\lol_launcher\releases\0.0.1.14\deploy\LoLLauncher.exe
C:\Riot Games\League of Legends\RADS\projects\lol_patcher\releases\0.0.0.54\deploy\LoLPatcher.exe
C:\Riot Games\League of Legends\RADS\projects\lol_air_client\releases\0.0.1.196\deploy\LolClient.exe
C:\Program Files (x86)\TeamSpeak 3 Client\ts3client_win32.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\eva.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://lenovo13.msn.com/?pc=LCJB
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://lenovo13.msn.com/?pc=LCJB
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe,
O2 - BHO: Lync Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office15\URLREDIR.DLL
O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\PROGRA~2\MICROS~1\Office15\GROOVEEX.DLL
O4 - HKLM\..\Run: [UpdateP2GShortCut] "C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\Lenovo\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\5.0"
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [Wondershare Helper Compact.exe] C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\Run: [AlcoholAutomount] "C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe" -automount
O8 - Extra context menu item: E&xportovat do Microsoft Excelu - res://C:\PROGRA~1\MICROS~1\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do OneNotu - res://C:\PROGRA~1\MICROS~1\Office15\ONBttnIE.dll/105
O9 - Extra button: Odeslat do OneNotu - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do OneNotu - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra button: Volání kliknutím v Lyncu - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O9 - Extra 'Tools' menuitem: Volání kliknutím v Lyncu - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files (x86)\Microsoft Office\Office15\MSOSB.DLL
O18 - Filter hijack: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\windows\System32\alg.exe (file missing)
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\windows\System32\lsass.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: Hi-Rez Studios Authenticate and Update Service (HiPatchService) - Hi-Rez Studios - C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\windows\system32\igfxCUIService.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\TXE Components\TCS\SocketHeciServer.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\windows\System32\msdtc.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Samsung Printer Dianostics Service - Unknown owner - C:\windows\system32\\spdsvc.exe
O23 - Service: Conexant SmartAudio service (SAService) - Conexant Systems, Inc. - C:\windows\system32\SAsrv.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\windows\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: Adaptér výkonu rozhraní WMI (wmiApSrv) - Unknown owner - C:\windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Zero Configuration Service (ZeroConfigService) - Intel® Corporation - C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
--
End of file - 9042 bytes
======Listing Processes======
wininit.exe
winlogon.exe
C:\windows\system32\lsass.exe
C:\windows\system32\svchost.exe -k DcomLaunch
C:\windows\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\windows\system32\svchost.exe -k NetworkService
C:\windows\system32\svchost.exe -k netsvcs
C:\windows\system32\svchost.exe -k LocalService
C:\windows\system32\igfxCUIService.exe
C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\windows\system32\WLANExt.exe 1097172826144
\??\C:\windows\system32\conhost.exe 0x4
C:\windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\windows\System32\svchost.exe -k utcsvc
"C:\Program Files\Intel\WiFi\bin\EvtEng.exe"
dashost.exe {b005ebf6-4fb0-43c3-8945e8f8932f3610}
C:\windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
"C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe"
"C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe"
C:\windows\SysWOW64\\spdsvc.exe
C:\windows\SysWOW64\SAsrv.exe
C:\windows\system32\svchost.exe -k imgsvc
"C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe"
C:\windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-b6964e77-393d-4f86-a51c-0394ab5e28ff -SystemEventPortName:HostProcess-511ea174-aa37-4a23-8085-4fba4a866705 -IoCancelEventPortName:HostProcess-199dd63d-dc98-40b5-a328-f7d3ddbe0804 -NonStateChangingEventPortName:HostProcess-87b77ff6-d53e-4552-ae82-c687ff076c1b -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:ade1964f-6727-42d9-ac3b-9073ac614cfa -DeviceGroupId:WudfDefaultDevicePool
C:\windows\system32\wbem\unsecapp.exe -Embedding
C:\windows\System32\svchost.exe -k LocalServicePeerNet
C:\windows\system32\wbem\wmiprvse.exe
taskhostex.exe
C:\windows\Explorer.EXE
igfxEM.exe
igfxHK.exe
igfxTray.exe
"C:\Program Files\CONEXANT\ForteConfig\fmapp.exe"
"C:\Windows\System32\rundll32.exe" "C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll",TrayApp
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
C:\windows\system32\wbem\unsecapp.exe -Embedding
C:\windows\system32\wbem\wmiprvse.exe
"C:\Riot Games\League of Legends\RADS\system\rads_user_kernel.exe" updateandrun lol_launcher LoLLauncher.exe
LoLLauncher.exe
"C:/Riot Games/League of Legends/RADS/projects/lol_patcher/releases/0.0.0.54/deploy/LoLPatcher.exe"
"C:/Riot Games/League of Legends/RADS/projects/lol_air_client/releases/0.0.1.196/deploy//LolClient.exe" -runtime .\ -nodebug META-INF\AIR\application.xml .\ -- 8393
"C:\Program Files (x86)\TeamSpeak 3 Client\ts3client_win32.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=crashpad-handler /prefetch:7 --no-rate-limit "--database=C:\Users\eva\AppData\Local\Google\Chrome\User Data\Crashpad" --url=https://clients2.google.com/cr/report --annotation=channel=m --annotation=plat=Win32 --annotation=prod=Chrome --annotation=ver=49.0.2623.112 --handshake-handle=0x158
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=watcher --main-thread-id=1352 --on-initialized-event-handle=632 --parent-handle=636 /prefetch:6
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="3736.0.1193858875\1137800303" --supports-dual-gpus=false --gpu-driver-bug-workarounds=3,11,16,25,54 --gpu-vendor-id=0x8086 --gpu-device-id=0x0f31 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=10.18.10.3496 --ignored=" --type=renderer " /prefetch:2
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,WebFontsIntervention<WebFontsIntervention --disable-features=UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/*CrossDevicePromo/1DaySingleProfile/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PreRead/Default/*QUIC/Enabled/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Control50pct/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/SSLCommonNameMismatchHandling/Disabled/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_80/*UMA-Uniformity-Trial-10-Percent/group_09/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_17/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*WebFontsIntervention/Enabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=1 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="3736.3.1282043704\1234041368" /prefetch:1
"C:\Users\eva\Desktop\RSITx64.exe"
======Scheduled tasks folder======
C:\windows\tasks\Adobe Flash Player Updater.job - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Lync Browser Helper - C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2012-10-01 205416]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-09-01 655480]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~1\Office15\URLREDIR.DLL [2012-10-01 877720]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~1\MICROS~1\Office15\GROOVEEX.DLL [2012-10-01 2322576]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Lync Browser Helper - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2012-10-01 139368]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-09-01 559624]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office15\URLREDIR.DLL [2012-10-01 704664]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~2\MICROS~1\Office15\GROOVEEX.DLL [2012-10-01 1720976]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"cAudioFilterAgent"=C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe [2013-09-05 907480]
"ForteConfig"=C:\Program Files\Conexant\ForteConfig\fmapp.exe [2010-10-26 49056]
"SmartAudio"=C:\Program Files\CONEXANT\SAII\SACpl.exe [2012-06-13 1647616]
"BTMTrayAgent"=C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll [2013-11-07 7818552]
"PhoneCompanion"=C:\Program Files\Lenovo PhoneCompanion\Phone Companion.exe [2014-11-01 836592]
"Energy Manager"=C:\Program Files (x86)\Lenovo\Energy Manager\Energy Manager.exe [2014-11-01 16094704]
"Lenovo Utility"=C:\Program Files (x86)\Lenovo\Energy Manager\Utility.exe [2014-11-01 10841584]
"CDAServer"=C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe [2014-09-08 464608]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2015-08-20 8455960]
"AlcoholAutomount"=C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe [2012-01-05 75624]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"UpdateP2GShortCut"=C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe [2011-12-07 214312]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2016-03-04 6111312]
"Wondershare Helper Compact.exe"=C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [2013-08-26 1989920]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\McNaiAnn]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\VDWFP]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\VisualDiscovery]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"PromptOnSecureDesktop"=0
"ConsentPromptBehaviorAdmin"=0
"SoftwareSASGeneration"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2016-04-19 19:25:45 ----HD---- C:\windows\AxInstSV
2016-04-18 20:47:09 ----D---- C:\rsit
2016-04-13 11:47:50 ----A---- C:\windows\system32\mfmp4srcsnk.dll
2016-04-13 11:47:49 ----A---- C:\windows\SYSWOW64\mfmp4srcsnk.dll
2016-04-13 11:47:47 ----A---- C:\windows\system32\drivers\rasl2tp.sys
2016-04-13 11:47:37 ----A---- C:\windows\system32\appraiser.dll
2016-04-13 11:47:36 ----A---- C:\windows\system32\invagent.dll
2016-04-13 11:47:36 ----A---- C:\windows\system32\generaltel.dll
2016-04-13 11:47:36 ----A---- C:\windows\system32\aepic.dll
2016-04-13 11:47:36 ----A---- C:\windows\system32\aeinv.dll
2016-04-13 11:47:35 ----A---- C:\windows\system32\devinv.dll
2016-04-13 11:47:35 ----A---- C:\windows\system32\CompatTelRunner.exe
2016-04-13 11:47:35 ----A---- C:\windows\system32\acmigration.dll
2016-04-13 11:47:31 ----A---- C:\windows\system32\rpcss.dll
2016-04-13 11:47:29 ----A---- C:\windows\system32\VSSVC.exe
2016-04-13 11:47:26 ----A---- C:\windows\system32\WsmSvc.dll
2016-04-13 11:47:25 ----A---- C:\windows\SYSWOW64\WsmSvc.dll
2016-04-13 11:47:24 ----A---- C:\windows\SYSWOW64\WsmWmiPl.dll
2016-04-13 11:47:24 ----A---- C:\windows\SYSWOW64\WsmAuto.dll
2016-04-13 11:47:24 ----A---- C:\windows\SYSWOW64\WsmAgent.dll
2016-04-13 11:47:24 ----A---- C:\windows\system32\WsmWmiPl.dll
2016-04-13 11:47:24 ----A---- C:\windows\system32\WsmAuto.dll
2016-04-13 11:47:24 ----A---- C:\windows\system32\WsmAgent.dll
2016-04-13 11:47:22 ----A---- C:\windows\system32\drivers\IPMIDrv.sys
2016-04-13 11:47:18 ----A---- C:\windows\SYSWOW64\twinui.dll
2016-04-13 11:46:45 ----A---- C:\windows\system32\twinui.dll
2016-04-13 11:46:08 ----A---- C:\windows\SYSWOW64\shell32.dll
2016-04-13 11:45:16 ----A---- C:\windows\SYSWOW64\explorer.exe
2016-04-13 11:45:12 ----A---- C:\windows\explorer.exe
2016-04-13 11:44:58 ----A---- C:\windows\system32\SystemSettingsAdminFlowUI.dll
2016-04-13 11:44:30 ----A---- C:\windows\system32\shell32.dll
2016-04-13 11:44:29 ----A---- C:\windows\system32\ExplorerFrame.dll
2016-04-13 11:44:28 ----A---- C:\windows\SYSWOW64\ExplorerFrame.dll
2016-04-13 11:44:28 ----A---- C:\windows\system32\SystemSettingsAdminFlows.exe
2016-04-13 11:44:27 ----A---- C:\windows\SYSWOW64\twinui.appcore.dll
2016-04-13 11:44:27 ----A---- C:\windows\system32\twinui.appcore.dll
2016-04-13 11:44:27 ----A---- C:\windows\system32\SettingsHandlers.dll
2016-04-13 11:44:26 ----A---- C:\windows\SYSWOW64\AppxAllUserStore.dll
2016-04-13 11:44:26 ----A---- C:\windows\system32\SettingSyncCore.dll
2016-04-13 11:44:26 ----A---- C:\windows\system32\SettingSync.dll
2016-04-13 11:44:26 ----A---- C:\windows\system32\AppxAllUserStore.dll
2016-04-13 11:44:25 ----A---- C:\windows\SYSWOW64\SettingSyncCore.dll
2016-04-13 11:44:25 ----A---- C:\windows\SYSWOW64\SettingSync.dll
2016-04-13 11:44:25 ----A---- C:\windows\system32\SettingSyncHost.exe
2016-04-13 11:44:25 ----A---- C:\windows\system32\hgcpl.dll
2016-04-13 11:44:24 ----A---- C:\windows\system32\usercpl.dll
2016-04-13 11:44:24 ----A---- C:\windows\system32\themecpl.dll
2016-04-13 11:44:24 ----A---- C:\windows\system32\stobject.dll
2016-04-13 11:44:24 ----A---- C:\windows\system32\SettingMonitor.dll
2016-04-13 11:44:24 ----A---- C:\windows\system32\AppXDeploymentExtensions.dll
2016-04-13 11:44:23 ----A---- C:\windows\SYSWOW64\themecpl.dll
2016-04-13 11:44:23 ----A---- C:\windows\SYSWOW64\hgcpl.dll
2016-04-13 11:44:22 ----A---- C:\windows\SYSWOW64\usercpl.dll
2016-04-13 11:44:22 ----A---- C:\windows\SYSWOW64\stobject.dll
2016-04-13 11:44:22 ----A---- C:\windows\SYSWOW64\SettingSyncHost.exe
2016-04-13 11:44:21 ----A---- C:\windows\SYSWOW64\SettingMonitor.dll
2016-04-13 11:44:17 ----A---- C:\windows\system32\AppXDeploymentServer.dll
2016-04-13 11:43:51 ----A---- C:\windows\system32\workfolderssvc.dll
2016-04-13 11:43:50 ----A---- C:\windows\system32\WorkfoldersControl.dll
2016-04-13 11:43:47 ----A---- C:\windows\SYSWOW64\msorcl32.dll
2016-04-13 11:43:47 ----A---- C:\windows\SYSWOW64\KernelBase.dll
2016-04-13 11:43:46 ----A---- C:\windows\SYSWOW64\mtxoci.dll
2016-04-13 11:43:46 ----A---- C:\windows\system32\winresume.exe
2016-04-13 11:43:46 ----A---- C:\windows\system32\winload.exe
2016-04-13 11:43:46 ----A---- C:\windows\system32\ntoskrnl.exe
2016-04-13 11:43:46 ----A---- C:\windows\system32\mtxoci.dll
2016-04-13 11:43:45 ----A---- C:\windows\system32\KernelBase.dll
2016-04-13 11:43:42 ----A---- C:\windows\system32\drivers\vpci.sys
2016-04-13 11:43:42 ----A---- C:\windows\system32\drivers\storport.sys
2016-04-13 11:43:41 ----A---- C:\windows\SYSWOW64\dhcpsapi.dll
2016-04-13 11:43:41 ----A---- C:\windows\system32\dhcpsapi.dll
2016-04-13 11:43:38 ----A---- C:\windows\SYSWOW64\storagewmi.dll
2016-04-13 11:43:38 ----A---- C:\windows\system32\storagewmi.dll
2016-04-13 11:43:34 ----A---- C:\windows\system32\wbengine.exe
2016-04-13 11:43:33 ----A---- C:\windows\system32\WindowsAnytimeUpgradeui.exe
2016-04-13 11:43:33 ----A---- C:\windows\system32\drivers\disk.sys
2016-04-13 10:25:25 ----A---- C:\windows\SYSWOW64\FWPUCLNT.DLL
2016-04-13 10:25:25 ----A---- C:\windows\system32\nshwfp.dll
2016-04-13 10:25:25 ----A---- C:\windows\system32\IKEEXT.DLL
2016-04-13 10:25:25 ----A---- C:\windows\system32\FWPUCLNT.DLL
2016-04-13 10:25:25 ----A---- C:\windows\system32\BFE.DLL
2016-04-13 10:25:24 ----A---- C:\windows\SYSWOW64\nshwfp.dll
2016-04-13 10:25:20 ----A---- C:\windows\system32\drivers\vhdmp.sys
2016-04-13 10:25:17 ----A---- C:\windows\system32\drivers\volsnap.sys
2016-04-13 08:05:39 ----A---- C:\windows\system32\mshtml.dll
2016-04-13 08:05:37 ----A---- C:\windows\SYSWOW64\mshtml.dll
2016-04-13 08:05:34 ----A---- C:\windows\system32\ieframe.dll
2016-04-13 08:05:32 ----A---- C:\windows\SYSWOW64\ieframe.dll
2016-04-13 08:05:31 ----A---- C:\windows\SYSWOW64\iertutil.dll
2016-04-13 08:05:31 ----A---- C:\windows\system32\iertutil.dll
2016-04-13 08:05:30 ----A---- C:\windows\SYSWOW64\iedkcs32.dll
2016-04-13 08:05:30 ----A---- C:\windows\system32\wininet.dll
2016-04-13 08:05:30 ----A---- C:\windows\system32\jscript9.dll
2016-04-13 08:05:30 ----A---- C:\windows\system32\iedkcs32.dll
2016-04-13 08:05:29 ----A---- C:\windows\SYSWOW64\wininet.dll
2016-04-13 08:05:29 ----A---- C:\windows\system32\ie4uinit.exe
2016-04-13 08:05:28 ----A---- C:\windows\SYSWOW64\msfeeds.dll
2016-04-13 08:05:28 ----A---- C:\windows\system32\urlmon.dll
2016-04-13 08:05:28 ----A---- C:\windows\system32\msfeeds.dll
2016-04-13 08:05:27 ----A---- C:\windows\SYSWOW64\urlmon.dll
2016-04-13 08:05:26 ----A---- C:\windows\SYSWOW64\dxtrans.dll
2016-04-13 08:05:26 ----A---- C:\windows\system32\iepeers.dll
2016-04-13 08:05:26 ----A---- C:\windows\system32\dxtrans.dll
2016-04-13 08:05:25 ----A---- C:\windows\SYSWOW64\webcheck.dll
2016-04-13 08:05:25 ----A---- C:\windows\SYSWOW64\jscript9.dll
2016-04-13 08:05:25 ----A---- C:\windows\SYSWOW64\iepeers.dll
2016-04-13 08:05:25 ----A---- C:\windows\system32\webcheck.dll
2016-04-13 08:05:24 ----A---- C:\windows\SYSWOW64\vbscript.dll
2016-04-13 08:05:24 ----A---- C:\windows\SYSWOW64\jscript.dll
2016-04-13 08:05:24 ----A---- C:\windows\SYSWOW64\inetcomm.dll
2016-04-13 08:05:24 ----A---- C:\windows\system32\vbscript.dll
2016-04-13 08:05:24 ----A---- C:\windows\system32\mshtmled.dll
2016-04-13 08:05:24 ----A---- C:\windows\system32\jscript.dll
2016-04-13 08:05:24 ----A---- C:\windows\system32\inetcomm.dll
2016-04-13 08:05:24 ----A---- C:\windows\system32\ieapfltr.dll
2016-04-13 08:05:23 ----A---- C:\windows\SYSWOW64\ieapfltr.dll
2016-04-13 08:04:01 ----A---- C:\windows\SYSWOW64\msxml3.dll
2016-04-13 08:04:01 ----A---- C:\windows\system32\msxml3.dll
2016-04-13 08:03:59 ----A---- C:\windows\SYSWOW64\ole32.dll
2016-04-13 08:03:59 ----A---- C:\windows\system32\ole32.dll
2016-04-13 08:03:54 ----A---- C:\windows\SYSWOW64\certcli.dll
2016-04-13 08:03:54 ----A---- C:\windows\system32\samsrv.dll
2016-04-13 08:03:54 ----A---- C:\windows\system32\lsasrv.dll
2016-04-13 08:03:54 ----A---- C:\windows\system32\drivers\mrxsmb20.sys
2016-04-13 08:03:54 ----A---- C:\windows\system32\drivers\mrxsmb10.sys
2016-04-13 08:03:54 ----A---- C:\windows\system32\drivers\cng.sys
2016-04-13 08:03:53 ----A---- C:\windows\system32\drivers\mrxsmb.sys
2016-04-13 08:03:52 ----A---- C:\windows\system32\samlib.dll
2016-04-13 08:03:51 ----A---- C:\windows\SYSWOW64\samlib.dll
2016-04-13 08:03:50 ----A---- C:\windows\system32\certcli.dll
2016-04-13 08:03:43 ----A---- C:\windows\system32\basesrv.dll
2016-04-13 08:03:37 ----A---- C:\windows\system32\win32k.sys
2016-04-11 16:21:25 ----D---- C:\Users\eva\AppData\Roaming\PhotoFiltre 7
2016-04-11 16:21:20 ----D---- C:\Program Files (x86)\PhotoFiltre 7
2016-04-11 12:56:39 ----D---- C:\ProgramData\Razer
2016-04-07 16:37:50 ----D---- C:\Program Files\CPUID
2016-04-01 15:55:24 ----SHD---- C:\Config.Msi
2016-03-20 21:04:27 ----A---- C:\windows\SYSWOW64\psfind.dll
2016-03-20 21:00:48 ----D---- C:\Program Files (x86)\THQ
======List of files/folders modified in the last 1 month======
2016-04-19 22:41:03 ----D---- C:\Program Files\trend micro
2016-04-19 22:00:00 ----D---- C:\windows\system32\sru
2016-04-19 19:59:04 ----D---- C:\windows\Temp
2016-04-19 19:42:43 ----D---- C:\Users\eva\AppData\Roaming\TS3Client
2016-04-19 19:26:57 ----D---- C:\windows\SoftwareDistribution
2016-04-19 19:25:45 ----AD---- C:\Windows
2016-04-19 18:37:01 ----D---- C:\windows\Microsoft.NET
2016-04-19 17:55:55 ----D---- C:\windows\Inf
2016-04-19 17:55:51 ----D---- C:\windows\debug
2016-04-19 14:54:14 ----RAD---- C:\windows\System32
2016-04-19 14:54:14 ----A---- C:\windows\system32\PerfStringBackup.INI
2016-04-19 06:25:43 ----HD---- C:\ProgramData
2016-04-19 06:22:39 ----D---- C:\AdwCleaner
2016-04-19 02:34:53 ----D---- C:\windows\system32\config
2016-04-18 19:28:25 ----D---- C:\windows\system32\NDF
2016-04-18 19:03:33 ----D---- C:\Program Files (x86)\Hi-Rez Studios
2016-04-18 19:02:17 ----D---- C:\ProgramData\Hi-Rez Studios
2016-04-18 19:02:09 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2016-04-18 19:01:59 ----SHD---- C:\System Volume Information
2016-04-18 18:57:06 ----D---- C:\Users\eva\AppData\Roaming\uTorrent
2016-04-18 12:08:13 ----D---- C:\windows\WinSxS
2016-04-18 12:06:25 ----D---- C:\windows\system32\drivers
2016-04-16 20:16:20 ----D---- C:\windows\rescache
2016-04-16 20:00:39 ----D---- C:\windows\CbsTemp
2016-04-16 20:00:15 ----RSD---- C:\windows\assembly
2016-04-16 19:59:31 ----D---- C:\windows\apppatch
2016-04-16 19:59:17 ----D---- C:\windows\SysWOW64
2016-04-14 21:47:50 ----D---- C:\windows\SYSWOW64\en-US
2016-04-14 21:47:50 ----D---- C:\windows\SYSWOW64\cs-CZ
2016-04-14 21:47:50 ----D---- C:\windows\system32\en-US
2016-04-14 21:47:50 ----D---- C:\windows\system32\cs-CZ
2016-04-14 21:47:50 ----D---- C:\windows\system32\appraiser
2016-04-14 21:47:49 ----RD---- C:\windows\ToastData
2016-04-14 21:47:48 ----D---- C:\windows\system32\wbem
2016-04-14 21:47:46 ----D---- C:\windows\system32\Boot
2016-04-14 21:47:43 ----D---- C:\Program Files\Internet Explorer
2016-04-14 21:47:43 ----D---- C:\Program Files (x86)\Internet Explorer
2016-04-14 21:47:39 ----D---- C:\windows\system32\DriverStore
2016-04-14 21:44:34 ----D---- C:\windows\system32\MRT
2016-04-14 21:35:25 ----A---- C:\windows\system32\MRT.exe
2016-04-14 14:25:23 ----HD---- C:\Program Files\WindowsApps
2016-04-14 14:25:23 ----D---- C:\windows\AppReadiness
2016-04-13 10:20:58 ----D---- C:\windows\system32\catroot2
2016-04-11 16:54:29 ----D---- C:\Users\eva\AppData\Roaming\Samsung
2016-04-11 16:21:20 ----RD---- C:\Program Files (x86)
2016-04-11 13:11:52 ----SHD---- C:\windows\Installer
2016-04-07 16:37:50 ----RD---- C:\Program Files
2016-04-05 23:53:01 ----A---- C:\windows\SYSWOW64\FlashPlayerApp.exe
2016-03-27 19:49:11 ----SD---- C:\windows\SYSWOW64\GWX
2016-03-27 19:49:11 ----SD---- C:\windows\system32\GWX
2016-03-25 08:23:33 ----D---- C:\windows\system32\drivers\en-US
2016-03-25 08:23:33 ----D---- C:\windows\system32\drivers\cs-CZ
2016-03-22 07:48:30 ----D---- C:\windows\Logs
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswRvrt;avast! Revert; C:\windows\system32\drivers\aswRvrt.sys [2015-09-01 65224]
R0 aswVmm;avast! VM Monitor; C:\windows\system32\drivers\aswVmm.sys [2015-09-01 274808]
R0 MBI;@oem10.inf,%MBI.SVCDESC%;Intel(R) Sideband Fabric Device Service; C:\windows\System32\drivers\MBI.sys [2013-10-10 29464]
R0 sptd;sptd; C:\windows\System32\Drivers\sptd.sys [2015-11-17 381608]
R1 aswRdr;aswRdr; C:\windows\system32\drivers\aswRdr2.sys [2015-09-01 93528]
R1 aswSnx;aswSnx; C:\windows\system32\drivers\aswSnx.sys [2016-03-04 1059656]
R1 aswSP;aswSP; C:\windows\system32\drivers\aswSP.sys [2016-03-04 449992]
R1 vwififlt;@%SystemRoot%\System32\drivers\vwififlt.sys,-259; C:\windows\system32\DRIVERS\vwififlt.sys [2013-08-22 71680]
R2 aswHwid;avast! HardwareID; C:\windows\system32\drivers\aswHwid.sys [2015-09-01 28656]
R2 aswMonFlt;aswMonFlt; C:\windows\system32\drivers\aswMonFlt.sys [2015-09-01 90968]
R2 aswStm;aswStm; C:\windows\system32\drivers\aswStm.sys [2015-09-01 150672]
R2 SSPORT;SSPORT; \??\C:\windows\system32\Drivers\SSPORT.sys [2014-05-07 11576]
R3 ACPIVPC;@oem23.inf,%ACPIVPC.SvcDesc%;Lenovo Virtual Power Controller Driver; C:\windows\System32\drivers\AcpiVpc.sys [2014-11-01 35576]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\windows\System32\Drivers\BTHUSB.sys [2014-10-29 81920]
R3 btmhsf;btmhsf; C:\windows\system32\DRIVERS\btmhsf.sys [2013-11-07 1411384]
R3 CnxtHdAudService;@oem11.inf,%UAAFunctionDriverForHdAudio.SvcDesc%;Conexant UAA Function Driver for High Definition Audio Service; C:\windows\system32\drivers\CHDRT64.sys [2014-01-27 1474240]
R3 ibtusb;@oem16.inf,%ibtusb.SVCDESC_IBT%;Intel(R) Wireless Bluetooth(R) 4.0 + HS Adapter; C:\windows\system32\DRIVERS\ibtusb.sys [2014-01-22 149448]
R3 igfx;igfx; C:\windows\system32\DRIVERS\igdkmd64.sys [2014-03-07 3729920]
R3 IntcDAud;@oem4.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\windows\system32\DRIVERS\IntcDAud.sys [2014-03-07 450520]
R3 iwdbus;@oem7.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\windows\System32\drivers\iwdbus.sys [2014-03-01 27032]
R3 NETwNb64;@oem17.inf,___ %NIC_Service_DispName_WINB_64%;___ Intel(R) Wireless Adapter Driver for Windows 8.1 - 64 Bit; C:\windows\system32\DRIVERS\Netwbw02.sys [2014-06-01 3443680]
R3 RSUSBVSTOR;@oem21.inf,%RSUSBVSTOR.SvcDesc%;RtsUVStor.Sys Realtek USB Card Reader; C:\windows\System32\Drivers\RtsUVStor.sys [2013-09-24 329944]
R3 RTL8168;@oem8.inf,%rtl8168.Service.DispName%;Realtek 8168 NT Driver; C:\windows\system32\DRIVERS\Rt630x64.sys [2013-08-15 830680]
R3 SmbDrvI;SmbDrvI; C:\windows\system32\DRIVERS\Smb_driver_Intel.sys [2013-12-24 34544]
R3 SNP2UVC;@oem20.inf,%SERVICE_DISPLAY_NAME%;USB2.0 PC Camera (SNP2UVC); C:\windows\system32\DRIVERS\snp2uvc.sys [2014-01-24 2853400]
R3 SynTP;@oem13.inf,%SynTP.SvcDesc%;Synaptics TouchPad Driver; C:\windows\system32\DRIVERS\SynTP.sys [2013-12-24 532720]
R3 TXEIx64;@oem9.inf,%TEE_SvcDesc%;Intel(R) Trusted Execution Engine Interface ; C:\windows\System32\drivers\TXEIx64.sys [2014-01-15 88592]
R3 vwifimp;@%SystemRoot%\System32\drivers\vwifimp.sys,-261; C:\windows\system32\DRIVERS\vwifimp.sys [2013-08-22 36864]
S3 andnetadb;@oem37.inf,%androidusb.SvcDesc%;ADB Interface DriverNet; C:\windows\System32\Drivers\lgandnetadb.sys []
S3 AndNetDiag;@oem38.inf,%Lgsi.Service.Name%;LGE AndroidNet USB Serial Port; C:\windows\system32\DRIVERS\lgandnetdiag64.sys []
S3 ANDNetModem;@oem41.inf,%LGSI.Service.Name%;LGE AndroidNet USB Modem; C:\windows\system32\DRIVERS\lgandnetmodem64.sys []
S3 axscsidrv;axscsidrv; C:\windows\system32\drivers\axscsidrv.sys [2016-02-16 293888]
S3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\windows\System32\drivers\BthEnum.sys [2014-10-29 53248]
S3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\windows\system32\DRIVERS\BthLEEnum.sys [2014-03-18 226304]
S3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\windows\System32\drivers\bthpan.sys [2015-07-10 118272]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\windows\System32\Drivers\BTHport.sys [2015-05-11 1201664]
S3 btmaux;@oem15.inf,%BTMAUX.ServiceDesc%;Intel Bluetooth Auxiliary Service; C:\windows\system32\DRIVERS\btmaux.sys [2013-11-07 140600]
S3 dtlitescsibus;@oem29.inf,%DTLITESCSIBUS.DeviceDesc%;DAEMON Tools Lite Virtual SCSI Bus; C:\windows\System32\drivers\dtlitescsibus.sys [2015-09-01 30264]
S3 e1iexpress;@net1ic64.inf,%e1iExpress.Service.DispName%;Intel(R) PRO/1000 PCI Express Network Connection Driver I; C:\windows\system32\DRIVERS\e1i63x64.sys [2013-06-18 460288]
S3 HTCAND64;@oem32.inf,%HTCAND64.SvcDesc%;HTC Device Driver; C:\windows\System32\Drivers\ANDROIDUSB.sys [2009-11-02 33736]
S3 htcnprot;@oem36.inf,%NDISPROT_Desc%;HTC NDIS Protocol Driver; C:\windows\system32\DRIVERS\htcnprot.sys [2013-10-17 36928]
S3 intaud_WaveExtensible;@oem6.inf,%INTAUD_WEX.SvcDesc%;Intel WiDi Audio Device; C:\windows\system32\drivers\intelaud.sys [2014-03-01 38296]
S3 NETwNe64;@netwew02.inf,___ %NIC_Service_DispName_WIN8_64%;___ Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows 8 - 64 Bit; C:\windows\system32\DRIVERS\NETwew02.sys [2013-06-18 4649440]
S3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\windows\System32\drivers\rfcomm.sys [2015-01-30 167424]
S3 tap0901;@oem37.inf,%DeviceDescription%;TAP-Windows Adapter V9; C:\windows\system32\DRIVERS\tap0901.sys [2013-08-22 40664]
S3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;USB Video Device (WDM); C:\windows\System32\Drivers\usbvideo.sys [2014-06-21 212736]
S3 VClone;VClone; C:\windows\System32\drivers\VClone.sys [2014-05-03 34816]
S3 VirtualDVD;VirtualDVD; C:\windows\system32\DRIVERS\VirtualDVD.sys []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2015-09-01 146600]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\windows\System32\svchost.exe [2014-10-29 38792]
R2 EvtEng;Intel(R) PROSet/Wireless Event Log; C:\Program Files\Intel\WiFi\bin\EvtEng.exe [2014-01-18 632048]
R2 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2014-03-18 43696]
R2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\windows\system32\igfxCUIService.exe [2014-03-12 282096]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe [2013-07-02 733696]
R2 RegSrvc;Intel(R) PROSet/Wireless Registry Service; C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe [2014-01-18 154864]
R2 Samsung Printer Dianostics Service;Samsung Printer Dianostics Service; C:\windows\syswow64\\spdsvc.exe [2015-11-05 491328]
R2 SAService;Conexant SmartAudio service; C:\windows\system32\SAsrv.exe []
S2 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-12-03 269000]
S2 HiPatchService;Hi-Rez Studios Authenticate and Update Service; C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe [2016-03-14 9728]
S3 cphs;Intel(R) Content Protection HECI Service; C:\windows\SysWow64\IntelCpHeciSvc.exe [2014-03-12 279024]
S3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2012-04-24 169752]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\TXE Components\TCS\SocketHeciServer.exe [2013-07-02 822232]
S4 AxAutoMntSrv;Alcohol Virtual Drive Auto-mount Service; C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe [2012-01-05 75624]
S4 Bluetooth Device Monitor;Bluetooth Device Monitor; C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe [2013-11-07 1186168]
S4 Bluetooth OBEX Service;Bluetooth OBEX Service; C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe [2013-11-07 1161592]
S4 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\windows\System32\svchost.exe [2014-10-29 38792]
S4 CxAudMsg;Conexant Audio Message Service; C:\windows\system32\CxAudMsg64.exe [2013-07-25 206552]
S4 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-01 144200]
S4 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-01 144200]
S4 iBtSiva;Intel Bluetooth Service; C:\Program Files (x86)\Intel\Bluetooth\ibtsiva.exe [2014-01-22 130008]
S4 Lenovo EasyPlus Hotspot;Lenovo EasyPlus Hotspot; C:\Program Files (x86)\Common Files\lenovo\easyplussdk\bin\EPHotspot64.exe [2014-06-03 533760]
S4 Lenovo System Agent Service;Lenovo System Agent Service; C:\Program Files\Lenovo\iMController\SystemAgentService.exe [2014-05-22 584960]
S4 LenovoWiFiHotspotSvr;Lenovo WiFiHotspot Service; C:\Windows\System32\LenovoWiFiHotspotSvr.exe [2014-11-01 198192]
S4 LSCWinService;LSCWinService; C:\Program Files\Lenovo\Lenovo Solution Center\App\LSCWinService.exe [2016-01-08 272864]
S4 LUService;LUService; C:\Program Files (x86)\Lenovo\Lenovo Updates\LUService.exe [2014-04-21 37624]
S4 MyWiFiDHCPDNS;Wireless PAN DHCP Server; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [2014-01-18 284912]
S4 ose64;Office 64 Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2012-12-08 178760]
S4 PassThru Service;Internet Pass-Through Service; C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe [2013-10-17 166912]
S4 PhoneCompanionPusher;Lenovo PhoneCompanionPusher Service; C:\Program Files\Lenovo PhoneCompanion\PhoneCompanionPusher.exe [2014-11-01 288240]
S4 PhoneCompanionVap;Lenovo PhoneCompanionVap Service; C:\Program Files\Lenovo PhoneCompanion\PhoneCompanionVap.exe [2014-11-01 305136]
S4 RichVideo64;Cyberlink RichVideo64 Service(CRVS); C:\Program Files\CyberLink\Shared files\RichVideo64.exe [2012-04-24 390632]
S4 StarWindServiceAE;StarWind AE Service; C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [2009-12-23 370688]
S4 VeriFaceSrv;VeriFaceSrv; C:\Program Files (x86)\Lenovo\Lenovo VeriFace Pro\VfConnectorService.exe [2014-11-01 67856]
-----------------EOF-----------------
- Rudy
- Site Admin

- Příspěvky: 119653
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Divně, zpomaleně/zabržděně chovající se NTB!
Stáhněte OTM: http://oldtimer.geekstogo.com/OTM.exe a uložte na plochu. Spusťte a do levého okna zkopírujte:
a klikněte na >MoveIt!<. Před skenem vxypněte antivir a po něm restartujte PC. Dejte nový log RSIT.:commands
[Purity]
[Emptytemp]
[Emptyflash]
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Divně, zpomaleně/zabržděně chovající se NTB!
Promiňte, ale doteď jsem neměl přístup na Ntb, ale už jdu na to! Díky za váš čas a trpělivost.
Jinak co si myslíte o povolených a zakázaných službách? Avast neustále vytěžuje disk na 100%, hlavně při startu.. Nevim co kontroluje, ale kolikrát zničehonic vytíží disk na 80-100%..
Log z RSITu:
Logfile of random's system information tool 1.10 (written by random/random)
Run by Eva at 2016-04-28 15:59:32
Microsoft Windows 8.1 s aplikací Bing
System drive C: has 222 GB (51%) free of 435 GB
Total RAM: 3979 MB (67% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 15:59:37, on 28. 4. 2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.18123)
Boot mode: Normal
Running processes:
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.EXE
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Eva.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://lenovo13.msn.com/?pc=LCJB
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://lenovo13.msn.com/?pc=LCJB
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe,
O2 - BHO: Lync Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office15\URLREDIR.DLL
O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\PROGRA~2\MICROS~1\Office15\GROOVEEX.DLL
O4 - HKLM\..\Run: [UpdateP2GShortCut] "C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\Lenovo\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\5.0"
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [Wondershare Helper Compact.exe] C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\Run: [AlcoholAutomount] "C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe" -automount
O8 - Extra context menu item: E&xportovat do Microsoft Excelu - res://C:\PROGRA~1\MICROS~1\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do OneNotu - res://C:\PROGRA~1\MICROS~1\Office15\ONBttnIE.dll/105
O9 - Extra button: Odeslat do OneNotu - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do OneNotu - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra button: Volání kliknutím v Lyncu - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O9 - Extra 'Tools' menuitem: Volání kliknutím v Lyncu - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files (x86)\Microsoft Office\Office15\MSOSB.DLL
O18 - Filter hijack: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\windows\System32\alg.exe (file missing)
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: Conexant Audio Message Service (CxAudMsg) - Unknown owner - C:\windows\system32\CxAudMsg64.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\windows\System32\lsass.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\windows\system32\igfxCUIService.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\TXE Components\TCS\SocketHeciServer.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\windows\System32\msdtc.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: Cyberlink RichVideo64 Service(CRVS) (RichVideo64) - Unknown owner - C:\Program Files\CyberLink\Shared files\RichVideo64.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Samsung Printer Dianostics Service - Unknown owner - C:\windows\system32\\spdsvc.exe
O23 - Service: Conexant SmartAudio service (SAService) - Conexant Systems, Inc. - C:\windows\system32\SAsrv.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\windows\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: Adaptér výkonu rozhraní WMI (wmiApSrv) - Unknown owner - C:\windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Zero Configuration Service (ZeroConfigService) - Intel® Corporation - C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
--
End of file - 8778 bytes
======Listing Processes======
wininit.exe
C:\windows\system32\lsass.exe
C:\windows\system32\svchost.exe -k DcomLaunch
C:\windows\system32\svchost.exe -k RPCSS
C:\windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\windows\system32\svchost.exe -k NetworkService
C:\windows\system32\svchost.exe -k netsvcs
C:\windows\system32\svchost.exe -k LocalService
C:\windows\system32\igfxCUIService.exe
C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\windows\system32\WLANExt.exe 823670363792
\??\C:\windows\system32\conhost.exe 0x4
C:\windows\System32\spoolsv.exe
C:\windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\windows\system32\CxAudMsg64.exe
C:\windows\System32\svchost.exe -k utcsvc
"C:\Program Files\Intel\WiFi\bin\EvtEng.exe"
dashost.exe {10a95534-7e75-48d9-86681d4b69c95515}
C:\windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
taskeng.exe {7DE4D65C-A647-4EFB-A0FB-4A89E0B6BF7E}
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
"C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe"
"C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe"
"C:\Program Files\CyberLink\Shared files\RichVideo64.exe"
C:\windows\SysWOW64\\spdsvc.exe
C:\windows\SysWOW64\SAsrv.exe
"C:\Program Files (x86)\Google\Update\1.3.29.5\GoogleCrashHandler.exe"
C:\windows\System32\svchost.exe -k WerSvcGroup
"C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe"
C:\windows\system32\wbem\unsecapp.exe -Embedding
C:\windows\system32\wbem\wmiprvse.exe
C:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\windows\system32\wbem\wmiprvse.exe
C:\windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-84cc98d1-5288-43ff-971b-aaf45b3ee790 -SystemEventPortName:HostProcess-c638fcc0-35b8-41bc-8e0d-3c11717c76ec -IoCancelEventPortName:HostProcess-55828f5d-d6f6-46af-ae1a-4cff0f891a20 -NonStateChangingEventPortName:HostProcess-fd2e2960-e88b-4aac-a6b8-ff43e463d8c4 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:736e15fd-36d6-4373-abf3-8ee0303e50f7 -DeviceGroupId:WudfDefaultDevicePool
C:\windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files (x86)\Google\Update\1.3.29.5\GoogleCrashHandler64.exe"
winlogon.exe
"dwm.exe"
taskhostex.exe
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
C:\windows\Explorer.EXE
igfxEM.exe
igfxHK.exe
igfxTray.exe
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
"C:\Program Files\CONEXANT\ForteConfig\fmapp.exe"
"C:\Windows\System32\rundll32.exe" "C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll",TrayApp
"C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe"
"C:\windows\system32\GWX\GWX.exe"
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
C:\windows\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.EXE"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=crashpad-handler /prefetch:7 --no-rate-limit "--database=C:\Users\eva\AppData\Local\Google\Chrome\User Data\Crashpad" --url=https://clients2.google.com/cr/report --annotation=channel=m --annotation=plat=Win32 --annotation=prod=Chrome --annotation=ver=49.0.2623.112 --handshake-handle=0x160
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=watcher --main-thread-id=4868 --on-initialized-event-handle=636 --parent-handle=640 /prefetch:6
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="4864.0.801456633\1108635100" --supports-dual-gpus=false --gpu-driver-bug-workarounds=3,11,16,25,54 --gpu-vendor-id=0x8086 --gpu-device-id=0x0f31 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=10.18.10.3496 --ignored=" --type=renderer " /prefetch:2
"C:\Program Files\CCleaner\CCleaner.exe" /uac
"C:\Program Files\CCleaner\CCleaner64.exe" /monitor
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,WebFontsIntervention<WebFontsIntervention --disable-features=UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/*CrossDevicePromo/1DaySingleProfile/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/*PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PreRead/Default/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Control50pct/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/SSLCommonNameMismatchHandling/Disabled/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SafeBrowsingUpdateFrequency/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_80/*UMA-Uniformity-Trial-10-Percent/group_09/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_17/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*WebFontsIntervention/Enabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=1 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="4864.10.498060109\5643300" /prefetch:1
"C:\Users\eva\Desktop\RSITx64.exe"
======Scheduled tasks folder======
C:\windows\tasks\Adobe Flash Player Updater.job - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Lync Browser Helper - C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2012-10-01 205416]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-09-01 655480]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~1\Office15\URLREDIR.DLL [2012-10-01 877720]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~1\MICROS~1\Office15\GROOVEEX.DLL [2012-10-01 2322576]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Lync Browser Helper - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2012-10-01 139368]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-09-01 559624]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office15\URLREDIR.DLL [2012-10-01 704664]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~2\MICROS~1\Office15\GROOVEEX.DLL [2012-10-01 1720976]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"cAudioFilterAgent"=C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe [2013-09-05 907480]
"ForteConfig"=C:\Program Files\Conexant\ForteConfig\fmapp.exe [2010-10-26 49056]
"SmartAudio"=C:\Program Files\CONEXANT\SAII\SACpl.exe [2012-06-13 1647616]
"BTMTrayAgent"=C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll [2013-11-07 7818552]
"PhoneCompanion"=C:\Program Files\Lenovo PhoneCompanion\Phone Companion.exe [2014-11-01 836592]
"Energy Manager"=C:\Program Files (x86)\Lenovo\Energy Manager\Energy Manager.exe [2014-11-01 16094704]
"Lenovo Utility"=C:\Program Files (x86)\Lenovo\Energy Manager\Utility.exe [2014-11-01 10841584]
"CDAServer"=C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe [2014-09-08 464608]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2015-08-20 8455960]
"AlcoholAutomount"=C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe [2012-01-05 75624]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"UpdateP2GShortCut"=C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe [2011-12-07 214312]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2016-03-04 6111312]
"Wondershare Helper Compact.exe"=C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [2013-08-26 1989920]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\McNaiAnn]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\VDWFP]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\VisualDiscovery]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"PromptOnSecureDesktop"=0
"ConsentPromptBehaviorAdmin"=0
"SoftwareSASGeneration"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2016-04-28 15:33:48 ----D---- C:\_OTM
2016-04-18 20:47:09 ----D---- C:\rsit
2016-04-13 11:47:50 ----A---- C:\windows\system32\mfmp4srcsnk.dll
2016-04-13 11:47:49 ----A---- C:\windows\SYSWOW64\mfmp4srcsnk.dll
2016-04-13 11:47:47 ----A---- C:\windows\system32\drivers\rasl2tp.sys
2016-04-13 11:47:37 ----A---- C:\windows\system32\appraiser.dll
2016-04-13 11:47:36 ----A---- C:\windows\system32\invagent.dll
2016-04-13 11:47:36 ----A---- C:\windows\system32\generaltel.dll
2016-04-13 11:47:36 ----A---- C:\windows\system32\aepic.dll
2016-04-13 11:47:36 ----A---- C:\windows\system32\aeinv.dll
2016-04-13 11:47:35 ----A---- C:\windows\system32\devinv.dll
2016-04-13 11:47:35 ----A---- C:\windows\system32\CompatTelRunner.exe
2016-04-13 11:47:35 ----A---- C:\windows\system32\acmigration.dll
2016-04-13 11:47:31 ----A---- C:\windows\system32\rpcss.dll
2016-04-13 11:47:29 ----A---- C:\windows\system32\VSSVC.exe
2016-04-13 11:47:26 ----A---- C:\windows\system32\WsmSvc.dll
2016-04-13 11:47:25 ----A---- C:\windows\SYSWOW64\WsmSvc.dll
2016-04-13 11:47:24 ----A---- C:\windows\SYSWOW64\WsmWmiPl.dll
2016-04-13 11:47:24 ----A---- C:\windows\SYSWOW64\WsmAuto.dll
2016-04-13 11:47:24 ----A---- C:\windows\SYSWOW64\WsmAgent.dll
2016-04-13 11:47:24 ----A---- C:\windows\system32\WsmWmiPl.dll
2016-04-13 11:47:24 ----A---- C:\windows\system32\WsmAuto.dll
2016-04-13 11:47:24 ----A---- C:\windows\system32\WsmAgent.dll
2016-04-13 11:47:22 ----A---- C:\windows\system32\drivers\IPMIDrv.sys
2016-04-13 11:47:18 ----A---- C:\windows\SYSWOW64\twinui.dll
2016-04-13 11:46:45 ----A---- C:\windows\system32\twinui.dll
2016-04-13 11:46:08 ----A---- C:\windows\SYSWOW64\shell32.dll
2016-04-13 11:45:16 ----A---- C:\windows\SYSWOW64\explorer.exe
2016-04-13 11:45:12 ----A---- C:\windows\explorer.exe
2016-04-13 11:44:58 ----A---- C:\windows\system32\SystemSettingsAdminFlowUI.dll
2016-04-13 11:44:30 ----A---- C:\windows\system32\shell32.dll
2016-04-13 11:44:29 ----A---- C:\windows\system32\ExplorerFrame.dll
2016-04-13 11:44:28 ----A---- C:\windows\SYSWOW64\ExplorerFrame.dll
2016-04-13 11:44:28 ----A---- C:\windows\system32\SystemSettingsAdminFlows.exe
2016-04-13 11:44:27 ----A---- C:\windows\SYSWOW64\twinui.appcore.dll
2016-04-13 11:44:27 ----A---- C:\windows\system32\twinui.appcore.dll
2016-04-13 11:44:27 ----A---- C:\windows\system32\SettingsHandlers.dll
2016-04-13 11:44:26 ----A---- C:\windows\SYSWOW64\AppxAllUserStore.dll
2016-04-13 11:44:26 ----A---- C:\windows\system32\SettingSyncCore.dll
2016-04-13 11:44:26 ----A---- C:\windows\system32\SettingSync.dll
2016-04-13 11:44:26 ----A---- C:\windows\system32\AppxAllUserStore.dll
2016-04-13 11:44:25 ----A---- C:\windows\SYSWOW64\SettingSyncCore.dll
2016-04-13 11:44:25 ----A---- C:\windows\SYSWOW64\SettingSync.dll
2016-04-13 11:44:25 ----A---- C:\windows\system32\SettingSyncHost.exe
2016-04-13 11:44:25 ----A---- C:\windows\system32\hgcpl.dll
2016-04-13 11:44:24 ----A---- C:\windows\system32\usercpl.dll
2016-04-13 11:44:24 ----A---- C:\windows\system32\themecpl.dll
2016-04-13 11:44:24 ----A---- C:\windows\system32\stobject.dll
2016-04-13 11:44:24 ----A---- C:\windows\system32\SettingMonitor.dll
2016-04-13 11:44:24 ----A---- C:\windows\system32\AppXDeploymentExtensions.dll
2016-04-13 11:44:23 ----A---- C:\windows\SYSWOW64\themecpl.dll
2016-04-13 11:44:23 ----A---- C:\windows\SYSWOW64\hgcpl.dll
2016-04-13 11:44:22 ----A---- C:\windows\SYSWOW64\usercpl.dll
2016-04-13 11:44:22 ----A---- C:\windows\SYSWOW64\stobject.dll
2016-04-13 11:44:22 ----A---- C:\windows\SYSWOW64\SettingSyncHost.exe
2016-04-13 11:44:21 ----A---- C:\windows\SYSWOW64\SettingMonitor.dll
2016-04-13 11:44:17 ----A---- C:\windows\system32\AppXDeploymentServer.dll
2016-04-13 11:43:51 ----A---- C:\windows\system32\workfolderssvc.dll
2016-04-13 11:43:50 ----A---- C:\windows\system32\WorkfoldersControl.dll
2016-04-13 11:43:47 ----A---- C:\windows\SYSWOW64\msorcl32.dll
2016-04-13 11:43:47 ----A---- C:\windows\SYSWOW64\KernelBase.dll
2016-04-13 11:43:46 ----A---- C:\windows\SYSWOW64\mtxoci.dll
2016-04-13 11:43:46 ----A---- C:\windows\system32\winresume.exe
2016-04-13 11:43:46 ----A---- C:\windows\system32\winload.exe
2016-04-13 11:43:46 ----A---- C:\windows\system32\ntoskrnl.exe
2016-04-13 11:43:46 ----A---- C:\windows\system32\mtxoci.dll
2016-04-13 11:43:45 ----A---- C:\windows\system32\KernelBase.dll
2016-04-13 11:43:42 ----A---- C:\windows\system32\drivers\vpci.sys
2016-04-13 11:43:42 ----A---- C:\windows\system32\drivers\storport.sys
2016-04-13 11:43:41 ----A---- C:\windows\SYSWOW64\dhcpsapi.dll
2016-04-13 11:43:41 ----A---- C:\windows\system32\dhcpsapi.dll
2016-04-13 11:43:38 ----A---- C:\windows\SYSWOW64\storagewmi.dll
2016-04-13 11:43:38 ----A---- C:\windows\system32\storagewmi.dll
2016-04-13 11:43:34 ----A---- C:\windows\system32\wbengine.exe
2016-04-13 11:43:33 ----A---- C:\windows\system32\WindowsAnytimeUpgradeui.exe
2016-04-13 11:43:33 ----A---- C:\windows\system32\drivers\disk.sys
2016-04-13 10:25:25 ----A---- C:\windows\SYSWOW64\FWPUCLNT.DLL
2016-04-13 10:25:25 ----A---- C:\windows\system32\nshwfp.dll
2016-04-13 10:25:25 ----A---- C:\windows\system32\IKEEXT.DLL
2016-04-13 10:25:25 ----A---- C:\windows\system32\FWPUCLNT.DLL
2016-04-13 10:25:25 ----A---- C:\windows\system32\BFE.DLL
2016-04-13 10:25:24 ----A---- C:\windows\SYSWOW64\nshwfp.dll
2016-04-13 10:25:20 ----A---- C:\windows\system32\drivers\vhdmp.sys
2016-04-13 10:25:17 ----A---- C:\windows\system32\drivers\volsnap.sys
2016-04-13 08:05:39 ----A---- C:\windows\system32\mshtml.dll
2016-04-13 08:05:37 ----A---- C:\windows\SYSWOW64\mshtml.dll
2016-04-13 08:05:34 ----A---- C:\windows\system32\ieframe.dll
2016-04-13 08:05:32 ----A---- C:\windows\SYSWOW64\ieframe.dll
2016-04-13 08:05:31 ----A---- C:\windows\SYSWOW64\iertutil.dll
2016-04-13 08:05:31 ----A---- C:\windows\system32\iertutil.dll
2016-04-13 08:05:30 ----A---- C:\windows\SYSWOW64\iedkcs32.dll
2016-04-13 08:05:30 ----A---- C:\windows\system32\wininet.dll
2016-04-13 08:05:30 ----A---- C:\windows\system32\jscript9.dll
2016-04-13 08:05:30 ----A---- C:\windows\system32\iedkcs32.dll
2016-04-13 08:05:29 ----A---- C:\windows\SYSWOW64\wininet.dll
2016-04-13 08:05:29 ----A---- C:\windows\system32\ie4uinit.exe
2016-04-13 08:05:28 ----A---- C:\windows\SYSWOW64\msfeeds.dll
2016-04-13 08:05:28 ----A---- C:\windows\system32\urlmon.dll
2016-04-13 08:05:28 ----A---- C:\windows\system32\msfeeds.dll
2016-04-13 08:05:27 ----A---- C:\windows\SYSWOW64\urlmon.dll
2016-04-13 08:05:26 ----A---- C:\windows\SYSWOW64\dxtrans.dll
2016-04-13 08:05:26 ----A---- C:\windows\system32\iepeers.dll
2016-04-13 08:05:26 ----A---- C:\windows\system32\dxtrans.dll
2016-04-13 08:05:25 ----A---- C:\windows\SYSWOW64\webcheck.dll
2016-04-13 08:05:25 ----A---- C:\windows\SYSWOW64\jscript9.dll
2016-04-13 08:05:25 ----A---- C:\windows\SYSWOW64\iepeers.dll
2016-04-13 08:05:25 ----A---- C:\windows\system32\webcheck.dll
2016-04-13 08:05:24 ----A---- C:\windows\SYSWOW64\vbscript.dll
2016-04-13 08:05:24 ----A---- C:\windows\SYSWOW64\jscript.dll
2016-04-13 08:05:24 ----A---- C:\windows\SYSWOW64\inetcomm.dll
2016-04-13 08:05:24 ----A---- C:\windows\system32\vbscript.dll
2016-04-13 08:05:24 ----A---- C:\windows\system32\mshtmled.dll
2016-04-13 08:05:24 ----A---- C:\windows\system32\jscript.dll
2016-04-13 08:05:24 ----A---- C:\windows\system32\inetcomm.dll
2016-04-13 08:05:24 ----A---- C:\windows\system32\ieapfltr.dll
2016-04-13 08:05:23 ----A---- C:\windows\SYSWOW64\ieapfltr.dll
2016-04-13 08:04:01 ----A---- C:\windows\SYSWOW64\msxml3.dll
2016-04-13 08:04:01 ----A---- C:\windows\system32\msxml3.dll
2016-04-13 08:03:59 ----A---- C:\windows\SYSWOW64\ole32.dll
2016-04-13 08:03:59 ----A---- C:\windows\system32\ole32.dll
2016-04-13 08:03:54 ----A---- C:\windows\SYSWOW64\certcli.dll
2016-04-13 08:03:54 ----A---- C:\windows\system32\samsrv.dll
2016-04-13 08:03:54 ----A---- C:\windows\system32\lsasrv.dll
2016-04-13 08:03:54 ----A---- C:\windows\system32\drivers\mrxsmb20.sys
2016-04-13 08:03:54 ----A---- C:\windows\system32\drivers\mrxsmb10.sys
2016-04-13 08:03:54 ----A---- C:\windows\system32\drivers\cng.sys
2016-04-13 08:03:53 ----A---- C:\windows\system32\drivers\mrxsmb.sys
2016-04-13 08:03:52 ----A---- C:\windows\system32\samlib.dll
2016-04-13 08:03:51 ----A---- C:\windows\SYSWOW64\samlib.dll
2016-04-13 08:03:50 ----A---- C:\windows\system32\certcli.dll
2016-04-13 08:03:43 ----A---- C:\windows\system32\basesrv.dll
2016-04-13 08:03:37 ----A---- C:\windows\system32\win32k.sys
2016-04-11 16:21:25 ----D---- C:\Users\eva\AppData\Roaming\PhotoFiltre 7
2016-04-11 16:21:20 ----D---- C:\Program Files (x86)\PhotoFiltre 7
2016-04-11 12:56:39 ----D---- C:\ProgramData\Razer
2016-04-07 16:37:50 ----D---- C:\Program Files\CPUID
2016-04-01 15:55:24 ----SHD---- C:\Config.Msi
======List of files/folders modified in the last 1 month======
2016-04-28 15:59:35 ----D---- C:\Program Files\trend micro
2016-04-28 15:59:28 ----D---- C:\windows\Temp
2016-04-28 15:59:28 ----D---- C:\windows\debug
2016-04-28 15:59:28 ----AD---- C:\Windows
2016-04-28 15:58:53 ----D---- C:\windows\system32\sru
2016-04-28 09:46:19 ----D---- C:\windows\Microsoft.NET
2016-04-28 06:12:02 ----HD---- C:\Program Files\WindowsApps
2016-04-28 06:12:02 ----D---- C:\windows\AppReadiness
2016-04-28 06:06:35 ----D---- C:\Users\eva\AppData\Roaming\TS3Client
2016-04-28 00:50:15 ----D---- C:\windows\Inf
2016-04-27 08:32:20 ----SHD---- C:\System Volume Information
2016-04-24 16:38:30 ----D---- C:\windows\system32\config
2016-04-23 20:41:26 ----RAD---- C:\windows\System32
2016-04-23 20:41:26 ----A---- C:\windows\system32\PerfStringBackup.INI
2016-04-19 19:26:57 ----D---- C:\windows\SoftwareDistribution
2016-04-19 06:25:43 ----HD---- C:\ProgramData
2016-04-19 06:22:39 ----D---- C:\AdwCleaner
2016-04-18 19:28:25 ----D---- C:\windows\system32\NDF
2016-04-18 19:03:33 ----D---- C:\Program Files (x86)\Hi-Rez Studios
2016-04-18 19:02:17 ----D---- C:\ProgramData\Hi-Rez Studios
2016-04-18 19:02:09 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2016-04-18 18:57:06 ----D---- C:\Users\eva\AppData\Roaming\uTorrent
2016-04-18 12:08:13 ----D---- C:\windows\WinSxS
2016-04-18 12:06:25 ----D---- C:\windows\system32\drivers
2016-04-16 20:16:20 ----D---- C:\windows\rescache
2016-04-16 20:00:39 ----D---- C:\windows\CbsTemp
2016-04-16 20:00:15 ----RSD---- C:\windows\assembly
2016-04-16 19:59:31 ----D---- C:\windows\apppatch
2016-04-16 19:59:17 ----D---- C:\windows\SysWOW64
2016-04-14 21:47:50 ----D---- C:\windows\SYSWOW64\en-US
2016-04-14 21:47:50 ----D---- C:\windows\SYSWOW64\cs-CZ
2016-04-14 21:47:50 ----D---- C:\windows\system32\en-US
2016-04-14 21:47:50 ----D---- C:\windows\system32\cs-CZ
2016-04-14 21:47:50 ----D---- C:\windows\system32\appraiser
2016-04-14 21:47:49 ----RD---- C:\windows\ToastData
2016-04-14 21:47:48 ----D---- C:\windows\system32\wbem
2016-04-14 21:47:46 ----D---- C:\windows\system32\Boot
2016-04-14 21:47:43 ----D---- C:\Program Files\Internet Explorer
2016-04-14 21:47:43 ----D---- C:\Program Files (x86)\Internet Explorer
2016-04-14 21:47:39 ----D---- C:\windows\system32\DriverStore
2016-04-14 21:44:34 ----D---- C:\windows\system32\MRT
2016-04-14 21:35:25 ----A---- C:\windows\system32\MRT.exe
2016-04-13 10:20:58 ----D---- C:\windows\system32\catroot2
2016-04-11 16:54:29 ----D---- C:\Users\eva\AppData\Roaming\Samsung
2016-04-11 16:21:20 ----RD---- C:\Program Files (x86)
2016-04-11 13:11:52 ----SHD---- C:\windows\Installer
2016-04-07 16:37:50 ----RD---- C:\Program Files
2016-04-05 23:53:01 ----A---- C:\windows\SYSWOW64\FlashPlayerApp.exe
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswRvrt;avast! Revert; C:\windows\system32\drivers\aswRvrt.sys [2015-09-01 65224]
R0 aswVmm;avast! VM Monitor; C:\windows\system32\drivers\aswVmm.sys [2015-09-01 274808]
R0 MBI;@oem10.inf,%MBI.SVCDESC%;Intel(R) Sideband Fabric Device Service; C:\windows\System32\drivers\MBI.sys [2013-10-10 29464]
R0 sptd;sptd; C:\windows\System32\Drivers\sptd.sys [2015-11-17 381608]
R1 aswRdr;aswRdr; C:\windows\system32\drivers\aswRdr2.sys [2015-09-01 93528]
R1 aswSnx;aswSnx; C:\windows\system32\drivers\aswSnx.sys [2016-03-04 1059656]
R1 aswSP;aswSP; C:\windows\system32\drivers\aswSP.sys [2016-03-04 449992]
R1 vwififlt;@%SystemRoot%\System32\drivers\vwififlt.sys,-259; C:\windows\system32\DRIVERS\vwififlt.sys [2013-08-22 71680]
R2 aswHwid;avast! HardwareID; C:\windows\system32\drivers\aswHwid.sys [2015-09-01 28656]
R2 aswMonFlt;aswMonFlt; C:\windows\system32\drivers\aswMonFlt.sys [2015-09-01 90968]
R2 aswStm;aswStm; C:\windows\system32\drivers\aswStm.sys [2015-09-01 150672]
R2 SSPORT;SSPORT; \??\C:\windows\system32\Drivers\SSPORT.sys [2014-05-07 11576]
R3 ACPIVPC;@oem23.inf,%ACPIVPC.SvcDesc%;Lenovo Virtual Power Controller Driver; C:\windows\System32\drivers\AcpiVpc.sys [2014-11-01 35576]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\windows\System32\Drivers\BTHUSB.sys [2014-10-29 81920]
R3 btmhsf;btmhsf; C:\windows\system32\DRIVERS\btmhsf.sys [2013-11-07 1411384]
R3 CnxtHdAudService;@oem11.inf,%UAAFunctionDriverForHdAudio.SvcDesc%;Conexant UAA Function Driver for High Definition Audio Service; C:\windows\system32\drivers\CHDRT64.sys [2014-01-27 1474240]
R3 ibtusb;@oem16.inf,%ibtusb.SVCDESC_IBT%;Intel(R) Wireless Bluetooth(R) 4.0 + HS Adapter; C:\windows\system32\DRIVERS\ibtusb.sys [2014-01-22 149448]
R3 igfx;igfx; C:\windows\system32\DRIVERS\igdkmd64.sys [2014-03-07 3729920]
R3 IntcDAud;@oem4.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\windows\system32\DRIVERS\IntcDAud.sys [2014-03-07 450520]
R3 iwdbus;@oem7.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\windows\System32\drivers\iwdbus.sys [2014-03-01 27032]
R3 NETwNb64;@oem17.inf,___ %NIC_Service_DispName_WINB_64%;___ Intel(R) Wireless Adapter Driver for Windows 8.1 - 64 Bit; C:\windows\system32\DRIVERS\Netwbw02.sys [2014-06-01 3443680]
R3 RSUSBVSTOR;@oem21.inf,%RSUSBVSTOR.SvcDesc%;RtsUVStor.Sys Realtek USB Card Reader; C:\windows\System32\Drivers\RtsUVStor.sys [2013-09-24 329944]
R3 RTL8168;@oem8.inf,%rtl8168.Service.DispName%;Realtek 8168 NT Driver; C:\windows\system32\DRIVERS\Rt630x64.sys [2013-08-15 830680]
R3 SmbDrvI;SmbDrvI; C:\windows\system32\DRIVERS\Smb_driver_Intel.sys [2013-12-24 34544]
R3 SNP2UVC;@oem20.inf,%SERVICE_DISPLAY_NAME%;USB2.0 PC Camera (SNP2UVC); C:\windows\system32\DRIVERS\snp2uvc.sys [2014-01-24 2853400]
R3 SynTP;@oem13.inf,%SynTP.SvcDesc%;Synaptics TouchPad Driver; C:\windows\system32\DRIVERS\SynTP.sys [2013-12-24 532720]
R3 TXEIx64;@oem9.inf,%TEE_SvcDesc%;Intel(R) Trusted Execution Engine Interface ; C:\windows\System32\drivers\TXEIx64.sys [2014-01-15 88592]
R3 vwifimp;@%SystemRoot%\System32\drivers\vwifimp.sys,-261; C:\windows\system32\DRIVERS\vwifimp.sys [2013-08-22 36864]
S3 andnetadb;@oem37.inf,%androidusb.SvcDesc%;ADB Interface DriverNet; C:\windows\System32\Drivers\lgandnetadb.sys []
S3 AndNetDiag;@oem38.inf,%Lgsi.Service.Name%;LGE AndroidNet USB Serial Port; C:\windows\system32\DRIVERS\lgandnetdiag64.sys []
S3 ANDNetModem;@oem41.inf,%LGSI.Service.Name%;LGE AndroidNet USB Modem; C:\windows\system32\DRIVERS\lgandnetmodem64.sys []
S3 axscsidrv;axscsidrv; C:\windows\system32\drivers\axscsidrv.sys [2016-02-16 293888]
S3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\windows\System32\drivers\BthEnum.sys [2014-10-29 53248]
S3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\windows\system32\DRIVERS\BthLEEnum.sys [2014-03-18 226304]
S3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\windows\System32\drivers\bthpan.sys [2015-07-10 118272]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\windows\System32\Drivers\BTHport.sys [2015-05-11 1201664]
S3 btmaux;@oem15.inf,%BTMAUX.ServiceDesc%;Intel Bluetooth Auxiliary Service; C:\windows\system32\DRIVERS\btmaux.sys [2013-11-07 140600]
S3 dtlitescsibus;@oem29.inf,%DTLITESCSIBUS.DeviceDesc%;DAEMON Tools Lite Virtual SCSI Bus; C:\windows\System32\drivers\dtlitescsibus.sys [2015-09-01 30264]
S3 e1iexpress;@net1ic64.inf,%e1iExpress.Service.DispName%;Intel(R) PRO/1000 PCI Express Network Connection Driver I; C:\windows\system32\DRIVERS\e1i63x64.sys [2013-06-18 460288]
S3 HTCAND64;@oem32.inf,%HTCAND64.SvcDesc%;HTC Device Driver; C:\windows\System32\Drivers\ANDROIDUSB.sys [2009-11-02 33736]
S3 htcnprot;@oem36.inf,%NDISPROT_Desc%;HTC NDIS Protocol Driver; C:\windows\system32\DRIVERS\htcnprot.sys [2013-10-17 36928]
S3 intaud_WaveExtensible;@oem6.inf,%INTAUD_WEX.SvcDesc%;Intel WiDi Audio Device; C:\windows\system32\drivers\intelaud.sys [2014-03-01 38296]
S3 NETwNe64;@netwew02.inf,___ %NIC_Service_DispName_WIN8_64%;___ Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows 8 - 64 Bit; C:\windows\system32\DRIVERS\NETwew02.sys [2013-06-18 4649440]
S3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\windows\System32\drivers\rfcomm.sys [2015-01-30 167424]
S3 tap0901;@oem37.inf,%DeviceDescription%;TAP-Windows Adapter V9; C:\windows\system32\DRIVERS\tap0901.sys [2013-08-22 40664]
S3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;USB Video Device (WDM); C:\windows\System32\Drivers\usbvideo.sys [2014-06-21 212736]
S3 VClone;VClone; C:\windows\System32\drivers\VClone.sys [2014-05-03 34816]
S3 VirtualDVD;VirtualDVD; C:\windows\system32\DRIVERS\VirtualDVD.sys []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2015-09-01 146600]
R2 CxAudMsg;Conexant Audio Message Service; C:\windows\system32\CxAudMsg64.exe [2013-07-25 206552]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\windows\System32\svchost.exe [2014-10-29 38792]
R2 EvtEng;Intel(R) PROSet/Wireless Event Log; C:\Program Files\Intel\WiFi\bin\EvtEng.exe [2014-01-18 632048]
R2 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2014-03-18 43696]
R2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\windows\system32\igfxCUIService.exe [2014-03-12 282096]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe [2013-07-02 733696]
R2 RegSrvc;Intel(R) PROSet/Wireless Registry Service; C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe [2014-01-18 154864]
R2 RichVideo64;Cyberlink RichVideo64 Service(CRVS); C:\Program Files\CyberLink\Shared files\RichVideo64.exe [2012-04-24 390632]
R2 Samsung Printer Dianostics Service;Samsung Printer Dianostics Service; C:\windows\syswow64\\spdsvc.exe [2015-11-05 491328]
R2 SAService;Conexant SmartAudio service; C:\windows\system32\SAsrv.exe []
S2 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-12-03 269000]
S3 cphs;Intel(R) Content Protection HECI Service; C:\windows\SysWow64\IntelCpHeciSvc.exe [2014-03-12 279024]
S3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2012-04-24 169752]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\TXE Components\TCS\SocketHeciServer.exe [2013-07-02 822232]
S4 AxAutoMntSrv;Alcohol Virtual Drive Auto-mount Service; C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe [2012-01-05 75624]
S4 Bluetooth Device Monitor;Bluetooth Device Monitor; C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe [2013-11-07 1186168]
S4 Bluetooth OBEX Service;Bluetooth OBEX Service; C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe [2013-11-07 1161592]
S4 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\windows\System32\svchost.exe [2014-10-29 38792]
S4 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-01 144200]
S4 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-01 144200]
S4 HiPatchService;Hi-Rez Studios Authenticate and Update Service; C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe [2016-03-14 9728]
S4 iBtSiva;Intel Bluetooth Service; C:\Program Files (x86)\Intel\Bluetooth\ibtsiva.exe [2014-01-22 130008]
S4 Lenovo EasyPlus Hotspot;Lenovo EasyPlus Hotspot; C:\Program Files (x86)\Common Files\lenovo\easyplussdk\bin\EPHotspot64.exe [2014-06-03 533760]
S4 Lenovo System Agent Service;Lenovo System Agent Service; C:\Program Files\Lenovo\iMController\SystemAgentService.exe [2014-05-22 584960]
S4 LenovoWiFiHotspotSvr;Lenovo WiFiHotspot Service; C:\Windows\System32\LenovoWiFiHotspotSvr.exe [2014-11-01 198192]
S4 LSCWinService;LSCWinService; C:\Program Files\Lenovo\Lenovo Solution Center\App\LSCWinService.exe [2016-01-08 272864]
S4 LUService;LUService; C:\Program Files (x86)\Lenovo\Lenovo Updates\LUService.exe [2014-04-21 37624]
S4 MyWiFiDHCPDNS;Wireless PAN DHCP Server; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [2014-01-18 284912]
S4 ose64;Office 64 Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2012-12-08 178760]
S4 PassThru Service;Internet Pass-Through Service; C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe [2013-10-17 166912]
S4 PhoneCompanionPusher;Lenovo PhoneCompanionPusher Service; C:\Program Files\Lenovo PhoneCompanion\PhoneCompanionPusher.exe [2014-11-01 288240]
S4 PhoneCompanionVap;Lenovo PhoneCompanionVap Service; C:\Program Files\Lenovo PhoneCompanion\PhoneCompanionVap.exe [2014-11-01 305136]
S4 StarWindServiceAE;StarWind AE Service; C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [2009-12-23 370688]
S4 VeriFaceSrv;VeriFaceSrv; C:\Program Files (x86)\Lenovo\Lenovo VeriFace Pro\VfConnectorService.exe [2014-11-01 67856]
-----------------EOF-----------------
Jinak co si myslíte o povolených a zakázaných službách? Avast neustále vytěžuje disk na 100%, hlavně při startu.. Nevim co kontroluje, ale kolikrát zničehonic vytíží disk na 80-100%..
Log z RSITu:
Logfile of random's system information tool 1.10 (written by random/random)
Run by Eva at 2016-04-28 15:59:32
Microsoft Windows 8.1 s aplikací Bing
System drive C: has 222 GB (51%) free of 435 GB
Total RAM: 3979 MB (67% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 15:59:37, on 28. 4. 2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.18123)
Boot mode: Normal
Running processes:
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.EXE
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Eva.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://lenovo13.msn.com/?pc=LCJB
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://lenovo13.msn.com/?pc=LCJB
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe,
O2 - BHO: Lync Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office15\URLREDIR.DLL
O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\PROGRA~2\MICROS~1\Office15\GROOVEEX.DLL
O4 - HKLM\..\Run: [UpdateP2GShortCut] "C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\Lenovo\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\5.0"
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [Wondershare Helper Compact.exe] C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\Run: [AlcoholAutomount] "C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe" -automount
O8 - Extra context menu item: E&xportovat do Microsoft Excelu - res://C:\PROGRA~1\MICROS~1\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do OneNotu - res://C:\PROGRA~1\MICROS~1\Office15\ONBttnIE.dll/105
O9 - Extra button: Odeslat do OneNotu - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do OneNotu - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra button: Volání kliknutím v Lyncu - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O9 - Extra 'Tools' menuitem: Volání kliknutím v Lyncu - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files (x86)\Microsoft Office\Office15\MSOSB.DLL
O18 - Filter hijack: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\windows\System32\alg.exe (file missing)
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: Conexant Audio Message Service (CxAudMsg) - Unknown owner - C:\windows\system32\CxAudMsg64.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\windows\System32\lsass.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\windows\system32\igfxCUIService.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\TXE Components\TCS\SocketHeciServer.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\windows\System32\msdtc.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: Cyberlink RichVideo64 Service(CRVS) (RichVideo64) - Unknown owner - C:\Program Files\CyberLink\Shared files\RichVideo64.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Samsung Printer Dianostics Service - Unknown owner - C:\windows\system32\\spdsvc.exe
O23 - Service: Conexant SmartAudio service (SAService) - Conexant Systems, Inc. - C:\windows\system32\SAsrv.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\windows\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: Adaptér výkonu rozhraní WMI (wmiApSrv) - Unknown owner - C:\windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Zero Configuration Service (ZeroConfigService) - Intel® Corporation - C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
--
End of file - 8778 bytes
======Listing Processes======
wininit.exe
C:\windows\system32\lsass.exe
C:\windows\system32\svchost.exe -k DcomLaunch
C:\windows\system32\svchost.exe -k RPCSS
C:\windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\windows\system32\svchost.exe -k NetworkService
C:\windows\system32\svchost.exe -k netsvcs
C:\windows\system32\svchost.exe -k LocalService
C:\windows\system32\igfxCUIService.exe
C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\windows\system32\WLANExt.exe 823670363792
\??\C:\windows\system32\conhost.exe 0x4
C:\windows\System32\spoolsv.exe
C:\windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\windows\system32\CxAudMsg64.exe
C:\windows\System32\svchost.exe -k utcsvc
"C:\Program Files\Intel\WiFi\bin\EvtEng.exe"
dashost.exe {10a95534-7e75-48d9-86681d4b69c95515}
C:\windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
taskeng.exe {7DE4D65C-A647-4EFB-A0FB-4A89E0B6BF7E}
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
"C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe"
"C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe"
"C:\Program Files\CyberLink\Shared files\RichVideo64.exe"
C:\windows\SysWOW64\\spdsvc.exe
C:\windows\SysWOW64\SAsrv.exe
"C:\Program Files (x86)\Google\Update\1.3.29.5\GoogleCrashHandler.exe"
C:\windows\System32\svchost.exe -k WerSvcGroup
"C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe"
C:\windows\system32\wbem\unsecapp.exe -Embedding
C:\windows\system32\wbem\wmiprvse.exe
C:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\windows\system32\wbem\wmiprvse.exe
C:\windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-84cc98d1-5288-43ff-971b-aaf45b3ee790 -SystemEventPortName:HostProcess-c638fcc0-35b8-41bc-8e0d-3c11717c76ec -IoCancelEventPortName:HostProcess-55828f5d-d6f6-46af-ae1a-4cff0f891a20 -NonStateChangingEventPortName:HostProcess-fd2e2960-e88b-4aac-a6b8-ff43e463d8c4 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:736e15fd-36d6-4373-abf3-8ee0303e50f7 -DeviceGroupId:WudfDefaultDevicePool
C:\windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files (x86)\Google\Update\1.3.29.5\GoogleCrashHandler64.exe"
winlogon.exe
"dwm.exe"
taskhostex.exe
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
C:\windows\Explorer.EXE
igfxEM.exe
igfxHK.exe
igfxTray.exe
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
"C:\Program Files\CONEXANT\ForteConfig\fmapp.exe"
"C:\Windows\System32\rundll32.exe" "C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll",TrayApp
"C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe"
"C:\windows\system32\GWX\GWX.exe"
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
C:\windows\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.EXE"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=crashpad-handler /prefetch:7 --no-rate-limit "--database=C:\Users\eva\AppData\Local\Google\Chrome\User Data\Crashpad" --url=https://clients2.google.com/cr/report --annotation=channel=m --annotation=plat=Win32 --annotation=prod=Chrome --annotation=ver=49.0.2623.112 --handshake-handle=0x160
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=watcher --main-thread-id=4868 --on-initialized-event-handle=636 --parent-handle=640 /prefetch:6
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="4864.0.801456633\1108635100" --supports-dual-gpus=false --gpu-driver-bug-workarounds=3,11,16,25,54 --gpu-vendor-id=0x8086 --gpu-device-id=0x0f31 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=10.18.10.3496 --ignored=" --type=renderer " /prefetch:2
"C:\Program Files\CCleaner\CCleaner.exe" /uac
"C:\Program Files\CCleaner\CCleaner64.exe" /monitor
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,WebFontsIntervention<WebFontsIntervention --disable-features=UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/*CrossDevicePromo/1DaySingleProfile/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/*PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PreRead/Default/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Control50pct/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/SSLCommonNameMismatchHandling/Disabled/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SafeBrowsingUpdateFrequency/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_80/*UMA-Uniformity-Trial-10-Percent/group_09/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_17/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*WebFontsIntervention/Enabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=1 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="4864.10.498060109\5643300" /prefetch:1
"C:\Users\eva\Desktop\RSITx64.exe"
======Scheduled tasks folder======
C:\windows\tasks\Adobe Flash Player Updater.job - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Lync Browser Helper - C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2012-10-01 205416]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-09-01 655480]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~1\Office15\URLREDIR.DLL [2012-10-01 877720]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~1\MICROS~1\Office15\GROOVEEX.DLL [2012-10-01 2322576]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Lync Browser Helper - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2012-10-01 139368]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-09-01 559624]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office15\URLREDIR.DLL [2012-10-01 704664]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~2\MICROS~1\Office15\GROOVEEX.DLL [2012-10-01 1720976]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"cAudioFilterAgent"=C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe [2013-09-05 907480]
"ForteConfig"=C:\Program Files\Conexant\ForteConfig\fmapp.exe [2010-10-26 49056]
"SmartAudio"=C:\Program Files\CONEXANT\SAII\SACpl.exe [2012-06-13 1647616]
"BTMTrayAgent"=C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll [2013-11-07 7818552]
"PhoneCompanion"=C:\Program Files\Lenovo PhoneCompanion\Phone Companion.exe [2014-11-01 836592]
"Energy Manager"=C:\Program Files (x86)\Lenovo\Energy Manager\Energy Manager.exe [2014-11-01 16094704]
"Lenovo Utility"=C:\Program Files (x86)\Lenovo\Energy Manager\Utility.exe [2014-11-01 10841584]
"CDAServer"=C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe [2014-09-08 464608]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2015-08-20 8455960]
"AlcoholAutomount"=C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe [2012-01-05 75624]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"UpdateP2GShortCut"=C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe [2011-12-07 214312]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2016-03-04 6111312]
"Wondershare Helper Compact.exe"=C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [2013-08-26 1989920]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\McNaiAnn]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\VDWFP]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\VisualDiscovery]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"PromptOnSecureDesktop"=0
"ConsentPromptBehaviorAdmin"=0
"SoftwareSASGeneration"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2016-04-28 15:33:48 ----D---- C:\_OTM
2016-04-18 20:47:09 ----D---- C:\rsit
2016-04-13 11:47:50 ----A---- C:\windows\system32\mfmp4srcsnk.dll
2016-04-13 11:47:49 ----A---- C:\windows\SYSWOW64\mfmp4srcsnk.dll
2016-04-13 11:47:47 ----A---- C:\windows\system32\drivers\rasl2tp.sys
2016-04-13 11:47:37 ----A---- C:\windows\system32\appraiser.dll
2016-04-13 11:47:36 ----A---- C:\windows\system32\invagent.dll
2016-04-13 11:47:36 ----A---- C:\windows\system32\generaltel.dll
2016-04-13 11:47:36 ----A---- C:\windows\system32\aepic.dll
2016-04-13 11:47:36 ----A---- C:\windows\system32\aeinv.dll
2016-04-13 11:47:35 ----A---- C:\windows\system32\devinv.dll
2016-04-13 11:47:35 ----A---- C:\windows\system32\CompatTelRunner.exe
2016-04-13 11:47:35 ----A---- C:\windows\system32\acmigration.dll
2016-04-13 11:47:31 ----A---- C:\windows\system32\rpcss.dll
2016-04-13 11:47:29 ----A---- C:\windows\system32\VSSVC.exe
2016-04-13 11:47:26 ----A---- C:\windows\system32\WsmSvc.dll
2016-04-13 11:47:25 ----A---- C:\windows\SYSWOW64\WsmSvc.dll
2016-04-13 11:47:24 ----A---- C:\windows\SYSWOW64\WsmWmiPl.dll
2016-04-13 11:47:24 ----A---- C:\windows\SYSWOW64\WsmAuto.dll
2016-04-13 11:47:24 ----A---- C:\windows\SYSWOW64\WsmAgent.dll
2016-04-13 11:47:24 ----A---- C:\windows\system32\WsmWmiPl.dll
2016-04-13 11:47:24 ----A---- C:\windows\system32\WsmAuto.dll
2016-04-13 11:47:24 ----A---- C:\windows\system32\WsmAgent.dll
2016-04-13 11:47:22 ----A---- C:\windows\system32\drivers\IPMIDrv.sys
2016-04-13 11:47:18 ----A---- C:\windows\SYSWOW64\twinui.dll
2016-04-13 11:46:45 ----A---- C:\windows\system32\twinui.dll
2016-04-13 11:46:08 ----A---- C:\windows\SYSWOW64\shell32.dll
2016-04-13 11:45:16 ----A---- C:\windows\SYSWOW64\explorer.exe
2016-04-13 11:45:12 ----A---- C:\windows\explorer.exe
2016-04-13 11:44:58 ----A---- C:\windows\system32\SystemSettingsAdminFlowUI.dll
2016-04-13 11:44:30 ----A---- C:\windows\system32\shell32.dll
2016-04-13 11:44:29 ----A---- C:\windows\system32\ExplorerFrame.dll
2016-04-13 11:44:28 ----A---- C:\windows\SYSWOW64\ExplorerFrame.dll
2016-04-13 11:44:28 ----A---- C:\windows\system32\SystemSettingsAdminFlows.exe
2016-04-13 11:44:27 ----A---- C:\windows\SYSWOW64\twinui.appcore.dll
2016-04-13 11:44:27 ----A---- C:\windows\system32\twinui.appcore.dll
2016-04-13 11:44:27 ----A---- C:\windows\system32\SettingsHandlers.dll
2016-04-13 11:44:26 ----A---- C:\windows\SYSWOW64\AppxAllUserStore.dll
2016-04-13 11:44:26 ----A---- C:\windows\system32\SettingSyncCore.dll
2016-04-13 11:44:26 ----A---- C:\windows\system32\SettingSync.dll
2016-04-13 11:44:26 ----A---- C:\windows\system32\AppxAllUserStore.dll
2016-04-13 11:44:25 ----A---- C:\windows\SYSWOW64\SettingSyncCore.dll
2016-04-13 11:44:25 ----A---- C:\windows\SYSWOW64\SettingSync.dll
2016-04-13 11:44:25 ----A---- C:\windows\system32\SettingSyncHost.exe
2016-04-13 11:44:25 ----A---- C:\windows\system32\hgcpl.dll
2016-04-13 11:44:24 ----A---- C:\windows\system32\usercpl.dll
2016-04-13 11:44:24 ----A---- C:\windows\system32\themecpl.dll
2016-04-13 11:44:24 ----A---- C:\windows\system32\stobject.dll
2016-04-13 11:44:24 ----A---- C:\windows\system32\SettingMonitor.dll
2016-04-13 11:44:24 ----A---- C:\windows\system32\AppXDeploymentExtensions.dll
2016-04-13 11:44:23 ----A---- C:\windows\SYSWOW64\themecpl.dll
2016-04-13 11:44:23 ----A---- C:\windows\SYSWOW64\hgcpl.dll
2016-04-13 11:44:22 ----A---- C:\windows\SYSWOW64\usercpl.dll
2016-04-13 11:44:22 ----A---- C:\windows\SYSWOW64\stobject.dll
2016-04-13 11:44:22 ----A---- C:\windows\SYSWOW64\SettingSyncHost.exe
2016-04-13 11:44:21 ----A---- C:\windows\SYSWOW64\SettingMonitor.dll
2016-04-13 11:44:17 ----A---- C:\windows\system32\AppXDeploymentServer.dll
2016-04-13 11:43:51 ----A---- C:\windows\system32\workfolderssvc.dll
2016-04-13 11:43:50 ----A---- C:\windows\system32\WorkfoldersControl.dll
2016-04-13 11:43:47 ----A---- C:\windows\SYSWOW64\msorcl32.dll
2016-04-13 11:43:47 ----A---- C:\windows\SYSWOW64\KernelBase.dll
2016-04-13 11:43:46 ----A---- C:\windows\SYSWOW64\mtxoci.dll
2016-04-13 11:43:46 ----A---- C:\windows\system32\winresume.exe
2016-04-13 11:43:46 ----A---- C:\windows\system32\winload.exe
2016-04-13 11:43:46 ----A---- C:\windows\system32\ntoskrnl.exe
2016-04-13 11:43:46 ----A---- C:\windows\system32\mtxoci.dll
2016-04-13 11:43:45 ----A---- C:\windows\system32\KernelBase.dll
2016-04-13 11:43:42 ----A---- C:\windows\system32\drivers\vpci.sys
2016-04-13 11:43:42 ----A---- C:\windows\system32\drivers\storport.sys
2016-04-13 11:43:41 ----A---- C:\windows\SYSWOW64\dhcpsapi.dll
2016-04-13 11:43:41 ----A---- C:\windows\system32\dhcpsapi.dll
2016-04-13 11:43:38 ----A---- C:\windows\SYSWOW64\storagewmi.dll
2016-04-13 11:43:38 ----A---- C:\windows\system32\storagewmi.dll
2016-04-13 11:43:34 ----A---- C:\windows\system32\wbengine.exe
2016-04-13 11:43:33 ----A---- C:\windows\system32\WindowsAnytimeUpgradeui.exe
2016-04-13 11:43:33 ----A---- C:\windows\system32\drivers\disk.sys
2016-04-13 10:25:25 ----A---- C:\windows\SYSWOW64\FWPUCLNT.DLL
2016-04-13 10:25:25 ----A---- C:\windows\system32\nshwfp.dll
2016-04-13 10:25:25 ----A---- C:\windows\system32\IKEEXT.DLL
2016-04-13 10:25:25 ----A---- C:\windows\system32\FWPUCLNT.DLL
2016-04-13 10:25:25 ----A---- C:\windows\system32\BFE.DLL
2016-04-13 10:25:24 ----A---- C:\windows\SYSWOW64\nshwfp.dll
2016-04-13 10:25:20 ----A---- C:\windows\system32\drivers\vhdmp.sys
2016-04-13 10:25:17 ----A---- C:\windows\system32\drivers\volsnap.sys
2016-04-13 08:05:39 ----A---- C:\windows\system32\mshtml.dll
2016-04-13 08:05:37 ----A---- C:\windows\SYSWOW64\mshtml.dll
2016-04-13 08:05:34 ----A---- C:\windows\system32\ieframe.dll
2016-04-13 08:05:32 ----A---- C:\windows\SYSWOW64\ieframe.dll
2016-04-13 08:05:31 ----A---- C:\windows\SYSWOW64\iertutil.dll
2016-04-13 08:05:31 ----A---- C:\windows\system32\iertutil.dll
2016-04-13 08:05:30 ----A---- C:\windows\SYSWOW64\iedkcs32.dll
2016-04-13 08:05:30 ----A---- C:\windows\system32\wininet.dll
2016-04-13 08:05:30 ----A---- C:\windows\system32\jscript9.dll
2016-04-13 08:05:30 ----A---- C:\windows\system32\iedkcs32.dll
2016-04-13 08:05:29 ----A---- C:\windows\SYSWOW64\wininet.dll
2016-04-13 08:05:29 ----A---- C:\windows\system32\ie4uinit.exe
2016-04-13 08:05:28 ----A---- C:\windows\SYSWOW64\msfeeds.dll
2016-04-13 08:05:28 ----A---- C:\windows\system32\urlmon.dll
2016-04-13 08:05:28 ----A---- C:\windows\system32\msfeeds.dll
2016-04-13 08:05:27 ----A---- C:\windows\SYSWOW64\urlmon.dll
2016-04-13 08:05:26 ----A---- C:\windows\SYSWOW64\dxtrans.dll
2016-04-13 08:05:26 ----A---- C:\windows\system32\iepeers.dll
2016-04-13 08:05:26 ----A---- C:\windows\system32\dxtrans.dll
2016-04-13 08:05:25 ----A---- C:\windows\SYSWOW64\webcheck.dll
2016-04-13 08:05:25 ----A---- C:\windows\SYSWOW64\jscript9.dll
2016-04-13 08:05:25 ----A---- C:\windows\SYSWOW64\iepeers.dll
2016-04-13 08:05:25 ----A---- C:\windows\system32\webcheck.dll
2016-04-13 08:05:24 ----A---- C:\windows\SYSWOW64\vbscript.dll
2016-04-13 08:05:24 ----A---- C:\windows\SYSWOW64\jscript.dll
2016-04-13 08:05:24 ----A---- C:\windows\SYSWOW64\inetcomm.dll
2016-04-13 08:05:24 ----A---- C:\windows\system32\vbscript.dll
2016-04-13 08:05:24 ----A---- C:\windows\system32\mshtmled.dll
2016-04-13 08:05:24 ----A---- C:\windows\system32\jscript.dll
2016-04-13 08:05:24 ----A---- C:\windows\system32\inetcomm.dll
2016-04-13 08:05:24 ----A---- C:\windows\system32\ieapfltr.dll
2016-04-13 08:05:23 ----A---- C:\windows\SYSWOW64\ieapfltr.dll
2016-04-13 08:04:01 ----A---- C:\windows\SYSWOW64\msxml3.dll
2016-04-13 08:04:01 ----A---- C:\windows\system32\msxml3.dll
2016-04-13 08:03:59 ----A---- C:\windows\SYSWOW64\ole32.dll
2016-04-13 08:03:59 ----A---- C:\windows\system32\ole32.dll
2016-04-13 08:03:54 ----A---- C:\windows\SYSWOW64\certcli.dll
2016-04-13 08:03:54 ----A---- C:\windows\system32\samsrv.dll
2016-04-13 08:03:54 ----A---- C:\windows\system32\lsasrv.dll
2016-04-13 08:03:54 ----A---- C:\windows\system32\drivers\mrxsmb20.sys
2016-04-13 08:03:54 ----A---- C:\windows\system32\drivers\mrxsmb10.sys
2016-04-13 08:03:54 ----A---- C:\windows\system32\drivers\cng.sys
2016-04-13 08:03:53 ----A---- C:\windows\system32\drivers\mrxsmb.sys
2016-04-13 08:03:52 ----A---- C:\windows\system32\samlib.dll
2016-04-13 08:03:51 ----A---- C:\windows\SYSWOW64\samlib.dll
2016-04-13 08:03:50 ----A---- C:\windows\system32\certcli.dll
2016-04-13 08:03:43 ----A---- C:\windows\system32\basesrv.dll
2016-04-13 08:03:37 ----A---- C:\windows\system32\win32k.sys
2016-04-11 16:21:25 ----D---- C:\Users\eva\AppData\Roaming\PhotoFiltre 7
2016-04-11 16:21:20 ----D---- C:\Program Files (x86)\PhotoFiltre 7
2016-04-11 12:56:39 ----D---- C:\ProgramData\Razer
2016-04-07 16:37:50 ----D---- C:\Program Files\CPUID
2016-04-01 15:55:24 ----SHD---- C:\Config.Msi
======List of files/folders modified in the last 1 month======
2016-04-28 15:59:35 ----D---- C:\Program Files\trend micro
2016-04-28 15:59:28 ----D---- C:\windows\Temp
2016-04-28 15:59:28 ----D---- C:\windows\debug
2016-04-28 15:59:28 ----AD---- C:\Windows
2016-04-28 15:58:53 ----D---- C:\windows\system32\sru
2016-04-28 09:46:19 ----D---- C:\windows\Microsoft.NET
2016-04-28 06:12:02 ----HD---- C:\Program Files\WindowsApps
2016-04-28 06:12:02 ----D---- C:\windows\AppReadiness
2016-04-28 06:06:35 ----D---- C:\Users\eva\AppData\Roaming\TS3Client
2016-04-28 00:50:15 ----D---- C:\windows\Inf
2016-04-27 08:32:20 ----SHD---- C:\System Volume Information
2016-04-24 16:38:30 ----D---- C:\windows\system32\config
2016-04-23 20:41:26 ----RAD---- C:\windows\System32
2016-04-23 20:41:26 ----A---- C:\windows\system32\PerfStringBackup.INI
2016-04-19 19:26:57 ----D---- C:\windows\SoftwareDistribution
2016-04-19 06:25:43 ----HD---- C:\ProgramData
2016-04-19 06:22:39 ----D---- C:\AdwCleaner
2016-04-18 19:28:25 ----D---- C:\windows\system32\NDF
2016-04-18 19:03:33 ----D---- C:\Program Files (x86)\Hi-Rez Studios
2016-04-18 19:02:17 ----D---- C:\ProgramData\Hi-Rez Studios
2016-04-18 19:02:09 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2016-04-18 18:57:06 ----D---- C:\Users\eva\AppData\Roaming\uTorrent
2016-04-18 12:08:13 ----D---- C:\windows\WinSxS
2016-04-18 12:06:25 ----D---- C:\windows\system32\drivers
2016-04-16 20:16:20 ----D---- C:\windows\rescache
2016-04-16 20:00:39 ----D---- C:\windows\CbsTemp
2016-04-16 20:00:15 ----RSD---- C:\windows\assembly
2016-04-16 19:59:31 ----D---- C:\windows\apppatch
2016-04-16 19:59:17 ----D---- C:\windows\SysWOW64
2016-04-14 21:47:50 ----D---- C:\windows\SYSWOW64\en-US
2016-04-14 21:47:50 ----D---- C:\windows\SYSWOW64\cs-CZ
2016-04-14 21:47:50 ----D---- C:\windows\system32\en-US
2016-04-14 21:47:50 ----D---- C:\windows\system32\cs-CZ
2016-04-14 21:47:50 ----D---- C:\windows\system32\appraiser
2016-04-14 21:47:49 ----RD---- C:\windows\ToastData
2016-04-14 21:47:48 ----D---- C:\windows\system32\wbem
2016-04-14 21:47:46 ----D---- C:\windows\system32\Boot
2016-04-14 21:47:43 ----D---- C:\Program Files\Internet Explorer
2016-04-14 21:47:43 ----D---- C:\Program Files (x86)\Internet Explorer
2016-04-14 21:47:39 ----D---- C:\windows\system32\DriverStore
2016-04-14 21:44:34 ----D---- C:\windows\system32\MRT
2016-04-14 21:35:25 ----A---- C:\windows\system32\MRT.exe
2016-04-13 10:20:58 ----D---- C:\windows\system32\catroot2
2016-04-11 16:54:29 ----D---- C:\Users\eva\AppData\Roaming\Samsung
2016-04-11 16:21:20 ----RD---- C:\Program Files (x86)
2016-04-11 13:11:52 ----SHD---- C:\windows\Installer
2016-04-07 16:37:50 ----RD---- C:\Program Files
2016-04-05 23:53:01 ----A---- C:\windows\SYSWOW64\FlashPlayerApp.exe
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswRvrt;avast! Revert; C:\windows\system32\drivers\aswRvrt.sys [2015-09-01 65224]
R0 aswVmm;avast! VM Monitor; C:\windows\system32\drivers\aswVmm.sys [2015-09-01 274808]
R0 MBI;@oem10.inf,%MBI.SVCDESC%;Intel(R) Sideband Fabric Device Service; C:\windows\System32\drivers\MBI.sys [2013-10-10 29464]
R0 sptd;sptd; C:\windows\System32\Drivers\sptd.sys [2015-11-17 381608]
R1 aswRdr;aswRdr; C:\windows\system32\drivers\aswRdr2.sys [2015-09-01 93528]
R1 aswSnx;aswSnx; C:\windows\system32\drivers\aswSnx.sys [2016-03-04 1059656]
R1 aswSP;aswSP; C:\windows\system32\drivers\aswSP.sys [2016-03-04 449992]
R1 vwififlt;@%SystemRoot%\System32\drivers\vwififlt.sys,-259; C:\windows\system32\DRIVERS\vwififlt.sys [2013-08-22 71680]
R2 aswHwid;avast! HardwareID; C:\windows\system32\drivers\aswHwid.sys [2015-09-01 28656]
R2 aswMonFlt;aswMonFlt; C:\windows\system32\drivers\aswMonFlt.sys [2015-09-01 90968]
R2 aswStm;aswStm; C:\windows\system32\drivers\aswStm.sys [2015-09-01 150672]
R2 SSPORT;SSPORT; \??\C:\windows\system32\Drivers\SSPORT.sys [2014-05-07 11576]
R3 ACPIVPC;@oem23.inf,%ACPIVPC.SvcDesc%;Lenovo Virtual Power Controller Driver; C:\windows\System32\drivers\AcpiVpc.sys [2014-11-01 35576]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\windows\System32\Drivers\BTHUSB.sys [2014-10-29 81920]
R3 btmhsf;btmhsf; C:\windows\system32\DRIVERS\btmhsf.sys [2013-11-07 1411384]
R3 CnxtHdAudService;@oem11.inf,%UAAFunctionDriverForHdAudio.SvcDesc%;Conexant UAA Function Driver for High Definition Audio Service; C:\windows\system32\drivers\CHDRT64.sys [2014-01-27 1474240]
R3 ibtusb;@oem16.inf,%ibtusb.SVCDESC_IBT%;Intel(R) Wireless Bluetooth(R) 4.0 + HS Adapter; C:\windows\system32\DRIVERS\ibtusb.sys [2014-01-22 149448]
R3 igfx;igfx; C:\windows\system32\DRIVERS\igdkmd64.sys [2014-03-07 3729920]
R3 IntcDAud;@oem4.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\windows\system32\DRIVERS\IntcDAud.sys [2014-03-07 450520]
R3 iwdbus;@oem7.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\windows\System32\drivers\iwdbus.sys [2014-03-01 27032]
R3 NETwNb64;@oem17.inf,___ %NIC_Service_DispName_WINB_64%;___ Intel(R) Wireless Adapter Driver for Windows 8.1 - 64 Bit; C:\windows\system32\DRIVERS\Netwbw02.sys [2014-06-01 3443680]
R3 RSUSBVSTOR;@oem21.inf,%RSUSBVSTOR.SvcDesc%;RtsUVStor.Sys Realtek USB Card Reader; C:\windows\System32\Drivers\RtsUVStor.sys [2013-09-24 329944]
R3 RTL8168;@oem8.inf,%rtl8168.Service.DispName%;Realtek 8168 NT Driver; C:\windows\system32\DRIVERS\Rt630x64.sys [2013-08-15 830680]
R3 SmbDrvI;SmbDrvI; C:\windows\system32\DRIVERS\Smb_driver_Intel.sys [2013-12-24 34544]
R3 SNP2UVC;@oem20.inf,%SERVICE_DISPLAY_NAME%;USB2.0 PC Camera (SNP2UVC); C:\windows\system32\DRIVERS\snp2uvc.sys [2014-01-24 2853400]
R3 SynTP;@oem13.inf,%SynTP.SvcDesc%;Synaptics TouchPad Driver; C:\windows\system32\DRIVERS\SynTP.sys [2013-12-24 532720]
R3 TXEIx64;@oem9.inf,%TEE_SvcDesc%;Intel(R) Trusted Execution Engine Interface ; C:\windows\System32\drivers\TXEIx64.sys [2014-01-15 88592]
R3 vwifimp;@%SystemRoot%\System32\drivers\vwifimp.sys,-261; C:\windows\system32\DRIVERS\vwifimp.sys [2013-08-22 36864]
S3 andnetadb;@oem37.inf,%androidusb.SvcDesc%;ADB Interface DriverNet; C:\windows\System32\Drivers\lgandnetadb.sys []
S3 AndNetDiag;@oem38.inf,%Lgsi.Service.Name%;LGE AndroidNet USB Serial Port; C:\windows\system32\DRIVERS\lgandnetdiag64.sys []
S3 ANDNetModem;@oem41.inf,%LGSI.Service.Name%;LGE AndroidNet USB Modem; C:\windows\system32\DRIVERS\lgandnetmodem64.sys []
S3 axscsidrv;axscsidrv; C:\windows\system32\drivers\axscsidrv.sys [2016-02-16 293888]
S3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\windows\System32\drivers\BthEnum.sys [2014-10-29 53248]
S3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\windows\system32\DRIVERS\BthLEEnum.sys [2014-03-18 226304]
S3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\windows\System32\drivers\bthpan.sys [2015-07-10 118272]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\windows\System32\Drivers\BTHport.sys [2015-05-11 1201664]
S3 btmaux;@oem15.inf,%BTMAUX.ServiceDesc%;Intel Bluetooth Auxiliary Service; C:\windows\system32\DRIVERS\btmaux.sys [2013-11-07 140600]
S3 dtlitescsibus;@oem29.inf,%DTLITESCSIBUS.DeviceDesc%;DAEMON Tools Lite Virtual SCSI Bus; C:\windows\System32\drivers\dtlitescsibus.sys [2015-09-01 30264]
S3 e1iexpress;@net1ic64.inf,%e1iExpress.Service.DispName%;Intel(R) PRO/1000 PCI Express Network Connection Driver I; C:\windows\system32\DRIVERS\e1i63x64.sys [2013-06-18 460288]
S3 HTCAND64;@oem32.inf,%HTCAND64.SvcDesc%;HTC Device Driver; C:\windows\System32\Drivers\ANDROIDUSB.sys [2009-11-02 33736]
S3 htcnprot;@oem36.inf,%NDISPROT_Desc%;HTC NDIS Protocol Driver; C:\windows\system32\DRIVERS\htcnprot.sys [2013-10-17 36928]
S3 intaud_WaveExtensible;@oem6.inf,%INTAUD_WEX.SvcDesc%;Intel WiDi Audio Device; C:\windows\system32\drivers\intelaud.sys [2014-03-01 38296]
S3 NETwNe64;@netwew02.inf,___ %NIC_Service_DispName_WIN8_64%;___ Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows 8 - 64 Bit; C:\windows\system32\DRIVERS\NETwew02.sys [2013-06-18 4649440]
S3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\windows\System32\drivers\rfcomm.sys [2015-01-30 167424]
S3 tap0901;@oem37.inf,%DeviceDescription%;TAP-Windows Adapter V9; C:\windows\system32\DRIVERS\tap0901.sys [2013-08-22 40664]
S3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;USB Video Device (WDM); C:\windows\System32\Drivers\usbvideo.sys [2014-06-21 212736]
S3 VClone;VClone; C:\windows\System32\drivers\VClone.sys [2014-05-03 34816]
S3 VirtualDVD;VirtualDVD; C:\windows\system32\DRIVERS\VirtualDVD.sys []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2015-09-01 146600]
R2 CxAudMsg;Conexant Audio Message Service; C:\windows\system32\CxAudMsg64.exe [2013-07-25 206552]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\windows\System32\svchost.exe [2014-10-29 38792]
R2 EvtEng;Intel(R) PROSet/Wireless Event Log; C:\Program Files\Intel\WiFi\bin\EvtEng.exe [2014-01-18 632048]
R2 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2014-03-18 43696]
R2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\windows\system32\igfxCUIService.exe [2014-03-12 282096]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe [2013-07-02 733696]
R2 RegSrvc;Intel(R) PROSet/Wireless Registry Service; C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe [2014-01-18 154864]
R2 RichVideo64;Cyberlink RichVideo64 Service(CRVS); C:\Program Files\CyberLink\Shared files\RichVideo64.exe [2012-04-24 390632]
R2 Samsung Printer Dianostics Service;Samsung Printer Dianostics Service; C:\windows\syswow64\\spdsvc.exe [2015-11-05 491328]
R2 SAService;Conexant SmartAudio service; C:\windows\system32\SAsrv.exe []
S2 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-12-03 269000]
S3 cphs;Intel(R) Content Protection HECI Service; C:\windows\SysWow64\IntelCpHeciSvc.exe [2014-03-12 279024]
S3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2012-04-24 169752]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\TXE Components\TCS\SocketHeciServer.exe [2013-07-02 822232]
S4 AxAutoMntSrv;Alcohol Virtual Drive Auto-mount Service; C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe [2012-01-05 75624]
S4 Bluetooth Device Monitor;Bluetooth Device Monitor; C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe [2013-11-07 1186168]
S4 Bluetooth OBEX Service;Bluetooth OBEX Service; C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe [2013-11-07 1161592]
S4 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\windows\System32\svchost.exe [2014-10-29 38792]
S4 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-01 144200]
S4 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-01 144200]
S4 HiPatchService;Hi-Rez Studios Authenticate and Update Service; C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe [2016-03-14 9728]
S4 iBtSiva;Intel Bluetooth Service; C:\Program Files (x86)\Intel\Bluetooth\ibtsiva.exe [2014-01-22 130008]
S4 Lenovo EasyPlus Hotspot;Lenovo EasyPlus Hotspot; C:\Program Files (x86)\Common Files\lenovo\easyplussdk\bin\EPHotspot64.exe [2014-06-03 533760]
S4 Lenovo System Agent Service;Lenovo System Agent Service; C:\Program Files\Lenovo\iMController\SystemAgentService.exe [2014-05-22 584960]
S4 LenovoWiFiHotspotSvr;Lenovo WiFiHotspot Service; C:\Windows\System32\LenovoWiFiHotspotSvr.exe [2014-11-01 198192]
S4 LSCWinService;LSCWinService; C:\Program Files\Lenovo\Lenovo Solution Center\App\LSCWinService.exe [2016-01-08 272864]
S4 LUService;LUService; C:\Program Files (x86)\Lenovo\Lenovo Updates\LUService.exe [2014-04-21 37624]
S4 MyWiFiDHCPDNS;Wireless PAN DHCP Server; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [2014-01-18 284912]
S4 ose64;Office 64 Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2012-12-08 178760]
S4 PassThru Service;Internet Pass-Through Service; C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe [2013-10-17 166912]
S4 PhoneCompanionPusher;Lenovo PhoneCompanionPusher Service; C:\Program Files\Lenovo PhoneCompanion\PhoneCompanionPusher.exe [2014-11-01 288240]
S4 PhoneCompanionVap;Lenovo PhoneCompanionVap Service; C:\Program Files\Lenovo PhoneCompanion\PhoneCompanionVap.exe [2014-11-01 305136]
S4 StarWindServiceAE;StarWind AE Service; C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [2009-12-23 370688]
S4 VeriFaceSrv;VeriFaceSrv; C:\Program Files (x86)\Lenovo\Lenovo VeriFace Pro\VfConnectorService.exe [2014-11-01 67856]
-----------------EOF-----------------
Re: Divně, zpomaleně/zabržděně chovající se NTB!
Přemýšlím, že avast smažu a povolím windows deffender, ale počkám na vaše vyjádření. Nevím co tomu avastu je, ale tohle není normální...
Tak jsem přes nouzový režim vymazal avast a zapnul jsem windows deffender. Řekl bych, že to dost pomohlo..
Tak jsem přes nouzový režim vymazal avast a zapnul jsem windows deffender. Řekl bych, že to dost pomohlo..
- Rudy
- Site Admin

- Příspěvky: 119653
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Divně, zpomaleně/zabržděně chovající se NTB!
Avast zkuste přeinstalovat. Určitě je lepší, než Windefender. Jinak smazáno.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Přispějete na provoz fóra?