Zdravím,
mám problém s windows, nebežia niektoré služby (update) a má dlhú odozvu v systémových programoch(explorer).
Mám podozrenie na vírus, ale Eset a Avast nič nenašli.
Na to že má počítač SSD je aj dlhšia doba spúšťania.
Primárne robím s Linuxom a tam nie som zvyknutý na takéto problémy.
Ďakujem
Logfile of random's system information tool 1.10 (written by random/random)
Run by milan at 2015-01-28 12:31:33
Microsoft Windows 8.1 Pro
System drive C: has 56 GB (49%) free of 114 GB
Total RAM: 8077 MB (78% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 12:31:36, on 28.1.2015
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17416)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
D:\Software\KN_StrongDC\StrongDC.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_16_0_0_257.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_16_0_0_257.exe
C:\Program Files\trend micro\milan.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://services.freshy.com/general/newh ... 17E121}&i=
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://services.freshy.com/general/newh ... 17E121}&i=
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Microsoft Web Test Recorder 12.0 Helper - {432dd630-7e03-4c97-9d62-b99f52df4fc2} - C:\Program Files (x86)\Microsoft Visual Studio 12.0\Common7\IDE\PrivateAssemblies\Microsoft.VisualStudio.QualityTools.RecorderBarBHO100.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O3 - Toolbar: (no name) - {4AB31959-F732-4360-B3CF-6EE76E101734} - (no file)
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [BCSSync] "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [Steam] "D:\Hry\Steam\steam.exe" -silent
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O8 - Extra context menu item: E&xportovať do programu Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office14\EXCEL.EXE/3000
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} (OnlineScanner Control) - http://download.eset.com/special/eos/OnlineScanner.cab
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: @%ProgramFiles%\Windows Identity Foundation\v3.5\c2wtsres.dll,-1000 (c2wts) - Unknown owner - C:\Program Files (x86)\Windows Identity Foundation\v3.5\c2wtshost.exe (file missing)
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\Windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update Service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Update Manager (iumsvc) - Unknown owner - C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: Origin Client Service - Electronic Arts - D:\Hry\Origin\OriginClientService.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: PnkBstrB - Unknown owner - C:\Windows\system32\PnkBstrB.exe
O23 - Service: Protexis Licensing V2 x64 (PSI_SVC_2_x64) - arvato digital services llc - C:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: SAMSUNG Mobile Connectivity Service (ss_conn_service) - DEVGURU Co., LTD. - C:\Program Files\SAMSUNG\USB Drivers\25_escape\conn\ss_conn_service.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @oem5.inf,%WBFService_SvcDesc%;Validity WBF Policy Service (valWBFPolicyService) - Unknown owner - C:\Windows\system32\valWBFPolicyService.exe (file missing)
O23 - Service: BiometricSensorDataSynchronization (valWbioSyncSvc) - Unknown owner - C:\Windows\system32\valWbioSyncSvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 9731 bytes
======Listing Processes======
wininit.exe
winlogon.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
"dwm.exe"
"C:\Windows\system32\nvvsvc.exe"
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-6872e4ce-18c6-4eb5-9ce9-43a7e1ceb589 -SystemEventPortName:HostProcess-020e714b-1be7-40b1-a0cd-1a015e4c5f81 -IoCancelEventPortName:HostProcess-87a33235-8758-417d-ad18-cf590e42acca -NonStateChangingEventPortName:HostProcess-d37f4924-8559-42a0-9282-dcd3636404a4 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:53747045-206b-4233-9b43-9ade2df6b5ec -DeviceGroupId:
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-a1e8c4cc-a17f-4033-9d69-6fe6bd9418e4 -SystemEventPortName:HostProcess-3cbf0239-9d5a-46e0-8f89-2d6686dd7873 -IoCancelEventPortName:HostProcess-1bc64dbc-0375-4122-b59f-878005529bcc -NonStateChangingEventPortName:HostProcess-74c832aa-d9e5-4639-9f91-d9db94cf5876 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:515beb99-65d7-4fdd-8d74-36743a68b1b0 -DeviceGroupId:WudfDefaultDevicePool
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe"
dashost.exe {ef6c136a-ade7-4911-8a10e14d38c17f4b}
"C:\Program Files (x86)\Common Files\Microsoft Shared\Phone Tools\CoreCon\11.0\bin\IpOverUsbSvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
taskhostex.exe
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
C:\Windows\Explorer.EXE
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe"
"C:\Program Files (x86)\Google\Update\1.3.25.11\GoogleCrashHandler.exe"
C:\Windows\SysWOW64\PnkBstrA.exe
"C:\Program Files (x86)\Google\Update\1.3.25.11\GoogleCrashHandler64.exe"
C:\Windows\SysWOW64\PnkBstrB.exe
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" nss 2dd42d22-8230-4492-b43f-550b17960f3b 1
\??\C:\Windows\system32\conhost.exe 0x4
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" serviceapp
\??\C:\Windows\system32\conhost.exe 0x4
"C:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe"
"C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe"
"C:\Program Files\SAMSUNG\USB Drivers\25_escape\conn\ss_conn_service.exe"
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\system32\valWBFPolicyService.exe
C:\Windows\system32\valWbioSyncSvc.exe
C:\Windows\system32\SearchIndexer.exe /Embedding
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\wbem\wmiprvse.exe
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
"C:\Program Files (x86)\Lenovo\Energy Manager\Energy Manager.exe"
"C:\Program Files (x86)\Lenovo\Energy Manager\utility.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\Program Files\Realtek\Audio\HDA\FMAPP.exe"
"C:\Program Files\AVAST Software\Avast\avastui.exe" /nogui
C:\Windows\system32\wbem\unsecapp.exe -Embedding
"D:\Software\KN_StrongDC\StrongDC.exe"
"C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe" --channel=5696.16007740.1913182654 "C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_257.dll" -greomni "C:\Program Files (x86)\Mozilla Firefox\omni.ja" -appomni "C:\Program Files (x86)\Mozilla Firefox\browser\omni.ja" -appdir "C:\Program Files (x86)\Mozilla Firefox\browser" E7CF176E110C211B 5696 "\\.\pipe\gecko-crash-server-pipe.5696" plugin
"C:\Windows\SYSTEM32\Macromed\Flash\FlashPlayerPlugin_16_0_0_257.exe" --proxy-stub-channel=Flash3216.6C2D6220.7249 --host-broker-channel=Flash3216.6C2D6220.18012 --host-pid=3216 --host-npapi-version=27 --plugin-path="C:\Windows\SYSTEM32\Macromed\Flash\NPSWF32_16_0_0_257.dll"
"C:\Windows\SYSTEM32\Macromed\Flash\FlashPlayerPlugin_16_0_0_257.exe" --channel=5408.0078F6F4.1442930653 --proxy-stub-channel=Flash3216.6C2D6220.7249 --plugin-path="C:\Windows\SYSTEM32\Macromed\Flash\NPSWF32_16_0_0_257.dll" --host-npapi-version=27 --type=renderer
"C:\Windows\System32\WWAHost.exe" -ServerName:Windows.Store
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
"D:\Download\RSITx64.exe"
C:\Windows\system32\msfeedssync.exe sync
======Scheduled tasks folder======
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
=========Mozilla firefox=========
ProfilePath - C:\Users\milan\AppData\Roaming\Mozilla\Firefox\Profiles\4ex3sog4.default
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 16.0.0.257 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_257.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@esn/npbattlelog,version=2.6.2]
"Description"=
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\2.6.2\npbattlelog.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files (x86)\Microsoft Silverlight\5.1.20513.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@mozilla.zeniko.ch/PDFlite_Browser_Plugin]
"Description"=PDFlite Browser Plugin
"Path"=C:\Program Files (x86)\PDFlite\npPdfViewer.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.5]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 16.0.0.257 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_16_0_0_257.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@esn/npbattlelog,version=2.6.2]
"Description"=
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\2.6.2\npbattlelogx64.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=11.25.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files\Java\jre1.8.0_25\bin\dtplugin\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=11.25.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre1.8.0_25\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre1.8.0_25\bin\ssv.dll [2015-01-18 551848]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2014-12-23 705448]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~1\Office14\URLREDIR.DLL [2010-02-28 688528]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre1.8.0_25\bin\jp2ssv.dll [2015-01-18 212904]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{432dd630-7e03-4c97-9d62-b99f52df4fc2}]
Microsoft Web Test Recorder 12.0 Helper - C:\Program Files (x86)\Microsoft Visual Studio 12.0\Common7\IDE\PrivateAssemblies\Microsoft.VisualStudio.QualityTools.RecorderBarBHO100.dll [2013-10-05 71520]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-12-23 586968]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL [2010-02-28 561552]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{4AB31959-F732-4360-B3CF-6EE76E101734}
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{4AB31959-F732-4360-B3CF-6EE76E101734}
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2014-03-07 391152]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2014-03-07 771568]
"Persistence"=C:\Windows\system32\igfxpers.exe [2014-03-07 770544]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2014-11-17 2465088]
"ShadowPlay"=C:\Windows\system32\nvspcap64.dll [2014-11-17 2800296]
"Energy Manager"=C:\Program Files (x86)\Lenovo\Energy Manager\Energy Manager.exe [2014-12-23 16094704]
"Lenovo Utility"=C:\Program Files (x86)\Lenovo\Energy Manager\Utility.exe [2014-12-23 10973168]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2014-05-26 13672152]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2014-03-04 3696912]
"Steam"=D:\Hry\Steam\steam.exe [2014-11-18 1940160]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2014-12-12 7394584]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2015-01-09 5227112]
"BCSSync"=C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [2010-03-13 91520]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-12-19 1022152]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2014-10-07 507776]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2014-01-17 624640]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"SoftwareSASGeneration"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"VIDC.I420"=lvcod64.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"msacm.dvacm_vspx7"=d:\Software\CORELV~2\Dvacm.acm
"MSVideo"=vfwwdm32.dll
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2015-01-28 12:21:04 ----D---- C:\rsit
2015-01-28 12:21:04 ----D---- C:\Program Files\trend micro
2015-01-26 21:35:08 ----D---- C:\Program Files (x86)\Mozilla Firefox
2015-01-26 20:54:32 ----D---- C:\Program Files (x86)\ESET
2015-01-26 17:56:53 ----D---- C:\Users\milan\AppData\Roaming\java
2015-01-26 17:45:17 ----D---- C:\Users\milan\AppData\Roaming\.minecraft
2015-01-26 08:36:06 ----D---- C:\Program Files (x86)\VS Revo Group
2015-01-23 10:32:20 ----D---- C:\Program Files\Common Files\logishrd
2015-01-22 21:50:14 ----A---- C:\Windows\system32\drivers\pneteth.sys
2015-01-22 21:36:47 ----D---- C:\ProgramData\Shuame
2015-01-22 21:34:09 ----D---- C:\Users\milan\AppData\Roaming\Tencent
2015-01-22 21:34:09 ----D---- C:\ProgramData\Tencent
2015-01-22 21:34:08 ----D---- C:\Users\milan\AppData\Roaming\Shuame
2015-01-22 21:34:04 ----D---- C:\Program Files (x86)\RootGenius
2015-01-22 18:03:03 ----D---- C:\ProgramData\LogMeIn
2015-01-22 11:09:51 ----A---- C:\Windows\KMSEmulator.exe
2015-01-21 19:32:42 ----A---- C:\Windows\system32\drivers\ssudbus.sys
2015-01-21 19:32:40 ----D---- C:\Program Files\SAMSUNG
2015-01-21 19:32:05 ----D---- C:\ProgramData\Samsung
2015-01-20 13:16:24 ----AH---- C:\Windows\system32\drivers\Hamdrv.sys
2015-01-18 19:34:15 ----D---- C:\Users\milan\AppData\Roaming\Apple Computer
2015-01-18 18:54:41 ----D---- C:\Users\milan\AppData\Roaming\Corel
2015-01-18 18:54:37 ----D---- C:\ProgramData\Protexis64
2015-01-18 18:54:36 ----D---- C:\Users\milan\AppData\Roaming\Ulead Systems
2015-01-18 18:05:52 ----D---- C:\ProgramData\Apple
2015-01-18 18:05:46 ----A---- C:\Windows\wininit.ini
2015-01-18 18:05:27 ----D---- C:\ProgramData\eSellerate
2015-01-18 18:05:17 ----D---- C:\Program Files (x86)\SmartSound Software
2015-01-18 18:05:15 ----D---- C:\ProgramData\SmartSound Software Inc
2015-01-18 18:02:11 ----D---- C:\ProgramData\Corel
2015-01-18 18:02:11 ----D---- C:\Program Files\Common Files\Protexis
2015-01-18 17:55:57 ----D---- C:\Program Files (x86)\Corel
2015-01-18 17:37:04 ----D---- C:\Users\milan\AppData\Roaming\NVIDIA
2015-01-18 17:37:02 ----D---- C:\Users\milan\AppData\Roaming\Publish Providers
2015-01-18 17:36:53 ----D---- C:\Users\milan\AppData\Roaming\Sony
2015-01-18 17:03:04 ----D---- C:\ProgramData\Sony
2015-01-18 17:03:04 ----D---- C:\Program Files (x86)\Sony
2015-01-18 17:03:03 ----D---- C:\Program Files\Sony
2015-01-18 16:28:53 ----A---- C:\Windows\SYSWOW64\EMSSip.dll
2015-01-18 16:28:53 ----A---- C:\Windows\SYSWOW64\EMRSip.dll
2015-01-18 16:28:53 ----A---- C:\Windows\SYSWOW64\EMPlugInManager.dll
2015-01-18 16:28:53 ----A---- C:\Windows\SYSWOW64\EMLSip.dll
2015-01-18 16:28:53 ----A---- C:\Windows\SYSWOW64\EMIpp.dll
2015-01-18 16:28:53 ----A---- C:\Windows\SYSWOW64\EMHidHandset.dll
2015-01-18 16:28:53 ----A---- C:\Windows\SYSWOW64\EMHandsetManager.dll
2015-01-18 16:28:52 ----A---- C:\Windows\SYSWOW64\TjIpSys.dll
2015-01-18 16:28:52 ----A---- C:\Windows\SYSWOW64\EMTJNetHandset.dll
2015-01-18 16:28:51 ----D---- C:\Program Files (x86)\viphone communicator
2015-01-18 16:16:17 ----D---- C:\Program Files (x86)\CrystalDiskInfo
2015-01-18 15:58:00 ----D---- C:\Users\milan\AppData\Roaming\Arduino
2015-01-18 15:51:14 ----D---- C:\Program Files (x86)\Arduino
2015-01-18 15:47:40 ----D---- C:\Users\milan\AppData\Roaming\JetBrains
2015-01-18 15:23:52 ----A---- C:\Windows\system32\WindowsAccessBridge-64.dll
2015-01-18 14:53:54 ----D---- C:\Program Files\Java
2015-01-18 13:32:44 ----D---- C:\Program Files\CCleaner
2015-01-18 13:06:21 ----D---- C:\Program Files\Android
2015-01-18 12:50:19 ----D---- C:\Program Files (x86)\Android
2015-01-17 21:34:09 ----D---- C:\ProgramData\Microsoft Visual Studio
2015-01-17 21:28:10 ----D---- C:\Users\milan\AppData\Roaming\NuGet
2015-01-17 21:11:22 ----D---- C:\Program Files (x86)\Microsoft Visual Studio 11.0
2015-01-17 21:09:28 ----D---- C:\Program Files (x86)\Windows Phone Silverlight Kits
2015-01-17 21:06:52 ----D---- C:\Program Files (x86)\Microsoft XDE
2015-01-17 21:00:40 ----D---- C:\Program Files (x86)\ReleaseManagement
2015-01-17 21:00:21 ----D---- C:\Program Files (x86)\AppInsights
2015-01-17 20:54:10 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2015-01-17 20:52:21 ----D---- C:\Program Files\Microsoft SQL Server Compact Edition
2015-01-17 20:50:17 ----D---- C:\Program Files (x86)\Application Verifier
2015-01-17 20:50:16 ----D---- C:\Program Files\Application Verifier
2015-01-17 20:50:13 ----D---- C:\ProgramData\Windows App Certification Kit
2015-01-17 20:40:28 ----D---- C:\ProgramData\PreEmptive Solutions
2015-01-17 20:36:57 ----D---- C:\Program Files (x86)\Microsoft ASP.NET
2015-01-17 20:35:23 ----D---- C:\Program Files (x86)\Microsoft Web Tools
2015-01-17 20:33:27 ----D---- C:\Program Files\IIS Express
2015-01-17 20:33:27 ----D---- C:\Program Files (x86)\IIS Express
2015-01-17 20:32:53 ----D---- C:\ProgramData\NuGet
2015-01-17 20:32:53 ----D---- C:\Program Files (x86)\NuGet
2015-01-17 20:32:27 ----D---- C:\Program Files (x86)\Microsoft WCF Data Services
2015-01-17 20:32:20 ----D---- C:\Program Files\IIS
2015-01-17 20:32:20 ----D---- C:\Program Files (x86)\IIS
2015-01-17 20:28:05 ----D---- C:\Program Files (x86)\Workflow Manager Tools
2015-01-17 20:28:02 ----D---- C:\Program Files (x86)\Open XML SDK
2015-01-17 20:28:00 ----D---- C:\Program Files\Microsoft Identity Extensions
2015-01-17 20:27:53 ----D---- C:\Program Files\Windows Identity Foundation
2015-01-17 20:27:40 ----D---- C:\Program Files\SharePoint Client Components
2015-01-17 20:27:36 ----D---- C:\Program Files (x86)\Microsoft
2015-01-17 20:19:53 ----D---- C:\Program Files (x86)\Windows Phone Kits
2015-01-17 20:19:53 ----D---- C:\Program Files (x86)\Windows Kits
2015-01-17 20:19:35 ----D---- C:\Program Files (x86)\HTML Help Workshop
2015-01-17 20:19:20 ----D---- C:\Windows\symbols
2015-01-17 20:19:19 ----D---- C:\Program Files (x86)\Microsoft Help Viewer
2015-01-17 20:12:52 ----D---- C:\Windows\SYSWOW64\1033
2015-01-17 20:12:42 ----D---- C:\Program Files\Microsoft SQL Server
2015-01-17 20:12:42 ----D---- C:\Program Files (x86)\Microsoft SQL Server
2015-01-17 19:55:26 ----D---- C:\Program Files (x86)\Microsoft Visual Studio 12.0
2015-01-17 19:54:53 ----D---- C:\Windows\system32\1033
2015-01-17 19:54:38 ----D---- C:\Program Files\Microsoft Visual Studio 12.0
2015-01-17 19:54:38 ----D---- C:\Program Files (x86)\Microsoft SDKs
2015-01-17 19:32:21 ----D---- C:\ProgramData\Package Cache
2015-01-17 19:28:59 ----D---- C:\Users\milan\AppData\Roaming\e-academy Inc
2015-01-16 17:44:16 ----D---- C:\Program Files\CPUID
2015-01-15 21:34:32 ----D---- C:\Program Files (x86)\Mozilla Thunderbird
2015-01-15 16:39:41 ----D---- C:\ProgramData\Codemasters
2015-01-15 16:35:30 ----D---- C:\Program Files (x86)\OpenAL
2015-01-15 16:35:30 ----A---- C:\Windows\SYSWOW64\wrap_oal.dll
2015-01-15 16:35:30 ----A---- C:\Windows\SYSWOW64\OpenAL32.dll
2015-01-15 16:35:30 ----A---- C:\Windows\system32\wrap_oal.dll
2015-01-15 16:35:30 ----A---- C:\Windows\system32\OpenAL32.dll
2015-01-14 11:21:00 ----A---- C:\Windows\SYSWOW64\nlaapi.dll
2015-01-14 11:21:00 ----A---- C:\Windows\system32\profsvc.dll
2015-01-14 11:21:00 ----A---- C:\Windows\system32\nlasvc.dll
2015-01-14 11:21:00 ----A---- C:\Windows\system32\nlaapi.dll
2015-01-14 11:21:00 ----A---- C:\Windows\system32\ncsi.dll
2015-01-14 11:20:59 ----A---- C:\Windows\SYSWOW64\wer.dll
2015-01-14 11:20:59 ----A---- C:\Windows\system32\wer.dll
2015-01-14 11:20:59 ----A---- C:\Windows\system32\TSWbPrxy.exe
2015-01-14 11:20:59 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2015-01-14 11:20:59 ----A---- C:\Windows\system32\drivers\ahcache.sys
2015-01-14 11:20:58 ----A---- C:\Windows\SYSWOW64\wermgr.exe
2015-01-14 11:20:58 ----A---- C:\Windows\SYSWOW64\WerFaultSecure.exe
2015-01-14 11:20:58 ----A---- C:\Windows\SYSWOW64\WerFault.exe
2015-01-14 11:20:58 ----A---- C:\Windows\SYSWOW64\Faultrep.dll
2015-01-14 11:20:58 ----A---- C:\Windows\SYSWOW64\AUDIOKSE.dll
2015-01-14 11:20:58 ----A---- C:\Windows\SYSWOW64\AudioEng.dll
2015-01-14 11:20:58 ----A---- C:\Windows\system32\wermgr.exe
2015-01-14 11:20:58 ----A---- C:\Windows\system32\WerFaultSecure.exe
2015-01-14 11:20:58 ----A---- C:\Windows\system32\WerFault.exe
2015-01-14 11:20:58 ----A---- C:\Windows\system32\Faultrep.dll
2015-01-14 11:20:58 ----A---- C:\Windows\system32\EncDump.dll
2015-01-14 11:20:58 ----A---- C:\Windows\system32\ci.dll
2015-01-14 11:20:58 ----A---- C:\Windows\system32\AudioSes.dll
2015-01-14 11:20:58 ----A---- C:\Windows\system32\AUDIOKSE.dll
2015-01-14 11:20:58 ----A---- C:\Windows\system32\AudioEng.dll
2015-01-14 11:20:58 ----A---- C:\Windows\system32\AudioEndpointBuilder.dll
2015-01-14 11:20:57 ----A---- C:\Windows\SYSWOW64\werdiagcontroller.dll
2015-01-14 11:20:57 ----A---- C:\Windows\SYSWOW64\AudioSes.dll
2015-01-14 11:20:57 ----A---- C:\Windows\system32\werdiagcontroller.dll
2015-01-14 11:20:57 ----A---- C:\Windows\system32\audiosrv.dll
2015-01-14 11:20:57 ----A---- C:\Windows\system32\audiodg.exe
2015-01-14 09:55:14 ----D---- C:\Program Files (x86)\Battlelog Web Plugins
2015-01-14 09:53:51 ----D---- C:\ProgramData\EA Core
2015-01-14 09:53:50 ----D---- C:\ProgramData\EA Logs
2015-01-14 09:52:45 ----A---- C:\Windows\SYSWOW64\d3dx10_40.dll
2015-01-14 09:52:45 ----A---- C:\Windows\SYSWOW64\D3DCompiler_40.dll
2015-01-14 09:52:45 ----A---- C:\Windows\system32\d3dx10_40.dll
2015-01-14 09:52:45 ----A---- C:\Windows\system32\D3DCompiler_40.dll
2015-01-14 09:52:43 ----A---- C:\Windows\SYSWOW64\D3DX9_40.dll
2015-01-14 09:52:43 ----A---- C:\Windows\system32\D3DX9_40.dll
2015-01-14 09:23:31 ----D---- C:\Users\milan\AppData\Roaming\Origin
2015-01-14 09:23:04 ----D---- C:\ProgramData\Origin
2015-01-14 09:23:03 ----D---- C:\ProgramData\Electronic Arts
2015-01-13 19:20:54 ----D---- C:\Windows\system32\appmgmt
2015-01-11 21:35:45 ----D---- C:\Program Files (x86)\x2goclient
2015-01-11 13:44:57 ----D---- C:\Program Files (x86)\Adobe
2015-01-11 13:44:40 ----D---- C:\ProgramData\Adobe
2015-01-09 22:47:57 ----D---- C:\Program Files (x86)\ImageWriter
2015-01-09 22:31:15 ----D---- C:\Windows\SYSWOW64\sda
2015-01-09 22:30:26 ----A---- C:\Windows\SYSWOW64\RtsP2StorIcon.dll
2015-01-09 22:30:26 ----A---- C:\Windows\system32\drivers\RtsP2Stor.sys
2015-01-09 11:11:23 ----A---- C:\IFRToolLog.txt
2015-01-07 22:53:22 ----A---- C:\Windows\system32\drivers\VBoxDrv.sys
2015-01-07 22:53:18 ----DC---- C:\Windows\system32\DRVSTORE
2015-01-07 22:53:18 ----A---- C:\Windows\system32\drivers\VBoxUSBMon.sys
2015-01-07 22:53:13 ----D---- C:\Program Files\Oracle
2015-01-06 19:36:13 ----D---- C:\ProgramData\x-formation
2015-01-06 19:36:13 ----D---- C:\ProgramData\boost_interprocess
2015-01-04 18:50:55 ----D---- C:\Program Files\Logitech
2015-01-04 18:50:55 ----D---- C:\Program Files\Common Files\Logitech
2015-01-02 12:47:55 ----A---- C:\Windows\system32\ZTAG.dll
2015-01-02 12:47:55 ----A---- C:\Windows\system32\ZSPOOL.dll
2015-01-02 12:47:55 ----A---- C:\Windows\system32\ZSM1120.exe
2015-01-02 12:47:54 ----A---- C:\Windows\system32\ZLM1120.dll
2015-01-02 12:47:54 ----A---- C:\Windows\system32\ZIMF.DLL
2015-01-02 12:47:54 ----A---- C:\Windows\system32\hpsfs.dll
2015-01-02 12:47:54 ----A---- C:\Windows\system32\HPMCoSetup.dll
2015-01-02 12:47:54 ----A---- C:\Windows\M1120GLB.js
2015-01-02 12:47:54 ----A---- C:\Windows\M1120BTN.js
2015-01-02 12:44:28 ----N---- C:\Windows\system32\pwdspio.sys
2015-01-02 12:44:28 ----N---- C:\Windows\system32\pwdrvio.sys
2015-01-02 12:44:28 ----A---- C:\Windows\system32\pwNative.exe
2015-01-02 12:44:11 ----D---- C:\Program Files (x86)\MiniTool Partition Wizard Home Edition 8.1.1
2015-01-02 12:30:43 ----D---- C:\ProgramData\HP
2015-01-02 12:30:17 ----D---- C:\Users\milan\AppData\Roaming\HP
2015-01-01 10:50:04 ----D---- C:\Intel
2014-12-31 09:42:14 ----D---- C:\Users\milan\AppData\Roaming\Notepad++
2014-12-31 09:42:14 ----D---- C:\Program Files (x86)\Notepad++
======List of files/folders modified in the last 1 month======
2015-01-28 12:25:42 ----RD---- C:\Windows\System32
2015-01-28 12:25:42 ----D---- C:\Windows\Inf
2015-01-28 12:25:42 ----A---- C:\Windows\system32\PerfStringBackup.INI
2015-01-28 12:23:33 ----D---- C:\Windows\Prefetch
2015-01-28 12:21:04 ----RD---- C:\Program Files
2015-01-28 12:20:59 ----D---- C:\Windows\CbsTemp
2015-01-28 12:20:21 ----D---- C:\Windows\debug
2015-01-28 12:19:58 ----D---- C:\Windows\system32\config
2015-01-28 12:19:46 ----D---- C:\Windows\AppReadiness
2015-01-28 12:19:38 ----D---- C:\Windows\Temp
2015-01-28 12:19:05 ----D---- C:\ProgramData\Validity
2015-01-28 12:14:59 ----RD---- C:\Program Files (x86)
2015-01-26 21:39:05 ----D---- C:\Users\milan\AppData\Roaming\vlc
2015-01-26 21:39:04 ----D---- C:\Program Files (x86)\TNT2
2015-01-26 21:29:20 ----D---- C:\Windows\Tasks
2015-01-26 21:29:20 ----D---- C:\Windows\system32\Tasks
2015-01-26 21:25:54 ----D---- C:\Users\milan\AppData\Roaming\Skype
2015-01-26 21:02:00 ----D---- C:\Windows\system32\sru
2015-01-26 20:59:27 ----D---- C:\Windows
2015-01-26 20:54:33 ----SD---- C:\Windows\Downloaded Program Files
2015-01-26 09:03:46 ----D---- C:\Windows\Microsoft.NET
2015-01-26 08:42:05 ----SHD---- C:\Windows\Installer
2015-01-26 08:39:50 ----HD---- C:\ProgramData
2015-01-26 08:39:50 ----D---- C:\Windows\SysWOW64
2015-01-26 08:39:12 ----SHD---- C:\System Volume Information
2015-01-23 16:50:50 ----D---- C:\Windows\system32\catroot
2015-01-23 11:57:43 ----D---- C:\Program Files (x86)\Common Files
2015-01-23 10:32:21 ----D---- C:\Windows\system32\drivers
2015-01-23 10:32:20 ----D---- C:\Windows\twain_32
2015-01-23 10:32:20 ----D---- C:\Windows\system32\DriverStore
2015-01-23 10:32:20 ----D---- C:\Program Files\Common Files
2015-01-23 10:17:49 ----D---- C:\Windows\WinSxS
2015-01-22 17:58:23 ----D---- C:\Windows\tracing
2015-01-20 21:40:59 ----SHD---- C:\$Recycle.Bin
2015-01-20 20:54:07 ----SD---- C:\Users\milan\AppData\Roaming\Microsoft
2015-01-19 22:32:02 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2015-01-19 17:51:00 ----D---- C:\Windows\rescache
2015-01-19 17:48:10 ----RSD---- C:\Windows\assembly
2015-01-19 10:26:40 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2015-01-19 09:57:11 ----D---- C:\Users\milan\AppData\Roaming\uTorrent
2015-01-19 09:57:11 ----D---- C:\Users\milan\AppData\Roaming\DAEMON Tools Lite
2015-01-19 09:56:56 ----D---- C:\Windows\Panther
2015-01-19 09:56:54 ----D---- C:\Windows\Logs
2015-01-18 18:06:50 ----D---- C:\Program Files\Internet Explorer
2015-01-18 18:05:30 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2015-01-18 18:01:59 ----RSD---- C:\Windows\Fonts
2015-01-18 12:43:30 ----D---- C:\Windows\system32\NDF
2015-01-17 21:32:21 ----D---- C:\ProgramData\regid.1991-06.com.microsoft
2015-01-17 21:07:08 ----SD---- C:\ProgramData\Microsoft
2015-01-17 20:52:24 ----D---- C:\Program Files (x86)\Microsoft SQL Server Compact Edition
2015-01-17 20:52:13 ----D---- C:\Program Files\Common Files\microsoft shared
2015-01-17 20:28:12 ----D---- C:\Program Files\MSBuild
2015-01-17 20:10:05 ----D---- C:\Program Files (x86)\Microsoft.NET
2015-01-17 19:55:26 ----D---- C:\Program Files (x86)\MSBuild
2015-01-17 19:54:41 ----D---- C:\Windows\system32\drivers\UMDF
2015-01-16 17:36:28 ----D---- C:\Users\milan\AppData\Roaming\Mozilla
2015-01-14 12:21:08 ----D---- C:\Windows\system32\CodeIntegrity
2015-01-14 11:30:47 ----D---- C:\Windows\system32\MRT
2015-01-14 11:25:52 ----A---- C:\Windows\system32\MRT.exe
2015-01-14 09:53:14 ----A---- C:\Windows\SYSWOW64\PnkBstrB.exe
2015-01-14 09:53:06 ----A---- C:\Windows\SYSWOW64\PnkBstrA.exe
2015-01-14 08:38:36 ----D---- C:\ProgramData\Energy Manager
2015-01-11 13:45:25 ----D---- C:\Users\milan\AppData\Roaming\Adobe
2015-01-11 13:24:23 ----D---- C:\ProgramData\StartW8
2015-01-09 22:30:26 ----D---- C:\Program Files (x86)\Realtek
2015-01-08 23:12:46 ----HD---- C:\Windows\system32\GroupPolicy
2015-01-08 23:12:46 ----D---- C:\Windows\SYSWOW64\GroupPolicy
2015-01-06 15:32:20 ----D---- C:\Users\milan\AppData\Roaming\Mikrotik
2015-01-06 15:10:20 ----D---- C:\Windows\system32\LogFiles
2015-01-06 09:31:46 ----D---- C:\Users\milan\AppData\Roaming\GHISLER
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2014-12-23 65776]
R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2014-12-23 267632]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2014-12-23 93568]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2014-12-23 1050432]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2014-12-23 436624]
R1 SMIDriver;SMIDriver; C:\Windows\system32\drivers\smi.sys [2014-01-22 19760]
R1 VBoxDrv;VirtualBox Service; C:\Windows\system32\DRIVERS\VBoxDrv.sys [2014-11-24 916024]
R1 VBoxUSBMon;VirtualBox USB Monitor Driver; C:\Windows\system32\DRIVERS\VBoxUSBMon.sys [2014-11-24 128080]
R2 aswHwid;avast! HardwareID; C:\Windows\system32\drivers\aswHwid.sys [2014-12-23 29208]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2014-12-23 83280]
R2 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2014-12-23 116728]
R3 ACPIVPC;@oem23.inf,%ACPIVPC.SvcDesc%;Lenovo Virtual Power Controller Driver; C:\Windows\System32\drivers\AcpiVpc.sys [2014-12-23 35576]
R3 athr;@oem6.inf,%ATHR.Service.DispName%;Qualcomm Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athwbx.sys [2013-12-12 3881472]
R3 BtFilter;BtFilter; C:\Windows\system32\DRIVERS\btfilter.sys [2014-04-28 599240]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Bluetooth Radio USB Driver; C:\Windows\System32\Drivers\BTHUSB.sys [2014-03-18 81920]
R3 dtsoftbus01;@oem22.inf,%DTSoftBus.SVCDESC%;DAEMON Tools Virtual Bus Driver; C:\Windows\System32\drivers\dtsoftbus01.sys [2014-12-23 283064]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2014-01-17 4222976]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2014-05-26 3975128]
R3 IntcDAud;@oem15.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\Windows\system32\DRIVERS\IntcDAud.sys [2014-01-17 450520]
R3 iwdbus;@oem18.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\Windows\System32\drivers\iwdbus.sys [2013-12-27 27032]
R3 LVUSBS64;Logitech USB Monitor Filter; C:\Windows\system32\DRIVERS\LVUSBS64.sys [2007-10-12 50072]
R3 nvlddmkm;nvlddmkm; C:\Windows\system32\DRIVERS\nvlddmkm.sys [2014-11-13 13213512]
R3 NvStreamKms;NvStreamKms; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2014-11-17 20800]
R3 nvvad_WaveExtensible;@oem20.inf,%nvvad_WaveExtensible.SvcDesc%;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\Windows\system32\drivers\nvvad64v.sys [2014-10-03 38216]
R3 RSP2STOR;@oem39.inf,%Rts5229%;Realtek PCIE CardReader Driver - P2; C:\Windows\system32\DRIVERS\RtsP2Stor.sys [2013-09-24 290520]
R3 RTL8168;@netrt630x64.inf,%rtl8168.Service.DispName%;Realtek 8168 NT Driver; C:\Windows\system32\DRIVERS\Rt630x64.sys [2013-06-18 591360]
R3 SensorsSimulatorDriver;@oem42.inf,%WudfSensorsSimulatorDriverDisplayName%;UMDF Reflector service for SensorsSimulatorDriver; C:\Windows\system32\DRIVERS\WUDFRd.sys [2014-05-31 227840]
R3 SmbDrvI;SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [2014-12-12 34544]
R3 SynTP;@oem14.inf,%SynTP.SvcDesc%;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2014-12-12 532720]
R3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;USB Video Device (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2013-08-22 212224]
R3 VBoxNetAdp;VirtualBox Host-Only Ethernet Adapter; C:\Windows\system32\DRIVERS\VBoxNetAdp.sys [2014-11-24 141440]
R3 VBoxNetFlt;@oem36.inf,%VBoxNetFltService_Desc%;VirtualBox Bridged Networking Service; C:\Windows\system32\DRIVERS\VBoxNetFlt.sys [2014-11-24 156360]
S3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Bluetooth Enumerator Service; C:\Windows\System32\drivers\BthEnum.sys [2013-08-22 53248]
S3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\Windows\system32\DRIVERS\BthLEEnum.sys [2014-03-18 226304]
S3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\Windows\System32\drivers\bthpan.sys [2014-07-24 118272]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Bluetooth Port Driver; C:\Windows\System32\Drivers\BTHport.sys [2014-07-24 1200640]
S3 dg_ssudbus;@oem28.inf,%ssud.Service.DeviceDesc%;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudbus.sys [2014-10-13 110336]
S3 Hamachi;LogMeIn Hamachi Virtual Miniport); C:\Windows\system32\DRIVERS\Hamdrv.sys [2015-01-20 44296]
S3 intaud_WaveExtensible;@oem17.inf,%INTAUD_WEX.SvcDesc%;Intel WiDi Audio Device; C:\Windows\system32\drivers\intelaud.sys [2013-12-27 38296]
S3 PID_0928;@oem61.inf,%PID_0928_DD%(PID_0928);Logitech QuickCam Express(PID_0928); C:\Windows\system32\DRIVERS\LV561V64.SYS [2007-10-12 582680]
S3 pneteth;@oem59.inf,%pneteth.Service.DispName%;PdaNet Broadband; C:\Windows\system32\DRIVERS\pneteth.sys [2011-11-25 15360]
S3 pwdrvio;pwdrvio; \??\C:\Windows\syswow64\pwdrvio.sys []
S3 pwdspio;pwdspio; \??\C:\Windows\syswow64\pwdspio.sys []
S3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\System32\drivers\rfcomm.sys [2014-03-18 167424]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2014-12-03 81088]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2014-12-23 50344]
R2 GfExperienceService;NVIDIA GeForce Experience Service; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [2014-11-17 1149760]
R2 IpOverUsbSvc;Windows Phone IP over USB Transport (IpOverUsbSvc); C:\Program Files (x86)\Common Files\Microsoft Shared\Phone Tools\CoreCon\11.0\bin\IpOverUsbSvc.exe [2014-10-15 22744]
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2014-11-17 1796928]
R2 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [2014-11-17 19821376]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2014-11-12 934032]
R2 PnkBstrA;PnkBstrA; C:\Windows\syswow64\PnkBstrA.exe [2015-01-14 75136]
R2 PnkBstrB;PnkBstrB; C:\Windows\syswow64\PnkBstrB.exe [2015-01-14 189248]
R2 PSI_SVC_2_x64;Protexis Licensing V2 x64; C:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe [2013-09-13 337776]
R2 SQLWriter;SQL Server VSS Writer; C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe [2014-02-21 134336]
R2 ss_conn_service;SAMSUNG Mobile Connectivity Service; C:\Program Files\SAMSUNG\USB Drivers\25_escape\conn\ss_conn_service.exe [2014-10-13 743688]
R2 valWBFPolicyService;@oem5.inf,%WBFService_SvcDesc%;Validity WBF Policy Service; C:\Windows\system32\valWBFPolicyService.exe [2014-07-25 49040]
R2 valWbioSyncSvc;BiometricSensorDataSynchronization; C:\Windows\system32\valWbioSyncSvc.exe [2014-07-25 32256]
S2 gupdate;Google Update Service (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-12-23 107912]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2014-12-11 315496]
S3 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework64\v4.0.30319\aspnet_rc.dll,-1; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-08-10 50784]
S3 c2wts;@%ProgramFiles%\Windows Identity Foundation\v3.5\c2wtsres.dll,-1000; C:\Program Files\Windows Identity Foundation\v3.5\c2wtshost.exe [2015-01-17 5632]
S3 cphs;Intel(R) Content Protection HECI Service; C:\Windows\SysWow64\IntelCpHeciSvc.exe [2014-03-07 279024]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696]
S3 fussvc;Windows App Certification Kit Fast User Switching Utility Service; C:\Program Files (x86)\Windows Kits\8.1\App Certification Kit\fussvc.exe [2014-02-20 142336]
S3 gupdatem;Google Update Service (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-12-23 107912]
S3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2012-04-24 169752]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files (x86)\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe [2004-10-22 73728]
S3 iumsvc;Intel(R) Update Manager; C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [2014-02-28 174368]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2015-01-09 114800]
S3 Origin Client Service;Origin Client Service; D:\Hry\Origin\OriginClientService.exe [2015-01-14 1903472]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2014-11-18 833728]
S3 Te.Service;Te.Service; C:\Program Files (x86)\Windows Kits\8.1\Testing\Runtimes\TAEF\Wex.Services.exe [2013-08-22 119808]
S3 VsEtwService120;Visual Studio ETW Event Collection Service; C:\Program Files\Microsoft Visual Studio 12.0\Common7\Packages\Debugger\Services\VsEtwService.exe [2014-07-22 89232]
-----------------EOF-----------------

Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Prosím kontrolu, podozrenie na vírus
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Re: Prosím kontrolu, podozrenie na vírus
Zdravim 
V ramci cisteni Vam budou vyprazdneny docasne adresare (vcetne Kose).
Ulozte na plochu AdwCleaner https://toolslib.net/downloads/viewdown ... dwcleaner/ (nebo http://www.bleepingcomputer.com/download/adwcleaner/ )



- ukoncete vsechny programy
- kliknete pravym na ikonu AdwCleaneru a vyberte Spustit jako spravce (v pripade Win XP spustte obycejne dvojklikem)
- kliknete na Scan, pote na Clean
- po restartu na Vas vyskoci log (pripadne jej najdete v C:\AdwCleaner\AdwCleaner [Sx].txt), jehoz obsah mi zkopirujte do pristi odpovedi
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.