Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Dloooouhýýýý start systému a pomalý chod NTB
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Dloooouhýýýý start systému a pomalý chod NTB
Velmi prosím o kontrolu logu z RSIT, děkuji
Logfile of random's system information tool 1.10 (written by random/random)
Run by Dášenka at 2016-10-18 19:41:50
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 7 GB (10%) free of 76 GB
Total RAM: 3838 MB (40% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 19:42:11, on 18.10.2016
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.18450)
Boot mode: Normal
Running processes:
C:\Windows\AsScrPro.exe
C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe
C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe
C:\Program Files (x86)\ASUS\ASUS Live Update\ALU.exe
C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe
C:\Program Files (x86)\Boingo\Boingo Wi-Fi\Boingo Wi-Fi.exe
C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
C:\Program Files (x86)\Adobe\Reader 11.0\Reader\Reader_sl.exe
C:\Program Files\trend micro\Dášenka.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://asus.msn.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Partner BHO Class - {83FF80F4-8C74-4b80-B5BA-C8DDD434E5C4} - C:\ProgramData\Partner\Partner.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Pomocník pro přihlášení ke službě Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - "C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll" (file missing)
O3 - Toolbar: Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - "C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll" (file missing)
O4 - HKLM\..\Run: [UpdateLBPShortCut] "C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\LabelPrint" UpdateWithCreateOnce "Software\CyberLink\LabelPrint\2.5"
O4 - HKLM\..\Run: [UpdateP2GoShortCut] "C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\6.0"
O4 - HKLM\..\Run: [Boingo Wi-Fi] "C:\Program Files (x86)\Boingo\Boingo Wi-Fi\Boingo.lnk"
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [ATKOSD2] C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
O4 - HKLM\..\Run: [ATKMEDIA] C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
O4 - HKLM\..\Run: [HControlUser] C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'Default user')
O4 - Global Startup: FancyStart daemon.lnk = ?
O4 - Global Startup: SRS Premium Sound.lnk = ?
O9 - Extra button: Přidat na blog - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Přidat na blog Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: AFBAgent - Unknown owner - C:\Windows\system32\FBAgent.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: ASLDR Service (ASLDRService) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Partner Service - Google Inc. - C:\ProgramData\Partner\Partner.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 9205 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
winlogon.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
"C:\Program Files (x86)\ASUS\SmartLogon\smartlogon.exe" -switch-3be2f036c43042cdb03588591c9325c3
atieclxx
C:\Windows\system32\atibtmon.exe Global\Ati_VariBrightMonitorEvent
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Windows\system32\FBAgent.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe"
"C:\Windows\system32\Dwm.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe"
C:\Windows\Explorer.EXE
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
"C:\Windows\AsScrPro.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe"
"C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
taskeng.exe {5D73935D-A2BC-44D3-B80A-85D5E54D50AB}
"taskhost.exe"
"C:\Program Files\Elantech\ETDCtrl.exe"
taskeng.exe {E19A4E0B-5C2A-4A3C-B6F6-1477C3044DDB}
"C:\Program Files (x86)\ASUS\ASUS WebStorage\SERVICE\AsusWSService.exe"
"C:\Program Files\SRS Labs\SRS Premium Sound Control Panel\SRSPremiumPanel_64.exe" /f=srs_premium_sound_nopreset.zip /h
"C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe"
"C:\Program Files (x86)\ASUS\ASUS Live Update\ALU.exe"
"C:\Program Files (x86)\ASUS\ASUS CopyProtect\aspg.exe"
"C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE"
"C:\Program Files\P4G\BatteryLife.exe"
"C:\Program Files (x86)\ASUS\Splendid\ACMON.exe"
"C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe"
C:\Windows\System32\svchost.exe -k utcsvc
"C:\Program Files (x86)\Boingo\Boingo Wi-Fi\Boingo Wi-Fi.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM"
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
"C:\Windows\SysWOW64\ACEngSvr.exe" -Embedding
"C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe"
"C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE"
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\servicing\TrustedInstaller.exe
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files\Elantech\ETDCtrlHelper.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
taskmgr.exe /3
C:\Windows\system32\wbem\unsecapp.exe -Embedding
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\wbem\wmiprvse.exe
ATKOSD.exe
WDC.exe
C:\Windows\system32\CompatTelRunner.exe
taskeng.exe {6F6AE503-BB06-48E0-ABC9-3AA04E3FEA02}
\??\C:\Windows\system32\conhost.exe "995131302-2047329450-15411583941900983935-16925347221596242254591516996-1273239596
C:\Windows\system32\CompatTelRunner.exe -m:appraiser.dll -f:DoScheduledTelemetryRun -cv:Nw/hwKU9tUaf2tpE.1
"C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe"
C:\Windows\system32\msiexec.exe /V
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\Windows\system32\rundll32.exe C:\Windows\system32\GeneralTel.dll,RunGeneralTelemetry -cV Nw/hwKU9tUaf2tpE.1.1 -SendFullTelemetry -ThrottleUtc -TelemetryAllowed
"C:\Program Files\AVAST Software\SZBrowser\Temp\CProgram FilesAVAST SoftwareSZBrowser\installing\installer.exe" --install --silent --autoupdate --installfolder="C:\Program Files\AVAST Software\SZBrowser" --launchopera=0 --crash-reporter-parent-id=2084
"C:\Windows\system32\wuauclt.exe"
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
C:\Windows\system32\sppsvc.exe
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe5_ Global\UsGthrCtrlFltPipeMssGthrPipe5 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 512 516 524 65536 520
C:\Windows\system32\svchost.exe -k WbioSvcGroup
"C:\Users\Dášenka\Downloads\RSITx64.exe"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\Windows\system32\rundll32.exe C:\Windows\system32\GeneralTel.dll,DoCensusRun Nw/hwKU9tUaf2tpE.1.1.3
/Skip /BackFromArmUpdate
"C:\Program Files (x86)\Adobe\Reader 11.0\Reader\Reader_sl.exe"
rundll32 C:\Windows\system32\GeneralTel.dll,RunInUserCxt Nw/hwKU9tUaf2tpE.1.1.3.1 Census
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
=========Mozilla firefox=========
ProfilePath - C:\Users\Dášenka\AppData\Roaming\Mozilla\Firefox\Profiles\zj1bn5pi.default
prefs.js - "browser.startup.homepage" - "www.seznam.cz"
"wrc@avast.com"=C:\Program Files\AVAST Software\Avast\WebRep\FF
"sp@avast.com"=C:\Program Files\AVAST Software\Avast\SafePrice\FF
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 23.0.0.185 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_23_0_0_185.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files (x86)\Microsoft Silverlight\5.1.50709.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=14.0.8051.1204]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 23.0.0.185 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_23_0_0_185.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files\Microsoft Silverlight\5.1.50709.0\npctrl.dll
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4f3ed5cd-0726-42a9-87f5-d13f3d2976ac}]
Windows Live Family Safety Browser Helper Class - C:\Program Files\Windows Live\Family Safety\fssbho.dll [2008-12-08 68960]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{83FF80F4-8C74-4b80-B5BA-C8DDD434E5C4}]
Partner BHO Class - C:\ProgramData\Partner\Partner64.dll [2010-08-24 750064]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2016-09-25 948792]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{83FF80F4-8C74-4b80-B5BA-C8DDD434E5C4}]
Partner BHO Class - C:\ProgramData\Partner\Partner.dll [2010-08-24 433648]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2016-09-25 713440]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocník pro přihlášení ke službě Windows Live - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-02-17 408440]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d2ce3e00-f94a-4740-988e-03dc2f38c34f}]
Bing Bar Helper - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll [2011-10-21 1219152]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{8dcb7100-df86-4384-8842-8fa844297b3f} - Bing Bar - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll [2011-10-21 1219152]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"ETDWare"=C:\Program Files\Elantech\ETDCtrl.exe [2010-01-13 635784]
"ASUS WebStorage"=C:\Program Files (x86)\ASUS\ASUS WebStorage\SERVICE\AsusWSService.exe [2010-03-16 1754448]
"Setwallpaper"=c:\programdata\SetWallpaper.cmd []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Screen Saver Protector]
C:\Windows\AsScrPro.exe [2010-08-24 3054136]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CLMLServer]
C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe [2009-11-02 103720]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RtHDVCpl]
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2010-04-13 10144288]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"UpdateLBPShortCut"=C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe [2009-05-20 222504]
"UpdateP2GoShortCut"=C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe [2009-05-20 222504]
"Boingo Wi-Fi"=C:\Program Files (x86)\Boingo\Boingo Wi-Fi\Boingo.lnk [2010-08-24 2429]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2010-03-31 102400]
"ATKOSD2"=C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [2010-02-04 7350912]
"ATKMEDIA"=C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [2010-01-05 170624]
"HControlUser"=C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe [2009-06-19 105016]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2016-09-25 9107616]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
FancyStart daemon.lnk - C:\Windows\Installer\{2B81872B-A054-48DA-BE3B-FA5C164C303A}\_C4A2FC3E3722966204FDD8.exe
SRS Premium Sound.lnk - C:\Windows\Installer\{E5CF6B9C-3ABE-43C9-9413-AD5FFC98F049}\NewShortcut5_21C7B668029A47458B27645FE6E4A715.exe
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"SoftwareSASGeneration"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2016-10-18 19:41:51 ----D---- C:\Program Files\trend micro
2016-10-18 19:41:50 ----D---- C:\rsit
2016-09-25 17:39:22 ----A---- C:\Windows\SYSWOW64\tzres.dll
2016-09-25 17:39:22 ----A---- C:\Windows\system32\tzres.dll
2016-09-25 17:39:20 ----A---- C:\Windows\SYSWOW64\oleaut32.dll
2016-09-25 17:39:20 ----A---- C:\Windows\system32\oleaut32.dll
2016-09-25 17:39:19 ----A---- C:\Windows\system32\drivers\tcpip.sys
2016-09-25 17:39:18 ----A---- C:\Windows\SYSWOW64\INETRES.dll
2016-09-25 17:39:18 ----A---- C:\Windows\SYSWOW64\inetcomm.dll
2016-09-25 17:39:18 ----A---- C:\Windows\system32\INETRES.dll
2016-09-25 17:39:18 ----A---- C:\Windows\system32\inetcomm.dll
2016-09-25 17:39:18 ----A---- C:\Windows\system32\drivers\tcpipreg.sys
2016-09-25 17:39:18 ----A---- C:\Windows\system32\drivers\netio.sys
2016-09-25 17:39:18 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2016-09-25 17:39:17 ----A---- C:\Windows\system32\drivers\srv.sys
2016-09-25 17:39:16 ----A---- C:\Windows\system32\drivers\srvnet.sys
2016-09-25 17:39:16 ----A---- C:\Windows\system32\drivers\srv2.sys
2016-09-25 17:39:11 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2016-09-25 17:39:11 ----A---- C:\Windows\SYSWOW64\occache.dll
2016-09-25 17:39:11 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2016-09-25 17:39:11 ----A---- C:\Windows\SYSWOW64\inseng.dll
2016-09-25 17:39:11 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2016-09-25 17:39:11 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2016-09-25 17:39:11 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2016-09-25 17:39:11 ----A---- C:\Windows\system32\inseng.dll
2016-09-25 17:39:11 ----A---- C:\Windows\system32\iernonce.dll
2016-09-25 17:39:11 ----A---- C:\Windows\system32\ieetwproxystub.dll
2016-09-25 17:39:11 ----A---- C:\Windows\system32\ieetwcollector.exe
2016-09-25 17:39:11 ----A---- C:\Windows\system32\ie4uinit.exe
2016-09-25 17:39:10 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2016-09-25 17:39:10 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2016-09-25 17:39:10 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2016-09-25 17:39:10 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2016-09-25 17:39:10 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2016-09-25 17:39:10 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2016-09-25 17:39:08 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2016-09-25 17:39:08 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2016-09-25 17:39:08 ----A---- C:\Windows\SYSWOW64\jscript.dll
2016-09-25 17:39:08 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2016-09-25 17:39:08 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2016-09-25 17:39:08 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2016-09-25 17:39:08 ----A---- C:\Windows\system32\urlmon.dll
2016-09-25 17:39:08 ----A---- C:\Windows\system32\occache.dll
2016-09-25 17:39:08 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2016-09-25 17:39:08 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2016-09-25 17:39:08 ----A---- C:\Windows\system32\iedkcs32.dll
2016-09-25 17:39:07 ----A---- C:\Windows\SYSWOW64\ieui.dll
2016-09-25 17:39:07 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2016-09-25 17:39:07 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2016-09-25 17:39:07 ----A---- C:\Windows\system32\msfeeds.dll
2016-09-25 17:39:07 ----A---- C:\Windows\system32\iesetup.dll
2016-09-25 17:39:07 ----A---- C:\Windows\system32\dxtrans.dll
2016-09-25 17:39:06 ----A---- C:\Windows\system32\ieapfltr.dll
2016-09-25 17:39:05 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2016-09-25 17:39:05 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2016-09-25 17:39:05 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2016-09-25 17:39:05 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2016-09-25 17:39:05 ----A---- C:\Windows\system32\vbscript.dll
2016-09-25 17:39:05 ----A---- C:\Windows\system32\iertutil.dll
2016-09-25 17:39:04 ----A---- C:\Windows\SYSWOW64\wininet.dll
2016-09-25 17:39:04 ----A---- C:\Windows\SYSWOW64\msrating.dll
2016-09-25 17:39:04 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2016-09-25 17:39:04 ----A---- C:\Windows\system32\jsproxy.dll
2016-09-25 17:39:03 ----A---- C:\Windows\system32\ieui.dll
2016-09-25 17:39:03 ----A---- C:\Windows\system32\ieframe.dll
2016-09-25 17:39:03 ----A---- C:\Windows\system32\dxtmsft.dll
2016-09-25 17:39:02 ----A---- C:\Windows\system32\webcheck.dll
2016-09-25 17:39:02 ----A---- C:\Windows\system32\mshtmlmedia.dll
2016-09-25 17:39:02 ----A---- C:\Windows\system32\mshtmled.dll
2016-09-25 17:39:02 ----A---- C:\Windows\system32\jscript.dll
2016-09-25 17:39:02 ----A---- C:\Windows\system32\ieUnatt.exe
2016-09-25 17:39:01 ----A---- C:\Windows\system32\wininet.dll
2016-09-25 17:39:01 ----A---- C:\Windows\system32\jscript9diag.dll
2016-09-25 17:39:01 ----A---- C:\Windows\system32\jscript9.dll
2016-09-25 17:39:00 ----A---- C:\Windows\system32\msrating.dll
2016-09-25 17:39:00 ----A---- C:\Windows\system32\MshtmlDac.dll
2016-09-25 17:38:59 ----A---- C:\Windows\system32\mshtml.dll
2016-09-25 17:38:32 ----A---- C:\Windows\SYSWOW64\user32.dll
2016-09-25 17:38:32 ----A---- C:\Windows\system32\win32k.sys
2016-09-25 17:38:32 ----A---- C:\Windows\system32\user32.dll
2016-09-25 17:38:10 ----A---- C:\Windows\system32\ntoskrnl.exe
2016-09-25 17:38:10 ----A---- C:\Windows\system32\lsasrv.dll
2016-09-25 17:38:09 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2016-09-25 17:38:09 ----A---- C:\Windows\system32\rpcrt4.dll
2016-09-25 17:38:08 ----A---- C:\Windows\SYSWOW64\schannel.dll
2016-09-25 17:38:08 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2016-09-25 17:38:08 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2016-09-25 17:38:08 ----A---- C:\Windows\system32\schannel.dll
2016-09-25 17:38:08 ----A---- C:\Windows\system32\msv1_0.dll
2016-09-25 17:38:08 ----A---- C:\Windows\system32\kernel32.dll
2016-09-25 17:38:08 ----A---- C:\Windows\system32\kerberos.dll
2016-09-25 17:38:07 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2016-09-25 17:38:07 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2016-09-25 17:38:06 ----A---- C:\Windows\system32\ntdll.dll
2016-09-25 17:38:05 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2016-09-25 17:38:05 ----A---- C:\Windows\system32\rpchttp.dll
2016-09-25 17:38:05 ----A---- C:\Windows\system32\ncrypt.dll
2016-09-25 17:38:05 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2016-09-25 17:38:04 ----A---- C:\Windows\SYSWOW64\adtschema.dll
2016-09-25 17:38:04 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2016-09-25 17:38:04 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2016-09-25 17:38:04 ----A---- C:\Windows\system32\certcli.dll
2016-09-25 17:38:04 ----A---- C:\Windows\system32\adtschema.dll
2016-09-25 17:38:03 ----A---- C:\Windows\SYSWOW64\rpchttp.dll
2016-09-25 17:38:03 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2016-09-25 17:38:03 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2016-09-25 17:38:03 ----A---- C:\Windows\system32\wdigest.dll
2016-09-25 17:38:03 ----A---- C:\Windows\system32\TSpkg.dll
2016-09-25 17:38:03 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2016-09-25 17:38:02 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2016-09-25 17:38:02 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2016-09-25 17:38:02 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2016-09-25 17:38:02 ----A---- C:\Windows\SYSWOW64\secur32.dll
2016-09-25 17:38:02 ----A---- C:\Windows\SYSWOW64\msobjs.dll
2016-09-25 17:38:02 ----A---- C:\Windows\SYSWOW64\msaudite.dll
2016-09-25 17:38:02 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2016-09-25 17:38:02 ----A---- C:\Windows\SYSWOW64\cryptbase.dll
2016-09-25 17:38:02 ----A---- C:\Windows\SYSWOW64\credssp.dll
2016-09-25 17:38:02 ----A---- C:\Windows\SYSWOW64\certcli.dll
2016-09-25 17:38:02 ----A---- C:\Windows\SYSWOW64\auditpol.exe
2016-09-25 17:38:02 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2016-09-25 17:38:02 ----A---- C:\Windows\system32\wow64win.dll
2016-09-25 17:38:02 ----A---- C:\Windows\system32\wow64.dll
2016-09-25 17:38:02 ----A---- C:\Windows\system32\winsrv.dll
2016-09-25 17:38:02 ----A---- C:\Windows\system32\sspisrv.dll
2016-09-25 17:38:02 ----A---- C:\Windows\system32\sspicli.dll
2016-09-25 17:38:02 ----A---- C:\Windows\system32\srcore.dll
2016-09-25 17:38:02 ----A---- C:\Windows\system32\smss.exe
2016-09-25 17:38:02 ----A---- C:\Windows\system32\secur32.dll
2016-09-25 17:38:02 ----A---- C:\Windows\system32\msobjs.dll
2016-09-25 17:38:02 ----A---- C:\Windows\system32\msaudite.dll
2016-09-25 17:38:02 ----A---- C:\Windows\system32\lsass.exe
2016-09-25 17:38:02 ----A---- C:\Windows\system32\KernelBase.dll
2016-09-25 17:38:02 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2016-09-25 17:38:02 ----A---- C:\Windows\system32\csrsrv.dll
2016-09-25 17:38:02 ----A---- C:\Windows\system32\cryptbase.dll
2016-09-25 17:38:02 ----A---- C:\Windows\system32\credssp.dll
2016-09-25 17:38:02 ----A---- C:\Windows\system32\conhost.exe
2016-09-25 17:38:02 ----A---- C:\Windows\system32\auditpol.exe
2016-09-25 17:38:02 ----A---- C:\Windows\system32\advapi32.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2016-09-25 17:38:01 ----A---- C:\Windows\SYSWOW64\wow32.dll
2016-09-25 17:38:01 ----A---- C:\Windows\SYSWOW64\user.exe
2016-09-25 17:38:01 ----A---- C:\Windows\SYSWOW64\srclient.dll
2016-09-25 17:38:01 ----A---- C:\Windows\SYSWOW64\setup16.exe
2016-09-25 17:38:01 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2016-09-25 17:38:01 ----A---- C:\Windows\SYSWOW64\instnm.exe
2016-09-25 17:38:01 ----A---- C:\Windows\SYSWOW64\appidapi.dll
2016-09-25 17:38:01 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2016-09-25 17:38:01 ----A---- C:\Windows\system32\wow64cpu.dll
2016-09-25 17:38:01 ----A---- C:\Windows\system32\srclient.dll
2016-09-25 17:38:01 ----A---- C:\Windows\system32\setbcdlocale.dll
2016-09-25 17:38:01 ----A---- C:\Windows\system32\rstrui.exe
2016-09-25 17:38:01 ----A---- C:\Windows\system32\ntvdm64.dll
2016-09-25 17:38:01 ----A---- C:\Windows\system32\drivers\appid.sys
2016-09-25 17:38:01 ----A---- C:\Windows\system32\appidsvc.dll
2016-09-25 17:38:01 ----A---- C:\Windows\system32\appidpolicyconverter.exe
2016-09-25 17:38:01 ----A---- C:\Windows\system32\appidcertstorecheck.exe
2016-09-25 17:38:01 ----A---- C:\Windows\system32\appidapi.dll
2016-09-25 17:38:01 ----A---- C:\Windows\system32\apisetschema.dll
2016-09-25 17:21:16 ----A---- C:\Windows\system32\aswBoot.exe
2016-09-25 17:20:38 ----A---- C:\Windows\avastSS.scr
======List of files/folders modified in the last 1 month======
2016-10-18 19:41:51 ----SHD---- C:\Windows\Installer
2016-10-18 19:41:51 ----RD---- C:\Program Files
2016-10-18 19:41:51 ----D---- C:\Windows\Temp
2016-10-18 19:41:47 ----D---- C:\Windows\system32\Tasks
2016-10-18 19:41:46 ----D---- C:\Windows\winsxs
2016-10-18 19:34:53 ----D---- C:\Windows\system32\drivers
2016-10-18 19:33:09 ----D---- C:\Users\Dášenka\AppData\Roaming\Skype
2016-10-18 19:31:52 ----RD---- C:\Program Files (x86)\Skype
2016-10-18 19:31:52 ----D---- C:\Program Files (x86)\Common Files
2016-10-18 19:30:41 ----D---- C:\ProgramData\Skype
2016-10-14 15:24:07 ----D---- C:\Windows\system32\NDF
2016-10-14 15:16:51 ----D---- C:\Windows\SysWOW64
2016-10-14 15:16:40 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2016-10-14 15:16:21 ----D---- C:\Windows\system32\Macromed
2016-10-14 15:16:05 ----D---- C:\Windows\SYSWOW64\Macromed
2016-10-04 13:33:20 ----D---- C:\Windows\system32\config
2016-09-25 18:05:16 ----D---- C:\Windows\System32
2016-09-25 18:05:16 ----D---- C:\Windows\inf
2016-09-25 18:05:16 ----A---- C:\Windows\system32\PerfStringBackup.INI
2016-09-25 17:55:33 ----D---- C:\Program Files\Microsoft Silverlight
2016-09-25 17:55:32 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2016-09-25 17:53:48 ----D---- C:\Windows\SYSWOW64\sr-Latn-CS
2016-09-25 17:53:48 ----D---- C:\Windows\SYSWOW64\sl-SI
2016-09-25 17:53:48 ----D---- C:\Windows\SYSWOW64\pl-PL
2016-09-25 17:53:48 ----D---- C:\Windows\SYSWOW64\lv-LV
2016-09-25 17:53:48 ----D---- C:\Windows\SYSWOW64\hu-HU
2016-09-25 17:53:48 ----D---- C:\Windows\SYSWOW64\hr-HR
2016-09-25 17:53:48 ----D---- C:\Windows\SYSWOW64\bg-BG
2016-09-25 17:53:48 ----D---- C:\Program Files\Internet Explorer
2016-09-25 17:53:48 ----D---- C:\Program Files (x86)\Internet Explorer
2016-09-25 17:53:47 ----D---- C:\Windows\SYSWOW64\sk-SK
2016-09-25 17:53:47 ----D---- C:\Windows\SYSWOW64\ro-RO
2016-09-25 17:53:47 ----D---- C:\Windows\SYSWOW64\lt-LT
2016-09-25 17:53:47 ----D---- C:\Windows\SYSWOW64\et-EE
2016-09-25 17:53:47 ----D---- C:\Windows\SYSWOW64\en-US
2016-09-25 17:53:47 ----D---- C:\Windows\SYSWOW64\cs-CZ
2016-09-25 17:53:46 ----D---- C:\Windows\system32\sr-Latn-CS
2016-09-25 17:53:46 ----D---- C:\Windows\system32\sl-SI
2016-09-25 17:53:46 ----D---- C:\Windows\system32\sk-SK
2016-09-25 17:53:46 ----D---- C:\Windows\system32\pl-PL
2016-09-25 17:53:46 ----D---- C:\Windows\system32\lv-LV
2016-09-25 17:53:46 ----D---- C:\Windows\system32\lt-LT
2016-09-25 17:53:46 ----D---- C:\Windows\system32\hu-HU
2016-09-25 17:53:46 ----D---- C:\Windows\system32\hr-HR
2016-09-25 17:53:46 ----D---- C:\Windows\system32\bg-BG
2016-09-25 17:53:45 ----D---- C:\Windows\system32\ro-RO
2016-09-25 17:53:45 ----D---- C:\Windows\system32\et-EE
2016-09-25 17:53:45 ----D---- C:\Windows\system32\en-US
2016-09-25 17:53:45 ----D---- C:\Windows\system32\cs-CZ
2016-09-25 17:53:42 ----D---- C:\Windows\system32\Boot
2016-09-25 17:53:42 ----D---- C:\Windows\AppPatch
2016-09-25 17:40:19 ----D---- C:\Windows\system32\MRT
2016-09-25 17:39:53 ----AC---- C:\Windows\system32\MRT.exe
2016-09-25 17:37:01 ----D---- C:\Windows\system32\catroot2
2016-09-25 17:22:05 ----D---- C:\Users\Dášenka\AppData\Roaming\SoftGrid Client
2016-09-25 17:21:13 ----D---- C:\Windows
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2016-09-25 74544]
R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2016-10-14 293352]
R0 AtiPcie;AMD PCI Express (3GIO) Filter; C:\Windows\system32\DRIVERS\AtiPcie.sys [2009-05-05 16440]
R0 lullaby;lullaby; C:\Windows\system32\DRIVERS\lullaby.sys [2009-06-18 15928]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R1 aswKbd;aswKbd; C:\Windows\system32\drivers\aswKbd.sys [2016-09-25 37144]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2016-09-25 103064]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2016-09-25 969184]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2016-09-25 513632]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 ASMMAP64;ASMMAP64; \??\C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys [2009-07-03 15416]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2016-09-25 108816]
R2 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2016-09-25 163416]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2010-03-30 6657536]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2010-03-30 195584]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athrx.sys [2011-06-27 2753536]
R3 AtiHdmiService;ATI Service for HD Audio Codec; C:\Windows\system32\drivers\AtiHdmi.sys [2009-07-23 119312]
R3 ETD;ELAN PS/2 Port Input Device; C:\Windows\system32\DRIVERS\ETD.sys [2010-01-18 128512]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2010-04-13 2345760]
R3 JMCR;JMCR; C:\Windows\system32\DRIVERS\jmcr.sys [2009-08-18 143472]
R3 JME;JMicron Ethernet Adapter NDIS6.20 Driver (Amd64 Bits); C:\Windows\system32\DRIVERS\JME.sys [2010-02-25 115312]
R3 kbfiltr;Keyboard Filter; C:\Windows\system32\DRIVERS\kbfiltr.sys [2009-07-20 15416]
R3 MTsensor;ATK0100 ACPI UTILITY; C:\Windows\system32\DRIVERS\ATK64AMD.sys [2009-05-13 15928]
R3 Sftfs;Sftfs; C:\Windows\system32\DRIVERS\Sftfslh.sys [2014-10-08 766632]
R3 Sftplay;Sftplay; C:\Windows\system32\DRIVERS\Sftplaylh.sys [2014-10-08 273576]
R3 Sftredir;Sftredir; C:\Windows\system32\DRIVERS\Sftredirlh.sys [2014-10-08 29352]
R3 Sftvol;Sftvol; C:\Windows\system32\DRIVERS\Sftvollh.sys [2014-10-08 23208]
R3 SNP2UVC;USB2.0 PC Camera (SNP2UVC); C:\Windows\system32\DRIVERS\snp2uvc.sys [2009-06-05 1806400]
R3 usbfilter;AMD USB Filter Driver; C:\Windows\system32\DRIVERS\usbfilter.sys [2009-12-22 38456]
S3 aswHwid;avast! HardwareID; C:\Windows\system32\drivers\aswHwid.sys [2016-09-25 37656]
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2008-12-08 61792]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 sdbus;sdbus; C:\Windows\system32\drivers\sdbus.sys [2010-11-20 109056]
S3 SiSGbeLH;SiS191/SiS190 Ethernet Device NDIS 6.0 Driver; C:\Windows\system32\DRIVERS\SiSG664.sys [2009-06-10 56832]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2013-10-02 56832]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2013-07-03 42496]
S3 WimFltr;WimFltr; C:\Windows\system32\DRIVERS\wimfltr.sys [2008-05-24 154168]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2016-09-16 82128]
R2 AFBAgent;AFBAgent; C:\Windows\system32\FBAgent.exe [2009-12-08 379520]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2010-03-30 202752]
R2 ASLDRService;ASLDR Service; C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe [2009-06-16 84536]
R2 ATKGFNEXSrv;ATKGFNEX Service; C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe [2009-12-15 96896]
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2016-09-25 197128]
R2 BBUpdate;BBUpdate; C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE [2011-10-13 249648]
R2 cvhsvc;Client Virtualization Handler; C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE [2015-03-18 822496]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 sftlist;Application Virtualization Client; C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe [2014-10-08 534184]
R3 sftvsa;Application Virtualization Service Agent; C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe [2014-10-08 211104]
S2 BBSvc;Bing Bar Update Service; C:\Program Files (x86)\Microsoft\BingBar\BBSvc.EXE [2011-10-21 196176]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2015-11-05 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2015-11-05 125112]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2016-09-20 324224]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-10-14 270016]
S3 fsssvc;Windows Live Zabezpečení rodiny; C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2008-12-08 533344]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2016-09-01 114688]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2016-06-16 146888]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S3 Partner Service;Partner Service; C:\ProgramData\Partner\Partner.exe [2010-08-24 332272]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2015-12-21 1255736]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2015-11-05 51376]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-11-05 135848]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-11-05 135848]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-11-05 135848]
-----------------EOF-----------------
Logfile of random's system information tool 1.10 (written by random/random)
Run by Dášenka at 2016-10-18 19:41:50
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 7 GB (10%) free of 76 GB
Total RAM: 3838 MB (40% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 19:42:11, on 18.10.2016
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.18450)
Boot mode: Normal
Running processes:
C:\Windows\AsScrPro.exe
C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe
C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe
C:\Program Files (x86)\ASUS\ASUS Live Update\ALU.exe
C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe
C:\Program Files (x86)\Boingo\Boingo Wi-Fi\Boingo Wi-Fi.exe
C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
C:\Program Files (x86)\Adobe\Reader 11.0\Reader\Reader_sl.exe
C:\Program Files\trend micro\Dášenka.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://asus.msn.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Partner BHO Class - {83FF80F4-8C74-4b80-B5BA-C8DDD434E5C4} - C:\ProgramData\Partner\Partner.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Pomocník pro přihlášení ke službě Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - "C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll" (file missing)
O3 - Toolbar: Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - "C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll" (file missing)
O4 - HKLM\..\Run: [UpdateLBPShortCut] "C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\LabelPrint" UpdateWithCreateOnce "Software\CyberLink\LabelPrint\2.5"
O4 - HKLM\..\Run: [UpdateP2GoShortCut] "C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\6.0"
O4 - HKLM\..\Run: [Boingo Wi-Fi] "C:\Program Files (x86)\Boingo\Boingo Wi-Fi\Boingo.lnk"
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [ATKOSD2] C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
O4 - HKLM\..\Run: [ATKMEDIA] C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
O4 - HKLM\..\Run: [HControlUser] C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'Default user')
O4 - Global Startup: FancyStart daemon.lnk = ?
O4 - Global Startup: SRS Premium Sound.lnk = ?
O9 - Extra button: Přidat na blog - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Přidat na blog Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: AFBAgent - Unknown owner - C:\Windows\system32\FBAgent.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: ASLDR Service (ASLDRService) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Partner Service - Google Inc. - C:\ProgramData\Partner\Partner.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 9205 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
winlogon.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
"C:\Program Files (x86)\ASUS\SmartLogon\smartlogon.exe" -switch-3be2f036c43042cdb03588591c9325c3
atieclxx
C:\Windows\system32\atibtmon.exe Global\Ati_VariBrightMonitorEvent
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Windows\system32\FBAgent.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe"
"C:\Windows\system32\Dwm.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe"
C:\Windows\Explorer.EXE
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
"C:\Windows\AsScrPro.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe"
"C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
taskeng.exe {5D73935D-A2BC-44D3-B80A-85D5E54D50AB}
"taskhost.exe"
"C:\Program Files\Elantech\ETDCtrl.exe"
taskeng.exe {E19A4E0B-5C2A-4A3C-B6F6-1477C3044DDB}
"C:\Program Files (x86)\ASUS\ASUS WebStorage\SERVICE\AsusWSService.exe"
"C:\Program Files\SRS Labs\SRS Premium Sound Control Panel\SRSPremiumPanel_64.exe" /f=srs_premium_sound_nopreset.zip /h
"C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe"
"C:\Program Files (x86)\ASUS\ASUS Live Update\ALU.exe"
"C:\Program Files (x86)\ASUS\ASUS CopyProtect\aspg.exe"
"C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE"
"C:\Program Files\P4G\BatteryLife.exe"
"C:\Program Files (x86)\ASUS\Splendid\ACMON.exe"
"C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe"
C:\Windows\System32\svchost.exe -k utcsvc
"C:\Program Files (x86)\Boingo\Boingo Wi-Fi\Boingo Wi-Fi.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM"
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
"C:\Windows\SysWOW64\ACEngSvr.exe" -Embedding
"C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe"
"C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE"
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\servicing\TrustedInstaller.exe
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files\Elantech\ETDCtrlHelper.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
taskmgr.exe /3
C:\Windows\system32\wbem\unsecapp.exe -Embedding
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\wbem\wmiprvse.exe
ATKOSD.exe
WDC.exe
C:\Windows\system32\CompatTelRunner.exe
taskeng.exe {6F6AE503-BB06-48E0-ABC9-3AA04E3FEA02}
\??\C:\Windows\system32\conhost.exe "995131302-2047329450-15411583941900983935-16925347221596242254591516996-1273239596
C:\Windows\system32\CompatTelRunner.exe -m:appraiser.dll -f:DoScheduledTelemetryRun -cv:Nw/hwKU9tUaf2tpE.1
"C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe"
C:\Windows\system32\msiexec.exe /V
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\Windows\system32\rundll32.exe C:\Windows\system32\GeneralTel.dll,RunGeneralTelemetry -cV Nw/hwKU9tUaf2tpE.1.1 -SendFullTelemetry -ThrottleUtc -TelemetryAllowed
"C:\Program Files\AVAST Software\SZBrowser\Temp\CProgram FilesAVAST SoftwareSZBrowser\installing\installer.exe" --install --silent --autoupdate --installfolder="C:\Program Files\AVAST Software\SZBrowser" --launchopera=0 --crash-reporter-parent-id=2084
"C:\Windows\system32\wuauclt.exe"
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
C:\Windows\system32\sppsvc.exe
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe5_ Global\UsGthrCtrlFltPipeMssGthrPipe5 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 512 516 524 65536 520
C:\Windows\system32\svchost.exe -k WbioSvcGroup
"C:\Users\Dášenka\Downloads\RSITx64.exe"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\Windows\system32\rundll32.exe C:\Windows\system32\GeneralTel.dll,DoCensusRun Nw/hwKU9tUaf2tpE.1.1.3
/Skip /BackFromArmUpdate
"C:\Program Files (x86)\Adobe\Reader 11.0\Reader\Reader_sl.exe"
rundll32 C:\Windows\system32\GeneralTel.dll,RunInUserCxt Nw/hwKU9tUaf2tpE.1.1.3.1 Census
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
=========Mozilla firefox=========
ProfilePath - C:\Users\Dášenka\AppData\Roaming\Mozilla\Firefox\Profiles\zj1bn5pi.default
prefs.js - "browser.startup.homepage" - "www.seznam.cz"
"wrc@avast.com"=C:\Program Files\AVAST Software\Avast\WebRep\FF
"sp@avast.com"=C:\Program Files\AVAST Software\Avast\SafePrice\FF
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 23.0.0.185 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_23_0_0_185.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files (x86)\Microsoft Silverlight\5.1.50709.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=14.0.8051.1204]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 23.0.0.185 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_23_0_0_185.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files\Microsoft Silverlight\5.1.50709.0\npctrl.dll
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4f3ed5cd-0726-42a9-87f5-d13f3d2976ac}]
Windows Live Family Safety Browser Helper Class - C:\Program Files\Windows Live\Family Safety\fssbho.dll [2008-12-08 68960]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{83FF80F4-8C74-4b80-B5BA-C8DDD434E5C4}]
Partner BHO Class - C:\ProgramData\Partner\Partner64.dll [2010-08-24 750064]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2016-09-25 948792]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{83FF80F4-8C74-4b80-B5BA-C8DDD434E5C4}]
Partner BHO Class - C:\ProgramData\Partner\Partner.dll [2010-08-24 433648]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2016-09-25 713440]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocník pro přihlášení ke službě Windows Live - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-02-17 408440]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d2ce3e00-f94a-4740-988e-03dc2f38c34f}]
Bing Bar Helper - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll [2011-10-21 1219152]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{8dcb7100-df86-4384-8842-8fa844297b3f} - Bing Bar - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll [2011-10-21 1219152]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"ETDWare"=C:\Program Files\Elantech\ETDCtrl.exe [2010-01-13 635784]
"ASUS WebStorage"=C:\Program Files (x86)\ASUS\ASUS WebStorage\SERVICE\AsusWSService.exe [2010-03-16 1754448]
"Setwallpaper"=c:\programdata\SetWallpaper.cmd []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Screen Saver Protector]
C:\Windows\AsScrPro.exe [2010-08-24 3054136]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CLMLServer]
C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe [2009-11-02 103720]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RtHDVCpl]
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2010-04-13 10144288]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"UpdateLBPShortCut"=C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe [2009-05-20 222504]
"UpdateP2GoShortCut"=C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe [2009-05-20 222504]
"Boingo Wi-Fi"=C:\Program Files (x86)\Boingo\Boingo Wi-Fi\Boingo.lnk [2010-08-24 2429]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2010-03-31 102400]
"ATKOSD2"=C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [2010-02-04 7350912]
"ATKMEDIA"=C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [2010-01-05 170624]
"HControlUser"=C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe [2009-06-19 105016]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2016-09-25 9107616]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
FancyStart daemon.lnk - C:\Windows\Installer\{2B81872B-A054-48DA-BE3B-FA5C164C303A}\_C4A2FC3E3722966204FDD8.exe
SRS Premium Sound.lnk - C:\Windows\Installer\{E5CF6B9C-3ABE-43C9-9413-AD5FFC98F049}\NewShortcut5_21C7B668029A47458B27645FE6E4A715.exe
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"SoftwareSASGeneration"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2016-10-18 19:41:51 ----D---- C:\Program Files\trend micro
2016-10-18 19:41:50 ----D---- C:\rsit
2016-09-25 17:39:22 ----A---- C:\Windows\SYSWOW64\tzres.dll
2016-09-25 17:39:22 ----A---- C:\Windows\system32\tzres.dll
2016-09-25 17:39:20 ----A---- C:\Windows\SYSWOW64\oleaut32.dll
2016-09-25 17:39:20 ----A---- C:\Windows\system32\oleaut32.dll
2016-09-25 17:39:19 ----A---- C:\Windows\system32\drivers\tcpip.sys
2016-09-25 17:39:18 ----A---- C:\Windows\SYSWOW64\INETRES.dll
2016-09-25 17:39:18 ----A---- C:\Windows\SYSWOW64\inetcomm.dll
2016-09-25 17:39:18 ----A---- C:\Windows\system32\INETRES.dll
2016-09-25 17:39:18 ----A---- C:\Windows\system32\inetcomm.dll
2016-09-25 17:39:18 ----A---- C:\Windows\system32\drivers\tcpipreg.sys
2016-09-25 17:39:18 ----A---- C:\Windows\system32\drivers\netio.sys
2016-09-25 17:39:18 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2016-09-25 17:39:17 ----A---- C:\Windows\system32\drivers\srv.sys
2016-09-25 17:39:16 ----A---- C:\Windows\system32\drivers\srvnet.sys
2016-09-25 17:39:16 ----A---- C:\Windows\system32\drivers\srv2.sys
2016-09-25 17:39:11 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2016-09-25 17:39:11 ----A---- C:\Windows\SYSWOW64\occache.dll
2016-09-25 17:39:11 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2016-09-25 17:39:11 ----A---- C:\Windows\SYSWOW64\inseng.dll
2016-09-25 17:39:11 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2016-09-25 17:39:11 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2016-09-25 17:39:11 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2016-09-25 17:39:11 ----A---- C:\Windows\system32\inseng.dll
2016-09-25 17:39:11 ----A---- C:\Windows\system32\iernonce.dll
2016-09-25 17:39:11 ----A---- C:\Windows\system32\ieetwproxystub.dll
2016-09-25 17:39:11 ----A---- C:\Windows\system32\ieetwcollector.exe
2016-09-25 17:39:11 ----A---- C:\Windows\system32\ie4uinit.exe
2016-09-25 17:39:10 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2016-09-25 17:39:10 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2016-09-25 17:39:10 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2016-09-25 17:39:10 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2016-09-25 17:39:10 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2016-09-25 17:39:10 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2016-09-25 17:39:08 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2016-09-25 17:39:08 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2016-09-25 17:39:08 ----A---- C:\Windows\SYSWOW64\jscript.dll
2016-09-25 17:39:08 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2016-09-25 17:39:08 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2016-09-25 17:39:08 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2016-09-25 17:39:08 ----A---- C:\Windows\system32\urlmon.dll
2016-09-25 17:39:08 ----A---- C:\Windows\system32\occache.dll
2016-09-25 17:39:08 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2016-09-25 17:39:08 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2016-09-25 17:39:08 ----A---- C:\Windows\system32\iedkcs32.dll
2016-09-25 17:39:07 ----A---- C:\Windows\SYSWOW64\ieui.dll
2016-09-25 17:39:07 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2016-09-25 17:39:07 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2016-09-25 17:39:07 ----A---- C:\Windows\system32\msfeeds.dll
2016-09-25 17:39:07 ----A---- C:\Windows\system32\iesetup.dll
2016-09-25 17:39:07 ----A---- C:\Windows\system32\dxtrans.dll
2016-09-25 17:39:06 ----A---- C:\Windows\system32\ieapfltr.dll
2016-09-25 17:39:05 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2016-09-25 17:39:05 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2016-09-25 17:39:05 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2016-09-25 17:39:05 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2016-09-25 17:39:05 ----A---- C:\Windows\system32\vbscript.dll
2016-09-25 17:39:05 ----A---- C:\Windows\system32\iertutil.dll
2016-09-25 17:39:04 ----A---- C:\Windows\SYSWOW64\wininet.dll
2016-09-25 17:39:04 ----A---- C:\Windows\SYSWOW64\msrating.dll
2016-09-25 17:39:04 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2016-09-25 17:39:04 ----A---- C:\Windows\system32\jsproxy.dll
2016-09-25 17:39:03 ----A---- C:\Windows\system32\ieui.dll
2016-09-25 17:39:03 ----A---- C:\Windows\system32\ieframe.dll
2016-09-25 17:39:03 ----A---- C:\Windows\system32\dxtmsft.dll
2016-09-25 17:39:02 ----A---- C:\Windows\system32\webcheck.dll
2016-09-25 17:39:02 ----A---- C:\Windows\system32\mshtmlmedia.dll
2016-09-25 17:39:02 ----A---- C:\Windows\system32\mshtmled.dll
2016-09-25 17:39:02 ----A---- C:\Windows\system32\jscript.dll
2016-09-25 17:39:02 ----A---- C:\Windows\system32\ieUnatt.exe
2016-09-25 17:39:01 ----A---- C:\Windows\system32\wininet.dll
2016-09-25 17:39:01 ----A---- C:\Windows\system32\jscript9diag.dll
2016-09-25 17:39:01 ----A---- C:\Windows\system32\jscript9.dll
2016-09-25 17:39:00 ----A---- C:\Windows\system32\msrating.dll
2016-09-25 17:39:00 ----A---- C:\Windows\system32\MshtmlDac.dll
2016-09-25 17:38:59 ----A---- C:\Windows\system32\mshtml.dll
2016-09-25 17:38:32 ----A---- C:\Windows\SYSWOW64\user32.dll
2016-09-25 17:38:32 ----A---- C:\Windows\system32\win32k.sys
2016-09-25 17:38:32 ----A---- C:\Windows\system32\user32.dll
2016-09-25 17:38:10 ----A---- C:\Windows\system32\ntoskrnl.exe
2016-09-25 17:38:10 ----A---- C:\Windows\system32\lsasrv.dll
2016-09-25 17:38:09 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2016-09-25 17:38:09 ----A---- C:\Windows\system32\rpcrt4.dll
2016-09-25 17:38:08 ----A---- C:\Windows\SYSWOW64\schannel.dll
2016-09-25 17:38:08 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2016-09-25 17:38:08 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2016-09-25 17:38:08 ----A---- C:\Windows\system32\schannel.dll
2016-09-25 17:38:08 ----A---- C:\Windows\system32\msv1_0.dll
2016-09-25 17:38:08 ----A---- C:\Windows\system32\kernel32.dll
2016-09-25 17:38:08 ----A---- C:\Windows\system32\kerberos.dll
2016-09-25 17:38:07 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2016-09-25 17:38:07 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2016-09-25 17:38:06 ----A---- C:\Windows\system32\ntdll.dll
2016-09-25 17:38:05 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2016-09-25 17:38:05 ----A---- C:\Windows\system32\rpchttp.dll
2016-09-25 17:38:05 ----A---- C:\Windows\system32\ncrypt.dll
2016-09-25 17:38:05 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2016-09-25 17:38:04 ----A---- C:\Windows\SYSWOW64\adtschema.dll
2016-09-25 17:38:04 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2016-09-25 17:38:04 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2016-09-25 17:38:04 ----A---- C:\Windows\system32\certcli.dll
2016-09-25 17:38:04 ----A---- C:\Windows\system32\adtschema.dll
2016-09-25 17:38:03 ----A---- C:\Windows\SYSWOW64\rpchttp.dll
2016-09-25 17:38:03 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2016-09-25 17:38:03 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2016-09-25 17:38:03 ----A---- C:\Windows\system32\wdigest.dll
2016-09-25 17:38:03 ----A---- C:\Windows\system32\TSpkg.dll
2016-09-25 17:38:03 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2016-09-25 17:38:02 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2016-09-25 17:38:02 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2016-09-25 17:38:02 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2016-09-25 17:38:02 ----A---- C:\Windows\SYSWOW64\secur32.dll
2016-09-25 17:38:02 ----A---- C:\Windows\SYSWOW64\msobjs.dll
2016-09-25 17:38:02 ----A---- C:\Windows\SYSWOW64\msaudite.dll
2016-09-25 17:38:02 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2016-09-25 17:38:02 ----A---- C:\Windows\SYSWOW64\cryptbase.dll
2016-09-25 17:38:02 ----A---- C:\Windows\SYSWOW64\credssp.dll
2016-09-25 17:38:02 ----A---- C:\Windows\SYSWOW64\certcli.dll
2016-09-25 17:38:02 ----A---- C:\Windows\SYSWOW64\auditpol.exe
2016-09-25 17:38:02 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2016-09-25 17:38:02 ----A---- C:\Windows\system32\wow64win.dll
2016-09-25 17:38:02 ----A---- C:\Windows\system32\wow64.dll
2016-09-25 17:38:02 ----A---- C:\Windows\system32\winsrv.dll
2016-09-25 17:38:02 ----A---- C:\Windows\system32\sspisrv.dll
2016-09-25 17:38:02 ----A---- C:\Windows\system32\sspicli.dll
2016-09-25 17:38:02 ----A---- C:\Windows\system32\srcore.dll
2016-09-25 17:38:02 ----A---- C:\Windows\system32\smss.exe
2016-09-25 17:38:02 ----A---- C:\Windows\system32\secur32.dll
2016-09-25 17:38:02 ----A---- C:\Windows\system32\msobjs.dll
2016-09-25 17:38:02 ----A---- C:\Windows\system32\msaudite.dll
2016-09-25 17:38:02 ----A---- C:\Windows\system32\lsass.exe
2016-09-25 17:38:02 ----A---- C:\Windows\system32\KernelBase.dll
2016-09-25 17:38:02 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2016-09-25 17:38:02 ----A---- C:\Windows\system32\csrsrv.dll
2016-09-25 17:38:02 ----A---- C:\Windows\system32\cryptbase.dll
2016-09-25 17:38:02 ----A---- C:\Windows\system32\credssp.dll
2016-09-25 17:38:02 ----A---- C:\Windows\system32\conhost.exe
2016-09-25 17:38:02 ----A---- C:\Windows\system32\auditpol.exe
2016-09-25 17:38:02 ----A---- C:\Windows\system32\advapi32.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2016-09-25 17:38:01 ----A---- C:\Windows\SYSWOW64\wow32.dll
2016-09-25 17:38:01 ----A---- C:\Windows\SYSWOW64\user.exe
2016-09-25 17:38:01 ----A---- C:\Windows\SYSWOW64\srclient.dll
2016-09-25 17:38:01 ----A---- C:\Windows\SYSWOW64\setup16.exe
2016-09-25 17:38:01 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2016-09-25 17:38:01 ----A---- C:\Windows\SYSWOW64\instnm.exe
2016-09-25 17:38:01 ----A---- C:\Windows\SYSWOW64\appidapi.dll
2016-09-25 17:38:01 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2016-09-25 17:38:01 ----A---- C:\Windows\system32\wow64cpu.dll
2016-09-25 17:38:01 ----A---- C:\Windows\system32\srclient.dll
2016-09-25 17:38:01 ----A---- C:\Windows\system32\setbcdlocale.dll
2016-09-25 17:38:01 ----A---- C:\Windows\system32\rstrui.exe
2016-09-25 17:38:01 ----A---- C:\Windows\system32\ntvdm64.dll
2016-09-25 17:38:01 ----A---- C:\Windows\system32\drivers\appid.sys
2016-09-25 17:38:01 ----A---- C:\Windows\system32\appidsvc.dll
2016-09-25 17:38:01 ----A---- C:\Windows\system32\appidpolicyconverter.exe
2016-09-25 17:38:01 ----A---- C:\Windows\system32\appidcertstorecheck.exe
2016-09-25 17:38:01 ----A---- C:\Windows\system32\appidapi.dll
2016-09-25 17:38:01 ----A---- C:\Windows\system32\apisetschema.dll
2016-09-25 17:21:16 ----A---- C:\Windows\system32\aswBoot.exe
2016-09-25 17:20:38 ----A---- C:\Windows\avastSS.scr
======List of files/folders modified in the last 1 month======
2016-10-18 19:41:51 ----SHD---- C:\Windows\Installer
2016-10-18 19:41:51 ----RD---- C:\Program Files
2016-10-18 19:41:51 ----D---- C:\Windows\Temp
2016-10-18 19:41:47 ----D---- C:\Windows\system32\Tasks
2016-10-18 19:41:46 ----D---- C:\Windows\winsxs
2016-10-18 19:34:53 ----D---- C:\Windows\system32\drivers
2016-10-18 19:33:09 ----D---- C:\Users\Dášenka\AppData\Roaming\Skype
2016-10-18 19:31:52 ----RD---- C:\Program Files (x86)\Skype
2016-10-18 19:31:52 ----D---- C:\Program Files (x86)\Common Files
2016-10-18 19:30:41 ----D---- C:\ProgramData\Skype
2016-10-14 15:24:07 ----D---- C:\Windows\system32\NDF
2016-10-14 15:16:51 ----D---- C:\Windows\SysWOW64
2016-10-14 15:16:40 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2016-10-14 15:16:21 ----D---- C:\Windows\system32\Macromed
2016-10-14 15:16:05 ----D---- C:\Windows\SYSWOW64\Macromed
2016-10-04 13:33:20 ----D---- C:\Windows\system32\config
2016-09-25 18:05:16 ----D---- C:\Windows\System32
2016-09-25 18:05:16 ----D---- C:\Windows\inf
2016-09-25 18:05:16 ----A---- C:\Windows\system32\PerfStringBackup.INI
2016-09-25 17:55:33 ----D---- C:\Program Files\Microsoft Silverlight
2016-09-25 17:55:32 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2016-09-25 17:53:48 ----D---- C:\Windows\SYSWOW64\sr-Latn-CS
2016-09-25 17:53:48 ----D---- C:\Windows\SYSWOW64\sl-SI
2016-09-25 17:53:48 ----D---- C:\Windows\SYSWOW64\pl-PL
2016-09-25 17:53:48 ----D---- C:\Windows\SYSWOW64\lv-LV
2016-09-25 17:53:48 ----D---- C:\Windows\SYSWOW64\hu-HU
2016-09-25 17:53:48 ----D---- C:\Windows\SYSWOW64\hr-HR
2016-09-25 17:53:48 ----D---- C:\Windows\SYSWOW64\bg-BG
2016-09-25 17:53:48 ----D---- C:\Program Files\Internet Explorer
2016-09-25 17:53:48 ----D---- C:\Program Files (x86)\Internet Explorer
2016-09-25 17:53:47 ----D---- C:\Windows\SYSWOW64\sk-SK
2016-09-25 17:53:47 ----D---- C:\Windows\SYSWOW64\ro-RO
2016-09-25 17:53:47 ----D---- C:\Windows\SYSWOW64\lt-LT
2016-09-25 17:53:47 ----D---- C:\Windows\SYSWOW64\et-EE
2016-09-25 17:53:47 ----D---- C:\Windows\SYSWOW64\en-US
2016-09-25 17:53:47 ----D---- C:\Windows\SYSWOW64\cs-CZ
2016-09-25 17:53:46 ----D---- C:\Windows\system32\sr-Latn-CS
2016-09-25 17:53:46 ----D---- C:\Windows\system32\sl-SI
2016-09-25 17:53:46 ----D---- C:\Windows\system32\sk-SK
2016-09-25 17:53:46 ----D---- C:\Windows\system32\pl-PL
2016-09-25 17:53:46 ----D---- C:\Windows\system32\lv-LV
2016-09-25 17:53:46 ----D---- C:\Windows\system32\lt-LT
2016-09-25 17:53:46 ----D---- C:\Windows\system32\hu-HU
2016-09-25 17:53:46 ----D---- C:\Windows\system32\hr-HR
2016-09-25 17:53:46 ----D---- C:\Windows\system32\bg-BG
2016-09-25 17:53:45 ----D---- C:\Windows\system32\ro-RO
2016-09-25 17:53:45 ----D---- C:\Windows\system32\et-EE
2016-09-25 17:53:45 ----D---- C:\Windows\system32\en-US
2016-09-25 17:53:45 ----D---- C:\Windows\system32\cs-CZ
2016-09-25 17:53:42 ----D---- C:\Windows\system32\Boot
2016-09-25 17:53:42 ----D---- C:\Windows\AppPatch
2016-09-25 17:40:19 ----D---- C:\Windows\system32\MRT
2016-09-25 17:39:53 ----AC---- C:\Windows\system32\MRT.exe
2016-09-25 17:37:01 ----D---- C:\Windows\system32\catroot2
2016-09-25 17:22:05 ----D---- C:\Users\Dášenka\AppData\Roaming\SoftGrid Client
2016-09-25 17:21:13 ----D---- C:\Windows
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2016-09-25 74544]
R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2016-10-14 293352]
R0 AtiPcie;AMD PCI Express (3GIO) Filter; C:\Windows\system32\DRIVERS\AtiPcie.sys [2009-05-05 16440]
R0 lullaby;lullaby; C:\Windows\system32\DRIVERS\lullaby.sys [2009-06-18 15928]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R1 aswKbd;aswKbd; C:\Windows\system32\drivers\aswKbd.sys [2016-09-25 37144]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2016-09-25 103064]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2016-09-25 969184]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2016-09-25 513632]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 ASMMAP64;ASMMAP64; \??\C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys [2009-07-03 15416]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2016-09-25 108816]
R2 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2016-09-25 163416]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2010-03-30 6657536]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2010-03-30 195584]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athrx.sys [2011-06-27 2753536]
R3 AtiHdmiService;ATI Service for HD Audio Codec; C:\Windows\system32\drivers\AtiHdmi.sys [2009-07-23 119312]
R3 ETD;ELAN PS/2 Port Input Device; C:\Windows\system32\DRIVERS\ETD.sys [2010-01-18 128512]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2010-04-13 2345760]
R3 JMCR;JMCR; C:\Windows\system32\DRIVERS\jmcr.sys [2009-08-18 143472]
R3 JME;JMicron Ethernet Adapter NDIS6.20 Driver (Amd64 Bits); C:\Windows\system32\DRIVERS\JME.sys [2010-02-25 115312]
R3 kbfiltr;Keyboard Filter; C:\Windows\system32\DRIVERS\kbfiltr.sys [2009-07-20 15416]
R3 MTsensor;ATK0100 ACPI UTILITY; C:\Windows\system32\DRIVERS\ATK64AMD.sys [2009-05-13 15928]
R3 Sftfs;Sftfs; C:\Windows\system32\DRIVERS\Sftfslh.sys [2014-10-08 766632]
R3 Sftplay;Sftplay; C:\Windows\system32\DRIVERS\Sftplaylh.sys [2014-10-08 273576]
R3 Sftredir;Sftredir; C:\Windows\system32\DRIVERS\Sftredirlh.sys [2014-10-08 29352]
R3 Sftvol;Sftvol; C:\Windows\system32\DRIVERS\Sftvollh.sys [2014-10-08 23208]
R3 SNP2UVC;USB2.0 PC Camera (SNP2UVC); C:\Windows\system32\DRIVERS\snp2uvc.sys [2009-06-05 1806400]
R3 usbfilter;AMD USB Filter Driver; C:\Windows\system32\DRIVERS\usbfilter.sys [2009-12-22 38456]
S3 aswHwid;avast! HardwareID; C:\Windows\system32\drivers\aswHwid.sys [2016-09-25 37656]
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2008-12-08 61792]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 sdbus;sdbus; C:\Windows\system32\drivers\sdbus.sys [2010-11-20 109056]
S3 SiSGbeLH;SiS191/SiS190 Ethernet Device NDIS 6.0 Driver; C:\Windows\system32\DRIVERS\SiSG664.sys [2009-06-10 56832]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2013-10-02 56832]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2013-07-03 42496]
S3 WimFltr;WimFltr; C:\Windows\system32\DRIVERS\wimfltr.sys [2008-05-24 154168]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2016-09-16 82128]
R2 AFBAgent;AFBAgent; C:\Windows\system32\FBAgent.exe [2009-12-08 379520]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2010-03-30 202752]
R2 ASLDRService;ASLDR Service; C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe [2009-06-16 84536]
R2 ATKGFNEXSrv;ATKGFNEX Service; C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe [2009-12-15 96896]
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2016-09-25 197128]
R2 BBUpdate;BBUpdate; C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE [2011-10-13 249648]
R2 cvhsvc;Client Virtualization Handler; C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE [2015-03-18 822496]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 sftlist;Application Virtualization Client; C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe [2014-10-08 534184]
R3 sftvsa;Application Virtualization Service Agent; C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe [2014-10-08 211104]
S2 BBSvc;Bing Bar Update Service; C:\Program Files (x86)\Microsoft\BingBar\BBSvc.EXE [2011-10-21 196176]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2015-11-05 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2015-11-05 125112]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2016-09-20 324224]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-10-14 270016]
S3 fsssvc;Windows Live Zabezpečení rodiny; C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2008-12-08 533344]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2016-09-01 114688]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2016-06-16 146888]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S3 Partner Service;Partner Service; C:\ProgramData\Partner\Partner.exe [2010-08-24 332272]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2015-12-21 1255736]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2015-11-05 51376]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-11-05 135848]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-11-05 135848]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-11-05 135848]
-----------------EOF-----------------
- Rudy
- Site Admin
- Příspěvky: 118275
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Dloooouhýýýý start systému a pomalý chod NTB
Zdravím!
Spusťte tuto utilitu:
Spusťte tuto utilitu:
Stáhněte AdwCleaner https://toolslib.net/downloads/viewdown ... dwcleaner/
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Dloooouhýýýý start systému a pomalý chod NTB
Děkuji za rychlou odpověď, zde je výsledek:
# AdwCleaner v6.021 - Log soubor vytvořen 18/10/2016 na 21:08:15
# Aktualizováno dne 06/10/2016 z ToolsLib
# Databáze : 2016-10-16.1 [Server]
# Operační systém : Windows 7 Home Premium Service Pack 1 (X64)
# Uživatelské jméno : Dášenka - NTB
# Beží od : C:\Users\Dášenka\Desktop\adwcleaner_6.021.exe
# Mod: Čištění
# Podpora : https://toolslib.net/forum
***** [ Služby ] *****
[-] Služby smazány:Partner Service
***** [ Adresáře ] *****
[-] Adresář smazán:C:\ProgramData\Partner
[#] Adresář nelze smazat:C:\ProgramData\Application Data\Partner
***** [ Soubory ] *****
***** [ DLL ] *****
***** [ WMI ] *****
***** [ Zástupce ] *****
***** [ Plánovač úloh ] *****
***** [ Registry ] *****
[-] Klíč smazán:HKLM\SOFTWARE\Classes\kt_bho.KettleBho
[-] Klíč smazán:HKLM\SOFTWARE\Classes\kt_bho.KettleBho.1
[#] Klíč smazán po restartování:[x64] HKLM\SOFTWARE\Classes\kt_bho.KettleBho
[#] Klíč smazán po restartování:[x64] HKLM\SOFTWARE\Classes\kt_bho.KettleBho.1
[-] Klíč smazán:HKLM\SOFTWARE\Classes\AppID\{28A88B70-D874-4F73-BBBA-9B2B222FB7D6}
[-] Klíč smazán:HKLM\SOFTWARE\Classes\CLSID\{83FF80F4-8C74-4B80-B5BA-C8DDD434E5C4}
[-] Klíč smazán:HKLM\SOFTWARE\Classes\TypeLib\{86676E13-D6D8-4652-9FCF-F2047F1FB000}
[-] Klíč smazán:HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{83FF80F4-8C74-4B80-B5BA-C8DDD434E5C4}
[-] Klíč smazán:HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{83FF80F4-8C74-4B80-B5BA-C8DDD434E5C4}
[-] Klíč smazán:HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{83FF80F4-8C74-4B80-B5BA-C8DDD434E5C4}
[-] Hodnota smazána:HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{21FA44EF-376D-4D53-9B0F-8A89D3229068}]
[-] Klíč smazán:HKU\S-1-5-21-615896706-4022001340-1718591862-1000\Software\Conduit
[#] Klíč smazán po restartování:HKCU\Software\Conduit
[-] Klíč smazán:HKLM\SOFTWARE\Conduit
[#] Klíč smazán po restartování:[x64] HKCU\Software\Conduit
[-] Klíč smazán:HKLM\SOFTWARE\Classes\AppID\kt_bho_dll.dll
***** [ Prohlížeče ] *****
*************************
:: "Tracing" klíč smazán
:: Winsock nastavení vyčištěno
*************************
C:\AdwCleaner\AdwCleaner[C0].txt - [2310 Bajtů] - [18/10/2016 21:08:15]
C:\AdwCleaner\AdwCleaner[S0].txt - [2634 Bajtů] - [18/10/2016 21:07:52]
########## EOF - C:\AdwCleaner\AdwCleaner[C0].txt - [2458 Bajtů] ##########
# AdwCleaner v6.021 - Log soubor vytvořen 18/10/2016 na 21:08:15
# Aktualizováno dne 06/10/2016 z ToolsLib
# Databáze : 2016-10-16.1 [Server]
# Operační systém : Windows 7 Home Premium Service Pack 1 (X64)
# Uživatelské jméno : Dášenka - NTB
# Beží od : C:\Users\Dášenka\Desktop\adwcleaner_6.021.exe
# Mod: Čištění
# Podpora : https://toolslib.net/forum
***** [ Služby ] *****
[-] Služby smazány:Partner Service
***** [ Adresáře ] *****
[-] Adresář smazán:C:\ProgramData\Partner
[#] Adresář nelze smazat:C:\ProgramData\Application Data\Partner
***** [ Soubory ] *****
***** [ DLL ] *****
***** [ WMI ] *****
***** [ Zástupce ] *****
***** [ Plánovač úloh ] *****
***** [ Registry ] *****
[-] Klíč smazán:HKLM\SOFTWARE\Classes\kt_bho.KettleBho
[-] Klíč smazán:HKLM\SOFTWARE\Classes\kt_bho.KettleBho.1
[#] Klíč smazán po restartování:[x64] HKLM\SOFTWARE\Classes\kt_bho.KettleBho
[#] Klíč smazán po restartování:[x64] HKLM\SOFTWARE\Classes\kt_bho.KettleBho.1
[-] Klíč smazán:HKLM\SOFTWARE\Classes\AppID\{28A88B70-D874-4F73-BBBA-9B2B222FB7D6}
[-] Klíč smazán:HKLM\SOFTWARE\Classes\CLSID\{83FF80F4-8C74-4B80-B5BA-C8DDD434E5C4}
[-] Klíč smazán:HKLM\SOFTWARE\Classes\TypeLib\{86676E13-D6D8-4652-9FCF-F2047F1FB000}
[-] Klíč smazán:HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{83FF80F4-8C74-4B80-B5BA-C8DDD434E5C4}
[-] Klíč smazán:HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{83FF80F4-8C74-4B80-B5BA-C8DDD434E5C4}
[-] Klíč smazán:HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{83FF80F4-8C74-4B80-B5BA-C8DDD434E5C4}
[-] Hodnota smazána:HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{21FA44EF-376D-4D53-9B0F-8A89D3229068}]
[-] Klíč smazán:HKU\S-1-5-21-615896706-4022001340-1718591862-1000\Software\Conduit
[#] Klíč smazán po restartování:HKCU\Software\Conduit
[-] Klíč smazán:HKLM\SOFTWARE\Conduit
[#] Klíč smazán po restartování:[x64] HKCU\Software\Conduit
[-] Klíč smazán:HKLM\SOFTWARE\Classes\AppID\kt_bho_dll.dll
***** [ Prohlížeče ] *****
*************************
:: "Tracing" klíč smazán
:: Winsock nastavení vyčištěno
*************************
C:\AdwCleaner\AdwCleaner[C0].txt - [2310 Bajtů] - [18/10/2016 21:08:15]
C:\AdwCleaner\AdwCleaner[S0].txt - [2634 Bajtů] - [18/10/2016 21:07:52]
########## EOF - C:\AdwCleaner\AdwCleaner[C0].txt - [2458 Bajtů] ##########
- Rudy
- Site Admin
- Příspěvky: 118275
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Dloooouhýýýý start systému a pomalý chod NTB
Dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Dloooouhýýýý start systému a pomalý chod NTB
zde přikládám:
Logfile of random's system information tool 1.10 (written by random/random)
Run by Dášenka at 2016-10-18 21:42:35
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 7 GB (9%) free of 76 GB
Total RAM: 3838 MB (57% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 21:42:39, on 18.10.2016
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.18450)
Boot mode: Normal
Running processes:
C:\Windows\AsScrPro.exe
C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe
C:\Program Files (x86)\ASUS\ControlDeck\ControlDeck.exe
C:\Program Files (x86)\ASUS\ASUS Live Update\ALU.exe
C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe
C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe
C:\Program Files (x86)\Boingo\Boingo Wi-Fi\Boingo Wi-Fi.exe
C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files\trend micro\Dášenka.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://asus.msn.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Pomocník pro přihlášení ke službě Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - "C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll" (file missing)
O3 - Toolbar: Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - "C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll" (file missing)
O4 - HKLM\..\Run: [UpdateLBPShortCut] "C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\LabelPrint" UpdateWithCreateOnce "Software\CyberLink\LabelPrint\2.5"
O4 - HKLM\..\Run: [UpdateP2GoShortCut] "C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\6.0"
O4 - HKLM\..\Run: [Boingo Wi-Fi] "C:\Program Files (x86)\Boingo\Boingo Wi-Fi\Boingo.lnk"
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [ATKOSD2] C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
O4 - HKLM\..\Run: [ATKMEDIA] C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
O4 - HKLM\..\Run: [HControlUser] C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'Default user')
O4 - Global Startup: FancyStart daemon.lnk = ?
O4 - Global Startup: SRS Premium Sound.lnk = ?
O9 - Extra button: Přidat na blog - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Přidat na blog Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: AFBAgent - Unknown owner - C:\Windows\system32\FBAgent.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: ASLDR Service (ASLDRService) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 8984 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
winlogon.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k NetworkService
atieclxx
"C:\Windows\system32\FBAgent.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe"
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\Windows\System32\spoolsv.exe
"taskhost.exe"
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE"
C:\Windows\System32\svchost.exe -k utcsvc
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Windows\AsScrPro.exe"
taskeng.exe {9B61710C-CFE3-4E98-8487-DFD65D5E34D8}
"C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe"
"C:\Program Files (x86)\ASUS\ControlDeck\ControlDeck.exe"
"C:\Program Files (x86)\ASUS\ASUS Live Update\ALU.exe"
"C:\Program Files (x86)\ASUS\ASUS CopyProtect\aspg.exe"
"C:\Program Files\P4G\BatteryLife.exe"
"C:\Program Files (x86)\ASUS\Splendid\ACMON.exe"
"C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe"
"C:\Windows\SysWOW64\ACEngSvr.exe" -Embedding
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe"
"C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe"
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\wbem\wmiprvse.exe
ATKOSD.exe
"C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE"
WDC.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files\Elantech\ETDCtrl.exe"
"C:\Program Files (x86)\ASUS\ASUS WebStorage\SERVICE\AsusWSService.exe"
"C:\Program Files\SRS Labs\SRS Premium Sound Control Panel\SRSPremiumPanel_64.exe" /f=srs_premium_sound_nopreset.zip /h
"C:\Windows\system32\NOTEPAD.EXE" C:\AdwCleaner\AdwCleaner[C0].txt
"C:\Program Files (x86)\Boingo\Boingo Wi-Fi\Boingo Wi-Fi.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe"
"C:\Program Files\AVAST Software\Avast\avastui.exe" /nogui
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM"
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\Program Files\Elantech\ETDCtrlHelper.exe"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\system32\wbem\unsecapp.exe -Embedding
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
"C:\Windows\system32\wuauclt.exe"
"C:\Users\Dášenka\Downloads\RSITx64.exe"
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
=========Mozilla firefox=========
ProfilePath - C:\Users\Dášenka\AppData\Roaming\Mozilla\Firefox\Profiles\zj1bn5pi.default
prefs.js - "browser.startup.homepage" - "www.seznam.cz"
"wrc@avast.com"=C:\Program Files\AVAST Software\Avast\WebRep\FF
"sp@avast.com"=C:\Program Files\AVAST Software\Avast\SafePrice\FF
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 23.0.0.185 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_23_0_0_185.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files (x86)\Microsoft Silverlight\5.1.50709.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=14.0.8051.1204]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 23.0.0.185 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_23_0_0_185.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files\Microsoft Silverlight\5.1.50709.0\npctrl.dll
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4f3ed5cd-0726-42a9-87f5-d13f3d2976ac}]
Windows Live Family Safety Browser Helper Class - C:\Program Files\Windows Live\Family Safety\fssbho.dll [2008-12-08 68960]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{83FF80F4-8C74-4b80-B5BA-C8DDD434E5C4}]
Partner BHO Class - C:\ProgramData\Partner\Partner64.dll []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2016-09-25 948792]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2016-09-25 713440]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocník pro přihlášení ke službě Windows Live - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-02-17 408440]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d2ce3e00-f94a-4740-988e-03dc2f38c34f}]
Bing Bar Helper - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll [2011-10-21 1219152]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{8dcb7100-df86-4384-8842-8fa844297b3f} - Bing Bar - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll [2011-10-21 1219152]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"ETDWare"=C:\Program Files\Elantech\ETDCtrl.exe [2010-01-13 635784]
"ASUS WebStorage"=C:\Program Files (x86)\ASUS\ASUS WebStorage\SERVICE\AsusWSService.exe [2010-03-16 1754448]
"Setwallpaper"=c:\programdata\SetWallpaper.cmd []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Screen Saver Protector]
C:\Windows\AsScrPro.exe [2010-08-24 3054136]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CLMLServer]
C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe [2009-11-02 103720]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RtHDVCpl]
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2010-04-13 10144288]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"UpdateLBPShortCut"=C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe [2009-05-20 222504]
"UpdateP2GoShortCut"=C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe [2009-05-20 222504]
"Boingo Wi-Fi"=C:\Program Files (x86)\Boingo\Boingo Wi-Fi\Boingo.lnk [2010-08-24 2429]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2010-03-31 102400]
"ATKOSD2"=C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [2010-02-04 7350912]
"ATKMEDIA"=C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [2010-01-05 170624]
"HControlUser"=C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe [2009-06-19 105016]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2016-10-18 9083840]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2016-09-16 1156824]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
FancyStart daemon.lnk - C:\Windows\Installer\{2B81872B-A054-48DA-BE3B-FA5C164C303A}\_C4A2FC3E3722966204FDD8.exe
SRS Premium Sound.lnk - C:\Windows\Installer\{E5CF6B9C-3ABE-43C9-9413-AD5FFC98F049}\NewShortcut5_21C7B668029A47458B27645FE6E4A715.exe
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"SoftwareSASGeneration"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2016-10-18 21:05:45 ----D---- C:\AdwCleaner
2016-10-18 19:41:51 ----D---- C:\Program Files\trend micro
2016-10-18 19:41:50 ----D---- C:\rsit
2016-09-25 17:39:22 ----A---- C:\Windows\SYSWOW64\tzres.dll
2016-09-25 17:39:22 ----A---- C:\Windows\system32\tzres.dll
2016-09-25 17:39:20 ----A---- C:\Windows\SYSWOW64\oleaut32.dll
2016-09-25 17:39:20 ----A---- C:\Windows\system32\oleaut32.dll
2016-09-25 17:39:19 ----A---- C:\Windows\system32\drivers\tcpip.sys
2016-09-25 17:39:18 ----A---- C:\Windows\SYSWOW64\INETRES.dll
2016-09-25 17:39:18 ----A---- C:\Windows\SYSWOW64\inetcomm.dll
2016-09-25 17:39:18 ----A---- C:\Windows\system32\INETRES.dll
2016-09-25 17:39:18 ----A---- C:\Windows\system32\inetcomm.dll
2016-09-25 17:39:18 ----A---- C:\Windows\system32\drivers\tcpipreg.sys
2016-09-25 17:39:18 ----A---- C:\Windows\system32\drivers\netio.sys
2016-09-25 17:39:18 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2016-09-25 17:39:17 ----A---- C:\Windows\system32\drivers\srv.sys
2016-09-25 17:39:16 ----A---- C:\Windows\system32\drivers\srvnet.sys
2016-09-25 17:39:16 ----A---- C:\Windows\system32\drivers\srv2.sys
2016-09-25 17:39:11 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2016-09-25 17:39:11 ----A---- C:\Windows\SYSWOW64\occache.dll
2016-09-25 17:39:11 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2016-09-25 17:39:11 ----A---- C:\Windows\SYSWOW64\inseng.dll
2016-09-25 17:39:11 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2016-09-25 17:39:11 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2016-09-25 17:39:11 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2016-09-25 17:39:11 ----A---- C:\Windows\system32\inseng.dll
2016-09-25 17:39:11 ----A---- C:\Windows\system32\iernonce.dll
2016-09-25 17:39:11 ----A---- C:\Windows\system32\ieetwproxystub.dll
2016-09-25 17:39:11 ----A---- C:\Windows\system32\ieetwcollector.exe
2016-09-25 17:39:11 ----A---- C:\Windows\system32\ie4uinit.exe
2016-09-25 17:39:10 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2016-09-25 17:39:10 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2016-09-25 17:39:10 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2016-09-25 17:39:10 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2016-09-25 17:39:10 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2016-09-25 17:39:10 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2016-09-25 17:39:08 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2016-09-25 17:39:08 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2016-09-25 17:39:08 ----A---- C:\Windows\SYSWOW64\jscript.dll
2016-09-25 17:39:08 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2016-09-25 17:39:08 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2016-09-25 17:39:08 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2016-09-25 17:39:08 ----A---- C:\Windows\system32\urlmon.dll
2016-09-25 17:39:08 ----A---- C:\Windows\system32\occache.dll
2016-09-25 17:39:08 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2016-09-25 17:39:08 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2016-09-25 17:39:08 ----A---- C:\Windows\system32\iedkcs32.dll
2016-09-25 17:39:07 ----A---- C:\Windows\SYSWOW64\ieui.dll
2016-09-25 17:39:07 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2016-09-25 17:39:07 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2016-09-25 17:39:07 ----A---- C:\Windows\system32\msfeeds.dll
2016-09-25 17:39:07 ----A---- C:\Windows\system32\iesetup.dll
2016-09-25 17:39:07 ----A---- C:\Windows\system32\dxtrans.dll
2016-09-25 17:39:06 ----A---- C:\Windows\system32\ieapfltr.dll
2016-09-25 17:39:05 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2016-09-25 17:39:05 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2016-09-25 17:39:05 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2016-09-25 17:39:05 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2016-09-25 17:39:05 ----A---- C:\Windows\system32\vbscript.dll
2016-09-25 17:39:05 ----A---- C:\Windows\system32\iertutil.dll
2016-09-25 17:39:04 ----A---- C:\Windows\SYSWOW64\wininet.dll
2016-09-25 17:39:04 ----A---- C:\Windows\SYSWOW64\msrating.dll
2016-09-25 17:39:04 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2016-09-25 17:39:04 ----A---- C:\Windows\system32\jsproxy.dll
2016-09-25 17:39:03 ----A---- C:\Windows\system32\ieui.dll
2016-09-25 17:39:03 ----A---- C:\Windows\system32\ieframe.dll
2016-09-25 17:39:03 ----A---- C:\Windows\system32\dxtmsft.dll
2016-09-25 17:39:02 ----A---- C:\Windows\system32\webcheck.dll
2016-09-25 17:39:02 ----A---- C:\Windows\system32\mshtmlmedia.dll
2016-09-25 17:39:02 ----A---- C:\Windows\system32\mshtmled.dll
2016-09-25 17:39:02 ----A---- C:\Windows\system32\jscript.dll
2016-09-25 17:39:02 ----A---- C:\Windows\system32\ieUnatt.exe
2016-09-25 17:39:01 ----A---- C:\Windows\system32\wininet.dll
2016-09-25 17:39:01 ----A---- C:\Windows\system32\jscript9diag.dll
2016-09-25 17:39:01 ----A---- C:\Windows\system32\jscript9.dll
2016-09-25 17:39:00 ----A---- C:\Windows\system32\msrating.dll
2016-09-25 17:39:00 ----A---- C:\Windows\system32\MshtmlDac.dll
2016-09-25 17:38:59 ----A---- C:\Windows\system32\mshtml.dll
2016-09-25 17:38:32 ----A---- C:\Windows\SYSWOW64\user32.dll
2016-09-25 17:38:32 ----A---- C:\Windows\system32\win32k.sys
2016-09-25 17:38:32 ----A---- C:\Windows\system32\user32.dll
2016-09-25 17:38:10 ----A---- C:\Windows\system32\ntoskrnl.exe
2016-09-25 17:38:10 ----A---- C:\Windows\system32\lsasrv.dll
2016-09-25 17:38:09 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2016-09-25 17:38:09 ----A---- C:\Windows\system32\rpcrt4.dll
2016-09-25 17:38:08 ----A---- C:\Windows\SYSWOW64\schannel.dll
2016-09-25 17:38:08 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2016-09-25 17:38:08 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2016-09-25 17:38:08 ----A---- C:\Windows\system32\schannel.dll
2016-09-25 17:38:08 ----A---- C:\Windows\system32\msv1_0.dll
2016-09-25 17:38:08 ----A---- C:\Windows\system32\kernel32.dll
2016-09-25 17:38:08 ----A---- C:\Windows\system32\kerberos.dll
2016-09-25 17:38:07 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2016-09-25 17:38:07 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2016-09-25 17:38:06 ----A---- C:\Windows\system32\ntdll.dll
2016-09-25 17:38:05 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2016-09-25 17:38:05 ----A---- C:\Windows\system32\rpchttp.dll
2016-09-25 17:38:05 ----A---- C:\Windows\system32\ncrypt.dll
2016-09-25 17:38:05 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2016-09-25 17:38:04 ----A---- C:\Windows\SYSWOW64\adtschema.dll
2016-09-25 17:38:04 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2016-09-25 17:38:04 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2016-09-25 17:38:04 ----A---- C:\Windows\system32\certcli.dll
2016-09-25 17:38:04 ----A---- C:\Windows\system32\adtschema.dll
2016-09-25 17:38:03 ----A---- C:\Windows\SYSWOW64\rpchttp.dll
2016-09-25 17:38:03 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2016-09-25 17:38:03 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2016-09-25 17:38:03 ----A---- C:\Windows\system32\wdigest.dll
2016-09-25 17:38:03 ----A---- C:\Windows\system32\TSpkg.dll
2016-09-25 17:38:03 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2016-09-25 17:38:02 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2016-09-25 17:38:02 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2016-09-25 17:38:02 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2016-09-25 17:38:02 ----A---- C:\Windows\SYSWOW64\secur32.dll
2016-09-25 17:38:02 ----A---- C:\Windows\SYSWOW64\msobjs.dll
2016-09-25 17:38:02 ----A---- C:\Windows\SYSWOW64\msaudite.dll
2016-09-25 17:38:02 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2016-09-25 17:38:02 ----A---- C:\Windows\SYSWOW64\cryptbase.dll
2016-09-25 17:38:02 ----A---- C:\Windows\SYSWOW64\credssp.dll
2016-09-25 17:38:02 ----A---- C:\Windows\SYSWOW64\certcli.dll
2016-09-25 17:38:02 ----A---- C:\Windows\SYSWOW64\auditpol.exe
2016-09-25 17:38:02 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2016-09-25 17:38:02 ----A---- C:\Windows\system32\wow64win.dll
2016-09-25 17:38:02 ----A---- C:\Windows\system32\wow64.dll
2016-09-25 17:38:02 ----A---- C:\Windows\system32\winsrv.dll
2016-09-25 17:38:02 ----A---- C:\Windows\system32\sspisrv.dll
2016-09-25 17:38:02 ----A---- C:\Windows\system32\sspicli.dll
2016-09-25 17:38:02 ----A---- C:\Windows\system32\srcore.dll
2016-09-25 17:38:02 ----A---- C:\Windows\system32\smss.exe
2016-09-25 17:38:02 ----A---- C:\Windows\system32\secur32.dll
2016-09-25 17:38:02 ----A---- C:\Windows\system32\msobjs.dll
2016-09-25 17:38:02 ----A---- C:\Windows\system32\msaudite.dll
2016-09-25 17:38:02 ----A---- C:\Windows\system32\lsass.exe
2016-09-25 17:38:02 ----A---- C:\Windows\system32\KernelBase.dll
2016-09-25 17:38:02 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2016-09-25 17:38:02 ----A---- C:\Windows\system32\csrsrv.dll
2016-09-25 17:38:02 ----A---- C:\Windows\system32\cryptbase.dll
2016-09-25 17:38:02 ----A---- C:\Windows\system32\credssp.dll
2016-09-25 17:38:02 ----A---- C:\Windows\system32\conhost.exe
2016-09-25 17:38:02 ----A---- C:\Windows\system32\auditpol.exe
2016-09-25 17:38:02 ----A---- C:\Windows\system32\advapi32.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2016-09-25 17:38:01 ----A---- C:\Windows\SYSWOW64\wow32.dll
2016-09-25 17:38:01 ----A---- C:\Windows\SYSWOW64\user.exe
2016-09-25 17:38:01 ----A---- C:\Windows\SYSWOW64\srclient.dll
2016-09-25 17:38:01 ----A---- C:\Windows\SYSWOW64\setup16.exe
2016-09-25 17:38:01 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2016-09-25 17:38:01 ----A---- C:\Windows\SYSWOW64\instnm.exe
2016-09-25 17:38:01 ----A---- C:\Windows\SYSWOW64\appidapi.dll
2016-09-25 17:38:01 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2016-09-25 17:38:01 ----A---- C:\Windows\system32\wow64cpu.dll
2016-09-25 17:38:01 ----A---- C:\Windows\system32\srclient.dll
2016-09-25 17:38:01 ----A---- C:\Windows\system32\setbcdlocale.dll
2016-09-25 17:38:01 ----A---- C:\Windows\system32\rstrui.exe
2016-09-25 17:38:01 ----A---- C:\Windows\system32\ntvdm64.dll
2016-09-25 17:38:01 ----A---- C:\Windows\system32\drivers\appid.sys
2016-09-25 17:38:01 ----A---- C:\Windows\system32\appidsvc.dll
2016-09-25 17:38:01 ----A---- C:\Windows\system32\appidpolicyconverter.exe
2016-09-25 17:38:01 ----A---- C:\Windows\system32\appidcertstorecheck.exe
2016-09-25 17:38:01 ----A---- C:\Windows\system32\appidapi.dll
2016-09-25 17:38:01 ----A---- C:\Windows\system32\apisetschema.dll
2016-09-25 17:21:16 ----A---- C:\Windows\system32\aswBoot.exe
2016-09-25 17:20:38 ----A---- C:\Windows\avastSS.scr
======List of files/folders modified in the last 1 month======
2016-10-18 21:28:55 ----D---- C:\Windows\system32\config
2016-10-18 21:14:43 ----D---- C:\Windows\Temp
2016-10-18 21:10:12 ----D---- C:\Windows\system32\Tasks
2016-10-18 21:08:09 ----HD---- C:\ProgramData
2016-10-18 19:59:20 ----SHD---- C:\Windows\Installer
2016-10-18 19:57:35 ----D---- C:\Windows\SysWOW64
2016-10-18 19:45:54 ----D---- C:\Windows\system32\catroot2
2016-10-18 19:45:17 ----D---- C:\Windows\winsxs
2016-10-18 19:41:51 ----RD---- C:\Program Files
2016-10-18 19:34:53 ----D---- C:\Windows\system32\drivers
2016-10-18 19:33:09 ----D---- C:\Users\Dášenka\AppData\Roaming\Skype
2016-10-18 19:31:56 ----D---- C:\ProgramData\Skype
2016-10-18 19:31:52 ----RD---- C:\Program Files (x86)\Skype
2016-10-18 19:31:52 ----D---- C:\Program Files (x86)\Common Files
2016-10-14 15:24:07 ----D---- C:\Windows\system32\NDF
2016-10-14 15:16:40 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2016-10-14 15:16:21 ----D---- C:\Windows\system32\Macromed
2016-10-14 15:16:05 ----D---- C:\Windows\SYSWOW64\Macromed
2016-09-25 18:05:16 ----D---- C:\Windows\System32
2016-09-25 18:05:16 ----D---- C:\Windows\inf
2016-09-25 18:05:16 ----A---- C:\Windows\system32\PerfStringBackup.INI
2016-09-25 17:55:33 ----D---- C:\Program Files\Microsoft Silverlight
2016-09-25 17:55:32 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2016-09-25 17:53:48 ----D---- C:\Windows\SYSWOW64\sr-Latn-CS
2016-09-25 17:53:48 ----D---- C:\Windows\SYSWOW64\sl-SI
2016-09-25 17:53:48 ----D---- C:\Windows\SYSWOW64\pl-PL
2016-09-25 17:53:48 ----D---- C:\Windows\SYSWOW64\lv-LV
2016-09-25 17:53:48 ----D---- C:\Windows\SYSWOW64\hu-HU
2016-09-25 17:53:48 ----D---- C:\Windows\SYSWOW64\hr-HR
2016-09-25 17:53:48 ----D---- C:\Windows\SYSWOW64\bg-BG
2016-09-25 17:53:48 ----D---- C:\Program Files\Internet Explorer
2016-09-25 17:53:48 ----D---- C:\Program Files (x86)\Internet Explorer
2016-09-25 17:53:47 ----D---- C:\Windows\SYSWOW64\sk-SK
2016-09-25 17:53:47 ----D---- C:\Windows\SYSWOW64\ro-RO
2016-09-25 17:53:47 ----D---- C:\Windows\SYSWOW64\lt-LT
2016-09-25 17:53:47 ----D---- C:\Windows\SYSWOW64\et-EE
2016-09-25 17:53:47 ----D---- C:\Windows\SYSWOW64\en-US
2016-09-25 17:53:47 ----D---- C:\Windows\SYSWOW64\cs-CZ
2016-09-25 17:53:46 ----D---- C:\Windows\system32\sr-Latn-CS
2016-09-25 17:53:46 ----D---- C:\Windows\system32\sl-SI
2016-09-25 17:53:46 ----D---- C:\Windows\system32\sk-SK
2016-09-25 17:53:46 ----D---- C:\Windows\system32\pl-PL
2016-09-25 17:53:46 ----D---- C:\Windows\system32\lv-LV
2016-09-25 17:53:46 ----D---- C:\Windows\system32\lt-LT
2016-09-25 17:53:46 ----D---- C:\Windows\system32\hu-HU
2016-09-25 17:53:46 ----D---- C:\Windows\system32\hr-HR
2016-09-25 17:53:46 ----D---- C:\Windows\system32\bg-BG
2016-09-25 17:53:45 ----D---- C:\Windows\system32\ro-RO
2016-09-25 17:53:45 ----D---- C:\Windows\system32\et-EE
2016-09-25 17:53:45 ----D---- C:\Windows\system32\en-US
2016-09-25 17:53:45 ----D---- C:\Windows\system32\cs-CZ
2016-09-25 17:53:42 ----D---- C:\Windows\system32\Boot
2016-09-25 17:53:42 ----D---- C:\Windows\AppPatch
2016-09-25 17:45:44 ----D---- C:\Windows\system32\MRT
2016-09-25 17:39:53 ----AC---- C:\Windows\system32\MRT.exe
2016-09-25 17:22:05 ----D---- C:\Users\Dášenka\AppData\Roaming\SoftGrid Client
2016-09-25 17:21:13 ----D---- C:\Windows
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2016-09-25 74544]
R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2016-10-14 293352]
R0 AtiPcie;AMD PCI Express (3GIO) Filter; C:\Windows\system32\DRIVERS\AtiPcie.sys [2009-05-05 16440]
R0 lullaby;lullaby; C:\Windows\system32\DRIVERS\lullaby.sys [2009-06-18 15928]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R1 aswKbd;aswKbd; C:\Windows\system32\drivers\aswKbd.sys [2016-09-25 37144]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2016-09-25 103064]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2016-09-25 969184]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2016-09-25 513632]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 ASMMAP64;ASMMAP64; \??\C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys [2009-07-03 15416]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2016-09-25 108816]
R2 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2016-09-25 163416]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2010-03-30 6657536]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2010-03-30 195584]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athrx.sys [2011-06-27 2753536]
R3 AtiHdmiService;ATI Service for HD Audio Codec; C:\Windows\system32\drivers\AtiHdmi.sys [2009-07-23 119312]
R3 ETD;ELAN PS/2 Port Input Device; C:\Windows\system32\DRIVERS\ETD.sys [2010-01-18 128512]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2010-04-13 2345760]
R3 JMCR;JMCR; C:\Windows\system32\DRIVERS\jmcr.sys [2009-08-18 143472]
R3 JME;JMicron Ethernet Adapter NDIS6.20 Driver (Amd64 Bits); C:\Windows\system32\DRIVERS\JME.sys [2010-02-25 115312]
R3 kbfiltr;Keyboard Filter; C:\Windows\system32\DRIVERS\kbfiltr.sys [2009-07-20 15416]
R3 MTsensor;ATK0100 ACPI UTILITY; C:\Windows\system32\DRIVERS\ATK64AMD.sys [2009-05-13 15928]
R3 Sftfs;Sftfs; C:\Windows\system32\DRIVERS\Sftfslh.sys [2014-10-08 766632]
R3 Sftplay;Sftplay; C:\Windows\system32\DRIVERS\Sftplaylh.sys [2014-10-08 273576]
R3 Sftredir;Sftredir; C:\Windows\system32\DRIVERS\Sftredirlh.sys [2014-10-08 29352]
R3 Sftvol;Sftvol; C:\Windows\system32\DRIVERS\Sftvollh.sys [2014-10-08 23208]
R3 SNP2UVC;USB2.0 PC Camera (SNP2UVC); C:\Windows\system32\DRIVERS\snp2uvc.sys [2009-06-05 1806400]
R3 usbfilter;AMD USB Filter Driver; C:\Windows\system32\DRIVERS\usbfilter.sys [2009-12-22 38456]
S3 aswHwid;avast! HardwareID; C:\Windows\system32\drivers\aswHwid.sys [2016-09-25 37656]
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2008-12-08 61792]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 sdbus;sdbus; C:\Windows\system32\drivers\sdbus.sys [2010-11-20 109056]
S3 SiSGbeLH;SiS191/SiS190 Ethernet Device NDIS 6.0 Driver; C:\Windows\system32\DRIVERS\SiSG664.sys [2009-06-10 56832]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2013-10-02 56832]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2013-07-03 42496]
S3 WimFltr;WimFltr; C:\Windows\system32\DRIVERS\wimfltr.sys [2008-05-24 154168]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2016-09-16 82128]
R2 AFBAgent;AFBAgent; C:\Windows\system32\FBAgent.exe [2009-12-08 379520]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2010-03-30 202752]
R2 ASLDRService;ASLDR Service; C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe [2009-06-16 84536]
R2 ATKGFNEXSrv;ATKGFNEX Service; C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe [2009-12-15 96896]
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2016-09-25 197128]
R2 BBUpdate;BBUpdate; C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE [2011-10-13 249648]
R2 cvhsvc;Client Virtualization Handler; C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE [2015-03-18 822496]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 sftlist;Application Virtualization Client; C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe [2014-10-08 534184]
R3 sftvsa;Application Virtualization Service Agent; C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe [2014-10-08 211104]
S2 BBSvc;Bing Bar Update Service; C:\Program Files (x86)\Microsoft\BingBar\BBSvc.EXE [2011-10-21 196176]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2015-11-05 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2015-11-05 125112]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2016-09-20 324224]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-10-14 270016]
S3 fsssvc;Windows Live Zabezpečení rodiny; C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2008-12-08 533344]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2016-09-01 114688]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2016-06-16 146888]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2015-12-21 1255736]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2015-11-05 51376]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-11-05 135848]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-11-05 135848]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-11-05 135848]
-----------------EOF-----------------
Logfile of random's system information tool 1.10 (written by random/random)
Run by Dášenka at 2016-10-18 21:42:35
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 7 GB (9%) free of 76 GB
Total RAM: 3838 MB (57% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 21:42:39, on 18.10.2016
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.18450)
Boot mode: Normal
Running processes:
C:\Windows\AsScrPro.exe
C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe
C:\Program Files (x86)\ASUS\ControlDeck\ControlDeck.exe
C:\Program Files (x86)\ASUS\ASUS Live Update\ALU.exe
C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe
C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe
C:\Program Files (x86)\Boingo\Boingo Wi-Fi\Boingo Wi-Fi.exe
C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files\trend micro\Dášenka.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://asus.msn.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Pomocník pro přihlášení ke službě Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - "C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll" (file missing)
O3 - Toolbar: Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - "C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll" (file missing)
O4 - HKLM\..\Run: [UpdateLBPShortCut] "C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\LabelPrint" UpdateWithCreateOnce "Software\CyberLink\LabelPrint\2.5"
O4 - HKLM\..\Run: [UpdateP2GoShortCut] "C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\6.0"
O4 - HKLM\..\Run: [Boingo Wi-Fi] "C:\Program Files (x86)\Boingo\Boingo Wi-Fi\Boingo.lnk"
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [ATKOSD2] C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
O4 - HKLM\..\Run: [ATKMEDIA] C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
O4 - HKLM\..\Run: [HControlUser] C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'Default user')
O4 - Global Startup: FancyStart daemon.lnk = ?
O4 - Global Startup: SRS Premium Sound.lnk = ?
O9 - Extra button: Přidat na blog - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Přidat na blog Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: AFBAgent - Unknown owner - C:\Windows\system32\FBAgent.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: ASLDR Service (ASLDRService) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 8984 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
winlogon.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k NetworkService
atieclxx
"C:\Windows\system32\FBAgent.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe"
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\Windows\System32\spoolsv.exe
"taskhost.exe"
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE"
C:\Windows\System32\svchost.exe -k utcsvc
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Windows\AsScrPro.exe"
taskeng.exe {9B61710C-CFE3-4E98-8487-DFD65D5E34D8}
"C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe"
"C:\Program Files (x86)\ASUS\ControlDeck\ControlDeck.exe"
"C:\Program Files (x86)\ASUS\ASUS Live Update\ALU.exe"
"C:\Program Files (x86)\ASUS\ASUS CopyProtect\aspg.exe"
"C:\Program Files\P4G\BatteryLife.exe"
"C:\Program Files (x86)\ASUS\Splendid\ACMON.exe"
"C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe"
"C:\Windows\SysWOW64\ACEngSvr.exe" -Embedding
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe"
"C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe"
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\wbem\wmiprvse.exe
ATKOSD.exe
"C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE"
WDC.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files\Elantech\ETDCtrl.exe"
"C:\Program Files (x86)\ASUS\ASUS WebStorage\SERVICE\AsusWSService.exe"
"C:\Program Files\SRS Labs\SRS Premium Sound Control Panel\SRSPremiumPanel_64.exe" /f=srs_premium_sound_nopreset.zip /h
"C:\Windows\system32\NOTEPAD.EXE" C:\AdwCleaner\AdwCleaner[C0].txt
"C:\Program Files (x86)\Boingo\Boingo Wi-Fi\Boingo Wi-Fi.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe"
"C:\Program Files\AVAST Software\Avast\avastui.exe" /nogui
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM"
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\Program Files\Elantech\ETDCtrlHelper.exe"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\system32\wbem\unsecapp.exe -Embedding
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
"C:\Windows\system32\wuauclt.exe"
"C:\Users\Dášenka\Downloads\RSITx64.exe"
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
=========Mozilla firefox=========
ProfilePath - C:\Users\Dášenka\AppData\Roaming\Mozilla\Firefox\Profiles\zj1bn5pi.default
prefs.js - "browser.startup.homepage" - "www.seznam.cz"
"wrc@avast.com"=C:\Program Files\AVAST Software\Avast\WebRep\FF
"sp@avast.com"=C:\Program Files\AVAST Software\Avast\SafePrice\FF
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 23.0.0.185 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_23_0_0_185.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files (x86)\Microsoft Silverlight\5.1.50709.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=14.0.8051.1204]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 23.0.0.185 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_23_0_0_185.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files\Microsoft Silverlight\5.1.50709.0\npctrl.dll
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4f3ed5cd-0726-42a9-87f5-d13f3d2976ac}]
Windows Live Family Safety Browser Helper Class - C:\Program Files\Windows Live\Family Safety\fssbho.dll [2008-12-08 68960]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{83FF80F4-8C74-4b80-B5BA-C8DDD434E5C4}]
Partner BHO Class - C:\ProgramData\Partner\Partner64.dll []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2016-09-25 948792]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2016-09-25 713440]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocník pro přihlášení ke službě Windows Live - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-02-17 408440]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d2ce3e00-f94a-4740-988e-03dc2f38c34f}]
Bing Bar Helper - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll [2011-10-21 1219152]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{8dcb7100-df86-4384-8842-8fa844297b3f} - Bing Bar - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll [2011-10-21 1219152]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"ETDWare"=C:\Program Files\Elantech\ETDCtrl.exe [2010-01-13 635784]
"ASUS WebStorage"=C:\Program Files (x86)\ASUS\ASUS WebStorage\SERVICE\AsusWSService.exe [2010-03-16 1754448]
"Setwallpaper"=c:\programdata\SetWallpaper.cmd []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Screen Saver Protector]
C:\Windows\AsScrPro.exe [2010-08-24 3054136]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CLMLServer]
C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe [2009-11-02 103720]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RtHDVCpl]
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2010-04-13 10144288]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"UpdateLBPShortCut"=C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe [2009-05-20 222504]
"UpdateP2GoShortCut"=C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe [2009-05-20 222504]
"Boingo Wi-Fi"=C:\Program Files (x86)\Boingo\Boingo Wi-Fi\Boingo.lnk [2010-08-24 2429]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2010-03-31 102400]
"ATKOSD2"=C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [2010-02-04 7350912]
"ATKMEDIA"=C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [2010-01-05 170624]
"HControlUser"=C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe [2009-06-19 105016]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2016-10-18 9083840]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2016-09-16 1156824]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
FancyStart daemon.lnk - C:\Windows\Installer\{2B81872B-A054-48DA-BE3B-FA5C164C303A}\_C4A2FC3E3722966204FDD8.exe
SRS Premium Sound.lnk - C:\Windows\Installer\{E5CF6B9C-3ABE-43C9-9413-AD5FFC98F049}\NewShortcut5_21C7B668029A47458B27645FE6E4A715.exe
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"SoftwareSASGeneration"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2016-10-18 21:05:45 ----D---- C:\AdwCleaner
2016-10-18 19:41:51 ----D---- C:\Program Files\trend micro
2016-10-18 19:41:50 ----D---- C:\rsit
2016-09-25 17:39:22 ----A---- C:\Windows\SYSWOW64\tzres.dll
2016-09-25 17:39:22 ----A---- C:\Windows\system32\tzres.dll
2016-09-25 17:39:20 ----A---- C:\Windows\SYSWOW64\oleaut32.dll
2016-09-25 17:39:20 ----A---- C:\Windows\system32\oleaut32.dll
2016-09-25 17:39:19 ----A---- C:\Windows\system32\drivers\tcpip.sys
2016-09-25 17:39:18 ----A---- C:\Windows\SYSWOW64\INETRES.dll
2016-09-25 17:39:18 ----A---- C:\Windows\SYSWOW64\inetcomm.dll
2016-09-25 17:39:18 ----A---- C:\Windows\system32\INETRES.dll
2016-09-25 17:39:18 ----A---- C:\Windows\system32\inetcomm.dll
2016-09-25 17:39:18 ----A---- C:\Windows\system32\drivers\tcpipreg.sys
2016-09-25 17:39:18 ----A---- C:\Windows\system32\drivers\netio.sys
2016-09-25 17:39:18 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2016-09-25 17:39:17 ----A---- C:\Windows\system32\drivers\srv.sys
2016-09-25 17:39:16 ----A---- C:\Windows\system32\drivers\srvnet.sys
2016-09-25 17:39:16 ----A---- C:\Windows\system32\drivers\srv2.sys
2016-09-25 17:39:11 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2016-09-25 17:39:11 ----A---- C:\Windows\SYSWOW64\occache.dll
2016-09-25 17:39:11 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2016-09-25 17:39:11 ----A---- C:\Windows\SYSWOW64\inseng.dll
2016-09-25 17:39:11 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2016-09-25 17:39:11 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2016-09-25 17:39:11 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2016-09-25 17:39:11 ----A---- C:\Windows\system32\inseng.dll
2016-09-25 17:39:11 ----A---- C:\Windows\system32\iernonce.dll
2016-09-25 17:39:11 ----A---- C:\Windows\system32\ieetwproxystub.dll
2016-09-25 17:39:11 ----A---- C:\Windows\system32\ieetwcollector.exe
2016-09-25 17:39:11 ----A---- C:\Windows\system32\ie4uinit.exe
2016-09-25 17:39:10 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2016-09-25 17:39:10 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2016-09-25 17:39:10 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2016-09-25 17:39:10 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2016-09-25 17:39:10 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2016-09-25 17:39:10 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2016-09-25 17:39:08 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2016-09-25 17:39:08 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2016-09-25 17:39:08 ----A---- C:\Windows\SYSWOW64\jscript.dll
2016-09-25 17:39:08 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2016-09-25 17:39:08 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2016-09-25 17:39:08 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2016-09-25 17:39:08 ----A---- C:\Windows\system32\urlmon.dll
2016-09-25 17:39:08 ----A---- C:\Windows\system32\occache.dll
2016-09-25 17:39:08 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2016-09-25 17:39:08 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2016-09-25 17:39:08 ----A---- C:\Windows\system32\iedkcs32.dll
2016-09-25 17:39:07 ----A---- C:\Windows\SYSWOW64\ieui.dll
2016-09-25 17:39:07 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2016-09-25 17:39:07 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2016-09-25 17:39:07 ----A---- C:\Windows\system32\msfeeds.dll
2016-09-25 17:39:07 ----A---- C:\Windows\system32\iesetup.dll
2016-09-25 17:39:07 ----A---- C:\Windows\system32\dxtrans.dll
2016-09-25 17:39:06 ----A---- C:\Windows\system32\ieapfltr.dll
2016-09-25 17:39:05 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2016-09-25 17:39:05 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2016-09-25 17:39:05 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2016-09-25 17:39:05 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2016-09-25 17:39:05 ----A---- C:\Windows\system32\vbscript.dll
2016-09-25 17:39:05 ----A---- C:\Windows\system32\iertutil.dll
2016-09-25 17:39:04 ----A---- C:\Windows\SYSWOW64\wininet.dll
2016-09-25 17:39:04 ----A---- C:\Windows\SYSWOW64\msrating.dll
2016-09-25 17:39:04 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2016-09-25 17:39:04 ----A---- C:\Windows\system32\jsproxy.dll
2016-09-25 17:39:03 ----A---- C:\Windows\system32\ieui.dll
2016-09-25 17:39:03 ----A---- C:\Windows\system32\ieframe.dll
2016-09-25 17:39:03 ----A---- C:\Windows\system32\dxtmsft.dll
2016-09-25 17:39:02 ----A---- C:\Windows\system32\webcheck.dll
2016-09-25 17:39:02 ----A---- C:\Windows\system32\mshtmlmedia.dll
2016-09-25 17:39:02 ----A---- C:\Windows\system32\mshtmled.dll
2016-09-25 17:39:02 ----A---- C:\Windows\system32\jscript.dll
2016-09-25 17:39:02 ----A---- C:\Windows\system32\ieUnatt.exe
2016-09-25 17:39:01 ----A---- C:\Windows\system32\wininet.dll
2016-09-25 17:39:01 ----A---- C:\Windows\system32\jscript9diag.dll
2016-09-25 17:39:01 ----A---- C:\Windows\system32\jscript9.dll
2016-09-25 17:39:00 ----A---- C:\Windows\system32\msrating.dll
2016-09-25 17:39:00 ----A---- C:\Windows\system32\MshtmlDac.dll
2016-09-25 17:38:59 ----A---- C:\Windows\system32\mshtml.dll
2016-09-25 17:38:32 ----A---- C:\Windows\SYSWOW64\user32.dll
2016-09-25 17:38:32 ----A---- C:\Windows\system32\win32k.sys
2016-09-25 17:38:32 ----A---- C:\Windows\system32\user32.dll
2016-09-25 17:38:10 ----A---- C:\Windows\system32\ntoskrnl.exe
2016-09-25 17:38:10 ----A---- C:\Windows\system32\lsasrv.dll
2016-09-25 17:38:09 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2016-09-25 17:38:09 ----A---- C:\Windows\system32\rpcrt4.dll
2016-09-25 17:38:08 ----A---- C:\Windows\SYSWOW64\schannel.dll
2016-09-25 17:38:08 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2016-09-25 17:38:08 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2016-09-25 17:38:08 ----A---- C:\Windows\system32\schannel.dll
2016-09-25 17:38:08 ----A---- C:\Windows\system32\msv1_0.dll
2016-09-25 17:38:08 ----A---- C:\Windows\system32\kernel32.dll
2016-09-25 17:38:08 ----A---- C:\Windows\system32\kerberos.dll
2016-09-25 17:38:07 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2016-09-25 17:38:07 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2016-09-25 17:38:06 ----A---- C:\Windows\system32\ntdll.dll
2016-09-25 17:38:05 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2016-09-25 17:38:05 ----A---- C:\Windows\system32\rpchttp.dll
2016-09-25 17:38:05 ----A---- C:\Windows\system32\ncrypt.dll
2016-09-25 17:38:05 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2016-09-25 17:38:04 ----A---- C:\Windows\SYSWOW64\adtschema.dll
2016-09-25 17:38:04 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2016-09-25 17:38:04 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2016-09-25 17:38:04 ----A---- C:\Windows\system32\certcli.dll
2016-09-25 17:38:04 ----A---- C:\Windows\system32\adtschema.dll
2016-09-25 17:38:03 ----A---- C:\Windows\SYSWOW64\rpchttp.dll
2016-09-25 17:38:03 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2016-09-25 17:38:03 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2016-09-25 17:38:03 ----A---- C:\Windows\system32\wdigest.dll
2016-09-25 17:38:03 ----A---- C:\Windows\system32\TSpkg.dll
2016-09-25 17:38:03 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2016-09-25 17:38:02 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2016-09-25 17:38:02 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2016-09-25 17:38:02 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2016-09-25 17:38:02 ----A---- C:\Windows\SYSWOW64\secur32.dll
2016-09-25 17:38:02 ----A---- C:\Windows\SYSWOW64\msobjs.dll
2016-09-25 17:38:02 ----A---- C:\Windows\SYSWOW64\msaudite.dll
2016-09-25 17:38:02 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2016-09-25 17:38:02 ----A---- C:\Windows\SYSWOW64\cryptbase.dll
2016-09-25 17:38:02 ----A---- C:\Windows\SYSWOW64\credssp.dll
2016-09-25 17:38:02 ----A---- C:\Windows\SYSWOW64\certcli.dll
2016-09-25 17:38:02 ----A---- C:\Windows\SYSWOW64\auditpol.exe
2016-09-25 17:38:02 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2016-09-25 17:38:02 ----A---- C:\Windows\system32\wow64win.dll
2016-09-25 17:38:02 ----A---- C:\Windows\system32\wow64.dll
2016-09-25 17:38:02 ----A---- C:\Windows\system32\winsrv.dll
2016-09-25 17:38:02 ----A---- C:\Windows\system32\sspisrv.dll
2016-09-25 17:38:02 ----A---- C:\Windows\system32\sspicli.dll
2016-09-25 17:38:02 ----A---- C:\Windows\system32\srcore.dll
2016-09-25 17:38:02 ----A---- C:\Windows\system32\smss.exe
2016-09-25 17:38:02 ----A---- C:\Windows\system32\secur32.dll
2016-09-25 17:38:02 ----A---- C:\Windows\system32\msobjs.dll
2016-09-25 17:38:02 ----A---- C:\Windows\system32\msaudite.dll
2016-09-25 17:38:02 ----A---- C:\Windows\system32\lsass.exe
2016-09-25 17:38:02 ----A---- C:\Windows\system32\KernelBase.dll
2016-09-25 17:38:02 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2016-09-25 17:38:02 ----A---- C:\Windows\system32\csrsrv.dll
2016-09-25 17:38:02 ----A---- C:\Windows\system32\cryptbase.dll
2016-09-25 17:38:02 ----A---- C:\Windows\system32\credssp.dll
2016-09-25 17:38:02 ----A---- C:\Windows\system32\conhost.exe
2016-09-25 17:38:02 ----A---- C:\Windows\system32\auditpol.exe
2016-09-25 17:38:02 ----A---- C:\Windows\system32\advapi32.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2016-09-25 17:38:01 ----A---- C:\Windows\SYSWOW64\wow32.dll
2016-09-25 17:38:01 ----A---- C:\Windows\SYSWOW64\user.exe
2016-09-25 17:38:01 ----A---- C:\Windows\SYSWOW64\srclient.dll
2016-09-25 17:38:01 ----A---- C:\Windows\SYSWOW64\setup16.exe
2016-09-25 17:38:01 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2016-09-25 17:38:01 ----A---- C:\Windows\SYSWOW64\instnm.exe
2016-09-25 17:38:01 ----A---- C:\Windows\SYSWOW64\appidapi.dll
2016-09-25 17:38:01 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2016-09-25 17:38:01 ----A---- C:\Windows\system32\wow64cpu.dll
2016-09-25 17:38:01 ----A---- C:\Windows\system32\srclient.dll
2016-09-25 17:38:01 ----A---- C:\Windows\system32\setbcdlocale.dll
2016-09-25 17:38:01 ----A---- C:\Windows\system32\rstrui.exe
2016-09-25 17:38:01 ----A---- C:\Windows\system32\ntvdm64.dll
2016-09-25 17:38:01 ----A---- C:\Windows\system32\drivers\appid.sys
2016-09-25 17:38:01 ----A---- C:\Windows\system32\appidsvc.dll
2016-09-25 17:38:01 ----A---- C:\Windows\system32\appidpolicyconverter.exe
2016-09-25 17:38:01 ----A---- C:\Windows\system32\appidcertstorecheck.exe
2016-09-25 17:38:01 ----A---- C:\Windows\system32\appidapi.dll
2016-09-25 17:38:01 ----A---- C:\Windows\system32\apisetschema.dll
2016-09-25 17:21:16 ----A---- C:\Windows\system32\aswBoot.exe
2016-09-25 17:20:38 ----A---- C:\Windows\avastSS.scr
======List of files/folders modified in the last 1 month======
2016-10-18 21:28:55 ----D---- C:\Windows\system32\config
2016-10-18 21:14:43 ----D---- C:\Windows\Temp
2016-10-18 21:10:12 ----D---- C:\Windows\system32\Tasks
2016-10-18 21:08:09 ----HD---- C:\ProgramData
2016-10-18 19:59:20 ----SHD---- C:\Windows\Installer
2016-10-18 19:57:35 ----D---- C:\Windows\SysWOW64
2016-10-18 19:45:54 ----D---- C:\Windows\system32\catroot2
2016-10-18 19:45:17 ----D---- C:\Windows\winsxs
2016-10-18 19:41:51 ----RD---- C:\Program Files
2016-10-18 19:34:53 ----D---- C:\Windows\system32\drivers
2016-10-18 19:33:09 ----D---- C:\Users\Dášenka\AppData\Roaming\Skype
2016-10-18 19:31:56 ----D---- C:\ProgramData\Skype
2016-10-18 19:31:52 ----RD---- C:\Program Files (x86)\Skype
2016-10-18 19:31:52 ----D---- C:\Program Files (x86)\Common Files
2016-10-14 15:24:07 ----D---- C:\Windows\system32\NDF
2016-10-14 15:16:40 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2016-10-14 15:16:21 ----D---- C:\Windows\system32\Macromed
2016-10-14 15:16:05 ----D---- C:\Windows\SYSWOW64\Macromed
2016-09-25 18:05:16 ----D---- C:\Windows\System32
2016-09-25 18:05:16 ----D---- C:\Windows\inf
2016-09-25 18:05:16 ----A---- C:\Windows\system32\PerfStringBackup.INI
2016-09-25 17:55:33 ----D---- C:\Program Files\Microsoft Silverlight
2016-09-25 17:55:32 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2016-09-25 17:53:48 ----D---- C:\Windows\SYSWOW64\sr-Latn-CS
2016-09-25 17:53:48 ----D---- C:\Windows\SYSWOW64\sl-SI
2016-09-25 17:53:48 ----D---- C:\Windows\SYSWOW64\pl-PL
2016-09-25 17:53:48 ----D---- C:\Windows\SYSWOW64\lv-LV
2016-09-25 17:53:48 ----D---- C:\Windows\SYSWOW64\hu-HU
2016-09-25 17:53:48 ----D---- C:\Windows\SYSWOW64\hr-HR
2016-09-25 17:53:48 ----D---- C:\Windows\SYSWOW64\bg-BG
2016-09-25 17:53:48 ----D---- C:\Program Files\Internet Explorer
2016-09-25 17:53:48 ----D---- C:\Program Files (x86)\Internet Explorer
2016-09-25 17:53:47 ----D---- C:\Windows\SYSWOW64\sk-SK
2016-09-25 17:53:47 ----D---- C:\Windows\SYSWOW64\ro-RO
2016-09-25 17:53:47 ----D---- C:\Windows\SYSWOW64\lt-LT
2016-09-25 17:53:47 ----D---- C:\Windows\SYSWOW64\et-EE
2016-09-25 17:53:47 ----D---- C:\Windows\SYSWOW64\en-US
2016-09-25 17:53:47 ----D---- C:\Windows\SYSWOW64\cs-CZ
2016-09-25 17:53:46 ----D---- C:\Windows\system32\sr-Latn-CS
2016-09-25 17:53:46 ----D---- C:\Windows\system32\sl-SI
2016-09-25 17:53:46 ----D---- C:\Windows\system32\sk-SK
2016-09-25 17:53:46 ----D---- C:\Windows\system32\pl-PL
2016-09-25 17:53:46 ----D---- C:\Windows\system32\lv-LV
2016-09-25 17:53:46 ----D---- C:\Windows\system32\lt-LT
2016-09-25 17:53:46 ----D---- C:\Windows\system32\hu-HU
2016-09-25 17:53:46 ----D---- C:\Windows\system32\hr-HR
2016-09-25 17:53:46 ----D---- C:\Windows\system32\bg-BG
2016-09-25 17:53:45 ----D---- C:\Windows\system32\ro-RO
2016-09-25 17:53:45 ----D---- C:\Windows\system32\et-EE
2016-09-25 17:53:45 ----D---- C:\Windows\system32\en-US
2016-09-25 17:53:45 ----D---- C:\Windows\system32\cs-CZ
2016-09-25 17:53:42 ----D---- C:\Windows\system32\Boot
2016-09-25 17:53:42 ----D---- C:\Windows\AppPatch
2016-09-25 17:45:44 ----D---- C:\Windows\system32\MRT
2016-09-25 17:39:53 ----AC---- C:\Windows\system32\MRT.exe
2016-09-25 17:22:05 ----D---- C:\Users\Dášenka\AppData\Roaming\SoftGrid Client
2016-09-25 17:21:13 ----D---- C:\Windows
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2016-09-25 74544]
R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2016-10-14 293352]
R0 AtiPcie;AMD PCI Express (3GIO) Filter; C:\Windows\system32\DRIVERS\AtiPcie.sys [2009-05-05 16440]
R0 lullaby;lullaby; C:\Windows\system32\DRIVERS\lullaby.sys [2009-06-18 15928]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R1 aswKbd;aswKbd; C:\Windows\system32\drivers\aswKbd.sys [2016-09-25 37144]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2016-09-25 103064]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2016-09-25 969184]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2016-09-25 513632]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 ASMMAP64;ASMMAP64; \??\C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys [2009-07-03 15416]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2016-09-25 108816]
R2 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2016-09-25 163416]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2010-03-30 6657536]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2010-03-30 195584]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athrx.sys [2011-06-27 2753536]
R3 AtiHdmiService;ATI Service for HD Audio Codec; C:\Windows\system32\drivers\AtiHdmi.sys [2009-07-23 119312]
R3 ETD;ELAN PS/2 Port Input Device; C:\Windows\system32\DRIVERS\ETD.sys [2010-01-18 128512]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2010-04-13 2345760]
R3 JMCR;JMCR; C:\Windows\system32\DRIVERS\jmcr.sys [2009-08-18 143472]
R3 JME;JMicron Ethernet Adapter NDIS6.20 Driver (Amd64 Bits); C:\Windows\system32\DRIVERS\JME.sys [2010-02-25 115312]
R3 kbfiltr;Keyboard Filter; C:\Windows\system32\DRIVERS\kbfiltr.sys [2009-07-20 15416]
R3 MTsensor;ATK0100 ACPI UTILITY; C:\Windows\system32\DRIVERS\ATK64AMD.sys [2009-05-13 15928]
R3 Sftfs;Sftfs; C:\Windows\system32\DRIVERS\Sftfslh.sys [2014-10-08 766632]
R3 Sftplay;Sftplay; C:\Windows\system32\DRIVERS\Sftplaylh.sys [2014-10-08 273576]
R3 Sftredir;Sftredir; C:\Windows\system32\DRIVERS\Sftredirlh.sys [2014-10-08 29352]
R3 Sftvol;Sftvol; C:\Windows\system32\DRIVERS\Sftvollh.sys [2014-10-08 23208]
R3 SNP2UVC;USB2.0 PC Camera (SNP2UVC); C:\Windows\system32\DRIVERS\snp2uvc.sys [2009-06-05 1806400]
R3 usbfilter;AMD USB Filter Driver; C:\Windows\system32\DRIVERS\usbfilter.sys [2009-12-22 38456]
S3 aswHwid;avast! HardwareID; C:\Windows\system32\drivers\aswHwid.sys [2016-09-25 37656]
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2008-12-08 61792]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 sdbus;sdbus; C:\Windows\system32\drivers\sdbus.sys [2010-11-20 109056]
S3 SiSGbeLH;SiS191/SiS190 Ethernet Device NDIS 6.0 Driver; C:\Windows\system32\DRIVERS\SiSG664.sys [2009-06-10 56832]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2013-10-02 56832]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2013-07-03 42496]
S3 WimFltr;WimFltr; C:\Windows\system32\DRIVERS\wimfltr.sys [2008-05-24 154168]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2016-09-16 82128]
R2 AFBAgent;AFBAgent; C:\Windows\system32\FBAgent.exe [2009-12-08 379520]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2010-03-30 202752]
R2 ASLDRService;ASLDR Service; C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe [2009-06-16 84536]
R2 ATKGFNEXSrv;ATKGFNEX Service; C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe [2009-12-15 96896]
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2016-09-25 197128]
R2 BBUpdate;BBUpdate; C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE [2011-10-13 249648]
R2 cvhsvc;Client Virtualization Handler; C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE [2015-03-18 822496]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 sftlist;Application Virtualization Client; C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe [2014-10-08 534184]
R3 sftvsa;Application Virtualization Service Agent; C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe [2014-10-08 211104]
S2 BBSvc;Bing Bar Update Service; C:\Program Files (x86)\Microsoft\BingBar\BBSvc.EXE [2011-10-21 196176]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2015-11-05 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2015-11-05 125112]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2016-09-20 324224]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-10-14 270016]
S3 fsssvc;Windows Live Zabezpečení rodiny; C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2008-12-08 533344]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2016-09-01 114688]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2016-06-16 146888]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2015-12-21 1255736]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2015-11-05 51376]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-11-05 135848]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-11-05 135848]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-11-05 135848]
-----------------EOF-----------------
- Rudy
- Site Admin
- Příspěvky: 118275
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Dloooouhýýýý start systému a pomalý chod NTB
Stáhněte OTM: http://oldtimer.geekstogo.com/OTM.exe a uložte na plochu. Spusťte a do levého okna zkopírujte:
a klikněte na >MoveIt!<. Před skenem vypněte antivir a po něm restartujte PC. Dejte nový log RSIT.:files
C:\Program Files (x86)\Microsoft\BingBar
:reg
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{83FF80F4-8C74-4b80-B5BA-C8DDD434E5C4}]/64
[-HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d2ce3e00-f94a-4740-988e-03dc2f38c34f}]/64
[-HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]/64
:services
BBUpdate
BBSvc
:commands
[Purity]
[Emptytemp]
[Emptyflash]
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Dloooouhýýýý start systému a pomalý chod NTB
Zde je výsledek RSIT.
Jen se obávám že jsem asi před skenem nevypnul AVAST. Je to velký problém?Musím akci opakovat?
Logfile of random's system information tool 1.10 (written by random/random)
Run by Dášenka at 2016-10-18 22:24:56
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 18 GB (23%) free of 76 GB
Total RAM: 3838 MB (58% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22:26:04, on 18.10.2016
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.18450)
Boot mode: Normal
Running processes:
C:\Windows\AsScrPro.exe
C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe
C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe
C:\Program Files (x86)\ASUS\ControlDeck\ControlDeck.exe
C:\Program Files (x86)\ASUS\ASUS Live Update\ALU.exe
C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe
C:\Program Files (x86)\Boingo\Boingo Wi-Fi\Boingo Wi-Fi.exe
C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files\trend micro\Dášenka.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://asus.msn.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Pomocník pro přihlášení ke službě Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O4 - HKLM\..\Run: [UpdateLBPShortCut] "C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\LabelPrint" UpdateWithCreateOnce "Software\CyberLink\LabelPrint\2.5"
O4 - HKLM\..\Run: [UpdateP2GoShortCut] "C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\6.0"
O4 - HKLM\..\Run: [Boingo Wi-Fi] "C:\Program Files (x86)\Boingo\Boingo Wi-Fi\Boingo.lnk"
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [ATKOSD2] C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
O4 - HKLM\..\Run: [ATKMEDIA] C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
O4 - HKLM\..\Run: [HControlUser] C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'Default user')
O4 - Global Startup: FancyStart daemon.lnk = ?
O4 - Global Startup: SRS Premium Sound.lnk = ?
O9 - Extra button: Přidat na blog - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Přidat na blog Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: AFBAgent - Unknown owner - C:\Windows\system32\FBAgent.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: ASLDR Service (ASLDRService) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 8707 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
winlogon.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k NetworkService
atieclxx
"C:\Windows\system32\FBAgent.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe"
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Windows\AsScrPro.exe"
C:\Windows\System32\spoolsv.exe
taskeng.exe {DC3D588A-5498-4359-926D-145614CF657A}
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"taskhost.exe"
taskeng.exe {64B9BC7B-04E8-493F-9093-41A79F159DE2}
"C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe"
"C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe"
"C:\Program Files (x86)\ASUS\ControlDeck\ControlDeck.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe"
"C:\Program Files (x86)\ASUS\ASUS Live Update\ALU.exe"
"C:\Program Files (x86)\ASUS\ASUS CopyProtect\aspg.exe"
"C:\Program Files\P4G\BatteryLife.exe"
"C:\Program Files (x86)\ASUS\Splendid\ACMON.exe"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\Windows\System32\svchost.exe -k utcsvc
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe"
"C:\Windows\SysWOW64\ACEngSvr.exe" -Embedding
"C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe"
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE"
ATKOSD.exe
WDC.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\sppsvc.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\servicing\TrustedInstaller.exe
taskeng.exe {6C9240C6-DE7D-4DEF-B500-3657CDB06711}
C:\Windows\system32\SearchIndexer.exe /Embedding
C:\Windows\sysWOW64\wbem\wmiprvse.exe -Embedding
"C:\Program Files\Elantech\ETDCtrl.exe"
"C:\Program Files (x86)\ASUS\ASUS WebStorage\SERVICE\AsusWSService.exe"
"C:\Program Files\SRS Labs\SRS Premium Sound Control Panel\SRSPremiumPanel_64.exe" /f=srs_premium_sound_nopreset.zip /h
"C:\Program Files (x86)\Boingo\Boingo Wi-Fi\Boingo Wi-Fi.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe"
"C:\Program Files\AVAST Software\Avast\avastui.exe" /nogui
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM"
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
"C:\Program Files\Elantech\ETDCtrlHelper.exe"
C:\Windows\system32\wbem\unsecapp.exe -Embedding
"C:\Users\Dášenka\Downloads\RSITx64.exe"
C:\Windows\system32\wbem\WmiApSrv.exe
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\sysWOW64\wbem\wmiprvse.exe -secured -Embedding
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
=========Mozilla firefox=========
ProfilePath - C:\Users\Dášenka\AppData\Roaming\Mozilla\Firefox\Profiles\zj1bn5pi.default
prefs.js - "browser.startup.homepage" - "www.seznam.cz"
"wrc@avast.com"=C:\Program Files\AVAST Software\Avast\WebRep\FF
"sp@avast.com"=C:\Program Files\AVAST Software\Avast\SafePrice\FF
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 23.0.0.185 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_23_0_0_185.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files (x86)\Microsoft Silverlight\5.1.50709.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=14.0.8051.1204]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 23.0.0.185 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_23_0_0_185.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files\Microsoft Silverlight\5.1.50709.0\npctrl.dll
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4f3ed5cd-0726-42a9-87f5-d13f3d2976ac}]
Windows Live Family Safety Browser Helper Class - C:\Program Files\Windows Live\Family Safety\fssbho.dll [2008-12-08 68960]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2016-09-25 948792]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2016-09-25 713440]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocník pro přihlášení ke službě Windows Live - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-02-17 408440]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"ETDWare"=C:\Program Files\Elantech\ETDCtrl.exe [2010-01-13 635784]
"ASUS WebStorage"=C:\Program Files (x86)\ASUS\ASUS WebStorage\SERVICE\AsusWSService.exe [2010-03-16 1754448]
"Setwallpaper"=c:\programdata\SetWallpaper.cmd []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Screen Saver Protector]
C:\Windows\AsScrPro.exe [2010-08-24 3054136]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CLMLServer]
C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe [2009-11-02 103720]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RtHDVCpl]
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2010-04-13 10144288]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"UpdateLBPShortCut"=C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe [2009-05-20 222504]
"UpdateP2GoShortCut"=C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe [2009-05-20 222504]
"Boingo Wi-Fi"=C:\Program Files (x86)\Boingo\Boingo Wi-Fi\Boingo.lnk [2010-08-24 2429]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2010-03-31 102400]
"ATKOSD2"=C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [2010-02-04 7350912]
"ATKMEDIA"=C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [2010-01-05 170624]
"HControlUser"=C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe [2009-06-19 105016]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2016-10-18 9083840]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2016-09-16 1156824]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
FancyStart daemon.lnk - C:\Windows\Installer\{2B81872B-A054-48DA-BE3B-FA5C164C303A}\_C4A2FC3E3722966204FDD8.exe
SRS Premium Sound.lnk - C:\Windows\Installer\{E5CF6B9C-3ABE-43C9-9413-AD5FFC98F049}\NewShortcut5_21C7B668029A47458B27645FE6E4A715.exe
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"SoftwareSASGeneration"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2016-10-18 22:15:16 ----D---- C:\_OTM
2016-10-18 21:05:45 ----D---- C:\AdwCleaner
2016-10-18 19:41:51 ----D---- C:\Program Files\trend micro
2016-10-18 19:41:50 ----D---- C:\rsit
2016-09-25 17:39:22 ----A---- C:\Windows\SYSWOW64\tzres.dll
2016-09-25 17:39:22 ----A---- C:\Windows\system32\tzres.dll
2016-09-25 17:39:20 ----A---- C:\Windows\SYSWOW64\oleaut32.dll
2016-09-25 17:39:20 ----A---- C:\Windows\system32\oleaut32.dll
2016-09-25 17:39:19 ----A---- C:\Windows\system32\drivers\tcpip.sys
2016-09-25 17:39:18 ----A---- C:\Windows\SYSWOW64\INETRES.dll
2016-09-25 17:39:18 ----A---- C:\Windows\SYSWOW64\inetcomm.dll
2016-09-25 17:39:18 ----A---- C:\Windows\system32\INETRES.dll
2016-09-25 17:39:18 ----A---- C:\Windows\system32\inetcomm.dll
2016-09-25 17:39:18 ----A---- C:\Windows\system32\drivers\tcpipreg.sys
2016-09-25 17:39:18 ----A---- C:\Windows\system32\drivers\netio.sys
2016-09-25 17:39:18 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2016-09-25 17:39:17 ----A---- C:\Windows\system32\drivers\srv.sys
2016-09-25 17:39:16 ----A---- C:\Windows\system32\drivers\srvnet.sys
2016-09-25 17:39:16 ----A---- C:\Windows\system32\drivers\srv2.sys
2016-09-25 17:39:11 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2016-09-25 17:39:11 ----A---- C:\Windows\SYSWOW64\occache.dll
2016-09-25 17:39:11 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2016-09-25 17:39:11 ----A---- C:\Windows\SYSWOW64\inseng.dll
2016-09-25 17:39:11 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2016-09-25 17:39:11 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2016-09-25 17:39:11 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2016-09-25 17:39:11 ----A---- C:\Windows\system32\inseng.dll
2016-09-25 17:39:11 ----A---- C:\Windows\system32\iernonce.dll
2016-09-25 17:39:11 ----A---- C:\Windows\system32\ieetwproxystub.dll
2016-09-25 17:39:11 ----A---- C:\Windows\system32\ieetwcollector.exe
2016-09-25 17:39:11 ----A---- C:\Windows\system32\ie4uinit.exe
2016-09-25 17:39:10 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2016-09-25 17:39:10 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2016-09-25 17:39:10 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2016-09-25 17:39:10 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2016-09-25 17:39:10 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2016-09-25 17:39:10 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2016-09-25 17:39:08 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2016-09-25 17:39:08 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2016-09-25 17:39:08 ----A---- C:\Windows\SYSWOW64\jscript.dll
2016-09-25 17:39:08 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2016-09-25 17:39:08 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2016-09-25 17:39:08 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2016-09-25 17:39:08 ----A---- C:\Windows\system32\urlmon.dll
2016-09-25 17:39:08 ----A---- C:\Windows\system32\occache.dll
2016-09-25 17:39:08 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2016-09-25 17:39:08 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2016-09-25 17:39:08 ----A---- C:\Windows\system32\iedkcs32.dll
2016-09-25 17:39:07 ----A---- C:\Windows\SYSWOW64\ieui.dll
2016-09-25 17:39:07 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2016-09-25 17:39:07 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2016-09-25 17:39:07 ----A---- C:\Windows\system32\msfeeds.dll
2016-09-25 17:39:07 ----A---- C:\Windows\system32\iesetup.dll
2016-09-25 17:39:07 ----A---- C:\Windows\system32\dxtrans.dll
2016-09-25 17:39:06 ----A---- C:\Windows\system32\ieapfltr.dll
2016-09-25 17:39:05 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2016-09-25 17:39:05 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2016-09-25 17:39:05 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2016-09-25 17:39:05 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2016-09-25 17:39:05 ----A---- C:\Windows\system32\vbscript.dll
2016-09-25 17:39:05 ----A---- C:\Windows\system32\iertutil.dll
2016-09-25 17:39:04 ----A---- C:\Windows\SYSWOW64\wininet.dll
2016-09-25 17:39:04 ----A---- C:\Windows\SYSWOW64\msrating.dll
2016-09-25 17:39:04 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2016-09-25 17:39:04 ----A---- C:\Windows\system32\jsproxy.dll
2016-09-25 17:39:03 ----A---- C:\Windows\system32\ieui.dll
2016-09-25 17:39:03 ----A---- C:\Windows\system32\ieframe.dll
2016-09-25 17:39:03 ----A---- C:\Windows\system32\dxtmsft.dll
2016-09-25 17:39:02 ----A---- C:\Windows\system32\webcheck.dll
2016-09-25 17:39:02 ----A---- C:\Windows\system32\mshtmlmedia.dll
2016-09-25 17:39:02 ----A---- C:\Windows\system32\mshtmled.dll
2016-09-25 17:39:02 ----A---- C:\Windows\system32\jscript.dll
2016-09-25 17:39:02 ----A---- C:\Windows\system32\ieUnatt.exe
2016-09-25 17:39:01 ----A---- C:\Windows\system32\wininet.dll
2016-09-25 17:39:01 ----A---- C:\Windows\system32\jscript9diag.dll
2016-09-25 17:39:01 ----A---- C:\Windows\system32\jscript9.dll
2016-09-25 17:39:00 ----A---- C:\Windows\system32\msrating.dll
2016-09-25 17:39:00 ----A---- C:\Windows\system32\MshtmlDac.dll
2016-09-25 17:38:59 ----A---- C:\Windows\system32\mshtml.dll
2016-09-25 17:38:32 ----A---- C:\Windows\SYSWOW64\user32.dll
2016-09-25 17:38:32 ----A---- C:\Windows\system32\win32k.sys
2016-09-25 17:38:32 ----A---- C:\Windows\system32\user32.dll
2016-09-25 17:38:10 ----A---- C:\Windows\system32\ntoskrnl.exe
2016-09-25 17:38:10 ----A---- C:\Windows\system32\lsasrv.dll
2016-09-25 17:38:09 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2016-09-25 17:38:09 ----A---- C:\Windows\system32\rpcrt4.dll
2016-09-25 17:38:08 ----A---- C:\Windows\SYSWOW64\schannel.dll
2016-09-25 17:38:08 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2016-09-25 17:38:08 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2016-09-25 17:38:08 ----A---- C:\Windows\system32\schannel.dll
2016-09-25 17:38:08 ----A---- C:\Windows\system32\msv1_0.dll
2016-09-25 17:38:08 ----A---- C:\Windows\system32\kernel32.dll
2016-09-25 17:38:08 ----A---- C:\Windows\system32\kerberos.dll
2016-09-25 17:38:07 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2016-09-25 17:38:07 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2016-09-25 17:38:06 ----A---- C:\Windows\system32\ntdll.dll
2016-09-25 17:38:05 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2016-09-25 17:38:05 ----A---- C:\Windows\system32\rpchttp.dll
2016-09-25 17:38:05 ----A---- C:\Windows\system32\ncrypt.dll
2016-09-25 17:38:05 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2016-09-25 17:38:04 ----A---- C:\Windows\SYSWOW64\adtschema.dll
2016-09-25 17:38:04 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2016-09-25 17:38:04 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2016-09-25 17:38:04 ----A---- C:\Windows\system32\certcli.dll
2016-09-25 17:38:04 ----A---- C:\Windows\system32\adtschema.dll
2016-09-25 17:38:03 ----A---- C:\Windows\SYSWOW64\rpchttp.dll
2016-09-25 17:38:03 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2016-09-25 17:38:03 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2016-09-25 17:38:03 ----A---- C:\Windows\system32\wdigest.dll
2016-09-25 17:38:03 ----A---- C:\Windows\system32\TSpkg.dll
2016-09-25 17:38:03 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2016-09-25 17:38:02 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2016-09-25 17:38:02 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2016-09-25 17:38:02 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2016-09-25 17:38:02 ----A---- C:\Windows\SYSWOW64\secur32.dll
2016-09-25 17:38:02 ----A---- C:\Windows\SYSWOW64\msobjs.dll
2016-09-25 17:38:02 ----A---- C:\Windows\SYSWOW64\msaudite.dll
2016-09-25 17:38:02 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2016-09-25 17:38:02 ----A---- C:\Windows\SYSWOW64\cryptbase.dll
2016-09-25 17:38:02 ----A---- C:\Windows\SYSWOW64\credssp.dll
2016-09-25 17:38:02 ----A---- C:\Windows\SYSWOW64\certcli.dll
2016-09-25 17:38:02 ----A---- C:\Windows\SYSWOW64\auditpol.exe
2016-09-25 17:38:02 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2016-09-25 17:38:02 ----A---- C:\Windows\system32\wow64win.dll
2016-09-25 17:38:02 ----A---- C:\Windows\system32\wow64.dll
2016-09-25 17:38:02 ----A---- C:\Windows\system32\winsrv.dll
2016-09-25 17:38:02 ----A---- C:\Windows\system32\sspisrv.dll
2016-09-25 17:38:02 ----A---- C:\Windows\system32\sspicli.dll
2016-09-25 17:38:02 ----A---- C:\Windows\system32\srcore.dll
2016-09-25 17:38:02 ----A---- C:\Windows\system32\smss.exe
2016-09-25 17:38:02 ----A---- C:\Windows\system32\secur32.dll
2016-09-25 17:38:02 ----A---- C:\Windows\system32\msobjs.dll
2016-09-25 17:38:02 ----A---- C:\Windows\system32\msaudite.dll
2016-09-25 17:38:02 ----A---- C:\Windows\system32\lsass.exe
2016-09-25 17:38:02 ----A---- C:\Windows\system32\KernelBase.dll
2016-09-25 17:38:02 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2016-09-25 17:38:02 ----A---- C:\Windows\system32\csrsrv.dll
2016-09-25 17:38:02 ----A---- C:\Windows\system32\cryptbase.dll
2016-09-25 17:38:02 ----A---- C:\Windows\system32\credssp.dll
2016-09-25 17:38:02 ----A---- C:\Windows\system32\conhost.exe
2016-09-25 17:38:02 ----A---- C:\Windows\system32\auditpol.exe
2016-09-25 17:38:02 ----A---- C:\Windows\system32\advapi32.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2016-09-25 17:38:01 ----A---- C:\Windows\SYSWOW64\wow32.dll
2016-09-25 17:38:01 ----A---- C:\Windows\SYSWOW64\user.exe
2016-09-25 17:38:01 ----A---- C:\Windows\SYSWOW64\srclient.dll
2016-09-25 17:38:01 ----A---- C:\Windows\SYSWOW64\setup16.exe
2016-09-25 17:38:01 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2016-09-25 17:38:01 ----A---- C:\Windows\SYSWOW64\instnm.exe
2016-09-25 17:38:01 ----A---- C:\Windows\SYSWOW64\appidapi.dll
2016-09-25 17:38:01 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2016-09-25 17:38:01 ----A---- C:\Windows\system32\wow64cpu.dll
2016-09-25 17:38:01 ----A---- C:\Windows\system32\srclient.dll
2016-09-25 17:38:01 ----A---- C:\Windows\system32\setbcdlocale.dll
2016-09-25 17:38:01 ----A---- C:\Windows\system32\rstrui.exe
2016-09-25 17:38:01 ----A---- C:\Windows\system32\ntvdm64.dll
2016-09-25 17:38:01 ----A---- C:\Windows\system32\drivers\appid.sys
2016-09-25 17:38:01 ----A---- C:\Windows\system32\appidsvc.dll
2016-09-25 17:38:01 ----A---- C:\Windows\system32\appidpolicyconverter.exe
2016-09-25 17:38:01 ----A---- C:\Windows\system32\appidcertstorecheck.exe
2016-09-25 17:38:01 ----A---- C:\Windows\system32\appidapi.dll
2016-09-25 17:38:01 ----A---- C:\Windows\system32\apisetschema.dll
2016-09-25 17:21:16 ----A---- C:\Windows\system32\aswBoot.exe
2016-09-25 17:20:38 ----A---- C:\Windows\avastSS.scr
======List of files/folders modified in the last 1 month======
2016-10-18 22:23:51 ----D---- C:\Windows\Temp
2016-10-18 22:22:27 ----D---- C:\Windows\system32\config
2016-10-18 22:22:16 ----D---- C:\Windows\system32\Tasks
2016-10-18 22:19:00 ----D---- C:\Windows\SysWOW64
2016-10-18 22:16:20 ----D---- C:\Program Files (x86)\Microsoft
2016-10-18 21:08:09 ----HD---- C:\ProgramData
2016-10-18 19:59:20 ----SHD---- C:\Windows\Installer
2016-10-18 19:45:54 ----D---- C:\Windows\system32\catroot2
2016-10-18 19:45:17 ----D---- C:\Windows\winsxs
2016-10-18 19:41:51 ----RD---- C:\Program Files
2016-10-18 19:34:53 ----D---- C:\Windows\system32\drivers
2016-10-18 19:33:09 ----D---- C:\Users\Dášenka\AppData\Roaming\Skype
2016-10-18 19:31:56 ----D---- C:\ProgramData\Skype
2016-10-18 19:31:52 ----RD---- C:\Program Files (x86)\Skype
2016-10-18 19:31:52 ----D---- C:\Program Files (x86)\Common Files
2016-10-14 15:24:07 ----D---- C:\Windows\system32\NDF
2016-10-14 15:16:40 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2016-10-14 15:16:21 ----D---- C:\Windows\system32\Macromed
2016-10-14 15:16:05 ----D---- C:\Windows\SYSWOW64\Macromed
2016-09-25 18:05:16 ----D---- C:\Windows\System32
2016-09-25 18:05:16 ----D---- C:\Windows\inf
2016-09-25 18:05:16 ----A---- C:\Windows\system32\PerfStringBackup.INI
2016-09-25 17:55:33 ----D---- C:\Program Files\Microsoft Silverlight
2016-09-25 17:55:32 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2016-09-25 17:53:48 ----D---- C:\Windows\SYSWOW64\sr-Latn-CS
2016-09-25 17:53:48 ----D---- C:\Windows\SYSWOW64\sl-SI
2016-09-25 17:53:48 ----D---- C:\Windows\SYSWOW64\pl-PL
2016-09-25 17:53:48 ----D---- C:\Windows\SYSWOW64\lv-LV
2016-09-25 17:53:48 ----D---- C:\Windows\SYSWOW64\hu-HU
2016-09-25 17:53:48 ----D---- C:\Windows\SYSWOW64\hr-HR
2016-09-25 17:53:48 ----D---- C:\Windows\SYSWOW64\bg-BG
2016-09-25 17:53:48 ----D---- C:\Program Files\Internet Explorer
2016-09-25 17:53:48 ----D---- C:\Program Files (x86)\Internet Explorer
2016-09-25 17:53:47 ----D---- C:\Windows\SYSWOW64\sk-SK
2016-09-25 17:53:47 ----D---- C:\Windows\SYSWOW64\ro-RO
2016-09-25 17:53:47 ----D---- C:\Windows\SYSWOW64\lt-LT
2016-09-25 17:53:47 ----D---- C:\Windows\SYSWOW64\et-EE
2016-09-25 17:53:47 ----D---- C:\Windows\SYSWOW64\en-US
2016-09-25 17:53:47 ----D---- C:\Windows\SYSWOW64\cs-CZ
2016-09-25 17:53:46 ----D---- C:\Windows\system32\sr-Latn-CS
2016-09-25 17:53:46 ----D---- C:\Windows\system32\sl-SI
2016-09-25 17:53:46 ----D---- C:\Windows\system32\sk-SK
2016-09-25 17:53:46 ----D---- C:\Windows\system32\pl-PL
2016-09-25 17:53:46 ----D---- C:\Windows\system32\lv-LV
2016-09-25 17:53:46 ----D---- C:\Windows\system32\lt-LT
2016-09-25 17:53:46 ----D---- C:\Windows\system32\hu-HU
2016-09-25 17:53:46 ----D---- C:\Windows\system32\hr-HR
2016-09-25 17:53:46 ----D---- C:\Windows\system32\bg-BG
2016-09-25 17:53:45 ----D---- C:\Windows\system32\ro-RO
2016-09-25 17:53:45 ----D---- C:\Windows\system32\et-EE
2016-09-25 17:53:45 ----D---- C:\Windows\system32\en-US
2016-09-25 17:53:45 ----D---- C:\Windows\system32\cs-CZ
2016-09-25 17:53:42 ----D---- C:\Windows\system32\Boot
2016-09-25 17:53:42 ----D---- C:\Windows\AppPatch
2016-09-25 17:45:44 ----D---- C:\Windows\system32\MRT
2016-09-25 17:39:53 ----AC---- C:\Windows\system32\MRT.exe
2016-09-25 17:22:05 ----D---- C:\Users\Dášenka\AppData\Roaming\SoftGrid Client
2016-09-25 17:21:13 ----D---- C:\Windows
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2016-09-25 74544]
R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2016-10-14 293352]
R0 AtiPcie;AMD PCI Express (3GIO) Filter; C:\Windows\system32\DRIVERS\AtiPcie.sys [2009-05-05 16440]
R0 lullaby;lullaby; C:\Windows\system32\DRIVERS\lullaby.sys [2009-06-18 15928]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R1 aswKbd;aswKbd; C:\Windows\system32\drivers\aswKbd.sys [2016-09-25 37144]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2016-09-25 103064]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2016-09-25 969184]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2016-09-25 513632]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 ASMMAP64;ASMMAP64; \??\C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys [2009-07-03 15416]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2016-09-25 108816]
R2 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2016-09-25 163416]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2010-03-30 6657536]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2010-03-30 195584]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athrx.sys [2011-06-27 2753536]
R3 AtiHdmiService;ATI Service for HD Audio Codec; C:\Windows\system32\drivers\AtiHdmi.sys [2009-07-23 119312]
R3 ETD;ELAN PS/2 Port Input Device; C:\Windows\system32\DRIVERS\ETD.sys [2010-01-18 128512]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2010-04-13 2345760]
R3 JMCR;JMCR; C:\Windows\system32\DRIVERS\jmcr.sys [2009-08-18 143472]
R3 JME;JMicron Ethernet Adapter NDIS6.20 Driver (Amd64 Bits); C:\Windows\system32\DRIVERS\JME.sys [2010-02-25 115312]
R3 kbfiltr;Keyboard Filter; C:\Windows\system32\DRIVERS\kbfiltr.sys [2009-07-20 15416]
R3 MTsensor;ATK0100 ACPI UTILITY; C:\Windows\system32\DRIVERS\ATK64AMD.sys [2009-05-13 15928]
R3 Sftfs;Sftfs; C:\Windows\system32\DRIVERS\Sftfslh.sys [2014-10-08 766632]
R3 Sftplay;Sftplay; C:\Windows\system32\DRIVERS\Sftplaylh.sys [2014-10-08 273576]
R3 Sftredir;Sftredir; C:\Windows\system32\DRIVERS\Sftredirlh.sys [2014-10-08 29352]
R3 Sftvol;Sftvol; C:\Windows\system32\DRIVERS\Sftvollh.sys [2014-10-08 23208]
R3 SNP2UVC;USB2.0 PC Camera (SNP2UVC); C:\Windows\system32\DRIVERS\snp2uvc.sys [2009-06-05 1806400]
R3 usbfilter;AMD USB Filter Driver; C:\Windows\system32\DRIVERS\usbfilter.sys [2009-12-22 38456]
S3 aswHwid;avast! HardwareID; C:\Windows\system32\drivers\aswHwid.sys [2016-09-25 37656]
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2008-12-08 61792]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 sdbus;sdbus; C:\Windows\system32\drivers\sdbus.sys [2010-11-20 109056]
S3 SiSGbeLH;SiS191/SiS190 Ethernet Device NDIS 6.0 Driver; C:\Windows\system32\DRIVERS\SiSG664.sys [2009-06-10 56832]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2013-10-02 56832]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2013-07-03 42496]
S3 WimFltr;WimFltr; C:\Windows\system32\DRIVERS\wimfltr.sys [2008-05-24 154168]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2016-09-16 82128]
R2 AFBAgent;AFBAgent; C:\Windows\system32\FBAgent.exe [2009-12-08 379520]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2010-03-30 202752]
R2 ASLDRService;ASLDR Service; C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe [2009-06-16 84536]
R2 ATKGFNEXSrv;ATKGFNEX Service; C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe [2009-12-15 96896]
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2016-09-25 197128]
R2 cvhsvc;Client Virtualization Handler; C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE [2015-03-18 822496]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 sftlist;Application Virtualization Client; C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe [2014-10-08 534184]
R3 sftvsa;Application Virtualization Service Agent; C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe [2014-10-08 211104]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2015-11-05 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2015-11-05 125112]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2016-09-20 324224]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-10-14 270016]
S3 fsssvc;Windows Live Zabezpečení rodiny; C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2008-12-08 533344]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2016-09-01 114688]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2016-06-16 146888]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2015-12-21 1255736]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2015-11-05 51376]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-11-05 135848]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-11-05 135848]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-11-05 135848]
-----------------EOF-----------------
Jen se obávám že jsem asi před skenem nevypnul AVAST. Je to velký problém?Musím akci opakovat?
Logfile of random's system information tool 1.10 (written by random/random)
Run by Dášenka at 2016-10-18 22:24:56
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 18 GB (23%) free of 76 GB
Total RAM: 3838 MB (58% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22:26:04, on 18.10.2016
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.18450)
Boot mode: Normal
Running processes:
C:\Windows\AsScrPro.exe
C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe
C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe
C:\Program Files (x86)\ASUS\ControlDeck\ControlDeck.exe
C:\Program Files (x86)\ASUS\ASUS Live Update\ALU.exe
C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe
C:\Program Files (x86)\Boingo\Boingo Wi-Fi\Boingo Wi-Fi.exe
C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files\trend micro\Dášenka.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://asus.msn.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Pomocník pro přihlášení ke službě Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O4 - HKLM\..\Run: [UpdateLBPShortCut] "C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\LabelPrint" UpdateWithCreateOnce "Software\CyberLink\LabelPrint\2.5"
O4 - HKLM\..\Run: [UpdateP2GoShortCut] "C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\6.0"
O4 - HKLM\..\Run: [Boingo Wi-Fi] "C:\Program Files (x86)\Boingo\Boingo Wi-Fi\Boingo.lnk"
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [ATKOSD2] C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
O4 - HKLM\..\Run: [ATKMEDIA] C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
O4 - HKLM\..\Run: [HControlUser] C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'Default user')
O4 - Global Startup: FancyStart daemon.lnk = ?
O4 - Global Startup: SRS Premium Sound.lnk = ?
O9 - Extra button: Přidat na blog - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Přidat na blog Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: AFBAgent - Unknown owner - C:\Windows\system32\FBAgent.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: ASLDR Service (ASLDRService) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 8707 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
winlogon.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k NetworkService
atieclxx
"C:\Windows\system32\FBAgent.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe"
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Windows\AsScrPro.exe"
C:\Windows\System32\spoolsv.exe
taskeng.exe {DC3D588A-5498-4359-926D-145614CF657A}
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"taskhost.exe"
taskeng.exe {64B9BC7B-04E8-493F-9093-41A79F159DE2}
"C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe"
"C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe"
"C:\Program Files (x86)\ASUS\ControlDeck\ControlDeck.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe"
"C:\Program Files (x86)\ASUS\ASUS Live Update\ALU.exe"
"C:\Program Files (x86)\ASUS\ASUS CopyProtect\aspg.exe"
"C:\Program Files\P4G\BatteryLife.exe"
"C:\Program Files (x86)\ASUS\Splendid\ACMON.exe"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\Windows\System32\svchost.exe -k utcsvc
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe"
"C:\Windows\SysWOW64\ACEngSvr.exe" -Embedding
"C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe"
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE"
ATKOSD.exe
WDC.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\sppsvc.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\servicing\TrustedInstaller.exe
taskeng.exe {6C9240C6-DE7D-4DEF-B500-3657CDB06711}
C:\Windows\system32\SearchIndexer.exe /Embedding
C:\Windows\sysWOW64\wbem\wmiprvse.exe -Embedding
"C:\Program Files\Elantech\ETDCtrl.exe"
"C:\Program Files (x86)\ASUS\ASUS WebStorage\SERVICE\AsusWSService.exe"
"C:\Program Files\SRS Labs\SRS Premium Sound Control Panel\SRSPremiumPanel_64.exe" /f=srs_premium_sound_nopreset.zip /h
"C:\Program Files (x86)\Boingo\Boingo Wi-Fi\Boingo Wi-Fi.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe"
"C:\Program Files\AVAST Software\Avast\avastui.exe" /nogui
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM"
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
"C:\Program Files\Elantech\ETDCtrlHelper.exe"
C:\Windows\system32\wbem\unsecapp.exe -Embedding
"C:\Users\Dášenka\Downloads\RSITx64.exe"
C:\Windows\system32\wbem\WmiApSrv.exe
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\sysWOW64\wbem\wmiprvse.exe -secured -Embedding
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
=========Mozilla firefox=========
ProfilePath - C:\Users\Dášenka\AppData\Roaming\Mozilla\Firefox\Profiles\zj1bn5pi.default
prefs.js - "browser.startup.homepage" - "www.seznam.cz"
"wrc@avast.com"=C:\Program Files\AVAST Software\Avast\WebRep\FF
"sp@avast.com"=C:\Program Files\AVAST Software\Avast\SafePrice\FF
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 23.0.0.185 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_23_0_0_185.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files (x86)\Microsoft Silverlight\5.1.50709.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=14.0.8051.1204]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 23.0.0.185 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_23_0_0_185.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files\Microsoft Silverlight\5.1.50709.0\npctrl.dll
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4f3ed5cd-0726-42a9-87f5-d13f3d2976ac}]
Windows Live Family Safety Browser Helper Class - C:\Program Files\Windows Live\Family Safety\fssbho.dll [2008-12-08 68960]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2016-09-25 948792]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2016-09-25 713440]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocník pro přihlášení ke službě Windows Live - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-02-17 408440]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"ETDWare"=C:\Program Files\Elantech\ETDCtrl.exe [2010-01-13 635784]
"ASUS WebStorage"=C:\Program Files (x86)\ASUS\ASUS WebStorage\SERVICE\AsusWSService.exe [2010-03-16 1754448]
"Setwallpaper"=c:\programdata\SetWallpaper.cmd []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Screen Saver Protector]
C:\Windows\AsScrPro.exe [2010-08-24 3054136]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CLMLServer]
C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe [2009-11-02 103720]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RtHDVCpl]
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2010-04-13 10144288]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"UpdateLBPShortCut"=C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe [2009-05-20 222504]
"UpdateP2GoShortCut"=C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe [2009-05-20 222504]
"Boingo Wi-Fi"=C:\Program Files (x86)\Boingo\Boingo Wi-Fi\Boingo.lnk [2010-08-24 2429]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2010-03-31 102400]
"ATKOSD2"=C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [2010-02-04 7350912]
"ATKMEDIA"=C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [2010-01-05 170624]
"HControlUser"=C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe [2009-06-19 105016]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2016-10-18 9083840]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2016-09-16 1156824]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
FancyStart daemon.lnk - C:\Windows\Installer\{2B81872B-A054-48DA-BE3B-FA5C164C303A}\_C4A2FC3E3722966204FDD8.exe
SRS Premium Sound.lnk - C:\Windows\Installer\{E5CF6B9C-3ABE-43C9-9413-AD5FFC98F049}\NewShortcut5_21C7B668029A47458B27645FE6E4A715.exe
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"SoftwareSASGeneration"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2016-10-18 22:15:16 ----D---- C:\_OTM
2016-10-18 21:05:45 ----D---- C:\AdwCleaner
2016-10-18 19:41:51 ----D---- C:\Program Files\trend micro
2016-10-18 19:41:50 ----D---- C:\rsit
2016-09-25 17:39:22 ----A---- C:\Windows\SYSWOW64\tzres.dll
2016-09-25 17:39:22 ----A---- C:\Windows\system32\tzres.dll
2016-09-25 17:39:20 ----A---- C:\Windows\SYSWOW64\oleaut32.dll
2016-09-25 17:39:20 ----A---- C:\Windows\system32\oleaut32.dll
2016-09-25 17:39:19 ----A---- C:\Windows\system32\drivers\tcpip.sys
2016-09-25 17:39:18 ----A---- C:\Windows\SYSWOW64\INETRES.dll
2016-09-25 17:39:18 ----A---- C:\Windows\SYSWOW64\inetcomm.dll
2016-09-25 17:39:18 ----A---- C:\Windows\system32\INETRES.dll
2016-09-25 17:39:18 ----A---- C:\Windows\system32\inetcomm.dll
2016-09-25 17:39:18 ----A---- C:\Windows\system32\drivers\tcpipreg.sys
2016-09-25 17:39:18 ----A---- C:\Windows\system32\drivers\netio.sys
2016-09-25 17:39:18 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2016-09-25 17:39:17 ----A---- C:\Windows\system32\drivers\srv.sys
2016-09-25 17:39:16 ----A---- C:\Windows\system32\drivers\srvnet.sys
2016-09-25 17:39:16 ----A---- C:\Windows\system32\drivers\srv2.sys
2016-09-25 17:39:11 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2016-09-25 17:39:11 ----A---- C:\Windows\SYSWOW64\occache.dll
2016-09-25 17:39:11 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2016-09-25 17:39:11 ----A---- C:\Windows\SYSWOW64\inseng.dll
2016-09-25 17:39:11 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2016-09-25 17:39:11 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2016-09-25 17:39:11 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2016-09-25 17:39:11 ----A---- C:\Windows\system32\inseng.dll
2016-09-25 17:39:11 ----A---- C:\Windows\system32\iernonce.dll
2016-09-25 17:39:11 ----A---- C:\Windows\system32\ieetwproxystub.dll
2016-09-25 17:39:11 ----A---- C:\Windows\system32\ieetwcollector.exe
2016-09-25 17:39:11 ----A---- C:\Windows\system32\ie4uinit.exe
2016-09-25 17:39:10 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2016-09-25 17:39:10 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2016-09-25 17:39:10 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2016-09-25 17:39:10 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2016-09-25 17:39:10 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2016-09-25 17:39:10 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2016-09-25 17:39:08 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2016-09-25 17:39:08 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2016-09-25 17:39:08 ----A---- C:\Windows\SYSWOW64\jscript.dll
2016-09-25 17:39:08 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2016-09-25 17:39:08 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2016-09-25 17:39:08 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2016-09-25 17:39:08 ----A---- C:\Windows\system32\urlmon.dll
2016-09-25 17:39:08 ----A---- C:\Windows\system32\occache.dll
2016-09-25 17:39:08 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2016-09-25 17:39:08 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2016-09-25 17:39:08 ----A---- C:\Windows\system32\iedkcs32.dll
2016-09-25 17:39:07 ----A---- C:\Windows\SYSWOW64\ieui.dll
2016-09-25 17:39:07 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2016-09-25 17:39:07 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2016-09-25 17:39:07 ----A---- C:\Windows\system32\msfeeds.dll
2016-09-25 17:39:07 ----A---- C:\Windows\system32\iesetup.dll
2016-09-25 17:39:07 ----A---- C:\Windows\system32\dxtrans.dll
2016-09-25 17:39:06 ----A---- C:\Windows\system32\ieapfltr.dll
2016-09-25 17:39:05 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2016-09-25 17:39:05 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2016-09-25 17:39:05 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2016-09-25 17:39:05 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2016-09-25 17:39:05 ----A---- C:\Windows\system32\vbscript.dll
2016-09-25 17:39:05 ----A---- C:\Windows\system32\iertutil.dll
2016-09-25 17:39:04 ----A---- C:\Windows\SYSWOW64\wininet.dll
2016-09-25 17:39:04 ----A---- C:\Windows\SYSWOW64\msrating.dll
2016-09-25 17:39:04 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2016-09-25 17:39:04 ----A---- C:\Windows\system32\jsproxy.dll
2016-09-25 17:39:03 ----A---- C:\Windows\system32\ieui.dll
2016-09-25 17:39:03 ----A---- C:\Windows\system32\ieframe.dll
2016-09-25 17:39:03 ----A---- C:\Windows\system32\dxtmsft.dll
2016-09-25 17:39:02 ----A---- C:\Windows\system32\webcheck.dll
2016-09-25 17:39:02 ----A---- C:\Windows\system32\mshtmlmedia.dll
2016-09-25 17:39:02 ----A---- C:\Windows\system32\mshtmled.dll
2016-09-25 17:39:02 ----A---- C:\Windows\system32\jscript.dll
2016-09-25 17:39:02 ----A---- C:\Windows\system32\ieUnatt.exe
2016-09-25 17:39:01 ----A---- C:\Windows\system32\wininet.dll
2016-09-25 17:39:01 ----A---- C:\Windows\system32\jscript9diag.dll
2016-09-25 17:39:01 ----A---- C:\Windows\system32\jscript9.dll
2016-09-25 17:39:00 ----A---- C:\Windows\system32\msrating.dll
2016-09-25 17:39:00 ----A---- C:\Windows\system32\MshtmlDac.dll
2016-09-25 17:38:59 ----A---- C:\Windows\system32\mshtml.dll
2016-09-25 17:38:32 ----A---- C:\Windows\SYSWOW64\user32.dll
2016-09-25 17:38:32 ----A---- C:\Windows\system32\win32k.sys
2016-09-25 17:38:32 ----A---- C:\Windows\system32\user32.dll
2016-09-25 17:38:10 ----A---- C:\Windows\system32\ntoskrnl.exe
2016-09-25 17:38:10 ----A---- C:\Windows\system32\lsasrv.dll
2016-09-25 17:38:09 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2016-09-25 17:38:09 ----A---- C:\Windows\system32\rpcrt4.dll
2016-09-25 17:38:08 ----A---- C:\Windows\SYSWOW64\schannel.dll
2016-09-25 17:38:08 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2016-09-25 17:38:08 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2016-09-25 17:38:08 ----A---- C:\Windows\system32\schannel.dll
2016-09-25 17:38:08 ----A---- C:\Windows\system32\msv1_0.dll
2016-09-25 17:38:08 ----A---- C:\Windows\system32\kernel32.dll
2016-09-25 17:38:08 ----A---- C:\Windows\system32\kerberos.dll
2016-09-25 17:38:07 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2016-09-25 17:38:07 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2016-09-25 17:38:06 ----A---- C:\Windows\system32\ntdll.dll
2016-09-25 17:38:05 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2016-09-25 17:38:05 ----A---- C:\Windows\system32\rpchttp.dll
2016-09-25 17:38:05 ----A---- C:\Windows\system32\ncrypt.dll
2016-09-25 17:38:05 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2016-09-25 17:38:04 ----A---- C:\Windows\SYSWOW64\adtschema.dll
2016-09-25 17:38:04 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2016-09-25 17:38:04 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2016-09-25 17:38:04 ----A---- C:\Windows\system32\certcli.dll
2016-09-25 17:38:04 ----A---- C:\Windows\system32\adtschema.dll
2016-09-25 17:38:03 ----A---- C:\Windows\SYSWOW64\rpchttp.dll
2016-09-25 17:38:03 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2016-09-25 17:38:03 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2016-09-25 17:38:03 ----A---- C:\Windows\system32\wdigest.dll
2016-09-25 17:38:03 ----A---- C:\Windows\system32\TSpkg.dll
2016-09-25 17:38:03 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2016-09-25 17:38:02 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2016-09-25 17:38:02 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2016-09-25 17:38:02 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2016-09-25 17:38:02 ----A---- C:\Windows\SYSWOW64\secur32.dll
2016-09-25 17:38:02 ----A---- C:\Windows\SYSWOW64\msobjs.dll
2016-09-25 17:38:02 ----A---- C:\Windows\SYSWOW64\msaudite.dll
2016-09-25 17:38:02 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2016-09-25 17:38:02 ----A---- C:\Windows\SYSWOW64\cryptbase.dll
2016-09-25 17:38:02 ----A---- C:\Windows\SYSWOW64\credssp.dll
2016-09-25 17:38:02 ----A---- C:\Windows\SYSWOW64\certcli.dll
2016-09-25 17:38:02 ----A---- C:\Windows\SYSWOW64\auditpol.exe
2016-09-25 17:38:02 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2016-09-25 17:38:02 ----A---- C:\Windows\system32\wow64win.dll
2016-09-25 17:38:02 ----A---- C:\Windows\system32\wow64.dll
2016-09-25 17:38:02 ----A---- C:\Windows\system32\winsrv.dll
2016-09-25 17:38:02 ----A---- C:\Windows\system32\sspisrv.dll
2016-09-25 17:38:02 ----A---- C:\Windows\system32\sspicli.dll
2016-09-25 17:38:02 ----A---- C:\Windows\system32\srcore.dll
2016-09-25 17:38:02 ----A---- C:\Windows\system32\smss.exe
2016-09-25 17:38:02 ----A---- C:\Windows\system32\secur32.dll
2016-09-25 17:38:02 ----A---- C:\Windows\system32\msobjs.dll
2016-09-25 17:38:02 ----A---- C:\Windows\system32\msaudite.dll
2016-09-25 17:38:02 ----A---- C:\Windows\system32\lsass.exe
2016-09-25 17:38:02 ----A---- C:\Windows\system32\KernelBase.dll
2016-09-25 17:38:02 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2016-09-25 17:38:02 ----A---- C:\Windows\system32\csrsrv.dll
2016-09-25 17:38:02 ----A---- C:\Windows\system32\cryptbase.dll
2016-09-25 17:38:02 ----A---- C:\Windows\system32\credssp.dll
2016-09-25 17:38:02 ----A---- C:\Windows\system32\conhost.exe
2016-09-25 17:38:02 ----A---- C:\Windows\system32\auditpol.exe
2016-09-25 17:38:02 ----A---- C:\Windows\system32\advapi32.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2016-09-25 17:38:01 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2016-09-25 17:38:01 ----A---- C:\Windows\SYSWOW64\wow32.dll
2016-09-25 17:38:01 ----A---- C:\Windows\SYSWOW64\user.exe
2016-09-25 17:38:01 ----A---- C:\Windows\SYSWOW64\srclient.dll
2016-09-25 17:38:01 ----A---- C:\Windows\SYSWOW64\setup16.exe
2016-09-25 17:38:01 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2016-09-25 17:38:01 ----A---- C:\Windows\SYSWOW64\instnm.exe
2016-09-25 17:38:01 ----A---- C:\Windows\SYSWOW64\appidapi.dll
2016-09-25 17:38:01 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2016-09-25 17:38:01 ----A---- C:\Windows\system32\wow64cpu.dll
2016-09-25 17:38:01 ----A---- C:\Windows\system32\srclient.dll
2016-09-25 17:38:01 ----A---- C:\Windows\system32\setbcdlocale.dll
2016-09-25 17:38:01 ----A---- C:\Windows\system32\rstrui.exe
2016-09-25 17:38:01 ----A---- C:\Windows\system32\ntvdm64.dll
2016-09-25 17:38:01 ----A---- C:\Windows\system32\drivers\appid.sys
2016-09-25 17:38:01 ----A---- C:\Windows\system32\appidsvc.dll
2016-09-25 17:38:01 ----A---- C:\Windows\system32\appidpolicyconverter.exe
2016-09-25 17:38:01 ----A---- C:\Windows\system32\appidcertstorecheck.exe
2016-09-25 17:38:01 ----A---- C:\Windows\system32\appidapi.dll
2016-09-25 17:38:01 ----A---- C:\Windows\system32\apisetschema.dll
2016-09-25 17:21:16 ----A---- C:\Windows\system32\aswBoot.exe
2016-09-25 17:20:38 ----A---- C:\Windows\avastSS.scr
======List of files/folders modified in the last 1 month======
2016-10-18 22:23:51 ----D---- C:\Windows\Temp
2016-10-18 22:22:27 ----D---- C:\Windows\system32\config
2016-10-18 22:22:16 ----D---- C:\Windows\system32\Tasks
2016-10-18 22:19:00 ----D---- C:\Windows\SysWOW64
2016-10-18 22:16:20 ----D---- C:\Program Files (x86)\Microsoft
2016-10-18 21:08:09 ----HD---- C:\ProgramData
2016-10-18 19:59:20 ----SHD---- C:\Windows\Installer
2016-10-18 19:45:54 ----D---- C:\Windows\system32\catroot2
2016-10-18 19:45:17 ----D---- C:\Windows\winsxs
2016-10-18 19:41:51 ----RD---- C:\Program Files
2016-10-18 19:34:53 ----D---- C:\Windows\system32\drivers
2016-10-18 19:33:09 ----D---- C:\Users\Dášenka\AppData\Roaming\Skype
2016-10-18 19:31:56 ----D---- C:\ProgramData\Skype
2016-10-18 19:31:52 ----RD---- C:\Program Files (x86)\Skype
2016-10-18 19:31:52 ----D---- C:\Program Files (x86)\Common Files
2016-10-14 15:24:07 ----D---- C:\Windows\system32\NDF
2016-10-14 15:16:40 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2016-10-14 15:16:21 ----D---- C:\Windows\system32\Macromed
2016-10-14 15:16:05 ----D---- C:\Windows\SYSWOW64\Macromed
2016-09-25 18:05:16 ----D---- C:\Windows\System32
2016-09-25 18:05:16 ----D---- C:\Windows\inf
2016-09-25 18:05:16 ----A---- C:\Windows\system32\PerfStringBackup.INI
2016-09-25 17:55:33 ----D---- C:\Program Files\Microsoft Silverlight
2016-09-25 17:55:32 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2016-09-25 17:53:48 ----D---- C:\Windows\SYSWOW64\sr-Latn-CS
2016-09-25 17:53:48 ----D---- C:\Windows\SYSWOW64\sl-SI
2016-09-25 17:53:48 ----D---- C:\Windows\SYSWOW64\pl-PL
2016-09-25 17:53:48 ----D---- C:\Windows\SYSWOW64\lv-LV
2016-09-25 17:53:48 ----D---- C:\Windows\SYSWOW64\hu-HU
2016-09-25 17:53:48 ----D---- C:\Windows\SYSWOW64\hr-HR
2016-09-25 17:53:48 ----D---- C:\Windows\SYSWOW64\bg-BG
2016-09-25 17:53:48 ----D---- C:\Program Files\Internet Explorer
2016-09-25 17:53:48 ----D---- C:\Program Files (x86)\Internet Explorer
2016-09-25 17:53:47 ----D---- C:\Windows\SYSWOW64\sk-SK
2016-09-25 17:53:47 ----D---- C:\Windows\SYSWOW64\ro-RO
2016-09-25 17:53:47 ----D---- C:\Windows\SYSWOW64\lt-LT
2016-09-25 17:53:47 ----D---- C:\Windows\SYSWOW64\et-EE
2016-09-25 17:53:47 ----D---- C:\Windows\SYSWOW64\en-US
2016-09-25 17:53:47 ----D---- C:\Windows\SYSWOW64\cs-CZ
2016-09-25 17:53:46 ----D---- C:\Windows\system32\sr-Latn-CS
2016-09-25 17:53:46 ----D---- C:\Windows\system32\sl-SI
2016-09-25 17:53:46 ----D---- C:\Windows\system32\sk-SK
2016-09-25 17:53:46 ----D---- C:\Windows\system32\pl-PL
2016-09-25 17:53:46 ----D---- C:\Windows\system32\lv-LV
2016-09-25 17:53:46 ----D---- C:\Windows\system32\lt-LT
2016-09-25 17:53:46 ----D---- C:\Windows\system32\hu-HU
2016-09-25 17:53:46 ----D---- C:\Windows\system32\hr-HR
2016-09-25 17:53:46 ----D---- C:\Windows\system32\bg-BG
2016-09-25 17:53:45 ----D---- C:\Windows\system32\ro-RO
2016-09-25 17:53:45 ----D---- C:\Windows\system32\et-EE
2016-09-25 17:53:45 ----D---- C:\Windows\system32\en-US
2016-09-25 17:53:45 ----D---- C:\Windows\system32\cs-CZ
2016-09-25 17:53:42 ----D---- C:\Windows\system32\Boot
2016-09-25 17:53:42 ----D---- C:\Windows\AppPatch
2016-09-25 17:45:44 ----D---- C:\Windows\system32\MRT
2016-09-25 17:39:53 ----AC---- C:\Windows\system32\MRT.exe
2016-09-25 17:22:05 ----D---- C:\Users\Dášenka\AppData\Roaming\SoftGrid Client
2016-09-25 17:21:13 ----D---- C:\Windows
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2016-09-25 74544]
R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2016-10-14 293352]
R0 AtiPcie;AMD PCI Express (3GIO) Filter; C:\Windows\system32\DRIVERS\AtiPcie.sys [2009-05-05 16440]
R0 lullaby;lullaby; C:\Windows\system32\DRIVERS\lullaby.sys [2009-06-18 15928]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R1 aswKbd;aswKbd; C:\Windows\system32\drivers\aswKbd.sys [2016-09-25 37144]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2016-09-25 103064]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2016-09-25 969184]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2016-09-25 513632]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 ASMMAP64;ASMMAP64; \??\C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys [2009-07-03 15416]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2016-09-25 108816]
R2 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2016-09-25 163416]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2010-03-30 6657536]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2010-03-30 195584]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athrx.sys [2011-06-27 2753536]
R3 AtiHdmiService;ATI Service for HD Audio Codec; C:\Windows\system32\drivers\AtiHdmi.sys [2009-07-23 119312]
R3 ETD;ELAN PS/2 Port Input Device; C:\Windows\system32\DRIVERS\ETD.sys [2010-01-18 128512]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2010-04-13 2345760]
R3 JMCR;JMCR; C:\Windows\system32\DRIVERS\jmcr.sys [2009-08-18 143472]
R3 JME;JMicron Ethernet Adapter NDIS6.20 Driver (Amd64 Bits); C:\Windows\system32\DRIVERS\JME.sys [2010-02-25 115312]
R3 kbfiltr;Keyboard Filter; C:\Windows\system32\DRIVERS\kbfiltr.sys [2009-07-20 15416]
R3 MTsensor;ATK0100 ACPI UTILITY; C:\Windows\system32\DRIVERS\ATK64AMD.sys [2009-05-13 15928]
R3 Sftfs;Sftfs; C:\Windows\system32\DRIVERS\Sftfslh.sys [2014-10-08 766632]
R3 Sftplay;Sftplay; C:\Windows\system32\DRIVERS\Sftplaylh.sys [2014-10-08 273576]
R3 Sftredir;Sftredir; C:\Windows\system32\DRIVERS\Sftredirlh.sys [2014-10-08 29352]
R3 Sftvol;Sftvol; C:\Windows\system32\DRIVERS\Sftvollh.sys [2014-10-08 23208]
R3 SNP2UVC;USB2.0 PC Camera (SNP2UVC); C:\Windows\system32\DRIVERS\snp2uvc.sys [2009-06-05 1806400]
R3 usbfilter;AMD USB Filter Driver; C:\Windows\system32\DRIVERS\usbfilter.sys [2009-12-22 38456]
S3 aswHwid;avast! HardwareID; C:\Windows\system32\drivers\aswHwid.sys [2016-09-25 37656]
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2008-12-08 61792]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 sdbus;sdbus; C:\Windows\system32\drivers\sdbus.sys [2010-11-20 109056]
S3 SiSGbeLH;SiS191/SiS190 Ethernet Device NDIS 6.0 Driver; C:\Windows\system32\DRIVERS\SiSG664.sys [2009-06-10 56832]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2013-10-02 56832]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2013-07-03 42496]
S3 WimFltr;WimFltr; C:\Windows\system32\DRIVERS\wimfltr.sys [2008-05-24 154168]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2016-09-16 82128]
R2 AFBAgent;AFBAgent; C:\Windows\system32\FBAgent.exe [2009-12-08 379520]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2010-03-30 202752]
R2 ASLDRService;ASLDR Service; C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe [2009-06-16 84536]
R2 ATKGFNEXSrv;ATKGFNEX Service; C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe [2009-12-15 96896]
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2016-09-25 197128]
R2 cvhsvc;Client Virtualization Handler; C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE [2015-03-18 822496]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 sftlist;Application Virtualization Client; C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe [2014-10-08 534184]
R3 sftvsa;Application Virtualization Service Agent; C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe [2014-10-08 211104]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2015-11-05 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2015-11-05 125112]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2016-09-20 324224]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-10-14 270016]
S3 fsssvc;Windows Live Zabezpečení rodiny; C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2008-12-08 533344]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2016-09-01 114688]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2016-06-16 146888]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2015-12-21 1255736]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2015-11-05 51376]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-11-05 135848]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-11-05 135848]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-11-05 135848]
-----------------EOF-----------------
- Rudy
- Site Admin
- Příspěvky: 118275
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Dloooouhýýýý start systému a pomalý chod NTB
Smazáno. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Dloooouhýýýý start systému a pomalý chod NTB
Dobrý večer.
Změna k lepšímu rozhodně nastala. Přesto se mi to ještě nezdá.
Možná se mi to jen zdá,ale druhý,teměř identický NTB, beží ještě znatelně lépe.
NTB byl tedy jen zpomalen pouze procesy na pozadí?
Změna k lepšímu rozhodně nastala. Přesto se mi to ještě nezdá.
Možná se mi to jen zdá,ale druhý,teměř identický NTB, beží ještě znatelně lépe.
NTB byl tedy jen zpomalen pouze procesy na pozadí?
- Rudy
- Site Admin
- Příspěvky: 118275
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Dloooouhýýýý start systému a pomalý chod NTB
Také. Byly tam též AdWary a zbytečnosti. Ještě dejte log MBAM: http://www.malwarebytes.org/mbam.php . Předem nic nemažte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Dloooouhýýýý start systému a pomalý chod NTB
Snad je to ten správný
Malwarebytes Anti-Malware
www.malwarebytes.org
Datum skenování: 20.10.2016
Čas skenování: 7:39
Protokol: scan log.txt
Správce: Ano
Verze: 2.2.1.1043
Databáze malwaru: v2016.10.20.02
Databáze rootkitů: v2016.09.26.02
Licence: Zkušební verze
Ochrana proti malwaru: Zapnuto
Ochrana proti škodlivým webovým stránkám: Zapnuto
Ochrana programu: Vypnuto
OS: Windows 7 Service Pack 1
CPU: x64
Souborový systém: NTFS
Uživatel: Dášenka
Typ skenu: Sken hrozeb
Výsledek: Dokončeno
Prohledaných objektů: 303731
Uplynulý čas: 19 min, 42 sek
Paměť: Zapnuto
Po spuštění: Zapnuto
Souborový systém: Zapnuto
Archivy: Zapnuto
Rootkity: Vypnuto
Heuristika: Zapnuto
PUP: Zapnuto
PUM: Zapnuto
Procesy: 0
(Nenalezeny žádné škodlivé položky)
Moduly: 0
(Nenalezeny žádné škodlivé položky)
Klíče registru: 0
(Nenalezeny žádné škodlivé položky)
Hodnoty registru: 0
(Nenalezeny žádné škodlivé položky)
Data registru: 0
(Nenalezeny žádné škodlivé položky)
Složky: 0
(Nenalezeny žádné škodlivé položky)
Soubory: 0
(Nenalezeny žádné škodlivé položky)
Fyzické sektory: 0
(Nenalezeny žádné škodlivé položky)
(end)
Malwarebytes Anti-Malware
www.malwarebytes.org
Datum skenování: 20.10.2016
Čas skenování: 7:39
Protokol: scan log.txt
Správce: Ano
Verze: 2.2.1.1043
Databáze malwaru: v2016.10.20.02
Databáze rootkitů: v2016.09.26.02
Licence: Zkušební verze
Ochrana proti malwaru: Zapnuto
Ochrana proti škodlivým webovým stránkám: Zapnuto
Ochrana programu: Vypnuto
OS: Windows 7 Service Pack 1
CPU: x64
Souborový systém: NTFS
Uživatel: Dášenka
Typ skenu: Sken hrozeb
Výsledek: Dokončeno
Prohledaných objektů: 303731
Uplynulý čas: 19 min, 42 sek
Paměť: Zapnuto
Po spuštění: Zapnuto
Souborový systém: Zapnuto
Archivy: Zapnuto
Rootkity: Vypnuto
Heuristika: Zapnuto
PUP: Zapnuto
PUM: Zapnuto
Procesy: 0
(Nenalezeny žádné škodlivé položky)
Moduly: 0
(Nenalezeny žádné škodlivé položky)
Klíče registru: 0
(Nenalezeny žádné škodlivé položky)
Hodnoty registru: 0
(Nenalezeny žádné škodlivé položky)
Data registru: 0
(Nenalezeny žádné škodlivé položky)
Složky: 0
(Nenalezeny žádné škodlivé položky)
Soubory: 0
(Nenalezeny žádné škodlivé položky)
Fyzické sektory: 0
(Nenalezeny žádné škodlivé položky)
(end)
- Rudy
- Site Admin
- Příspěvky: 118275
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Dloooouhýýýý start systému a pomalý chod NTB
Po stránce malwarů je PC v pořádku. Zkuste defragmentovat disk.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Dloooouhýýýý start systému a pomalý chod NTB
Dobrý večer.
Velice Vám děkuji za pomoc. Na defragmentaci se vrhnu teď.
Ještě jednou děkuji
Velice Vám děkuji za pomoc. Na defragmentaci se vrhnu teď.
Ještě jednou děkuji
- Rudy
- Site Admin
- Příspěvky: 118275
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Dloooouhýýýý start systému a pomalý chod NTB
Rádo se stalo!
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.