Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prosím o preventivní kontrolu

Patříte mezi Vzorné návštěvníky? Pak je tato sekce pro vás.

Moderátor: Moderátoři

Pravidla fóra
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
Zamčeno
Zpráva
Autor
honzikuh
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 328
Registrován: 20 říj 2007 12:11

Prosím o preventivní kontrolu

#1 Příspěvek od honzikuh »

Logfile of random's system information tool 1.10 (written by random/random)
Run by Honza at 2016-01-31 19:23:54
Microsoft Windows 10 Pro
System drive C: has 75 GB (37%) free of 205 GB
Total RAM: 8190 MB (49% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 19:23:59, on 31.1.2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10586.0020)
Boot mode: Normal

Running processes:
C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\WinFast\WFDTV\WFWIZ.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Honza\AppData\Local\Skillbrains\lightshot\5.1.4.41\Lightshot.exe
C:\Users\Honza\AppData\Local\MEGAsync\MEGAsync.exe
C:\Users\Honza\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
C:\Program Files\WinFast\WFDTV\DTVSchdl.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Honza.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkI ... id=UE01DHP
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_25\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_25\bin\jp2ssv.dll
O4 - HKLM\..\Run: [iSkysoft Helper Compact.exe] C:\Program Files (x86)\Common Files\iSkysoft\iSkysoft Helper Compact\ISHelper.exe
O4 - HKLM\..\Run: [WinFastDTV] C:\Program Files\WinFast\WFDTV\DTVSchdl.exe
O4 - HKLM\..\Run: [ArcSoft Connection Service] C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRun
O4 - HKCU\..\Run: [GoogleDriveSync] "C:\Program Files (x86)\Google\Drive\googledrivesync.exe" /autostart
O4 - HKCU\..\Run: [EPSON Stylus DX6000] C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_IATIBIE.EXE /FU "C:\WINDOWS\TEMP\E_S9473.tmp" /EF "HKCU"
O4 - HKCU\..\Run: [WinFast Schedule] C:\Program Files\WinFast\WFDTV\WFWIZ.exe
O4 - HKCU\..\Run: [LightShot] C:\Users\Honza\AppData\Local\Skillbrains\lightshot\Lightshot.exe
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "C:\Users\Honza\AppData\Roaming\Seznam.cz\szninstall.exe" -c
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "C:\Users\Honza\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O4 - Startup: MEGAsync.lnk = Honza\AppData\Local\MEGAsync\MEGAsync.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\Program Files (x86)\Microsoft Office\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Stáhnout pomocí &BitSpiritu - C:\Program Files (x86)\BitSpirit\bsurl.htm
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - (no file)
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: ArcSoft Connect Daemon (ACDaemon) - ArcSoft Inc. - C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\WINDOWS\system32\atiesrxx.exe (file missing)
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: avast! Firewall - AVAST Software - (no file)
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: EPSON V3 Service4(01) (EPSON_PM_RPCV4_01) - SEIKO EPSON CORPORATION - C:\ProgramData\EPSON\EPW!3 SSRP\E_S40RPB.EXE
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: Sony PC Companion - Avanquest Software - C:\Program Files (x86)\Sony\Sony PC Companion\PCCService.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: SInstalátor (ssinstall) - PS Media s.r.o. - C:\WINDOWS\SysWOW64\ssins.exe
O23 - Service: TeamViewer 11 (TeamViewer) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Wondershare Driver Install Service (WsDrvInst) - Unknown owner - C:\Program Files (x86)\Wondershare\Dr.Fone for Android\DriverInstall.exe (file missing)

--
End of file - 11846 bytes

======Listing Processes======







winlogon.exe

C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\atiesrxx.exe
atieclxx
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\system32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\System32\svchost.exe -k utcsvc
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe"
"C:\ProgramData\EPSON\EPW!3 SSRP\E_S40RPB.EXE"
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\WINDOWS\SysWOW64\ssins.exe
C:\WINDOWS\system32\svchost.exe -k appmodel
"C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe"
dashost.exe {f322ad42-a52d-4245-83d9ee80787227e9}
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\WINDOWS\system32\wbem\wmiprvse.exe
sihost.exe
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\WINDOWS\Explorer.EXE
"C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe" -ServerName:SkypeHost.ServerServer
"C:\Program Files (x86)\Google\Update\1.3.29.1\GoogleCrashHandler.exe"
"C:\Program Files (x86)\Google\Update\1.3.29.1\GoogleCrashHandler64.exe"
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" %SNP%
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=watcher --main-thread-id=4692 --on-initialized-event-handle=776 --parent-handle=788
"C:\Program Files\AMD\CNext\CNext\cnext.exe" atlogon
"C:\Program Files\WinFast\WFDTV\WFWIZ.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="4688.0.1681316350\56552008" --supports-dual-gpus=false --gpu-driver-bug-workarounds=2,24,52 --gpu-vendor-id=0x1002 --gpu-device-id=0x6819 --gpu-driver-vendor="Advanced Micro Devices, Inc." --gpu-driver-version=15.300.1025.1001 --ignored=" --type=renderer " /prefetch:822062411
"C:\Users\Honza\AppData\Local\Skillbrains\lightshot\5.1.4.41\Lightshot.exe"
"C:\Users\Honza\AppData\Local\MEGAsync\MEGAsync.exe"
szndesktop.exe default start
"C:\Program Files\WinFast\WFDTV\DTVSchdl.exe"
"C:\Users\Honza\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe"
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=AffiliationBasedMatching/EnabledThroughFieldTrial/AppBannerTriggering/Aggressive/*AsyncSetAsDefault/EnabledFull/AutomaticTabDiscarding/Default/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/28DaySingleProfile/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/*IntelligentSessionRestore/Enabled2/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledDelayTcpRace/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Disabled/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingReportPhishingErrorLink/Enabled/SafeBrowsingSocialEngineeringStrings/Enabled/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes/SafeBrowsingUpdateFrequency/Default/SlimmingPaint/EnableSlimmingPaint/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VarationsServiceControl/Interval_30min/WebRTC-LocalIPPermissionCheck/Default/WebRTC-PeerConnectionDTLS1.2/Enabled/ --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="4688.2.1816106259\872169823" --font-cache-shared-handle=2808 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=AffiliationBasedMatching/EnabledThroughFieldTrial/AppBannerTriggering/Aggressive/*AsyncSetAsDefault/EnabledFull/AutomaticTabDiscarding/Default/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/28DaySingleProfile/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/*IntelligentSessionRestore/Enabled2/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledDelayTcpRace/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Disabled/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingReportPhishingErrorLink/Enabled/SafeBrowsingSocialEngineeringStrings/Enabled/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes/SafeBrowsingUpdateFrequency/Default/SlimmingPaint/EnableSlimmingPaint/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VarationsServiceControl/Interval_30min/WebRTC-LocalIPPermissionCheck/Default/WebRTC-PeerConnectionDTLS1.2/Enabled/ --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="4688.3.401143403\1254730843" --font-cache-shared-handle=2796 /prefetch:673131151
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
"fontdrvhost.exe"
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=ppapi --channel="4688.4.368108369\1725344482" --ppapi-flash-args --lang=cs --device-scale-factor=1 --font-cache-shared-handle=6072 --ignored=" --type=renderer " /prefetch:-632637702
C:\WINDOWS\system32\SettingSyncHost.exe -Embedding
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=AffiliationBasedMatching/EnabledThroughFieldTrial/AppBannerTriggering/Aggressive/*AsyncSetAsDefault/EnabledFull/AutomaticTabDiscarding/Default/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/28DaySingleProfile/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/*IntelligentSessionRestore/Enabled2/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledDelayTcpRace/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Disabled/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingReportPhishingErrorLink/Enabled/SafeBrowsingSocialEngineeringStrings/Enabled/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes/*SafeBrowsingUpdateFrequency/Default/SlimmingPaint/EnableSlimmingPaint/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VarationsServiceControl/Interval_30min/WebRTC-LocalIPPermissionCheck/Default/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="4688.6.1942958988\1786748734" --font-cache-shared-handle=6652 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=AffiliationBasedMatching/EnabledThroughFieldTrial/AppBannerTriggering/Aggressive/*AsyncSetAsDefault/EnabledFull/AutomaticTabDiscarding/Default/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/28DaySingleProfile/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/*IntelligentSessionRestore/Enabled2/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledDelayTcpRace/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Disabled/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingReportPhishingErrorLink/Enabled/SafeBrowsingSocialEngineeringStrings/Enabled/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes/*SafeBrowsingUpdateFrequency/Default/SlimmingPaint/EnableSlimmingPaint/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VarationsServiceControl/Interval_30min/WebRTC-LocalIPPermissionCheck/Default/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="4688.7.894691250\147532399" --font-cache-shared-handle=5812 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=AffiliationBasedMatching/EnabledThroughFieldTrial/AppBannerTriggering/Aggressive/*AsyncSetAsDefault/EnabledFull/AutomaticTabDiscarding/Default/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/28DaySingleProfile/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/*IntelligentSessionRestore/Enabled2/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledDelayTcpRace/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Disabled/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingReportPhishingErrorLink/Enabled/SafeBrowsingSocialEngineeringStrings/Enabled/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes/*SafeBrowsingUpdateFrequency/Default/SlimmingPaint/EnableSlimmingPaint/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VarationsServiceControl/Interval_30min/WebRTC-LocalIPPermissionCheck/Default/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="4688.8.173870024\1044914700" --font-cache-shared-handle=3744 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=AffiliationBasedMatching/EnabledThroughFieldTrial/AppBannerTriggering/Aggressive/*AsyncSetAsDefault/EnabledFull/AutomaticTabDiscarding/Default/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/28DaySingleProfile/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/*IntelligentSessionRestore/Enabled2/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledDelayTcpRace/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Disabled/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingReportPhishingErrorLink/Enabled/SafeBrowsingSocialEngineeringStrings/Enabled/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes/*SafeBrowsingUpdateFrequency/Default/SlimmingPaint/EnableSlimmingPaint/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VarationsServiceControl/Interval_30min/WebRTC-LocalIPPermissionCheck/Default/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="4688.9.909415494\1442443541" --font-cache-shared-handle=5028 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=AffiliationBasedMatching/EnabledThroughFieldTrial/AppBannerTriggering/Aggressive/*AsyncSetAsDefault/EnabledFull/AutomaticTabDiscarding/Default/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/28DaySingleProfile/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/*IntelligentSessionRestore/Enabled2/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledDelayTcpRace/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Disabled/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingReportPhishingErrorLink/Enabled/SafeBrowsingSocialEngineeringStrings/Enabled/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes/*SafeBrowsingUpdateFrequency/Default/SlimmingPaint/EnableSlimmingPaint/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VarationsServiceControl/Interval_30min/WebRTC-LocalIPPermissionCheck/Default/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="4688.18.569804563\408528186" --font-cache-shared-handle=2064 /prefetch:673131151
C:\WINDOWS\system32\ApplicationFrameHost.exe -Embedding
C:\WINDOWS\system32\DllHost.exe /Processid:{AB8902B4-09CA-4BB6-B78D-A8F59079A8D5}
"C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=AffiliationBasedMatching/EnabledThroughFieldTrial/AppBannerTriggering/Aggressive/*AsyncSetAsDefault/EnabledFull/AutomaticTabDiscarding/Default/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/28DaySingleProfile/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/*IntelligentSessionRestore/Enabled2/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledDelayTcpRace/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Disabled/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingReportPhishingErrorLink/Enabled/SafeBrowsingSocialEngineeringStrings/Enabled/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes/*SafeBrowsingUpdateFrequency/Default/SlimmingPaint/EnableSlimmingPaint/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VarationsServiceControl/Interval_30min/WebRTC-LocalIPPermissionCheck/Default/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="4688.28.351356491\427233109" --font-cache-shared-handle=5468 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=AffiliationBasedMatching/EnabledThroughFieldTrial/AppBannerTriggering/Aggressive/*AsyncSetAsDefault/EnabledFull/AutomaticTabDiscarding/Default/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/28DaySingleProfile/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/*IntelligentSessionRestore/Enabled2/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledDelayTcpRace/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Disabled/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingReportPhishingErrorLink/Enabled/SafeBrowsingSocialEngineeringStrings/Enabled/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes/*SafeBrowsingUpdateFrequency/Default/SlimmingPaint/EnableSlimmingPaint/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VarationsServiceControl/Interval_30min/WebRTC-LocalIPPermissionCheck/Default/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="4688.30.339955215\321824984" --font-cache-shared-handle=12236 /prefetch:673131151
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe28_ Global\UsGthrCtrlFltPipeMssGthrPipe28 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 604 608 616 8192 612

"C:\Users\Honza\Downloads\RSITx64.exe"

======Scheduled tasks folder======

C:\WINDOWS\tasks\Adobe Flash Player PPAPI Notifier.job - C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_20_0_0_286_pepper.exe -check pepperplugin
C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\Wise Care 365.job - C:\Program Files (x86)\Wise\Wise Care 365\WiseTray.exe -StartTray
C:\WINDOWS\tasks\Wise Turbo Checker.job - C:\Program Files (x86)\Wise\Wise Care 365\WiseTurbo.exe

=========Mozilla firefox=========

ProfilePath - C:\Users\Honza\AppData\Roaming\Mozilla\Firefox\Profiles\i13gmfne.default-1416118578905

prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "https://www.seznam.cz/"

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Google.com/GoogleEarthPlugin]
"Description"=Google Earth in your browser
"Path"=C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=11.25.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre1.8.0_25\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=11.25.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre1.8.0_25\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files (x86)\Microsoft Silverlight\5.1.41212.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=16.4.3528.0331]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@rising.com.cn/nprising]
"Description"=
"Path"=

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@SonyCreativeSoftware.com/Media Go,version=1.0]
"Description"=
"Path"=

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files\Microsoft Silverlight\5.1.41212.0\npctrl.dll


C:\Users\Honza\AppData\Roaming\Mozilla\Firefox\Profiles\i13gmfne.default-1416118578905\extensions\
{ea614400-e918-4741-9a97-7a972ff7c30b}

C:\Users\Honza\AppData\Roaming\Mozilla\Firefox\Profiles\i13gmfne.default-1416118578905\searchplugins\
firmycz.xml
zbocz.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-12-22 885152]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_25\bin\ssv.dll [2014-12-12 460712]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-12-22 664184]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_25\bin\jp2ssv.dll [2014-12-12 172968]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2014-05-09 13672152]
"StartCN"=C:\Program Files\AMD\CNext\CNext\cnext.exe [2015-12-04 4867784]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"GoogleDriveSync"=C:\Program Files (x86)\Google\Drive\googledrivesync.exe [2016-01-15 23499656]
"EPSON Stylus DX6000"=C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_IATIBIE.EXE [2007-10-05 213504]
"WinFast Schedule"=C:\Program Files\WinFast\WFDTV\WFWIZ.exe [2013-01-09 2916352]
"LightShot"=C:\Users\Honza\AppData\Local\Skillbrains\lightshot\Lightshot.exe [2014-11-18 226560]
"cz.seznam.software.autoupdate"=C:\Users\Honza\AppData\Roaming\Seznam.cz\szninstall.exe [2013-05-16 1062472]
"cz.seznam.software.szndesktop"=C:\Users\Honza\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [2015-05-26 103080]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\OneDrive]
C:\Users\Honza\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2015-12-24 551112]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"iSkysoft Helper Compact.exe"=C:\Program Files (x86)\Common Files\iSkysoft\iSkysoft Helper Compact\ISHelper.exe [2014-08-05 2014208]
"WinFastDTV"=C:\Program Files\WinFast\WFDTV\DTVSchdl.exe [2014-03-04 103936]
"ArcSoft Connection Service"=C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe [2009-02-06 170496]
"APSDaemon"=C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [2013-09-13 59720]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2015-12-22 7021880]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [2015-11-04 767176]

C:\Users\Honza\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
MEGAsync.lnk - C:\Users\Honza\AppData\Local\MEGAsync\MEGAsync.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
"SoftwareSASGeneration"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=221

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"VIDC.RTV1"=rtvcvfw64.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2016-01-31 19:23:54 ----D---- C:\rsit
2016-01-28 19:18:44 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2016-01-28 19:18:43 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2016-01-28 19:18:42 ----A---- C:\WINDOWS\system32\edgehtml.dll
2016-01-28 19:18:40 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2016-01-28 19:18:37 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2016-01-28 19:18:35 ----A---- C:\WINDOWS\system32\mshtml.dll
2016-01-28 19:18:33 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2016-01-28 19:18:29 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-01-28 19:18:29 ----A---- C:\WINDOWS\system32\windows.storage.dll
2016-01-28 19:18:28 ----A---- C:\WINDOWS\system32\twinui.dll
2016-01-28 19:18:27 ----A---- C:\WINDOWS\system32\ieframe.dll
2016-01-28 19:18:26 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2016-01-28 19:18:25 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2016-01-28 19:18:23 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2016-01-28 19:18:22 ----A---- C:\WINDOWS\system32\shell32.dll
2016-01-28 19:18:21 ----A---- C:\WINDOWS\SYSWOW64\mos.dll
2016-01-28 19:18:20 ----A---- C:\WINDOWS\system32\mos.dll
2016-01-28 19:18:20 ----A---- C:\WINDOWS\system32\d2d1.dll
2016-01-28 19:18:19 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2016-01-28 19:18:16 ----A---- C:\WINDOWS\SYSWOW64\d2d1.dll
2016-01-28 19:18:16 ----A---- C:\WINDOWS\SYSWOW64\BingMaps.dll
2016-01-28 19:18:15 ----A---- C:\WINDOWS\system32\InputService.dll
2016-01-28 19:18:15 ----A---- C:\WINDOWS\system32\dwmcore.dll
2016-01-28 19:18:15 ----A---- C:\WINDOWS\system32\audiosrv.dll
2016-01-28 19:18:14 ----A---- C:\WINDOWS\system32\WpcMon.exe
2016-01-28 19:18:13 ----A---- C:\WINDOWS\SYSWOW64\InputService.dll
2016-01-28 19:18:13 ----A---- C:\WINDOWS\system32\BingMaps.dll
2016-01-28 19:18:12 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2016-01-28 19:18:12 ----A---- C:\WINDOWS\system32\NetworkMobileSettings.dll
2016-01-28 19:18:12 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2016-01-28 19:18:11 ----A---- C:\WINDOWS\SYSWOW64\winhttp.dll
2016-01-28 19:18:11 ----A---- C:\WINDOWS\SYSWOW64\msctf.dll
2016-01-28 19:18:11 ----A---- C:\WINDOWS\system32\wlidsvc.dll
2016-01-28 19:18:11 ----A---- C:\WINDOWS\system32\winhttp.dll
2016-01-28 19:18:11 ----A---- C:\WINDOWS\system32\RecoveryDrive.exe
2016-01-28 19:18:11 ----A---- C:\WINDOWS\system32\aeinv.dll
2016-01-28 19:18:10 ----A---- C:\WINDOWS\SYSWOW64\quartz.dll
2016-01-28 19:18:10 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2016-01-28 19:18:10 ----A---- C:\WINDOWS\SYSWOW64\AudioSes.dll
2016-01-28 19:18:10 ----A---- C:\WINDOWS\system32\msctf.dll
2016-01-28 19:18:10 ----A---- C:\WINDOWS\system32\MapsStore.dll
2016-01-28 19:18:10 ----A---- C:\WINDOWS\system32\AudioSes.dll
2016-01-28 19:18:09 ----A---- C:\WINDOWS\system32\wifinetworkmanager.dll
2016-01-28 19:18:09 ----A---- C:\WINDOWS\system32\SmsRouterSvc.dll
2016-01-28 19:18:09 ----A---- C:\WINDOWS\system32\msfeeds.dll
2016-01-28 19:18:09 ----A---- C:\WINDOWS\system32\mfsvr.dll
2016-01-28 19:18:08 ----A---- C:\WINDOWS\SYSWOW64\SensorsApi.dll
2016-01-28 19:18:08 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2016-01-28 19:18:08 ----A---- C:\WINDOWS\system32\wscsvc.dll
2016-01-28 19:18:08 ----A---- C:\WINDOWS\system32\SensorsApi.dll
2016-01-28 19:18:08 ----A---- C:\WINDOWS\system32\quartz.dll
2016-01-28 19:18:08 ----A---- C:\WINDOWS\system32\MTFServer.dll
2016-01-28 19:18:08 ----A---- C:\WINDOWS\system32\CredProvDataModel.dll
2016-01-28 19:18:08 ----A---- C:\WINDOWS\system32\audiodg.exe
2016-01-28 19:18:07 ----A---- C:\WINDOWS\SYSWOW64\MTF.dll
2016-01-28 19:18:07 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll
2016-01-28 19:18:07 ----A---- C:\WINDOWS\SYSWOW64\CredProvDataModel.dll
2016-01-28 19:18:07 ----A---- C:\WINDOWS\system32\WWanAPI.dll
2016-01-28 19:18:07 ----A---- C:\WINDOWS\system32\wbiosrvc.dll
2016-01-28 19:18:07 ----A---- C:\WINDOWS\system32\MTF.dll
2016-01-28 19:18:07 ----A---- C:\WINDOWS\system32\drivers\http.sys
2016-01-28 19:18:06 ----A---- C:\WINDOWS\SYSWOW64\WWanAPI.dll
2016-01-28 19:18:06 ----A---- C:\WINDOWS\SYSWOW64\SimCfg.dll
2016-01-28 19:18:06 ----A---- C:\WINDOWS\SYSWOW64\evr.dll
2016-01-28 19:18:06 ----A---- C:\WINDOWS\SYSWOW64\DisplayManager.dll
2016-01-28 19:18:06 ----A---- C:\WINDOWS\system32\StorSvc.dll
2016-01-28 19:18:06 ----A---- C:\WINDOWS\system32\srcore.dll
2016-01-28 19:18:06 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2016-01-28 19:18:05 ----A---- C:\WINDOWS\SYSWOW64\rastls.dll
2016-01-28 19:18:05 ----A---- C:\WINDOWS\SYSWOW64\rasdlg.dll
2016-01-28 19:18:05 ----A---- C:\WINDOWS\system32\Windows.Networking.UX.EapRequestHandler.dll
2016-01-28 19:18:05 ----A---- C:\WINDOWS\system32\SimCfg.dll
2016-01-28 19:18:05 ----A---- C:\WINDOWS\system32\services.exe
2016-01-28 19:18:04 ----A---- C:\WINDOWS\SYSWOW64\SimAuth.dll
2016-01-28 19:18:04 ----A---- C:\WINDOWS\system32\wscapi.dll
2016-01-28 19:18:04 ----A---- C:\WINDOWS\system32\SMSRouter.dll
2016-01-28 19:18:04 ----A---- C:\WINDOWS\system32\SimAuth.dll
2016-01-28 19:18:04 ----A---- C:\WINDOWS\system32\rasdlg.dll
2016-01-28 19:18:04 ----A---- C:\WINDOWS\system32\rasapi32.dll
2016-01-28 19:18:04 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2016-01-28 19:18:04 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2016-01-28 19:18:04 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2016-01-28 19:18:03 ----A---- C:\WINDOWS\SYSWOW64\TextInputFramework.dll
2016-01-28 19:18:03 ----A---- C:\WINDOWS\SYSWOW64\rasapi32.dll
2016-01-28 19:18:03 ----A---- C:\WINDOWS\SYSWOW64\MapsBtSvc.dll
2016-01-28 19:18:03 ----A---- C:\WINDOWS\system32\MusUpdateHandlers.dll
2016-01-28 19:18:03 ----A---- C:\WINDOWS\system32\enterprisecsps.dll
2016-01-28 19:18:03 ----A---- C:\WINDOWS\system32\DDDS.dll
2016-01-28 19:18:03 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll
2016-01-28 19:18:02 ----A---- C:\WINDOWS\SYSWOW64\AUDIOKSE.dll
2016-01-28 19:18:02 ----A---- C:\WINDOWS\system32\wlidcli.dll
2016-01-28 19:18:02 ----A---- C:\WINDOWS\system32\MapsBtSvc.dll
2016-01-28 19:18:02 ----A---- C:\WINDOWS\system32\ipnathlp.dll
2016-01-28 19:18:02 ----A---- C:\WINDOWS\system32\DisplayManager.dll
2016-01-28 19:18:01 ----A---- C:\WINDOWS\system32\win32kfull.sys
2016-01-28 19:18:01 ----A---- C:\WINDOWS\system32\rastls.dll
2016-01-28 19:18:01 ----A---- C:\WINDOWS\system32\MusNotification.exe
2016-01-28 19:18:01 ----A---- C:\WINDOWS\system32\invagent.dll
2016-01-28 19:18:01 ----A---- C:\WINDOWS\system32\evr.dll
2016-01-28 19:18:01 ----A---- C:\WINDOWS\system32\devinv.dll
2016-01-28 19:18:00 ----A---- C:\WINDOWS\SYSWOW64\pcaui.exe
2016-01-28 19:18:00 ----A---- C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2016-01-28 19:18:00 ----A---- C:\WINDOWS\system32\TextInputFramework.dll
2016-01-28 19:18:00 ----A---- C:\WINDOWS\system32\pcaui.exe
2016-01-28 19:18:00 ----A---- C:\WINDOWS\system32\MusNotificationUx.exe
2016-01-28 19:18:00 ----A---- C:\WINDOWS\system32\FilterDS.dll
2016-01-28 19:18:00 ----A---- C:\WINDOWS\system32\drivers\usbser.sys
2016-01-28 19:17:59 ----A---- C:\WINDOWS\SYSWOW64\wlidcli.dll
2016-01-28 19:17:59 ----A---- C:\WINDOWS\SYSWOW64\winhttpcom.dll
2016-01-28 19:17:59 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Core.TextInput.dll
2016-01-28 19:17:59 ----A---- C:\WINDOWS\SYSWOW64\rasautou.exe
2016-01-28 19:17:59 ----A---- C:\WINDOWS\system32\winhttpcom.dll
2016-01-28 19:17:59 ----A---- C:\WINDOWS\system32\winbio.dll
2016-01-28 19:17:59 ----A---- C:\WINDOWS\system32\sscoreext.dll
2016-01-28 19:17:59 ----A---- C:\WINDOWS\system32\rasautou.exe
2016-01-28 19:17:59 ----A---- C:\WINDOWS\system32\rasauto.dll
2016-01-28 19:17:59 ----A---- C:\WINDOWS\system32\rasadhlp.dll
2016-01-28 19:17:58 ----A---- C:\WINDOWS\SYSWOW64\winbio.dll
2016-01-28 19:17:58 ----A---- C:\WINDOWS\SYSWOW64\rastlsext.dll
2016-01-28 19:17:58 ----A---- C:\WINDOWS\SYSWOW64\rasadhlp.dll
2016-01-28 19:17:58 ----A---- C:\WINDOWS\system32\reseteng.dll
2016-01-28 19:17:58 ----A---- C:\WINDOWS\system32\rastlsext.dll
2016-01-14 06:21:40 ----D---- C:\WINDOWS\PCHEALTH
2016-01-13 18:12:20 ----A---- C:\WINDOWS\system32\Chakra.dll
2016-01-13 18:12:19 ----A---- C:\WINDOWS\system32\mfnetsrc.dll
2016-01-13 18:12:17 ----A---- C:\WINDOWS\system32\mfcore.dll
2016-01-13 18:12:15 ----A---- C:\WINDOWS\SYSWOW64\mfnetsrc.dll
2016-01-13 18:12:15 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2016-01-13 18:12:15 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2016-01-13 18:12:13 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2016-01-13 18:12:13 ----A---- C:\WINDOWS\system32\msxml6.dll
2016-01-13 18:12:12 ----A---- C:\WINDOWS\SYSWOW64\msxml6.dll
2016-01-13 18:12:12 ----A---- C:\WINDOWS\system32\usermgr.dll
2016-01-13 18:12:12 ----A---- C:\WINDOWS\system32\jscript9.dll
2016-01-13 18:12:11 ----A---- C:\WINDOWS\SYSWOW64\mfnetcore.dll
2016-01-13 18:12:11 ----A---- C:\WINDOWS\system32\WMSPDMOD.DLL
2016-01-13 18:12:11 ----A---- C:\WINDOWS\system32\WMADMOD.DLL
2016-01-13 18:12:11 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2016-01-13 18:12:11 ----A---- C:\WINDOWS\system32\mfnetcore.dll
2016-01-13 18:12:10 ----A---- C:\WINDOWS\SYSWOW64\WMADMOD.DLL
2016-01-13 18:12:10 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2016-01-13 18:12:10 ----A---- C:\WINDOWS\system32\generaltel.dll
2016-01-13 18:12:10 ----A---- C:\WINDOWS\system32\facecredentialprovider.dll
2016-01-13 18:12:09 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2016-01-13 18:12:08 ----A---- C:\WINDOWS\SYSWOW64\WMSPDMOD.DLL
2016-01-13 18:12:08 ----A---- C:\WINDOWS\SYSWOW64\schannel.dll
2016-01-13 18:12:08 ----A---- C:\WINDOWS\system32\WWAHost.exe
2016-01-13 18:12:07 ----A---- C:\WINDOWS\SYSWOW64\WWAHost.exe
2016-01-13 18:12:07 ----A---- C:\WINDOWS\SYSWOW64\gdi32.dll
2016-01-13 18:12:07 ----A---- C:\WINDOWS\system32\WMALFXGFXDSP.dll
2016-01-13 18:12:07 ----A---- C:\WINDOWS\system32\gdi32.dll
2016-01-13 18:12:07 ----A---- C:\WINDOWS\system32\advapi32.dll
2016-01-13 18:12:06 ----A---- C:\WINDOWS\SYSWOW64\advapi32.dll
2016-01-13 18:12:06 ----A---- C:\WINDOWS\system32\wuaueng.dll
2016-01-13 18:12:06 ----A---- C:\WINDOWS\system32\winlogon.exe
2016-01-13 18:12:06 ----A---- C:\WINDOWS\system32\DeviceCensus.exe
2016-01-13 18:12:06 ----A---- C:\WINDOWS\system32\appraiser.dll
2016-01-13 18:12:05 ----A---- C:\WINDOWS\SYSWOW64\mftranscode.dll
2016-01-13 18:12:05 ----A---- C:\WINDOWS\SYSWOW64\MessagingDataModel2.dll
2016-01-13 18:12:05 ----A---- C:\WINDOWS\system32\uReFS.dll
2016-01-13 18:12:05 ----A---- C:\WINDOWS\system32\schannel.dll
2016-01-13 18:12:05 ----A---- C:\WINDOWS\system32\PhoneService.dll
2016-01-13 18:12:05 ----A---- C:\WINDOWS\system32\mftranscode.dll
2016-01-13 18:12:05 ----A---- C:\WINDOWS\system32\MessagingDataModel2.dll
2016-01-13 18:12:04 ----A---- C:\WINDOWS\SYSWOW64\qdvd.dll
2016-01-13 18:12:04 ----A---- C:\WINDOWS\SYSWOW64\MP3DMOD.DLL
2016-01-13 18:12:04 ----A---- C:\WINDOWS\SYSWOW64\mfps.dll
2016-01-13 18:12:04 ----A---- C:\WINDOWS\system32\WMSPDMOE.DLL
2016-01-13 18:12:04 ----A---- C:\WINDOWS\system32\storewuauth.dll
2016-01-13 18:12:04 ----A---- C:\WINDOWS\system32\qedit.dll
2016-01-13 18:12:04 ----A---- C:\WINDOWS\system32\MP3DMOD.DLL
2016-01-13 18:12:03 ----A---- C:\WINDOWS\SYSWOW64\uReFS.dll
2016-01-13 18:12:03 ----A---- C:\WINDOWS\system32\winload.exe
2016-01-13 18:12:03 ----A---- C:\WINDOWS\system32\usermgrcli.dll
2016-01-13 18:12:03 ----A---- C:\WINDOWS\system32\qdvd.dll
2016-01-13 18:12:02 ----A---- C:\WINDOWS\SYSWOW64\usermgrcli.dll
2016-01-13 18:12:02 ----A---- C:\WINDOWS\SYSWOW64\qedit.dll
2016-01-13 18:12:02 ----A---- C:\WINDOWS\SYSWOW64\ProximityCommon.dll
2016-01-13 18:12:02 ----A---- C:\WINDOWS\system32\ProximityCommon.dll
2016-01-13 18:12:02 ----A---- C:\WINDOWS\system32\omadmclient.exe
2016-01-13 18:12:02 ----A---- C:\WINDOWS\system32\mfps.dll
2016-01-13 18:12:01 ----A---- C:\WINDOWS\SYSWOW64\WMSPDMOE.DLL
2016-01-13 18:12:00 ----A---- C:\WINDOWS\system32\vbscript.dll
2016-01-13 18:12:00 ----A---- C:\WINDOWS\system32\UserMgrProxy.dll
2016-01-13 18:12:00 ----A---- C:\WINDOWS\system32\RMSRoamingSecurity.dll
2016-01-13 18:12:00 ----A---- C:\WINDOWS\system32\Chakradiag.dll
2016-01-13 18:12:00 ----A---- C:\WINDOWS\system32\DscCore.dll
2016-01-13 18:12:00 ----A---- C:\WINDOWS\system32\aitstatic.exe
2016-01-13 18:11:59 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2016-01-13 18:11:59 ----A---- C:\WINDOWS\SYSWOW64\UserMgrProxy.dll
2016-01-13 18:11:59 ----A---- C:\WINDOWS\system32\aepic.dll
2016-01-12 18:14:47 ----A---- C:\WINDOWS\system32\aswBoot.exe
2016-01-12 18:14:16 ----A---- C:\WINDOWS\system32\drivers\aswNdisFlt.sys
2016-01-12 17:35:14 ----A---- C:\WINDOWS\system32\drivers\mwac.sys
2016-01-12 17:35:14 ----A---- C:\WINDOWS\system32\drivers\mbamchameleon.sys
2016-01-12 17:35:14 ----A---- C:\WINDOWS\system32\drivers\mbam.sys
2016-01-12 17:33:47 ----AD---- C:\Program Files (x86)\Malwarebytes Anti-Malware
2016-01-12 17:32:55 ----D---- C:\ProgramData\Lavasoft
2016-01-12 16:19:21 ----AD---- C:\Program Files\CCleaner
2016-01-12 05:40:08 ----HD---- C:\$SysReset
2016-01-10 18:47:11 ----D---- C:\scripts
2016-01-10 18:47:11 ----D---- C:\gui
2016-01-09 08:41:59 ----A---- C:\WINDOWS\system32\drivers\aswKbd.sys

======List of files/folders modified in the last 1 month======

2016-01-31 19:24:00 ----D---- C:\WINDOWS\system32\sru
2016-01-31 19:23:57 ----D---- C:\Program Files\trend micro
2016-01-31 19:18:41 ----D---- C:\WINDOWS\Prefetch
2016-01-31 18:48:31 ----D---- C:\WINDOWS\System32
2016-01-31 18:48:31 ----D---- C:\WINDOWS\INF
2016-01-31 18:48:31 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2016-01-31 18:40:50 ----D---- C:\WINDOWS\Temp
2016-01-31 18:28:13 ----D---- C:\WINDOWS\Microsoft.NET
2016-01-31 16:22:34 ----SHD---- C:\System Volume Information
2016-01-31 14:18:30 ----SHD---- C:\Config.Msi
2016-01-31 08:07:52 ----SHDC---- C:\WINDOWS\Installer
2016-01-30 15:44:07 ----D---- C:\WINDOWS\AppReadiness
2016-01-29 16:57:55 ----D---- C:\WINDOWS\system32\Tasks
2016-01-29 16:57:25 ----D---- C:\Program Files (x86)\Internet Explorer
2016-01-29 16:57:09 ----D---- C:\WINDOWS\SysWOW64
2016-01-29 15:12:27 ----D---- C:\WINDOWS\system32\config
2016-01-29 15:11:28 ----HD---- C:\Program Files\WindowsApps
2016-01-29 15:00:18 ----D---- C:\WINDOWS\WinSxS
2016-01-29 07:32:46 ----D---- C:\WINDOWS\SYSWOW64\migration
2016-01-29 07:32:46 ----D---- C:\WINDOWS\system32\WinBioPlugIns
2016-01-29 07:32:46 ----D---- C:\WINDOWS\system32\oobe
2016-01-29 07:32:45 ----SD---- C:\WINDOWS\system32\F12
2016-01-29 07:32:45 ----RD---- C:\WINDOWS\PurchaseDialog
2016-01-29 07:32:45 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2016-01-29 07:32:45 ----D---- C:\WINDOWS\system32\migration
2016-01-29 07:32:45 ----D---- C:\WINDOWS\system32\drivers
2016-01-29 07:32:45 ----D---- C:\WINDOWS\system32\appraiser
2016-01-29 07:32:45 ----D---- C:\WINDOWS\bcastdvr
2016-01-29 07:32:45 ----D---- C:\WINDOWS\AppPatch
2016-01-29 07:32:44 ----D---- C:\WINDOWS\system32\DriverStore
2016-01-29 06:10:32 ----D---- C:\WINDOWS\CbsTemp
2016-01-28 19:11:36 ----D---- C:\WINDOWS\system32\catroot2
2016-01-28 06:09:24 ----D---- C:\WINDOWS\debug
2016-01-28 06:02:58 ----HD---- C:\ProgramData
2016-01-28 05:53:05 ----D---- C:\Windows
2016-01-27 20:13:16 ----D---- C:\Program Files (x86)\Ashampoo
2016-01-27 19:00:02 ----AD---- C:\Program Files (x86)\Windows Live
2016-01-27 18:59:46 ----RD---- C:\Program Files
2016-01-27 17:51:29 ----D---- C:\Users\Honza\AppData\Roaming\Seznam.cz
2016-01-27 17:50:14 ----D---- C:\Games
2016-01-27 17:43:31 ----D---- C:\ProgramData\Skype
2016-01-27 17:43:25 ----RD---- C:\Program Files (x86)
2016-01-27 17:43:25 ----D---- C:\Program Files (x86)\Common Files
2016-01-23 11:41:59 ----HD---- C:\Program Files (x86)\DrFoneAndroid_Temp
2016-01-23 11:41:57 ----D---- C:\Program Files (x86)\Wondershare
2016-01-23 11:41:14 ----D---- C:\Program Files (x86)\Tenorshare Android Data Recovery
2016-01-23 11:40:10 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2016-01-20 19:10:20 ----D---- C:\Users\Honza\AppData\Roaming\LG Electronics
2016-01-14 16:11:21 ----AD---- C:\Program Files\Microsoft Silverlight
2016-01-14 16:11:20 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2016-01-14 07:28:02 ----D---- C:\WINDOWS\system32\Boot
2016-01-14 06:22:08 ----D---- C:\ProgramData\Microsoft Help
2016-01-14 06:17:28 ----D---- C:\WINDOWS\system32\MRT
2016-01-14 06:10:50 ----A---- C:\WINDOWS\system32\MRT.exe
2016-01-14 06:10:41 ----D---- C:\ProgramData\Package Cache
2016-01-13 05:32:13 ----AD---- C:\Program Files\AMD
2016-01-12 18:45:02 ----D---- C:\AMD
2016-01-12 17:32:18 ----D---- C:\Program Files (x86)\Realtek
2016-01-12 17:30:24 ----D---- C:\WINDOWS\system32\NDF
2016-01-12 16:20:12 ----D---- C:\WINDOWS\Tasks
2016-01-12 05:40:11 ----D---- C:\WINDOWS\Logs
2016-01-09 08:41:41 ----D---- C:\ProgramData\AVAST Software
2016-01-03 02:40:25 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswNdisFlt;@oem12.inf,%AfwDescriptionFree%;Avast! Firewall Driver; C:\WINDOWS\system32\DRIVERS\aswNdisFlt.sys [2016-01-12 466400]
R0 aswRvrt;avast! Revert; C:\WINDOWS\system32\drivers\aswRvrt.sys [2015-12-22 65224]
R0 aswVmm;avast! VM Monitor; C:\WINDOWS\system32\drivers\aswVmm.sys [2015-12-22 273784]
R0 DSFKSVCS;@oem82.inf,%DSFKSVCS.DeviceDesc%;Kernel Services for DSF; C:\WINDOWS\System32\drivers\dsfksvcs.sys [2010-02-08 676232]
R0 dsfroot;@oem0.inf,%dsfroot.SVCDESC%;root enumerated bus driver; C:\WINDOWS\System32\drivers\dsfroot.sys [2010-02-08 35832]
R0 speedfan;speedfan; C:\WINDOWS\SysWOW64\speedfan.sys [2012-12-29 28664]
R1 aswKbd;aswKbd; C:\WINDOWS\system32\drivers\aswKbd.sys [2016-01-12 28144]
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [2015-12-22 93528]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2016-01-20 1065208]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2016-01-20 464256]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2015-10-30 87040]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2015-10-30 8192]
R2 aswHwid;avast! HardwareID; C:\WINDOWS\system32\drivers\aswHwid.sys [2015-12-22 28656]
R2 aswMonFlt;aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [2016-01-12 97648]
R2 aswStm;aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [2015-12-22 155304]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2015-10-30 47616]
R2 storqosflt;@%SystemRoot%\System32\drivers\storqosflt.sys,-101; C:\WINDOWS\system32\drivers\storqosflt.sys [2015-10-30 78848]
R3 amdkmdag;amdkmdag; C:\WINDOWS\system32\DRIVERS\atikmdag.sys [2015-12-16 23969808]
R3 amdkmdap;amdkmdap; C:\WINDOWS\system32\DRIVERS\atikmpag.sys [2015-12-16 679952]
R3 AtiHDAudioService;@oem139.inf,%ATIHdAudioDriver.SvcDesc%;AMD Function Driver for HD Audio Service; C:\WINDOWS\system32\drivers\AtihdWT6.sys [2015-09-18 102912]
R3 CX88VID;@oem36.inf,%CX23880.DeviceDesc%;WinFast CX2388x AvStream Driver; C:\WINDOWS\system32\drivers\cxavsvid.sys [2007-09-19 469248]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2014-05-14 3962840]
R3 MBAMProtector;MBAMProtector; \??\C:\WINDOWS\system32\drivers\mbam.sys [2015-03-17 25816]
R3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [2016-01-31 136408]
R3 rt640x64;@rt640x64.inf,%rt640.Service.DispName%;Realtek RT640 NT Driver; C:\WINDOWS\System32\drivers\rt640x64.sys [2015-10-30 589824]
S0 amdkmafd;@oem137.inf,%AMDKMAFD_svcdesc%;AMD Audio Bus Lower Filter; C:\WINDOWS\System32\drivers\amdkmafd.sys [2015-07-28 40720]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2015-10-30 104800]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2015-10-30 99168]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2015-10-30 58208]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2015-10-30 58720]
S0 storufs;@storufs.inf,%UfsServiceDesc%;Microsoft Universal Flash Storage (UFS) Driver; C:\WINDOWS\System32\drivers\storufs.sys [2015-10-30 34144]
S3 AndnetBus;@oem46.inf,%LGSI.Service.Desc%;LGE Mobile USB Composite Device; C:\WINDOWS\System32\drivers\lgandnetbus64.sys [2015-01-21 20992]
S3 AndNetDiag;@oem68.inf,%Lgsi.Service.Name%;LGE AndroidNet USB Serial Port; C:\WINDOWS\system32\DRIVERS\lgandnetdiag64.sys [2015-01-26 30720]
S3 ANDNetModem;@oem41.inf,%LGSI.Service.Name%;LGE AndroidNet USB Modem; C:\WINDOWS\system32\DRIVERS\lgandnetmodem64.sys [2015-01-26 37376]
S3 athur;@oem92.inf,%ATHR.Service.DispName%;Qualcomm Atheros AR9271 Wireless Network Adapter Service; C:\WINDOWS\system32\DRIVERS\athuw8x.sys [2013-06-02 2919936]
S3 bcmfn;@bcmfn.inf,%bcmfn.SVCDESC%;bcmfn Service; C:\WINDOWS\System32\drivers\bcmfn.sys [2015-10-30 9728]
S3 bthav;Bluetooth AV Profile; C:\WINDOWS\system32\drivers\bthav.sys [2008-07-10 40448]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2015-10-30 37376]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2015-12-24 117248]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2015-10-30 20992]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2015-10-30 50016]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2015-10-30 81408]
S3 iaLPSS2i_I2C;@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2015-10-30 165888]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2015-10-30 424800]
S3 IoQos;@%SystemRoot%\system32\drivers\ioqos.sys,-100; C:\WINDOWS\system32\drivers\ioqos.sys [2015-10-30 26624]
S3 MBAMWebAccessControl;MBAMWebAccessControl; \??\C:\WINDOWS\system32\drivers\mwac.sys [2015-03-17 64216]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2015-10-30 705376]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2015-10-30 76128]
S3 OlyCamComm;OLYMPUS USB Communication Device; C:\WINDOWS\system32\DRIVERS\OlyCamComm.sys [2009-09-09 24208]
S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2015-10-30 930656]
S3 RSUSBCCID;Realtek Smartcard Reader Driver; C:\WINDOWS\system32\DRIVERS\RtsUCcid.sys [2009-08-10 50176]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 ACDaemon;ArcSoft Connect Daemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [2009-02-06 109056]
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2015-12-13 82128]
R2 AMD External Events Utility;AMD External Events Utility; C:\WINDOWS\system32\atiesrxx.exe [2015-12-16 254992]
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2015-12-22 226440]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R2 EPSON_PM_RPCV4_01;EPSON V3 Service4(01); C:\ProgramData\EPSON\EPW!3 SSRP\E_S40RPB.EXE [2007-01-11 126464]
R2 OneSyncSvc_544e4;Hostitel synchronizace_544e4; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 ssinstall;SInstalátor; C:\WINDOWS\SysWOW64\ssins.exe [2014-12-12 2324216]
R2 TeamViewer;TeamViewer 11; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [2015-12-14 6889232]
R2 tiledatamodelsvc;@%SystemRoot%\system32\tileobjserver.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R3 PimIndexMaintenanceSvc_544e4;Data kontaktů_544e4; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 StateRepository;@%SystemRoot%\system32\windows.staterepository.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-29 144200]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S2 MBAMService;MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [2015-03-17 1080120]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_1418f12;Hostitel synchronizace_1418f12; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_1a9ad13;Hostitel synchronizace_1a9ad13; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_1b1e0ee;Hostitel synchronizace_1b1e0ee; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_2c8f305;Hostitel synchronizace_2c8f305; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_39e80;Hostitel synchronizace_39e80; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_45f196a;Hostitel synchronizace_45f196a; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_4add94;Hostitel synchronizace_4add94; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_ba1b3e;Hostitel synchronizace_ba1b3e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2015-10-30 31744]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2015-10-23 43696]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-29 144200]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_1418f12;Služba zasílání zpráv_1418f12; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_1a9ad13;Služba zasílání zpráv_1a9ad13; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_1b1e0ee;Služba zasílání zpráv_1b1e0ee; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_2c8f305;Služba zasílání zpráv_2c8f305; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_39e80;Služba zasílání zpráv_39e80; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_45f196a;Služba zasílání zpráv_45f196a; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_4add94;Služba zasílání zpráv_4add94; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_544e4;Služba zasílání zpráv_544e4; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_ba1b3e;Služba zasílání zpráv_ba1b3e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2015-09-11 149160]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_1418f12;Data kontaktů_1418f12; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_1a9ad13;Data kontaktů_1a9ad13; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_1b1e0ee;Data kontaktů_1b1e0ee; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_2c8f305;Data kontaktů_2c8f305; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_39e80;Data kontaktů_39e80; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_45f196a;Data kontaktů_45f196a; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_4add94;Data kontaktů_4add94; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_ba1b3e;Data kontaktů_ba1b3e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2015-10-30 1297408]
S3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 Sony PC Companion;Sony PC Companion; C:\Program Files (x86)\Sony\Sony PC Companion\PCCService.exe [2015-06-10 155520]
S3 TieringEngineService;@%SystemRoot%\system32\TieringEngineService.exe,-702; C:\WINDOWS\system32\TieringEngineService.exe [2015-10-30 290304]
S4 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-01-23 269504]
S4 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S4 NBService;NBService; C:\Program Files (x86)\Nero\Nero 7\Nero BackItUp\NBService.exe [2006-11-10 774144]
S4 tzautoupdate;@%SystemRoot%\system32\tzautoupdate.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118275
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o preventivní kontrolu

#2 Příspěvek od Rudy »

Zdravím!
Log vypadá OK.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

honzikuh
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 328
Registrován: 20 říj 2007 12:11

Re: Prosím o preventivní kontrolu

#3 Příspěvek od honzikuh »

Skvělá zpráva moc děkuju , snažím se to udržovat dle možností :closed:

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118275
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o preventivní kontrolu

#4 Příspěvek od Rudy »

Rádo se stalo! :)
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Zamčeno