Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Kontrola PC

Patříte mezi Vzorné návštěvníky? Pak je tato sekce pro vás.

Moderátor: Moderátoři

Pravidla fóra
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
Zamčeno
Zpráva
Autor
pospa.josifek
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 173
Registrován: 24 dub 2012 18:35

Kontrola PC

#1 Příspěvek od pospa.josifek »

Zdravím,
rád bych poprosil o kontrolu mého PC. Bohužel mi z nějakého důvodu nefunguje Eset, a mám malinko podezření na keylogger v mém počítači - dneska si počítač mačkal sám od sebe Enter.
Díky předem.

LOG:

Logfile of random's system information tool 1.10 (written by random/random)
Run by Pepík at 2016-06-03 15:18:11
Microsoft Windows 10 Home
System drive C: has 7 GB (6%) free of 114 GB
Total RAM: 8146 MB (68% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 15:18:16, on 3. 6. 2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10586.0020)
Boot mode: Normal

Running processes:
C:\WINDOWS\SysWOW64\muachost.exe
E:\Program Files (x86)\RivaTuner Statistics Server\RTSS.exe
C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe
E:\Program Files (x86)\TeamViewer\TeamViewer.exe
E:\Program Files (x86)\RivaTuner Statistics Server\EncoderServer.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
E:\Program Files (x86)\Samsung\Samsung Magician\Samsung Magician.exe
C:\Users\Pepík\AppData\Local\Microsoft\OneDrive\OneDrive.exe
C:\Program Files (x86)\Sticky Password\stpass.exe
E:\Program Files\FF\firefox.exe
E:\Program Files (x86)\Gaming Keyboard\Monitor.EXE
E:\Program Files (x86)\Gaming Keyboard\OSD.exe
C:\Program Files (x86)\Sticky Password\spUIAManager.exe
C:\Program Files\trend micro\Pepík.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local;<local>
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: Skype for Business Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office16\OCHelper.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - E:\Program Files (x86)\Java\bin\ssv.dll
O2 - BHO: Microsoft OneDrive for Business Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\PROGRA~2\MICROS~1\Office16\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - E:\Program Files (x86)\Java\bin\jp2ssv.dll
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [VICTORY Gaming Keyboard] "E:\Program Files (x86)\Gaming Keyboard\Monitor.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [ControlCenterCount] E:\Program Files (x86)\MSI\ControlCenter\ControlCenterCount.exe
O4 - HKLM\..\Run: [PWRISOVM.EXE] F:\Program Files\PowerISO\PWRISOVM.EXE -startup
O4 - HKCU\..\Run: [EADM] "E:\Program Files (x86)\Origin\Origin.exe" -AutoStart
O4 - HKCU\..\Run: [Clownfish] "E:\Program Files (x86)\Clownfish\Clownfish.exe"
O4 - HKCU\..\Run: [Sony PC Companion] "C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe" /Background
O4 - HKCU\..\Run: [TomTomHOME.exe] "C:\Program Files (x86)\TomTom HOME 2\TomTomHOMERunner.exe"
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [DAEMON Tools Lite Automount] "F:\Program Files\DAEMON Tools Lite\DTAgent.exe" -autorun
O4 - HKCU\..\Run: [OneDrive] "C:\Users\Pepík\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\Run: [MyComGames] "C:\Users\Pepík\AppData\Local\MyComGames\MyComGames.exe" -autostart
O4 - HKCU\..\Run: [Zoner Photo Studio Autoupdate] "F:\Program Files\Zoner\Photo Studio 17\Program32\ZPSTRAY.EXE"
O4 - HKCU\..\Run: [StickyPassword] C:\Program Files (x86)\Sticky Password\stpass.exe
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O4 - Global Startup: NETGEAR WNDA3100v3 Genie.lnk = C:\Program Files (x86)\NETGEAR\WNDA3100v3\WNDA3100v3.EXE
O8 - Extra context menu item: E&xportovat do Microsoft Excelu - res://C:\PROGRA~1\MICROS~1\Office16\EXCEL.EXE/3000
O8 - Extra context menu item: Poslat do On&eNotu - res://C:\PROGRA~1\MICROS~1\Office16\ONBttnIE.dll/105
O9 - Extra button: Poslat do OneNotu - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office16\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Poslat do On&eNotu - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office16\ONBttnIE.dll
O9 - Extra button: @%CommonProgramFiles%\Microsoft Shared\Office16\oregres.dll,-430 - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office16\OCHelper.dll
O9 - Extra 'Tools' menuitem: @%CommonProgramFiles%\Microsoft Shared\Office16\oregres.dll,-430 - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office16\OCHelper.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office16\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office16\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: http://help.eset.com (HKLM)
O15 - ESC Trusted Zone: http://help.eset.com (HKLM)
O18 - Protocol: mso-minsb.16 - {3459B272-CC19-4448-86C9-DDC3B4B2FAD3} - C:\Program Files (x86)\Microsoft Office\Office16\MSOSB.DLL
O18 - Protocol: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\Office16\MSOSB.DLL
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Filter hijack: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE16\MSOXMLMF.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\WINDOWS\system32\atiesrxx.exe (file missing)
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: Disc Soft Lite Bus Service - Disc Soft Ltd - F:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe
O23 - Service: EasyAntiCheat - EasyAntiCheat Ltd - C:\WINDOWS\system32\EasyAntiCheat.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\ekrn.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: GamingApp_Service - Micro-Star Int'l Co., Ltd. - C:\Program Files (x86)\MSI\MSI Gaming APP\GamingApp_Service.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: MSISleep - Unknown owner - E:\Program Files (x86)\MSI\ControlCenter\Sleep\MSISleepService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Origin Client Service - Electronic Arts - E:\Program Files (x86)\Origin\OriginClientService.exe
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe
O23 - Service: Corel License Validation Service V2 x64, Powered by arvato (PSI_SVC_2_x64) - arvato digital services llc - C:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: Sony PC Companion - Avanquest Software - C:\Program Files (x86)\Sony\Sony PC Companion\PCCService.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: TeamViewer 11 (TeamViewer) - TeamViewer GmbH - E:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: TomTomHOMEService - TomTom - C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 12845 bytes

======Listing Processes======







winlogon.exe

C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation

C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-5c7c1ad8-7302-4fbf-a125-2e9eea948faf -SystemEventPortName:HostProcess-dbf25945-3fab-4427-925e-81c37ba5fc48 -IoCancelEventPortName:HostProcess-f0f496ed-0151-4782-bb8b-914294380ba0 -NonStateChangingEventPortName:HostProcess-a5391041-dad2-43f1-8b13-68971cc4ac46 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:f742b93c-f5b7-43be-9ecf-b201063b082f -DeviceGroupId:WpdFsGroup
C:\WINDOWS\system32\atiesrxx.exe
atieclxx
C:\WINDOWS\system32\svchost.exe -k NetworkService
C:\WINDOWS\System32\spoolsv.exe

C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files\Bonjour\mDNSResponder.exe"
C:\WINDOWS\System32\svchost.exe -k utcsvc
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\MSI\MSI Gaming APP\GamingApp_Service.exe"
"E:\Program Files (x86)\MSI\ControlCenter\Sleep\MSISleepService.exe"
C:\WINDOWS\system32\PnkBstrA.exe
"C:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe"
"C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe"
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\WINDOWS\system32\svchost.exe -k appmodel
"C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe"
"E:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe"
dashost.exe {dcd482f0-559e-4542-821ab57e5b53dc0c}
C:\WINDOWS\System32\svchost.exe -k LocalServicePeerNet
taskeng.exe {995221B8-3F26-47FC-B549-73BF01C269A4}
sihost.exe
C:\WINDOWS\SysWOW64\muachost.exe
"E:\Program Files (x86)\RivaTuner Statistics Server\RTSS.exe" /s
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
C:\WINDOWS\Explorer.EXE
"C:\Program Files (x86)\Google\Update\1.3.30.3\GoogleCrashHandler.exe"
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
"C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe" -ServerName:SkypeHost.ServerServer
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"E:\Program Files (x86)\TeamViewer\TeamViewer.exe"
"C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide
"E:\Program Files (x86)\TeamViewer\tv_w32.exe" --action hooks --log E:\Program Files (x86)\TeamViewer\TeamViewer11_Logfile.log
"E:\Program Files (x86)\TeamViewer\tv_x64.exe" --action hooks --log E:\Program Files (x86)\TeamViewer\TeamViewer11_Logfile.log
"C:\Program Files (x86)\Google\Update\1.3.30.3\GoogleCrashHandler64.exe"
"E:\Program Files (x86)\RivaTuner Statistics Server\EncoderServer.exe" /i
"E:\Program Files (x86)\RivaTuner Statistics Server\RTSSHooksLoader64.exe" /i
"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
"C:\Program Files\Logitech\Gaming Software\LWEMon.exe" /noui
"C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe" atlogon
"C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
"E:\Program Files (x86)\Samsung\Samsung Magician\Samsung Magician.exe" /AUTOHIDE
"C:\Users\Pepík\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
"C:\Program Files (x86)\Sticky Password\stpass.exe"
"F:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe"
"E:\Program Files\FF\firefox.exe"
"E:\Program Files (x86)\Gaming Keyboard\Monitor.EXE"
"F:\Program Files\PowerISO\PWRISOVM.EXE" -startup
"E:\Program Files (x86)\Gaming Keyboard\OSD.exe"
"C:\Program Files (x86)\Sticky Password\spUIAManager.exe"
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\WINDOWS\system32\DllHost.exe /Processid:{49F171DD-B51A-40D3-9A6C-52D674CC729D}
"C:\WINDOWS\system32\mspaint.exe"
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe3_ Global\UsGthrCtrlFltPipeMssGthrPipe3 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 624 628 636 8192 632
"F:\Stažené soubory\RSITx64.exe"
C:\WINDOWS\system32\DllHost.exe /Processid:{53362C64-A296-4F2D-A2F8-FD984D08340B}
C:\WINDOWS\system32\wbem\wmiprvse.exe

======Scheduled tasks folder======

C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler

=========Mozilla firefox=========

ProfilePath - C:\Users\Pepík\AppData\Roaming\Mozilla\Firefox\Profiles\4q2k8q92.default

prefs.js - "browser.startup.homepage" - "google.com"

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 21.0.0.242 Plugin
"Path"=C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_21_0_0_242.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/ShockwavePlayer]
"Description"=Adobe Shockwave Player
"Path"=C:\WINDOWS\SysWOW64\Adobe\Director\np32dsw_1217157.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@esn/npbattlelog,version=2.6.2]
"Description"=
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\2.6.2\npbattlelog.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@esn/npbattlelog,version=2.7.1]
"Description"=
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\2.7.1\npbattlelog.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Google.com/GoogleEarthPlugin]
"Description"=Google Earth in your browser
"Path"=C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=11.40.2]
"Description"=Java™ Deployment Toolkit
"Path"=E:\Program Files (x86)\Java\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=11.40.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=E:\Program Files (x86)\Java\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/Lync,version=15.0]
"Description"=Skype for Business Plug-in for Firefox
"Path"=C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~2\MICROS~1\Office16\NPSPWRAP.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.30.3\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.30.3\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.0]
"Description"=VLC Multimedia Plugin
"Path"=E:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\adobe.com/AdobeAAMDetect]
"Description"=
"Path"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 21.0.0.242 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF64_21_0_0_242.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@esn/npbattlelog,version=2.6.2]
"Description"=
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\2.6.2\npbattlelogx64.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@esn/npbattlelog,version=2.7.1]
"Description"=
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\2.7.1\npbattlelogx64.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~1\MICROS~1\Office16\NPSPWRAP.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\adobe.com/AdobeAAMDetect]
"Description"=
"Path"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll


======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Skype for Business Browser Helper - C:\Program Files\Microsoft Office\Office16\OCHelper.dll [2015-07-31 226984]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft OneDrive for Business Browser Helper - C:\PROGRA~1\MICROS~1\Office16\GROOVEEX.DLL [2015-07-31 2165976]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Skype for Business Browser Helper - C:\Program Files (x86)\Microsoft Office\Office16\OCHelper.dll [2015-07-31 161448]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - E:\Program Files (x86)\Java\bin\ssv.dll [2015-03-17 460712]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft OneDrive for Business Browser Helper - C:\PROGRA~2\MICROS~1\Office16\GROOVEEX.DLL [2015-07-31 1512152]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - E:\Program Files (x86)\Java\bin\jp2ssv.dll [2015-03-17 172968]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2015-03-14 7637208]
"Start WingMan Profiler"=C:\Program Files\Logitech\Gaming Software\LWEMon.exe [2010-06-14 190536]
"AdobeAAMUpdater-1.0"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2015-04-28 500936]
"Logitech Download Assistant"=C:\Windows\System32\LogiLDA.dll [2016-05-20 3941528]
"StartCN"=C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe [2016-05-20 6564552]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"EADM"=E:\Program Files (x86)\Origin\Origin.exe [2016-04-18 3639280]
"Clownfish"=E:\Program Files (x86)\Clownfish\Clownfish.exe [2015-12-23 1362152]
"Sony PC Companion"=C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe [2015-09-23 457088]
"TomTomHOME.exe"=C:\Program Files (x86)\TomTom HOME 2\TomTomHOMERunner.exe [2015-04-30 248176]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2016-03-01 50676864]
"DAEMON Tools Lite Automount"=F:\Program Files\DAEMON Tools Lite\DTAgent.exe [2015-11-30 4179288]
"OneDrive"=C:\Users\Pepík\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2016-05-12 554184]
"MyComGames"=C:\Users\Pepík\AppData\Local\MyComGames\MyComGames.exe [2016-03-22 4853616]
"Zoner Photo Studio Autoupdate"=F:\Program Files\Zoner\Photo Studio 17\Program32\ZPSTRAY.EXE [2015-07-12 563416]
"StickyPassword"=C:\Program Files (x86)\Sticky Password\stpass.exe [2016-03-31 64000]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe MSRun []
"VICTORY Gaming Keyboard"=E:\Program Files (x86)\Gaming Keyboard\Monitor.exe [2013-04-09 270336]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2015-03-07 335232]
"ControlCenterCount"=E:\Program Files (x86)\MSI\ControlCenter\ControlCenterCount.exe [2012-03-26 872448]
"PWRISOVM.EXE"=F:\Program Files\PowerISO\PWRISOVM.EXE [2016-02-10 465544]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
NETGEAR WNDA3100v3 Genie.lnk - C:\Program Files (x86)\NETGEAR\WNDA3100v3\WNDA3100v3.EXE

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
"SoftwareSASGeneration"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"VIDC.FPS1"=frapsv64.dll
"VIDC.RTV1"=rtvcvfw64.dll
"vidc.tscc"=C:\WINDOWS\SysWOW64\tsccvid64.dll
"vidc.tsc2"=C:\WINDOWS\SysWOW64\tsc2_codec64.dll
"msacm.vorbis"=vorbis.acm
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"msacm.dvacm_vspx9"=C:\PROGRA~1\Corel\CORELV~1\Dvacm.acm
"vidc.pDAD"=prodad-codec.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2040-02-25 18:38:39 ----D---- C:\Program Files\Common Files\Propellerhead Software
2040-02-25 18:38:25 ----D---- C:\ProgramData\Syncrosoft
2040-02-25 18:38:13 ----D---- C:\Program Files (x86)\Syncrosoft
2040-02-25 18:38:13 ----A---- C:\WINDOWS\SYSWOW64\SYNSOPOS.exe
2040-02-25 18:38:12 ----A---- C:\WINDOWS\SYSWOW64\SYNSOACC.dll
2040-02-25 18:38:12 ----A---- C:\WINDOWS\system32\SYNSOACC.dll
2040-02-25 18:38:11 ----D---- C:\Program Files\eLicenser
2016-06-03 15:18:11 ----D---- C:\rsit
2016-06-03 15:18:11 ----D---- C:\Program Files\trend micro
2016-06-02 17:39:06 ----D---- C:\ProgramData\regid.1986-12.com.adobe
2016-06-01 20:17:43 ----D---- C:\ProgramData\Adobe
2016-06-01 19:08:47 ----D---- C:\Users\Pepík\AppData\Roaming\Adobe
2016-05-26 16:33:42 ----D---- C:\Program Files (x86)\AMD
2016-05-26 16:32:34 ----D---- C:\WINDOWS\LastGood
2016-05-23 14:30:17 ----D---- C:\WINDOWS\LastGood.Tmp
2016-05-22 14:14:44 ----D---- C:\Users\Pepík\AppData\Roaming\Unreal Engine
2016-05-22 12:30:45 ----D---- C:\ProgramData\Epic
2016-05-20 23:48:04 ----A---- C:\WINDOWS\system32\amdave64.dll
2016-05-20 23:48:02 ----A---- C:\WINDOWS\SYSWOW64\amdave32.dll
2016-05-20 23:48:00 ----A---- C:\WINDOWS\system32\amdmiracast.dll
2016-05-20 23:47:56 ----A---- C:\WINDOWS\SYSWOW64\amdhcp32.dll
2016-05-20 23:47:56 ----A---- C:\WINDOWS\system32\amdhcp64.dll
2016-05-20 23:47:52 ----A---- C:\WINDOWS\system32\atimpc64.dll
2016-05-20 23:47:50 ----A---- C:\WINDOWS\SYSWOW64\atimpc32.dll
2016-05-20 23:47:42 ----A---- C:\WINDOWS\SYSWOW64\amdpcom32.dll
2016-05-20 23:47:42 ----A---- C:\WINDOWS\system32\amdpcom64.dll
2016-05-20 23:47:34 ----A---- C:\WINDOWS\system32\atiu9p64.dll
2016-05-20 23:46:46 ----A---- C:\WINDOWS\system32\atiumd64.dll
2016-05-20 23:44:28 ----A---- C:\WINDOWS\system32\drivers\amdacpksd.sys
2016-05-20 23:35:52 ----A---- C:\WINDOWS\system32\clinfo.exe
2016-05-20 23:35:46 ----A---- C:\WINDOWS\system32\amdocl64.dll
2016-05-20 23:34:48 ----A---- C:\WINDOWS\SYSWOW64\amdocl.dll
2016-05-20 23:33:54 ----A---- C:\WINDOWS\SYSWOW64\OpenCL.dll
2016-05-20 23:33:54 ----A---- C:\WINDOWS\system32\OpenCL.dll
2016-05-20 23:32:04 ----A---- C:\WINDOWS\system32\amdocl12cl64.dll
2016-05-20 23:31:58 ----A---- C:\WINDOWS\SYSWOW64\amdocl12cl.dll
2016-05-20 23:30:54 ----A---- C:\WINDOWS\system32\amdvlk64.dll
2016-05-20 23:26:44 ----A---- C:\WINDOWS\SYSWOW64\amdvlk32.dll
2016-05-20 23:16:02 ----A---- C:\WINDOWS\system32\DelayAPO.dll
2016-05-20 23:15:34 ----A---- C:\WINDOWS\system32\amdhdl64.dll
2016-05-20 23:15:30 ----A---- C:\WINDOWS\SYSWOW64\amdhdl32.dll
2016-05-20 23:14:50 ----A---- C:\WINDOWS\system32\atio6axx.dll
2016-05-20 23:13:20 ----A---- C:\WINDOWS\system32\amdlvr64.dll
2016-05-20 23:13:10 ----A---- C:\WINDOWS\system32\vccorlib110.dll
2016-05-20 23:13:08 ----A---- C:\WINDOWS\system32\msvcr110.dll
2016-05-20 23:13:06 ----A---- C:\WINDOWS\SYSWOW64\amdlvr32.dll
2016-05-20 23:13:04 ----A---- C:\WINDOWS\system32\msvcp110.dll
2016-05-20 23:13:04 ----A---- C:\WINDOWS\system32\LogiLDA.DLL
2016-05-20 23:12:56 ----A---- C:\WINDOWS\system32\LdaCx2.dll
2016-05-20 23:12:52 ----A---- C:\WINDOWS\system32\mantle64.dll
2016-05-20 23:12:48 ----A---- C:\WINDOWS\SYSWOW64\mantle32.dll
2016-05-20 23:12:42 ----A---- C:\WINDOWS\system32\amdmantle64.dll
2016-05-20 23:12:12 ----A---- C:\WINDOWS\system32\coinst_16.20.dll
2016-05-20 23:09:28 ----A---- C:\WINDOWS\system32\atiapfxx.exe
2016-05-20 23:09:22 ----A---- C:\WINDOWS\system32\aticalrt64.dll
2016-05-20 23:09:20 ----A---- C:\WINDOWS\SYSWOW64\aticalrt.dll
2016-05-20 23:09:12 ----A---- C:\WINDOWS\system32\aticalcl64.dll
2016-05-20 23:09:10 ----A---- C:\WINDOWS\SYSWOW64\aticalcl.dll
2016-05-20 23:09:02 ----A---- C:\WINDOWS\SYSWOW64\amdmantle32.dll
2016-05-20 23:08:58 ----A---- C:\WINDOWS\system32\aticaldd64.dll
2016-05-20 23:08:02 ----A---- C:\WINDOWS\SYSWOW64\aticaldd.dll
2016-05-20 23:06:50 ----A---- C:\WINDOWS\SYSWOW64\atioglxx.dll
2016-05-20 23:06:48 ----A---- C:\WINDOWS\system32\amdmmcl6.dll
2016-05-20 23:06:46 ----A---- C:\WINDOWS\SYSWOW64\amdmmcl.dll
2016-05-20 23:06:02 ----A---- C:\WINDOWS\system32\mantleaxl64.dll
2016-05-20 23:06:00 ----A---- C:\WINDOWS\SYSWOW64\mantleaxl32.dll
2016-05-20 23:05:14 ----A---- C:\WINDOWS\system32\amdxc64.dll
2016-05-20 23:02:54 ----A---- C:\WINDOWS\SYSWOW64\amdxc32.dll
2016-05-20 23:02:50 ----A---- C:\WINDOWS\system32\atidemgy.dll
2016-05-20 23:02:44 ----A---- C:\WINDOWS\system32\dgtrayicon.exe
2016-05-20 23:02:38 ----A---- C:\WINDOWS\system32\GameManager64.dll
2016-05-20 23:02:36 ----A---- C:\WINDOWS\SYSWOW64\GameManager32.dll
2016-05-20 23:02:32 ----A---- C:\WINDOWS\system32\atieah64.exe
2016-05-20 23:02:30 ----A---- C:\WINDOWS\SYSWOW64\atieah32.exe
2016-05-20 23:02:26 ----A---- C:\WINDOWS\system32\amdgfxinfo64.dll
2016-05-20 23:02:22 ----A---- C:\WINDOWS\SYSWOW64\amdgfxinfo32.dll
2016-05-20 23:02:20 ----A---- C:\WINDOWS\system32\atimuixx.dll
2016-05-20 23:02:16 ----A---- C:\WINDOWS\system32\atieclxx.exe
2016-05-20 23:02:04 ----A---- C:\WINDOWS\system32\atiesrxx.exe
2016-05-20 23:01:32 ----A---- C:\WINDOWS\system32\atitmm64.dll
2016-05-20 22:57:50 ----A---- C:\WINDOWS\SYSWOW64\atiadlxy.dll
2016-05-20 22:57:50 ----A---- C:\WINDOWS\SYSWOW64\atiadlxx.dll
2016-05-20 22:57:42 ----A---- C:\WINDOWS\system32\atig6pxx.dll
2016-05-20 22:57:38 ----A---- C:\WINDOWS\SYSWOW64\atiglpxx.dll
2016-05-20 22:57:38 ----A---- C:\WINDOWS\system32\atiglpxx.dll
2016-05-20 22:57:36 ----A---- C:\WINDOWS\system32\atig6txx.dll
2016-05-20 22:57:30 ----A---- C:\WINDOWS\SYSWOW64\atigktxx.dll
2016-05-20 22:57:06 ----A---- C:\WINDOWS\SYSWOW64\atisamu32.dll
2016-05-20 22:57:06 ----A---- C:\WINDOWS\system32\atisamu64.dll
2016-05-20 22:56:56 ----A---- C:\WINDOWS\system32\drivers\ati2erec.dll
2016-05-20 22:55:14 ----A---- C:\WINDOWS\system32\hsa-thunk64.dll
2016-05-20 22:55:12 ----A---- C:\WINDOWS\SYSWOW64\hsa-thunk.dll
2016-05-15 16:59:29 ----D---- C:\Program Files (x86)\Minecraft
2016-05-15 09:43:57 ----D---- C:\Users\Pepík\AppData\Roaming\Lamantine
2016-05-15 09:42:07 ----D---- C:\Program Files (x86)\Sticky Password
2016-05-11 12:55:42 ----A---- C:\WINDOWS\SYSWOW64\MosStorage.dll
2016-05-11 12:55:42 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2016-05-11 12:55:42 ----A---- C:\WINDOWS\SYSWOW64\MapsBtSvc.dll
2016-05-11 12:55:42 ----A---- C:\WINDOWS\SYSWOW64\MapConfiguration.dll
2016-05-11 12:55:42 ----A---- C:\WINDOWS\SYSWOW64\JpMapControl.dll
2016-05-11 12:55:42 ----A---- C:\WINDOWS\SYSWOW64\BingMaps.dll
2016-05-11 12:55:42 ----A---- C:\WINDOWS\system32\MapConfiguration.dll
2016-05-11 12:55:41 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2016-05-11 12:55:41 ----A---- C:\WINDOWS\system32\MapsStore.dll
2016-05-11 12:55:41 ----A---- C:\WINDOWS\system32\JpMapControl.dll
2016-05-11 12:55:41 ----A---- C:\WINDOWS\system32\BingMaps.dll
2016-05-11 12:55:40 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-05-11 12:55:35 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2016-05-11 12:55:34 ----A---- C:\WINDOWS\system32\mshtml.dll
2016-05-11 12:55:33 ----A---- C:\WINDOWS\SYSWOW64\NMAA.dll
2016-05-11 12:55:33 ----A---- C:\WINDOWS\SYSWOW64\mos.dll
2016-05-11 12:55:33 ----A---- C:\WINDOWS\SYSWOW64\MapControlCore.dll
2016-05-11 12:55:33 ----A---- C:\WINDOWS\system32\NMAA.dll
2016-05-11 12:55:32 ----A---- C:\WINDOWS\SYSWOW64\kerberos.dll
2016-05-11 12:55:32 ----A---- C:\WINDOWS\system32\mos.dll
2016-05-11 12:55:32 ----A---- C:\WINDOWS\system32\MapControlCore.dll
2016-05-11 12:55:32 ----A---- C:\WINDOWS\system32\kerberos.dll
2016-05-11 12:55:31 ----A---- C:\WINDOWS\system32\edgehtml.dll
2016-05-11 12:55:30 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2016-05-11 12:55:28 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2016-05-11 12:55:23 ----A---- C:\WINDOWS\system32\shell32.dll
2016-05-11 12:55:23 ----A---- C:\WINDOWS\system32\modernexecserver.dll
2016-05-11 12:55:22 ----A---- C:\WINDOWS\system32\twinui.dll
2016-05-11 12:55:22 ----A---- C:\WINDOWS\system32\CredProvDataModel.dll
2016-05-11 12:55:21 ----A---- C:\WINDOWS\system32\windows.storage.dll
2016-05-11 12:55:20 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2016-05-11 12:55:20 ----A---- C:\WINDOWS\SYSWOW64\CredProvDataModel.dll
2016-05-11 12:55:20 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-05-11 12:55:19 ----A---- C:\WINDOWS\system32\ieframe.dll
2016-05-11 12:55:19 ----A---- C:\WINDOWS\system32\Chakra.dll
2016-05-11 12:55:17 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2016-05-11 12:55:16 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2016-05-11 12:55:16 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2016-05-11 12:55:15 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2016-05-11 12:55:15 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2016-05-11 12:55:15 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2016-05-11 12:55:15 ----A---- C:\WINDOWS\system32\ntdll.dll
2016-05-11 12:55:14 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
2016-05-11 12:55:14 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2016-05-11 12:55:12 ----A---- C:\WINDOWS\system32\d2d1.dll
2016-05-11 12:55:11 ----A---- C:\WINDOWS\system32\jscript9.dll
2016-05-11 12:55:10 ----A---- C:\WINDOWS\explorer.exe
2016-05-11 12:55:09 ----A---- C:\WINDOWS\SYSWOW64\d2d1.dll
2016-05-11 12:55:09 ----A---- C:\WINDOWS\system32\generaltel.dll
2016-05-11 12:55:09 ----A---- C:\WINDOWS\system32\DeviceCensus.exe
2016-05-11 12:55:09 ----A---- C:\WINDOWS\system32\appraiser.dll
2016-05-11 12:55:08 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2016-05-11 12:55:08 ----A---- C:\WINDOWS\SYSWOW64\explorer.exe
2016-05-11 12:55:08 ----A---- C:\WINDOWS\system32\twinui.appcore.dll
2016-05-11 12:55:07 ----A---- C:\WINDOWS\SYSWOW64\twinui.appcore.dll
2016-05-11 12:55:07 ----A---- C:\WINDOWS\system32\wuaueng.dll
2016-05-11 12:55:07 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2016-05-11 12:55:06 ----A---- C:\WINDOWS\system32\wcmsvc.dll
2016-05-11 12:55:05 ----A---- C:\WINDOWS\system32\win32kfull.sys
2016-05-11 12:55:05 ----A---- C:\WINDOWS\system32\dwmcore.dll
2016-05-11 12:55:05 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-05-11 12:55:04 ----A---- C:\WINDOWS\system32\MosStorage.dll
2016-05-11 12:55:04 ----A---- C:\WINDOWS\system32\moshostcore.dll
2016-05-11 12:55:04 ----A---- C:\WINDOWS\system32\moshost.dll
2016-05-11 12:55:04 ----A---- C:\WINDOWS\system32\mapsupdatetask.dll
2016-05-11 12:55:04 ----A---- C:\WINDOWS\system32\MapsCSP.dll
2016-05-11 12:55:04 ----A---- C:\WINDOWS\system32\MapsBtSvc.dll
2016-05-11 12:55:03 ----A---- C:\WINDOWS\system32\SettingSyncCore.dll
2016-05-11 12:55:03 ----A---- C:\WINDOWS\system32\iertutil.dll
2016-05-11 12:55:03 ----A---- C:\WINDOWS\system32\CompatTelRunner.exe
2016-05-11 12:55:03 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-05-11 12:55:03 ----A---- C:\WINDOWS\system32\aeinv.dll
2016-05-11 12:55:02 ----A---- C:\WINDOWS\system32\wifinetworkmanager.dll
2016-05-11 12:55:02 ----A---- C:\WINDOWS\system32\TokenBroker.dll
2016-05-11 12:55:01 ----A---- C:\WINDOWS\SYSWOW64\TokenBroker.dll
2016-05-11 12:55:01 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncCore.dll
2016-05-11 12:55:01 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2016-05-11 12:55:01 ----A---- C:\WINDOWS\system32\NetworkMobileSettings.dll
2016-05-11 12:55:00 ----A---- C:\WINDOWS\system32\urlmon.dll
2016-05-11 12:55:00 ----A---- C:\WINDOWS\system32\KernelBase.dll
2016-05-11 12:55:00 ----A---- C:\WINDOWS\system32\dxgi.dll
2016-05-11 12:55:00 ----A---- C:\WINDOWS\system32\devinv.dll
2016-05-11 12:54:59 ----A---- C:\WINDOWS\SYSWOW64\dxgi.dll
2016-05-11 12:54:59 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2016-05-11 12:54:59 ----A---- C:\WINDOWS\system32\Windows.UI.dll
2016-05-11 12:54:59 ----A---- C:\WINDOWS\system32\mfplat.dll
2016-05-11 12:54:59 ----A---- C:\WINDOWS\system32\LogonController.dll
2016-05-11 12:54:58 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2016-05-11 12:54:58 ----A---- C:\WINDOWS\SYSWOW64\mfplat.dll
2016-05-11 12:54:58 ----A---- C:\WINDOWS\system32\winlogon.exe
2016-05-11 12:54:58 ----A---- C:\WINDOWS\system32\MPSSVC.dll
2016-05-11 12:54:58 ----A---- C:\WINDOWS\system32\MFCaptureEngine.dll
2016-05-11 12:54:57 ----A---- C:\WINDOWS\SYSWOW64\MFCaptureEngine.dll
2016-05-11 12:54:57 ----A---- C:\WINDOWS\SYSWOW64\LogonController.dll
2016-05-11 12:54:57 ----A---- C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-05-11 12:54:57 ----A---- C:\WINDOWS\system32\win32kbase.sys
2016-05-11 12:54:57 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2016-05-11 12:54:57 ----A---- C:\WINDOWS\system32\AzureSettingSyncProvider.dll
2016-05-11 12:54:56 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.dll
2016-05-11 12:54:56 ----A---- C:\WINDOWS\SYSWOW64\gdi32.dll
2016-05-11 12:54:56 ----A---- C:\WINDOWS\system32\vbscript.dll
2016-05-11 12:54:56 ----A---- C:\WINDOWS\system32\SettingSync.dll
2016-05-11 12:54:56 ----A---- C:\WINDOWS\system32\LockAppHost.exe
2016-05-11 12:54:56 ----A---- C:\WINDOWS\system32\invagent.dll
2016-05-11 12:54:56 ----A---- C:\WINDOWS\system32\CoreMessaging.dll
2016-05-11 12:54:55 ----A---- C:\WINDOWS\SYSWOW64\wuapi.dll
2016-05-11 12:54:55 ----A---- C:\WINDOWS\SYSWOW64\jscript.dll
2016-05-11 12:54:55 ----A---- C:\WINDOWS\system32\wwansvc.dll
2016-05-11 12:54:55 ----A---- C:\WINDOWS\system32\RDXService.dll
2016-05-11 12:54:55 ----A---- C:\WINDOWS\system32\NetSetupShim.dll
2016-05-11 12:54:55 ----A---- C:\WINDOWS\system32\jscript.dll
2016-05-11 12:54:55 ----A---- C:\WINDOWS\system32\ieproxy.dll
2016-05-11 12:54:54 ----A---- C:\WINDOWS\SYSWOW64\NetSetupShim.dll
2016-05-11 12:54:54 ----A---- C:\WINDOWS\SYSWOW64\LockAppHost.exe
2016-05-11 12:54:54 ----A---- C:\WINDOWS\system32\wuapi.dll
2016-05-11 12:54:54 ----A---- C:\WINDOWS\system32\wifitask.exe
2016-05-11 12:54:53 ----A---- C:\WINDOWS\system32\tileobjserver.dll
2016-05-11 12:54:53 ----A---- C:\WINDOWS\system32\RDXTaskFactory.dll
2016-05-11 12:54:53 ----A---- C:\WINDOWS\system32\drivers\USBHUB3.SYS
2016-05-11 12:54:52 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2016-05-11 12:54:52 ----A---- C:\WINDOWS\system32\user32.dll
2016-05-11 12:54:52 ----A---- C:\WINDOWS\system32\SHCore.dll
2016-05-11 12:54:52 ----A---- C:\WINDOWS\system32\gdi32.dll
2016-05-11 12:54:52 ----A---- C:\WINDOWS\system32\crypt32.dll
2016-05-11 12:54:51 ----A---- C:\WINDOWS\SYSWOW64\schannel.dll
2016-05-11 12:54:51 ----A---- C:\WINDOWS\SYSWOW64\SettingSync.dll
2016-05-11 12:54:51 ----A---- C:\WINDOWS\system32\WindowsCodecs.dll
2016-05-11 12:54:51 ----A---- C:\WINDOWS\system32\schannel.dll
2016-05-11 12:54:51 ----A---- C:\WINDOWS\system32\provhandlers.dll
2016-05-11 12:54:51 ----A---- C:\WINDOWS\system32\provengine.dll
2016-05-11 12:54:51 ----A---- C:\WINDOWS\system32\aepic.dll
2016-05-11 12:54:51 ----A---- C:\WINDOWS\system32\ActivationManager.dll
2016-05-11 12:54:50 ----A---- C:\WINDOWS\SYSWOW64\crypt32.dll
2016-05-11 12:54:50 ----A---- C:\WINDOWS\SYSWOW64\AppxAllUserStore.dll
2016-05-11 12:54:50 ----A---- C:\WINDOWS\system32\wcmcsp.dll
2016-05-11 12:54:50 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2016-05-11 12:54:50 ----A---- C:\WINDOWS\system32\AppxAllUserStore.dll
2016-05-11 12:54:49 ----A---- C:\WINDOWS\SYSWOW64\SHCore.dll
2016-05-11 12:54:49 ----A---- C:\WINDOWS\SYSWOW64\ieproxy.dll
2016-05-11 12:54:49 ----A---- C:\WINDOWS\system32\drivers\sdport.sys
2016-05-11 12:54:49 ----A---- C:\WINDOWS\system32\drivers\pci.sys
2016-05-11 12:54:49 ----A---- C:\WINDOWS\system32\DataSenseHandlers.dll
2016-05-11 12:54:48 ----A---- C:\WINDOWS\SYSWOW64\WindowsCodecs.dll
2016-05-11 12:54:48 ----A---- C:\WINDOWS\SYSWOW64\AzureSettingSyncProvider.dll
2016-05-11 12:54:48 ----A---- C:\WINDOWS\system32\SharedStartModel.dll
2016-05-11 12:54:48 ----A---- C:\WINDOWS\system32\shacct.dll
2016-05-11 12:54:48 ----A---- C:\WINDOWS\system32\rpcrt4.dll
2016-05-11 12:54:48 ----A---- C:\WINDOWS\system32\d3d10level9.dll
2016-05-11 12:54:47 ----A---- C:\WINDOWS\SYSWOW64\d3d10level9.dll
2016-05-11 12:54:47 ----A---- C:\WINDOWS\SYSWOW64\AppXDeploymentClient.dll
2016-05-11 12:54:47 ----A---- C:\WINDOWS\system32\StorSvc.dll
2016-05-11 12:54:47 ----A---- C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll
2016-05-11 12:54:47 ----A---- C:\WINDOWS\system32\NgcCtnr.dll
2016-05-11 12:54:47 ----A---- C:\WINDOWS\system32\actxprxy.dll
2016-05-11 12:54:46 ----A---- C:\WINDOWS\SYSWOW64\shacct.dll
2016-05-11 12:54:46 ----A---- C:\WINDOWS\system32\wlanapi.dll
2016-05-11 12:54:46 ----A---- C:\WINDOWS\system32\wininit.exe
2016-05-11 12:54:46 ----A---- C:\WINDOWS\system32\samsrv.dll
2016-05-11 12:54:46 ----A---- C:\WINDOWS\system32\MDMAppInstaller.exe
2016-05-11 12:54:45 ----A---- C:\WINDOWS\SYSWOW64\user32.dll
2016-05-11 12:54:45 ----A---- C:\WINDOWS\SYSWOW64\rpcrt4.dll
2016-05-11 12:54:45 ----A---- C:\WINDOWS\system32\SubscriptionMgr.dll
2016-05-11 12:54:45 ----A---- C:\WINDOWS\system32\ngcsvc.dll
2016-05-11 12:54:45 ----A---- C:\WINDOWS\system32\MosHostClient.dll
2016-05-11 12:54:45 ----A---- C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll
2016-05-11 12:54:45 ----A---- C:\WINDOWS\system32\directmanipulation.dll
2016-05-11 12:54:45 ----A---- C:\WINDOWS\system32\acmigration.dll
2016-05-11 12:54:44 ----A---- C:\WINDOWS\SYSWOW64\wlanapi.dll
2016-05-11 12:54:44 ----A---- C:\WINDOWS\SYSWOW64\directmanipulation.dll
2016-05-11 12:54:44 ----A---- C:\WINDOWS\system32\SettingSyncHost.exe
2016-05-11 12:54:44 ----A---- C:\WINDOWS\system32\NgcCtnrSvc.dll
2016-05-11 12:54:44 ----A---- C:\WINDOWS\system32\ngccredprov.dll
2016-05-11 12:54:43 ----A---- C:\WINDOWS\SYSWOW64\OneDriveSettingSyncProvider.dll
2016-05-11 12:54:43 ----A---- C:\WINDOWS\SYSWOW64\MosHostClient.dll
2016-05-11 12:54:43 ----A---- C:\WINDOWS\SYSWOW64\CoreMessaging.dll
2016-05-11 12:54:43 ----A---- C:\WINDOWS\system32\PhoneProviders.dll
2016-05-11 12:54:43 ----A---- C:\WINDOWS\system32\ngcpopkeysrv.dll
2016-05-11 12:54:43 ----A---- C:\WINDOWS\system32\CloudDomainJoinDataModelServer.dll
2016-05-11 12:54:42 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncHost.exe
2016-05-11 12:54:42 ----A---- C:\WINDOWS\system32\rsaenh.dll
2016-05-11 12:54:41 ----A---- C:\WINDOWS\SYSWOW64\rsaenh.dll
2016-05-11 12:54:41 ----A---- C:\WINDOWS\system32\VEDataLayerHelpers.dll
2016-05-11 12:54:41 ----A---- C:\WINDOWS\system32\drivers\fvevol.sys
2016-05-11 12:54:41 ----A---- C:\WINDOWS\system32\drivers\fastfat.sys
2016-05-11 12:54:40 ----A---- C:\WINDOWS\system32\wpdbusenum.dll
2016-05-11 12:54:40 ----A---- C:\WINDOWS\system32\ListSvc.dll
2016-05-11 12:54:40 ----A---- C:\WINDOWS\system32\dwminit.dll
2016-05-11 12:54:40 ----A---- C:\WINDOWS\system32\drivers\hidclass.sys
2016-05-11 12:54:40 ----A---- C:\WINDOWS\system32\BrowserSettingSync.dll
2016-05-11 12:54:39 ----A---- C:\WINDOWS\SYSWOW64\cryptngc.dll
2016-05-11 12:54:39 ----A---- C:\WINDOWS\system32\wups.dll
2016-05-11 12:54:39 ----A---- C:\WINDOWS\system32\wuauclt.exe
2016-05-11 12:54:39 ----A---- C:\WINDOWS\system32\NetSetupEngine.dll
2016-05-11 12:54:39 ----A---- C:\WINDOWS\system32\drivers\ufxsynopsys.sys
2016-05-11 12:54:39 ----A---- C:\WINDOWS\system32\drivers\UcmCx.sys
2016-05-11 12:54:38 ----A---- C:\WINDOWS\SYSWOW64\VEDataLayerHelpers.dll
2016-05-11 12:54:38 ----A---- C:\WINDOWS\SYSWOW64\NetSetupApi.dll
2016-05-11 12:54:38 ----A---- C:\WINDOWS\system32\provisioningcsp.dll
2016-05-11 12:54:38 ----A---- C:\WINDOWS\system32\hmkd.dll
2016-05-11 12:54:38 ----A---- C:\WINDOWS\system32\drivers\pdc.sys
2016-05-11 12:54:38 ----A---- C:\WINDOWS\system32\drivers\filecrypt.sys
2016-05-11 12:54:37 ----A---- C:\WINDOWS\SYSWOW64\NetSetupEngine.dll
2016-05-11 12:54:37 ----A---- C:\WINDOWS\SYSWOW64\hmkd.dll
2016-05-11 12:54:37 ----A---- C:\WINDOWS\SYSWOW64\BluetoothApis.dll
2016-05-11 12:54:37 ----A---- C:\WINDOWS\system32\NetSetupApi.dll
2016-05-11 12:54:37 ----A---- C:\WINDOWS\system32\drivers\usbser.sys
2016-05-11 12:54:37 ----A---- C:\WINDOWS\system32\cryptngc.dll
2016-05-11 12:54:37 ----A---- C:\WINDOWS\system32\BluetoothApis.dll
2016-05-11 12:54:36 ----A---- C:\WINDOWS\SYSWOW64\BrowserSettingSync.dll
2016-05-11 12:54:36 ----A---- C:\WINDOWS\SYSWOW64\actxprxy.dll
2016-05-11 12:54:36 ----A---- C:\WINDOWS\system32\updatepolicy.dll
2016-05-11 12:54:35 ----A---- C:\WINDOWS\SYSWOW64\wups.dll
2016-05-11 12:54:35 ----A---- C:\WINDOWS\SYSWOW64\updatepolicy.dll
2016-05-11 12:54:35 ----A---- C:\WINDOWS\SYSWOW64\ByteCodeGenerator.exe
2016-05-11 12:54:35 ----A---- C:\WINDOWS\system32\AppXDeploymentClient.dll
2016-05-11 12:54:33 ----A---- C:\WINDOWS\system32\VEEventDispatcher.dll
2016-05-11 12:54:33 ----A---- C:\WINDOWS\system32\Chakradiag.dll
2016-05-11 12:54:33 ----A---- C:\WINDOWS\system32\ByteCodeGenerator.exe
2016-05-11 12:54:32 ----A---- C:\WINDOWS\SYSWOW64\wlansec.dll
2016-05-11 12:54:32 ----A---- C:\WINDOWS\SYSWOW64\wlanmsm.dll
2016-05-11 12:54:32 ----A---- C:\WINDOWS\SYSWOW64\wfdprov.dll
2016-05-11 12:54:32 ----A---- C:\WINDOWS\SYSWOW64\VEEventDispatcher.dll
2016-05-11 12:54:32 ----A---- C:\WINDOWS\system32\VEStoreEventHandlers.dll
2016-05-11 12:54:32 ----A---- C:\WINDOWS\system32\bcastdvr.exe
2016-05-11 12:54:31 ----A---- C:\WINDOWS\SYSWOW64\wshbth.dll
2016-05-11 12:54:31 ----A---- C:\WINDOWS\system32\wshbth.dll
2016-05-11 12:54:31 ----A---- C:\WINDOWS\system32\wificonnapi.dll
2016-05-11 12:54:31 ----A---- C:\WINDOWS\system32\NFCProvisioningPlugin.dll
2016-05-11 12:54:30 ----A---- C:\WINDOWS\system32\NetSetupSvc.dll
2016-05-11 12:54:30 ----A---- C:\WINDOWS\system32\AppCapture.dll
2016-05-09 07:05:58 ----A---- C:\WINDOWS\system32\amdicdxx.dat
2016-05-06 22:45:36 ----A---- C:\WINDOWS\system32\ativvaxy_el_nd.dat

======List of files/folders modified in the last 1 month======

2040-02-25 18:39:13 ----D---- C:\Users\Pepík\AppData\Roaming\Steinberg
2040-02-25 18:38:45 ----D---- C:\ProgramData\Steinberg
2040-02-25 18:38:27 ----D---- C:\ProgramData\eLicenser
2040-02-25 18:38:14 ----D---- C:\Program Files (x86)\eLicenser
2016-06-03 15:18:11 ----RD---- C:\Program Files
2016-06-03 15:18:05 ----D---- C:\WINDOWS\Temp
2016-06-03 15:15:15 ----D---- C:\WINDOWS\Prefetch
2016-06-03 15:15:02 ----D---- C:\Users\Pepík\AppData\Roaming\Skype
2016-06-03 15:11:00 ----D---- C:\WINDOWS\system32\sru
2016-06-03 15:10:09 ----D---- C:\WINDOWS\INF
2016-06-03 14:36:24 ----D---- C:\WINDOWS\AppReadiness
2016-06-03 14:19:14 ----D---- C:\WINDOWS\Microsoft.NET
2016-06-03 14:12:56 ----D---- C:\WINDOWS\System32
2016-06-03 14:12:56 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2016-06-02 21:14:42 ----D---- C:\Users\Pepík\AppData\Roaming\Audacity
2016-06-02 17:44:42 ----RSD---- C:\WINDOWS\Fonts
2016-06-02 17:39:06 ----HD---- C:\ProgramData
2016-06-02 15:54:00 ----HD---- C:\Program Files\WindowsApps
2016-06-01 20:28:45 ----D---- C:\Users\Pepík\AppData\Roaming\vlc
2016-06-01 18:57:07 ----D---- C:\Program Files\Common Files
2016-05-29 18:52:05 ----D---- C:\Users\Pepík\AppData\Roaming\.minecraft
2016-05-28 15:26:14 ----SHDC---- C:\WINDOWS\Installer
2016-05-27 13:59:53 ----D---- C:\WINDOWS\LiveKernelReports
2016-05-27 13:45:24 ----D---- C:\WINDOWS\system32\drivers
2016-05-26 20:40:09 ----D---- C:\WINDOWS\system32\CatRoot
2016-05-26 16:33:46 ----SHD---- C:\Config.Msi
2016-05-26 16:33:42 ----RD---- C:\Program Files (x86)
2016-05-26 16:32:56 ----D---- C:\WINDOWS\system32\DriverStore
2016-05-26 16:32:48 ----D---- C:\WINDOWS\SysWOW64
2016-05-26 16:32:34 ----D---- C:\Windows
2016-05-26 16:32:08 ----AD---- C:\Program Files\AMD
2016-05-26 16:30:59 ----D---- C:\AMD
2016-05-24 17:25:09 ----D---- C:\Users\Pepík\AppData\Roaming\TeamViewer
2016-05-23 16:08:33 ----D---- C:\WINDOWS\system32\config
2016-05-22 13:34:23 ----D---- C:\WINDOWS\WinSxS
2016-05-22 13:33:39 ----D---- C:\ProgramData\Package Cache
2016-05-20 23:47:38 ----A---- C:\WINDOWS\SYSWOW64\atiuxpag.dll
2016-05-20 23:47:38 ----A---- C:\WINDOWS\system32\atiuxp64.dll
2016-05-20 23:47:32 ----A---- C:\WINDOWS\SYSWOW64\atiu9pag.dll
2016-05-20 23:47:30 ----A---- C:\WINDOWS\system32\aticfx64.dll
2016-05-20 23:47:26 ----A---- C:\WINDOWS\SYSWOW64\aticfx32.dll
2016-05-20 23:47:20 ----A---- C:\WINDOWS\system32\atidxx64.dll
2016-05-20 23:47:14 ----A---- C:\WINDOWS\SYSWOW64\atidxx32.dll
2016-05-20 23:47:06 ----A---- C:\WINDOWS\SYSWOW64\atiumdva.dll
2016-05-20 23:46:58 ----A---- C:\WINDOWS\SYSWOW64\atiumdag.dll
2016-05-20 23:46:50 ----A---- C:\WINDOWS\system32\atiumd6a.dll
2016-05-20 22:57:56 ----A---- C:\WINDOWS\system32\atiadlxx.dll
2016-05-20 14:27:54 ----D---- C:\WINDOWS\system32\Tasks
2016-05-20 14:23:00 ----D---- C:\WINDOWS\system32\WDI
2016-05-19 13:56:45 ----D---- C:\WINDOWS\system32\NDF
2016-05-15 20:39:34 ----SHD---- C:\$Recycle.Bin
2016-05-15 20:38:44 ----RD---- C:\Users
2016-05-15 16:46:16 ----RSD---- C:\WINDOWS\assembly
2016-05-15 16:45:51 ----D---- C:\WINDOWS\CbsTemp
2016-05-15 16:45:42 ----D---- C:\WINDOWS\system32\catroot2
2016-05-14 13:47:55 ----D---- C:\WINDOWS\rescache
2016-05-11 21:57:14 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2016-05-11 21:28:51 ----D---- C:\WINDOWS\SYSWOW64\migration
2016-05-11 21:28:51 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2016-05-11 21:28:48 ----D---- C:\WINDOWS\system32\oobe
2016-05-11 21:28:48 ----D---- C:\WINDOWS\system32\migration
2016-05-11 21:28:48 ----D---- C:\WINDOWS\system32\drivers\UMDF
2016-05-11 21:28:48 ----D---- C:\WINDOWS\system32\cs-CZ
2016-05-11 21:28:48 ----D---- C:\WINDOWS\system32\appraiser
2016-05-11 21:28:45 ----D---- C:\WINDOWS\Provisioning
2016-05-11 21:28:43 ----D---- C:\WINDOWS\bcastdvr
2016-05-11 21:28:43 ----D---- C:\WINDOWS\AppPatch
2016-05-11 21:28:43 ----D---- C:\Program Files\Windows Journal
2016-05-11 21:28:43 ----D---- C:\Program Files\Internet Explorer
2016-05-11 21:28:43 ----D---- C:\Program Files (x86)\Internet Explorer
2016-05-11 18:06:23 ----D---- C:\WINDOWS\system32\MRT
2016-05-11 18:01:56 ----A---- C:\WINDOWS\system32\MRT.exe
2016-05-11 13:21:18 ----D---- C:\WINDOWS\Tasks
2016-05-09 11:26:16 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2016-05-06 14:08:41 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2016-05-04 16:52:40 ----D---- C:\Program Files\TruckersMP

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 epfwwfp;epfwwfp; C:\WINDOWS\system32\DRIVERS\epfwwfp.sys [2015-11-20 69840]
R0 PxHlpa64;PxHlpa64; C:\WINDOWS\System32\Drivers\PxHlpa64.sys [2012-06-22 56336]
R1 eamonm;eamonm; C:\WINDOWS\system32\DRIVERS\eamonm.sys [2015-11-20 263528]
R1 ehdrv;ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [2015-11-20 186784]
R1 epfw;epfw; C:\WINDOWS\system32\DRIVERS\epfw.sys [2015-11-20 206312]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2016-04-23 87552]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2015-10-30 8192]
R1 SCDEmu;SCDEmu; C:\WINDOWS\system32\drivers\SCDEmu.sys [2016-02-10 137280]
R2 AODDriver4.2.0;AODDriver4.2.0; \??\C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [2014-02-11 59616]
R2 ekbdflt;ekbdflt; C:\WINDOWS\system32\DRIVERS\ekbdflt.sys [2015-11-20 142976]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2015-10-30 47616]
R2 speedfan;speedfan; \??\C:\WINDOWS\SysWOW64\speedfan.sys [2012-12-29 28664]
R2 storqosflt;@%SystemRoot%\System32\drivers\storqosflt.sys,-101; C:\WINDOWS\system32\drivers\storqosflt.sys [2015-10-30 78848]
R3 amdkmdag;amdkmdag; C:\WINDOWS\system32\DRIVERS\atikmdag.sys [2016-05-20 27015680]
R3 amdkmdap;amdkmdap; C:\WINDOWS\system32\DRIVERS\atikmpag.sys [2016-05-20 498176]
R3 AtiHDAudioService;@oem85.inf,%ATIHdAudioDriver.SvcDesc%;AMD Function Driver for HD Audio Service; C:\WINDOWS\system32\drivers\AtihdWT6.sys [2016-05-20 101376]
R3 dtlitescsibus;@oem53.inf,%DTLITESCSIBUS.DeviceDesc%;DAEMON Tools Lite Virtual SCSI Bus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [2015-03-24 30352]
R3 dtliteusbbus;@oem55.inf,%DTLITEUSBBUS.DeviceDesc%;DAEMON Tools Lite Virtual USB Bus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [2016-01-13 46392]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2015-03-14 4012632]
R3 NTIOLib_MSISMB_CC;NTIOLib_MSISMB_CC; \??\E:\Program Files (x86)\MSI\ControlCenter\Sleep\NTIOLib_X64.sys [2012-11-09 13368]
R3 rt640x64;@rt640x64.inf,%rt640.Service.DispName%;Realtek RT640 NT Driver; C:\WINDOWS\System32\drivers\rt640x64.sys [2015-10-30 589824]
S0 amdkmafd;@oem69.inf,%AMDKMAFD_svcdesc%;AMD Audio Bus Lower Filter; C:\WINDOWS\System32\drivers\amdkmafd.sys [2016-03-21 23240]
S0 eelam;eelam; C:\WINDOWS\system32\DRIVERS\eelam.sys [2015-11-20 14976]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2015-10-30 104800]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2015-10-30 99168]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2015-10-30 58208]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2015-10-30 58720]
S0 storufs;@storufs.inf,%UfsServiceDesc%;Microsoft Universal Flash Storage (UFS) Driver; C:\WINDOWS\System32\drivers\storufs.sys [2015-10-30 34144]
S3 bcmfn;@bcmfn.inf,%bcmfn.SVCDESC%;bcmfn Service; C:\WINDOWS\System32\drivers\bcmfn.sys [2015-10-30 9728]
S3 BCMH43XX;Broadcom 802.11 USB Network Adapter Driver; C:\WINDOWS\system32\DRIVERS\bcmwlhigh664.sys [2010-10-13 1244224]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2015-10-30 37376]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2016-01-14 117248]
S3 esihdrv;esihdrv; \??\F:\Temp\esihdrv.sys [2016-01-29 150616]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2015-10-30 20992]
S3 ggflt;SOMC USB Flash Driver Filter; C:\WINDOWS\System32\drivers\ggflt.sys [2015-05-23 16088]
S3 ggsomc;SOMC USB Flash Driver; C:\WINDOWS\System32\drivers\ggsomc.sys [2015-05-23 30424]
S3 Hamachi;@oem75.inf,%Hamachi.Service.DispName%;LogMeIn Hamachi Virtual Miniport); C:\WINDOWS\system32\DRIVERS\Hamdrv.sys [2015-11-12 45680]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2015-10-30 50016]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2015-10-30 81408]
S3 iaLPSS2i_I2C;@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2015-10-30 165888]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2015-10-30 424800]
S3 IoQos;@%SystemRoot%\system32\drivers\ioqos.sys,-100; C:\WINDOWS\system32\drivers\ioqos.sys [2015-10-30 26624]
S3 LGBusEnum;Logitech GamePanel Virtual Bus Enumerator Driver; C:\WINDOWS\system32\drivers\LGBusEnum.sys [2009-11-24 22408]
S3 LGVirHid;Logitech Gamepanel Virtual HID Device Driver; C:\WINDOWS\system32\drivers\LGVirHid.sys [2009-11-24 16008]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2015-10-30 705376]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2015-10-30 76128]
S3 NTIOLib_1_0_2;NTIOLib_1_0_2; \??\E:\Program Files (x86)\MSI\ControlCenter\NTIOLib_X64.sys [2012-02-14 13328]
S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2015-10-30 930656]
S3 RTCore64;RTCore64; \??\E:\Program Files (x86)\MSI Afterburner\RTCore64.sys [2013-03-11 13368]
S3 UcmCx0101;USB Connector Manager KMDF Class Extension; C:\WINDOWS\System32\Drivers\UcmCx.sys [2016-04-23 63488]
S3 UcmUcsi;@UcmUcsi.inf,%UcmUcsi.ServiceName%;USB Connector Manager UCSI Client; C:\WINDOWS\System32\drivers\UcmUcsi.sys [2015-10-30 46592]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2016-04-22 82128]
R2 AMD External Events Utility;AMD External Events Utility; C:\WINDOWS\system32\atiesrxx.exe [2016-05-20 306688]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-31 462184]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [2015-11-20 2522616]
R2 GamingApp_Service;GamingApp_Service; C:\Program Files (x86)\MSI\MSI Gaming APP\GamingApp_Service.exe [2015-11-04 36008]
R2 MSISleep;MSISleep; E:\Program Files (x86)\MSI\ControlCenter\Sleep\MSISleepService.exe [2013-04-29 282624]
R2 OneSyncSvc_5df2f;Hostitel synchronizace_5df2f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 PnkBstrA;PnkBstrA; C:\WINDOWS\system32\PnkBstrA.exe [2015-03-16 76152]
R2 PSI_SVC_2_x64;Corel License Validation Service V2 x64, Powered by arvato; C:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe [2014-04-30 337776]
R2 RichVideo;Cyberlink RichVideo Service(CRVS); C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [2013-03-06 253776]
R2 TeamViewer;TeamViewer 11; E:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [2016-05-12 7032080]
R2 tiledatamodelsvc;@%SystemRoot%\system32\tileobjserver.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 TomTomHOMEService;TomTomHOMEService; C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe [2015-04-30 93040]
R3 Disc Soft Lite Bus Service;Disc Soft Lite Bus Service; F:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe [2015-11-30 1368408]
R3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 StateRepository;@%SystemRoot%\system32\windows.staterepository.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-03-31 107848]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_517e0;Hostitel synchronizace_517e0; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_56998;Hostitel synchronizace_56998; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_5fef7;Hostitel synchronizace_5fef7; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_73a39;Hostitel synchronizace_73a39; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_7641de;Hostitel synchronizace_7641de; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_863cf;Hostitel synchronizace_863cf; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_9bfd2;Hostitel synchronizace_9bfd2; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_bcc8d;Hostitel synchronizace_bcc8d; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2016-01-29 327296]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-05-13 269504]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2015-10-30 31744]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 EasyAntiCheat;EasyAntiCheat; C:\WINDOWS\syswow64\EasyAntiCheat.exe [2015-06-14 238376]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2015-10-23 43696]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-03-31 107848]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_517e0;Služba zasílání zpráv_517e0; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_56998;Služba zasílání zpráv_56998; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_5df2f;Služba zasílání zpráv_5df2f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_5fef7;Služba zasílání zpráv_5fef7; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_7641de;Služba zasílání zpráv_7641de; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_863cf;Služba zasílání zpráv_863cf; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_9bfd2;Služba zasílání zpráv_9bfd2; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_bcc8d;Služba zasílání zpráv_bcc8d; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2016-05-05 146888]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 Origin Client Service;Origin Client Service; E:\Program Files (x86)\Origin\OriginClientService.exe [2016-04-18 2119688]
S3 ose64;Office 64 Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2015-07-31 242864]
S3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_517e0;Data kontaktů_517e0; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_56998;Data kontaktů_56998; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_5df2f;Data kontaktů_5df2f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_5fef7;Data kontaktů_5fef7; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_7641de;Data kontaktů_7641de; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_863cf;Data kontaktů_863cf; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_9bfd2;Data kontaktů_9bfd2; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_bcc8d;Data kontaktů_bcc8d; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2015-10-30 1297408]
S3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 Sony PC Companion;Sony PC Companion; C:\Program Files (x86)\Sony\Sony PC Companion\PCCService.exe [2015-06-10 155520]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2016-05-28 1518672]
S3 TieringEngineService;@%SystemRoot%\system32\TieringEngineService.exe,-702; C:\WINDOWS\system32\TieringEngineService.exe [2015-10-30 290304]
S3 tzautoupdate;@%SystemRoot%\system32\tzautoupdate.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S4 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]

-----------------EOF-----------------
Obrázek
Od 5.3.15 mám Win 8.1 64bit :)
A od 15.1.16 mám Win 10 64bit :)

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118254
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Kontrola PC

#2 Příspěvek od Rudy »

Zdravím!
Udělejte kompletní sken MBAM: http://www.malwarebytes.org/mbam.php a dejte log. Předem nic nemažte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

pospa.josifek
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 173
Registrován: 24 dub 2012 18:35

Re: Kontrola PC

#3 Příspěvek od pospa.josifek »

Díky za odpověď. Udělal jsem to správně? Jediná změna - Probudil se mi antivirus, i když Firewall, IDS, a ochrana proti botnetu u Esetu pořád nejde. Nevadí, alespoň něco. :)

Malwarebytes Anti-Malware
http://www.malwarebytes.org

Datum skenování: 3. 6. 2016
Čas skenování: 19:23
Protokol:
Správce: Ano

Verze: 2.2.1.1043
Databáze malwaru: v2016.06.03.04
Databáze rootkitů: v2016.05.27.01
Licence: Bezplatná verze
Ochrana proti malwaru: Vypnuto
Ochrana proti škodlivým webovým stránkám: Vypnuto
Ochrana programu: Vypnuto

OS: Windows 10
CPU: x64
Souborový systém: NTFS
Uživatel: Pepík

Typ skenu: Sken hrozeb
Výsledek: Dokončeno
Prohledaných objektů: 428346
Uplynulý čas: 11 min, 19 sek

Paměť: Zapnuto
Po spuštění: Zapnuto
Souborový systém: Zapnuto
Archivy: Zapnuto
Rootkity: Vypnuto
Heuristika: Zapnuto
PUP: Zapnuto
PUM: Zapnuto

Procesy: 0
(Nenalezeny žádné škodlivé položky)

Moduly: 0
(Nenalezeny žádné škodlivé položky)

Klíče registru: 0
(Nenalezeny žádné škodlivé položky)

Hodnoty registru: 0
(Nenalezeny žádné škodlivé položky)

Data registru: 0
(Nenalezeny žádné škodlivé položky)

Složky: 0
(Nenalezeny žádné škodlivé položky)

Soubory: 2
PUP.Optional.BundleInstaller, C:\Users\Pepík\AppData\Local\Temp\binsis142.xml, , [434d4aaecccd8aac7b3e0bdad52ee020],
PUP.Optional.BundleInstaller, C:\Users\Pepík\AppData\Local\Temp\binsischeck654.xml, , [e4acb2468b0e6dc9c7f3f1f45ba82bd5],

Fyzické sektory: 0
(Nenalezeny žádné škodlivé položky)


(end)
Obrázek
Od 5.3.15 mám Win 8.1 64bit :)
A od 15.1.16 mám Win 10 64bit :)

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118254
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Kontrola PC

#4 Příspěvek od Rudy »

Keylogger tam nebyl. Nálezy smažte a Eset zkuste přeinstalovat.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

pospa.josifek
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 173
Registrován: 24 dub 2012 18:35

Re: Kontrola PC

#5 Příspěvek od pospa.josifek »

To rád slyším! :) Pokud Eset přeinstaluju, neztratím licenci? Bojím se, že to pak nepůjde aktivovat... Mám takový pocit, že mi to nejde už od nainstalování. :?:
Obrázek
Od 5.3.15 mám Win 8.1 64bit :)
A od 15.1.16 mám Win 10 64bit :)

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118254
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Kontrola PC

#6 Příspěvek od Rudy »

Máte-li Eset legální, licence platí tak, jak je předplacena. Pokud vám v něm něco nefunguje, je to pro naše kolegy z Esetu: http://forum.viry.cz/viewforum.php?f=61 .
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

pospa.josifek
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 173
Registrován: 24 dub 2012 18:35

Re: Kontrola PC

#7 Příspěvek od pospa.josifek »

Dobře, nechám to radši tak :) Je v mém pc něco, co by jste např. po startu zakázal? Nemám v tom něco zbytečného, něco co mi počítač razantně zpomaluje?
Obrázek
Od 5.3.15 mám Win 8.1 64bit :)
A od 15.1.16 mám Win 10 64bit :)

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118254
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Kontrola PC

#8 Příspěvek od Rudy »

Na to není jednoduchá odpověď, záleží na tom, k čemu PC používáte. V zásadě lze v msconfig vypnout vše ne-microsoftí s vyjímkou ovladačů a bezpečnostních programů. Tím trochu PC zrychlíte a podstatně urychlíte start PC. Ovšem to, co msconfig vypnete, pak budete muset v případě použití spouštět ručně.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

pospa.josifek
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 173
Registrován: 24 dub 2012 18:35

Re: Kontrola PC

#9 Příspěvek od pospa.josifek »

Super. Díky za Váš čas! Můžete lock :)
Obrázek
Od 5.3.15 mám Win 8.1 64bit :)
A od 15.1.16 mám Win 10 64bit :)

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118254
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Kontrola PC

#10 Příspěvek od Rudy »

Rádo se stalo! :)
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Zamčeno