Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prosím o preventivku NTB

Patříte mezi Vzorné návštěvníky? Pak je tato sekce pro vás.

Moderátor: Moderátoři

Pravidla fóra
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
Odpovědět
Zpráva
Autor
Marduk
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 62
Registrován: 07 úno 2011 01:07

Prosím o preventivku NTB

#1 Příspěvek od Marduk »

Ahoj,

Prosím o konotrolu NTB. Dle otce je pomalý jak v Chrome(prohlížení stránek a nějaké ty flashové hry) tak v běžné práci.
Provedl sem již nějaké základní čištění pomocí CCleaneru a Mbamu přesto prosím o prověření logu RSIT.

Kód: Vybrat vše

Logfile of random's system information tool 1.10 (written by random/random)
Run by Petr Šimončík at 2017-08-27 14:39:17
Microsoft Windows 10 Home 
System drive C: has 810 GB (87%) free of 931 GB
Total RAM: 8084 MB (61% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 14:39:26, on 27.08.2017
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.15063.0000)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\TeamViewer\Version9\TeamViewer.exe
C:\Program Files (x86)\AVG\Framework\Common\avguix.exe
C:\Program Files (x86)\AVG\Antivirus\AVGUI.exe
C:\Program Files (x86)\Kerio\VPN Client\kvpncgui.exe
C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe
C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe
C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe
C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe
C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
C:\Program Files\trend micro\Petr Šimončík.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com?pc=HPNTDFJS
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = 
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = 
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,First Home Page = http://www.bing.com?pc=HPNTDFJS
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = 
F2 - REG:system.ini: UserInit=
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL
O2 - BHO: (no name) - {95B7759C-8C7F-4BF1-B163-73684A933233} - (no file)
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O2 - BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll
O4 - HKLM\..\Run: [RemoteControl10] "C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe"
O4 - HKLM\..\Run: [OV3_Monitor] "C:\Program Files (x86)\OLYMPUS\OLYMPUS Viewer 3\FirstStart.exe" /OS
O4 - HKLM\..\Run: [HPMessageService] C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe
O4 - HKLM\..\Run: [BCSSync] "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices
O4 - HKLM\..\Run: [Kerio VPN Client] "C:\Program Files (x86)\Kerio\VPN Client\kvpncgui.exe" /tray
O4 - HKLM\..\Run: [AvgUi] "C:\Program Files (x86)\AVG\Framework\Common\avguirna.exe" /lps=fmw
O4 - HKLM\..\Run: [TAG_Vipmobilniinternet_Launcher.exe] C:\Program Files (x86)\Vip mobilni internet\Vipmobilniinternet_Launcher.exe
O4 - HKCU\..\Run: [Power2GoExpress8] "C:\Program Files (x86)\CyberLink\Power2Go8\Power2GoExpress8.exe"
O4 - HKCU\..\Run: [OV3_Monitor] "C:\Program Files (x86)\OLYMPUS\OLYMPUS Viewer 3\OV3Monitor.exe"
O4 - HKCU\..\Run: [OneDrive] "C:\Users\Petr Šimončík\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\Run: [BingSvc] C:\Users\Petr Šimončík\AppData\Local\Microsoft\BingSvc\BingSvc.exe
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-21-2955557195-3576553637-343423790-1002\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'Petr VP')
O4 - HKUS\S-1-5-21-2955557195-3576553637-343423790-1002\..\RunOnce: [WAB Migrate] %ProgramFiles%\Windows Mail\wab.exe /Upgrade (User 'Petr VP')
O4 - Global Startup: kvpncgui.exe – zástupce.lnk = C:\Program Files (x86)\Kerio\VPN Client\kvpncgui.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\Program Files (x86)\Microsoft Office\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\Program Files (x86)\Microsoft Office\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\OFFICE11\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O17 - HKLM\System\CCS\Services\Tcpip\..\{d92e6cbe-f2b2-48d8-90b4-cb884f19a52e}: NameServer = 212.91.97.4,212.91.97.3
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Andrea RT Filters Service (AERTFilters) - Andrea Electronics Corporation - C:\Program Files\Realtek\Audio\HDA\AERTSr64.EXE
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\WINDOWS\system32\atiesrxx.exe (file missing)
O23 - Service: AVG Antivirus - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\Antivirus\AVGSvc.exe
O23 - Service: AVG Firewall Service (AVG Firewall) - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\Antivirus\afwServ.exe
O23 - Service: avgbIDSAgent - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\Antivirus\x64\aswidsagenta.exe
O23 - Service: AVG Service (avgsvc) - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: FortiClient SSLVPN (FortiSslvpnDaemon) - Fortinet Inc. - C:\WINDOWS\SysWOW64\FortiSSLVPNdaemon.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
O23 - Service: @oem7.inf,%hpservice_desc%;HP Service (hpsrv) - Unknown owner - C:\WINDOWS\system32\Hpservice.exe (file missing)
O23 - Service: HP Support Solutions Framework Service (HPSupportSolutionsFrameworkService) - HP Inc. - C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe
O23 - Service: HPWMISVC - Hewlett-Packard Development Company, L.P. - c:\Program Files (x86)\Hewlett-Packard\HP System Event\HPWMISVC.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\WINDOWS\system32\igfxCUIService.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) ME Service - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Kerio VPN Client Service (KVPNCSvc) - Kerio Technologies Inc. - C:\Program Files (x86)\Kerio\VPN Client\kvpncsvc.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Malwarebytes Service (MBAMService) - Malwarebytes - C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: Realtek Audio Service (RtkAudioService) - Realtek Semiconductor - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\SecurityHealthAgent.dll,-1002 (SecurityHealthService) - Unknown owner - C:\WINDOWS\system32\SecurityHealthService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spectrum.exe,-101 (spectrum) - Unknown owner - C:\WINDOWS\system32\spectrum.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: SynTPEnh Caller Service (SynTPEnhService) - Synaptics Incorporated - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
O23 - Service: Vip mobilni internet Service (TAG_Service) - Unknown owner - C:\Program Files (x86)\Vip mobilni internet\Vipmobilniinternet_Service.exe
O23 - Service: TeamViewer 9 (TeamViewer9) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 14095 bytes

======Listing Processes======








c:\windows\system32\svchost.exe -k dcomlaunch -s PlugPlay
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
"fontdrvhost.exe"
c:\windows\system32\svchost.exe -k rpcss
c:\windows\system32\svchost.exe -k dcomlaunch -s LSM
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -s NcbService
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -s hidserv
c:\windows\system32\svchost.exe -k netsvcs -s ProfSvc
c:\windows\system32\svchost.exe -k netsvcs -s Schedule
c:\windows\system32\svchost.exe -k localservicenetworkrestricted -s TimeBrokerSvc
c:\windows\system32\svchost.exe -k localservicenetworkrestricted -s EventLog
c:\windows\system32\svchost.exe -k netsvcs -s UserManager
c:\windows\system32\svchost.exe -k localservice -s nsi
c:\windows\system32\svchost.exe -k localservicenetworkrestricted -s Dhcp
C:\WINDOWS\system32\atiesrxx.exe
c:\windows\system32\svchost.exe -k networkservice -s NlaSvc
c:\windows\system32\svchost.exe -k netsvcs -s Themes
c:\windows\system32\svchost.exe -k localservice -s EventSystem
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
c:\windows\system32\svchost.exe -k netsvcs -s SENS
c:\windows\system32\svchost.exe -k localservice -s netprofm
C:\WINDOWS\system32\igfxCUIService.exe
c:\windows\system32\svchost.exe -k appmodel -s StateRepository
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -s AudioEndpointBuilder
c:\windows\system32\svchost.exe -k localservice -s FontCache
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
"C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe"
c:\windows\system32\svchost.exe -k networkservice -s Dnscache
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
c:\windows\system32\svchost.exe -k localservicenonetwork -s WwanSvc
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
c:\windows\system32\svchost.exe -k netsvcs -s ShellHWDetection
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -s DeviceAssociationService
dashost.exe {a251e450-ba56-4990-b596eec66697e6dc}
c:\windows\system32\svchost.exe -k networkservice -s LanmanWorkstation
c:\windows\system32\svchost.exe -k netsvcs -s IKEEXT
c:\windows\system32\svchost.exe -k networkservice -s CryptSvc
c:\windows\system32\svchost.exe -k apphost -s AppHostSvc
c:\windows\system32\svchost.exe -k localservicenonetwork -s DPS
c:\windows\system32\svchost.exe -k networkservicenetworkrestricted -s PolicyAgent
C:\WINDOWS\System32\svchost.exe -k utcsvc
c:\windows\system32\svchost.exe -k netsvcs -s CertPropSvc
"C:\Program Files\Realtek\Audio\HDA\AERTSr64.EXE"
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -s SysMain
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -s PcaSvc
c:\windows\system32\svchost.exe -k appmodel -s tiledatamodelsvc
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -s TrkWks
c:\windows\system32\svchost.exe -k netsvcs -s Winmgmt
c:\windows\system32\svchost.exe -k netsvcs -s WpnService
"C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe"
C:\WINDOWS\SysWOW64\FortiSSLVPNdaemon.exe
"C:\Program Files (x86)\Vip mobilni internet\Vipmobilniinternet_Service.exe"
"C:\Program Files (x86)\Kerio\VPN Client\kvpncsvc.exe"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"c:\Program Files (x86)\Hewlett-Packard\HP System Event\HPWMISVC.exe"
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"


"C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe"
c:\windows\system32\svchost.exe -k localservice -s WdiServiceHost

c:\windows\system32\svchost.exe -k localserviceandnoimpersonation -s SSDPSRV
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -s WdiSystemHost
c:\windows\system32\svchost.exe -k netsvcs -s iphlpsvc
c:\windows\system32\svchost.exe -k netsvcs -s LanmanServer
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -s Netman
c:\windows\system32\svchost.exe -k localservice -s SstpSvc
c:\windows\system32\svchost.exe -k networkservice -s TapiSrv
c:\windows\system32\svchost.exe -k netsvcs -s RasMan
c:\windows\system32\svchost.exe -k netsvcs -s Appinfo
"C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE"
c:\windows\system32\svchost.exe -k localservice -s CDPSvc
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -s SmsRouter
c:\windows\system32\svchost.exe -k netsvcs -s DoSvc
"C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe"
"C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
c:\windows\system32\svchost.exe -k netsvcs -s TokenBroker
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
c:\windows\system32\svchost.exe -k netsvcs -s lfsvc
C:\WINDOWS\system32\wbem\wmiprvse.exe
c:\windows\system32\svchost.exe -k localservicenetworkrestricted -s wscsvc
C:\WINDOWS\System32\svchost.exe -k netsvcs -s Browser
"C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe"
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -s StorSvc
c:\windows\system32\svchost.exe -k localservicenetworkrestricted -s RmSvc
c:\windows\system32\svchost.exe -k localservice -s LicenseManager
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -s DsSvc
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -s SensorService
C:\WINDOWS\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe"



C:\WINDOWS\system32\svchost.exe -k LocalService -s WinHttpAutoProxySvc

C:\WINDOWS\System32\WinLogon.exe -SpecialSession
"dwm.exe"
"fontdrvhost.exe"
atieclxx
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -s lmhosts
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /SRSPS
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Program Files (x86)\TeamViewer\Version9\TeamViewer.exe"
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE" 
sihost.exe
c:\windows\system32\svchost.exe -k unistacksvcgroup -s WpnUserService
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
igfxEM.exe 
igfxHK.exe 
igfxTray.exe 
C:\WINDOWS\Explorer.EXE
"C:\Program Files (x86)\TeamViewer\Version9\tv_w32.exe" --action hooks  --log C:\Program Files (x86)\TeamViewer\Version9\TeamViewer9_Logfile.log  
"C:\Program Files (x86)\TeamViewer\Version9\tv_x64.exe" --action hooks  --log C:\Program Files (x86)\TeamViewer\Version9\TeamViewer9_Logfile.log  
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.19.856.0_x64__kzf8qxf38zg5c\SkypeHost.exe" -ServerName:SkypeHost.ServerServer
C:\WINDOWS\system32\SettingSyncHost.exe -Embedding
"C:\Program Files\Windows Defender\MSASCuiL.exe" 
"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /ANDREA_BF_BYPASS
 /fmw.trayonly
AVGUI.exe /nogui
"C:\Program Files (x86)\Kerio\VPN Client\kvpncgui.exe" 
"C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe" 
"C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe"
"C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe" /byrunkey
c:\windows\system32\svchost.exe -k unistacksvcgroup
C:\Windows\System32\SystemSettingsBroker.exe -Embedding
C:\WINDOWS\system32\DllHost.exe /Processid:{973D20D7-562D-44B9-B70B-5A0F49CCDF3F}
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
C:\WINDOWS\system32\ApplicationFrameHost.exe -Embedding
"C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe"
"C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe" 
taskhostw.exe
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" 
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=crashpad-handler /prefetch:7 --monitor-self-annotation=ptype=crashpad-handler "--database=C:\Users\Petr Šimončík\AppData\Local\Google\Chrome\User Data\Crashpad" "--metrics-dir=C:\Users\Petr Šimončík\AppData\Local\Google\Chrome\User Data" --url=https://clients2.google.com/cr/report --annotation=channel= --annotation=plat=Win64 --annotation=prod=Chrome --annotation=ver=60.0.3112.101 --initial-client-data=0x300,0x2b0,0x2fc,0x304,0x308,0x7ff891a829c0,0x7ff891a829d8,0x7ff891a829e8
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=watcher --main-thread-id=13548 --on-initialized-event-handle=844 --parent-handle=800 /prefetch:6
C:\WINDOWS\system32\svchost.exe -k netsvcs -s gpsvc
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --field-trial-handle=1728,317747950344938371,9454013419955958456,131072 --disable-d3d11 --supports-dual-gpus=false --gpu-driver-bug-workarounds=7,10,17,20,21,24,28,43,77 --disable-gl-extensions="GL_KHR_blend_equation_advanced GL_KHR_blend_equation_advanced_coherent" --gpu-vendor-id=0x1002 --gpu-device-id=0x6660 --gpu-driver-vendor="Advanced Micro Devices, Inc." --gpu-driver-version=15.201.1101.0 --gpu-driver-date=8-6-2015 --gpu-secondary-vendor-ids=0x8086 --gpu-secondary-device-ids=0x0166 --service-request-channel-token=862D48D165B568F8A53C3E44A8B74321 --mojo-platform-channel-handle=1744 --ignored=" --type=renderer " /prefetch:2
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --field-trial-handle=1728,317747950344938371,9454013419955958456,131072 --service-pipe-token=2B536C6508FDC6AF563C310DF9E9C350 --lang=cs --extension-process --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --blink-settings=disallowFetchForDocWrittenScriptsInMainFrame=false,disallowFetchForDocWrittenScriptsInMainFrameOnSlowConnections=true --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-before-activation --content-image-texture-target=0,0,3553;0,1,3553;0,2,3553;0,3,3553;0,4,3553;0,5,3553;0,6,3553;0,7,3553;0,8,3553;0,9,3553;0,10,3553;0,11,3553;0,12,3553;0,13,3553;0,14,3553;0,15,3553;0,16,3553;1,0,3553;1,1,3553;1,2,3553;1,3,3553;1,4,3553;1,5,3553;1,6,3553;1,7,3553;1,8,3553;1,9,3553;1,10,3553;1,11,3553;1,12,3553;1,13,3553;1,14,3553;1,15,3553;1,16,3553;2,0,3553;2,1,3553;2,2,3553;2,3,3553;2,4,3553;2,5,3553;2,6,3553;2,7,3553;2,8,3553;2,9,3553;2,10,3553;2,11,3553;2,12,3553;2,13,3553;2,14,3553;2,15,3553;2,16,3553;3,0,3553;3,1,3553;3,2,3553;3,3,3553;3,4,3553;3,5,3553;3,6,3553;3,7,3553;3,8,3553;3,9,3553;3,10,3553;3,11,3553;3,12,3553;3,13,3553;3,14,3553;3,15,3553;3,16,3553;4,0,3553;4,1,3553;4,2,3553;4,3,3553;4,4,3553;4,5,3553;4,6,3553;4,7,3553;4,8,3553;4,9,3553;4,10,3553;4,11,3553;4,12,3553;4,13,3553;4,14,3553;4,15,3553;4,16,3553 --service-request-channel-token=2B536C6508FDC6AF563C310DF9E9C350 --renderer-client-id=4 --mojo-platform-channel-handle=3192 /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --field-trial-handle=1728,317747950344938371,9454013419955958456,131072 --service-pipe-token=29FE0394075FBA5071196028666DE99E --lang=cs --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --blink-settings=disallowFetchForDocWrittenScriptsInMainFrame=false,disallowFetchForDocWrittenScriptsInMainFrameOnSlowConnections=true --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-before-activation --content-image-texture-target=0,0,3553;0,1,3553;0,2,3553;0,3,3553;0,4,3553;0,5,3553;0,6,3553;0,7,3553;0,8,3553;0,9,3553;0,10,3553;0,11,3553;0,12,3553;0,13,3553;0,14,3553;0,15,3553;0,16,3553;1,0,3553;1,1,3553;1,2,3553;1,3,3553;1,4,3553;1,5,3553;1,6,3553;1,7,3553;1,8,3553;1,9,3553;1,10,3553;1,11,3553;1,12,3553;1,13,3553;1,14,3553;1,15,3553;1,16,3553;2,0,3553;2,1,3553;2,2,3553;2,3,3553;2,4,3553;2,5,3553;2,6,3553;2,7,3553;2,8,3553;2,9,3553;2,10,3553;2,11,3553;2,12,3553;2,13,3553;2,14,3553;2,15,3553;2,16,3553;3,0,3553;3,1,3553;3,2,3553;3,3,3553;3,4,3553;3,5,3553;3,6,3553;3,7,3553;3,8,3553;3,9,3553;3,10,3553;3,11,3553;3,12,3553;3,13,3553;3,14,3553;3,15,3553;3,16,3553;4,0,3553;4,1,3553;4,2,3553;4,3,3553;4,4,3553;4,5,3553;4,6,3553;4,7,3553;4,8,3553;4,9,3553;4,10,3553;4,11,3553;4,12,3553;4,13,3553;4,14,3553;4,15,3553;4,16,3553 --service-request-channel-token=29FE0394075FBA5071196028666DE99E --renderer-client-id=7 --mojo-platform-channel-handle=4944 /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --field-trial-handle=1728,317747950344938371,9454013419955958456,131072 --service-pipe-token=7C72E53971661BEC5E0BF22442B9DB45 --lang=cs --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --blink-settings=disallowFetchForDocWrittenScriptsInMainFrame=false,disallowFetchForDocWrittenScriptsInMainFrameOnSlowConnections=true --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-before-activation --content-image-texture-target=0,0,3553;0,1,3553;0,2,3553;0,3,3553;0,4,3553;0,5,3553;0,6,3553;0,7,3553;0,8,3553;0,9,3553;0,10,3553;0,11,3553;0,12,3553;0,13,3553;0,14,3553;0,15,3553;0,16,3553;1,0,3553;1,1,3553;1,2,3553;1,3,3553;1,4,3553;1,5,3553;1,6,3553;1,7,3553;1,8,3553;1,9,3553;1,10,3553;1,11,3553;1,12,3553;1,13,3553;1,14,3553;1,15,3553;1,16,3553;2,0,3553;2,1,3553;2,2,3553;2,3,3553;2,4,3553;2,5,3553;2,6,3553;2,7,3553;2,8,3553;2,9,3553;2,10,3553;2,11,3553;2,12,3553;2,13,3553;2,14,3553;2,15,3553;2,16,3553;3,0,3553;3,1,3553;3,2,3553;3,3,3553;3,4,3553;3,5,3553;3,6,3553;3,7,3553;3,8,3553;3,9,3553;3,10,3553;3,11,3553;3,12,3553;3,13,3553;3,14,3553;3,15,3553;3,16,3553;4,0,3553;4,1,3553;4,2,3553;4,3,3553;4,4,3553;4,5,3553;4,6,3553;4,7,3553;4,8,3553;4,9,3553;4,10,3553;4,11,3553;4,12,3553;4,13,3553;4,14,3553;4,15,3553;4,16,3553 --service-request-channel-token=7C72E53971661BEC5E0BF22442B9DB45 --renderer-client-id=12 --mojo-platform-channel-handle=2448 /prefetch:1
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe471_ Global\UsGthrCtrlFltPipeMssGthrPipe471 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" 
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 664 668 676 8192 672 
C:\WINDOWS\system32\svchost.exe -k netsvcs -s wlidsvc
C:\Windows\System32\smartscreen.exe -Embedding
C:\WINDOWS\system32\AUDIODG.EXE 0x680
"C:\Users\Petr Šimončík\Desktop\RSITx64.exe" 
C:\WINDOWS\system32\wbem\wmiprvse.exe

======Scheduled tasks folder======

C:\WINDOWS\tasks\HPCeeScheduleForPetr Šimončík.job - C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe  HPCeeScheduleForPetr Šimončík (null) 

=========Mozilla firefox=========

ProfilePath - C:\Users\Petr Šimončík\AppData\Roaming\Mozilla\Firefox\Profiles\os5rbhoa.default

prefs.js - "keyword.URL" -  "http://www.bing.com/search?FORM=SL5MDF&PC=SL5M&q="
prefs.js - "browser.startup.homepage" -  "http://www.msn.com/?pc=SL5M&ocid=SL5MDHP&osmkt=en-ww"

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 26.0.0.151 Plugin
"Path"=C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_26_0_0_151.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/ShockwavePlayer]
"Description"=Adobe Shockwave Player
"Path"=C:\windows\SysWOW64\Adobe\Director\np32dsw_1166636.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@FortinetCacheClean]
"Description"=FortiClient SSLVPN CacheCleaner
"Path"=C:\Program Files (x86)\Fortinet\SslvpnClient\npccplugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@FortinetTunnelControl]
"Description"=FortiClient SSLVPN Tunnel Control Plugin
"Path"=C:\Program Files (x86)\Fortinet\SslvpnClient\nptcplugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Google.com/GoogleEarthPlugin]
"Description"=Google Earth in your browser
"Path"=C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5]
"Description"=Intel IPT WebApi plugin
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater]
"Description"=This plugin updates Intel WebAPI component
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files (x86)\Microsoft Silverlight\5.1.50907.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=16.4.3505.0912]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.1]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.1]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 26.0.0.151 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF64_26_0_0_151.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.1.50907.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL


C:\Users\Petr Šimončík\AppData\Roaming\Mozilla\Firefox\Profiles\os5rbhoa.default\searchplugins\
bing-.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL [2013-03-06 690392]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2013-12-19 4171480]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL [2013-03-06 562904]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2016-07-21 416320]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SecurityHealth"=C:\Program Files\Windows Defender\MSASCuiL.exe [2017-03-18 629152]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2016-02-17 8496344]
"RtHDVBg"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2016-02-17 1393880]
"AvgUi"=C:\Program Files (x86)\AVG\Framework\Common\avguirna.exe [2017-08-01 239592]
"AVGUI.exe"=C:\Program Files (x86)\AVG\Antivirus\AvLaunch.exe [2017-08-24 263232]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Power2GoExpress8"=C:\Program Files (x86)\CyberLink\Power2Go8\Power2GoExpress8.exe [2013-08-05 1713416]
"OV3_Monitor"=C:\Program Files (x86)\OLYMPUS\OLYMPUS Viewer 3\OV3Monitor.exe [2015-02-05 420208]
"OneDrive"=C:\Users\Petr [2017-06-08 60534]
"BingSvc"=C:\Users\Petr [2017-06-08 60534]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"RemoteControl10"=C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [2013-04-10 95192]
"OV3_Monitor"=C:\Program Files (x86)\OLYMPUS\OLYMPUS Viewer 3\FirstStart.exe [2015-02-05 55664]
"HPMessageService"=C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe [2014-03-26 475448]
"BCSSync"=C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [2012-11-05 89184]
"Kerio VPN Client"=C:\Program Files (x86)\Kerio\VPN Client\kvpncgui.exe [2014-11-24 2179072]
"AvgUi"=C:\Program Files (x86)\AVG\Framework\Common\avguirna.exe [2017-08-01 239592]
"TAG_Vipmobilniinternet_Launcher.exe"=C:\Program Files (x86)\Vip mobilni internet\Vipmobilniinternet_Launcher.exe [2014-07-09 956984]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
kvpncgui.exe – zástupce.lnk - C:\Program Files (x86)\Kerio\VPN Client\kvpncgui.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"= []

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2013-12-19 4171480]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MBAMService]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetSetupSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2017-08-27 14:39:18 ----D---- C:\Program Files\trend micro
2017-08-27 14:39:17 ----D---- C:\rsit
2017-08-27 14:17:29 ----A---- C:\WINDOWS\system32\drivers\MBAMChameleon.sys
2017-08-27 14:17:27 ----A---- C:\WINDOWS\system32\drivers\mwac.sys
2017-08-27 14:17:27 ----A---- C:\WINDOWS\system32\drivers\farflt.sys
2017-08-27 14:17:18 ----A---- C:\WINDOWS\system32\drivers\mbam.sys
2017-08-27 14:17:11 ----A---- C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys
2017-08-27 14:17:02 ----A---- C:\WINDOWS\system32\drivers\mbae64.sys
2017-08-27 14:16:56 ----D---- C:\ProgramData\Malwarebytes
2017-08-27 14:16:56 ----D---- C:\Program Files\Malwarebytes
2017-08-27 14:09:13 ----D---- C:\Program Files\CCleaner
2017-08-25 09:35:05 ----N---- C:\WINDOWS\system32\MpSigStub.exe
2017-08-24 21:34:20 ----A---- C:\WINDOWS\system32\drivers\avgVmm.sys
2017-08-24 21:34:20 ----A---- C:\WINDOWS\system32\drivers\avgStm.sys
2017-08-24 21:34:20 ----A---- C:\WINDOWS\system32\drivers\avgSP.sys
2017-08-24 21:34:20 ----A---- C:\WINDOWS\system32\drivers\avgRvrt.sys
2017-08-24 21:34:20 ----A---- C:\WINDOWS\system32\drivers\avgRdr2.sys
2017-08-24 21:34:20 ----A---- C:\WINDOWS\system32\drivers\avgmonflt.sys
2017-08-24 21:34:20 ----A---- C:\WINDOWS\system32\drivers\avgHwid.sys
2017-08-24 21:34:19 ----A---- C:\WINDOWS\system32\drivers\avgsnx.sys
2017-08-24 21:34:19 ----A---- C:\WINDOWS\system32\drivers\avgNetSec.sys
2017-08-24 21:34:19 ----A---- C:\WINDOWS\system32\drivers\avgbuniva.sys
2017-08-24 21:34:19 ----A---- C:\WINDOWS\system32\drivers\avgbloga.sys
2017-08-24 21:34:19 ----A---- C:\WINDOWS\system32\drivers\avgbidsha.sys
2017-08-24 21:34:19 ----A---- C:\WINDOWS\system32\drivers\avgbidsdrivera.sys
2017-08-24 21:34:19 ----A---- C:\WINDOWS\system32\drivers\avgbdiska.sys
2017-08-24 21:34:04 ----A---- C:\WINDOWS\system32\avgBoot.exe
2017-08-08 23:53:36 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2017-08-08 23:53:36 ----A---- C:\WINDOWS\system32\tquery.dll
2017-08-08 23:53:35 ----A---- C:\WINDOWS\SYSWOW64\WWAHost.exe
2017-08-08 23:53:35 ----A---- C:\WINDOWS\SYSWOW64\tquery.dll
2017-08-08 23:53:35 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2017-08-08 23:53:34 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.Resources.dll
2017-08-08 23:53:34 ----A---- C:\WINDOWS\SYSWOW64\msIso.dll
2017-08-08 23:53:33 ----A---- C:\WINDOWS\SYSWOW64\win32kfull.sys
2017-08-08 23:53:32 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2017-08-08 23:53:31 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
2017-08-08 23:53:30 ----A---- C:\WINDOWS\SYSWOW64\TokenBroker.dll
2017-08-08 23:53:30 ----A---- C:\WINDOWS\SYSWOW64\msv1_0.dll
2017-08-08 23:53:30 ----A---- C:\WINDOWS\SYSWOW64\msrepl40.dll
2017-08-08 23:53:30 ----A---- C:\WINDOWS\SYSWOW64\msrd3x40.dll
2017-08-08 23:53:30 ----A---- C:\WINDOWS\SYSWOW64\msrd2x40.dll
2017-08-08 23:53:30 ----A---- C:\WINDOWS\SYSWOW64\msjtes40.dll
2017-08-08 23:53:30 ----A---- C:\WINDOWS\SYSWOW64\msjetoledb40.dll
2017-08-08 23:53:30 ----A---- C:\WINDOWS\SYSWOW64\msjet40.dll
2017-08-08 23:53:29 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Management.dll
2017-08-08 23:53:29 ----A---- C:\WINDOWS\SYSWOW64\scksp.dll
2017-08-08 23:53:29 ----A---- C:\WINDOWS\SYSWOW64\policymanager.dll
2017-08-08 23:53:29 ----A---- C:\WINDOWS\SYSWOW64\msxbde40.dll
2017-08-08 23:53:29 ----A---- C:\WINDOWS\SYSWOW64\mstext40.dll
2017-08-08 23:53:29 ----A---- C:\WINDOWS\SYSWOW64\mspbde40.dll
2017-08-08 23:53:29 ----A---- C:\WINDOWS\SYSWOW64\msltus40.dll
2017-08-08 23:53:29 ----A---- C:\WINDOWS\SYSWOW64\msexcl40.dll
2017-08-08 23:53:29 ----A---- C:\WINDOWS\SYSWOW64\basecsp.dll
2017-08-08 23:53:28 ----A---- C:\WINDOWS\SYSWOW64\werui.dll
2017-08-08 23:53:28 ----A---- C:\WINDOWS\SYSWOW64\wermgr.exe
2017-08-08 23:53:28 ----A---- C:\WINDOWS\SYSWOW64\WerFaultSecure.exe
2017-08-08 23:53:28 ----A---- C:\WINDOWS\SYSWOW64\WerFault.exe
2017-08-08 23:53:28 ----A---- C:\WINDOWS\SYSWOW64\wer.dll
2017-08-08 23:53:28 ----A---- C:\WINDOWS\SYSWOW64\ncryptprov.dll
2017-08-08 23:53:28 ----A---- C:\WINDOWS\SYSWOW64\mswstr10.dll
2017-08-08 23:53:28 ----A---- C:\WINDOWS\SYSWOW64\mswdat10.dll
2017-08-08 23:53:28 ----A---- C:\WINDOWS\SYSWOW64\msjter40.dll
2017-08-08 23:53:28 ----A---- C:\WINDOWS\SYSWOW64\msjint40.dll
2017-08-08 23:53:28 ----A---- C:\WINDOWS\SYSWOW64\Faultrep.dll
2017-08-08 23:53:27 ----A---- C:\WINDOWS\SYSWOW64\tokenbinding.dll
2017-08-08 23:53:27 ----A---- C:\WINDOWS\SYSWOW64\sscore.dll
2017-08-08 23:53:27 ----A---- C:\WINDOWS\SYSWOW64\fdeploy.dll
2017-08-08 23:53:27 ----A---- C:\WINDOWS\SYSWOW64\DWWIN.EXE
2017-08-08 23:53:27 ----A---- C:\WINDOWS\system32\WWAHost.exe
2017-08-08 23:53:27 ----A---- C:\WINDOWS\system32\diagtrack.dll
2017-08-08 23:53:26 ----A---- C:\WINDOWS\system32\drivers\tdx.sys
2017-08-08 23:53:25 ----A---- C:\WINDOWS\SYSWOW64\ieproxy.dll
2017-08-08 23:53:25 ----A---- C:\WINDOWS\system32\ieproxy.dll
2017-08-08 23:53:24 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2017-08-08 23:53:22 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2017-08-08 23:53:21 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2017-08-08 23:53:20 ----A---- C:\WINDOWS\system32\Chakradiag.dll
2017-08-08 23:53:19 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2017-08-08 23:53:19 ----A---- C:\WINDOWS\system32\jscript9.dll
2017-08-08 23:53:18 ----A---- C:\WINDOWS\system32\jscript9diag.dll
2017-08-08 23:53:18 ----A---- C:\WINDOWS\system32\edgehtml.dll
2017-08-08 23:53:17 ----A---- C:\WINDOWS\system32\Chakra.dll
2017-08-08 23:53:15 ----A---- C:\WINDOWS\system32\mshtml.dll
2017-08-08 23:53:13 ----A---- C:\WINDOWS\SYSWOW64\Chakradiag.dll
2017-08-08 23:53:12 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2017-08-08 23:53:12 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2017-08-08 23:53:12 ----A---- C:\WINDOWS\system32\drivers\clfs.sys
2017-08-08 23:53:11 ----A---- C:\WINDOWS\system32\ieframe.dll
2017-08-08 23:53:11 ----A---- C:\WINDOWS\system32\browserbroker.dll
2017-08-08 23:53:10 ----A---- C:\WINDOWS\system32\wersvc.dll
2017-08-08 23:53:10 ----A---- C:\WINDOWS\system32\wermgr.exe
2017-08-08 23:53:10 ----A---- C:\WINDOWS\system32\WerFaultSecure.exe
2017-08-08 23:53:10 ----A---- C:\WINDOWS\system32\WerFault.exe
2017-08-08 23:53:10 ----A---- C:\WINDOWS\system32\wer.dll
2017-08-08 23:53:10 ----A---- C:\WINDOWS\system32\Faultrep.dll
2017-08-08 23:53:09 ----A---- C:\WINDOWS\system32\wwansvc.dll
2017-08-08 23:53:09 ----A---- C:\WINDOWS\system32\TokenBroker.dll
2017-08-08 23:53:09 ----A---- C:\WINDOWS\system32\msIso.dll
2017-08-08 23:53:09 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2017-08-08 23:53:09 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2017-08-08 23:53:08 ----A---- C:\WINDOWS\system32\win32kfull.sys
2017-08-08 23:53:08 ----A---- C:\WINDOWS\system32\win32kbase.sys
2017-08-08 23:53:08 ----A---- C:\WINDOWS\system32\urlmon.dll
2017-08-08 23:53:08 ----A---- C:\WINDOWS\system32\SettingsHandlers_nt.dll
2017-08-08 23:53:07 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.Resources.dll
2017-08-08 23:53:07 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll
2017-08-08 23:53:06 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2017-08-08 23:53:06 ----A---- C:\WINDOWS\system32\OneCoreUAPCommonProxyStub.dll
2017-08-08 23:53:04 ----A---- C:\WINDOWS\system32\iertutil.dll
2017-08-08 23:53:01 ----A---- C:\WINDOWS\system32\scksp.dll
2017-08-08 23:53:01 ----A---- C:\WINDOWS\system32\policymanager.dll
2017-08-08 23:53:01 ----A---- C:\WINDOWS\system32\msv1_0.dll
2017-08-08 23:53:01 ----A---- C:\WINDOWS\system32\enterprisecsps.dll
2017-08-08 23:53:01 ----A---- C:\WINDOWS\system32\basecsp.dll
2017-08-08 23:53:00 ----A---- C:\WINDOWS\system32\werui.dll
2017-08-08 23:53:00 ----A---- C:\WINDOWS\system32\werconcpl.dll
2017-08-08 23:53:00 ----A---- C:\WINDOWS\system32\srvsvc.dll
2017-08-08 23:53:00 ----A---- C:\WINDOWS\system32\profsvcext.dll
2017-08-08 23:53:00 ----A---- C:\WINDOWS\system32\policymanagerprecheck.dll
2017-08-08 23:53:00 ----A---- C:\WINDOWS\system32\ncryptprov.dll
2017-08-08 23:53:00 ----A---- C:\WINDOWS\system32\fdeploy.dll
2017-08-08 23:53:00 ----A---- C:\WINDOWS\system32\drivers\vmbkmcl.sys
2017-08-08 23:52:59 ----A---- C:\WINDOWS\system32\wercplsupport.dll
2017-08-08 23:52:59 ----A---- C:\WINDOWS\system32\tokenbinding.dll
2017-08-08 23:52:59 ----A---- C:\WINDOWS\system32\sscore.dll
2017-08-08 23:52:59 ----A---- C:\WINDOWS\system32\SmsRouterSvc.dll
2017-08-08 23:52:59 ----A---- C:\WINDOWS\system32\drivers\vmbkmclr.sys
2017-08-08 23:52:59 ----A---- C:\WINDOWS\system32\dmenterprisediagnostics.dll
2017-08-08 23:52:59 ----A---- C:\WINDOWS\system32\coredpus.dll
2017-08-08 23:52:59 ----A---- C:\WINDOWS\system32\configmanager2.dll
2017-08-08 23:52:58 ----A---- C:\WINDOWS\system32\wsqmcons.exe
2017-08-08 23:52:58 ----A---- C:\WINDOWS\system32\mdmregistration.dll
2017-08-08 23:52:58 ----A---- C:\WINDOWS\system32\DWWIN.EXE
2017-08-08 23:52:58 ----A---- C:\WINDOWS\system32\dmenrollengine.dll
2017-08-08 23:52:58 ----A---- C:\WINDOWS\system32\dmcsps.dll
2017-08-08 23:52:58 ----A---- C:\WINDOWS\system32\DeviceEnroller.exe
2017-08-04 17:42:49 ----A---- C:\WINDOWS\SYSWOW64\WpcWebFilter.dll
2017-08-04 17:42:49 ----A---- C:\WINDOWS\SYSWOW64\IpNatHlpClient.dll
2017-08-04 17:42:49 ----A---- C:\WINDOWS\SYSWOW64\InstallAgentUserBroker.exe
2017-08-04 17:42:49 ----A---- C:\WINDOWS\SYSWOW64\InstallAgent.exe
2017-08-04 17:42:49 ----A---- C:\WINDOWS\SYSWOW64\dmcmnutils.dll
2017-08-04 17:42:49 ----A---- C:\WINDOWS\SYSWOW64\BluetoothApis.dll
2017-08-04 17:42:48 ----A---- C:\WINDOWS\SYSWOW64\rasapi32.dll
2017-08-04 17:42:48 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2017-08-04 17:42:48 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2017-08-04 17:42:48 ----A---- C:\WINDOWS\SYSWOW64\AudioSes.dll
2017-08-04 17:42:47 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.dll
2017-08-04 17:42:47 ----A---- C:\WINDOWS\SYSWOW64\BingMaps.dll
2017-08-04 17:42:47 ----A---- C:\WINDOWS\SYSWOW64\AudioEng.dll
2017-08-04 17:42:47 ----A---- C:\WINDOWS\SYSWOW64\aadtb.dll
2017-08-04 17:42:46 ----A---- C:\WINDOWS\SYSWOW64\d2d1.dll
2017-08-04 17:42:45 ----A---- C:\WINDOWS\SYSWOW64\MSVPXENC.dll
2017-08-04 17:42:45 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_47.dll
2017-08-04 17:42:44 ----A---- C:\WINDOWS\SYSWOW64\dbgeng.dll
2017-08-04 17:42:44 ----A---- C:\WINDOWS\SYSWOW64\CoreMessaging.dll
2017-08-04 17:42:43 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2017-08-04 17:42:43 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2017-08-04 17:42:43 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2017-08-04 17:42:42 ----A---- C:\WINDOWS\SYSWOW64\ActivationManager.dll
2017-08-04 17:42:41 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Immersive.dll
2017-08-04 17:42:41 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2017-08-04 17:42:41 ----A---- C:\WINDOWS\SYSWOW64\InputService.dll
2017-08-04 17:42:41 ----A---- C:\WINDOWS\SYSWOW64\AzureSettingSyncProvider.dll
2017-08-04 17:42:40 ----A---- C:\WINDOWS\SYSWOW64\wudriver.dll
2017-08-04 17:42:40 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2017-08-04 17:42:40 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
2017-08-04 17:42:39 ----A---- C:\WINDOWS\SYSWOW64\wuapi.dll
2017-08-04 17:42:39 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2017-08-04 17:42:39 ----A---- C:\WINDOWS\SYSWOW64\comdlg32.dll
2017-08-04 17:42:38 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2017-08-04 17:42:35 ----A---- C:\WINDOWS\SYSWOW64\ExplorerFrame.dll
2017-08-04 17:42:34 ----A---- C:\WINDOWS\SYSWOW64\TpmCoreProvisioning.dll
2017-08-04 17:42:34 ----A---- C:\WINDOWS\SYSWOW64\AppXDeploymentClient.dll
2017-08-04 17:42:34 ----A---- C:\WINDOWS\system32\drivers\USBHUB3.SYS
2017-08-04 17:42:34 ----A---- C:\WINDOWS\system32\drivers\msiscsi.sys
2017-08-04 17:42:33 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepository.dll
2017-08-04 17:42:33 ----A---- C:\WINDOWS\SYSWOW64\rastls.dll
2017-08-04 17:42:32 ----A---- C:\WINDOWS\SYSWOW64\PCPKsp.dll
2017-08-04 17:42:32 ----A---- C:\WINDOWS\SYSWOW64\DolbyDecMFT.dll
2017-08-04 17:42:32 ----A---- C:\WINDOWS\SYSWOW64\autochk.exe
2017-08-04 17:42:31 ----A---- C:\WINDOWS\SYSWOW64\TextInputFramework.dll
2017-08-04 17:42:31 ----A---- C:\WINDOWS\SYSWOW64\ReAgent.dll
2017-08-04 17:42:31 ----A---- C:\WINDOWS\SYSWOW64\mfsensorgroup.dll
2017-08-04 17:42:31 ----A---- C:\WINDOWS\system32\drivers\acpi.sys
2017-08-04 17:42:30 ----A---- C:\WINDOWS\SYSWOW64\Windows.Security.Authentication.Web.Core.dll
2017-08-04 17:42:30 ----A---- C:\WINDOWS\SYSWOW64\untfs.dll
2017-08-04 17:42:30 ----A---- C:\WINDOWS\SYSWOW64\shlwapi.dll
2017-08-04 17:42:30 ----A---- C:\WINDOWS\SYSWOW64\msacm32.dll
2017-08-04 17:42:30 ----A---- C:\WINDOWS\SYSWOW64\GamePanel.exe
2017-08-04 17:42:30 ----A---- C:\WINDOWS\SYSWOW64\dxgi.dll
2017-08-04 17:42:30 ----A---- C:\WINDOWS\SYSWOW64\cmintegrator.dll
2017-08-04 17:42:30 ----A---- C:\WINDOWS\SYSWOW64\autofmt.exe
2017-08-04 17:42:30 ----A---- C:\WINDOWS\SYSWOW64\autoconv.exe
2017-08-04 17:42:30 ----A---- C:\WINDOWS\system32\cmintegrator.dll
2017-08-04 17:42:29 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepositoryUpgrade.dll
2017-08-04 17:42:29 ----A---- C:\WINDOWS\SYSWOW64\VCardParser.dll
2017-08-04 17:42:29 ----A---- C:\WINDOWS\SYSWOW64\spbcd.dll
2017-08-04 17:42:29 ----A---- C:\WINDOWS\SYSWOW64\rastlsext.dll
2017-08-04 17:42:29 ----A---- C:\WINDOWS\SYSWOW64\qasf.dll
2017-08-04 17:42:29 ----A---- C:\WINDOWS\SYSWOW64\netlogon.dll
2017-08-04 17:42:29 ----A---- C:\WINDOWS\system32\drivers\UcmUcsi.sys
2017-08-04 17:42:29 ----A---- C:\WINDOWS\system32\drivers\bthhfenum.sys
2017-08-04 17:42:28 ----A---- C:\WINDOWS\SYSWOW64\shsvcs.dll
2017-08-04 17:42:23 ----A---- C:\WINDOWS\system32\drivers\tcpip.sys
2017-08-04 17:42:11 ----A---- C:\WINDOWS\system32\wbiosrvc.dll
2017-08-04 17:42:10 ----A---- C:\WINDOWS\system32\InstallAgentUserBroker.exe
2017-08-04 17:42:10 ----A---- C:\WINDOWS\system32\InstallAgent.exe
2017-08-04 17:42:09 ----A---- C:\WINDOWS\system32\storewuauth.dll
2017-08-04 17:42:07 ----A---- C:\WINDOWS\system32\VCardParser.dll
2017-08-04 17:42:03 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2017-08-04 17:42:02 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2017-08-04 17:42:02 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2017-08-04 17:42:01 ----A---- C:\WINDOWS\system32\KernelBase.dll
2017-08-04 17:42:01 ----A---- C:\WINDOWS\system32\drivers\bridge.sys
2017-08-04 17:42:01 ----A---- C:\WINDOWS\system32\BingMaps.dll
2017-08-04 17:42:00 ----A---- C:\WINDOWS\system32\InputService.dll
2017-08-04 17:41:29 ----A---- C:\WINDOWS\system32\wmpps.dll
2017-08-04 17:41:29 ----A---- C:\WINDOWS\system32\TextInputFramework.dll
2017-08-04 17:41:28 ----A---- C:\WINDOWS\system32\rastlsext.dll
2017-08-04 17:41:28 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2017-08-04 17:41:28 ----A---- C:\WINDOWS\system32\dbgeng.dll
2017-08-04 17:41:27 ----A---- C:\WINDOWS\system32\D3DCompiler_47.dll
2017-08-04 17:41:27 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2017-08-04 17:41:26 ----A---- C:\WINDOWS\system32\wudriver.dll
2017-08-04 17:41:26 ----A---- C:\WINDOWS\system32\psmsrv.dll
2017-08-04 17:41:26 ----A---- C:\WINDOWS\system32\ole32.dll
2017-08-04 17:41:26 ----A---- C:\WINDOWS\system32\bisrv.dll
2017-08-04 17:41:25 ----A---- C:\WINDOWS\system32\windows.storage.dll
2017-08-04 17:41:25 ----A---- C:\WINDOWS\system32\AppReadiness.dll
2017-08-04 17:41:25 ----A---- C:\WINDOWS\system32\ActivationManager.dll
2017-08-04 17:41:23 ----A---- C:\WINDOWS\system32\AppXDeploymentClient.dll
2017-08-04 17:41:22 ----A---- C:\WINDOWS\system32\workfolderssvc.dll
2017-08-04 17:41:22 ----A---- C:\WINDOWS\system32\Windows.StateRepository.dll
2017-08-04 17:41:22 ----A---- C:\WINDOWS\system32\DolbyDecMFT.dll
2017-08-04 17:41:22 ----A---- C:\WINDOWS\system32\DmApiSetExtImplDesktop.dll
2017-08-04 17:41:21 ----A---- C:\WINDOWS\SYSWOW64\bcd.dll
2017-08-04 17:41:21 ----A---- C:\WINDOWS\system32\Windows.StateRepositoryUpgrade.dll
2017-08-04 17:41:21 ----A---- C:\WINDOWS\system32\services.exe
2017-08-04 17:41:21 ----A---- C:\WINDOWS\system32\RjvMDMConfig.dll
2017-08-04 17:41:21 ----A---- C:\WINDOWS\system32\MDMAppInstaller.exe
2017-08-04 17:41:21 ----A---- C:\WINDOWS\system32\hal.dll
2017-08-04 17:41:21 ----A---- C:\WINDOWS\system32\FlightSettings.dll
2017-08-04 17:41:21 ----A---- C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll
2017-08-04 17:41:21 ----A---- C:\WINDOWS\system32\dxgi.dll
2017-08-04 17:41:21 ----A---- C:\WINDOWS\system32\bcd.dll
2017-08-04 17:41:20 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2017-08-04 17:41:20 ----A---- C:\WINDOWS\system32\DolbyMATEnc.dll
2017-08-04 17:41:19 ----A---- C:\WINDOWS\system32\Windows.Shell.BlueLightReduction.dll
2017-08-04 17:41:19 ----A---- C:\WINDOWS\system32\SettingsHandlers_Display.dll
2017-08-04 17:41:19 ----A---- C:\WINDOWS\system32\officecsp.dll
2017-08-04 17:41:19 ----A---- C:\WINDOWS\system32\GamePanel.exe
2017-08-04 17:41:19 ----A---- C:\WINDOWS\system32\DolbyHrtfEnc.dll
2017-08-04 17:41:19 ----A---- C:\WINDOWS\system32\AudioSes.dll
2017-08-04 17:41:19 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2017-08-04 17:41:18 ----A---- C:\WINDOWS\system32\dosvc.dll
2017-08-04 17:41:18 ----A---- C:\WINDOWS\system32\audiosrv.dll
2017-08-04 17:41:18 ----A---- C:\WINDOWS\system32\AudioEng.dll
2017-08-04 17:41:17 ----A---- C:\WINDOWS\system32\Microsoft.Bluetooth.Profiles.Gatt.dll
2017-08-04 17:41:17 ----A---- C:\WINDOWS\system32\dwmredir.dll
2017-08-04 17:41:16 ----A---- C:\WINDOWS\system32\aadcloudap.dll
2017-08-04 17:41:12 ----A---- C:\WINDOWS\system32\Windows.UI.dll
2017-08-04 17:41:12 ----A---- C:\WINDOWS\system32\CoreMessaging.dll
2017-08-04 17:41:12 ----A---- C:\WINDOWS\system32\BluetoothApis.dll
2017-08-04 17:41:11 ----A---- C:\WINDOWS\system32\AzureSettingSyncProvider.dll
2017-08-04 17:41:10 ----A---- C:\WINDOWS\system32\twinui.dll
2017-08-04 17:41:10 ----A---- C:\WINDOWS\system32\drivers\bthport.sys
2017-08-04 17:41:09 ----A---- C:\WINDOWS\system32\ExplorerFrame.dll
2017-08-04 17:41:08 ----A---- C:\WINDOWS\system32\wuuhosdeployment.dll
2017-08-04 17:41:08 ----A---- C:\WINDOWS\system32\wuuhext.dll
2017-08-04 17:41:08 ----A---- C:\WINDOWS\system32\wuaueng.dll
2017-08-04 17:41:08 ----A---- C:\WINDOWS\system32\Windows.UI.Immersive.dll
2017-08-04 17:41:08 ----A---- C:\WINDOWS\system32\SIHClient.exe
2017-08-04 17:41:07 ----A---- C:\WINDOWS\system32\TileDataRepository.dll
2017-08-04 17:41:07 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2017-08-04 17:41:07 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2017-08-04 17:41:07 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2017-08-04 17:41:06 ----A---- C:\WINDOWS\system32\Windows.Internal.Management.dll
2017-08-04 17:41:06 ----A---- C:\WINDOWS\system32\rastls.dll
2017-08-04 17:41:06 ----A---- C:\WINDOWS\system32\LogonController.dll
2017-08-04 17:41:06 ----A---- C:\WINDOWS\system32\comdlg32.dll
2017-08-04 17:41:05 ----A---- C:\WINDOWS\system32\wuapi.dll
2017-08-04 17:41:05 ----A---- C:\WINDOWS\system32\winsrv.dll
2017-08-04 17:41:05 ----A---- C:\WINDOWS\system32\rasapi32.dll
2017-08-04 17:41:05 ----A---- C:\WINDOWS\system32\FrameServer.dll
2017-08-04 17:41:04 ----A---- C:\WINDOWS\system32\shell32.dll
2017-08-04 17:41:04 ----A---- C:\WINDOWS\system32\ClipSVC.dll
2017-08-04 17:41:02 ----A---- C:\WINDOWS\system32\bcdedit.exe
2017-08-04 17:41:02 ----A---- C:\WINDOWS\system32\bcdboot.exe
2017-08-04 17:41:01 ----A---- C:\WINDOWS\system32\efscore.dll
2017-08-04 17:41:01 ----A---- C:\WINDOWS\system32\dmcmnutils.dll
2017-08-04 17:41:01 ----A---- C:\WINDOWS\system32\aadtb.dll
2017-08-04 17:41:00 ----A---- C:\WINDOWS\system32\WpcWebFilter.dll
2017-08-04 17:41:00 ----A---- C:\WINDOWS\system32\UIRibbonRes.dll
2017-08-04 17:40:59 ----A---- C:\WINDOWS\SYSWOW64\UIRibbonRes.dll
2017-08-04 17:40:59 ----A---- C:\WINDOWS\system32\TpmCoreProvisioning.dll
2017-08-04 17:40:59 ----A---- C:\WINDOWS\system32\reseteng.dll
2017-08-04 17:40:57 ----A---- C:\WINDOWS\system32\wininit.exe
2017-08-04 17:40:57 ----A---- C:\WINDOWS\system32\SettingsHandlers_Notifications.dll
2017-08-04 17:40:57 ----A---- C:\WINDOWS\system32\MBR2GPT.EXE
2017-08-04 17:40:57 ----A---- C:\WINDOWS\system32\lpasvc.dll
2017-08-04 17:40:56 ----A---- C:\WINDOWS\system32\XblAuthManager.dll
2017-08-04 17:40:56 ----A---- C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
2017-08-04 17:40:56 ----A---- C:\WINDOWS\system32\ReAgent.dll
2017-08-04 17:40:56 ----A---- C:\WINDOWS\system32\MPSSVC.dll
2017-08-04 17:40:56 ----A---- C:\WINDOWS\system32\autochk.exe
2017-08-04 17:40:55 ----A---- C:\WINDOWS\system32\untfs.dll
2017-08-04 17:40:55 ----A---- C:\WINDOWS\system32\SettingsHandlers_Flights.dll
2017-08-04 17:40:55 ----A---- C:\WINDOWS\system32\PCPKsp.dll
2017-08-04 17:40:55 ----A---- C:\WINDOWS\system32\ofdeploy.exe
2017-08-04 17:40:55 ----A---- C:\WINDOWS\system32\msacm32.dll
2017-08-04 17:40:55 ----A---- C:\WINDOWS\system32\mfsensorgroup.dll
2017-08-04 17:40:55 ----A---- C:\WINDOWS\system32\drivers\fvevol.sys
2017-08-04 17:40:55 ----A---- C:\WINDOWS\system32\autofmt.exe
2017-08-04 17:40:55 ----A---- C:\WINDOWS\system32\autoconv.exe
2017-08-04 17:40:54 ----A---- C:\WINDOWS\system32\Windows.Networking.UX.EapRequestHandler.dll
2017-08-04 17:40:54 ----A---- C:\WINDOWS\system32\TpmTasks.dll
2017-08-04 17:40:54 ----A---- C:\WINDOWS\system32\spbcd.dll
2017-08-04 17:40:54 ----A---- C:\WINDOWS\system32\shsvcs.dll
2017-08-04 17:40:54 ----A---- C:\WINDOWS\system32\shlwapi.dll
2017-08-04 17:40:54 ----A---- C:\WINDOWS\system32\setbcdlocale.dll
2017-08-04 17:40:54 ----A---- C:\WINDOWS\system32\RecoveryDrive.exe
2017-08-04 17:40:54 ----A---- C:\WINDOWS\system32\qasf.dll
2017-08-04 17:40:54 ----A---- C:\WINDOWS\system32\netlogon.dll
2017-08-04 17:40:54 ----A---- C:\WINDOWS\system32\facecredentialprovider.dll
2017-08-04 17:40:54 ----A---- C:\WINDOWS\system32\dui70.dll
2017-08-04 17:40:54 ----A---- C:\WINDOWS\system32\BootMenuUX.dll
2017-08-04 17:40:53 ----A---- C:\WINDOWS\SYSWOW64\UIRibbon.dll
2017-08-04 17:40:53 ----A---- C:\WINDOWS\system32\UIRibbon.dll
2017-08-04 17:40:53 ----A---- C:\WINDOWS\system32\IpNatHlpClient.dll

======List of files/folders modified in the last 1 month======

2017-08-27 14:39:26 ----D---- C:\WINDOWS\Prefetch
2017-08-27 14:39:18 ----RD---- C:\Program Files
2017-08-27 14:38:00 ----D---- C:\WINDOWS\system32\sru
2017-08-27 14:34:45 ----D---- C:\WINDOWS\Temp
2017-08-27 14:17:29 ----D---- C:\WINDOWS\system32\drivers
2017-08-27 14:16:56 ----HD---- C:\ProgramData
2017-08-27 14:14:20 ----D---- C:\WINDOWS\SoftwareDistribution
2017-08-27 14:14:20 ----D---- C:\Windows
2017-08-27 14:11:38 ----D---- C:\Program Files (x86)\Steam
2017-08-27 14:11:31 ----DC---- C:\WINDOWS\Panther
2017-08-27 14:11:31 ----D---- C:\WINDOWS\INF
2017-08-27 14:11:15 ----D---- C:\WINDOWS\debug
2017-08-27 14:11:14 ----D---- C:\WINDOWS\LiveKernelReports
2017-08-27 14:09:16 ----D---- C:\WINDOWS\system32\Tasks
2017-08-27 13:24:02 ----D---- C:\WINDOWS\system32\SleepStudy
2017-08-26 09:42:06 ----D---- C:\WINDOWS\AppReadiness
2017-08-25 10:54:59 ----SHD---- C:\System Volume Information
2017-08-25 10:44:43 ----D---- C:\WINDOWS\system32\drivers\UMDF
2017-08-25 09:38:38 ----HD---- C:\Program Files\WindowsApps
2017-08-25 09:35:05 ----D---- C:\WINDOWS\System32
2017-08-24 22:07:25 ----AD---- C:\ProgramData\AVG
2017-08-24 21:45:15 ----D---- C:\Users\Petr Šimončík\AppData\Roaming\AVG
2017-08-24 21:45:14 ----RD---- C:\Program Files (x86)
2017-08-24 21:43:02 ----SHDC---- C:\WINDOWS\Installer
2017-08-24 21:42:55 ----SHD---- C:\Config.Msi
2017-08-24 21:37:38 ----D---- C:\WINDOWS\system32\catroot2
2017-08-24 21:31:24 ----D---- C:\Program Files (x86)\AVG
2017-08-24 21:29:27 ----D---- C:\WINDOWS\WinSxS
2017-08-24 19:52:48 ----RD---- C:\WINDOWS\Microsoft.NET
2017-08-22 00:22:49 ----D---- C:\WINDOWS\Tasks
2017-08-21 16:16:00 ----D---- C:\WINDOWS\system32\config
2017-08-17 10:34:52 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2017-08-17 10:34:34 ----RD---- C:\Users
2017-08-14 23:09:52 ----D---- C:\WINDOWS\SysWOW64
2017-08-11 19:25:49 ----D---- C:\WINDOWS\rescache
2017-08-09 16:48:43 ----D---- C:\WINDOWS\system32\CatRoot
2017-08-09 16:48:42 ----D---- C:\WINDOWS\system32\DriverStore
2017-08-09 00:29:03 ----D---- C:\WINDOWS\system32\en-US
2017-08-09 00:29:01 ----D---- C:\WINDOWS\AppPatch
2017-08-09 00:19:37 ----D---- C:\WINDOWS\system32\Macromed
2017-08-09 00:19:36 ----D---- C:\WINDOWS\SYSWOW64\Macromed
2017-08-09 00:00:13 ----D---- C:\WINDOWS\CbsTemp
2017-08-09 00:00:08 ----D---- C:\WINDOWS\system32\MRT
2017-08-08 23:56:05 ----AC---- C:\WINDOWS\system32\MRT.exe
2017-08-06 21:03:19 ----RSD---- C:\WINDOWS\assembly
2017-08-05 00:26:45 ----D---- C:\WINDOWS\SYSWOW64\WinMetadata
2017-08-05 00:26:45 ----D---- C:\WINDOWS\SYSWOW64\en-US
2017-08-05 00:26:45 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2017-08-05 00:26:39 ----D---- C:\WINDOWS\system32\WinMetadata
2017-08-05 00:26:39 ----D---- C:\WINDOWS\system32\WinBioPlugIns
2017-08-05 00:26:39 ----D---- C:\WINDOWS\system32\oobe
2017-08-05 00:26:39 ----D---- C:\WINDOWS\system32\cs-CZ
2017-08-05 00:26:35 ----D---- C:\WINDOWS\ShellExperiences
2017-08-05 00:26:32 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2017-08-05 00:26:32 ----D---- C:\Program Files\Windows Photo Viewer
2017-08-05 00:26:32 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2017-08-04 20:01:27 ----D---- C:\WINDOWS\system32\NDF
2017-08-04 16:38:06 ----D---- C:\Users\Petr Šimončík\AppData\Roaming\vlc
2017-07-31 17:15:09 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2017-07-28 16:24:58 ----D---- C:\ProgramData\Microsoft Help
2017-07-28 16:24:58 ----A---- C:\WINDOWS\win.ini

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 amdkmpfd;@oem16.inf,%AMDKMPFD_svcdesc%;AMD PCI Root Bus Lower Filter; C:\WINDOWS\System32\drivers\amdkmpfd.sys [2015-06-04 73976]
R0 avgbidsh;avgbidsh; C:\WINDOWS\system32\drivers\avgbidsha.sys [2017-08-24 192584]
R0 avgbuniv;avgbuniv; C:\WINDOWS\system32\drivers\avgbuniva.sys [2017-08-24 51336]
R0 avgVmm;avgVmm; C:\WINDOWS\system32\drivers\avgVmm.sys [2017-08-24 353744]
R0 hpdskflt;@oem7.inf,%service_desc%;HP Filter; C:\WINDOWS\system32\DRIVERS\hpdskflt.sys [2012-09-24 31040]
R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2013-08-22 644968]
R0 iorate;@%SystemRoot%\system32\drivers\iorate.sys,-101; C:\WINDOWS\system32\drivers\iorate.sys [2017-03-18 49568]
R1 avgbdisk;avgbdisk; C:\WINDOWS\system32\drivers\avgbdiska.sys [2017-08-24 166624]
R1 avgbidsdriver;avgbidsdriver; C:\WINDOWS\system32\drivers\avgbidsdrivera.sys [2017-08-24 313616]
R1 avgNetSec;avgNetSec; C:\WINDOWS\system32\drivers\avgNetSec.sys [2017-08-24 546968]
R1 avgRdr;avgRdr; C:\WINDOWS\system32\drivers\avgRdr2.sys [2017-08-24 102792]
R1 avgSnx;avgSnx; C:\WINDOWS\system32\drivers\avgSnx.sys [2017-08-24 1008288]
R1 avgSP;avgSP; C:\WINDOWS\system32\drivers\avgSP.sys [2017-08-24 578048]
R1 CLVirtualDrive;CLVirtualDrive; C:\WINDOWS\system32\DRIVERS\CLVirtualDrive.sys [2013-03-05 91712]
R1 ESProtectionDriver;Malwarebytes Anti-Exploit; \??\C:\WINDOWS\system32\drivers\mbae64.sys [2017-08-24 77440]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2017-03-18 54272]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2017-03-18 8192]
R2 avgMonFlt;avgMonFlt; C:\WINDOWS\system32\drivers\avgMonFlt.sys [2017-08-24 139112]
R2 avgStm;avgStm; C:\WINDOWS\system32\drivers\avgStm.sys [2017-08-24 191208]
R2 clreg;@%SystemRoot%\system32\drivers\registry.sys,-100; C:\WINDOWS\System32\drivers\registry.sys [2017-03-18 14336]
R2 MBAMChameleon;MBAMChameleon; C:\WINDOWS\system32\drivers\MBAMChameleon.sys [2017-08-27 192960]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2017-03-18 50688]
R3 Accelerometer;@oem7.inf,%accelerometer_desc%;HP Mobile Data Protection Sensor; C:\WINDOWS\system32\DRIVERS\Accelerometer.sys [2012-09-24 43840]
R3 amdkmdag;amdkmdag; C:\WINDOWS\system32\DRIVERS\atikmdag.sys [2015-10-07 21653520]
R3 amdkmdap;amdkmdap; C:\WINDOWS\system32\DRIVERS\atikmpag.sys [2015-10-07 684560]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\drivers\BTHUSB.sys [2017-03-18 85504]
R3 CAD;@ChargeArbitration.inf,%CAD_DevDesc%;Charge Arbitration Driver; C:\WINDOWS\System32\drivers\CAD.sys [2017-03-18 53664]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2016-05-03 3811288]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2016-02-17 4506840]
R3 IntcDAud;@oem5.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2015-08-21 463112]
R3 iwdbus;@oem46.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\WINDOWS\System32\drivers\iwdbus.sys [2015-12-01 38896]
R3 kvnet;@oem41.inf,%kvnet.Service.DispName%;Kerio Virtual Network Adapter; C:\WINDOWS\System32\drivers\kvnet.sys [2014-11-24 30208]
R3 MBAMFarflt;MBAMFarflt; C:\WINDOWS\system32\DRIVERS\farflt.sys [2017-08-27 101824]
R3 MBAMProtection;MBAMProtection; \??\C:\WINDOWS\system32\drivers\mbam.sys [2017-08-27 45472]
R3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [2017-08-27 253888]
R3 MBAMWebProtection;MBAMWebProtection; \??\C:\WINDOWS\system32\drivers\mwac.sys [2017-08-27 94144]
R3 MEIx64;@oem45.inf,%TEE_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\system32\DRIVERS\TeeDriverx64.sys [2013-11-29 99288]
R3 netr28x;@netr28x.inf,%Generic.Service.DispName%;Ralink 802.11n Extensible Wireless Driver; C:\WINDOWS\System32\drivers\netr28x.sys [2017-03-18 2537984]
R3 pppop;PPPoP WAN Adapter; C:\WINDOWS\System32\drivers\pppop64.sys [2009-07-21 42528]
R3 rtbth;@oem20.inf,%General.Service.DispName%;RTBTH Bluetooth Device Driver; C:\WINDOWS\System32\drivers\rtbth.sys [2015-06-03 1219200]
R3 RTL8168;@oem15.inf,%rtl8168.Service.DispName%;Realtek 8168 NT Driver; C:\WINDOWS\System32\drivers\Rt630x64.sys [2013-11-29 830680]
R3 SmbDrvI;SmbDrvI; C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys [2016-04-28 52904]
R4 Avguniva;AVG Universal Driver; C:\WINDOWS\system32\DRIVERS\avguniva.sys []
S0 avgblog;avgblog; C:\WINDOWS\system32\drivers\avgbloga.sys [2017-08-24 336896]
S0 avgRvrt;avgRvrt; C:\WINDOWS\system32\drivers\avgRvrt.sys [2017-08-24 76832]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2017-03-18 123808]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2017-03-18 103328]
S0 megasas2i;megasas2i; C:\WINDOWS\System32\drivers\MegaSas2i.sys [2017-03-18 64416]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2017-03-18 58784]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2017-03-18 61848]
S0 scmbus;@scmbus.inf,%scmbus.SvcDesc%;Microsoft Storage Class Memory Bus Driver; C:\WINDOWS\System32\drivers\scmbus.sys [2017-03-18 91040]
S2 CldFlt;Windows Cloud Files Filter Driver; C:\WINDOWS\system32\drivers\cldflt.sys [2017-03-18 12288]
S3 AcpiDev;@acpidev.inf,%AcpiDev.SvcDesc%;ACPI Devices driver; C:\WINDOWS\System32\drivers\AcpiDev.sys [2017-03-18 20480]
S3 applockerfltr;@%systemroot%\system32\srpapi.dll,-102; C:\WINDOWS\system32\drivers\applockerfltr.sys [2017-03-18 17920]
S3 avgHwid;avgHwid; C:\WINDOWS\system32\drivers\avgHwid.sys [2017-08-24 39424]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\drivers\BTHport.sys [2017-07-28 982016]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2017-03-18 39424]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2017-03-18 122880]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2017-03-18 21504]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2017-03-18 51104]
S3 Huawei;HUAWEI Mobile Connect - USB Smart Card Reader; C:\WINDOWS\system32\DRIVERS\ewdcsc.sys [2009-12-15 29696]
S3 hvservice;@%SystemRoot%\system32\drivers\hvservice.sys,-16; C:\WINDOWS\system32\drivers\hvservice.sys [2017-03-18 74648]
S3 cht4iscsi;cht4iscsi; C:\WINDOWS\System32\drivers\cht4sx64.sys [2017-03-18 347032]
S3 cht4vbd;@cht4vx64.inf,%cht4vbd.generic%;Chelsio Virtual Bus Driver; C:\WINDOWS\System32\drivers\cht4vx64.sys [2017-03-18 2104224]
S3 iagpio;@iagpio.inf,%iagpio.SVCDESC%;Intel Serial IO GPIO Controller Driver; C:\WINDOWS\System32\drivers\iagpio.sys [2017-03-18 33280]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2017-03-18 81408]
S3 iaLPSS2i_GPIO2;@iaLPSS2i_GPIO2_SKL.inf,%iaLPSS2i_GPIO2.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [2017-03-18 70656]
S3 iaLPSS2i_GPIO2_BXT_P;@iaLPSS2i_GPIO2_BXT_P.inf,%iaLPSS2i_GPIO2_BXT_P.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [2017-03-18 85504]
S3 iaLPSS2i_I2C;@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2017-03-18 165376]
S3 iaLPSS2i_I2C_BXT_P;@iaLPSS2i_I2C_BXT_P.inf,%iaLPSS2i_I2C_BXT_P.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [2017-03-18 168448]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2017-03-18 526240]
S3 IndirectKmd;@%SystemRoot%\system32\drivers\IndirectKmd.sys,-100; C:\WINDOWS\System32\drivers\IndirectKmd.sys [2017-03-18 36864]
S3 intaud_WaveExtensible;Intel WiDi Audio Device; C:\WINDOWS\system32\drivers\intelaud.sys [2015-07-20 50240]
S3 irda;IrDA; C:\WINDOWS\system32\drivers\irda.sys [2017-03-18 120320]
S3 mausbhost;@mausbhost.inf,%MAUSBHost.ServiceName%;MA-USB Host Controller Driver; C:\WINDOWS\System32\drivers\mausbhost.sys [2017-03-18 405408]
S3 mausbip;@mausbhost.inf,%MAUSBIP.ServiceName%;MA-USB IP Filter Driver; C:\WINDOWS\System32\drivers\mausbip.sys [2017-03-18 51104]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2017-03-18 842656]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2017-03-18 108960]
S3 NetAdapterCx;Network Adapter Wdf Class Extension Library; C:\WINDOWS\system32\drivers\NetAdapterCx.sys [2017-03-18 122368]
S3 nvdimmn;@nvdimmn.inf,%nvdimmn.SvcDesc%;Microsoft NVDIMM-N device driver; C:\WINDOWS\System32\drivers\nvdimmn.sys [2017-03-18 80896]
S3 pmem;@pmem.inf,%pmem.SvcDesc%;Microsoft persistent memory disk driver; C:\WINDOWS\System32\drivers\pmem.sys [2017-03-18 101376]
S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2017-03-18 936864]
S3 RSP2STOR;Realtek PCIE CardReader Driver - P2; C:\WINDOWS\system32\DRIVERS\RtsP2Stor.sys [2016-03-04 310528]
S3 RTSPER;Realtek PCIe CardReader Driver; C:\WINDOWS\system32\DRIVERS\RtsPer.sys [2015-08-26 418008]
S3 SDFRd;@SDFRd.inf,%SDFRd.ServiceDesc%;SDF Reflector; C:\WINDOWS\System32\drivers\SDFRd.sys [2017-03-18 31128]
S3 SmbDrv;SmbDrv; C:\WINDOWS\System32\drivers\Smb_driver_AMDASF.sys [2013-02-06 28400]
S3 SpatialGraphFilter;Holographic Spatial Graph Filter; C:\WINDOWS\System32\drivers\SpatialGraphFilter.sys [2017-03-20 40352]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2017-07-19 83032]
R2 AERTFilters;Andrea RT Filters Service; C:\Program Files\Realtek\Audio\HDA\AERTSr64.EXE [2016-02-17 98208]
R2 AMD External Events Utility;AMD External Events Utility; C:\WINDOWS\system32\atiesrxx.exe [2015-10-07 264224]
R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
R2 AVG Antivirus;AVG Antivirus; C:\Program Files (x86)\AVG\Antivirus\AVGSvc.exe [2017-08-24 264432]
R2 AVG Firewall;AVG Firewall Service; C:\Program Files (x86)\AVG\Antivirus\afwServ.exe [2017-08-24 312712]
R2 avgsvc;AVG Service; C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe [2017-08-01 1428656]
R2 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2017-03-18 47664]
R2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
R2 DusmSvc;@%SystemRoot%\System32\dusmsvc.dll,-1; C:\WINDOWS\System32\svchost.exe [2017-03-18 47664]
R2 FortiSslvpnDaemon;FortiClient SSLVPN; C:\WINDOWS\SysWOW64\FortiSSLVPNdaemon.exe [2012-08-02 945448]
R2 HPSupportSolutionsFrameworkService;HP Support Solutions Framework Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [2017-07-06 321896]
R2 HPWMISVC;HPWMISVC; c:\Program Files (x86)\Hewlett-Packard\HP System Event\HPWMISVC.exe [2014-03-26 469304]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2013-08-22 15720]
R2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\WINDOWS\system32\igfxCUIService.exe [2016-05-03 337888]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2013-05-11 733696]
R2 Intel(R) ME Service;Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [2013-11-29 131544]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2013-11-29 169432]
R2 KVPNCSvc;Kerio VPN Client Service; C:\Program Files (x86)\Kerio\VPN Client\kvpncsvc.exe [2014-11-24 1966080]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2013-11-29 390616]
R2 MBAMService;Malwarebytes Service; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [2017-08-21 6058960]
R2 OneSyncSvc_336365a6e;Hostitel synchronizace_336365a6e; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
R2 RtkAudioService;Realtek Audio Service; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [2016-02-17 294616]
R2 SecurityHealthService;@%systemroot%\system32\SecurityHealthAgent.dll,-1002; C:\WINDOWS\system32\SecurityHealthService.exe [2017-07-13 336320]
R2 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
R3 avgbIDSAgent;avgbIDSAgent; C:\Program Files (x86)\AVG\Antivirus\x64\aswidsagenta.exe [2017-08-24 7481648]
R3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2017-03-18 47664]
R3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2017-02-10 43696]
R3 hpqwmiex;HP Software Framework Service; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe [2015-04-28 1102472]
R3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2017-03-18 47664]
R3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
R3 PimIndexMaintenanceSvc_336365a6e;Data kontaktů_336365a6e; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
R3 RmSvc;@%SystemRoot%\system32\RMapi.dll,-1001; C:\WINDOWS\System32\svchost.exe [2017-03-18 47664]
R3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
S2 CDPUserSvc;@%SystemRoot%\system32\cdpusersvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
S2 CDPUserSvc_336365a6e;Uživatelská služba platformy připojených zařízení_336365a6e; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
S2 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-28 144200]
S2 hpsrv;@oem7.inf,%hpservice_desc%;HP Service; C:\WINDOWS\system32\Hpservice.exe [2012-09-24 31040]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2017-03-18 47664]
S2 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
S2 MessagingService_336365a6e;Služba zasílání zpráv_336365a6e; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2017-08-09 272384]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
S3 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework64\v4.0.30319\aspnet_rc.dll,-1; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2017-03-18 52920]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2017-03-18 47664]
S3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2017-03-18 47664]
S3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2016-05-03 299488]
S3 DevicesFlowUserSvc;@%SystemRoot%\system32\DevicesFlowBroker.dll,-103; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
S3 DevicesFlowUserSvc_336365a6e;Tok zařízení_336365a6e; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2017-03-18 86528]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-201; C:\WINDOWS\System32\svchost.exe [2017-03-18 47664]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
S3 FrameServer;@%systemroot%\system32\FrameServer.dll,-100; C:\WINDOWS\System32\svchost.exe [2017-03-18 47664]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-28 144200]
S3 HvHost;@%SystemRoot%\system32\hvhostsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
S3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2012-04-24 169752]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2013-05-11 822232]
S3 IpxlatCfgSvc;@%Systemroot%\system32\ipxlatcfg.dll,-500; C:\WINDOWS\System32\svchost.exe [2017-03-18 47664]
S3 irmon;@%SystemRoot%\System32\irmon.dll,-2000; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files (x86)\Microsoft Office\Office14\GROOVE.EXE [2013-12-19 30814400]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2015-11-16 147624]
S3 NaturalAuthentication;@%systemroot%\system32\NaturalAuth.dll,-100; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2017-03-18 47664]
S3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
S3 ose;Office  Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2017-03-18 47664]
S3 SEMgrSvc;@%SystemRoot%\System32\SEMgrSvc.dll,-1001; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2017-03-18 1284608]
S3 spectrum;@%systemroot%\system32\spectrum.exe,-101; C:\WINDOWS\system32\spectrum.exe [2017-03-18 891904]
S4 shpamsvc;@%SystemRoot%\System32\Windows.SharedPC.AccountManager.dll,-100; C:\WINDOWS\System32\svchost.exe [2017-03-18 47664]

-----------------EOF-----------------
Děkuji.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118199
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o preventivku NTB

#2 Příspěvek od Rudy »

Zdravím!
Spusťte tuto utilitu:
Stáhněte AdwCleaner https://toolslib.net/downloads/viewdown ... dwcleaner/
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan<(hledání) a pak na >Clean< (mazání).
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Odpovědět