Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Některé programy přestali fungovat

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
jarda.kkl
Návštěvník
Návštěvník
Příspěvky: 25
Registrován: 27 led 2011 12:03

Některé programy přestali fungovat

#1 Příspěvek od jarda.kkl »

Dobrý den,
přestaly mi fungovat některé programy (legální) např. Quark 9., před časem našel Avast vir win32:PUP-gen z C:/Recycle.Bin. Chyba přetrvává i po reinstalaci.
Mám proto podezření na havěť a moc prosím o kontrolu logu. Mockrát předem děkuji za ochotu pomoci.

:o

Logfile of random's system information tool 1.10 (written by random/random)
Run by Jar at 2014-11-20 23:00:39
Microsoft Windows 8.1
System drive C: has 537 GB (57%) free of 938 GB
Total RAM: 8009 MB (54% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 23:00:44, on 20. 11. 2014
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17416)
Boot mode: Normal

Running processes:
C:\Program Files\Lenovo\Lenovo Mobile Hotspot\MobileHotspotclient.exe
C:\Program Files\Lenovo\Communications Utility\TpKnrres.exe
C:\PROGRAM FILES (x86)\Cyberlink\PowerDVD10\PDVD10Serv.exe
C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe
C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe
C:\Users\Jar\AppData\Roaming\ICQM\icq.exe
C:\Users\Jar\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\Microsoft Office\Office15\ONENOTEM.EXE
C:\Program Files (x86)\USB Camera\VM331STI.EXE
C:\Cracked License Manager 10\lmgrd.exe
C:\Program Files (x86)\Lenovo\RapidBoot HDD Accelerator\FBConsole.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe
C:\Program Files (x86)\Lenovo\LocationAware\lpdagent.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Jar.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://lenovo13-comm.msn.com/?pc=LNJB
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe,
O1 - Hosts: ::1 localhost
O2 - BHO: Lync Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office15\URLREDIR.DLL
O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\PROGRA~2\MICROS~1\Office15\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O4 - HKLM\..\Run: [331BigDog] C:\Program Files (x86)\USB Camera\VM331STI.EXE
O4 - HKLM\..\Run: [IMSS] "C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe"
O4 - HKLM\..\Run: [Fastboot] "C:\Program Files (x86)\Lenovo\RapidBoot HDD Accelerator\FBConsole.exe" /analysis
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O4 - HKLM\..\Run: [AdobeCS6ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [Bonus.SSR.FR11] "C:\Program Files (x86)\ABBYY FineReader 11\Bonus.ScreenshotReader.exe" /autorun
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [FUFAXRCV] "C:\Program Files (x86)\Epson Software\FAX Utility\FUFAXRCV.exe"
O4 - HKLM\..\Run: [FUFAXSTM] "C:\Program Files (x86)\Epson Software\FAX Utility\FUFAXSTM.exe"
O4 - HKLM\..\Run: [EEventManager] "C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe"
O4 - HKLM\..\Run: [StartW8Button] C:\Program Files (x86)\StartW8\bin\StartW8Button.exe
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "C:\Users\Jar\AppData\Roaming\Seznam.cz\szninstall.exe" -c
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "C:\Users\Jar\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
O4 - HKCU\..\Run: [icq] C:\Users\Jar\AppData\Roaming\ICQM\icq.exe -CU
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [Zoner Photo Studio Autoupdate] C:\Program Files\Zoner\Photo Studio 15\Program32\ZPSTRAY.EXE
O4 - HKUS\S-1-5-21-2723923963-643302241-2399918468-1001\..\RunOnce: [WAB Migrate] %ProgramFiles%\Windows Mail\wab.exe /Upgrade (User 'UpdatusUser')
O4 - Startup: ArcGIS License Manager 10 CRACKED.lnk = C:\Cracked License Manager 10\start_lic_mgr_invisible.vbs
O4 - Startup: Odeslat do OneNote.lnk = C:\Program Files (x86)\Microsoft Office\Office15\ONENOTEM.EXE
O4 - Global Startup: soubor.cmd
O8 - Extra context menu item: E&xportovat do Microsoft Excelu - res://C:\PROGRA~1\MICROS~1\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do OneNotu - res://C:\PROGRA~1\MICROS~1\Office15\ONBttnIE.dll/105
O9 - Extra button: Odeslat do OneNotu - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do OneNotu - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra button: @C:\WINDOWS\WindowsMobile\INetRepl.dll,-222 - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\WINDOWS\WindowsMobile\INetRepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\WINDOWS\WindowsMobile\INetRepl.dll
O9 - Extra 'Tools' menuitem: @C:\WINDOWS\WindowsMobile\INetRepl.dll,-223 - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\WINDOWS\WindowsMobile\INetRepl.dll
O9 - Extra button: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O9 - Extra 'Tools' menuitem: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O9 - Extra button: ICQ - {086C8477-4F71-4550-87FB-AF0AE8DF3E98} - C:\Users\Jar\AppData\Roaming\ICQM\icq.exe (HKCU)
O9 - Extra 'Tools' menuitem: ICQ - {086C8477-4F71-4550-87FB-AF0AE8DF3E98} - C:\Users\Jar\AppData\Roaming\ICQM\icq.exe (HKCU)
O10 - Unknown file in Winsock LSP: c:\windows\system32\vsocklib.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\vsocklib.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files (x86)\Microsoft Office\Office15\MSOSB.DLL
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Filter hijack: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL
O20 - AppInit_DLLs: C:\WINDOWS\SysWOW64\nvinit.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: Intel® Centrino® Wireless Bluetooth® + High Speed Service (AMPPALR3) - Intel Corporation - C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe
O23 - Service: ArcGIS License Manager - Acresso Software Inc. - C:\Program Files (x86)\ArcGIS\License10.0\bin\lmgrd.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: AVControlCenter - Lenovo Corporation - C:\Program Files\Lenovo\Communications Utility\AVControlCenter32.exe
O23 - Service: Bluetooth Device Monitor - Motorola Solutions, Inc. - C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
O23 - Service: Bluetooth OBEX Service - Motorola Solutions, Inc. - C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
O23 - Service: Intel(R) Centrino(R) Wireless Bluetooth(R) + High Speed Security Service (BTHSSecurityMgr) - Intel(R) Corporation - C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @C:\WINDOWS\system32\CxAudMsg64.exe,-100 (CxAudMsg) - Unknown owner - C:\WINDOWS\system32\CxAudMsg64.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: Epson Scanner Service (EpsonScanSvc) - Unknown owner - C:\WINDOWS\system32\EscSvc64.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: ExpressCache - Condusiv Technologies - C:\Program Files\Condusiv Technologies\ExpressCache\ExpressCache.exe
O23 - Service: FastbootService - Lenovo - C:\Program Files (x86)\Lenovo\RapidBoot HDD Accelerator\FBService.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @oem32.inf,%ibm.svcDesc0%;Lenovo PM Service (IBMPMSVC) - Unknown owner - C:\WINDOWS\system32\ibmpmsvc.exe (file missing)
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) ME Service - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
O23 - Service: Intel(R) Wireless Bluetooth(R) 4.0 Radio Management - Intel Corporation - C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe
O23 - Service: Intel(R) Small Business Advantage (intelsba) - Intel Corporation - C:\Program Files\Intel\Intel(R) Small Business Advantage\Service\Intel.SmallBusinessAdvantage.WindowsService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Lenovo QuickSnip Service - LENOVO INCORPORATED. - C:\Program Files\lenovo\QuickSnipService\QuickSnipService.exe
O23 - Service: Lenovo Settings Service - Lenovo Group Limited - C:\Program Files\Lenovo\SettingsDependency\SettingsService.exe
O23 - Service: Lenovo System Agent Service - LENOVO INCORPORATED. - C:\Program Files\lenovo\SystemAgent\SystemAgentService.exe
O23 - Service: Lenovo AVFramework Camera Privacy Controller (LENOVO.CAMMUTE) - Lenovo Corporation - C:\Program Files\Lenovo\Communications Utility\CamMute.exe
O23 - Service: Lenovo Microphone Mute (LENOVO.MICMUTE) - Lenovo Group Limited - C:\Program Files\LENOVO\HOTKEY\MICMUTE.exe
O23 - Service: Lenovo AVFramework Microphone Volume Controller and Dolby Interface (LENOVO.TPKNRSVC) - Lenovo Group Limited - C:\Program Files\Lenovo\Communications Utility\TPKNRSVC.exe
O23 - Service: Lenovo AVFramework Virtual Camera Controller Service (LENOVO.TVTVCAM) - Lenovo Corporation - C:\Program Files\Lenovo\Communications Utility\vcamsvc.exe
O23 - Service: Lenovo Auto Scroll (Lenovo.VIRTSCRLSVC) - Lenovo Group Limited - C:\Program Files\LENOVO\VIRTSCRL\lvvsst.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: LnvMHService (LnvHotSpotSvc) - Lenovo - C:\Program Files\Lenovo\Lenovo Mobile Hotspot\LnvHotSpotSvc.exe
O23 - Service: Location Task Manager (LocationTaskManager) - Unknown owner - C:\Program Files (x86)\Lenovo\LocationAware\loctaskmgr.exe
O23 - Service: LSCWinService - Unknown owner - C:\Program Files\Lenovo\Lenovo Solution Center\App\LSCWinService.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: Wireless PAN DHCP Server (MyWiFiDHCPDNS) - Unknown owner - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: Lenovo Settings Power Service (Power Manager DBC Service) - Lenovo - C:\Program Files (x86)\ThinkPad\Utilities\PWMDBSVC.EXE
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Conexant SmartAudio service (SAService) - Conexant Systems, Inc. - C:\WINDOWS\system32\SAsrv.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: Sony PC Companion - Avanquest Software - C:\Program Files (x86)\Sony\Sony PC Companion\PCCService.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: StartW8Service - SODATSW spol. s .r.o. - C:\Program Files (x86)\StartW8\bin\StartW8Service.exe
O23 - Service: System Update (SUService) - Unknown owner - C:\Program Files (x86)\Lenovo\System Update\SUService.exe
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: ThinkPad HDD APS Logging Service (TPHDEXLGSVC) - Unknown owner - C:\WINDOWS\System32\TPHDEXLG64.exe (file missing)
O23 - Service: Lenovo Hotkey Client Loader (TPHKLOAD) - Lenovo Group Limited - C:\Program Files\LENOVO\HOTKEY\TPHKLOAD.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: ValBioService - Validity Sensors, Inc. - C:\Program Files\Lenovo Fingerprint Reader\ValBioService.exe
O23 - Service: Validity WBF Policy Service (valWBFPolicyService) - Unknown owner - C:\windows\system32\valWBFPolicyService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: VMware Authorization Service (VMAuthdService) - VMware, Inc. - C:\Program Files (x86)\VMware\VMware Player\vmware-authd.exe
O23 - Service: VMware DHCP Service (VMnetDHCP) - VMware, Inc. - C:\WINDOWS\system32\vmnetdhcp.exe
O23 - Service: VMware USB Arbitration Service (VMUSBArbService) - VMware, Inc. - C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe
O23 - Service: VMware NAT Service - VMware, Inc. - C:\WINDOWS\system32\vmnat.exe
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Wacom Professional Service (WTabletServicePro) - Wacom Technology, Corp. - C:\Program Files\Tablet\Wacom\WTabletServicePro.exe
O23 - Service: Intel(R) PROSet/Wireless Zero Configuration Service (ZeroConfigService) - Intel® Corporation - C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe

--
End of file - 19574 bytes

======Listing Processes======





wininit.exe


C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
winlogon.exe
"dwm.exe"
C:\WINDOWS\system32\ibmpmsvc.exe
"C:\windows\system32\nvvsvc.exe"
C:\WINDOWS\system32\nvvsvc.exe -session -first
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalService
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
"C:\Program Files (x86)\StartW8\bin\StartW8Service.exe"
"C:\Program Files\Tablet\Wacom\WTabletServicePro.exe"
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-502be459-1f9b-4062-be67-1fd21b1a98fb -SystemEventPortName:HostProcess-324970db-3496-4375-9258-f4c42a2ad38e -IoCancelEventPortName:HostProcess-5f3445e2-b1c3-450e-a83e-19abc775d016 -NonStateChangingEventPortName:HostProcess-5ea7c1b4-2d2b-44ed-9de5-5e82301c616a -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:b9f78a26-168a-49c5-95b5-628772dca6a4 -DeviceGroupId:
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-f7a1044a-df9e-4716-8960-327e3bdb1459 -SystemEventPortName:HostProcess-23128b18-81ce-4606-816c-5d57ac8d3c00 -IoCancelEventPortName:HostProcess-504f3e7b-c4ca-4f73-a08e-bbf78ce16ae9 -NonStateChangingEventPortName:HostProcess-68dfa6ee-5a7e-4768-ad33-710245f4485e -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:4ca718fa-64c8-4508-a9df-80f65e03b2be -DeviceGroupId:WudfDefaultDevicePool
C:\WINDOWS\system32\svchost.exe -k NetworkService
C:\WINDOWS\system32\WLANExt.exe 38495345776
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k WbioSvcGroup
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\ArcGIS\License10.0\bin\lmgrd.exe"
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\WINDOWS\system32\CxAudMsg64.exe
"C:\Program Files (x86)\ArcGIS\License10.0\bin\lmgrd.exe" -c "C:\Program Files (x86)\ArcGIS\License10.0\bin\service.txt" -l "C:\Program Files (x86)\ArcGIS\License10.0\bin\lmgrd9.log" -z -local
"C:\Program Files\Intel\WiFi\bin\EvtEng.exe"
dashost.exe {262939f8-cc85-4c81-a1abbbd1f66c9b56}
"C:\Program Files\Condusiv Technologies\ExpressCache\ExpressCache.exe"
"C:\Program Files (x86)\Lenovo\RapidBoot HDD Accelerator\FBService.exe"
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files\lenovo\SystemAgent\SystemAgentService.exe"
"C:\Program Files\LENOVO\VIRTSCRL\lvvsst.exe"
"C:\Program Files (x86)\ThinkPad\Utilities\PWMDBSVC.EXE"
"C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe"
C:\WINDOWS\SysWOW64\SAsrv.exe
C:\WINDOWS\system32\svchost.exe -k imgsvc
"C:\Program Files\Lenovo Fingerprint Reader\ValBioService.exe"
C:\windows\system32\valWBFPolicyService.exe
"C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe"
C:\WINDOWS\SysWOW64\vmnat.exe
"C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe"
C:\WINDOWS\system32\EscSvc64.exe
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files\LENOVO\HOTKEY\MICMUTE.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files\LENOVO\HOTKEY\TPHKLOAD.exe"
"C:\Program Files (x86)\VMware\VMware Player\vmware-authd.exe"
C:\WINDOWS\SysWOW64\vmnetdhcp.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\PROGRA~1\LENOVO\VIRTSCRL\virtscrl.exe
"C:\Program Files (x86)\StartW8\bin\StartW8Button.exe"
taskhostex.exe
C:\Program Files\LENOVO\HOTKEY\tpnumlkd.exe
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
C:\Program Files (x86)\StartW8\bin\StartW8Menu.exe
C:\PROGRA~1\Lenovo\HOTKEY\TPOSD.EXE /UEFI\\.\pipe\{C6A9690C-33AE-4a55-8B65-9498CC0A7B34}.OnScreenDisplay
C:\WINDOWS\Explorer.EXE
"C:\Program Files\Synaptics\SynTP\SynTPLpr.exe"
C:\PROGRA~1\Lenovo\HOTKEY\SHTCTKY.EXE /UEFI\\.\pipe\{C6A9690C-33AE-4a55-8B65-9498CC0A7B34}.ShortcutKey
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
"C:\Program Files\Tablet\Wacom\Wacom_TabletUser.exe"
"C:\Program Files\Tablet\Wacom\WacomHost.exe" "C:\Program Files\Tablet\Wacom\Wacom_Tablet.exe" au
"C:\Program Files\Tablet\Wacom\Wacom_Tablet.exe" au
"C:\Program Files\Tablet\Wacom\Wacom_TouchUser.exe"
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Windows\System32\igfxtray.exe"
"C:\WINDOWS\system32\igfxsrvc.exe" -Embedding
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files\Lenovo\HOTKEY\extapsup.exe"
"C:\Windows\System32\TpShocks.exe"
"C:\Program Files\Lenovo\Lenovo Mobile Hotspot\MobileHotspotclient.exe"
"C:\Program Files\Lenovo\Communications Utility\TpKnrres.exe"
"C:\PROGRAM FILES (x86)\Cyberlink\PowerDVD10\PDVD10Serv.exe"
"C:\Program Files\CONEXANT\cAudioFilterAgent\CAudioFilterAgent64.exe"
"C:\Program Files\CONEXANT\ForteConfig\fmapp.exe"
"C:\Windows\WindowsMobile\wmdc.exe"
C:\WINDOWS\system32\svchost.exe -k WindowsMobile
"C:\Windows\System32\rundll32.exe" "C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll",TrayApp
"C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe"
"C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe" --domain-id F0399437-FD0C-4A48-B101-F0314A6172E4
"C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe"
"C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe"
"C:\Users\Jar\AppData\Roaming\ICQM\icq.exe" -CU
szndesktop.exe default start
"C:\Users\Jar\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe"
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
C:\WINDOWS\system32\cmd.exe /c ""C:\Cracked License Manager 10\start_server_license.cmd" "
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files (x86)\Microsoft Office\Office15\ONENOTEM.EXE" /tsr
"C:\Program Files (x86)\USB Camera\VM331STI.EXE"
lmgrd -z -c 37102011.dat
"C:\Program Files (x86)\Lenovo\RapidBoot HDD Accelerator\FBConsole.exe" /analysis
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe"
"C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe"
"C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe"
"C:\Program Files\lenovo\QuickSnipService\QuickSnipService.exe"
"C:\Program Files\lenovo\QuickSnipService\QuickSnipInput.exe"
"C:\Program Files\Lenovo\SettingsDependency\SettingsService.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files\Lenovo\Lenovo Mobile Hotspot\LnvHotSpotSvc.exe"
"C:\Program Files (x86)\Lenovo\LocationAware\loctaskmgr.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe"
"C:\Program Files (x86)\Lenovo\LocationAware\lpdagent.exe"
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\windows\system32\rundll32.exe C:\windows\system32\pla.dll,PlaHost "LSC Memory" "0x13a0_0x10c8_0x542befeb"
"C:\Program Files\Lenovo\Communications Utility\AVControlCenter32.exe"
"C:\Program Files\Lenovo\Communications Utility\vcamsvc.exe"
"C:\Program Files\Lenovo\Communications Utility\CamMute.exe"
"C:\Program Files\Lenovo\Communications Utility\TPKNRSVC.exe"
"C:\Program Files\Lenovo\Communications Utility\vcamsvchlpr.exe"
ARCGIS.exe -T Jarda 11.6 -1 -c "C:\Program Files (x86)\ArcGIS\License10.0\bin\service.txt" --lmgrd_start 546e4812 -l "C:\Program Files (x86)\ArcGIS\License10.0\bin\lmgrd9.log"
"C:\Program Files\Lenovo Fingerprint Reader\SwipeMonitor.exe" ytidilav
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="10628.0.630092872\1012864618" --disable-d3d11 --supports-dual-gpus=false --gpu-driver-bug-workarounds=1,6,16 --gpu-vendor-id=0x8086 --gpu-device-id=0x0166 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=10.18.10.3316 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutoReloadExperiment/Enabled/AutoReloadVisibleOnlyExperiment/Enabled/BrowserBlacklist/Enabled/DomRel-Enable/enable/EmbeddedSearch/Group8 pct:10h stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/Bootstrap/ExtensionInstallVerification/Enforce/GoogleNow/Enable/OmniboxBundledExperimentV1/StandardR4/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/RapporRollout/Enabled/RememberCertificateErrorDecisions/Default/SDCH/EnabledAll/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group5/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-1-Percent/group_03/UMA-Uniformity-Trial-10-Percent/group_05/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_04/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --extension-process --enable-webrtc-hw-h264-encoding --renderer-print-preview --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --channel="10628.2.385755920\665261485" /prefetch:673131151
taskhost.exe
C:\WINDOWS\splwow64.exe 8192
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutoReloadExperiment/Enabled/AutoReloadVisibleOnlyExperiment/Enabled/BrowserBlacklist/Enabled/DomRel-Enable/enable/EmbeddedSearch/Group8 pct:10h stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/Bootstrap/ExtensionInstallVerification/Enforce/GoogleNow/Enable/OmniboxBundledExperimentV1/StandardR4/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/RapporRollout/Enabled/RememberCertificateErrorDecisions/Default/SDCH/EnabledAll/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group5/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-1-Percent/group_03/UMA-Uniformity-Trial-10-Percent/group_05/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_04/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --renderer-print-preview --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --channel="10628.41.988155754\826563538" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutoReloadExperiment/Enabled/AutoReloadVisibleOnlyExperiment/Enabled/BrowserBlacklist/Enabled/DomRel-Enable/enable/EmbeddedSearch/Group8 pct:10h stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/Bootstrap/ExtensionInstallVerification/Enforce/GoogleNow/Enable/OmniboxBundledExperimentV1/StandardR4/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/RapporRollout/Enabled/RememberCertificateErrorDecisions/Default/SDCH/EnabledAll/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group5/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-1-Percent/group_03/UMA-Uniformity-Trial-10-Percent/group_05/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_04/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --renderer-print-preview --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --channel="10628.44.1435848701\23945416" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutoReloadExperiment/Enabled/AutoReloadVisibleOnlyExperiment/Enabled/BrowserBlacklist/Enabled/DomRel-Enable/enable/EmbeddedSearch/Group8 pct:10h stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/Bootstrap/ExtensionInstallVerification/Enforce/GoogleNow/Enable/OmniboxBundledExperimentV1/StandardR4/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/RapporRollout/Enabled/RememberCertificateErrorDecisions/Default/SDCH/EnabledAll/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group5/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-1-Percent/group_03/UMA-Uniformity-Trial-10-Percent/group_05/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_04/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --extension-process --enable-webrtc-hw-h264-encoding --renderer-print-preview --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --channel="10628.45.1846203453\896400158" /prefetch:673131151
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe9_ Global\UsGthrCtrlFltPipeMssGthrPipe9 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 572 576 584 65536 580
"C:\Users\Jar\Downloads\RSITx64.exe"

======Scheduled tasks folder======

C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\PutLockerDownloader V6.0-firefoxinstaller.job - C:\Program Files (x86)\PutLockerDownloader V6.0\PutLockerDownloader V6.0-firefoxinstaller.exe /installxpi /agentregpath='PutLockerDownloader V6.0' /extensionfilepath='C:\Program Files (x86)\PutLockerDownloader V6.0\45962.xpi' /appid=45962 /srcid='000687' /subid='0' /zdata='0' /bic=A3E126A3249D4C3193778607CD43A735IE /verifier=80d48c8a195644d43195547d86e5ccde /installerversion=1_31_153 /installerfullversion=1.31.153.0 /installationtime=1385757574 /statsdomain=http://stats.srvstatsdata.com /errorsdomain=http://errors.srvstatsdata.com /waitforbrowser=300 /extensionid=2142c4b4-74c0-4c8d-9be5-fdb4bf61b17b@fa0a20eb-0225-46ef-ba03-84e45a86b7d9.com /extensionversion=0.93 /prefsbranch=a2142c4b474c04c8d9be5fdb4bf61b17bfa0a20eb022546efba0384e45a86b7d9com45962 /updateurl=https://w9u6a2p6.ssl.hwcdn.net/plugin/f ... /45962.rdf /extensionname='PutLockerDownloader V6.0' /extensiondesc='Putlocker Downloader - download files 5 times faster!' /publishername='installdaddy' /allusers /allprofiles /externallog=''
C:\WINDOWS\tasks\PutLockerDownloader V6.0-updater.job - C:\Program Files (x86)\PutLockerDownloader V6.0\PutLockerDownloader V6.0-updater.exe /runupdater /agentregpath='PutLockerDownloader V6.0' /appid=45962 /srcid='000687' /subid='0' /zdata='0' /bic=A3E126A3249D4C3193778607CD43A735IE /verifier=80d48c8a195644d43195547d86e5ccde /installerversion=1_31_153 /installationtime=1385757574 /statsdomain=http://stats.srvstatsdata.com /errorsdomain=http://errors.srvstatsdata.com /monetizationdomain=http://stats.syncstatsdata.com /geoserviceurl=http://ipgeoapi.com/ /updatejsondomain=http://update.srvstatsdata.com /updaterversion=2 /externallog=''

=========Mozilla firefox=========

ProfilePath - C:\Users\Jar\AppData\Roaming\Mozilla\Firefox\Profiles\kxppyg3z.default-1388590095405

prefs.js - "browser.startup.homepage" - "https://www.facebook.com/"

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 15.0.0.223 Plugin
"Path"=C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_223.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42]
"Description"=Intel IPT WebApi plugin
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater]
"Description"=This plugin updates Intel WebAPI component
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=10.55.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=10.55.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/Lync,version=15.0]
"Description"=Microsoft Lync Plug-in for Firefox
"Path"=C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.0]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.1]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.2]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.3]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@wacom.com/wtPlugin,version=2.1.0.3]
"Description"=WebTablet Plugin API
"Path"=C:\Program Files (x86)\TabletPlugins\npWacomTabletPlugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\adobe.com/AdobeAAMDetect]
"Description"=
"Path"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 15.0.0.223 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF64_15_0_0_223.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@wacom.com/wtPlugin,version=2.1.0.3]
"Description"=WebTablet Plugin API
"Path"=C:\Program Files\TabletPlugins\npWacomTabletPlugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\adobe.com/AdobeAAMDetect]
"Description"=
"Path"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll


C:\Program Files (x86)\Mozilla Firefox\plugins\
npMeetingJoinPluginOC.dll
nppdf32.dll

C:\Users\Jar\AppData\Roaming\Mozilla\Firefox\Profiles\kxppyg3z.default-1388590095405\extensions\
zoteroWinWordIntegration@zotero.org
{ea614400-e918-4741-9a97-7a972ff7c30b}

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Lync Browser Helper - C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2012-10-02 205416]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2014-08-07 612248]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~1\Office15\URLREDIR.DLL [2012-10-02 877720]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~1\MICROS~1\Office15\GROOVEEX.DLL [2012-10-02 2322576]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Lync Browser Helper - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2012-10-02 139368]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2014-04-14 462760]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-08-07 457712]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office15\URLREDIR.DLL [2012-10-02 704664]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~2\MICROS~1\Office15\GROOVEEX.DLL [2012-10-02 1720976]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2014-04-14 171944]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{318A227B-5E9F-45bd-8999-7F8F10CA4CF5}

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"=C:\WINDOWS\system32\igfxtray.exe [2013-10-04 391128]
"HotKeysCmds"=C:\WINDOWS\system32\hkcmd.exe [2013-10-04 771032]
"Persistence"=C:\WINDOWS\system32\igfxpers.exe [2013-10-04 769496]
"LenovoOptMouseUpdate"=C:\Program Files\Lenovo\HOTKEY\extapsup.exe [2013-06-20 255480]
"TpShocks"=C:\WINDOWS\system32\TpShocks.exe [2013-02-12 382248]
"LnvMobHotspotClient"=C:\Program Files\Lenovo\Lenovo Mobile Hotspot\MobileHotspotclient.exe [2013-04-11 937976]
"LENOVO.TPKNRRES"=C:\Program Files\Lenovo\Communications Utility\TPKNRRES.exe [2013-04-16 594936]
"AdobeAAMUpdater-1.0"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2012-09-20 444904]
"cAudioFilterAgent"=C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe [2013-07-25 903384]
"ForteConfig"=C:\Program Files\Conexant\ForteConfig\fmapp.exe [2010-10-26 49056]
"SmartAudio"=C:\Program Files\CONEXANT\SAII\SACpl.exe [2012-06-13 1647616]
"Windows Mobile Device Center"=C:\WINDOWS\WindowsMobile\wmdc.exe [2007-05-31 660360]
"BTMTrayAgent"=C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll [2013-09-19 7818040]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"cz.seznam.software.autoupdate"=C:\Users\Jar\App [2013-11-29 10570]
"cz.seznam.software.szndesktop"=C:\Users\Jar\App [2013-11-29 10570]
"icq"=C:\Users\Jar\App [2013-11-29 10570]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2014-02-10 20922016]
"Zoner Photo Studio Autoupdate"=C:\Program Files\Zoner\Photo Studio 15\Program32\ZPSTRAY.EXE [2012-10-19 752736]
"AdobeBridge"= []

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"331BigDog"=C:\Program Files (x86)\USB Camera\VM331STI.EXE [2013-03-12 548864]
"IMSS"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe [2012-07-19 133440]
"Fastboot"=C:\Program Files (x86)\Lenovo\RapidBoot HDD Accelerator\FBConsole.exe [2013-09-27 738032]
"seznam-listicka-distribuce"=C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [2013-05-16 1062472]
"SwitchBoard"=C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
"AdobeCS6ServiceManager"=C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [2012-03-10 1073312]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-08-21 959176]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2014-08-07 4085896]
"Bonus.SSR.FR11"=C:\Program Files (x86)\ABBYY FineReader 11\Bonus.ScreenshotReader.exe [2011-08-18 925960]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2013-07-02 254336]
"FUFAXRCV"=C:\Program Files (x86)\Epson Software\FAX Utility\FUFAXRCV.exe [2012-04-03 502912]
"FUFAXSTM"=C:\Program Files (x86)\Epson Software\FAX Utility\FUFAXSTM.exe [2012-04-03 863360]
"EEventManager"=C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe [2012-04-02 1058912]
"StartW8Button"=C:\Program Files (x86)\StartW8\bin\StartW8Button.exe [2013-10-25 59784]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
soubor.cmd

C:\Users\Jar\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
ArcGIS License Manager 10 CRACKED.lnk - C:\Cracked License Manager 10\start_lic_mgr_invisible.vbs
Odeslat do OneNote.lnk - C:\Program Files (x86)\Microsoft Office\Office15\ONENOTEM.EXE

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\windows\system32\nvinitx.dll, C:\WINDOWS\system32\nvinitx.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2013-10-04 623616]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DisableTaskMgr"=0
"NoDispAppearancePage"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"PromptOnSecureDesktop"=0
"ConsentPromptBehaviorAdmin"=0
"DisableCAD"=1
"EnableFirstLogonAnimation"=1
"NoDispCPL"=0
"SynchronousUserGroupPolicy"=1
"DisplayLastLogonInfo"=0

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoPreviewPane"=0
"StartMenuLogOff"=0
"NoClose"=0
"NoTrayContextMenu"=0
"NoFolderOptions"=0
"NoViewContextMenu"=0
"TaskbarNoNotification"=0
"NoWinkeys"=0
"HideClock"=0
"HideSCANetwork"=0
"HideSCAVolume"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoRecentDocsNetHood"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2014-11-20 23:00:39 ----D---- C:\rsit
2014-11-20 23:00:39 ----D---- C:\Program Files\trend micro
2014-11-20 21:01:29 ----D---- C:\Program Files (x86)\ESRI
2014-11-20 20:28:14 ----A---- C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys
2014-11-20 20:28:01 ----D---- C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-11-20 20:28:01 ----A---- C:\WINDOWS\system32\drivers\mwac.sys
2014-11-20 20:28:01 ----A---- C:\WINDOWS\system32\drivers\mbamchameleon.sys
2014-11-20 19:27:07 ----D---- C:\ProgramData\IntelDLM
2014-11-20 19:21:12 ----D---- C:\Program Files (x86)\Intel Driver Update Utility
2014-11-20 18:37:09 ----A---- C:\WINDOWS\SYSWOW64\kerberos.dll
2014-11-20 18:37:09 ----A---- C:\WINDOWS\system32\kerberos.dll
2014-11-20 18:37:08 ----A---- C:\WINDOWS\SYSWOW64\pku2u.dll
2014-11-20 18:37:08 ----A---- C:\WINDOWS\system32\pku2u.dll
2014-11-18 17:32:13 ----D---- C:\WINDOWS\SYSWOW64\QuickTime
2014-11-13 03:00:15 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2014-11-13 01:03:34 ----A---- C:\WINDOWS\system32\user32.dll
2014-11-13 01:03:32 ----A---- C:\WINDOWS\SYSWOW64\user32.dll
2014-11-13 01:03:32 ----A---- C:\WINDOWS\system32\drivers\WdFilter.sys
2014-11-13 01:03:31 ----A---- C:\WINDOWS\system32\drivers\WdNisDrv.sys
2014-11-13 01:03:30 ----A---- C:\WINDOWS\system32\drivers\WdBoot.sys
2014-11-13 01:03:28 ----A---- C:\WINDOWS\SYSWOW64\winshfhc.dll
2014-11-13 01:03:28 ----A---- C:\WINDOWS\system32\winshfhc.dll
2014-11-13 01:02:59 ----A---- C:\WINDOWS\SYSWOW64\msi.dll
2014-11-13 01:02:59 ----A---- C:\WINDOWS\system32\msi.dll
2014-11-13 01:02:59 ----A---- C:\WINDOWS\system32\authui.dll
2014-11-13 01:02:58 ----A---- C:\WINDOWS\SYSWOW64\msihnd.dll
2014-11-13 01:02:58 ----A---- C:\WINDOWS\SYSWOW64\authui.dll
2014-11-13 01:02:58 ----A---- C:\WINDOWS\system32\msihnd.dll
2014-11-13 01:02:58 ----A---- C:\WINDOWS\system32\consent.exe
2014-11-13 01:02:58 ----A---- C:\WINDOWS\system32\appinfo.dll
2014-11-12 21:05:55 ----A---- C:\WINDOWS\system32\mshtml.dll
2014-11-12 21:05:53 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2014-11-12 21:05:10 ----A---- C:\WINDOWS\system32\ieframe.dll
2014-11-12 21:05:02 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2014-11-12 21:04:55 ----A---- C:\WINDOWS\system32\jscript9.dll
2014-11-12 21:04:52 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2014-11-12 21:04:50 ----A---- C:\WINDOWS\system32\wininet.dll
2014-11-12 21:04:49 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2014-11-12 21:04:49 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2014-11-12 21:04:49 ----A---- C:\WINDOWS\system32\urlmon.dll
2014-11-12 21:04:48 ----A---- C:\WINDOWS\system32\inetcomm.dll
2014-11-12 21:04:48 ----A---- C:\WINDOWS\system32\iertutil.dll
2014-11-12 21:04:47 ----A---- C:\WINDOWS\SYSWOW64\inetcomm.dll
2014-11-12 21:04:47 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2014-11-12 21:04:47 ----A---- C:\WINDOWS\system32\actxprxy.dll
2014-11-12 21:04:46 ----A---- C:\WINDOWS\SYSWOW64\jscript.dll
2014-11-12 21:04:45 ----A---- C:\WINDOWS\system32\jscript9diag.dll
2014-11-12 21:04:45 ----A---- C:\WINDOWS\system32\jscript.dll
2014-11-12 21:04:44 ----A---- C:\WINDOWS\system32\ieui.dll
2014-11-12 21:04:43 ----A---- C:\WINDOWS\SYSWOW64\jscript9diag.dll
2014-11-12 21:04:43 ----A---- C:\WINDOWS\system32\msfeeds.dll
2014-11-12 21:04:42 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2014-11-12 21:04:42 ----A---- C:\WINDOWS\SYSWOW64\ieui.dll
2014-11-12 21:04:41 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2014-11-12 21:04:41 ----A---- C:\WINDOWS\system32\vbscript.dll
2014-11-12 21:04:39 ----A---- C:\WINDOWS\SYSWOW64\ieapfltr.dll
2014-11-12 21:04:39 ----A---- C:\WINDOWS\system32\dxtrans.dll
2014-11-12 21:04:39 ----A---- C:\WINDOWS\system32\dxtmsft.dll
2014-11-12 21:04:38 ----A---- C:\WINDOWS\SYSWOW64\dxtrans.dll
2014-11-12 21:04:38 ----A---- C:\WINDOWS\SYSWOW64\dxtmsft.dll
2014-11-12 21:04:38 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2014-11-12 21:04:37 ----A---- C:\WINDOWS\system32\ieetwproxystub.dll
2014-11-12 21:04:36 ----A---- C:\WINDOWS\SYSWOW64\webcheck.dll
2014-11-12 21:04:36 ----A---- C:\WINDOWS\system32\webcheck.dll
2014-11-12 21:04:35 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll
2014-11-12 21:04:34 ----A---- C:\WINDOWS\SYSWOW64\hlink.dll
2014-11-12 21:04:33 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2014-11-12 21:04:33 ----A---- C:\WINDOWS\system32\hlink.dll
2014-11-12 21:04:32 ----A---- C:\WINDOWS\SYSWOW64\msrating.dll
2014-11-12 21:04:32 ----A---- C:\WINDOWS\SYSWOW64\iesysprep.dll
2014-11-12 21:04:32 ----A---- C:\WINDOWS\system32\ieUnatt.exe
2014-11-12 21:04:32 ----A---- C:\WINDOWS\system32\iesysprep.dll
2014-11-12 21:04:32 ----A---- C:\WINDOWS\system32\iepeers.dll
2014-11-12 21:04:32 ----A---- C:\WINDOWS\system32\ieetwcollector.exe
2014-11-12 21:04:32 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2014-11-12 21:04:31 ----A---- C:\WINDOWS\SYSWOW64\inseng.dll
2014-11-12 21:04:31 ----A---- C:\WINDOWS\SYSWOW64\ieUnatt.exe
2014-11-12 21:04:31 ----A---- C:\WINDOWS\SYSWOW64\iepeers.dll
2014-11-12 21:04:31 ----A---- C:\WINDOWS\SYSWOW64\actxprxy.dll
2014-11-12 21:04:30 ----A---- C:\WINDOWS\SYSWOW64\msfeedsbs.dll
2014-11-12 21:04:30 ----A---- C:\WINDOWS\SYSWOW64\jsproxy.dll
2014-11-12 21:04:30 ----A---- C:\WINDOWS\system32\msfeedsbs.dll
2014-11-12 21:04:30 ----A---- C:\WINDOWS\system32\JavaScriptCollectionAgent.dll
2014-11-12 21:04:30 ----A---- C:\WINDOWS\system32\inseng.dll
2014-11-12 21:04:29 ----A---- C:\WINDOWS\SYSWOW64\occache.dll
2014-11-12 21:04:29 ----A---- C:\WINDOWS\SYSWOW64\mshtmled.dll
2014-11-12 21:04:29 ----A---- C:\WINDOWS\SYSWOW64\IEAdvpack.dll
2014-11-12 21:04:29 ----A---- C:\WINDOWS\system32\mshtmled.dll
2014-11-12 21:04:29 ----A---- C:\WINDOWS\system32\jsproxy.dll
2014-11-12 21:04:28 ----A---- C:\WINDOWS\SYSWOW64\JavaScriptCollectionAgent.dll
2014-11-12 21:04:28 ----A---- C:\WINDOWS\SYSWOW64\iexpress.exe
2014-11-12 21:04:28 ----A---- C:\WINDOWS\system32\msrating.dll
2014-11-12 21:04:28 ----A---- C:\WINDOWS\system32\MshtmlDac.dll
2014-11-12 21:04:27 ----A---- C:\WINDOWS\SYSWOW64\MshtmlDac.dll
2014-11-12 21:04:27 ----A---- C:\WINDOWS\SYSWOW64\imgutil.dll
2014-11-12 21:04:27 ----A---- C:\WINDOWS\SYSWOW64\ieetwproxystub.dll
2014-11-12 21:04:27 ----A---- C:\WINDOWS\system32\occache.dll
2014-11-12 21:04:27 ----A---- C:\WINDOWS\system32\imgutil.dll
2014-11-12 21:04:26 ----A---- C:\WINDOWS\SYSWOW64\pngfilt.dll
2014-11-12 21:04:26 ----A---- C:\WINDOWS\SYSWOW64\licmgr10.dll
2014-11-12 21:04:26 ----A---- C:\WINDOWS\system32\pngfilt.dll
2014-11-12 21:04:26 ----A---- C:\WINDOWS\system32\licmgr10.dll
2014-11-12 21:04:25 ----A---- C:\WINDOWS\SYSWOW64\wextract.exe
2014-11-12 21:04:25 ----A---- C:\WINDOWS\SYSWOW64\url.dll
2014-11-12 21:04:25 ----A---- C:\WINDOWS\SYSWOW64\iesetup.dll
2014-11-12 21:04:25 ----A---- C:\WINDOWS\SYSWOW64\iernonce.dll
2014-11-12 21:04:25 ----A---- C:\WINDOWS\system32\iernonce.dll
2014-11-12 21:04:24 ----A---- C:\WINDOWS\system32\wextract.exe
2014-11-12 21:04:24 ----A---- C:\WINDOWS\system32\url.dll
2014-11-12 21:04:24 ----A---- C:\WINDOWS\system32\IEAdvpack.dll
2014-11-12 21:04:23 ----A---- C:\WINDOWS\SYSWOW64\mshta.exe
2014-11-12 21:04:23 ----A---- C:\WINDOWS\SYSWOW64\msfeedssync.exe
2014-11-12 21:04:23 ----A---- C:\WINDOWS\system32\mshta.exe
2014-11-12 21:04:23 ----A---- C:\WINDOWS\system32\msfeedssync.exe
2014-11-12 21:04:23 ----A---- C:\WINDOWS\system32\iexpress.exe
2014-11-12 21:04:23 ----A---- C:\WINDOWS\system32\iesetup.dll
2014-11-12 21:03:38 ----A---- C:\WINDOWS\SYSWOW64\schannel.dll
2014-11-12 21:03:38 ----A---- C:\WINDOWS\system32\schannel.dll
2014-11-12 21:03:38 ----A---- C:\WINDOWS\system32\dpapisrv.dll
2014-11-12 21:03:37 ----A---- C:\WINDOWS\SYSWOW64\ncryptsslp.dll
2014-11-12 21:03:37 ----A---- C:\WINDOWS\system32\ncryptsslp.dll
2014-11-12 21:03:15 ----A---- C:\WINDOWS\SYSWOW64\certcli.dll
2014-11-12 21:03:15 ----A---- C:\WINDOWS\system32\rdpcorets.dll
2014-11-12 21:03:15 ----A---- C:\WINDOWS\system32\lsasrv.dll
2014-11-12 21:03:15 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2014-11-12 21:03:15 ----A---- C:\WINDOWS\system32\certcli.dll
2014-11-12 21:03:14 ----A---- C:\WINDOWS\SYSWOW64\adtschema.dll
2014-11-12 21:03:14 ----A---- C:\WINDOWS\system32\rfxvmt.dll
2014-11-12 21:03:14 ----A---- C:\WINDOWS\system32\drivers\rdpvideominiport.sys
2014-11-12 21:03:14 ----A---- C:\WINDOWS\system32\drivers\ksecpkg.sys
2014-11-12 21:03:14 ----A---- C:\WINDOWS\system32\adtschema.dll
2014-11-12 21:03:13 ----A---- C:\WINDOWS\SYSWOW64\msaudite.dll
2014-11-12 21:03:13 ----A---- C:\WINDOWS\system32\rdpudd.dll
2014-11-12 21:03:13 ----A---- C:\WINDOWS\system32\msaudite.dll
2014-11-12 21:02:27 ----A---- C:\WINDOWS\SYSWOW64\oleaut32.dll
2014-11-12 21:02:27 ----A---- C:\WINDOWS\system32\oleaut32.dll
2014-11-12 21:02:23 ----A---- C:\WINDOWS\system32\wuaueng.dll
2014-11-12 21:02:22 ----A---- C:\WINDOWS\SYSWOW64\wuwebv.dll
2014-11-12 21:02:22 ----A---- C:\WINDOWS\SYSWOW64\wuapi.dll
2014-11-12 21:02:22 ----A---- C:\WINDOWS\system32\WUSettingsProvider.dll
2014-11-12 21:02:22 ----A---- C:\WINDOWS\system32\wucltux.dll
2014-11-12 21:02:22 ----A---- C:\WINDOWS\system32\wuapi.dll
2014-11-12 21:02:21 ----A---- C:\WINDOWS\SYSWOW64\wups.dll
2014-11-12 21:02:21 ----A---- C:\WINDOWS\SYSWOW64\wudriver.dll
2014-11-12 21:02:21 ----A---- C:\WINDOWS\SYSWOW64\wuapp.exe
2014-11-12 21:02:21 ----A---- C:\WINDOWS\system32\wuwebv.dll
2014-11-12 21:02:21 ----A---- C:\WINDOWS\system32\wups2.dll
2014-11-12 21:02:21 ----A---- C:\WINDOWS\system32\wups.dll
2014-11-12 21:02:21 ----A---- C:\WINDOWS\system32\wudriver.dll
2014-11-12 21:02:21 ----A---- C:\WINDOWS\system32\wuauclt.exe
2014-11-12 21:02:21 ----A---- C:\WINDOWS\system32\wuapp.exe
2014-11-12 21:02:21 ----A---- C:\WINDOWS\system32\wuaext.dll
2014-11-12 20:32:40 ----A---- C:\WINDOWS\SYSWOW64\msxml3.dll
2014-11-12 20:32:40 ----A---- C:\WINDOWS\system32\msxml3.dll
2014-11-12 20:32:38 ----A---- C:\WINDOWS\system32\audiosrv.dll
2014-11-12 20:32:37 ----A---- C:\WINDOWS\SYSWOW64\AudioSes.dll
2014-11-12 20:32:37 ----A---- C:\WINDOWS\SYSWOW64\AUDIOKSE.dll
2014-11-12 20:32:37 ----A---- C:\WINDOWS\SYSWOW64\AudioEng.dll
2014-11-12 20:32:37 ----A---- C:\WINDOWS\system32\win32k.sys
2014-11-12 20:32:37 ----A---- C:\WINDOWS\system32\EncDump.dll
2014-11-12 20:32:37 ----A---- C:\WINDOWS\system32\AudioSes.dll
2014-11-12 20:32:37 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll
2014-11-12 20:32:37 ----A---- C:\WINDOWS\system32\AudioEng.dll
2014-11-12 20:32:37 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2014-11-12 20:32:37 ----A---- C:\WINDOWS\system32\audiodg.exe
2014-11-12 20:32:36 ----A---- C:\WINDOWS\SYSWOW64\packager.dll
2014-11-12 20:32:36 ----A---- C:\WINDOWS\system32\packager.dll
2014-11-12 20:32:34 ----A---- C:\WINDOWS\system32\shell32.dll
2014-11-12 20:32:33 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2014-11-12 20:32:32 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2014-11-12 20:32:30 ----A---- C:\WINDOWS\system32\twinui.dll
2014-11-12 20:32:30 ----A---- C:\WINDOWS\system32\SettingsHandlers.dll
2014-11-12 20:32:29 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2014-11-12 20:32:29 ----A---- C:\WINDOWS\system32\localspl.dll
2014-11-12 20:32:29 ----A---- C:\WINDOWS\system32\drivers\tcpip.sys
2014-11-12 20:32:28 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2014-11-12 20:32:28 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2014-11-12 20:32:27 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2014-11-12 20:32:27 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2014-11-12 20:32:27 ----A---- C:\WINDOWS\system32\win32spl.dll
2014-11-12 20:32:27 ----A---- C:\WINDOWS\system32\drivers\netio.sys
2014-11-12 20:32:26 ----A---- C:\WINDOWS\SYSWOW64\WsmSvc.dll
2014-11-12 20:32:26 ----A---- C:\WINDOWS\SYSWOW64\puiobj.dll
2014-11-12 20:32:26 ----A---- C:\WINDOWS\system32\WsmSvc.dll
2014-11-12 20:32:26 ----A---- C:\WINDOWS\system32\puiobj.dll
2014-11-12 20:32:25 ----AC---- C:\WINDOWS\system32\drivers\USBSTOR.SYS
2014-11-12 20:32:25 ----A---- C:\WINDOWS\SYSWOW64\untfs.dll
2014-11-12 20:32:25 ----A---- C:\WINDOWS\system32\untfs.dll
2014-11-12 20:32:25 ----A---- C:\WINDOWS\system32\drivers\FWPKCLNT.SYS
2014-11-12 20:32:24 ----A---- C:\WINDOWS\system32\FXSCOMEX.dll
2014-11-12 20:32:23 ----A---- C:\WINDOWS\SYSWOW64\FXSAPI.dll
2014-11-12 20:32:23 ----A---- C:\WINDOWS\system32\FXSAPI.dll
2014-11-08 09:30:48 ----D---- C:\Program Files (x86)\Mozilla Firefox

======List of files/folders modified in the last 1 month======

2014-11-20 23:00:39 ----D---- C:\Program Files
2014-11-20 23:00:00 ----D---- C:\WINDOWS\system32\sru
2014-11-20 22:57:32 ----D---- C:\WINDOWS\Prefetch
2014-11-20 22:38:02 ----RD---- C:\WINDOWS\System32
2014-11-20 22:38:02 ----D---- C:\WINDOWS\Inf
2014-11-20 22:38:02 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2014-11-20 22:35:21 ----D---- C:\Users\Jar\AppData\Roaming\ESRI
2014-11-20 22:09:22 ----D---- C:\Users\Jar\AppData\Roaming\Skype
2014-11-20 21:36:41 ----D---- C:\WINDOWS\Temp
2014-11-20 21:10:00 ----D---- C:\WINDOWS\Microsoft.NET
2014-11-20 21:05:19 ----D---- C:\Users\Jar\AppData\Roaming\Seznam.cz
2014-11-20 21:01:29 ----RD---- C:\Program Files (x86)
2014-11-20 21:01:24 ----A---- C:\WINDOWS\SYSWOW64\log.txt
2014-11-20 20:59:18 ----D---- C:\ProgramData\VMware
2014-11-20 20:59:03 ----D---- C:\WINDOWS\system32\drivers
2014-11-20 20:59:03 ----D---- C:\WINDOWS\PLA
2014-11-20 20:28:01 ----D---- C:\ProgramData\Malwarebytes
2014-11-20 20:28:01 ----D---- C:\Program Files (x86)\Malwarebytes' Anti-Malware
2014-11-20 19:55:03 ----D---- C:\WINDOWS\system32\config
2014-11-20 19:53:12 ----D---- C:\WINDOWS\system32\wdi
2014-11-20 19:51:23 ----D---- C:\WINDOWS\WinSxS
2014-11-20 19:50:15 ----D---- C:\WINDOWS\SysWOW64
2014-11-20 19:28:08 ----D---- C:\WINDOWS\CbsTemp
2014-11-20 19:27:07 ----HD---- C:\ProgramData
2014-11-20 19:21:13 ----SHD---- C:\WINDOWS\Installer
2014-11-20 19:21:13 ----SHD---- C:\System Volume Information
2014-11-20 19:21:11 ----D---- C:\ProgramData\Package Cache
2014-11-20 10:01:09 ----D---- C:\Users\Jar\AppData\Roaming\vlc
2014-11-20 00:26:36 ----D---- C:\Users\Jar\AppData\Roaming\Adobe
2014-11-19 23:37:13 ----D---- C:\WINDOWS\system32\DriverStore
2014-11-18 17:43:47 ----D---- C:\WINDOWS\Tasks
2014-11-18 17:32:16 ----D---- C:\ProgramData\Quark
2014-11-18 16:57:01 ----D---- C:\ProgramData\StartW8
2014-11-14 03:23:22 ----D---- C:\WINDOWS\system32\catroot2
2014-11-14 01:21:32 ----D---- C:\WINDOWS\rescache
2014-11-13 22:55:22 ----D---- C:\Program Files\Windows Defender
2014-11-13 22:55:22 ----D---- C:\Program Files (x86)\Windows Defender
2014-11-13 22:19:18 ----HD---- C:\Program Files\WindowsApps
2014-11-13 22:19:18 ----D---- C:\WINDOWS\AppReadiness
2014-11-13 22:18:53 ----D---- C:\WINDOWS\system32\MRT
2014-11-13 22:15:01 ----A---- C:\WINDOWS\system32\MRT.exe
2014-11-13 10:03:05 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2014-11-13 03:17:37 ----RSD---- C:\WINDOWS\assembly
2014-11-13 02:38:24 ----D---- C:\TRANSLAT
2014-11-13 01:37:45 ----RD---- C:\WINDOWS\ToastData
2014-11-13 01:37:45 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2014-11-13 01:37:45 ----D---- C:\WINDOWS\apppatch
2014-11-13 01:37:44 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2014-11-13 01:37:44 ----D---- C:\WINDOWS\system32\wbem
2014-11-13 01:37:44 ----D---- C:\WINDOWS\system32\cs-CZ
2014-11-13 01:37:43 ----D---- C:\WINDOWS\SYSWOW64\migration
2014-11-13 01:37:43 ----D---- C:\WINDOWS\system32\migration
2014-11-13 01:37:43 ----D---- C:\Program Files (x86)\Internet Explorer
2014-11-13 01:37:42 ----D---- C:\Program Files\Internet Explorer
2014-11-11 19:36:31 ----D---- C:\Users\Jar\AppData\Roaming\VMware
2014-11-08 13:56:46 ----D---- C:\WINDOWS\system32\Tasks
2014-11-01 16:04:56 ----D---- C:\WINDOWS\system32\NDF

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswRvrt;avast! Revert; C:\WINDOWS\system32\drivers\aswRvrt.sys [2014-08-07 65776]
R0 aswVmm;avast! VM Monitor; C:\WINDOWS\system32\drivers\aswVmm.sys [2014-08-07 224896]
R0 excsd;ExpressCache Storage Filter Driver; C:\WINDOWS\system32\DRIVERS\excsd.sys [2013-01-08 112552]
R0 Fastboot;Fastboot; C:\WINDOWS\System32\DRIVERS\fastboot.sys [2013-09-27 66288]
R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2012-09-01 647736]
R0 nvpciflt;nvpciflt; C:\WINDOWS\system32\DRIVERS\nvpciflt.sys [2013-09-05 30496]
R0 PxHlpa64;PxHlpa64; C:\WINDOWS\System32\Drivers\PxHlpa64.sys [2011-11-03 56208]
R0 Shockprf;Shockprf; C:\WINDOWS\System32\DRIVERS\Apsx64.sys [2012-07-23 148328]
R0 TPDIGIMN;TPDIGIMN; C:\WINDOWS\System32\DRIVERS\ApsHM64.sys [2012-09-06 25448]
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [2014-08-07 93568]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2014-08-07 1041168]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2014-08-07 427360]
R1 excfs;ExpressCache File System Filter Driver; C:\WINDOWS\system32\DRIVERS\excfs.sys [2013-01-08 26024]
R1 TPPWRIF;TPPWRIF; C:\WINDOWS\System32\drivers\Tppwr64v.sys [2013-04-18 20328]
R2 aswHwid;avast! HardwareID; C:\WINDOWS\system32\drivers\aswHwid.sys [2014-08-07 29208]
R2 aswMonFlt;aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [2014-08-07 79184]
R2 aswStm;aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [2014-08-07 92008]
R2 hcmon;VMware hcmon; \??\C:\WINDOWS\system32\drivers\hcmon.sys [2011-08-22 39024]
R3 AMPPAL;@oem8.inf,%AMPPAL.SVCDESC%;Virtuální adaptér Intel® Centrino® Wireless Bluetooth® + High Speed; C:\WINDOWS\System32\drivers\AMPPAL.sys [2013-02-13 164832]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\Drivers\BTHUSB.sys [2014-01-31 81920]
R3 btmhsf;btmhsf; C:\WINDOWS\system32\DRIVERS\btmhsf.sys [2013-09-05 1390904]
R3 CnxtHdAudService;@oem12.inf,%UAAFunctionDriverForHdAudio.SvcDesc%;Conexant UAA Function Driver for High Definition Audio Service; C:\WINDOWS\system32\drivers\CHDRT64.sys [2013-07-11 1299648]
R3 IBMPMDRV;IBMPMDRV; C:\WINDOWS\system32\DRIVERS\ibmpmdrv.sys [2012-12-05 42824]
R3 iBtFltCoex;iBtFltCoex; C:\WINDOWS\system32\DRIVERS\iBtFltCoex.sys [2013-04-23 69088]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2013-10-04 4185600]
R3 IntcDAud;@oem36.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2012-06-19 342528]
R3 iwdbus;@oem42.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\WINDOWS\System32\drivers\iwdbus.sys [2013-09-26 27032]
R3 MEIx64;@oem33.inf,%HECI_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\System32\drivers\HECIx64.sys [2012-07-02 62784]
R3 NETwNe64;@oem43.inf,___ %NIC_Service_DispName_WIN8_64%;___ Ovladač adaptéru řady Intel(R) Wireless WiFi Link 5000 pro systém Windows 8 64 Bit; C:\WINDOWS\system32\DRIVERS\NETwew00.sys [2013-09-05 3345376]
R3 nvlddmkm;nvlddmkm; C:\WINDOWS\system32\DRIVERS\nvlddmkm.sys [2013-09-05 11273504]
R3 RSP2STOR;@oem23.inf,%Rts5229%;Realtek PCIE CardReader Driver - P2; C:\WINDOWS\system32\DRIVERS\RtsP2Stor.sys [2013-05-16 288840]
R3 RTL8168;@netrt630x64.inf,%rtl8168.Service.DispName%;Realtek 8168 NT Driver; C:\WINDOWS\system32\DRIVERS\Rt630x64.sys [2013-06-18 591360]
R3 SmbDrvI;SmbDrvI; C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys [2014-02-24 31472]
R3 SynTP;@oem119.inf,%SynTP.SvcDesc%;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys [2014-02-24 552176]
R3 usb3Hub;@oem21.inf,%usb3Hub.SVCDESC%;USB-IF USB 3.0 Hub; C:\WINDOWS\System32\drivers\usb3Hub.sys [2012-11-29 47072]
R3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;Zobrazovací zařízení USB (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys [2013-08-22 212224]
S2 sbapifs;sbapifs; C:\WINDOWS\system32\DRIVERS\sbapifs.sys []
S3 BthA2DP;@wdma_bt.inf,%BthA2DP.SvcDesc%;Bluetooth stereo; C:\WINDOWS\system32\drivers\BthA2DP.sys [2013-08-22 131584]
S3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Bluetooth Enumerator Service; C:\WINDOWS\System32\drivers\BthEnum.sys [2013-08-22 53248]
S3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\WINDOWS\System32\drivers\BthLEEnum.sys [2013-12-04 226304]
S3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\System32\drivers\bthpan.sys [2014-07-24 118272]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\Drivers\BTHport.sys [2014-07-24 1200640]
S3 btmaux;@oem10.inf,%BTMAUX.ServiceDesc%;Intel Bluetooth Auxiliary Service; C:\WINDOWS\system32\DRIVERS\btmaux.sys [2013-07-22 140600]
S3 hidkmdf;@oem52.inf,%hidkmdf.SVCDESC%;KMDF Driver; C:\WINDOWS\System32\drivers\hidkmdf.sys [2013-09-18 14136]
S3 intaud_WaveExtensible;@oem41.inf,%INTAUD_WEX.SvcDesc%;Intel WiDi Audio Device; C:\WINDOWS\system32\drivers\intelaud.sys [2013-09-26 39320]
S3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2014-01-27 167424]
S3 SWIX64;SWIX64; \??\C:\Program Files (x86)\Lenovo\System Update\tvsuhd64.sys [2012-09-12 33856]
S3 usb_rndisx;@netrndis.inf,%usb_rndis.Service.DispName%;Adaptér USB RNDIS; C:\WINDOWS\System32\drivers\usb8023x.sys [2013-08-22 20992]
S3 vm331avs;@oem4.inf,%USBCamera.DeviceDesc2%;Digital Camera 1; C:\WINDOWS\System32\Drivers\vm331avs.sys [2013-03-01 1045248]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2014-09-12 64704]
R2 AMPPALR3;Intel® Centrino® Wireless Bluetooth® + High Speed Service; C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe [2013-02-13 770528]
R2 ArcGIS License Manager;ArcGIS License Manager; C:\Program Files (x86)\ArcGIS\License10.0\bin\lmgrd.exe [2008-11-06 1500424]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2014-08-07 50344]
R2 Bluetooth Device Monitor;Bluetooth Device Monitor; C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe [2013-08-26 1137016]
R2 Bluetooth OBEX Service;Bluetooth OBEX Service; C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe [2013-08-26 1157496]
R2 BTHSSecurityMgr;Intel(R) Centrino(R) Wireless Bluetooth(R) + High Speed Security Service; C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe [2012-09-13 135984]
R2 CxAudMsg;@C:\WINDOWS\system32\CxAudMsg64.exe,-100; C:\WINDOWS\system32\CxAudMsg64.exe [2013-07-25 206552]
R2 EpsonScanSvc;Epson Scanner Service; C:\WINDOWS\system32\EscSvc64.exe [2011-12-12 135824]
R2 EvtEng;Intel(R) PROSet/Wireless Event Log; C:\Program Files\Intel\WiFi\bin\EvtEng.exe [2013-02-09 621296]
R2 ExpressCache;ExpressCache; C:\Program Files\Condusiv Technologies\ExpressCache\ExpressCache.exe [2013-01-08 107944]
R2 FastbootService;FastbootService; C:\Program Files (x86)\Lenovo\RapidBoot HDD Accelerator\FBService.exe [2013-09-27 140016]
R2 IBMPMSVC;@oem32.inf,%ibm.svcDesc0%;Lenovo PM Service; C:\WINDOWS\system32\ibmpmsvc.exe [2012-12-05 60272]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-06-20 634632]
R2 Intel(R) ME Service;Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [2012-07-19 129856]
R2 Intel(R) Wireless Bluetooth(R) 4.0 Radio Management;Intel(R) Wireless Bluetooth(R) 4.0 Radio Management; C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe [2013-09-18 157128]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2012-07-19 166720]
R2 Lenovo QuickSnip Service;Lenovo QuickSnip Service; C:\Program Files\lenovo\QuickSnipService\QuickSnipService.exe [2013-06-05 219976]
R2 Lenovo Settings Service;Lenovo Settings Service; C:\Program Files\Lenovo\SettingsDependency\SettingsService.exe [2013-02-06 1628664]
R2 Lenovo System Agent Service;Lenovo System Agent Service; C:\Program Files\lenovo\SystemAgent\SystemAgentService.exe [2013-06-05 562504]
R2 LENOVO.MICMUTE;Lenovo Microphone Mute; C:\Program Files\LENOVO\HOTKEY\MICMUTE.exe [2014-04-07 110128]
R2 Lenovo.VIRTSCRLSVC;Lenovo Auto Scroll; C:\Program Files\LENOVO\VIRTSCRL\lvvsst.exe [2012-08-11 136288]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-07-19 277824]
R2 LnvHotSpotSvc;LnvMHService; C:\Program Files\Lenovo\Lenovo Mobile Hotspot\LnvHotSpotSvc.exe [2013-04-11 465912]
R2 LocationTaskManager;Location Task Manager; C:\Program Files (x86)\Lenovo\LocationAware\loctaskmgr.exe [2013-04-19 463352]
R2 nvsvc;NVIDIA Display Driver Service; C:\windows\system32\nvvsvc.exe [2013-03-07 884512]
R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2013-03-06 1260320]
R2 Power Manager DBC Service;Lenovo Settings Power Service; C:\Program Files (x86)\ThinkPad\Utilities\PWMDBSVC.EXE [2013-04-18 1696040]
R2 RapiMgr;@%windir%\WindowsMobile\rapimgr.dll,-104; C:\WINDOWS\system32\svchost.exe [2013-08-22 37768]
R2 RegSrvc;Intel(R) PROSet/Wireless Registry Service; C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe [2013-02-09 149744]
R2 SAService;Conexant SmartAudio service; C:\WINDOWS\system32\SAsrv.exe []
R2 StartW8Service;StartW8Service; C:\Program Files (x86)\StartW8\bin\StartW8Service.exe [2013-10-25 620424]
R2 TPHKLOAD;Lenovo Hotkey Client Loader; C:\Program Files\LENOVO\HOTKEY\TPHKLOAD.exe [2014-06-10 124400]
R2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2012-07-19 365376]
R2 ValBioService;ValBioService; C:\Program Files\Lenovo Fingerprint Reader\ValBioService.exe [2013-03-20 23600]
R2 valWBFPolicyService;Validity WBF Policy Service; C:\windows\system32\valWBFPolicyService.exe [2013-03-19 28160]
R2 VMAuthdService;VMware Authorization Service; C:\Program Files (x86)\VMware\VMware Player\vmware-authd.exe [2011-08-23 79872]
R3 AVControlCenter;AVControlCenter; C:\Program Files\Lenovo\Communications Utility\AVControlCenter32.exe [2013-04-16 148472]
R3 LENOVO.CAMMUTE;Lenovo AVFramework Camera Privacy Controller; C:\Program Files\Lenovo\Communications Utility\CamMute.exe [2013-04-16 511992]
R3 LENOVO.TPKNRSVC;Lenovo AVFramework Microphone Volume Controller and Dolby Interface; C:\Program Files\Lenovo\Communications Utility\TPKNRSVC.exe [2013-04-16 511992]
R3 LENOVO.TVTVCAM;Lenovo AVFramework Virtual Camera Controller Service; C:\Program Files\Lenovo\Communications Utility\vcamsvc.exe [2013-04-16 681464]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-01-27 116648]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-10-23 172192]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-11-11 267440]
S3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2013-10-04 279000]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2013-11-08 867080]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-01-27 116648]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 intelsba;Intel(R) Small Business Advantage; C:\Program Files\Intel\Intel(R) Small Business Advantage\Service\Intel.SmallBusinessAdvantage.WindowsService.exe [2013-04-10 48832]
S3 LSCWinService;LSCWinService; C:\Program Files\Lenovo\Lenovo Solution Center\App\LSCWinService.exe [2014-05-06 1663880]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2014-11-13 114288]
S3 MyWiFiDHCPDNS;Wireless PAN DHCP Server; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [2013-02-09 273136]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2012-12-09 150600]
S3 Sony PC Companion;Sony PC Companion; C:\Program Files (x86)\Sony\Sony PC Companion\PCCService.exe [2013-02-04 155824]
S3 SUService;System Update; C:\Program Files (x86)\Lenovo\System Update\SUService.exe [2014-02-21 24120]
S3 SwitchBoard;SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
S3 TPHDEXLGSVC;ThinkPad HDD APS Logging Service; C:\WINDOWS\System32\TPHDEXLG64.exe [2012-09-06 46984]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119681
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Některé programy přestali fungovat

#2 Příspěvek od Rudy »

Zdravím!
Spusťte nejprve tuto utilitu:
Stáhněte AdwCleaner http://www.stahuj.centrum.cz/utility_a_ ... dwcleaner/
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve >Scan< a potom na >Clean< (smazat)
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

jarda.kkl
Návštěvník
Návštěvník
Příspěvky: 25
Registrován: 27 led 2011 12:03

Re: Některé programy přestali fungovat

#3 Příspěvek od jarda.kkl »

Hezký den,
zde je log. Zajímavé je, že nejprve mi to po zadání scanu napsalo opět "program přestal fungovat". Nicméně po restartu se spuštění povedlo.


# AdwCleaner v4.101 - Report created 23/11/2014 at 18:33:37
# Updated 09/11/2014 by Xplode
# Database : 2014-11-23.6 [Live]
# Operating System : Windows 8.1 (64 bits)
# Username : Jar - JARDA
# Running from : C:\Users\Jar\Desktop\adwcleaner_4.101.exe
# Option : Clean

***** [ Services ] *****


***** [ Files / Folders ] *****


***** [ Scheduled Tasks ] *****


***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{56FDF344-FD6D-11D0-958A-006097C9A090}
Key Deleted : HKLM\SOFTWARE\PutLockerDownloader V6.0
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\PutLockerDownloader V6.0

***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.17416


-\\ Mozilla Firefox v33.1 (x86 cs)


-\\ Google Chrome v38.0.2125.111


*************************

AdwCleaner[R0].txt - [1877 octets] - [23/11/2014 17:53:09]
AdwCleaner[R1].txt - [1193 octets] - [23/11/2014 18:22:45]
AdwCleaner[R2].txt - [1313 octets] - [23/11/2014 18:31:44]
AdwCleaner[S0].txt - [1126 octets] - [23/11/2014 18:22:11]
AdwCleaner[S1].txt - [441 octets] - [23/11/2014 18:25:42]
AdwCleaner[S2].txt - [1154 octets] - [23/11/2014 18:33:37]

########## EOF - C:\AdwCleaner\AdwCleaner[S2].txt - [1214 octets] ##########

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119681
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Některé programy přestali fungovat

#4 Příspěvek od Rudy »

Dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

jarda.kkl
Návštěvník
Návštěvník
Příspěvky: 25
Registrován: 27 led 2011 12:03

Re: Některé programy přestali fungovat

#5 Příspěvek od jarda.kkl »

Zde je aktuální RSIT:




Logfile of random's system information tool 1.10 (written by random/random)
Run by Jar at 2014-11-23 21:39:34
Microsoft Windows 8.1
System drive C: has 536 GB (57%) free of 938 GB
Total RAM: 8009 MB (64% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 21:39:37, on 23. 11. 2014
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17416)
Boot mode: Normal

Running processes:
C:\Program Files\Lenovo\Lenovo Mobile Hotspot\MobileHotspotclient.exe
C:\Program Files\Lenovo\Communications Utility\TpKnrres.exe
C:\Users\Jar\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
C:\Users\Jar\AppData\Roaming\ICQM\icq.exe
C:\PROGRAM FILES (x86)\Cyberlink\PowerDVD10\PDVD10Serv.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\USB Camera\VM331STI.EXE
C:\Program Files (x86)\Microsoft Office\Office15\ONENOTEM.EXE
C:\Cracked License Manager 10\lmgrd.exe
C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe
C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe
C:\Program Files (x86)\Lenovo\RapidBoot HDD Accelerator\FBConsole.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Lenovo\LocationAware\lpdagent.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Microsoft Office\Office15\MsoSync.exe
C:\Program Files\trend micro\Jar.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://lenovo13-comm.msn.com/?pc=LNJB
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe,
O1 - Hosts: ::1 localhost
O2 - BHO: Lync Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office15\URLREDIR.DLL
O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\PROGRA~2\MICROS~1\Office15\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O4 - HKLM\..\Run: [331BigDog] C:\Program Files (x86)\USB Camera\VM331STI.EXE
O4 - HKLM\..\Run: [IMSS] "C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe"
O4 - HKLM\..\Run: [Fastboot] "C:\Program Files (x86)\Lenovo\RapidBoot HDD Accelerator\FBConsole.exe" /analysis
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O4 - HKLM\..\Run: [AdobeCS6ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [Bonus.SSR.FR11] "C:\Program Files (x86)\ABBYY FineReader 11\Bonus.ScreenshotReader.exe" /autorun
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [FUFAXRCV] "C:\Program Files (x86)\Epson Software\FAX Utility\FUFAXRCV.exe"
O4 - HKLM\..\Run: [FUFAXSTM] "C:\Program Files (x86)\Epson Software\FAX Utility\FUFAXSTM.exe"
O4 - HKLM\..\Run: [EEventManager] "C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe"
O4 - HKLM\..\Run: [StartW8Button] C:\Program Files (x86)\StartW8\bin\StartW8Button.exe
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "C:\Users\Jar\AppData\Roaming\Seznam.cz\szninstall.exe" -c
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "C:\Users\Jar\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
O4 - HKCU\..\Run: [icq] C:\Users\Jar\AppData\Roaming\ICQM\icq.exe -CU
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [Zoner Photo Studio Autoupdate] C:\Program Files\Zoner\Photo Studio 15\Program32\ZPSTRAY.EXE
O4 - HKUS\S-1-5-21-2723923963-643302241-2399918468-1001\..\RunOnce: [WAB Migrate] %ProgramFiles%\Windows Mail\wab.exe /Upgrade (User 'UpdatusUser')
O4 - Startup: ArcGIS License Manager 10 CRACKED.lnk = C:\Cracked License Manager 10\start_lic_mgr_invisible.vbs
O4 - Startup: Odeslat do OneNote.lnk = C:\Program Files (x86)\Microsoft Office\Office15\ONENOTEM.EXE
O4 - Global Startup: soubor.cmd
O8 - Extra context menu item: E&xportovat do Microsoft Excelu - res://C:\PROGRA~1\MICROS~1\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do OneNotu - res://C:\PROGRA~1\MICROS~1\Office15\ONBttnIE.dll/105
O9 - Extra button: Odeslat do OneNotu - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do OneNotu - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra button: @C:\WINDOWS\WindowsMobile\INetRepl.dll,-222 - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\WINDOWS\WindowsMobile\INetRepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\WINDOWS\WindowsMobile\INetRepl.dll
O9 - Extra 'Tools' menuitem: @C:\WINDOWS\WindowsMobile\INetRepl.dll,-223 - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\WINDOWS\WindowsMobile\INetRepl.dll
O9 - Extra button: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O9 - Extra 'Tools' menuitem: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O9 - Extra button: ICQ - {086C8477-4F71-4550-87FB-AF0AE8DF3E98} - C:\Users\Jar\AppData\Roaming\ICQM\icq.exe (HKCU)
O9 - Extra 'Tools' menuitem: ICQ - {086C8477-4F71-4550-87FB-AF0AE8DF3E98} - C:\Users\Jar\AppData\Roaming\ICQM\icq.exe (HKCU)
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files (x86)\Microsoft Office\Office15\MSOSB.DLL
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Filter hijack: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL
O20 - AppInit_DLLs: C:\WINDOWS\SysWOW64\nvinit.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: Intel® Centrino® Wireless Bluetooth® + High Speed Service (AMPPALR3) - Intel Corporation - C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe
O23 - Service: ArcGIS License Manager - Acresso Software Inc. - C:\Program Files (x86)\ArcGIS\License10.0\bin\lmgrd.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: AVControlCenter - Lenovo Corporation - C:\Program Files\Lenovo\Communications Utility\AVControlCenter32.exe
O23 - Service: Bluetooth Device Monitor - Motorola Solutions, Inc. - C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
O23 - Service: Bluetooth OBEX Service - Motorola Solutions, Inc. - C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
O23 - Service: Intel(R) Centrino(R) Wireless Bluetooth(R) + High Speed Security Service (BTHSSecurityMgr) - Intel(R) Corporation - C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @C:\WINDOWS\system32\CxAudMsg64.exe,-100 (CxAudMsg) - Unknown owner - C:\WINDOWS\system32\CxAudMsg64.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: Epson Scanner Service (EpsonScanSvc) - Unknown owner - C:\WINDOWS\system32\EscSvc64.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: ExpressCache - Condusiv Technologies - C:\Program Files\Condusiv Technologies\ExpressCache\ExpressCache.exe
O23 - Service: FastbootService - Lenovo - C:\Program Files (x86)\Lenovo\RapidBoot HDD Accelerator\FBService.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @oem32.inf,%ibm.svcDesc0%;Lenovo PM Service (IBMPMSVC) - Unknown owner - C:\WINDOWS\system32\ibmpmsvc.exe (file missing)
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) ME Service - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
O23 - Service: Intel(R) Wireless Bluetooth(R) 4.0 Radio Management - Intel Corporation - C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe
O23 - Service: Intel(R) Small Business Advantage (intelsba) - Intel Corporation - C:\Program Files\Intel\Intel(R) Small Business Advantage\Service\Intel.SmallBusinessAdvantage.WindowsService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Lenovo QuickSnip Service - LENOVO INCORPORATED. - C:\Program Files\lenovo\QuickSnipService\QuickSnipService.exe
O23 - Service: Lenovo Settings Service - Lenovo Group Limited - C:\Program Files\Lenovo\SettingsDependency\SettingsService.exe
O23 - Service: Lenovo System Agent Service - LENOVO INCORPORATED. - C:\Program Files\lenovo\SystemAgent\SystemAgentService.exe
O23 - Service: Lenovo AVFramework Camera Privacy Controller (LENOVO.CAMMUTE) - Lenovo Corporation - C:\Program Files\Lenovo\Communications Utility\CamMute.exe
O23 - Service: Lenovo Microphone Mute (LENOVO.MICMUTE) - Lenovo Group Limited - C:\Program Files\LENOVO\HOTKEY\MICMUTE.exe
O23 - Service: Lenovo AVFramework Microphone Volume Controller and Dolby Interface (LENOVO.TPKNRSVC) - Lenovo Group Limited - C:\Program Files\Lenovo\Communications Utility\TPKNRSVC.exe
O23 - Service: Lenovo AVFramework Virtual Camera Controller Service (LENOVO.TVTVCAM) - Lenovo Corporation - C:\Program Files\Lenovo\Communications Utility\vcamsvc.exe
O23 - Service: Lenovo Auto Scroll (Lenovo.VIRTSCRLSVC) - Lenovo Group Limited - C:\Program Files\LENOVO\VIRTSCRL\lvvsst.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: LnvMHService (LnvHotSpotSvc) - Lenovo - C:\Program Files\Lenovo\Lenovo Mobile Hotspot\LnvHotSpotSvc.exe
O23 - Service: Location Task Manager (LocationTaskManager) - Unknown owner - C:\Program Files (x86)\Lenovo\LocationAware\loctaskmgr.exe
O23 - Service: LSCWinService - Unknown owner - C:\Program Files\Lenovo\Lenovo Solution Center\App\LSCWinService.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: Wireless PAN DHCP Server (MyWiFiDHCPDNS) - Unknown owner - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: Lenovo Settings Power Service (Power Manager DBC Service) - Lenovo - C:\Program Files (x86)\ThinkPad\Utilities\PWMDBSVC.EXE
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Conexant SmartAudio service (SAService) - Conexant Systems, Inc. - C:\WINDOWS\system32\SAsrv.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: Sony PC Companion - Avanquest Software - C:\Program Files (x86)\Sony\Sony PC Companion\PCCService.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: StartW8Service - SODATSW spol. s .r.o. - C:\Program Files (x86)\StartW8\bin\StartW8Service.exe
O23 - Service: System Update (SUService) - Unknown owner - C:\Program Files (x86)\Lenovo\System Update\SUService.exe
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: ThinkPad HDD APS Logging Service (TPHDEXLGSVC) - Unknown owner - C:\WINDOWS\System32\TPHDEXLG64.exe (file missing)
O23 - Service: Lenovo Hotkey Client Loader (TPHKLOAD) - Lenovo Group Limited - C:\Program Files\LENOVO\HOTKEY\TPHKLOAD.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: ValBioService - Validity Sensors, Inc. - C:\Program Files\Lenovo Fingerprint Reader\ValBioService.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: VMware Authorization Service (VMAuthdService) - VMware, Inc. - C:\Program Files (x86)\VMware\VMware Player\vmware-authd.exe
O23 - Service: VMware DHCP Service (VMnetDHCP) - VMware, Inc. - C:\WINDOWS\system32\vmnetdhcp.exe
O23 - Service: VMware USB Arbitration Service (VMUSBArbService) - VMware, Inc. - C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe
O23 - Service: VMware NAT Service - VMware, Inc. - C:\WINDOWS\system32\vmnat.exe
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Wacom Professional Service (WTabletServicePro) - Wacom Technology, Corp. - C:\Program Files\Tablet\Wacom\WTabletServicePro.exe
O23 - Service: Intel(R) PROSet/Wireless Zero Configuration Service (ZeroConfigService) - Intel® Corporation - C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe

--
End of file - 19416 bytes

======Listing Processes======





wininit.exe


C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
winlogon.exe
"dwm.exe"
C:\WINDOWS\system32\ibmpmsvc.exe
"C:\windows\system32\nvvsvc.exe"
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalService
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\WINDOWS\system32\nvvsvc.exe -session
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
"C:\Program Files (x86)\StartW8\bin\StartW8Service.exe"
"C:\Program Files\Tablet\Wacom\WTabletServicePro.exe"
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-603ec0b3-98bc-417b-a355-644c835b22eb -SystemEventPortName:HostProcess-2fa1a037-0a76-4c39-a555-0bbf19da6ece -IoCancelEventPortName:HostProcess-98cac3b7-e53f-4a94-8acd-e41d33fee355 -NonStateChangingEventPortName:HostProcess-6a3ffe28-11f6-4336-be80-6b9cf8e23b52 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:8d7e731b-82d5-43d4-87ab-28d4fec8e1d5 -DeviceGroupId:
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-e3f50448-90cc-4077-809b-30a043ae0dcd -SystemEventPortName:HostProcess-198b8302-b87d-49d9-82f6-1bb55be4dc69 -IoCancelEventPortName:HostProcess-8e54340c-5830-4c0c-b2c5-b3dea2d94fb7 -NonStateChangingEventPortName:HostProcess-6975da62-8383-4040-a475-ff9f39bcab72 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:c07972ae-1f80-4dc0-9d22-a8de4febc9c1 -DeviceGroupId:WudfDefaultDevicePool
C:\WINDOWS\system32\svchost.exe -k NetworkService
C:\WINDOWS\system32\WLANExt.exe 656873396912
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k WbioSvcGroup
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\ArcGIS\License10.0\bin\lmgrd.exe"
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files (x86)\ArcGIS\License10.0\bin\lmgrd.exe" -c "C:\Program Files (x86)\ArcGIS\License10.0\bin\service.txt" -l "C:\Program Files (x86)\ArcGIS\License10.0\bin\lmgrd9.log" -z -local
C:\WINDOWS\system32\CxAudMsg64.exe
"C:\Program Files\Intel\WiFi\bin\EvtEng.exe"
dashost.exe {f24e99b2-44dc-4b53-bc9d7cd2d248a50d}
"C:\Program Files\Condusiv Technologies\ExpressCache\ExpressCache.exe"
"C:\Program Files (x86)\Lenovo\RapidBoot HDD Accelerator\FBService.exe"
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files\lenovo\SystemAgent\SystemAgentService.exe"
"C:\Program Files\LENOVO\VIRTSCRL\lvvsst.exe"
"C:\Program Files (x86)\ThinkPad\Utilities\PWMDBSVC.EXE"
"C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe"
C:\WINDOWS\SysWOW64\SAsrv.exe
C:\WINDOWS\system32\svchost.exe -k imgsvc
"C:\Program Files\Lenovo Fingerprint Reader\ValBioService.exe"
"C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe"
C:\WINDOWS\SysWOW64\vmnat.exe
"C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe"
C:\WINDOWS\system32\EscSvc64.exe
"C:\Program Files\LENOVO\HOTKEY\MICMUTE.exe"
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files\LENOVO\HOTKEY\TPHKLOAD.exe"
"C:\Program Files (x86)\VMware\VMware Player\vmware-authd.exe"
C:\WINDOWS\SysWOW64\vmnetdhcp.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\PROGRA~1\LENOVO\VIRTSCRL\virtscrl.exe
"C:\Program Files (x86)\StartW8\bin\StartW8Button.exe"
taskhostex.exe
C:\Program Files\LENOVO\HOTKEY\tpnumlkd.exe
C:\Program Files (x86)\StartW8\bin\StartW8Menu.exe
C:\PROGRA~1\Lenovo\HOTKEY\TPOSD.EXE /UEFI\\.\pipe\{C6A9690C-33AE-4a55-8B65-9498CC0A7B34}.OnScreenDisplay
C:\PROGRA~1\Lenovo\HOTKEY\SHTCTKY.EXE /UEFI\\.\pipe\{C6A9690C-33AE-4a55-8B65-9498CC0A7B34}.ShortcutKey
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
"C:\Program Files\Tablet\Wacom\Wacom_TabletUser.exe"
"C:\Program Files\Tablet\Wacom\WacomHost.exe" "C:\Program Files\Tablet\Wacom\Wacom_Tablet.exe" au
"C:\Program Files\Synaptics\SynTP\SynTPLpr.exe"
"C:\Program Files\Tablet\Wacom\Wacom_Tablet.exe" au
"C:\Program Files\Tablet\Wacom\Wacom_TouchUser.exe"
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Windows\System32\igfxtray.exe"
"C:\WINDOWS\system32\igfxsrvc.exe" -Embedding
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files\Lenovo\HOTKEY\extapsup.exe"
"C:\Windows\System32\TpShocks.exe"
"C:\Program Files\Lenovo\Lenovo Mobile Hotspot\MobileHotspotclient.exe"
"C:\Program Files\Lenovo\Communications Utility\TpKnrres.exe"
"C:\Program Files\CONEXANT\cAudioFilterAgent\CAudioFilterAgent64.exe"
"C:\Program Files\CONEXANT\ForteConfig\fmapp.exe"
"C:\Windows\WindowsMobile\wmdc.exe"
C:\WINDOWS\system32\svchost.exe -k WindowsMobile
"C:\Windows\System32\rundll32.exe" "C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll",TrayApp
"C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe"
"C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe"
szndesktop.exe default start
"C:\Users\Jar\AppData\Roaming\ICQM\icq.exe" -CU
"C:\Users\Jar\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe"
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\PROGRAM FILES (x86)\Cyberlink\PowerDVD10\PDVD10Serv.exe"
"C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
"C:\Program Files (x86)\USB Camera\VM331STI.EXE"
"C:\Program Files (x86)\Microsoft Office\Office15\ONENOTEM.EXE" /tsr
C:\WINDOWS\system32\cmd.exe /c ""C:\Cracked License Manager 10\start_server_license.cmd" "
\??\C:\WINDOWS\system32\conhost.exe 0x4
lmgrd -z -c 37102011.dat
"C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe"
"C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe" --domain-id F0399437-FD0C-4A48-B101-F0314A6172E4
"C:\Program Files (x86)\Lenovo\RapidBoot HDD Accelerator\FBConsole.exe" /analysis
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="1916.0.2066579800\1917292782" --disable-d3d11 --supports-dual-gpus=false --gpu-driver-bug-workarounds=1,6,16 --gpu-vendor-id=0x8086 --gpu-device-id=0x0166 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=10.18.10.3316 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutoReloadExperiment/Enabled/AutoReloadVisibleOnlyExperiment/Enabled/BrowserBlacklist/Enabled/DomRel-Enable/enable/EmbeddedSearch/Group8 pct:10h stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/Bootstrap/ExtensionInstallVerification/Enforce/GoogleNow/Enable/OmniboxBundledExperimentV1/StandardR4/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/RapporRollout/Enabled/RememberCertificateErrorDecisions/Default/SDCH/EnabledAll/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group5/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-1-Percent/group_03/UMA-Uniformity-Trial-10-Percent/group_05/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_04/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --extension-process --enable-webrtc-hw-h264-encoding --renderer-print-preview --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --channel="1916.2.1524646235\224671702" /prefetch:673131151
taskeng.exe {0E275A39-03AE-4040-ACF3-39BEE53776A4}
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutoReloadExperiment/Enabled/AutoReloadVisibleOnlyExperiment/Enabled/BrowserBlacklist/Enabled/DomRel-Enable/enable/EmbeddedSearch/Group8 pct:10h stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/Bootstrap/ExtensionInstallVerification/Enforce/GoogleNow/Enable/OmniboxBundledExperimentV1/StandardR4/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/RapporRollout/Enabled/RememberCertificateErrorDecisions/Default/SDCH/EnabledAll/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group5/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-1-Percent/group_03/UMA-Uniformity-Trial-10-Percent/group_05/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_04/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --renderer-print-preview --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --channel="1916.6.1461558818\933027854" /prefetch:673131151
"C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe"
"C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe"
"C:\Program Files\lenovo\QuickSnipService\QuickSnipService.exe"
"C:\Program Files\lenovo\QuickSnipService\QuickSnipInput.exe"
"C:\Program Files\Lenovo\SettingsDependency\SettingsService.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files\Lenovo\Lenovo Mobile Hotspot\LnvHotSpotSvc.exe"
"C:\Program Files (x86)\Lenovo\LocationAware\loctaskmgr.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files (x86)\Lenovo\LocationAware\lpdagent.exe"
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutoReloadExperiment/Enabled/AutoReloadVisibleOnlyExperiment/Enabled/BrowserBlacklist/Enabled/DomRel-Enable/enable/EmbeddedSearch/Group8 pct:10h stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/Bootstrap/ExtensionInstallVerification/Enforce/GoogleNow/Enable/OmniboxBundledExperimentV1/StandardR4/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/RapporRollout/Enabled/RememberCertificateErrorDecisions/Default/SDCH/EnabledAll/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group5/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-1-Percent/group_03/UMA-Uniformity-Trial-10-Percent/group_05/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_04/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --renderer-print-preview --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --channel="1916.10.1680279168\909689668" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutoReloadExperiment/Enabled/AutoReloadVisibleOnlyExperiment/Enabled/BrowserBlacklist/Enabled/DomRel-Enable/enable/EmbeddedSearch/Group8 pct:10h stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/Bootstrap/ExtensionInstallVerification/Enforce/GoogleNow/Enable/OmniboxBundledExperimentV1/StandardR4/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/RapporRollout/Enabled/RememberCertificateErrorDecisions/Default/SDCH/EnabledAll/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group5/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-1-Percent/group_03/UMA-Uniformity-Trial-10-Percent/group_05/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_04/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --renderer-print-preview --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --channel="1916.24.930334152\478623453" /prefetch:673131151
C:\windows\system32\rundll32.exe C:\windows\system32\pla.dll,PlaHost "LSC Memory" "0x23d8_0x1154_0x53a2d6eb"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutoReloadExperiment/Enabled/AutoReloadVisibleOnlyExperiment/Enabled/BrowserBlacklist/Enabled/DomRel-Enable/enable/EmbeddedSearch/Group8 pct:10h stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/Bootstrap/ExtensionInstallVerification/Enforce/GoogleNow/Enable/OmniboxBundledExperimentV1/StandardR4/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/RapporRollout/Enabled/RememberCertificateErrorDecisions/Default/SDCH/EnabledAll/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group5/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-1-Percent/group_03/UMA-Uniformity-Trial-10-Percent/group_05/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_04/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --renderer-print-preview --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --channel="1916.36.122525860\358372080" /prefetch:673131151
"C:\Program Files\Lenovo\Communications Utility\AVControlCenter32.exe"
"C:\Program Files\Lenovo\Communications Utility\vcamsvc.exe"

"C:\Program Files\Lenovo\Communications Utility\CamMute.exe"
"C:\Program Files\Lenovo\Communications Utility\TPKNRSVC.exe"
"C:\Program Files\Lenovo\Communications Utility\vcamsvchlpr.exe"
C:\WINDOWS\system32\svchost.exe -k defragsvc
ARCGIS.exe -T Jarda 11.6 -1 -c "C:\Program Files (x86)\ArcGIS\License10.0\bin\service.txt" --lmgrd_start 54721aad -l "C:\Program Files (x86)\ArcGIS\License10.0\bin\lmgrd9.log"
"C:\Program Files (x86)\Microsoft Office\Office15\MsoSync.exe"
"C:\Program Files\Lenovo Fingerprint Reader\SwipeMonitor.exe" ytidilav
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Users\Jar\Downloads\RSITx64.exe"
"C:\WINDOWS\system32\wermgr.exe" "-queuereporting_s_machine" "C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_sup_wermonitor.e_2f6612cdb32f99eb77ca52da1743b2a3663b082_00000000_cab_144d8641"
"C:\WINDOWS\system32\wermgr.exe" "-queuereporting_s_machine" "C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_sup_wermonitor.e_2f6612cdb32f99eb77ca52da1743b2a3663b082_00000000_20418864"
"C:\WINDOWS\system32\wermgr.exe" "-queuereporting_s_machine" "C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_sup_wermonitor.e_2f6612cdb32f99eb77ca52da1743b2a3663b082_00000000_1b098a19"
"C:\WINDOWS\system32\wermgr.exe" "-queuereporting_s_machine" "C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_sup_wermonitor.e_2f6612cdb32f99eb77ca52da1743b2a3663b082_00000000_11e98c9a"
"C:\WINDOWS\system32\wermgr.exe" "-queuereporting_s_machine" "C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_sup_wermonitor.e_2f6612cdb32f99eb77ca52da1743b2a3663b082_00000000_23618f3a"
"C:\WINDOWS\system32\wermgr.exe" "-queuereporting_s_machine" "C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_sup_wermonitor.e_2f6612cdb32f99eb77ca52da1743b2a3663b082_00000000_219195a2"
"C:\WINDOWS\system32\wermgr.exe" "-queuereporting_s_machine" "C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_sup_wermonitor.e_2f6612cdb32f99eb77ca52da1743b2a3663b082_00000000_10dd9729"
"C:\WINDOWS\system32\wermgr.exe" "-queuereporting_s_machine" "C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_sup_wermonitor.e_2f6612cdb32f99eb77ca52da1743b2a3663b082_00000000_26a197b5"

"C:\WINDOWS\system32\wermgr.exe" "-queuereporting_s_machine" "C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_sup_wermonitor.e_2f6612cdb32f99eb77ca52da1743b2a3663b082_00000000_1e719b30"
"C:\WINDOWS\system32\wermgr.exe" "-queuereporting_s_machine" "C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_sup_wermonitor.e_2f6612cdb32f99eb77ca52da1743b2a3663b082_00000000_23119bbd"



======Scheduled tasks folder======

C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler

=========Mozilla firefox=========

ProfilePath - C:\Users\Jar\AppData\Roaming\Mozilla\Firefox\Profiles\kxppyg3z.default-1388590095405

prefs.js - "browser.startup.homepage" - "https://www.facebook.com/"

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 15.0.0.223 Plugin
"Path"=C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_223.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42]
"Description"=Intel IPT WebApi plugin
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater]
"Description"=This plugin updates Intel WebAPI component
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=10.55.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=10.55.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/Lync,version=15.0]
"Description"=Microsoft Lync Plug-in for Firefox
"Path"=C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.0]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.1]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.2]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.3]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@wacom.com/wtPlugin,version=2.1.0.3]
"Description"=WebTablet Plugin API
"Path"=C:\Program Files (x86)\TabletPlugins\npWacomTabletPlugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\adobe.com/AdobeAAMDetect]
"Description"=
"Path"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 15.0.0.223 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF64_15_0_0_223.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@wacom.com/wtPlugin,version=2.1.0.3]
"Description"=WebTablet Plugin API
"Path"=C:\Program Files\TabletPlugins\npWacomTabletPlugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\adobe.com/AdobeAAMDetect]
"Description"=
"Path"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll


C:\Program Files (x86)\Mozilla Firefox\plugins\
npMeetingJoinPluginOC.dll
nppdf32.dll

C:\Users\Jar\AppData\Roaming\Mozilla\Firefox\Profiles\kxppyg3z.default-1388590095405\extensions\
zoteroWinWordIntegration@zotero.org
{ea614400-e918-4741-9a97-7a972ff7c30b}

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Lync Browser Helper - C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2012-10-02 205416]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2014-08-07 612248]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~1\Office15\URLREDIR.DLL [2012-10-02 877720]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~1\MICROS~1\Office15\GROOVEEX.DLL [2012-10-02 2322576]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Lync Browser Helper - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2012-10-02 139368]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2014-04-14 462760]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-08-07 457712]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office15\URLREDIR.DLL [2012-10-02 704664]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~2\MICROS~1\Office15\GROOVEEX.DLL [2012-10-02 1720976]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2014-04-14 171944]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{318A227B-5E9F-45bd-8999-7F8F10CA4CF5}

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"=C:\WINDOWS\system32\igfxtray.exe [2013-10-04 391128]
"HotKeysCmds"=C:\WINDOWS\system32\hkcmd.exe [2013-10-04 771032]
"Persistence"=C:\WINDOWS\system32\igfxpers.exe [2013-10-04 769496]
"LenovoOptMouseUpdate"=C:\Program Files\Lenovo\HOTKEY\extapsup.exe [2013-06-20 255480]
"TpShocks"=C:\WINDOWS\system32\TpShocks.exe [2013-02-12 382248]
"LnvMobHotspotClient"=C:\Program Files\Lenovo\Lenovo Mobile Hotspot\MobileHotspotclient.exe [2013-04-11 937976]
"LENOVO.TPKNRRES"=C:\Program Files\Lenovo\Communications Utility\TPKNRRES.exe [2013-04-16 594936]
"AdobeAAMUpdater-1.0"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2012-09-20 444904]
"cAudioFilterAgent"=C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe [2013-07-25 903384]
"ForteConfig"=C:\Program Files\Conexant\ForteConfig\fmapp.exe [2010-10-26 49056]
"SmartAudio"=C:\Program Files\CONEXANT\SAII\SACpl.exe [2012-06-13 1647616]
"Windows Mobile Device Center"=C:\WINDOWS\WindowsMobile\wmdc.exe [2007-05-31 660360]
"BTMTrayAgent"=C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll [2013-09-19 7818040]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"cz.seznam.software.autoupdate"=C:\Users\Jar\App [2013-11-29 10570]
"cz.seznam.software.szndesktop"=C:\Users\Jar\App [2013-11-29 10570]
"icq"=C:\Users\Jar\App [2013-11-29 10570]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2014-02-10 20922016]
"Zoner Photo Studio Autoupdate"=C:\Program Files\Zoner\Photo Studio 15\Program32\ZPSTRAY.EXE [2012-10-19 752736]
"AdobeBridge"= []

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"331BigDog"=C:\Program Files (x86)\USB Camera\VM331STI.EXE [2013-03-12 548864]
"IMSS"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe [2012-07-19 133440]
"Fastboot"=C:\Program Files (x86)\Lenovo\RapidBoot HDD Accelerator\FBConsole.exe [2013-09-27 738032]
"seznam-listicka-distribuce"=C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [2013-05-16 1062472]
"SwitchBoard"=C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
"AdobeCS6ServiceManager"=C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [2012-03-10 1073312]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-08-21 959176]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2014-08-07 4085896]
"Bonus.SSR.FR11"=C:\Program Files (x86)\ABBYY FineReader 11\Bonus.ScreenshotReader.exe [2011-08-18 925960]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2013-07-02 254336]
"FUFAXRCV"=C:\Program Files (x86)\Epson Software\FAX Utility\FUFAXRCV.exe [2012-04-03 502912]
"FUFAXSTM"=C:\Program Files (x86)\Epson Software\FAX Utility\FUFAXSTM.exe [2012-04-03 863360]
"EEventManager"=C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe [2012-04-02 1058912]
"StartW8Button"=C:\Program Files (x86)\StartW8\bin\StartW8Button.exe [2013-10-25 59784]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
soubor.cmd

C:\Users\Jar\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
ArcGIS License Manager 10 CRACKED.lnk - C:\Cracked License Manager 10\start_lic_mgr_invisible.vbs
Odeslat do OneNote.lnk - C:\Program Files (x86)\Microsoft Office\Office15\ONENOTEM.EXE

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\windows\system32\nvinitx.dll, C:\WINDOWS\system32\nvinitx.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2013-10-04 623616]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DisableTaskMgr"=0
"NoDispAppearancePage"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"PromptOnSecureDesktop"=0
"ConsentPromptBehaviorAdmin"=0
"DisableCAD"=1
"EnableFirstLogonAnimation"=1
"NoDispCPL"=0
"SynchronousUserGroupPolicy"=1
"DisplayLastLogonInfo"=0

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoPreviewPane"=0
"StartMenuLogOff"=0
"NoClose"=0
"NoTrayContextMenu"=0
"NoFolderOptions"=0
"NoViewContextMenu"=0
"TaskbarNoNotification"=0
"NoWinkeys"=0
"HideClock"=0
"HideSCANetwork"=0
"HideSCAVolume"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoRecentDocsNetHood"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2014-11-23 17:53:06 ----D---- C:\AdwCleaner
2014-11-20 23:00:39 ----D---- C:\rsit
2014-11-20 23:00:39 ----D---- C:\Program Files\trend micro
2014-11-20 21:01:29 ----D---- C:\Program Files (x86)\ESRI
2014-11-20 20:28:14 ----A---- C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys
2014-11-20 20:28:01 ----D---- C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-11-20 20:28:01 ----A---- C:\WINDOWS\system32\drivers\mwac.sys
2014-11-20 20:28:01 ----A---- C:\WINDOWS\system32\drivers\mbamchameleon.sys
2014-11-20 19:27:07 ----D---- C:\ProgramData\IntelDLM
2014-11-20 19:21:12 ----D---- C:\Program Files (x86)\Intel Driver Update Utility
2014-11-20 18:37:09 ----A---- C:\WINDOWS\SYSWOW64\kerberos.dll
2014-11-20 18:37:09 ----A---- C:\WINDOWS\system32\kerberos.dll
2014-11-20 18:37:08 ----A---- C:\WINDOWS\SYSWOW64\pku2u.dll
2014-11-20 18:37:08 ----A---- C:\WINDOWS\system32\pku2u.dll
2014-11-18 17:32:13 ----D---- C:\WINDOWS\SYSWOW64\QuickTime
2014-11-13 03:00:15 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2014-11-13 01:03:34 ----A---- C:\WINDOWS\system32\user32.dll
2014-11-13 01:03:32 ----A---- C:\WINDOWS\SYSWOW64\user32.dll
2014-11-13 01:03:32 ----A---- C:\WINDOWS\system32\drivers\WdFilter.sys
2014-11-13 01:03:31 ----A---- C:\WINDOWS\system32\drivers\WdNisDrv.sys
2014-11-13 01:03:30 ----A---- C:\WINDOWS\system32\drivers\WdBoot.sys
2014-11-13 01:03:28 ----A---- C:\WINDOWS\SYSWOW64\winshfhc.dll
2014-11-13 01:03:28 ----A---- C:\WINDOWS\system32\winshfhc.dll
2014-11-13 01:02:59 ----A---- C:\WINDOWS\SYSWOW64\msi.dll
2014-11-13 01:02:59 ----A---- C:\WINDOWS\system32\msi.dll
2014-11-13 01:02:59 ----A---- C:\WINDOWS\system32\authui.dll
2014-11-13 01:02:58 ----A---- C:\WINDOWS\SYSWOW64\msihnd.dll
2014-11-13 01:02:58 ----A---- C:\WINDOWS\SYSWOW64\authui.dll
2014-11-13 01:02:58 ----A---- C:\WINDOWS\system32\msihnd.dll
2014-11-13 01:02:58 ----A---- C:\WINDOWS\system32\consent.exe
2014-11-13 01:02:58 ----A---- C:\WINDOWS\system32\appinfo.dll
2014-11-12 21:05:55 ----A---- C:\WINDOWS\system32\mshtml.dll
2014-11-12 21:05:53 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2014-11-12 21:05:10 ----A---- C:\WINDOWS\system32\ieframe.dll
2014-11-12 21:05:02 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2014-11-12 21:04:55 ----A---- C:\WINDOWS\system32\jscript9.dll
2014-11-12 21:04:52 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2014-11-12 21:04:50 ----A---- C:\WINDOWS\system32\wininet.dll
2014-11-12 21:04:49 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2014-11-12 21:04:49 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2014-11-12 21:04:49 ----A---- C:\WINDOWS\system32\urlmon.dll
2014-11-12 21:04:48 ----A---- C:\WINDOWS\system32\inetcomm.dll
2014-11-12 21:04:48 ----A---- C:\WINDOWS\system32\iertutil.dll
2014-11-12 21:04:47 ----A---- C:\WINDOWS\SYSWOW64\inetcomm.dll
2014-11-12 21:04:47 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2014-11-12 21:04:47 ----A---- C:\WINDOWS\system32\actxprxy.dll
2014-11-12 21:04:46 ----A---- C:\WINDOWS\SYSWOW64\jscript.dll
2014-11-12 21:04:45 ----A---- C:\WINDOWS\system32\jscript9diag.dll
2014-11-12 21:04:45 ----A---- C:\WINDOWS\system32\jscript.dll
2014-11-12 21:04:44 ----A---- C:\WINDOWS\system32\ieui.dll
2014-11-12 21:04:43 ----A---- C:\WINDOWS\SYSWOW64\jscript9diag.dll
2014-11-12 21:04:43 ----A---- C:\WINDOWS\system32\msfeeds.dll
2014-11-12 21:04:42 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2014-11-12 21:04:42 ----A---- C:\WINDOWS\SYSWOW64\ieui.dll
2014-11-12 21:04:41 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2014-11-12 21:04:41 ----A---- C:\WINDOWS\system32\vbscript.dll
2014-11-12 21:04:39 ----A---- C:\WINDOWS\SYSWOW64\ieapfltr.dll
2014-11-12 21:04:39 ----A---- C:\WINDOWS\system32\dxtrans.dll
2014-11-12 21:04:39 ----A---- C:\WINDOWS\system32\dxtmsft.dll
2014-11-12 21:04:38 ----A---- C:\WINDOWS\SYSWOW64\dxtrans.dll
2014-11-12 21:04:38 ----A---- C:\WINDOWS\SYSWOW64\dxtmsft.dll
2014-11-12 21:04:38 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2014-11-12 21:04:37 ----A---- C:\WINDOWS\system32\ieetwproxystub.dll
2014-11-12 21:04:36 ----A---- C:\WINDOWS\SYSWOW64\webcheck.dll
2014-11-12 21:04:36 ----A---- C:\WINDOWS\system32\webcheck.dll
2014-11-12 21:04:35 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll
2014-11-12 21:04:34 ----A---- C:\WINDOWS\SYSWOW64\hlink.dll
2014-11-12 21:04:33 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2014-11-12 21:04:33 ----A---- C:\WINDOWS\system32\hlink.dll
2014-11-12 21:04:32 ----A---- C:\WINDOWS\SYSWOW64\msrating.dll
2014-11-12 21:04:32 ----A---- C:\WINDOWS\SYSWOW64\iesysprep.dll
2014-11-12 21:04:32 ----A---- C:\WINDOWS\system32\ieUnatt.exe
2014-11-12 21:04:32 ----A---- C:\WINDOWS\system32\iesysprep.dll
2014-11-12 21:04:32 ----A---- C:\WINDOWS\system32\iepeers.dll
2014-11-12 21:04:32 ----A---- C:\WINDOWS\system32\ieetwcollector.exe
2014-11-12 21:04:32 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2014-11-12 21:04:31 ----A---- C:\WINDOWS\SYSWOW64\inseng.dll
2014-11-12 21:04:31 ----A---- C:\WINDOWS\SYSWOW64\ieUnatt.exe
2014-11-12 21:04:31 ----A---- C:\WINDOWS\SYSWOW64\iepeers.dll
2014-11-12 21:04:31 ----A---- C:\WINDOWS\SYSWOW64\actxprxy.dll
2014-11-12 21:04:30 ----A---- C:\WINDOWS\SYSWOW64\msfeedsbs.dll
2014-11-12 21:04:30 ----A---- C:\WINDOWS\SYSWOW64\jsproxy.dll
2014-11-12 21:04:30 ----A---- C:\WINDOWS\system32\msfeedsbs.dll
2014-11-12 21:04:30 ----A---- C:\WINDOWS\system32\JavaScriptCollectionAgent.dll
2014-11-12 21:04:30 ----A---- C:\WINDOWS\system32\inseng.dll
2014-11-12 21:04:29 ----A---- C:\WINDOWS\SYSWOW64\occache.dll
2014-11-12 21:04:29 ----A---- C:\WINDOWS\SYSWOW64\mshtmled.dll
2014-11-12 21:04:29 ----A---- C:\WINDOWS\SYSWOW64\IEAdvpack.dll
2014-11-12 21:04:29 ----A---- C:\WINDOWS\system32\mshtmled.dll
2014-11-12 21:04:29 ----A---- C:\WINDOWS\system32\jsproxy.dll
2014-11-12 21:04:28 ----A---- C:\WINDOWS\SYSWOW64\JavaScriptCollectionAgent.dll
2014-11-12 21:04:28 ----A---- C:\WINDOWS\SYSWOW64\iexpress.exe
2014-11-12 21:04:28 ----A---- C:\WINDOWS\system32\msrating.dll
2014-11-12 21:04:28 ----A---- C:\WINDOWS\system32\MshtmlDac.dll
2014-11-12 21:04:27 ----A---- C:\WINDOWS\SYSWOW64\MshtmlDac.dll
2014-11-12 21:04:27 ----A---- C:\WINDOWS\SYSWOW64\imgutil.dll
2014-11-12 21:04:27 ----A---- C:\WINDOWS\SYSWOW64\ieetwproxystub.dll
2014-11-12 21:04:27 ----A---- C:\WINDOWS\system32\occache.dll
2014-11-12 21:04:27 ----A---- C:\WINDOWS\system32\imgutil.dll
2014-11-12 21:04:26 ----A---- C:\WINDOWS\SYSWOW64\pngfilt.dll
2014-11-12 21:04:26 ----A---- C:\WINDOWS\SYSWOW64\licmgr10.dll
2014-11-12 21:04:26 ----A---- C:\WINDOWS\system32\pngfilt.dll
2014-11-12 21:04:26 ----A---- C:\WINDOWS\system32\licmgr10.dll
2014-11-12 21:04:25 ----A---- C:\WINDOWS\SYSWOW64\wextract.exe
2014-11-12 21:04:25 ----A---- C:\WINDOWS\SYSWOW64\url.dll
2014-11-12 21:04:25 ----A---- C:\WINDOWS\SYSWOW64\iesetup.dll
2014-11-12 21:04:25 ----A---- C:\WINDOWS\SYSWOW64\iernonce.dll
2014-11-12 21:04:25 ----A---- C:\WINDOWS\system32\iernonce.dll
2014-11-12 21:04:24 ----A---- C:\WINDOWS\system32\wextract.exe
2014-11-12 21:04:24 ----A---- C:\WINDOWS\system32\url.dll
2014-11-12 21:04:24 ----A---- C:\WINDOWS\system32\IEAdvpack.dll
2014-11-12 21:04:23 ----A---- C:\WINDOWS\SYSWOW64\mshta.exe
2014-11-12 21:04:23 ----A---- C:\WINDOWS\SYSWOW64\msfeedssync.exe
2014-11-12 21:04:23 ----A---- C:\WINDOWS\system32\mshta.exe
2014-11-12 21:04:23 ----A---- C:\WINDOWS\system32\msfeedssync.exe
2014-11-12 21:04:23 ----A---- C:\WINDOWS\system32\iexpress.exe
2014-11-12 21:04:23 ----A---- C:\WINDOWS\system32\iesetup.dll
2014-11-12 21:03:38 ----A---- C:\WINDOWS\SYSWOW64\schannel.dll
2014-11-12 21:03:38 ----A---- C:\WINDOWS\system32\schannel.dll
2014-11-12 21:03:38 ----A---- C:\WINDOWS\system32\dpapisrv.dll
2014-11-12 21:03:37 ----A---- C:\WINDOWS\SYSWOW64\ncryptsslp.dll
2014-11-12 21:03:37 ----A---- C:\WINDOWS\system32\ncryptsslp.dll
2014-11-12 21:03:15 ----A---- C:\WINDOWS\SYSWOW64\certcli.dll
2014-11-12 21:03:15 ----A---- C:\WINDOWS\system32\rdpcorets.dll
2014-11-12 21:03:15 ----A---- C:\WINDOWS\system32\lsasrv.dll
2014-11-12 21:03:15 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2014-11-12 21:03:15 ----A---- C:\WINDOWS\system32\certcli.dll
2014-11-12 21:03:14 ----A---- C:\WINDOWS\SYSWOW64\adtschema.dll
2014-11-12 21:03:14 ----A---- C:\WINDOWS\system32\rfxvmt.dll
2014-11-12 21:03:14 ----A---- C:\WINDOWS\system32\drivers\rdpvideominiport.sys
2014-11-12 21:03:14 ----A---- C:\WINDOWS\system32\drivers\ksecpkg.sys
2014-11-12 21:03:14 ----A---- C:\WINDOWS\system32\adtschema.dll
2014-11-12 21:03:13 ----A---- C:\WINDOWS\SYSWOW64\msaudite.dll
2014-11-12 21:03:13 ----A---- C:\WINDOWS\system32\rdpudd.dll
2014-11-12 21:03:13 ----A---- C:\WINDOWS\system32\msaudite.dll
2014-11-12 21:02:27 ----A---- C:\WINDOWS\SYSWOW64\oleaut32.dll
2014-11-12 21:02:27 ----A---- C:\WINDOWS\system32\oleaut32.dll
2014-11-12 21:02:23 ----A---- C:\WINDOWS\system32\wuaueng.dll
2014-11-12 21:02:22 ----A---- C:\WINDOWS\SYSWOW64\wuwebv.dll
2014-11-12 21:02:22 ----A---- C:\WINDOWS\SYSWOW64\wuapi.dll
2014-11-12 21:02:22 ----A---- C:\WINDOWS\system32\WUSettingsProvider.dll
2014-11-12 21:02:22 ----A---- C:\WINDOWS\system32\wucltux.dll
2014-11-12 21:02:22 ----A---- C:\WINDOWS\system32\wuapi.dll
2014-11-12 21:02:21 ----A---- C:\WINDOWS\SYSWOW64\wups.dll
2014-11-12 21:02:21 ----A---- C:\WINDOWS\SYSWOW64\wudriver.dll
2014-11-12 21:02:21 ----A---- C:\WINDOWS\SYSWOW64\wuapp.exe
2014-11-12 21:02:21 ----A---- C:\WINDOWS\system32\wuwebv.dll
2014-11-12 21:02:21 ----A---- C:\WINDOWS\system32\wups2.dll
2014-11-12 21:02:21 ----A---- C:\WINDOWS\system32\wups.dll
2014-11-12 21:02:21 ----A---- C:\WINDOWS\system32\wudriver.dll
2014-11-12 21:02:21 ----A---- C:\WINDOWS\system32\wuauclt.exe
2014-11-12 21:02:21 ----A---- C:\WINDOWS\system32\wuapp.exe
2014-11-12 21:02:21 ----A---- C:\WINDOWS\system32\wuaext.dll
2014-11-12 20:32:40 ----A---- C:\WINDOWS\SYSWOW64\msxml3.dll
2014-11-12 20:32:40 ----A---- C:\WINDOWS\system32\msxml3.dll
2014-11-12 20:32:38 ----A---- C:\WINDOWS\system32\audiosrv.dll
2014-11-12 20:32:37 ----A---- C:\WINDOWS\SYSWOW64\AudioSes.dll
2014-11-12 20:32:37 ----A---- C:\WINDOWS\SYSWOW64\AUDIOKSE.dll
2014-11-12 20:32:37 ----A---- C:\WINDOWS\SYSWOW64\AudioEng.dll
2014-11-12 20:32:37 ----A---- C:\WINDOWS\system32\win32k.sys
2014-11-12 20:32:37 ----A---- C:\WINDOWS\system32\EncDump.dll
2014-11-12 20:32:37 ----A---- C:\WINDOWS\system32\AudioSes.dll
2014-11-12 20:32:37 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll
2014-11-12 20:32:37 ----A---- C:\WINDOWS\system32\AudioEng.dll
2014-11-12 20:32:37 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2014-11-12 20:32:37 ----A---- C:\WINDOWS\system32\audiodg.exe
2014-11-12 20:32:36 ----A---- C:\WINDOWS\SYSWOW64\packager.dll
2014-11-12 20:32:36 ----A---- C:\WINDOWS\system32\packager.dll
2014-11-12 20:32:34 ----A---- C:\WINDOWS\system32\shell32.dll
2014-11-12 20:32:33 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2014-11-12 20:32:32 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2014-11-12 20:32:30 ----A---- C:\WINDOWS\system32\twinui.dll
2014-11-12 20:32:30 ----A---- C:\WINDOWS\system32\SettingsHandlers.dll
2014-11-12 20:32:29 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2014-11-12 20:32:29 ----A---- C:\WINDOWS\system32\localspl.dll
2014-11-12 20:32:29 ----A---- C:\WINDOWS\system32\drivers\tcpip.sys
2014-11-12 20:32:28 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2014-11-12 20:32:28 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2014-11-12 20:32:27 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2014-11-12 20:32:27 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2014-11-12 20:32:27 ----A---- C:\WINDOWS\system32\win32spl.dll
2014-11-12 20:32:27 ----A---- C:\WINDOWS\system32\drivers\netio.sys
2014-11-12 20:32:26 ----A---- C:\WINDOWS\SYSWOW64\WsmSvc.dll
2014-11-12 20:32:26 ----A---- C:\WINDOWS\SYSWOW64\puiobj.dll
2014-11-12 20:32:26 ----A---- C:\WINDOWS\system32\WsmSvc.dll
2014-11-12 20:32:26 ----A---- C:\WINDOWS\system32\puiobj.dll
2014-11-12 20:32:25 ----AC---- C:\WINDOWS\system32\drivers\USBSTOR.SYS
2014-11-12 20:32:25 ----A---- C:\WINDOWS\SYSWOW64\untfs.dll
2014-11-12 20:32:25 ----A---- C:\WINDOWS\system32\untfs.dll
2014-11-12 20:32:25 ----A---- C:\WINDOWS\system32\drivers\FWPKCLNT.SYS
2014-11-12 20:32:24 ----A---- C:\WINDOWS\system32\FXSCOMEX.dll
2014-11-12 20:32:23 ----A---- C:\WINDOWS\SYSWOW64\FXSAPI.dll
2014-11-12 20:32:23 ----A---- C:\WINDOWS\system32\FXSAPI.dll
2014-11-08 09:30:48 ----D---- C:\Program Files (x86)\Mozilla Firefox

======List of files/folders modified in the last 1 month======

2014-11-23 21:39:32 ----D---- C:\WINDOWS\Temp
2014-11-23 21:38:12 ----D---- C:\WINDOWS\system32\sru
2014-11-23 21:36:15 ----D---- C:\WINDOWS\Prefetch
2014-11-23 18:52:35 ----D---- C:\WINDOWS\Microsoft.NET
2014-11-23 18:45:15 ----HD---- C:\Program Files\WindowsApps
2014-11-23 18:45:04 ----D---- C:\WINDOWS\AppReadiness
2014-11-23 18:40:27 ----D---- C:\Users\Jar\AppData\Roaming\Seznam.cz
2014-11-23 18:36:46 ----A---- C:\WINDOWS\SYSWOW64\log.txt
2014-11-23 18:34:42 ----D---- C:\ProgramData\VMware
2014-11-23 18:34:24 ----D---- C:\WINDOWS\system32\drivers
2014-11-23 18:33:28 ----D---- C:\WINDOWS\system32\config
2014-11-23 18:22:11 ----RD---- C:\WINDOWS\System32
2014-11-23 18:22:11 ----D---- C:\WINDOWS\Tasks
2014-11-23 18:22:11 ----D---- C:\WINDOWS\system32\Tasks
2014-11-23 17:40:55 ----D---- C:\WINDOWS\WinSxS
2014-11-21 23:06:56 ----D---- C:\WINDOWS\Inf
2014-11-21 20:11:18 ----D---- C:\Users\Jar\AppData\Roaming\Skype
2014-11-20 23:00:39 ----D---- C:\Program Files
2014-11-20 22:38:02 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2014-11-20 22:35:21 ----D---- C:\Users\Jar\AppData\Roaming\ESRI
2014-11-20 21:01:29 ----RD---- C:\Program Files (x86)
2014-11-20 20:59:03 ----D---- C:\WINDOWS\PLA
2014-11-20 20:28:01 ----D---- C:\ProgramData\Malwarebytes
2014-11-20 20:28:01 ----D---- C:\Program Files (x86)\Malwarebytes' Anti-Malware
2014-11-20 19:53:12 ----D---- C:\WINDOWS\system32\wdi
2014-11-20 19:50:15 ----D---- C:\WINDOWS\SysWOW64
2014-11-20 19:28:08 ----D---- C:\WINDOWS\CbsTemp
2014-11-20 19:27:07 ----HD---- C:\ProgramData
2014-11-20 19:21:13 ----SHD---- C:\WINDOWS\Installer
2014-11-20 19:21:13 ----SHD---- C:\System Volume Information
2014-11-20 19:21:11 ----D---- C:\ProgramData\Package Cache
2014-11-20 10:01:09 ----D---- C:\Users\Jar\AppData\Roaming\vlc
2014-11-20 00:26:36 ----D---- C:\Users\Jar\AppData\Roaming\Adobe
2014-11-19 23:37:13 ----D---- C:\WINDOWS\system32\DriverStore
2014-11-18 17:32:16 ----D---- C:\ProgramData\Quark
2014-11-18 16:57:01 ----D---- C:\ProgramData\StartW8
2014-11-14 03:23:22 ----D---- C:\WINDOWS\system32\catroot2
2014-11-14 01:21:32 ----D---- C:\WINDOWS\rescache
2014-11-13 22:55:22 ----D---- C:\Program Files\Windows Defender
2014-11-13 22:55:22 ----D---- C:\Program Files (x86)\Windows Defender
2014-11-13 22:18:53 ----D---- C:\WINDOWS\system32\MRT
2014-11-13 22:15:01 ----A---- C:\WINDOWS\system32\MRT.exe
2014-11-13 10:03:05 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2014-11-13 03:17:37 ----RSD---- C:\WINDOWS\assembly
2014-11-13 02:38:24 ----D---- C:\TRANSLAT
2014-11-13 01:37:45 ----RD---- C:\WINDOWS\ToastData
2014-11-13 01:37:45 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2014-11-13 01:37:45 ----D---- C:\WINDOWS\apppatch
2014-11-13 01:37:44 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2014-11-13 01:37:44 ----D---- C:\WINDOWS\system32\wbem
2014-11-13 01:37:44 ----D---- C:\WINDOWS\system32\cs-CZ
2014-11-13 01:37:43 ----D---- C:\WINDOWS\SYSWOW64\migration
2014-11-13 01:37:43 ----D---- C:\WINDOWS\system32\migration
2014-11-13 01:37:43 ----D---- C:\Program Files (x86)\Internet Explorer
2014-11-13 01:37:42 ----D---- C:\Program Files\Internet Explorer
2014-11-11 19:36:31 ----D---- C:\Users\Jar\AppData\Roaming\VMware
2014-11-01 16:04:56 ----D---- C:\WINDOWS\system32\NDF

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswRvrt;avast! Revert; C:\WINDOWS\system32\drivers\aswRvrt.sys [2014-08-07 65776]
R0 aswVmm;avast! VM Monitor; C:\WINDOWS\system32\drivers\aswVmm.sys [2014-08-07 224896]
R0 excsd;ExpressCache Storage Filter Driver; C:\WINDOWS\system32\DRIVERS\excsd.sys [2013-01-08 112552]
R0 Fastboot;Fastboot; C:\WINDOWS\System32\DRIVERS\fastboot.sys [2013-09-27 66288]
R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2012-09-01 647736]
R0 nvpciflt;nvpciflt; C:\WINDOWS\system32\DRIVERS\nvpciflt.sys [2013-09-05 30496]
R0 PxHlpa64;PxHlpa64; C:\WINDOWS\System32\Drivers\PxHlpa64.sys [2011-11-03 56208]
R0 Shockprf;Shockprf; C:\WINDOWS\System32\DRIVERS\Apsx64.sys [2012-07-23 148328]
R0 TPDIGIMN;TPDIGIMN; C:\WINDOWS\System32\DRIVERS\ApsHM64.sys [2012-09-06 25448]
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [2014-08-07 93568]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2014-11-23 1041168]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2014-08-07 427360]
R1 excfs;ExpressCache File System Filter Driver; C:\WINDOWS\system32\DRIVERS\excfs.sys [2013-01-08 26024]
R1 TPPWRIF;TPPWRIF; C:\WINDOWS\System32\drivers\Tppwr64v.sys [2013-04-18 20328]
R2 aswHwid;avast! HardwareID; C:\WINDOWS\system32\drivers\aswHwid.sys [2014-08-07 29208]
R2 aswMonFlt;aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [2014-08-07 79184]
R2 aswStm;aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [2014-08-07 92008]
R2 hcmon;VMware hcmon; \??\C:\WINDOWS\system32\drivers\hcmon.sys [2011-08-22 39024]
R3 AMPPAL;@oem8.inf,%AMPPAL.SVCDESC%;Virtuální adaptér Intel® Centrino® Wireless Bluetooth® + High Speed; C:\WINDOWS\System32\drivers\AMPPAL.sys [2013-02-13 164832]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\Drivers\BTHUSB.sys [2014-01-31 81920]
R3 btmhsf;btmhsf; C:\WINDOWS\system32\DRIVERS\btmhsf.sys [2013-09-05 1390904]
R3 CnxtHdAudService;@oem12.inf,%UAAFunctionDriverForHdAudio.SvcDesc%;Conexant UAA Function Driver for High Definition Audio Service; C:\WINDOWS\system32\drivers\CHDRT64.sys [2013-07-11 1299648]
R3 IBMPMDRV;IBMPMDRV; C:\WINDOWS\system32\DRIVERS\ibmpmdrv.sys [2012-12-05 42824]
R3 iBtFltCoex;iBtFltCoex; C:\WINDOWS\system32\DRIVERS\iBtFltCoex.sys [2013-04-23 69088]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2013-10-04 4185600]
R3 IntcDAud;@oem36.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2012-06-19 342528]
R3 iwdbus;@oem42.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\WINDOWS\System32\drivers\iwdbus.sys [2013-09-26 27032]
R3 MEIx64;@oem33.inf,%HECI_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\System32\drivers\HECIx64.sys [2012-07-02 62784]
R3 NETwNe64;@oem43.inf,___ %NIC_Service_DispName_WIN8_64%;___ Ovladač adaptéru řady Intel(R) Wireless WiFi Link 5000 pro systém Windows 8 64 Bit; C:\WINDOWS\system32\DRIVERS\NETwew00.sys [2013-09-05 3345376]
R3 nvlddmkm;nvlddmkm; C:\WINDOWS\system32\DRIVERS\nvlddmkm.sys [2013-09-05 11273504]
R3 RSP2STOR;@oem23.inf,%Rts5229%;Realtek PCIE CardReader Driver - P2; C:\WINDOWS\system32\DRIVERS\RtsP2Stor.sys [2013-05-16 288840]
R3 RTL8168;@netrt630x64.inf,%rtl8168.Service.DispName%;Realtek 8168 NT Driver; C:\WINDOWS\system32\DRIVERS\Rt630x64.sys [2013-06-18 591360]
R3 SmbDrvI;SmbDrvI; C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys [2014-02-24 31472]
R3 SynTP;@oem119.inf,%SynTP.SvcDesc%;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys [2014-02-24 552176]
R3 usb3Hub;@oem21.inf,%usb3Hub.SVCDESC%;USB-IF USB 3.0 Hub; C:\WINDOWS\System32\drivers\usb3Hub.sys [2012-11-29 47072]
R3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;Zobrazovací zařízení USB (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys [2013-08-22 212224]
S2 sbapifs;sbapifs; C:\WINDOWS\system32\DRIVERS\sbapifs.sys []
S3 BthA2DP;@wdma_bt.inf,%BthA2DP.SvcDesc%;Bluetooth stereo; C:\WINDOWS\system32\drivers\BthA2DP.sys [2013-08-22 131584]
S3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Bluetooth Enumerator Service; C:\WINDOWS\System32\drivers\BthEnum.sys [2013-08-22 53248]
S3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\WINDOWS\System32\drivers\BthLEEnum.sys [2013-12-04 226304]
S3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\System32\drivers\bthpan.sys [2014-07-24 118272]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\Drivers\BTHport.sys [2014-07-24 1200640]
S3 btmaux;@oem10.inf,%BTMAUX.ServiceDesc%;Intel Bluetooth Auxiliary Service; C:\WINDOWS\system32\DRIVERS\btmaux.sys [2013-07-22 140600]
S3 hidkmdf;@oem52.inf,%hidkmdf.SVCDESC%;KMDF Driver; C:\WINDOWS\System32\drivers\hidkmdf.sys [2013-09-18 14136]
S3 intaud_WaveExtensible;@oem41.inf,%INTAUD_WEX.SvcDesc%;Intel WiDi Audio Device; C:\WINDOWS\system32\drivers\intelaud.sys [2013-09-26 39320]
S3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2014-01-27 167424]
S3 SWIX64;SWIX64; \??\C:\Program Files (x86)\Lenovo\System Update\tvsuhd64.sys [2012-09-12 33856]
S3 usb_rndisx;@netrndis.inf,%usb_rndis.Service.DispName%;Adaptér USB RNDIS; C:\WINDOWS\System32\drivers\usb8023x.sys [2013-08-22 20992]
S3 vm331avs;@oem4.inf,%USBCamera.DeviceDesc2%;Digital Camera 1; C:\WINDOWS\System32\Drivers\vm331avs.sys [2013-03-01 1045248]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2014-09-12 64704]
R2 AMPPALR3;Intel® Centrino® Wireless Bluetooth® + High Speed Service; C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe [2013-02-13 770528]
R2 ArcGIS License Manager;ArcGIS License Manager; C:\Program Files (x86)\ArcGIS\License10.0\bin\lmgrd.exe [2008-11-06 1500424]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2014-08-07 50344]
R2 Bluetooth Device Monitor;Bluetooth Device Monitor; C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe [2013-08-26 1137016]
R2 Bluetooth OBEX Service;Bluetooth OBEX Service; C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe [2013-08-26 1157496]
R2 BTHSSecurityMgr;Intel(R) Centrino(R) Wireless Bluetooth(R) + High Speed Security Service; C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe [2012-09-13 135984]
R2 CxAudMsg;@C:\WINDOWS\system32\CxAudMsg64.exe,-100; C:\WINDOWS\system32\CxAudMsg64.exe [2013-07-25 206552]
R2 EpsonScanSvc;Epson Scanner Service; C:\WINDOWS\system32\EscSvc64.exe [2011-12-12 135824]
R2 EvtEng;Intel(R) PROSet/Wireless Event Log; C:\Program Files\Intel\WiFi\bin\EvtEng.exe [2013-02-09 621296]
R2 ExpressCache;ExpressCache; C:\Program Files\Condusiv Technologies\ExpressCache\ExpressCache.exe [2013-01-08 107944]
R2 FastbootService;FastbootService; C:\Program Files (x86)\Lenovo\RapidBoot HDD Accelerator\FBService.exe [2013-09-27 140016]
R2 IBMPMSVC;@oem32.inf,%ibm.svcDesc0%;Lenovo PM Service; C:\WINDOWS\system32\ibmpmsvc.exe [2012-12-05 60272]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-06-20 634632]
R2 Intel(R) ME Service;Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [2012-07-19 129856]
R2 Intel(R) Wireless Bluetooth(R) 4.0 Radio Management;Intel(R) Wireless Bluetooth(R) 4.0 Radio Management; C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe [2013-09-18 157128]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2012-07-19 166720]
R2 Lenovo QuickSnip Service;Lenovo QuickSnip Service; C:\Program Files\lenovo\QuickSnipService\QuickSnipService.exe [2013-06-05 219976]
R2 Lenovo Settings Service;Lenovo Settings Service; C:\Program Files\Lenovo\SettingsDependency\SettingsService.exe [2013-02-06 1628664]
R2 Lenovo System Agent Service;Lenovo System Agent Service; C:\Program Files\lenovo\SystemAgent\SystemAgentService.exe [2013-06-05 562504]
R2 LENOVO.MICMUTE;Lenovo Microphone Mute; C:\Program Files\LENOVO\HOTKEY\MICMUTE.exe [2014-04-07 110128]
R2 Lenovo.VIRTSCRLSVC;Lenovo Auto Scroll; C:\Program Files\LENOVO\VIRTSCRL\lvvsst.exe [2012-08-11 136288]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-07-19 277824]
R2 LnvHotSpotSvc;LnvMHService; C:\Program Files\Lenovo\Lenovo Mobile Hotspot\LnvHotSpotSvc.exe [2013-04-11 465912]
R2 LocationTaskManager;Location Task Manager; C:\Program Files (x86)\Lenovo\LocationAware\loctaskmgr.exe [2013-04-19 463352]
R2 nvsvc;NVIDIA Display Driver Service; C:\windows\system32\nvvsvc.exe [2013-03-07 884512]
R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2013-03-06 1260320]
R2 Power Manager DBC Service;Lenovo Settings Power Service; C:\Program Files (x86)\ThinkPad\Utilities\PWMDBSVC.EXE [2013-04-18 1696040]
R2 RapiMgr;@%windir%\WindowsMobile\rapimgr.dll,-104; C:\WINDOWS\system32\svchost.exe [2013-08-22 37768]
R2 RegSrvc;Intel(R) PROSet/Wireless Registry Service; C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe [2013-02-09 149744]
R2 SAService;Conexant SmartAudio service; C:\WINDOWS\system32\SAsrv.exe []
R2 StartW8Service;StartW8Service; C:\Program Files (x86)\StartW8\bin\StartW8Service.exe [2013-10-25 620424]
R2 TPHKLOAD;Lenovo Hotkey Client Loader; C:\Program Files\LENOVO\HOTKEY\TPHKLOAD.exe [2014-06-10 124400]
R2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2012-07-19 365376]
R2 ValBioService;ValBioService; C:\Program Files\Lenovo Fingerprint Reader\ValBioService.exe [2013-03-20 23600]
R2 VMAuthdService;VMware Authorization Service; C:\Program Files (x86)\VMware\VMware Player\vmware-authd.exe [2011-08-23 79872]
R3 AVControlCenter;AVControlCenter; C:\Program Files\Lenovo\Communications Utility\AVControlCenter32.exe [2013-04-16 148472]
R3 LENOVO.CAMMUTE;Lenovo AVFramework Camera Privacy Controller; C:\Program Files\Lenovo\Communications Utility\CamMute.exe [2013-04-16 511992]
R3 LENOVO.TPKNRSVC;Lenovo AVFramework Microphone Volume Controller and Dolby Interface; C:\Program Files\Lenovo\Communications Utility\TPKNRSVC.exe [2013-04-16 511992]
R3 LENOVO.TVTVCAM;Lenovo AVFramework Virtual Camera Controller Service; C:\Program Files\Lenovo\Communications Utility\vcamsvc.exe [2013-04-16 681464]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-01-27 116648]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-10-23 172192]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-11-11 267440]
S3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2013-10-04 279000]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2013-11-08 867080]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-01-27 116648]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 intelsba;Intel(R) Small Business Advantage; C:\Program Files\Intel\Intel(R) Small Business Advantage\Service\Intel.SmallBusinessAdvantage.WindowsService.exe [2013-04-10 48832]
S3 LSCWinService;LSCWinService; C:\Program Files\Lenovo\Lenovo Solution Center\App\LSCWinService.exe [2014-05-06 1663880]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2014-11-13 114288]
S3 MyWiFiDHCPDNS;Wireless PAN DHCP Server; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [2013-02-09 273136]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2012-12-09 150600]
S3 Sony PC Companion;Sony PC Companion; C:\Program Files (x86)\Sony\Sony PC Companion\PCCService.exe [2013-02-04 155824]
S3 SUService;System Update; C:\Program Files (x86)\Lenovo\System Update\SUService.exe [2014-02-21 24120]
S3 SwitchBoard;SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
S3 TPHDEXLGSVC;ThinkPad HDD APS Logging Service; C:\WINDOWS\System32\TPHDEXLG64.exe [2012-09-06 46984]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119681
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Některé programy přestali fungovat

#6 Příspěvek od Rudy »

Stáhněte OTM: http://oldtimer.geekstogo.com/OTM.exe a uložte na plochu. Spusťte a do levého okna zkopírujte:
:files
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job

:reg
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"SunJavaUpdateSched"=-

:commands
[Purity]
[Emptytemp]
[Emptyflash]
a klikněte na >MoveIt!<. Před skenem vypněte antivir a po něm restartujte PC. Dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

jarda.kkl
Návštěvník
Návštěvník
Příspěvky: 25
Registrován: 27 led 2011 12:03

Re: Některé programy přestali fungovat

#7 Příspěvek od jarda.kkl »

Aktuální log:

Logfile of random's system information tool 1.10 (written by random/random)
Run by Jar at 2014-11-23 22:54:34
Microsoft Windows 8.1
System drive C: has 566 GB (60%) free of 938 GB
Total RAM: 8009 MB (41% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22:54:37, on 23. 11. 2014
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17416)
Boot mode: Normal

Running processes:
C:\Users\Jar\Downloads\Microsoft-office-2013-+-cestina-+-activator,-plna-verze,-vse-100%-funkcni...-by-elmaros\Microsoft Office 2013 Professional Plus CZ 32bit\aktivator - KMSnano v19 Final\kmsnano.exe
C:\PROGRAM FILES (x86)\Cyberlink\PowerDVD10\PDVD10Serv.exe
C:\Program Files\Lenovo\Lenovo Mobile Hotspot\MobileHotspotclient.exe
C:\Program Files\Lenovo\Communications Utility\TpKnrres.exe
C:\Users\Jar\AppData\Local\Temp\KMSnano\qemu-system-i386.exe
C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe
C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe
C:\Users\Jar\AppData\Roaming\Seznam.cz\szninstall.exe
C:\Users\Jar\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
C:\Users\Jar\AppData\Roaming\ICQM\icq.exe
C:\Users\Jar\AppData\Local\Temp\KMSnano\KMS Client.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\Microsoft Office\Office15\ONENOTEM.EXE
C:\Cracked License Manager 10\lmgrd.exe
C:\Program Files (x86)\USB Camera\VM331STI.EXE
C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe
C:\Program Files (x86)\Lenovo\RapidBoot HDD Accelerator\FBConsole.exe
C:\Program Files (x86)\Adobe\Reader 11.0\Reader\Reader_sl.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe
C:\Program Files\trend micro\Jar.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://lenovo13-comm.msn.com/?pc=LNJB
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe,
O1 - Hosts: ::1 localhost
O2 - BHO: Lync Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office15\URLREDIR.DLL
O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\PROGRA~2\MICROS~1\Office15\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O4 - HKLM\..\Run: [331BigDog] C:\Program Files (x86)\USB Camera\VM331STI.EXE
O4 - HKLM\..\Run: [IMSS] "C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe"
O4 - HKLM\..\Run: [Fastboot] "C:\Program Files (x86)\Lenovo\RapidBoot HDD Accelerator\FBConsole.exe" /analysis
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O4 - HKLM\..\Run: [AdobeCS6ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [Bonus.SSR.FR11] "C:\Program Files (x86)\ABBYY FineReader 11\Bonus.ScreenshotReader.exe" /autorun
O4 - HKLM\..\Run: [FUFAXRCV] "C:\Program Files (x86)\Epson Software\FAX Utility\FUFAXRCV.exe"
O4 - HKLM\..\Run: [FUFAXSTM] "C:\Program Files (x86)\Epson Software\FAX Utility\FUFAXSTM.exe"
O4 - HKLM\..\Run: [EEventManager] "C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe"
O4 - HKLM\..\Run: [StartW8Button] C:\Program Files (x86)\StartW8\bin\StartW8Button.exe
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "C:\Users\Jar\AppData\Roaming\Seznam.cz\szninstall.exe" -c
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "C:\Users\Jar\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
O4 - HKCU\..\Run: [icq] C:\Users\Jar\AppData\Roaming\ICQM\icq.exe -CU
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [Zoner Photo Studio Autoupdate] C:\Program Files\Zoner\Photo Studio 15\Program32\ZPSTRAY.EXE
O4 - Startup: ArcGIS License Manager 10 CRACKED.lnk = C:\Cracked License Manager 10\start_lic_mgr_invisible.vbs
O4 - Startup: Odeslat do OneNote.lnk = C:\Program Files (x86)\Microsoft Office\Office15\ONENOTEM.EXE
O4 - Global Startup: soubor.cmd
O8 - Extra context menu item: E&xportovat do Microsoft Excelu - res://C:\PROGRA~1\MICROS~1\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do OneNotu - res://C:\PROGRA~1\MICROS~1\Office15\ONBttnIE.dll/105
O9 - Extra button: Odeslat do OneNotu - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do OneNotu - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra button: @C:\WINDOWS\WindowsMobile\INetRepl.dll,-222 - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\WINDOWS\WindowsMobile\INetRepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\WINDOWS\WindowsMobile\INetRepl.dll
O9 - Extra 'Tools' menuitem: @C:\WINDOWS\WindowsMobile\INetRepl.dll,-223 - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\WINDOWS\WindowsMobile\INetRepl.dll
O9 - Extra button: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O9 - Extra 'Tools' menuitem: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O9 - Extra button: ICQ - {086C8477-4F71-4550-87FB-AF0AE8DF3E98} - C:\Users\Jar\AppData\Roaming\ICQM\icq.exe (HKCU)
O9 - Extra 'Tools' menuitem: ICQ - {086C8477-4F71-4550-87FB-AF0AE8DF3E98} - C:\Users\Jar\AppData\Roaming\ICQM\icq.exe (HKCU)
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files (x86)\Microsoft Office\Office15\MSOSB.DLL
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Filter hijack: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL
O20 - AppInit_DLLs: C:\WINDOWS\SysWOW64\nvinit.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: Intel® Centrino® Wireless Bluetooth® + High Speed Service (AMPPALR3) - Intel Corporation - C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe
O23 - Service: ArcGIS License Manager - Acresso Software Inc. - C:\Program Files (x86)\ArcGIS\License10.0\bin\lmgrd.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: AVControlCenter - Lenovo Corporation - C:\Program Files\Lenovo\Communications Utility\AVControlCenter32.exe
O23 - Service: Bluetooth Device Monitor - Motorola Solutions, Inc. - C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
O23 - Service: Bluetooth OBEX Service - Motorola Solutions, Inc. - C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
O23 - Service: Intel(R) Centrino(R) Wireless Bluetooth(R) + High Speed Security Service (BTHSSecurityMgr) - Intel(R) Corporation - C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @C:\WINDOWS\system32\CxAudMsg64.exe,-100 (CxAudMsg) - Unknown owner - C:\WINDOWS\system32\CxAudMsg64.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: Epson Scanner Service (EpsonScanSvc) - Unknown owner - C:\WINDOWS\system32\EscSvc64.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: ExpressCache - Condusiv Technologies - C:\Program Files\Condusiv Technologies\ExpressCache\ExpressCache.exe
O23 - Service: FastbootService - Lenovo - C:\Program Files (x86)\Lenovo\RapidBoot HDD Accelerator\FBService.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @oem32.inf,%ibm.svcDesc0%;Lenovo PM Service (IBMPMSVC) - Unknown owner - C:\WINDOWS\system32\ibmpmsvc.exe (file missing)
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) ME Service - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
O23 - Service: Intel(R) Wireless Bluetooth(R) 4.0 Radio Management - Intel Corporation - C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe
O23 - Service: Intel(R) Small Business Advantage (intelsba) - Intel Corporation - C:\Program Files\Intel\Intel(R) Small Business Advantage\Service\Intel.SmallBusinessAdvantage.WindowsService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Lenovo QuickSnip Service - LENOVO INCORPORATED. - C:\Program Files\lenovo\QuickSnipService\QuickSnipService.exe
O23 - Service: Lenovo Settings Service - Lenovo Group Limited - C:\Program Files\Lenovo\SettingsDependency\SettingsService.exe
O23 - Service: Lenovo System Agent Service - LENOVO INCORPORATED. - C:\Program Files\lenovo\SystemAgent\SystemAgentService.exe
O23 - Service: Lenovo AVFramework Camera Privacy Controller (LENOVO.CAMMUTE) - Lenovo Corporation - C:\Program Files\Lenovo\Communications Utility\CamMute.exe
O23 - Service: Lenovo Microphone Mute (LENOVO.MICMUTE) - Lenovo Group Limited - C:\Program Files\LENOVO\HOTKEY\MICMUTE.exe
O23 - Service: Lenovo AVFramework Microphone Volume Controller and Dolby Interface (LENOVO.TPKNRSVC) - Lenovo Group Limited - C:\Program Files\Lenovo\Communications Utility\TPKNRSVC.exe
O23 - Service: Lenovo AVFramework Virtual Camera Controller Service (LENOVO.TVTVCAM) - Lenovo Corporation - C:\Program Files\Lenovo\Communications Utility\vcamsvc.exe
O23 - Service: Lenovo Auto Scroll (Lenovo.VIRTSCRLSVC) - Lenovo Group Limited - C:\Program Files\LENOVO\VIRTSCRL\lvvsst.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: LnvMHService (LnvHotSpotSvc) - Lenovo - C:\Program Files\Lenovo\Lenovo Mobile Hotspot\LnvHotSpotSvc.exe
O23 - Service: Location Task Manager (LocationTaskManager) - Unknown owner - C:\Program Files (x86)\Lenovo\LocationAware\loctaskmgr.exe
O23 - Service: LSCWinService - Unknown owner - C:\Program Files\Lenovo\Lenovo Solution Center\App\LSCWinService.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: Wireless PAN DHCP Server (MyWiFiDHCPDNS) - Unknown owner - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: Lenovo Settings Power Service (Power Manager DBC Service) - Lenovo - C:\Program Files (x86)\ThinkPad\Utilities\PWMDBSVC.EXE
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Conexant SmartAudio service (SAService) - Conexant Systems, Inc. - C:\WINDOWS\system32\SAsrv.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: Sony PC Companion - Avanquest Software - C:\Program Files (x86)\Sony\Sony PC Companion\PCCService.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: StartW8Service - SODATSW spol. s .r.o. - C:\Program Files (x86)\StartW8\bin\StartW8Service.exe
O23 - Service: System Update (SUService) - Unknown owner - C:\Program Files (x86)\Lenovo\System Update\SUService.exe
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: ThinkPad HDD APS Logging Service (TPHDEXLGSVC) - Unknown owner - C:\WINDOWS\System32\TPHDEXLG64.exe (file missing)
O23 - Service: Lenovo Hotkey Client Loader (TPHKLOAD) - Lenovo Group Limited - C:\Program Files\LENOVO\HOTKEY\TPHKLOAD.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: ValBioService - Validity Sensors, Inc. - C:\Program Files\Lenovo Fingerprint Reader\ValBioService.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: VMware Authorization Service (VMAuthdService) - VMware, Inc. - C:\Program Files (x86)\VMware\VMware Player\vmware-authd.exe
O23 - Service: VMware DHCP Service (VMnetDHCP) - VMware, Inc. - C:\WINDOWS\system32\vmnetdhcp.exe
O23 - Service: VMware USB Arbitration Service (VMUSBArbService) - VMware, Inc. - C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe
O23 - Service: VMware NAT Service - VMware, Inc. - C:\WINDOWS\system32\vmnat.exe
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Wacom Professional Service (WTabletServicePro) - Wacom Technology, Corp. - C:\Program Files\Tablet\Wacom\WTabletServicePro.exe
O23 - Service: Intel(R) PROSet/Wireless Zero Configuration Service (ZeroConfigService) - Intel® Corporation - C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe

--
End of file - 19076 bytes

======Listing Processes======





wininit.exe


C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
winlogon.exe
"dwm.exe"
C:\WINDOWS\system32\ibmpmsvc.exe
"C:\windows\system32\nvvsvc.exe"
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalService
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\WINDOWS\system32\nvvsvc.exe -session
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
"C:\Program Files (x86)\StartW8\bin\StartW8Service.exe"
"C:\Program Files\Tablet\Wacom\WTabletServicePro.exe"
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-b60c63cd-ad43-4034-86a7-a097347b162e -SystemEventPortName:HostProcess-fde9cc9b-005f-4081-a9ea-e8d3387e21e3 -IoCancelEventPortName:HostProcess-93a9eb34-f1aa-45d4-8792-3b1af88fd41f -NonStateChangingEventPortName:HostProcess-ab004893-a43f-4b5a-9e3e-6f716cb8d3e1 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:4ead1104-b2e1-4ea9-8941-deb8b2e12d5d -DeviceGroupId:
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-de6c0339-cf88-40b3-9f3e-6ad7c37160a0 -SystemEventPortName:HostProcess-da5e152d-8c29-4a17-b84d-9db21b106d0f -IoCancelEventPortName:HostProcess-175c00cc-afcf-46bd-b5c8-ef22b5743589 -NonStateChangingEventPortName:HostProcess-dcb75306-14b6-4394-bfdb-a6345a939f8d -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:0988f115-9a61-4494-8a6d-c5d721a2861c -DeviceGroupId:WudfDefaultDevicePool
C:\WINDOWS\system32\svchost.exe -k NetworkService
C:\WINDOWS\system32\WLANExt.exe 766042383968
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k WbioSvcGroup
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\ArcGIS\License10.0\bin\lmgrd.exe"
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files (x86)\ArcGIS\License10.0\bin\lmgrd.exe" -c "C:\Program Files (x86)\ArcGIS\License10.0\bin\service.txt" -l "C:\Program Files (x86)\ArcGIS\License10.0\bin\lmgrd9.log" -z -local
C:\WINDOWS\system32\CxAudMsg64.exe
"C:\Program Files\Intel\WiFi\bin\EvtEng.exe"
dashost.exe {4e1c95da-0945-4fe7-8a4c3d45eef0530a}
"C:\Program Files\Condusiv Technologies\ExpressCache\ExpressCache.exe"
"C:\Program Files (x86)\Lenovo\RapidBoot HDD Accelerator\FBService.exe"
ARCGIS.exe -T Jarda 11.6 -1 -c "C:\Program Files (x86)\ArcGIS\License10.0\bin\service.txt" --lmgrd_start 54725749 -l "C:\Program Files (x86)\ArcGIS\License10.0\bin\lmgrd9.log"
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files\lenovo\SystemAgent\SystemAgentService.exe"
"C:\Program Files\LENOVO\VIRTSCRL\lvvsst.exe"
"C:\Program Files (x86)\ThinkPad\Utilities\PWMDBSVC.EXE"
"C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe"
C:\WINDOWS\SysWOW64\SAsrv.exe
"C:\Program Files (x86)\Skype\Updater\Updater.exe"
C:\WINDOWS\system32\svchost.exe -k imgsvc
"C:\Program Files\Lenovo Fingerprint Reader\ValBioService.exe"
"C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe"
C:\WINDOWS\SysWOW64\vmnat.exe
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe"
C:\WINDOWS\system32\EscSvc64.exe
"C:\Program Files\LENOVO\HOTKEY\MICMUTE.exe"
"C:\Program Files\LENOVO\HOTKEY\TPHKLOAD.exe"
"C:\Program Files (x86)\VMware\VMware Player\vmware-authd.exe"
C:\WINDOWS\SysWOW64\vmnetdhcp.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation

C:\WINDOWS\system32\SppExtComObj.exe -Embedding
C:\WINDOWS\servicing\TrustedInstaller.exe
C:\WINDOWS\winsxs\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.3.9600.17246_none_fa4ae8e99b1f603c\TiWorker.exe -Embedding

C:\PROGRA~1\LENOVO\VIRTSCRL\virtscrl.exe
taskeng.exe {6E325467-8821-43CB-8440-E90D93500B48}
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
"C:\Program Files (x86)\StartW8\bin\StartW8Button.exe"
taskhostex.exe
C:\Program Files\LENOVO\HOTKEY\tpnumlkd.exe
C:\Program Files (x86)\StartW8\bin\StartW8Menu.exe
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
C:\PROGRA~1\Lenovo\HOTKEY\TPOSD.EXE /UEFI\\.\pipe\{C6A9690C-33AE-4a55-8B65-9498CC0A7B34}.OnScreenDisplay
C:\PROGRA~1\Lenovo\HOTKEY\SHTCTKY.EXE /UEFI\\.\pipe\{C6A9690C-33AE-4a55-8B65-9498CC0A7B34}.ShortcutKey
"C:\Program Files\Lenovo Fingerprint Reader\SwipeMonitor.exe" ytidilav
\??\C:\WINDOWS\system32\conhost.exe 0x4
"kmsnano.exe"
"C:\Program Files\Tablet\Wacom\Wacom_TabletUser.exe"
"C:\Program Files\Tablet\Wacom\WacomHost.exe" "C:\Program Files\Tablet\Wacom\Wacom_Tablet.exe" au
"C:\Program Files\Synaptics\SynTP\SynTPLpr.exe"
"C:\Program Files\Tablet\Wacom\Wacom_Tablet.exe" au
"C:\Program Files\Tablet\Wacom\Wacom_TouchUser.exe"
C:\WINDOWS\Explorer.EXE
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe1_ Global\UsGthrCtrlFltPipeMssGthrPipe1 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 580 584 592 65536 588
"C:\WINDOWS\notepad.exe" C:\_OTM\MovedFiles\11232014_224246.log
"C:\Windows\System32\igfxtray.exe"
"C:\WINDOWS\system32\igfxsrvc.exe" -Embedding
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files\Lenovo\HOTKEY\extapsup.exe"
"C:\PROGRAM FILES (x86)\Cyberlink\PowerDVD10\PDVD10Serv.exe"
"C:\Windows\System32\TpShocks.exe"
"C:\Program Files\Lenovo\Lenovo Mobile Hotspot\MobileHotspotclient.exe"
"C:\Program Files\Lenovo\Communications Utility\TpKnrres.exe"
"C:\Users\Jar\AppData\Local\Temp\KMSnano\KMSELDI.exe" /qemu /silent /log
"C:\Users\Jar\AppData\Local\Temp\KMSnano\qemu-system-i386.exe" -smbios type=1,manufacturer=Intel,version=1.01234,uuid=564d81c6-cd3a-d8e4-db29-756df139acb9 -uuid 564d81c6-cd3a-d8e4-db29-756df139acb9 -net nic -net user,hostfwd=tcp:0.0.0.0:1688-:1688 -hda disco.vmdk -L Bios -M pc -nodefconfig -no-user-config -no-hpet -no-fd-bootchk -rtc base=utc,clock=host -m 924 -nographic
"C:\Program Files\CONEXANT\cAudioFilterAgent\CAudioFilterAgent64.exe"
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe"
"C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe" --domain-id F0399437-FD0C-4A48-B101-F0314A6172E4
"C:\Program Files\CONEXANT\ForteConfig\fmapp.exe"
"C:\Windows\WindowsMobile\wmdc.exe"
C:\WINDOWS\system32\svchost.exe -k WindowsMobile
"C:\Windows\System32\rundll32.exe" "C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll",TrayApp
"C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe"
"C:\Users\Jar\AppData\Roaming\Seznam.cz\szninstall.exe" -c
"C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe"
szndesktop.exe default start
"C:\Users\Jar\AppData\Roaming\ICQM\icq.exe" -CU
"C:\Users\Jar\AppData\Local\Temp\KMSnano\KMS Client.exe" 1688 127.0.0.3
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Users\Jar\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe"
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
C:\WINDOWS\system32\cmd.exe /c ""C:\Cracked License Manager 10\start_server_license.cmd" "
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files (x86)\Microsoft Office\Office15\ONENOTEM.EXE" /tsr
lmgrd -z -c 37102011.dat
"C:\Program Files (x86)\USB Camera\VM331STI.EXE"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe"
C:\WINDOWS\sysWOW64\wbem\wmiprvse.exe -Embedding

"C:\Program Files (x86)\Lenovo\RapidBoot HDD Accelerator\FBConsole.exe" /analysis
"C:\Users\Jar\Downloads\RSITx64.exe"
C:\WINDOWS\sysWOW64\wbem\wmiprvse.exe -secured -Embedding
"C:\Program Files (x86)\Adobe\Reader 11.0\Reader\Reader_sl.exe"
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe"

======Scheduled tasks folder======

C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe

=========Mozilla firefox=========

ProfilePath - C:\Users\Jar\AppData\Roaming\Mozilla\Firefox\Profiles\kxppyg3z.default-1388590095405

prefs.js - "browser.startup.homepage" - "https://www.facebook.com/"

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 15.0.0.223 Plugin
"Path"=C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_223.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42]
"Description"=Intel IPT WebApi plugin
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater]
"Description"=This plugin updates Intel WebAPI component
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=10.55.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=10.55.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/Lync,version=15.0]
"Description"=Microsoft Lync Plug-in for Firefox
"Path"=C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.0]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.1]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.2]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.3]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@wacom.com/wtPlugin,version=2.1.0.3]
"Description"=WebTablet Plugin API
"Path"=C:\Program Files (x86)\TabletPlugins\npWacomTabletPlugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\adobe.com/AdobeAAMDetect]
"Description"=
"Path"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 15.0.0.223 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF64_15_0_0_223.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@wacom.com/wtPlugin,version=2.1.0.3]
"Description"=WebTablet Plugin API
"Path"=C:\Program Files\TabletPlugins\npWacomTabletPlugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\adobe.com/AdobeAAMDetect]
"Description"=
"Path"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll


C:\Program Files (x86)\Mozilla Firefox\plugins\
npMeetingJoinPluginOC.dll
nppdf32.dll

C:\Users\Jar\AppData\Roaming\Mozilla\Firefox\Profiles\kxppyg3z.default-1388590095405\extensions\
zoteroWinWordIntegration@zotero.org
{ea614400-e918-4741-9a97-7a972ff7c30b}

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Lync Browser Helper - C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2012-10-02 205416]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2014-08-07 612248]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~1\Office15\URLREDIR.DLL [2012-10-02 877720]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~1\MICROS~1\Office15\GROOVEEX.DLL [2012-10-02 2322576]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Lync Browser Helper - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2012-10-02 139368]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2014-04-14 462760]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-08-07 457712]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office15\URLREDIR.DLL [2012-10-02 704664]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~2\MICROS~1\Office15\GROOVEEX.DLL [2012-10-02 1720976]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2014-04-14 171944]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{318A227B-5E9F-45bd-8999-7F8F10CA4CF5}

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"=C:\WINDOWS\system32\igfxtray.exe [2013-10-04 391128]
"HotKeysCmds"=C:\WINDOWS\system32\hkcmd.exe [2013-10-04 771032]
"Persistence"=C:\WINDOWS\system32\igfxpers.exe [2013-10-04 769496]
"LenovoOptMouseUpdate"=C:\Program Files\Lenovo\HOTKEY\extapsup.exe [2013-06-20 255480]
"TpShocks"=C:\WINDOWS\system32\TpShocks.exe [2013-02-12 382248]
"LnvMobHotspotClient"=C:\Program Files\Lenovo\Lenovo Mobile Hotspot\MobileHotspotclient.exe [2013-04-11 937976]
"LENOVO.TPKNRRES"=C:\Program Files\Lenovo\Communications Utility\TPKNRRES.exe [2013-04-16 594936]
"AdobeAAMUpdater-1.0"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2012-09-20 444904]
"cAudioFilterAgent"=C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe [2013-07-25 903384]
"ForteConfig"=C:\Program Files\Conexant\ForteConfig\fmapp.exe [2010-10-26 49056]
"SmartAudio"=C:\Program Files\CONEXANT\SAII\SACpl.exe [2012-06-13 1647616]
"Windows Mobile Device Center"=C:\WINDOWS\WindowsMobile\wmdc.exe [2007-05-31 660360]
"BTMTrayAgent"=C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll [2013-09-19 7818040]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"cz.seznam.software.autoupdate"=C:\Users\Jar\App [2013-11-29 10570]
"cz.seznam.software.szndesktop"=C:\Users\Jar\App [2013-11-29 10570]
"icq"=C:\Users\Jar\App [2013-11-29 10570]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2014-02-10 20922016]
"Zoner Photo Studio Autoupdate"=C:\Program Files\Zoner\Photo Studio 15\Program32\ZPSTRAY.EXE [2012-10-19 752736]
"AdobeBridge"= []

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"331BigDog"=C:\Program Files (x86)\USB Camera\VM331STI.EXE [2013-03-12 548864]
"IMSS"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe [2012-07-19 133440]
"Fastboot"=C:\Program Files (x86)\Lenovo\RapidBoot HDD Accelerator\FBConsole.exe [2013-09-27 738032]
"seznam-listicka-distribuce"=C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [2013-05-16 1062472]
"SwitchBoard"=C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
"AdobeCS6ServiceManager"=C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [2012-03-10 1073312]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-08-21 959176]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2014-08-07 4085896]
"Bonus.SSR.FR11"=C:\Program Files (x86)\ABBYY FineReader 11\Bonus.ScreenshotReader.exe [2011-08-18 925960]
"FUFAXRCV"=C:\Program Files (x86)\Epson Software\FAX Utility\FUFAXRCV.exe [2012-04-03 502912]
"FUFAXSTM"=C:\Program Files (x86)\Epson Software\FAX Utility\FUFAXSTM.exe [2012-04-03 863360]
"EEventManager"=C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe [2012-04-02 1058912]
"StartW8Button"=C:\Program Files (x86)\StartW8\bin\StartW8Button.exe [2013-10-25 59784]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
soubor.cmd

C:\Users\Jar\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
ArcGIS License Manager 10 CRACKED.lnk - C:\Cracked License Manager 10\start_lic_mgr_invisible.vbs
Odeslat do OneNote.lnk - C:\Program Files (x86)\Microsoft Office\Office15\ONENOTEM.EXE

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\windows\system32\nvinitx.dll, C:\WINDOWS\system32\nvinitx.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2013-10-04 623616]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DisableTaskMgr"=0
"NoDispAppearancePage"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"PromptOnSecureDesktop"=0
"ConsentPromptBehaviorAdmin"=0
"DisableCAD"=1
"EnableFirstLogonAnimation"=1
"NoDispCPL"=0
"SynchronousUserGroupPolicy"=1
"DisplayLastLogonInfo"=0

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoPreviewPane"=0
"StartMenuLogOff"=0
"NoClose"=0
"NoTrayContextMenu"=0
"NoFolderOptions"=0
"NoViewContextMenu"=0
"TaskbarNoNotification"=0
"NoWinkeys"=0
"HideClock"=0
"HideSCANetwork"=0
"HideSCAVolume"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoRecentDocsNetHood"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2014-11-23 22:42:46 ----D---- C:\_OTM
2014-11-23 17:53:06 ----D---- C:\AdwCleaner
2014-11-20 23:00:39 ----D---- C:\rsit
2014-11-20 23:00:39 ----D---- C:\Program Files\trend micro
2014-11-20 21:01:29 ----D---- C:\Program Files (x86)\ESRI
2014-11-20 20:28:14 ----A---- C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys
2014-11-20 20:28:01 ----D---- C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-11-20 20:28:01 ----A---- C:\WINDOWS\system32\drivers\mwac.sys
2014-11-20 20:28:01 ----A---- C:\WINDOWS\system32\drivers\mbamchameleon.sys
2014-11-20 19:27:07 ----D---- C:\ProgramData\IntelDLM
2014-11-20 19:21:12 ----D---- C:\Program Files (x86)\Intel Driver Update Utility
2014-11-20 18:37:09 ----A---- C:\WINDOWS\SYSWOW64\kerberos.dll
2014-11-20 18:37:09 ----A---- C:\WINDOWS\system32\kerberos.dll
2014-11-20 18:37:08 ----A---- C:\WINDOWS\SYSWOW64\pku2u.dll
2014-11-20 18:37:08 ----A---- C:\WINDOWS\system32\pku2u.dll
2014-11-18 17:32:13 ----D---- C:\WINDOWS\SYSWOW64\QuickTime
2014-11-13 03:00:15 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2014-11-13 01:03:34 ----A---- C:\WINDOWS\system32\user32.dll
2014-11-13 01:03:32 ----A---- C:\WINDOWS\SYSWOW64\user32.dll
2014-11-13 01:03:32 ----A---- C:\WINDOWS\system32\drivers\WdFilter.sys
2014-11-13 01:03:31 ----A---- C:\WINDOWS\system32\drivers\WdNisDrv.sys
2014-11-13 01:03:30 ----A---- C:\WINDOWS\system32\drivers\WdBoot.sys
2014-11-13 01:03:28 ----A---- C:\WINDOWS\SYSWOW64\winshfhc.dll
2014-11-13 01:03:28 ----A---- C:\WINDOWS\system32\winshfhc.dll
2014-11-13 01:02:59 ----A---- C:\WINDOWS\SYSWOW64\msi.dll
2014-11-13 01:02:59 ----A---- C:\WINDOWS\system32\msi.dll
2014-11-13 01:02:59 ----A---- C:\WINDOWS\system32\authui.dll
2014-11-13 01:02:58 ----A---- C:\WINDOWS\SYSWOW64\msihnd.dll
2014-11-13 01:02:58 ----A---- C:\WINDOWS\SYSWOW64\authui.dll
2014-11-13 01:02:58 ----A---- C:\WINDOWS\system32\msihnd.dll
2014-11-13 01:02:58 ----A---- C:\WINDOWS\system32\consent.exe
2014-11-13 01:02:58 ----A---- C:\WINDOWS\system32\appinfo.dll
2014-11-12 21:05:55 ----A---- C:\WINDOWS\system32\mshtml.dll
2014-11-12 21:05:53 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2014-11-12 21:05:10 ----A---- C:\WINDOWS\system32\ieframe.dll
2014-11-12 21:05:02 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2014-11-12 21:04:55 ----A---- C:\WINDOWS\system32\jscript9.dll
2014-11-12 21:04:52 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2014-11-12 21:04:50 ----A---- C:\WINDOWS\system32\wininet.dll
2014-11-12 21:04:49 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2014-11-12 21:04:49 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2014-11-12 21:04:49 ----A---- C:\WINDOWS\system32\urlmon.dll
2014-11-12 21:04:48 ----A---- C:\WINDOWS\system32\inetcomm.dll
2014-11-12 21:04:48 ----A---- C:\WINDOWS\system32\iertutil.dll
2014-11-12 21:04:47 ----A---- C:\WINDOWS\SYSWOW64\inetcomm.dll
2014-11-12 21:04:47 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2014-11-12 21:04:47 ----A---- C:\WINDOWS\system32\actxprxy.dll
2014-11-12 21:04:46 ----A---- C:\WINDOWS\SYSWOW64\jscript.dll
2014-11-12 21:04:45 ----A---- C:\WINDOWS\system32\jscript9diag.dll
2014-11-12 21:04:45 ----A---- C:\WINDOWS\system32\jscript.dll
2014-11-12 21:04:44 ----A---- C:\WINDOWS\system32\ieui.dll
2014-11-12 21:04:43 ----A---- C:\WINDOWS\SYSWOW64\jscript9diag.dll
2014-11-12 21:04:43 ----A---- C:\WINDOWS\system32\msfeeds.dll
2014-11-12 21:04:42 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2014-11-12 21:04:42 ----A---- C:\WINDOWS\SYSWOW64\ieui.dll
2014-11-12 21:04:41 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2014-11-12 21:04:41 ----A---- C:\WINDOWS\system32\vbscript.dll
2014-11-12 21:04:39 ----A---- C:\WINDOWS\SYSWOW64\ieapfltr.dll
2014-11-12 21:04:39 ----A---- C:\WINDOWS\system32\dxtrans.dll
2014-11-12 21:04:39 ----A---- C:\WINDOWS\system32\dxtmsft.dll
2014-11-12 21:04:38 ----A---- C:\WINDOWS\SYSWOW64\dxtrans.dll
2014-11-12 21:04:38 ----A---- C:\WINDOWS\SYSWOW64\dxtmsft.dll
2014-11-12 21:04:38 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2014-11-12 21:04:37 ----A---- C:\WINDOWS\system32\ieetwproxystub.dll
2014-11-12 21:04:36 ----A---- C:\WINDOWS\SYSWOW64\webcheck.dll
2014-11-12 21:04:36 ----A---- C:\WINDOWS\system32\webcheck.dll
2014-11-12 21:04:35 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll
2014-11-12 21:04:34 ----A---- C:\WINDOWS\SYSWOW64\hlink.dll
2014-11-12 21:04:33 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2014-11-12 21:04:33 ----A---- C:\WINDOWS\system32\hlink.dll
2014-11-12 21:04:32 ----A---- C:\WINDOWS\SYSWOW64\msrating.dll
2014-11-12 21:04:32 ----A---- C:\WINDOWS\SYSWOW64\iesysprep.dll
2014-11-12 21:04:32 ----A---- C:\WINDOWS\system32\ieUnatt.exe
2014-11-12 21:04:32 ----A---- C:\WINDOWS\system32\iesysprep.dll
2014-11-12 21:04:32 ----A---- C:\WINDOWS\system32\iepeers.dll
2014-11-12 21:04:32 ----A---- C:\WINDOWS\system32\ieetwcollector.exe
2014-11-12 21:04:32 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2014-11-12 21:04:31 ----A---- C:\WINDOWS\SYSWOW64\inseng.dll
2014-11-12 21:04:31 ----A---- C:\WINDOWS\SYSWOW64\ieUnatt.exe
2014-11-12 21:04:31 ----A---- C:\WINDOWS\SYSWOW64\iepeers.dll
2014-11-12 21:04:31 ----A---- C:\WINDOWS\SYSWOW64\actxprxy.dll
2014-11-12 21:04:30 ----A---- C:\WINDOWS\SYSWOW64\msfeedsbs.dll
2014-11-12 21:04:30 ----A---- C:\WINDOWS\SYSWOW64\jsproxy.dll
2014-11-12 21:04:30 ----A---- C:\WINDOWS\system32\msfeedsbs.dll
2014-11-12 21:04:30 ----A---- C:\WINDOWS\system32\JavaScriptCollectionAgent.dll
2014-11-12 21:04:30 ----A---- C:\WINDOWS\system32\inseng.dll
2014-11-12 21:04:29 ----A---- C:\WINDOWS\SYSWOW64\occache.dll
2014-11-12 21:04:29 ----A---- C:\WINDOWS\SYSWOW64\mshtmled.dll
2014-11-12 21:04:29 ----A---- C:\WINDOWS\SYSWOW64\IEAdvpack.dll
2014-11-12 21:04:29 ----A---- C:\WINDOWS\system32\mshtmled.dll
2014-11-12 21:04:29 ----A---- C:\WINDOWS\system32\jsproxy.dll
2014-11-12 21:04:28 ----A---- C:\WINDOWS\SYSWOW64\JavaScriptCollectionAgent.dll
2014-11-12 21:04:28 ----A---- C:\WINDOWS\SYSWOW64\iexpress.exe
2014-11-12 21:04:28 ----A---- C:\WINDOWS\system32\msrating.dll
2014-11-12 21:04:28 ----A---- C:\WINDOWS\system32\MshtmlDac.dll
2014-11-12 21:04:27 ----A---- C:\WINDOWS\SYSWOW64\MshtmlDac.dll
2014-11-12 21:04:27 ----A---- C:\WINDOWS\SYSWOW64\imgutil.dll
2014-11-12 21:04:27 ----A---- C:\WINDOWS\SYSWOW64\ieetwproxystub.dll
2014-11-12 21:04:27 ----A---- C:\WINDOWS\system32\occache.dll
2014-11-12 21:04:27 ----A---- C:\WINDOWS\system32\imgutil.dll
2014-11-12 21:04:26 ----A---- C:\WINDOWS\SYSWOW64\pngfilt.dll
2014-11-12 21:04:26 ----A---- C:\WINDOWS\SYSWOW64\licmgr10.dll
2014-11-12 21:04:26 ----A---- C:\WINDOWS\system32\pngfilt.dll
2014-11-12 21:04:26 ----A---- C:\WINDOWS\system32\licmgr10.dll
2014-11-12 21:04:25 ----A---- C:\WINDOWS\SYSWOW64\wextract.exe
2014-11-12 21:04:25 ----A---- C:\WINDOWS\SYSWOW64\url.dll
2014-11-12 21:04:25 ----A---- C:\WINDOWS\SYSWOW64\iesetup.dll
2014-11-12 21:04:25 ----A---- C:\WINDOWS\SYSWOW64\iernonce.dll
2014-11-12 21:04:25 ----A---- C:\WINDOWS\system32\iernonce.dll
2014-11-12 21:04:24 ----A---- C:\WINDOWS\system32\wextract.exe
2014-11-12 21:04:24 ----A---- C:\WINDOWS\system32\url.dll
2014-11-12 21:04:24 ----A---- C:\WINDOWS\system32\IEAdvpack.dll
2014-11-12 21:04:23 ----A---- C:\WINDOWS\SYSWOW64\mshta.exe
2014-11-12 21:04:23 ----A---- C:\WINDOWS\SYSWOW64\msfeedssync.exe
2014-11-12 21:04:23 ----A---- C:\WINDOWS\system32\mshta.exe
2014-11-12 21:04:23 ----A---- C:\WINDOWS\system32\msfeedssync.exe
2014-11-12 21:04:23 ----A---- C:\WINDOWS\system32\iexpress.exe
2014-11-12 21:04:23 ----A---- C:\WINDOWS\system32\iesetup.dll
2014-11-12 21:03:38 ----A---- C:\WINDOWS\SYSWOW64\schannel.dll
2014-11-12 21:03:38 ----A---- C:\WINDOWS\system32\schannel.dll
2014-11-12 21:03:38 ----A---- C:\WINDOWS\system32\dpapisrv.dll
2014-11-12 21:03:37 ----A---- C:\WINDOWS\SYSWOW64\ncryptsslp.dll
2014-11-12 21:03:37 ----A---- C:\WINDOWS\system32\ncryptsslp.dll
2014-11-12 21:03:15 ----A---- C:\WINDOWS\SYSWOW64\certcli.dll
2014-11-12 21:03:15 ----A---- C:\WINDOWS\system32\rdpcorets.dll
2014-11-12 21:03:15 ----A---- C:\WINDOWS\system32\lsasrv.dll
2014-11-12 21:03:15 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2014-11-12 21:03:15 ----A---- C:\WINDOWS\system32\certcli.dll
2014-11-12 21:03:14 ----A---- C:\WINDOWS\SYSWOW64\adtschema.dll
2014-11-12 21:03:14 ----A---- C:\WINDOWS\system32\rfxvmt.dll
2014-11-12 21:03:14 ----A---- C:\WINDOWS\system32\drivers\rdpvideominiport.sys
2014-11-12 21:03:14 ----A---- C:\WINDOWS\system32\drivers\ksecpkg.sys
2014-11-12 21:03:14 ----A---- C:\WINDOWS\system32\adtschema.dll
2014-11-12 21:03:13 ----A---- C:\WINDOWS\SYSWOW64\msaudite.dll
2014-11-12 21:03:13 ----A---- C:\WINDOWS\system32\rdpudd.dll
2014-11-12 21:03:13 ----A---- C:\WINDOWS\system32\msaudite.dll
2014-11-12 21:02:27 ----A---- C:\WINDOWS\SYSWOW64\oleaut32.dll
2014-11-12 21:02:27 ----A---- C:\WINDOWS\system32\oleaut32.dll
2014-11-12 21:02:23 ----A---- C:\WINDOWS\system32\wuaueng.dll
2014-11-12 21:02:22 ----A---- C:\WINDOWS\SYSWOW64\wuwebv.dll
2014-11-12 21:02:22 ----A---- C:\WINDOWS\SYSWOW64\wuapi.dll
2014-11-12 21:02:22 ----A---- C:\WINDOWS\system32\WUSettingsProvider.dll
2014-11-12 21:02:22 ----A---- C:\WINDOWS\system32\wucltux.dll
2014-11-12 21:02:22 ----A---- C:\WINDOWS\system32\wuapi.dll
2014-11-12 21:02:21 ----A---- C:\WINDOWS\SYSWOW64\wups.dll
2014-11-12 21:02:21 ----A---- C:\WINDOWS\SYSWOW64\wudriver.dll
2014-11-12 21:02:21 ----A---- C:\WINDOWS\SYSWOW64\wuapp.exe
2014-11-12 21:02:21 ----A---- C:\WINDOWS\system32\wuwebv.dll
2014-11-12 21:02:21 ----A---- C:\WINDOWS\system32\wups2.dll
2014-11-12 21:02:21 ----A---- C:\WINDOWS\system32\wups.dll
2014-11-12 21:02:21 ----A---- C:\WINDOWS\system32\wudriver.dll
2014-11-12 21:02:21 ----A---- C:\WINDOWS\system32\wuauclt.exe
2014-11-12 21:02:21 ----A---- C:\WINDOWS\system32\wuapp.exe
2014-11-12 21:02:21 ----A---- C:\WINDOWS\system32\wuaext.dll
2014-11-12 20:32:40 ----A---- C:\WINDOWS\SYSWOW64\msxml3.dll
2014-11-12 20:32:40 ----A---- C:\WINDOWS\system32\msxml3.dll
2014-11-12 20:32:38 ----A---- C:\WINDOWS\system32\audiosrv.dll
2014-11-12 20:32:37 ----A---- C:\WINDOWS\SYSWOW64\AudioSes.dll
2014-11-12 20:32:37 ----A---- C:\WINDOWS\SYSWOW64\AUDIOKSE.dll
2014-11-12 20:32:37 ----A---- C:\WINDOWS\SYSWOW64\AudioEng.dll
2014-11-12 20:32:37 ----A---- C:\WINDOWS\system32\win32k.sys
2014-11-12 20:32:37 ----A---- C:\WINDOWS\system32\EncDump.dll
2014-11-12 20:32:37 ----A---- C:\WINDOWS\system32\AudioSes.dll
2014-11-12 20:32:37 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll
2014-11-12 20:32:37 ----A---- C:\WINDOWS\system32\AudioEng.dll
2014-11-12 20:32:37 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2014-11-12 20:32:37 ----A---- C:\WINDOWS\system32\audiodg.exe
2014-11-12 20:32:36 ----A---- C:\WINDOWS\SYSWOW64\packager.dll
2014-11-12 20:32:36 ----A---- C:\WINDOWS\system32\packager.dll
2014-11-12 20:32:34 ----A---- C:\WINDOWS\system32\shell32.dll
2014-11-12 20:32:33 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2014-11-12 20:32:32 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2014-11-12 20:32:30 ----A---- C:\WINDOWS\system32\twinui.dll
2014-11-12 20:32:30 ----A---- C:\WINDOWS\system32\SettingsHandlers.dll
2014-11-12 20:32:29 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2014-11-12 20:32:29 ----A---- C:\WINDOWS\system32\localspl.dll
2014-11-12 20:32:29 ----A---- C:\WINDOWS\system32\drivers\tcpip.sys
2014-11-12 20:32:28 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2014-11-12 20:32:28 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2014-11-12 20:32:27 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2014-11-12 20:32:27 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2014-11-12 20:32:27 ----A---- C:\WINDOWS\system32\win32spl.dll
2014-11-12 20:32:27 ----A---- C:\WINDOWS\system32\drivers\netio.sys
2014-11-12 20:32:26 ----A---- C:\WINDOWS\SYSWOW64\WsmSvc.dll
2014-11-12 20:32:26 ----A---- C:\WINDOWS\SYSWOW64\puiobj.dll
2014-11-12 20:32:26 ----A---- C:\WINDOWS\system32\WsmSvc.dll
2014-11-12 20:32:26 ----A---- C:\WINDOWS\system32\puiobj.dll
2014-11-12 20:32:25 ----AC---- C:\WINDOWS\system32\drivers\USBSTOR.SYS
2014-11-12 20:32:25 ----A---- C:\WINDOWS\SYSWOW64\untfs.dll
2014-11-12 20:32:25 ----A---- C:\WINDOWS\system32\untfs.dll
2014-11-12 20:32:25 ----A---- C:\WINDOWS\system32\drivers\FWPKCLNT.SYS
2014-11-12 20:32:24 ----A---- C:\WINDOWS\system32\FXSCOMEX.dll
2014-11-12 20:32:23 ----A---- C:\WINDOWS\SYSWOW64\FXSAPI.dll
2014-11-12 20:32:23 ----A---- C:\WINDOWS\system32\FXSAPI.dll
2014-11-08 09:30:48 ----D---- C:\Program Files (x86)\Mozilla Firefox

======List of files/folders modified in the last 1 month======

2014-11-23 22:54:35 ----D---- C:\WINDOWS\Prefetch
2014-11-23 22:53:18 ----D---- C:\ProgramData\VMware
2014-11-23 22:52:33 ----D---- C:\WINDOWS\Temp
2014-11-23 22:52:32 ----A---- C:\WINDOWS\SYSWOW64\log.txt
2014-11-23 22:48:31 ----RD---- C:\WINDOWS\System32
2014-11-23 22:48:31 ----D---- C:\WINDOWS\Inf
2014-11-23 22:48:31 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2014-11-23 22:47:03 ----D---- C:\Windows
2014-11-23 22:42:47 ----D---- C:\WINDOWS\Tasks
2014-11-23 22:02:00 ----D---- C:\WINDOWS\system32\sru
2014-11-23 18:52:35 ----D---- C:\WINDOWS\Microsoft.NET
2014-11-23 18:45:16 ----D---- C:\WINDOWS\AppReadiness
2014-11-23 18:45:15 ----HD---- C:\Program Files\WindowsApps
2014-11-23 18:40:27 ----D---- C:\Users\Jar\AppData\Roaming\Seznam.cz
2014-11-23 18:34:24 ----D---- C:\WINDOWS\system32\drivers
2014-11-23 18:33:28 ----D---- C:\WINDOWS\system32\config
2014-11-23 18:22:11 ----D---- C:\WINDOWS\system32\Tasks
2014-11-23 17:40:55 ----D---- C:\WINDOWS\WinSxS
2014-11-21 20:11:18 ----D---- C:\Users\Jar\AppData\Roaming\Skype
2014-11-20 23:00:39 ----D---- C:\Program Files
2014-11-20 22:35:21 ----D---- C:\Users\Jar\AppData\Roaming\ESRI
2014-11-20 21:01:29 ----RD---- C:\Program Files (x86)
2014-11-20 20:59:03 ----D---- C:\WINDOWS\PLA
2014-11-20 20:28:01 ----D---- C:\ProgramData\Malwarebytes
2014-11-20 20:28:01 ----D---- C:\Program Files (x86)\Malwarebytes' Anti-Malware
2014-11-20 19:53:12 ----D---- C:\WINDOWS\system32\wdi
2014-11-20 19:50:15 ----D---- C:\WINDOWS\SysWOW64
2014-11-20 19:28:08 ----D---- C:\WINDOWS\CbsTemp
2014-11-20 19:27:07 ----HD---- C:\ProgramData
2014-11-20 19:21:13 ----SHD---- C:\WINDOWS\Installer
2014-11-20 19:21:13 ----SHD---- C:\System Volume Information
2014-11-20 19:21:11 ----D---- C:\ProgramData\Package Cache
2014-11-20 10:01:09 ----D---- C:\Users\Jar\AppData\Roaming\vlc
2014-11-20 00:26:36 ----D---- C:\Users\Jar\AppData\Roaming\Adobe
2014-11-19 23:37:13 ----D---- C:\WINDOWS\system32\DriverStore
2014-11-18 17:32:16 ----D---- C:\ProgramData\Quark
2014-11-18 16:57:01 ----D---- C:\ProgramData\StartW8
2014-11-14 03:23:22 ----D---- C:\WINDOWS\system32\catroot2
2014-11-14 01:21:32 ----D---- C:\WINDOWS\rescache
2014-11-13 22:55:22 ----D---- C:\Program Files\Windows Defender
2014-11-13 22:55:22 ----D---- C:\Program Files (x86)\Windows Defender
2014-11-13 22:18:53 ----D---- C:\WINDOWS\system32\MRT
2014-11-13 22:15:01 ----A---- C:\WINDOWS\system32\MRT.exe
2014-11-13 10:03:05 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2014-11-13 03:17:37 ----RSD---- C:\WINDOWS\assembly
2014-11-13 02:38:24 ----D---- C:\TRANSLAT
2014-11-13 01:37:45 ----RD---- C:\WINDOWS\ToastData
2014-11-13 01:37:45 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2014-11-13 01:37:45 ----D---- C:\WINDOWS\apppatch
2014-11-13 01:37:44 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2014-11-13 01:37:44 ----D---- C:\WINDOWS\system32\wbem
2014-11-13 01:37:44 ----D---- C:\WINDOWS\system32\cs-CZ
2014-11-13 01:37:43 ----D---- C:\WINDOWS\SYSWOW64\migration
2014-11-13 01:37:43 ----D---- C:\WINDOWS\system32\migration
2014-11-13 01:37:43 ----D---- C:\Program Files (x86)\Internet Explorer
2014-11-13 01:37:42 ----D---- C:\Program Files\Internet Explorer
2014-11-11 19:36:31 ----D---- C:\Users\Jar\AppData\Roaming\VMware
2014-11-01 16:04:56 ----D---- C:\WINDOWS\system32\NDF

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswRvrt;avast! Revert; C:\WINDOWS\system32\drivers\aswRvrt.sys [2014-08-07 65776]
R0 aswVmm;avast! VM Monitor; C:\WINDOWS\system32\drivers\aswVmm.sys [2014-08-07 224896]
R0 excsd;ExpressCache Storage Filter Driver; C:\WINDOWS\system32\DRIVERS\excsd.sys [2013-01-08 112552]
R0 Fastboot;Fastboot; C:\WINDOWS\System32\DRIVERS\fastboot.sys [2013-09-27 66288]
R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2012-09-01 647736]
R0 nvpciflt;nvpciflt; C:\WINDOWS\system32\DRIVERS\nvpciflt.sys [2013-09-05 30496]
R0 PxHlpa64;PxHlpa64; C:\WINDOWS\System32\Drivers\PxHlpa64.sys [2011-11-03 56208]
R0 Shockprf;Shockprf; C:\WINDOWS\System32\DRIVERS\Apsx64.sys [2012-07-23 148328]
R0 TPDIGIMN;TPDIGIMN; C:\WINDOWS\System32\DRIVERS\ApsHM64.sys [2012-09-06 25448]
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [2014-08-07 93568]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2014-11-23 1041168]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2014-08-07 427360]
R1 excfs;ExpressCache File System Filter Driver; C:\WINDOWS\system32\DRIVERS\excfs.sys [2013-01-08 26024]
R1 TPPWRIF;TPPWRIF; C:\WINDOWS\System32\drivers\Tppwr64v.sys [2013-04-18 20328]
R2 aswHwid;avast! HardwareID; C:\WINDOWS\system32\drivers\aswHwid.sys [2014-08-07 29208]
R2 aswMonFlt;aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [2014-08-07 79184]
R2 aswStm;aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [2014-08-07 92008]
R2 hcmon;VMware hcmon; \??\C:\WINDOWS\system32\drivers\hcmon.sys [2011-08-22 39024]
R3 AMPPAL;@oem8.inf,%AMPPAL.SVCDESC%;Virtuální adaptér Intel® Centrino® Wireless Bluetooth® + High Speed; C:\WINDOWS\System32\drivers\AMPPAL.sys [2013-02-13 164832]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\Drivers\BTHUSB.sys [2014-01-31 81920]
R3 btmhsf;btmhsf; C:\WINDOWS\system32\DRIVERS\btmhsf.sys [2013-09-05 1390904]
R3 CnxtHdAudService;@oem12.inf,%UAAFunctionDriverForHdAudio.SvcDesc%;Conexant UAA Function Driver for High Definition Audio Service; C:\WINDOWS\system32\drivers\CHDRT64.sys [2013-07-11 1299648]
R3 IBMPMDRV;IBMPMDRV; C:\WINDOWS\system32\DRIVERS\ibmpmdrv.sys [2012-12-05 42824]
R3 iBtFltCoex;iBtFltCoex; C:\WINDOWS\system32\DRIVERS\iBtFltCoex.sys [2013-04-23 69088]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2013-10-04 4185600]
R3 IntcDAud;@oem36.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2012-06-19 342528]
R3 iwdbus;@oem42.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\WINDOWS\System32\drivers\iwdbus.sys [2013-09-26 27032]
R3 MEIx64;@oem33.inf,%HECI_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\System32\drivers\HECIx64.sys [2012-07-02 62784]
R3 NETwNe64;@oem43.inf,___ %NIC_Service_DispName_WIN8_64%;___ Ovladač adaptéru řady Intel(R) Wireless WiFi Link 5000 pro systém Windows 8 64 Bit; C:\WINDOWS\system32\DRIVERS\NETwew00.sys [2013-09-05 3345376]
R3 nvlddmkm;nvlddmkm; C:\WINDOWS\system32\DRIVERS\nvlddmkm.sys [2013-09-05 11273504]
R3 RSP2STOR;@oem23.inf,%Rts5229%;Realtek PCIE CardReader Driver - P2; C:\WINDOWS\system32\DRIVERS\RtsP2Stor.sys [2013-05-16 288840]
R3 RTL8168;@netrt630x64.inf,%rtl8168.Service.DispName%;Realtek 8168 NT Driver; C:\WINDOWS\system32\DRIVERS\Rt630x64.sys [2013-06-18 591360]
R3 SmbDrvI;SmbDrvI; C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys [2014-02-24 31472]
R3 SynTP;@oem119.inf,%SynTP.SvcDesc%;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys [2014-02-24 552176]
R3 usb3Hub;@oem21.inf,%usb3Hub.SVCDESC%;USB-IF USB 3.0 Hub; C:\WINDOWS\System32\drivers\usb3Hub.sys [2012-11-29 47072]
R3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;Zobrazovací zařízení USB (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys [2013-08-22 212224]
S2 sbapifs;sbapifs; C:\WINDOWS\system32\DRIVERS\sbapifs.sys []
S3 BthA2DP;@wdma_bt.inf,%BthA2DP.SvcDesc%;Bluetooth stereo; C:\WINDOWS\system32\drivers\BthA2DP.sys [2013-08-22 131584]
S3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Bluetooth Enumerator Service; C:\WINDOWS\System32\drivers\BthEnum.sys [2013-08-22 53248]
S3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\WINDOWS\System32\drivers\BthLEEnum.sys [2013-12-04 226304]
S3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\System32\drivers\bthpan.sys [2014-07-24 118272]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\Drivers\BTHport.sys [2014-07-24 1200640]
S3 btmaux;@oem10.inf,%BTMAUX.ServiceDesc%;Intel Bluetooth Auxiliary Service; C:\WINDOWS\system32\DRIVERS\btmaux.sys [2013-07-22 140600]
S3 hidkmdf;@oem52.inf,%hidkmdf.SVCDESC%;KMDF Driver; C:\WINDOWS\System32\drivers\hidkmdf.sys [2013-09-18 14136]
S3 intaud_WaveExtensible;@oem41.inf,%INTAUD_WEX.SvcDesc%;Intel WiDi Audio Device; C:\WINDOWS\system32\drivers\intelaud.sys [2013-09-26 39320]
S3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2014-01-27 167424]
S3 SWIX64;SWIX64; \??\C:\Program Files (x86)\Lenovo\System Update\tvsuhd64.sys [2012-09-12 33856]
S3 usb_rndisx;@netrndis.inf,%usb_rndis.Service.DispName%;Adaptér USB RNDIS; C:\WINDOWS\System32\drivers\usb8023x.sys [2013-08-22 20992]
S3 vm331avs;@oem4.inf,%USBCamera.DeviceDesc2%;Digital Camera 1; C:\WINDOWS\System32\Drivers\vm331avs.sys [2013-03-01 1045248]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2014-09-12 64704]
R2 ArcGIS License Manager;ArcGIS License Manager; C:\Program Files (x86)\ArcGIS\License10.0\bin\lmgrd.exe [2008-11-06 1500424]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2014-08-07 50344]
R2 Bluetooth Device Monitor;Bluetooth Device Monitor; C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe [2013-08-26 1137016]
R2 Bluetooth OBEX Service;Bluetooth OBEX Service; C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe [2013-08-26 1157496]
R2 CxAudMsg;@C:\WINDOWS\system32\CxAudMsg64.exe,-100; C:\WINDOWS\system32\CxAudMsg64.exe [2013-07-25 206552]
R2 EpsonScanSvc;Epson Scanner Service; C:\WINDOWS\system32\EscSvc64.exe [2011-12-12 135824]
R2 EvtEng;Intel(R) PROSet/Wireless Event Log; C:\Program Files\Intel\WiFi\bin\EvtEng.exe [2013-02-09 621296]
R2 ExpressCache;ExpressCache; C:\Program Files\Condusiv Technologies\ExpressCache\ExpressCache.exe [2013-01-08 107944]
R2 FastbootService;FastbootService; C:\Program Files (x86)\Lenovo\RapidBoot HDD Accelerator\FBService.exe [2013-09-27 140016]
R2 IBMPMSVC;@oem32.inf,%ibm.svcDesc0%;Lenovo PM Service; C:\WINDOWS\system32\ibmpmsvc.exe [2012-12-05 60272]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-06-20 634632]
R2 Intel(R) Wireless Bluetooth(R) 4.0 Radio Management;Intel(R) Wireless Bluetooth(R) 4.0 Radio Management; C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe [2013-09-18 157128]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2012-07-19 166720]
R2 Lenovo System Agent Service;Lenovo System Agent Service; C:\Program Files\lenovo\SystemAgent\SystemAgentService.exe [2013-06-05 562504]
R2 LENOVO.MICMUTE;Lenovo Microphone Mute; C:\Program Files\LENOVO\HOTKEY\MICMUTE.exe [2014-04-07 110128]
R2 Lenovo.VIRTSCRLSVC;Lenovo Auto Scroll; C:\Program Files\LENOVO\VIRTSCRL\lvvsst.exe [2012-08-11 136288]
R2 nvsvc;NVIDIA Display Driver Service; C:\windows\system32\nvvsvc.exe [2013-03-07 884512]
R2 Power Manager DBC Service;Lenovo Settings Power Service; C:\Program Files (x86)\ThinkPad\Utilities\PWMDBSVC.EXE [2013-04-18 1696040]
R2 RapiMgr;@%windir%\WindowsMobile\rapimgr.dll,-104; C:\WINDOWS\system32\svchost.exe [2013-08-22 37768]
R2 RegSrvc;Intel(R) PROSet/Wireless Registry Service; C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe [2013-02-09 149744]
R2 SAService;Conexant SmartAudio service; C:\WINDOWS\system32\SAsrv.exe []
R2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-10-23 172192]
R2 StartW8Service;StartW8Service; C:\Program Files (x86)\StartW8\bin\StartW8Service.exe [2013-10-25 620424]
R2 TPHKLOAD;Lenovo Hotkey Client Loader; C:\Program Files\LENOVO\HOTKEY\TPHKLOAD.exe [2014-06-10 124400]
R2 ValBioService;ValBioService; C:\Program Files\Lenovo Fingerprint Reader\ValBioService.exe [2013-03-20 23600]
R2 VMAuthdService;VMware Authorization Service; C:\Program Files (x86)\VMware\VMware Player\vmware-authd.exe [2011-08-23 79872]
S2 AMPPALR3;Intel® Centrino® Wireless Bluetooth® + High Speed Service; C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe [2013-02-13 770528]
S2 BTHSSecurityMgr;Intel(R) Centrino(R) Wireless Bluetooth(R) + High Speed Security Service; C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe [2012-09-13 135984]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-01-27 116648]
S2 Intel(R) ME Service;Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [2012-07-19 129856]
S2 Lenovo QuickSnip Service;Lenovo QuickSnip Service; C:\Program Files\lenovo\QuickSnipService\QuickSnipService.exe [2013-06-05 219976]
S2 Lenovo Settings Service;Lenovo Settings Service; C:\Program Files\Lenovo\SettingsDependency\SettingsService.exe [2013-02-06 1628664]
S2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-07-19 277824]
S2 LnvHotSpotSvc;LnvMHService; C:\Program Files\Lenovo\Lenovo Mobile Hotspot\LnvHotSpotSvc.exe [2013-04-11 465912]
S2 LocationTaskManager;Location Task Manager; C:\Program Files (x86)\Lenovo\LocationAware\loctaskmgr.exe [2013-04-19 463352]
S2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2013-03-06 1260320]
S2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2012-07-19 365376]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-11-11 267440]
S3 AVControlCenter;AVControlCenter; C:\Program Files\Lenovo\Communications Utility\AVControlCenter32.exe [2013-04-16 148472]
S3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2013-10-04 279000]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2013-11-08 867080]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-01-27 116648]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 intelsba;Intel(R) Small Business Advantage; C:\Program Files\Intel\Intel(R) Small Business Advantage\Service\Intel.SmallBusinessAdvantage.WindowsService.exe [2013-04-10 48832]
S3 LENOVO.CAMMUTE;Lenovo AVFramework Camera Privacy Controller; C:\Program Files\Lenovo\Communications Utility\CamMute.exe [2013-04-16 511992]
S3 LENOVO.TPKNRSVC;Lenovo AVFramework Microphone Volume Controller and Dolby Interface; C:\Program Files\Lenovo\Communications Utility\TPKNRSVC.exe [2013-04-16 511992]
S3 LENOVO.TVTVCAM;Lenovo AVFramework Virtual Camera Controller Service; C:\Program Files\Lenovo\Communications Utility\vcamsvc.exe [2013-04-16 681464]
S3 LSCWinService;LSCWinService; C:\Program Files\Lenovo\Lenovo Solution Center\App\LSCWinService.exe [2014-05-06 1663880]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2014-11-13 114288]
S3 MyWiFiDHCPDNS;Wireless PAN DHCP Server; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [2013-02-09 273136]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2012-12-09 150600]
S3 Sony PC Companion;Sony PC Companion; C:\Program Files (x86)\Sony\Sony PC Companion\PCCService.exe [2013-02-04 155824]
S3 SUService;System Update; C:\Program Files (x86)\Lenovo\System Update\SUService.exe [2014-02-21 24120]
S3 SwitchBoard;SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
S3 TPHDEXLGSVC;ThinkPad HDD APS Logging Service; C:\WINDOWS\System32\TPHDEXLG64.exe [2012-09-06 46984]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119681
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Některé programy přestali fungovat

#8 Příspěvek od Rudy »

Smazáno. Znovu spusťte OTM a klikněte na >CleanUp!<. OTM po sobě uklidí. Nakonec restartujte PC. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

jarda.kkl
Návštěvník
Návštěvník
Příspěvky: 25
Registrován: 27 led 2011 12:03

Re: Některé programy přestali fungovat

#9 Příspěvek od jarda.kkl »

Hezký den,
děkuji za pomoc. Problém bohužel stále přetrvává, zajímavé je že při jednom z posledních pokusu o spuštění Quarku (po čištění) na mě vyskočila hláška Avastu, o hrozbě PUP-gen. Jak kdyby se vir nasáčkoval do programu. Nyní to hlásí už zase pouze klasické "Program přestal pracovat" hned při iniciaci programu....

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119681
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Některé programy přestali fungovat

#10 Příspěvek od Rudy »

Udělejte kompletní sken MBAM: http://www.malwarebytes.org/mbam.php a dejte log. Předem nic nemažte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

jarda.kkl
Návštěvník
Návštěvník
Příspěvky: 25
Registrován: 27 led 2011 12:03

Re: Některé programy přestali fungovat

#11 Příspěvek od jarda.kkl »

Kompletní sken nic neodhalil. Výstup zde:

Malwarebytes Anti-Malware
www.malwarebytes.org

Datum skenování: 25. 11. 2014
Čas skenování: 19:53:14
Protokol: sken.txt
Správce: Ano

Verze: 2.00.3.1025
Databáze malwaru: v2014.11.25.10
Databáze rootkitů: v2014.11.22.01
Licence: Bezplatná verze
Ochrana proti malwaru: Vypnuto
Ochrana proti škodlivým webovým stránkám: Vypnuto
Sebeobrany: Vypnuto

OS: Windows 8.1
CPU: x64
Souborový systém: NTFS

Typ skenu: Sken hrozeb
Výsledek: Dokončeno
Prohledaných objektů: 409632
Uplynulý čas: 24 min, 31 sek

Paměť: Zapnuto
Po spuštění: Zapnuto
Souborový systém: Zapnuto
Archivy: Zapnuto
Rootkity: Vypnuto
Heuristika: Zapnuto
PUP: Varovat
PUM: Zapnuto

Procesy: 0
(Žádné zákerné zjištěny položek)

Moduly: 0
(Žádné zákerné zjištěny položek)

Klíče registru: 0
(Žádné zákerné zjištěny položek)

Hodnoty registru: 0
(Žádné zákerné zjištěny položek)

Data registru: 0
(Žádné zákerné zjištěny položek)

Složky: 0
(Žádné zákerné zjištěny položek)

Soubory: 0
(Žádné zákerné zjištěny položek)

Fyzické sektory: 0
(Žádné zákerné zjištěny položek)


(end)

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119681
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Některé programy přestali fungovat

#12 Příspěvek od Rudy »

Je to čisté. Nefunkční programy zkuste přeinstalovat.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

jarda.kkl
Návštěvník
Návštěvník
Příspěvky: 25
Registrován: 27 led 2011 12:03

Re: Některé programy přestali fungovat

#13 Příspěvek od jarda.kkl »

Po přeinstalaci stejná chyba. Pak už mě napadá, že buď je nějaká chyba ve Win nebo zmutovalo CD :-).
Každopádně děkuji za pomoc s vyčištěním počítače a za Vaši vstřícnost Vás rád podpořím!

:worship:

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119681
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Některé programy přestali fungovat

#14 Příspěvek od Rudy »

Dejte ještě log ComboFix:
Stahnete a ulozte nejlepe na plochu ComboFix: http://download.bleepingcomputer.com/sUBs/ComboFix.exe

pote spustte aplikaci pod uctem s administratorskym opravnenim

hned po startu se zobrazi obrazovka s licencnimi podminkami, pokracujte kliknutim na tlacitko Ano.

v klidu si postavte na kafe (cela akce trva cca. 5-10 minut, nekdy i dele - dle toho, o jak rychly stroj se

jedna a kolika soubory se skener bude muset prodirat), behem skenu se nepokousejte spoustet zadne jine

aplikace ani nic jineho

behem skenovani nepropadejte panice, vas stroj muze byt restartovan (predevsim pri prvni aplikaci skeneru)

upozorneni: pokud pouzivate antispyware s rezidentnim stitem, prepnete jeho rezidentni stit do Install Mode,

pripadne jej po dobu skenu uplne deaktivujte, protoze dochazi pri skenu a vymazu pripadneho malware k

nezadoucim kolizim s rezidentem antispyware.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

jarda.kkl
Návštěvník
Návštěvník
Příspěvky: 25
Registrován: 27 led 2011 12:03

Re: Některé programy přestaly fungovat

#15 Příspěvek od jarda.kkl »

Bohužel můj Win 8.1 nepodporuje Combofix :(

Nemohu dát log...

Zamčeno