
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
dohledani programu na pozadi
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
-
- Návštěvník
- Příspěvky: 58
- Registrován: 07 srp 2007 11:29
dohledani programu na pozadi
dobry den,
poprosim o radu s mensim, ale uz velmi otravnym problemem.
Kazde cca ctyri vteriny mi u kurzoru problikne ukazatel / ikonka ala presypaci hodiny/.
Snazil jsem se povypinat ruzne programy, ale kurzor stale problikava.
Odhaduji, ze nepujde o vir ale o nejaky program, ktery bezi na pozadi.
Dekuji za rady
MK
poprosim o radu s mensim, ale uz velmi otravnym problemem.
Kazde cca ctyri vteriny mi u kurzoru problikne ukazatel / ikonka ala presypaci hodiny/.
Snazil jsem se povypinat ruzne programy, ale kurzor stale problikava.
Odhaduji, ze nepujde o vir ale o nejaky program, ktery bezi na pozadi.
Dekuji za rady
MK
- Rudy
- Site Admin
- Příspěvky: 119358
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: dohledani programu na pozadi
Zdravím!
Pokud je to opravdu program, měl by být viditelný ve správci úloh. Mohu vám zkontrolovat běžící programy v RSIT.
Pokud je to opravdu program, měl by být viditelný ve správci úloh. Mohu vám zkontrolovat běžící programy v RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
-
- Návštěvník
- Příspěvky: 58
- Registrován: 07 srp 2007 11:29
Re: dohledani programu na pozadi
zkousel jsem povypinat vse, co se dalo, vcetne avastu
tady to je,
diky za kontrolu
Logfile of random's system information tool 1.10 (written by random/random)
Run by Mara at 2014-12-24 07:54:39
Microsoft Windows 8.1
System drive C: has 39 GB (32%) free of 122 GB
Total RAM: 3980 MB (63% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 7:54:42, on 24. 12. 2014
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17416)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\TabTip32.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe
C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
C:\Program Files (x86)\ASUS\Splendid\ColorUService.exe
C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x86\QuickGesture.exe
C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files\trend micro\Mara.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://asus13.msn.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://asus13.msn.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: (no name) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - (no file)
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: (no name) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - (no file)
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O4 - HKLM\..\Run: [AdobeCS5ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [SDTray] "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"
O4 - HKCU\..\Run: [AdobeBridge] "C:\Program Files (x86)\Adobe\Adobe Bridge CS5\Bridge.exe" -stealth
O4 - HKCU\..\Run: [Spotify] "C:\Users\Mara\AppData\Roaming\Spotify\Spotify.exe" /uri spotify:autostart
O4 - HKCU\..\Run: [Spotify Web Helper] "C:\Users\Mara\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe"
O4 - HKLM\..\Policies\Explorer\Run: [BtvStack] "C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe"
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Se&nd to OneNote - res://C:\PROGRA~2\MICROS~1\Office15\ONBttnIE.dll/105
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O20 - Winlogon Notify: SDWinLogon - SDWinLogon.dll (file missing)
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: AFBAgent - Unknown owner - C:\Windows\system32\FBAgent.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: ASLDR Service (ASLDRService) - ASUSTek Computer Inc. - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
O23 - Service: ASUS InstantOn Service (ASUS InstantOn) - ASUS - C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnSrv.exe
O23 - Service: AtherosSvc - Qualcomm Atheros Commnucations - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: AvastVBox COM Service (AvastVBoxSvc) - Avast Software - C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: Elan Service (ETDService) - ELAN Microelectronics Corp. - C:\Program Files\Elantech\ETDService.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) ME Service - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Spybot-S&D 2 Scanner Service (SDScannerService) - Safer-Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe
O23 - Service: Spybot-S&D 2 Updating Service (SDUpdateService) - Safer-Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe
O23 - Service: Spybot-S&D 2 Security Center Service (SDWSCService) - Safer-Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: ASUS Wake Service (WakeupService) - ASUSTek Computer Inc. - C:\Program Files\ASUS\ASUS VivoBook\ASUSWakeupService.exe
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: ZAtheros Bt and Wlan Coex Agent - Atheros - C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
--
End of file - 10986 bytes
======Listing Processes======
wininit.exe
winlogon.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
"dwm.exe"
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k NetworkService
"C:\Windows\system32\FBAgent.exe"
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files\Elantech\ETDService.exe"
dashost.exe {87198bbf-9800-4238-a8dce405ed6b4164}
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe"
"C:\Program Files\Elantech\ETDCtrl.exe"
taskeng.exe {D676007D-E3D6-4A5B-9E7C-F72B2F08398E}
C:\WINDOWS\Explorer.EXE
taskhostex.exe
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe"
"C:\Program Files\Elantech\ETDCtrlHelper.exe"
"C:\Program Files\Elantech\ETDGesture.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
/QuitInfo:0000000000000B5C;0000000000000AA4;
/loadhooks /Parent:0000000000000fd8
"C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe"
"C:\Program Files (x86)\Bluetooth Suite\ActivateDesktop.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files\AVAST Software\Avast\avastui.exe" /nogui
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe"
KBFiltr.exe
"C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe"
"C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnSrv.exe"
"C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnWMI.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Bluetooth Suite\adminservice.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe"
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\WINDOWS\system32\hkcmd.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\WINDOWS\system32\igfxtray.exe"
"C:\Program Files\ASUS\ASUS VivoBook\ASUSWakeupService.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /MAXX3
"C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe"
"C:\Program Files\ASUS\ASUS VivoBook\VivoBook.exe" /RunWithHide
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe"
"C:\Program Files\ASUS\P4G\BatteryLife.exe"
C:\ProgramData\AsTouchPanel\AsPatchTouchPanel64.exe
"C:\Program Files (x86)\ASUS\Splendid\ACMON.exe"
"C:\Program Files (x86)\ASUS\Splendid\ColorUService.exe"
"C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLoader.exe"
"C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x64\QuickGesture64.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x86\QuickGesture.exe"
"C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe"
"C:\WINDOWS\ImmersiveControlPanel\SystemSettings.exe" -ServerName:microsoft.windows.immersivecontrolpanel
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
C:\WINDOWS\system32\wbem\WmiApSrv.exe
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe3_ Global\UsGthrCtrlFltPipeMssGthrPipe3 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 588 592 600 65536 596
"C:\Users\Mara\Desktop\RSITx64.exe"
======Scheduled tasks folder======
C:\WINDOWS\tasks\AdobeAAMUpdater-1.0-Marouskovnik-Mara.job - C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\updaterstartuputility.exe -mode=scheduled
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
=========Mozilla firefox=========
ProfilePath - C:\Users\Mara\AppData\Roaming\Mozilla\Firefox\Profiles\xnivlz3b.default
prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "http://www.seznam.cz/"
prefs.js - "extensions.enabledItems" - "2020Player_IKEA@2020Technologies.com:5.0.93.0, {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20, {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.13"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 16.0.0.235 Plugin
"Path"=C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_235.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42]
"Description"=Intel IPT WebApi plugin
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater]
"Description"=This plugin updates Intel WebAPI component
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=10.51.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=10.51.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=16.4.3528.0331]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 16.0.0.235 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF64_16_0_0_235.dll
C:\Program Files (x86)\Mozilla Firefox\plugins\
NPOFF12.DLL
nppdf32.dll
C:\Users\Mara\AppData\Roaming\Mozilla\Firefox\Profiles\xnivlz3b.default\extensions\
2020Player_IKEA@2020Technologies.com
{bee6eb20-01e0-ebd1-da83-080329fb9a3a}
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2014-11-20 705448]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-11-20 586968]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Persistence"=C:\WINDOWS\system32\igfxpers.exe [2014-01-29 442328]
"AdobeAAMUpdater-1.0"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2010-03-06 500208]
"ETDCtrl"=C:\Program Files\Elantech\ETDCtrl.exe [2014-12-09 2893576]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"BtvStack"=C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [2012-12-28 129664]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"AdobeBridge"=C:\Program Files (x86)\Adobe\Adobe Bridge CS5\Bridge.exe [2010-03-09 11989960]
"Spotify"=C:\Users\Mara\AppData\Roaming\Spotify\Spotify.exe [2014-10-16 6553144]
"Spotify Web Helper"=C:\Users\Mara\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [2014-10-16 1514040]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUSPRP]
C:\Program Files (x86)\ASUS\APRP\APRP.EXE [2012-11-23 3187360]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUSWebStorage]
C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.10.123\AsusWSPanel.exe [2012-08-31 3423104]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DisableS3S4]
c:\windows\temp\DisableS3S464\sethigh.cmd []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HotKeysCmds]
C:\WINDOWS\system32\hkcmd.exe [2014-01-29 399832]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IgfxTray]
C:\WINDOWS\system32\igfxtray.exe [2014-01-29 171992]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\mcui_exe]
C:\Program Files\McAfee.com\Agent\mcagent.exe /runkey []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RtHDVBg]
C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2012-12-03 1256080]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RTHDVCPL]
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2012-12-07 13262480]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904]
"GrooveMonitor"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040]
"SwitchBoard"=C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
"AdobeCS5ServiceManager"=C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe [2010-02-22 406992]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2014-12-12 5227112]
"SDTray"=C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [2014-06-24 4101576]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"BtvStack"=C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [2012-12-28 129664]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2014-01-29 442880]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DisableCAD"=1
"DisableTaskMgr"=0
"SoftwareSASGeneration"=1
"ConsentPromptBehaviorAdmin"=0
"EnableLUA"=0
"PromptOnSecureDesktop"=0
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoRun"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe:*:Enabled:Spybot - Search & Destroy tray access"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe:*:Enabled:Spybot-S&D 2 Scanner Service"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe:*:Enabled:Spybot-S&D 2 Updater"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe:*:Enabled:Spybot-S&D 2 Background update service"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"VIDC.LAGS"=lagarith.dll
"VIDC.X264"=x264vfw64.dll
"VIDC.XVID"=xvidvfw.dll
"msacm.ac3acm"=ac3acm.acm
"msacm.l3codecp"=l3codecp.acm
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2014-12-22 21:19:25 ----A---- C:\WINDOWS\system32\sdnclean64.exe
2014-12-16 08:23:28 ----A---- C:\WINDOWS\system32\poqexec.exe
2014-12-16 08:23:27 ----A---- C:\WINDOWS\SYSWOW64\poqexec.exe
2014-12-12 21:52:07 ----D---- C:\Program Files (x86)\Alcohol Soft
2014-12-12 21:44:05 ----A---- C:\WINDOWS\system32\drivers\sptd.sys
2014-12-12 20:38:55 ----D---- C:\Users\Mara\AppData\Roaming\DAEMON Tools Ultra
2014-12-12 20:38:51 ----D---- C:\Users\Mara\AppData\Roaming\RHEng
2014-12-12 20:38:45 ----D---- C:\Users\Mara\AppData\Roaming\OpenCandy
2014-12-12 20:38:07 ----D---- C:\ProgramData\DAEMON Tools Ultra
2014-12-11 10:35:35 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2014-12-11 10:30:34 ----RD---- C:\WINDOWS\BrowserChoice
2014-12-11 10:30:32 ----D---- C:\WINDOWS\system32\appraiser
2014-12-10 14:12:42 ----A---- C:\WINDOWS\SYSWOW64\DeviceSetupStatusProvider.dll
2014-12-10 14:12:42 ----A---- C:\WINDOWS\system32\DeviceSetupStatusProvider.dll
2014-12-10 14:12:26 ----A---- C:\WINDOWS\SYSWOW64\crypt32.dll
2014-12-10 14:12:26 ----A---- C:\WINDOWS\system32\crypt32.dll
2014-12-10 13:47:55 ----A---- C:\WINDOWS\system32\WindowsCodecs.dll
2014-12-10 13:47:54 ----A---- C:\WINDOWS\SYSWOW64\WindowsCodecs.dll
2014-12-10 13:47:51 ----A---- C:\WINDOWS\system32\generaltel.dll
2014-12-10 13:47:50 ----A---- C:\WINDOWS\system32\devinv.dll
2014-12-10 13:47:50 ----A---- C:\WINDOWS\system32\aepdu.dll
2014-12-10 13:47:49 ----A---- C:\WINDOWS\system32\invagent.dll
2014-12-10 13:47:49 ----A---- C:\WINDOWS\system32\appraiser.dll
2014-12-10 13:47:49 ----A---- C:\WINDOWS\system32\aepic.dll
2014-12-10 13:47:49 ----A---- C:\WINDOWS\system32\aeinv.dll
2014-12-10 13:47:43 ----A---- C:\WINDOWS\SYSWOW64\MrmCoreR.dll
2014-12-10 13:47:43 ----A---- C:\WINDOWS\system32\MrmCoreR.dll
2014-12-10 13:47:19 ----AC---- C:\WINDOWS\system32\drivers\sdbus.sys
2014-12-10 13:47:19 ----AC---- C:\WINDOWS\system32\drivers\intelpep.sys
2014-12-10 13:47:19 ----AC---- C:\WINDOWS\system32\drivers\dumpsd.sys
2014-12-10 13:47:19 ----A---- C:\WINDOWS\system32\drivers\pdc.sys
2014-12-10 13:46:40 ----A---- C:\WINDOWS\system32\actxprxy.dll
2014-12-10 13:46:39 ----A---- C:\WINDOWS\SYSWOW64\mshtmled.dll
2014-12-10 13:46:39 ----A---- C:\WINDOWS\SYSWOW64\actxprxy.dll
2014-12-10 13:46:38 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2014-12-10 13:46:38 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2014-12-10 13:46:38 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll
2014-12-10 13:46:38 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2014-12-10 13:46:36 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2014-12-10 13:46:36 ----A---- C:\WINDOWS\SYSWOW64\dxtrans.dll
2014-12-10 13:46:36 ----A---- C:\WINDOWS\system32\JavaScriptCollectionAgent.dll
2014-12-10 13:46:33 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2014-12-10 13:46:32 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2014-12-10 13:46:32 ----A---- C:\WINDOWS\system32\urlmon.dll
2014-12-10 13:46:31 ----A---- C:\WINDOWS\SYSWOW64\jscript9diag.dll
2014-12-10 13:46:31 ----A---- C:\WINDOWS\SYSWOW64\dxtmsft.dll
2014-12-10 13:46:30 ----A---- C:\WINDOWS\system32\msfeeds.dll
2014-12-10 13:46:30 ----A---- C:\WINDOWS\system32\dxtrans.dll
2014-12-10 13:46:29 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2014-12-10 13:46:25 ----A---- C:\WINDOWS\system32\iertutil.dll
2014-12-10 13:46:24 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2014-12-10 13:46:24 ----A---- C:\WINDOWS\SYSWOW64\ieapfltr.dll
2014-12-10 13:46:22 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2014-12-10 13:46:21 ----A---- C:\WINDOWS\system32\dxtmsft.dll
2014-12-10 13:46:18 ----A---- C:\WINDOWS\system32\ieframe.dll
2014-12-10 13:46:16 ----A---- C:\WINDOWS\system32\mshtmled.dll
2014-12-10 13:46:16 ----A---- C:\WINDOWS\system32\jscript9diag.dll
2014-12-10 13:46:15 ----A---- C:\WINDOWS\system32\jscript9.dll
2014-12-10 13:46:14 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2014-12-10 13:46:12 ----A---- C:\WINDOWS\system32\wininet.dll
2014-12-10 13:46:10 ----A---- C:\WINDOWS\system32\mshtml.dll
2014-12-10 13:46:06 ----A---- C:\WINDOWS\system32\ieetwproxystub.dll
2014-12-10 13:46:05 ----A---- C:\WINDOWS\system32\inetcomm.dll
2014-12-10 13:46:04 ----A---- C:\WINDOWS\SYSWOW64\inetcomm.dll
2014-12-10 13:46:03 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2014-12-10 13:46:03 ----A---- C:\WINDOWS\system32\vbscript.dll
2014-12-10 13:46:02 ----A---- C:\WINDOWS\SYSWOW64\jscript.dll
2014-12-10 13:46:02 ----A---- C:\WINDOWS\system32\jscript.dll
2014-12-10 13:46:00 ----A---- C:\WINDOWS\system32\ieui.dll
2014-12-10 13:45:59 ----A---- C:\WINDOWS\SYSWOW64\JavaScriptCollectionAgent.dll
2014-12-10 13:45:57 ----A---- C:\WINDOWS\SYSWOW64\ieui.dll
2014-12-10 13:45:56 ----A---- C:\WINDOWS\SYSWOW64\webcheck.dll
2014-12-10 13:45:56 ----A---- C:\WINDOWS\system32\webcheck.dll
2014-12-10 13:45:55 ----A---- C:\WINDOWS\SYSWOW64\hlink.dll
2014-12-10 13:45:54 ----A---- C:\WINDOWS\SYSWOW64\msrating.dll
2014-12-10 13:45:54 ----A---- C:\WINDOWS\system32\hlink.dll
2014-12-10 13:45:53 ----A---- C:\WINDOWS\system32\msrating.dll
2014-12-10 13:45:53 ----A---- C:\WINDOWS\system32\ieUnatt.exe
2014-12-10 13:45:53 ----A---- C:\WINDOWS\system32\iesysprep.dll
2014-12-10 13:45:53 ----A---- C:\WINDOWS\system32\iepeers.dll
2014-12-10 13:45:52 ----A---- C:\WINDOWS\SYSWOW64\inseng.dll
2014-12-10 13:45:52 ----A---- C:\WINDOWS\SYSWOW64\ieUnatt.exe
2014-12-10 13:45:52 ----A---- C:\WINDOWS\SYSWOW64\iesysprep.dll
2014-12-10 13:45:52 ----A---- C:\WINDOWS\SYSWOW64\iepeers.dll
2014-12-10 13:45:52 ----A---- C:\WINDOWS\system32\ieetwcollector.exe
2014-12-10 13:45:51 ----A---- C:\WINDOWS\SYSWOW64\msfeedsbs.dll
2014-12-10 13:45:51 ----A---- C:\WINDOWS\system32\msfeedsbs.dll
2014-12-10 13:45:51 ----A---- C:\WINDOWS\system32\inseng.dll
2014-12-10 13:45:50 ----A---- C:\WINDOWS\SYSWOW64\occache.dll
2014-12-10 13:45:50 ----A---- C:\WINDOWS\SYSWOW64\MshtmlDac.dll
2014-12-10 13:45:50 ----A---- C:\WINDOWS\SYSWOW64\jsproxy.dll
2014-12-10 13:45:50 ----A---- C:\WINDOWS\SYSWOW64\iexpress.exe
2014-12-10 13:45:50 ----A---- C:\WINDOWS\SYSWOW64\IEAdvpack.dll
2014-12-10 13:45:50 ----A---- C:\WINDOWS\system32\MshtmlDac.dll
2014-12-10 13:45:50 ----A---- C:\WINDOWS\system32\jsproxy.dll
2014-12-10 13:45:49 ----A---- C:\WINDOWS\SYSWOW64\pngfilt.dll
2014-12-10 13:45:49 ----A---- C:\WINDOWS\SYSWOW64\licmgr10.dll
2014-12-10 13:45:49 ----A---- C:\WINDOWS\SYSWOW64\imgutil.dll
2014-12-10 13:45:49 ----A---- C:\WINDOWS\SYSWOW64\ieetwproxystub.dll
2014-12-10 13:45:49 ----A---- C:\WINDOWS\system32\pngfilt.dll
2014-12-10 13:45:49 ----A---- C:\WINDOWS\system32\occache.dll
2014-12-10 13:45:49 ----A---- C:\WINDOWS\system32\licmgr10.dll
2014-12-10 13:45:49 ----A---- C:\WINDOWS\system32\imgutil.dll
2014-12-10 13:45:48 ----A---- C:\WINDOWS\SYSWOW64\wextract.exe
2014-12-10 13:45:48 ----A---- C:\WINDOWS\SYSWOW64\url.dll
2014-12-10 13:45:48 ----A---- C:\WINDOWS\SYSWOW64\iesetup.dll
2014-12-10 13:45:48 ----A---- C:\WINDOWS\SYSWOW64\iernonce.dll
2014-12-10 13:45:48 ----A---- C:\WINDOWS\system32\url.dll
2014-12-10 13:45:48 ----A---- C:\WINDOWS\system32\iernonce.dll
2014-12-10 13:45:47 ----A---- C:\WINDOWS\system32\wextract.exe
2014-12-10 13:45:47 ----A---- C:\WINDOWS\system32\IEAdvpack.dll
2014-12-10 13:45:46 ----A---- C:\WINDOWS\SYSWOW64\msfeedssync.exe
2014-12-10 13:45:46 ----A---- C:\WINDOWS\system32\iexpress.exe
2014-12-10 13:45:46 ----A---- C:\WINDOWS\system32\iesetup.dll
2014-12-10 13:45:45 ----A---- C:\WINDOWS\SYSWOW64\mshta.exe
2014-12-10 13:45:45 ----A---- C:\WINDOWS\system32\mshta.exe
2014-12-10 13:45:45 ----A---- C:\WINDOWS\system32\msfeedssync.exe
2014-12-10 09:45:07 ----A---- C:\WINDOWS\SYSWOW64\msi.dll
2014-12-10 09:45:07 ----A---- C:\WINDOWS\system32\msi.dll
2014-12-10 09:45:06 ----A---- C:\WINDOWS\system32\authui.dll
2014-12-10 09:45:05 ----A---- C:\WINDOWS\SYSWOW64\msihnd.dll
2014-12-10 09:45:05 ----A---- C:\WINDOWS\SYSWOW64\authui.dll
2014-12-10 09:45:05 ----A---- C:\WINDOWS\system32\msihnd.dll
2014-12-10 09:45:04 ----A---- C:\WINDOWS\system32\consent.exe
2014-12-10 09:45:04 ----A---- C:\WINDOWS\system32\appinfo.dll
2014-12-10 09:44:56 ----A---- C:\WINDOWS\system32\user32.dll
2014-12-10 09:44:55 ----A---- C:\WINDOWS\SYSWOW64\user32.dll
2014-12-10 09:44:54 ----A---- C:\WINDOWS\system32\drivers\WdNisDrv.sys
2014-12-10 09:44:54 ----A---- C:\WINDOWS\system32\drivers\WdFilter.sys
2014-12-10 09:44:53 ----A---- C:\WINDOWS\system32\drivers\WdBoot.sys
2014-12-10 09:44:50 ----A---- C:\WINDOWS\SYSWOW64\winshfhc.dll
2014-12-10 09:44:50 ----A---- C:\WINDOWS\system32\winshfhc.dll
2014-12-10 09:43:51 ----A---- C:\WINDOWS\system32\lockscreencn.dll
2014-12-10 07:30:55 ----A---- C:\WINDOWS\system32\drivers\msgpioclx.sys
2014-12-10 07:30:36 ----A---- C:\WINDOWS\SYSWOW64\schannel.dll
2014-12-10 07:30:36 ----A---- C:\WINDOWS\system32\schannel.dll
2014-12-10 07:30:35 ----A---- C:\WINDOWS\system32\ncryptsslp.dll
2014-12-10 07:30:35 ----A---- C:\WINDOWS\system32\dpapisrv.dll
2014-12-10 07:30:34 ----A---- C:\WINDOWS\SYSWOW64\ncryptsslp.dll
2014-12-10 07:30:05 ----A---- C:\WINDOWS\system32\kerberos.dll
2014-12-10 07:30:04 ----A---- C:\WINDOWS\SYSWOW64\pku2u.dll
2014-12-10 07:30:04 ----A---- C:\WINDOWS\SYSWOW64\kerberos.dll
2014-12-10 07:30:04 ----A---- C:\WINDOWS\system32\pku2u.dll
2014-12-10 07:29:55 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2014-12-10 07:29:54 ----A---- C:\WINDOWS\system32\twinui.dll
2014-12-10 07:29:47 ----A---- C:\WINDOWS\system32\shell32.dll
2014-12-10 07:29:43 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2014-12-10 07:29:41 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2014-12-10 07:29:35 ----A---- C:\WINDOWS\system32\drivers\tcpip.sys
2014-12-10 07:29:34 ----A---- C:\WINDOWS\system32\SettingsHandlers.dll
2014-12-10 07:29:34 ----A---- C:\WINDOWS\system32\localspl.dll
2014-12-10 07:29:33 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2014-12-10 07:29:32 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2014-12-10 07:29:28 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2014-12-10 07:29:28 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2014-12-10 07:29:27 ----A---- C:\WINDOWS\system32\win32spl.dll
2014-12-10 07:29:26 ----A---- C:\WINDOWS\system32\drivers\netio.sys
2014-12-10 07:29:25 ----A---- C:\WINDOWS\SYSWOW64\WsmSvc.dll
2014-12-10 07:29:25 ----A---- C:\WINDOWS\system32\WsmSvc.dll
2014-12-10 07:29:25 ----A---- C:\WINDOWS\system32\puiobj.dll
2014-12-10 07:29:24 ----A---- C:\WINDOWS\SYSWOW64\puiobj.dll
2014-12-10 07:29:22 ----A---- C:\WINDOWS\system32\drivers\FWPKCLNT.SYS
2014-12-10 07:29:21 ----AC---- C:\WINDOWS\system32\drivers\USBSTOR.SYS
2014-12-10 07:29:21 ----A---- C:\WINDOWS\system32\winbici.dll
2014-12-10 07:29:20 ----A---- C:\WINDOWS\system32\BulkOperationHost.exe
2014-12-10 07:29:18 ----A---- C:\WINDOWS\SYSWOW64\untfs.dll
2014-12-10 07:29:18 ----A---- C:\WINDOWS\system32\untfs.dll
2014-12-10 07:29:15 ----A---- C:\WINDOWS\system32\FXSCOMEX.dll
2014-12-10 07:29:14 ----A---- C:\WINDOWS\system32\FXSAPI.dll
2014-12-10 07:29:13 ----A---- C:\WINDOWS\SYSWOW64\FXSAPI.dll
2014-12-10 07:26:23 ----A---- C:\WINDOWS\SYSWOW64\msxml3.dll
2014-12-10 07:26:22 ----A---- C:\WINDOWS\system32\msxml3.dll
2014-12-10 07:26:14 ----A---- C:\WINDOWS\SYSWOW64\TsWpfWrp.exe
2014-12-10 07:26:14 ----A---- C:\WINDOWS\system32\TsWpfWrp.exe
2014-12-10 07:23:40 ----A---- C:\WINDOWS\SYSWOW64\d3d9.dll
2014-12-10 07:23:40 ----A---- C:\WINDOWS\system32\d3d9.dll
2014-12-10 07:23:35 ----A---- C:\WINDOWS\system32\vpnike.dll
2014-12-10 07:23:34 ----A---- C:\WINDOWS\system32\fveapi.dll
2014-12-10 07:23:33 ----A---- C:\WINDOWS\system32\dhcpcore.dll
2014-12-10 07:23:31 ----A---- C:\WINDOWS\SYSWOW64\dhcpcore.dll
2014-12-10 07:23:31 ----A---- C:\WINDOWS\system32\framedynos.dll
2014-12-10 07:23:31 ----A---- C:\WINDOWS\system32\drivers\mrxsmb.sys
2014-12-10 07:23:29 ----A---- C:\WINDOWS\SYSWOW64\framedynos.dll
2014-12-10 07:23:29 ----A---- C:\WINDOWS\SYSWOW64\dhcpcore6.dll
2014-12-10 07:23:29 ----A---- C:\WINDOWS\system32\dhcpcore6.dll
2014-12-10 07:23:29 ----A---- C:\WINDOWS\system32\bdesvc.dll
2014-12-10 07:23:28 ----A---- C:\WINDOWS\system32\drivers\agilevpn.sys
2014-12-10 07:23:28 ----A---- C:\WINDOWS\system32\BFE.DLL
2014-12-10 07:23:26 ----A---- C:\WINDOWS\system32\ncobjapi.dll
2014-12-10 07:23:26 ----A---- C:\WINDOWS\system32\framedyn.dll
2014-12-10 07:23:25 ----A---- C:\WINDOWS\SYSWOW64\ncobjapi.dll
2014-12-10 07:23:23 ----A---- C:\WINDOWS\system32\drivers\vwifimp.sys
2014-12-10 07:23:22 ----A---- C:\WINDOWS\system32\Robocopy.exe
2014-12-10 07:23:21 ----A---- C:\WINDOWS\SYSWOW64\Robocopy.exe
2014-12-10 07:23:21 ----A---- C:\WINDOWS\system32\IKEEXT.DLL
2014-12-10 07:23:21 ----A---- C:\WINDOWS\system32\dhcpcsvc.dll
2014-12-10 07:23:20 ----A---- C:\WINDOWS\SYSWOW64\framedyn.dll
2014-12-10 07:23:20 ----A---- C:\WINDOWS\SYSWOW64\dhcpcsvc.dll
2014-12-10 07:23:20 ----A---- C:\WINDOWS\system32\dhcpcsvc6.dll
2014-12-10 07:23:19 ----A---- C:\WINDOWS\SYSWOW64\dhcpcsvc6.dll
2014-12-10 07:23:19 ----A---- C:\WINDOWS\system32\drivers\vwififlt.sys
2014-12-10 07:23:18 ----A---- C:\WINDOWS\system32\reseteng.dll
2014-12-10 07:23:17 ----A---- C:\WINDOWS\SYSWOW64\d3d8thk.dll
2014-12-10 07:23:17 ----A---- C:\WINDOWS\system32\srms.dat
2014-12-10 07:21:35 ----A---- C:\WINDOWS\explorer.exe
2014-12-10 07:21:34 ----A---- C:\WINDOWS\SYSWOW64\explorer.exe
2014-12-10 07:21:34 ----A---- C:\WINDOWS\system32\uDWM.dll
2014-12-10 07:21:33 ----A---- C:\WINDOWS\SYSWOW64\UXInit.dll
2014-12-10 07:21:33 ----A---- C:\WINDOWS\system32\UXInit.dll
2014-12-10 07:21:24 ----A---- C:\WINDOWS\SYSWOW64\AUDIOKSE.dll
2014-12-10 07:21:24 ----A---- C:\WINDOWS\system32\audiosrv.dll
2014-12-10 07:21:24 ----A---- C:\WINDOWS\system32\AudioSes.dll
2014-12-10 07:21:24 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll
2014-12-10 07:21:23 ----A---- C:\WINDOWS\SYSWOW64\AudioSes.dll
2014-12-10 07:21:23 ----A---- C:\WINDOWS\system32\AudioEng.dll
2014-12-10 07:21:23 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2014-12-10 07:21:23 ----A---- C:\WINDOWS\system32\audiodg.exe
2014-12-10 07:21:22 ----A---- C:\WINDOWS\SYSWOW64\AudioEng.dll
2014-12-10 07:21:22 ----A---- C:\WINDOWS\system32\EncDump.dll
2014-12-10 07:21:18 ----A---- C:\WINDOWS\system32\win32k.sys
2014-12-10 07:20:37 ----A---- C:\WINDOWS\system32\Windows.UI.Search.dll
2014-12-10 07:20:34 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Search.dll
2014-12-10 07:20:33 ----A---- C:\WINDOWS\system32\mstscax.dll
2014-12-10 07:20:32 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2014-12-10 07:20:31 ----A---- C:\WINDOWS\system32\SyncEngine.dll
2014-12-10 07:20:29 ----A---- C:\WINDOWS\system32\SearchFolder.dll
2014-12-10 07:20:27 ----A---- C:\WINDOWS\system32\KernelBase.dll
2014-12-10 07:20:26 ----A---- C:\WINDOWS\system32\propsys.dll
2014-12-10 07:20:26 ----A---- C:\WINDOWS\system32\ntdll.dll
2014-12-10 07:20:24 ----A---- C:\WINDOWS\system32\WSShared.dll
2014-12-10 07:20:23 ----A---- C:\WINDOWS\SYSWOW64\WSShared.dll
2014-12-10 07:20:23 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2014-12-10 07:20:23 ----A---- C:\WINDOWS\system32\iphlpsvc.dll
2014-12-10 07:20:22 ----A---- C:\WINDOWS\SYSWOW64\SearchFolder.dll
2014-12-10 07:20:22 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2014-12-10 07:20:22 ----A---- C:\WINDOWS\system32\Wldap32.dll
2014-12-10 07:20:21 ----A---- C:\WINDOWS\SYSWOW64\Wldap32.dll
2014-12-10 07:20:21 ----A---- C:\WINDOWS\system32\SystemEventsBrokerServer.dll
2014-12-10 07:20:20 ----A---- C:\WINDOWS\SYSWOW64\propsys.dll
2014-12-10 07:20:19 ----A---- C:\WINDOWS\system32\SkyDriveTelemetry.dll
2014-12-10 07:20:18 ----A---- C:\WINDOWS\system32\SkyDrive.exe
2014-12-10 07:20:18 ----A---- C:\WINDOWS\system32\httpprxm.dll
2014-12-10 07:20:18 ----A---- C:\WINDOWS\system32\bisrv.dll
2014-12-10 07:20:17 ----A---- C:\WINDOWS\system32\pcsvDevice.dll
2014-12-10 07:20:17 ----A---- C:\WINDOWS\system32\adhsvc.dll
2014-12-10 07:20:16 ----A---- C:\WINDOWS\SYSWOW64\SkyDriveShell.dll
2014-12-10 07:20:16 ----A---- C:\WINDOWS\system32\SkyDriveShell.dll
2014-12-10 07:20:16 ----A---- C:\WINDOWS\system32\ProximityService.dll
2014-12-10 07:20:14 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2014-12-10 07:20:14 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2014-12-10 07:19:37 ----A---- C:\WINDOWS\SYSWOW64\packager.dll
2014-12-10 07:19:37 ----A---- C:\WINDOWS\system32\packager.dll
2014-12-09 23:04:22 ----A---- C:\WINDOWS\SYSWOW64\msvcr120_clr0400.dll
2014-12-09 23:04:21 ----A---- C:\WINDOWS\system32\msvcr120_clr0400.dll
2014-12-09 23:03:44 ----D---- C:\Program Files\Elantech
2014-12-09 23:00:47 ----A---- C:\WINDOWS\system32\rdpcorets.dll
2014-12-09 23:00:46 ----A---- C:\WINDOWS\SYSWOW64\certcli.dll
2014-12-09 23:00:46 ----A---- C:\WINDOWS\system32\lsasrv.dll
2014-12-09 23:00:46 ----A---- C:\WINDOWS\system32\certcli.dll
2014-12-09 23:00:45 ----A---- C:\WINDOWS\SYSWOW64\adtschema.dll
2014-12-09 23:00:45 ----A---- C:\WINDOWS\system32\rfxvmt.dll
2014-12-09 23:00:45 ----A---- C:\WINDOWS\system32\drivers\ksecpkg.sys
2014-12-09 23:00:45 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2014-12-09 23:00:45 ----A---- C:\WINDOWS\system32\adtschema.dll
2014-12-09 23:00:44 ----A---- C:\WINDOWS\SYSWOW64\msaudite.dll
2014-12-09 23:00:44 ----A---- C:\WINDOWS\system32\msaudite.dll
2014-12-09 23:00:44 ----A---- C:\WINDOWS\system32\drivers\rdpvideominiport.sys
2014-12-09 23:00:43 ----A---- C:\WINDOWS\system32\rdpudd.dll
2014-12-09 23:00:20 ----A---- C:\WINDOWS\system32\oleaut32.dll
2014-12-09 23:00:19 ----A---- C:\WINDOWS\SYSWOW64\oleaut32.dll
2014-12-09 22:58:57 ----A---- C:\WINDOWS\system32\WUDFHost.exe
2014-12-09 22:58:57 ----A---- C:\WINDOWS\system32\drivers\WUDFRd.sys
2014-12-09 22:58:56 ----A---- C:\WINDOWS\system32\WUDFSvc.dll
2014-12-09 22:58:56 ----A---- C:\WINDOWS\system32\WUDFPlatform.dll
2014-12-09 22:58:56 ----A---- C:\WINDOWS\system32\drivers\WUDFPf.sys
2014-12-09 22:58:56 ----A---- C:\WINDOWS\system32\DaOtpCredentialProvider.dll
2014-12-09 22:58:55 ----A---- C:\WINDOWS\SYSWOW64\DaOtpCredentialProvider.dll
2014-12-09 22:58:55 ----A---- C:\WINDOWS\system32\hal.dll
2014-12-09 22:54:17 ----A---- C:\WINDOWS\system32\schedsvc.dll
2014-12-09 22:54:12 ----A---- C:\WINDOWS\system32\rastls.dll
2014-12-09 22:54:11 ----A---- C:\WINDOWS\SYSWOW64\rastls.dll
2014-12-09 22:54:10 ----A---- C:\WINDOWS\system32\WpcMon.exe
2014-12-09 22:54:10 ----A---- C:\WINDOWS\system32\Wpc.dll
2014-12-09 22:54:09 ----A---- C:\WINDOWS\SYSWOW64\Wpc.dll
2014-12-09 22:54:09 ----A---- C:\WINDOWS\system32\WpcWebSync.dll
2014-12-09 22:54:08 ----A---- C:\WINDOWS\system32\MDMAgent.exe
2014-12-08 11:16:21 ----D---- C:\Program Files\Common Files\Atheros
2014-12-08 11:08:33 ----D---- C:\Users\Mara\AppData\Roaming\Identities
2014-12-08 11:05:50 ----SHD---- C:\ProgramData\Šablony
2014-12-08 11:05:50 ----SHD---- C:\ProgramData\Plocha
2014-12-08 11:05:50 ----SHD---- C:\ProgramData\Nabídka Start
2014-12-08 11:05:50 ----SHD---- C:\ProgramData\Dokumenty
2014-12-08 11:05:50 ----SHD---- C:\ProgramData\Data aplikací
2014-12-08 11:01:56 ----A---- C:\WINDOWS\system32\emptyregdb.dat
2014-12-08 10:34:29 ----SD---- C:\Users\Mara\AppData\Roaming\Microsoft
2014-12-08 10:24:48 ----A---- C:\WINDOWS\system32\drivers\RTWAVES30.dat
2014-12-08 10:24:37 ----D---- C:\WINDOWS\SYSWOW64\RTCOM
2014-12-08 10:24:37 ----D---- C:\Program Files\Realtek
2014-12-08 10:24:22 ----D---- C:\Program Files (x86)\Intel
2014-12-08 10:22:56 ----D---- C:\WINDOWS\Prefetch
2014-12-08 10:21:40 ----SHD---- C:\Recovery
2014-12-08 10:21:30 ----DC---- C:\WINDOWS\Panther
2014-12-08 10:17:02 ----D---- C:\Program Files (x86)\Reference Assemblies
2014-12-08 10:17:02 ----D---- C:\Program Files (x86)\MSBuild
2014-12-08 10:16:59 ----D---- C:\WINDOWS\SYSWOW64\XPSViewer
2014-12-08 10:16:59 ----D---- C:\Program Files\Reference Assemblies
2014-12-08 10:16:59 ----D---- C:\Program Files\MSBuild
2014-12-08 10:15:42 ----A---- C:\WINDOWS\SYSWOW64\PresentationNative_v0300.dll
2014-12-08 10:15:42 ----A---- C:\WINDOWS\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2014-12-08 10:15:40 ----A---- C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2014-12-08 10:15:39 ----A---- C:\WINDOWS\system32\PresentationNative_v0300.dll
2014-11-28 11:23:51 ----DC---- C:\WINDOWS\system32\DRVSTORE
2014-11-28 11:23:18 ----D---- C:\Program Files (x86)\Fortinet
2014-11-28 11:19:41 ----D---- C:\ProgramData\Applications
2014-11-26 16:14:58 ----A---- C:\WINDOWS\system32\AutoUpdate.exe
======List of files/folders modified in the last 1 month======
2014-12-24 07:54:41 ----D---- C:\Program Files\trend micro
2014-12-24 07:52:11 ----D---- C:\WINDOWS\Temp
2014-12-24 07:37:12 ----D---- C:\WINDOWS\system32\sru
2014-12-23 21:24:32 ----RD---- C:\WINDOWS\System32
2014-12-23 21:23:17 ----A---- C:\WINDOWS\SYSWOW64\log.txt
2014-12-23 21:20:44 ----D---- C:\WINDOWS\Inf
2014-12-23 15:09:00 ----D---- C:\WINDOWS\system32\Tasks
2014-12-23 13:19:37 ----SHD---- C:\System Volume Information
2014-12-23 11:55:45 ----D---- C:\Users\Mara\AppData\Roaming\Spotify
2014-12-23 11:18:40 ----D---- C:\WINDOWS\Microsoft.NET
2014-12-22 21:20:48 ----D---- C:\Program Files (x86)\Spybot - Search & Destroy 2
2014-12-22 21:19:37 ----SD---- C:\ProgramData\Microsoft
2014-12-22 21:19:20 ----D---- C:\ProgramData\Spybot - Search & Destroy
2014-12-22 21:08:22 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2014-12-21 19:30:35 ----D---- C:\WINDOWS\SoftwareDistribution
2014-12-21 19:30:35 ----D---- C:\Windows
2014-12-21 10:20:35 ----SHD---- C:\$Recycle.Bin
2014-12-21 09:54:33 ----D---- C:\Users\Mara\AppData\Roaming\IrfanView
2014-12-21 09:04:08 ----D---- C:\Users\Mara\AppData\Roaming\uTorrent
2014-12-21 09:03:33 ----D---- C:\WINDOWS\debug
2014-12-20 08:59:38 ----D---- C:\WINDOWS\system32\config
2014-12-19 13:35:35 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2014-12-19 11:01:17 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2014-12-19 11:01:17 ----D---- C:\Program Files (x86)\Mozilla Firefox
2014-12-19 10:58:46 ----D---- C:\WINDOWS\system32\NDF
2014-12-18 09:54:43 ----D---- C:\WINDOWS\CbsTemp
2014-12-18 09:54:42 ----D---- C:\WINDOWS\WinSxS
2014-12-17 11:40:23 ----HD---- C:\Program Files\WindowsApps
2014-12-17 11:40:23 ----D---- C:\WINDOWS\AppReadiness
2014-12-17 10:01:32 ----D---- C:\WINDOWS\system32\DriverStore
2014-12-16 13:44:38 ----D---- C:\WINDOWS\rescache
2014-12-16 09:49:46 ----D---- C:\WINDOWS\SysWOW64
2014-12-16 08:31:01 ----D---- C:\WINDOWS\Logs
2014-12-16 08:18:31 ----D---- C:\WINDOWS\system32\wdi
2014-12-14 14:49:06 ----D---- C:\WINDOWS\system32\drivers
2014-12-14 11:00:10 ----RD---- C:\Program Files (x86)
2014-12-12 21:48:20 ----D---- C:\WINDOWS\system32\AutoUpdateLicense
2014-12-12 21:46:28 ----D---- C:\Program Files\Windows Defender
2014-12-12 21:46:28 ----D---- C:\Program Files (x86)\Windows Defender
2014-12-12 21:31:29 ----RD---- C:\Program Files
2014-12-12 20:38:07 ----HD---- C:\ProgramData
2014-12-12 10:16:51 ----RD---- C:\WINDOWS\assembly
2014-12-11 18:24:33 ----D---- C:\WINDOWS\system32\drivers\UMDF
2014-12-11 12:52:02 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2014-12-11 12:52:02 ----D---- C:\WINDOWS\system32\cs-CZ
2014-12-11 12:51:53 ----D---- C:\WINDOWS\system32\sr-Latn-RS
2014-12-11 12:51:53 ----D---- C:\WINDOWS\system32\sr-Latn-CS
2014-12-11 10:49:21 ----D---- C:\WINDOWS\system32\catroot
2014-12-11 10:34:34 ----D---- C:\WINDOWS\system32\LogFiles
2014-12-11 10:30:38 ----RD---- C:\WINDOWS\ToastData
2014-12-11 10:30:38 ----D---- C:\WINDOWS\system32\migration
2014-12-11 10:30:33 ----SD---- C:\WINDOWS\system32\CompatTel
2014-12-11 10:30:33 ----D---- C:\WINDOWS\AppCompat
2014-12-11 10:30:19 ----D---- C:\WINDOWS\WinStore
2014-12-11 10:30:12 ----D---- C:\WINDOWS\SYSWOW64\wbem
2014-12-11 10:30:12 ----D---- C:\WINDOWS\SYSWOW64\migration
2014-12-11 10:30:11 ----D---- C:\WINDOWS\system32\wbem
2014-12-11 10:30:11 ----D---- C:\WINDOWS\system32\en-US
2014-12-11 10:30:02 ----D---- C:\Program Files (x86)\Internet Explorer
2014-12-11 10:29:59 ----D---- C:\WINDOWS\PolicyDefinitions
2014-12-11 10:29:57 ----D---- C:\Program Files\Internet Explorer
2014-12-11 10:29:53 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2014-12-11 10:29:53 ----D---- C:\WINDOWS\MediaViewer
2014-12-11 10:29:52 ----D---- C:\WINDOWS\FileManager
2014-12-11 10:29:52 ----D---- C:\WINDOWS\Camera
2014-12-11 10:29:52 ----D---- C:\WINDOWS\apppatch
2014-12-11 10:29:19 ----SHD---- C:\WINDOWS\Installer
2014-12-11 10:29:19 ----D---- C:\ProgramData\Microsoft Help
2014-12-11 10:28:09 ----D---- C:\WINDOWS\system32\MRT
2014-12-11 10:23:49 ----A---- C:\WINDOWS\system32\MRT.exe
2014-12-11 09:16:27 ----D---- C:\Program Files\Common Files
2014-12-11 09:13:24 ----D---- C:\WINDOWS\system32\restore
2014-12-10 13:40:48 ----D---- C:\WINDOWS\system32\catroot2
2014-12-08 11:31:28 ----D---- C:\WINDOWS\LiveKernelReports
2014-12-08 11:26:29 ----D---- C:\AdwCleaner
2014-12-08 11:16:22 ----D---- C:\Program Files (x86)\Bluetooth Suite
2014-12-08 11:05:50 ----D---- C:\Program Files\Windows NT
2014-12-08 11:05:28 ----D---- C:\WINDOWS\Registration
2014-12-08 10:58:10 ----RSD---- C:\WINDOWS\Media
2014-12-08 10:46:46 ----D---- C:\WINDOWS\SYSWOW64\vbox
2014-12-08 10:46:46 ----D---- C:\WINDOWS\SYSWOW64\drivers
2014-12-08 10:46:46 ----D---- C:\WINDOWS\SYSWOW64\bitstreams
2014-12-08 10:46:46 ----D---- C:\WINDOWS\SYSWOW64\Atheros_L1e
2014-12-08 10:46:46 ----D---- C:\WINDOWS\system32\vbox
2014-12-08 10:46:46 ----D---- C:\WINDOWS\system32\Sysprep
2014-12-08 10:46:45 ----D---- C:\WINDOWS\sk
2014-12-08 10:46:45 ----D---- C:\WINDOWS\ShellNew
2014-12-08 10:46:45 ----D---- C:\WINDOWS\pl
2014-12-08 10:46:44 ----RSD---- C:\WINDOWS\Fonts
2014-12-08 10:46:44 ----D---- C:\WINDOWS\hu
2014-12-08 10:46:43 ----D---- C:\WINDOWS\Tasks
2014-12-08 10:46:43 ----D---- C:\WINDOWS\en-GB
2014-12-08 10:46:43 ----D---- C:\WINDOWS\cs
2014-12-08 10:46:43 ----D---- C:\ProgramData\regid.1986-12.com.adobe
2014-12-08 10:43:58 ----D---- C:\WINDOWS\SYSWOW64\WCN
2014-12-08 10:43:57 ----D---- C:\WINDOWS\SYSWOW64\sysprep
2014-12-08 10:43:57 ----D---- C:\WINDOWS\SYSWOW64\spool
2014-12-08 10:43:57 ----D---- C:\WINDOWS\SYSWOW64\SMI
2014-12-08 10:43:56 ----D---- C:\WINDOWS\SYSWOW64\MUI
2014-12-08 10:43:56 ----D---- C:\WINDOWS\SYSWOW64\migwiz
2014-12-08 10:43:56 ----D---- C:\WINDOWS\SYSWOW64\LogFiles
2014-12-08 10:43:54 ----D---- C:\WINDOWS\SYSWOW64\IME
2014-12-08 10:43:53 ----D---- C:\WINDOWS\SYSWOW64\drivers\UMDF
2014-12-08 10:43:53 ----D---- C:\WINDOWS\SYSWOW64\catroot
2014-12-08 10:43:49 ----D---- C:\WINDOWS\system32\WCN
2014-12-08 10:43:49 ----D---- C:\WINDOWS\system32\spool
2014-12-08 10:43:44 ----D---- C:\WINDOWS\system32\oobe
2014-12-08 10:43:44 ----D---- C:\WINDOWS\system32\MUI
2014-12-08 10:43:44 ----D---- C:\WINDOWS\system32\IME
2014-12-08 10:43:43 ----D---- C:\WINDOWS\system32\drivers\etc
2014-12-08 10:42:33 ----D---- C:\WINDOWS\IME
2014-12-08 10:42:33 ----D---- C:\WINDOWS\Help
2014-12-08 10:42:30 ----D---- C:\WINDOWS\DigitalLocker
2014-12-08 10:40:28 ----RD---- C:\Users
2014-12-08 10:40:27 ----D---- C:\ProgramData\PRICache
2014-12-08 10:40:18 ----SHD---- C:\Program Files (x86)\Windows Sidebar
2014-12-08 10:40:18 ----D---- C:\Program Files (x86)\Windows Media Player
2014-12-08 10:40:14 ----D---- C:\Program Files (x86)\Microsoft.NET
2014-12-08 10:40:12 ----D---- C:\Program Files (x86)\Common Files
2014-12-08 10:40:08 ----SHD---- C:\Program Files\Windows Sidebar
2014-12-08 10:40:08 ----D---- C:\Program Files\Windows Media Player
2014-12-08 10:40:07 ----D---- C:\Program Files\Common Files\microsoft shared
2014-12-08 10:36:26 ----D---- C:\WINDOWS\system32\Recovery
2014-12-08 10:36:20 ----HD---- C:\WINDOWS\system32\GroupPolicy
2014-12-05 10:02:36 ----D---- C:\WINDOWS\AUInstallAgent
2014-11-28 16:17:19 ----D---- C:\Temp
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswRvrt;avast! Revert; C:\WINDOWS\system32\drivers\aswRvrt.sys [2014-11-20 65776]
R0 aswVmm;avast! VM Monitor; C:\WINDOWS\system32\drivers\aswVmm.sys [2014-11-20 267632]
R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2012-09-14 647736]
R0 sptd;sptd; C:\WINDOWS\System32\Drivers\sptd.sys [2014-12-12 386680]
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [2014-11-20 93568]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2014-11-22 1050432]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2014-11-20 436624]
R1 ATKWMIACPIIO;ATKWMIACPI Driver; \??\C:\Program Files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys [2011-09-07 17536]
R1 vwififlt;@%SystemRoot%\System32\drivers\vwififlt.sys,-259; C:\WINDOWS\system32\DRIVERS\vwififlt.sys [2014-04-30 71680]
R2 ASMMAP64;ASMMAP64; \??\C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys [2009-07-02 15416]
R2 aswHwid;avast! HardwareID; C:\WINDOWS\system32\drivers\aswHwid.sys [2014-11-20 29208]
R2 aswMonFlt;aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [2014-11-20 83280]
R2 VBoxAswDrv;VBoxAsw Support Driver; \??\C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [2014-11-20 271752]
R3 AiCharger;ASUS Charger Driver; C:\WINDOWS\system32\DRIVERS\AiCharger.sys [2012-09-18 17152]
R3 AthBTPort;@oem10.inf,%BTHSUPPORT.SvcDesc%;Qualcomm Atheros Virtual Bluetooth Class; C:\WINDOWS\system32\DRIVERS\btath_flt.sys [2012-12-28 89320]
R3 athr;@athw8x.inf,%ATHR.Service.DispName%;Qualcomm Atheros Extensible Wireless LAN device driver; C:\WINDOWS\system32\DRIVERS\athw8x.sys [2013-06-18 3680256]
R3 BTATH_BUS;@oem5.inf,%BTATH_BUS.SVCDESC%;Qualcomm Atheros Bluetooth Bus; C:\WINDOWS\System32\drivers\btath_bus.sys [2012-12-28 33944]
R3 BTATH_HCRP;@oem11.inf,%BTATH_HCRP.SvcDesc%;Bluetooth HCRP Server driver; C:\WINDOWS\System32\drivers\btath_hcrp.sys [2012-12-28 179432]
R3 BTATH_LWFLT;@oem20.inf,%BTATH_LWFLT%;Bluetooth LWFLT Device; C:\WINDOWS\system32\DRIVERS\btath_lwflt.sys [2012-12-28 77464]
R3 BtFilter;BtFilter; C:\WINDOWS\system32\DRIVERS\btfilter.sys [2014-04-28 599240]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\System32\drivers\BthEnum.sys [2013-08-22 53248]
R3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Ovladač úspory energie technologie Bluetooth; C:\WINDOWS\system32\DRIVERS\BthLEEnum.sys [2014-09-24 226304]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Zařízení Bluetooth (síť PAN); C:\WINDOWS\system32\DRIVERS\bthpan.sys [2014-09-24 118272]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\Drivers\BTHUSB.sys [2014-09-24 81920]
R3 ETD;@oem35.inf,%PS2DeviceDesc%;ELAN PS/2 Port Input Device; C:\WINDOWS\system32\DRIVERS\ETD.sys [2014-12-09 381192]
R3 HIDSwitch;@oem9.inf,%ASSW.DisplayName%;ASUS Wireless Radio Control; C:\WINDOWS\System32\drivers\AsHIDSwitch64.sys [2012-05-31 21152]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2014-01-29 5363200]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2012-12-11 3258256]
R3 IntcDAud;@oem31.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2012-10-26 342528]
R3 kbfiltr;@oem8.inf,%kbfiltr.SvcDesc%;Keyboard Filter; C:\WINDOWS\System32\drivers\kbfiltr.sys [2012-08-02 14992]
R3 L1C;@netl1c63x64.inf,%L1C.Service.DispName%;NDIS Miniport – ovladač pro řadič Qualcomm Atheros AR81xx PCI-E Ethernet; C:\WINDOWS\system32\DRIVERS\L1C63x64.sys [2013-06-18 129224]
R3 MEIx64;@oem32.inf,%HECI_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\System32\drivers\HECIx64.sys [2012-07-02 62784]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Zařízení Bluetooth (RFCOMM protokol TDI); C:\WINDOWS\system32\DRIVERS\rfcomm.sys [2014-09-24 167424]
R3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;Zobrazovací zařízení USB (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys [2013-08-22 212224]
R3 vwifimp;@%SystemRoot%\System32\drivers\vwifimp.sys,-261; C:\WINDOWS\system32\DRIVERS\vwifimp.sys [2014-04-30 38912]
S2 aswStm;aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [2014-11-20 116728]
S3 ATP;@oem12.inf,%PS2.DeviceDesc%;ASUS Input Device; C:\WINDOWS\System32\drivers\AsusTP.sys [2013-01-16 65784]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\Drivers\BTHport.sys [2014-09-24 1200640]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2014-05-08 65432]
R2 AFBAgent;AFBAgent; C:\Windows\system32\FBAgent.exe [2013-01-07 1280768]
R2 ETDService;Elan Service; C:\Program Files\Elantech\ETDService.exe [2014-12-09 100104]
R2 SDScannerService;Spybot-S&D 2 Scanner Service; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [2014-06-24 1738168]
R2 SDUpdateService;Spybot-S&D 2 Updating Service; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [2014-06-27 2088408]
R2 SDWSCService;Spybot-S&D 2 Security Center Service; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [2014-04-25 171928]
R3 ASLDRService;ASLDR Service; C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe [2013-01-15 107320]
R3 ASUS InstantOn;ASUS InstantOn Service; C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnSrv.exe [2012-04-13 277120]
R3 AtherosSvc;AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [2012-12-28 226944]
R3 ATKGFNEXSrv;ATKGFNEX Service; C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe [2011-11-21 96896]
R3 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-04-20 635104]
R3 Intel(R) ME Service;Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [2012-06-27 129856]
R3 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2012-06-25 166720]
R3 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-07-17 277824]
R3 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2012-07-17 365376]
R3 WakeupService;ASUS Wake Service; C:\Program Files\ASUS\ASUS VivoBook\ASUSWakeupService.exe [2012-12-20 45488]
S2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2014-11-20 50344]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-01-17 116648]
S3 AvastVBoxSvc;AvastVBox COM Service; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [2014-11-20 4012248]
S3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2014-01-29 279000]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-01-17 116648]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2014-11-26 114800]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2012-10-01 150648]
S3 SwitchBoard;SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
-----------------EOF-----------------
tady to je,
diky za kontrolu
Logfile of random's system information tool 1.10 (written by random/random)
Run by Mara at 2014-12-24 07:54:39
Microsoft Windows 8.1
System drive C: has 39 GB (32%) free of 122 GB
Total RAM: 3980 MB (63% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 7:54:42, on 24. 12. 2014
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17416)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\TabTip32.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe
C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
C:\Program Files (x86)\ASUS\Splendid\ColorUService.exe
C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x86\QuickGesture.exe
C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files\trend micro\Mara.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://asus13.msn.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://asus13.msn.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: (no name) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - (no file)
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: (no name) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - (no file)
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O4 - HKLM\..\Run: [AdobeCS5ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [SDTray] "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"
O4 - HKCU\..\Run: [AdobeBridge] "C:\Program Files (x86)\Adobe\Adobe Bridge CS5\Bridge.exe" -stealth
O4 - HKCU\..\Run: [Spotify] "C:\Users\Mara\AppData\Roaming\Spotify\Spotify.exe" /uri spotify:autostart
O4 - HKCU\..\Run: [Spotify Web Helper] "C:\Users\Mara\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe"
O4 - HKLM\..\Policies\Explorer\Run: [BtvStack] "C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe"
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Se&nd to OneNote - res://C:\PROGRA~2\MICROS~1\Office15\ONBttnIE.dll/105
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O20 - Winlogon Notify: SDWinLogon - SDWinLogon.dll (file missing)
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: AFBAgent - Unknown owner - C:\Windows\system32\FBAgent.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: ASLDR Service (ASLDRService) - ASUSTek Computer Inc. - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
O23 - Service: ASUS InstantOn Service (ASUS InstantOn) - ASUS - C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnSrv.exe
O23 - Service: AtherosSvc - Qualcomm Atheros Commnucations - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: AvastVBox COM Service (AvastVBoxSvc) - Avast Software - C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: Elan Service (ETDService) - ELAN Microelectronics Corp. - C:\Program Files\Elantech\ETDService.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) ME Service - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Spybot-S&D 2 Scanner Service (SDScannerService) - Safer-Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe
O23 - Service: Spybot-S&D 2 Updating Service (SDUpdateService) - Safer-Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe
O23 - Service: Spybot-S&D 2 Security Center Service (SDWSCService) - Safer-Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: ASUS Wake Service (WakeupService) - ASUSTek Computer Inc. - C:\Program Files\ASUS\ASUS VivoBook\ASUSWakeupService.exe
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: ZAtheros Bt and Wlan Coex Agent - Atheros - C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
--
End of file - 10986 bytes
======Listing Processes======
wininit.exe
winlogon.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
"dwm.exe"
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k NetworkService
"C:\Windows\system32\FBAgent.exe"
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files\Elantech\ETDService.exe"
dashost.exe {87198bbf-9800-4238-a8dce405ed6b4164}
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe"
"C:\Program Files\Elantech\ETDCtrl.exe"
taskeng.exe {D676007D-E3D6-4A5B-9E7C-F72B2F08398E}
C:\WINDOWS\Explorer.EXE
taskhostex.exe
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe"
"C:\Program Files\Elantech\ETDCtrlHelper.exe"
"C:\Program Files\Elantech\ETDGesture.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
/QuitInfo:0000000000000B5C;0000000000000AA4;
/loadhooks /Parent:0000000000000fd8
"C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe"
"C:\Program Files (x86)\Bluetooth Suite\ActivateDesktop.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files\AVAST Software\Avast\avastui.exe" /nogui
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe"
KBFiltr.exe
"C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe"
"C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnSrv.exe"
"C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnWMI.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Bluetooth Suite\adminservice.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe"
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\WINDOWS\system32\hkcmd.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\WINDOWS\system32\igfxtray.exe"
"C:\Program Files\ASUS\ASUS VivoBook\ASUSWakeupService.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /MAXX3
"C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe"
"C:\Program Files\ASUS\ASUS VivoBook\VivoBook.exe" /RunWithHide
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe"
"C:\Program Files\ASUS\P4G\BatteryLife.exe"
C:\ProgramData\AsTouchPanel\AsPatchTouchPanel64.exe
"C:\Program Files (x86)\ASUS\Splendid\ACMON.exe"
"C:\Program Files (x86)\ASUS\Splendid\ColorUService.exe"
"C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLoader.exe"
"C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x64\QuickGesture64.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x86\QuickGesture.exe"
"C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe"
"C:\WINDOWS\ImmersiveControlPanel\SystemSettings.exe" -ServerName:microsoft.windows.immersivecontrolpanel
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
C:\WINDOWS\system32\wbem\WmiApSrv.exe
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe3_ Global\UsGthrCtrlFltPipeMssGthrPipe3 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 588 592 600 65536 596
"C:\Users\Mara\Desktop\RSITx64.exe"
======Scheduled tasks folder======
C:\WINDOWS\tasks\AdobeAAMUpdater-1.0-Marouskovnik-Mara.job - C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\updaterstartuputility.exe -mode=scheduled
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
=========Mozilla firefox=========
ProfilePath - C:\Users\Mara\AppData\Roaming\Mozilla\Firefox\Profiles\xnivlz3b.default
prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "http://www.seznam.cz/"
prefs.js - "extensions.enabledItems" - "2020Player_IKEA@2020Technologies.com:5.0.93.0, {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20, {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.13"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 16.0.0.235 Plugin
"Path"=C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_235.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42]
"Description"=Intel IPT WebApi plugin
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater]
"Description"=This plugin updates Intel WebAPI component
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=10.51.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=10.51.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=16.4.3528.0331]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 16.0.0.235 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF64_16_0_0_235.dll
C:\Program Files (x86)\Mozilla Firefox\plugins\
NPOFF12.DLL
nppdf32.dll
C:\Users\Mara\AppData\Roaming\Mozilla\Firefox\Profiles\xnivlz3b.default\extensions\
2020Player_IKEA@2020Technologies.com
{bee6eb20-01e0-ebd1-da83-080329fb9a3a}
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2014-11-20 705448]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-11-20 586968]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Persistence"=C:\WINDOWS\system32\igfxpers.exe [2014-01-29 442328]
"AdobeAAMUpdater-1.0"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2010-03-06 500208]
"ETDCtrl"=C:\Program Files\Elantech\ETDCtrl.exe [2014-12-09 2893576]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"BtvStack"=C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [2012-12-28 129664]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"AdobeBridge"=C:\Program Files (x86)\Adobe\Adobe Bridge CS5\Bridge.exe [2010-03-09 11989960]
"Spotify"=C:\Users\Mara\AppData\Roaming\Spotify\Spotify.exe [2014-10-16 6553144]
"Spotify Web Helper"=C:\Users\Mara\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [2014-10-16 1514040]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUSPRP]
C:\Program Files (x86)\ASUS\APRP\APRP.EXE [2012-11-23 3187360]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUSWebStorage]
C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.10.123\AsusWSPanel.exe [2012-08-31 3423104]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DisableS3S4]
c:\windows\temp\DisableS3S464\sethigh.cmd []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HotKeysCmds]
C:\WINDOWS\system32\hkcmd.exe [2014-01-29 399832]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IgfxTray]
C:\WINDOWS\system32\igfxtray.exe [2014-01-29 171992]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\mcui_exe]
C:\Program Files\McAfee.com\Agent\mcagent.exe /runkey []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RtHDVBg]
C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2012-12-03 1256080]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RTHDVCPL]
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2012-12-07 13262480]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904]
"GrooveMonitor"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040]
"SwitchBoard"=C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
"AdobeCS5ServiceManager"=C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe [2010-02-22 406992]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2014-12-12 5227112]
"SDTray"=C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [2014-06-24 4101576]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"BtvStack"=C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [2012-12-28 129664]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2014-01-29 442880]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DisableCAD"=1
"DisableTaskMgr"=0
"SoftwareSASGeneration"=1
"ConsentPromptBehaviorAdmin"=0
"EnableLUA"=0
"PromptOnSecureDesktop"=0
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoRun"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe:*:Enabled:Spybot - Search & Destroy tray access"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe:*:Enabled:Spybot-S&D 2 Scanner Service"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe:*:Enabled:Spybot-S&D 2 Updater"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe:*:Enabled:Spybot-S&D 2 Background update service"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"VIDC.LAGS"=lagarith.dll
"VIDC.X264"=x264vfw64.dll
"VIDC.XVID"=xvidvfw.dll
"msacm.ac3acm"=ac3acm.acm
"msacm.l3codecp"=l3codecp.acm
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2014-12-22 21:19:25 ----A---- C:\WINDOWS\system32\sdnclean64.exe
2014-12-16 08:23:28 ----A---- C:\WINDOWS\system32\poqexec.exe
2014-12-16 08:23:27 ----A---- C:\WINDOWS\SYSWOW64\poqexec.exe
2014-12-12 21:52:07 ----D---- C:\Program Files (x86)\Alcohol Soft
2014-12-12 21:44:05 ----A---- C:\WINDOWS\system32\drivers\sptd.sys
2014-12-12 20:38:55 ----D---- C:\Users\Mara\AppData\Roaming\DAEMON Tools Ultra
2014-12-12 20:38:51 ----D---- C:\Users\Mara\AppData\Roaming\RHEng
2014-12-12 20:38:45 ----D---- C:\Users\Mara\AppData\Roaming\OpenCandy
2014-12-12 20:38:07 ----D---- C:\ProgramData\DAEMON Tools Ultra
2014-12-11 10:35:35 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2014-12-11 10:30:34 ----RD---- C:\WINDOWS\BrowserChoice
2014-12-11 10:30:32 ----D---- C:\WINDOWS\system32\appraiser
2014-12-10 14:12:42 ----A---- C:\WINDOWS\SYSWOW64\DeviceSetupStatusProvider.dll
2014-12-10 14:12:42 ----A---- C:\WINDOWS\system32\DeviceSetupStatusProvider.dll
2014-12-10 14:12:26 ----A---- C:\WINDOWS\SYSWOW64\crypt32.dll
2014-12-10 14:12:26 ----A---- C:\WINDOWS\system32\crypt32.dll
2014-12-10 13:47:55 ----A---- C:\WINDOWS\system32\WindowsCodecs.dll
2014-12-10 13:47:54 ----A---- C:\WINDOWS\SYSWOW64\WindowsCodecs.dll
2014-12-10 13:47:51 ----A---- C:\WINDOWS\system32\generaltel.dll
2014-12-10 13:47:50 ----A---- C:\WINDOWS\system32\devinv.dll
2014-12-10 13:47:50 ----A---- C:\WINDOWS\system32\aepdu.dll
2014-12-10 13:47:49 ----A---- C:\WINDOWS\system32\invagent.dll
2014-12-10 13:47:49 ----A---- C:\WINDOWS\system32\appraiser.dll
2014-12-10 13:47:49 ----A---- C:\WINDOWS\system32\aepic.dll
2014-12-10 13:47:49 ----A---- C:\WINDOWS\system32\aeinv.dll
2014-12-10 13:47:43 ----A---- C:\WINDOWS\SYSWOW64\MrmCoreR.dll
2014-12-10 13:47:43 ----A---- C:\WINDOWS\system32\MrmCoreR.dll
2014-12-10 13:47:19 ----AC---- C:\WINDOWS\system32\drivers\sdbus.sys
2014-12-10 13:47:19 ----AC---- C:\WINDOWS\system32\drivers\intelpep.sys
2014-12-10 13:47:19 ----AC---- C:\WINDOWS\system32\drivers\dumpsd.sys
2014-12-10 13:47:19 ----A---- C:\WINDOWS\system32\drivers\pdc.sys
2014-12-10 13:46:40 ----A---- C:\WINDOWS\system32\actxprxy.dll
2014-12-10 13:46:39 ----A---- C:\WINDOWS\SYSWOW64\mshtmled.dll
2014-12-10 13:46:39 ----A---- C:\WINDOWS\SYSWOW64\actxprxy.dll
2014-12-10 13:46:38 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2014-12-10 13:46:38 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2014-12-10 13:46:38 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll
2014-12-10 13:46:38 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2014-12-10 13:46:36 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2014-12-10 13:46:36 ----A---- C:\WINDOWS\SYSWOW64\dxtrans.dll
2014-12-10 13:46:36 ----A---- C:\WINDOWS\system32\JavaScriptCollectionAgent.dll
2014-12-10 13:46:33 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2014-12-10 13:46:32 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2014-12-10 13:46:32 ----A---- C:\WINDOWS\system32\urlmon.dll
2014-12-10 13:46:31 ----A---- C:\WINDOWS\SYSWOW64\jscript9diag.dll
2014-12-10 13:46:31 ----A---- C:\WINDOWS\SYSWOW64\dxtmsft.dll
2014-12-10 13:46:30 ----A---- C:\WINDOWS\system32\msfeeds.dll
2014-12-10 13:46:30 ----A---- C:\WINDOWS\system32\dxtrans.dll
2014-12-10 13:46:29 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2014-12-10 13:46:25 ----A---- C:\WINDOWS\system32\iertutil.dll
2014-12-10 13:46:24 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2014-12-10 13:46:24 ----A---- C:\WINDOWS\SYSWOW64\ieapfltr.dll
2014-12-10 13:46:22 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2014-12-10 13:46:21 ----A---- C:\WINDOWS\system32\dxtmsft.dll
2014-12-10 13:46:18 ----A---- C:\WINDOWS\system32\ieframe.dll
2014-12-10 13:46:16 ----A---- C:\WINDOWS\system32\mshtmled.dll
2014-12-10 13:46:16 ----A---- C:\WINDOWS\system32\jscript9diag.dll
2014-12-10 13:46:15 ----A---- C:\WINDOWS\system32\jscript9.dll
2014-12-10 13:46:14 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2014-12-10 13:46:12 ----A---- C:\WINDOWS\system32\wininet.dll
2014-12-10 13:46:10 ----A---- C:\WINDOWS\system32\mshtml.dll
2014-12-10 13:46:06 ----A---- C:\WINDOWS\system32\ieetwproxystub.dll
2014-12-10 13:46:05 ----A---- C:\WINDOWS\system32\inetcomm.dll
2014-12-10 13:46:04 ----A---- C:\WINDOWS\SYSWOW64\inetcomm.dll
2014-12-10 13:46:03 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2014-12-10 13:46:03 ----A---- C:\WINDOWS\system32\vbscript.dll
2014-12-10 13:46:02 ----A---- C:\WINDOWS\SYSWOW64\jscript.dll
2014-12-10 13:46:02 ----A---- C:\WINDOWS\system32\jscript.dll
2014-12-10 13:46:00 ----A---- C:\WINDOWS\system32\ieui.dll
2014-12-10 13:45:59 ----A---- C:\WINDOWS\SYSWOW64\JavaScriptCollectionAgent.dll
2014-12-10 13:45:57 ----A---- C:\WINDOWS\SYSWOW64\ieui.dll
2014-12-10 13:45:56 ----A---- C:\WINDOWS\SYSWOW64\webcheck.dll
2014-12-10 13:45:56 ----A---- C:\WINDOWS\system32\webcheck.dll
2014-12-10 13:45:55 ----A---- C:\WINDOWS\SYSWOW64\hlink.dll
2014-12-10 13:45:54 ----A---- C:\WINDOWS\SYSWOW64\msrating.dll
2014-12-10 13:45:54 ----A---- C:\WINDOWS\system32\hlink.dll
2014-12-10 13:45:53 ----A---- C:\WINDOWS\system32\msrating.dll
2014-12-10 13:45:53 ----A---- C:\WINDOWS\system32\ieUnatt.exe
2014-12-10 13:45:53 ----A---- C:\WINDOWS\system32\iesysprep.dll
2014-12-10 13:45:53 ----A---- C:\WINDOWS\system32\iepeers.dll
2014-12-10 13:45:52 ----A---- C:\WINDOWS\SYSWOW64\inseng.dll
2014-12-10 13:45:52 ----A---- C:\WINDOWS\SYSWOW64\ieUnatt.exe
2014-12-10 13:45:52 ----A---- C:\WINDOWS\SYSWOW64\iesysprep.dll
2014-12-10 13:45:52 ----A---- C:\WINDOWS\SYSWOW64\iepeers.dll
2014-12-10 13:45:52 ----A---- C:\WINDOWS\system32\ieetwcollector.exe
2014-12-10 13:45:51 ----A---- C:\WINDOWS\SYSWOW64\msfeedsbs.dll
2014-12-10 13:45:51 ----A---- C:\WINDOWS\system32\msfeedsbs.dll
2014-12-10 13:45:51 ----A---- C:\WINDOWS\system32\inseng.dll
2014-12-10 13:45:50 ----A---- C:\WINDOWS\SYSWOW64\occache.dll
2014-12-10 13:45:50 ----A---- C:\WINDOWS\SYSWOW64\MshtmlDac.dll
2014-12-10 13:45:50 ----A---- C:\WINDOWS\SYSWOW64\jsproxy.dll
2014-12-10 13:45:50 ----A---- C:\WINDOWS\SYSWOW64\iexpress.exe
2014-12-10 13:45:50 ----A---- C:\WINDOWS\SYSWOW64\IEAdvpack.dll
2014-12-10 13:45:50 ----A---- C:\WINDOWS\system32\MshtmlDac.dll
2014-12-10 13:45:50 ----A---- C:\WINDOWS\system32\jsproxy.dll
2014-12-10 13:45:49 ----A---- C:\WINDOWS\SYSWOW64\pngfilt.dll
2014-12-10 13:45:49 ----A---- C:\WINDOWS\SYSWOW64\licmgr10.dll
2014-12-10 13:45:49 ----A---- C:\WINDOWS\SYSWOW64\imgutil.dll
2014-12-10 13:45:49 ----A---- C:\WINDOWS\SYSWOW64\ieetwproxystub.dll
2014-12-10 13:45:49 ----A---- C:\WINDOWS\system32\pngfilt.dll
2014-12-10 13:45:49 ----A---- C:\WINDOWS\system32\occache.dll
2014-12-10 13:45:49 ----A---- C:\WINDOWS\system32\licmgr10.dll
2014-12-10 13:45:49 ----A---- C:\WINDOWS\system32\imgutil.dll
2014-12-10 13:45:48 ----A---- C:\WINDOWS\SYSWOW64\wextract.exe
2014-12-10 13:45:48 ----A---- C:\WINDOWS\SYSWOW64\url.dll
2014-12-10 13:45:48 ----A---- C:\WINDOWS\SYSWOW64\iesetup.dll
2014-12-10 13:45:48 ----A---- C:\WINDOWS\SYSWOW64\iernonce.dll
2014-12-10 13:45:48 ----A---- C:\WINDOWS\system32\url.dll
2014-12-10 13:45:48 ----A---- C:\WINDOWS\system32\iernonce.dll
2014-12-10 13:45:47 ----A---- C:\WINDOWS\system32\wextract.exe
2014-12-10 13:45:47 ----A---- C:\WINDOWS\system32\IEAdvpack.dll
2014-12-10 13:45:46 ----A---- C:\WINDOWS\SYSWOW64\msfeedssync.exe
2014-12-10 13:45:46 ----A---- C:\WINDOWS\system32\iexpress.exe
2014-12-10 13:45:46 ----A---- C:\WINDOWS\system32\iesetup.dll
2014-12-10 13:45:45 ----A---- C:\WINDOWS\SYSWOW64\mshta.exe
2014-12-10 13:45:45 ----A---- C:\WINDOWS\system32\mshta.exe
2014-12-10 13:45:45 ----A---- C:\WINDOWS\system32\msfeedssync.exe
2014-12-10 09:45:07 ----A---- C:\WINDOWS\SYSWOW64\msi.dll
2014-12-10 09:45:07 ----A---- C:\WINDOWS\system32\msi.dll
2014-12-10 09:45:06 ----A---- C:\WINDOWS\system32\authui.dll
2014-12-10 09:45:05 ----A---- C:\WINDOWS\SYSWOW64\msihnd.dll
2014-12-10 09:45:05 ----A---- C:\WINDOWS\SYSWOW64\authui.dll
2014-12-10 09:45:05 ----A---- C:\WINDOWS\system32\msihnd.dll
2014-12-10 09:45:04 ----A---- C:\WINDOWS\system32\consent.exe
2014-12-10 09:45:04 ----A---- C:\WINDOWS\system32\appinfo.dll
2014-12-10 09:44:56 ----A---- C:\WINDOWS\system32\user32.dll
2014-12-10 09:44:55 ----A---- C:\WINDOWS\SYSWOW64\user32.dll
2014-12-10 09:44:54 ----A---- C:\WINDOWS\system32\drivers\WdNisDrv.sys
2014-12-10 09:44:54 ----A---- C:\WINDOWS\system32\drivers\WdFilter.sys
2014-12-10 09:44:53 ----A---- C:\WINDOWS\system32\drivers\WdBoot.sys
2014-12-10 09:44:50 ----A---- C:\WINDOWS\SYSWOW64\winshfhc.dll
2014-12-10 09:44:50 ----A---- C:\WINDOWS\system32\winshfhc.dll
2014-12-10 09:43:51 ----A---- C:\WINDOWS\system32\lockscreencn.dll
2014-12-10 07:30:55 ----A---- C:\WINDOWS\system32\drivers\msgpioclx.sys
2014-12-10 07:30:36 ----A---- C:\WINDOWS\SYSWOW64\schannel.dll
2014-12-10 07:30:36 ----A---- C:\WINDOWS\system32\schannel.dll
2014-12-10 07:30:35 ----A---- C:\WINDOWS\system32\ncryptsslp.dll
2014-12-10 07:30:35 ----A---- C:\WINDOWS\system32\dpapisrv.dll
2014-12-10 07:30:34 ----A---- C:\WINDOWS\SYSWOW64\ncryptsslp.dll
2014-12-10 07:30:05 ----A---- C:\WINDOWS\system32\kerberos.dll
2014-12-10 07:30:04 ----A---- C:\WINDOWS\SYSWOW64\pku2u.dll
2014-12-10 07:30:04 ----A---- C:\WINDOWS\SYSWOW64\kerberos.dll
2014-12-10 07:30:04 ----A---- C:\WINDOWS\system32\pku2u.dll
2014-12-10 07:29:55 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2014-12-10 07:29:54 ----A---- C:\WINDOWS\system32\twinui.dll
2014-12-10 07:29:47 ----A---- C:\WINDOWS\system32\shell32.dll
2014-12-10 07:29:43 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2014-12-10 07:29:41 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2014-12-10 07:29:35 ----A---- C:\WINDOWS\system32\drivers\tcpip.sys
2014-12-10 07:29:34 ----A---- C:\WINDOWS\system32\SettingsHandlers.dll
2014-12-10 07:29:34 ----A---- C:\WINDOWS\system32\localspl.dll
2014-12-10 07:29:33 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2014-12-10 07:29:32 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2014-12-10 07:29:28 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2014-12-10 07:29:28 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2014-12-10 07:29:27 ----A---- C:\WINDOWS\system32\win32spl.dll
2014-12-10 07:29:26 ----A---- C:\WINDOWS\system32\drivers\netio.sys
2014-12-10 07:29:25 ----A---- C:\WINDOWS\SYSWOW64\WsmSvc.dll
2014-12-10 07:29:25 ----A---- C:\WINDOWS\system32\WsmSvc.dll
2014-12-10 07:29:25 ----A---- C:\WINDOWS\system32\puiobj.dll
2014-12-10 07:29:24 ----A---- C:\WINDOWS\SYSWOW64\puiobj.dll
2014-12-10 07:29:22 ----A---- C:\WINDOWS\system32\drivers\FWPKCLNT.SYS
2014-12-10 07:29:21 ----AC---- C:\WINDOWS\system32\drivers\USBSTOR.SYS
2014-12-10 07:29:21 ----A---- C:\WINDOWS\system32\winbici.dll
2014-12-10 07:29:20 ----A---- C:\WINDOWS\system32\BulkOperationHost.exe
2014-12-10 07:29:18 ----A---- C:\WINDOWS\SYSWOW64\untfs.dll
2014-12-10 07:29:18 ----A---- C:\WINDOWS\system32\untfs.dll
2014-12-10 07:29:15 ----A---- C:\WINDOWS\system32\FXSCOMEX.dll
2014-12-10 07:29:14 ----A---- C:\WINDOWS\system32\FXSAPI.dll
2014-12-10 07:29:13 ----A---- C:\WINDOWS\SYSWOW64\FXSAPI.dll
2014-12-10 07:26:23 ----A---- C:\WINDOWS\SYSWOW64\msxml3.dll
2014-12-10 07:26:22 ----A---- C:\WINDOWS\system32\msxml3.dll
2014-12-10 07:26:14 ----A---- C:\WINDOWS\SYSWOW64\TsWpfWrp.exe
2014-12-10 07:26:14 ----A---- C:\WINDOWS\system32\TsWpfWrp.exe
2014-12-10 07:23:40 ----A---- C:\WINDOWS\SYSWOW64\d3d9.dll
2014-12-10 07:23:40 ----A---- C:\WINDOWS\system32\d3d9.dll
2014-12-10 07:23:35 ----A---- C:\WINDOWS\system32\vpnike.dll
2014-12-10 07:23:34 ----A---- C:\WINDOWS\system32\fveapi.dll
2014-12-10 07:23:33 ----A---- C:\WINDOWS\system32\dhcpcore.dll
2014-12-10 07:23:31 ----A---- C:\WINDOWS\SYSWOW64\dhcpcore.dll
2014-12-10 07:23:31 ----A---- C:\WINDOWS\system32\framedynos.dll
2014-12-10 07:23:31 ----A---- C:\WINDOWS\system32\drivers\mrxsmb.sys
2014-12-10 07:23:29 ----A---- C:\WINDOWS\SYSWOW64\framedynos.dll
2014-12-10 07:23:29 ----A---- C:\WINDOWS\SYSWOW64\dhcpcore6.dll
2014-12-10 07:23:29 ----A---- C:\WINDOWS\system32\dhcpcore6.dll
2014-12-10 07:23:29 ----A---- C:\WINDOWS\system32\bdesvc.dll
2014-12-10 07:23:28 ----A---- C:\WINDOWS\system32\drivers\agilevpn.sys
2014-12-10 07:23:28 ----A---- C:\WINDOWS\system32\BFE.DLL
2014-12-10 07:23:26 ----A---- C:\WINDOWS\system32\ncobjapi.dll
2014-12-10 07:23:26 ----A---- C:\WINDOWS\system32\framedyn.dll
2014-12-10 07:23:25 ----A---- C:\WINDOWS\SYSWOW64\ncobjapi.dll
2014-12-10 07:23:23 ----A---- C:\WINDOWS\system32\drivers\vwifimp.sys
2014-12-10 07:23:22 ----A---- C:\WINDOWS\system32\Robocopy.exe
2014-12-10 07:23:21 ----A---- C:\WINDOWS\SYSWOW64\Robocopy.exe
2014-12-10 07:23:21 ----A---- C:\WINDOWS\system32\IKEEXT.DLL
2014-12-10 07:23:21 ----A---- C:\WINDOWS\system32\dhcpcsvc.dll
2014-12-10 07:23:20 ----A---- C:\WINDOWS\SYSWOW64\framedyn.dll
2014-12-10 07:23:20 ----A---- C:\WINDOWS\SYSWOW64\dhcpcsvc.dll
2014-12-10 07:23:20 ----A---- C:\WINDOWS\system32\dhcpcsvc6.dll
2014-12-10 07:23:19 ----A---- C:\WINDOWS\SYSWOW64\dhcpcsvc6.dll
2014-12-10 07:23:19 ----A---- C:\WINDOWS\system32\drivers\vwififlt.sys
2014-12-10 07:23:18 ----A---- C:\WINDOWS\system32\reseteng.dll
2014-12-10 07:23:17 ----A---- C:\WINDOWS\SYSWOW64\d3d8thk.dll
2014-12-10 07:23:17 ----A---- C:\WINDOWS\system32\srms.dat
2014-12-10 07:21:35 ----A---- C:\WINDOWS\explorer.exe
2014-12-10 07:21:34 ----A---- C:\WINDOWS\SYSWOW64\explorer.exe
2014-12-10 07:21:34 ----A---- C:\WINDOWS\system32\uDWM.dll
2014-12-10 07:21:33 ----A---- C:\WINDOWS\SYSWOW64\UXInit.dll
2014-12-10 07:21:33 ----A---- C:\WINDOWS\system32\UXInit.dll
2014-12-10 07:21:24 ----A---- C:\WINDOWS\SYSWOW64\AUDIOKSE.dll
2014-12-10 07:21:24 ----A---- C:\WINDOWS\system32\audiosrv.dll
2014-12-10 07:21:24 ----A---- C:\WINDOWS\system32\AudioSes.dll
2014-12-10 07:21:24 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll
2014-12-10 07:21:23 ----A---- C:\WINDOWS\SYSWOW64\AudioSes.dll
2014-12-10 07:21:23 ----A---- C:\WINDOWS\system32\AudioEng.dll
2014-12-10 07:21:23 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2014-12-10 07:21:23 ----A---- C:\WINDOWS\system32\audiodg.exe
2014-12-10 07:21:22 ----A---- C:\WINDOWS\SYSWOW64\AudioEng.dll
2014-12-10 07:21:22 ----A---- C:\WINDOWS\system32\EncDump.dll
2014-12-10 07:21:18 ----A---- C:\WINDOWS\system32\win32k.sys
2014-12-10 07:20:37 ----A---- C:\WINDOWS\system32\Windows.UI.Search.dll
2014-12-10 07:20:34 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Search.dll
2014-12-10 07:20:33 ----A---- C:\WINDOWS\system32\mstscax.dll
2014-12-10 07:20:32 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2014-12-10 07:20:31 ----A---- C:\WINDOWS\system32\SyncEngine.dll
2014-12-10 07:20:29 ----A---- C:\WINDOWS\system32\SearchFolder.dll
2014-12-10 07:20:27 ----A---- C:\WINDOWS\system32\KernelBase.dll
2014-12-10 07:20:26 ----A---- C:\WINDOWS\system32\propsys.dll
2014-12-10 07:20:26 ----A---- C:\WINDOWS\system32\ntdll.dll
2014-12-10 07:20:24 ----A---- C:\WINDOWS\system32\WSShared.dll
2014-12-10 07:20:23 ----A---- C:\WINDOWS\SYSWOW64\WSShared.dll
2014-12-10 07:20:23 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2014-12-10 07:20:23 ----A---- C:\WINDOWS\system32\iphlpsvc.dll
2014-12-10 07:20:22 ----A---- C:\WINDOWS\SYSWOW64\SearchFolder.dll
2014-12-10 07:20:22 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2014-12-10 07:20:22 ----A---- C:\WINDOWS\system32\Wldap32.dll
2014-12-10 07:20:21 ----A---- C:\WINDOWS\SYSWOW64\Wldap32.dll
2014-12-10 07:20:21 ----A---- C:\WINDOWS\system32\SystemEventsBrokerServer.dll
2014-12-10 07:20:20 ----A---- C:\WINDOWS\SYSWOW64\propsys.dll
2014-12-10 07:20:19 ----A---- C:\WINDOWS\system32\SkyDriveTelemetry.dll
2014-12-10 07:20:18 ----A---- C:\WINDOWS\system32\SkyDrive.exe
2014-12-10 07:20:18 ----A---- C:\WINDOWS\system32\httpprxm.dll
2014-12-10 07:20:18 ----A---- C:\WINDOWS\system32\bisrv.dll
2014-12-10 07:20:17 ----A---- C:\WINDOWS\system32\pcsvDevice.dll
2014-12-10 07:20:17 ----A---- C:\WINDOWS\system32\adhsvc.dll
2014-12-10 07:20:16 ----A---- C:\WINDOWS\SYSWOW64\SkyDriveShell.dll
2014-12-10 07:20:16 ----A---- C:\WINDOWS\system32\SkyDriveShell.dll
2014-12-10 07:20:16 ----A---- C:\WINDOWS\system32\ProximityService.dll
2014-12-10 07:20:14 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2014-12-10 07:20:14 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2014-12-10 07:19:37 ----A---- C:\WINDOWS\SYSWOW64\packager.dll
2014-12-10 07:19:37 ----A---- C:\WINDOWS\system32\packager.dll
2014-12-09 23:04:22 ----A---- C:\WINDOWS\SYSWOW64\msvcr120_clr0400.dll
2014-12-09 23:04:21 ----A---- C:\WINDOWS\system32\msvcr120_clr0400.dll
2014-12-09 23:03:44 ----D---- C:\Program Files\Elantech
2014-12-09 23:00:47 ----A---- C:\WINDOWS\system32\rdpcorets.dll
2014-12-09 23:00:46 ----A---- C:\WINDOWS\SYSWOW64\certcli.dll
2014-12-09 23:00:46 ----A---- C:\WINDOWS\system32\lsasrv.dll
2014-12-09 23:00:46 ----A---- C:\WINDOWS\system32\certcli.dll
2014-12-09 23:00:45 ----A---- C:\WINDOWS\SYSWOW64\adtschema.dll
2014-12-09 23:00:45 ----A---- C:\WINDOWS\system32\rfxvmt.dll
2014-12-09 23:00:45 ----A---- C:\WINDOWS\system32\drivers\ksecpkg.sys
2014-12-09 23:00:45 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2014-12-09 23:00:45 ----A---- C:\WINDOWS\system32\adtschema.dll
2014-12-09 23:00:44 ----A---- C:\WINDOWS\SYSWOW64\msaudite.dll
2014-12-09 23:00:44 ----A---- C:\WINDOWS\system32\msaudite.dll
2014-12-09 23:00:44 ----A---- C:\WINDOWS\system32\drivers\rdpvideominiport.sys
2014-12-09 23:00:43 ----A---- C:\WINDOWS\system32\rdpudd.dll
2014-12-09 23:00:20 ----A---- C:\WINDOWS\system32\oleaut32.dll
2014-12-09 23:00:19 ----A---- C:\WINDOWS\SYSWOW64\oleaut32.dll
2014-12-09 22:58:57 ----A---- C:\WINDOWS\system32\WUDFHost.exe
2014-12-09 22:58:57 ----A---- C:\WINDOWS\system32\drivers\WUDFRd.sys
2014-12-09 22:58:56 ----A---- C:\WINDOWS\system32\WUDFSvc.dll
2014-12-09 22:58:56 ----A---- C:\WINDOWS\system32\WUDFPlatform.dll
2014-12-09 22:58:56 ----A---- C:\WINDOWS\system32\drivers\WUDFPf.sys
2014-12-09 22:58:56 ----A---- C:\WINDOWS\system32\DaOtpCredentialProvider.dll
2014-12-09 22:58:55 ----A---- C:\WINDOWS\SYSWOW64\DaOtpCredentialProvider.dll
2014-12-09 22:58:55 ----A---- C:\WINDOWS\system32\hal.dll
2014-12-09 22:54:17 ----A---- C:\WINDOWS\system32\schedsvc.dll
2014-12-09 22:54:12 ----A---- C:\WINDOWS\system32\rastls.dll
2014-12-09 22:54:11 ----A---- C:\WINDOWS\SYSWOW64\rastls.dll
2014-12-09 22:54:10 ----A---- C:\WINDOWS\system32\WpcMon.exe
2014-12-09 22:54:10 ----A---- C:\WINDOWS\system32\Wpc.dll
2014-12-09 22:54:09 ----A---- C:\WINDOWS\SYSWOW64\Wpc.dll
2014-12-09 22:54:09 ----A---- C:\WINDOWS\system32\WpcWebSync.dll
2014-12-09 22:54:08 ----A---- C:\WINDOWS\system32\MDMAgent.exe
2014-12-08 11:16:21 ----D---- C:\Program Files\Common Files\Atheros
2014-12-08 11:08:33 ----D---- C:\Users\Mara\AppData\Roaming\Identities
2014-12-08 11:05:50 ----SHD---- C:\ProgramData\Šablony
2014-12-08 11:05:50 ----SHD---- C:\ProgramData\Plocha
2014-12-08 11:05:50 ----SHD---- C:\ProgramData\Nabídka Start
2014-12-08 11:05:50 ----SHD---- C:\ProgramData\Dokumenty
2014-12-08 11:05:50 ----SHD---- C:\ProgramData\Data aplikací
2014-12-08 11:01:56 ----A---- C:\WINDOWS\system32\emptyregdb.dat
2014-12-08 10:34:29 ----SD---- C:\Users\Mara\AppData\Roaming\Microsoft
2014-12-08 10:24:48 ----A---- C:\WINDOWS\system32\drivers\RTWAVES30.dat
2014-12-08 10:24:37 ----D---- C:\WINDOWS\SYSWOW64\RTCOM
2014-12-08 10:24:37 ----D---- C:\Program Files\Realtek
2014-12-08 10:24:22 ----D---- C:\Program Files (x86)\Intel
2014-12-08 10:22:56 ----D---- C:\WINDOWS\Prefetch
2014-12-08 10:21:40 ----SHD---- C:\Recovery
2014-12-08 10:21:30 ----DC---- C:\WINDOWS\Panther
2014-12-08 10:17:02 ----D---- C:\Program Files (x86)\Reference Assemblies
2014-12-08 10:17:02 ----D---- C:\Program Files (x86)\MSBuild
2014-12-08 10:16:59 ----D---- C:\WINDOWS\SYSWOW64\XPSViewer
2014-12-08 10:16:59 ----D---- C:\Program Files\Reference Assemblies
2014-12-08 10:16:59 ----D---- C:\Program Files\MSBuild
2014-12-08 10:15:42 ----A---- C:\WINDOWS\SYSWOW64\PresentationNative_v0300.dll
2014-12-08 10:15:42 ----A---- C:\WINDOWS\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2014-12-08 10:15:40 ----A---- C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2014-12-08 10:15:39 ----A---- C:\WINDOWS\system32\PresentationNative_v0300.dll
2014-11-28 11:23:51 ----DC---- C:\WINDOWS\system32\DRVSTORE
2014-11-28 11:23:18 ----D---- C:\Program Files (x86)\Fortinet
2014-11-28 11:19:41 ----D---- C:\ProgramData\Applications
2014-11-26 16:14:58 ----A---- C:\WINDOWS\system32\AutoUpdate.exe
======List of files/folders modified in the last 1 month======
2014-12-24 07:54:41 ----D---- C:\Program Files\trend micro
2014-12-24 07:52:11 ----D---- C:\WINDOWS\Temp
2014-12-24 07:37:12 ----D---- C:\WINDOWS\system32\sru
2014-12-23 21:24:32 ----RD---- C:\WINDOWS\System32
2014-12-23 21:23:17 ----A---- C:\WINDOWS\SYSWOW64\log.txt
2014-12-23 21:20:44 ----D---- C:\WINDOWS\Inf
2014-12-23 15:09:00 ----D---- C:\WINDOWS\system32\Tasks
2014-12-23 13:19:37 ----SHD---- C:\System Volume Information
2014-12-23 11:55:45 ----D---- C:\Users\Mara\AppData\Roaming\Spotify
2014-12-23 11:18:40 ----D---- C:\WINDOWS\Microsoft.NET
2014-12-22 21:20:48 ----D---- C:\Program Files (x86)\Spybot - Search & Destroy 2
2014-12-22 21:19:37 ----SD---- C:\ProgramData\Microsoft
2014-12-22 21:19:20 ----D---- C:\ProgramData\Spybot - Search & Destroy
2014-12-22 21:08:22 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2014-12-21 19:30:35 ----D---- C:\WINDOWS\SoftwareDistribution
2014-12-21 19:30:35 ----D---- C:\Windows
2014-12-21 10:20:35 ----SHD---- C:\$Recycle.Bin
2014-12-21 09:54:33 ----D---- C:\Users\Mara\AppData\Roaming\IrfanView
2014-12-21 09:04:08 ----D---- C:\Users\Mara\AppData\Roaming\uTorrent
2014-12-21 09:03:33 ----D---- C:\WINDOWS\debug
2014-12-20 08:59:38 ----D---- C:\WINDOWS\system32\config
2014-12-19 13:35:35 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2014-12-19 11:01:17 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2014-12-19 11:01:17 ----D---- C:\Program Files (x86)\Mozilla Firefox
2014-12-19 10:58:46 ----D---- C:\WINDOWS\system32\NDF
2014-12-18 09:54:43 ----D---- C:\WINDOWS\CbsTemp
2014-12-18 09:54:42 ----D---- C:\WINDOWS\WinSxS
2014-12-17 11:40:23 ----HD---- C:\Program Files\WindowsApps
2014-12-17 11:40:23 ----D---- C:\WINDOWS\AppReadiness
2014-12-17 10:01:32 ----D---- C:\WINDOWS\system32\DriverStore
2014-12-16 13:44:38 ----D---- C:\WINDOWS\rescache
2014-12-16 09:49:46 ----D---- C:\WINDOWS\SysWOW64
2014-12-16 08:31:01 ----D---- C:\WINDOWS\Logs
2014-12-16 08:18:31 ----D---- C:\WINDOWS\system32\wdi
2014-12-14 14:49:06 ----D---- C:\WINDOWS\system32\drivers
2014-12-14 11:00:10 ----RD---- C:\Program Files (x86)
2014-12-12 21:48:20 ----D---- C:\WINDOWS\system32\AutoUpdateLicense
2014-12-12 21:46:28 ----D---- C:\Program Files\Windows Defender
2014-12-12 21:46:28 ----D---- C:\Program Files (x86)\Windows Defender
2014-12-12 21:31:29 ----RD---- C:\Program Files
2014-12-12 20:38:07 ----HD---- C:\ProgramData
2014-12-12 10:16:51 ----RD---- C:\WINDOWS\assembly
2014-12-11 18:24:33 ----D---- C:\WINDOWS\system32\drivers\UMDF
2014-12-11 12:52:02 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2014-12-11 12:52:02 ----D---- C:\WINDOWS\system32\cs-CZ
2014-12-11 12:51:53 ----D---- C:\WINDOWS\system32\sr-Latn-RS
2014-12-11 12:51:53 ----D---- C:\WINDOWS\system32\sr-Latn-CS
2014-12-11 10:49:21 ----D---- C:\WINDOWS\system32\catroot
2014-12-11 10:34:34 ----D---- C:\WINDOWS\system32\LogFiles
2014-12-11 10:30:38 ----RD---- C:\WINDOWS\ToastData
2014-12-11 10:30:38 ----D---- C:\WINDOWS\system32\migration
2014-12-11 10:30:33 ----SD---- C:\WINDOWS\system32\CompatTel
2014-12-11 10:30:33 ----D---- C:\WINDOWS\AppCompat
2014-12-11 10:30:19 ----D---- C:\WINDOWS\WinStore
2014-12-11 10:30:12 ----D---- C:\WINDOWS\SYSWOW64\wbem
2014-12-11 10:30:12 ----D---- C:\WINDOWS\SYSWOW64\migration
2014-12-11 10:30:11 ----D---- C:\WINDOWS\system32\wbem
2014-12-11 10:30:11 ----D---- C:\WINDOWS\system32\en-US
2014-12-11 10:30:02 ----D---- C:\Program Files (x86)\Internet Explorer
2014-12-11 10:29:59 ----D---- C:\WINDOWS\PolicyDefinitions
2014-12-11 10:29:57 ----D---- C:\Program Files\Internet Explorer
2014-12-11 10:29:53 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2014-12-11 10:29:53 ----D---- C:\WINDOWS\MediaViewer
2014-12-11 10:29:52 ----D---- C:\WINDOWS\FileManager
2014-12-11 10:29:52 ----D---- C:\WINDOWS\Camera
2014-12-11 10:29:52 ----D---- C:\WINDOWS\apppatch
2014-12-11 10:29:19 ----SHD---- C:\WINDOWS\Installer
2014-12-11 10:29:19 ----D---- C:\ProgramData\Microsoft Help
2014-12-11 10:28:09 ----D---- C:\WINDOWS\system32\MRT
2014-12-11 10:23:49 ----A---- C:\WINDOWS\system32\MRT.exe
2014-12-11 09:16:27 ----D---- C:\Program Files\Common Files
2014-12-11 09:13:24 ----D---- C:\WINDOWS\system32\restore
2014-12-10 13:40:48 ----D---- C:\WINDOWS\system32\catroot2
2014-12-08 11:31:28 ----D---- C:\WINDOWS\LiveKernelReports
2014-12-08 11:26:29 ----D---- C:\AdwCleaner
2014-12-08 11:16:22 ----D---- C:\Program Files (x86)\Bluetooth Suite
2014-12-08 11:05:50 ----D---- C:\Program Files\Windows NT
2014-12-08 11:05:28 ----D---- C:\WINDOWS\Registration
2014-12-08 10:58:10 ----RSD---- C:\WINDOWS\Media
2014-12-08 10:46:46 ----D---- C:\WINDOWS\SYSWOW64\vbox
2014-12-08 10:46:46 ----D---- C:\WINDOWS\SYSWOW64\drivers
2014-12-08 10:46:46 ----D---- C:\WINDOWS\SYSWOW64\bitstreams
2014-12-08 10:46:46 ----D---- C:\WINDOWS\SYSWOW64\Atheros_L1e
2014-12-08 10:46:46 ----D---- C:\WINDOWS\system32\vbox
2014-12-08 10:46:46 ----D---- C:\WINDOWS\system32\Sysprep
2014-12-08 10:46:45 ----D---- C:\WINDOWS\sk
2014-12-08 10:46:45 ----D---- C:\WINDOWS\ShellNew
2014-12-08 10:46:45 ----D---- C:\WINDOWS\pl
2014-12-08 10:46:44 ----RSD---- C:\WINDOWS\Fonts
2014-12-08 10:46:44 ----D---- C:\WINDOWS\hu
2014-12-08 10:46:43 ----D---- C:\WINDOWS\Tasks
2014-12-08 10:46:43 ----D---- C:\WINDOWS\en-GB
2014-12-08 10:46:43 ----D---- C:\WINDOWS\cs
2014-12-08 10:46:43 ----D---- C:\ProgramData\regid.1986-12.com.adobe
2014-12-08 10:43:58 ----D---- C:\WINDOWS\SYSWOW64\WCN
2014-12-08 10:43:57 ----D---- C:\WINDOWS\SYSWOW64\sysprep
2014-12-08 10:43:57 ----D---- C:\WINDOWS\SYSWOW64\spool
2014-12-08 10:43:57 ----D---- C:\WINDOWS\SYSWOW64\SMI
2014-12-08 10:43:56 ----D---- C:\WINDOWS\SYSWOW64\MUI
2014-12-08 10:43:56 ----D---- C:\WINDOWS\SYSWOW64\migwiz
2014-12-08 10:43:56 ----D---- C:\WINDOWS\SYSWOW64\LogFiles
2014-12-08 10:43:54 ----D---- C:\WINDOWS\SYSWOW64\IME
2014-12-08 10:43:53 ----D---- C:\WINDOWS\SYSWOW64\drivers\UMDF
2014-12-08 10:43:53 ----D---- C:\WINDOWS\SYSWOW64\catroot
2014-12-08 10:43:49 ----D---- C:\WINDOWS\system32\WCN
2014-12-08 10:43:49 ----D---- C:\WINDOWS\system32\spool
2014-12-08 10:43:44 ----D---- C:\WINDOWS\system32\oobe
2014-12-08 10:43:44 ----D---- C:\WINDOWS\system32\MUI
2014-12-08 10:43:44 ----D---- C:\WINDOWS\system32\IME
2014-12-08 10:43:43 ----D---- C:\WINDOWS\system32\drivers\etc
2014-12-08 10:42:33 ----D---- C:\WINDOWS\IME
2014-12-08 10:42:33 ----D---- C:\WINDOWS\Help
2014-12-08 10:42:30 ----D---- C:\WINDOWS\DigitalLocker
2014-12-08 10:40:28 ----RD---- C:\Users
2014-12-08 10:40:27 ----D---- C:\ProgramData\PRICache
2014-12-08 10:40:18 ----SHD---- C:\Program Files (x86)\Windows Sidebar
2014-12-08 10:40:18 ----D---- C:\Program Files (x86)\Windows Media Player
2014-12-08 10:40:14 ----D---- C:\Program Files (x86)\Microsoft.NET
2014-12-08 10:40:12 ----D---- C:\Program Files (x86)\Common Files
2014-12-08 10:40:08 ----SHD---- C:\Program Files\Windows Sidebar
2014-12-08 10:40:08 ----D---- C:\Program Files\Windows Media Player
2014-12-08 10:40:07 ----D---- C:\Program Files\Common Files\microsoft shared
2014-12-08 10:36:26 ----D---- C:\WINDOWS\system32\Recovery
2014-12-08 10:36:20 ----HD---- C:\WINDOWS\system32\GroupPolicy
2014-12-05 10:02:36 ----D---- C:\WINDOWS\AUInstallAgent
2014-11-28 16:17:19 ----D---- C:\Temp
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswRvrt;avast! Revert; C:\WINDOWS\system32\drivers\aswRvrt.sys [2014-11-20 65776]
R0 aswVmm;avast! VM Monitor; C:\WINDOWS\system32\drivers\aswVmm.sys [2014-11-20 267632]
R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2012-09-14 647736]
R0 sptd;sptd; C:\WINDOWS\System32\Drivers\sptd.sys [2014-12-12 386680]
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [2014-11-20 93568]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2014-11-22 1050432]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2014-11-20 436624]
R1 ATKWMIACPIIO;ATKWMIACPI Driver; \??\C:\Program Files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys [2011-09-07 17536]
R1 vwififlt;@%SystemRoot%\System32\drivers\vwififlt.sys,-259; C:\WINDOWS\system32\DRIVERS\vwififlt.sys [2014-04-30 71680]
R2 ASMMAP64;ASMMAP64; \??\C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys [2009-07-02 15416]
R2 aswHwid;avast! HardwareID; C:\WINDOWS\system32\drivers\aswHwid.sys [2014-11-20 29208]
R2 aswMonFlt;aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [2014-11-20 83280]
R2 VBoxAswDrv;VBoxAsw Support Driver; \??\C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [2014-11-20 271752]
R3 AiCharger;ASUS Charger Driver; C:\WINDOWS\system32\DRIVERS\AiCharger.sys [2012-09-18 17152]
R3 AthBTPort;@oem10.inf,%BTHSUPPORT.SvcDesc%;Qualcomm Atheros Virtual Bluetooth Class; C:\WINDOWS\system32\DRIVERS\btath_flt.sys [2012-12-28 89320]
R3 athr;@athw8x.inf,%ATHR.Service.DispName%;Qualcomm Atheros Extensible Wireless LAN device driver; C:\WINDOWS\system32\DRIVERS\athw8x.sys [2013-06-18 3680256]
R3 BTATH_BUS;@oem5.inf,%BTATH_BUS.SVCDESC%;Qualcomm Atheros Bluetooth Bus; C:\WINDOWS\System32\drivers\btath_bus.sys [2012-12-28 33944]
R3 BTATH_HCRP;@oem11.inf,%BTATH_HCRP.SvcDesc%;Bluetooth HCRP Server driver; C:\WINDOWS\System32\drivers\btath_hcrp.sys [2012-12-28 179432]
R3 BTATH_LWFLT;@oem20.inf,%BTATH_LWFLT%;Bluetooth LWFLT Device; C:\WINDOWS\system32\DRIVERS\btath_lwflt.sys [2012-12-28 77464]
R3 BtFilter;BtFilter; C:\WINDOWS\system32\DRIVERS\btfilter.sys [2014-04-28 599240]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\System32\drivers\BthEnum.sys [2013-08-22 53248]
R3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Ovladač úspory energie technologie Bluetooth; C:\WINDOWS\system32\DRIVERS\BthLEEnum.sys [2014-09-24 226304]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Zařízení Bluetooth (síť PAN); C:\WINDOWS\system32\DRIVERS\bthpan.sys [2014-09-24 118272]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\Drivers\BTHUSB.sys [2014-09-24 81920]
R3 ETD;@oem35.inf,%PS2DeviceDesc%;ELAN PS/2 Port Input Device; C:\WINDOWS\system32\DRIVERS\ETD.sys [2014-12-09 381192]
R3 HIDSwitch;@oem9.inf,%ASSW.DisplayName%;ASUS Wireless Radio Control; C:\WINDOWS\System32\drivers\AsHIDSwitch64.sys [2012-05-31 21152]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2014-01-29 5363200]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2012-12-11 3258256]
R3 IntcDAud;@oem31.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2012-10-26 342528]
R3 kbfiltr;@oem8.inf,%kbfiltr.SvcDesc%;Keyboard Filter; C:\WINDOWS\System32\drivers\kbfiltr.sys [2012-08-02 14992]
R3 L1C;@netl1c63x64.inf,%L1C.Service.DispName%;NDIS Miniport – ovladač pro řadič Qualcomm Atheros AR81xx PCI-E Ethernet; C:\WINDOWS\system32\DRIVERS\L1C63x64.sys [2013-06-18 129224]
R3 MEIx64;@oem32.inf,%HECI_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\System32\drivers\HECIx64.sys [2012-07-02 62784]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Zařízení Bluetooth (RFCOMM protokol TDI); C:\WINDOWS\system32\DRIVERS\rfcomm.sys [2014-09-24 167424]
R3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;Zobrazovací zařízení USB (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys [2013-08-22 212224]
R3 vwifimp;@%SystemRoot%\System32\drivers\vwifimp.sys,-261; C:\WINDOWS\system32\DRIVERS\vwifimp.sys [2014-04-30 38912]
S2 aswStm;aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [2014-11-20 116728]
S3 ATP;@oem12.inf,%PS2.DeviceDesc%;ASUS Input Device; C:\WINDOWS\System32\drivers\AsusTP.sys [2013-01-16 65784]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\Drivers\BTHport.sys [2014-09-24 1200640]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2014-05-08 65432]
R2 AFBAgent;AFBAgent; C:\Windows\system32\FBAgent.exe [2013-01-07 1280768]
R2 ETDService;Elan Service; C:\Program Files\Elantech\ETDService.exe [2014-12-09 100104]
R2 SDScannerService;Spybot-S&D 2 Scanner Service; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [2014-06-24 1738168]
R2 SDUpdateService;Spybot-S&D 2 Updating Service; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [2014-06-27 2088408]
R2 SDWSCService;Spybot-S&D 2 Security Center Service; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [2014-04-25 171928]
R3 ASLDRService;ASLDR Service; C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe [2013-01-15 107320]
R3 ASUS InstantOn;ASUS InstantOn Service; C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnSrv.exe [2012-04-13 277120]
R3 AtherosSvc;AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [2012-12-28 226944]
R3 ATKGFNEXSrv;ATKGFNEX Service; C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe [2011-11-21 96896]
R3 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-04-20 635104]
R3 Intel(R) ME Service;Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [2012-06-27 129856]
R3 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2012-06-25 166720]
R3 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-07-17 277824]
R3 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2012-07-17 365376]
R3 WakeupService;ASUS Wake Service; C:\Program Files\ASUS\ASUS VivoBook\ASUSWakeupService.exe [2012-12-20 45488]
S2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2014-11-20 50344]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-01-17 116648]
S3 AvastVBoxSvc;AvastVBox COM Service; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [2014-11-20 4012248]
S3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2014-01-29 279000]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-01-17 116648]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2014-11-26 114800]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2012-10-01 150648]
S3 SwitchBoard;SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
-----------------EOF-----------------
- Rudy
- Site Admin
- Příspěvky: 119358
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: dohledani programu na pozadi
Spusťte tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
-
- Návštěvník
- Příspěvky: 58
- Registrován: 07 srp 2007 11:29
Re: dohledani programu na pozadi
posilam..
# AdwCleaner v3.310 - Report created 19/09/2014 at 20:44:10
# Updated 12/09/2014 by Xplode
# Operating System : Windows 8 (64 bits)
# Username : Mara - MAROUSKOVNIK
# Running from : C:\Users\Mara\Desktop\adwcleaner_3.310.exe
# Option : Clean
***** [ Services ] *****
***** [ Files / Folders ] *****
***** [ Scheduled Tasks ] *****
***** [ Shortcuts ] *****
***** [ Registry ] *****
***** [ Browsers ] *****
-\\ Internet Explorer v10.0.9200.16537
-\\ Mozilla Firefox v31.0 (x86 cs)
[ File : C:\Users\Mara\AppData\Roaming\Mozilla\Firefox\Profiles\xnivlz3b.default\prefs.js ]
Line Deleted : user_pref("extensions.a39ed7c16185d4f88b976666d4928ba01fe4550c17a4f4a62ad1c45e0afdf81a4com48559.48559.internaldb.monetization_plugin_bundledUrls.value", "%7B%22dealply_s%22%3A%7B%22urls%22%3A%5B%22ssf[...]
-\\ Google Chrome v37.0.2062.120
[ File : C:\Users\Mara\AppData\Local\Google\Chrome\User Data\Default\preferences ]
*************************
AdwCleaner[R0].txt - [2640 octets] - [08/07/2014 16:34:22]
AdwCleaner[R1].txt - [1113 octets] - [07/08/2014 10:46:13]
AdwCleaner[R2].txt - [2484 octets] - [26/08/2014 19:26:39]
AdwCleaner[R3].txt - [13148 octets] - [16/09/2014 22:51:31]
AdwCleaner[R4].txt - [1557 octets] - [19/09/2014 13:58:14]
AdwCleaner[R5].txt - [1457 octets] - [19/09/2014 14:36:07]
AdwCleaner[R6].txt - [1737 octets] - [19/09/2014 19:11:38]
AdwCleaner[R7].txt - [1797 octets] - [19/09/2014 20:41:03]
AdwCleaner[S0].txt - [2708 octets] - [09/07/2014 08:08:18]
AdwCleaner[S1].txt - [1882 octets] - [26/08/2014 19:33:06]
AdwCleaner[S2].txt - [12955 octets] - [16/09/2014 22:57:27]
AdwCleaner[S3].txt - [1620 octets] - [19/09/2014 14:33:22]
AdwCleaner[S4].txt - [1720 octets] - [19/09/2014 20:44:10]
########## EOF - C:\AdwCleaner\AdwCleaner[S4].txt - [1780 octets] ##########
# AdwCleaner v4.106 - Report created 24/12/2014 at 22:56:12
# Updated 21/12/2014 by Xplode
# Database : 2014-12-21.4 [Live]
# Operating System : Windows 8.1 (64 bits)
# Username : Mara - MAROUSKOVNIK
# Running from : C:\Users\Mara\Desktop\adwcleaner_4.106.exe
# Option : Clean
***** [ Services ] *****
***** [ Files / Folders ] *****
Folder Deleted : C:\Users\Mara\AppData\Roaming\OpenCandy
Folder Deleted : C:\Users\Mara\AppData\Roaming\RHEng
***** [ Scheduled Tasks ] *****
***** [ Shortcuts ] *****
***** [ Registry ] *****
Key Deleted : HKCU\Software\Classes\pokki
Key Deleted : HKCU\Software\Conduit
Key Deleted : HKCU\Software\AppDataLow\Software\WinToFlash Suggestor
***** [ Browsers ] *****
-\\ Internet Explorer v11.0.9600.17416
-\\ Mozilla Firefox v34.0.5 (x86 cs)
-\\ Google Chrome v39.0.2171.95
*************************
AdwCleaner[R0].txt - [2640 octets] - [08/07/2014 15:34:22]
AdwCleaner[R1].txt - [1113 octets] - [07/08/2014 09:46:13]
AdwCleaner[R2].txt - [2484 octets] - [26/08/2014 18:26:39]
AdwCleaner[R3].txt - [14922 octets] - [16/09/2014 21:51:31]
AdwCleaner[R4].txt - [4019 octets] - [19/09/2014 12:58:14]
AdwCleaner[R5].txt - [3276 octets] - [19/09/2014 13:36:07]
AdwCleaner[R6].txt - [3434 octets] - [19/09/2014 18:11:38]
AdwCleaner[R7].txt - [3643 octets] - [19/09/2014 19:41:03]
AdwCleaner[R8].txt - [1917 octets] - [19/09/2014 19:49:31]
AdwCleaner[S0].txt - [2708 octets] - [09/07/2014 07:08:18]
AdwCleaner[S1].txt - [1882 octets] - [26/08/2014 18:33:06]
AdwCleaner[S2].txt - [15396 octets] - [16/09/2014 21:57:27]
AdwCleaner[S3].txt - [3405 octets] - [19/09/2014 13:33:22]
AdwCleaner[S4].txt - [3536 octets] - [19/09/2014 19:44:10]
########## EOF - C:\AdwCleaner\AdwCleaner[S4].txt - [3596 octets] ##########
nevim, jestli konkretne tohle mohlo pomoct, ale jen informativne...problikavani kurzoru nezmizelo
diky
# AdwCleaner v3.310 - Report created 19/09/2014 at 20:44:10
# Updated 12/09/2014 by Xplode
# Operating System : Windows 8 (64 bits)
# Username : Mara - MAROUSKOVNIK
# Running from : C:\Users\Mara\Desktop\adwcleaner_3.310.exe
# Option : Clean
***** [ Services ] *****
***** [ Files / Folders ] *****
***** [ Scheduled Tasks ] *****
***** [ Shortcuts ] *****
***** [ Registry ] *****
***** [ Browsers ] *****
-\\ Internet Explorer v10.0.9200.16537
-\\ Mozilla Firefox v31.0 (x86 cs)
[ File : C:\Users\Mara\AppData\Roaming\Mozilla\Firefox\Profiles\xnivlz3b.default\prefs.js ]
Line Deleted : user_pref("extensions.a39ed7c16185d4f88b976666d4928ba01fe4550c17a4f4a62ad1c45e0afdf81a4com48559.48559.internaldb.monetization_plugin_bundledUrls.value", "%7B%22dealply_s%22%3A%7B%22urls%22%3A%5B%22ssf[...]
-\\ Google Chrome v37.0.2062.120
[ File : C:\Users\Mara\AppData\Local\Google\Chrome\User Data\Default\preferences ]
*************************
AdwCleaner[R0].txt - [2640 octets] - [08/07/2014 16:34:22]
AdwCleaner[R1].txt - [1113 octets] - [07/08/2014 10:46:13]
AdwCleaner[R2].txt - [2484 octets] - [26/08/2014 19:26:39]
AdwCleaner[R3].txt - [13148 octets] - [16/09/2014 22:51:31]
AdwCleaner[R4].txt - [1557 octets] - [19/09/2014 13:58:14]
AdwCleaner[R5].txt - [1457 octets] - [19/09/2014 14:36:07]
AdwCleaner[R6].txt - [1737 octets] - [19/09/2014 19:11:38]
AdwCleaner[R7].txt - [1797 octets] - [19/09/2014 20:41:03]
AdwCleaner[S0].txt - [2708 octets] - [09/07/2014 08:08:18]
AdwCleaner[S1].txt - [1882 octets] - [26/08/2014 19:33:06]
AdwCleaner[S2].txt - [12955 octets] - [16/09/2014 22:57:27]
AdwCleaner[S3].txt - [1620 octets] - [19/09/2014 14:33:22]
AdwCleaner[S4].txt - [1720 octets] - [19/09/2014 20:44:10]
########## EOF - C:\AdwCleaner\AdwCleaner[S4].txt - [1780 octets] ##########
# AdwCleaner v4.106 - Report created 24/12/2014 at 22:56:12
# Updated 21/12/2014 by Xplode
# Database : 2014-12-21.4 [Live]
# Operating System : Windows 8.1 (64 bits)
# Username : Mara - MAROUSKOVNIK
# Running from : C:\Users\Mara\Desktop\adwcleaner_4.106.exe
# Option : Clean
***** [ Services ] *****
***** [ Files / Folders ] *****
Folder Deleted : C:\Users\Mara\AppData\Roaming\OpenCandy
Folder Deleted : C:\Users\Mara\AppData\Roaming\RHEng
***** [ Scheduled Tasks ] *****
***** [ Shortcuts ] *****
***** [ Registry ] *****
Key Deleted : HKCU\Software\Classes\pokki
Key Deleted : HKCU\Software\Conduit
Key Deleted : HKCU\Software\AppDataLow\Software\WinToFlash Suggestor
***** [ Browsers ] *****
-\\ Internet Explorer v11.0.9600.17416
-\\ Mozilla Firefox v34.0.5 (x86 cs)
-\\ Google Chrome v39.0.2171.95
*************************
AdwCleaner[R0].txt - [2640 octets] - [08/07/2014 15:34:22]
AdwCleaner[R1].txt - [1113 octets] - [07/08/2014 09:46:13]
AdwCleaner[R2].txt - [2484 octets] - [26/08/2014 18:26:39]
AdwCleaner[R3].txt - [14922 octets] - [16/09/2014 21:51:31]
AdwCleaner[R4].txt - [4019 octets] - [19/09/2014 12:58:14]
AdwCleaner[R5].txt - [3276 octets] - [19/09/2014 13:36:07]
AdwCleaner[R6].txt - [3434 octets] - [19/09/2014 18:11:38]
AdwCleaner[R7].txt - [3643 octets] - [19/09/2014 19:41:03]
AdwCleaner[R8].txt - [1917 octets] - [19/09/2014 19:49:31]
AdwCleaner[S0].txt - [2708 octets] - [09/07/2014 07:08:18]
AdwCleaner[S1].txt - [1882 octets] - [26/08/2014 18:33:06]
AdwCleaner[S2].txt - [15396 octets] - [16/09/2014 21:57:27]
AdwCleaner[S3].txt - [3405 octets] - [19/09/2014 13:33:22]
AdwCleaner[S4].txt - [3536 octets] - [19/09/2014 19:44:10]
########## EOF - C:\AdwCleaner\AdwCleaner[S4].txt - [3596 octets] ##########
nevim, jestli konkretne tohle mohlo pomoct, ale jen informativne...problikavani kurzoru nezmizelo
diky
- Rudy
- Site Admin
- Příspěvky: 119358
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: dohledani programu na pozadi
Dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
-
- Návštěvník
- Příspěvky: 58
- Registrován: 07 srp 2007 11:29
Re: dohledani programu na pozadi
tady to je
Logfile of random's system information tool 1.10 (written by random/random)
Run by Mara at 2014-12-25 20:33:36
Microsoft Windows 8.1
System drive C: has 39 GB (32%) free of 122 GB
Total RAM: 3980 MB (63% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:33:42, on 25. 12. 2014
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17416)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\TabTip32.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
C:\Program Files (x86)\ASUS\APRP\APRP.EXE
C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe
C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
C:\Program Files (x86)\ASUS\Splendid\ColorUService.exe
C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe
C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x86\QuickGesture.exe
C:\Program Files\trend micro\Mara.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://asus13.msn.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://asus13.msn.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: (no name) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - (no file)
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: (no name) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - (no file)
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O4 - HKLM\..\Run: [AdobeCS5ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [SDTray] "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"
O4 - HKCU\..\Run: [AdobeBridge] "C:\Program Files (x86)\Adobe\Adobe Bridge CS5\Bridge.exe" -stealth
O4 - HKCU\..\Run: [Spotify] "C:\Users\Mara\AppData\Roaming\Spotify\Spotify.exe" /uri spotify:autostart
O4 - HKCU\..\Run: [Spotify Web Helper] "C:\Users\Mara\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe"
O4 - HKLM\..\Policies\Explorer\Run: [BtvStack] "C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe"
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Se&nd to OneNote - res://C:\PROGRA~2\MICROS~1\Office15\ONBttnIE.dll/105
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O20 - Winlogon Notify: SDWinLogon - SDWinLogon.dll (file missing)
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: AFBAgent - Unknown owner - C:\Windows\system32\FBAgent.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: ASLDR Service (ASLDRService) - ASUSTek Computer Inc. - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
O23 - Service: ASUS InstantOn Service (ASUS InstantOn) - ASUS - C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnSrv.exe
O23 - Service: AtherosSvc - Qualcomm Atheros Commnucations - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: AvastVBox COM Service (AvastVBoxSvc) - Avast Software - C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: Elan Service (ETDService) - ELAN Microelectronics Corp. - C:\Program Files\Elantech\ETDService.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) ME Service - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Spybot-S&D 2 Scanner Service (SDScannerService) - Safer-Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe
O23 - Service: Spybot-S&D 2 Updating Service (SDUpdateService) - Safer-Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe
O23 - Service: Spybot-S&D 2 Security Center Service (SDWSCService) - Safer-Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: ASUS Wake Service (WakeupService) - ASUSTek Computer Inc. - C:\Program Files\ASUS\ASUS VivoBook\ASUSWakeupService.exe
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: ZAtheros Bt and Wlan Coex Agent - Atheros - C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
--
End of file - 11094 bytes
======Listing Processes======
wininit.exe
winlogon.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k NetworkService
"C:\Windows\system32\FBAgent.exe"
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files\Elantech\ETDService.exe"
dashost.exe {17e56272-d0c5-4c37-8387d2811e2298fd}
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe"
"C:\Program Files\Elantech\ETDCtrl.exe"
taskeng.exe {33A25A49-9815-47EE-BA44-2E6C673C89FA}
taskhostex.exe
C:\WINDOWS\Explorer.EXE
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe"
"C:\Program Files\Elantech\ETDCtrlHelper.exe"
"C:\Program Files\Elantech\ETDGesture.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
/QuitInfo:00000000000009B4;0000000000000988;
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
/loadhooks /Parent:0000000000000c64
C:\WINDOWS\System32\alg.exe
"C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe"
ngservice.exe pipeserver
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files (x86)\Bluetooth Suite\ActivateDesktop.exe"
"C:\Program Files\AVAST Software\Avast\avastui.exe" /nogui
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
C:\WINDOWS\system32\vssvc.exe
C:\WINDOWS\System32\svchost.exe -k swprv
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe"
"C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnSrv.exe"
KBFiltr.exe
"C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe"
"C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnWMI.exe"
"C:\Program Files (x86)\Bluetooth Suite\adminservice.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe"
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
"C:\Program Files\ASUS\ASUS VivoBook\ASUSWakeupService.exe"
"C:\Program Files (x86)\ASUS\APRP\APRP.EXE"
"C:\Program Files\ASUS\ASUS VivoBook\VivoBook.exe" /RunWithHide
"C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe"
"C:\WINDOWS\system32\hkcmd.exe"
"C:\WINDOWS\system32\igfxtray.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /MAXX3
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe"
"C:\Program Files\ASUS\P4G\BatteryLife.exe"
C:\ProgramData\AsTouchPanel\AsPatchTouchPanel64.exe
"C:\Program Files (x86)\ASUS\Splendid\ACMON.exe"
"C:\Program Files (x86)\ASUS\Splendid\ColorUService.exe"
"C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLoader.exe"
"C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x64\QuickGesture64.exe"
"C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x86\QuickGesture.exe"
C:\WINDOWS\system32\SppExtComObj.exe -Embedding
C:\WINDOWS\System32\svchost.exe -k WerSvcGroup
"C:\WINDOWS\system32\RunDll32.exe" "C:\WINDOWS\system32\WerConCpl.dll", LaunchErcApp -queuereportingnopester
"C:\Users\Mara\Desktop\RSITx64.exe"
======Scheduled tasks folder======
C:\WINDOWS\tasks\AdobeAAMUpdater-1.0-Marouskovnik-Mara.job - C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\updaterstartuputility.exe -mode=scheduled
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
=========Mozilla firefox=========
ProfilePath - C:\Users\Mara\AppData\Roaming\Mozilla\Firefox\Profiles\xnivlz3b.default
prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "http://www.seznam.cz/"
prefs.js - "extensions.enabledItems" - "2020Player_IKEA@2020Technologies.com:5.0.93.0, {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20, {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.13"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 16.0.0.235 Plugin
"Path"=C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_235.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42]
"Description"=Intel IPT WebApi plugin
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater]
"Description"=This plugin updates Intel WebAPI component
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=10.51.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=10.51.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=16.4.3528.0331]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 16.0.0.235 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF64_16_0_0_235.dll
C:\Program Files (x86)\Mozilla Firefox\plugins\
NPOFF12.DLL
nppdf32.dll
C:\Users\Mara\AppData\Roaming\Mozilla\Firefox\Profiles\xnivlz3b.default\extensions\
2020Player_IKEA@2020Technologies.com
{bee6eb20-01e0-ebd1-da83-080329fb9a3a}
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2014-11-20 705448]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-11-20 586968]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Persistence"=C:\WINDOWS\system32\igfxpers.exe [2014-01-29 442328]
"AdobeAAMUpdater-1.0"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2010-03-06 500208]
"ETDCtrl"=C:\Program Files\Elantech\ETDCtrl.exe [2014-12-09 2893576]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"BtvStack"=C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [2012-12-28 129664]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"AdobeBridge"=C:\Program Files (x86)\Adobe\Adobe Bridge CS5\Bridge.exe [2010-03-09 11989960]
"Spotify"=C:\Users\Mara\AppData\Roaming\Spotify\Spotify.exe [2014-10-16 6553144]
"Spotify Web Helper"=C:\Users\Mara\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [2014-10-16 1514040]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUSPRP]
C:\Program Files (x86)\ASUS\APRP\APRP.EXE [2012-11-23 3187360]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUSWebStorage]
C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.10.123\AsusWSPanel.exe [2012-08-31 3423104]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DisableS3S4]
c:\windows\temp\DisableS3S464\sethigh.cmd []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HotKeysCmds]
C:\WINDOWS\system32\hkcmd.exe [2014-01-29 399832]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IgfxTray]
C:\WINDOWS\system32\igfxtray.exe [2014-01-29 171992]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\mcui_exe]
C:\Program Files\McAfee.com\Agent\mcagent.exe /runkey []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RtHDVBg]
C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2012-12-03 1256080]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RTHDVCPL]
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2012-12-07 13262480]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904]
"GrooveMonitor"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040]
"SwitchBoard"=C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
"AdobeCS5ServiceManager"=C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe [2010-02-22 406992]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2014-12-12 5227112]
"SDTray"=C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [2014-06-24 4101576]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"BtvStack"=C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [2012-12-28 129664]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2014-01-29 442880]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DisableCAD"=1
"DisableTaskMgr"=0
"SoftwareSASGeneration"=1
"ConsentPromptBehaviorAdmin"=0
"EnableLUA"=0
"PromptOnSecureDesktop"=0
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoRun"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe:*:Enabled:Spybot - Search & Destroy tray access"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe:*:Enabled:Spybot-S&D 2 Scanner Service"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe:*:Enabled:Spybot-S&D 2 Updater"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe:*:Enabled:Spybot-S&D 2 Background update service"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"VIDC.LAGS"=lagarith.dll
"VIDC.X264"=x264vfw64.dll
"VIDC.XVID"=xvidvfw.dll
"msacm.ac3acm"=ac3acm.acm
"msacm.l3codecp"=l3codecp.acm
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2014-12-22 21:19:25 ----A---- C:\WINDOWS\system32\sdnclean64.exe
2014-12-16 08:23:28 ----A---- C:\WINDOWS\system32\poqexec.exe
2014-12-16 08:23:27 ----A---- C:\WINDOWS\SYSWOW64\poqexec.exe
2014-12-12 21:52:07 ----D---- C:\Program Files (x86)\Alcohol Soft
2014-12-12 21:44:05 ----A---- C:\WINDOWS\system32\drivers\sptd.sys
2014-12-12 20:38:55 ----D---- C:\Users\Mara\AppData\Roaming\DAEMON Tools Ultra
2014-12-12 20:38:07 ----D---- C:\ProgramData\DAEMON Tools Ultra
2014-12-11 10:35:35 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2014-12-11 10:30:34 ----RD---- C:\WINDOWS\BrowserChoice
2014-12-11 10:30:32 ----D---- C:\WINDOWS\system32\appraiser
2014-12-10 14:12:42 ----A---- C:\WINDOWS\SYSWOW64\DeviceSetupStatusProvider.dll
2014-12-10 14:12:42 ----A---- C:\WINDOWS\system32\DeviceSetupStatusProvider.dll
2014-12-10 14:12:26 ----A---- C:\WINDOWS\SYSWOW64\crypt32.dll
2014-12-10 14:12:26 ----A---- C:\WINDOWS\system32\crypt32.dll
2014-12-10 13:47:55 ----A---- C:\WINDOWS\system32\WindowsCodecs.dll
2014-12-10 13:47:54 ----A---- C:\WINDOWS\SYSWOW64\WindowsCodecs.dll
2014-12-10 13:47:51 ----A---- C:\WINDOWS\system32\generaltel.dll
2014-12-10 13:47:50 ----A---- C:\WINDOWS\system32\devinv.dll
2014-12-10 13:47:50 ----A---- C:\WINDOWS\system32\aepdu.dll
2014-12-10 13:47:49 ----A---- C:\WINDOWS\system32\invagent.dll
2014-12-10 13:47:49 ----A---- C:\WINDOWS\system32\appraiser.dll
2014-12-10 13:47:49 ----A---- C:\WINDOWS\system32\aepic.dll
2014-12-10 13:47:49 ----A---- C:\WINDOWS\system32\aeinv.dll
2014-12-10 13:47:43 ----A---- C:\WINDOWS\SYSWOW64\MrmCoreR.dll
2014-12-10 13:47:43 ----A---- C:\WINDOWS\system32\MrmCoreR.dll
2014-12-10 13:47:19 ----AC---- C:\WINDOWS\system32\drivers\sdbus.sys
2014-12-10 13:47:19 ----AC---- C:\WINDOWS\system32\drivers\intelpep.sys
2014-12-10 13:47:19 ----AC---- C:\WINDOWS\system32\drivers\dumpsd.sys
2014-12-10 13:47:19 ----A---- C:\WINDOWS\system32\drivers\pdc.sys
2014-12-10 13:46:40 ----A---- C:\WINDOWS\system32\actxprxy.dll
2014-12-10 13:46:39 ----A---- C:\WINDOWS\SYSWOW64\mshtmled.dll
2014-12-10 13:46:39 ----A---- C:\WINDOWS\SYSWOW64\actxprxy.dll
2014-12-10 13:46:38 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2014-12-10 13:46:38 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2014-12-10 13:46:38 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll
2014-12-10 13:46:38 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2014-12-10 13:46:36 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2014-12-10 13:46:36 ----A---- C:\WINDOWS\SYSWOW64\dxtrans.dll
2014-12-10 13:46:36 ----A---- C:\WINDOWS\system32\JavaScriptCollectionAgent.dll
2014-12-10 13:46:33 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2014-12-10 13:46:32 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2014-12-10 13:46:32 ----A---- C:\WINDOWS\system32\urlmon.dll
2014-12-10 13:46:31 ----A---- C:\WINDOWS\SYSWOW64\jscript9diag.dll
2014-12-10 13:46:31 ----A---- C:\WINDOWS\SYSWOW64\dxtmsft.dll
2014-12-10 13:46:30 ----A---- C:\WINDOWS\system32\msfeeds.dll
2014-12-10 13:46:30 ----A---- C:\WINDOWS\system32\dxtrans.dll
2014-12-10 13:46:29 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2014-12-10 13:46:25 ----A---- C:\WINDOWS\system32\iertutil.dll
2014-12-10 13:46:24 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2014-12-10 13:46:24 ----A---- C:\WINDOWS\SYSWOW64\ieapfltr.dll
2014-12-10 13:46:22 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2014-12-10 13:46:21 ----A---- C:\WINDOWS\system32\dxtmsft.dll
2014-12-10 13:46:18 ----A---- C:\WINDOWS\system32\ieframe.dll
2014-12-10 13:46:16 ----A---- C:\WINDOWS\system32\mshtmled.dll
2014-12-10 13:46:16 ----A---- C:\WINDOWS\system32\jscript9diag.dll
2014-12-10 13:46:15 ----A---- C:\WINDOWS\system32\jscript9.dll
2014-12-10 13:46:14 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2014-12-10 13:46:12 ----A---- C:\WINDOWS\system32\wininet.dll
2014-12-10 13:46:10 ----A---- C:\WINDOWS\system32\mshtml.dll
2014-12-10 13:46:06 ----A---- C:\WINDOWS\system32\ieetwproxystub.dll
2014-12-10 13:46:05 ----A---- C:\WINDOWS\system32\inetcomm.dll
2014-12-10 13:46:04 ----A---- C:\WINDOWS\SYSWOW64\inetcomm.dll
2014-12-10 13:46:03 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2014-12-10 13:46:03 ----A---- C:\WINDOWS\system32\vbscript.dll
2014-12-10 13:46:02 ----A---- C:\WINDOWS\SYSWOW64\jscript.dll
2014-12-10 13:46:02 ----A---- C:\WINDOWS\system32\jscript.dll
2014-12-10 13:46:00 ----A---- C:\WINDOWS\system32\ieui.dll
2014-12-10 13:45:59 ----A---- C:\WINDOWS\SYSWOW64\JavaScriptCollectionAgent.dll
2014-12-10 13:45:57 ----A---- C:\WINDOWS\SYSWOW64\ieui.dll
2014-12-10 13:45:56 ----A---- C:\WINDOWS\SYSWOW64\webcheck.dll
2014-12-10 13:45:56 ----A---- C:\WINDOWS\system32\webcheck.dll
2014-12-10 13:45:55 ----A---- C:\WINDOWS\SYSWOW64\hlink.dll
2014-12-10 13:45:54 ----A---- C:\WINDOWS\SYSWOW64\msrating.dll
2014-12-10 13:45:54 ----A---- C:\WINDOWS\system32\hlink.dll
2014-12-10 13:45:53 ----A---- C:\WINDOWS\system32\msrating.dll
2014-12-10 13:45:53 ----A---- C:\WINDOWS\system32\ieUnatt.exe
2014-12-10 13:45:53 ----A---- C:\WINDOWS\system32\iesysprep.dll
2014-12-10 13:45:53 ----A---- C:\WINDOWS\system32\iepeers.dll
2014-12-10 13:45:52 ----A---- C:\WINDOWS\SYSWOW64\inseng.dll
2014-12-10 13:45:52 ----A---- C:\WINDOWS\SYSWOW64\ieUnatt.exe
2014-12-10 13:45:52 ----A---- C:\WINDOWS\SYSWOW64\iesysprep.dll
2014-12-10 13:45:52 ----A---- C:\WINDOWS\SYSWOW64\iepeers.dll
2014-12-10 13:45:52 ----A---- C:\WINDOWS\system32\ieetwcollector.exe
2014-12-10 13:45:51 ----A---- C:\WINDOWS\SYSWOW64\msfeedsbs.dll
2014-12-10 13:45:51 ----A---- C:\WINDOWS\system32\msfeedsbs.dll
2014-12-10 13:45:51 ----A---- C:\WINDOWS\system32\inseng.dll
2014-12-10 13:45:50 ----A---- C:\WINDOWS\SYSWOW64\occache.dll
2014-12-10 13:45:50 ----A---- C:\WINDOWS\SYSWOW64\MshtmlDac.dll
2014-12-10 13:45:50 ----A---- C:\WINDOWS\SYSWOW64\jsproxy.dll
2014-12-10 13:45:50 ----A---- C:\WINDOWS\SYSWOW64\iexpress.exe
2014-12-10 13:45:50 ----A---- C:\WINDOWS\SYSWOW64\IEAdvpack.dll
2014-12-10 13:45:50 ----A---- C:\WINDOWS\system32\MshtmlDac.dll
2014-12-10 13:45:50 ----A---- C:\WINDOWS\system32\jsproxy.dll
2014-12-10 13:45:49 ----A---- C:\WINDOWS\SYSWOW64\pngfilt.dll
2014-12-10 13:45:49 ----A---- C:\WINDOWS\SYSWOW64\licmgr10.dll
2014-12-10 13:45:49 ----A---- C:\WINDOWS\SYSWOW64\imgutil.dll
2014-12-10 13:45:49 ----A---- C:\WINDOWS\SYSWOW64\ieetwproxystub.dll
2014-12-10 13:45:49 ----A---- C:\WINDOWS\system32\pngfilt.dll
2014-12-10 13:45:49 ----A---- C:\WINDOWS\system32\occache.dll
2014-12-10 13:45:49 ----A---- C:\WINDOWS\system32\licmgr10.dll
2014-12-10 13:45:49 ----A---- C:\WINDOWS\system32\imgutil.dll
2014-12-10 13:45:48 ----A---- C:\WINDOWS\SYSWOW64\wextract.exe
2014-12-10 13:45:48 ----A---- C:\WINDOWS\SYSWOW64\url.dll
2014-12-10 13:45:48 ----A---- C:\WINDOWS\SYSWOW64\iesetup.dll
2014-12-10 13:45:48 ----A---- C:\WINDOWS\SYSWOW64\iernonce.dll
2014-12-10 13:45:48 ----A---- C:\WINDOWS\system32\url.dll
2014-12-10 13:45:48 ----A---- C:\WINDOWS\system32\iernonce.dll
2014-12-10 13:45:47 ----A---- C:\WINDOWS\system32\wextract.exe
2014-12-10 13:45:47 ----A---- C:\WINDOWS\system32\IEAdvpack.dll
2014-12-10 13:45:46 ----A---- C:\WINDOWS\SYSWOW64\msfeedssync.exe
2014-12-10 13:45:46 ----A---- C:\WINDOWS\system32\iexpress.exe
2014-12-10 13:45:46 ----A---- C:\WINDOWS\system32\iesetup.dll
2014-12-10 13:45:45 ----A---- C:\WINDOWS\SYSWOW64\mshta.exe
2014-12-10 13:45:45 ----A---- C:\WINDOWS\system32\mshta.exe
2014-12-10 13:45:45 ----A---- C:\WINDOWS\system32\msfeedssync.exe
2014-12-10 09:45:07 ----A---- C:\WINDOWS\SYSWOW64\msi.dll
2014-12-10 09:45:07 ----A---- C:\WINDOWS\system32\msi.dll
2014-12-10 09:45:06 ----A---- C:\WINDOWS\system32\authui.dll
2014-12-10 09:45:05 ----A---- C:\WINDOWS\SYSWOW64\msihnd.dll
2014-12-10 09:45:05 ----A---- C:\WINDOWS\SYSWOW64\authui.dll
2014-12-10 09:45:05 ----A---- C:\WINDOWS\system32\msihnd.dll
2014-12-10 09:45:04 ----A---- C:\WINDOWS\system32\consent.exe
2014-12-10 09:45:04 ----A---- C:\WINDOWS\system32\appinfo.dll
2014-12-10 09:44:56 ----A---- C:\WINDOWS\system32\user32.dll
2014-12-10 09:44:55 ----A---- C:\WINDOWS\SYSWOW64\user32.dll
2014-12-10 09:44:54 ----A---- C:\WINDOWS\system32\drivers\WdNisDrv.sys
2014-12-10 09:44:54 ----A---- C:\WINDOWS\system32\drivers\WdFilter.sys
2014-12-10 09:44:53 ----A---- C:\WINDOWS\system32\drivers\WdBoot.sys
2014-12-10 09:44:50 ----A---- C:\WINDOWS\SYSWOW64\winshfhc.dll
2014-12-10 09:44:50 ----A---- C:\WINDOWS\system32\winshfhc.dll
2014-12-10 09:43:51 ----A---- C:\WINDOWS\system32\lockscreencn.dll
2014-12-10 07:30:55 ----A---- C:\WINDOWS\system32\drivers\msgpioclx.sys
2014-12-10 07:30:36 ----A---- C:\WINDOWS\SYSWOW64\schannel.dll
2014-12-10 07:30:36 ----A---- C:\WINDOWS\system32\schannel.dll
2014-12-10 07:30:35 ----A---- C:\WINDOWS\system32\ncryptsslp.dll
2014-12-10 07:30:35 ----A---- C:\WINDOWS\system32\dpapisrv.dll
2014-12-10 07:30:34 ----A---- C:\WINDOWS\SYSWOW64\ncryptsslp.dll
2014-12-10 07:30:05 ----A---- C:\WINDOWS\system32\kerberos.dll
2014-12-10 07:30:04 ----A---- C:\WINDOWS\SYSWOW64\pku2u.dll
2014-12-10 07:30:04 ----A---- C:\WINDOWS\SYSWOW64\kerberos.dll
2014-12-10 07:30:04 ----A---- C:\WINDOWS\system32\pku2u.dll
2014-12-10 07:29:55 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2014-12-10 07:29:54 ----A---- C:\WINDOWS\system32\twinui.dll
2014-12-10 07:29:47 ----A---- C:\WINDOWS\system32\shell32.dll
2014-12-10 07:29:43 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2014-12-10 07:29:41 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2014-12-10 07:29:35 ----A---- C:\WINDOWS\system32\drivers\tcpip.sys
2014-12-10 07:29:34 ----A---- C:\WINDOWS\system32\SettingsHandlers.dll
2014-12-10 07:29:34 ----A---- C:\WINDOWS\system32\localspl.dll
2014-12-10 07:29:33 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2014-12-10 07:29:32 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2014-12-10 07:29:28 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2014-12-10 07:29:28 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2014-12-10 07:29:27 ----A---- C:\WINDOWS\system32\win32spl.dll
2014-12-10 07:29:26 ----A---- C:\WINDOWS\system32\drivers\netio.sys
2014-12-10 07:29:25 ----A---- C:\WINDOWS\SYSWOW64\WsmSvc.dll
2014-12-10 07:29:25 ----A---- C:\WINDOWS\system32\WsmSvc.dll
2014-12-10 07:29:25 ----A---- C:\WINDOWS\system32\puiobj.dll
2014-12-10 07:29:24 ----A---- C:\WINDOWS\SYSWOW64\puiobj.dll
2014-12-10 07:29:22 ----A---- C:\WINDOWS\system32\drivers\FWPKCLNT.SYS
2014-12-10 07:29:21 ----AC---- C:\WINDOWS\system32\drivers\USBSTOR.SYS
2014-12-10 07:29:21 ----A---- C:\WINDOWS\system32\winbici.dll
2014-12-10 07:29:20 ----A---- C:\WINDOWS\system32\BulkOperationHost.exe
2014-12-10 07:29:18 ----A---- C:\WINDOWS\SYSWOW64\untfs.dll
2014-12-10 07:29:18 ----A---- C:\WINDOWS\system32\untfs.dll
2014-12-10 07:29:15 ----A---- C:\WINDOWS\system32\FXSCOMEX.dll
2014-12-10 07:29:14 ----A---- C:\WINDOWS\system32\FXSAPI.dll
2014-12-10 07:29:13 ----A---- C:\WINDOWS\SYSWOW64\FXSAPI.dll
2014-12-10 07:26:23 ----A---- C:\WINDOWS\SYSWOW64\msxml3.dll
2014-12-10 07:26:22 ----A---- C:\WINDOWS\system32\msxml3.dll
2014-12-10 07:26:14 ----A---- C:\WINDOWS\SYSWOW64\TsWpfWrp.exe
2014-12-10 07:26:14 ----A---- C:\WINDOWS\system32\TsWpfWrp.exe
2014-12-10 07:23:40 ----A---- C:\WINDOWS\SYSWOW64\d3d9.dll
2014-12-10 07:23:40 ----A---- C:\WINDOWS\system32\d3d9.dll
2014-12-10 07:23:35 ----A---- C:\WINDOWS\system32\vpnike.dll
2014-12-10 07:23:34 ----A---- C:\WINDOWS\system32\fveapi.dll
2014-12-10 07:23:33 ----A---- C:\WINDOWS\system32\dhcpcore.dll
2014-12-10 07:23:31 ----A---- C:\WINDOWS\SYSWOW64\dhcpcore.dll
2014-12-10 07:23:31 ----A---- C:\WINDOWS\system32\framedynos.dll
2014-12-10 07:23:31 ----A---- C:\WINDOWS\system32\drivers\mrxsmb.sys
2014-12-10 07:23:29 ----A---- C:\WINDOWS\SYSWOW64\framedynos.dll
2014-12-10 07:23:29 ----A---- C:\WINDOWS\SYSWOW64\dhcpcore6.dll
2014-12-10 07:23:29 ----A---- C:\WINDOWS\system32\dhcpcore6.dll
2014-12-10 07:23:29 ----A---- C:\WINDOWS\system32\bdesvc.dll
2014-12-10 07:23:28 ----A---- C:\WINDOWS\system32\drivers\agilevpn.sys
2014-12-10 07:23:28 ----A---- C:\WINDOWS\system32\BFE.DLL
2014-12-10 07:23:26 ----A---- C:\WINDOWS\system32\ncobjapi.dll
2014-12-10 07:23:26 ----A---- C:\WINDOWS\system32\framedyn.dll
2014-12-10 07:23:25 ----A---- C:\WINDOWS\SYSWOW64\ncobjapi.dll
2014-12-10 07:23:23 ----A---- C:\WINDOWS\system32\drivers\vwifimp.sys
2014-12-10 07:23:22 ----A---- C:\WINDOWS\system32\Robocopy.exe
2014-12-10 07:23:21 ----A---- C:\WINDOWS\SYSWOW64\Robocopy.exe
2014-12-10 07:23:21 ----A---- C:\WINDOWS\system32\IKEEXT.DLL
2014-12-10 07:23:21 ----A---- C:\WINDOWS\system32\dhcpcsvc.dll
2014-12-10 07:23:20 ----A---- C:\WINDOWS\SYSWOW64\framedyn.dll
2014-12-10 07:23:20 ----A---- C:\WINDOWS\SYSWOW64\dhcpcsvc.dll
2014-12-10 07:23:20 ----A---- C:\WINDOWS\system32\dhcpcsvc6.dll
2014-12-10 07:23:19 ----A---- C:\WINDOWS\SYSWOW64\dhcpcsvc6.dll
2014-12-10 07:23:19 ----A---- C:\WINDOWS\system32\drivers\vwififlt.sys
2014-12-10 07:23:18 ----A---- C:\WINDOWS\system32\reseteng.dll
2014-12-10 07:23:17 ----A---- C:\WINDOWS\SYSWOW64\d3d8thk.dll
2014-12-10 07:23:17 ----A---- C:\WINDOWS\system32\srms.dat
2014-12-10 07:21:35 ----A---- C:\WINDOWS\explorer.exe
2014-12-10 07:21:34 ----A---- C:\WINDOWS\SYSWOW64\explorer.exe
2014-12-10 07:21:34 ----A---- C:\WINDOWS\system32\uDWM.dll
2014-12-10 07:21:33 ----A---- C:\WINDOWS\SYSWOW64\UXInit.dll
2014-12-10 07:21:33 ----A---- C:\WINDOWS\system32\UXInit.dll
2014-12-10 07:21:24 ----A---- C:\WINDOWS\SYSWOW64\AUDIOKSE.dll
2014-12-10 07:21:24 ----A---- C:\WINDOWS\system32\audiosrv.dll
2014-12-10 07:21:24 ----A---- C:\WINDOWS\system32\AudioSes.dll
2014-12-10 07:21:24 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll
2014-12-10 07:21:23 ----A---- C:\WINDOWS\SYSWOW64\AudioSes.dll
2014-12-10 07:21:23 ----A---- C:\WINDOWS\system32\AudioEng.dll
2014-12-10 07:21:23 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2014-12-10 07:21:23 ----A---- C:\WINDOWS\system32\audiodg.exe
2014-12-10 07:21:22 ----A---- C:\WINDOWS\SYSWOW64\AudioEng.dll
2014-12-10 07:21:22 ----A---- C:\WINDOWS\system32\EncDump.dll
2014-12-10 07:21:18 ----A---- C:\WINDOWS\system32\win32k.sys
2014-12-10 07:20:37 ----A---- C:\WINDOWS\system32\Windows.UI.Search.dll
2014-12-10 07:20:34 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Search.dll
2014-12-10 07:20:33 ----A---- C:\WINDOWS\system32\mstscax.dll
2014-12-10 07:20:32 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2014-12-10 07:20:31 ----A---- C:\WINDOWS\system32\SyncEngine.dll
2014-12-10 07:20:29 ----A---- C:\WINDOWS\system32\SearchFolder.dll
2014-12-10 07:20:27 ----A---- C:\WINDOWS\system32\KernelBase.dll
2014-12-10 07:20:26 ----A---- C:\WINDOWS\system32\propsys.dll
2014-12-10 07:20:26 ----A---- C:\WINDOWS\system32\ntdll.dll
2014-12-10 07:20:24 ----A---- C:\WINDOWS\system32\WSShared.dll
2014-12-10 07:20:23 ----A---- C:\WINDOWS\SYSWOW64\WSShared.dll
2014-12-10 07:20:23 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2014-12-10 07:20:23 ----A---- C:\WINDOWS\system32\iphlpsvc.dll
2014-12-10 07:20:22 ----A---- C:\WINDOWS\SYSWOW64\SearchFolder.dll
2014-12-10 07:20:22 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2014-12-10 07:20:22 ----A---- C:\WINDOWS\system32\Wldap32.dll
2014-12-10 07:20:21 ----A---- C:\WINDOWS\SYSWOW64\Wldap32.dll
2014-12-10 07:20:21 ----A---- C:\WINDOWS\system32\SystemEventsBrokerServer.dll
2014-12-10 07:20:20 ----A---- C:\WINDOWS\SYSWOW64\propsys.dll
2014-12-10 07:20:19 ----A---- C:\WINDOWS\system32\SkyDriveTelemetry.dll
2014-12-10 07:20:18 ----A---- C:\WINDOWS\system32\SkyDrive.exe
2014-12-10 07:20:18 ----A---- C:\WINDOWS\system32\httpprxm.dll
2014-12-10 07:20:18 ----A---- C:\WINDOWS\system32\bisrv.dll
2014-12-10 07:20:17 ----A---- C:\WINDOWS\system32\pcsvDevice.dll
2014-12-10 07:20:17 ----A---- C:\WINDOWS\system32\adhsvc.dll
2014-12-10 07:20:16 ----A---- C:\WINDOWS\SYSWOW64\SkyDriveShell.dll
2014-12-10 07:20:16 ----A---- C:\WINDOWS\system32\SkyDriveShell.dll
2014-12-10 07:20:16 ----A---- C:\WINDOWS\system32\ProximityService.dll
2014-12-10 07:20:14 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2014-12-10 07:20:14 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2014-12-10 07:19:37 ----A---- C:\WINDOWS\SYSWOW64\packager.dll
2014-12-10 07:19:37 ----A---- C:\WINDOWS\system32\packager.dll
2014-12-09 23:04:22 ----A---- C:\WINDOWS\SYSWOW64\msvcr120_clr0400.dll
2014-12-09 23:04:21 ----A---- C:\WINDOWS\system32\msvcr120_clr0400.dll
2014-12-09 23:03:44 ----D---- C:\Program Files\Elantech
2014-12-09 23:00:47 ----A---- C:\WINDOWS\system32\rdpcorets.dll
2014-12-09 23:00:46 ----A---- C:\WINDOWS\SYSWOW64\certcli.dll
2014-12-09 23:00:46 ----A---- C:\WINDOWS\system32\lsasrv.dll
2014-12-09 23:00:46 ----A---- C:\WINDOWS\system32\certcli.dll
2014-12-09 23:00:45 ----A---- C:\WINDOWS\SYSWOW64\adtschema.dll
2014-12-09 23:00:45 ----A---- C:\WINDOWS\system32\rfxvmt.dll
2014-12-09 23:00:45 ----A---- C:\WINDOWS\system32\drivers\ksecpkg.sys
2014-12-09 23:00:45 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2014-12-09 23:00:45 ----A---- C:\WINDOWS\system32\adtschema.dll
2014-12-09 23:00:44 ----A---- C:\WINDOWS\SYSWOW64\msaudite.dll
2014-12-09 23:00:44 ----A---- C:\WINDOWS\system32\msaudite.dll
2014-12-09 23:00:44 ----A---- C:\WINDOWS\system32\drivers\rdpvideominiport.sys
2014-12-09 23:00:43 ----A---- C:\WINDOWS\system32\rdpudd.dll
2014-12-09 23:00:20 ----A---- C:\WINDOWS\system32\oleaut32.dll
2014-12-09 23:00:19 ----A---- C:\WINDOWS\SYSWOW64\oleaut32.dll
2014-12-09 22:58:57 ----A---- C:\WINDOWS\system32\WUDFHost.exe
2014-12-09 22:58:57 ----A---- C:\WINDOWS\system32\drivers\WUDFRd.sys
2014-12-09 22:58:56 ----A---- C:\WINDOWS\system32\WUDFSvc.dll
2014-12-09 22:58:56 ----A---- C:\WINDOWS\system32\WUDFPlatform.dll
2014-12-09 22:58:56 ----A---- C:\WINDOWS\system32\drivers\WUDFPf.sys
2014-12-09 22:58:56 ----A---- C:\WINDOWS\system32\DaOtpCredentialProvider.dll
2014-12-09 22:58:55 ----A---- C:\WINDOWS\SYSWOW64\DaOtpCredentialProvider.dll
2014-12-09 22:58:55 ----A---- C:\WINDOWS\system32\hal.dll
2014-12-09 22:54:17 ----A---- C:\WINDOWS\system32\schedsvc.dll
2014-12-09 22:54:12 ----A---- C:\WINDOWS\system32\rastls.dll
2014-12-09 22:54:11 ----A---- C:\WINDOWS\SYSWOW64\rastls.dll
2014-12-09 22:54:10 ----A---- C:\WINDOWS\system32\WpcMon.exe
2014-12-09 22:54:10 ----A---- C:\WINDOWS\system32\Wpc.dll
2014-12-09 22:54:09 ----A---- C:\WINDOWS\SYSWOW64\Wpc.dll
2014-12-09 22:54:09 ----A---- C:\WINDOWS\system32\WpcWebSync.dll
2014-12-09 22:54:08 ----A---- C:\WINDOWS\system32\MDMAgent.exe
2014-12-08 11:16:21 ----D---- C:\Program Files\Common Files\Atheros
2014-12-08 11:08:33 ----D---- C:\Users\Mara\AppData\Roaming\Identities
2014-12-08 11:05:50 ----SHD---- C:\ProgramData\Šablony
2014-12-08 11:05:50 ----SHD---- C:\ProgramData\Plocha
2014-12-08 11:05:50 ----SHD---- C:\ProgramData\Nabídka Start
2014-12-08 11:05:50 ----SHD---- C:\ProgramData\Dokumenty
2014-12-08 11:05:50 ----SHD---- C:\ProgramData\Data aplikací
2014-12-08 11:01:56 ----A---- C:\WINDOWS\system32\emptyregdb.dat
2014-12-08 10:34:29 ----SD---- C:\Users\Mara\AppData\Roaming\Microsoft
2014-12-08 10:24:48 ----A---- C:\WINDOWS\system32\drivers\RTWAVES30.dat
2014-12-08 10:24:37 ----D---- C:\WINDOWS\SYSWOW64\RTCOM
2014-12-08 10:24:37 ----D---- C:\Program Files\Realtek
2014-12-08 10:24:22 ----D---- C:\Program Files (x86)\Intel
2014-12-08 10:22:56 ----D---- C:\WINDOWS\Prefetch
2014-12-08 10:21:40 ----SHD---- C:\Recovery
2014-12-08 10:21:30 ----DC---- C:\WINDOWS\Panther
2014-12-08 10:17:02 ----D---- C:\Program Files (x86)\Reference Assemblies
2014-12-08 10:17:02 ----D---- C:\Program Files (x86)\MSBuild
2014-12-08 10:16:59 ----D---- C:\WINDOWS\SYSWOW64\XPSViewer
2014-12-08 10:16:59 ----D---- C:\Program Files\Reference Assemblies
2014-12-08 10:16:59 ----D---- C:\Program Files\MSBuild
2014-12-08 10:15:42 ----A---- C:\WINDOWS\SYSWOW64\PresentationNative_v0300.dll
2014-12-08 10:15:42 ----A---- C:\WINDOWS\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2014-12-08 10:15:40 ----A---- C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2014-12-08 10:15:39 ----A---- C:\WINDOWS\system32\PresentationNative_v0300.dll
2014-11-28 11:23:51 ----DC---- C:\WINDOWS\system32\DRVSTORE
2014-11-28 11:23:18 ----D---- C:\Program Files (x86)\Fortinet
2014-11-28 11:19:41 ----D---- C:\ProgramData\Applications
2014-11-26 16:14:58 ----A---- C:\WINDOWS\system32\AutoUpdate.exe
======List of files/folders modified in the last 1 month======
2014-12-25 20:33:41 ----D---- C:\Program Files\trend micro
2014-12-25 20:33:23 ----D---- C:\WINDOWS\system32\wdi
2014-12-25 20:33:15 ----D---- C:\WINDOWS\system32\sru
2014-12-25 16:45:29 ----D---- C:\WINDOWS\Temp
2014-12-25 10:33:09 ----A---- C:\WINDOWS\SYSWOW64\log.txt
2014-12-25 10:32:39 ----RD---- C:\WINDOWS\System32
2014-12-25 10:29:48 ----D---- C:\WINDOWS\system32\NDF
2014-12-24 22:56:48 ----D---- C:\Windows
2014-12-24 22:56:13 ----D---- C:\AdwCleaner
2014-12-23 21:20:44 ----D---- C:\WINDOWS\Inf
2014-12-23 15:09:00 ----D---- C:\WINDOWS\system32\Tasks
2014-12-23 13:19:37 ----SHD---- C:\System Volume Information
2014-12-23 11:55:45 ----D---- C:\Users\Mara\AppData\Roaming\Spotify
2014-12-23 11:18:40 ----D---- C:\WINDOWS\Microsoft.NET
2014-12-22 21:20:48 ----D---- C:\Program Files (x86)\Spybot - Search & Destroy 2
2014-12-22 21:19:37 ----SD---- C:\ProgramData\Microsoft
2014-12-22 21:19:20 ----D---- C:\ProgramData\Spybot - Search & Destroy
2014-12-22 21:08:22 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2014-12-21 19:30:35 ----D---- C:\WINDOWS\SoftwareDistribution
2014-12-21 10:20:35 ----SHD---- C:\$Recycle.Bin
2014-12-21 09:54:33 ----D---- C:\Users\Mara\AppData\Roaming\IrfanView
2014-12-21 09:04:08 ----D---- C:\Users\Mara\AppData\Roaming\uTorrent
2014-12-21 09:03:33 ----D---- C:\WINDOWS\debug
2014-12-20 08:59:38 ----D---- C:\WINDOWS\system32\config
2014-12-19 13:35:35 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2014-12-19 11:01:17 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2014-12-19 11:01:17 ----D---- C:\Program Files (x86)\Mozilla Firefox
2014-12-18 09:54:43 ----D---- C:\WINDOWS\CbsTemp
2014-12-18 09:54:42 ----D---- C:\WINDOWS\WinSxS
2014-12-17 11:40:23 ----HD---- C:\Program Files\WindowsApps
2014-12-17 11:40:23 ----D---- C:\WINDOWS\AppReadiness
2014-12-17 10:01:32 ----D---- C:\WINDOWS\system32\DriverStore
2014-12-16 13:44:38 ----D---- C:\WINDOWS\rescache
2014-12-16 09:49:46 ----D---- C:\WINDOWS\SysWOW64
2014-12-16 08:31:01 ----D---- C:\WINDOWS\Logs
2014-12-14 14:49:06 ----D---- C:\WINDOWS\system32\drivers
2014-12-14 11:00:10 ----RD---- C:\Program Files (x86)
2014-12-12 21:48:20 ----D---- C:\WINDOWS\system32\AutoUpdateLicense
2014-12-12 21:46:28 ----D---- C:\Program Files\Windows Defender
2014-12-12 21:46:28 ----D---- C:\Program Files (x86)\Windows Defender
2014-12-12 21:31:29 ----RD---- C:\Program Files
2014-12-12 20:38:07 ----HD---- C:\ProgramData
2014-12-12 10:16:51 ----RD---- C:\WINDOWS\assembly
2014-12-11 18:24:33 ----D---- C:\WINDOWS\system32\drivers\UMDF
2014-12-11 12:52:02 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2014-12-11 12:52:02 ----D---- C:\WINDOWS\system32\cs-CZ
2014-12-11 12:51:53 ----D---- C:\WINDOWS\system32\sr-Latn-RS
2014-12-11 12:51:53 ----D---- C:\WINDOWS\system32\sr-Latn-CS
2014-12-11 10:49:21 ----D---- C:\WINDOWS\system32\catroot
2014-12-11 10:34:34 ----D---- C:\WINDOWS\system32\LogFiles
2014-12-11 10:30:38 ----RD---- C:\WINDOWS\ToastData
2014-12-11 10:30:38 ----D---- C:\WINDOWS\system32\migration
2014-12-11 10:30:33 ----SD---- C:\WINDOWS\system32\CompatTel
2014-12-11 10:30:33 ----D---- C:\WINDOWS\AppCompat
2014-12-11 10:30:19 ----D---- C:\WINDOWS\WinStore
2014-12-11 10:30:12 ----D---- C:\WINDOWS\SYSWOW64\wbem
2014-12-11 10:30:12 ----D---- C:\WINDOWS\SYSWOW64\migration
2014-12-11 10:30:11 ----D---- C:\WINDOWS\system32\wbem
2014-12-11 10:30:11 ----D---- C:\WINDOWS\system32\en-US
2014-12-11 10:30:02 ----D---- C:\Program Files (x86)\Internet Explorer
2014-12-11 10:29:59 ----D---- C:\WINDOWS\PolicyDefinitions
2014-12-11 10:29:57 ----D---- C:\Program Files\Internet Explorer
2014-12-11 10:29:53 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2014-12-11 10:29:53 ----D---- C:\WINDOWS\MediaViewer
2014-12-11 10:29:52 ----D---- C:\WINDOWS\FileManager
2014-12-11 10:29:52 ----D---- C:\WINDOWS\Camera
2014-12-11 10:29:52 ----D---- C:\WINDOWS\apppatch
2014-12-11 10:29:19 ----SHD---- C:\WINDOWS\Installer
2014-12-11 10:29:19 ----D---- C:\ProgramData\Microsoft Help
2014-12-11 10:28:09 ----D---- C:\WINDOWS\system32\MRT
2014-12-11 10:23:49 ----A---- C:\WINDOWS\system32\MRT.exe
2014-12-11 09:16:27 ----D---- C:\Program Files\Common Files
2014-12-11 09:13:24 ----D---- C:\WINDOWS\system32\restore
2014-12-10 13:40:48 ----D---- C:\WINDOWS\system32\catroot2
2014-12-08 11:31:28 ----D---- C:\WINDOWS\LiveKernelReports
2014-12-08 11:16:22 ----D---- C:\Program Files (x86)\Bluetooth Suite
2014-12-08 11:05:50 ----D---- C:\Program Files\Windows NT
2014-12-08 11:05:28 ----D---- C:\WINDOWS\Registration
2014-12-08 10:58:10 ----RSD---- C:\WINDOWS\Media
2014-12-08 10:46:46 ----D---- C:\WINDOWS\SYSWOW64\vbox
2014-12-08 10:46:46 ----D---- C:\WINDOWS\SYSWOW64\drivers
2014-12-08 10:46:46 ----D---- C:\WINDOWS\SYSWOW64\bitstreams
2014-12-08 10:46:46 ----D---- C:\WINDOWS\SYSWOW64\Atheros_L1e
2014-12-08 10:46:46 ----D---- C:\WINDOWS\system32\vbox
2014-12-08 10:46:46 ----D---- C:\WINDOWS\system32\Sysprep
2014-12-08 10:46:45 ----D---- C:\WINDOWS\sk
2014-12-08 10:46:45 ----D---- C:\WINDOWS\ShellNew
2014-12-08 10:46:45 ----D---- C:\WINDOWS\pl
2014-12-08 10:46:44 ----RSD---- C:\WINDOWS\Fonts
2014-12-08 10:46:44 ----D---- C:\WINDOWS\hu
2014-12-08 10:46:43 ----D---- C:\WINDOWS\Tasks
2014-12-08 10:46:43 ----D---- C:\WINDOWS\en-GB
2014-12-08 10:46:43 ----D---- C:\WINDOWS\cs
2014-12-08 10:46:43 ----D---- C:\ProgramData\regid.1986-12.com.adobe
2014-12-08 10:43:58 ----D---- C:\WINDOWS\SYSWOW64\WCN
2014-12-08 10:43:57 ----D---- C:\WINDOWS\SYSWOW64\sysprep
2014-12-08 10:43:57 ----D---- C:\WINDOWS\SYSWOW64\spool
2014-12-08 10:43:57 ----D---- C:\WINDOWS\SYSWOW64\SMI
2014-12-08 10:43:56 ----D---- C:\WINDOWS\SYSWOW64\MUI
2014-12-08 10:43:56 ----D---- C:\WINDOWS\SYSWOW64\migwiz
2014-12-08 10:43:56 ----D---- C:\WINDOWS\SYSWOW64\LogFiles
2014-12-08 10:43:54 ----D---- C:\WINDOWS\SYSWOW64\IME
2014-12-08 10:43:53 ----D---- C:\WINDOWS\SYSWOW64\drivers\UMDF
2014-12-08 10:43:53 ----D---- C:\WINDOWS\SYSWOW64\catroot
2014-12-08 10:43:49 ----D---- C:\WINDOWS\system32\WCN
2014-12-08 10:43:49 ----D---- C:\WINDOWS\system32\spool
2014-12-08 10:43:44 ----D---- C:\WINDOWS\system32\oobe
2014-12-08 10:43:44 ----D---- C:\WINDOWS\system32\MUI
2014-12-08 10:43:44 ----D---- C:\WINDOWS\system32\IME
2014-12-08 10:43:43 ----D---- C:\WINDOWS\system32\drivers\etc
2014-12-08 10:42:33 ----D---- C:\WINDOWS\IME
2014-12-08 10:42:33 ----D---- C:\WINDOWS\Help
2014-12-08 10:42:30 ----D---- C:\WINDOWS\DigitalLocker
2014-12-08 10:40:28 ----RD---- C:\Users
2014-12-08 10:40:27 ----D---- C:\ProgramData\PRICache
2014-12-08 10:40:18 ----SHD---- C:\Program Files (x86)\Windows Sidebar
2014-12-08 10:40:18 ----D---- C:\Program Files (x86)\Windows Media Player
2014-12-08 10:40:14 ----D---- C:\Program Files (x86)\Microsoft.NET
2014-12-08 10:40:12 ----D---- C:\Program Files (x86)\Common Files
2014-12-08 10:40:08 ----SHD---- C:\Program Files\Windows Sidebar
2014-12-08 10:40:08 ----D---- C:\Program Files\Windows Media Player
2014-12-08 10:40:07 ----D---- C:\Program Files\Common Files\microsoft shared
2014-12-08 10:36:26 ----D---- C:\WINDOWS\system32\Recovery
2014-12-08 10:36:20 ----HD---- C:\WINDOWS\system32\GroupPolicy
2014-12-05 10:02:36 ----D---- C:\WINDOWS\AUInstallAgent
2014-11-28 16:17:19 ----D---- C:\Temp
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswRvrt;avast! Revert; C:\WINDOWS\system32\drivers\aswRvrt.sys [2014-11-20 65776]
R0 aswVmm;avast! VM Monitor; C:\WINDOWS\system32\drivers\aswVmm.sys [2014-11-20 267632]
R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2012-09-14 647736]
R0 sptd;sptd; C:\WINDOWS\System32\Drivers\sptd.sys [2014-12-12 386680]
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [2014-11-20 93568]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2014-11-22 1050432]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2014-11-20 436624]
R1 ATKWMIACPIIO;ATKWMIACPI Driver; \??\C:\Program Files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys [2011-09-07 17536]
R1 vwififlt;@%SystemRoot%\System32\drivers\vwififlt.sys,-259; C:\WINDOWS\system32\DRIVERS\vwififlt.sys [2014-04-30 71680]
R2 ASMMAP64;ASMMAP64; \??\C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys [2009-07-02 15416]
R2 aswHwid;avast! HardwareID; C:\WINDOWS\system32\drivers\aswHwid.sys [2014-11-20 29208]
R2 aswMonFlt;aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [2014-11-20 83280]
R2 aswStm;aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [2014-11-20 116728]
R2 VBoxAswDrv;VBoxAsw Support Driver; \??\C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [2014-11-20 271752]
R3 AiCharger;ASUS Charger Driver; C:\WINDOWS\system32\DRIVERS\AiCharger.sys [2012-09-18 17152]
R3 AthBTPort;@oem10.inf,%BTHSUPPORT.SvcDesc%;Qualcomm Atheros Virtual Bluetooth Class; C:\WINDOWS\system32\DRIVERS\btath_flt.sys [2012-12-28 89320]
R3 athr;@athw8x.inf,%ATHR.Service.DispName%;Qualcomm Atheros Extensible Wireless LAN device driver; C:\WINDOWS\system32\DRIVERS\athw8x.sys [2013-06-18 3680256]
R3 BTATH_BUS;@oem5.inf,%BTATH_BUS.SVCDESC%;Qualcomm Atheros Bluetooth Bus; C:\WINDOWS\System32\drivers\btath_bus.sys [2012-12-28 33944]
R3 BTATH_HCRP;@oem11.inf,%BTATH_HCRP.SvcDesc%;Bluetooth HCRP Server driver; C:\WINDOWS\System32\drivers\btath_hcrp.sys [2012-12-28 179432]
R3 BTATH_LWFLT;@oem20.inf,%BTATH_LWFLT%;Bluetooth LWFLT Device; C:\WINDOWS\system32\DRIVERS\btath_lwflt.sys [2012-12-28 77464]
R3 BtFilter;BtFilter; C:\WINDOWS\system32\DRIVERS\btfilter.sys [2014-04-28 599240]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\System32\drivers\BthEnum.sys [2013-08-22 53248]
R3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Ovladač úspory energie technologie Bluetooth; C:\WINDOWS\system32\DRIVERS\BthLEEnum.sys [2014-09-24 226304]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Zařízení Bluetooth (síť PAN); C:\WINDOWS\system32\DRIVERS\bthpan.sys [2014-09-24 118272]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\Drivers\BTHUSB.sys [2014-09-24 81920]
R3 ETD;@oem35.inf,%PS2DeviceDesc%;ELAN PS/2 Port Input Device; C:\WINDOWS\system32\DRIVERS\ETD.sys [2014-12-09 381192]
R3 HIDSwitch;@oem9.inf,%ASSW.DisplayName%;ASUS Wireless Radio Control; C:\WINDOWS\System32\drivers\AsHIDSwitch64.sys [2012-05-31 21152]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2014-01-29 5363200]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2012-12-11 3258256]
R3 IntcDAud;@oem31.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2012-10-26 342528]
R3 kbfiltr;@oem8.inf,%kbfiltr.SvcDesc%;Keyboard Filter; C:\WINDOWS\System32\drivers\kbfiltr.sys [2012-08-02 14992]
R3 L1C;@netl1c63x64.inf,%L1C.Service.DispName%;NDIS Miniport – ovladač pro řadič Qualcomm Atheros AR81xx PCI-E Ethernet; C:\WINDOWS\system32\DRIVERS\L1C63x64.sys [2013-06-18 129224]
R3 MEIx64;@oem32.inf,%HECI_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\System32\drivers\HECIx64.sys [2012-07-02 62784]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Zařízení Bluetooth (RFCOMM protokol TDI); C:\WINDOWS\system32\DRIVERS\rfcomm.sys [2014-09-24 167424]
R3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;Zobrazovací zařízení USB (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys [2013-08-22 212224]
R3 vwifimp;@%SystemRoot%\System32\drivers\vwifimp.sys,-261; C:\WINDOWS\system32\DRIVERS\vwifimp.sys [2014-04-30 38912]
S3 ATP;@oem12.inf,%PS2.DeviceDesc%;ASUS Input Device; C:\WINDOWS\System32\drivers\AsusTP.sys [2013-01-16 65784]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\Drivers\BTHport.sys [2014-09-24 1200640]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2014-05-08 65432]
R2 AFBAgent;AFBAgent; C:\Windows\system32\FBAgent.exe [2013-01-07 1280768]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2014-11-20 50344]
R2 ETDService;Elan Service; C:\Program Files\Elantech\ETDService.exe [2014-12-09 100104]
R2 SDScannerService;Spybot-S&D 2 Scanner Service; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [2014-06-24 1738168]
R2 SDUpdateService;Spybot-S&D 2 Updating Service; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [2014-06-27 2088408]
R2 SDWSCService;Spybot-S&D 2 Security Center Service; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [2014-04-25 171928]
R3 ASLDRService;ASLDR Service; C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe [2013-01-15 107320]
R3 ASUS InstantOn;ASUS InstantOn Service; C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnSrv.exe [2012-04-13 277120]
R3 AtherosSvc;AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [2012-12-28 226944]
R3 ATKGFNEXSrv;ATKGFNEX Service; C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe [2011-11-21 96896]
R3 AvastVBoxSvc;AvastVBox COM Service; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [2014-11-20 4012248]
R3 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-04-20 635104]
R3 Intel(R) ME Service;Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [2012-06-27 129856]
R3 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2012-06-25 166720]
R3 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-07-17 277824]
R3 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2012-07-17 365376]
R3 WakeupService;ASUS Wake Service; C:\Program Files\ASUS\ASUS VivoBook\ASUSWakeupService.exe [2012-12-20 45488]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-01-17 116648]
S3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2014-01-29 279000]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-01-17 116648]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2014-11-26 114800]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2012-10-01 150648]
S3 SwitchBoard;SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
-----------------EOF-----------------
Logfile of random's system information tool 1.10 (written by random/random)
Run by Mara at 2014-12-25 20:33:36
Microsoft Windows 8.1
System drive C: has 39 GB (32%) free of 122 GB
Total RAM: 3980 MB (63% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:33:42, on 25. 12. 2014
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17416)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\TabTip32.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
C:\Program Files (x86)\ASUS\APRP\APRP.EXE
C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe
C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
C:\Program Files (x86)\ASUS\Splendid\ColorUService.exe
C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe
C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x86\QuickGesture.exe
C:\Program Files\trend micro\Mara.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://asus13.msn.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://asus13.msn.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: (no name) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - (no file)
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: (no name) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - (no file)
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O4 - HKLM\..\Run: [AdobeCS5ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [SDTray] "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"
O4 - HKCU\..\Run: [AdobeBridge] "C:\Program Files (x86)\Adobe\Adobe Bridge CS5\Bridge.exe" -stealth
O4 - HKCU\..\Run: [Spotify] "C:\Users\Mara\AppData\Roaming\Spotify\Spotify.exe" /uri spotify:autostart
O4 - HKCU\..\Run: [Spotify Web Helper] "C:\Users\Mara\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe"
O4 - HKLM\..\Policies\Explorer\Run: [BtvStack] "C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe"
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Se&nd to OneNote - res://C:\PROGRA~2\MICROS~1\Office15\ONBttnIE.dll/105
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O20 - Winlogon Notify: SDWinLogon - SDWinLogon.dll (file missing)
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: AFBAgent - Unknown owner - C:\Windows\system32\FBAgent.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: ASLDR Service (ASLDRService) - ASUSTek Computer Inc. - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
O23 - Service: ASUS InstantOn Service (ASUS InstantOn) - ASUS - C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnSrv.exe
O23 - Service: AtherosSvc - Qualcomm Atheros Commnucations - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: AvastVBox COM Service (AvastVBoxSvc) - Avast Software - C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: Elan Service (ETDService) - ELAN Microelectronics Corp. - C:\Program Files\Elantech\ETDService.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) ME Service - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Spybot-S&D 2 Scanner Service (SDScannerService) - Safer-Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe
O23 - Service: Spybot-S&D 2 Updating Service (SDUpdateService) - Safer-Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe
O23 - Service: Spybot-S&D 2 Security Center Service (SDWSCService) - Safer-Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: ASUS Wake Service (WakeupService) - ASUSTek Computer Inc. - C:\Program Files\ASUS\ASUS VivoBook\ASUSWakeupService.exe
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: ZAtheros Bt and Wlan Coex Agent - Atheros - C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
--
End of file - 11094 bytes
======Listing Processes======
wininit.exe
winlogon.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k NetworkService
"C:\Windows\system32\FBAgent.exe"
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files\Elantech\ETDService.exe"
dashost.exe {17e56272-d0c5-4c37-8387d2811e2298fd}
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe"
"C:\Program Files\Elantech\ETDCtrl.exe"
taskeng.exe {33A25A49-9815-47EE-BA44-2E6C673C89FA}
taskhostex.exe
C:\WINDOWS\Explorer.EXE
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe"
"C:\Program Files\Elantech\ETDCtrlHelper.exe"
"C:\Program Files\Elantech\ETDGesture.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
/QuitInfo:00000000000009B4;0000000000000988;
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
/loadhooks /Parent:0000000000000c64
C:\WINDOWS\System32\alg.exe
"C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe"
ngservice.exe pipeserver
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files (x86)\Bluetooth Suite\ActivateDesktop.exe"
"C:\Program Files\AVAST Software\Avast\avastui.exe" /nogui
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
C:\WINDOWS\system32\vssvc.exe
C:\WINDOWS\System32\svchost.exe -k swprv
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe"
"C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnSrv.exe"
KBFiltr.exe
"C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe"
"C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnWMI.exe"
"C:\Program Files (x86)\Bluetooth Suite\adminservice.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe"
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
"C:\Program Files\ASUS\ASUS VivoBook\ASUSWakeupService.exe"
"C:\Program Files (x86)\ASUS\APRP\APRP.EXE"
"C:\Program Files\ASUS\ASUS VivoBook\VivoBook.exe" /RunWithHide
"C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe"
"C:\WINDOWS\system32\hkcmd.exe"
"C:\WINDOWS\system32\igfxtray.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /MAXX3
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe"
"C:\Program Files\ASUS\P4G\BatteryLife.exe"
C:\ProgramData\AsTouchPanel\AsPatchTouchPanel64.exe
"C:\Program Files (x86)\ASUS\Splendid\ACMON.exe"
"C:\Program Files (x86)\ASUS\Splendid\ColorUService.exe"
"C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLoader.exe"
"C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x64\QuickGesture64.exe"
"C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x86\QuickGesture.exe"
C:\WINDOWS\system32\SppExtComObj.exe -Embedding
C:\WINDOWS\System32\svchost.exe -k WerSvcGroup
"C:\WINDOWS\system32\RunDll32.exe" "C:\WINDOWS\system32\WerConCpl.dll", LaunchErcApp -queuereportingnopester
"C:\Users\Mara\Desktop\RSITx64.exe"
======Scheduled tasks folder======
C:\WINDOWS\tasks\AdobeAAMUpdater-1.0-Marouskovnik-Mara.job - C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\updaterstartuputility.exe -mode=scheduled
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
=========Mozilla firefox=========
ProfilePath - C:\Users\Mara\AppData\Roaming\Mozilla\Firefox\Profiles\xnivlz3b.default
prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "http://www.seznam.cz/"
prefs.js - "extensions.enabledItems" - "2020Player_IKEA@2020Technologies.com:5.0.93.0, {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20, {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.13"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 16.0.0.235 Plugin
"Path"=C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_235.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42]
"Description"=Intel IPT WebApi plugin
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater]
"Description"=This plugin updates Intel WebAPI component
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=10.51.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=10.51.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=16.4.3528.0331]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 16.0.0.235 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF64_16_0_0_235.dll
C:\Program Files (x86)\Mozilla Firefox\plugins\
NPOFF12.DLL
nppdf32.dll
C:\Users\Mara\AppData\Roaming\Mozilla\Firefox\Profiles\xnivlz3b.default\extensions\
2020Player_IKEA@2020Technologies.com
{bee6eb20-01e0-ebd1-da83-080329fb9a3a}
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2014-11-20 705448]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-11-20 586968]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Persistence"=C:\WINDOWS\system32\igfxpers.exe [2014-01-29 442328]
"AdobeAAMUpdater-1.0"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2010-03-06 500208]
"ETDCtrl"=C:\Program Files\Elantech\ETDCtrl.exe [2014-12-09 2893576]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"BtvStack"=C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [2012-12-28 129664]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"AdobeBridge"=C:\Program Files (x86)\Adobe\Adobe Bridge CS5\Bridge.exe [2010-03-09 11989960]
"Spotify"=C:\Users\Mara\AppData\Roaming\Spotify\Spotify.exe [2014-10-16 6553144]
"Spotify Web Helper"=C:\Users\Mara\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [2014-10-16 1514040]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUSPRP]
C:\Program Files (x86)\ASUS\APRP\APRP.EXE [2012-11-23 3187360]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUSWebStorage]
C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.10.123\AsusWSPanel.exe [2012-08-31 3423104]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DisableS3S4]
c:\windows\temp\DisableS3S464\sethigh.cmd []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HotKeysCmds]
C:\WINDOWS\system32\hkcmd.exe [2014-01-29 399832]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IgfxTray]
C:\WINDOWS\system32\igfxtray.exe [2014-01-29 171992]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\mcui_exe]
C:\Program Files\McAfee.com\Agent\mcagent.exe /runkey []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RtHDVBg]
C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2012-12-03 1256080]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RTHDVCPL]
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2012-12-07 13262480]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904]
"GrooveMonitor"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040]
"SwitchBoard"=C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
"AdobeCS5ServiceManager"=C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe [2010-02-22 406992]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2014-12-12 5227112]
"SDTray"=C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [2014-06-24 4101576]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"BtvStack"=C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [2012-12-28 129664]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2014-01-29 442880]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DisableCAD"=1
"DisableTaskMgr"=0
"SoftwareSASGeneration"=1
"ConsentPromptBehaviorAdmin"=0
"EnableLUA"=0
"PromptOnSecureDesktop"=0
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoRun"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe:*:Enabled:Spybot - Search & Destroy tray access"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe:*:Enabled:Spybot-S&D 2 Scanner Service"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe:*:Enabled:Spybot-S&D 2 Updater"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe:*:Enabled:Spybot-S&D 2 Background update service"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"VIDC.LAGS"=lagarith.dll
"VIDC.X264"=x264vfw64.dll
"VIDC.XVID"=xvidvfw.dll
"msacm.ac3acm"=ac3acm.acm
"msacm.l3codecp"=l3codecp.acm
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2014-12-22 21:19:25 ----A---- C:\WINDOWS\system32\sdnclean64.exe
2014-12-16 08:23:28 ----A---- C:\WINDOWS\system32\poqexec.exe
2014-12-16 08:23:27 ----A---- C:\WINDOWS\SYSWOW64\poqexec.exe
2014-12-12 21:52:07 ----D---- C:\Program Files (x86)\Alcohol Soft
2014-12-12 21:44:05 ----A---- C:\WINDOWS\system32\drivers\sptd.sys
2014-12-12 20:38:55 ----D---- C:\Users\Mara\AppData\Roaming\DAEMON Tools Ultra
2014-12-12 20:38:07 ----D---- C:\ProgramData\DAEMON Tools Ultra
2014-12-11 10:35:35 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2014-12-11 10:30:34 ----RD---- C:\WINDOWS\BrowserChoice
2014-12-11 10:30:32 ----D---- C:\WINDOWS\system32\appraiser
2014-12-10 14:12:42 ----A---- C:\WINDOWS\SYSWOW64\DeviceSetupStatusProvider.dll
2014-12-10 14:12:42 ----A---- C:\WINDOWS\system32\DeviceSetupStatusProvider.dll
2014-12-10 14:12:26 ----A---- C:\WINDOWS\SYSWOW64\crypt32.dll
2014-12-10 14:12:26 ----A---- C:\WINDOWS\system32\crypt32.dll
2014-12-10 13:47:55 ----A---- C:\WINDOWS\system32\WindowsCodecs.dll
2014-12-10 13:47:54 ----A---- C:\WINDOWS\SYSWOW64\WindowsCodecs.dll
2014-12-10 13:47:51 ----A---- C:\WINDOWS\system32\generaltel.dll
2014-12-10 13:47:50 ----A---- C:\WINDOWS\system32\devinv.dll
2014-12-10 13:47:50 ----A---- C:\WINDOWS\system32\aepdu.dll
2014-12-10 13:47:49 ----A---- C:\WINDOWS\system32\invagent.dll
2014-12-10 13:47:49 ----A---- C:\WINDOWS\system32\appraiser.dll
2014-12-10 13:47:49 ----A---- C:\WINDOWS\system32\aepic.dll
2014-12-10 13:47:49 ----A---- C:\WINDOWS\system32\aeinv.dll
2014-12-10 13:47:43 ----A---- C:\WINDOWS\SYSWOW64\MrmCoreR.dll
2014-12-10 13:47:43 ----A---- C:\WINDOWS\system32\MrmCoreR.dll
2014-12-10 13:47:19 ----AC---- C:\WINDOWS\system32\drivers\sdbus.sys
2014-12-10 13:47:19 ----AC---- C:\WINDOWS\system32\drivers\intelpep.sys
2014-12-10 13:47:19 ----AC---- C:\WINDOWS\system32\drivers\dumpsd.sys
2014-12-10 13:47:19 ----A---- C:\WINDOWS\system32\drivers\pdc.sys
2014-12-10 13:46:40 ----A---- C:\WINDOWS\system32\actxprxy.dll
2014-12-10 13:46:39 ----A---- C:\WINDOWS\SYSWOW64\mshtmled.dll
2014-12-10 13:46:39 ----A---- C:\WINDOWS\SYSWOW64\actxprxy.dll
2014-12-10 13:46:38 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2014-12-10 13:46:38 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2014-12-10 13:46:38 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll
2014-12-10 13:46:38 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2014-12-10 13:46:36 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2014-12-10 13:46:36 ----A---- C:\WINDOWS\SYSWOW64\dxtrans.dll
2014-12-10 13:46:36 ----A---- C:\WINDOWS\system32\JavaScriptCollectionAgent.dll
2014-12-10 13:46:33 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2014-12-10 13:46:32 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2014-12-10 13:46:32 ----A---- C:\WINDOWS\system32\urlmon.dll
2014-12-10 13:46:31 ----A---- C:\WINDOWS\SYSWOW64\jscript9diag.dll
2014-12-10 13:46:31 ----A---- C:\WINDOWS\SYSWOW64\dxtmsft.dll
2014-12-10 13:46:30 ----A---- C:\WINDOWS\system32\msfeeds.dll
2014-12-10 13:46:30 ----A---- C:\WINDOWS\system32\dxtrans.dll
2014-12-10 13:46:29 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2014-12-10 13:46:25 ----A---- C:\WINDOWS\system32\iertutil.dll
2014-12-10 13:46:24 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2014-12-10 13:46:24 ----A---- C:\WINDOWS\SYSWOW64\ieapfltr.dll
2014-12-10 13:46:22 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2014-12-10 13:46:21 ----A---- C:\WINDOWS\system32\dxtmsft.dll
2014-12-10 13:46:18 ----A---- C:\WINDOWS\system32\ieframe.dll
2014-12-10 13:46:16 ----A---- C:\WINDOWS\system32\mshtmled.dll
2014-12-10 13:46:16 ----A---- C:\WINDOWS\system32\jscript9diag.dll
2014-12-10 13:46:15 ----A---- C:\WINDOWS\system32\jscript9.dll
2014-12-10 13:46:14 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2014-12-10 13:46:12 ----A---- C:\WINDOWS\system32\wininet.dll
2014-12-10 13:46:10 ----A---- C:\WINDOWS\system32\mshtml.dll
2014-12-10 13:46:06 ----A---- C:\WINDOWS\system32\ieetwproxystub.dll
2014-12-10 13:46:05 ----A---- C:\WINDOWS\system32\inetcomm.dll
2014-12-10 13:46:04 ----A---- C:\WINDOWS\SYSWOW64\inetcomm.dll
2014-12-10 13:46:03 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2014-12-10 13:46:03 ----A---- C:\WINDOWS\system32\vbscript.dll
2014-12-10 13:46:02 ----A---- C:\WINDOWS\SYSWOW64\jscript.dll
2014-12-10 13:46:02 ----A---- C:\WINDOWS\system32\jscript.dll
2014-12-10 13:46:00 ----A---- C:\WINDOWS\system32\ieui.dll
2014-12-10 13:45:59 ----A---- C:\WINDOWS\SYSWOW64\JavaScriptCollectionAgent.dll
2014-12-10 13:45:57 ----A---- C:\WINDOWS\SYSWOW64\ieui.dll
2014-12-10 13:45:56 ----A---- C:\WINDOWS\SYSWOW64\webcheck.dll
2014-12-10 13:45:56 ----A---- C:\WINDOWS\system32\webcheck.dll
2014-12-10 13:45:55 ----A---- C:\WINDOWS\SYSWOW64\hlink.dll
2014-12-10 13:45:54 ----A---- C:\WINDOWS\SYSWOW64\msrating.dll
2014-12-10 13:45:54 ----A---- C:\WINDOWS\system32\hlink.dll
2014-12-10 13:45:53 ----A---- C:\WINDOWS\system32\msrating.dll
2014-12-10 13:45:53 ----A---- C:\WINDOWS\system32\ieUnatt.exe
2014-12-10 13:45:53 ----A---- C:\WINDOWS\system32\iesysprep.dll
2014-12-10 13:45:53 ----A---- C:\WINDOWS\system32\iepeers.dll
2014-12-10 13:45:52 ----A---- C:\WINDOWS\SYSWOW64\inseng.dll
2014-12-10 13:45:52 ----A---- C:\WINDOWS\SYSWOW64\ieUnatt.exe
2014-12-10 13:45:52 ----A---- C:\WINDOWS\SYSWOW64\iesysprep.dll
2014-12-10 13:45:52 ----A---- C:\WINDOWS\SYSWOW64\iepeers.dll
2014-12-10 13:45:52 ----A---- C:\WINDOWS\system32\ieetwcollector.exe
2014-12-10 13:45:51 ----A---- C:\WINDOWS\SYSWOW64\msfeedsbs.dll
2014-12-10 13:45:51 ----A---- C:\WINDOWS\system32\msfeedsbs.dll
2014-12-10 13:45:51 ----A---- C:\WINDOWS\system32\inseng.dll
2014-12-10 13:45:50 ----A---- C:\WINDOWS\SYSWOW64\occache.dll
2014-12-10 13:45:50 ----A---- C:\WINDOWS\SYSWOW64\MshtmlDac.dll
2014-12-10 13:45:50 ----A---- C:\WINDOWS\SYSWOW64\jsproxy.dll
2014-12-10 13:45:50 ----A---- C:\WINDOWS\SYSWOW64\iexpress.exe
2014-12-10 13:45:50 ----A---- C:\WINDOWS\SYSWOW64\IEAdvpack.dll
2014-12-10 13:45:50 ----A---- C:\WINDOWS\system32\MshtmlDac.dll
2014-12-10 13:45:50 ----A---- C:\WINDOWS\system32\jsproxy.dll
2014-12-10 13:45:49 ----A---- C:\WINDOWS\SYSWOW64\pngfilt.dll
2014-12-10 13:45:49 ----A---- C:\WINDOWS\SYSWOW64\licmgr10.dll
2014-12-10 13:45:49 ----A---- C:\WINDOWS\SYSWOW64\imgutil.dll
2014-12-10 13:45:49 ----A---- C:\WINDOWS\SYSWOW64\ieetwproxystub.dll
2014-12-10 13:45:49 ----A---- C:\WINDOWS\system32\pngfilt.dll
2014-12-10 13:45:49 ----A---- C:\WINDOWS\system32\occache.dll
2014-12-10 13:45:49 ----A---- C:\WINDOWS\system32\licmgr10.dll
2014-12-10 13:45:49 ----A---- C:\WINDOWS\system32\imgutil.dll
2014-12-10 13:45:48 ----A---- C:\WINDOWS\SYSWOW64\wextract.exe
2014-12-10 13:45:48 ----A---- C:\WINDOWS\SYSWOW64\url.dll
2014-12-10 13:45:48 ----A---- C:\WINDOWS\SYSWOW64\iesetup.dll
2014-12-10 13:45:48 ----A---- C:\WINDOWS\SYSWOW64\iernonce.dll
2014-12-10 13:45:48 ----A---- C:\WINDOWS\system32\url.dll
2014-12-10 13:45:48 ----A---- C:\WINDOWS\system32\iernonce.dll
2014-12-10 13:45:47 ----A---- C:\WINDOWS\system32\wextract.exe
2014-12-10 13:45:47 ----A---- C:\WINDOWS\system32\IEAdvpack.dll
2014-12-10 13:45:46 ----A---- C:\WINDOWS\SYSWOW64\msfeedssync.exe
2014-12-10 13:45:46 ----A---- C:\WINDOWS\system32\iexpress.exe
2014-12-10 13:45:46 ----A---- C:\WINDOWS\system32\iesetup.dll
2014-12-10 13:45:45 ----A---- C:\WINDOWS\SYSWOW64\mshta.exe
2014-12-10 13:45:45 ----A---- C:\WINDOWS\system32\mshta.exe
2014-12-10 13:45:45 ----A---- C:\WINDOWS\system32\msfeedssync.exe
2014-12-10 09:45:07 ----A---- C:\WINDOWS\SYSWOW64\msi.dll
2014-12-10 09:45:07 ----A---- C:\WINDOWS\system32\msi.dll
2014-12-10 09:45:06 ----A---- C:\WINDOWS\system32\authui.dll
2014-12-10 09:45:05 ----A---- C:\WINDOWS\SYSWOW64\msihnd.dll
2014-12-10 09:45:05 ----A---- C:\WINDOWS\SYSWOW64\authui.dll
2014-12-10 09:45:05 ----A---- C:\WINDOWS\system32\msihnd.dll
2014-12-10 09:45:04 ----A---- C:\WINDOWS\system32\consent.exe
2014-12-10 09:45:04 ----A---- C:\WINDOWS\system32\appinfo.dll
2014-12-10 09:44:56 ----A---- C:\WINDOWS\system32\user32.dll
2014-12-10 09:44:55 ----A---- C:\WINDOWS\SYSWOW64\user32.dll
2014-12-10 09:44:54 ----A---- C:\WINDOWS\system32\drivers\WdNisDrv.sys
2014-12-10 09:44:54 ----A---- C:\WINDOWS\system32\drivers\WdFilter.sys
2014-12-10 09:44:53 ----A---- C:\WINDOWS\system32\drivers\WdBoot.sys
2014-12-10 09:44:50 ----A---- C:\WINDOWS\SYSWOW64\winshfhc.dll
2014-12-10 09:44:50 ----A---- C:\WINDOWS\system32\winshfhc.dll
2014-12-10 09:43:51 ----A---- C:\WINDOWS\system32\lockscreencn.dll
2014-12-10 07:30:55 ----A---- C:\WINDOWS\system32\drivers\msgpioclx.sys
2014-12-10 07:30:36 ----A---- C:\WINDOWS\SYSWOW64\schannel.dll
2014-12-10 07:30:36 ----A---- C:\WINDOWS\system32\schannel.dll
2014-12-10 07:30:35 ----A---- C:\WINDOWS\system32\ncryptsslp.dll
2014-12-10 07:30:35 ----A---- C:\WINDOWS\system32\dpapisrv.dll
2014-12-10 07:30:34 ----A---- C:\WINDOWS\SYSWOW64\ncryptsslp.dll
2014-12-10 07:30:05 ----A---- C:\WINDOWS\system32\kerberos.dll
2014-12-10 07:30:04 ----A---- C:\WINDOWS\SYSWOW64\pku2u.dll
2014-12-10 07:30:04 ----A---- C:\WINDOWS\SYSWOW64\kerberos.dll
2014-12-10 07:30:04 ----A---- C:\WINDOWS\system32\pku2u.dll
2014-12-10 07:29:55 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2014-12-10 07:29:54 ----A---- C:\WINDOWS\system32\twinui.dll
2014-12-10 07:29:47 ----A---- C:\WINDOWS\system32\shell32.dll
2014-12-10 07:29:43 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2014-12-10 07:29:41 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2014-12-10 07:29:35 ----A---- C:\WINDOWS\system32\drivers\tcpip.sys
2014-12-10 07:29:34 ----A---- C:\WINDOWS\system32\SettingsHandlers.dll
2014-12-10 07:29:34 ----A---- C:\WINDOWS\system32\localspl.dll
2014-12-10 07:29:33 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2014-12-10 07:29:32 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2014-12-10 07:29:28 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2014-12-10 07:29:28 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2014-12-10 07:29:27 ----A---- C:\WINDOWS\system32\win32spl.dll
2014-12-10 07:29:26 ----A---- C:\WINDOWS\system32\drivers\netio.sys
2014-12-10 07:29:25 ----A---- C:\WINDOWS\SYSWOW64\WsmSvc.dll
2014-12-10 07:29:25 ----A---- C:\WINDOWS\system32\WsmSvc.dll
2014-12-10 07:29:25 ----A---- C:\WINDOWS\system32\puiobj.dll
2014-12-10 07:29:24 ----A---- C:\WINDOWS\SYSWOW64\puiobj.dll
2014-12-10 07:29:22 ----A---- C:\WINDOWS\system32\drivers\FWPKCLNT.SYS
2014-12-10 07:29:21 ----AC---- C:\WINDOWS\system32\drivers\USBSTOR.SYS
2014-12-10 07:29:21 ----A---- C:\WINDOWS\system32\winbici.dll
2014-12-10 07:29:20 ----A---- C:\WINDOWS\system32\BulkOperationHost.exe
2014-12-10 07:29:18 ----A---- C:\WINDOWS\SYSWOW64\untfs.dll
2014-12-10 07:29:18 ----A---- C:\WINDOWS\system32\untfs.dll
2014-12-10 07:29:15 ----A---- C:\WINDOWS\system32\FXSCOMEX.dll
2014-12-10 07:29:14 ----A---- C:\WINDOWS\system32\FXSAPI.dll
2014-12-10 07:29:13 ----A---- C:\WINDOWS\SYSWOW64\FXSAPI.dll
2014-12-10 07:26:23 ----A---- C:\WINDOWS\SYSWOW64\msxml3.dll
2014-12-10 07:26:22 ----A---- C:\WINDOWS\system32\msxml3.dll
2014-12-10 07:26:14 ----A---- C:\WINDOWS\SYSWOW64\TsWpfWrp.exe
2014-12-10 07:26:14 ----A---- C:\WINDOWS\system32\TsWpfWrp.exe
2014-12-10 07:23:40 ----A---- C:\WINDOWS\SYSWOW64\d3d9.dll
2014-12-10 07:23:40 ----A---- C:\WINDOWS\system32\d3d9.dll
2014-12-10 07:23:35 ----A---- C:\WINDOWS\system32\vpnike.dll
2014-12-10 07:23:34 ----A---- C:\WINDOWS\system32\fveapi.dll
2014-12-10 07:23:33 ----A---- C:\WINDOWS\system32\dhcpcore.dll
2014-12-10 07:23:31 ----A---- C:\WINDOWS\SYSWOW64\dhcpcore.dll
2014-12-10 07:23:31 ----A---- C:\WINDOWS\system32\framedynos.dll
2014-12-10 07:23:31 ----A---- C:\WINDOWS\system32\drivers\mrxsmb.sys
2014-12-10 07:23:29 ----A---- C:\WINDOWS\SYSWOW64\framedynos.dll
2014-12-10 07:23:29 ----A---- C:\WINDOWS\SYSWOW64\dhcpcore6.dll
2014-12-10 07:23:29 ----A---- C:\WINDOWS\system32\dhcpcore6.dll
2014-12-10 07:23:29 ----A---- C:\WINDOWS\system32\bdesvc.dll
2014-12-10 07:23:28 ----A---- C:\WINDOWS\system32\drivers\agilevpn.sys
2014-12-10 07:23:28 ----A---- C:\WINDOWS\system32\BFE.DLL
2014-12-10 07:23:26 ----A---- C:\WINDOWS\system32\ncobjapi.dll
2014-12-10 07:23:26 ----A---- C:\WINDOWS\system32\framedyn.dll
2014-12-10 07:23:25 ----A---- C:\WINDOWS\SYSWOW64\ncobjapi.dll
2014-12-10 07:23:23 ----A---- C:\WINDOWS\system32\drivers\vwifimp.sys
2014-12-10 07:23:22 ----A---- C:\WINDOWS\system32\Robocopy.exe
2014-12-10 07:23:21 ----A---- C:\WINDOWS\SYSWOW64\Robocopy.exe
2014-12-10 07:23:21 ----A---- C:\WINDOWS\system32\IKEEXT.DLL
2014-12-10 07:23:21 ----A---- C:\WINDOWS\system32\dhcpcsvc.dll
2014-12-10 07:23:20 ----A---- C:\WINDOWS\SYSWOW64\framedyn.dll
2014-12-10 07:23:20 ----A---- C:\WINDOWS\SYSWOW64\dhcpcsvc.dll
2014-12-10 07:23:20 ----A---- C:\WINDOWS\system32\dhcpcsvc6.dll
2014-12-10 07:23:19 ----A---- C:\WINDOWS\SYSWOW64\dhcpcsvc6.dll
2014-12-10 07:23:19 ----A---- C:\WINDOWS\system32\drivers\vwififlt.sys
2014-12-10 07:23:18 ----A---- C:\WINDOWS\system32\reseteng.dll
2014-12-10 07:23:17 ----A---- C:\WINDOWS\SYSWOW64\d3d8thk.dll
2014-12-10 07:23:17 ----A---- C:\WINDOWS\system32\srms.dat
2014-12-10 07:21:35 ----A---- C:\WINDOWS\explorer.exe
2014-12-10 07:21:34 ----A---- C:\WINDOWS\SYSWOW64\explorer.exe
2014-12-10 07:21:34 ----A---- C:\WINDOWS\system32\uDWM.dll
2014-12-10 07:21:33 ----A---- C:\WINDOWS\SYSWOW64\UXInit.dll
2014-12-10 07:21:33 ----A---- C:\WINDOWS\system32\UXInit.dll
2014-12-10 07:21:24 ----A---- C:\WINDOWS\SYSWOW64\AUDIOKSE.dll
2014-12-10 07:21:24 ----A---- C:\WINDOWS\system32\audiosrv.dll
2014-12-10 07:21:24 ----A---- C:\WINDOWS\system32\AudioSes.dll
2014-12-10 07:21:24 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll
2014-12-10 07:21:23 ----A---- C:\WINDOWS\SYSWOW64\AudioSes.dll
2014-12-10 07:21:23 ----A---- C:\WINDOWS\system32\AudioEng.dll
2014-12-10 07:21:23 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2014-12-10 07:21:23 ----A---- C:\WINDOWS\system32\audiodg.exe
2014-12-10 07:21:22 ----A---- C:\WINDOWS\SYSWOW64\AudioEng.dll
2014-12-10 07:21:22 ----A---- C:\WINDOWS\system32\EncDump.dll
2014-12-10 07:21:18 ----A---- C:\WINDOWS\system32\win32k.sys
2014-12-10 07:20:37 ----A---- C:\WINDOWS\system32\Windows.UI.Search.dll
2014-12-10 07:20:34 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Search.dll
2014-12-10 07:20:33 ----A---- C:\WINDOWS\system32\mstscax.dll
2014-12-10 07:20:32 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2014-12-10 07:20:31 ----A---- C:\WINDOWS\system32\SyncEngine.dll
2014-12-10 07:20:29 ----A---- C:\WINDOWS\system32\SearchFolder.dll
2014-12-10 07:20:27 ----A---- C:\WINDOWS\system32\KernelBase.dll
2014-12-10 07:20:26 ----A---- C:\WINDOWS\system32\propsys.dll
2014-12-10 07:20:26 ----A---- C:\WINDOWS\system32\ntdll.dll
2014-12-10 07:20:24 ----A---- C:\WINDOWS\system32\WSShared.dll
2014-12-10 07:20:23 ----A---- C:\WINDOWS\SYSWOW64\WSShared.dll
2014-12-10 07:20:23 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2014-12-10 07:20:23 ----A---- C:\WINDOWS\system32\iphlpsvc.dll
2014-12-10 07:20:22 ----A---- C:\WINDOWS\SYSWOW64\SearchFolder.dll
2014-12-10 07:20:22 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2014-12-10 07:20:22 ----A---- C:\WINDOWS\system32\Wldap32.dll
2014-12-10 07:20:21 ----A---- C:\WINDOWS\SYSWOW64\Wldap32.dll
2014-12-10 07:20:21 ----A---- C:\WINDOWS\system32\SystemEventsBrokerServer.dll
2014-12-10 07:20:20 ----A---- C:\WINDOWS\SYSWOW64\propsys.dll
2014-12-10 07:20:19 ----A---- C:\WINDOWS\system32\SkyDriveTelemetry.dll
2014-12-10 07:20:18 ----A---- C:\WINDOWS\system32\SkyDrive.exe
2014-12-10 07:20:18 ----A---- C:\WINDOWS\system32\httpprxm.dll
2014-12-10 07:20:18 ----A---- C:\WINDOWS\system32\bisrv.dll
2014-12-10 07:20:17 ----A---- C:\WINDOWS\system32\pcsvDevice.dll
2014-12-10 07:20:17 ----A---- C:\WINDOWS\system32\adhsvc.dll
2014-12-10 07:20:16 ----A---- C:\WINDOWS\SYSWOW64\SkyDriveShell.dll
2014-12-10 07:20:16 ----A---- C:\WINDOWS\system32\SkyDriveShell.dll
2014-12-10 07:20:16 ----A---- C:\WINDOWS\system32\ProximityService.dll
2014-12-10 07:20:14 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2014-12-10 07:20:14 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2014-12-10 07:19:37 ----A---- C:\WINDOWS\SYSWOW64\packager.dll
2014-12-10 07:19:37 ----A---- C:\WINDOWS\system32\packager.dll
2014-12-09 23:04:22 ----A---- C:\WINDOWS\SYSWOW64\msvcr120_clr0400.dll
2014-12-09 23:04:21 ----A---- C:\WINDOWS\system32\msvcr120_clr0400.dll
2014-12-09 23:03:44 ----D---- C:\Program Files\Elantech
2014-12-09 23:00:47 ----A---- C:\WINDOWS\system32\rdpcorets.dll
2014-12-09 23:00:46 ----A---- C:\WINDOWS\SYSWOW64\certcli.dll
2014-12-09 23:00:46 ----A---- C:\WINDOWS\system32\lsasrv.dll
2014-12-09 23:00:46 ----A---- C:\WINDOWS\system32\certcli.dll
2014-12-09 23:00:45 ----A---- C:\WINDOWS\SYSWOW64\adtschema.dll
2014-12-09 23:00:45 ----A---- C:\WINDOWS\system32\rfxvmt.dll
2014-12-09 23:00:45 ----A---- C:\WINDOWS\system32\drivers\ksecpkg.sys
2014-12-09 23:00:45 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2014-12-09 23:00:45 ----A---- C:\WINDOWS\system32\adtschema.dll
2014-12-09 23:00:44 ----A---- C:\WINDOWS\SYSWOW64\msaudite.dll
2014-12-09 23:00:44 ----A---- C:\WINDOWS\system32\msaudite.dll
2014-12-09 23:00:44 ----A---- C:\WINDOWS\system32\drivers\rdpvideominiport.sys
2014-12-09 23:00:43 ----A---- C:\WINDOWS\system32\rdpudd.dll
2014-12-09 23:00:20 ----A---- C:\WINDOWS\system32\oleaut32.dll
2014-12-09 23:00:19 ----A---- C:\WINDOWS\SYSWOW64\oleaut32.dll
2014-12-09 22:58:57 ----A---- C:\WINDOWS\system32\WUDFHost.exe
2014-12-09 22:58:57 ----A---- C:\WINDOWS\system32\drivers\WUDFRd.sys
2014-12-09 22:58:56 ----A---- C:\WINDOWS\system32\WUDFSvc.dll
2014-12-09 22:58:56 ----A---- C:\WINDOWS\system32\WUDFPlatform.dll
2014-12-09 22:58:56 ----A---- C:\WINDOWS\system32\drivers\WUDFPf.sys
2014-12-09 22:58:56 ----A---- C:\WINDOWS\system32\DaOtpCredentialProvider.dll
2014-12-09 22:58:55 ----A---- C:\WINDOWS\SYSWOW64\DaOtpCredentialProvider.dll
2014-12-09 22:58:55 ----A---- C:\WINDOWS\system32\hal.dll
2014-12-09 22:54:17 ----A---- C:\WINDOWS\system32\schedsvc.dll
2014-12-09 22:54:12 ----A---- C:\WINDOWS\system32\rastls.dll
2014-12-09 22:54:11 ----A---- C:\WINDOWS\SYSWOW64\rastls.dll
2014-12-09 22:54:10 ----A---- C:\WINDOWS\system32\WpcMon.exe
2014-12-09 22:54:10 ----A---- C:\WINDOWS\system32\Wpc.dll
2014-12-09 22:54:09 ----A---- C:\WINDOWS\SYSWOW64\Wpc.dll
2014-12-09 22:54:09 ----A---- C:\WINDOWS\system32\WpcWebSync.dll
2014-12-09 22:54:08 ----A---- C:\WINDOWS\system32\MDMAgent.exe
2014-12-08 11:16:21 ----D---- C:\Program Files\Common Files\Atheros
2014-12-08 11:08:33 ----D---- C:\Users\Mara\AppData\Roaming\Identities
2014-12-08 11:05:50 ----SHD---- C:\ProgramData\Šablony
2014-12-08 11:05:50 ----SHD---- C:\ProgramData\Plocha
2014-12-08 11:05:50 ----SHD---- C:\ProgramData\Nabídka Start
2014-12-08 11:05:50 ----SHD---- C:\ProgramData\Dokumenty
2014-12-08 11:05:50 ----SHD---- C:\ProgramData\Data aplikací
2014-12-08 11:01:56 ----A---- C:\WINDOWS\system32\emptyregdb.dat
2014-12-08 10:34:29 ----SD---- C:\Users\Mara\AppData\Roaming\Microsoft
2014-12-08 10:24:48 ----A---- C:\WINDOWS\system32\drivers\RTWAVES30.dat
2014-12-08 10:24:37 ----D---- C:\WINDOWS\SYSWOW64\RTCOM
2014-12-08 10:24:37 ----D---- C:\Program Files\Realtek
2014-12-08 10:24:22 ----D---- C:\Program Files (x86)\Intel
2014-12-08 10:22:56 ----D---- C:\WINDOWS\Prefetch
2014-12-08 10:21:40 ----SHD---- C:\Recovery
2014-12-08 10:21:30 ----DC---- C:\WINDOWS\Panther
2014-12-08 10:17:02 ----D---- C:\Program Files (x86)\Reference Assemblies
2014-12-08 10:17:02 ----D---- C:\Program Files (x86)\MSBuild
2014-12-08 10:16:59 ----D---- C:\WINDOWS\SYSWOW64\XPSViewer
2014-12-08 10:16:59 ----D---- C:\Program Files\Reference Assemblies
2014-12-08 10:16:59 ----D---- C:\Program Files\MSBuild
2014-12-08 10:15:42 ----A---- C:\WINDOWS\SYSWOW64\PresentationNative_v0300.dll
2014-12-08 10:15:42 ----A---- C:\WINDOWS\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2014-12-08 10:15:40 ----A---- C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2014-12-08 10:15:39 ----A---- C:\WINDOWS\system32\PresentationNative_v0300.dll
2014-11-28 11:23:51 ----DC---- C:\WINDOWS\system32\DRVSTORE
2014-11-28 11:23:18 ----D---- C:\Program Files (x86)\Fortinet
2014-11-28 11:19:41 ----D---- C:\ProgramData\Applications
2014-11-26 16:14:58 ----A---- C:\WINDOWS\system32\AutoUpdate.exe
======List of files/folders modified in the last 1 month======
2014-12-25 20:33:41 ----D---- C:\Program Files\trend micro
2014-12-25 20:33:23 ----D---- C:\WINDOWS\system32\wdi
2014-12-25 20:33:15 ----D---- C:\WINDOWS\system32\sru
2014-12-25 16:45:29 ----D---- C:\WINDOWS\Temp
2014-12-25 10:33:09 ----A---- C:\WINDOWS\SYSWOW64\log.txt
2014-12-25 10:32:39 ----RD---- C:\WINDOWS\System32
2014-12-25 10:29:48 ----D---- C:\WINDOWS\system32\NDF
2014-12-24 22:56:48 ----D---- C:\Windows
2014-12-24 22:56:13 ----D---- C:\AdwCleaner
2014-12-23 21:20:44 ----D---- C:\WINDOWS\Inf
2014-12-23 15:09:00 ----D---- C:\WINDOWS\system32\Tasks
2014-12-23 13:19:37 ----SHD---- C:\System Volume Information
2014-12-23 11:55:45 ----D---- C:\Users\Mara\AppData\Roaming\Spotify
2014-12-23 11:18:40 ----D---- C:\WINDOWS\Microsoft.NET
2014-12-22 21:20:48 ----D---- C:\Program Files (x86)\Spybot - Search & Destroy 2
2014-12-22 21:19:37 ----SD---- C:\ProgramData\Microsoft
2014-12-22 21:19:20 ----D---- C:\ProgramData\Spybot - Search & Destroy
2014-12-22 21:08:22 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2014-12-21 19:30:35 ----D---- C:\WINDOWS\SoftwareDistribution
2014-12-21 10:20:35 ----SHD---- C:\$Recycle.Bin
2014-12-21 09:54:33 ----D---- C:\Users\Mara\AppData\Roaming\IrfanView
2014-12-21 09:04:08 ----D---- C:\Users\Mara\AppData\Roaming\uTorrent
2014-12-21 09:03:33 ----D---- C:\WINDOWS\debug
2014-12-20 08:59:38 ----D---- C:\WINDOWS\system32\config
2014-12-19 13:35:35 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2014-12-19 11:01:17 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2014-12-19 11:01:17 ----D---- C:\Program Files (x86)\Mozilla Firefox
2014-12-18 09:54:43 ----D---- C:\WINDOWS\CbsTemp
2014-12-18 09:54:42 ----D---- C:\WINDOWS\WinSxS
2014-12-17 11:40:23 ----HD---- C:\Program Files\WindowsApps
2014-12-17 11:40:23 ----D---- C:\WINDOWS\AppReadiness
2014-12-17 10:01:32 ----D---- C:\WINDOWS\system32\DriverStore
2014-12-16 13:44:38 ----D---- C:\WINDOWS\rescache
2014-12-16 09:49:46 ----D---- C:\WINDOWS\SysWOW64
2014-12-16 08:31:01 ----D---- C:\WINDOWS\Logs
2014-12-14 14:49:06 ----D---- C:\WINDOWS\system32\drivers
2014-12-14 11:00:10 ----RD---- C:\Program Files (x86)
2014-12-12 21:48:20 ----D---- C:\WINDOWS\system32\AutoUpdateLicense
2014-12-12 21:46:28 ----D---- C:\Program Files\Windows Defender
2014-12-12 21:46:28 ----D---- C:\Program Files (x86)\Windows Defender
2014-12-12 21:31:29 ----RD---- C:\Program Files
2014-12-12 20:38:07 ----HD---- C:\ProgramData
2014-12-12 10:16:51 ----RD---- C:\WINDOWS\assembly
2014-12-11 18:24:33 ----D---- C:\WINDOWS\system32\drivers\UMDF
2014-12-11 12:52:02 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2014-12-11 12:52:02 ----D---- C:\WINDOWS\system32\cs-CZ
2014-12-11 12:51:53 ----D---- C:\WINDOWS\system32\sr-Latn-RS
2014-12-11 12:51:53 ----D---- C:\WINDOWS\system32\sr-Latn-CS
2014-12-11 10:49:21 ----D---- C:\WINDOWS\system32\catroot
2014-12-11 10:34:34 ----D---- C:\WINDOWS\system32\LogFiles
2014-12-11 10:30:38 ----RD---- C:\WINDOWS\ToastData
2014-12-11 10:30:38 ----D---- C:\WINDOWS\system32\migration
2014-12-11 10:30:33 ----SD---- C:\WINDOWS\system32\CompatTel
2014-12-11 10:30:33 ----D---- C:\WINDOWS\AppCompat
2014-12-11 10:30:19 ----D---- C:\WINDOWS\WinStore
2014-12-11 10:30:12 ----D---- C:\WINDOWS\SYSWOW64\wbem
2014-12-11 10:30:12 ----D---- C:\WINDOWS\SYSWOW64\migration
2014-12-11 10:30:11 ----D---- C:\WINDOWS\system32\wbem
2014-12-11 10:30:11 ----D---- C:\WINDOWS\system32\en-US
2014-12-11 10:30:02 ----D---- C:\Program Files (x86)\Internet Explorer
2014-12-11 10:29:59 ----D---- C:\WINDOWS\PolicyDefinitions
2014-12-11 10:29:57 ----D---- C:\Program Files\Internet Explorer
2014-12-11 10:29:53 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2014-12-11 10:29:53 ----D---- C:\WINDOWS\MediaViewer
2014-12-11 10:29:52 ----D---- C:\WINDOWS\FileManager
2014-12-11 10:29:52 ----D---- C:\WINDOWS\Camera
2014-12-11 10:29:52 ----D---- C:\WINDOWS\apppatch
2014-12-11 10:29:19 ----SHD---- C:\WINDOWS\Installer
2014-12-11 10:29:19 ----D---- C:\ProgramData\Microsoft Help
2014-12-11 10:28:09 ----D---- C:\WINDOWS\system32\MRT
2014-12-11 10:23:49 ----A---- C:\WINDOWS\system32\MRT.exe
2014-12-11 09:16:27 ----D---- C:\Program Files\Common Files
2014-12-11 09:13:24 ----D---- C:\WINDOWS\system32\restore
2014-12-10 13:40:48 ----D---- C:\WINDOWS\system32\catroot2
2014-12-08 11:31:28 ----D---- C:\WINDOWS\LiveKernelReports
2014-12-08 11:16:22 ----D---- C:\Program Files (x86)\Bluetooth Suite
2014-12-08 11:05:50 ----D---- C:\Program Files\Windows NT
2014-12-08 11:05:28 ----D---- C:\WINDOWS\Registration
2014-12-08 10:58:10 ----RSD---- C:\WINDOWS\Media
2014-12-08 10:46:46 ----D---- C:\WINDOWS\SYSWOW64\vbox
2014-12-08 10:46:46 ----D---- C:\WINDOWS\SYSWOW64\drivers
2014-12-08 10:46:46 ----D---- C:\WINDOWS\SYSWOW64\bitstreams
2014-12-08 10:46:46 ----D---- C:\WINDOWS\SYSWOW64\Atheros_L1e
2014-12-08 10:46:46 ----D---- C:\WINDOWS\system32\vbox
2014-12-08 10:46:46 ----D---- C:\WINDOWS\system32\Sysprep
2014-12-08 10:46:45 ----D---- C:\WINDOWS\sk
2014-12-08 10:46:45 ----D---- C:\WINDOWS\ShellNew
2014-12-08 10:46:45 ----D---- C:\WINDOWS\pl
2014-12-08 10:46:44 ----RSD---- C:\WINDOWS\Fonts
2014-12-08 10:46:44 ----D---- C:\WINDOWS\hu
2014-12-08 10:46:43 ----D---- C:\WINDOWS\Tasks
2014-12-08 10:46:43 ----D---- C:\WINDOWS\en-GB
2014-12-08 10:46:43 ----D---- C:\WINDOWS\cs
2014-12-08 10:46:43 ----D---- C:\ProgramData\regid.1986-12.com.adobe
2014-12-08 10:43:58 ----D---- C:\WINDOWS\SYSWOW64\WCN
2014-12-08 10:43:57 ----D---- C:\WINDOWS\SYSWOW64\sysprep
2014-12-08 10:43:57 ----D---- C:\WINDOWS\SYSWOW64\spool
2014-12-08 10:43:57 ----D---- C:\WINDOWS\SYSWOW64\SMI
2014-12-08 10:43:56 ----D---- C:\WINDOWS\SYSWOW64\MUI
2014-12-08 10:43:56 ----D---- C:\WINDOWS\SYSWOW64\migwiz
2014-12-08 10:43:56 ----D---- C:\WINDOWS\SYSWOW64\LogFiles
2014-12-08 10:43:54 ----D---- C:\WINDOWS\SYSWOW64\IME
2014-12-08 10:43:53 ----D---- C:\WINDOWS\SYSWOW64\drivers\UMDF
2014-12-08 10:43:53 ----D---- C:\WINDOWS\SYSWOW64\catroot
2014-12-08 10:43:49 ----D---- C:\WINDOWS\system32\WCN
2014-12-08 10:43:49 ----D---- C:\WINDOWS\system32\spool
2014-12-08 10:43:44 ----D---- C:\WINDOWS\system32\oobe
2014-12-08 10:43:44 ----D---- C:\WINDOWS\system32\MUI
2014-12-08 10:43:44 ----D---- C:\WINDOWS\system32\IME
2014-12-08 10:43:43 ----D---- C:\WINDOWS\system32\drivers\etc
2014-12-08 10:42:33 ----D---- C:\WINDOWS\IME
2014-12-08 10:42:33 ----D---- C:\WINDOWS\Help
2014-12-08 10:42:30 ----D---- C:\WINDOWS\DigitalLocker
2014-12-08 10:40:28 ----RD---- C:\Users
2014-12-08 10:40:27 ----D---- C:\ProgramData\PRICache
2014-12-08 10:40:18 ----SHD---- C:\Program Files (x86)\Windows Sidebar
2014-12-08 10:40:18 ----D---- C:\Program Files (x86)\Windows Media Player
2014-12-08 10:40:14 ----D---- C:\Program Files (x86)\Microsoft.NET
2014-12-08 10:40:12 ----D---- C:\Program Files (x86)\Common Files
2014-12-08 10:40:08 ----SHD---- C:\Program Files\Windows Sidebar
2014-12-08 10:40:08 ----D---- C:\Program Files\Windows Media Player
2014-12-08 10:40:07 ----D---- C:\Program Files\Common Files\microsoft shared
2014-12-08 10:36:26 ----D---- C:\WINDOWS\system32\Recovery
2014-12-08 10:36:20 ----HD---- C:\WINDOWS\system32\GroupPolicy
2014-12-05 10:02:36 ----D---- C:\WINDOWS\AUInstallAgent
2014-11-28 16:17:19 ----D---- C:\Temp
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswRvrt;avast! Revert; C:\WINDOWS\system32\drivers\aswRvrt.sys [2014-11-20 65776]
R0 aswVmm;avast! VM Monitor; C:\WINDOWS\system32\drivers\aswVmm.sys [2014-11-20 267632]
R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2012-09-14 647736]
R0 sptd;sptd; C:\WINDOWS\System32\Drivers\sptd.sys [2014-12-12 386680]
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [2014-11-20 93568]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2014-11-22 1050432]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2014-11-20 436624]
R1 ATKWMIACPIIO;ATKWMIACPI Driver; \??\C:\Program Files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys [2011-09-07 17536]
R1 vwififlt;@%SystemRoot%\System32\drivers\vwififlt.sys,-259; C:\WINDOWS\system32\DRIVERS\vwififlt.sys [2014-04-30 71680]
R2 ASMMAP64;ASMMAP64; \??\C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys [2009-07-02 15416]
R2 aswHwid;avast! HardwareID; C:\WINDOWS\system32\drivers\aswHwid.sys [2014-11-20 29208]
R2 aswMonFlt;aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [2014-11-20 83280]
R2 aswStm;aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [2014-11-20 116728]
R2 VBoxAswDrv;VBoxAsw Support Driver; \??\C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [2014-11-20 271752]
R3 AiCharger;ASUS Charger Driver; C:\WINDOWS\system32\DRIVERS\AiCharger.sys [2012-09-18 17152]
R3 AthBTPort;@oem10.inf,%BTHSUPPORT.SvcDesc%;Qualcomm Atheros Virtual Bluetooth Class; C:\WINDOWS\system32\DRIVERS\btath_flt.sys [2012-12-28 89320]
R3 athr;@athw8x.inf,%ATHR.Service.DispName%;Qualcomm Atheros Extensible Wireless LAN device driver; C:\WINDOWS\system32\DRIVERS\athw8x.sys [2013-06-18 3680256]
R3 BTATH_BUS;@oem5.inf,%BTATH_BUS.SVCDESC%;Qualcomm Atheros Bluetooth Bus; C:\WINDOWS\System32\drivers\btath_bus.sys [2012-12-28 33944]
R3 BTATH_HCRP;@oem11.inf,%BTATH_HCRP.SvcDesc%;Bluetooth HCRP Server driver; C:\WINDOWS\System32\drivers\btath_hcrp.sys [2012-12-28 179432]
R3 BTATH_LWFLT;@oem20.inf,%BTATH_LWFLT%;Bluetooth LWFLT Device; C:\WINDOWS\system32\DRIVERS\btath_lwflt.sys [2012-12-28 77464]
R3 BtFilter;BtFilter; C:\WINDOWS\system32\DRIVERS\btfilter.sys [2014-04-28 599240]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\System32\drivers\BthEnum.sys [2013-08-22 53248]
R3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Ovladač úspory energie technologie Bluetooth; C:\WINDOWS\system32\DRIVERS\BthLEEnum.sys [2014-09-24 226304]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Zařízení Bluetooth (síť PAN); C:\WINDOWS\system32\DRIVERS\bthpan.sys [2014-09-24 118272]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\Drivers\BTHUSB.sys [2014-09-24 81920]
R3 ETD;@oem35.inf,%PS2DeviceDesc%;ELAN PS/2 Port Input Device; C:\WINDOWS\system32\DRIVERS\ETD.sys [2014-12-09 381192]
R3 HIDSwitch;@oem9.inf,%ASSW.DisplayName%;ASUS Wireless Radio Control; C:\WINDOWS\System32\drivers\AsHIDSwitch64.sys [2012-05-31 21152]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2014-01-29 5363200]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2012-12-11 3258256]
R3 IntcDAud;@oem31.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2012-10-26 342528]
R3 kbfiltr;@oem8.inf,%kbfiltr.SvcDesc%;Keyboard Filter; C:\WINDOWS\System32\drivers\kbfiltr.sys [2012-08-02 14992]
R3 L1C;@netl1c63x64.inf,%L1C.Service.DispName%;NDIS Miniport – ovladač pro řadič Qualcomm Atheros AR81xx PCI-E Ethernet; C:\WINDOWS\system32\DRIVERS\L1C63x64.sys [2013-06-18 129224]
R3 MEIx64;@oem32.inf,%HECI_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\System32\drivers\HECIx64.sys [2012-07-02 62784]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Zařízení Bluetooth (RFCOMM protokol TDI); C:\WINDOWS\system32\DRIVERS\rfcomm.sys [2014-09-24 167424]
R3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;Zobrazovací zařízení USB (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys [2013-08-22 212224]
R3 vwifimp;@%SystemRoot%\System32\drivers\vwifimp.sys,-261; C:\WINDOWS\system32\DRIVERS\vwifimp.sys [2014-04-30 38912]
S3 ATP;@oem12.inf,%PS2.DeviceDesc%;ASUS Input Device; C:\WINDOWS\System32\drivers\AsusTP.sys [2013-01-16 65784]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\Drivers\BTHport.sys [2014-09-24 1200640]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2014-05-08 65432]
R2 AFBAgent;AFBAgent; C:\Windows\system32\FBAgent.exe [2013-01-07 1280768]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2014-11-20 50344]
R2 ETDService;Elan Service; C:\Program Files\Elantech\ETDService.exe [2014-12-09 100104]
R2 SDScannerService;Spybot-S&D 2 Scanner Service; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [2014-06-24 1738168]
R2 SDUpdateService;Spybot-S&D 2 Updating Service; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [2014-06-27 2088408]
R2 SDWSCService;Spybot-S&D 2 Security Center Service; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [2014-04-25 171928]
R3 ASLDRService;ASLDR Service; C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe [2013-01-15 107320]
R3 ASUS InstantOn;ASUS InstantOn Service; C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnSrv.exe [2012-04-13 277120]
R3 AtherosSvc;AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [2012-12-28 226944]
R3 ATKGFNEXSrv;ATKGFNEX Service; C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe [2011-11-21 96896]
R3 AvastVBoxSvc;AvastVBox COM Service; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [2014-11-20 4012248]
R3 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-04-20 635104]
R3 Intel(R) ME Service;Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [2012-06-27 129856]
R3 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2012-06-25 166720]
R3 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-07-17 277824]
R3 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2012-07-17 365376]
R3 WakeupService;ASUS Wake Service; C:\Program Files\ASUS\ASUS VivoBook\ASUSWakeupService.exe [2012-12-20 45488]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-01-17 116648]
S3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2014-01-29 279000]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-01-17 116648]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2014-11-26 114800]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2012-10-01 150648]
S3 SwitchBoard;SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
-----------------EOF-----------------
- Rudy
- Site Admin
- Příspěvky: 119358
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: dohledani programu na pozadi
Stáhněte OTM: http://oldtimer.geekstogo.com/OTM.exe a uložte na plochu. Spusťte a do levého okna zkopírujte:
a klikněte na >MoveIt!<. Před skenem vypněte antivir a po něm restartujte PC. Dejte nový log RSIT.:files
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
:reg
[-HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
:commands
[Purity]
[Emptytemp]
[Emptyflash]
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
-
- Návštěvník
- Příspěvky: 58
- Registrován: 07 srp 2007 11:29
Re: dohledani programu na pozadi
uz jsem zacal jasat, ale cca dve minuty po restartu kurzor zacal opet ,,problikavat,, - pc nacitat :/
Logfile of random's system information tool 1.10 (written by random/random)
Run by Mara at 2014-12-25 21:11:41
Microsoft Windows 8.1
System drive C: has 35 GB (29%) free of 122 GB
Total RAM: 3980 MB (66% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 21:11:45, on 25. 12. 2014
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17416)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\TabTip32.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
C:\Program Files (x86)\ASUS\APRP\APRP.EXE
C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe
C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
C:\Program Files (x86)\ASUS\Splendid\ColorUService.exe
C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe
C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe
C:\Program Files\trend micro\Mara.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://asus13.msn.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://asus13.msn.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O4 - HKLM\..\Run: [AdobeCS5ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [SDTray] "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"
O4 - HKCU\..\Run: [AdobeBridge] "C:\Program Files (x86)\Adobe\Adobe Bridge CS5\Bridge.exe" -stealth
O4 - HKCU\..\Run: [Spotify] "C:\Users\Mara\AppData\Roaming\Spotify\Spotify.exe" /uri spotify:autostart
O4 - HKCU\..\Run: [Spotify Web Helper] "C:\Users\Mara\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe"
O4 - HKLM\..\Policies\Explorer\Run: [BtvStack] "C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe"
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Se&nd to OneNote - res://C:\PROGRA~2\MICROS~1\Office15\ONBttnIE.dll/105
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O20 - Winlogon Notify: SDWinLogon - SDWinLogon.dll (file missing)
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: AFBAgent - Unknown owner - C:\Windows\system32\FBAgent.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: ASLDR Service (ASLDRService) - ASUSTek Computer Inc. - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
O23 - Service: ASUS InstantOn Service (ASUS InstantOn) - ASUS - C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnSrv.exe
O23 - Service: AtherosSvc - Qualcomm Atheros Commnucations - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: AvastVBox COM Service (AvastVBoxSvc) - Avast Software - C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: Elan Service (ETDService) - ELAN Microelectronics Corp. - C:\Program Files\Elantech\ETDService.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) ME Service - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Spybot-S&D 2 Scanner Service (SDScannerService) - Safer-Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe
O23 - Service: Spybot-S&D 2 Updating Service (SDUpdateService) - Safer-Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe
O23 - Service: Spybot-S&D 2 Security Center Service (SDWSCService) - Safer-Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: ASUS Wake Service (WakeupService) - ASUSTek Computer Inc. - C:\Program Files\ASUS\ASUS VivoBook\ASUSWakeupService.exe
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: ZAtheros Bt and Wlan Coex Agent - Atheros - C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
--
End of file - 10921 bytes
======Listing Processes======
wininit.exe
winlogon.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
"dwm.exe"
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k NetworkService
"C:\Windows\system32\FBAgent.exe"
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files\Elantech\ETDService.exe"
dashost.exe {f740ee1a-10f9-4a9b-abcaaa1738236cbf}
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe"
C:\WINDOWS\Explorer.EXE
"C:\Program Files\Elantech\ETDCtrl.exe"
taskeng.exe {325BE232-7DED-4862-A02A-1509204AAD3C}
taskhostex.exe
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
"C:\Program Files\Elantech\ETDCtrlHelper.exe"
"C:\Program Files (x86)\Google\Chrome\Application\39.0.2171.95\Installer\setup.exe" --on-os-upgrade --multi-install --chrome --system-level --verbose-logging
"C:\Program Files\Elantech\ETDGesture.exe"
/QuitInfo:0000000000000918;000000000000091C;
/loadhooks /Parent:0000000000000cb4
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\System32\svchost.exe -k WerSvcGroup
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
C:\WINDOWS\servicing\TrustedInstaller.exe
"C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe"
C:\WINDOWS\winsxs\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.3.9600.17477_none_fa2b7d3b9b36c7b4\TiWorker.exe -Embedding
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
ngservice.exe pipeserver
C:\WINDOWS\System32\alg.exe
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe"
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe1_ Global\UsGthrCtrlFltPipeMssGthrPipe1 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 568 572 580 65536 576
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files\AVAST Software\Avast\avastui.exe" /nogui
"C:\Program Files (x86)\Bluetooth Suite\ActivateDesktop.exe"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe"
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe"
KBFiltr.exe
"C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnSrv.exe"
"C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnWMI.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Bluetooth Suite\adminservice.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe"
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe"
"C:\Program Files (x86)\ASUS\APRP\APRP.EXE"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\WINDOWS\system32\hkcmd.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\WINDOWS\system32\igfxtray.exe"
"C:\Program Files\ASUS\ASUS VivoBook\ASUSWakeupService.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /MAXX3
"C:\Program Files\ASUS\ASUS VivoBook\VivoBook.exe" /RunWithHide
"C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe"
"C:\Program Files\ASUS\P4G\BatteryLife.exe"
C:\ProgramData\AsTouchPanel\AsPatchTouchPanel64.exe
"C:\Program Files (x86)\ASUS\Splendid\ACMON.exe"
"C:\Program Files (x86)\ASUS\Splendid\ColorUService.exe"
"C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLauncher.exe"
"C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe"
"C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe"
"C:\Users\Mara\Desktop\RSITx64.exe"
======Scheduled tasks folder======
C:\WINDOWS\tasks\AdobeAAMUpdater-1.0-Marouskovnik-Mara.job - C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\updaterstartuputility.exe -mode=scheduled
=========Mozilla firefox=========
ProfilePath - C:\Users\Mara\AppData\Roaming\Mozilla\Firefox\Profiles\xnivlz3b.default
prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "http://www.seznam.cz/"
prefs.js - "extensions.enabledItems" - "2020Player_IKEA@2020Technologies.com:5.0.93.0, {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20, {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.13"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 16.0.0.235 Plugin
"Path"=C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_235.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42]
"Description"=Intel IPT WebApi plugin
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater]
"Description"=This plugin updates Intel WebAPI component
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=10.51.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=10.51.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=16.4.3528.0331]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 16.0.0.235 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF64_16_0_0_235.dll
C:\Program Files (x86)\Mozilla Firefox\plugins\
NPOFF12.DLL
nppdf32.dll
C:\Users\Mara\AppData\Roaming\Mozilla\Firefox\Profiles\xnivlz3b.default\extensions\
2020Player_IKEA@2020Technologies.com
{bee6eb20-01e0-ebd1-da83-080329fb9a3a}
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2014-11-20 705448]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-11-20 586968]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Persistence"=C:\WINDOWS\system32\igfxpers.exe [2014-01-29 442328]
"AdobeAAMUpdater-1.0"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2010-03-06 500208]
"ETDCtrl"=C:\Program Files\Elantech\ETDCtrl.exe [2014-12-09 2893576]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"BtvStack"=C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [2012-12-28 129664]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"AdobeBridge"=C:\Program Files (x86)\Adobe\Adobe Bridge CS5\Bridge.exe [2010-03-09 11989960]
"Spotify"=C:\Users\Mara\AppData\Roaming\Spotify\Spotify.exe [2014-10-16 6553144]
"Spotify Web Helper"=C:\Users\Mara\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [2014-10-16 1514040]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUSPRP]
C:\Program Files (x86)\ASUS\APRP\APRP.EXE [2012-11-23 3187360]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUSWebStorage]
C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.10.123\AsusWSPanel.exe [2012-08-31 3423104]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DisableS3S4]
c:\windows\temp\DisableS3S464\sethigh.cmd []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HotKeysCmds]
C:\WINDOWS\system32\hkcmd.exe [2014-01-29 399832]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IgfxTray]
C:\WINDOWS\system32\igfxtray.exe [2014-01-29 171992]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\mcui_exe]
C:\Program Files\McAfee.com\Agent\mcagent.exe /runkey []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RtHDVBg]
C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2012-12-03 1256080]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RTHDVCPL]
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2012-12-07 13262480]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904]
"GrooveMonitor"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040]
"SwitchBoard"=C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
"AdobeCS5ServiceManager"=C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe [2010-02-22 406992]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2014-12-12 5227112]
"SDTray"=C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [2014-06-24 4101576]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"BtvStack"=C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [2012-12-28 129664]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2014-01-29 442880]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DisableCAD"=1
"DisableTaskMgr"=0
"SoftwareSASGeneration"=1
"ConsentPromptBehaviorAdmin"=0
"EnableLUA"=0
"PromptOnSecureDesktop"=0
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoRun"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe:*:Enabled:Spybot - Search & Destroy tray access"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe:*:Enabled:Spybot-S&D 2 Scanner Service"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe:*:Enabled:Spybot-S&D 2 Updater"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe:*:Enabled:Spybot-S&D 2 Background update service"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"VIDC.LAGS"=lagarith.dll
"VIDC.X264"=x264vfw64.dll
"VIDC.XVID"=xvidvfw.dll
"msacm.ac3acm"=ac3acm.acm
"msacm.l3codecp"=l3codecp.acm
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2014-12-25 21:08:33 ----D---- C:\WINDOWS\Minidump
2014-12-25 21:06:39 ----D---- C:\_OTM
2014-12-25 20:59:04 ----D---- C:\ProgramData\Ralink Driver
2014-12-25 20:58:54 ----D---- C:\Users\Mara\AppData\Roaming\InstallShield
2014-12-25 20:55:18 ----N---- C:\WINDOWS\difxapi.dll
2014-12-25 20:55:17 ----D---- C:\Program Files (x86)\VIA
2014-12-22 21:19:25 ----A---- C:\WINDOWS\system32\sdnclean64.exe
2014-12-16 08:23:28 ----A---- C:\WINDOWS\system32\poqexec.exe
2014-12-16 08:23:27 ----A---- C:\WINDOWS\SYSWOW64\poqexec.exe
2014-12-12 21:52:07 ----D---- C:\Program Files (x86)\Alcohol Soft
2014-12-12 21:44:05 ----A---- C:\WINDOWS\system32\drivers\sptd.sys
2014-12-12 20:38:55 ----D---- C:\Users\Mara\AppData\Roaming\DAEMON Tools Ultra
2014-12-12 20:38:07 ----D---- C:\ProgramData\DAEMON Tools Ultra
2014-12-11 10:35:35 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2014-12-11 10:30:34 ----RD---- C:\WINDOWS\BrowserChoice
2014-12-11 10:30:32 ----D---- C:\WINDOWS\system32\appraiser
2014-12-10 14:12:42 ----A---- C:\WINDOWS\SYSWOW64\DeviceSetupStatusProvider.dll
2014-12-10 14:12:42 ----A---- C:\WINDOWS\system32\DeviceSetupStatusProvider.dll
2014-12-10 14:12:26 ----A---- C:\WINDOWS\SYSWOW64\crypt32.dll
2014-12-10 14:12:26 ----A---- C:\WINDOWS\system32\crypt32.dll
2014-12-10 13:47:55 ----A---- C:\WINDOWS\system32\WindowsCodecs.dll
2014-12-10 13:47:54 ----A---- C:\WINDOWS\SYSWOW64\WindowsCodecs.dll
2014-12-10 13:47:51 ----A---- C:\WINDOWS\system32\generaltel.dll
2014-12-10 13:47:50 ----A---- C:\WINDOWS\system32\devinv.dll
2014-12-10 13:47:50 ----A---- C:\WINDOWS\system32\aepdu.dll
2014-12-10 13:47:49 ----A---- C:\WINDOWS\system32\invagent.dll
2014-12-10 13:47:49 ----A---- C:\WINDOWS\system32\appraiser.dll
2014-12-10 13:47:49 ----A---- C:\WINDOWS\system32\aepic.dll
2014-12-10 13:47:49 ----A---- C:\WINDOWS\system32\aeinv.dll
2014-12-10 13:47:43 ----A---- C:\WINDOWS\SYSWOW64\MrmCoreR.dll
2014-12-10 13:47:43 ----A---- C:\WINDOWS\system32\MrmCoreR.dll
2014-12-10 13:47:19 ----AC---- C:\WINDOWS\system32\drivers\sdbus.sys
2014-12-10 13:47:19 ----AC---- C:\WINDOWS\system32\drivers\intelpep.sys
2014-12-10 13:47:19 ----AC---- C:\WINDOWS\system32\drivers\dumpsd.sys
2014-12-10 13:47:19 ----A---- C:\WINDOWS\system32\drivers\pdc.sys
2014-12-10 13:46:40 ----A---- C:\WINDOWS\system32\actxprxy.dll
2014-12-10 13:46:39 ----A---- C:\WINDOWS\SYSWOW64\mshtmled.dll
2014-12-10 13:46:39 ----A---- C:\WINDOWS\SYSWOW64\actxprxy.dll
2014-12-10 13:46:38 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2014-12-10 13:46:38 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2014-12-10 13:46:38 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll
2014-12-10 13:46:38 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2014-12-10 13:46:36 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2014-12-10 13:46:36 ----A---- C:\WINDOWS\SYSWOW64\dxtrans.dll
2014-12-10 13:46:36 ----A---- C:\WINDOWS\system32\JavaScriptCollectionAgent.dll
2014-12-10 13:46:33 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2014-12-10 13:46:32 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2014-12-10 13:46:32 ----A---- C:\WINDOWS\system32\urlmon.dll
2014-12-10 13:46:31 ----A---- C:\WINDOWS\SYSWOW64\jscript9diag.dll
2014-12-10 13:46:31 ----A---- C:\WINDOWS\SYSWOW64\dxtmsft.dll
2014-12-10 13:46:30 ----A---- C:\WINDOWS\system32\msfeeds.dll
2014-12-10 13:46:30 ----A---- C:\WINDOWS\system32\dxtrans.dll
2014-12-10 13:46:29 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2014-12-10 13:46:25 ----A---- C:\WINDOWS\system32\iertutil.dll
2014-12-10 13:46:24 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2014-12-10 13:46:24 ----A---- C:\WINDOWS\SYSWOW64\ieapfltr.dll
2014-12-10 13:46:22 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2014-12-10 13:46:21 ----A---- C:\WINDOWS\system32\dxtmsft.dll
2014-12-10 13:46:18 ----A---- C:\WINDOWS\system32\ieframe.dll
2014-12-10 13:46:16 ----A---- C:\WINDOWS\system32\mshtmled.dll
2014-12-10 13:46:16 ----A---- C:\WINDOWS\system32\jscript9diag.dll
2014-12-10 13:46:15 ----A---- C:\WINDOWS\system32\jscript9.dll
2014-12-10 13:46:14 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2014-12-10 13:46:12 ----A---- C:\WINDOWS\system32\wininet.dll
2014-12-10 13:46:10 ----A---- C:\WINDOWS\system32\mshtml.dll
2014-12-10 13:46:06 ----A---- C:\WINDOWS\system32\ieetwproxystub.dll
2014-12-10 13:46:05 ----A---- C:\WINDOWS\system32\inetcomm.dll
2014-12-10 13:46:04 ----A---- C:\WINDOWS\SYSWOW64\inetcomm.dll
2014-12-10 13:46:03 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2014-12-10 13:46:03 ----A---- C:\WINDOWS\system32\vbscript.dll
2014-12-10 13:46:02 ----A---- C:\WINDOWS\SYSWOW64\jscript.dll
2014-12-10 13:46:02 ----A---- C:\WINDOWS\system32\jscript.dll
2014-12-10 13:46:00 ----A---- C:\WINDOWS\system32\ieui.dll
2014-12-10 13:45:59 ----A---- C:\WINDOWS\SYSWOW64\JavaScriptCollectionAgent.dll
2014-12-10 13:45:57 ----A---- C:\WINDOWS\SYSWOW64\ieui.dll
2014-12-10 13:45:56 ----A---- C:\WINDOWS\SYSWOW64\webcheck.dll
2014-12-10 13:45:56 ----A---- C:\WINDOWS\system32\webcheck.dll
2014-12-10 13:45:55 ----A---- C:\WINDOWS\SYSWOW64\hlink.dll
2014-12-10 13:45:54 ----A---- C:\WINDOWS\SYSWOW64\msrating.dll
2014-12-10 13:45:54 ----A---- C:\WINDOWS\system32\hlink.dll
2014-12-10 13:45:53 ----A---- C:\WINDOWS\system32\msrating.dll
2014-12-10 13:45:53 ----A---- C:\WINDOWS\system32\ieUnatt.exe
2014-12-10 13:45:53 ----A---- C:\WINDOWS\system32\iesysprep.dll
2014-12-10 13:45:53 ----A---- C:\WINDOWS\system32\iepeers.dll
2014-12-10 13:45:52 ----A---- C:\WINDOWS\SYSWOW64\inseng.dll
2014-12-10 13:45:52 ----A---- C:\WINDOWS\SYSWOW64\ieUnatt.exe
2014-12-10 13:45:52 ----A---- C:\WINDOWS\SYSWOW64\iesysprep.dll
2014-12-10 13:45:52 ----A---- C:\WINDOWS\SYSWOW64\iepeers.dll
2014-12-10 13:45:52 ----A---- C:\WINDOWS\system32\ieetwcollector.exe
2014-12-10 13:45:51 ----A---- C:\WINDOWS\SYSWOW64\msfeedsbs.dll
2014-12-10 13:45:51 ----A---- C:\WINDOWS\system32\msfeedsbs.dll
2014-12-10 13:45:51 ----A---- C:\WINDOWS\system32\inseng.dll
2014-12-10 13:45:50 ----A---- C:\WINDOWS\SYSWOW64\occache.dll
2014-12-10 13:45:50 ----A---- C:\WINDOWS\SYSWOW64\MshtmlDac.dll
2014-12-10 13:45:50 ----A---- C:\WINDOWS\SYSWOW64\jsproxy.dll
2014-12-10 13:45:50 ----A---- C:\WINDOWS\SYSWOW64\iexpress.exe
2014-12-10 13:45:50 ----A---- C:\WINDOWS\SYSWOW64\IEAdvpack.dll
2014-12-10 13:45:50 ----A---- C:\WINDOWS\system32\MshtmlDac.dll
2014-12-10 13:45:50 ----A---- C:\WINDOWS\system32\jsproxy.dll
2014-12-10 13:45:49 ----A---- C:\WINDOWS\SYSWOW64\pngfilt.dll
2014-12-10 13:45:49 ----A---- C:\WINDOWS\SYSWOW64\licmgr10.dll
2014-12-10 13:45:49 ----A---- C:\WINDOWS\SYSWOW64\imgutil.dll
2014-12-10 13:45:49 ----A---- C:\WINDOWS\SYSWOW64\ieetwproxystub.dll
2014-12-10 13:45:49 ----A---- C:\WINDOWS\system32\pngfilt.dll
2014-12-10 13:45:49 ----A---- C:\WINDOWS\system32\occache.dll
2014-12-10 13:45:49 ----A---- C:\WINDOWS\system32\licmgr10.dll
2014-12-10 13:45:49 ----A---- C:\WINDOWS\system32\imgutil.dll
2014-12-10 13:45:48 ----A---- C:\WINDOWS\SYSWOW64\wextract.exe
2014-12-10 13:45:48 ----A---- C:\WINDOWS\SYSWOW64\url.dll
2014-12-10 13:45:48 ----A---- C:\WINDOWS\SYSWOW64\iesetup.dll
2014-12-10 13:45:48 ----A---- C:\WINDOWS\SYSWOW64\iernonce.dll
2014-12-10 13:45:48 ----A---- C:\WINDOWS\system32\url.dll
2014-12-10 13:45:48 ----A---- C:\WINDOWS\system32\iernonce.dll
2014-12-10 13:45:47 ----A---- C:\WINDOWS\system32\wextract.exe
2014-12-10 13:45:47 ----A---- C:\WINDOWS\system32\IEAdvpack.dll
2014-12-10 13:45:46 ----A---- C:\WINDOWS\SYSWOW64\msfeedssync.exe
2014-12-10 13:45:46 ----A---- C:\WINDOWS\system32\iexpress.exe
2014-12-10 13:45:46 ----A---- C:\WINDOWS\system32\iesetup.dll
2014-12-10 13:45:45 ----A---- C:\WINDOWS\SYSWOW64\mshta.exe
2014-12-10 13:45:45 ----A---- C:\WINDOWS\system32\mshta.exe
2014-12-10 13:45:45 ----A---- C:\WINDOWS\system32\msfeedssync.exe
2014-12-10 09:45:07 ----A---- C:\WINDOWS\SYSWOW64\msi.dll
2014-12-10 09:45:07 ----A---- C:\WINDOWS\system32\msi.dll
2014-12-10 09:45:06 ----A---- C:\WINDOWS\system32\authui.dll
2014-12-10 09:45:05 ----A---- C:\WINDOWS\SYSWOW64\msihnd.dll
2014-12-10 09:45:05 ----A---- C:\WINDOWS\SYSWOW64\authui.dll
2014-12-10 09:45:05 ----A---- C:\WINDOWS\system32\msihnd.dll
2014-12-10 09:45:04 ----A---- C:\WINDOWS\system32\consent.exe
2014-12-10 09:45:04 ----A---- C:\WINDOWS\system32\appinfo.dll
2014-12-10 09:44:56 ----A---- C:\WINDOWS\system32\user32.dll
2014-12-10 09:44:55 ----A---- C:\WINDOWS\SYSWOW64\user32.dll
2014-12-10 09:44:54 ----A---- C:\WINDOWS\system32\drivers\WdNisDrv.sys
2014-12-10 09:44:54 ----A---- C:\WINDOWS\system32\drivers\WdFilter.sys
2014-12-10 09:44:53 ----A---- C:\WINDOWS\system32\drivers\WdBoot.sys
2014-12-10 09:44:50 ----A---- C:\WINDOWS\SYSWOW64\winshfhc.dll
2014-12-10 09:44:50 ----A---- C:\WINDOWS\system32\winshfhc.dll
2014-12-10 09:43:51 ----A---- C:\WINDOWS\system32\lockscreencn.dll
2014-12-10 07:30:55 ----A---- C:\WINDOWS\system32\drivers\msgpioclx.sys
2014-12-10 07:30:36 ----A---- C:\WINDOWS\SYSWOW64\schannel.dll
2014-12-10 07:30:36 ----A---- C:\WINDOWS\system32\schannel.dll
2014-12-10 07:30:35 ----A---- C:\WINDOWS\system32\ncryptsslp.dll
2014-12-10 07:30:35 ----A---- C:\WINDOWS\system32\dpapisrv.dll
2014-12-10 07:30:34 ----A---- C:\WINDOWS\SYSWOW64\ncryptsslp.dll
2014-12-10 07:30:05 ----A---- C:\WINDOWS\system32\kerberos.dll
2014-12-10 07:30:04 ----A---- C:\WINDOWS\SYSWOW64\pku2u.dll
2014-12-10 07:30:04 ----A---- C:\WINDOWS\SYSWOW64\kerberos.dll
2014-12-10 07:30:04 ----A---- C:\WINDOWS\system32\pku2u.dll
2014-12-10 07:29:55 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2014-12-10 07:29:54 ----A---- C:\WINDOWS\system32\twinui.dll
2014-12-10 07:29:47 ----A---- C:\WINDOWS\system32\shell32.dll
2014-12-10 07:29:43 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2014-12-10 07:29:41 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2014-12-10 07:29:35 ----A---- C:\WINDOWS\system32\drivers\tcpip.sys
2014-12-10 07:29:34 ----A---- C:\WINDOWS\system32\SettingsHandlers.dll
2014-12-10 07:29:34 ----A---- C:\WINDOWS\system32\localspl.dll
2014-12-10 07:29:33 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2014-12-10 07:29:32 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2014-12-10 07:29:28 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2014-12-10 07:29:28 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2014-12-10 07:29:27 ----A---- C:\WINDOWS\system32\win32spl.dll
2014-12-10 07:29:26 ----A---- C:\WINDOWS\system32\drivers\netio.sys
2014-12-10 07:29:25 ----A---- C:\WINDOWS\SYSWOW64\WsmSvc.dll
2014-12-10 07:29:25 ----A---- C:\WINDOWS\system32\WsmSvc.dll
2014-12-10 07:29:25 ----A---- C:\WINDOWS\system32\puiobj.dll
2014-12-10 07:29:24 ----A---- C:\WINDOWS\SYSWOW64\puiobj.dll
2014-12-10 07:29:22 ----A---- C:\WINDOWS\system32\drivers\FWPKCLNT.SYS
2014-12-10 07:29:21 ----AC---- C:\WINDOWS\system32\drivers\USBSTOR.SYS
2014-12-10 07:29:21 ----A---- C:\WINDOWS\system32\winbici.dll
2014-12-10 07:29:20 ----A---- C:\WINDOWS\system32\BulkOperationHost.exe
2014-12-10 07:29:18 ----A---- C:\WINDOWS\SYSWOW64\untfs.dll
2014-12-10 07:29:18 ----A---- C:\WINDOWS\system32\untfs.dll
2014-12-10 07:29:15 ----A---- C:\WINDOWS\system32\FXSCOMEX.dll
2014-12-10 07:29:14 ----A---- C:\WINDOWS\system32\FXSAPI.dll
2014-12-10 07:29:13 ----A---- C:\WINDOWS\SYSWOW64\FXSAPI.dll
2014-12-10 07:26:23 ----A---- C:\WINDOWS\SYSWOW64\msxml3.dll
2014-12-10 07:26:22 ----A---- C:\WINDOWS\system32\msxml3.dll
2014-12-10 07:26:14 ----A---- C:\WINDOWS\SYSWOW64\TsWpfWrp.exe
2014-12-10 07:26:14 ----A---- C:\WINDOWS\system32\TsWpfWrp.exe
2014-12-10 07:23:40 ----A---- C:\WINDOWS\SYSWOW64\d3d9.dll
2014-12-10 07:23:40 ----A---- C:\WINDOWS\system32\d3d9.dll
2014-12-10 07:23:35 ----A---- C:\WINDOWS\system32\vpnike.dll
2014-12-10 07:23:34 ----A---- C:\WINDOWS\system32\fveapi.dll
2014-12-10 07:23:33 ----A---- C:\WINDOWS\system32\dhcpcore.dll
2014-12-10 07:23:31 ----A---- C:\WINDOWS\SYSWOW64\dhcpcore.dll
2014-12-10 07:23:31 ----A---- C:\WINDOWS\system32\framedynos.dll
2014-12-10 07:23:31 ----A---- C:\WINDOWS\system32\drivers\mrxsmb.sys
2014-12-10 07:23:29 ----A---- C:\WINDOWS\SYSWOW64\framedynos.dll
2014-12-10 07:23:29 ----A---- C:\WINDOWS\SYSWOW64\dhcpcore6.dll
2014-12-10 07:23:29 ----A---- C:\WINDOWS\system32\dhcpcore6.dll
2014-12-10 07:23:29 ----A---- C:\WINDOWS\system32\bdesvc.dll
2014-12-10 07:23:28 ----A---- C:\WINDOWS\system32\drivers\agilevpn.sys
2014-12-10 07:23:28 ----A---- C:\WINDOWS\system32\BFE.DLL
2014-12-10 07:23:26 ----A---- C:\WINDOWS\system32\ncobjapi.dll
2014-12-10 07:23:26 ----A---- C:\WINDOWS\system32\framedyn.dll
2014-12-10 07:23:25 ----A---- C:\WINDOWS\SYSWOW64\ncobjapi.dll
2014-12-10 07:23:23 ----A---- C:\WINDOWS\system32\drivers\vwifimp.sys
2014-12-10 07:23:22 ----A---- C:\WINDOWS\system32\Robocopy.exe
2014-12-10 07:23:21 ----A---- C:\WINDOWS\SYSWOW64\Robocopy.exe
2014-12-10 07:23:21 ----A---- C:\WINDOWS\system32\IKEEXT.DLL
2014-12-10 07:23:21 ----A---- C:\WINDOWS\system32\dhcpcsvc.dll
2014-12-10 07:23:20 ----A---- C:\WINDOWS\SYSWOW64\framedyn.dll
2014-12-10 07:23:20 ----A---- C:\WINDOWS\SYSWOW64\dhcpcsvc.dll
2014-12-10 07:23:20 ----A---- C:\WINDOWS\system32\dhcpcsvc6.dll
2014-12-10 07:23:19 ----A---- C:\WINDOWS\SYSWOW64\dhcpcsvc6.dll
2014-12-10 07:23:19 ----A---- C:\WINDOWS\system32\drivers\vwififlt.sys
2014-12-10 07:23:18 ----A---- C:\WINDOWS\system32\reseteng.dll
2014-12-10 07:23:17 ----A---- C:\WINDOWS\SYSWOW64\d3d8thk.dll
2014-12-10 07:23:17 ----A---- C:\WINDOWS\system32\srms.dat
2014-12-10 07:21:35 ----A---- C:\WINDOWS\explorer.exe
2014-12-10 07:21:34 ----A---- C:\WINDOWS\SYSWOW64\explorer.exe
2014-12-10 07:21:34 ----A---- C:\WINDOWS\system32\uDWM.dll
2014-12-10 07:21:33 ----A---- C:\WINDOWS\SYSWOW64\UXInit.dll
2014-12-10 07:21:33 ----A---- C:\WINDOWS\system32\UXInit.dll
2014-12-10 07:21:24 ----A---- C:\WINDOWS\SYSWOW64\AUDIOKSE.dll
2014-12-10 07:21:24 ----A---- C:\WINDOWS\system32\audiosrv.dll
2014-12-10 07:21:24 ----A---- C:\WINDOWS\system32\AudioSes.dll
2014-12-10 07:21:24 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll
2014-12-10 07:21:23 ----A---- C:\WINDOWS\SYSWOW64\AudioSes.dll
2014-12-10 07:21:23 ----A---- C:\WINDOWS\system32\AudioEng.dll
2014-12-10 07:21:23 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2014-12-10 07:21:23 ----A---- C:\WINDOWS\system32\audiodg.exe
2014-12-10 07:21:22 ----A---- C:\WINDOWS\SYSWOW64\AudioEng.dll
2014-12-10 07:21:22 ----A---- C:\WINDOWS\system32\EncDump.dll
2014-12-10 07:21:18 ----A---- C:\WINDOWS\system32\win32k.sys
2014-12-10 07:20:37 ----A---- C:\WINDOWS\system32\Windows.UI.Search.dll
2014-12-10 07:20:34 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Search.dll
2014-12-10 07:20:33 ----A---- C:\WINDOWS\system32\mstscax.dll
2014-12-10 07:20:32 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2014-12-10 07:20:31 ----A---- C:\WINDOWS\system32\SyncEngine.dll
2014-12-10 07:20:29 ----A---- C:\WINDOWS\system32\SearchFolder.dll
2014-12-10 07:20:27 ----A---- C:\WINDOWS\system32\KernelBase.dll
2014-12-10 07:20:26 ----A---- C:\WINDOWS\system32\propsys.dll
2014-12-10 07:20:26 ----A---- C:\WINDOWS\system32\ntdll.dll
2014-12-10 07:20:24 ----A---- C:\WINDOWS\system32\WSShared.dll
2014-12-10 07:20:23 ----A---- C:\WINDOWS\SYSWOW64\WSShared.dll
2014-12-10 07:20:23 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2014-12-10 07:20:23 ----A---- C:\WINDOWS\system32\iphlpsvc.dll
2014-12-10 07:20:22 ----A---- C:\WINDOWS\SYSWOW64\SearchFolder.dll
2014-12-10 07:20:22 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2014-12-10 07:20:22 ----A---- C:\WINDOWS\system32\Wldap32.dll
2014-12-10 07:20:21 ----A---- C:\WINDOWS\SYSWOW64\Wldap32.dll
2014-12-10 07:20:21 ----A---- C:\WINDOWS\system32\SystemEventsBrokerServer.dll
2014-12-10 07:20:20 ----A---- C:\WINDOWS\SYSWOW64\propsys.dll
2014-12-10 07:20:19 ----A---- C:\WINDOWS\system32\SkyDriveTelemetry.dll
2014-12-10 07:20:18 ----A---- C:\WINDOWS\system32\SkyDrive.exe
2014-12-10 07:20:18 ----A---- C:\WINDOWS\system32\httpprxm.dll
2014-12-10 07:20:18 ----A---- C:\WINDOWS\system32\bisrv.dll
2014-12-10 07:20:17 ----A---- C:\WINDOWS\system32\pcsvDevice.dll
2014-12-10 07:20:17 ----A---- C:\WINDOWS\system32\adhsvc.dll
2014-12-10 07:20:16 ----A---- C:\WINDOWS\SYSWOW64\SkyDriveShell.dll
2014-12-10 07:20:16 ----A---- C:\WINDOWS\system32\SkyDriveShell.dll
2014-12-10 07:20:16 ----A---- C:\WINDOWS\system32\ProximityService.dll
2014-12-10 07:20:14 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2014-12-10 07:20:14 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2014-12-10 07:19:37 ----A---- C:\WINDOWS\SYSWOW64\packager.dll
2014-12-10 07:19:37 ----A---- C:\WINDOWS\system32\packager.dll
2014-12-09 23:04:22 ----A---- C:\WINDOWS\SYSWOW64\msvcr120_clr0400.dll
2014-12-09 23:04:21 ----A---- C:\WINDOWS\system32\msvcr120_clr0400.dll
2014-12-09 23:03:44 ----D---- C:\Program Files\Elantech
2014-12-09 23:00:47 ----A---- C:\WINDOWS\system32\rdpcorets.dll
2014-12-09 23:00:46 ----A---- C:\WINDOWS\SYSWOW64\certcli.dll
2014-12-09 23:00:46 ----A---- C:\WINDOWS\system32\lsasrv.dll
2014-12-09 23:00:46 ----A---- C:\WINDOWS\system32\certcli.dll
2014-12-09 23:00:45 ----A---- C:\WINDOWS\SYSWOW64\adtschema.dll
2014-12-09 23:00:45 ----A---- C:\WINDOWS\system32\rfxvmt.dll
2014-12-09 23:00:45 ----A---- C:\WINDOWS\system32\drivers\ksecpkg.sys
2014-12-09 23:00:45 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2014-12-09 23:00:45 ----A---- C:\WINDOWS\system32\adtschema.dll
2014-12-09 23:00:44 ----A---- C:\WINDOWS\SYSWOW64\msaudite.dll
2014-12-09 23:00:44 ----A---- C:\WINDOWS\system32\msaudite.dll
2014-12-09 23:00:44 ----A---- C:\WINDOWS\system32\drivers\rdpvideominiport.sys
2014-12-09 23:00:43 ----A---- C:\WINDOWS\system32\rdpudd.dll
2014-12-09 23:00:20 ----A---- C:\WINDOWS\system32\oleaut32.dll
2014-12-09 23:00:19 ----A---- C:\WINDOWS\SYSWOW64\oleaut32.dll
2014-12-09 22:58:57 ----A---- C:\WINDOWS\system32\WUDFHost.exe
2014-12-09 22:58:57 ----A---- C:\WINDOWS\system32\drivers\WUDFRd.sys
2014-12-09 22:58:56 ----A---- C:\WINDOWS\system32\WUDFSvc.dll
2014-12-09 22:58:56 ----A---- C:\WINDOWS\system32\WUDFPlatform.dll
2014-12-09 22:58:56 ----A---- C:\WINDOWS\system32\drivers\WUDFPf.sys
2014-12-09 22:58:56 ----A---- C:\WINDOWS\system32\DaOtpCredentialProvider.dll
2014-12-09 22:58:55 ----A---- C:\WINDOWS\SYSWOW64\DaOtpCredentialProvider.dll
2014-12-09 22:58:55 ----A---- C:\WINDOWS\system32\hal.dll
2014-12-09 22:54:17 ----A---- C:\WINDOWS\system32\schedsvc.dll
2014-12-09 22:54:12 ----A---- C:\WINDOWS\system32\rastls.dll
2014-12-09 22:54:11 ----A---- C:\WINDOWS\SYSWOW64\rastls.dll
2014-12-09 22:54:10 ----A---- C:\WINDOWS\system32\WpcMon.exe
2014-12-09 22:54:10 ----A---- C:\WINDOWS\system32\Wpc.dll
2014-12-09 22:54:09 ----A---- C:\WINDOWS\SYSWOW64\Wpc.dll
2014-12-09 22:54:09 ----A---- C:\WINDOWS\system32\WpcWebSync.dll
2014-12-09 22:54:08 ----A---- C:\WINDOWS\system32\MDMAgent.exe
2014-12-08 11:16:21 ----D---- C:\Program Files\Common Files\Atheros
2014-12-08 11:08:33 ----D---- C:\Users\Mara\AppData\Roaming\Identities
2014-12-08 11:05:50 ----SHD---- C:\ProgramData\Šablony
2014-12-08 11:05:50 ----SHD---- C:\ProgramData\Plocha
2014-12-08 11:05:50 ----SHD---- C:\ProgramData\Nabídka Start
2014-12-08 11:05:50 ----SHD---- C:\ProgramData\Dokumenty
2014-12-08 11:05:50 ----SHD---- C:\ProgramData\Data aplikací
2014-12-08 11:01:56 ----A---- C:\WINDOWS\system32\emptyregdb.dat
2014-12-08 10:34:29 ----SD---- C:\Users\Mara\AppData\Roaming\Microsoft
2014-12-08 10:24:48 ----A---- C:\WINDOWS\system32\drivers\RTWAVES30.dat
2014-12-08 10:24:37 ----D---- C:\WINDOWS\SYSWOW64\RTCOM
2014-12-08 10:24:37 ----D---- C:\Program Files\Realtek
2014-12-08 10:24:22 ----D---- C:\Program Files (x86)\Intel
2014-12-08 10:22:56 ----D---- C:\WINDOWS\Prefetch
2014-12-08 10:21:40 ----SHD---- C:\Recovery
2014-12-08 10:21:30 ----DC---- C:\WINDOWS\Panther
2014-12-08 10:17:02 ----D---- C:\Program Files (x86)\Reference Assemblies
2014-12-08 10:17:02 ----D---- C:\Program Files (x86)\MSBuild
2014-12-08 10:16:59 ----D---- C:\WINDOWS\SYSWOW64\XPSViewer
2014-12-08 10:16:59 ----D---- C:\Program Files\Reference Assemblies
2014-12-08 10:16:59 ----D---- C:\Program Files\MSBuild
2014-12-08 10:15:42 ----A---- C:\WINDOWS\SYSWOW64\PresentationNative_v0300.dll
2014-12-08 10:15:42 ----A---- C:\WINDOWS\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2014-12-08 10:15:40 ----A---- C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2014-12-08 10:15:39 ----A---- C:\WINDOWS\system32\PresentationNative_v0300.dll
2014-11-28 11:23:51 ----DC---- C:\WINDOWS\system32\DRVSTORE
2014-11-28 11:23:18 ----D---- C:\Program Files (x86)\Fortinet
2014-11-28 11:19:41 ----D---- C:\ProgramData\Applications
2014-11-26 16:14:58 ----A---- C:\WINDOWS\system32\AutoUpdate.exe
======List of files/folders modified in the last 1 month======
2014-12-25 21:11:44 ----D---- C:\Program Files\trend micro
2014-12-25 21:10:38 ----A---- C:\WINDOWS\SYSWOW64\log.txt
2014-12-25 21:10:02 ----D---- C:\WINDOWS\Temp
2014-12-25 21:08:33 ----D---- C:\Windows
2014-12-25 21:06:40 ----D---- C:\WINDOWS\Tasks
2014-12-25 21:03:22 ----RD---- C:\WINDOWS\System32
2014-12-25 21:00:29 ----D---- C:\WINDOWS\system32\catroot
2014-12-25 21:00:03 ----D---- C:\WINDOWS\system32\sru
2014-12-25 20:59:57 ----SHD---- C:\WINDOWS\Installer
2014-12-25 20:59:56 ----D---- C:\Program Files (x86)\ASUS
2014-12-25 20:59:25 ----D---- C:\WINDOWS\system32\DriverStore
2014-12-25 20:59:25 ----D---- C:\WINDOWS\Inf
2014-12-25 20:59:04 ----HD---- C:\ProgramData
2014-12-25 20:59:03 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2014-12-25 20:55:17 ----RD---- C:\Program Files (x86)
2014-12-25 20:55:08 ----SHD---- C:\System Volume Information
2014-12-25 20:33:23 ----D---- C:\WINDOWS\system32\wdi
2014-12-25 10:29:48 ----D---- C:\WINDOWS\system32\NDF
2014-12-24 22:56:13 ----D---- C:\AdwCleaner
2014-12-23 15:09:00 ----D---- C:\WINDOWS\system32\Tasks
2014-12-23 11:55:45 ----D---- C:\Users\Mara\AppData\Roaming\Spotify
2014-12-23 11:18:40 ----D---- C:\WINDOWS\Microsoft.NET
2014-12-22 21:20:48 ----D---- C:\Program Files (x86)\Spybot - Search & Destroy 2
2014-12-22 21:19:37 ----SD---- C:\ProgramData\Microsoft
2014-12-22 21:19:20 ----D---- C:\ProgramData\Spybot - Search & Destroy
2014-12-21 19:30:35 ----D---- C:\WINDOWS\SoftwareDistribution
2014-12-21 10:20:35 ----SHD---- C:\$Recycle.Bin
2014-12-21 09:54:33 ----D---- C:\Users\Mara\AppData\Roaming\IrfanView
2014-12-21 09:04:08 ----D---- C:\Users\Mara\AppData\Roaming\uTorrent
2014-12-21 09:03:33 ----D---- C:\WINDOWS\debug
2014-12-20 08:59:38 ----D---- C:\WINDOWS\system32\config
2014-12-19 13:35:35 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2014-12-19 11:01:17 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2014-12-19 11:01:17 ----D---- C:\Program Files (x86)\Mozilla Firefox
2014-12-18 09:54:43 ----D---- C:\WINDOWS\CbsTemp
2014-12-18 09:54:42 ----D---- C:\WINDOWS\WinSxS
2014-12-17 11:40:23 ----HD---- C:\Program Files\WindowsApps
2014-12-17 11:40:23 ----D---- C:\WINDOWS\AppReadiness
2014-12-16 13:44:38 ----D---- C:\WINDOWS\rescache
2014-12-16 09:49:46 ----D---- C:\WINDOWS\SysWOW64
2014-12-16 08:31:01 ----D---- C:\WINDOWS\Logs
2014-12-14 14:49:06 ----D---- C:\WINDOWS\system32\drivers
2014-12-12 21:48:20 ----D---- C:\WINDOWS\system32\AutoUpdateLicense
2014-12-12 21:46:28 ----D---- C:\Program Files\Windows Defender
2014-12-12 21:46:28 ----D---- C:\Program Files (x86)\Windows Defender
2014-12-12 21:31:29 ----RD---- C:\Program Files
2014-12-12 10:16:51 ----RD---- C:\WINDOWS\assembly
2014-12-11 18:24:33 ----D---- C:\WINDOWS\system32\drivers\UMDF
2014-12-11 12:52:02 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2014-12-11 12:52:02 ----D---- C:\WINDOWS\system32\cs-CZ
2014-12-11 12:51:53 ----D---- C:\WINDOWS\system32\sr-Latn-RS
2014-12-11 12:51:53 ----D---- C:\WINDOWS\system32\sr-Latn-CS
2014-12-11 10:34:34 ----D---- C:\WINDOWS\system32\LogFiles
2014-12-11 10:30:38 ----RD---- C:\WINDOWS\ToastData
2014-12-11 10:30:38 ----D---- C:\WINDOWS\system32\migration
2014-12-11 10:30:33 ----SD---- C:\WINDOWS\system32\CompatTel
2014-12-11 10:30:33 ----D---- C:\WINDOWS\AppCompat
2014-12-11 10:30:19 ----D---- C:\WINDOWS\WinStore
2014-12-11 10:30:12 ----D---- C:\WINDOWS\SYSWOW64\wbem
2014-12-11 10:30:12 ----D---- C:\WINDOWS\SYSWOW64\migration
2014-12-11 10:30:11 ----D---- C:\WINDOWS\system32\wbem
2014-12-11 10:30:11 ----D---- C:\WINDOWS\system32\en-US
2014-12-11 10:30:02 ----D---- C:\Program Files (x86)\Internet Explorer
2014-12-11 10:29:59 ----D---- C:\WINDOWS\PolicyDefinitions
2014-12-11 10:29:57 ----D---- C:\Program Files\Internet Explorer
2014-12-11 10:29:53 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2014-12-11 10:29:53 ----D---- C:\WINDOWS\MediaViewer
2014-12-11 10:29:52 ----D---- C:\WINDOWS\FileManager
2014-12-11 10:29:52 ----D---- C:\WINDOWS\Camera
2014-12-11 10:29:52 ----D---- C:\WINDOWS\apppatch
2014-12-11 10:29:19 ----D---- C:\ProgramData\Microsoft Help
2014-12-11 10:28:09 ----D---- C:\WINDOWS\system32\MRT
2014-12-11 10:23:49 ----A---- C:\WINDOWS\system32\MRT.exe
2014-12-11 09:16:27 ----D---- C:\Program Files\Common Files
2014-12-11 09:13:24 ----D---- C:\WINDOWS\system32\restore
2014-12-10 13:40:48 ----D---- C:\WINDOWS\system32\catroot2
2014-12-08 11:31:28 ----D---- C:\WINDOWS\LiveKernelReports
2014-12-08 11:16:22 ----D---- C:\Program Files (x86)\Bluetooth Suite
2014-12-08 11:05:50 ----D---- C:\Program Files\Windows NT
2014-12-08 11:05:28 ----D---- C:\WINDOWS\Registration
2014-12-08 10:58:10 ----RSD---- C:\WINDOWS\Media
2014-12-08 10:46:46 ----D---- C:\WINDOWS\SYSWOW64\vbox
2014-12-08 10:46:46 ----D---- C:\WINDOWS\SYSWOW64\drivers
2014-12-08 10:46:46 ----D---- C:\WINDOWS\SYSWOW64\bitstreams
2014-12-08 10:46:46 ----D---- C:\WINDOWS\SYSWOW64\Atheros_L1e
2014-12-08 10:46:46 ----D---- C:\WINDOWS\system32\vbox
2014-12-08 10:46:46 ----D---- C:\WINDOWS\system32\Sysprep
2014-12-08 10:46:45 ----D---- C:\WINDOWS\sk
2014-12-08 10:46:45 ----D---- C:\WINDOWS\ShellNew
2014-12-08 10:46:45 ----D---- C:\WINDOWS\pl
2014-12-08 10:46:44 ----RSD---- C:\WINDOWS\Fonts
2014-12-08 10:46:44 ----D---- C:\WINDOWS\hu
2014-12-08 10:46:43 ----D---- C:\WINDOWS\en-GB
2014-12-08 10:46:43 ----D---- C:\WINDOWS\cs
2014-12-08 10:46:43 ----D---- C:\ProgramData\regid.1986-12.com.adobe
2014-12-08 10:43:58 ----D---- C:\WINDOWS\SYSWOW64\WCN
2014-12-08 10:43:57 ----D---- C:\WINDOWS\SYSWOW64\sysprep
2014-12-08 10:43:57 ----D---- C:\WINDOWS\SYSWOW64\spool
2014-12-08 10:43:57 ----D---- C:\WINDOWS\SYSWOW64\SMI
2014-12-08 10:43:56 ----D---- C:\WINDOWS\SYSWOW64\MUI
2014-12-08 10:43:56 ----D---- C:\WINDOWS\SYSWOW64\migwiz
2014-12-08 10:43:56 ----D---- C:\WINDOWS\SYSWOW64\LogFiles
2014-12-08 10:43:54 ----D---- C:\WINDOWS\SYSWOW64\IME
2014-12-08 10:43:53 ----D---- C:\WINDOWS\SYSWOW64\drivers\UMDF
2014-12-08 10:43:53 ----D---- C:\WINDOWS\SYSWOW64\catroot
2014-12-08 10:43:49 ----D---- C:\WINDOWS\system32\WCN
2014-12-08 10:43:49 ----D---- C:\WINDOWS\system32\spool
2014-12-08 10:43:44 ----D---- C:\WINDOWS\system32\oobe
2014-12-08 10:43:44 ----D---- C:\WINDOWS\system32\MUI
2014-12-08 10:43:44 ----D---- C:\WINDOWS\system32\IME
2014-12-08 10:43:43 ----D---- C:\WINDOWS\system32\drivers\etc
2014-12-08 10:42:33 ----D---- C:\WINDOWS\IME
2014-12-08 10:42:33 ----D---- C:\WINDOWS\Help
2014-12-08 10:42:30 ----D---- C:\WINDOWS\DigitalLocker
2014-12-08 10:40:28 ----RD---- C:\Users
2014-12-08 10:40:27 ----D---- C:\ProgramData\PRICache
2014-12-08 10:40:18 ----SHD---- C:\Program Files (x86)\Windows Sidebar
2014-12-08 10:40:18 ----D---- C:\Program Files (x86)\Windows Media Player
2014-12-08 10:40:14 ----D---- C:\Program Files (x86)\Microsoft.NET
2014-12-08 10:40:12 ----D---- C:\Program Files (x86)\Common Files
2014-12-08 10:40:08 ----SHD---- C:\Program Files\Windows Sidebar
2014-12-08 10:40:08 ----D---- C:\Program Files\Windows Media Player
2014-12-08 10:40:07 ----D---- C:\Program Files\Common Files\microsoft shared
2014-12-08 10:36:26 ----D---- C:\WINDOWS\system32\Recovery
2014-12-08 10:36:20 ----HD---- C:\WINDOWS\system32\GroupPolicy
2014-12-05 10:02:36 ----D---- C:\WINDOWS\AUInstallAgent
2014-11-28 16:17:19 ----D---- C:\Temp
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswRvrt;avast! Revert; C:\WINDOWS\system32\drivers\aswRvrt.sys [2014-11-20 65776]
R0 aswVmm;avast! VM Monitor; C:\WINDOWS\system32\drivers\aswVmm.sys [2014-11-20 267632]
R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2012-09-14 647736]
R0 sptd;sptd; C:\WINDOWS\System32\Drivers\sptd.sys [2014-12-12 386680]
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [2014-11-20 93568]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2014-11-22 1050432]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2014-11-20 436624]
R1 ATKWMIACPIIO;ATKWMIACPI Driver; \??\C:\Program Files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys [2011-09-07 17536]
R1 vwififlt;@%SystemRoot%\System32\drivers\vwififlt.sys,-259; C:\WINDOWS\system32\DRIVERS\vwififlt.sys [2014-04-30 71680]
R2 ASMMAP64;ASMMAP64; \??\C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys [2009-07-02 15416]
R2 aswHwid;avast! HardwareID; C:\WINDOWS\system32\drivers\aswHwid.sys [2014-11-20 29208]
R2 aswMonFlt;aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [2014-11-20 83280]
R2 VBoxAswDrv;VBoxAsw Support Driver; \??\C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [2014-11-20 271752]
R3 AiCharger;ASUS Charger Driver; C:\WINDOWS\system32\DRIVERS\AiCharger.sys [2012-09-18 17152]
R3 AthBTPort;@oem10.inf,%BTHSUPPORT.SvcDesc%;Qualcomm Atheros Virtual Bluetooth Class; C:\WINDOWS\system32\DRIVERS\btath_flt.sys [2012-12-28 89320]
R3 athr;@athw8x.inf,%ATHR.Service.DispName%;Qualcomm Atheros Extensible Wireless LAN device driver; C:\WINDOWS\system32\DRIVERS\athw8x.sys [2013-06-18 3680256]
R3 BTATH_BUS;@oem5.inf,%BTATH_BUS.SVCDESC%;Qualcomm Atheros Bluetooth Bus; C:\WINDOWS\System32\drivers\btath_bus.sys [2012-12-28 33944]
R3 BTATH_HCRP;@oem11.inf,%BTATH_HCRP.SvcDesc%;Bluetooth HCRP Server driver; C:\WINDOWS\System32\drivers\btath_hcrp.sys [2012-12-28 179432]
R3 BTATH_LWFLT;@oem20.inf,%BTATH_LWFLT%;Bluetooth LWFLT Device; C:\WINDOWS\system32\DRIVERS\btath_lwflt.sys [2012-12-28 77464]
R3 BtFilter;BtFilter; C:\WINDOWS\system32\DRIVERS\btfilter.sys [2014-04-28 599240]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\System32\drivers\BthEnum.sys [2013-08-22 53248]
R3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Ovladač úspory energie technologie Bluetooth; C:\WINDOWS\system32\DRIVERS\BthLEEnum.sys [2014-09-24 226304]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Zařízení Bluetooth (síť PAN); C:\WINDOWS\system32\DRIVERS\bthpan.sys [2014-09-24 118272]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\Drivers\BTHUSB.sys [2014-09-24 81920]
R3 ETD;@oem35.inf,%PS2DeviceDesc%;ELAN PS/2 Port Input Device; C:\WINDOWS\system32\DRIVERS\ETD.sys [2014-12-09 381192]
R3 HIDSwitch;@oem9.inf,%ASSW.DisplayName%;ASUS Wireless Radio Control; C:\WINDOWS\System32\drivers\AsHIDSwitch64.sys [2012-05-31 21152]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2014-01-29 5363200]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2012-12-11 3258256]
R3 IntcDAud;@oem31.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2012-10-26 342528]
R3 kbfiltr;@oem8.inf,%kbfiltr.SvcDesc%;Keyboard Filter; C:\WINDOWS\System32\drivers\kbfiltr.sys [2012-08-02 14992]
R3 L1C;@netl1c63x64.inf,%L1C.Service.DispName%;NDIS Miniport – ovladač pro řadič Qualcomm Atheros AR81xx PCI-E Ethernet; C:\WINDOWS\system32\DRIVERS\L1C63x64.sys [2013-06-18 129224]
R3 MEIx64;@oem32.inf,%HECI_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\System32\drivers\HECIx64.sys [2012-07-02 62784]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Zařízení Bluetooth (RFCOMM protokol TDI); C:\WINDOWS\system32\DRIVERS\rfcomm.sys [2014-09-24 167424]
R3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;Zobrazovací zařízení USB (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys [2013-08-22 212224]
R3 vwifimp;@%SystemRoot%\System32\drivers\vwifimp.sys,-261; C:\WINDOWS\system32\DRIVERS\vwifimp.sys [2014-04-30 38912]
S2 aswStm;aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [2014-11-20 116728]
S3 ATP;@oem12.inf,%PS2.DeviceDesc%;ASUS Input Device; C:\WINDOWS\System32\drivers\AsusTP.sys [2013-01-16 65784]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\Drivers\BTHport.sys [2014-09-24 1200640]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2014-05-08 65432]
R2 AFBAgent;AFBAgent; C:\Windows\system32\FBAgent.exe [2013-01-07 1280768]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2014-11-20 50344]
R2 ETDService;Elan Service; C:\Program Files\Elantech\ETDService.exe [2014-12-09 100104]
R2 SDScannerService;Spybot-S&D 2 Scanner Service; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [2014-06-24 1738168]
R2 SDUpdateService;Spybot-S&D 2 Updating Service; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [2014-06-27 2088408]
R2 SDWSCService;Spybot-S&D 2 Security Center Service; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [2014-04-25 171928]
R3 ASLDRService;ASLDR Service; C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe [2013-01-15 107320]
R3 ASUS InstantOn;ASUS InstantOn Service; C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnSrv.exe [2012-04-13 277120]
R3 AtherosSvc;AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [2012-12-28 226944]
R3 ATKGFNEXSrv;ATKGFNEX Service; C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe [2011-11-21 96896]
R3 AvastVBoxSvc;AvastVBox COM Service; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [2014-11-20 4012248]
R3 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-04-20 635104]
R3 Intel(R) ME Service;Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [2012-06-27 129856]
R3 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2012-06-25 166720]
R3 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-07-17 277824]
R3 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2012-07-17 365376]
R3 WakeupService;ASUS Wake Service; C:\Program Files\ASUS\ASUS VivoBook\ASUSWakeupService.exe [2012-12-20 45488]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-01-17 116648]
S3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2014-01-29 279000]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-01-17 116648]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2014-11-26 114800]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2012-10-01 150648]
S3 SwitchBoard;SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
-----------------EOF-----------------
Logfile of random's system information tool 1.10 (written by random/random)
Run by Mara at 2014-12-25 21:11:41
Microsoft Windows 8.1
System drive C: has 35 GB (29%) free of 122 GB
Total RAM: 3980 MB (66% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 21:11:45, on 25. 12. 2014
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17416)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\TabTip32.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
C:\Program Files (x86)\ASUS\APRP\APRP.EXE
C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe
C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
C:\Program Files (x86)\ASUS\Splendid\ColorUService.exe
C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe
C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe
C:\Program Files\trend micro\Mara.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://asus13.msn.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://asus13.msn.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O4 - HKLM\..\Run: [AdobeCS5ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [SDTray] "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"
O4 - HKCU\..\Run: [AdobeBridge] "C:\Program Files (x86)\Adobe\Adobe Bridge CS5\Bridge.exe" -stealth
O4 - HKCU\..\Run: [Spotify] "C:\Users\Mara\AppData\Roaming\Spotify\Spotify.exe" /uri spotify:autostart
O4 - HKCU\..\Run: [Spotify Web Helper] "C:\Users\Mara\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe"
O4 - HKLM\..\Policies\Explorer\Run: [BtvStack] "C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe"
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Se&nd to OneNote - res://C:\PROGRA~2\MICROS~1\Office15\ONBttnIE.dll/105
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O20 - Winlogon Notify: SDWinLogon - SDWinLogon.dll (file missing)
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: AFBAgent - Unknown owner - C:\Windows\system32\FBAgent.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: ASLDR Service (ASLDRService) - ASUSTek Computer Inc. - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
O23 - Service: ASUS InstantOn Service (ASUS InstantOn) - ASUS - C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnSrv.exe
O23 - Service: AtherosSvc - Qualcomm Atheros Commnucations - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: AvastVBox COM Service (AvastVBoxSvc) - Avast Software - C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: Elan Service (ETDService) - ELAN Microelectronics Corp. - C:\Program Files\Elantech\ETDService.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) ME Service - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Spybot-S&D 2 Scanner Service (SDScannerService) - Safer-Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe
O23 - Service: Spybot-S&D 2 Updating Service (SDUpdateService) - Safer-Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe
O23 - Service: Spybot-S&D 2 Security Center Service (SDWSCService) - Safer-Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: ASUS Wake Service (WakeupService) - ASUSTek Computer Inc. - C:\Program Files\ASUS\ASUS VivoBook\ASUSWakeupService.exe
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: ZAtheros Bt and Wlan Coex Agent - Atheros - C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
--
End of file - 10921 bytes
======Listing Processes======
wininit.exe
winlogon.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
"dwm.exe"
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k NetworkService
"C:\Windows\system32\FBAgent.exe"
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files\Elantech\ETDService.exe"
dashost.exe {f740ee1a-10f9-4a9b-abcaaa1738236cbf}
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe"
C:\WINDOWS\Explorer.EXE
"C:\Program Files\Elantech\ETDCtrl.exe"
taskeng.exe {325BE232-7DED-4862-A02A-1509204AAD3C}
taskhostex.exe
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
"C:\Program Files\Elantech\ETDCtrlHelper.exe"
"C:\Program Files (x86)\Google\Chrome\Application\39.0.2171.95\Installer\setup.exe" --on-os-upgrade --multi-install --chrome --system-level --verbose-logging
"C:\Program Files\Elantech\ETDGesture.exe"
/QuitInfo:0000000000000918;000000000000091C;
/loadhooks /Parent:0000000000000cb4
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\System32\svchost.exe -k WerSvcGroup
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
C:\WINDOWS\servicing\TrustedInstaller.exe
"C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe"
C:\WINDOWS\winsxs\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.3.9600.17477_none_fa2b7d3b9b36c7b4\TiWorker.exe -Embedding
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
ngservice.exe pipeserver
C:\WINDOWS\System32\alg.exe
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe"
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe1_ Global\UsGthrCtrlFltPipeMssGthrPipe1 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 568 572 580 65536 576
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files\AVAST Software\Avast\avastui.exe" /nogui
"C:\Program Files (x86)\Bluetooth Suite\ActivateDesktop.exe"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe"
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe"
KBFiltr.exe
"C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnSrv.exe"
"C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnWMI.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Bluetooth Suite\adminservice.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe"
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe"
"C:\Program Files (x86)\ASUS\APRP\APRP.EXE"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\WINDOWS\system32\hkcmd.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\WINDOWS\system32\igfxtray.exe"
"C:\Program Files\ASUS\ASUS VivoBook\ASUSWakeupService.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /MAXX3
"C:\Program Files\ASUS\ASUS VivoBook\VivoBook.exe" /RunWithHide
"C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe"
"C:\Program Files\ASUS\P4G\BatteryLife.exe"
C:\ProgramData\AsTouchPanel\AsPatchTouchPanel64.exe
"C:\Program Files (x86)\ASUS\Splendid\ACMON.exe"
"C:\Program Files (x86)\ASUS\Splendid\ColorUService.exe"
"C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLauncher.exe"
"C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe"
"C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe"
"C:\Users\Mara\Desktop\RSITx64.exe"
======Scheduled tasks folder======
C:\WINDOWS\tasks\AdobeAAMUpdater-1.0-Marouskovnik-Mara.job - C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\updaterstartuputility.exe -mode=scheduled
=========Mozilla firefox=========
ProfilePath - C:\Users\Mara\AppData\Roaming\Mozilla\Firefox\Profiles\xnivlz3b.default
prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "http://www.seznam.cz/"
prefs.js - "extensions.enabledItems" - "2020Player_IKEA@2020Technologies.com:5.0.93.0, {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20, {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.13"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 16.0.0.235 Plugin
"Path"=C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_235.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42]
"Description"=Intel IPT WebApi plugin
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater]
"Description"=This plugin updates Intel WebAPI component
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=10.51.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=10.51.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=16.4.3528.0331]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 16.0.0.235 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF64_16_0_0_235.dll
C:\Program Files (x86)\Mozilla Firefox\plugins\
NPOFF12.DLL
nppdf32.dll
C:\Users\Mara\AppData\Roaming\Mozilla\Firefox\Profiles\xnivlz3b.default\extensions\
2020Player_IKEA@2020Technologies.com
{bee6eb20-01e0-ebd1-da83-080329fb9a3a}
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2014-11-20 705448]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-11-20 586968]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Persistence"=C:\WINDOWS\system32\igfxpers.exe [2014-01-29 442328]
"AdobeAAMUpdater-1.0"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2010-03-06 500208]
"ETDCtrl"=C:\Program Files\Elantech\ETDCtrl.exe [2014-12-09 2893576]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"BtvStack"=C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [2012-12-28 129664]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"AdobeBridge"=C:\Program Files (x86)\Adobe\Adobe Bridge CS5\Bridge.exe [2010-03-09 11989960]
"Spotify"=C:\Users\Mara\AppData\Roaming\Spotify\Spotify.exe [2014-10-16 6553144]
"Spotify Web Helper"=C:\Users\Mara\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [2014-10-16 1514040]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUSPRP]
C:\Program Files (x86)\ASUS\APRP\APRP.EXE [2012-11-23 3187360]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUSWebStorage]
C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.10.123\AsusWSPanel.exe [2012-08-31 3423104]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DisableS3S4]
c:\windows\temp\DisableS3S464\sethigh.cmd []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HotKeysCmds]
C:\WINDOWS\system32\hkcmd.exe [2014-01-29 399832]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IgfxTray]
C:\WINDOWS\system32\igfxtray.exe [2014-01-29 171992]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\mcui_exe]
C:\Program Files\McAfee.com\Agent\mcagent.exe /runkey []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RtHDVBg]
C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2012-12-03 1256080]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RTHDVCPL]
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2012-12-07 13262480]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904]
"GrooveMonitor"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040]
"SwitchBoard"=C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
"AdobeCS5ServiceManager"=C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe [2010-02-22 406992]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2014-12-12 5227112]
"SDTray"=C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [2014-06-24 4101576]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"BtvStack"=C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [2012-12-28 129664]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2014-01-29 442880]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DisableCAD"=1
"DisableTaskMgr"=0
"SoftwareSASGeneration"=1
"ConsentPromptBehaviorAdmin"=0
"EnableLUA"=0
"PromptOnSecureDesktop"=0
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoRun"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe:*:Enabled:Spybot - Search & Destroy tray access"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe:*:Enabled:Spybot-S&D 2 Scanner Service"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe:*:Enabled:Spybot-S&D 2 Updater"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe:*:Enabled:Spybot-S&D 2 Background update service"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"VIDC.LAGS"=lagarith.dll
"VIDC.X264"=x264vfw64.dll
"VIDC.XVID"=xvidvfw.dll
"msacm.ac3acm"=ac3acm.acm
"msacm.l3codecp"=l3codecp.acm
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2014-12-25 21:08:33 ----D---- C:\WINDOWS\Minidump
2014-12-25 21:06:39 ----D---- C:\_OTM
2014-12-25 20:59:04 ----D---- C:\ProgramData\Ralink Driver
2014-12-25 20:58:54 ----D---- C:\Users\Mara\AppData\Roaming\InstallShield
2014-12-25 20:55:18 ----N---- C:\WINDOWS\difxapi.dll
2014-12-25 20:55:17 ----D---- C:\Program Files (x86)\VIA
2014-12-22 21:19:25 ----A---- C:\WINDOWS\system32\sdnclean64.exe
2014-12-16 08:23:28 ----A---- C:\WINDOWS\system32\poqexec.exe
2014-12-16 08:23:27 ----A---- C:\WINDOWS\SYSWOW64\poqexec.exe
2014-12-12 21:52:07 ----D---- C:\Program Files (x86)\Alcohol Soft
2014-12-12 21:44:05 ----A---- C:\WINDOWS\system32\drivers\sptd.sys
2014-12-12 20:38:55 ----D---- C:\Users\Mara\AppData\Roaming\DAEMON Tools Ultra
2014-12-12 20:38:07 ----D---- C:\ProgramData\DAEMON Tools Ultra
2014-12-11 10:35:35 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2014-12-11 10:30:34 ----RD---- C:\WINDOWS\BrowserChoice
2014-12-11 10:30:32 ----D---- C:\WINDOWS\system32\appraiser
2014-12-10 14:12:42 ----A---- C:\WINDOWS\SYSWOW64\DeviceSetupStatusProvider.dll
2014-12-10 14:12:42 ----A---- C:\WINDOWS\system32\DeviceSetupStatusProvider.dll
2014-12-10 14:12:26 ----A---- C:\WINDOWS\SYSWOW64\crypt32.dll
2014-12-10 14:12:26 ----A---- C:\WINDOWS\system32\crypt32.dll
2014-12-10 13:47:55 ----A---- C:\WINDOWS\system32\WindowsCodecs.dll
2014-12-10 13:47:54 ----A---- C:\WINDOWS\SYSWOW64\WindowsCodecs.dll
2014-12-10 13:47:51 ----A---- C:\WINDOWS\system32\generaltel.dll
2014-12-10 13:47:50 ----A---- C:\WINDOWS\system32\devinv.dll
2014-12-10 13:47:50 ----A---- C:\WINDOWS\system32\aepdu.dll
2014-12-10 13:47:49 ----A---- C:\WINDOWS\system32\invagent.dll
2014-12-10 13:47:49 ----A---- C:\WINDOWS\system32\appraiser.dll
2014-12-10 13:47:49 ----A---- C:\WINDOWS\system32\aepic.dll
2014-12-10 13:47:49 ----A---- C:\WINDOWS\system32\aeinv.dll
2014-12-10 13:47:43 ----A---- C:\WINDOWS\SYSWOW64\MrmCoreR.dll
2014-12-10 13:47:43 ----A---- C:\WINDOWS\system32\MrmCoreR.dll
2014-12-10 13:47:19 ----AC---- C:\WINDOWS\system32\drivers\sdbus.sys
2014-12-10 13:47:19 ----AC---- C:\WINDOWS\system32\drivers\intelpep.sys
2014-12-10 13:47:19 ----AC---- C:\WINDOWS\system32\drivers\dumpsd.sys
2014-12-10 13:47:19 ----A---- C:\WINDOWS\system32\drivers\pdc.sys
2014-12-10 13:46:40 ----A---- C:\WINDOWS\system32\actxprxy.dll
2014-12-10 13:46:39 ----A---- C:\WINDOWS\SYSWOW64\mshtmled.dll
2014-12-10 13:46:39 ----A---- C:\WINDOWS\SYSWOW64\actxprxy.dll
2014-12-10 13:46:38 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2014-12-10 13:46:38 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2014-12-10 13:46:38 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll
2014-12-10 13:46:38 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2014-12-10 13:46:36 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2014-12-10 13:46:36 ----A---- C:\WINDOWS\SYSWOW64\dxtrans.dll
2014-12-10 13:46:36 ----A---- C:\WINDOWS\system32\JavaScriptCollectionAgent.dll
2014-12-10 13:46:33 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2014-12-10 13:46:32 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2014-12-10 13:46:32 ----A---- C:\WINDOWS\system32\urlmon.dll
2014-12-10 13:46:31 ----A---- C:\WINDOWS\SYSWOW64\jscript9diag.dll
2014-12-10 13:46:31 ----A---- C:\WINDOWS\SYSWOW64\dxtmsft.dll
2014-12-10 13:46:30 ----A---- C:\WINDOWS\system32\msfeeds.dll
2014-12-10 13:46:30 ----A---- C:\WINDOWS\system32\dxtrans.dll
2014-12-10 13:46:29 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2014-12-10 13:46:25 ----A---- C:\WINDOWS\system32\iertutil.dll
2014-12-10 13:46:24 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2014-12-10 13:46:24 ----A---- C:\WINDOWS\SYSWOW64\ieapfltr.dll
2014-12-10 13:46:22 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2014-12-10 13:46:21 ----A---- C:\WINDOWS\system32\dxtmsft.dll
2014-12-10 13:46:18 ----A---- C:\WINDOWS\system32\ieframe.dll
2014-12-10 13:46:16 ----A---- C:\WINDOWS\system32\mshtmled.dll
2014-12-10 13:46:16 ----A---- C:\WINDOWS\system32\jscript9diag.dll
2014-12-10 13:46:15 ----A---- C:\WINDOWS\system32\jscript9.dll
2014-12-10 13:46:14 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2014-12-10 13:46:12 ----A---- C:\WINDOWS\system32\wininet.dll
2014-12-10 13:46:10 ----A---- C:\WINDOWS\system32\mshtml.dll
2014-12-10 13:46:06 ----A---- C:\WINDOWS\system32\ieetwproxystub.dll
2014-12-10 13:46:05 ----A---- C:\WINDOWS\system32\inetcomm.dll
2014-12-10 13:46:04 ----A---- C:\WINDOWS\SYSWOW64\inetcomm.dll
2014-12-10 13:46:03 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2014-12-10 13:46:03 ----A---- C:\WINDOWS\system32\vbscript.dll
2014-12-10 13:46:02 ----A---- C:\WINDOWS\SYSWOW64\jscript.dll
2014-12-10 13:46:02 ----A---- C:\WINDOWS\system32\jscript.dll
2014-12-10 13:46:00 ----A---- C:\WINDOWS\system32\ieui.dll
2014-12-10 13:45:59 ----A---- C:\WINDOWS\SYSWOW64\JavaScriptCollectionAgent.dll
2014-12-10 13:45:57 ----A---- C:\WINDOWS\SYSWOW64\ieui.dll
2014-12-10 13:45:56 ----A---- C:\WINDOWS\SYSWOW64\webcheck.dll
2014-12-10 13:45:56 ----A---- C:\WINDOWS\system32\webcheck.dll
2014-12-10 13:45:55 ----A---- C:\WINDOWS\SYSWOW64\hlink.dll
2014-12-10 13:45:54 ----A---- C:\WINDOWS\SYSWOW64\msrating.dll
2014-12-10 13:45:54 ----A---- C:\WINDOWS\system32\hlink.dll
2014-12-10 13:45:53 ----A---- C:\WINDOWS\system32\msrating.dll
2014-12-10 13:45:53 ----A---- C:\WINDOWS\system32\ieUnatt.exe
2014-12-10 13:45:53 ----A---- C:\WINDOWS\system32\iesysprep.dll
2014-12-10 13:45:53 ----A---- C:\WINDOWS\system32\iepeers.dll
2014-12-10 13:45:52 ----A---- C:\WINDOWS\SYSWOW64\inseng.dll
2014-12-10 13:45:52 ----A---- C:\WINDOWS\SYSWOW64\ieUnatt.exe
2014-12-10 13:45:52 ----A---- C:\WINDOWS\SYSWOW64\iesysprep.dll
2014-12-10 13:45:52 ----A---- C:\WINDOWS\SYSWOW64\iepeers.dll
2014-12-10 13:45:52 ----A---- C:\WINDOWS\system32\ieetwcollector.exe
2014-12-10 13:45:51 ----A---- C:\WINDOWS\SYSWOW64\msfeedsbs.dll
2014-12-10 13:45:51 ----A---- C:\WINDOWS\system32\msfeedsbs.dll
2014-12-10 13:45:51 ----A---- C:\WINDOWS\system32\inseng.dll
2014-12-10 13:45:50 ----A---- C:\WINDOWS\SYSWOW64\occache.dll
2014-12-10 13:45:50 ----A---- C:\WINDOWS\SYSWOW64\MshtmlDac.dll
2014-12-10 13:45:50 ----A---- C:\WINDOWS\SYSWOW64\jsproxy.dll
2014-12-10 13:45:50 ----A---- C:\WINDOWS\SYSWOW64\iexpress.exe
2014-12-10 13:45:50 ----A---- C:\WINDOWS\SYSWOW64\IEAdvpack.dll
2014-12-10 13:45:50 ----A---- C:\WINDOWS\system32\MshtmlDac.dll
2014-12-10 13:45:50 ----A---- C:\WINDOWS\system32\jsproxy.dll
2014-12-10 13:45:49 ----A---- C:\WINDOWS\SYSWOW64\pngfilt.dll
2014-12-10 13:45:49 ----A---- C:\WINDOWS\SYSWOW64\licmgr10.dll
2014-12-10 13:45:49 ----A---- C:\WINDOWS\SYSWOW64\imgutil.dll
2014-12-10 13:45:49 ----A---- C:\WINDOWS\SYSWOW64\ieetwproxystub.dll
2014-12-10 13:45:49 ----A---- C:\WINDOWS\system32\pngfilt.dll
2014-12-10 13:45:49 ----A---- C:\WINDOWS\system32\occache.dll
2014-12-10 13:45:49 ----A---- C:\WINDOWS\system32\licmgr10.dll
2014-12-10 13:45:49 ----A---- C:\WINDOWS\system32\imgutil.dll
2014-12-10 13:45:48 ----A---- C:\WINDOWS\SYSWOW64\wextract.exe
2014-12-10 13:45:48 ----A---- C:\WINDOWS\SYSWOW64\url.dll
2014-12-10 13:45:48 ----A---- C:\WINDOWS\SYSWOW64\iesetup.dll
2014-12-10 13:45:48 ----A---- C:\WINDOWS\SYSWOW64\iernonce.dll
2014-12-10 13:45:48 ----A---- C:\WINDOWS\system32\url.dll
2014-12-10 13:45:48 ----A---- C:\WINDOWS\system32\iernonce.dll
2014-12-10 13:45:47 ----A---- C:\WINDOWS\system32\wextract.exe
2014-12-10 13:45:47 ----A---- C:\WINDOWS\system32\IEAdvpack.dll
2014-12-10 13:45:46 ----A---- C:\WINDOWS\SYSWOW64\msfeedssync.exe
2014-12-10 13:45:46 ----A---- C:\WINDOWS\system32\iexpress.exe
2014-12-10 13:45:46 ----A---- C:\WINDOWS\system32\iesetup.dll
2014-12-10 13:45:45 ----A---- C:\WINDOWS\SYSWOW64\mshta.exe
2014-12-10 13:45:45 ----A---- C:\WINDOWS\system32\mshta.exe
2014-12-10 13:45:45 ----A---- C:\WINDOWS\system32\msfeedssync.exe
2014-12-10 09:45:07 ----A---- C:\WINDOWS\SYSWOW64\msi.dll
2014-12-10 09:45:07 ----A---- C:\WINDOWS\system32\msi.dll
2014-12-10 09:45:06 ----A---- C:\WINDOWS\system32\authui.dll
2014-12-10 09:45:05 ----A---- C:\WINDOWS\SYSWOW64\msihnd.dll
2014-12-10 09:45:05 ----A---- C:\WINDOWS\SYSWOW64\authui.dll
2014-12-10 09:45:05 ----A---- C:\WINDOWS\system32\msihnd.dll
2014-12-10 09:45:04 ----A---- C:\WINDOWS\system32\consent.exe
2014-12-10 09:45:04 ----A---- C:\WINDOWS\system32\appinfo.dll
2014-12-10 09:44:56 ----A---- C:\WINDOWS\system32\user32.dll
2014-12-10 09:44:55 ----A---- C:\WINDOWS\SYSWOW64\user32.dll
2014-12-10 09:44:54 ----A---- C:\WINDOWS\system32\drivers\WdNisDrv.sys
2014-12-10 09:44:54 ----A---- C:\WINDOWS\system32\drivers\WdFilter.sys
2014-12-10 09:44:53 ----A---- C:\WINDOWS\system32\drivers\WdBoot.sys
2014-12-10 09:44:50 ----A---- C:\WINDOWS\SYSWOW64\winshfhc.dll
2014-12-10 09:44:50 ----A---- C:\WINDOWS\system32\winshfhc.dll
2014-12-10 09:43:51 ----A---- C:\WINDOWS\system32\lockscreencn.dll
2014-12-10 07:30:55 ----A---- C:\WINDOWS\system32\drivers\msgpioclx.sys
2014-12-10 07:30:36 ----A---- C:\WINDOWS\SYSWOW64\schannel.dll
2014-12-10 07:30:36 ----A---- C:\WINDOWS\system32\schannel.dll
2014-12-10 07:30:35 ----A---- C:\WINDOWS\system32\ncryptsslp.dll
2014-12-10 07:30:35 ----A---- C:\WINDOWS\system32\dpapisrv.dll
2014-12-10 07:30:34 ----A---- C:\WINDOWS\SYSWOW64\ncryptsslp.dll
2014-12-10 07:30:05 ----A---- C:\WINDOWS\system32\kerberos.dll
2014-12-10 07:30:04 ----A---- C:\WINDOWS\SYSWOW64\pku2u.dll
2014-12-10 07:30:04 ----A---- C:\WINDOWS\SYSWOW64\kerberos.dll
2014-12-10 07:30:04 ----A---- C:\WINDOWS\system32\pku2u.dll
2014-12-10 07:29:55 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2014-12-10 07:29:54 ----A---- C:\WINDOWS\system32\twinui.dll
2014-12-10 07:29:47 ----A---- C:\WINDOWS\system32\shell32.dll
2014-12-10 07:29:43 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2014-12-10 07:29:41 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2014-12-10 07:29:35 ----A---- C:\WINDOWS\system32\drivers\tcpip.sys
2014-12-10 07:29:34 ----A---- C:\WINDOWS\system32\SettingsHandlers.dll
2014-12-10 07:29:34 ----A---- C:\WINDOWS\system32\localspl.dll
2014-12-10 07:29:33 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2014-12-10 07:29:32 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2014-12-10 07:29:28 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2014-12-10 07:29:28 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2014-12-10 07:29:27 ----A---- C:\WINDOWS\system32\win32spl.dll
2014-12-10 07:29:26 ----A---- C:\WINDOWS\system32\drivers\netio.sys
2014-12-10 07:29:25 ----A---- C:\WINDOWS\SYSWOW64\WsmSvc.dll
2014-12-10 07:29:25 ----A---- C:\WINDOWS\system32\WsmSvc.dll
2014-12-10 07:29:25 ----A---- C:\WINDOWS\system32\puiobj.dll
2014-12-10 07:29:24 ----A---- C:\WINDOWS\SYSWOW64\puiobj.dll
2014-12-10 07:29:22 ----A---- C:\WINDOWS\system32\drivers\FWPKCLNT.SYS
2014-12-10 07:29:21 ----AC---- C:\WINDOWS\system32\drivers\USBSTOR.SYS
2014-12-10 07:29:21 ----A---- C:\WINDOWS\system32\winbici.dll
2014-12-10 07:29:20 ----A---- C:\WINDOWS\system32\BulkOperationHost.exe
2014-12-10 07:29:18 ----A---- C:\WINDOWS\SYSWOW64\untfs.dll
2014-12-10 07:29:18 ----A---- C:\WINDOWS\system32\untfs.dll
2014-12-10 07:29:15 ----A---- C:\WINDOWS\system32\FXSCOMEX.dll
2014-12-10 07:29:14 ----A---- C:\WINDOWS\system32\FXSAPI.dll
2014-12-10 07:29:13 ----A---- C:\WINDOWS\SYSWOW64\FXSAPI.dll
2014-12-10 07:26:23 ----A---- C:\WINDOWS\SYSWOW64\msxml3.dll
2014-12-10 07:26:22 ----A---- C:\WINDOWS\system32\msxml3.dll
2014-12-10 07:26:14 ----A---- C:\WINDOWS\SYSWOW64\TsWpfWrp.exe
2014-12-10 07:26:14 ----A---- C:\WINDOWS\system32\TsWpfWrp.exe
2014-12-10 07:23:40 ----A---- C:\WINDOWS\SYSWOW64\d3d9.dll
2014-12-10 07:23:40 ----A---- C:\WINDOWS\system32\d3d9.dll
2014-12-10 07:23:35 ----A---- C:\WINDOWS\system32\vpnike.dll
2014-12-10 07:23:34 ----A---- C:\WINDOWS\system32\fveapi.dll
2014-12-10 07:23:33 ----A---- C:\WINDOWS\system32\dhcpcore.dll
2014-12-10 07:23:31 ----A---- C:\WINDOWS\SYSWOW64\dhcpcore.dll
2014-12-10 07:23:31 ----A---- C:\WINDOWS\system32\framedynos.dll
2014-12-10 07:23:31 ----A---- C:\WINDOWS\system32\drivers\mrxsmb.sys
2014-12-10 07:23:29 ----A---- C:\WINDOWS\SYSWOW64\framedynos.dll
2014-12-10 07:23:29 ----A---- C:\WINDOWS\SYSWOW64\dhcpcore6.dll
2014-12-10 07:23:29 ----A---- C:\WINDOWS\system32\dhcpcore6.dll
2014-12-10 07:23:29 ----A---- C:\WINDOWS\system32\bdesvc.dll
2014-12-10 07:23:28 ----A---- C:\WINDOWS\system32\drivers\agilevpn.sys
2014-12-10 07:23:28 ----A---- C:\WINDOWS\system32\BFE.DLL
2014-12-10 07:23:26 ----A---- C:\WINDOWS\system32\ncobjapi.dll
2014-12-10 07:23:26 ----A---- C:\WINDOWS\system32\framedyn.dll
2014-12-10 07:23:25 ----A---- C:\WINDOWS\SYSWOW64\ncobjapi.dll
2014-12-10 07:23:23 ----A---- C:\WINDOWS\system32\drivers\vwifimp.sys
2014-12-10 07:23:22 ----A---- C:\WINDOWS\system32\Robocopy.exe
2014-12-10 07:23:21 ----A---- C:\WINDOWS\SYSWOW64\Robocopy.exe
2014-12-10 07:23:21 ----A---- C:\WINDOWS\system32\IKEEXT.DLL
2014-12-10 07:23:21 ----A---- C:\WINDOWS\system32\dhcpcsvc.dll
2014-12-10 07:23:20 ----A---- C:\WINDOWS\SYSWOW64\framedyn.dll
2014-12-10 07:23:20 ----A---- C:\WINDOWS\SYSWOW64\dhcpcsvc.dll
2014-12-10 07:23:20 ----A---- C:\WINDOWS\system32\dhcpcsvc6.dll
2014-12-10 07:23:19 ----A---- C:\WINDOWS\SYSWOW64\dhcpcsvc6.dll
2014-12-10 07:23:19 ----A---- C:\WINDOWS\system32\drivers\vwififlt.sys
2014-12-10 07:23:18 ----A---- C:\WINDOWS\system32\reseteng.dll
2014-12-10 07:23:17 ----A---- C:\WINDOWS\SYSWOW64\d3d8thk.dll
2014-12-10 07:23:17 ----A---- C:\WINDOWS\system32\srms.dat
2014-12-10 07:21:35 ----A---- C:\WINDOWS\explorer.exe
2014-12-10 07:21:34 ----A---- C:\WINDOWS\SYSWOW64\explorer.exe
2014-12-10 07:21:34 ----A---- C:\WINDOWS\system32\uDWM.dll
2014-12-10 07:21:33 ----A---- C:\WINDOWS\SYSWOW64\UXInit.dll
2014-12-10 07:21:33 ----A---- C:\WINDOWS\system32\UXInit.dll
2014-12-10 07:21:24 ----A---- C:\WINDOWS\SYSWOW64\AUDIOKSE.dll
2014-12-10 07:21:24 ----A---- C:\WINDOWS\system32\audiosrv.dll
2014-12-10 07:21:24 ----A---- C:\WINDOWS\system32\AudioSes.dll
2014-12-10 07:21:24 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll
2014-12-10 07:21:23 ----A---- C:\WINDOWS\SYSWOW64\AudioSes.dll
2014-12-10 07:21:23 ----A---- C:\WINDOWS\system32\AudioEng.dll
2014-12-10 07:21:23 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2014-12-10 07:21:23 ----A---- C:\WINDOWS\system32\audiodg.exe
2014-12-10 07:21:22 ----A---- C:\WINDOWS\SYSWOW64\AudioEng.dll
2014-12-10 07:21:22 ----A---- C:\WINDOWS\system32\EncDump.dll
2014-12-10 07:21:18 ----A---- C:\WINDOWS\system32\win32k.sys
2014-12-10 07:20:37 ----A---- C:\WINDOWS\system32\Windows.UI.Search.dll
2014-12-10 07:20:34 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Search.dll
2014-12-10 07:20:33 ----A---- C:\WINDOWS\system32\mstscax.dll
2014-12-10 07:20:32 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2014-12-10 07:20:31 ----A---- C:\WINDOWS\system32\SyncEngine.dll
2014-12-10 07:20:29 ----A---- C:\WINDOWS\system32\SearchFolder.dll
2014-12-10 07:20:27 ----A---- C:\WINDOWS\system32\KernelBase.dll
2014-12-10 07:20:26 ----A---- C:\WINDOWS\system32\propsys.dll
2014-12-10 07:20:26 ----A---- C:\WINDOWS\system32\ntdll.dll
2014-12-10 07:20:24 ----A---- C:\WINDOWS\system32\WSShared.dll
2014-12-10 07:20:23 ----A---- C:\WINDOWS\SYSWOW64\WSShared.dll
2014-12-10 07:20:23 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2014-12-10 07:20:23 ----A---- C:\WINDOWS\system32\iphlpsvc.dll
2014-12-10 07:20:22 ----A---- C:\WINDOWS\SYSWOW64\SearchFolder.dll
2014-12-10 07:20:22 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2014-12-10 07:20:22 ----A---- C:\WINDOWS\system32\Wldap32.dll
2014-12-10 07:20:21 ----A---- C:\WINDOWS\SYSWOW64\Wldap32.dll
2014-12-10 07:20:21 ----A---- C:\WINDOWS\system32\SystemEventsBrokerServer.dll
2014-12-10 07:20:20 ----A---- C:\WINDOWS\SYSWOW64\propsys.dll
2014-12-10 07:20:19 ----A---- C:\WINDOWS\system32\SkyDriveTelemetry.dll
2014-12-10 07:20:18 ----A---- C:\WINDOWS\system32\SkyDrive.exe
2014-12-10 07:20:18 ----A---- C:\WINDOWS\system32\httpprxm.dll
2014-12-10 07:20:18 ----A---- C:\WINDOWS\system32\bisrv.dll
2014-12-10 07:20:17 ----A---- C:\WINDOWS\system32\pcsvDevice.dll
2014-12-10 07:20:17 ----A---- C:\WINDOWS\system32\adhsvc.dll
2014-12-10 07:20:16 ----A---- C:\WINDOWS\SYSWOW64\SkyDriveShell.dll
2014-12-10 07:20:16 ----A---- C:\WINDOWS\system32\SkyDriveShell.dll
2014-12-10 07:20:16 ----A---- C:\WINDOWS\system32\ProximityService.dll
2014-12-10 07:20:14 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2014-12-10 07:20:14 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2014-12-10 07:19:37 ----A---- C:\WINDOWS\SYSWOW64\packager.dll
2014-12-10 07:19:37 ----A---- C:\WINDOWS\system32\packager.dll
2014-12-09 23:04:22 ----A---- C:\WINDOWS\SYSWOW64\msvcr120_clr0400.dll
2014-12-09 23:04:21 ----A---- C:\WINDOWS\system32\msvcr120_clr0400.dll
2014-12-09 23:03:44 ----D---- C:\Program Files\Elantech
2014-12-09 23:00:47 ----A---- C:\WINDOWS\system32\rdpcorets.dll
2014-12-09 23:00:46 ----A---- C:\WINDOWS\SYSWOW64\certcli.dll
2014-12-09 23:00:46 ----A---- C:\WINDOWS\system32\lsasrv.dll
2014-12-09 23:00:46 ----A---- C:\WINDOWS\system32\certcli.dll
2014-12-09 23:00:45 ----A---- C:\WINDOWS\SYSWOW64\adtschema.dll
2014-12-09 23:00:45 ----A---- C:\WINDOWS\system32\rfxvmt.dll
2014-12-09 23:00:45 ----A---- C:\WINDOWS\system32\drivers\ksecpkg.sys
2014-12-09 23:00:45 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2014-12-09 23:00:45 ----A---- C:\WINDOWS\system32\adtschema.dll
2014-12-09 23:00:44 ----A---- C:\WINDOWS\SYSWOW64\msaudite.dll
2014-12-09 23:00:44 ----A---- C:\WINDOWS\system32\msaudite.dll
2014-12-09 23:00:44 ----A---- C:\WINDOWS\system32\drivers\rdpvideominiport.sys
2014-12-09 23:00:43 ----A---- C:\WINDOWS\system32\rdpudd.dll
2014-12-09 23:00:20 ----A---- C:\WINDOWS\system32\oleaut32.dll
2014-12-09 23:00:19 ----A---- C:\WINDOWS\SYSWOW64\oleaut32.dll
2014-12-09 22:58:57 ----A---- C:\WINDOWS\system32\WUDFHost.exe
2014-12-09 22:58:57 ----A---- C:\WINDOWS\system32\drivers\WUDFRd.sys
2014-12-09 22:58:56 ----A---- C:\WINDOWS\system32\WUDFSvc.dll
2014-12-09 22:58:56 ----A---- C:\WINDOWS\system32\WUDFPlatform.dll
2014-12-09 22:58:56 ----A---- C:\WINDOWS\system32\drivers\WUDFPf.sys
2014-12-09 22:58:56 ----A---- C:\WINDOWS\system32\DaOtpCredentialProvider.dll
2014-12-09 22:58:55 ----A---- C:\WINDOWS\SYSWOW64\DaOtpCredentialProvider.dll
2014-12-09 22:58:55 ----A---- C:\WINDOWS\system32\hal.dll
2014-12-09 22:54:17 ----A---- C:\WINDOWS\system32\schedsvc.dll
2014-12-09 22:54:12 ----A---- C:\WINDOWS\system32\rastls.dll
2014-12-09 22:54:11 ----A---- C:\WINDOWS\SYSWOW64\rastls.dll
2014-12-09 22:54:10 ----A---- C:\WINDOWS\system32\WpcMon.exe
2014-12-09 22:54:10 ----A---- C:\WINDOWS\system32\Wpc.dll
2014-12-09 22:54:09 ----A---- C:\WINDOWS\SYSWOW64\Wpc.dll
2014-12-09 22:54:09 ----A---- C:\WINDOWS\system32\WpcWebSync.dll
2014-12-09 22:54:08 ----A---- C:\WINDOWS\system32\MDMAgent.exe
2014-12-08 11:16:21 ----D---- C:\Program Files\Common Files\Atheros
2014-12-08 11:08:33 ----D---- C:\Users\Mara\AppData\Roaming\Identities
2014-12-08 11:05:50 ----SHD---- C:\ProgramData\Šablony
2014-12-08 11:05:50 ----SHD---- C:\ProgramData\Plocha
2014-12-08 11:05:50 ----SHD---- C:\ProgramData\Nabídka Start
2014-12-08 11:05:50 ----SHD---- C:\ProgramData\Dokumenty
2014-12-08 11:05:50 ----SHD---- C:\ProgramData\Data aplikací
2014-12-08 11:01:56 ----A---- C:\WINDOWS\system32\emptyregdb.dat
2014-12-08 10:34:29 ----SD---- C:\Users\Mara\AppData\Roaming\Microsoft
2014-12-08 10:24:48 ----A---- C:\WINDOWS\system32\drivers\RTWAVES30.dat
2014-12-08 10:24:37 ----D---- C:\WINDOWS\SYSWOW64\RTCOM
2014-12-08 10:24:37 ----D---- C:\Program Files\Realtek
2014-12-08 10:24:22 ----D---- C:\Program Files (x86)\Intel
2014-12-08 10:22:56 ----D---- C:\WINDOWS\Prefetch
2014-12-08 10:21:40 ----SHD---- C:\Recovery
2014-12-08 10:21:30 ----DC---- C:\WINDOWS\Panther
2014-12-08 10:17:02 ----D---- C:\Program Files (x86)\Reference Assemblies
2014-12-08 10:17:02 ----D---- C:\Program Files (x86)\MSBuild
2014-12-08 10:16:59 ----D---- C:\WINDOWS\SYSWOW64\XPSViewer
2014-12-08 10:16:59 ----D---- C:\Program Files\Reference Assemblies
2014-12-08 10:16:59 ----D---- C:\Program Files\MSBuild
2014-12-08 10:15:42 ----A---- C:\WINDOWS\SYSWOW64\PresentationNative_v0300.dll
2014-12-08 10:15:42 ----A---- C:\WINDOWS\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2014-12-08 10:15:40 ----A---- C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2014-12-08 10:15:39 ----A---- C:\WINDOWS\system32\PresentationNative_v0300.dll
2014-11-28 11:23:51 ----DC---- C:\WINDOWS\system32\DRVSTORE
2014-11-28 11:23:18 ----D---- C:\Program Files (x86)\Fortinet
2014-11-28 11:19:41 ----D---- C:\ProgramData\Applications
2014-11-26 16:14:58 ----A---- C:\WINDOWS\system32\AutoUpdate.exe
======List of files/folders modified in the last 1 month======
2014-12-25 21:11:44 ----D---- C:\Program Files\trend micro
2014-12-25 21:10:38 ----A---- C:\WINDOWS\SYSWOW64\log.txt
2014-12-25 21:10:02 ----D---- C:\WINDOWS\Temp
2014-12-25 21:08:33 ----D---- C:\Windows
2014-12-25 21:06:40 ----D---- C:\WINDOWS\Tasks
2014-12-25 21:03:22 ----RD---- C:\WINDOWS\System32
2014-12-25 21:00:29 ----D---- C:\WINDOWS\system32\catroot
2014-12-25 21:00:03 ----D---- C:\WINDOWS\system32\sru
2014-12-25 20:59:57 ----SHD---- C:\WINDOWS\Installer
2014-12-25 20:59:56 ----D---- C:\Program Files (x86)\ASUS
2014-12-25 20:59:25 ----D---- C:\WINDOWS\system32\DriverStore
2014-12-25 20:59:25 ----D---- C:\WINDOWS\Inf
2014-12-25 20:59:04 ----HD---- C:\ProgramData
2014-12-25 20:59:03 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2014-12-25 20:55:17 ----RD---- C:\Program Files (x86)
2014-12-25 20:55:08 ----SHD---- C:\System Volume Information
2014-12-25 20:33:23 ----D---- C:\WINDOWS\system32\wdi
2014-12-25 10:29:48 ----D---- C:\WINDOWS\system32\NDF
2014-12-24 22:56:13 ----D---- C:\AdwCleaner
2014-12-23 15:09:00 ----D---- C:\WINDOWS\system32\Tasks
2014-12-23 11:55:45 ----D---- C:\Users\Mara\AppData\Roaming\Spotify
2014-12-23 11:18:40 ----D---- C:\WINDOWS\Microsoft.NET
2014-12-22 21:20:48 ----D---- C:\Program Files (x86)\Spybot - Search & Destroy 2
2014-12-22 21:19:37 ----SD---- C:\ProgramData\Microsoft
2014-12-22 21:19:20 ----D---- C:\ProgramData\Spybot - Search & Destroy
2014-12-21 19:30:35 ----D---- C:\WINDOWS\SoftwareDistribution
2014-12-21 10:20:35 ----SHD---- C:\$Recycle.Bin
2014-12-21 09:54:33 ----D---- C:\Users\Mara\AppData\Roaming\IrfanView
2014-12-21 09:04:08 ----D---- C:\Users\Mara\AppData\Roaming\uTorrent
2014-12-21 09:03:33 ----D---- C:\WINDOWS\debug
2014-12-20 08:59:38 ----D---- C:\WINDOWS\system32\config
2014-12-19 13:35:35 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2014-12-19 11:01:17 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2014-12-19 11:01:17 ----D---- C:\Program Files (x86)\Mozilla Firefox
2014-12-18 09:54:43 ----D---- C:\WINDOWS\CbsTemp
2014-12-18 09:54:42 ----D---- C:\WINDOWS\WinSxS
2014-12-17 11:40:23 ----HD---- C:\Program Files\WindowsApps
2014-12-17 11:40:23 ----D---- C:\WINDOWS\AppReadiness
2014-12-16 13:44:38 ----D---- C:\WINDOWS\rescache
2014-12-16 09:49:46 ----D---- C:\WINDOWS\SysWOW64
2014-12-16 08:31:01 ----D---- C:\WINDOWS\Logs
2014-12-14 14:49:06 ----D---- C:\WINDOWS\system32\drivers
2014-12-12 21:48:20 ----D---- C:\WINDOWS\system32\AutoUpdateLicense
2014-12-12 21:46:28 ----D---- C:\Program Files\Windows Defender
2014-12-12 21:46:28 ----D---- C:\Program Files (x86)\Windows Defender
2014-12-12 21:31:29 ----RD---- C:\Program Files
2014-12-12 10:16:51 ----RD---- C:\WINDOWS\assembly
2014-12-11 18:24:33 ----D---- C:\WINDOWS\system32\drivers\UMDF
2014-12-11 12:52:02 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2014-12-11 12:52:02 ----D---- C:\WINDOWS\system32\cs-CZ
2014-12-11 12:51:53 ----D---- C:\WINDOWS\system32\sr-Latn-RS
2014-12-11 12:51:53 ----D---- C:\WINDOWS\system32\sr-Latn-CS
2014-12-11 10:34:34 ----D---- C:\WINDOWS\system32\LogFiles
2014-12-11 10:30:38 ----RD---- C:\WINDOWS\ToastData
2014-12-11 10:30:38 ----D---- C:\WINDOWS\system32\migration
2014-12-11 10:30:33 ----SD---- C:\WINDOWS\system32\CompatTel
2014-12-11 10:30:33 ----D---- C:\WINDOWS\AppCompat
2014-12-11 10:30:19 ----D---- C:\WINDOWS\WinStore
2014-12-11 10:30:12 ----D---- C:\WINDOWS\SYSWOW64\wbem
2014-12-11 10:30:12 ----D---- C:\WINDOWS\SYSWOW64\migration
2014-12-11 10:30:11 ----D---- C:\WINDOWS\system32\wbem
2014-12-11 10:30:11 ----D---- C:\WINDOWS\system32\en-US
2014-12-11 10:30:02 ----D---- C:\Program Files (x86)\Internet Explorer
2014-12-11 10:29:59 ----D---- C:\WINDOWS\PolicyDefinitions
2014-12-11 10:29:57 ----D---- C:\Program Files\Internet Explorer
2014-12-11 10:29:53 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2014-12-11 10:29:53 ----D---- C:\WINDOWS\MediaViewer
2014-12-11 10:29:52 ----D---- C:\WINDOWS\FileManager
2014-12-11 10:29:52 ----D---- C:\WINDOWS\Camera
2014-12-11 10:29:52 ----D---- C:\WINDOWS\apppatch
2014-12-11 10:29:19 ----D---- C:\ProgramData\Microsoft Help
2014-12-11 10:28:09 ----D---- C:\WINDOWS\system32\MRT
2014-12-11 10:23:49 ----A---- C:\WINDOWS\system32\MRT.exe
2014-12-11 09:16:27 ----D---- C:\Program Files\Common Files
2014-12-11 09:13:24 ----D---- C:\WINDOWS\system32\restore
2014-12-10 13:40:48 ----D---- C:\WINDOWS\system32\catroot2
2014-12-08 11:31:28 ----D---- C:\WINDOWS\LiveKernelReports
2014-12-08 11:16:22 ----D---- C:\Program Files (x86)\Bluetooth Suite
2014-12-08 11:05:50 ----D---- C:\Program Files\Windows NT
2014-12-08 11:05:28 ----D---- C:\WINDOWS\Registration
2014-12-08 10:58:10 ----RSD---- C:\WINDOWS\Media
2014-12-08 10:46:46 ----D---- C:\WINDOWS\SYSWOW64\vbox
2014-12-08 10:46:46 ----D---- C:\WINDOWS\SYSWOW64\drivers
2014-12-08 10:46:46 ----D---- C:\WINDOWS\SYSWOW64\bitstreams
2014-12-08 10:46:46 ----D---- C:\WINDOWS\SYSWOW64\Atheros_L1e
2014-12-08 10:46:46 ----D---- C:\WINDOWS\system32\vbox
2014-12-08 10:46:46 ----D---- C:\WINDOWS\system32\Sysprep
2014-12-08 10:46:45 ----D---- C:\WINDOWS\sk
2014-12-08 10:46:45 ----D---- C:\WINDOWS\ShellNew
2014-12-08 10:46:45 ----D---- C:\WINDOWS\pl
2014-12-08 10:46:44 ----RSD---- C:\WINDOWS\Fonts
2014-12-08 10:46:44 ----D---- C:\WINDOWS\hu
2014-12-08 10:46:43 ----D---- C:\WINDOWS\en-GB
2014-12-08 10:46:43 ----D---- C:\WINDOWS\cs
2014-12-08 10:46:43 ----D---- C:\ProgramData\regid.1986-12.com.adobe
2014-12-08 10:43:58 ----D---- C:\WINDOWS\SYSWOW64\WCN
2014-12-08 10:43:57 ----D---- C:\WINDOWS\SYSWOW64\sysprep
2014-12-08 10:43:57 ----D---- C:\WINDOWS\SYSWOW64\spool
2014-12-08 10:43:57 ----D---- C:\WINDOWS\SYSWOW64\SMI
2014-12-08 10:43:56 ----D---- C:\WINDOWS\SYSWOW64\MUI
2014-12-08 10:43:56 ----D---- C:\WINDOWS\SYSWOW64\migwiz
2014-12-08 10:43:56 ----D---- C:\WINDOWS\SYSWOW64\LogFiles
2014-12-08 10:43:54 ----D---- C:\WINDOWS\SYSWOW64\IME
2014-12-08 10:43:53 ----D---- C:\WINDOWS\SYSWOW64\drivers\UMDF
2014-12-08 10:43:53 ----D---- C:\WINDOWS\SYSWOW64\catroot
2014-12-08 10:43:49 ----D---- C:\WINDOWS\system32\WCN
2014-12-08 10:43:49 ----D---- C:\WINDOWS\system32\spool
2014-12-08 10:43:44 ----D---- C:\WINDOWS\system32\oobe
2014-12-08 10:43:44 ----D---- C:\WINDOWS\system32\MUI
2014-12-08 10:43:44 ----D---- C:\WINDOWS\system32\IME
2014-12-08 10:43:43 ----D---- C:\WINDOWS\system32\drivers\etc
2014-12-08 10:42:33 ----D---- C:\WINDOWS\IME
2014-12-08 10:42:33 ----D---- C:\WINDOWS\Help
2014-12-08 10:42:30 ----D---- C:\WINDOWS\DigitalLocker
2014-12-08 10:40:28 ----RD---- C:\Users
2014-12-08 10:40:27 ----D---- C:\ProgramData\PRICache
2014-12-08 10:40:18 ----SHD---- C:\Program Files (x86)\Windows Sidebar
2014-12-08 10:40:18 ----D---- C:\Program Files (x86)\Windows Media Player
2014-12-08 10:40:14 ----D---- C:\Program Files (x86)\Microsoft.NET
2014-12-08 10:40:12 ----D---- C:\Program Files (x86)\Common Files
2014-12-08 10:40:08 ----SHD---- C:\Program Files\Windows Sidebar
2014-12-08 10:40:08 ----D---- C:\Program Files\Windows Media Player
2014-12-08 10:40:07 ----D---- C:\Program Files\Common Files\microsoft shared
2014-12-08 10:36:26 ----D---- C:\WINDOWS\system32\Recovery
2014-12-08 10:36:20 ----HD---- C:\WINDOWS\system32\GroupPolicy
2014-12-05 10:02:36 ----D---- C:\WINDOWS\AUInstallAgent
2014-11-28 16:17:19 ----D---- C:\Temp
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswRvrt;avast! Revert; C:\WINDOWS\system32\drivers\aswRvrt.sys [2014-11-20 65776]
R0 aswVmm;avast! VM Monitor; C:\WINDOWS\system32\drivers\aswVmm.sys [2014-11-20 267632]
R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2012-09-14 647736]
R0 sptd;sptd; C:\WINDOWS\System32\Drivers\sptd.sys [2014-12-12 386680]
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [2014-11-20 93568]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2014-11-22 1050432]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2014-11-20 436624]
R1 ATKWMIACPIIO;ATKWMIACPI Driver; \??\C:\Program Files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys [2011-09-07 17536]
R1 vwififlt;@%SystemRoot%\System32\drivers\vwififlt.sys,-259; C:\WINDOWS\system32\DRIVERS\vwififlt.sys [2014-04-30 71680]
R2 ASMMAP64;ASMMAP64; \??\C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys [2009-07-02 15416]
R2 aswHwid;avast! HardwareID; C:\WINDOWS\system32\drivers\aswHwid.sys [2014-11-20 29208]
R2 aswMonFlt;aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [2014-11-20 83280]
R2 VBoxAswDrv;VBoxAsw Support Driver; \??\C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [2014-11-20 271752]
R3 AiCharger;ASUS Charger Driver; C:\WINDOWS\system32\DRIVERS\AiCharger.sys [2012-09-18 17152]
R3 AthBTPort;@oem10.inf,%BTHSUPPORT.SvcDesc%;Qualcomm Atheros Virtual Bluetooth Class; C:\WINDOWS\system32\DRIVERS\btath_flt.sys [2012-12-28 89320]
R3 athr;@athw8x.inf,%ATHR.Service.DispName%;Qualcomm Atheros Extensible Wireless LAN device driver; C:\WINDOWS\system32\DRIVERS\athw8x.sys [2013-06-18 3680256]
R3 BTATH_BUS;@oem5.inf,%BTATH_BUS.SVCDESC%;Qualcomm Atheros Bluetooth Bus; C:\WINDOWS\System32\drivers\btath_bus.sys [2012-12-28 33944]
R3 BTATH_HCRP;@oem11.inf,%BTATH_HCRP.SvcDesc%;Bluetooth HCRP Server driver; C:\WINDOWS\System32\drivers\btath_hcrp.sys [2012-12-28 179432]
R3 BTATH_LWFLT;@oem20.inf,%BTATH_LWFLT%;Bluetooth LWFLT Device; C:\WINDOWS\system32\DRIVERS\btath_lwflt.sys [2012-12-28 77464]
R3 BtFilter;BtFilter; C:\WINDOWS\system32\DRIVERS\btfilter.sys [2014-04-28 599240]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\System32\drivers\BthEnum.sys [2013-08-22 53248]
R3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Ovladač úspory energie technologie Bluetooth; C:\WINDOWS\system32\DRIVERS\BthLEEnum.sys [2014-09-24 226304]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Zařízení Bluetooth (síť PAN); C:\WINDOWS\system32\DRIVERS\bthpan.sys [2014-09-24 118272]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\Drivers\BTHUSB.sys [2014-09-24 81920]
R3 ETD;@oem35.inf,%PS2DeviceDesc%;ELAN PS/2 Port Input Device; C:\WINDOWS\system32\DRIVERS\ETD.sys [2014-12-09 381192]
R3 HIDSwitch;@oem9.inf,%ASSW.DisplayName%;ASUS Wireless Radio Control; C:\WINDOWS\System32\drivers\AsHIDSwitch64.sys [2012-05-31 21152]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2014-01-29 5363200]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2012-12-11 3258256]
R3 IntcDAud;@oem31.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2012-10-26 342528]
R3 kbfiltr;@oem8.inf,%kbfiltr.SvcDesc%;Keyboard Filter; C:\WINDOWS\System32\drivers\kbfiltr.sys [2012-08-02 14992]
R3 L1C;@netl1c63x64.inf,%L1C.Service.DispName%;NDIS Miniport – ovladač pro řadič Qualcomm Atheros AR81xx PCI-E Ethernet; C:\WINDOWS\system32\DRIVERS\L1C63x64.sys [2013-06-18 129224]
R3 MEIx64;@oem32.inf,%HECI_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\System32\drivers\HECIx64.sys [2012-07-02 62784]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Zařízení Bluetooth (RFCOMM protokol TDI); C:\WINDOWS\system32\DRIVERS\rfcomm.sys [2014-09-24 167424]
R3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;Zobrazovací zařízení USB (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys [2013-08-22 212224]
R3 vwifimp;@%SystemRoot%\System32\drivers\vwifimp.sys,-261; C:\WINDOWS\system32\DRIVERS\vwifimp.sys [2014-04-30 38912]
S2 aswStm;aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [2014-11-20 116728]
S3 ATP;@oem12.inf,%PS2.DeviceDesc%;ASUS Input Device; C:\WINDOWS\System32\drivers\AsusTP.sys [2013-01-16 65784]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\Drivers\BTHport.sys [2014-09-24 1200640]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2014-05-08 65432]
R2 AFBAgent;AFBAgent; C:\Windows\system32\FBAgent.exe [2013-01-07 1280768]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2014-11-20 50344]
R2 ETDService;Elan Service; C:\Program Files\Elantech\ETDService.exe [2014-12-09 100104]
R2 SDScannerService;Spybot-S&D 2 Scanner Service; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [2014-06-24 1738168]
R2 SDUpdateService;Spybot-S&D 2 Updating Service; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [2014-06-27 2088408]
R2 SDWSCService;Spybot-S&D 2 Security Center Service; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [2014-04-25 171928]
R3 ASLDRService;ASLDR Service; C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe [2013-01-15 107320]
R3 ASUS InstantOn;ASUS InstantOn Service; C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnSrv.exe [2012-04-13 277120]
R3 AtherosSvc;AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [2012-12-28 226944]
R3 ATKGFNEXSrv;ATKGFNEX Service; C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe [2011-11-21 96896]
R3 AvastVBoxSvc;AvastVBox COM Service; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [2014-11-20 4012248]
R3 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-04-20 635104]
R3 Intel(R) ME Service;Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [2012-06-27 129856]
R3 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2012-06-25 166720]
R3 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-07-17 277824]
R3 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2012-07-17 365376]
R3 WakeupService;ASUS Wake Service; C:\Program Files\ASUS\ASUS VivoBook\ASUSWakeupService.exe [2012-12-20 45488]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-01-17 116648]
S3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2014-01-29 279000]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-01-17 116648]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2014-11-26 114800]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2012-10-01 150648]
S3 SwitchBoard;SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
-----------------EOF-----------------
- Rudy
- Site Admin
- Příspěvky: 119358
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: dohledani programu na pozadi
Smazáno. Znovu spusťte OTM a klikněte na >CleanUp!<. OTM po sobě uklidí. Nakonec restartujte PC. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
-
- Návštěvník
- Příspěvky: 58
- Registrován: 07 srp 2007 11:29