
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Reklamy, zpomalený počítač
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Reklamy, zpomalený počítač
Dobrý den,
mám zaplácané prohlížeče od reklam a úplně zpomalený počítač, trvá to 5 minut než po zadání hesla najede plocha. Někdy se stane, ze prohlížeč úplně zasekne počítač. Mám Windows 7 64 bit a zkoušel jsem spybot, adwcleaner, ccleaner. Nic ze zmiňovaných programů mi nepomohlo.
Budu rád za jakoukoliv pomoc. Díky.
Logfile of random's system information tool 1.10 (written by random/random)
Run by Rob at 2015-03-03 09:01:17
Microsoft Windows 7 Ultimate Service Pack 1
System drive D: has 376 GB (79%) free of 477 GB
Total RAM: 3988 MB (43% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 9:05:07, on 3.3.2015
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17631)
Boot mode: Normal
Running processes:
D:\Programy\Hamachi\hamachi-2-ui.exe
D:\Program Files (x86)\Spyware Terminator\SpywareTerminatorShield.exe
D:\Programy\Total Media Theatre 5\TotalMedia Server\TM Server.exe
D:\Program Files (x86)\Gigabyte\AppCenter\ApCent.exe
D:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe
D:\Program Files (x86)\Spyware Terminator\SpywareTerminatorUpdate.exe
D:\Program Files (x86)\Google\Chrome\Application\chrome.exe
D:\Program Files (x86)\Google\Chrome\Application\chrome.exe
D:\Program Files (x86)\Google\Chrome\Application\chrome.exe
D:\Program Files (x86)\Google\Chrome\Application\chrome.exe
D:\Program Files (x86)\Google\Chrome\Application\chrome.exe
D:\Program Files (x86)\Google\Chrome\Application\chrome.exe
D:\Program Files (x86)\Google\Chrome\Application\chrome.exe
D:\Program Files\trend micro\Rob.exe
D:\Program Files (x86)\Google\Chrome\Application\chrome.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/?clid=20808
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = D:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Lync Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - D:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - D:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - D:\PROGRA~2\MICROS~3\Office15\URLREDIR.DLL
O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - D:\PROGRA~2\MICROS~3\Office15\GROOVEEX.DLL
O2 - BHO: SmartBar Helper Object - {FD36FEBE-DBA1-4597-9DD1-B13794B92F68} - D:\Program Files (x86)\Bechiro S.L\smartbar\1.8.8.12\bh\smartbar.dll
O4 - HKLM\..\Run: [Adobe ARM] "D:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [SDTray] "D:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"
O4 - HKLM\..\RunOnce: [PreRun] D:\Program Files (x86)\Gigabyte\AppCenter\PreRun.exe
O4 - HKCU\..\Run: [CCleaner Monitoring] "D:\PROGRAM FILES\CCLEANER\CCLEANER64.EXE" /MONITOR
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] D:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] D:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\RunOnce: [SPReview] "D:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [SPReview] "D:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'Default user')
O4 - Global Startup: TotalMedia Server.lnk = D:\Programy\Total Media Theatre 5\TotalMedia Server\TM Server.exe
O8 - Extra context menu item: E&xportovat do Microsoft Excelu - res://D:\Programy\MICROS~1\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do OneNotu - res://D:\Programy\MICROS~1\Office15\ONBttnIE.dll/105
O9 - Extra button: Odeslat do OneNotu - {2670000A-7350-4f3c-8081-5663EE0C6C49} - D:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do OneNotu - {2670000A-7350-4f3c-8081-5663EE0C6C49} - D:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra button: Volání kliknutím v Lyncu - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - D:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O9 - Extra 'Tools' menuitem: Volání kliknutím v Lyncu - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - D:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - D:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - D:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O10 - Unknown file in Winsock LSP: d:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: d:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: *.clonewarsadventures.com
O15 - Trusted Zone: *.freerealms.com
O15 - Trusted Zone: *.soe.com
O15 - Trusted Zone: *.sony.com
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - https://fpdownload.macromedia.com/get/s ... wflash.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{3BE09598-9584-4013-A6F4-B8F50B4AABE1}: NameServer = 109.164.64.64,8.8.8.8
O17 - HKLM\System\CS1\Services\Tcpip\..\{3BE09598-9584-4013-A6F4-B8F50B4AABE1}: NameServer = 109.164.64.64,8.8.8.8
O17 - HKLM\System\CS2\Services\Tcpip\..\{3BE09598-9584-4013-A6F4-B8F50B4AABE1}: NameServer = 109.164.64.64,8.8.8.8
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - D:\Program Files (x86)\Microsoft Office\Office15\MSOSB.DLL
O18 - Filter hijack: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - D:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL
O20 - Winlogon Notify: SDWinLogon - SDWinLogon.dll (file missing)
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - D:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - D:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - D:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - D:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: ACP User Service (amdacpusrsvc) - Advanced Micro Devices - D:\Program Files\AMD\{920DEC42-4CA5-4d1d-9487-67BE645CDDFC}\amdacpusrsvc.exe
O23 - Service: BlueStacks Android Service (BstHdAndroidSvc) - BlueStack Systems, Inc. - D:\Program Files (x86)\BlueStacks\HD-Service.exe
O23 - Service: BlueStacks Log Rotator Service (BstHdLogRotatorSvc) - BlueStack Systems, Inc. - D:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe
O23 - Service: BlueStacks Updater Service (BstHdUpdaterSvc) - BlueStack Systems, Inc. - D:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - D:\Windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - D:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - D:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: GIGABYTE Adjust (gadjservice) - Unknown owner - D:\Program Files (x86)\Gigabyte\AppCenter\AdjustService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - D:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - D:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - D:\Programy\Hamachi\hamachi-2.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - D:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - D:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - D:\Windows\system32\igfxCUIService.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - D:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - D:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - D:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - D:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - D:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - D:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - D:\Windows\system32\lsass.exe (file missing)
O23 - Service: nProtect GameGuard Service (npggsvc) - Unknown owner - D:\Windows\system32\GameMon.des.exe (file missing)
O23 - Service: Origin Client Service - Electronic Arts - E:\Hry\Origin\OriginClientService.exe
O23 - Service: PnkBstrA - Unknown owner - D:\Windows\system32\PnkBstrA.exe
O23 - Service: PnkBstrB - Unknown owner - D:\Windows\system32\PnkBstrB.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - D:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - D:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - D:\Windows\system32\lsass.exe (file missing)
O23 - Service: Sandboxie Service (SbieSvc) - Sandboxie Holdings, LLC - D:\Programy\Sandboxie\SbieSvc.exe
O23 - Service: Spybot-S&D 2 Scanner Service (SDScannerService) - Safer-Networking Ltd. - D:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe
O23 - Service: Spybot-S&D 2 Updating Service (SDUpdateService) - Safer-Networking Ltd. - D:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe
O23 - Service: Spybot-S&D 2 Security Center Service (SDWSCService) - Safer-Networking Ltd. - D:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - D:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - D:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - D:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - D:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Spyware Terminator 2012 Realtime Shield Service (ST2012_Svc) - Crawler.com - D:\Program Files (x86)\Spyware Terminator\st_rsser64.exe
O23 - Service: Steam Client Service - Valve Corporation - D:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - D:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - D:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - D:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - D:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - D:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - D:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - D:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - D:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 12901 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
winlogon.exe
D:\Windows\system32\services.exe
D:\Windows\system32\lsass.exe
D:\Windows\system32\lsm.exe
D:\Windows\system32\svchost.exe -k DcomLaunch
D:\Windows\system32\svchost.exe -k RPCSS
D:\Windows\system32\atiesrxx.exe
D:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
D:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
D:\Windows\system32\svchost.exe -k LocalService
D:\Windows\system32\svchost.exe -k netsvcs
D:\Windows\system32\igfxCUIService.exe
"D:\Programy\Sandboxie\SbieSvc.exe"
D:\Windows\system32\svchost.exe -k NetworkService
D:\Windows\System32\spoolsv.exe
atieclxx
D:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"D:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"D:\Program Files\AMD\{920DEC42-4CA5-4d1d-9487-67BE645CDDFC}\amdacpusrsvc.exe"
"taskhost.exe"
taskeng.exe {AC03A796-4A6A-4451-9CFF-EDF0E668D3EB}
"D:\Windows\system32\Dwm.exe"
D:\Windows\Explorer.EXE
"D:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe"
"D:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe"
"D:\Program Files (x86)\Gigabyte\AppCenter\AdjustService.exe"
"D:\Program Files\Intel\iCLS Client\HeciServer.exe"
D:\Windows\SysWOW64\PnkBstrA.exe
D:\Windows\SysWOW64\PnkBstrB.exe
"D:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe"
"D:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe"
"D:\Program Files (x86)\Spyware Terminator\st_rsser64.exe"
D:\Windows\system32\svchost.exe -k imgsvc
"D:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
D:\Programy\Hamachi\hamachi-2.exe -s
D:\Programy\Hamachi\LMIGuardianSvc /escort 2644 /CUSTOM Hamachi
WLIDSvcM.exe 2524
D:\Windows\system32\wbem\wmiprvse.exe
"D:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe"
"D:\Programy\Hamachi\hamachi-2-ui.exe" --auto-start
D:\Programy\Hamachi\LMIGuardianSvc /escort 1424 /CUSTOM Hamachi
D:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
D:\Windows\system32\SearchIndexer.exe /Embedding
igfxEM.exe
"D:\Program Files (x86)\Spyware Terminator\SpywareTerminatorShield.exe"
"D:\Programy\Total Media Theatre 5\TotalMedia Server\TM Server.exe"
"D:\Program Files (x86)\Gigabyte\AppCenter\ApCent.exe"
"D:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"
"D:\Program Files (x86)\Spyware Terminator\SpywareTerminatorUpdate.exe" /ELEVATED
"D:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac
"D:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"D:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="820.0.1976202764\361648358" --supports-dual-gpus=false --gpu-driver-bug-workarounds=1,18,39 --gpu-vendor-id=0x1002 --gpu-device-id=0x6658 --gpu-driver-vendor="Advanced Micro Devices, Inc." --gpu-driver-version=14.501.1003.0 --ignored=" --type=renderer " /prefetch:822062411
"D:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="ChromeSuggestions/Mixed/DomRel-Enable/enable/EmbeddedSearch/Group1 dev:pp6 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/ControlEnforce/ExtensionInstallVerification/Bootstrap/GoogleNow/Enable/NewProfileManagement/Enabled/OmniboxBundledExperimentV1/DevHUPDecayWithHQPRelevanceScoring_Control/PasswordGeneration/Disabled/RememberCertificateErrorDecisions/Default/SRTPromptFieldTrial/On/SafeBrowsingIncidentReportingService/Enabled/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-Population-Restrict/normal/UMA-Uniformity-Trial-1-Percent/group_54/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-50-Percent/group_01/UwSInterstitialStatus/On/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="820.1.162955028\1174695436" /prefetch:673131151
"D:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/ChromeSuggestions/Mixed/DomRel-Enable/enable/EmbeddedSearch/Group1 dev:pp6 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/ControlEnforce/ExtensionInstallVerification/Bootstrap/GoogleNow/Enable/NewProfileManagement/Enabled/OmniboxBundledExperimentV1/DevHUPDecayWithHQPRelevanceScoring_Control/PasswordGeneration/Disabled/RememberCertificateErrorDecisions/Default/SRTPromptFieldTrial/On/SafeBrowsingIncidentReportingService/Enabled/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-Population-Restrict/normal/UMA-Uniformity-Trial-1-Percent/group_54/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-50-Percent/group_01/UwSInterstitialStatus/On/VoiceTrigger/Install/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="820.3.604050821\1859901882" /prefetch:673131151
"D:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=ppapi --channel="820.6.878793779\1740877477" --ppapi-flash-args=enable_hw_video_decode=1 --lang=cs --ignored=" --type=renderer " /prefetch:-632637702
"D:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/ChromeSuggestions/Mixed/DomRel-Enable/enable/EmbeddedSearch/Group1 dev:pp6 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/ControlEnforce/ExtensionInstallVerification/Bootstrap/GoogleNow/Enable/NewProfileManagement/Enabled/OmniboxBundledExperimentV1/DevHUPDecayWithHQPRelevanceScoring_Control/PasswordGeneration/Disabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/RememberCertificateErrorDecisions/Default/SRTPromptFieldTrial/On/SafeBrowsingIncidentReportingService/Enabled/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-Population-Restrict/normal/UMA-Uniformity-Trial-1-Percent/group_54/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-50-Percent/group_01/UwSInterstitialStatus/On/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="820.9.744677026\624108823" /prefetch:673131151
"D:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/ChromeSuggestions/Mixed/DomRel-Enable/enable/EmbeddedSearch/Group1 dev:pp6 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/ControlEnforce/ExtensionInstallVerification/Bootstrap/GoogleNow/Enable/NewProfileManagement/Enabled/OmniboxBundledExperimentV1/DevHUPDecayWithHQPRelevanceScoring_Control/PasswordGeneration/Disabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/RememberCertificateErrorDecisions/Default/SRTPromptFieldTrial/On/SafeBrowsingIncidentReportingService/Enabled/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-Population-Restrict/normal/UMA-Uniformity-Trial-1-Percent/group_54/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-50-Percent/group_01/UwSInterstitialStatus/On/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="820.11.750289964\1405924347" /prefetch:673131151
D:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"D:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"D:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"D:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
D:\Windows\System32\svchost.exe -k secsvcs
D:\Windows\servicing\TrustedInstaller.exe
"D:\Users\Rob\Downloads\RSITx64.exe"
D:\Windows\system32\wbem\wmiprvse.exe
D:\Windows\system32\vssvc.exe
D:\Windows\System32\svchost.exe -k swprv
"D:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/ChromeSuggestions/Mixed/DomRel-Enable/enable/EmbeddedSearch/Group1 dev:pp6 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/ControlEnforce/ExtensionInstallVerification/Bootstrap/GoogleNow/Enable/NewProfileManagement/Enabled/OmniboxBundledExperimentV1/DevHUPDecayWithHQPRelevanceScoring_Control/PasswordGeneration/Disabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/RememberCertificateErrorDecisions/Default/SRTPromptFieldTrial/On/SafeBrowsingIncidentReportingService/Enabled/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-Population-Restrict/normal/UMA-Uniformity-Trial-1-Percent/group_54/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-50-Percent/group_01/UwSInterstitialStatus/On/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="820.19.1622896576\1910049040" /prefetch:673131151
======Scheduled tasks folder======
D:\Windows\tasks\Adobe Flash Player Updater.job - D:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
D:\Windows\tasks\GoogleUpdateTaskMachineCore.job - D:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
D:\Windows\tasks\GoogleUpdateTaskMachineUA.job - D:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Lync Browser Helper - D:\Programy\Microsoft office\Office15\OCHelper.dll [2015-01-21 218776]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - D:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 532336]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - D:\Programy\MICROS~1\Office15\URLREDIR.DLL [2014-01-23 881880]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - D:\Programy\MICROS~1\Office15\GROOVEEX.DLL [2015-01-21 2334928]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Lync Browser Helper - D:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2015-01-21 153248]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - D:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 403840]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - D:\PROGRA~2\MICROS~3\Office15\URLREDIR.DLL [2014-01-22 707800]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - D:\PROGRA~2\MICROS~3\Office15\GROOVEEX.DLL [2015-01-21 1729744]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FD36FEBE-DBA1-4597-9DD1-B13794B92F68}]
SmartBar Helper Object - D:\Program Files (x86)\Bechiro S.L\smartbar\1.8.8.12\bh\smartbar.dll [2013-01-13 247704]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SpywareTerminatorShield"=D:\Program Files (x86)\Spyware Terminator\SpywareTerminatorShield.exe [2014-11-04 2774904]
"SpywareTerminatorUpdater"=D:\Program Files (x86)\Spyware Terminator\SpywareTerminatorUpdate.exe [2014-11-04 3681656]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CCleaner Monitoring"=D:\PROGRAM FILES\CCLEANER\CCLEANER64.EXE [2014-12-12 7394584]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\cz.seznam.software.autoupdate]
D:\Users\Rob\AppData\Roaming\Seznam.cz\szninstall.exe [2013-05-16 1062472]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\cz.seznam.software.szndesktop]
D:\Users\Rob\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [2013-04-12 92664]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
D:\Programy\DAEMON Tools Lite\DTLite.exe [2014-03-04 3696912]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EADM]
E:\Hry\Origin\Origin.exe [2015-01-28 3619160]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GoogleChromeAutoLaunch_03B222C27352DB95584D7D3D3E18CC9C]
D:\Program Files (x86)\Google\Chrome\Application\chrome.exe [2015-02-17 843592]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IAStorIcon]
D:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe [2014-04-11 36352]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LogMeIn Hamachi Ui]
D:\Programy\Hamachi\hamachi-2-ui.exe [2015-02-17 3978600]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NCUpdateHelper]
D:\Program Files (x86)\NCWest\NCLauncher\NCUpdateHelper.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PDFPrint]
D:\Programy\PDF24\pdf24.exe [2014-11-11 193568]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Raptr]
D:\PROGRA~2\Raptr\raptrstub.exe [2015-01-30 55568]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SandboxieControl]
D:\Programy\Sandboxie\SbieCtrl.exe [2014-10-14 784904]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\seznam-listicka-distribuce]
D:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [2013-05-16 1062472]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Start WingMan Profiler]
D:\Program Files\Logitech\Gaming Software\LWEMon.exe [2010-06-14 190536]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\StartCCC]
D:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe [2014-11-20 767176]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\USB3MON]
D:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [2014-02-21 292848]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\D:^Users^Rob^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Avanset-VCE-Exam-Simulator-Pro-v1.1.7-+-Crack.exe]
D:\Users\Rob\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Avanset-VCE-Exam-Simulator-Pro-v1.1.7-+-Crack.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\D:^Users^Rob^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Download Avanset VCE Player 1.2 Torrent - KickassTorrents Proxy.lnk]
D:\PROGRA~3\{E3E70~1\DOWNLO~1.EXE [2014-02-25 1070592]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\D:^Users^Rob^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^VCE Exam Simulator Pro 1.1.7 Final Crack Download.lnk]
D:\PROGRA~3\{44AE7~1\VCEEXA~1.EXE [2014-02-24 1057792]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"Adobe ARM"=D:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-12-19 1022152]
"SDTray"=D:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [2014-06-24 4101576]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\RunOnce]
"PreRun"=D:\Program Files (x86)\Gigabyte\AppCenter\PreRun.exe [2013-04-29 8192]
D:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
TotalMedia Server.lnk - D:\Programy\Total Media Theatre 5\TotalMedia Server\TM Server.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=" "
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Hamachi2Svc]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"D:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"="D:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe:*:Enabled:Spybot - Search & Destroy tray access"
"D:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe"="D:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe:*:Enabled:Spybot-S&D 2 Scanner Service"
"D:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe"="D:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe:*:Enabled:Spybot-S&D 2 Updater"
"D:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe"="D:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe:*:Enabled:Spybot-S&D 2 Background update service"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=D:\Windows\System32\l3codeca.acm
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux2"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"aux3"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"aux4"=wdmaud.drv
"wave5"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer5"=wdmaud.drv
"aux5"=wdmaud.drv
======File associations======
.js - edit - D:\Windows\System32\Notepad.exe %1
.js - open - D:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2015-03-03 09:01:17 ----D---- D:\rsit
2015-03-03 09:01:17 ----D---- D:\Program Files\trend micro
2015-03-02 20:02:26 ----D---- D:\Users\Rob\AppData\Roaming\ArcSoft
2015-03-02 20:00:02 ----D---- D:\ProgramData\ArcSoft
2015-03-02 19:59:58 ----A---- D:\Windows\system32\MMCEDT5.exe
2015-03-02 19:59:58 ----A---- D:\Windows\system32\drivers\ArcSec.sys
2015-02-27 22:30:25 ----D---- D:\Program Files\Microsoft.NET
2015-02-27 15:37:12 ----A---- D:\Windows\SYSWOW64\jscript9diag.dll
2015-02-27 15:37:12 ----A---- D:\Windows\SYSWOW64\jscript9.dll
2015-02-27 15:37:11 ----A---- D:\Windows\system32\jscript9diag.dll
2015-02-27 15:37:11 ----A---- D:\Windows\system32\jscript9.dll
2015-02-27 15:37:09 ----A---- D:\Windows\SYSWOW64\explorer.exe
2015-02-27 15:37:09 ----A---- D:\Windows\explorer.exe
2015-02-27 15:37:02 ----A---- D:\Windows\SYSWOW64\KBDYAK.DLL
2015-02-27 15:37:02 ----A---- D:\Windows\SYSWOW64\KBDTAT.DLL
2015-02-27 15:37:02 ----A---- D:\Windows\SYSWOW64\KBDRU1.DLL
2015-02-27 15:37:02 ----A---- D:\Windows\SYSWOW64\KBDRU.DLL
2015-02-27 15:37:02 ----A---- D:\Windows\SYSWOW64\KBDBASH.DLL
2015-02-27 15:37:02 ----A---- D:\Windows\system32\KBDYAK.DLL
2015-02-27 15:37:02 ----A---- D:\Windows\system32\KBDTAT.DLL
2015-02-27 15:37:02 ----A---- D:\Windows\system32\KBDRU1.DLL
2015-02-27 15:37:02 ----A---- D:\Windows\system32\KBDRU.DLL
2015-02-27 15:37:02 ----A---- D:\Windows\system32\KBDBASH.DLL
2015-02-27 15:36:49 ----A---- D:\Windows\SYSWOW64\esent.dll
2015-02-27 15:36:49 ----A---- D:\Windows\system32\fsutil.exe
2015-02-27 15:36:49 ----A---- D:\Windows\system32\esent.dll
2015-02-27 15:36:49 ----A---- D:\Windows\system32\drivers\nvraid.sys
2015-02-27 15:36:49 ----A---- D:\Windows\system32\drivers\iaStorV.sys
2015-02-27 15:36:49 ----A---- D:\Windows\system32\drivers\amdxata.sys
2015-02-27 15:36:48 ----A---- D:\Windows\SYSWOW64\fsutil.exe
2015-02-27 15:36:48 ----A---- D:\Windows\system32\drivers\USBSTOR.SYS
2015-02-27 15:36:48 ----A---- D:\Windows\system32\drivers\nvstor.sys
2015-02-27 15:36:48 ----A---- D:\Windows\system32\drivers\amdsata.sys
2015-02-27 15:36:36 ----A---- D:\Windows\system32\spoolsv.exe
2015-02-27 15:36:36 ----A---- D:\Windows\splwow64.exe
2015-02-27 09:54:57 ----A---- D:\Windows\SYSWOW64\wmploc.DLL
2015-02-27 09:54:57 ----A---- D:\Windows\SYSWOW64\wmp.dll
2015-02-27 09:54:57 ----A---- D:\Windows\system32\wmploc.DLL
2015-02-27 09:54:56 ----A---- D:\Windows\system32\wmp.dll
2015-02-27 08:39:16 ----D---- D:\Windows\SYSWOW64\Wat
2015-02-27 08:39:16 ----D---- D:\Windows\system32\Wat
2015-02-27 01:12:54 ----A---- D:\Windows\SYSWOW64\mferror.dll
2015-02-27 01:12:54 ----A---- D:\Windows\system32\rrinstaller.exe
2015-02-27 01:12:54 ----A---- D:\Windows\system32\mfpmp.exe
2015-02-27 01:12:54 ----A---- D:\Windows\system32\mferror.dll
2015-02-27 01:12:53 ----A---- D:\Windows\SYSWOW64\rrinstaller.exe
2015-02-27 01:12:53 ----A---- D:\Windows\SYSWOW64\mfps.dll
2015-02-27 01:12:53 ----A---- D:\Windows\SYSWOW64\mfpmp.exe
2015-02-27 01:12:53 ----A---- D:\Windows\SYSWOW64\mf.dll
2015-02-27 01:12:53 ----A---- D:\Windows\system32\mfps.dll
2015-02-27 01:12:53 ----A---- D:\Windows\system32\mf.dll
2015-02-27 01:11:13 ----A---- D:\Windows\system32\WUDFx.dll
2015-02-27 01:11:13 ----A---- D:\Windows\system32\WUDFSvc.dll
2015-02-27 01:11:13 ----A---- D:\Windows\system32\WUDFPlatform.dll
2015-02-27 01:11:13 ----A---- D:\Windows\system32\WUDFHost.exe
2015-02-27 01:11:13 ----A---- D:\Windows\system32\WUDFCoinstaller.dll
2015-02-27 01:11:13 ----A---- D:\Windows\system32\drivers\WUDFRd.sys
2015-02-27 01:11:13 ----A---- D:\Windows\system32\drivers\WUDFPf.sys
2015-02-27 00:55:13 ----A---- D:\Windows\SYSWOW64\msmpeg2vdec.dll
2015-02-27 00:55:13 ----A---- D:\Windows\system32\msmpeg2vdec.dll
2015-02-26 23:53:05 ----D---- D:\Networking
2015-02-26 22:21:11 ----A---- D:\Windows\SYSWOW64\FlashPlayerApp.exe
2015-02-26 22:21:10 ----D---- D:\Windows\SYSWOW64\Macromed
2015-02-26 22:21:06 ----D---- D:\Windows\system32\Macromed
2015-02-26 21:38:12 ----A---- D:\Windows\system32\sdnclean64.exe
2015-02-26 21:38:11 ----D---- D:\ProgramData\Spybot - Search & Destroy
2015-02-26 21:38:08 ----D---- D:\Program Files (x86)\Spybot - Search & Destroy 2
2015-02-26 17:39:39 ----A---- D:\Windows\system32\TSWbPrxy.exe
2015-02-26 17:39:38 ----A---- D:\Windows\system32\invagent.dll
2015-02-26 17:39:38 ----A---- D:\Windows\system32\generaltel.dll
2015-02-26 17:39:38 ----A---- D:\Windows\system32\devinv.dll
2015-02-26 17:39:38 ----A---- D:\Windows\system32\appraiser.dll
2015-02-26 17:39:38 ----A---- D:\Windows\system32\aitstatic.exe
2015-02-26 17:39:38 ----A---- D:\Windows\system32\aeinv.dll
2015-02-26 17:39:37 ----A---- D:\Windows\system32\aepdu.dll
2015-02-26 17:39:36 ----A---- D:\Windows\system32\aepic.dll
2015-02-26 17:39:34 ----A---- D:\Windows\system32\profsvc.dll
2015-02-26 17:39:31 ----A---- D:\Windows\SYSWOW64\schannel.dll
2015-02-26 17:39:31 ----A---- D:\Windows\SYSWOW64\kerberos.dll
2015-02-26 17:39:31 ----A---- D:\Windows\system32\schannel.dll
2015-02-26 17:39:30 ----A---- D:\Windows\SYSWOW64\TSpkg.dll
2015-02-26 17:39:30 ----A---- D:\Windows\SYSWOW64\ncrypt.dll
2015-02-26 17:39:30 ----A---- D:\Windows\SYSWOW64\msv1_0.dll
2015-02-26 17:39:30 ----A---- D:\Windows\system32\wdigest.dll
2015-02-26 17:39:30 ----A---- D:\Windows\system32\TSpkg.dll
2015-02-26 17:39:30 ----A---- D:\Windows\system32\ncrypt.dll
2015-02-26 17:39:30 ----A---- D:\Windows\system32\msv1_0.dll
2015-02-26 17:39:30 ----A---- D:\Windows\system32\kerberos.dll
2015-02-26 17:39:29 ----A---- D:\Windows\SYSWOW64\wdigest.dll
2015-02-26 17:39:29 ----A---- D:\Windows\SYSWOW64\credssp.dll
2015-02-26 17:39:29 ----A---- D:\Windows\system32\credssp.dll
2015-02-26 17:38:47 ----A---- D:\Windows\SYSWOW64\mshtmled.dll
2015-02-26 17:38:47 ----A---- D:\Windows\SYSWOW64\MshtmlDac.dll
2015-02-26 17:38:47 ----A---- D:\Windows\SYSWOW64\iernonce.dll
2015-02-26 17:38:47 ----A---- D:\Windows\SYSWOW64\ieetwproxystub.dll
2015-02-26 17:38:47 ----A---- D:\Windows\system32\ieetwproxystub.dll
2015-02-26 17:38:47 ----A---- D:\Windows\system32\ieetwcollector.exe
2015-02-26 17:38:46 ----A---- D:\Windows\SYSWOW64\urlmon.dll
2015-02-26 17:38:46 ----A---- D:\Windows\SYSWOW64\mshtml.dll
2015-02-26 17:38:46 ----A---- D:\Windows\SYSWOW64\msfeeds.dll
2015-02-26 17:38:46 ----A---- D:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2015-02-26 17:38:46 ----A---- D:\Windows\SYSWOW64\iedkcs32.dll
2015-02-26 17:38:46 ----A---- D:\Windows\SYSWOW64\dxtrans.dll
2015-02-26 17:38:46 ----A---- D:\Windows\system32\JavaScriptCollectionAgent.dll
2015-02-26 17:38:46 ----A---- D:\Windows\system32\iernonce.dll
2015-02-26 17:38:46 ----A---- D:\Windows\system32\ie4uinit.exe
2015-02-26 17:38:45 ----A---- D:\Windows\SYSWOW64\jsproxy.dll
2015-02-26 17:38:45 ----A---- D:\Windows\SYSWOW64\ieUnatt.exe
2015-02-26 17:38:45 ----A---- D:\Windows\SYSWOW64\iesetup.dll
2015-02-26 17:38:45 ----A---- D:\Windows\SYSWOW64\iertutil.dll
2015-02-26 17:38:45 ----A---- D:\Windows\SYSWOW64\ieapfltr.dll
2015-02-26 17:38:45 ----A---- D:\Windows\system32\urlmon.dll
2015-02-26 17:38:45 ----A---- D:\Windows\system32\ieetwcollectorres.dll
2015-02-26 17:38:45 ----A---- D:\Windows\system32\iedkcs32.dll
2015-02-26 17:38:44 ----A---- D:\Windows\SYSWOW64\ieui.dll
2015-02-26 17:38:44 ----A---- D:\Windows\SYSWOW64\ieframe.dll
2015-02-26 17:38:44 ----A---- D:\Windows\SYSWOW64\dxtmsft.dll
2015-02-26 17:38:44 ----A---- D:\Windows\system32\MsSpellCheckingFacility.exe
2015-02-26 17:38:44 ----A---- D:\Windows\system32\msfeeds.dll
2015-02-26 17:38:44 ----A---- D:\Windows\system32\iesetup.dll
2015-02-26 17:38:44 ----A---- D:\Windows\system32\ieapfltr.dll
2015-02-26 17:38:44 ----A---- D:\Windows\system32\dxtrans.dll
2015-02-26 17:38:43 ----A---- D:\Windows\SYSWOW64\wininet.dll
2015-02-26 17:38:43 ----A---- D:\Windows\SYSWOW64\vbscript.dll
2015-02-26 17:38:43 ----A---- D:\Windows\SYSWOW64\mshtmlmedia.dll
2015-02-26 17:38:43 ----A---- D:\Windows\system32\iertutil.dll
2015-02-26 17:38:42 ----A---- D:\Windows\SYSWOW64\msrating.dll
2015-02-26 17:38:42 ----A---- D:\Windows\system32\jsproxy.dll
2015-02-26 17:38:42 ----A---- D:\Windows\system32\ieUnatt.exe
2015-02-26 17:38:42 ----A---- D:\Windows\system32\ieui.dll
2015-02-26 17:38:42 ----A---- D:\Windows\system32\ieframe.dll
2015-02-26 17:38:42 ----A---- D:\Windows\system32\dxtmsft.dll
2015-02-26 17:38:41 ----A---- D:\Windows\system32\wininet.dll
2015-02-26 17:38:41 ----A---- D:\Windows\system32\vbscript.dll
2015-02-26 17:38:41 ----A---- D:\Windows\system32\mshtmlmedia.dll
2015-02-26 17:38:41 ----A---- D:\Windows\system32\mshtmled.dll
2015-02-26 17:38:40 ----A---- D:\Windows\system32\msrating.dll
2015-02-26 17:38:40 ----A---- D:\Windows\system32\MshtmlDac.dll
2015-02-26 17:38:40 ----A---- D:\Windows\system32\mshtml.dll
2015-02-26 17:37:06 ----A---- D:\Windows\SYSWOW64\nlaapi.dll
2015-02-26 17:37:06 ----A---- D:\Windows\SYSWOW64\ncsi.dll
2015-02-26 17:37:06 ----A---- D:\Windows\system32\nlasvc.dll
2015-02-26 17:37:04 ----A---- D:\Windows\system32\WindowsCodecs.dll
2015-02-26 17:37:03 ----A---- D:\Windows\SYSWOW64\WindowsCodecs.dll
2015-02-26 17:37:01 ----A---- D:\Windows\system32\drivers\mrxdav.sys
2015-02-26 17:36:57 ----A---- D:\Windows\SYSWOW64\adtschema.dll
2015-02-26 17:36:57 ----A---- D:\Windows\system32\lsasrv.dll
2015-02-26 17:36:57 ----A---- D:\Windows\system32\drivers\ksecdd.sys
2015-02-26 17:36:57 ----A---- D:\Windows\system32\drivers\cng.sys
2015-02-26 17:36:57 ----A---- D:\Windows\system32\adtschema.dll
2015-02-26 17:36:56 ----A---- D:\Windows\SYSWOW64\sspicli.dll
2015-02-26 17:36:56 ----A---- D:\Windows\SYSWOW64\secur32.dll
2015-02-26 17:36:56 ----A---- D:\Windows\SYSWOW64\msobjs.dll
2015-02-26 17:36:56 ----A---- D:\Windows\SYSWOW64\msaudite.dll
2015-02-26 17:36:56 ----A---- D:\Windows\SYSWOW64\auditpol.exe
2015-02-26 17:36:56 ----A---- D:\Windows\system32\sspisrv.dll
2015-02-26 17:36:56 ----A---- D:\Windows\system32\sspicli.dll
2015-02-26 17:36:56 ----A---- D:\Windows\system32\secur32.dll
2015-02-26 17:36:56 ----A---- D:\Windows\system32\msobjs.dll
2015-02-26 17:36:56 ----A---- D:\Windows\system32\msaudite.dll
2015-02-26 17:36:56 ----A---- D:\Windows\system32\lsass.exe
2015-02-26 17:36:56 ----A---- D:\Windows\system32\drivers\ksecpkg.sys
2015-02-26 17:36:56 ----A---- D:\Windows\system32\auditpol.exe
2015-02-26 17:36:16 ----A---- D:\Windows\SYSWOW64\wintrust.dll
2015-02-26 17:36:16 ----A---- D:\Windows\SYSWOW64\cryptsvc.dll
2015-02-26 17:36:16 ----A---- D:\Windows\SYSWOW64\crypt32.dll
2015-02-26 17:36:16 ----A---- D:\Windows\system32\wintrust.dll
2015-02-26 17:36:16 ----A---- D:\Windows\system32\cryptsvc.dll
2015-02-26 17:36:16 ----A---- D:\Windows\system32\crypt32.dll
2015-02-26 17:35:36 ----A---- D:\Windows\SYSWOW64\oleaut32.dll
2015-02-26 17:35:36 ----A---- D:\Windows\system32\oleaut32.dll
2015-02-26 17:35:34 ----A---- D:\Windows\system32\mstscax.dll
2015-02-26 17:35:33 ----A---- D:\Windows\SYSWOW64\mstscax.dll
2015-02-26 17:35:32 ----A---- D:\Windows\SYSWOW64\aaclient.dll
2015-02-26 17:34:00 ----A---- D:\Windows\SYSWOW64\scesrv.dll
2015-02-26 17:34:00 ----A---- D:\Windows\system32\scesrv.dll
2015-02-26 17:33:55 ----A---- D:\Windows\SYSWOW64\ntkrnlpa.exe
2015-02-26 17:33:55 ----A---- D:\Windows\system32\ntoskrnl.exe
2015-02-26 17:33:54 ----A---- D:\Windows\SYSWOW64\ntoskrnl.exe
2015-02-26 17:33:53 ----A---- D:\Windows\system32\srcore.dll
2015-02-26 17:33:53 ----A---- D:\Windows\system32\rstrui.exe
2015-02-26 17:33:52 ----A---- D:\Windows\SYSWOW64\srclient.dll
2015-02-26 17:33:52 ----A---- D:\Windows\system32\srclient.dll
2015-02-26 17:32:15 ----A---- D:\Windows\system32\win32k.sys
2015-02-26 16:21:55 ----D---- D:\Program Files\Common Files\DESIGNER
2015-02-26 16:21:27 ----D---- D:\Program Files (x86)\Microsoft SQL Server
2015-02-26 16:21:10 ----D---- D:\ProgramData\regid.1991-06.com.microsoft
2015-02-26 16:20:31 ----D---- D:\Windows\PCHEALTH
2015-02-26 16:20:31 ----D---- D:\Program Files\Microsoft SQL Server
2015-02-26 16:18:32 ----D---- D:\Program Files\Microsoft Analysis Services
2015-02-26 16:18:32 ----D---- D:\Program Files (x86)\Microsoft Analysis Services
2015-02-26 16:18:15 ----D---- D:\Program Files (x86)\Microsoft Office
2015-02-26 16:18:02 ----D---- D:\ProgramData\Microsoft Help
2015-02-26 16:17:27 ----RHD---- D:\MSOCache
2015-02-26 13:13:42 ----D---- D:\ProgramData\BlueStacksSetup
2015-02-26 13:13:42 ----D---- D:\ProgramData\BlueStacks
2015-02-26 13:13:42 ----D---- D:\Program Files (x86)\BlueStacks
2015-02-26 12:24:31 ----D---- D:\Program Files (x86)\Bechiro S.L
2015-02-26 12:24:30 ----D---- D:\Users\Rob\AppData\Roaming\Bechiro S.L
2015-02-26 12:24:30 ----D---- D:\Program Files (x86)\Mozilla Firefox
2015-02-26 12:20:59 ----D---- D:\Users\Rob\AppData\Roaming\Opera Software
2015-02-26 12:20:42 ----D---- D:\Program Files (x86)\Opera
2015-02-26 12:20:16 ----D---- D:\Program Files (x86)\9b0a2a1e-3b76-4fee-bbe1-d53b372c4d05
2015-02-26 12:20:15 ----D---- D:\Program Files (x86)\Shoppy-Up.2.7
2015-02-25 10:20:09 ----D---- D:\Users\Rob\AppData\Roaming\PrimoPDF
2015-02-25 10:19:16 ----A---- D:\Windows\system32\Primomonnt.dll
2015-02-25 10:19:14 ----D---- D:\Program Files (x86)\Nitro PDF
2015-02-25 10:04:28 ----D---- D:\Program Files (x86)\Adobe
2015-02-25 10:03:47 ----D---- D:\ProgramData\Adobe
2015-02-25 09:03:27 ----D---- D:\ProgramData\{e3e700a2-0d4c-87e5-e3e7-700a20d40288}
2015-02-24 20:15:31 ----A---- D:\Windows\system32\drivers\stflt.sys
2015-02-24 20:15:30 ----D---- D:\Users\Rob\AppData\Roaming\Spyware Terminator
2015-02-24 20:15:30 ----D---- D:\ProgramData\Spyware Terminator
2015-02-24 20:14:58 ----D---- D:\Program Files (x86)\Spyware Terminator
2015-02-24 20:04:24 ----D---- D:\Program Files\CCleaner
2015-02-24 20:00:28 ----D---- D:\Windows\pss
2015-02-24 19:58:29 ----D---- D:\Windows\system32\appmgmt
2015-02-24 19:54:42 ----D---- D:\Windows\SYSWOW64\X86
2015-02-24 19:54:42 ----D---- D:\Windows\SYSWOW64\AMD64
2015-02-24 19:52:58 ----D---- D:\Program Files (x86)\DeluxReader
2015-02-24 19:52:37 ----D---- D:\Program Files (x86)\My IP address
2015-02-24 19:52:29 ----D---- D:\ProgramData\VCE Exam Simulator
2015-02-24 19:51:13 ----D---- D:\ProgramData\{44ae76ed-5d17-7590-44ae-e76ed5d1dbb5}
2015-02-05 01:37:22 ----D---- D:\Users\Rob\AppData\Roaming\Fallout2
======List of files/folders modified in the last 1 month======
2015-03-03 09:04:53 ----D---- D:\Windows\Temp
2015-03-03 09:03:53 ----SHD---- D:\System Volume Information
2015-03-03 09:03:18 ----D---- D:\Windows\System32
2015-03-03 09:03:18 ----D---- D:\Windows\inf
2015-03-03 09:03:18 ----A---- D:\Windows\system32\PerfStringBackup.INI
2015-03-03 09:01:17 ----RD---- D:\Program Files
2015-03-03 09:00:41 ----D---- D:\Windows\system32\config
2015-03-02 20:15:24 ----D---- D:\Windows\Prefetch
2015-03-02 20:04:44 ----D---- D:\Windows\SYSWOW64\drivers
2015-03-02 20:04:44 ----D---- D:\Windows\SysWOW64
2015-03-02 20:04:44 ----D---- D:\Windows\system32\drivers
2015-03-02 20:03:55 ----HD---- D:\Program Files (x86)\InstallShield Installation Information
2015-03-02 20:00:02 ----HD---- D:\ProgramData
2015-03-02 20:00:01 ----D---- D:\Windows\system32\DriverStore
2015-03-02 19:59:50 ----SHD---- D:\Windows\Installer
2015-03-02 19:57:37 ----D---- D:\Programy
2015-03-02 11:10:04 ----D---- D:\Windows
2015-03-02 01:24:04 ----D---- D:\Users\Rob\AppData\Roaming\Skype
2015-03-01 10:52:14 ----D---- D:\Windows\debug
2015-02-28 20:28:48 ----D---- D:\Users\Rob\AppData\Roaming\vlc
2015-02-28 10:03:15 ----D---- D:\Windows\rescache
2015-02-28 09:44:59 ----D---- D:\Windows\Microsoft.NET
2015-02-28 09:43:38 ----RSD---- D:\Windows\assembly
2015-02-28 09:19:29 ----D---- D:\AdwCleaner
2015-02-28 08:48:31 ----D---- D:\Windows\winsxs
2015-02-28 08:46:03 ----D---- D:\Windows\SYSWOW64\en-US
2015-02-28 08:46:03 ----D---- D:\Windows\system32\en-US
2015-02-28 08:46:01 ----RSD---- D:\Windows\Fonts
2015-02-28 08:46:00 ----D---- D:\Windows\SYSWOW64\cs-CZ
2015-02-28 08:46:00 ----D---- D:\Windows\system32\cs-CZ
2015-02-27 22:30:25 ----D---- D:\Program Files (x86)\Microsoft.NET
2015-02-27 22:30:24 ----D---- D:\Program Files\Common Files\Microsoft Shared
2015-02-27 15:35:45 ----D---- D:\Windows\system32\catroot2
2015-02-27 15:22:50 ----D---- D:\Program Files\Windows Media Player
2015-02-27 15:22:50 ----D---- D:\Program Files (x86)\Windows Media Player
2015-02-27 15:22:49 ----D---- D:\Windows\ehome
2015-02-27 15:22:47 ----SD---- D:\Windows\system32\CompatTel
2015-02-27 15:22:47 ----D---- D:\Windows\system32\appraiser
2015-02-27 15:22:46 ----D---- D:\Program Files\Common Files\System
2015-02-27 09:21:37 ----D---- D:\Windows\AppPatch
2015-02-27 09:21:35 ----D---- D:\Program Files\Windows Journal
2015-02-27 09:19:22 ----D---- D:\Windows\Tasks
2015-02-27 09:19:22 ----D---- D:\Windows\system32\Tasks
2015-02-27 09:19:00 ----RD---- D:\Program Files (x86)
2015-02-27 09:12:55 ----A---- D:\Windows\win.ini
2015-02-27 08:39:35 ----D---- D:\Program Files\Internet Explorer
2015-02-27 08:39:33 ----D---- D:\Program Files (x86)\Internet Explorer
2015-02-27 08:39:30 ----D---- D:\Windows\SYSWOW64\Dism
2015-02-27 08:39:29 ----D---- D:\Windows\system32\Dism
2015-02-27 08:39:28 ----D---- D:\Program Files\Windows Defender
2015-02-27 08:39:28 ----D---- D:\Program Files (x86)\Windows Defender
2015-02-27 08:39:17 ----D---- D:\Windows\SYSWOW64\migration
2015-02-27 08:39:17 ----D---- D:\Windows\system32\migration
2015-02-27 08:39:17 ----D---- D:\Windows\PolicyDefinitions
2015-02-27 08:39:03 ----D---- D:\Windows\system32\Boot
2015-02-27 01:39:19 ----D---- D:\ProgramData\Package Cache
2015-02-27 00:53:04 ----D---- D:\Windows\system32\MRT
2015-02-26 22:21:20 ----D---- D:\Windows\Downloaded Program Files
2015-02-26 21:38:16 ----SD---- D:\ProgramData\Microsoft
2015-02-26 17:31:54 ----D---- D:\Windows\system32\catroot
2015-02-26 16:39:31 ----SD---- D:\Users\Rob\AppData\Roaming\Microsoft
2015-02-26 16:22:04 ----D---- D:\Windows\ShellNew
2015-02-26 16:21:55 ----D---- D:\Program Files\Common Files
2015-02-26 12:20:41 ----D---- D:\Program Files (x86)\AMD
2015-02-26 12:20:14 ----D---- D:\Users\Rob\AppData\Roaming\Seznam.cz
2015-02-26 12:20:13 ----D---- D:\Program Files (x86)\Seznam.cz
2015-02-25 10:21:14 ----D---- D:\Users\Rob\AppData\Roaming\Adobe
2015-02-25 10:19:15 ----A---- D:\Windows\primopdf.ini
2015-02-25 10:04:28 ----D---- D:\Program Files (x86)\Common Files
2015-02-24 20:07:29 ----D---- D:\Users\Rob\AppData\Roaming\DAEMON Tools Lite
2015-02-24 20:07:28 ----D---- D:\Users\Rob\AppData\Roaming\uTorrent
2015-02-24 20:06:42 ----D---- D:\Windows\Panther
2015-02-24 20:06:41 ----D---- D:\Windows\Minidump
2015-02-24 20:06:41 ----D---- D:\Windows\Logs
2015-02-24 19:58:55 ----D---- D:\Program Files (x86)\NCWest
2015-02-24 19:54:40 ----D---- D:\Users\Rob\AppData\Roaming\Raptr
2015-02-24 17:00:17 ----A---- D:\Windows\Sandboxie.ini
2015-02-24 07:57:37 ----D---- D:\ProgramData\Origin
2015-02-22 09:38:19 ----D---- D:\ProgramData\Orbit
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 iaStorA;iaStorA; D:\Windows\system32\DRIVERS\iaStorA.sys [2014-04-11 645480]
R0 iaStorF;iaStorF; D:\Windows\system32\DRIVERS\iaStorF.sys [2014-04-11 28008]
R0 iusb3hcs;Ovladač přepínání hostitelského řadiče Intel(R) USB 3.0; D:\Windows\system32\DRIVERS\iusb3hcs.sys [2014-02-21 20464]
R0 rdyboost;ReadyBoost; D:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; D:\Windows\system32\drivers\vmbus.sys [2010-11-20 199552]
R1 ArcSec;archlp; D:\Windows\system32\drivers\ArcSec.sys [2010-09-21 312184]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; D:\Windows\system32\drivers\csc.sys [2010-11-20 514560]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; D:\Windows\system32\DRIVERS\dtsoftbus01.sys [2014-12-20 283064]
R2 amdacpksd;ACP Kernel Service Driver; \??\D:\Windows\system32\drivers\amdacpksd.sys [2014-11-21 294600]
R2 BstHdDrv;BlueStacks Hypervisor; \??\D:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [2014-08-13 122072]
R2 sp_rsdrv2;Spyware Terminator Driver Filter; D:\Windows\system32\DRIVERS\stflt.sys [2015-02-24 51496]
R3 amdkmdag;amdkmdag; D:\Windows\system32\DRIVERS\atikmdag.sys [2014-11-21 18959360]
R3 amdkmdap;amdkmdap; D:\Windows\system32\DRIVERS\atikmpag.sys [2014-11-21 589312]
R3 AtiHDAudioService;AMD Function Driver for HD Audio Service; D:\Windows\system32\drivers\AtihdW76.sys [2014-06-21 94720]
R3 gdrv;gdrv; \??\D:\Windows\gdrv.sys [2015-03-03 25640]
R3 hamachi;Hamachi Network Interface; D:\Windows\system32\DRIVERS\hamachi.sys [2009-03-18 33856]
R3 igfx;igfx; D:\Windows\system32\DRIVERS\igdkmd64.sys [2014-03-31 3785216]
R3 IntcDAud;Intel(R) Display Audio; D:\Windows\system32\DRIVERS\IntcDAud.sys [2014-03-31 450520]
R3 iusb3hub;Ovladač rozbočovače Intel(R) USB 3.0; D:\Windows\system32\DRIVERS\iusb3hub.sys [2014-02-21 370672]
R3 iusb3xhc;Ovladač rozšiřitelného hostitelského řadiče Intel(R) USB 3.0; D:\Windows\system32\DRIVERS\iusb3xhc.sys [2014-02-21 791024]
R3 MEIx64;Intel(R) Management Engine Interface ; D:\Windows\system32\DRIVERS\TeeDriverx64.sys [2014-03-20 118272]
R3 RTL8167;Realtek 8167 NT Driver; D:\Windows\system32\DRIVERS\Rt64win7.sys [2014-03-18 906968]
R3 SbieDrv;SbieDrv; \??\D:\Programy\Sandboxie\SbieDrv.sys [2014-10-14 185352]
R3 WmBEnum;Logitech Virtual Bus Enumerator Driver; D:\Windows\system32\drivers\WmBEnum.sys [2010-04-27 26440]
R3 WmXlCore;Logitech Translation Layer Driver; D:\Windows\system32\drivers\WmXlCore.sys [2010-04-27 77512]
S2 atksgt;atksgt; D:\Windows\system32\DRIVERS\atksgt.sys [2014-12-22 303616]
S2 lirsgt;lirsgt; D:\Windows\system32\DRIVERS\lirsgt.sys [2014-12-22 35328]
S3 ALSysIO;ALSysIO; \??\D:\Users\Rob\AppData\Local\Temp\ALSysIO64.sys []
S3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); D:\Windows\system32\drivers\RTKVHD64.sys []
S3 pciide;pciide; D:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RDPDR;Terminal Server Device Redirector Driver; D:\Windows\System32\drivers\rdpdr.sys [2010-11-20 165888]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; D:\Windows\System32\drivers\rdpvideominiport.sys [2010-11-20 20992]
S3 s3cap;s3cap; D:\Windows\system32\drivers\vms3cap.sys [2010-11-20 6656]
S3 storvsc;storvsc; D:\Windows\system32\drivers\storvsc.sys [2010-11-20 34688]
S3 Synth3dVsc;Synth3dVsc; D:\Windows\System32\drivers\synth3dvsc.sys []
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; D:\Windows\System32\drivers\tsusbflt.sys [2010-11-20 59392]
S3 tsusbhub;@%SystemRoot%\system32\drivers\tsusbhub.sys,-1; D:\Windows\system32\drivers\tsusbhub.sys []
S3 usbscan;Ovladač skeneru USB; D:\Windows\system32\DRIVERS\usbscan.sys [2013-07-03 42496]
S3 VGPU;VGPU; D:\Windows\System32\drivers\rdvgkmd.sys []
S3 VMBusHID;VMBusHID; D:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 21760]
S3 WmFilter;Logitech Gaming HID Filter Driver; D:\Windows\system32\drivers\WmFilter.sys [2010-04-27 43976]
S3 WmVirHid;Logitech Virtual Hid Device Driver; D:\Windows\system32\drivers\WmVirHid.sys [2010-04-27 16200]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; D:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2014-12-03 81088]
R2 AMD External Events Utility;AMD External Events Utility; D:\Windows\system32\atiesrxx.exe [2014-11-21 244736]
R2 amdacpusrsvc;ACP User Service; D:\Program Files\AMD\{920DEC42-4CA5-4d1d-9487-67BE645CDDFC}\amdacpusrsvc.exe [2014-11-20 116224]
R2 BstHdLogRotatorSvc;BlueStacks Log Rotator Service; D:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe [2014-08-13 384728]
R2 BstHdUpdaterSvc;BlueStacks Updater Service; D:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe [2014-08-13 777944]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; D:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 gadjservice;GIGABYTE Adjust; D:\Program Files (x86)\Gigabyte\AppCenter\AdjustService.exe [2014-04-16 16384]
R2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine; D:\Programy\Hamachi\hamachi-2.exe [2015-02-17 2490216]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; D:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2014-04-11 16232]
R2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service; D:\Windows\system32\igfxCUIService.exe [2014-04-09 296432]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; D:\Program Files\Intel\iCLS Client\HeciServer.exe [2013-08-27 747520]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; D:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2014-03-20 154584]
R2 LMS;Intel(R) Management and Security Application Local Management Service; D:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2014-03-20 398296]
R2 PnkBstrA;PnkBstrA; D:\Windows\syswow64\PnkBstrA.exe [2015-01-13 75136]
R2 PnkBstrB;PnkBstrB; D:\Windows\syswow64\PnkBstrB.exe [2015-01-13 189248]
R2 SbieSvc;Sandboxie Service; D:\Programy\Sandboxie\SbieSvc.exe [2014-10-14 174600]
R2 SDScannerService;Spybot-S&D 2 Scanner Service; D:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [2014-06-24 1738168]
R2 SDUpdateService;Spybot-S&D 2 Updating Service; D:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [2014-06-27 2088408]
R2 SDWSCService;Spybot-S&D 2 Security Center Service; D:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [2014-04-25 171928]
R2 ST2012_Svc;Spyware Terminator 2012 Realtime Shield Service; D:\Program Files (x86)\Spyware Terminator\st_rsser64.exe [2014-11-04 1146272]
R2 wlidsvc;Windows Live ID Sign-in Assistant; D:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2009-08-18 2291568]
S2 b1a39cf7;DeluxReader; D:\Windows\syswow64\rundll32.exe [2009-07-14 44544]
S2 BstHdAndroidSvc;BlueStacks Android Service; D:\Program Files (x86)\BlueStacks\HD-Service.exe [2014-08-17 391168]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; D:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; D:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-09-11 124088]
S2 gupdate;Služba Google Update (gupdate); D:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-12-20 116648]
S2 SkypeUpdate;Skype Updater; D:\Program Files (x86)\Skype\Updater\Updater.exe [2014-12-11 315496]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; D:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-02-26 267440]
S3 AppMgmt;@appmgmts.dll,-3250; D:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 cphs;Intel(R) Content Protection HECI Service; D:\Windows\SysWow64\IntelCpHeciSvc.exe [2014-04-09 279024]
S3 gupdatem;Služba Google Update (gupdatem); D:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-12-20 116648]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; D:\Windows\system32\IEEtwCollector.exe [2015-01-12 114688]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; D:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2013-08-27 828376]
S3 npggsvc;nProtect GameGuard Service; D:\Windows\syswow64\GameMon.des [2014-05-06 3071632]
S3 Origin Client Service;Origin Client Service; E:\Hry\Origin\OriginClientService.exe [2015-01-28 1910128]
S3 ose64;Office 64 Source Engine; D:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2012-12-08 178760]
S3 osppsvc;Office Software Protection Platform; D:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2012-10-01 5132888]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; D:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 Steam Client Service;Steam Client Service; D:\Program Files (x86)\Common Files\Steam\SteamService.exe [2015-02-19 835776]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; D:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; D:\Windows\system32\Wat\WatAdminSvc.exe [2015-02-27 1255736]
S4 aspnet_state;Stavová služba ASP.NET; D:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-09-11 51808]
S4 NetMsmqActivator;@D:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; D:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetPipeActivator;@D:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; D:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetTcpActivator;@D:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; D:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
-----------------EOF-----------------
mám zaplácané prohlížeče od reklam a úplně zpomalený počítač, trvá to 5 minut než po zadání hesla najede plocha. Někdy se stane, ze prohlížeč úplně zasekne počítač. Mám Windows 7 64 bit a zkoušel jsem spybot, adwcleaner, ccleaner. Nic ze zmiňovaných programů mi nepomohlo.
Budu rád za jakoukoliv pomoc. Díky.
Logfile of random's system information tool 1.10 (written by random/random)
Run by Rob at 2015-03-03 09:01:17
Microsoft Windows 7 Ultimate Service Pack 1
System drive D: has 376 GB (79%) free of 477 GB
Total RAM: 3988 MB (43% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 9:05:07, on 3.3.2015
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17631)
Boot mode: Normal
Running processes:
D:\Programy\Hamachi\hamachi-2-ui.exe
D:\Program Files (x86)\Spyware Terminator\SpywareTerminatorShield.exe
D:\Programy\Total Media Theatre 5\TotalMedia Server\TM Server.exe
D:\Program Files (x86)\Gigabyte\AppCenter\ApCent.exe
D:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe
D:\Program Files (x86)\Spyware Terminator\SpywareTerminatorUpdate.exe
D:\Program Files (x86)\Google\Chrome\Application\chrome.exe
D:\Program Files (x86)\Google\Chrome\Application\chrome.exe
D:\Program Files (x86)\Google\Chrome\Application\chrome.exe
D:\Program Files (x86)\Google\Chrome\Application\chrome.exe
D:\Program Files (x86)\Google\Chrome\Application\chrome.exe
D:\Program Files (x86)\Google\Chrome\Application\chrome.exe
D:\Program Files (x86)\Google\Chrome\Application\chrome.exe
D:\Program Files\trend micro\Rob.exe
D:\Program Files (x86)\Google\Chrome\Application\chrome.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/?clid=20808
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = D:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Lync Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - D:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - D:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - D:\PROGRA~2\MICROS~3\Office15\URLREDIR.DLL
O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - D:\PROGRA~2\MICROS~3\Office15\GROOVEEX.DLL
O2 - BHO: SmartBar Helper Object - {FD36FEBE-DBA1-4597-9DD1-B13794B92F68} - D:\Program Files (x86)\Bechiro S.L\smartbar\1.8.8.12\bh\smartbar.dll
O4 - HKLM\..\Run: [Adobe ARM] "D:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [SDTray] "D:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"
O4 - HKLM\..\RunOnce: [PreRun] D:\Program Files (x86)\Gigabyte\AppCenter\PreRun.exe
O4 - HKCU\..\Run: [CCleaner Monitoring] "D:\PROGRAM FILES\CCLEANER\CCLEANER64.EXE" /MONITOR
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] D:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] D:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\RunOnce: [SPReview] "D:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [SPReview] "D:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'Default user')
O4 - Global Startup: TotalMedia Server.lnk = D:\Programy\Total Media Theatre 5\TotalMedia Server\TM Server.exe
O8 - Extra context menu item: E&xportovat do Microsoft Excelu - res://D:\Programy\MICROS~1\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do OneNotu - res://D:\Programy\MICROS~1\Office15\ONBttnIE.dll/105
O9 - Extra button: Odeslat do OneNotu - {2670000A-7350-4f3c-8081-5663EE0C6C49} - D:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do OneNotu - {2670000A-7350-4f3c-8081-5663EE0C6C49} - D:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra button: Volání kliknutím v Lyncu - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - D:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O9 - Extra 'Tools' menuitem: Volání kliknutím v Lyncu - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - D:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - D:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - D:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O10 - Unknown file in Winsock LSP: d:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: d:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: *.clonewarsadventures.com
O15 - Trusted Zone: *.freerealms.com
O15 - Trusted Zone: *.soe.com
O15 - Trusted Zone: *.sony.com
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - https://fpdownload.macromedia.com/get/s ... wflash.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{3BE09598-9584-4013-A6F4-B8F50B4AABE1}: NameServer = 109.164.64.64,8.8.8.8
O17 - HKLM\System\CS1\Services\Tcpip\..\{3BE09598-9584-4013-A6F4-B8F50B4AABE1}: NameServer = 109.164.64.64,8.8.8.8
O17 - HKLM\System\CS2\Services\Tcpip\..\{3BE09598-9584-4013-A6F4-B8F50B4AABE1}: NameServer = 109.164.64.64,8.8.8.8
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - D:\Program Files (x86)\Microsoft Office\Office15\MSOSB.DLL
O18 - Filter hijack: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - D:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL
O20 - Winlogon Notify: SDWinLogon - SDWinLogon.dll (file missing)
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - D:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - D:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - D:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - D:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: ACP User Service (amdacpusrsvc) - Advanced Micro Devices - D:\Program Files\AMD\{920DEC42-4CA5-4d1d-9487-67BE645CDDFC}\amdacpusrsvc.exe
O23 - Service: BlueStacks Android Service (BstHdAndroidSvc) - BlueStack Systems, Inc. - D:\Program Files (x86)\BlueStacks\HD-Service.exe
O23 - Service: BlueStacks Log Rotator Service (BstHdLogRotatorSvc) - BlueStack Systems, Inc. - D:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe
O23 - Service: BlueStacks Updater Service (BstHdUpdaterSvc) - BlueStack Systems, Inc. - D:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - D:\Windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - D:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - D:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: GIGABYTE Adjust (gadjservice) - Unknown owner - D:\Program Files (x86)\Gigabyte\AppCenter\AdjustService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - D:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - D:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - D:\Programy\Hamachi\hamachi-2.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - D:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - D:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - D:\Windows\system32\igfxCUIService.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - D:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - D:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - D:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - D:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - D:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - D:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - D:\Windows\system32\lsass.exe (file missing)
O23 - Service: nProtect GameGuard Service (npggsvc) - Unknown owner - D:\Windows\system32\GameMon.des.exe (file missing)
O23 - Service: Origin Client Service - Electronic Arts - E:\Hry\Origin\OriginClientService.exe
O23 - Service: PnkBstrA - Unknown owner - D:\Windows\system32\PnkBstrA.exe
O23 - Service: PnkBstrB - Unknown owner - D:\Windows\system32\PnkBstrB.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - D:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - D:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - D:\Windows\system32\lsass.exe (file missing)
O23 - Service: Sandboxie Service (SbieSvc) - Sandboxie Holdings, LLC - D:\Programy\Sandboxie\SbieSvc.exe
O23 - Service: Spybot-S&D 2 Scanner Service (SDScannerService) - Safer-Networking Ltd. - D:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe
O23 - Service: Spybot-S&D 2 Updating Service (SDUpdateService) - Safer-Networking Ltd. - D:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe
O23 - Service: Spybot-S&D 2 Security Center Service (SDWSCService) - Safer-Networking Ltd. - D:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - D:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - D:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - D:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - D:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Spyware Terminator 2012 Realtime Shield Service (ST2012_Svc) - Crawler.com - D:\Program Files (x86)\Spyware Terminator\st_rsser64.exe
O23 - Service: Steam Client Service - Valve Corporation - D:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - D:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - D:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - D:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - D:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - D:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - D:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - D:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - D:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 12901 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
winlogon.exe
D:\Windows\system32\services.exe
D:\Windows\system32\lsass.exe
D:\Windows\system32\lsm.exe
D:\Windows\system32\svchost.exe -k DcomLaunch
D:\Windows\system32\svchost.exe -k RPCSS
D:\Windows\system32\atiesrxx.exe
D:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
D:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
D:\Windows\system32\svchost.exe -k LocalService
D:\Windows\system32\svchost.exe -k netsvcs
D:\Windows\system32\igfxCUIService.exe
"D:\Programy\Sandboxie\SbieSvc.exe"
D:\Windows\system32\svchost.exe -k NetworkService
D:\Windows\System32\spoolsv.exe
atieclxx
D:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"D:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"D:\Program Files\AMD\{920DEC42-4CA5-4d1d-9487-67BE645CDDFC}\amdacpusrsvc.exe"
"taskhost.exe"
taskeng.exe {AC03A796-4A6A-4451-9CFF-EDF0E668D3EB}
"D:\Windows\system32\Dwm.exe"
D:\Windows\Explorer.EXE
"D:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe"
"D:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe"
"D:\Program Files (x86)\Gigabyte\AppCenter\AdjustService.exe"
"D:\Program Files\Intel\iCLS Client\HeciServer.exe"
D:\Windows\SysWOW64\PnkBstrA.exe
D:\Windows\SysWOW64\PnkBstrB.exe
"D:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe"
"D:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe"
"D:\Program Files (x86)\Spyware Terminator\st_rsser64.exe"
D:\Windows\system32\svchost.exe -k imgsvc
"D:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
D:\Programy\Hamachi\hamachi-2.exe -s
D:\Programy\Hamachi\LMIGuardianSvc /escort 2644 /CUSTOM Hamachi
WLIDSvcM.exe 2524
D:\Windows\system32\wbem\wmiprvse.exe
"D:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe"
"D:\Programy\Hamachi\hamachi-2-ui.exe" --auto-start
D:\Programy\Hamachi\LMIGuardianSvc /escort 1424 /CUSTOM Hamachi
D:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
D:\Windows\system32\SearchIndexer.exe /Embedding
igfxEM.exe
"D:\Program Files (x86)\Spyware Terminator\SpywareTerminatorShield.exe"
"D:\Programy\Total Media Theatre 5\TotalMedia Server\TM Server.exe"
"D:\Program Files (x86)\Gigabyte\AppCenter\ApCent.exe"
"D:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"
"D:\Program Files (x86)\Spyware Terminator\SpywareTerminatorUpdate.exe" /ELEVATED
"D:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac
"D:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"D:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="820.0.1976202764\361648358" --supports-dual-gpus=false --gpu-driver-bug-workarounds=1,18,39 --gpu-vendor-id=0x1002 --gpu-device-id=0x6658 --gpu-driver-vendor="Advanced Micro Devices, Inc." --gpu-driver-version=14.501.1003.0 --ignored=" --type=renderer " /prefetch:822062411
"D:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="ChromeSuggestions/Mixed/DomRel-Enable/enable/EmbeddedSearch/Group1 dev:pp6 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/ControlEnforce/ExtensionInstallVerification/Bootstrap/GoogleNow/Enable/NewProfileManagement/Enabled/OmniboxBundledExperimentV1/DevHUPDecayWithHQPRelevanceScoring_Control/PasswordGeneration/Disabled/RememberCertificateErrorDecisions/Default/SRTPromptFieldTrial/On/SafeBrowsingIncidentReportingService/Enabled/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-Population-Restrict/normal/UMA-Uniformity-Trial-1-Percent/group_54/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-50-Percent/group_01/UwSInterstitialStatus/On/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="820.1.162955028\1174695436" /prefetch:673131151
"D:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/ChromeSuggestions/Mixed/DomRel-Enable/enable/EmbeddedSearch/Group1 dev:pp6 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/ControlEnforce/ExtensionInstallVerification/Bootstrap/GoogleNow/Enable/NewProfileManagement/Enabled/OmniboxBundledExperimentV1/DevHUPDecayWithHQPRelevanceScoring_Control/PasswordGeneration/Disabled/RememberCertificateErrorDecisions/Default/SRTPromptFieldTrial/On/SafeBrowsingIncidentReportingService/Enabled/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-Population-Restrict/normal/UMA-Uniformity-Trial-1-Percent/group_54/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-50-Percent/group_01/UwSInterstitialStatus/On/VoiceTrigger/Install/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="820.3.604050821\1859901882" /prefetch:673131151
"D:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=ppapi --channel="820.6.878793779\1740877477" --ppapi-flash-args=enable_hw_video_decode=1 --lang=cs --ignored=" --type=renderer " /prefetch:-632637702
"D:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/ChromeSuggestions/Mixed/DomRel-Enable/enable/EmbeddedSearch/Group1 dev:pp6 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/ControlEnforce/ExtensionInstallVerification/Bootstrap/GoogleNow/Enable/NewProfileManagement/Enabled/OmniboxBundledExperimentV1/DevHUPDecayWithHQPRelevanceScoring_Control/PasswordGeneration/Disabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/RememberCertificateErrorDecisions/Default/SRTPromptFieldTrial/On/SafeBrowsingIncidentReportingService/Enabled/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-Population-Restrict/normal/UMA-Uniformity-Trial-1-Percent/group_54/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-50-Percent/group_01/UwSInterstitialStatus/On/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="820.9.744677026\624108823" /prefetch:673131151
"D:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/ChromeSuggestions/Mixed/DomRel-Enable/enable/EmbeddedSearch/Group1 dev:pp6 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/ControlEnforce/ExtensionInstallVerification/Bootstrap/GoogleNow/Enable/NewProfileManagement/Enabled/OmniboxBundledExperimentV1/DevHUPDecayWithHQPRelevanceScoring_Control/PasswordGeneration/Disabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/RememberCertificateErrorDecisions/Default/SRTPromptFieldTrial/On/SafeBrowsingIncidentReportingService/Enabled/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-Population-Restrict/normal/UMA-Uniformity-Trial-1-Percent/group_54/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-50-Percent/group_01/UwSInterstitialStatus/On/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="820.11.750289964\1405924347" /prefetch:673131151
D:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"D:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"D:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"D:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
D:\Windows\System32\svchost.exe -k secsvcs
D:\Windows\servicing\TrustedInstaller.exe
"D:\Users\Rob\Downloads\RSITx64.exe"
D:\Windows\system32\wbem\wmiprvse.exe
D:\Windows\system32\vssvc.exe
D:\Windows\System32\svchost.exe -k swprv
"D:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/ChromeSuggestions/Mixed/DomRel-Enable/enable/EmbeddedSearch/Group1 dev:pp6 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/ControlEnforce/ExtensionInstallVerification/Bootstrap/GoogleNow/Enable/NewProfileManagement/Enabled/OmniboxBundledExperimentV1/DevHUPDecayWithHQPRelevanceScoring_Control/PasswordGeneration/Disabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/RememberCertificateErrorDecisions/Default/SRTPromptFieldTrial/On/SafeBrowsingIncidentReportingService/Enabled/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-Population-Restrict/normal/UMA-Uniformity-Trial-1-Percent/group_54/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-50-Percent/group_01/UwSInterstitialStatus/On/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="820.19.1622896576\1910049040" /prefetch:673131151
======Scheduled tasks folder======
D:\Windows\tasks\Adobe Flash Player Updater.job - D:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
D:\Windows\tasks\GoogleUpdateTaskMachineCore.job - D:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
D:\Windows\tasks\GoogleUpdateTaskMachineUA.job - D:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Lync Browser Helper - D:\Programy\Microsoft office\Office15\OCHelper.dll [2015-01-21 218776]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - D:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 532336]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - D:\Programy\MICROS~1\Office15\URLREDIR.DLL [2014-01-23 881880]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - D:\Programy\MICROS~1\Office15\GROOVEEX.DLL [2015-01-21 2334928]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Lync Browser Helper - D:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2015-01-21 153248]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - D:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 403840]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - D:\PROGRA~2\MICROS~3\Office15\URLREDIR.DLL [2014-01-22 707800]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - D:\PROGRA~2\MICROS~3\Office15\GROOVEEX.DLL [2015-01-21 1729744]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FD36FEBE-DBA1-4597-9DD1-B13794B92F68}]
SmartBar Helper Object - D:\Program Files (x86)\Bechiro S.L\smartbar\1.8.8.12\bh\smartbar.dll [2013-01-13 247704]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SpywareTerminatorShield"=D:\Program Files (x86)\Spyware Terminator\SpywareTerminatorShield.exe [2014-11-04 2774904]
"SpywareTerminatorUpdater"=D:\Program Files (x86)\Spyware Terminator\SpywareTerminatorUpdate.exe [2014-11-04 3681656]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CCleaner Monitoring"=D:\PROGRAM FILES\CCLEANER\CCLEANER64.EXE [2014-12-12 7394584]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\cz.seznam.software.autoupdate]
D:\Users\Rob\AppData\Roaming\Seznam.cz\szninstall.exe [2013-05-16 1062472]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\cz.seznam.software.szndesktop]
D:\Users\Rob\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [2013-04-12 92664]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
D:\Programy\DAEMON Tools Lite\DTLite.exe [2014-03-04 3696912]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EADM]
E:\Hry\Origin\Origin.exe [2015-01-28 3619160]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GoogleChromeAutoLaunch_03B222C27352DB95584D7D3D3E18CC9C]
D:\Program Files (x86)\Google\Chrome\Application\chrome.exe [2015-02-17 843592]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IAStorIcon]
D:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe [2014-04-11 36352]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LogMeIn Hamachi Ui]
D:\Programy\Hamachi\hamachi-2-ui.exe [2015-02-17 3978600]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NCUpdateHelper]
D:\Program Files (x86)\NCWest\NCLauncher\NCUpdateHelper.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PDFPrint]
D:\Programy\PDF24\pdf24.exe [2014-11-11 193568]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Raptr]
D:\PROGRA~2\Raptr\raptrstub.exe [2015-01-30 55568]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SandboxieControl]
D:\Programy\Sandboxie\SbieCtrl.exe [2014-10-14 784904]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\seznam-listicka-distribuce]
D:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [2013-05-16 1062472]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Start WingMan Profiler]
D:\Program Files\Logitech\Gaming Software\LWEMon.exe [2010-06-14 190536]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\StartCCC]
D:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe [2014-11-20 767176]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\USB3MON]
D:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [2014-02-21 292848]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\D:^Users^Rob^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Avanset-VCE-Exam-Simulator-Pro-v1.1.7-+-Crack.exe]
D:\Users\Rob\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Avanset-VCE-Exam-Simulator-Pro-v1.1.7-+-Crack.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\D:^Users^Rob^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Download Avanset VCE Player 1.2 Torrent - KickassTorrents Proxy.lnk]
D:\PROGRA~3\{E3E70~1\DOWNLO~1.EXE [2014-02-25 1070592]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\D:^Users^Rob^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^VCE Exam Simulator Pro 1.1.7 Final Crack Download.lnk]
D:\PROGRA~3\{44AE7~1\VCEEXA~1.EXE [2014-02-24 1057792]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"Adobe ARM"=D:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-12-19 1022152]
"SDTray"=D:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [2014-06-24 4101576]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\RunOnce]
"PreRun"=D:\Program Files (x86)\Gigabyte\AppCenter\PreRun.exe [2013-04-29 8192]
D:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
TotalMedia Server.lnk - D:\Programy\Total Media Theatre 5\TotalMedia Server\TM Server.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=" "
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Hamachi2Svc]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"D:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"="D:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe:*:Enabled:Spybot - Search & Destroy tray access"
"D:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe"="D:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe:*:Enabled:Spybot-S&D 2 Scanner Service"
"D:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe"="D:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe:*:Enabled:Spybot-S&D 2 Updater"
"D:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe"="D:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe:*:Enabled:Spybot-S&D 2 Background update service"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=D:\Windows\System32\l3codeca.acm
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux2"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"aux3"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"aux4"=wdmaud.drv
"wave5"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer5"=wdmaud.drv
"aux5"=wdmaud.drv
======File associations======
.js - edit - D:\Windows\System32\Notepad.exe %1
.js - open - D:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2015-03-03 09:01:17 ----D---- D:\rsit
2015-03-03 09:01:17 ----D---- D:\Program Files\trend micro
2015-03-02 20:02:26 ----D---- D:\Users\Rob\AppData\Roaming\ArcSoft
2015-03-02 20:00:02 ----D---- D:\ProgramData\ArcSoft
2015-03-02 19:59:58 ----A---- D:\Windows\system32\MMCEDT5.exe
2015-03-02 19:59:58 ----A---- D:\Windows\system32\drivers\ArcSec.sys
2015-02-27 22:30:25 ----D---- D:\Program Files\Microsoft.NET
2015-02-27 15:37:12 ----A---- D:\Windows\SYSWOW64\jscript9diag.dll
2015-02-27 15:37:12 ----A---- D:\Windows\SYSWOW64\jscript9.dll
2015-02-27 15:37:11 ----A---- D:\Windows\system32\jscript9diag.dll
2015-02-27 15:37:11 ----A---- D:\Windows\system32\jscript9.dll
2015-02-27 15:37:09 ----A---- D:\Windows\SYSWOW64\explorer.exe
2015-02-27 15:37:09 ----A---- D:\Windows\explorer.exe
2015-02-27 15:37:02 ----A---- D:\Windows\SYSWOW64\KBDYAK.DLL
2015-02-27 15:37:02 ----A---- D:\Windows\SYSWOW64\KBDTAT.DLL
2015-02-27 15:37:02 ----A---- D:\Windows\SYSWOW64\KBDRU1.DLL
2015-02-27 15:37:02 ----A---- D:\Windows\SYSWOW64\KBDRU.DLL
2015-02-27 15:37:02 ----A---- D:\Windows\SYSWOW64\KBDBASH.DLL
2015-02-27 15:37:02 ----A---- D:\Windows\system32\KBDYAK.DLL
2015-02-27 15:37:02 ----A---- D:\Windows\system32\KBDTAT.DLL
2015-02-27 15:37:02 ----A---- D:\Windows\system32\KBDRU1.DLL
2015-02-27 15:37:02 ----A---- D:\Windows\system32\KBDRU.DLL
2015-02-27 15:37:02 ----A---- D:\Windows\system32\KBDBASH.DLL
2015-02-27 15:36:49 ----A---- D:\Windows\SYSWOW64\esent.dll
2015-02-27 15:36:49 ----A---- D:\Windows\system32\fsutil.exe
2015-02-27 15:36:49 ----A---- D:\Windows\system32\esent.dll
2015-02-27 15:36:49 ----A---- D:\Windows\system32\drivers\nvraid.sys
2015-02-27 15:36:49 ----A---- D:\Windows\system32\drivers\iaStorV.sys
2015-02-27 15:36:49 ----A---- D:\Windows\system32\drivers\amdxata.sys
2015-02-27 15:36:48 ----A---- D:\Windows\SYSWOW64\fsutil.exe
2015-02-27 15:36:48 ----A---- D:\Windows\system32\drivers\USBSTOR.SYS
2015-02-27 15:36:48 ----A---- D:\Windows\system32\drivers\nvstor.sys
2015-02-27 15:36:48 ----A---- D:\Windows\system32\drivers\amdsata.sys
2015-02-27 15:36:36 ----A---- D:\Windows\system32\spoolsv.exe
2015-02-27 15:36:36 ----A---- D:\Windows\splwow64.exe
2015-02-27 09:54:57 ----A---- D:\Windows\SYSWOW64\wmploc.DLL
2015-02-27 09:54:57 ----A---- D:\Windows\SYSWOW64\wmp.dll
2015-02-27 09:54:57 ----A---- D:\Windows\system32\wmploc.DLL
2015-02-27 09:54:56 ----A---- D:\Windows\system32\wmp.dll
2015-02-27 08:39:16 ----D---- D:\Windows\SYSWOW64\Wat
2015-02-27 08:39:16 ----D---- D:\Windows\system32\Wat
2015-02-27 01:12:54 ----A---- D:\Windows\SYSWOW64\mferror.dll
2015-02-27 01:12:54 ----A---- D:\Windows\system32\rrinstaller.exe
2015-02-27 01:12:54 ----A---- D:\Windows\system32\mfpmp.exe
2015-02-27 01:12:54 ----A---- D:\Windows\system32\mferror.dll
2015-02-27 01:12:53 ----A---- D:\Windows\SYSWOW64\rrinstaller.exe
2015-02-27 01:12:53 ----A---- D:\Windows\SYSWOW64\mfps.dll
2015-02-27 01:12:53 ----A---- D:\Windows\SYSWOW64\mfpmp.exe
2015-02-27 01:12:53 ----A---- D:\Windows\SYSWOW64\mf.dll
2015-02-27 01:12:53 ----A---- D:\Windows\system32\mfps.dll
2015-02-27 01:12:53 ----A---- D:\Windows\system32\mf.dll
2015-02-27 01:11:13 ----A---- D:\Windows\system32\WUDFx.dll
2015-02-27 01:11:13 ----A---- D:\Windows\system32\WUDFSvc.dll
2015-02-27 01:11:13 ----A---- D:\Windows\system32\WUDFPlatform.dll
2015-02-27 01:11:13 ----A---- D:\Windows\system32\WUDFHost.exe
2015-02-27 01:11:13 ----A---- D:\Windows\system32\WUDFCoinstaller.dll
2015-02-27 01:11:13 ----A---- D:\Windows\system32\drivers\WUDFRd.sys
2015-02-27 01:11:13 ----A---- D:\Windows\system32\drivers\WUDFPf.sys
2015-02-27 00:55:13 ----A---- D:\Windows\SYSWOW64\msmpeg2vdec.dll
2015-02-27 00:55:13 ----A---- D:\Windows\system32\msmpeg2vdec.dll
2015-02-26 23:53:05 ----D---- D:\Networking
2015-02-26 22:21:11 ----A---- D:\Windows\SYSWOW64\FlashPlayerApp.exe
2015-02-26 22:21:10 ----D---- D:\Windows\SYSWOW64\Macromed
2015-02-26 22:21:06 ----D---- D:\Windows\system32\Macromed
2015-02-26 21:38:12 ----A---- D:\Windows\system32\sdnclean64.exe
2015-02-26 21:38:11 ----D---- D:\ProgramData\Spybot - Search & Destroy
2015-02-26 21:38:08 ----D---- D:\Program Files (x86)\Spybot - Search & Destroy 2
2015-02-26 17:39:39 ----A---- D:\Windows\system32\TSWbPrxy.exe
2015-02-26 17:39:38 ----A---- D:\Windows\system32\invagent.dll
2015-02-26 17:39:38 ----A---- D:\Windows\system32\generaltel.dll
2015-02-26 17:39:38 ----A---- D:\Windows\system32\devinv.dll
2015-02-26 17:39:38 ----A---- D:\Windows\system32\appraiser.dll
2015-02-26 17:39:38 ----A---- D:\Windows\system32\aitstatic.exe
2015-02-26 17:39:38 ----A---- D:\Windows\system32\aeinv.dll
2015-02-26 17:39:37 ----A---- D:\Windows\system32\aepdu.dll
2015-02-26 17:39:36 ----A---- D:\Windows\system32\aepic.dll
2015-02-26 17:39:34 ----A---- D:\Windows\system32\profsvc.dll
2015-02-26 17:39:31 ----A---- D:\Windows\SYSWOW64\schannel.dll
2015-02-26 17:39:31 ----A---- D:\Windows\SYSWOW64\kerberos.dll
2015-02-26 17:39:31 ----A---- D:\Windows\system32\schannel.dll
2015-02-26 17:39:30 ----A---- D:\Windows\SYSWOW64\TSpkg.dll
2015-02-26 17:39:30 ----A---- D:\Windows\SYSWOW64\ncrypt.dll
2015-02-26 17:39:30 ----A---- D:\Windows\SYSWOW64\msv1_0.dll
2015-02-26 17:39:30 ----A---- D:\Windows\system32\wdigest.dll
2015-02-26 17:39:30 ----A---- D:\Windows\system32\TSpkg.dll
2015-02-26 17:39:30 ----A---- D:\Windows\system32\ncrypt.dll
2015-02-26 17:39:30 ----A---- D:\Windows\system32\msv1_0.dll
2015-02-26 17:39:30 ----A---- D:\Windows\system32\kerberos.dll
2015-02-26 17:39:29 ----A---- D:\Windows\SYSWOW64\wdigest.dll
2015-02-26 17:39:29 ----A---- D:\Windows\SYSWOW64\credssp.dll
2015-02-26 17:39:29 ----A---- D:\Windows\system32\credssp.dll
2015-02-26 17:38:47 ----A---- D:\Windows\SYSWOW64\mshtmled.dll
2015-02-26 17:38:47 ----A---- D:\Windows\SYSWOW64\MshtmlDac.dll
2015-02-26 17:38:47 ----A---- D:\Windows\SYSWOW64\iernonce.dll
2015-02-26 17:38:47 ----A---- D:\Windows\SYSWOW64\ieetwproxystub.dll
2015-02-26 17:38:47 ----A---- D:\Windows\system32\ieetwproxystub.dll
2015-02-26 17:38:47 ----A---- D:\Windows\system32\ieetwcollector.exe
2015-02-26 17:38:46 ----A---- D:\Windows\SYSWOW64\urlmon.dll
2015-02-26 17:38:46 ----A---- D:\Windows\SYSWOW64\mshtml.dll
2015-02-26 17:38:46 ----A---- D:\Windows\SYSWOW64\msfeeds.dll
2015-02-26 17:38:46 ----A---- D:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2015-02-26 17:38:46 ----A---- D:\Windows\SYSWOW64\iedkcs32.dll
2015-02-26 17:38:46 ----A---- D:\Windows\SYSWOW64\dxtrans.dll
2015-02-26 17:38:46 ----A---- D:\Windows\system32\JavaScriptCollectionAgent.dll
2015-02-26 17:38:46 ----A---- D:\Windows\system32\iernonce.dll
2015-02-26 17:38:46 ----A---- D:\Windows\system32\ie4uinit.exe
2015-02-26 17:38:45 ----A---- D:\Windows\SYSWOW64\jsproxy.dll
2015-02-26 17:38:45 ----A---- D:\Windows\SYSWOW64\ieUnatt.exe
2015-02-26 17:38:45 ----A---- D:\Windows\SYSWOW64\iesetup.dll
2015-02-26 17:38:45 ----A---- D:\Windows\SYSWOW64\iertutil.dll
2015-02-26 17:38:45 ----A---- D:\Windows\SYSWOW64\ieapfltr.dll
2015-02-26 17:38:45 ----A---- D:\Windows\system32\urlmon.dll
2015-02-26 17:38:45 ----A---- D:\Windows\system32\ieetwcollectorres.dll
2015-02-26 17:38:45 ----A---- D:\Windows\system32\iedkcs32.dll
2015-02-26 17:38:44 ----A---- D:\Windows\SYSWOW64\ieui.dll
2015-02-26 17:38:44 ----A---- D:\Windows\SYSWOW64\ieframe.dll
2015-02-26 17:38:44 ----A---- D:\Windows\SYSWOW64\dxtmsft.dll
2015-02-26 17:38:44 ----A---- D:\Windows\system32\MsSpellCheckingFacility.exe
2015-02-26 17:38:44 ----A---- D:\Windows\system32\msfeeds.dll
2015-02-26 17:38:44 ----A---- D:\Windows\system32\iesetup.dll
2015-02-26 17:38:44 ----A---- D:\Windows\system32\ieapfltr.dll
2015-02-26 17:38:44 ----A---- D:\Windows\system32\dxtrans.dll
2015-02-26 17:38:43 ----A---- D:\Windows\SYSWOW64\wininet.dll
2015-02-26 17:38:43 ----A---- D:\Windows\SYSWOW64\vbscript.dll
2015-02-26 17:38:43 ----A---- D:\Windows\SYSWOW64\mshtmlmedia.dll
2015-02-26 17:38:43 ----A---- D:\Windows\system32\iertutil.dll
2015-02-26 17:38:42 ----A---- D:\Windows\SYSWOW64\msrating.dll
2015-02-26 17:38:42 ----A---- D:\Windows\system32\jsproxy.dll
2015-02-26 17:38:42 ----A---- D:\Windows\system32\ieUnatt.exe
2015-02-26 17:38:42 ----A---- D:\Windows\system32\ieui.dll
2015-02-26 17:38:42 ----A---- D:\Windows\system32\ieframe.dll
2015-02-26 17:38:42 ----A---- D:\Windows\system32\dxtmsft.dll
2015-02-26 17:38:41 ----A---- D:\Windows\system32\wininet.dll
2015-02-26 17:38:41 ----A---- D:\Windows\system32\vbscript.dll
2015-02-26 17:38:41 ----A---- D:\Windows\system32\mshtmlmedia.dll
2015-02-26 17:38:41 ----A---- D:\Windows\system32\mshtmled.dll
2015-02-26 17:38:40 ----A---- D:\Windows\system32\msrating.dll
2015-02-26 17:38:40 ----A---- D:\Windows\system32\MshtmlDac.dll
2015-02-26 17:38:40 ----A---- D:\Windows\system32\mshtml.dll
2015-02-26 17:37:06 ----A---- D:\Windows\SYSWOW64\nlaapi.dll
2015-02-26 17:37:06 ----A---- D:\Windows\SYSWOW64\ncsi.dll
2015-02-26 17:37:06 ----A---- D:\Windows\system32\nlasvc.dll
2015-02-26 17:37:04 ----A---- D:\Windows\system32\WindowsCodecs.dll
2015-02-26 17:37:03 ----A---- D:\Windows\SYSWOW64\WindowsCodecs.dll
2015-02-26 17:37:01 ----A---- D:\Windows\system32\drivers\mrxdav.sys
2015-02-26 17:36:57 ----A---- D:\Windows\SYSWOW64\adtschema.dll
2015-02-26 17:36:57 ----A---- D:\Windows\system32\lsasrv.dll
2015-02-26 17:36:57 ----A---- D:\Windows\system32\drivers\ksecdd.sys
2015-02-26 17:36:57 ----A---- D:\Windows\system32\drivers\cng.sys
2015-02-26 17:36:57 ----A---- D:\Windows\system32\adtschema.dll
2015-02-26 17:36:56 ----A---- D:\Windows\SYSWOW64\sspicli.dll
2015-02-26 17:36:56 ----A---- D:\Windows\SYSWOW64\secur32.dll
2015-02-26 17:36:56 ----A---- D:\Windows\SYSWOW64\msobjs.dll
2015-02-26 17:36:56 ----A---- D:\Windows\SYSWOW64\msaudite.dll
2015-02-26 17:36:56 ----A---- D:\Windows\SYSWOW64\auditpol.exe
2015-02-26 17:36:56 ----A---- D:\Windows\system32\sspisrv.dll
2015-02-26 17:36:56 ----A---- D:\Windows\system32\sspicli.dll
2015-02-26 17:36:56 ----A---- D:\Windows\system32\secur32.dll
2015-02-26 17:36:56 ----A---- D:\Windows\system32\msobjs.dll
2015-02-26 17:36:56 ----A---- D:\Windows\system32\msaudite.dll
2015-02-26 17:36:56 ----A---- D:\Windows\system32\lsass.exe
2015-02-26 17:36:56 ----A---- D:\Windows\system32\drivers\ksecpkg.sys
2015-02-26 17:36:56 ----A---- D:\Windows\system32\auditpol.exe
2015-02-26 17:36:16 ----A---- D:\Windows\SYSWOW64\wintrust.dll
2015-02-26 17:36:16 ----A---- D:\Windows\SYSWOW64\cryptsvc.dll
2015-02-26 17:36:16 ----A---- D:\Windows\SYSWOW64\crypt32.dll
2015-02-26 17:36:16 ----A---- D:\Windows\system32\wintrust.dll
2015-02-26 17:36:16 ----A---- D:\Windows\system32\cryptsvc.dll
2015-02-26 17:36:16 ----A---- D:\Windows\system32\crypt32.dll
2015-02-26 17:35:36 ----A---- D:\Windows\SYSWOW64\oleaut32.dll
2015-02-26 17:35:36 ----A---- D:\Windows\system32\oleaut32.dll
2015-02-26 17:35:34 ----A---- D:\Windows\system32\mstscax.dll
2015-02-26 17:35:33 ----A---- D:\Windows\SYSWOW64\mstscax.dll
2015-02-26 17:35:32 ----A---- D:\Windows\SYSWOW64\aaclient.dll
2015-02-26 17:34:00 ----A---- D:\Windows\SYSWOW64\scesrv.dll
2015-02-26 17:34:00 ----A---- D:\Windows\system32\scesrv.dll
2015-02-26 17:33:55 ----A---- D:\Windows\SYSWOW64\ntkrnlpa.exe
2015-02-26 17:33:55 ----A---- D:\Windows\system32\ntoskrnl.exe
2015-02-26 17:33:54 ----A---- D:\Windows\SYSWOW64\ntoskrnl.exe
2015-02-26 17:33:53 ----A---- D:\Windows\system32\srcore.dll
2015-02-26 17:33:53 ----A---- D:\Windows\system32\rstrui.exe
2015-02-26 17:33:52 ----A---- D:\Windows\SYSWOW64\srclient.dll
2015-02-26 17:33:52 ----A---- D:\Windows\system32\srclient.dll
2015-02-26 17:32:15 ----A---- D:\Windows\system32\win32k.sys
2015-02-26 16:21:55 ----D---- D:\Program Files\Common Files\DESIGNER
2015-02-26 16:21:27 ----D---- D:\Program Files (x86)\Microsoft SQL Server
2015-02-26 16:21:10 ----D---- D:\ProgramData\regid.1991-06.com.microsoft
2015-02-26 16:20:31 ----D---- D:\Windows\PCHEALTH
2015-02-26 16:20:31 ----D---- D:\Program Files\Microsoft SQL Server
2015-02-26 16:18:32 ----D---- D:\Program Files\Microsoft Analysis Services
2015-02-26 16:18:32 ----D---- D:\Program Files (x86)\Microsoft Analysis Services
2015-02-26 16:18:15 ----D---- D:\Program Files (x86)\Microsoft Office
2015-02-26 16:18:02 ----D---- D:\ProgramData\Microsoft Help
2015-02-26 16:17:27 ----RHD---- D:\MSOCache
2015-02-26 13:13:42 ----D---- D:\ProgramData\BlueStacksSetup
2015-02-26 13:13:42 ----D---- D:\ProgramData\BlueStacks
2015-02-26 13:13:42 ----D---- D:\Program Files (x86)\BlueStacks
2015-02-26 12:24:31 ----D---- D:\Program Files (x86)\Bechiro S.L
2015-02-26 12:24:30 ----D---- D:\Users\Rob\AppData\Roaming\Bechiro S.L
2015-02-26 12:24:30 ----D---- D:\Program Files (x86)\Mozilla Firefox
2015-02-26 12:20:59 ----D---- D:\Users\Rob\AppData\Roaming\Opera Software
2015-02-26 12:20:42 ----D---- D:\Program Files (x86)\Opera
2015-02-26 12:20:16 ----D---- D:\Program Files (x86)\9b0a2a1e-3b76-4fee-bbe1-d53b372c4d05
2015-02-26 12:20:15 ----D---- D:\Program Files (x86)\Shoppy-Up.2.7
2015-02-25 10:20:09 ----D---- D:\Users\Rob\AppData\Roaming\PrimoPDF
2015-02-25 10:19:16 ----A---- D:\Windows\system32\Primomonnt.dll
2015-02-25 10:19:14 ----D---- D:\Program Files (x86)\Nitro PDF
2015-02-25 10:04:28 ----D---- D:\Program Files (x86)\Adobe
2015-02-25 10:03:47 ----D---- D:\ProgramData\Adobe
2015-02-25 09:03:27 ----D---- D:\ProgramData\{e3e700a2-0d4c-87e5-e3e7-700a20d40288}
2015-02-24 20:15:31 ----A---- D:\Windows\system32\drivers\stflt.sys
2015-02-24 20:15:30 ----D---- D:\Users\Rob\AppData\Roaming\Spyware Terminator
2015-02-24 20:15:30 ----D---- D:\ProgramData\Spyware Terminator
2015-02-24 20:14:58 ----D---- D:\Program Files (x86)\Spyware Terminator
2015-02-24 20:04:24 ----D---- D:\Program Files\CCleaner
2015-02-24 20:00:28 ----D---- D:\Windows\pss
2015-02-24 19:58:29 ----D---- D:\Windows\system32\appmgmt
2015-02-24 19:54:42 ----D---- D:\Windows\SYSWOW64\X86
2015-02-24 19:54:42 ----D---- D:\Windows\SYSWOW64\AMD64
2015-02-24 19:52:58 ----D---- D:\Program Files (x86)\DeluxReader
2015-02-24 19:52:37 ----D---- D:\Program Files (x86)\My IP address
2015-02-24 19:52:29 ----D---- D:\ProgramData\VCE Exam Simulator
2015-02-24 19:51:13 ----D---- D:\ProgramData\{44ae76ed-5d17-7590-44ae-e76ed5d1dbb5}
2015-02-05 01:37:22 ----D---- D:\Users\Rob\AppData\Roaming\Fallout2
======List of files/folders modified in the last 1 month======
2015-03-03 09:04:53 ----D---- D:\Windows\Temp
2015-03-03 09:03:53 ----SHD---- D:\System Volume Information
2015-03-03 09:03:18 ----D---- D:\Windows\System32
2015-03-03 09:03:18 ----D---- D:\Windows\inf
2015-03-03 09:03:18 ----A---- D:\Windows\system32\PerfStringBackup.INI
2015-03-03 09:01:17 ----RD---- D:\Program Files
2015-03-03 09:00:41 ----D---- D:\Windows\system32\config
2015-03-02 20:15:24 ----D---- D:\Windows\Prefetch
2015-03-02 20:04:44 ----D---- D:\Windows\SYSWOW64\drivers
2015-03-02 20:04:44 ----D---- D:\Windows\SysWOW64
2015-03-02 20:04:44 ----D---- D:\Windows\system32\drivers
2015-03-02 20:03:55 ----HD---- D:\Program Files (x86)\InstallShield Installation Information
2015-03-02 20:00:02 ----HD---- D:\ProgramData
2015-03-02 20:00:01 ----D---- D:\Windows\system32\DriverStore
2015-03-02 19:59:50 ----SHD---- D:\Windows\Installer
2015-03-02 19:57:37 ----D---- D:\Programy
2015-03-02 11:10:04 ----D---- D:\Windows
2015-03-02 01:24:04 ----D---- D:\Users\Rob\AppData\Roaming\Skype
2015-03-01 10:52:14 ----D---- D:\Windows\debug
2015-02-28 20:28:48 ----D---- D:\Users\Rob\AppData\Roaming\vlc
2015-02-28 10:03:15 ----D---- D:\Windows\rescache
2015-02-28 09:44:59 ----D---- D:\Windows\Microsoft.NET
2015-02-28 09:43:38 ----RSD---- D:\Windows\assembly
2015-02-28 09:19:29 ----D---- D:\AdwCleaner
2015-02-28 08:48:31 ----D---- D:\Windows\winsxs
2015-02-28 08:46:03 ----D---- D:\Windows\SYSWOW64\en-US
2015-02-28 08:46:03 ----D---- D:\Windows\system32\en-US
2015-02-28 08:46:01 ----RSD---- D:\Windows\Fonts
2015-02-28 08:46:00 ----D---- D:\Windows\SYSWOW64\cs-CZ
2015-02-28 08:46:00 ----D---- D:\Windows\system32\cs-CZ
2015-02-27 22:30:25 ----D---- D:\Program Files (x86)\Microsoft.NET
2015-02-27 22:30:24 ----D---- D:\Program Files\Common Files\Microsoft Shared
2015-02-27 15:35:45 ----D---- D:\Windows\system32\catroot2
2015-02-27 15:22:50 ----D---- D:\Program Files\Windows Media Player
2015-02-27 15:22:50 ----D---- D:\Program Files (x86)\Windows Media Player
2015-02-27 15:22:49 ----D---- D:\Windows\ehome
2015-02-27 15:22:47 ----SD---- D:\Windows\system32\CompatTel
2015-02-27 15:22:47 ----D---- D:\Windows\system32\appraiser
2015-02-27 15:22:46 ----D---- D:\Program Files\Common Files\System
2015-02-27 09:21:37 ----D---- D:\Windows\AppPatch
2015-02-27 09:21:35 ----D---- D:\Program Files\Windows Journal
2015-02-27 09:19:22 ----D---- D:\Windows\Tasks
2015-02-27 09:19:22 ----D---- D:\Windows\system32\Tasks
2015-02-27 09:19:00 ----RD---- D:\Program Files (x86)
2015-02-27 09:12:55 ----A---- D:\Windows\win.ini
2015-02-27 08:39:35 ----D---- D:\Program Files\Internet Explorer
2015-02-27 08:39:33 ----D---- D:\Program Files (x86)\Internet Explorer
2015-02-27 08:39:30 ----D---- D:\Windows\SYSWOW64\Dism
2015-02-27 08:39:29 ----D---- D:\Windows\system32\Dism
2015-02-27 08:39:28 ----D---- D:\Program Files\Windows Defender
2015-02-27 08:39:28 ----D---- D:\Program Files (x86)\Windows Defender
2015-02-27 08:39:17 ----D---- D:\Windows\SYSWOW64\migration
2015-02-27 08:39:17 ----D---- D:\Windows\system32\migration
2015-02-27 08:39:17 ----D---- D:\Windows\PolicyDefinitions
2015-02-27 08:39:03 ----D---- D:\Windows\system32\Boot
2015-02-27 01:39:19 ----D---- D:\ProgramData\Package Cache
2015-02-27 00:53:04 ----D---- D:\Windows\system32\MRT
2015-02-26 22:21:20 ----D---- D:\Windows\Downloaded Program Files
2015-02-26 21:38:16 ----SD---- D:\ProgramData\Microsoft
2015-02-26 17:31:54 ----D---- D:\Windows\system32\catroot
2015-02-26 16:39:31 ----SD---- D:\Users\Rob\AppData\Roaming\Microsoft
2015-02-26 16:22:04 ----D---- D:\Windows\ShellNew
2015-02-26 16:21:55 ----D---- D:\Program Files\Common Files
2015-02-26 12:20:41 ----D---- D:\Program Files (x86)\AMD
2015-02-26 12:20:14 ----D---- D:\Users\Rob\AppData\Roaming\Seznam.cz
2015-02-26 12:20:13 ----D---- D:\Program Files (x86)\Seznam.cz
2015-02-25 10:21:14 ----D---- D:\Users\Rob\AppData\Roaming\Adobe
2015-02-25 10:19:15 ----A---- D:\Windows\primopdf.ini
2015-02-25 10:04:28 ----D---- D:\Program Files (x86)\Common Files
2015-02-24 20:07:29 ----D---- D:\Users\Rob\AppData\Roaming\DAEMON Tools Lite
2015-02-24 20:07:28 ----D---- D:\Users\Rob\AppData\Roaming\uTorrent
2015-02-24 20:06:42 ----D---- D:\Windows\Panther
2015-02-24 20:06:41 ----D---- D:\Windows\Minidump
2015-02-24 20:06:41 ----D---- D:\Windows\Logs
2015-02-24 19:58:55 ----D---- D:\Program Files (x86)\NCWest
2015-02-24 19:54:40 ----D---- D:\Users\Rob\AppData\Roaming\Raptr
2015-02-24 17:00:17 ----A---- D:\Windows\Sandboxie.ini
2015-02-24 07:57:37 ----D---- D:\ProgramData\Origin
2015-02-22 09:38:19 ----D---- D:\ProgramData\Orbit
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 iaStorA;iaStorA; D:\Windows\system32\DRIVERS\iaStorA.sys [2014-04-11 645480]
R0 iaStorF;iaStorF; D:\Windows\system32\DRIVERS\iaStorF.sys [2014-04-11 28008]
R0 iusb3hcs;Ovladač přepínání hostitelského řadiče Intel(R) USB 3.0; D:\Windows\system32\DRIVERS\iusb3hcs.sys [2014-02-21 20464]
R0 rdyboost;ReadyBoost; D:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; D:\Windows\system32\drivers\vmbus.sys [2010-11-20 199552]
R1 ArcSec;archlp; D:\Windows\system32\drivers\ArcSec.sys [2010-09-21 312184]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; D:\Windows\system32\drivers\csc.sys [2010-11-20 514560]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; D:\Windows\system32\DRIVERS\dtsoftbus01.sys [2014-12-20 283064]
R2 amdacpksd;ACP Kernel Service Driver; \??\D:\Windows\system32\drivers\amdacpksd.sys [2014-11-21 294600]
R2 BstHdDrv;BlueStacks Hypervisor; \??\D:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [2014-08-13 122072]
R2 sp_rsdrv2;Spyware Terminator Driver Filter; D:\Windows\system32\DRIVERS\stflt.sys [2015-02-24 51496]
R3 amdkmdag;amdkmdag; D:\Windows\system32\DRIVERS\atikmdag.sys [2014-11-21 18959360]
R3 amdkmdap;amdkmdap; D:\Windows\system32\DRIVERS\atikmpag.sys [2014-11-21 589312]
R3 AtiHDAudioService;AMD Function Driver for HD Audio Service; D:\Windows\system32\drivers\AtihdW76.sys [2014-06-21 94720]
R3 gdrv;gdrv; \??\D:\Windows\gdrv.sys [2015-03-03 25640]
R3 hamachi;Hamachi Network Interface; D:\Windows\system32\DRIVERS\hamachi.sys [2009-03-18 33856]
R3 igfx;igfx; D:\Windows\system32\DRIVERS\igdkmd64.sys [2014-03-31 3785216]
R3 IntcDAud;Intel(R) Display Audio; D:\Windows\system32\DRIVERS\IntcDAud.sys [2014-03-31 450520]
R3 iusb3hub;Ovladač rozbočovače Intel(R) USB 3.0; D:\Windows\system32\DRIVERS\iusb3hub.sys [2014-02-21 370672]
R3 iusb3xhc;Ovladač rozšiřitelného hostitelského řadiče Intel(R) USB 3.0; D:\Windows\system32\DRIVERS\iusb3xhc.sys [2014-02-21 791024]
R3 MEIx64;Intel(R) Management Engine Interface ; D:\Windows\system32\DRIVERS\TeeDriverx64.sys [2014-03-20 118272]
R3 RTL8167;Realtek 8167 NT Driver; D:\Windows\system32\DRIVERS\Rt64win7.sys [2014-03-18 906968]
R3 SbieDrv;SbieDrv; \??\D:\Programy\Sandboxie\SbieDrv.sys [2014-10-14 185352]
R3 WmBEnum;Logitech Virtual Bus Enumerator Driver; D:\Windows\system32\drivers\WmBEnum.sys [2010-04-27 26440]
R3 WmXlCore;Logitech Translation Layer Driver; D:\Windows\system32\drivers\WmXlCore.sys [2010-04-27 77512]
S2 atksgt;atksgt; D:\Windows\system32\DRIVERS\atksgt.sys [2014-12-22 303616]
S2 lirsgt;lirsgt; D:\Windows\system32\DRIVERS\lirsgt.sys [2014-12-22 35328]
S3 ALSysIO;ALSysIO; \??\D:\Users\Rob\AppData\Local\Temp\ALSysIO64.sys []
S3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); D:\Windows\system32\drivers\RTKVHD64.sys []
S3 pciide;pciide; D:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RDPDR;Terminal Server Device Redirector Driver; D:\Windows\System32\drivers\rdpdr.sys [2010-11-20 165888]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; D:\Windows\System32\drivers\rdpvideominiport.sys [2010-11-20 20992]
S3 s3cap;s3cap; D:\Windows\system32\drivers\vms3cap.sys [2010-11-20 6656]
S3 storvsc;storvsc; D:\Windows\system32\drivers\storvsc.sys [2010-11-20 34688]
S3 Synth3dVsc;Synth3dVsc; D:\Windows\System32\drivers\synth3dvsc.sys []
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; D:\Windows\System32\drivers\tsusbflt.sys [2010-11-20 59392]
S3 tsusbhub;@%SystemRoot%\system32\drivers\tsusbhub.sys,-1; D:\Windows\system32\drivers\tsusbhub.sys []
S3 usbscan;Ovladač skeneru USB; D:\Windows\system32\DRIVERS\usbscan.sys [2013-07-03 42496]
S3 VGPU;VGPU; D:\Windows\System32\drivers\rdvgkmd.sys []
S3 VMBusHID;VMBusHID; D:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 21760]
S3 WmFilter;Logitech Gaming HID Filter Driver; D:\Windows\system32\drivers\WmFilter.sys [2010-04-27 43976]
S3 WmVirHid;Logitech Virtual Hid Device Driver; D:\Windows\system32\drivers\WmVirHid.sys [2010-04-27 16200]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; D:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2014-12-03 81088]
R2 AMD External Events Utility;AMD External Events Utility; D:\Windows\system32\atiesrxx.exe [2014-11-21 244736]
R2 amdacpusrsvc;ACP User Service; D:\Program Files\AMD\{920DEC42-4CA5-4d1d-9487-67BE645CDDFC}\amdacpusrsvc.exe [2014-11-20 116224]
R2 BstHdLogRotatorSvc;BlueStacks Log Rotator Service; D:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe [2014-08-13 384728]
R2 BstHdUpdaterSvc;BlueStacks Updater Service; D:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe [2014-08-13 777944]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; D:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 gadjservice;GIGABYTE Adjust; D:\Program Files (x86)\Gigabyte\AppCenter\AdjustService.exe [2014-04-16 16384]
R2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine; D:\Programy\Hamachi\hamachi-2.exe [2015-02-17 2490216]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; D:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2014-04-11 16232]
R2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service; D:\Windows\system32\igfxCUIService.exe [2014-04-09 296432]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; D:\Program Files\Intel\iCLS Client\HeciServer.exe [2013-08-27 747520]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; D:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2014-03-20 154584]
R2 LMS;Intel(R) Management and Security Application Local Management Service; D:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2014-03-20 398296]
R2 PnkBstrA;PnkBstrA; D:\Windows\syswow64\PnkBstrA.exe [2015-01-13 75136]
R2 PnkBstrB;PnkBstrB; D:\Windows\syswow64\PnkBstrB.exe [2015-01-13 189248]
R2 SbieSvc;Sandboxie Service; D:\Programy\Sandboxie\SbieSvc.exe [2014-10-14 174600]
R2 SDScannerService;Spybot-S&D 2 Scanner Service; D:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [2014-06-24 1738168]
R2 SDUpdateService;Spybot-S&D 2 Updating Service; D:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [2014-06-27 2088408]
R2 SDWSCService;Spybot-S&D 2 Security Center Service; D:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [2014-04-25 171928]
R2 ST2012_Svc;Spyware Terminator 2012 Realtime Shield Service; D:\Program Files (x86)\Spyware Terminator\st_rsser64.exe [2014-11-04 1146272]
R2 wlidsvc;Windows Live ID Sign-in Assistant; D:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2009-08-18 2291568]
S2 b1a39cf7;DeluxReader; D:\Windows\syswow64\rundll32.exe [2009-07-14 44544]
S2 BstHdAndroidSvc;BlueStacks Android Service; D:\Program Files (x86)\BlueStacks\HD-Service.exe [2014-08-17 391168]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; D:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; D:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-09-11 124088]
S2 gupdate;Služba Google Update (gupdate); D:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-12-20 116648]
S2 SkypeUpdate;Skype Updater; D:\Program Files (x86)\Skype\Updater\Updater.exe [2014-12-11 315496]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; D:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-02-26 267440]
S3 AppMgmt;@appmgmts.dll,-3250; D:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 cphs;Intel(R) Content Protection HECI Service; D:\Windows\SysWow64\IntelCpHeciSvc.exe [2014-04-09 279024]
S3 gupdatem;Služba Google Update (gupdatem); D:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-12-20 116648]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; D:\Windows\system32\IEEtwCollector.exe [2015-01-12 114688]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; D:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2013-08-27 828376]
S3 npggsvc;nProtect GameGuard Service; D:\Windows\syswow64\GameMon.des [2014-05-06 3071632]
S3 Origin Client Service;Origin Client Service; E:\Hry\Origin\OriginClientService.exe [2015-01-28 1910128]
S3 ose64;Office 64 Source Engine; D:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2012-12-08 178760]
S3 osppsvc;Office Software Protection Platform; D:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2012-10-01 5132888]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; D:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 Steam Client Service;Steam Client Service; D:\Program Files (x86)\Common Files\Steam\SteamService.exe [2015-02-19 835776]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; D:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; D:\Windows\system32\Wat\WatAdminSvc.exe [2015-02-27 1255736]
S4 aspnet_state;Stavová služba ASP.NET; D:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-09-11 51808]
S4 NetMsmqActivator;@D:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; D:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetPipeActivator;@D:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; D:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetTcpActivator;@D:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; D:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
-----------------EOF-----------------
Re: Reklamy, zpomalený počítač
ahoj
- dufam, ze Win je legalny
- odinstaluj SpyBot a STerminator
- nainstaluj antivir a prescanuj PC
- ak budu nadalej problemy vloz log FRST
- dufam, ze Win je legalny
- odinstaluj SpyBot a STerminator
- nainstaluj antivir a prescanuj PC
- ak budu nadalej problemy vloz log FRST
FRST |ADWCleaner |MBAM |CCleaner |AVPTool
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
Re: Reklamy, zpomalený počítač
Díky za rady, udělal jsem vše podle tvého návodu, je to lepší, ale ještě tam něco bude, počítač je stále o dost pomalejší, než byl před zavirováním. Jinak naisntaloval jsem avast a provedl tu velkou hloubkovou kontrolu všech disků (45 infikovaných souborů). Sem tam mi vyskakuje avast, že blokuje různý věci, hlavně když mam spuštěný prohlížeč, třeba i jako neaktivní okno. Díky.
omlouvám se za formát logu, nevím proč to mám tak rozhozený
aktuální log:
Logfile of random's system information tool 1.10 (written by random/random)
Run by Rob at 2015-03-05 21:28:10
Microsoft Windows 7 Ultimate Service Pack 1
System drive D: has 368 GB (77%) free of 477 GB
Total RAM: 3988 MB (34% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 21:28:14, on 5.3.2015
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17631)
Boot mode: Normal
Running processes:
D:\Programy\Total Media Theatre 5\TotalMedia Server\TM Server.exe
D:\Programy\Avast\AvastUI.exe
D:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
D:\Program Files (x86)\Gigabyte\AppCenter\ApCent.exe
D:\Programy\Avast\AvastUI.exe
D:\Program Files (x86)\Google\Chrome\Application\chrome.exe
D:\Program Files (x86)\Google\Chrome\Application\chrome.exe
D:\Program Files (x86)\Google\Chrome\Application\chrome.exe
D:\Program Files (x86)\Google\Chrome\Application\chrome.exe
D:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
D:\Program Files (x86)\Google\Chrome\Application\chrome.exe
D:\Program Files (x86)\Google\Chrome\Application\chrome.exe
D:\Program Files (x86)\Google\Chrome\Application\chrome.exe
E:\Hry\Steam\Steam.exe
E:\Hry\Steam\bin\steamwebhelper.exe
D:\Program Files (x86)\Google\Chrome\Application\chrome.exe
D:\Program Files (x86)\Google\Chrome\Application\chrome.exe
D:\Program Files (x86)\Google\Chrome\Application\chrome.exe
D:\Program Files\trend micro\Rob.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/?clid=20808
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = D:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Lync Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - D:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - D:\Program Files (x86)\Java\jre1.8.0_31\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - D:\Programy\Avast\aswWebRepIE.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - D:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - D:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - D:\PROGRA~2\MICROS~3\Office15\URLREDIR.DLL
O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - D:\PROGRA~2\MICROS~3\Office15\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - D:\Program Files (x86)\Java\jre1.8.0_31\bin\jp2ssv.dll
O2 - BHO: SmartBar Helper Object - {FD36FEBE-DBA1-4597-9DD1-B13794B92F68} - D:\Program Files (x86)\Bechiro S.L\smartbar\1.8.8.12\bh\smartbar.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - D:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [Adobe ARM] "D:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [AvastUI.exe] "D:\Programy\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [SunJavaUpdateSched] "D:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\RunOnce: [PreRun] D:\Program Files (x86)\Gigabyte\AppCenter\PreRun.exe
O4 - HKCU\..\Run: [CCleaner Monitoring] "D:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] D:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] D:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\RunOnce: [SPReview] "D:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [SPReview] "D:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'Default user')
O4 - Global Startup: TotalMedia Server.lnk = D:\Programy\Total Media Theatre 5\TotalMedia Server\TM Server.exe
O8 - Extra context menu item: E&xportovat do Microsoft Excelu - res://D:\Programy\MICROS~1\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do OneNotu - res://D:\Programy\MICROS~1\Office15\ONBttnIE.dll/105
O9 - Extra button: Odeslat do OneNotu - {2670000A-7350-4f3c-8081-5663EE0C6C49} - D:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do OneNotu - {2670000A-7350-4f3c-8081-5663EE0C6C49} - D:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra button: Volání kliknutím v Lyncu - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - D:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O9 - Extra 'Tools' menuitem: Volání kliknutím v Lyncu - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - D:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - D:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - D:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O10 - Unknown file in Winsock LSP: d:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: d:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: *.clonewarsadventures.com
O15 - Trusted Zone: *.freerealms.com
O15 - Trusted Zone: *.soe.com
O15 - Trusted Zone: *.sony.com
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - https://fpdownload.macromedia.com/get/s ... wflash.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{3BE09598-9584-4013-A6F4-B8F50B4AABE1}: NameServer = 109.164.64.64,8.8.8.8
O17 - HKLM\System\CS1\Services\Tcpip\..\{3BE09598-9584-4013-A6F4-B8F50B4AABE1}: NameServer = 109.164.64.64,8.8.8.8
O17 - HKLM\System\CS2\Services\Tcpip\..\{3BE09598-9584-4013-A6F4-B8F50B4AABE1}: NameServer = 109.164.64.64,8.8.8.8
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - D:\Program Files (x86)\Microsoft Office\Office15\MSOSB.DLL
O18 - Filter hijack: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - D:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - D:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - D:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - D:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - D:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: ACP User Service (amdacpusrsvc) - Advanced Micro Devices - D:\Program Files\AMD\{920DEC42-4CA5-4d1d-9487-67BE645CDDFC}\amdacpusrsvc.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - Avast Software s.r.o. - D:\Programy\Avast\AvastSvc.exe
O23 - Service: AvastVBox COM Service (AvastVBoxSvc) - Avast Software - D:\Programy\Avast\ng\vbox\AvastVBoxSVC.exe
O23 - Service: BattlEye Service (BEService) - Unknown owner - D:\Program Files (x86)\Common Files\BattlEye\BEService.exe
O23 - Service: BlueStacks Android Service (BstHdAndroidSvc) - BlueStack Systems, Inc. - D:\Program Files (x86)\BlueStacks\HD-Service.exe
O23 - Service: BlueStacks Log Rotator Service (BstHdLogRotatorSvc) - BlueStack Systems, Inc. - D:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe
O23 - Service: BlueStacks Updater Service (BstHdUpdaterSvc) - BlueStack Systems, Inc. - D:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - D:\Windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - D:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - D:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: GIGABYTE Adjust (gadjservice) - Unknown owner - D:\Program Files (x86)\Gigabyte\AppCenter\AdjustService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - D:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - D:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - D:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - D:\Programy\Hamachi\hamachi-2.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - D:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - D:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - D:\Windows\system32\igfxCUIService.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - D:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - D:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - D:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - D:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - D:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - D:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - D:\Windows\system32\lsass.exe (file missing)
O23 - Service: nProtect GameGuard Service (npggsvc) - Unknown owner - D:\Windows\system32\GameMon.des.exe (file missing)
O23 - Service: Origin Client Service - Electronic Arts - E:\Hry\Origin\OriginClientService.exe
O23 - Service: PnkBstrA - Unknown owner - D:\Windows\system32\PnkBstrA.exe
O23 - Service: PnkBstrB - Unknown owner - D:\Windows\system32\PnkBstrB.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - D:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - D:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - D:\Windows\system32\lsass.exe (file missing)
O23 - Service: Sandboxie Service (SbieSvc) - Sandboxie Holdings, LLC - D:\Programy\Sandboxie\SbieSvc.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - D:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - D:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - D:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - D:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - D:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - D:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - D:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - D:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - D:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - D:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - D:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - D:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - D:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 13576 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
winlogon.exe
D:\Windows\system32\services.exe
D:\Windows\system32\lsass.exe
D:\Windows\system32\lsm.exe
D:\Windows\system32\svchost.exe -k DcomLaunch
D:\Windows\system32\svchost.exe -k RPCSS
D:\Windows\system32\atiesrxx.exe
D:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
D:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
D:\Windows\system32\svchost.exe -k LocalService
D:\Windows\system32\svchost.exe -k netsvcs
D:\Windows\system32\igfxCUIService.exe
"D:\Programy\Sandboxie\SbieSvc.exe"
D:\Windows\system32\svchost.exe -k NetworkService
"D:\Programy\Avast\AvastSvc.exe"
atieclxx
D:\Windows\System32\spoolsv.exe
D:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"D:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"D:\Program Files\AMD\{920DEC42-4CA5-4d1d-9487-67BE645CDDFC}\amdacpusrsvc.exe"
"D:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe"
"D:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe"
"D:\Program Files (x86)\Gigabyte\AppCenter\AdjustService.exe"
"D:\Program Files\Intel\iCLS Client\HeciServer.exe"
D:\Windows\SysWOW64\PnkBstrA.exe
D:\Windows\SysWOW64\PnkBstrB.exe
"D:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
D:\Programy\Hamachi\hamachi-2.exe -s
WLIDSvcM.exe 2640
D:\Programy\Hamachi\LMIGuardianSvc /escort 2772 /CUSTOM Hamachi
D:\Windows\system32\SearchIndexer.exe /Embedding
"D:\Programy\Avast\ng\vbox\AvastVBoxSVC.exe"
D:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
ngservice.exe pipeserver
"D:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"D:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"D:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
D:\Windows\System32\svchost.exe -k secsvcs
"taskhost.exe"
"D:\Windows\system32\Dwm.exe"
D:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
D:\Windows\Explorer.EXE
"D:\Programy\Total Media Theatre 5\TotalMedia Server\TM Server.exe"
"D:\Programy\Avast\AvastUI.exe" /nogui
"D:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"D:\Program Files (x86)\Gigabyte\AppCenter\ApCent.exe"
D:\Windows\system32\wbem\unsecapp.exe -Embedding
D:\Windows\system32\wbem\wmiprvse.exe
"D:\Programy\Avast\AvastUI.exe" --type=gpu-process --channel="784.0.473130403\369607931" --no-sandbox --lang=en-US --log-file="D:\Users\Rob\AppData\Roaming\AVAST Software\Avast\log\avastium.log" --log-severity=error --user-agent="Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko) Chrome/37.0.2062.124 Safari/537.36 Avastium (10.2.2214)" --proxy-auto-detect --disable-gpu --disable-software-rasterizer --no-sandbox --supports-dual-gpus=false --gpu-driver-bug-workarounds=1,17,38 --gpu-vendor-id=0x1002 --gpu-device-id=0x6658 --gpu-driver-vendor="Advanced Micro Devices, Inc." --gpu-driver-version=14.501.1003.0 --lang=en-US --log-file="D:\Users\Rob\AppData\Roaming\AVAST Software\Avast\log\avastium.log" --log-severity=error --user-agent="Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko) Chrome/37.0.2062.124 Safari/537.36 Avastium (10.2.2214)" --proxy-auto-detect --disable-gpu --disable-software-rasterizer --no-sandbox /prefetch:822062411
"D:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"D:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac
"D:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="3836.0.73409271\165166187" --supports-dual-gpus=false --gpu-driver-bug-workarounds=1,18,39 --gpu-vendor-id=0x1002 --gpu-device-id=0x6658 --gpu-driver-vendor="Advanced Micro Devices, Inc." --gpu-driver-version=14.501.1003.0 --ignored=" --type=renderer " /prefetch:822062411
"D:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/ChromeSuggestions/Mixed/DomRel-Enable/enable/EmbeddedSearch/Group1 dev:pp6 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/ControlEnforce/ExtensionInstallVerification/Bootstrap/GoogleNow/Enable/NewProfileManagement/Enabled/OmniboxBundledExperimentV1/DevHUPDecayWithHQPRelevanceScoring_Control/PasswordGeneration/Disabled/RememberCertificateErrorDecisions/Default/SRTPromptFieldTrial/On/SafeBrowsingIncidentReportingService/Enabled/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-Population-Restrict/normal/UMA-Uniformity-Trial-1-Percent/group_54/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-50-Percent/group_01/UwSInterstitialStatus/On/VoiceTrigger/Install/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="3836.3.151558888\1393516817" /prefetch:673131151
"D:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=ppapi --channel="3836.6.327382264\2059219946" --ppapi-flash-args=enable_hw_video_decode=1 --lang=cs --ignored=" --type=renderer " /prefetch:-632637702
"D:\Program Files\Internet Explorer\iexplore.exe"
"D:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE" SCODEF:2148 CREDAT:267521 /prefetch:2
D:\Windows\system32\Macromed\Flash\FlashUtil64_16_0_0_305_ActiveX.exe -Embedding
"D:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/ChromeSuggestions/Mixed/DomRel-Enable/enable/EmbeddedSearch/Group1 dev:pp6 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/ControlEnforce/ExtensionInstallVerification/Bootstrap/GoogleNow/Enable/NewProfileManagement/Enabled/OmniboxBundledExperimentV1/DevHUPDecayWithHQPRelevanceScoring_Control/PasswordGeneration/Disabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/RememberCertificateErrorDecisions/Default/SRTPromptFieldTrial/On/SafeBrowsingIncidentReportingService/Enabled/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-Population-Restrict/normal/UMA-Uniformity-Trial-1-Percent/group_54/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-50-Percent/group_01/UwSInterstitialStatus/On/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="3836.20.937078396\180258012" /prefetch:673131151
"D:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/ChromeSuggestions/Mixed/DomRel-Enable/enable/EmbeddedSearch/Group1 dev:pp6 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/ControlEnforce/ExtensionInstallVerification/Bootstrap/GoogleNow/Enable/NewProfileManagement/Enabled/OmniboxBundledExperimentV1/DevHUPDecayWithHQPRelevanceScoring_Control/PasswordGeneration/Disabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/RememberCertificateErrorDecisions/Default/SRTPromptFieldTrial/On/SafeBrowsingIncidentReportingService/Enabled/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-Population-Restrict/normal/UMA-Uniformity-Trial-1-Percent/group_54/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-50-Percent/group_01/UwSInterstitialStatus/On/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="3836.23.1016103759\1655574107" /prefetch:673131151
"D:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/ChromeSuggestions/Mixed/DomRel-Enable/enable/EmbeddedSearch/Group1 dev:pp6 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/ControlEnforce/ExtensionInstallVerification/Bootstrap/GoogleNow/Enable/NewProfileManagement/Enabled/OmniboxBundledExperimentV1/DevHUPDecayWithHQPRelevanceScoring_Control/PasswordGeneration/Disabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/RememberCertificateErrorDecisions/Default/SRTPromptFieldTrial/On/SafeBrowsingIncidentReportingService/Enabled/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-Population-Restrict/normal/UMA-Uniformity-Trial-1-Percent/group_54/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-50-Percent/group_01/UwSInterstitialStatus/On/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="3836.31.928755437\1387612716" /prefetch:673131151
"D:\Windows\System32\MsSpellCheckingFacility.exe" -Embedding
"E:\Hry\Steam\Steam.exe"
"E:\Hry\Steam\bin\steamwebhelper.exe" -cefhost -cachedir "D:\Users\Rob\AppData\Local\Steam\htmlcache" -steampid 5300 -buildid 1424305157 -steamid "0" --blacklist-accelerated-compositing --process-per-tab --disable-accelerated-video-decode --enable-direct-write
"D:\Program Files (x86)\Common Files\Steam\SteamService.exe" /RunAsService
"D:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/ChromeSuggestions/Mixed/DomRel-Enable/enable/EmbeddedSearch/Group1 dev:pp6 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/ControlEnforce/ExtensionInstallVerification/Bootstrap/GoogleNow/Enable/NewProfileManagement/Enabled/OmniboxBundledExperimentV1/DevHUPDecayWithHQPRelevanceScoring_Control/PasswordGeneration/Disabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/RememberCertificateErrorDecisions/Default/SRTPromptFieldTrial/On/SafeBrowsingIncidentReportingService/Enabled/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-Population-Restrict/normal/UMA-Uniformity-Trial-1-Percent/group_54/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-50-Percent/group_01/UwSInterstitialStatus/On/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="3836.36.215789223\969404309" /prefetch:673131151
"D:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/ChromeSuggestions/Mixed/DomRel-Enable/enable/EmbeddedSearch/Group1 dev:pp6 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/ControlEnforce/ExtensionInstallVerification/Bootstrap/GoogleNow/Enable/NewProfileManagement/Enabled/OmniboxBundledExperimentV1/DevHUPDecayWithHQPRelevanceScoring_Control/PasswordGeneration/Disabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/RememberCertificateErrorDecisions/Default/SRTPromptFieldTrial/On/SafeBrowsingIncidentReportingService/Enabled/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-Population-Restrict/normal/UMA-Uniformity-Trial-1-Percent/group_54/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-50-Percent/group_01/UwSInterstitialStatus/On/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="3836.38.373651960\2005739110" /prefetch:673131151
"D:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/ChromeSuggestions/Mixed/DomRel-Enable/enable/EmbeddedSearch/Group1 dev:pp6 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/ControlEnforce/ExtensionInstallVerification/Bootstrap/GoogleNow/Enable/NewProfileManagement/Enabled/OmniboxBundledExperimentV1/DevHUPDecayWithHQPRelevanceScoring_Control/PasswordGeneration/Disabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/RememberCertificateErrorDecisions/Default/SRTPromptFieldTrial/On/SafeBrowsingIncidentReportingService/Enabled/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-Population-Restrict/normal/UMA-Uniformity-Trial-1-Percent/group_54/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-50-Percent/group_01/UwSInterstitialStatus/On/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="3836.39.1107794931\1357907336" /prefetch:673131151
"D:\Users\Rob\Downloads\RSITx64.exe"
======Scheduled tasks folder======
D:\Windows\tasks\Adobe Flash Player Updater.job - D:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
D:\Windows\tasks\GoogleUpdateTaskMachineCore.job - D:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
D:\Windows\tasks\GoogleUpdateTaskMachineUA.job - D:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Lync Browser Helper - D:\Programy\Microsoft office\Office15\OCHelper.dll [2015-01-21 218776]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - D:\Programy\Avast\aswWebRepIE64.dll [2015-03-03 662672]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - D:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 532336]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - D:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2015-03-03 256456]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - D:\Programy\MICROS~1\Office15\URLREDIR.DLL [2014-01-23 881880]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - D:\Programy\MICROS~1\Office15\GROOVEEX.DLL [2015-01-21 2334928]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Lync Browser Helper - D:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2015-01-21 153248]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - D:\Program Files (x86)\Java\jre1.8.0_31\bin\ssv.dll [2015-03-03 460712]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - D:\Programy\Avast\aswWebRepIE.dll [2015-03-03 565304]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - D:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 403840]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - D:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2015-03-03 194504]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - D:\PROGRA~2\MICROS~3\Office15\URLREDIR.DLL [2014-01-22 707800]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - D:\PROGRA~2\MICROS~3\Office15\GROOVEEX.DLL [2015-01-21 1729744]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - D:\Program Files (x86)\Java\jre1.8.0_31\bin\jp2ssv.dll [2015-03-03 172968]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FD36FEBE-DBA1-4597-9DD1-B13794B92F68}]
SmartBar Helper Object - D:\Program Files (x86)\Bechiro S.L\smartbar\1.8.8.12\bh\smartbar.dll [2013-01-13 247704]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - D:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2015-03-03 256456]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - D:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2015-03-03 194504]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SpywareTerminatorShield"=D:\Program Files (x86)\Spyware Terminator\SpywareTerminatorShield.exe []
"SpywareTerminatorUpdater"=D:\Program Files (x86)\Spyware Terminator\SpywareTerminatorUpdate.exe []
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CCleaner Monitoring"=D:\Program Files\CCleaner\CCleaner64.exe [2014-12-12 7394584]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\cz.seznam.software.autoupdate]
D:\Users\Rob\AppData\Roaming\Seznam.cz\szninstall.exe [2013-05-16 1062472]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\cz.seznam.software.szndesktop]
D:\Users\Rob\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [2013-04-12 92664]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
D:\Programy\DAEMON Tools Lite\DTLite.exe [2014-03-04 3696912]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EADM]
E:\Hry\Origin\Origin.exe [2015-01-28 3619160]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GoogleChromeAutoLaunch_03B222C27352DB95584D7D3D3E18CC9C]
D:\Program Files (x86)\Google\Chrome\Application\chrome.exe [2015-02-17 843592]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IAStorIcon]
D:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe [2014-04-11 36352]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LogMeIn Hamachi Ui]
D:\Programy\Hamachi\hamachi-2-ui.exe [2015-02-17 3978600]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NCUpdateHelper]
D:\Program Files (x86)\NCWest\NCLauncher\NCUpdateHelper.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PDFPrint]
D:\Programy\PDF24\pdf24.exe [2014-11-11 193568]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Raptr]
D:\PROGRA~2\Raptr\raptrstub.exe [2015-01-30 55568]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SandboxieControl]
D:\Programy\Sandboxie\SbieCtrl.exe [2014-10-14 784904]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\seznam-listicka-distribuce]
D:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [2013-05-16 1062472]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Start WingMan Profiler]
D:\Program Files\Logitech\Gaming Software\LWEMon.exe [2010-06-14 190536]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\StartCCC]
D:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe [2014-11-20 767176]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\USB3MON]
D:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [2014-02-21 292848]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\D:^Users^Rob^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Avanset-VCE-Exam-Simulator-Pro-v1.1.7-+-Crack.exe]
D:\Users\Rob\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Avanset-VCE-Exam-Simulator-Pro-v1.1.7-+-Crack.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\D:^Users^Rob^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Download Avanset VCE Player 1.2 Torrent - KickassTorrents Proxy.lnk]
D:\PROGRA~3\{E3E70~1\DOWNLO~1.EXE [2014-02-25 1070592]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\D:^Users^Rob^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^VCE Exam Simulator Pro 1.1.7 Final Crack Download.lnk]
D:\PROGRA~3\{44AE7~1\VCEEXA~1.EXE [2014-02-24 1057792]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"Adobe ARM"=D:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-12-19 1022152]
"AvastUI.exe"=D:\Programy\Avast\AvastUI.exe [2015-03-03 5513424]
"SunJavaUpdateSched"=D:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2014-12-17 508800]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\RunOnce]
"PreRun"=D:\Program Files (x86)\Gigabyte\AppCenter\PreRun.exe [2013-04-29 8192]
D:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
TotalMedia Server.lnk - D:\Programy\Total Media Theatre 5\TotalMedia Server\TM Server.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=" "
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Hamachi2Svc]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"SoftwareSASGeneration"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=D:\Windows\System32\l3codeca.acm
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux2"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"aux3"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"aux4"=wdmaud.drv
"wave5"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer5"=wdmaud.drv
"aux5"=wdmaud.drv
======File associations======
.js - edit - D:\Windows\System32\Notepad.exe %1
.js - open - D:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2015-03-03 20:55:23 ----A---- D:\Windows\SYSWOW64\wdi.dll
2015-03-03 20:55:23 ----A---- D:\Windows\system32\wdi.dll
2015-03-03 20:55:23 ----A---- D:\Windows\system32\powertracker.dll
2015-03-03 20:55:23 ----A---- D:\Windows\system32\perftrack.dll
2015-03-03 15:27:48 ----D---- D:\Stream
2015-03-03 14:22:14 ----D---- D:\Users\Rob\AppData\Roaming\OBS
2015-03-03 14:22:05 ----D---- D:\Program Files\OBS
2015-03-03 14:22:04 ----D---- D:\Program Files (x86)\OBS
2015-03-03 14:04:00 ----D---- D:\ProgramData\Sun
2015-03-03 14:03:52 ----A---- D:\Windows\SYSWOW64\WindowsAccessBridge-32.dll
2015-03-03 14:01:47 ----D---- D:\ProgramData\Oracle
2015-03-03 14:01:38 ----D---- D:\Program Files (x86)\Java
2015-03-03 09:55:36 ----D---- D:\Users\Rob\AppData\Roaming\Google
2015-03-03 09:49:52 ----D---- D:\Users\Rob\AppData\Roaming\AVAST Software
2015-03-03 09:49:25 ----D---- D:\Windows\SYSWOW64\vbox
2015-03-03 09:49:25 ----D---- D:\Windows\system32\vbox
2015-03-03 09:48:18 ----D---- D:\Program Files\Google
2015-03-03 09:48:05 ----D---- D:\ProgramData\Google
2015-03-03 09:47:30 ----A---- D:\Windows\system32\drivers\aswStm.sys
2015-03-03 09:47:29 ----A---- D:\Windows\system32\drivers\aswVmm.sys
2015-03-03 09:47:28 ----A---- D:\Windows\system32\drivers\aswSP.sys
2015-03-03 09:47:28 ----A---- D:\Windows\system32\drivers\aswRvrt.sys
2015-03-03 09:47:27 ----A---- D:\Windows\system32\drivers\aswMonFlt.sys
2015-03-03 09:47:26 ----A---- D:\Windows\system32\drivers\aswHwid.sys
2015-03-03 09:47:23 ----A---- D:\Windows\system32\drivers\aswRdr2.sys
2015-03-03 09:47:16 ----A---- D:\Windows\system32\drivers\aswSnx.sys
2015-03-03 09:47:06 ----A---- D:\Windows\system32\aswBoot.exe
2015-03-03 09:46:53 ----A---- D:\Windows\avastSS.scr
2015-03-03 09:45:06 ----D---- D:\ProgramData\AVAST Software
2015-03-03 09:39:19 ----A---- D:\Windows\wininit.ini
2015-03-03 09:01:17 ----D---- D:\rsit
2015-03-03 09:01:17 ----D---- D:\Program Files\trend micro
2015-03-02 20:02:26 ----D---- D:\Users\Rob\AppData\Roaming\ArcSoft
2015-03-02 20:00:02 ----D---- D:\ProgramData\ArcSoft
2015-03-02 19:59:58 ----A---- D:\Windows\system32\MMCEDT5.exe
2015-03-02 19:59:58 ----A---- D:\Windows\system32\drivers\ArcSec.sys
2015-02-27 22:30:25 ----D---- D:\Program Files\Microsoft.NET
2015-02-27 15:37:12 ----A---- D:\Windows\SYSWOW64\jscript9diag.dll
2015-02-27 15:37:12 ----A---- D:\Windows\SYSWOW64\jscript9.dll
2015-02-27 15:37:11 ----A---- D:\Windows\system32\jscript9diag.dll
2015-02-27 15:37:11 ----A---- D:\Windows\system32\jscript9.dll
2015-02-27 15:37:09 ----A---- D:\Windows\SYSWOW64\explorer.exe
2015-02-27 15:37:09 ----A---- D:\Windows\explorer.exe
2015-02-27 15:37:02 ----A---- D:\Windows\SYSWOW64\KBDYAK.DLL
2015-02-27 15:37:02 ----A---- D:\Windows\SYSWOW64\KBDTAT.DLL
2015-02-27 15:37:02 ----A---- D:\Windows\SYSWOW64\KBDRU1.DLL
2015-02-27 15:37:02 ----A---- D:\Windows\SYSWOW64\KBDRU.DLL
2015-02-27 15:37:02 ----A---- D:\Windows\SYSWOW64\KBDBASH.DLL
2015-02-27 15:37:02 ----A---- D:\Windows\system32\KBDYAK.DLL
2015-02-27 15:37:02 ----A---- D:\Windows\system32\KBDTAT.DLL
2015-02-27 15:37:02 ----A---- D:\Windows\system32\KBDRU1.DLL
2015-02-27 15:37:02 ----A---- D:\Windows\system32\KBDRU.DLL
2015-02-27 15:37:02 ----A---- D:\Windows\system32\KBDBASH.DLL
2015-02-27 15:36:49 ----A---- D:\Windows\SYSWOW64\esent.dll
2015-02-27 15:36:49 ----A---- D:\Windows\system32\fsutil.exe
2015-02-27 15:36:49 ----A---- D:\Windows\system32\esent.dll
2015-02-27 15:36:49 ----A---- D:\Windows\system32\drivers\nvraid.sys
2015-02-27 15:36:49 ----A---- D:\Windows\system32\drivers\iaStorV.sys
2015-02-27 15:36:49 ----A---- D:\Windows\system32\drivers\amdxata.sys
2015-02-27 15:36:48 ----A---- D:\Windows\SYSWOW64\fsutil.exe
2015-02-27 15:36:48 ----A---- D:\Windows\system32\drivers\USBSTOR.SYS
2015-02-27 15:36:48 ----A---- D:\Windows\system32\drivers\nvstor.sys
2015-02-27 15:36:48 ----A---- D:\Windows\system32\drivers\amdsata.sys
2015-02-27 15:36:36 ----A---- D:\Windows\system32\spoolsv.exe
2015-02-27 15:36:36 ----A---- D:\Windows\splwow64.exe
2015-02-27 09:54:57 ----A---- D:\Windows\SYSWOW64\wmploc.DLL
2015-02-27 09:54:57 ----A---- D:\Windows\SYSWOW64\wmp.dll
2015-02-27 09:54:57 ----A---- D:\Windows\system32\wmploc.DLL
2015-02-27 09:54:56 ----A---- D:\Windows\system32\wmp.dll
2015-02-27 08:39:16 ----D---- D:\Windows\SYSWOW64\Wat
2015-02-27 08:39:16 ----D---- D:\Windows\system32\Wat
2015-02-27 01:12:54 ----A---- D:\Windows\SYSWOW64\mferror.dll
2015-02-27 01:12:54 ----A---- D:\Windows\system32\rrinstaller.exe
2015-02-27 01:12:54 ----A---- D:\Windows\system32\mfpmp.exe
2015-02-27 01:12:54 ----A---- D:\Windows\system32\mferror.dll
2015-02-27 01:12:53 ----A---- D:\Windows\SYSWOW64\rrinstaller.exe
2015-02-27 01:12:53 ----A---- D:\Windows\SYSWOW64\mfps.dll
2015-02-27 01:12:53 ----A---- D:\Windows\SYSWOW64\mfpmp.exe
2015-02-27 01:12:53 ----A---- D:\Windows\SYSWOW64\mf.dll
2015-02-27 01:12:53 ----A---- D:\Windows\system32\mfps.dll
2015-02-27 01:12:53 ----A---- D:\Windows\system32\mf.dll
2015-02-27 01:11:13 ----A---- D:\Windows\system32\WUDFx.dll
2015-02-27 01:11:13 ----A---- D:\Windows\system32\WUDFSvc.dll
2015-02-27 01:11:13 ----A---- D:\Windows\system32\WUDFPlatform.dll
2015-02-27 01:11:13 ----A---- D:\Windows\system32\WUDFHost.exe
2015-02-27 01:11:13 ----A---- D:\Windows\system32\WUDFCoinstaller.dll
2015-02-27 01:11:13 ----A---- D:\Windows\system32\drivers\WUDFRd.sys
2015-02-27 01:11:13 ----A---- D:\Windows\system32\drivers\WUDFPf.sys
2015-02-27 00:55:13 ----A---- D:\Windows\SYSWOW64\msmpeg2vdec.dll
2015-02-27 00:55:13 ----A---- D:\Windows\system32\msmpeg2vdec.dll
2015-02-26 23:53:05 ----D---- D:\Networking
2015-02-26 22:21:11 ----A---- D:\Windows\SYSWOW64\FlashPlayerApp.exe
2015-02-26 22:21:10 ----D---- D:\Windows\SYSWOW64\Macromed
2015-02-26 22:21:06 ----D---- D:\Windows\system32\Macromed
2015-02-26 21:38:11 ----D---- D:\ProgramData\Spybot - Search & Destroy
2015-02-26 21:38:08 ----D---- D:\Program Files (x86)\Spybot - Search & Destroy 2
2015-02-26 17:39:39 ----A---- D:\Windows\system32\TSWbPrxy.exe
2015-02-26 17:39:38 ----A---- D:\Windows\system32\invagent.dll
2015-02-26 17:39:38 ----A---- D:\Windows\system32\generaltel.dll
2015-02-26 17:39:38 ----A---- D:\Windows\system32\devinv.dll
2015-02-26 17:39:38 ----A---- D:\Windows\system32\appraiser.dll
2015-02-26 17:39:38 ----A---- D:\Windows\system32\aitstatic.exe
2015-02-26 17:39:38 ----A---- D:\Windows\system32\aeinv.dll
2015-02-26 17:39:37 ----A---- D:\Windows\system32\aepdu.dll
2015-02-26 17:39:36 ----A---- D:\Windows\system32\aepic.dll
2015-02-26 17:39:34 ----A---- D:\Windows\system32\profsvc.dll
2015-02-26 17:39:31 ----A---- D:\Windows\SYSWOW64\schannel.dll
2015-02-26 17:39:31 ----A---- D:\Windows\SYSWOW64\kerberos.dll
2015-02-26 17:39:31 ----A---- D:\Windows\system32\schannel.dll
2015-02-26 17:39:30 ----A---- D:\Windows\SYSWOW64\TSpkg.dll
2015-02-26 17:39:30 ----A---- D:\Windows\SYSWOW64\ncrypt.dll
2015-02-26 17:39:30 ----A---- D:\Windows\SYSWOW64\msv1_0.dll
2015-02-26 17:39:30 ----A---- D:\Windows\system32\wdigest.dll
2015-02-26 17:39:30 ----A---- D:\Windows\system32\TSpkg.dll
2015-02-26 17:39:30 ----A---- D:\Windows\system32\ncrypt.dll
2015-02-26 17:39:30 ----A---- D:\Windows\system32\msv1_0.dll
2015-02-26 17:39:30 ----A---- D:\Windows\system32\kerberos.dll
2015-02-26 17:39:29 ----A---- D:\Windows\SYSWOW64\wdigest.dll
2015-02-26 17:39:29 ----A---- D:\Windows\SYSWOW64\credssp.dll
2015-02-26 17:39:29 ----A---- D:\Windows\system32\credssp.dll
2015-02-26 17:38:47 ----A---- D:\Windows\SYSWOW64\mshtmled.dll
2015-02-26 17:38:47 ----A---- D:\Windows\SYSWOW64\MshtmlDac.dll
2015-02-26 17:38:47 ----A---- D:\Windows\SYSWOW64\iernonce.dll
2015-02-26 17:38:47 ----A---- D:\Windows\SYSWOW64\ieetwproxystub.dll
2015-02-26 17:38:47 ----A---- D:\Windows\system32\ieetwproxystub.dll
2015-02-26 17:38:47 ----A---- D:\Windows\system32\ieetwcollector.exe
2015-02-26 17:38:46 ----A---- D:\Windows\SYSWOW64\urlmon.dll
2015-02-26 17:38:46 ----A---- D:\Windows\SYSWOW64\mshtml.dll
2015-02-26 17:38:46 ----A---- D:\Windows\SYSWOW64\msfeeds.dll
2015-02-26 17:38:46 ----A---- D:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2015-02-26 17:38:46 ----A---- D:\Windows\SYSWOW64\iedkcs32.dll
2015-02-26 17:38:46 ----A---- D:\Windows\SYSWOW64\dxtrans.dll
2015-02-26 17:38:46 ----A---- D:\Windows\system32\JavaScriptCollectionAgent.dll
2015-02-26 17:38:46 ----A---- D:\Windows\system32\iernonce.dll
2015-02-26 17:38:46 ----A---- D:\Windows\system32\ie4uinit.exe
2015-02-26 17:38:45 ----A---- D:\Windows\SYSWOW64\jsproxy.dll
2015-02-26 17:38:45 ----A---- D:\Windows\SYSWOW64\ieUnatt.exe
2015-02-26 17:38:45 ----A---- D:\Windows\SYSWOW64\iesetup.dll
2015-02-26 17:38:45 ----A---- D:\Windows\SYSWOW64\iertutil.dll
2015-02-26 17:38:45 ----A---- D:\Windows\SYSWOW64\ieapfltr.dll
2015-02-26 17:38:45 ----A---- D:\Windows\system32\urlmon.dll
2015-02-26 17:38:45 ----A---- D:\Windows\system32\ieetwcollectorres.dll
2015-02-26 17:38:45 ----A---- D:\Windows\system32\iedkcs32.dll
2015-02-26 17:38:44 ----A---- D:\Windows\SYSWOW64\ieui.dll
2015-02-26 17:38:44 ----A---- D:\Windows\SYSWOW64\ieframe.dll
2015-02-26 17:38:44 ----A---- D:\Windows\SYSWOW64\dxtmsft.dll
2015-02-26 17:38:44 ----A---- D:\Windows\system32\MsSpellCheckingFacility.exe
2015-02-26 17:38:44 ----A---- D:\Windows\system32\msfeeds.dll
2015-02-26 17:38:44 ----A---- D:\Windows\system32\iesetup.dll
2015-02-26 17:38:44 ----A---- D:\Windows\system32\ieapfltr.dll
2015-02-26 17:38:44 ----A---- D:\Windows\system32\dxtrans.dll
2015-02-26 17:38:43 ----A---- D:\Windows\SYSWOW64\wininet.dll
2015-02-26 17:38:43 ----A---- D:\Windows\SYSWOW64\vbscript.dll
2015-02-26 17:38:43 ----A---- D:\Windows\SYSWOW64\mshtmlmedia.dll
2015-02-26 17:38:43 ----A---- D:\Windows\system32\iertutil.dll
2015-02-26 17:38:42 ----A---- D:\Windows\SYSWOW64\msrating.dll
2015-02-26 17:38:42 ----A---- D:\Windows\system32\jsproxy.dll
2015-02-26 17:38:42 ----A---- D:\Windows\system32\ieUnatt.exe
2015-02-26 17:38:42 ----A---- D:\Windows\system32\ieui.dll
2015-02-26 17:38:42 ----A---- D:\Windows\system32\ieframe.dll
2015-02-26 17:38:42 ----A---- D:\Windows\system32\dxtmsft.dll
2015-02-26 17:38:41 ----A---- D:\Windows\system32\wininet.dll
2015-02-26 17:38:41 ----A---- D:\Windows\system32\vbscript.dll
2015-02-26 17:38:41 ----A---- D:\Windows\system32\mshtmlmedia.dll
2015-02-26 17:38:41 ----A---- D:\Windows\system32\mshtmled.dll
2015-02-26 17:38:40 ----A---- D:\Windows\system32\msrating.dll
2015-02-26 17:38:40 ----A---- D:\Windows\system32\MshtmlDac.dll
2015-02-26 17:38:40 ----A---- D:\Windows\system32\mshtml.dll
2015-02-26 17:37:06 ----A---- D:\Windows\SYSWOW64\nlaapi.dll
2015-02-26 17:37:06 ----A---- D:\Windows\SYSWOW64\ncsi.dll
2015-02-26 17:37:06 ----A---- D:\Windows\system32\nlasvc.dll
2015-02-26 17:37:04 ----A---- D:\Windows\system32\WindowsCodecs.dll
2015-02-26 17:37:03 ----A---- D:\Windows\SYSWOW64\WindowsCodecs.dll
2015-02-26 17:37:01 ----A---- D:\Windows\system32\drivers\mrxdav.sys
2015-02-26 17:36:57 ----A---- D:\Windows\SYSWOW64\adtschema.dll
2015-02-26 17:36:57 ----A---- D:\Windows\system32\lsasrv.dll
2015-02-26 17:36:57 ----A---- D:\Windows\system32\drivers\ksecdd.sys
2015-02-26 17:36:57 ----A---- D:\Windows\system32\drivers\cng.sys
2015-02-26 17:36:57 ----A---- D:\Windows\system32\adtschema.dll
2015-02-26 17:36:56 ----A---- D:\Windows\SYSWOW64\sspicli.dll
2015-02-26 17:36:56 ----A---- D:\Windows\SYSWOW64\secur32.dll
2015-02-26 17:36:56 ----A---- D:\Windows\SYSWOW64\msobjs.dll
2015-02-26 17:36:56 ----A---- D:\Windows\SYSWOW64\msaudite.dll
2015-02-26 17:36:56 ----A---- D:\Windows\SYSWOW64\auditpol.exe
2015-02-26 17:36:56 ----A---- D:\Windows\system32\sspisrv.dll
2015-02-26 17:36:56 ----A---- D:\Windows\system32\sspicli.dll
2015-02-26 17:36:56 ----A---- D:\Windows\system32\secur32.dll
2015-02-26 17:36:56 ----A---- D:\Windows\system32\msobjs.dll
2015-02-26 17:36:56 ----A---- D:\Windows\system32\msaudite.dll
2015-02-26 17:36:56 ----A---- D:\Windows\system32\lsass.exe
2015-02-26 17:36:56 ----A---- D:\Windows\system32\drivers\ksecpkg.sys
2015-02-26 17:36:56 ----A---- D:\Windows\system32\auditpol.exe
2015-02-26 17:36:16 ----A---- D:\Windows\SYSWOW64\wintrust.dll
2015-02-26 17:36:16 ----A---- D:\Windows\SYSWOW64\cryptsvc.dll
2015-02-26 17:36:16 ----A---- D:\Windows\SYSWOW64\crypt32.dll
2015-02-26 17:36:16 ----A---- D:\Windows\system32\wintrust.dll
2015-02-26 17:36:16 ----A---- D:\Windows\system32\cryptsvc.dll
2015-02-26 17:36:16 ----A---- D:\Windows\system32\crypt32.dll
2015-02-26 17:35:36 ----A---- D:\Windows\SYSWOW64\oleaut32.dll
2015-02-26 17:35:36 ----A---- D:\Windows\system32\oleaut32.dll
2015-02-26 17:35:34 ----A---- D:\Windows\system32\mstscax.dll
2015-02-26 17:35:33 ----A---- D:\Windows\SYSWOW64\mstscax.dll
2015-02-26 17:35:32 ----A---- D:\Windows\SYSWOW64\aaclient.dll
2015-02-26 17:34:00 ----A---- D:\Windows\SYSWOW64\scesrv.dll
2015-02-26 17:34:00 ----A---- D:\Windows\system32\scesrv.dll
2015-02-26 17:33:55 ----A---- D:\Windows\SYSWOW64\ntkrnlpa.exe
2015-02-26 17:33:55 ----A---- D:\Windows\system32\ntoskrnl.exe
2015-02-26 17:33:54 ----A---- D:\Windows\SYSWOW64\ntoskrnl.exe
2015-02-26 17:33:53 ----A---- D:\Windows\system32\srcore.dll
2015-02-26 17:33:53 ----A---- D:\Windows\system32\rstrui.exe
2015-02-26 17:33:52 ----A---- D:\Windows\SYSWOW64\srclient.dll
2015-02-26 17:33:52 ----A---- D:\Windows\system32\srclient.dll
2015-02-26 17:32:15 ----A---- D:\Windows\system32\win32k.sys
2015-02-26 16:21:55 ----D---- D:\Program Files\Common Files\DESIGNER
2015-02-26 16:21:27 ----D---- D:\Program Files (x86)\Microsoft SQL Server
2015-02-26 16:21:10 ----D---- D:\ProgramData\regid.1991-06.com.microsoft
2015-02-26 16:20:31 ----D---- D:\Windows\PCHEALTH
2015-02-26 16:20:31 ----D---- D:\Program Files\Microsoft SQL Server
2015-02-26 16:18:32 ----D---- D:\Program Files\Microsoft Analysis Services
2015-02-26 16:18:32 ----D---- D:\Program Files (x86)\Microsoft Analysis Services
2015-02-26 16:18:15 ----D---- D:\Program Files (x86)\Microsoft Office
2015-02-26 16:18:02 ----D---- D:\ProgramData\Microsoft Help
2015-02-26 16:17:27 ----RHD---- D:\MSOCache
2015-02-26 13:13:42 ----D---- D:\ProgramData\BlueStacksSetup
2015-02-26 13:13:42 ----D---- D:\ProgramData\BlueStacks
2015-02-26 13:13:42 ----D---- D:\Program Files (x86)\BlueStacks
2015-02-26 12:24:31 ----D---- D:\Program Files (x86)\Bechiro S.L
2015-02-26 12:24:30 ----D---- D:\Users\Rob\AppData\Roaming\Bechiro S.L
2015-02-26 12:24:30 ----D---- D:\Program Files (x86)\Mozilla Firefox
2015-02-26 12:20:59 ----D---- D:\Users\Rob\AppData\Roaming\Opera Software
2015-02-26 12:20:42 ----D---- D:\Program Files (x86)\Opera
2015-02-26 12:20:16 ----D---- D:\Program Files (x86)\9b0a2a1e-3b76-4fee-bbe1-d53b372c4d05
2015-02-26 12:20:15 ----D---- D:\Program Files (x86)\Shoppy-Up.2.7
2015-02-25 10:20:09 ----D---- D:\Users\Rob\AppData\Roaming\PrimoPDF
2015-02-25 10:19:16 ----A---- D:\Windows\system32\Primomonnt.dll
2015-02-25 10:19:14 ----D---- D:\Program Files (x86)\Nitro PDF
2015-02-25 10:04:28 ----D---- D:\Program Files (x86)\Adobe
2015-02-25 10:03:47 ----D---- D:\ProgramData\Adobe
2015-02-25 09:03:27 ----D---- D:\ProgramData\{e3e700a2-0d4c-87e5-e3e7-700a20d40288}
2015-02-24 20:15:31 ----A---- D:\Windows\system32\drivers\stflt.sys
2015-02-24 20:04:24 ----D---- D:\Program Files\CCleaner
2015-02-24 20:00:28 ----D---- D:\Windows\pss
2015-02-24 19:58:29 ----D---- D:\Windows\system32\appmgmt
2015-02-24 19:54:42 ----D---- D:\Windows\SYSWOW64\X86
2015-02-24 19:54:42 ----D---- D:\Windows\SYSWOW64\AMD64
2015-02-24 19:52:58 ----D---- D:\Program Files (x86)\DeluxReader
2015-02-24 19:52:37 ----D---- D:\Program Files (x86)\My IP address
2015-02-24 19:52:29 ----D---- D:\ProgramData\VCE Exam Simulator
2015-02-24 19:51:13 ----D---- D:\ProgramData\{44ae76ed-5d17-7590-44ae-e76ed5d1dbb5}
======List of files/folders modified in the last 1 month======
2015-03-05 21:28:14 ----D---- D:\Windows\Prefetch
2015-03-05 21:28:13 ----D---- D:\Windows\Temp
2015-03-05 07:41:00 ----D---- D:\Windows\system32\config
2015-03-04 22:28:43 ----D---- D:\Windows\System32
2015-03-04 22:28:43 ----D---- D:\Windows\inf
2015-03-04 22:28:43 ----A---- D:\Windows\system32\PerfStringBackup.INI
2015-03-04 12:45:27 ----D---- D:\Windows\winsxs
2015-03-04 12:43:29 ----D---- D:\Windows
2015-03-04 04:01:12 ----D---- D:\Windows\tracing
2015-03-04 04:01:12 ----D---- D:\Windows\SysWOW64
2015-03-04 03:00:28 ----SHD---- D:\System Volume Information
2015-03-03 18:44:55 ----D---- D:\Program Files (x86)\Common Files
2015-03-03 18:43:13 ----SHD---- D:\Windows\Installer
2015-03-03 18:42:54 ----D---- D:\ProgramData\Package Cache
2015-03-03 14:22:05 ----RD---- D:\Program Files
2015-03-03 14:22:04 ----RD---- D:\Program Files (x86)
2015-03-03 14:04:00 ----HD---- D:\ProgramData
2015-03-03 11:53:37 ----D---- D:\Users\Rob\AppData\Roaming\vlc
2015-03-03 09:48:26 ----D---- D:\Windows\system32\Tasks
2015-03-03 09:48:18 ----D---- D:\Program Files (x86)\Google
2015-03-03 09:47:30 ----D---- D:\Windows\system32\drivers
2015-03-03 09:45:49 ----D---- D:\Programy
2015-03-03 09:39:24 ----SD---- D:\ProgramData\Microsoft
2015-03-02 20:04:44 ----D---- D:\Windows\SYSWOW64\drivers
2015-03-02 20:03:55 ----HD---- D:\Program Files (x86)\InstallShield Installation Information
2015-03-02 20:00:01 ----D---- D:\Windows\system32\DriverStore
2015-03-02 01:24:04 ----D---- D:\Users\Rob\AppData\Roaming\Skype
2015-03-01 10:52:14 ----D---- D:\Windows\debug
2015-02-28 10:03:15 ----D---- D:\Windows\rescache
2015-02-28 09:44:59 ----D---- D:\Windows\Microsoft.NET
2015-02-28 09:43:38 ----RSD---- D:\Windows\assembly
2015-02-28 09:19:29 ----D---- D:\AdwCleaner
2015-02-28 08:46:03 ----D---- D:\Windows\SYSWOW64\en-US
2015-02-28 08:46:03 ----D---- D:\Windows\system32\en-US
2015-02-28 08:46:01 ----RSD---- D:\Windows\Fonts
2015-02-28 08:46:00 ----D---- D:\Windows\SYSWOW64\cs-CZ
2015-02-28 08:46:00 ----D---- D:\Windows\system32\cs-CZ
2015-02-27 22:30:25 ----D---- D:\Program Files (x86)\Microsoft.NET
2015-02-27 22:30:24 ----D---- D:\Program Files\Common Files\Microsoft Shared
2015-02-27 15:35:45 ----D---- D:\Windows\system32\catroot2
2015-02-27 15:22:50 ----D---- D:\Program Files\Windows Media Player
2015-02-27 15:22:50 ----D---- D:\Program Files (x86)\Windows Media Player
2015-02-27 15:22:49 ----D---- D:\Windows\ehome
2015-02-27 15:22:47 ----SD---- D:\Windows\system32\CompatTel
2015-02-27 15:22:47 ----D---- D:\Windows\system32\appraiser
2015-02-27 15:22:46 ----D---- D:\Program Files\Common Files\System
2015-02-27 09:21:37 ----D---- D:\Windows\AppPatch
2015-02-27 09:21:35 ----D---- D:\Program Files\Windows Journal
2015-02-27 09:19:22 ----D---- D:\Windows\Tasks
2015-02-27 09:12:55 ----A---- D:\Windows\win.ini
2015-02-27 08:39:35 ----D---- D:\Program Files\Internet Explorer
2015-02-27 08:39:33 ----D---- D:\Program Files (x86)\Internet Explorer
2015-02-27 08:39:30 ----D---- D:\Windows\SYSWOW64\Dism
2015-02-27 08:39:29 ----D---- D:\Windows\system32\Dism
2015-02-27 08:39:28 ----D---- D:\Program Files\Windows Defender
2015-02-27 08:39:28 ----D---- D:\Program Files (x86)\Windows Defender
2015-02-27 08:39:17 ----D---- D:\Windows\SYSWOW64\migration
2015-02-27 08:39:17 ----D---- D:\Windows\system32\migration
2015-02-27 08:39:17 ----D---- D:\Windows\PolicyDefinitions
2015-02-27 08:39:03 ----D---- D:\Windows\system32\Boot
2015-02-27 00:53:04 ----D---- D:\Windows\system32\MRT
2015-02-26 22:21:20 ----D---- D:\Windows\Downloaded Program Files
2015-02-26 17:31:54 ----D---- D:\Windows\system32\catroot
2015-02-26 16:39:31 ----SD---- D:\Users\Rob\AppData\Roaming\Microsoft
2015-02-26 16:22:04 ----D---- D:\Windows\ShellNew
2015-02-26 16:21:55 ----D---- D:\Program Files\Common Files
2015-02-26 12:20:41 ----D---- D:\Program Files (x86)\AMD
2015-02-26 12:20:14 ----D---- D:\Users\Rob\AppData\Roaming\Seznam.cz
2015-02-26 12:20:13 ----D---- D:\Program Files (x86)\Seznam.cz
2015-02-25 10:21:14 ----D---- D:\Users\Rob\AppData\Roaming\Adobe
2015-02-25 10:19:15 ----A---- D:\Windows\primopdf.ini
2015-02-24 20:07:29 ----D---- D:\Users\Rob\AppData\Roaming\DAEMON Tools Lite
2015-02-24 20:07:28 ----D---- D:\Users\Rob\AppData\Roaming\uTorrent
2015-02-24 20:06:42 ----D---- D:\Windows\Panther
2015-02-24 20:06:41 ----D---- D:\Windows\Minidump
2015-02-24 20:06:41 ----D---- D:\Windows\Logs
2015-02-24 19:58:55 ----D---- D:\Program Files (x86)\NCWest
2015-02-24 19:54:40 ----D---- D:\Users\Rob\AppData\Roaming\Raptr
2015-02-24 17:00:17 ----A---- D:\Windows\Sandboxie.ini
2015-02-24 07:57:37 ----D---- D:\ProgramData\Origin
2015-02-22 09:38:19 ----D---- D:\ProgramData\Orbit
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswRvrt;avast! Revert; D:\Windows\system32\drivers\aswRvrt.sys [2015-03-03 65736]
R0 aswVmm;avast! VM Monitor; D:\Windows\system32\drivers\aswVmm.sys [2015-03-03 268640]
R0 iaStorA;iaStorA; D:\Windows\system32\DRIVERS\iaStorA.sys [2014-04-11 645480]
R0 iaStorF;iaStorF; D:\Windows\system32\DRIVERS\iaStorF.sys [2014-04-11 28008]
R0 iusb3hcs;Ovladač přepínání hostitelského řadiče Intel(R) USB 3.0; D:\Windows\system32\DRIVERS\iusb3hcs.sys [2014-02-21 20464]
R0 rdyboost;ReadyBoost; D:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; D:\Windows\system32\drivers\vmbus.sys [2010-11-20 199552]
R1 ArcSec;archlp; D:\Windows\system32\drivers\ArcSec.sys [2010-09-21 312184]
R1 aswRdr;aswRdr; D:\Windows\system32\drivers\aswRdr2.sys [2015-03-03 93528]
R1 aswSnx;aswSnx; D:\Windows\system32\drivers\aswSnx.sys [2015-03-03 1047320]
R1 aswSP;aswSP; D:\Windows\system32\drivers\aswSP.sys [2015-03-03 441728]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; D:\Windows\system32\drivers\csc.sys [2010-11-20 514560]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; D:\Windows\system32\DRIVERS\dtsoftbus01.sys [2014-12-20 283064]
R2 amdacpksd;ACP Kernel Service Driver; \??\D:\Windows\system32\drivers\amdacpksd.sys [2014-11-21 294600]
R2 aswHwid;avast! HardwareID; D:\Windows\system32\drivers\aswHwid.sys [2015-03-03 29168]
R2 aswMonFlt;aswMonFlt; D:\Windows\system32\drivers\aswMonFlt.sys [2015-03-03 88408]
R2 aswStm;aswStm; D:\Windows\system32\drivers\aswStm.sys [2015-03-03 136752]
R2 BstHdDrv;BlueStacks Hypervisor; \??\D:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [2014-08-13 122072]
R2 VBoxAswDrv;VBoxAsw Support Driver; \??\D:\Programy\Avast\ng\vbox\VBoxAswDrv.sys [2015-03-03 273824]
R3 amdkmdag;amdkmdag; D:\Windows\system32\DRIVERS\atikmdag.sys [2014-11-21 18959360]
R3 amdkmdap;amdkmdap; D:\Windows\system32\DRIVERS\atikmpag.sys [2014-11-21 589312]
R3 AtiHDAudioService;AMD Function Driver for HD Audio Service; D:\Windows\system32\drivers\AtihdW76.sys [2014-06-21 94720]
R3 gdrv;gdrv; \??\D:\Windows\gdrv.sys [2015-03-05 25640]
R3 hamachi;Hamachi Network Interface; D:\Windows\system32\DRIVERS\hamachi.sys [2009-03-18 33856]
R3 igfx;igfx; D:\Windows\system32\DRIVERS\igdkmd64.sys [2014-03-31 3785216]
R3 IntcDAud;Intel(R) Display Audio; D:\Windows\system32\DRIVERS\IntcDAud.sys [2014-03-31 450520]
R3 iusb3hub;Ovladač rozbočovače Intel(R) USB 3.0; D:\Windows\system32\DRIVERS\iusb3hub.sys [2014-02-21 370672]
R3 iusb3xhc;Ovladač rozšiřitelného hostitelského řadiče Intel(R) USB 3.0; D:\Windows\system32\DRIVERS\iusb3xhc.sys [2014-02-21 791024]
R3 MEIx64;Intel(R) Management Engine Interface ; D:\Windows\system32\DRIVERS\TeeDriverx64.sys [2014-03-20 118272]
R3 RTL8167;Realtek 8167 NT Driver; D:\Windows\system32\DRIVERS\Rt64win7.sys [2014-03-18 906968]
R3 SbieDrv;SbieDrv; \??\D:\Programy\Sandboxie\SbieDrv.sys [2014-10-14 185352]
R3 WmBEnum;Logitech Virtual Bus Enumerator Driver; D:\Windows\system32\drivers\WmBEnum.sys [2010-04-27 26440]
R3 WmXlCore;Logitech Translation Layer Driver; D:\Windows\system32\drivers\WmXlCore.sys [2010-04-27 77512]
S2 atksgt;atksgt; D:\Windows\system32\DRIVERS\atksgt.sys [2014-12-22 303616]
S2 lirsgt;lirsgt; D:\Windows\system32\DRIVERS\lirsgt.sys [2014-12-22 35328]
S3 ALSysIO;ALSysIO; \??\D:\Users\Rob\AppData\Local\Temp\ALSysIO64.sys []
S3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); D:\Windows\system32\drivers\RTKVHD64.sys []
S3 pciide;pciide; D:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RDPDR;Terminal Server Device Redirector Driver; D:\Windows\System32\drivers\rdpdr.sys [2010-11-20 165888]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; D:\Windows\System32\drivers\rdpvideominiport.sys [2010-11-20 20992]
S3 s3cap;s3cap; D:\Windows\system32\drivers\vms3cap.sys [2010-11-20 6656]
S3 storvsc;storvsc; D:\Windows\system32\drivers\storvsc.sys [2010-11-20 34688]
S3 Synth3dVsc;Synth3dVsc; D:\Windows\System32\drivers\synth3dvsc.sys []
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; D:\Windows\System32\drivers\tsusbflt.sys [2010-11-20 59392]
S3 tsusbhub;@%SystemRoot%\system32\drivers\tsusbhub.sys,-1; D:\Windows\system32\drivers\tsusbhub.sys []
S3 usbscan;Ovladač skeneru USB; D:\Windows\system32\DRIVERS\usbscan.sys [2013-07-03 42496]
S3 VGPU;VGPU; D:\Windows\System32\drivers\rdvgkmd.sys []
S3 VMBusHID;VMBusHID; D:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 21760]
S3 WmFilter;Logitech Gaming HID Filter Driver; D:\Windows\system32\drivers\WmFilter.sys [2010-04-27 43976]
S3 WmVirHid;Logitech Virtual Hid Device Driver; D:\Windows\system32\drivers\WmVirHid.sys [2010-04-27 16200]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; D:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2014-12-03 81088]
R2 AMD External Events Utility;AMD External Events Utility; D:\Windows\system32\atiesrxx.exe [2014-11-21 244736]
R2 amdacpusrsvc;ACP User Service; D:\Program Files\AMD\{920DEC42-4CA5-4d1d-9487-67BE645CDDFC}\amdacpusrsvc.exe [2014-11-20 116224]
R2 avast! Antivirus;Avast Antivirus; D:\Programy\Avast\AvastSvc.exe [2015-03-03 343336]
R2 BstHdLogRotatorSvc;BlueStacks Log Rotator Service; D:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe [2014-08-13 384728]
R2 BstHdUpdaterSvc;BlueStacks Updater Service; D:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe [2014-08-13 777944]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; D:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 gadjservice;GIGABYTE Adjust; D:\Program Files (x86)\Gigabyte\AppCenter\AdjustService.exe [2014-04-16 16384]
R2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine; D:\Programy\Hamachi\hamachi-2.exe [2015-02-17 2490216]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; D:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2014-04-11 16232]
R2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service; D:\Windows\system32\igfxCUIService.exe [2014-04-09 296432]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; D:\Program Files\Intel\iCLS Client\HeciServer.exe [2013-08-27 747520]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; D:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2014-03-20 154584]
R2 LMS;Intel(R) Management and Security Application Local Management Service; D:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2014-03-20 398296]
R2 PnkBstrA;PnkBstrA; D:\Windows\syswow64\PnkBstrA.exe [2015-01-13 75136]
R2 PnkBstrB;PnkBstrB; D:\Windows\syswow64\PnkBstrB.exe [2015-01-13 189248]
R2 SbieSvc;Sandboxie Service; D:\Programy\Sandboxie\SbieSvc.exe [2014-10-14 174600]
R2 wlidsvc;Windows Live ID Sign-in Assistant; D:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2009-08-18 2291568]
R3 AvastVBoxSvc;AvastVBox COM Service; D:\Programy\Avast\ng\vbox\AvastVBoxSVC.exe [2015-03-03 4030800]
R3 Steam Client Service;Steam Client Service; D:\Program Files (x86)\Common Files\Steam\SteamService.exe [2015-02-19 835776]
S2 BstHdAndroidSvc;BlueStacks Android Service; D:\Program Files (x86)\BlueStacks\HD-Service.exe [2014-08-17 391168]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; D:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; D:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-09-11 124088]
S2 gupdate;Služba Google Update (gupdate); D:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-12-20 116648]
S2 SkypeUpdate;Skype Updater; D:\Program Files (x86)\Skype\Updater\Updater.exe [2014-12-11 315496]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; D:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-02-26 267440]
S3 AppMgmt;@appmgmts.dll,-3250; D:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 BEService;BattlEye Service; D:\Program Files (x86)\Common Files\BattlEye\BEService.exe [2015-03-03 814464]
S3 cphs;Intel(R) Content Protection HECI Service; D:\Windows\SysWow64\IntelCpHeciSvc.exe [2014-04-09 279024]
S3 gupdatem;Služba Google Update (gupdatem); D:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-12-20 116648]
S3 gusvc;Google Software Updater; D:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe [2015-03-03 194032]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; D:\Windows\system32\IEEtwCollector.exe [2015-01-12 114688]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; D:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2013-08-27 828376]
S3 npggsvc;nProtect GameGuard Service; D:\Windows\syswow64\GameMon.des [2014-05-06 3071632]
S3 Origin Client Service;Origin Client Service; E:\Hry\Origin\OriginClientService.exe [2015-01-28 1910128]
S3 ose64;Office 64 Source Engine; D:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2012-12-08 178760]
S3 osppsvc;Office Software Protection Platform; D:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2012-10-01 5132888]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; D:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; D:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; D:\Windows\system32\Wat\WatAdminSvc.exe [2015-02-27 1255736]
S4 aspnet_state;Stavová služba ASP.NET; D:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-09-11 51808]
S4 NetMsmqActivator;@D:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; D:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetPipeActivator;@D:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; D:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetTcpActivator;@D:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; D:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
-----------------EOF-----------------
omlouvám se za formát logu, nevím proč to mám tak rozhozený
aktuální log:
Logfile of random's system information tool 1.10 (written by random/random)
Run by Rob at 2015-03-05 21:28:10
Microsoft Windows 7 Ultimate Service Pack 1
System drive D: has 368 GB (77%) free of 477 GB
Total RAM: 3988 MB (34% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 21:28:14, on 5.3.2015
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17631)
Boot mode: Normal
Running processes:
D:\Programy\Total Media Theatre 5\TotalMedia Server\TM Server.exe
D:\Programy\Avast\AvastUI.exe
D:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
D:\Program Files (x86)\Gigabyte\AppCenter\ApCent.exe
D:\Programy\Avast\AvastUI.exe
D:\Program Files (x86)\Google\Chrome\Application\chrome.exe
D:\Program Files (x86)\Google\Chrome\Application\chrome.exe
D:\Program Files (x86)\Google\Chrome\Application\chrome.exe
D:\Program Files (x86)\Google\Chrome\Application\chrome.exe
D:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
D:\Program Files (x86)\Google\Chrome\Application\chrome.exe
D:\Program Files (x86)\Google\Chrome\Application\chrome.exe
D:\Program Files (x86)\Google\Chrome\Application\chrome.exe
E:\Hry\Steam\Steam.exe
E:\Hry\Steam\bin\steamwebhelper.exe
D:\Program Files (x86)\Google\Chrome\Application\chrome.exe
D:\Program Files (x86)\Google\Chrome\Application\chrome.exe
D:\Program Files (x86)\Google\Chrome\Application\chrome.exe
D:\Program Files\trend micro\Rob.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/?clid=20808
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = D:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Lync Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - D:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - D:\Program Files (x86)\Java\jre1.8.0_31\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - D:\Programy\Avast\aswWebRepIE.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - D:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - D:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - D:\PROGRA~2\MICROS~3\Office15\URLREDIR.DLL
O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - D:\PROGRA~2\MICROS~3\Office15\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - D:\Program Files (x86)\Java\jre1.8.0_31\bin\jp2ssv.dll
O2 - BHO: SmartBar Helper Object - {FD36FEBE-DBA1-4597-9DD1-B13794B92F68} - D:\Program Files (x86)\Bechiro S.L\smartbar\1.8.8.12\bh\smartbar.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - D:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [Adobe ARM] "D:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [AvastUI.exe] "D:\Programy\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [SunJavaUpdateSched] "D:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\RunOnce: [PreRun] D:\Program Files (x86)\Gigabyte\AppCenter\PreRun.exe
O4 - HKCU\..\Run: [CCleaner Monitoring] "D:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] D:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] D:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\RunOnce: [SPReview] "D:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [SPReview] "D:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'Default user')
O4 - Global Startup: TotalMedia Server.lnk = D:\Programy\Total Media Theatre 5\TotalMedia Server\TM Server.exe
O8 - Extra context menu item: E&xportovat do Microsoft Excelu - res://D:\Programy\MICROS~1\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do OneNotu - res://D:\Programy\MICROS~1\Office15\ONBttnIE.dll/105
O9 - Extra button: Odeslat do OneNotu - {2670000A-7350-4f3c-8081-5663EE0C6C49} - D:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do OneNotu - {2670000A-7350-4f3c-8081-5663EE0C6C49} - D:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra button: Volání kliknutím v Lyncu - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - D:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O9 - Extra 'Tools' menuitem: Volání kliknutím v Lyncu - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - D:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - D:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - D:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O10 - Unknown file in Winsock LSP: d:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: d:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: *.clonewarsadventures.com
O15 - Trusted Zone: *.freerealms.com
O15 - Trusted Zone: *.soe.com
O15 - Trusted Zone: *.sony.com
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - https://fpdownload.macromedia.com/get/s ... wflash.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{3BE09598-9584-4013-A6F4-B8F50B4AABE1}: NameServer = 109.164.64.64,8.8.8.8
O17 - HKLM\System\CS1\Services\Tcpip\..\{3BE09598-9584-4013-A6F4-B8F50B4AABE1}: NameServer = 109.164.64.64,8.8.8.8
O17 - HKLM\System\CS2\Services\Tcpip\..\{3BE09598-9584-4013-A6F4-B8F50B4AABE1}: NameServer = 109.164.64.64,8.8.8.8
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - D:\Program Files (x86)\Microsoft Office\Office15\MSOSB.DLL
O18 - Filter hijack: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - D:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - D:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - D:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - D:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - D:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: ACP User Service (amdacpusrsvc) - Advanced Micro Devices - D:\Program Files\AMD\{920DEC42-4CA5-4d1d-9487-67BE645CDDFC}\amdacpusrsvc.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - Avast Software s.r.o. - D:\Programy\Avast\AvastSvc.exe
O23 - Service: AvastVBox COM Service (AvastVBoxSvc) - Avast Software - D:\Programy\Avast\ng\vbox\AvastVBoxSVC.exe
O23 - Service: BattlEye Service (BEService) - Unknown owner - D:\Program Files (x86)\Common Files\BattlEye\BEService.exe
O23 - Service: BlueStacks Android Service (BstHdAndroidSvc) - BlueStack Systems, Inc. - D:\Program Files (x86)\BlueStacks\HD-Service.exe
O23 - Service: BlueStacks Log Rotator Service (BstHdLogRotatorSvc) - BlueStack Systems, Inc. - D:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe
O23 - Service: BlueStacks Updater Service (BstHdUpdaterSvc) - BlueStack Systems, Inc. - D:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - D:\Windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - D:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - D:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: GIGABYTE Adjust (gadjservice) - Unknown owner - D:\Program Files (x86)\Gigabyte\AppCenter\AdjustService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - D:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - D:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - D:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - D:\Programy\Hamachi\hamachi-2.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - D:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - D:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - D:\Windows\system32\igfxCUIService.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - D:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - D:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - D:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - D:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - D:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - D:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - D:\Windows\system32\lsass.exe (file missing)
O23 - Service: nProtect GameGuard Service (npggsvc) - Unknown owner - D:\Windows\system32\GameMon.des.exe (file missing)
O23 - Service: Origin Client Service - Electronic Arts - E:\Hry\Origin\OriginClientService.exe
O23 - Service: PnkBstrA - Unknown owner - D:\Windows\system32\PnkBstrA.exe
O23 - Service: PnkBstrB - Unknown owner - D:\Windows\system32\PnkBstrB.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - D:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - D:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - D:\Windows\system32\lsass.exe (file missing)
O23 - Service: Sandboxie Service (SbieSvc) - Sandboxie Holdings, LLC - D:\Programy\Sandboxie\SbieSvc.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - D:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - D:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - D:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - D:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - D:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - D:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - D:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - D:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - D:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - D:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - D:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - D:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - D:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 13576 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
winlogon.exe
D:\Windows\system32\services.exe
D:\Windows\system32\lsass.exe
D:\Windows\system32\lsm.exe
D:\Windows\system32\svchost.exe -k DcomLaunch
D:\Windows\system32\svchost.exe -k RPCSS
D:\Windows\system32\atiesrxx.exe
D:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
D:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
D:\Windows\system32\svchost.exe -k LocalService
D:\Windows\system32\svchost.exe -k netsvcs
D:\Windows\system32\igfxCUIService.exe
"D:\Programy\Sandboxie\SbieSvc.exe"
D:\Windows\system32\svchost.exe -k NetworkService
"D:\Programy\Avast\AvastSvc.exe"
atieclxx
D:\Windows\System32\spoolsv.exe
D:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"D:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"D:\Program Files\AMD\{920DEC42-4CA5-4d1d-9487-67BE645CDDFC}\amdacpusrsvc.exe"
"D:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe"
"D:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe"
"D:\Program Files (x86)\Gigabyte\AppCenter\AdjustService.exe"
"D:\Program Files\Intel\iCLS Client\HeciServer.exe"
D:\Windows\SysWOW64\PnkBstrA.exe
D:\Windows\SysWOW64\PnkBstrB.exe
"D:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
D:\Programy\Hamachi\hamachi-2.exe -s
WLIDSvcM.exe 2640
D:\Programy\Hamachi\LMIGuardianSvc /escort 2772 /CUSTOM Hamachi
D:\Windows\system32\SearchIndexer.exe /Embedding
"D:\Programy\Avast\ng\vbox\AvastVBoxSVC.exe"
D:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
ngservice.exe pipeserver
"D:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"D:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"D:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
D:\Windows\System32\svchost.exe -k secsvcs
"taskhost.exe"
"D:\Windows\system32\Dwm.exe"
D:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
D:\Windows\Explorer.EXE
"D:\Programy\Total Media Theatre 5\TotalMedia Server\TM Server.exe"
"D:\Programy\Avast\AvastUI.exe" /nogui
"D:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"D:\Program Files (x86)\Gigabyte\AppCenter\ApCent.exe"
D:\Windows\system32\wbem\unsecapp.exe -Embedding
D:\Windows\system32\wbem\wmiprvse.exe
"D:\Programy\Avast\AvastUI.exe" --type=gpu-process --channel="784.0.473130403\369607931" --no-sandbox --lang=en-US --log-file="D:\Users\Rob\AppData\Roaming\AVAST Software\Avast\log\avastium.log" --log-severity=error --user-agent="Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko) Chrome/37.0.2062.124 Safari/537.36 Avastium (10.2.2214)" --proxy-auto-detect --disable-gpu --disable-software-rasterizer --no-sandbox --supports-dual-gpus=false --gpu-driver-bug-workarounds=1,17,38 --gpu-vendor-id=0x1002 --gpu-device-id=0x6658 --gpu-driver-vendor="Advanced Micro Devices, Inc." --gpu-driver-version=14.501.1003.0 --lang=en-US --log-file="D:\Users\Rob\AppData\Roaming\AVAST Software\Avast\log\avastium.log" --log-severity=error --user-agent="Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko) Chrome/37.0.2062.124 Safari/537.36 Avastium (10.2.2214)" --proxy-auto-detect --disable-gpu --disable-software-rasterizer --no-sandbox /prefetch:822062411
"D:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"D:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac
"D:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="3836.0.73409271\165166187" --supports-dual-gpus=false --gpu-driver-bug-workarounds=1,18,39 --gpu-vendor-id=0x1002 --gpu-device-id=0x6658 --gpu-driver-vendor="Advanced Micro Devices, Inc." --gpu-driver-version=14.501.1003.0 --ignored=" --type=renderer " /prefetch:822062411
"D:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/ChromeSuggestions/Mixed/DomRel-Enable/enable/EmbeddedSearch/Group1 dev:pp6 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/ControlEnforce/ExtensionInstallVerification/Bootstrap/GoogleNow/Enable/NewProfileManagement/Enabled/OmniboxBundledExperimentV1/DevHUPDecayWithHQPRelevanceScoring_Control/PasswordGeneration/Disabled/RememberCertificateErrorDecisions/Default/SRTPromptFieldTrial/On/SafeBrowsingIncidentReportingService/Enabled/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-Population-Restrict/normal/UMA-Uniformity-Trial-1-Percent/group_54/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-50-Percent/group_01/UwSInterstitialStatus/On/VoiceTrigger/Install/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="3836.3.151558888\1393516817" /prefetch:673131151
"D:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=ppapi --channel="3836.6.327382264\2059219946" --ppapi-flash-args=enable_hw_video_decode=1 --lang=cs --ignored=" --type=renderer " /prefetch:-632637702
"D:\Program Files\Internet Explorer\iexplore.exe"
"D:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE" SCODEF:2148 CREDAT:267521 /prefetch:2
D:\Windows\system32\Macromed\Flash\FlashUtil64_16_0_0_305_ActiveX.exe -Embedding
"D:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/ChromeSuggestions/Mixed/DomRel-Enable/enable/EmbeddedSearch/Group1 dev:pp6 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/ControlEnforce/ExtensionInstallVerification/Bootstrap/GoogleNow/Enable/NewProfileManagement/Enabled/OmniboxBundledExperimentV1/DevHUPDecayWithHQPRelevanceScoring_Control/PasswordGeneration/Disabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/RememberCertificateErrorDecisions/Default/SRTPromptFieldTrial/On/SafeBrowsingIncidentReportingService/Enabled/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-Population-Restrict/normal/UMA-Uniformity-Trial-1-Percent/group_54/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-50-Percent/group_01/UwSInterstitialStatus/On/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="3836.20.937078396\180258012" /prefetch:673131151
"D:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/ChromeSuggestions/Mixed/DomRel-Enable/enable/EmbeddedSearch/Group1 dev:pp6 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/ControlEnforce/ExtensionInstallVerification/Bootstrap/GoogleNow/Enable/NewProfileManagement/Enabled/OmniboxBundledExperimentV1/DevHUPDecayWithHQPRelevanceScoring_Control/PasswordGeneration/Disabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/RememberCertificateErrorDecisions/Default/SRTPromptFieldTrial/On/SafeBrowsingIncidentReportingService/Enabled/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-Population-Restrict/normal/UMA-Uniformity-Trial-1-Percent/group_54/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-50-Percent/group_01/UwSInterstitialStatus/On/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="3836.23.1016103759\1655574107" /prefetch:673131151
"D:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/ChromeSuggestions/Mixed/DomRel-Enable/enable/EmbeddedSearch/Group1 dev:pp6 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/ControlEnforce/ExtensionInstallVerification/Bootstrap/GoogleNow/Enable/NewProfileManagement/Enabled/OmniboxBundledExperimentV1/DevHUPDecayWithHQPRelevanceScoring_Control/PasswordGeneration/Disabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/RememberCertificateErrorDecisions/Default/SRTPromptFieldTrial/On/SafeBrowsingIncidentReportingService/Enabled/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-Population-Restrict/normal/UMA-Uniformity-Trial-1-Percent/group_54/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-50-Percent/group_01/UwSInterstitialStatus/On/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="3836.31.928755437\1387612716" /prefetch:673131151
"D:\Windows\System32\MsSpellCheckingFacility.exe" -Embedding
"E:\Hry\Steam\Steam.exe"
"E:\Hry\Steam\bin\steamwebhelper.exe" -cefhost -cachedir "D:\Users\Rob\AppData\Local\Steam\htmlcache" -steampid 5300 -buildid 1424305157 -steamid "0" --blacklist-accelerated-compositing --process-per-tab --disable-accelerated-video-decode --enable-direct-write
"D:\Program Files (x86)\Common Files\Steam\SteamService.exe" /RunAsService
"D:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/ChromeSuggestions/Mixed/DomRel-Enable/enable/EmbeddedSearch/Group1 dev:pp6 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/ControlEnforce/ExtensionInstallVerification/Bootstrap/GoogleNow/Enable/NewProfileManagement/Enabled/OmniboxBundledExperimentV1/DevHUPDecayWithHQPRelevanceScoring_Control/PasswordGeneration/Disabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/RememberCertificateErrorDecisions/Default/SRTPromptFieldTrial/On/SafeBrowsingIncidentReportingService/Enabled/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-Population-Restrict/normal/UMA-Uniformity-Trial-1-Percent/group_54/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-50-Percent/group_01/UwSInterstitialStatus/On/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="3836.36.215789223\969404309" /prefetch:673131151
"D:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/ChromeSuggestions/Mixed/DomRel-Enable/enable/EmbeddedSearch/Group1 dev:pp6 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/ControlEnforce/ExtensionInstallVerification/Bootstrap/GoogleNow/Enable/NewProfileManagement/Enabled/OmniboxBundledExperimentV1/DevHUPDecayWithHQPRelevanceScoring_Control/PasswordGeneration/Disabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/RememberCertificateErrorDecisions/Default/SRTPromptFieldTrial/On/SafeBrowsingIncidentReportingService/Enabled/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-Population-Restrict/normal/UMA-Uniformity-Trial-1-Percent/group_54/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-50-Percent/group_01/UwSInterstitialStatus/On/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="3836.38.373651960\2005739110" /prefetch:673131151
"D:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/ChromeSuggestions/Mixed/DomRel-Enable/enable/EmbeddedSearch/Group1 dev:pp6 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/ControlEnforce/ExtensionInstallVerification/Bootstrap/GoogleNow/Enable/NewProfileManagement/Enabled/OmniboxBundledExperimentV1/DevHUPDecayWithHQPRelevanceScoring_Control/PasswordGeneration/Disabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/RememberCertificateErrorDecisions/Default/SRTPromptFieldTrial/On/SafeBrowsingIncidentReportingService/Enabled/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-Population-Restrict/normal/UMA-Uniformity-Trial-1-Percent/group_54/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-50-Percent/group_01/UwSInterstitialStatus/On/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="3836.39.1107794931\1357907336" /prefetch:673131151
"D:\Users\Rob\Downloads\RSITx64.exe"
======Scheduled tasks folder======
D:\Windows\tasks\Adobe Flash Player Updater.job - D:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
D:\Windows\tasks\GoogleUpdateTaskMachineCore.job - D:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
D:\Windows\tasks\GoogleUpdateTaskMachineUA.job - D:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Lync Browser Helper - D:\Programy\Microsoft office\Office15\OCHelper.dll [2015-01-21 218776]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - D:\Programy\Avast\aswWebRepIE64.dll [2015-03-03 662672]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - D:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 532336]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - D:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2015-03-03 256456]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - D:\Programy\MICROS~1\Office15\URLREDIR.DLL [2014-01-23 881880]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - D:\Programy\MICROS~1\Office15\GROOVEEX.DLL [2015-01-21 2334928]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Lync Browser Helper - D:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2015-01-21 153248]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - D:\Program Files (x86)\Java\jre1.8.0_31\bin\ssv.dll [2015-03-03 460712]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - D:\Programy\Avast\aswWebRepIE.dll [2015-03-03 565304]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - D:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 403840]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - D:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2015-03-03 194504]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - D:\PROGRA~2\MICROS~3\Office15\URLREDIR.DLL [2014-01-22 707800]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - D:\PROGRA~2\MICROS~3\Office15\GROOVEEX.DLL [2015-01-21 1729744]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - D:\Program Files (x86)\Java\jre1.8.0_31\bin\jp2ssv.dll [2015-03-03 172968]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FD36FEBE-DBA1-4597-9DD1-B13794B92F68}]
SmartBar Helper Object - D:\Program Files (x86)\Bechiro S.L\smartbar\1.8.8.12\bh\smartbar.dll [2013-01-13 247704]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - D:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2015-03-03 256456]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - D:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2015-03-03 194504]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SpywareTerminatorShield"=D:\Program Files (x86)\Spyware Terminator\SpywareTerminatorShield.exe []
"SpywareTerminatorUpdater"=D:\Program Files (x86)\Spyware Terminator\SpywareTerminatorUpdate.exe []
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CCleaner Monitoring"=D:\Program Files\CCleaner\CCleaner64.exe [2014-12-12 7394584]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\cz.seznam.software.autoupdate]
D:\Users\Rob\AppData\Roaming\Seznam.cz\szninstall.exe [2013-05-16 1062472]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\cz.seznam.software.szndesktop]
D:\Users\Rob\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [2013-04-12 92664]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
D:\Programy\DAEMON Tools Lite\DTLite.exe [2014-03-04 3696912]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EADM]
E:\Hry\Origin\Origin.exe [2015-01-28 3619160]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GoogleChromeAutoLaunch_03B222C27352DB95584D7D3D3E18CC9C]
D:\Program Files (x86)\Google\Chrome\Application\chrome.exe [2015-02-17 843592]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IAStorIcon]
D:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe [2014-04-11 36352]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LogMeIn Hamachi Ui]
D:\Programy\Hamachi\hamachi-2-ui.exe [2015-02-17 3978600]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NCUpdateHelper]
D:\Program Files (x86)\NCWest\NCLauncher\NCUpdateHelper.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PDFPrint]
D:\Programy\PDF24\pdf24.exe [2014-11-11 193568]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Raptr]
D:\PROGRA~2\Raptr\raptrstub.exe [2015-01-30 55568]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SandboxieControl]
D:\Programy\Sandboxie\SbieCtrl.exe [2014-10-14 784904]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\seznam-listicka-distribuce]
D:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [2013-05-16 1062472]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Start WingMan Profiler]
D:\Program Files\Logitech\Gaming Software\LWEMon.exe [2010-06-14 190536]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\StartCCC]
D:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe [2014-11-20 767176]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\USB3MON]
D:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [2014-02-21 292848]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\D:^Users^Rob^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Avanset-VCE-Exam-Simulator-Pro-v1.1.7-+-Crack.exe]
D:\Users\Rob\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Avanset-VCE-Exam-Simulator-Pro-v1.1.7-+-Crack.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\D:^Users^Rob^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Download Avanset VCE Player 1.2 Torrent - KickassTorrents Proxy.lnk]
D:\PROGRA~3\{E3E70~1\DOWNLO~1.EXE [2014-02-25 1070592]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\D:^Users^Rob^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^VCE Exam Simulator Pro 1.1.7 Final Crack Download.lnk]
D:\PROGRA~3\{44AE7~1\VCEEXA~1.EXE [2014-02-24 1057792]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"Adobe ARM"=D:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-12-19 1022152]
"AvastUI.exe"=D:\Programy\Avast\AvastUI.exe [2015-03-03 5513424]
"SunJavaUpdateSched"=D:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2014-12-17 508800]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\RunOnce]
"PreRun"=D:\Program Files (x86)\Gigabyte\AppCenter\PreRun.exe [2013-04-29 8192]
D:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
TotalMedia Server.lnk - D:\Programy\Total Media Theatre 5\TotalMedia Server\TM Server.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=" "
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Hamachi2Svc]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"SoftwareSASGeneration"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=D:\Windows\System32\l3codeca.acm
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux2"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"aux3"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"aux4"=wdmaud.drv
"wave5"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer5"=wdmaud.drv
"aux5"=wdmaud.drv
======File associations======
.js - edit - D:\Windows\System32\Notepad.exe %1
.js - open - D:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2015-03-03 20:55:23 ----A---- D:\Windows\SYSWOW64\wdi.dll
2015-03-03 20:55:23 ----A---- D:\Windows\system32\wdi.dll
2015-03-03 20:55:23 ----A---- D:\Windows\system32\powertracker.dll
2015-03-03 20:55:23 ----A---- D:\Windows\system32\perftrack.dll
2015-03-03 15:27:48 ----D---- D:\Stream
2015-03-03 14:22:14 ----D---- D:\Users\Rob\AppData\Roaming\OBS
2015-03-03 14:22:05 ----D---- D:\Program Files\OBS
2015-03-03 14:22:04 ----D---- D:\Program Files (x86)\OBS
2015-03-03 14:04:00 ----D---- D:\ProgramData\Sun
2015-03-03 14:03:52 ----A---- D:\Windows\SYSWOW64\WindowsAccessBridge-32.dll
2015-03-03 14:01:47 ----D---- D:\ProgramData\Oracle
2015-03-03 14:01:38 ----D---- D:\Program Files (x86)\Java
2015-03-03 09:55:36 ----D---- D:\Users\Rob\AppData\Roaming\Google
2015-03-03 09:49:52 ----D---- D:\Users\Rob\AppData\Roaming\AVAST Software
2015-03-03 09:49:25 ----D---- D:\Windows\SYSWOW64\vbox
2015-03-03 09:49:25 ----D---- D:\Windows\system32\vbox
2015-03-03 09:48:18 ----D---- D:\Program Files\Google
2015-03-03 09:48:05 ----D---- D:\ProgramData\Google
2015-03-03 09:47:30 ----A---- D:\Windows\system32\drivers\aswStm.sys
2015-03-03 09:47:29 ----A---- D:\Windows\system32\drivers\aswVmm.sys
2015-03-03 09:47:28 ----A---- D:\Windows\system32\drivers\aswSP.sys
2015-03-03 09:47:28 ----A---- D:\Windows\system32\drivers\aswRvrt.sys
2015-03-03 09:47:27 ----A---- D:\Windows\system32\drivers\aswMonFlt.sys
2015-03-03 09:47:26 ----A---- D:\Windows\system32\drivers\aswHwid.sys
2015-03-03 09:47:23 ----A---- D:\Windows\system32\drivers\aswRdr2.sys
2015-03-03 09:47:16 ----A---- D:\Windows\system32\drivers\aswSnx.sys
2015-03-03 09:47:06 ----A---- D:\Windows\system32\aswBoot.exe
2015-03-03 09:46:53 ----A---- D:\Windows\avastSS.scr
2015-03-03 09:45:06 ----D---- D:\ProgramData\AVAST Software
2015-03-03 09:39:19 ----A---- D:\Windows\wininit.ini
2015-03-03 09:01:17 ----D---- D:\rsit
2015-03-03 09:01:17 ----D---- D:\Program Files\trend micro
2015-03-02 20:02:26 ----D---- D:\Users\Rob\AppData\Roaming\ArcSoft
2015-03-02 20:00:02 ----D---- D:\ProgramData\ArcSoft
2015-03-02 19:59:58 ----A---- D:\Windows\system32\MMCEDT5.exe
2015-03-02 19:59:58 ----A---- D:\Windows\system32\drivers\ArcSec.sys
2015-02-27 22:30:25 ----D---- D:\Program Files\Microsoft.NET
2015-02-27 15:37:12 ----A---- D:\Windows\SYSWOW64\jscript9diag.dll
2015-02-27 15:37:12 ----A---- D:\Windows\SYSWOW64\jscript9.dll
2015-02-27 15:37:11 ----A---- D:\Windows\system32\jscript9diag.dll
2015-02-27 15:37:11 ----A---- D:\Windows\system32\jscript9.dll
2015-02-27 15:37:09 ----A---- D:\Windows\SYSWOW64\explorer.exe
2015-02-27 15:37:09 ----A---- D:\Windows\explorer.exe
2015-02-27 15:37:02 ----A---- D:\Windows\SYSWOW64\KBDYAK.DLL
2015-02-27 15:37:02 ----A---- D:\Windows\SYSWOW64\KBDTAT.DLL
2015-02-27 15:37:02 ----A---- D:\Windows\SYSWOW64\KBDRU1.DLL
2015-02-27 15:37:02 ----A---- D:\Windows\SYSWOW64\KBDRU.DLL
2015-02-27 15:37:02 ----A---- D:\Windows\SYSWOW64\KBDBASH.DLL
2015-02-27 15:37:02 ----A---- D:\Windows\system32\KBDYAK.DLL
2015-02-27 15:37:02 ----A---- D:\Windows\system32\KBDTAT.DLL
2015-02-27 15:37:02 ----A---- D:\Windows\system32\KBDRU1.DLL
2015-02-27 15:37:02 ----A---- D:\Windows\system32\KBDRU.DLL
2015-02-27 15:37:02 ----A---- D:\Windows\system32\KBDBASH.DLL
2015-02-27 15:36:49 ----A---- D:\Windows\SYSWOW64\esent.dll
2015-02-27 15:36:49 ----A---- D:\Windows\system32\fsutil.exe
2015-02-27 15:36:49 ----A---- D:\Windows\system32\esent.dll
2015-02-27 15:36:49 ----A---- D:\Windows\system32\drivers\nvraid.sys
2015-02-27 15:36:49 ----A---- D:\Windows\system32\drivers\iaStorV.sys
2015-02-27 15:36:49 ----A---- D:\Windows\system32\drivers\amdxata.sys
2015-02-27 15:36:48 ----A---- D:\Windows\SYSWOW64\fsutil.exe
2015-02-27 15:36:48 ----A---- D:\Windows\system32\drivers\USBSTOR.SYS
2015-02-27 15:36:48 ----A---- D:\Windows\system32\drivers\nvstor.sys
2015-02-27 15:36:48 ----A---- D:\Windows\system32\drivers\amdsata.sys
2015-02-27 15:36:36 ----A---- D:\Windows\system32\spoolsv.exe
2015-02-27 15:36:36 ----A---- D:\Windows\splwow64.exe
2015-02-27 09:54:57 ----A---- D:\Windows\SYSWOW64\wmploc.DLL
2015-02-27 09:54:57 ----A---- D:\Windows\SYSWOW64\wmp.dll
2015-02-27 09:54:57 ----A---- D:\Windows\system32\wmploc.DLL
2015-02-27 09:54:56 ----A---- D:\Windows\system32\wmp.dll
2015-02-27 08:39:16 ----D---- D:\Windows\SYSWOW64\Wat
2015-02-27 08:39:16 ----D---- D:\Windows\system32\Wat
2015-02-27 01:12:54 ----A---- D:\Windows\SYSWOW64\mferror.dll
2015-02-27 01:12:54 ----A---- D:\Windows\system32\rrinstaller.exe
2015-02-27 01:12:54 ----A---- D:\Windows\system32\mfpmp.exe
2015-02-27 01:12:54 ----A---- D:\Windows\system32\mferror.dll
2015-02-27 01:12:53 ----A---- D:\Windows\SYSWOW64\rrinstaller.exe
2015-02-27 01:12:53 ----A---- D:\Windows\SYSWOW64\mfps.dll
2015-02-27 01:12:53 ----A---- D:\Windows\SYSWOW64\mfpmp.exe
2015-02-27 01:12:53 ----A---- D:\Windows\SYSWOW64\mf.dll
2015-02-27 01:12:53 ----A---- D:\Windows\system32\mfps.dll
2015-02-27 01:12:53 ----A---- D:\Windows\system32\mf.dll
2015-02-27 01:11:13 ----A---- D:\Windows\system32\WUDFx.dll
2015-02-27 01:11:13 ----A---- D:\Windows\system32\WUDFSvc.dll
2015-02-27 01:11:13 ----A---- D:\Windows\system32\WUDFPlatform.dll
2015-02-27 01:11:13 ----A---- D:\Windows\system32\WUDFHost.exe
2015-02-27 01:11:13 ----A---- D:\Windows\system32\WUDFCoinstaller.dll
2015-02-27 01:11:13 ----A---- D:\Windows\system32\drivers\WUDFRd.sys
2015-02-27 01:11:13 ----A---- D:\Windows\system32\drivers\WUDFPf.sys
2015-02-27 00:55:13 ----A---- D:\Windows\SYSWOW64\msmpeg2vdec.dll
2015-02-27 00:55:13 ----A---- D:\Windows\system32\msmpeg2vdec.dll
2015-02-26 23:53:05 ----D---- D:\Networking
2015-02-26 22:21:11 ----A---- D:\Windows\SYSWOW64\FlashPlayerApp.exe
2015-02-26 22:21:10 ----D---- D:\Windows\SYSWOW64\Macromed
2015-02-26 22:21:06 ----D---- D:\Windows\system32\Macromed
2015-02-26 21:38:11 ----D---- D:\ProgramData\Spybot - Search & Destroy
2015-02-26 21:38:08 ----D---- D:\Program Files (x86)\Spybot - Search & Destroy 2
2015-02-26 17:39:39 ----A---- D:\Windows\system32\TSWbPrxy.exe
2015-02-26 17:39:38 ----A---- D:\Windows\system32\invagent.dll
2015-02-26 17:39:38 ----A---- D:\Windows\system32\generaltel.dll
2015-02-26 17:39:38 ----A---- D:\Windows\system32\devinv.dll
2015-02-26 17:39:38 ----A---- D:\Windows\system32\appraiser.dll
2015-02-26 17:39:38 ----A---- D:\Windows\system32\aitstatic.exe
2015-02-26 17:39:38 ----A---- D:\Windows\system32\aeinv.dll
2015-02-26 17:39:37 ----A---- D:\Windows\system32\aepdu.dll
2015-02-26 17:39:36 ----A---- D:\Windows\system32\aepic.dll
2015-02-26 17:39:34 ----A---- D:\Windows\system32\profsvc.dll
2015-02-26 17:39:31 ----A---- D:\Windows\SYSWOW64\schannel.dll
2015-02-26 17:39:31 ----A---- D:\Windows\SYSWOW64\kerberos.dll
2015-02-26 17:39:31 ----A---- D:\Windows\system32\schannel.dll
2015-02-26 17:39:30 ----A---- D:\Windows\SYSWOW64\TSpkg.dll
2015-02-26 17:39:30 ----A---- D:\Windows\SYSWOW64\ncrypt.dll
2015-02-26 17:39:30 ----A---- D:\Windows\SYSWOW64\msv1_0.dll
2015-02-26 17:39:30 ----A---- D:\Windows\system32\wdigest.dll
2015-02-26 17:39:30 ----A---- D:\Windows\system32\TSpkg.dll
2015-02-26 17:39:30 ----A---- D:\Windows\system32\ncrypt.dll
2015-02-26 17:39:30 ----A---- D:\Windows\system32\msv1_0.dll
2015-02-26 17:39:30 ----A---- D:\Windows\system32\kerberos.dll
2015-02-26 17:39:29 ----A---- D:\Windows\SYSWOW64\wdigest.dll
2015-02-26 17:39:29 ----A---- D:\Windows\SYSWOW64\credssp.dll
2015-02-26 17:39:29 ----A---- D:\Windows\system32\credssp.dll
2015-02-26 17:38:47 ----A---- D:\Windows\SYSWOW64\mshtmled.dll
2015-02-26 17:38:47 ----A---- D:\Windows\SYSWOW64\MshtmlDac.dll
2015-02-26 17:38:47 ----A---- D:\Windows\SYSWOW64\iernonce.dll
2015-02-26 17:38:47 ----A---- D:\Windows\SYSWOW64\ieetwproxystub.dll
2015-02-26 17:38:47 ----A---- D:\Windows\system32\ieetwproxystub.dll
2015-02-26 17:38:47 ----A---- D:\Windows\system32\ieetwcollector.exe
2015-02-26 17:38:46 ----A---- D:\Windows\SYSWOW64\urlmon.dll
2015-02-26 17:38:46 ----A---- D:\Windows\SYSWOW64\mshtml.dll
2015-02-26 17:38:46 ----A---- D:\Windows\SYSWOW64\msfeeds.dll
2015-02-26 17:38:46 ----A---- D:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2015-02-26 17:38:46 ----A---- D:\Windows\SYSWOW64\iedkcs32.dll
2015-02-26 17:38:46 ----A---- D:\Windows\SYSWOW64\dxtrans.dll
2015-02-26 17:38:46 ----A---- D:\Windows\system32\JavaScriptCollectionAgent.dll
2015-02-26 17:38:46 ----A---- D:\Windows\system32\iernonce.dll
2015-02-26 17:38:46 ----A---- D:\Windows\system32\ie4uinit.exe
2015-02-26 17:38:45 ----A---- D:\Windows\SYSWOW64\jsproxy.dll
2015-02-26 17:38:45 ----A---- D:\Windows\SYSWOW64\ieUnatt.exe
2015-02-26 17:38:45 ----A---- D:\Windows\SYSWOW64\iesetup.dll
2015-02-26 17:38:45 ----A---- D:\Windows\SYSWOW64\iertutil.dll
2015-02-26 17:38:45 ----A---- D:\Windows\SYSWOW64\ieapfltr.dll
2015-02-26 17:38:45 ----A---- D:\Windows\system32\urlmon.dll
2015-02-26 17:38:45 ----A---- D:\Windows\system32\ieetwcollectorres.dll
2015-02-26 17:38:45 ----A---- D:\Windows\system32\iedkcs32.dll
2015-02-26 17:38:44 ----A---- D:\Windows\SYSWOW64\ieui.dll
2015-02-26 17:38:44 ----A---- D:\Windows\SYSWOW64\ieframe.dll
2015-02-26 17:38:44 ----A---- D:\Windows\SYSWOW64\dxtmsft.dll
2015-02-26 17:38:44 ----A---- D:\Windows\system32\MsSpellCheckingFacility.exe
2015-02-26 17:38:44 ----A---- D:\Windows\system32\msfeeds.dll
2015-02-26 17:38:44 ----A---- D:\Windows\system32\iesetup.dll
2015-02-26 17:38:44 ----A---- D:\Windows\system32\ieapfltr.dll
2015-02-26 17:38:44 ----A---- D:\Windows\system32\dxtrans.dll
2015-02-26 17:38:43 ----A---- D:\Windows\SYSWOW64\wininet.dll
2015-02-26 17:38:43 ----A---- D:\Windows\SYSWOW64\vbscript.dll
2015-02-26 17:38:43 ----A---- D:\Windows\SYSWOW64\mshtmlmedia.dll
2015-02-26 17:38:43 ----A---- D:\Windows\system32\iertutil.dll
2015-02-26 17:38:42 ----A---- D:\Windows\SYSWOW64\msrating.dll
2015-02-26 17:38:42 ----A---- D:\Windows\system32\jsproxy.dll
2015-02-26 17:38:42 ----A---- D:\Windows\system32\ieUnatt.exe
2015-02-26 17:38:42 ----A---- D:\Windows\system32\ieui.dll
2015-02-26 17:38:42 ----A---- D:\Windows\system32\ieframe.dll
2015-02-26 17:38:42 ----A---- D:\Windows\system32\dxtmsft.dll
2015-02-26 17:38:41 ----A---- D:\Windows\system32\wininet.dll
2015-02-26 17:38:41 ----A---- D:\Windows\system32\vbscript.dll
2015-02-26 17:38:41 ----A---- D:\Windows\system32\mshtmlmedia.dll
2015-02-26 17:38:41 ----A---- D:\Windows\system32\mshtmled.dll
2015-02-26 17:38:40 ----A---- D:\Windows\system32\msrating.dll
2015-02-26 17:38:40 ----A---- D:\Windows\system32\MshtmlDac.dll
2015-02-26 17:38:40 ----A---- D:\Windows\system32\mshtml.dll
2015-02-26 17:37:06 ----A---- D:\Windows\SYSWOW64\nlaapi.dll
2015-02-26 17:37:06 ----A---- D:\Windows\SYSWOW64\ncsi.dll
2015-02-26 17:37:06 ----A---- D:\Windows\system32\nlasvc.dll
2015-02-26 17:37:04 ----A---- D:\Windows\system32\WindowsCodecs.dll
2015-02-26 17:37:03 ----A---- D:\Windows\SYSWOW64\WindowsCodecs.dll
2015-02-26 17:37:01 ----A---- D:\Windows\system32\drivers\mrxdav.sys
2015-02-26 17:36:57 ----A---- D:\Windows\SYSWOW64\adtschema.dll
2015-02-26 17:36:57 ----A---- D:\Windows\system32\lsasrv.dll
2015-02-26 17:36:57 ----A---- D:\Windows\system32\drivers\ksecdd.sys
2015-02-26 17:36:57 ----A---- D:\Windows\system32\drivers\cng.sys
2015-02-26 17:36:57 ----A---- D:\Windows\system32\adtschema.dll
2015-02-26 17:36:56 ----A---- D:\Windows\SYSWOW64\sspicli.dll
2015-02-26 17:36:56 ----A---- D:\Windows\SYSWOW64\secur32.dll
2015-02-26 17:36:56 ----A---- D:\Windows\SYSWOW64\msobjs.dll
2015-02-26 17:36:56 ----A---- D:\Windows\SYSWOW64\msaudite.dll
2015-02-26 17:36:56 ----A---- D:\Windows\SYSWOW64\auditpol.exe
2015-02-26 17:36:56 ----A---- D:\Windows\system32\sspisrv.dll
2015-02-26 17:36:56 ----A---- D:\Windows\system32\sspicli.dll
2015-02-26 17:36:56 ----A---- D:\Windows\system32\secur32.dll
2015-02-26 17:36:56 ----A---- D:\Windows\system32\msobjs.dll
2015-02-26 17:36:56 ----A---- D:\Windows\system32\msaudite.dll
2015-02-26 17:36:56 ----A---- D:\Windows\system32\lsass.exe
2015-02-26 17:36:56 ----A---- D:\Windows\system32\drivers\ksecpkg.sys
2015-02-26 17:36:56 ----A---- D:\Windows\system32\auditpol.exe
2015-02-26 17:36:16 ----A---- D:\Windows\SYSWOW64\wintrust.dll
2015-02-26 17:36:16 ----A---- D:\Windows\SYSWOW64\cryptsvc.dll
2015-02-26 17:36:16 ----A---- D:\Windows\SYSWOW64\crypt32.dll
2015-02-26 17:36:16 ----A---- D:\Windows\system32\wintrust.dll
2015-02-26 17:36:16 ----A---- D:\Windows\system32\cryptsvc.dll
2015-02-26 17:36:16 ----A---- D:\Windows\system32\crypt32.dll
2015-02-26 17:35:36 ----A---- D:\Windows\SYSWOW64\oleaut32.dll
2015-02-26 17:35:36 ----A---- D:\Windows\system32\oleaut32.dll
2015-02-26 17:35:34 ----A---- D:\Windows\system32\mstscax.dll
2015-02-26 17:35:33 ----A---- D:\Windows\SYSWOW64\mstscax.dll
2015-02-26 17:35:32 ----A---- D:\Windows\SYSWOW64\aaclient.dll
2015-02-26 17:34:00 ----A---- D:\Windows\SYSWOW64\scesrv.dll
2015-02-26 17:34:00 ----A---- D:\Windows\system32\scesrv.dll
2015-02-26 17:33:55 ----A---- D:\Windows\SYSWOW64\ntkrnlpa.exe
2015-02-26 17:33:55 ----A---- D:\Windows\system32\ntoskrnl.exe
2015-02-26 17:33:54 ----A---- D:\Windows\SYSWOW64\ntoskrnl.exe
2015-02-26 17:33:53 ----A---- D:\Windows\system32\srcore.dll
2015-02-26 17:33:53 ----A---- D:\Windows\system32\rstrui.exe
2015-02-26 17:33:52 ----A---- D:\Windows\SYSWOW64\srclient.dll
2015-02-26 17:33:52 ----A---- D:\Windows\system32\srclient.dll
2015-02-26 17:32:15 ----A---- D:\Windows\system32\win32k.sys
2015-02-26 16:21:55 ----D---- D:\Program Files\Common Files\DESIGNER
2015-02-26 16:21:27 ----D---- D:\Program Files (x86)\Microsoft SQL Server
2015-02-26 16:21:10 ----D---- D:\ProgramData\regid.1991-06.com.microsoft
2015-02-26 16:20:31 ----D---- D:\Windows\PCHEALTH
2015-02-26 16:20:31 ----D---- D:\Program Files\Microsoft SQL Server
2015-02-26 16:18:32 ----D---- D:\Program Files\Microsoft Analysis Services
2015-02-26 16:18:32 ----D---- D:\Program Files (x86)\Microsoft Analysis Services
2015-02-26 16:18:15 ----D---- D:\Program Files (x86)\Microsoft Office
2015-02-26 16:18:02 ----D---- D:\ProgramData\Microsoft Help
2015-02-26 16:17:27 ----RHD---- D:\MSOCache
2015-02-26 13:13:42 ----D---- D:\ProgramData\BlueStacksSetup
2015-02-26 13:13:42 ----D---- D:\ProgramData\BlueStacks
2015-02-26 13:13:42 ----D---- D:\Program Files (x86)\BlueStacks
2015-02-26 12:24:31 ----D---- D:\Program Files (x86)\Bechiro S.L
2015-02-26 12:24:30 ----D---- D:\Users\Rob\AppData\Roaming\Bechiro S.L
2015-02-26 12:24:30 ----D---- D:\Program Files (x86)\Mozilla Firefox
2015-02-26 12:20:59 ----D---- D:\Users\Rob\AppData\Roaming\Opera Software
2015-02-26 12:20:42 ----D---- D:\Program Files (x86)\Opera
2015-02-26 12:20:16 ----D---- D:\Program Files (x86)\9b0a2a1e-3b76-4fee-bbe1-d53b372c4d05
2015-02-26 12:20:15 ----D---- D:\Program Files (x86)\Shoppy-Up.2.7
2015-02-25 10:20:09 ----D---- D:\Users\Rob\AppData\Roaming\PrimoPDF
2015-02-25 10:19:16 ----A---- D:\Windows\system32\Primomonnt.dll
2015-02-25 10:19:14 ----D---- D:\Program Files (x86)\Nitro PDF
2015-02-25 10:04:28 ----D---- D:\Program Files (x86)\Adobe
2015-02-25 10:03:47 ----D---- D:\ProgramData\Adobe
2015-02-25 09:03:27 ----D---- D:\ProgramData\{e3e700a2-0d4c-87e5-e3e7-700a20d40288}
2015-02-24 20:15:31 ----A---- D:\Windows\system32\drivers\stflt.sys
2015-02-24 20:04:24 ----D---- D:\Program Files\CCleaner
2015-02-24 20:00:28 ----D---- D:\Windows\pss
2015-02-24 19:58:29 ----D---- D:\Windows\system32\appmgmt
2015-02-24 19:54:42 ----D---- D:\Windows\SYSWOW64\X86
2015-02-24 19:54:42 ----D---- D:\Windows\SYSWOW64\AMD64
2015-02-24 19:52:58 ----D---- D:\Program Files (x86)\DeluxReader
2015-02-24 19:52:37 ----D---- D:\Program Files (x86)\My IP address
2015-02-24 19:52:29 ----D---- D:\ProgramData\VCE Exam Simulator
2015-02-24 19:51:13 ----D---- D:\ProgramData\{44ae76ed-5d17-7590-44ae-e76ed5d1dbb5}
======List of files/folders modified in the last 1 month======
2015-03-05 21:28:14 ----D---- D:\Windows\Prefetch
2015-03-05 21:28:13 ----D---- D:\Windows\Temp
2015-03-05 07:41:00 ----D---- D:\Windows\system32\config
2015-03-04 22:28:43 ----D---- D:\Windows\System32
2015-03-04 22:28:43 ----D---- D:\Windows\inf
2015-03-04 22:28:43 ----A---- D:\Windows\system32\PerfStringBackup.INI
2015-03-04 12:45:27 ----D---- D:\Windows\winsxs
2015-03-04 12:43:29 ----D---- D:\Windows
2015-03-04 04:01:12 ----D---- D:\Windows\tracing
2015-03-04 04:01:12 ----D---- D:\Windows\SysWOW64
2015-03-04 03:00:28 ----SHD---- D:\System Volume Information
2015-03-03 18:44:55 ----D---- D:\Program Files (x86)\Common Files
2015-03-03 18:43:13 ----SHD---- D:\Windows\Installer
2015-03-03 18:42:54 ----D---- D:\ProgramData\Package Cache
2015-03-03 14:22:05 ----RD---- D:\Program Files
2015-03-03 14:22:04 ----RD---- D:\Program Files (x86)
2015-03-03 14:04:00 ----HD---- D:\ProgramData
2015-03-03 11:53:37 ----D---- D:\Users\Rob\AppData\Roaming\vlc
2015-03-03 09:48:26 ----D---- D:\Windows\system32\Tasks
2015-03-03 09:48:18 ----D---- D:\Program Files (x86)\Google
2015-03-03 09:47:30 ----D---- D:\Windows\system32\drivers
2015-03-03 09:45:49 ----D---- D:\Programy
2015-03-03 09:39:24 ----SD---- D:\ProgramData\Microsoft
2015-03-02 20:04:44 ----D---- D:\Windows\SYSWOW64\drivers
2015-03-02 20:03:55 ----HD---- D:\Program Files (x86)\InstallShield Installation Information
2015-03-02 20:00:01 ----D---- D:\Windows\system32\DriverStore
2015-03-02 01:24:04 ----D---- D:\Users\Rob\AppData\Roaming\Skype
2015-03-01 10:52:14 ----D---- D:\Windows\debug
2015-02-28 10:03:15 ----D---- D:\Windows\rescache
2015-02-28 09:44:59 ----D---- D:\Windows\Microsoft.NET
2015-02-28 09:43:38 ----RSD---- D:\Windows\assembly
2015-02-28 09:19:29 ----D---- D:\AdwCleaner
2015-02-28 08:46:03 ----D---- D:\Windows\SYSWOW64\en-US
2015-02-28 08:46:03 ----D---- D:\Windows\system32\en-US
2015-02-28 08:46:01 ----RSD---- D:\Windows\Fonts
2015-02-28 08:46:00 ----D---- D:\Windows\SYSWOW64\cs-CZ
2015-02-28 08:46:00 ----D---- D:\Windows\system32\cs-CZ
2015-02-27 22:30:25 ----D---- D:\Program Files (x86)\Microsoft.NET
2015-02-27 22:30:24 ----D---- D:\Program Files\Common Files\Microsoft Shared
2015-02-27 15:35:45 ----D---- D:\Windows\system32\catroot2
2015-02-27 15:22:50 ----D---- D:\Program Files\Windows Media Player
2015-02-27 15:22:50 ----D---- D:\Program Files (x86)\Windows Media Player
2015-02-27 15:22:49 ----D---- D:\Windows\ehome
2015-02-27 15:22:47 ----SD---- D:\Windows\system32\CompatTel
2015-02-27 15:22:47 ----D---- D:\Windows\system32\appraiser
2015-02-27 15:22:46 ----D---- D:\Program Files\Common Files\System
2015-02-27 09:21:37 ----D---- D:\Windows\AppPatch
2015-02-27 09:21:35 ----D---- D:\Program Files\Windows Journal
2015-02-27 09:19:22 ----D---- D:\Windows\Tasks
2015-02-27 09:12:55 ----A---- D:\Windows\win.ini
2015-02-27 08:39:35 ----D---- D:\Program Files\Internet Explorer
2015-02-27 08:39:33 ----D---- D:\Program Files (x86)\Internet Explorer
2015-02-27 08:39:30 ----D---- D:\Windows\SYSWOW64\Dism
2015-02-27 08:39:29 ----D---- D:\Windows\system32\Dism
2015-02-27 08:39:28 ----D---- D:\Program Files\Windows Defender
2015-02-27 08:39:28 ----D---- D:\Program Files (x86)\Windows Defender
2015-02-27 08:39:17 ----D---- D:\Windows\SYSWOW64\migration
2015-02-27 08:39:17 ----D---- D:\Windows\system32\migration
2015-02-27 08:39:17 ----D---- D:\Windows\PolicyDefinitions
2015-02-27 08:39:03 ----D---- D:\Windows\system32\Boot
2015-02-27 00:53:04 ----D---- D:\Windows\system32\MRT
2015-02-26 22:21:20 ----D---- D:\Windows\Downloaded Program Files
2015-02-26 17:31:54 ----D---- D:\Windows\system32\catroot
2015-02-26 16:39:31 ----SD---- D:\Users\Rob\AppData\Roaming\Microsoft
2015-02-26 16:22:04 ----D---- D:\Windows\ShellNew
2015-02-26 16:21:55 ----D---- D:\Program Files\Common Files
2015-02-26 12:20:41 ----D---- D:\Program Files (x86)\AMD
2015-02-26 12:20:14 ----D---- D:\Users\Rob\AppData\Roaming\Seznam.cz
2015-02-26 12:20:13 ----D---- D:\Program Files (x86)\Seznam.cz
2015-02-25 10:21:14 ----D---- D:\Users\Rob\AppData\Roaming\Adobe
2015-02-25 10:19:15 ----A---- D:\Windows\primopdf.ini
2015-02-24 20:07:29 ----D---- D:\Users\Rob\AppData\Roaming\DAEMON Tools Lite
2015-02-24 20:07:28 ----D---- D:\Users\Rob\AppData\Roaming\uTorrent
2015-02-24 20:06:42 ----D---- D:\Windows\Panther
2015-02-24 20:06:41 ----D---- D:\Windows\Minidump
2015-02-24 20:06:41 ----D---- D:\Windows\Logs
2015-02-24 19:58:55 ----D---- D:\Program Files (x86)\NCWest
2015-02-24 19:54:40 ----D---- D:\Users\Rob\AppData\Roaming\Raptr
2015-02-24 17:00:17 ----A---- D:\Windows\Sandboxie.ini
2015-02-24 07:57:37 ----D---- D:\ProgramData\Origin
2015-02-22 09:38:19 ----D---- D:\ProgramData\Orbit
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswRvrt;avast! Revert; D:\Windows\system32\drivers\aswRvrt.sys [2015-03-03 65736]
R0 aswVmm;avast! VM Monitor; D:\Windows\system32\drivers\aswVmm.sys [2015-03-03 268640]
R0 iaStorA;iaStorA; D:\Windows\system32\DRIVERS\iaStorA.sys [2014-04-11 645480]
R0 iaStorF;iaStorF; D:\Windows\system32\DRIVERS\iaStorF.sys [2014-04-11 28008]
R0 iusb3hcs;Ovladač přepínání hostitelského řadiče Intel(R) USB 3.0; D:\Windows\system32\DRIVERS\iusb3hcs.sys [2014-02-21 20464]
R0 rdyboost;ReadyBoost; D:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; D:\Windows\system32\drivers\vmbus.sys [2010-11-20 199552]
R1 ArcSec;archlp; D:\Windows\system32\drivers\ArcSec.sys [2010-09-21 312184]
R1 aswRdr;aswRdr; D:\Windows\system32\drivers\aswRdr2.sys [2015-03-03 93528]
R1 aswSnx;aswSnx; D:\Windows\system32\drivers\aswSnx.sys [2015-03-03 1047320]
R1 aswSP;aswSP; D:\Windows\system32\drivers\aswSP.sys [2015-03-03 441728]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; D:\Windows\system32\drivers\csc.sys [2010-11-20 514560]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; D:\Windows\system32\DRIVERS\dtsoftbus01.sys [2014-12-20 283064]
R2 amdacpksd;ACP Kernel Service Driver; \??\D:\Windows\system32\drivers\amdacpksd.sys [2014-11-21 294600]
R2 aswHwid;avast! HardwareID; D:\Windows\system32\drivers\aswHwid.sys [2015-03-03 29168]
R2 aswMonFlt;aswMonFlt; D:\Windows\system32\drivers\aswMonFlt.sys [2015-03-03 88408]
R2 aswStm;aswStm; D:\Windows\system32\drivers\aswStm.sys [2015-03-03 136752]
R2 BstHdDrv;BlueStacks Hypervisor; \??\D:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [2014-08-13 122072]
R2 VBoxAswDrv;VBoxAsw Support Driver; \??\D:\Programy\Avast\ng\vbox\VBoxAswDrv.sys [2015-03-03 273824]
R3 amdkmdag;amdkmdag; D:\Windows\system32\DRIVERS\atikmdag.sys [2014-11-21 18959360]
R3 amdkmdap;amdkmdap; D:\Windows\system32\DRIVERS\atikmpag.sys [2014-11-21 589312]
R3 AtiHDAudioService;AMD Function Driver for HD Audio Service; D:\Windows\system32\drivers\AtihdW76.sys [2014-06-21 94720]
R3 gdrv;gdrv; \??\D:\Windows\gdrv.sys [2015-03-05 25640]
R3 hamachi;Hamachi Network Interface; D:\Windows\system32\DRIVERS\hamachi.sys [2009-03-18 33856]
R3 igfx;igfx; D:\Windows\system32\DRIVERS\igdkmd64.sys [2014-03-31 3785216]
R3 IntcDAud;Intel(R) Display Audio; D:\Windows\system32\DRIVERS\IntcDAud.sys [2014-03-31 450520]
R3 iusb3hub;Ovladač rozbočovače Intel(R) USB 3.0; D:\Windows\system32\DRIVERS\iusb3hub.sys [2014-02-21 370672]
R3 iusb3xhc;Ovladač rozšiřitelného hostitelského řadiče Intel(R) USB 3.0; D:\Windows\system32\DRIVERS\iusb3xhc.sys [2014-02-21 791024]
R3 MEIx64;Intel(R) Management Engine Interface ; D:\Windows\system32\DRIVERS\TeeDriverx64.sys [2014-03-20 118272]
R3 RTL8167;Realtek 8167 NT Driver; D:\Windows\system32\DRIVERS\Rt64win7.sys [2014-03-18 906968]
R3 SbieDrv;SbieDrv; \??\D:\Programy\Sandboxie\SbieDrv.sys [2014-10-14 185352]
R3 WmBEnum;Logitech Virtual Bus Enumerator Driver; D:\Windows\system32\drivers\WmBEnum.sys [2010-04-27 26440]
R3 WmXlCore;Logitech Translation Layer Driver; D:\Windows\system32\drivers\WmXlCore.sys [2010-04-27 77512]
S2 atksgt;atksgt; D:\Windows\system32\DRIVERS\atksgt.sys [2014-12-22 303616]
S2 lirsgt;lirsgt; D:\Windows\system32\DRIVERS\lirsgt.sys [2014-12-22 35328]
S3 ALSysIO;ALSysIO; \??\D:\Users\Rob\AppData\Local\Temp\ALSysIO64.sys []
S3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); D:\Windows\system32\drivers\RTKVHD64.sys []
S3 pciide;pciide; D:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RDPDR;Terminal Server Device Redirector Driver; D:\Windows\System32\drivers\rdpdr.sys [2010-11-20 165888]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; D:\Windows\System32\drivers\rdpvideominiport.sys [2010-11-20 20992]
S3 s3cap;s3cap; D:\Windows\system32\drivers\vms3cap.sys [2010-11-20 6656]
S3 storvsc;storvsc; D:\Windows\system32\drivers\storvsc.sys [2010-11-20 34688]
S3 Synth3dVsc;Synth3dVsc; D:\Windows\System32\drivers\synth3dvsc.sys []
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; D:\Windows\System32\drivers\tsusbflt.sys [2010-11-20 59392]
S3 tsusbhub;@%SystemRoot%\system32\drivers\tsusbhub.sys,-1; D:\Windows\system32\drivers\tsusbhub.sys []
S3 usbscan;Ovladač skeneru USB; D:\Windows\system32\DRIVERS\usbscan.sys [2013-07-03 42496]
S3 VGPU;VGPU; D:\Windows\System32\drivers\rdvgkmd.sys []
S3 VMBusHID;VMBusHID; D:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 21760]
S3 WmFilter;Logitech Gaming HID Filter Driver; D:\Windows\system32\drivers\WmFilter.sys [2010-04-27 43976]
S3 WmVirHid;Logitech Virtual Hid Device Driver; D:\Windows\system32\drivers\WmVirHid.sys [2010-04-27 16200]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; D:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2014-12-03 81088]
R2 AMD External Events Utility;AMD External Events Utility; D:\Windows\system32\atiesrxx.exe [2014-11-21 244736]
R2 amdacpusrsvc;ACP User Service; D:\Program Files\AMD\{920DEC42-4CA5-4d1d-9487-67BE645CDDFC}\amdacpusrsvc.exe [2014-11-20 116224]
R2 avast! Antivirus;Avast Antivirus; D:\Programy\Avast\AvastSvc.exe [2015-03-03 343336]
R2 BstHdLogRotatorSvc;BlueStacks Log Rotator Service; D:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe [2014-08-13 384728]
R2 BstHdUpdaterSvc;BlueStacks Updater Service; D:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe [2014-08-13 777944]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; D:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 gadjservice;GIGABYTE Adjust; D:\Program Files (x86)\Gigabyte\AppCenter\AdjustService.exe [2014-04-16 16384]
R2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine; D:\Programy\Hamachi\hamachi-2.exe [2015-02-17 2490216]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; D:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2014-04-11 16232]
R2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service; D:\Windows\system32\igfxCUIService.exe [2014-04-09 296432]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; D:\Program Files\Intel\iCLS Client\HeciServer.exe [2013-08-27 747520]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; D:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2014-03-20 154584]
R2 LMS;Intel(R) Management and Security Application Local Management Service; D:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2014-03-20 398296]
R2 PnkBstrA;PnkBstrA; D:\Windows\syswow64\PnkBstrA.exe [2015-01-13 75136]
R2 PnkBstrB;PnkBstrB; D:\Windows\syswow64\PnkBstrB.exe [2015-01-13 189248]
R2 SbieSvc;Sandboxie Service; D:\Programy\Sandboxie\SbieSvc.exe [2014-10-14 174600]
R2 wlidsvc;Windows Live ID Sign-in Assistant; D:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2009-08-18 2291568]
R3 AvastVBoxSvc;AvastVBox COM Service; D:\Programy\Avast\ng\vbox\AvastVBoxSVC.exe [2015-03-03 4030800]
R3 Steam Client Service;Steam Client Service; D:\Program Files (x86)\Common Files\Steam\SteamService.exe [2015-02-19 835776]
S2 BstHdAndroidSvc;BlueStacks Android Service; D:\Program Files (x86)\BlueStacks\HD-Service.exe [2014-08-17 391168]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; D:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; D:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-09-11 124088]
S2 gupdate;Služba Google Update (gupdate); D:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-12-20 116648]
S2 SkypeUpdate;Skype Updater; D:\Program Files (x86)\Skype\Updater\Updater.exe [2014-12-11 315496]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; D:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-02-26 267440]
S3 AppMgmt;@appmgmts.dll,-3250; D:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 BEService;BattlEye Service; D:\Program Files (x86)\Common Files\BattlEye\BEService.exe [2015-03-03 814464]
S3 cphs;Intel(R) Content Protection HECI Service; D:\Windows\SysWow64\IntelCpHeciSvc.exe [2014-04-09 279024]
S3 gupdatem;Služba Google Update (gupdatem); D:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-12-20 116648]
S3 gusvc;Google Software Updater; D:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe [2015-03-03 194032]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; D:\Windows\system32\IEEtwCollector.exe [2015-01-12 114688]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; D:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2013-08-27 828376]
S3 npggsvc;nProtect GameGuard Service; D:\Windows\syswow64\GameMon.des [2014-05-06 3071632]
S3 Origin Client Service;Origin Client Service; E:\Hry\Origin\OriginClientService.exe [2015-01-28 1910128]
S3 ose64;Office 64 Source Engine; D:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2012-12-08 178760]
S3 osppsvc;Office Software Protection Platform; D:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2012-10-01 5132888]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; D:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; D:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; D:\Windows\system32\Wat\WatAdminSvc.exe [2015-02-27 1255736]
S4 aspnet_state;Stavová služba ASP.NET; D:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-09-11 51808]
S4 NetMsmqActivator;@D:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; D:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetPipeActivator;@D:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; D:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetTcpActivator;@D:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; D:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
-----------------EOF-----------------
Re: Reklamy, zpomalený počítač
vycisti PC s ADWCleanerom
FRST |ADWCleaner |MBAM |CCleaner |AVPTool
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
Re: Reklamy, zpomalený počítač
Už jsem to udělal, teď znova, ale nepomáhá to, avast stále vyskakuje že zablokoval objekt:
zipmasterbox.info.... nebo hromadu dalších, už nevím co s tím:(
zipmasterbox.info.... nebo hromadu dalších, už nevím co s tím:(
Re: Reklamy, zpomalený počítač
vycisti PC s MBAM - log sem
FRST |ADWCleaner |MBAM |CCleaner |AVPTool
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
Re: Reklamy, zpomalený počítač
Díky za rady, prohel jsem pc MBamem, ale avast stále vyskakuje že něco zablokoval, ale už méně. Tady je log:
Malwarebytes Anti-Malware
www.malwarebytes.org
Datum skenování: 8.3.2015
Čas skenování: 9:45:08
Protokol: 852852852.txt
Správce: Ano
Verze: 2.00.4.1028
Databáze malwaru: v2015.03.08.03
Databáze rootkitů: v2015.02.25.01
Licence: Bezplatná verze
Ochrana proti malwaru: Vypnuto
Ochrana proti škodlivým webovým stránkám: Vypnuto
Sebeobrany: Vypnuto
OS: Windows 7 Service Pack 1
CPU: x64
Souborový systém: NTFS
Uživatel: Rob
Typ skenu: Sken hrozeb
Výsledek: Dokončeno
Prohledaných objektů: 343605
Uplynulý čas: 8 min, 53 sek
Paměť: Zapnuto
Po spuštění: Zapnuto
Souborový systém: Zapnuto
Archivy: Zapnuto
Rootkity: Vypnuto
Heuristika: Zapnuto
PUP: Varovat
PUM: Zapnuto
Procesy: 0
(Žádné zákerné zjištěny položek)
Moduly: 0
(Žádné zákerné zjištěny položek)
Klíče registru: 35
PUP.Optional.Smartbar.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{FD36FEBE-DBA1-4597-9DD1-B13794B92F68}, Do karantény, [4ec564dfafdba195995f4a09cd366997],
PUP.Optional.Smartbar.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{1581739A-4E37-4453-B6DE-5E50C457329C}, Do karantény, [4ec564dfafdba195995f4a09cd366997],
PUP.Optional.Smartbar.A, HKLM\SOFTWARE\CLASSES\Bechiro.smartbarHlpr.1, Do karantény, [4ec564dfafdba195995f4a09cd366997],
PUP.Optional.Smartbar.A, HKLM\SOFTWARE\CLASSES\Bechiro.smartbarHlpr, Do karantény, [4ec564dfafdba195995f4a09cd366997],
PUP.Optional.Smartbar.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Bechiro.smartbarHlpr, Do karantény, [4ec564dfafdba195995f4a09cd366997],
PUP.Optional.Smartbar.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{FD36FEBE-DBA1-4597-9DD1-B13794B92F68}, Do karantény, [4ec564dfafdba195995f4a09cd366997],
PUP.Optional.Smartbar.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Bechiro.smartbarHlpr.1, Do karantény, [4ec564dfafdba195995f4a09cd366997],
PUP.Optional.Smartbar.A, HKU\S-1-5-21-4165481795-158376887-1211872822-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{FD36FEBE-DBA1-4597-9DD1-B13794B92F68}, Do karantény, [4ec564dfafdba195995f4a09cd366997],
PUP.Optional.Smartbar.A, HKU\S-1-5-21-4165481795-158376887-1211872822-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{FD36FEBE-DBA1-4597-9DD1-B13794B92F68}, Do karantény, [4ec564dfafdba195995f4a09cd366997],
PUP.Optional.Smartbar.A, HKLM\SOFTWARE\CLASSES\Bechiro.smartbardskBnd, Do karantény, [52c1ec57bbcf171f8f681142798a32ce],
PUP.Optional.Smartbar.A, HKLM\SOFTWARE\CLASSES\Bechiro.smartbardskBnd.1, Do karantény, [d83b58eb2367d2644aadb0a3c2418080],
PUP.Optional.Smartbar.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Bechiro.smartbardskBnd, Do karantény, [d83b58eb2367d2644aadb0a3c2418080],
PUP.Optional.Smartbar.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Bechiro.smartbardskBnd.1, Do karantény, [d83b58eb2367d2644aadb0a3c2418080],
PUP.Optional.SmartBar.A, HKLM\SOFTWARE\CLASSES\Bechiro.smartbarappCore, Do karantény, [50c36dd6a2e869cd9c522dba3fc49967],
PUP.Optional.SmartBar.A, HKLM\SOFTWARE\CLASSES\Bechiro.smartbarappCore.1, Do karantény, [37dcfb48276390a677773aada16207f9],
PUP.Optional.SmartBar.A, HKLM\SOFTWARE\CLASSES\esrv.smartbarESrvc, Do karantény, [58bbc47f73178da9a84754932fd49c64],
PUP.Optional.SmartBar.A, HKLM\SOFTWARE\CLASSES\esrv.smartbarESrvc.1, Do karantény, [c94a95aeaddd9b9b856a47a058ab21df],
PUP.Optional.ShopUp.A, HKLM\SOFTWARE\WOW6432NODE\Shoppy-Up.2.7, Do karantény, [878c5ce7d5b573c3f7c0a2118182659b],
PUP.Optional.ShopUp.A, HKLM\SOFTWARE\WOW6432NODE\Shoppy-Up.2.7-nv, Do karantény, [46cd86bd33575cda04b38a29937040c0],
PUP.Optional.ShopUp.A, HKLM\SOFTWARE\WOW6432NODE\Shoppy-Up.2.7-nv-ie, Do karantény, [799a291a3c4e999dfeb9476c21e246ba],
PUP.Optional.SmartBar.A, HKLM\SOFTWARE\WOW6432NODE\BECHIRO S.L.\smartbar, Do karantény, [7b9861e23c4e54e2d616a245867dc739],
PUP.Optional.SmartBar.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Bechiro.smartbarappCore, Do karantény, [9d7688bb95f50630a84625c2e51e04fc],
PUP.Optional.SmartBar.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Bechiro.smartbarappCore.1, Do karantény, [42d1043fee9c69cd2bc3d611a360bf41],
PUP.Optional.SmartBar.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\esrv.smartbarESrvc, Do karantény, [21f289ba741600362cc3e106758e42be],
PUP.Optional.SmartBar.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\esrv.smartbarESrvc.1, Do karantény, [1102db68602af2448f609d4add262ad6],
Adware.SmartBar, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\smartbar, Do karantény, [e0331231543640f6903b572d31d353ad],
PUP.Optional.ShopUp.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\Shoppy-Up.2.7-nv, Do karantény, [fd16be851a70fa3c40780ca7a55eaf51],
PUP.Optional.ShopUp.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\Shoppy-Up.2.7-nv-ie, Do karantény, [947f370c3c4ef6404375bcf7b1522dd3],
PUP.Optional.ShopUp.A, HKU\S-1-5-21-4165481795-158376887-1211872822-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\Shoppy-Up.2.7-nv, Do karantény, [0a0998ab1575b87e3a7ed2e13cc7c63a],
PUP.Optional.ShopUp.A, HKU\S-1-5-21-4165481795-158376887-1211872822-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\Shoppy-Up.2.7-nv-ie, Do karantény, [1300053ec4c6fe384f69dbd8788bba46],
PUP.Optional.SmartBar.A, HKU\S-1-5-21-4165481795-158376887-1211872822-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\BECHIRO S.L.\smartbar, Do karantény, [17fca0a3d0ba3df90be27572798ab050],
PUP.Optional.SmartBar.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{51A045FD-9441-41B2-9700-1CBCB7BD0B22}, Do karantény, [d43f083bfe8caf87d2e55915a0636c94],
PUP.Optional.SmartBar.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{E00D7C59-1D0B-4427-8742-06C64ADF7D4F}, Do karantény, [d43f083bfe8caf87d2e55915a0636c94],
PUP.Optional.SmartBar.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{F1E12282-ECAF-4225-BBD8-B75394A4CE54}, Do karantény, [d43f083bfe8caf87d2e55915a0636c94],
PUP.Optional.SmartBar.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{F1E12282-ECAF-4225-BBD8-B75394A4CE54}, Do karantény, [d43f083bfe8caf87d2e55915a0636c94],
Hodnoty registru: 0
(Žádné zákerné zjištěny položek)
Data registru: 0
(Žádné zákerné zjištěny položek)
Složky: 6
PUP.Optional.MyIPAddress.A, D:\Program Files (x86)\My IP address, Do karantény, [6aa92f147911b185ac92ebc1de25b24e],
PUP.Optional.SmartBar.A, D:\Users\Rob\AppData\Roaming\Bechiro S.L, Do karantény, [5bb84300dbaf40f69a508c5b17ec9c64],
PUP.Optional.SmartBar.A, D:\Program Files (x86)\Bechiro S.L\smartbar, Do karantény, [d43f083bfe8caf87d2e55915a0636c94],
PUP.Optional.SmartBar.A, D:\Program Files (x86)\Bechiro S.L\smartbar\1.8.8.12, Do karantény, [d43f083bfe8caf87d2e55915a0636c94],
PUP.Optional.SmartBar.A, D:\Program Files (x86)\Bechiro S.L\smartbar\1.8.8.12\bh, Do karantény, [d43f083bfe8caf87d2e55915a0636c94],
PUP.Optional.ShopUp.A, D:\Program Files (x86)\Shoppy-Up.2.7, Do karantény, [070cc67d59312c0a966ef8a093700000],
Soubory: 23
PUP.Optional.Smartbar.A, D:\Program Files (x86)\Bechiro S.L\smartbar\1.8.8.12\bh\smartbar.dll, Do karantény, [4ec564dfafdba195995f4a09cd366997],
PUP.Optional.Unizeto, D:\ProgramData\{44ae76ed-5d17-7590-44ae-e76ed5d1dbb5}\VCE Exam Simulator Pro 1.1.7 Final Crack Download.exe, Do karantény, [52c16bd845453df958bde549a45e11ef],
PUP.Optional.Unizeto, D:\ProgramData\{e3e700a2-0d4c-87e5-e3e7-700a20d40288}\Download Avanset VCE Player 1.2 Torrent - KickassTorrents Proxy.exe, Do karantény, [4ac953f068221d1946cf979769998779],
PUP.Optional.Nova.A, D:\Program Files (x86)\9b0a2a1e-3b76-4fee-bbe1-d53b372c4d05\9d1d60fd-79df-4d18-83b0-66ce78bdd038.dll, Do karantény, [21f2d1724a403bfb5b912fdb46bce020],
PUP.Optional.Nova.A, D:\Program Files (x86)\AMD\1ae7371d-84e8-4dde-aeff-fbc8373ba132.dll, Do karantény, [24ef8db64d3d5adc34b826e4e51dbd43],
PUP.Optional.Nova.A, D:\Program Files (x86)\Shoppy-Up.2.7\e16ef1ed-943e-4cc9-8406-6f9cde16596a.dll, Do karantény, [e231370c3555a88ec329e92129d98a76],
Trojan.MalPack, D:\Users\Rob\Downloads\Avanset-VCE-Exam-Simulator-Pro-v1.1.7-+-Crack (1).rar, Do karantény, [23f0261dfe8cee48bc048b90867c738d],
Spyware.Password, D:\Users\Rob\Downloads\Avanset-VCE-Exam-Simulator-Pro-v1.1.7-+-Crack (2).rar, Do karantény, [1cf764df3e4c4de912a8e32c36cdbd43],
PUP.Optional.Downloader, D:\Users\Rob\Downloads\Avanset-VCE-Exam-Simulator-Pro-v1.1.7-_-Crack---[MUMBAI-TPB].zip, Do karantény, [d14269dae7a31b1b3fbd5219dc2410f0],
PUP.Optional.OpenCandy, D:\Users\Rob\Downloads\InternationalPrimoPDF.exe, Do karantény, [7d9667dc1872e6509a12b65052b4a759],
PUP.Optional.OpenCandy, D:\Users\Rob\Downloads\DTLite4491-0356.exe, Do karantény, [ae6560e3741674c202aae125b2549070],
PUP.Optional.Unizeto, D:\Users\Rob\Downloads\Download Avanset VCE Player 1.2 Torrent - KickassTorrents Proxy.exe, Do karantény, [9f74ef54aae02a0cfa1b77b7c24036ca],
PUP.Optional.MyIPAddress.A, D:\Program Files (x86)\My IP address\My IP address.dat, Do karantény, [6aa92f147911b185ac92ebc1de25b24e],
PUP.Optional.SmartBar.A, D:\Users\Rob\AppData\Roaming\Bechiro S.L\sqlite3.dll, Do karantény, [5bb84300dbaf40f69a508c5b17ec9c64],
PUP.Optional.SmartBar.A, D:\Program Files (x86)\Bechiro S.L\smartbar\1.8.8.12\escortShld.dll, Do karantény, [d43f083bfe8caf87d2e55915a0636c94],
PUP.Optional.SmartBar.A, D:\Program Files (x86)\Bechiro S.L\smartbar\1.8.8.12\smartbar.crx, Do karantény, [d43f083bfe8caf87d2e55915a0636c94],
PUP.Optional.SmartBar.A, D:\Program Files (x86)\Bechiro S.L\smartbar\1.8.8.12\smartbarApp.dll, Do karantény, [d43f083bfe8caf87d2e55915a0636c94],
PUP.Optional.SmartBar.A, D:\Program Files (x86)\Bechiro S.L\smartbar\1.8.8.12\smartbarEng.dll, Do karantény, [d43f083bfe8caf87d2e55915a0636c94],
PUP.Optional.SmartBar.A, D:\Program Files (x86)\Bechiro S.L\smartbar\1.8.8.12\smartbarsrv.exe, Do karantény, [d43f083bfe8caf87d2e55915a0636c94],
PUP.Optional.SmartBar.A, D:\Program Files (x86)\Bechiro S.L\smartbar\1.8.8.12\smartbarTlbr.dll, Do karantény, [d43f083bfe8caf87d2e55915a0636c94],
PUP.Optional.SmartBar.A, D:\Program Files (x86)\Bechiro S.L\smartbar\1.8.8.12\uninstall.exe, Do karantény, [d43f083bfe8caf87d2e55915a0636c94],
PUP.Optional.ShopUp.A, D:\Program Files (x86)\Shoppy-Up.2.7\7f992bcb-d26e-4b99-b296-54eebeae1d8b.dll, Do karantény, [070cc67d59312c0a966ef8a093700000],
PUP.Optional.ShopUp.A, D:\Program Files (x86)\Shoppy-Up.2.7\bgNova.html, Do karantény, [070cc67d59312c0a966ef8a093700000],
Fyzické sektory: 0
(Žádné zákerné zjištěny položek)
(end)
Malwarebytes Anti-Malware
www.malwarebytes.org
Datum skenování: 8.3.2015
Čas skenování: 9:45:08
Protokol: 852852852.txt
Správce: Ano
Verze: 2.00.4.1028
Databáze malwaru: v2015.03.08.03
Databáze rootkitů: v2015.02.25.01
Licence: Bezplatná verze
Ochrana proti malwaru: Vypnuto
Ochrana proti škodlivým webovým stránkám: Vypnuto
Sebeobrany: Vypnuto
OS: Windows 7 Service Pack 1
CPU: x64
Souborový systém: NTFS
Uživatel: Rob
Typ skenu: Sken hrozeb
Výsledek: Dokončeno
Prohledaných objektů: 343605
Uplynulý čas: 8 min, 53 sek
Paměť: Zapnuto
Po spuštění: Zapnuto
Souborový systém: Zapnuto
Archivy: Zapnuto
Rootkity: Vypnuto
Heuristika: Zapnuto
PUP: Varovat
PUM: Zapnuto
Procesy: 0
(Žádné zákerné zjištěny položek)
Moduly: 0
(Žádné zákerné zjištěny položek)
Klíče registru: 35
PUP.Optional.Smartbar.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{FD36FEBE-DBA1-4597-9DD1-B13794B92F68}, Do karantény, [4ec564dfafdba195995f4a09cd366997],
PUP.Optional.Smartbar.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{1581739A-4E37-4453-B6DE-5E50C457329C}, Do karantény, [4ec564dfafdba195995f4a09cd366997],
PUP.Optional.Smartbar.A, HKLM\SOFTWARE\CLASSES\Bechiro.smartbarHlpr.1, Do karantény, [4ec564dfafdba195995f4a09cd366997],
PUP.Optional.Smartbar.A, HKLM\SOFTWARE\CLASSES\Bechiro.smartbarHlpr, Do karantény, [4ec564dfafdba195995f4a09cd366997],
PUP.Optional.Smartbar.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Bechiro.smartbarHlpr, Do karantény, [4ec564dfafdba195995f4a09cd366997],
PUP.Optional.Smartbar.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{FD36FEBE-DBA1-4597-9DD1-B13794B92F68}, Do karantény, [4ec564dfafdba195995f4a09cd366997],
PUP.Optional.Smartbar.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Bechiro.smartbarHlpr.1, Do karantény, [4ec564dfafdba195995f4a09cd366997],
PUP.Optional.Smartbar.A, HKU\S-1-5-21-4165481795-158376887-1211872822-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{FD36FEBE-DBA1-4597-9DD1-B13794B92F68}, Do karantény, [4ec564dfafdba195995f4a09cd366997],
PUP.Optional.Smartbar.A, HKU\S-1-5-21-4165481795-158376887-1211872822-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{FD36FEBE-DBA1-4597-9DD1-B13794B92F68}, Do karantény, [4ec564dfafdba195995f4a09cd366997],
PUP.Optional.Smartbar.A, HKLM\SOFTWARE\CLASSES\Bechiro.smartbardskBnd, Do karantény, [52c1ec57bbcf171f8f681142798a32ce],
PUP.Optional.Smartbar.A, HKLM\SOFTWARE\CLASSES\Bechiro.smartbardskBnd.1, Do karantény, [d83b58eb2367d2644aadb0a3c2418080],
PUP.Optional.Smartbar.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Bechiro.smartbardskBnd, Do karantény, [d83b58eb2367d2644aadb0a3c2418080],
PUP.Optional.Smartbar.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Bechiro.smartbardskBnd.1, Do karantény, [d83b58eb2367d2644aadb0a3c2418080],
PUP.Optional.SmartBar.A, HKLM\SOFTWARE\CLASSES\Bechiro.smartbarappCore, Do karantény, [50c36dd6a2e869cd9c522dba3fc49967],
PUP.Optional.SmartBar.A, HKLM\SOFTWARE\CLASSES\Bechiro.smartbarappCore.1, Do karantény, [37dcfb48276390a677773aada16207f9],
PUP.Optional.SmartBar.A, HKLM\SOFTWARE\CLASSES\esrv.smartbarESrvc, Do karantény, [58bbc47f73178da9a84754932fd49c64],
PUP.Optional.SmartBar.A, HKLM\SOFTWARE\CLASSES\esrv.smartbarESrvc.1, Do karantény, [c94a95aeaddd9b9b856a47a058ab21df],
PUP.Optional.ShopUp.A, HKLM\SOFTWARE\WOW6432NODE\Shoppy-Up.2.7, Do karantény, [878c5ce7d5b573c3f7c0a2118182659b],
PUP.Optional.ShopUp.A, HKLM\SOFTWARE\WOW6432NODE\Shoppy-Up.2.7-nv, Do karantény, [46cd86bd33575cda04b38a29937040c0],
PUP.Optional.ShopUp.A, HKLM\SOFTWARE\WOW6432NODE\Shoppy-Up.2.7-nv-ie, Do karantény, [799a291a3c4e999dfeb9476c21e246ba],
PUP.Optional.SmartBar.A, HKLM\SOFTWARE\WOW6432NODE\BECHIRO S.L.\smartbar, Do karantény, [7b9861e23c4e54e2d616a245867dc739],
PUP.Optional.SmartBar.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Bechiro.smartbarappCore, Do karantény, [9d7688bb95f50630a84625c2e51e04fc],
PUP.Optional.SmartBar.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Bechiro.smartbarappCore.1, Do karantény, [42d1043fee9c69cd2bc3d611a360bf41],
PUP.Optional.SmartBar.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\esrv.smartbarESrvc, Do karantény, [21f289ba741600362cc3e106758e42be],
PUP.Optional.SmartBar.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\esrv.smartbarESrvc.1, Do karantény, [1102db68602af2448f609d4add262ad6],
Adware.SmartBar, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\smartbar, Do karantény, [e0331231543640f6903b572d31d353ad],
PUP.Optional.ShopUp.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\Shoppy-Up.2.7-nv, Do karantény, [fd16be851a70fa3c40780ca7a55eaf51],
PUP.Optional.ShopUp.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\Shoppy-Up.2.7-nv-ie, Do karantény, [947f370c3c4ef6404375bcf7b1522dd3],
PUP.Optional.ShopUp.A, HKU\S-1-5-21-4165481795-158376887-1211872822-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\Shoppy-Up.2.7-nv, Do karantény, [0a0998ab1575b87e3a7ed2e13cc7c63a],
PUP.Optional.ShopUp.A, HKU\S-1-5-21-4165481795-158376887-1211872822-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\Shoppy-Up.2.7-nv-ie, Do karantény, [1300053ec4c6fe384f69dbd8788bba46],
PUP.Optional.SmartBar.A, HKU\S-1-5-21-4165481795-158376887-1211872822-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\BECHIRO S.L.\smartbar, Do karantény, [17fca0a3d0ba3df90be27572798ab050],
PUP.Optional.SmartBar.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{51A045FD-9441-41B2-9700-1CBCB7BD0B22}, Do karantény, [d43f083bfe8caf87d2e55915a0636c94],
PUP.Optional.SmartBar.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{E00D7C59-1D0B-4427-8742-06C64ADF7D4F}, Do karantény, [d43f083bfe8caf87d2e55915a0636c94],
PUP.Optional.SmartBar.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{F1E12282-ECAF-4225-BBD8-B75394A4CE54}, Do karantény, [d43f083bfe8caf87d2e55915a0636c94],
PUP.Optional.SmartBar.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{F1E12282-ECAF-4225-BBD8-B75394A4CE54}, Do karantény, [d43f083bfe8caf87d2e55915a0636c94],
Hodnoty registru: 0
(Žádné zákerné zjištěny položek)
Data registru: 0
(Žádné zákerné zjištěny položek)
Složky: 6
PUP.Optional.MyIPAddress.A, D:\Program Files (x86)\My IP address, Do karantény, [6aa92f147911b185ac92ebc1de25b24e],
PUP.Optional.SmartBar.A, D:\Users\Rob\AppData\Roaming\Bechiro S.L, Do karantény, [5bb84300dbaf40f69a508c5b17ec9c64],
PUP.Optional.SmartBar.A, D:\Program Files (x86)\Bechiro S.L\smartbar, Do karantény, [d43f083bfe8caf87d2e55915a0636c94],
PUP.Optional.SmartBar.A, D:\Program Files (x86)\Bechiro S.L\smartbar\1.8.8.12, Do karantény, [d43f083bfe8caf87d2e55915a0636c94],
PUP.Optional.SmartBar.A, D:\Program Files (x86)\Bechiro S.L\smartbar\1.8.8.12\bh, Do karantény, [d43f083bfe8caf87d2e55915a0636c94],
PUP.Optional.ShopUp.A, D:\Program Files (x86)\Shoppy-Up.2.7, Do karantény, [070cc67d59312c0a966ef8a093700000],
Soubory: 23
PUP.Optional.Smartbar.A, D:\Program Files (x86)\Bechiro S.L\smartbar\1.8.8.12\bh\smartbar.dll, Do karantény, [4ec564dfafdba195995f4a09cd366997],
PUP.Optional.Unizeto, D:\ProgramData\{44ae76ed-5d17-7590-44ae-e76ed5d1dbb5}\VCE Exam Simulator Pro 1.1.7 Final Crack Download.exe, Do karantény, [52c16bd845453df958bde549a45e11ef],
PUP.Optional.Unizeto, D:\ProgramData\{e3e700a2-0d4c-87e5-e3e7-700a20d40288}\Download Avanset VCE Player 1.2 Torrent - KickassTorrents Proxy.exe, Do karantény, [4ac953f068221d1946cf979769998779],
PUP.Optional.Nova.A, D:\Program Files (x86)\9b0a2a1e-3b76-4fee-bbe1-d53b372c4d05\9d1d60fd-79df-4d18-83b0-66ce78bdd038.dll, Do karantény, [21f2d1724a403bfb5b912fdb46bce020],
PUP.Optional.Nova.A, D:\Program Files (x86)\AMD\1ae7371d-84e8-4dde-aeff-fbc8373ba132.dll, Do karantény, [24ef8db64d3d5adc34b826e4e51dbd43],
PUP.Optional.Nova.A, D:\Program Files (x86)\Shoppy-Up.2.7\e16ef1ed-943e-4cc9-8406-6f9cde16596a.dll, Do karantény, [e231370c3555a88ec329e92129d98a76],
Trojan.MalPack, D:\Users\Rob\Downloads\Avanset-VCE-Exam-Simulator-Pro-v1.1.7-+-Crack (1).rar, Do karantény, [23f0261dfe8cee48bc048b90867c738d],
Spyware.Password, D:\Users\Rob\Downloads\Avanset-VCE-Exam-Simulator-Pro-v1.1.7-+-Crack (2).rar, Do karantény, [1cf764df3e4c4de912a8e32c36cdbd43],
PUP.Optional.Downloader, D:\Users\Rob\Downloads\Avanset-VCE-Exam-Simulator-Pro-v1.1.7-_-Crack---[MUMBAI-TPB].zip, Do karantény, [d14269dae7a31b1b3fbd5219dc2410f0],
PUP.Optional.OpenCandy, D:\Users\Rob\Downloads\InternationalPrimoPDF.exe, Do karantény, [7d9667dc1872e6509a12b65052b4a759],
PUP.Optional.OpenCandy, D:\Users\Rob\Downloads\DTLite4491-0356.exe, Do karantény, [ae6560e3741674c202aae125b2549070],
PUP.Optional.Unizeto, D:\Users\Rob\Downloads\Download Avanset VCE Player 1.2 Torrent - KickassTorrents Proxy.exe, Do karantény, [9f74ef54aae02a0cfa1b77b7c24036ca],
PUP.Optional.MyIPAddress.A, D:\Program Files (x86)\My IP address\My IP address.dat, Do karantény, [6aa92f147911b185ac92ebc1de25b24e],
PUP.Optional.SmartBar.A, D:\Users\Rob\AppData\Roaming\Bechiro S.L\sqlite3.dll, Do karantény, [5bb84300dbaf40f69a508c5b17ec9c64],
PUP.Optional.SmartBar.A, D:\Program Files (x86)\Bechiro S.L\smartbar\1.8.8.12\escortShld.dll, Do karantény, [d43f083bfe8caf87d2e55915a0636c94],
PUP.Optional.SmartBar.A, D:\Program Files (x86)\Bechiro S.L\smartbar\1.8.8.12\smartbar.crx, Do karantény, [d43f083bfe8caf87d2e55915a0636c94],
PUP.Optional.SmartBar.A, D:\Program Files (x86)\Bechiro S.L\smartbar\1.8.8.12\smartbarApp.dll, Do karantény, [d43f083bfe8caf87d2e55915a0636c94],
PUP.Optional.SmartBar.A, D:\Program Files (x86)\Bechiro S.L\smartbar\1.8.8.12\smartbarEng.dll, Do karantény, [d43f083bfe8caf87d2e55915a0636c94],
PUP.Optional.SmartBar.A, D:\Program Files (x86)\Bechiro S.L\smartbar\1.8.8.12\smartbarsrv.exe, Do karantény, [d43f083bfe8caf87d2e55915a0636c94],
PUP.Optional.SmartBar.A, D:\Program Files (x86)\Bechiro S.L\smartbar\1.8.8.12\smartbarTlbr.dll, Do karantény, [d43f083bfe8caf87d2e55915a0636c94],
PUP.Optional.SmartBar.A, D:\Program Files (x86)\Bechiro S.L\smartbar\1.8.8.12\uninstall.exe, Do karantény, [d43f083bfe8caf87d2e55915a0636c94],
PUP.Optional.ShopUp.A, D:\Program Files (x86)\Shoppy-Up.2.7\7f992bcb-d26e-4b99-b296-54eebeae1d8b.dll, Do karantény, [070cc67d59312c0a966ef8a093700000],
PUP.Optional.ShopUp.A, D:\Program Files (x86)\Shoppy-Up.2.7\bgNova.html, Do karantény, [070cc67d59312c0a966ef8a093700000],
Fyzické sektory: 0
(Žádné zákerné zjištěny položek)
(end)
Re: Reklamy, zpomalený počítač
ak sa objavuju hlasky AVASTu bude treba ich odfotit, alebo sem vlozit nejaky log z hlaskami
FRST |ADWCleaner |MBAM |CCleaner |AVPTool
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
Re: Reklamy, zpomalený počítač
Odchytil jsem a vyfotil nejběžnější hlášky avastu.
http://www.imgup.cz/image/3d5
http://www.imgup.cz/image/3dp
http://www.imgup.cz/image/3ds
http://www.imgup.cz/image/3dt
http://www.imgup.cz/image/3wA
http://www.imgup.cz/image/3wL
http://www.imgup.cz/image/3wk
Díky moc.
http://www.imgup.cz/image/3d5
http://www.imgup.cz/image/3dp
http://www.imgup.cz/image/3ds
http://www.imgup.cz/image/3dt
http://www.imgup.cz/image/3wA
http://www.imgup.cz/image/3wL
http://www.imgup.cz/image/3wk
Díky moc.
Re: Reklamy, zpomalený počítač
prescanuj PC s AVPTool - pocas scanu vypni AVAST
FRST |ADWCleaner |MBAM |CCleaner |AVPTool
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
Re: Reklamy, zpomalený počítač
Proscanoval jsem to tím programem. Tady je výsledek:
http://www.nahraj-obrazek.cz/?di=10142615911216
http://www.nahraj-obrazek.cz/?di=1314261591144
http://www.nahraj-obrazek.cz/?di=10142615911216
http://www.nahraj-obrazek.cz/?di=1314261591144
Re: Reklamy, zpomalený počítač
- vsetky nalezy su v karantene ADWCleanera - to netreba riesit
- AVAST blokuje pristup na zavirene webstranky
mne to pripada v poriadku - ak mas opacny pocit - spust ComboFix - log sem
- AVAST blokuje pristup na zavirene webstranky
mne to pripada v poriadku - ak mas opacny pocit - spust ComboFix - log sem
FRST |ADWCleaner |MBAM |CCleaner |AVPTool
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
Re: Reklamy, zpomalený počítač
Rád si nechám poradit od odborníka, pokud myslíš, že je to v pořádku, tak to v pořádku bude:), díky moc za ochotu pomoct, jste skvělí. Ten Combo box je teda ještě pro jistotu tady:
ComboFix 15-02-09.01 - Rob 17.03.2015 17:07:31.1.4 - x64
Microsoft Windows 7 Ultimate 6.1.7601.1.1250.420.1029.18.3988.1726 [GMT 1:00]
Spuštěný z: d:\users\Rob\Downloads\ComboFix.exe
AV: avast! Antivirus *Disabled/Updated* {17AD7D40-BA12-9C46-7131-94903A54AD8B}
SP: avast! Antivirus *Disabled/Updated* {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
C:\install.exe
d:\program files (x86)\9b0a2a1e-3b76-4fee-bbe1-d53b372c4d05\a83aff2e-2191-4b0c-9293-1224e674c9ae.dll
d:\program files (x86)\AMD\9b0a2a1e-3b76-4fee-bbe1-d53b372c4d05.dll
d:\users\Rob\AppData\Local\assembly\tmp
d:\users\Rob\AppData\Local\Google\Chrome\User Data\Default\Extensions\monhkdcehmbdgkhgpccaccbbcgcfpjkd
d:\users\Rob\AppData\Local\Google\Chrome\User Data\Default\Extensions\monhkdcehmbdgkhgpccaccbbcgcfpjkd\179\background.html
d:\users\Rob\AppData\Local\Google\Chrome\User Data\Default\Extensions\monhkdcehmbdgkhgpccaccbbcgcfpjkd\179\content.js
d:\users\Rob\AppData\Local\Google\Chrome\User Data\Default\Extensions\monhkdcehmbdgkhgpccaccbbcgcfpjkd\179\lsdb.js
d:\users\Rob\AppData\Local\Google\Chrome\User Data\Default\Extensions\monhkdcehmbdgkhgpccaccbbcgcfpjkd\179\manifest.json
d:\users\Rob\AppData\Local\Google\Chrome\User Data\Default\Extensions\monhkdcehmbdgkhgpccaccbbcgcfpjkd\179\S5.js
d:\users\Rob\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_bahkkpfkokhckpekihbijeaklbgmidal_0.localstorage
d:\users\Rob\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_cbnbabbbhcdphbkpoopepmeiocpfmkmb_0.localstorage
d:\users\Rob\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_monhkdcehmbdgkhgpccaccbbcgcfpjkd_0.localstorage-journal
d:\users\Rob\AppData\Local\Google\Chrome\User Data\Default\Preferences
d:\windows\pkunzip.pif
d:\windows\pkzip.pif
d:\windows\SysWow64\X86
d:\windows\wininit.ini
E:\install.exe
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2015-02-17 do 2015-03-17 )))))))))))))))))))))))))))))))
.
.
2015-03-17 16:13 . 2015-03-17 16:13 -------- d-----w- d:\users\Default\AppData\Local\temp
2015-03-17 16:08 . 2015-03-17 16:08 75888 ----a-w- d:\programdata\Microsoft\Windows Defender\Definition Updates\{DC5CFD23-3E94-48A1-AE69-E54DF31E8E03}\offreg.dll
2015-03-17 07:37 . 2015-01-29 09:07 11910896 ----a-w- d:\programdata\Microsoft\Windows Defender\Definition Updates\{DC5CFD23-3E94-48A1-AE69-E54DF31E8E03}\mpengine.dll
2015-03-16 11:03 . 2015-03-16 11:11 -------- d-----w- d:\users\Rob\DreamBot
2015-03-12 09:28 . 2015-03-12 10:32 -------- d-----w- D:\KVRT_Data
2015-03-11 21:09 . 2015-03-11 21:19 -------- d-----w- d:\users\Rob\OSBuddy
2015-03-11 12:52 . 2015-02-03 03:33 616360 ----a-w- d:\windows\system32\winresume.efi
2015-03-11 12:51 . 2015-02-20 23:58 92160 ----a-w- d:\windows\system32\mshtmled.dll
2015-03-09 19:16 . 2015-03-09 19:41 -------- d-----w- d:\users\Rob\jagexcache
2015-03-09 12:45 . 2015-03-17 15:56 -------- d-----w- d:\users\Rob\AppData\Local\Spotify
2015-03-09 12:45 . 2015-03-17 15:56 -------- d-----w- d:\users\Rob\AppData\Roaming\Spotify
2015-03-09 06:59 . 2015-03-11 13:57 -------- d-----w- d:\users\Rob\AppData\Local\Deployment
2015-03-09 06:59 . 2015-03-09 06:59 -------- d-----w- d:\users\Rob\AppData\Local\Apps
2015-03-09 06:51 . 2015-03-17 16:12 -------- d-----w- d:\users\Rob\AppData\Local\assembly
2015-03-08 08:44 . 2015-03-08 08:44 129752 ----a-w- d:\windows\system32\drivers\MBAMSwissArmy.sys
2015-03-08 08:44 . 2014-11-21 05:14 63704 ----a-w- d:\windows\system32\drivers\mwac.sys
2015-03-08 08:44 . 2014-11-21 05:14 93400 ----a-w- d:\windows\system32\drivers\mbamchameleon.sys
2015-03-08 08:43 . 2015-03-08 08:44 -------- d-----w- d:\users\Rob\AppData\Roaming\Malwarebytes
2015-03-08 08:43 . 2015-03-08 08:44 -------- d-----w- d:\programdata\Malwarebytes
2015-03-08 08:43 . 2014-11-21 05:14 25816 ----a-w- d:\windows\system32\drivers\mbam.sys
2015-03-03 19:55 . 2015-01-09 03:14 91136 ----a-w- d:\windows\system32\wdi.dll
2015-03-03 19:55 . 2015-01-09 03:14 950272 ----a-w- d:\windows\system32\perftrack.dll
2015-03-03 19:55 . 2015-01-09 03:14 29696 ----a-w- d:\windows\system32\powertracker.dll
2015-03-03 19:55 . 2015-01-09 02:48 76800 ----a-w- d:\windows\SysWow64\wdi.dll
2015-03-03 17:45 . 2015-03-03 17:49 -------- d-----w- d:\users\Rob\AppData\Local\DayZ
2015-03-03 17:44 . 2015-03-05 20:44 -------- d-----w- d:\program files (x86)\Common Files\BattlEye
2015-03-03 14:27 . 2015-03-09 07:40 -------- d-----w- D:\Stream
2015-03-03 13:22 . 2015-03-12 10:25 -------- d-----w- d:\users\Rob\AppData\Roaming\OBS
2015-03-03 13:22 . 2015-03-03 13:22 -------- d-----w- d:\program files\OBS
2015-03-03 13:22 . 2015-03-12 07:01 -------- d-----w- d:\program files (x86)\OBS
2015-03-03 13:03 . 2015-03-03 13:03 -------- d-----w- d:\program files (x86)\Common Files\Java
2015-03-03 13:03 . 2015-03-03 13:02 98216 ----a-w- d:\windows\SysWow64\WindowsAccessBridge-32.dll
2015-03-03 13:01 . 2015-03-03 13:01 -------- d-----w- d:\programdata\Oracle
2015-03-03 13:01 . 2015-03-03 13:01 -------- d-----w- d:\program files (x86)\Java
2015-03-03 08:49 . 2015-03-03 08:49 -------- d-----w- d:\users\Rob\AppData\Roaming\AVAST Software
2015-03-03 08:49 . 2015-03-03 08:49 -------- d-----w- d:\windows\SysWow64\vbox
2015-03-03 08:49 . 2015-03-03 08:49 -------- d-----w- d:\windows\system32\vbox
2015-03-03 08:48 . 2015-03-03 08:48 -------- d-----w- d:\program files\Google
2015-03-03 08:47 . 2015-03-03 08:46 136752 ----a-w- d:\windows\system32\drivers\aswStm.sys
2015-03-03 08:47 . 2015-03-03 08:46 268640 ----a-w- d:\windows\system32\drivers\aswVmm.sys
2015-03-03 08:47 . 2015-03-03 08:46 65736 ----a-w- d:\windows\system32\drivers\aswRvrt.sys
2015-03-03 08:47 . 2015-03-03 08:46 441728 ----a-w- d:\windows\system32\drivers\aswSP.sys
2015-03-03 08:47 . 2015-03-03 08:46 88408 ----a-w- d:\windows\system32\drivers\aswMonFlt.sys
2015-03-03 08:47 . 2015-03-03 08:46 29168 ----a-w- d:\windows\system32\drivers\aswHwid.sys
2015-03-03 08:47 . 2015-03-03 08:46 93528 ----a-w- d:\windows\system32\drivers\aswRdr2.sys
2015-03-03 08:47 . 2015-03-03 08:46 1047320 ----a-w- d:\windows\system32\drivers\aswSnx.sys
2015-03-03 08:47 . 2015-03-03 08:46 364472 ----a-w- d:\windows\system32\aswBoot.exe
2015-03-03 08:46 . 2015-03-03 08:46 43112 ----a-w- d:\windows\avastSS.scr
2015-03-03 08:45 . 2015-03-03 08:45 -------- d-----w- d:\programdata\AVAST Software
2015-03-03 08:01 . 2015-03-05 20:28 -------- d-----w- d:\program files\trend micro
2015-03-03 08:01 . 2015-03-03 08:05 -------- d-----w- D:\rsit
2015-03-02 23:31 . 2015-03-02 23:31 -------- d-----w- d:\users\Rob\AppData\Local\Blizzard
2015-03-02 21:08 . 2015-03-02 21:08 -------- d-----w- d:\users\Rob\AppData\Local\Steam
2015-03-02 19:02 . 2015-03-02 19:02 -------- d-----w- d:\users\Rob\AppData\Roaming\ArcSoft
2015-03-02 19:00 . 2015-03-02 19:15 -------- d-----w- d:\programdata\ArcSoft
2015-03-02 18:59 . 2010-11-11 17:40 80448 ----a-w- d:\windows\system32\MMCEDT5.exe
2015-03-02 18:59 . 2010-09-21 08:07 312184 ----a-w- d:\windows\system32\drivers\ArcSec.sys
2015-02-27 21:30 . 2015-02-27 21:30 -------- d-----w- d:\program files\Microsoft.NET
2015-02-27 14:37 . 2011-02-25 06:19 2871808 ----a-w- d:\windows\explorer.exe
2015-02-27 14:37 . 2011-02-25 05:30 2616320 ----a-w- d:\windows\SysWow64\explorer.exe
2015-02-27 14:37 . 2014-07-09 02:03 7168 ----a-w- d:\windows\system32\KBDYAK.DLL
2015-02-27 14:37 . 2014-07-09 02:03 7168 ----a-w- d:\windows\system32\KBDTAT.DLL
2015-02-27 14:37 . 2014-07-09 02:03 7168 ----a-w- d:\windows\system32\KBDRU1.DLL
2015-02-27 14:37 . 2014-07-09 02:03 6656 ----a-w- d:\windows\system32\KBDRU.DLL
2015-02-27 14:37 . 2014-07-09 02:03 7168 ----a-w- d:\windows\system32\KBDBASH.DLL
2015-02-27 14:37 . 2014-07-09 01:31 7168 ----a-w- d:\windows\SysWow64\KBDYAK.DLL
2015-02-27 14:37 . 2014-07-09 01:31 6656 ----a-w- d:\windows\SysWow64\KBDBASH.DLL
2015-02-27 14:36 . 2011-03-11 06:41 148352 ----a-w- d:\windows\system32\drivers\nvraid.sys
2015-02-27 14:36 . 2011-03-11 06:41 410496 ----a-w- d:\windows\system32\drivers\iaStorV.sys
2015-02-27 14:36 . 2011-03-11 06:41 27008 ----a-w- d:\windows\system32\drivers\amdxata.sys
2015-02-27 14:36 . 2011-03-11 06:33 2565632 ----a-w- d:\windows\system32\esent.dll
2015-02-27 14:36 . 2011-03-11 06:30 96768 ----a-w- d:\windows\system32\fsutil.exe
2015-02-27 14:36 . 2011-03-11 05:33 1699328 ----a-w- d:\windows\SysWow64\esent.dll
2015-02-27 14:36 . 2011-03-11 06:41 166272 ----a-w- d:\windows\system32\drivers\nvstor.sys
2015-02-27 14:36 . 2011-03-11 06:41 107904 ----a-w- d:\windows\system32\drivers\amdsata.sys
2015-02-27 14:36 . 2011-03-11 05:31 74240 ----a-w- d:\windows\SysWow64\fsutil.exe
2015-02-27 14:36 . 2011-03-11 04:37 91648 ----a-w- d:\windows\system32\drivers\USBSTOR.SYS
2015-02-27 14:36 . 2012-02-11 06:36 559104 ----a-w- d:\windows\system32\spoolsv.exe
2015-02-27 14:36 . 2012-02-11 06:36 67072 ----a-w- d:\windows\splwow64.exe
2015-02-27 07:39 . 2015-02-27 07:39 -------- d-----w- d:\windows\SysWow64\Wat
2015-02-27 07:39 . 2015-02-27 07:39 -------- d-----w- d:\windows\system32\Wat
2015-02-27 00:11 . 2012-07-26 03:08 229888 ----a-w- d:\windows\system32\WUDFHost.exe
2015-02-27 00:11 . 2012-07-26 03:08 84992 ----a-w- d:\windows\system32\WUDFSvc.dll
2015-02-27 00:11 . 2012-07-26 03:08 744448 ----a-w- d:\windows\system32\WUDFx.dll
2015-02-27 00:11 . 2012-07-26 03:08 45056 ----a-w- d:\windows\system32\WUDFCoinstaller.dll
2015-02-27 00:11 . 2012-07-26 03:08 194048 ----a-w- d:\windows\system32\WUDFPlatform.dll
2015-02-27 00:11 . 2012-07-26 02:26 87040 ----a-w- d:\windows\system32\drivers\WUDFPf.sys
2015-02-27 00:11 . 2012-07-26 02:26 198656 ----a-w- d:\windows\system32\drivers\WUDFRd.sys
2015-02-27 00:10 . 2015-02-27 00:10 -------- d-----w- d:\users\Default\AppData\Local\Microsoft Help
2015-02-26 23:55 . 2014-06-27 02:08 2777088 ----a-w- d:\windows\system32\msmpeg2vdec.dll
2015-02-26 23:55 . 2014-06-27 01:45 2285056 ----a-w- d:\windows\SysWow64\msmpeg2vdec.dll
2015-02-26 22:53 . 2015-02-26 22:53 -------- d-----w- D:\Networking
2015-02-26 21:21 . 2015-02-26 21:21 71344 ----a-w- d:\windows\SysWow64\FlashPlayerCPLApp.cpl
2015-02-26 21:21 . 2015-02-26 21:21 701616 ----a-w- d:\windows\SysWow64\FlashPlayerApp.exe
2015-02-26 21:21 . 2015-02-26 21:21 -------- d-----w- d:\windows\SysWow64\Macromed
2015-02-26 21:21 . 2015-02-26 21:21 -------- d-----w- d:\windows\system32\Macromed
2015-02-26 20:38 . 2015-03-03 08:39 -------- d-----w- d:\programdata\Spybot - Search & Destroy
2015-02-26 20:38 . 2015-03-04 11:43 -------- d-----w- d:\program files (x86)\Spybot - Search & Destroy 2
2015-02-26 16:39 . 2014-12-11 17:47 52736 ----a-w- d:\windows\system32\TSWbPrxy.exe
2015-02-26 16:39 . 2015-02-04 03:16 609280 ----a-w- d:\windows\system32\generaltel.dll
2015-02-26 16:39 . 2015-02-04 03:16 762368 ----a-w- d:\windows\system32\invagent.dll
2015-02-26 16:39 . 2015-02-04 03:16 414720 ----a-w- d:\windows\system32\devinv.dll
2015-02-26 16:39 . 2015-02-04 03:16 894976 ----a-w- d:\windows\system32\appraiser.dll
2015-02-26 16:39 . 2015-02-04 03:13 1098752 ----a-w- d:\windows\system32\aeinv.dll
2015-02-26 16:39 . 2015-01-27 23:36 1239720 ----a-w- d:\windows\system32\aitstatic.exe
2015-02-26 16:39 . 2015-02-04 03:16 227328 ----a-w- d:\windows\system32\aepdu.dll
2015-02-26 16:39 . 2015-02-04 03:16 192000 ----a-w- d:\windows\system32\aepic.dll
2015-02-26 16:39 . 2014-12-19 03:06 210432 ----a-w- d:\windows\system32\profsvc.dll
2015-02-26 16:37 . 2014-12-06 04:17 303616 ----a-w- d:\windows\system32\nlasvc.dll
2015-02-26 16:37 . 2014-12-06 03:50 52224 ----a-w- d:\windows\SysWow64\nlaapi.dll
2015-02-26 16:37 . 2014-12-06 03:50 156672 ----a-w- d:\windows\SysWow64\ncsi.dll
2015-02-26 16:37 . 2014-12-19 01:46 141312 ----a-w- d:\windows\system32\drivers\mrxdav.sys
2015-02-26 16:35 . 2014-11-26 03:53 861696 ----a-w- d:\windows\system32\oleaut32.dll
2015-02-26 16:35 . 2014-11-26 03:32 571904 ----a-w- d:\windows\SysWow64\oleaut32.dll
2015-02-26 16:35 . 2014-10-04 02:10 3722752 ----a-w- d:\windows\system32\mstscax.dll
2015-02-26 16:35 . 2014-10-04 01:42 3221504 ----a-w- d:\windows\SysWow64\mstscax.dll
2015-02-26 16:35 . 2014-10-04 01:42 131584 ----a-w- d:\windows\SysWow64\aaclient.dll
2015-02-26 16:34 . 2014-12-08 03:09 406528 ----a-w- d:\windows\system32\scesrv.dll
2015-02-26 16:34 . 2014-12-08 02:46 308224 ----a-w- d:\windows\SysWow64\scesrv.dll
2015-02-26 15:28 . 2015-02-26 15:28 -------- d-----w- d:\users\Rob\AppData\Local\Microsoft Toolkit
2015-02-26 15:21 . 2015-02-26 15:21 -------- d-----w- d:\program files\Common Files\DESIGNER
2015-02-26 15:21 . 2015-02-26 15:21 -------- d-----w- d:\program files (x86)\Microsoft SQL Server
2015-02-26 15:21 . 2015-02-26 15:21 -------- d-----w- d:\programdata\regid.1991-06.com.microsoft
2015-02-26 15:20 . 2015-02-26 15:21 -------- d-----w- d:\program files\Microsoft SQL Server
2015-02-26 15:20 . 2015-02-26 15:20 -------- d-----w- d:\windows\PCHEALTH
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2015-03-17 15:55 . 2014-12-22 11:49 25640 ----a-w- d:\windows\gdrv.sys
2015-03-17 13:36 . 2014-12-20 13:00 65536 ----a-w- d:\windows\system32\spu_storage.bin
2015-02-24 02:17 . 2014-12-20 13:19 295552 ------w- d:\windows\system32\MpSigStub.exe
2015-02-16 15:20 . 2015-01-29 17:02 33856 ---ha-w- d:\windows\system32\hamachi.sys
2015-01-29 16:49 . 2014-12-20 19:28 116773704 ----a-w- d:\windows\system32\MRT.exe
2015-01-13 22:20 . 2014-12-23 17:32 189248 ----a-w- d:\windows\SysWow64\PnkBstrB.exe
2015-01-13 22:20 . 2014-12-23 17:32 189248 ----a-w- d:\windows\SysWow64\PnkBstrB.ex0
2015-01-13 22:20 . 2014-12-23 17:32 75136 ----a-w- d:\windows\SysWow64\PnkBstrA.exe
2015-01-11 13:49 . 2015-01-11 02:48 43520 ----a-w- d:\windows\SysWow64\CmdLineExt03.dll
2015-01-11 02:33 . 2015-01-11 02:33 21840 ----a-w- d:\windows\SysWow64\SIntfNT.dll
2015-01-11 02:33 . 2015-01-11 02:33 17212 ----a-w- d:\windows\SysWow64\SIntf32.dll
2015-01-11 02:33 . 2015-01-11 02:33 12067 ----a-w- d:\windows\SysWow64\SIntf16.dll
2015-01-10 12:55 . 2009-08-18 11:49 564632 ----a-w- d:\programdata\Microsoft\IdentityCRL\production\wlidui.dll
2015-01-10 12:55 . 2009-08-18 10:24 23256 ----a-w- d:\programdata\Microsoft\IdentityCRL\production\ppcrlconfig600.dll
2015-01-10 12:39 . 2015-01-10 12:25 466456 ----a-w- d:\windows\system32\wrap_oal.dll
2015-01-10 12:39 . 2015-01-10 12:25 444952 ----a-w- d:\windows\SysWow64\wrap_oal.dll
2015-01-10 12:39 . 2015-01-10 12:25 122904 ----a-w- d:\windows\system32\OpenAL32.dll
2015-01-10 12:39 . 2015-01-10 12:25 109080 ----a-w- d:\windows\SysWow64\OpenAL32.dll
2015-01-04 17:39 . 2015-01-04 17:39 281688 ----a-w- d:\windows\SysWow64\PnkBstrB.xtr
2014-12-24 22:50 . 2014-12-24 22:50 76152 ----a-w- d:\windows\system32\PnkBstrA.exe
2014-12-23 17:51 . 2014-12-23 17:51 194048 ----a-w- d:\windows\SysWow64\elshyph.dll
2014-12-23 17:51 . 2014-12-23 17:51 942592 ----a-w- d:\windows\system32\jsIntl.dll
2014-12-23 17:51 . 2014-12-23 17:51 90112 ----a-w- d:\windows\system32\SetIEInstalledDate.exe
2014-12-23 17:51 . 2014-12-23 17:51 86016 ----a-w- d:\windows\SysWow64\iesysprep.dll
2014-12-23 17:51 . 2014-12-23 17:51 86016 ----a-w- d:\windows\system32\RegisterIEPKEYs.exe
2014-12-23 17:51 . 2014-12-23 17:51 81408 ----a-w- d:\windows\system32\icardie.dll
2014-12-23 17:51 . 2014-12-23 17:51 774144 ----a-w- d:\windows\system32\jscript.dll
2014-12-23 17:51 . 2014-12-23 17:51 77312 ----a-w- d:\windows\system32\tdc.ocx
2014-12-23 17:51 . 2014-12-23 17:51 74240 ----a-w- d:\windows\SysWow64\SetIEInstalledDate.exe
2014-12-23 17:51 . 2014-12-23 17:51 71680 ----a-w- d:\windows\SysWow64\RegisterIEPKEYs.exe
2014-12-23 17:51 . 2014-12-23 17:51 645120 ----a-w- d:\windows\SysWow64\jsIntl.dll
2014-12-23 17:51 . 2014-12-23 17:51 62464 ----a-w- d:\windows\SysWow64\tdc.ocx
2014-12-23 17:51 . 2014-12-23 17:51 62464 ----a-w- d:\windows\system32\pngfilt.dll
2014-12-23 17:51 . 2014-12-23 17:51 616104 ----a-w- d:\windows\system32\ieapfltr.dat
2014-12-23 17:51 . 2014-12-23 17:51 52224 ----a-w- d:\windows\system32\msfeedsbs.dll
2014-12-23 17:51 . 2014-12-23 17:51 48640 ----a-w- d:\windows\SysWow64\mshtmler.dll
2014-12-23 17:51 . 2014-12-23 17:51 48640 ----a-w- d:\windows\system32\mshtmler.dll
2014-12-23 17:51 . 2014-12-23 17:51 48128 ----a-w- d:\windows\system32\imgutil.dll
2014-12-23 17:51 . 2014-12-23 17:51 413696 ----a-w- d:\windows\system32\html.iec
2014-12-23 17:51 . 2014-12-23 17:51 36352 ----a-w- d:\windows\SysWow64\imgutil.dll
2014-12-23 17:51 . 2014-12-23 17:51 337408 ----a-w- d:\windows\SysWow64\html.iec
2014-12-23 17:51 . 2014-12-23 17:51 30208 ----a-w- d:\windows\system32\licmgr10.dll
2014-12-23 17:51 . 2014-12-23 17:51 247808 ----a-w- d:\windows\system32\msls31.dll
2014-12-23 17:51 . 2014-12-23 17:51 24576 ----a-w- d:\windows\SysWow64\licmgr10.dll
2014-12-23 17:51 . 2014-12-23 17:51 243200 ----a-w- d:\windows\system32\webcheck.dll
2014-12-23 17:51 . 2014-12-23 17:51 235520 ----a-w- d:\windows\system32\url.dll
2014-12-23 17:51 . 2014-12-23 17:51 235008 ----a-w- d:\windows\system32\elshyph.dll
2014-12-23 17:51 . 2014-12-23 17:51 182272 ----a-w- d:\windows\SysWow64\msls31.dll
2014-12-23 17:51 . 2014-12-23 17:51 167424 ----a-w- d:\windows\system32\iexpress.exe
2014-12-23 17:51 . 2014-12-23 17:51 151552 ----a-w- d:\windows\SysWow64\iexpress.exe
2014-12-23 17:51 . 2014-12-23 17:51 147968 ----a-w- d:\windows\system32\occache.dll
2014-12-23 17:51 . 2014-12-23 17:51 143872 ----a-w- d:\windows\system32\wextract.exe
2014-12-23 17:51 . 2014-12-23 17:51 139264 ----a-w- d:\windows\SysWow64\wextract.exe
2014-12-23 17:51 . 2014-12-23 17:51 13824 ----a-w- d:\windows\system32\mshta.exe
2014-12-23 17:51 . 2014-12-23 17:51 135680 ----a-w- d:\windows\system32\iepeers.dll
2014-12-23 17:51 . 2014-12-23 17:51 13312 ----a-w- d:\windows\SysWow64\mshta.exe
2014-12-23 17:51 . 2014-12-23 17:51 13312 ----a-w- d:\windows\system32\msfeedssync.exe
2014-12-23 17:51 . 2014-12-23 17:51 131072 ----a-w- d:\windows\system32\IEAdvpack.dll
2014-12-23 17:51 . 2014-12-23 17:51 111616 ----a-w- d:\windows\SysWow64\IEAdvpack.dll
2014-12-23 17:51 . 2014-12-23 17:51 105984 ----a-w- d:\windows\system32\iesysprep.dll
2014-12-23 17:51 . 2014-12-23 17:51 101376 ----a-w- d:\windows\system32\inseng.dll
2014-12-23 17:48 . 2014-12-23 17:48 9728 ---ha-w- d:\windows\SysWow64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2014-12-23 17:48 . 2014-12-23 17:48 9728 ---ha-w- d:\windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2014-12-23 17:48 . 2014-12-23 17:48 648192 ----a-w- d:\windows\system32\d3d10level9.dll
2014-12-23 17:48 . 2014-12-23 17:48 604160 ----a-w- d:\windows\SysWow64\d3d10level9.dll
2014-12-23 17:48 . 2014-12-23 17:48 5632 ---ha-w- d:\windows\SysWow64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2014-12-23 17:48 . 2014-12-23 17:48 5632 ---ha-w- d:\windows\SysWow64\api-ms-win-downlevel-ole32-l1-1-0.dll
2014-12-23 17:48 . 2014-12-23 17:48 5632 ---ha-w- d:\windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2014-12-23 17:48 . 2014-12-23 17:48 5632 ---ha-w- d:\windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2014-12-23 17:48 . 2014-12-23 17:48 522752 ----a-w- d:\windows\system32\XpsGdiConverter.dll
2014-12-23 17:48 . 2014-12-23 17:48 4096 ---ha-w- d:\windows\SysWow64\api-ms-win-downlevel-user32-l1-1-0.dll
2014-12-23 17:48 . 2014-12-23 17:48 4096 ---ha-w- d:\windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2014-12-23 17:48 . 2014-12-23 17:48 364544 ----a-w- d:\windows\SysWow64\XpsGdiConverter.dll
2014-12-23 17:48 . 2014-12-23 17:48 363008 ----a-w- d:\windows\system32\dxgi.dll
2014-12-23 17:48 . 2014-12-23 17:48 3584 ---ha-w- d:\windows\SysWow64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2014-12-23 17:48 . 2014-12-23 17:48 3584 ---ha-w- d:\windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2014-12-23 17:48 . 2014-12-23 17:48 333312 ----a-w- d:\windows\system32\d3d10_1core.dll
2014-12-23 17:48 . 2014-12-23 17:48 3072 ---ha-w- d:\windows\SysWow64\api-ms-win-downlevel-version-l1-1-0.dll
2014-12-23 17:48 . 2014-12-23 17:48 3072 ---ha-w- d:\windows\SysWow64\api-ms-win-downlevel-shell32-l1-1-0.dll
2014-12-23 17:48 . 2014-12-23 17:48 3072 ---ha-w- d:\windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2014-12-23 17:48 . 2014-12-23 17:48 3072 ---ha-w- d:\windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2014-12-23 17:48 . 2014-12-23 17:48 296960 ----a-w- d:\windows\system32\d3d10core.dll
2014-12-23 17:48 . 2014-12-23 17:48 293376 ----a-w- d:\windows\SysWow64\dxgi.dll
2014-12-23 17:48 . 2014-12-23 17:48 2560 ---ha-w- d:\windows\SysWow64\api-ms-win-downlevel-normaliz-l1-1-0.dll
2014-12-23 17:48 . 2014-12-23 17:48 2560 ---ha-w- d:\windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2014-12-23 17:48 . 2014-12-23 17:48 249856 ----a-w- d:\windows\SysWow64\d3d10_1core.dll
2014-12-23 17:48 . 2014-12-23 17:48 245248 ----a-w- d:\windows\system32\WindowsCodecsExt.dll
2014-12-23 17:48 . 2014-12-23 17:48 221184 ----a-w- d:\windows\system32\UIAnimation.dll
2014-12-23 17:48 . 2014-12-23 17:48 220160 ----a-w- d:\windows\SysWow64\d3d10core.dll
2014-12-23 17:48 . 2014-12-23 17:48 207872 ----a-w- d:\windows\SysWow64\WindowsCodecsExt.dll
2014-12-23 17:48 . 2014-12-23 17:48 194560 ----a-w- d:\windows\system32\d3d10_1.dll
2014-12-23 17:48 . 2014-12-23 17:48 187392 ----a-w- d:\windows\SysWow64\UIAnimation.dll
2014-12-23 17:48 . 2014-12-23 17:48 1682432 ----a-w- d:\windows\system32\XpsPrint.dll
2014-12-23 17:48 . 2014-12-23 17:48 161792 ----a-w- d:\windows\SysWow64\d3d10_1.dll
2014-12-23 17:48 . 2014-12-23 17:48 1238528 ----a-w- d:\windows\system32\d3d10.dll
2014-12-23 17:48 . 2014-12-23 17:48 1175552 ----a-w- d:\windows\system32\FntCache.dll
2014-12-23 17:48 . 2014-12-23 17:48 1158144 ----a-w- d:\windows\SysWow64\XpsPrint.dll
2014-12-23 17:48 . 2014-12-23 17:48 1080832 ----a-w- d:\windows\SysWow64\d3d10.dll
2014-12-23 17:48 . 2014-12-23 17:48 10752 ---ha-w- d:\windows\SysWow64\api-ms-win-downlevel-advapi32-l1-1-0.dll
2014-12-23 17:48 . 2014-12-23 17:48 10752 ---ha-w- d:\windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrivePro1 (ErrorConflict)]
@="{8BA85C75-763B-4103-94EB-9470F12FE0F7}"
[HKEY_CLASSES_ROOT\CLSID\{8BA85C75-763B-4103-94EB-9470F12FE0F7}]
2015-01-21 14:05 1729744 ----a-w- d:\progra~2\MICROS~3\Office15\GROOVEEX.DLL
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrivePro2 (SyncInProgress)]
@="{CD55129A-B1A1-438E-A425-CEBC7DC684EE}"
[HKEY_CLASSES_ROOT\CLSID\{CD55129A-B1A1-438E-A425-CEBC7DC684EE}]
2015-01-21 14:05 1729744 ----a-w- d:\progra~2\MICROS~3\Office15\GROOVEEX.DLL
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrivePro3 (InSync)]
@="{E768CD3B-BDDC-436D-9C13-E1B39CA257B1}"
[HKEY_CLASSES_ROOT\CLSID\{E768CD3B-BDDC-436D-9C13-E1B39CA257B1}]
2015-01-21 14:05 1729744 ----a-w- d:\progra~2\MICROS~3\Office15\GROOVEEX.DLL
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CCleaner Monitoring"="d:\program files\CCleaner\CCleaner64.exe" [2014-12-12 7394584]
"Spotify Web Helper"="d:\users\Rob\AppData\Roaming\Spotify\SpotifyWebHelper.exe" [2015-03-11 1959992]
"Spotify"="d:\users\Rob\AppData\Roaming\Spotify\Spotify.exe" [2015-03-11 6611512]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"Adobe ARM"="d:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2014-12-19 1022152]
"AvastUI.exe"="d:\programy\Avast\AvastUI.exe" [2015-03-15 5512912]
"SunJavaUpdateSched"="d:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2014-12-17 508800]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\RunOnce]
"PreRun"="d:\program files (x86)\Gigabyte\AppCenter\PreRun.exe" [2013-04-29 8192]
.
d:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
TotalMedia Server.lnk - d:\programy\Total Media Theatre 5\TotalMedia Server\TM Server.exe [2010-11-10 519744]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
"SoftwareSASGeneration"= 1 (0x1)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows]
"LoadAppInit_DLLs"=1 (0x1)
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute REG_MULTI_SZ autocheck autochk *\0sdnclean64.exe
.
R2 aswStm;aswStm;d:\windows\system32\drivers\aswStm.sys;d:\windows\SYSNATIVE\drivers\aswStm.sys [x]
R2 BstHdAndroidSvc;BlueStacks Android Service;d:\program files (x86)\BlueStacks\HD-Service.exe BstHdAndroidSvc Android;d:\program files (x86)\BlueStacks\HD-Service.exe BstHdAndroidSvc Android [x]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;d:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;d:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x]
R2 SkypeUpdate;Skype Updater;d:\program files (x86)\Skype\Updater\Updater.exe;d:\program files (x86)\Skype\Updater\Updater.exe [x]
R3 ALSysIO;ALSysIO;d:\users\Rob\AppData\Local\Temp\ALSysIO64.sys;d:\users\Rob\AppData\Local\Temp\ALSysIO64.sys [x]
R3 BEService;BattlEye Service;d:\program files (x86)\Common Files\BattlEye\BEService.exe;d:\program files (x86)\Common Files\BattlEye\BEService.exe [x]
R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;d:\windows\system32\IEEtwCollector.exe;d:\windows\SYSNATIVE\IEEtwCollector.exe [x]
R3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface;d:\program files\Intel\iCLS Client\SocketHeciServer.exe;d:\program files\Intel\iCLS Client\SocketHeciServer.exe [x]
R3 npggsvc;nProtect GameGuard Service;d:\windows\system32\GameMon.des;d:\windows\SYSNATIVE\GameMon.des [x]
R3 Origin Client Service;Origin Client Service;e:\hry\Origin\OriginClientService.exe;e:\hry\Origin\OriginClientService.exe [x]
R3 ose64;Office 64 Source Engine;d:\program files\Common Files\Microsoft Shared\Source Engine\OSE.EXE;d:\program files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [x]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;d:\windows\system32\drivers\rdpvideominiport.sys;d:\windows\SYSNATIVE\drivers\rdpvideominiport.sys [x]
R3 Synth3dVsc;Synth3dVsc;d:\windows\system32\drivers\synth3dvsc.sys;d:\windows\SYSNATIVE\drivers\synth3dvsc.sys [x]
R3 TsUsbFlt;TsUsbFlt;d:\windows\system32\drivers\tsusbflt.sys;d:\windows\SYSNATIVE\drivers\tsusbflt.sys [x]
R3 tsusbhub;tsusbhub;d:\windows\system32\drivers\tsusbhub.sys;d:\windows\SYSNATIVE\drivers\tsusbhub.sys [x]
R3 VGPU;VGPU;d:\windows\system32\drivers\rdvgkmd.sys;d:\windows\SYSNATIVE\drivers\rdvgkmd.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;d:\windows\system32\Wat\WatAdminSvc.exe;d:\windows\SYSNATIVE\Wat\WatAdminSvc.exe [x]
R3 X6va017;X6va017;d:\windows\SysWOW64\Drivers\X6va017;d:\windows\SysWOW64\Drivers\X6va017 [x]
S0 aswRvrt;avast! Revert; [x]
S0 aswVmm;avast! VM Monitor; [x]
S0 iaStorA;iaStorA;d:\windows\system32\DRIVERS\iaStorA.sys;d:\windows\SYSNATIVE\DRIVERS\iaStorA.sys [x]
S0 iaStorF;iaStorF;d:\windows\system32\DRIVERS\iaStorF.sys;d:\windows\SYSNATIVE\DRIVERS\iaStorF.sys [x]
S0 iusb3hcs;Ovladač přepínání hostitelského řadiče Intel(R) USB 3.0;d:\windows\system32\DRIVERS\iusb3hcs.sys;d:\windows\SYSNATIVE\DRIVERS\iusb3hcs.sys [x]
S1 ArcSec;archlp;d:\windows\system32\drivers\ArcSec.sys;d:\windows\SYSNATIVE\drivers\ArcSec.sys [x]
S1 aswSnx;aswSnx;d:\windows\system32\drivers\aswSnx.sys;d:\windows\SYSNATIVE\drivers\aswSnx.sys [x]
S1 aswSP;aswSP;d:\windows\system32\drivers\aswSP.sys;d:\windows\SYSNATIVE\drivers\aswSP.sys [x]
S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;d:\windows\system32\DRIVERS\dtsoftbus01.sys;d:\windows\SYSNATIVE\DRIVERS\dtsoftbus01.sys [x]
S2 AMD External Events Utility;AMD External Events Utility;d:\windows\system32\atiesrxx.exe;d:\windows\SYSNATIVE\atiesrxx.exe [x]
S2 amdacpksd;ACP Kernel Service Driver;d:\windows\system32\drivers\amdacpksd.sys;d:\windows\SYSNATIVE\drivers\amdacpksd.sys [x]
S2 amdacpusrsvc;ACP User Service;d:\program files\AMD\{920DEC42-4CA5-4d1d-9487-67BE645CDDFC}\amdacpusrsvc.exe;d:\program files\AMD\{920DEC42-4CA5-4d1d-9487-67BE645CDDFC}\amdacpusrsvc.exe [x]
S2 aswHwid;avast! HardwareID;d:\windows\system32\drivers\aswHwid.sys;d:\windows\SYSNATIVE\drivers\aswHwid.sys [x]
S2 aswMonFlt;aswMonFlt;d:\windows\system32\drivers\aswMonFlt.sys;d:\windows\SYSNATIVE\drivers\aswMonFlt.sys [x]
S2 BstHdDrv;BlueStacks Hypervisor;d:\program files (x86)\BlueStacks\HD-Hypervisor-amd64.sys;d:\program files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [x]
S2 BstHdLogRotatorSvc;BlueStacks Log Rotator Service;d:\program files (x86)\BlueStacks\HD-LogRotatorService.exe;d:\program files (x86)\BlueStacks\HD-LogRotatorService.exe [x]
S2 BstHdUpdaterSvc;BlueStacks Updater Service;d:\program files (x86)\BlueStacks\HD-UpdaterService.exe;d:\program files (x86)\BlueStacks\HD-UpdaterService.exe [x]
S2 gadjservice;GIGABYTE Adjust;d:\program files (x86)\Gigabyte\AppCenter\AdjustService.exe;d:\program files (x86)\Gigabyte\AppCenter\AdjustService.exe [x]
S2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine;d:\programy\Hamachi\hamachi-2.exe;d:\programy\Hamachi\hamachi-2.exe [x]
S2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology;d:\program files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe;d:\program files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [x]
S2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service;d:\windows\system32\igfxCUIService.exe;d:\windows\SYSNATIVE\igfxCUIService.exe [x]
S2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface;d:\program files\Intel\iCLS Client\HeciServer.exe;d:\program files\Intel\iCLS Client\HeciServer.exe [x]
S2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service;d:\program files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe;d:\program files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [x]
S2 VBoxAswDrv;VBoxAsw Support Driver;d:\programy\Avast\ng\vbox\VBoxAswDrv.sys;d:\programy\Avast\ng\vbox\VBoxAswDrv.sys [x]
S3 AtiHDAudioService;AMD Function Driver for HD Audio Service;d:\windows\system32\drivers\AtihdW76.sys;d:\windows\SYSNATIVE\drivers\AtihdW76.sys [x]
S3 AvastVBoxSvc;AvastVBox COM Service;d:\programy\Avast\ng\vbox\AvastVBoxSVC.exe;d:\programy\Avast\ng\vbox\AvastVBoxSVC.exe [x]
S3 IntcDAud;Intel(R) Display Audio;d:\windows\system32\DRIVERS\IntcDAud.sys;d:\windows\SYSNATIVE\DRIVERS\IntcDAud.sys [x]
S3 iusb3hub;Ovladač rozbočovače Intel(R) USB 3.0;d:\windows\system32\DRIVERS\iusb3hub.sys;d:\windows\SYSNATIVE\DRIVERS\iusb3hub.sys [x]
S3 iusb3xhc;Ovladač rozšiřitelného hostitelského řadiče Intel(R) USB 3.0;d:\windows\system32\DRIVERS\iusb3xhc.sys;d:\windows\SYSNATIVE\DRIVERS\iusb3xhc.sys [x]
S3 RTL8167;Realtek 8167 NT Driver;d:\windows\system32\DRIVERS\Rt64win7.sys;d:\windows\SYSNATIVE\DRIVERS\Rt64win7.sys [x]
.
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2015-03-12 14:01 1061704 ----a-w- d:\program files (x86)\Google\Chrome\Application\41.0.2272.89\Installer\chrmstp.exe
.
Obsah adresáře 'Naplánované úlohy'
.
2015-03-17 d:\windows\Tasks\Adobe Flash Player Updater.job
- d:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-02-26 21:21]
.
2015-03-17 d:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- d:\program files (x86)\Google\Update\GoogleUpdate.exe [2014-12-20 12:44]
.
2015-03-17 d:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- d:\program files (x86)\Google\Update\GoogleUpdate.exe [2014-12-20 12:44]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrivePro1 (ErrorConflict)]
@="{8BA85C75-763B-4103-94EB-9470F12FE0F7}"
[HKEY_CLASSES_ROOT\CLSID\{8BA85C75-763B-4103-94EB-9470F12FE0F7}]
2015-01-21 14:01 2334928 ----a-w- d:\programy\MICROS~1\Office15\GROOVEEX.DLL
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrivePro2 (SyncInProgress)]
@="{CD55129A-B1A1-438E-A425-CEBC7DC684EE}"
[HKEY_CLASSES_ROOT\CLSID\{CD55129A-B1A1-438E-A425-CEBC7DC684EE}]
2015-01-21 14:01 2334928 ----a-w- d:\programy\MICROS~1\Office15\GROOVEEX.DLL
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrivePro3 (InSync)]
@="{E768CD3B-BDDC-436D-9C13-E1B39CA257B1}"
[HKEY_CLASSES_ROOT\CLSID\{E768CD3B-BDDC-436D-9C13-E1B39CA257B1}]
2015-01-21 14:01 2334928 ----a-w- d:\programy\MICROS~1\Office15\GROOVEEX.DLL
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2015-03-03 08:46 722400 ----a-w- d:\programy\Avast\ashShA64.dll
.
------- Doplňkový sken -------
.
uLocal Page = d:\windows\system32\blank.htm
uStart Page = hxxp://www.seznam.cz/?clid=20808
mDefault_Search_URL = hxxp://www.google.com
mDefault_Page_URL = hxxp://www.google.com
mStart Page = hxxp://www.google.com
mLocal Page = d:\windows\SysWOW64\blank.htm
mSearch Page = hxxp://www.google.com
IE: E&xportovat do Microsoft Excelu - d:\programy\MICROS~1\Office15\EXCEL.EXE/3000
IE: Od&eslat do OneNotu - d:\programy\MICROS~1\Office15\ONBttnIE.dll/105
Trusted Zone: clonewarsadventures.com
Trusted Zone: freerealms.com
Trusted Zone: soe.com
Trusted Zone: sony.com
TCP: Interfaces\{3BE09598-9584-4013-A6F4-B8F50B4AABE1}: NameServer = 109.164.64.64,8.8.8.8
Filter: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - d:\program files (x86)\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
Wow6432Node-HKU-Default-RunOnce-SPReview - d:\windows\System32\SPReview\SPReview.exe
HKLM-Run-SpywareTerminatorShield - d:\program files (x86)\Spyware Terminator\SpywareTerminatorShield.exe
HKLM-Run-SpywareTerminatorUpdater - d:\program files (x86)\Spyware Terminator\SpywareTerminatorUpdate.exe
AddRemove-Shoppy-Up.2.7 - d:\program files (x86)\Shoppy-Up.2.7\Uninstall.exe
AddRemove-{AD11DADE-C597-45D9-D8C5-1D2EB0B89613} - d:\program files (x86)\My IP address\My IP address.exe
.
.
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\npggsvc]
"ImagePath"="d:\windows\system32\GameMon.des -service"
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\X6va017]
"ImagePath"="\??\d:\windows\SysWOW64\Drivers\X6va017"
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\SOFTWARE\BlueStacks]
"SymbolicLinkValue"=hex(6):5c,00,52,00,65,00,67,00,69,00,73,00,74,00,72,00,79,
00,5c,00,4d,00,61,00,63,00,68,00,69,00,6e,00,65,00,5c,00,53,00,6f,00,66,00,\
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@d:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_16_0_0_305_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\LocalServer32]
@="d:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_16_0_0_305_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}]
@Denied: (A 2) (Everyone)
@="IFlashBroker6"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@d:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_16_0_0_305_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\LocalServer32]
@="d:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_16_0_0_305_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Shockwave Flash Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="d:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_16_0_0_305.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
@="0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
@="ShockwaveFlash.ShockwaveFlash.16"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="d:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_16_0_0_305.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="ShockwaveFlash.ShockwaveFlash"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Macromedia Flash Factory Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="d:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_16_0_0_305.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
@="FlashFactory.FlashFactory.1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="d:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_16_0_0_305.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="FlashFactory.FlashFactory"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}]
@Denied: (A 2) (Everyone)
@="IFlashBroker6"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Celkový čas: 2015-03-17 17:15:56
ComboFix-quarantined-files.txt 2015-03-17 16:15
.
Před spuštěním: Volných bajtů: 362 150 961 152
Po spuštění: Volných bajtů: 362 310 897 664
.
- - End Of File - - B502E4A8341CCD9CACE8C73DA28FCB98
A36C5E4F47E84449FF07ED3517B43A31
ComboFix 15-02-09.01 - Rob 17.03.2015 17:07:31.1.4 - x64
Microsoft Windows 7 Ultimate 6.1.7601.1.1250.420.1029.18.3988.1726 [GMT 1:00]
Spuštěný z: d:\users\Rob\Downloads\ComboFix.exe
AV: avast! Antivirus *Disabled/Updated* {17AD7D40-BA12-9C46-7131-94903A54AD8B}
SP: avast! Antivirus *Disabled/Updated* {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
C:\install.exe
d:\program files (x86)\9b0a2a1e-3b76-4fee-bbe1-d53b372c4d05\a83aff2e-2191-4b0c-9293-1224e674c9ae.dll
d:\program files (x86)\AMD\9b0a2a1e-3b76-4fee-bbe1-d53b372c4d05.dll
d:\users\Rob\AppData\Local\assembly\tmp
d:\users\Rob\AppData\Local\Google\Chrome\User Data\Default\Extensions\monhkdcehmbdgkhgpccaccbbcgcfpjkd
d:\users\Rob\AppData\Local\Google\Chrome\User Data\Default\Extensions\monhkdcehmbdgkhgpccaccbbcgcfpjkd\179\background.html
d:\users\Rob\AppData\Local\Google\Chrome\User Data\Default\Extensions\monhkdcehmbdgkhgpccaccbbcgcfpjkd\179\content.js
d:\users\Rob\AppData\Local\Google\Chrome\User Data\Default\Extensions\monhkdcehmbdgkhgpccaccbbcgcfpjkd\179\lsdb.js
d:\users\Rob\AppData\Local\Google\Chrome\User Data\Default\Extensions\monhkdcehmbdgkhgpccaccbbcgcfpjkd\179\manifest.json
d:\users\Rob\AppData\Local\Google\Chrome\User Data\Default\Extensions\monhkdcehmbdgkhgpccaccbbcgcfpjkd\179\S5.js
d:\users\Rob\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_bahkkpfkokhckpekihbijeaklbgmidal_0.localstorage
d:\users\Rob\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_cbnbabbbhcdphbkpoopepmeiocpfmkmb_0.localstorage
d:\users\Rob\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_monhkdcehmbdgkhgpccaccbbcgcfpjkd_0.localstorage-journal
d:\users\Rob\AppData\Local\Google\Chrome\User Data\Default\Preferences
d:\windows\pkunzip.pif
d:\windows\pkzip.pif
d:\windows\SysWow64\X86
d:\windows\wininit.ini
E:\install.exe
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2015-02-17 do 2015-03-17 )))))))))))))))))))))))))))))))
.
.
2015-03-17 16:13 . 2015-03-17 16:13 -------- d-----w- d:\users\Default\AppData\Local\temp
2015-03-17 16:08 . 2015-03-17 16:08 75888 ----a-w- d:\programdata\Microsoft\Windows Defender\Definition Updates\{DC5CFD23-3E94-48A1-AE69-E54DF31E8E03}\offreg.dll
2015-03-17 07:37 . 2015-01-29 09:07 11910896 ----a-w- d:\programdata\Microsoft\Windows Defender\Definition Updates\{DC5CFD23-3E94-48A1-AE69-E54DF31E8E03}\mpengine.dll
2015-03-16 11:03 . 2015-03-16 11:11 -------- d-----w- d:\users\Rob\DreamBot
2015-03-12 09:28 . 2015-03-12 10:32 -------- d-----w- D:\KVRT_Data
2015-03-11 21:09 . 2015-03-11 21:19 -------- d-----w- d:\users\Rob\OSBuddy
2015-03-11 12:52 . 2015-02-03 03:33 616360 ----a-w- d:\windows\system32\winresume.efi
2015-03-11 12:51 . 2015-02-20 23:58 92160 ----a-w- d:\windows\system32\mshtmled.dll
2015-03-09 19:16 . 2015-03-09 19:41 -------- d-----w- d:\users\Rob\jagexcache
2015-03-09 12:45 . 2015-03-17 15:56 -------- d-----w- d:\users\Rob\AppData\Local\Spotify
2015-03-09 12:45 . 2015-03-17 15:56 -------- d-----w- d:\users\Rob\AppData\Roaming\Spotify
2015-03-09 06:59 . 2015-03-11 13:57 -------- d-----w- d:\users\Rob\AppData\Local\Deployment
2015-03-09 06:59 . 2015-03-09 06:59 -------- d-----w- d:\users\Rob\AppData\Local\Apps
2015-03-09 06:51 . 2015-03-17 16:12 -------- d-----w- d:\users\Rob\AppData\Local\assembly
2015-03-08 08:44 . 2015-03-08 08:44 129752 ----a-w- d:\windows\system32\drivers\MBAMSwissArmy.sys
2015-03-08 08:44 . 2014-11-21 05:14 63704 ----a-w- d:\windows\system32\drivers\mwac.sys
2015-03-08 08:44 . 2014-11-21 05:14 93400 ----a-w- d:\windows\system32\drivers\mbamchameleon.sys
2015-03-08 08:43 . 2015-03-08 08:44 -------- d-----w- d:\users\Rob\AppData\Roaming\Malwarebytes
2015-03-08 08:43 . 2015-03-08 08:44 -------- d-----w- d:\programdata\Malwarebytes
2015-03-08 08:43 . 2014-11-21 05:14 25816 ----a-w- d:\windows\system32\drivers\mbam.sys
2015-03-03 19:55 . 2015-01-09 03:14 91136 ----a-w- d:\windows\system32\wdi.dll
2015-03-03 19:55 . 2015-01-09 03:14 950272 ----a-w- d:\windows\system32\perftrack.dll
2015-03-03 19:55 . 2015-01-09 03:14 29696 ----a-w- d:\windows\system32\powertracker.dll
2015-03-03 19:55 . 2015-01-09 02:48 76800 ----a-w- d:\windows\SysWow64\wdi.dll
2015-03-03 17:45 . 2015-03-03 17:49 -------- d-----w- d:\users\Rob\AppData\Local\DayZ
2015-03-03 17:44 . 2015-03-05 20:44 -------- d-----w- d:\program files (x86)\Common Files\BattlEye
2015-03-03 14:27 . 2015-03-09 07:40 -------- d-----w- D:\Stream
2015-03-03 13:22 . 2015-03-12 10:25 -------- d-----w- d:\users\Rob\AppData\Roaming\OBS
2015-03-03 13:22 . 2015-03-03 13:22 -------- d-----w- d:\program files\OBS
2015-03-03 13:22 . 2015-03-12 07:01 -------- d-----w- d:\program files (x86)\OBS
2015-03-03 13:03 . 2015-03-03 13:03 -------- d-----w- d:\program files (x86)\Common Files\Java
2015-03-03 13:03 . 2015-03-03 13:02 98216 ----a-w- d:\windows\SysWow64\WindowsAccessBridge-32.dll
2015-03-03 13:01 . 2015-03-03 13:01 -------- d-----w- d:\programdata\Oracle
2015-03-03 13:01 . 2015-03-03 13:01 -------- d-----w- d:\program files (x86)\Java
2015-03-03 08:49 . 2015-03-03 08:49 -------- d-----w- d:\users\Rob\AppData\Roaming\AVAST Software
2015-03-03 08:49 . 2015-03-03 08:49 -------- d-----w- d:\windows\SysWow64\vbox
2015-03-03 08:49 . 2015-03-03 08:49 -------- d-----w- d:\windows\system32\vbox
2015-03-03 08:48 . 2015-03-03 08:48 -------- d-----w- d:\program files\Google
2015-03-03 08:47 . 2015-03-03 08:46 136752 ----a-w- d:\windows\system32\drivers\aswStm.sys
2015-03-03 08:47 . 2015-03-03 08:46 268640 ----a-w- d:\windows\system32\drivers\aswVmm.sys
2015-03-03 08:47 . 2015-03-03 08:46 65736 ----a-w- d:\windows\system32\drivers\aswRvrt.sys
2015-03-03 08:47 . 2015-03-03 08:46 441728 ----a-w- d:\windows\system32\drivers\aswSP.sys
2015-03-03 08:47 . 2015-03-03 08:46 88408 ----a-w- d:\windows\system32\drivers\aswMonFlt.sys
2015-03-03 08:47 . 2015-03-03 08:46 29168 ----a-w- d:\windows\system32\drivers\aswHwid.sys
2015-03-03 08:47 . 2015-03-03 08:46 93528 ----a-w- d:\windows\system32\drivers\aswRdr2.sys
2015-03-03 08:47 . 2015-03-03 08:46 1047320 ----a-w- d:\windows\system32\drivers\aswSnx.sys
2015-03-03 08:47 . 2015-03-03 08:46 364472 ----a-w- d:\windows\system32\aswBoot.exe
2015-03-03 08:46 . 2015-03-03 08:46 43112 ----a-w- d:\windows\avastSS.scr
2015-03-03 08:45 . 2015-03-03 08:45 -------- d-----w- d:\programdata\AVAST Software
2015-03-03 08:01 . 2015-03-05 20:28 -------- d-----w- d:\program files\trend micro
2015-03-03 08:01 . 2015-03-03 08:05 -------- d-----w- D:\rsit
2015-03-02 23:31 . 2015-03-02 23:31 -------- d-----w- d:\users\Rob\AppData\Local\Blizzard
2015-03-02 21:08 . 2015-03-02 21:08 -------- d-----w- d:\users\Rob\AppData\Local\Steam
2015-03-02 19:02 . 2015-03-02 19:02 -------- d-----w- d:\users\Rob\AppData\Roaming\ArcSoft
2015-03-02 19:00 . 2015-03-02 19:15 -------- d-----w- d:\programdata\ArcSoft
2015-03-02 18:59 . 2010-11-11 17:40 80448 ----a-w- d:\windows\system32\MMCEDT5.exe
2015-03-02 18:59 . 2010-09-21 08:07 312184 ----a-w- d:\windows\system32\drivers\ArcSec.sys
2015-02-27 21:30 . 2015-02-27 21:30 -------- d-----w- d:\program files\Microsoft.NET
2015-02-27 14:37 . 2011-02-25 06:19 2871808 ----a-w- d:\windows\explorer.exe
2015-02-27 14:37 . 2011-02-25 05:30 2616320 ----a-w- d:\windows\SysWow64\explorer.exe
2015-02-27 14:37 . 2014-07-09 02:03 7168 ----a-w- d:\windows\system32\KBDYAK.DLL
2015-02-27 14:37 . 2014-07-09 02:03 7168 ----a-w- d:\windows\system32\KBDTAT.DLL
2015-02-27 14:37 . 2014-07-09 02:03 7168 ----a-w- d:\windows\system32\KBDRU1.DLL
2015-02-27 14:37 . 2014-07-09 02:03 6656 ----a-w- d:\windows\system32\KBDRU.DLL
2015-02-27 14:37 . 2014-07-09 02:03 7168 ----a-w- d:\windows\system32\KBDBASH.DLL
2015-02-27 14:37 . 2014-07-09 01:31 7168 ----a-w- d:\windows\SysWow64\KBDYAK.DLL
2015-02-27 14:37 . 2014-07-09 01:31 6656 ----a-w- d:\windows\SysWow64\KBDBASH.DLL
2015-02-27 14:36 . 2011-03-11 06:41 148352 ----a-w- d:\windows\system32\drivers\nvraid.sys
2015-02-27 14:36 . 2011-03-11 06:41 410496 ----a-w- d:\windows\system32\drivers\iaStorV.sys
2015-02-27 14:36 . 2011-03-11 06:41 27008 ----a-w- d:\windows\system32\drivers\amdxata.sys
2015-02-27 14:36 . 2011-03-11 06:33 2565632 ----a-w- d:\windows\system32\esent.dll
2015-02-27 14:36 . 2011-03-11 06:30 96768 ----a-w- d:\windows\system32\fsutil.exe
2015-02-27 14:36 . 2011-03-11 05:33 1699328 ----a-w- d:\windows\SysWow64\esent.dll
2015-02-27 14:36 . 2011-03-11 06:41 166272 ----a-w- d:\windows\system32\drivers\nvstor.sys
2015-02-27 14:36 . 2011-03-11 06:41 107904 ----a-w- d:\windows\system32\drivers\amdsata.sys
2015-02-27 14:36 . 2011-03-11 05:31 74240 ----a-w- d:\windows\SysWow64\fsutil.exe
2015-02-27 14:36 . 2011-03-11 04:37 91648 ----a-w- d:\windows\system32\drivers\USBSTOR.SYS
2015-02-27 14:36 . 2012-02-11 06:36 559104 ----a-w- d:\windows\system32\spoolsv.exe
2015-02-27 14:36 . 2012-02-11 06:36 67072 ----a-w- d:\windows\splwow64.exe
2015-02-27 07:39 . 2015-02-27 07:39 -------- d-----w- d:\windows\SysWow64\Wat
2015-02-27 07:39 . 2015-02-27 07:39 -------- d-----w- d:\windows\system32\Wat
2015-02-27 00:11 . 2012-07-26 03:08 229888 ----a-w- d:\windows\system32\WUDFHost.exe
2015-02-27 00:11 . 2012-07-26 03:08 84992 ----a-w- d:\windows\system32\WUDFSvc.dll
2015-02-27 00:11 . 2012-07-26 03:08 744448 ----a-w- d:\windows\system32\WUDFx.dll
2015-02-27 00:11 . 2012-07-26 03:08 45056 ----a-w- d:\windows\system32\WUDFCoinstaller.dll
2015-02-27 00:11 . 2012-07-26 03:08 194048 ----a-w- d:\windows\system32\WUDFPlatform.dll
2015-02-27 00:11 . 2012-07-26 02:26 87040 ----a-w- d:\windows\system32\drivers\WUDFPf.sys
2015-02-27 00:11 . 2012-07-26 02:26 198656 ----a-w- d:\windows\system32\drivers\WUDFRd.sys
2015-02-27 00:10 . 2015-02-27 00:10 -------- d-----w- d:\users\Default\AppData\Local\Microsoft Help
2015-02-26 23:55 . 2014-06-27 02:08 2777088 ----a-w- d:\windows\system32\msmpeg2vdec.dll
2015-02-26 23:55 . 2014-06-27 01:45 2285056 ----a-w- d:\windows\SysWow64\msmpeg2vdec.dll
2015-02-26 22:53 . 2015-02-26 22:53 -------- d-----w- D:\Networking
2015-02-26 21:21 . 2015-02-26 21:21 71344 ----a-w- d:\windows\SysWow64\FlashPlayerCPLApp.cpl
2015-02-26 21:21 . 2015-02-26 21:21 701616 ----a-w- d:\windows\SysWow64\FlashPlayerApp.exe
2015-02-26 21:21 . 2015-02-26 21:21 -------- d-----w- d:\windows\SysWow64\Macromed
2015-02-26 21:21 . 2015-02-26 21:21 -------- d-----w- d:\windows\system32\Macromed
2015-02-26 20:38 . 2015-03-03 08:39 -------- d-----w- d:\programdata\Spybot - Search & Destroy
2015-02-26 20:38 . 2015-03-04 11:43 -------- d-----w- d:\program files (x86)\Spybot - Search & Destroy 2
2015-02-26 16:39 . 2014-12-11 17:47 52736 ----a-w- d:\windows\system32\TSWbPrxy.exe
2015-02-26 16:39 . 2015-02-04 03:16 609280 ----a-w- d:\windows\system32\generaltel.dll
2015-02-26 16:39 . 2015-02-04 03:16 762368 ----a-w- d:\windows\system32\invagent.dll
2015-02-26 16:39 . 2015-02-04 03:16 414720 ----a-w- d:\windows\system32\devinv.dll
2015-02-26 16:39 . 2015-02-04 03:16 894976 ----a-w- d:\windows\system32\appraiser.dll
2015-02-26 16:39 . 2015-02-04 03:13 1098752 ----a-w- d:\windows\system32\aeinv.dll
2015-02-26 16:39 . 2015-01-27 23:36 1239720 ----a-w- d:\windows\system32\aitstatic.exe
2015-02-26 16:39 . 2015-02-04 03:16 227328 ----a-w- d:\windows\system32\aepdu.dll
2015-02-26 16:39 . 2015-02-04 03:16 192000 ----a-w- d:\windows\system32\aepic.dll
2015-02-26 16:39 . 2014-12-19 03:06 210432 ----a-w- d:\windows\system32\profsvc.dll
2015-02-26 16:37 . 2014-12-06 04:17 303616 ----a-w- d:\windows\system32\nlasvc.dll
2015-02-26 16:37 . 2014-12-06 03:50 52224 ----a-w- d:\windows\SysWow64\nlaapi.dll
2015-02-26 16:37 . 2014-12-06 03:50 156672 ----a-w- d:\windows\SysWow64\ncsi.dll
2015-02-26 16:37 . 2014-12-19 01:46 141312 ----a-w- d:\windows\system32\drivers\mrxdav.sys
2015-02-26 16:35 . 2014-11-26 03:53 861696 ----a-w- d:\windows\system32\oleaut32.dll
2015-02-26 16:35 . 2014-11-26 03:32 571904 ----a-w- d:\windows\SysWow64\oleaut32.dll
2015-02-26 16:35 . 2014-10-04 02:10 3722752 ----a-w- d:\windows\system32\mstscax.dll
2015-02-26 16:35 . 2014-10-04 01:42 3221504 ----a-w- d:\windows\SysWow64\mstscax.dll
2015-02-26 16:35 . 2014-10-04 01:42 131584 ----a-w- d:\windows\SysWow64\aaclient.dll
2015-02-26 16:34 . 2014-12-08 03:09 406528 ----a-w- d:\windows\system32\scesrv.dll
2015-02-26 16:34 . 2014-12-08 02:46 308224 ----a-w- d:\windows\SysWow64\scesrv.dll
2015-02-26 15:28 . 2015-02-26 15:28 -------- d-----w- d:\users\Rob\AppData\Local\Microsoft Toolkit
2015-02-26 15:21 . 2015-02-26 15:21 -------- d-----w- d:\program files\Common Files\DESIGNER
2015-02-26 15:21 . 2015-02-26 15:21 -------- d-----w- d:\program files (x86)\Microsoft SQL Server
2015-02-26 15:21 . 2015-02-26 15:21 -------- d-----w- d:\programdata\regid.1991-06.com.microsoft
2015-02-26 15:20 . 2015-02-26 15:21 -------- d-----w- d:\program files\Microsoft SQL Server
2015-02-26 15:20 . 2015-02-26 15:20 -------- d-----w- d:\windows\PCHEALTH
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2015-03-17 15:55 . 2014-12-22 11:49 25640 ----a-w- d:\windows\gdrv.sys
2015-03-17 13:36 . 2014-12-20 13:00 65536 ----a-w- d:\windows\system32\spu_storage.bin
2015-02-24 02:17 . 2014-12-20 13:19 295552 ------w- d:\windows\system32\MpSigStub.exe
2015-02-16 15:20 . 2015-01-29 17:02 33856 ---ha-w- d:\windows\system32\hamachi.sys
2015-01-29 16:49 . 2014-12-20 19:28 116773704 ----a-w- d:\windows\system32\MRT.exe
2015-01-13 22:20 . 2014-12-23 17:32 189248 ----a-w- d:\windows\SysWow64\PnkBstrB.exe
2015-01-13 22:20 . 2014-12-23 17:32 189248 ----a-w- d:\windows\SysWow64\PnkBstrB.ex0
2015-01-13 22:20 . 2014-12-23 17:32 75136 ----a-w- d:\windows\SysWow64\PnkBstrA.exe
2015-01-11 13:49 . 2015-01-11 02:48 43520 ----a-w- d:\windows\SysWow64\CmdLineExt03.dll
2015-01-11 02:33 . 2015-01-11 02:33 21840 ----a-w- d:\windows\SysWow64\SIntfNT.dll
2015-01-11 02:33 . 2015-01-11 02:33 17212 ----a-w- d:\windows\SysWow64\SIntf32.dll
2015-01-11 02:33 . 2015-01-11 02:33 12067 ----a-w- d:\windows\SysWow64\SIntf16.dll
2015-01-10 12:55 . 2009-08-18 11:49 564632 ----a-w- d:\programdata\Microsoft\IdentityCRL\production\wlidui.dll
2015-01-10 12:55 . 2009-08-18 10:24 23256 ----a-w- d:\programdata\Microsoft\IdentityCRL\production\ppcrlconfig600.dll
2015-01-10 12:39 . 2015-01-10 12:25 466456 ----a-w- d:\windows\system32\wrap_oal.dll
2015-01-10 12:39 . 2015-01-10 12:25 444952 ----a-w- d:\windows\SysWow64\wrap_oal.dll
2015-01-10 12:39 . 2015-01-10 12:25 122904 ----a-w- d:\windows\system32\OpenAL32.dll
2015-01-10 12:39 . 2015-01-10 12:25 109080 ----a-w- d:\windows\SysWow64\OpenAL32.dll
2015-01-04 17:39 . 2015-01-04 17:39 281688 ----a-w- d:\windows\SysWow64\PnkBstrB.xtr
2014-12-24 22:50 . 2014-12-24 22:50 76152 ----a-w- d:\windows\system32\PnkBstrA.exe
2014-12-23 17:51 . 2014-12-23 17:51 194048 ----a-w- d:\windows\SysWow64\elshyph.dll
2014-12-23 17:51 . 2014-12-23 17:51 942592 ----a-w- d:\windows\system32\jsIntl.dll
2014-12-23 17:51 . 2014-12-23 17:51 90112 ----a-w- d:\windows\system32\SetIEInstalledDate.exe
2014-12-23 17:51 . 2014-12-23 17:51 86016 ----a-w- d:\windows\SysWow64\iesysprep.dll
2014-12-23 17:51 . 2014-12-23 17:51 86016 ----a-w- d:\windows\system32\RegisterIEPKEYs.exe
2014-12-23 17:51 . 2014-12-23 17:51 81408 ----a-w- d:\windows\system32\icardie.dll
2014-12-23 17:51 . 2014-12-23 17:51 774144 ----a-w- d:\windows\system32\jscript.dll
2014-12-23 17:51 . 2014-12-23 17:51 77312 ----a-w- d:\windows\system32\tdc.ocx
2014-12-23 17:51 . 2014-12-23 17:51 74240 ----a-w- d:\windows\SysWow64\SetIEInstalledDate.exe
2014-12-23 17:51 . 2014-12-23 17:51 71680 ----a-w- d:\windows\SysWow64\RegisterIEPKEYs.exe
2014-12-23 17:51 . 2014-12-23 17:51 645120 ----a-w- d:\windows\SysWow64\jsIntl.dll
2014-12-23 17:51 . 2014-12-23 17:51 62464 ----a-w- d:\windows\SysWow64\tdc.ocx
2014-12-23 17:51 . 2014-12-23 17:51 62464 ----a-w- d:\windows\system32\pngfilt.dll
2014-12-23 17:51 . 2014-12-23 17:51 616104 ----a-w- d:\windows\system32\ieapfltr.dat
2014-12-23 17:51 . 2014-12-23 17:51 52224 ----a-w- d:\windows\system32\msfeedsbs.dll
2014-12-23 17:51 . 2014-12-23 17:51 48640 ----a-w- d:\windows\SysWow64\mshtmler.dll
2014-12-23 17:51 . 2014-12-23 17:51 48640 ----a-w- d:\windows\system32\mshtmler.dll
2014-12-23 17:51 . 2014-12-23 17:51 48128 ----a-w- d:\windows\system32\imgutil.dll
2014-12-23 17:51 . 2014-12-23 17:51 413696 ----a-w- d:\windows\system32\html.iec
2014-12-23 17:51 . 2014-12-23 17:51 36352 ----a-w- d:\windows\SysWow64\imgutil.dll
2014-12-23 17:51 . 2014-12-23 17:51 337408 ----a-w- d:\windows\SysWow64\html.iec
2014-12-23 17:51 . 2014-12-23 17:51 30208 ----a-w- d:\windows\system32\licmgr10.dll
2014-12-23 17:51 . 2014-12-23 17:51 247808 ----a-w- d:\windows\system32\msls31.dll
2014-12-23 17:51 . 2014-12-23 17:51 24576 ----a-w- d:\windows\SysWow64\licmgr10.dll
2014-12-23 17:51 . 2014-12-23 17:51 243200 ----a-w- d:\windows\system32\webcheck.dll
2014-12-23 17:51 . 2014-12-23 17:51 235520 ----a-w- d:\windows\system32\url.dll
2014-12-23 17:51 . 2014-12-23 17:51 235008 ----a-w- d:\windows\system32\elshyph.dll
2014-12-23 17:51 . 2014-12-23 17:51 182272 ----a-w- d:\windows\SysWow64\msls31.dll
2014-12-23 17:51 . 2014-12-23 17:51 167424 ----a-w- d:\windows\system32\iexpress.exe
2014-12-23 17:51 . 2014-12-23 17:51 151552 ----a-w- d:\windows\SysWow64\iexpress.exe
2014-12-23 17:51 . 2014-12-23 17:51 147968 ----a-w- d:\windows\system32\occache.dll
2014-12-23 17:51 . 2014-12-23 17:51 143872 ----a-w- d:\windows\system32\wextract.exe
2014-12-23 17:51 . 2014-12-23 17:51 139264 ----a-w- d:\windows\SysWow64\wextract.exe
2014-12-23 17:51 . 2014-12-23 17:51 13824 ----a-w- d:\windows\system32\mshta.exe
2014-12-23 17:51 . 2014-12-23 17:51 135680 ----a-w- d:\windows\system32\iepeers.dll
2014-12-23 17:51 . 2014-12-23 17:51 13312 ----a-w- d:\windows\SysWow64\mshta.exe
2014-12-23 17:51 . 2014-12-23 17:51 13312 ----a-w- d:\windows\system32\msfeedssync.exe
2014-12-23 17:51 . 2014-12-23 17:51 131072 ----a-w- d:\windows\system32\IEAdvpack.dll
2014-12-23 17:51 . 2014-12-23 17:51 111616 ----a-w- d:\windows\SysWow64\IEAdvpack.dll
2014-12-23 17:51 . 2014-12-23 17:51 105984 ----a-w- d:\windows\system32\iesysprep.dll
2014-12-23 17:51 . 2014-12-23 17:51 101376 ----a-w- d:\windows\system32\inseng.dll
2014-12-23 17:48 . 2014-12-23 17:48 9728 ---ha-w- d:\windows\SysWow64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2014-12-23 17:48 . 2014-12-23 17:48 9728 ---ha-w- d:\windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2014-12-23 17:48 . 2014-12-23 17:48 648192 ----a-w- d:\windows\system32\d3d10level9.dll
2014-12-23 17:48 . 2014-12-23 17:48 604160 ----a-w- d:\windows\SysWow64\d3d10level9.dll
2014-12-23 17:48 . 2014-12-23 17:48 5632 ---ha-w- d:\windows\SysWow64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2014-12-23 17:48 . 2014-12-23 17:48 5632 ---ha-w- d:\windows\SysWow64\api-ms-win-downlevel-ole32-l1-1-0.dll
2014-12-23 17:48 . 2014-12-23 17:48 5632 ---ha-w- d:\windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2014-12-23 17:48 . 2014-12-23 17:48 5632 ---ha-w- d:\windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2014-12-23 17:48 . 2014-12-23 17:48 522752 ----a-w- d:\windows\system32\XpsGdiConverter.dll
2014-12-23 17:48 . 2014-12-23 17:48 4096 ---ha-w- d:\windows\SysWow64\api-ms-win-downlevel-user32-l1-1-0.dll
2014-12-23 17:48 . 2014-12-23 17:48 4096 ---ha-w- d:\windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2014-12-23 17:48 . 2014-12-23 17:48 364544 ----a-w- d:\windows\SysWow64\XpsGdiConverter.dll
2014-12-23 17:48 . 2014-12-23 17:48 363008 ----a-w- d:\windows\system32\dxgi.dll
2014-12-23 17:48 . 2014-12-23 17:48 3584 ---ha-w- d:\windows\SysWow64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2014-12-23 17:48 . 2014-12-23 17:48 3584 ---ha-w- d:\windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2014-12-23 17:48 . 2014-12-23 17:48 333312 ----a-w- d:\windows\system32\d3d10_1core.dll
2014-12-23 17:48 . 2014-12-23 17:48 3072 ---ha-w- d:\windows\SysWow64\api-ms-win-downlevel-version-l1-1-0.dll
2014-12-23 17:48 . 2014-12-23 17:48 3072 ---ha-w- d:\windows\SysWow64\api-ms-win-downlevel-shell32-l1-1-0.dll
2014-12-23 17:48 . 2014-12-23 17:48 3072 ---ha-w- d:\windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2014-12-23 17:48 . 2014-12-23 17:48 3072 ---ha-w- d:\windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2014-12-23 17:48 . 2014-12-23 17:48 296960 ----a-w- d:\windows\system32\d3d10core.dll
2014-12-23 17:48 . 2014-12-23 17:48 293376 ----a-w- d:\windows\SysWow64\dxgi.dll
2014-12-23 17:48 . 2014-12-23 17:48 2560 ---ha-w- d:\windows\SysWow64\api-ms-win-downlevel-normaliz-l1-1-0.dll
2014-12-23 17:48 . 2014-12-23 17:48 2560 ---ha-w- d:\windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2014-12-23 17:48 . 2014-12-23 17:48 249856 ----a-w- d:\windows\SysWow64\d3d10_1core.dll
2014-12-23 17:48 . 2014-12-23 17:48 245248 ----a-w- d:\windows\system32\WindowsCodecsExt.dll
2014-12-23 17:48 . 2014-12-23 17:48 221184 ----a-w- d:\windows\system32\UIAnimation.dll
2014-12-23 17:48 . 2014-12-23 17:48 220160 ----a-w- d:\windows\SysWow64\d3d10core.dll
2014-12-23 17:48 . 2014-12-23 17:48 207872 ----a-w- d:\windows\SysWow64\WindowsCodecsExt.dll
2014-12-23 17:48 . 2014-12-23 17:48 194560 ----a-w- d:\windows\system32\d3d10_1.dll
2014-12-23 17:48 . 2014-12-23 17:48 187392 ----a-w- d:\windows\SysWow64\UIAnimation.dll
2014-12-23 17:48 . 2014-12-23 17:48 1682432 ----a-w- d:\windows\system32\XpsPrint.dll
2014-12-23 17:48 . 2014-12-23 17:48 161792 ----a-w- d:\windows\SysWow64\d3d10_1.dll
2014-12-23 17:48 . 2014-12-23 17:48 1238528 ----a-w- d:\windows\system32\d3d10.dll
2014-12-23 17:48 . 2014-12-23 17:48 1175552 ----a-w- d:\windows\system32\FntCache.dll
2014-12-23 17:48 . 2014-12-23 17:48 1158144 ----a-w- d:\windows\SysWow64\XpsPrint.dll
2014-12-23 17:48 . 2014-12-23 17:48 1080832 ----a-w- d:\windows\SysWow64\d3d10.dll
2014-12-23 17:48 . 2014-12-23 17:48 10752 ---ha-w- d:\windows\SysWow64\api-ms-win-downlevel-advapi32-l1-1-0.dll
2014-12-23 17:48 . 2014-12-23 17:48 10752 ---ha-w- d:\windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrivePro1 (ErrorConflict)]
@="{8BA85C75-763B-4103-94EB-9470F12FE0F7}"
[HKEY_CLASSES_ROOT\CLSID\{8BA85C75-763B-4103-94EB-9470F12FE0F7}]
2015-01-21 14:05 1729744 ----a-w- d:\progra~2\MICROS~3\Office15\GROOVEEX.DLL
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrivePro2 (SyncInProgress)]
@="{CD55129A-B1A1-438E-A425-CEBC7DC684EE}"
[HKEY_CLASSES_ROOT\CLSID\{CD55129A-B1A1-438E-A425-CEBC7DC684EE}]
2015-01-21 14:05 1729744 ----a-w- d:\progra~2\MICROS~3\Office15\GROOVEEX.DLL
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrivePro3 (InSync)]
@="{E768CD3B-BDDC-436D-9C13-E1B39CA257B1}"
[HKEY_CLASSES_ROOT\CLSID\{E768CD3B-BDDC-436D-9C13-E1B39CA257B1}]
2015-01-21 14:05 1729744 ----a-w- d:\progra~2\MICROS~3\Office15\GROOVEEX.DLL
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CCleaner Monitoring"="d:\program files\CCleaner\CCleaner64.exe" [2014-12-12 7394584]
"Spotify Web Helper"="d:\users\Rob\AppData\Roaming\Spotify\SpotifyWebHelper.exe" [2015-03-11 1959992]
"Spotify"="d:\users\Rob\AppData\Roaming\Spotify\Spotify.exe" [2015-03-11 6611512]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"Adobe ARM"="d:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2014-12-19 1022152]
"AvastUI.exe"="d:\programy\Avast\AvastUI.exe" [2015-03-15 5512912]
"SunJavaUpdateSched"="d:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2014-12-17 508800]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\RunOnce]
"PreRun"="d:\program files (x86)\Gigabyte\AppCenter\PreRun.exe" [2013-04-29 8192]
.
d:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
TotalMedia Server.lnk - d:\programy\Total Media Theatre 5\TotalMedia Server\TM Server.exe [2010-11-10 519744]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
"SoftwareSASGeneration"= 1 (0x1)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows]
"LoadAppInit_DLLs"=1 (0x1)
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute REG_MULTI_SZ autocheck autochk *\0sdnclean64.exe
.
R2 aswStm;aswStm;d:\windows\system32\drivers\aswStm.sys;d:\windows\SYSNATIVE\drivers\aswStm.sys [x]
R2 BstHdAndroidSvc;BlueStacks Android Service;d:\program files (x86)\BlueStacks\HD-Service.exe BstHdAndroidSvc Android;d:\program files (x86)\BlueStacks\HD-Service.exe BstHdAndroidSvc Android [x]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;d:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;d:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x]
R2 SkypeUpdate;Skype Updater;d:\program files (x86)\Skype\Updater\Updater.exe;d:\program files (x86)\Skype\Updater\Updater.exe [x]
R3 ALSysIO;ALSysIO;d:\users\Rob\AppData\Local\Temp\ALSysIO64.sys;d:\users\Rob\AppData\Local\Temp\ALSysIO64.sys [x]
R3 BEService;BattlEye Service;d:\program files (x86)\Common Files\BattlEye\BEService.exe;d:\program files (x86)\Common Files\BattlEye\BEService.exe [x]
R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;d:\windows\system32\IEEtwCollector.exe;d:\windows\SYSNATIVE\IEEtwCollector.exe [x]
R3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface;d:\program files\Intel\iCLS Client\SocketHeciServer.exe;d:\program files\Intel\iCLS Client\SocketHeciServer.exe [x]
R3 npggsvc;nProtect GameGuard Service;d:\windows\system32\GameMon.des;d:\windows\SYSNATIVE\GameMon.des [x]
R3 Origin Client Service;Origin Client Service;e:\hry\Origin\OriginClientService.exe;e:\hry\Origin\OriginClientService.exe [x]
R3 ose64;Office 64 Source Engine;d:\program files\Common Files\Microsoft Shared\Source Engine\OSE.EXE;d:\program files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [x]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;d:\windows\system32\drivers\rdpvideominiport.sys;d:\windows\SYSNATIVE\drivers\rdpvideominiport.sys [x]
R3 Synth3dVsc;Synth3dVsc;d:\windows\system32\drivers\synth3dvsc.sys;d:\windows\SYSNATIVE\drivers\synth3dvsc.sys [x]
R3 TsUsbFlt;TsUsbFlt;d:\windows\system32\drivers\tsusbflt.sys;d:\windows\SYSNATIVE\drivers\tsusbflt.sys [x]
R3 tsusbhub;tsusbhub;d:\windows\system32\drivers\tsusbhub.sys;d:\windows\SYSNATIVE\drivers\tsusbhub.sys [x]
R3 VGPU;VGPU;d:\windows\system32\drivers\rdvgkmd.sys;d:\windows\SYSNATIVE\drivers\rdvgkmd.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;d:\windows\system32\Wat\WatAdminSvc.exe;d:\windows\SYSNATIVE\Wat\WatAdminSvc.exe [x]
R3 X6va017;X6va017;d:\windows\SysWOW64\Drivers\X6va017;d:\windows\SysWOW64\Drivers\X6va017 [x]
S0 aswRvrt;avast! Revert; [x]
S0 aswVmm;avast! VM Monitor; [x]
S0 iaStorA;iaStorA;d:\windows\system32\DRIVERS\iaStorA.sys;d:\windows\SYSNATIVE\DRIVERS\iaStorA.sys [x]
S0 iaStorF;iaStorF;d:\windows\system32\DRIVERS\iaStorF.sys;d:\windows\SYSNATIVE\DRIVERS\iaStorF.sys [x]
S0 iusb3hcs;Ovladač přepínání hostitelského řadiče Intel(R) USB 3.0;d:\windows\system32\DRIVERS\iusb3hcs.sys;d:\windows\SYSNATIVE\DRIVERS\iusb3hcs.sys [x]
S1 ArcSec;archlp;d:\windows\system32\drivers\ArcSec.sys;d:\windows\SYSNATIVE\drivers\ArcSec.sys [x]
S1 aswSnx;aswSnx;d:\windows\system32\drivers\aswSnx.sys;d:\windows\SYSNATIVE\drivers\aswSnx.sys [x]
S1 aswSP;aswSP;d:\windows\system32\drivers\aswSP.sys;d:\windows\SYSNATIVE\drivers\aswSP.sys [x]
S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;d:\windows\system32\DRIVERS\dtsoftbus01.sys;d:\windows\SYSNATIVE\DRIVERS\dtsoftbus01.sys [x]
S2 AMD External Events Utility;AMD External Events Utility;d:\windows\system32\atiesrxx.exe;d:\windows\SYSNATIVE\atiesrxx.exe [x]
S2 amdacpksd;ACP Kernel Service Driver;d:\windows\system32\drivers\amdacpksd.sys;d:\windows\SYSNATIVE\drivers\amdacpksd.sys [x]
S2 amdacpusrsvc;ACP User Service;d:\program files\AMD\{920DEC42-4CA5-4d1d-9487-67BE645CDDFC}\amdacpusrsvc.exe;d:\program files\AMD\{920DEC42-4CA5-4d1d-9487-67BE645CDDFC}\amdacpusrsvc.exe [x]
S2 aswHwid;avast! HardwareID;d:\windows\system32\drivers\aswHwid.sys;d:\windows\SYSNATIVE\drivers\aswHwid.sys [x]
S2 aswMonFlt;aswMonFlt;d:\windows\system32\drivers\aswMonFlt.sys;d:\windows\SYSNATIVE\drivers\aswMonFlt.sys [x]
S2 BstHdDrv;BlueStacks Hypervisor;d:\program files (x86)\BlueStacks\HD-Hypervisor-amd64.sys;d:\program files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [x]
S2 BstHdLogRotatorSvc;BlueStacks Log Rotator Service;d:\program files (x86)\BlueStacks\HD-LogRotatorService.exe;d:\program files (x86)\BlueStacks\HD-LogRotatorService.exe [x]
S2 BstHdUpdaterSvc;BlueStacks Updater Service;d:\program files (x86)\BlueStacks\HD-UpdaterService.exe;d:\program files (x86)\BlueStacks\HD-UpdaterService.exe [x]
S2 gadjservice;GIGABYTE Adjust;d:\program files (x86)\Gigabyte\AppCenter\AdjustService.exe;d:\program files (x86)\Gigabyte\AppCenter\AdjustService.exe [x]
S2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine;d:\programy\Hamachi\hamachi-2.exe;d:\programy\Hamachi\hamachi-2.exe [x]
S2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology;d:\program files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe;d:\program files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [x]
S2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service;d:\windows\system32\igfxCUIService.exe;d:\windows\SYSNATIVE\igfxCUIService.exe [x]
S2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface;d:\program files\Intel\iCLS Client\HeciServer.exe;d:\program files\Intel\iCLS Client\HeciServer.exe [x]
S2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service;d:\program files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe;d:\program files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [x]
S2 VBoxAswDrv;VBoxAsw Support Driver;d:\programy\Avast\ng\vbox\VBoxAswDrv.sys;d:\programy\Avast\ng\vbox\VBoxAswDrv.sys [x]
S3 AtiHDAudioService;AMD Function Driver for HD Audio Service;d:\windows\system32\drivers\AtihdW76.sys;d:\windows\SYSNATIVE\drivers\AtihdW76.sys [x]
S3 AvastVBoxSvc;AvastVBox COM Service;d:\programy\Avast\ng\vbox\AvastVBoxSVC.exe;d:\programy\Avast\ng\vbox\AvastVBoxSVC.exe [x]
S3 IntcDAud;Intel(R) Display Audio;d:\windows\system32\DRIVERS\IntcDAud.sys;d:\windows\SYSNATIVE\DRIVERS\IntcDAud.sys [x]
S3 iusb3hub;Ovladač rozbočovače Intel(R) USB 3.0;d:\windows\system32\DRIVERS\iusb3hub.sys;d:\windows\SYSNATIVE\DRIVERS\iusb3hub.sys [x]
S3 iusb3xhc;Ovladač rozšiřitelného hostitelského řadiče Intel(R) USB 3.0;d:\windows\system32\DRIVERS\iusb3xhc.sys;d:\windows\SYSNATIVE\DRIVERS\iusb3xhc.sys [x]
S3 RTL8167;Realtek 8167 NT Driver;d:\windows\system32\DRIVERS\Rt64win7.sys;d:\windows\SYSNATIVE\DRIVERS\Rt64win7.sys [x]
.
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2015-03-12 14:01 1061704 ----a-w- d:\program files (x86)\Google\Chrome\Application\41.0.2272.89\Installer\chrmstp.exe
.
Obsah adresáře 'Naplánované úlohy'
.
2015-03-17 d:\windows\Tasks\Adobe Flash Player Updater.job
- d:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-02-26 21:21]
.
2015-03-17 d:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- d:\program files (x86)\Google\Update\GoogleUpdate.exe [2014-12-20 12:44]
.
2015-03-17 d:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- d:\program files (x86)\Google\Update\GoogleUpdate.exe [2014-12-20 12:44]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrivePro1 (ErrorConflict)]
@="{8BA85C75-763B-4103-94EB-9470F12FE0F7}"
[HKEY_CLASSES_ROOT\CLSID\{8BA85C75-763B-4103-94EB-9470F12FE0F7}]
2015-01-21 14:01 2334928 ----a-w- d:\programy\MICROS~1\Office15\GROOVEEX.DLL
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrivePro2 (SyncInProgress)]
@="{CD55129A-B1A1-438E-A425-CEBC7DC684EE}"
[HKEY_CLASSES_ROOT\CLSID\{CD55129A-B1A1-438E-A425-CEBC7DC684EE}]
2015-01-21 14:01 2334928 ----a-w- d:\programy\MICROS~1\Office15\GROOVEEX.DLL
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrivePro3 (InSync)]
@="{E768CD3B-BDDC-436D-9C13-E1B39CA257B1}"
[HKEY_CLASSES_ROOT\CLSID\{E768CD3B-BDDC-436D-9C13-E1B39CA257B1}]
2015-01-21 14:01 2334928 ----a-w- d:\programy\MICROS~1\Office15\GROOVEEX.DLL
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2015-03-03 08:46 722400 ----a-w- d:\programy\Avast\ashShA64.dll
.
------- Doplňkový sken -------
.
uLocal Page = d:\windows\system32\blank.htm
uStart Page = hxxp://www.seznam.cz/?clid=20808
mDefault_Search_URL = hxxp://www.google.com
mDefault_Page_URL = hxxp://www.google.com
mStart Page = hxxp://www.google.com
mLocal Page = d:\windows\SysWOW64\blank.htm
mSearch Page = hxxp://www.google.com
IE: E&xportovat do Microsoft Excelu - d:\programy\MICROS~1\Office15\EXCEL.EXE/3000
IE: Od&eslat do OneNotu - d:\programy\MICROS~1\Office15\ONBttnIE.dll/105
Trusted Zone: clonewarsadventures.com
Trusted Zone: freerealms.com
Trusted Zone: soe.com
Trusted Zone: sony.com
TCP: Interfaces\{3BE09598-9584-4013-A6F4-B8F50B4AABE1}: NameServer = 109.164.64.64,8.8.8.8
Filter: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - d:\program files (x86)\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
Wow6432Node-HKU-Default-RunOnce-SPReview - d:\windows\System32\SPReview\SPReview.exe
HKLM-Run-SpywareTerminatorShield - d:\program files (x86)\Spyware Terminator\SpywareTerminatorShield.exe
HKLM-Run-SpywareTerminatorUpdater - d:\program files (x86)\Spyware Terminator\SpywareTerminatorUpdate.exe
AddRemove-Shoppy-Up.2.7 - d:\program files (x86)\Shoppy-Up.2.7\Uninstall.exe
AddRemove-{AD11DADE-C597-45D9-D8C5-1D2EB0B89613} - d:\program files (x86)\My IP address\My IP address.exe
.
.
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\npggsvc]
"ImagePath"="d:\windows\system32\GameMon.des -service"
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\X6va017]
"ImagePath"="\??\d:\windows\SysWOW64\Drivers\X6va017"
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\SOFTWARE\BlueStacks]
"SymbolicLinkValue"=hex(6):5c,00,52,00,65,00,67,00,69,00,73,00,74,00,72,00,79,
00,5c,00,4d,00,61,00,63,00,68,00,69,00,6e,00,65,00,5c,00,53,00,6f,00,66,00,\
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@d:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_16_0_0_305_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\LocalServer32]
@="d:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_16_0_0_305_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}]
@Denied: (A 2) (Everyone)
@="IFlashBroker6"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@d:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_16_0_0_305_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\LocalServer32]
@="d:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_16_0_0_305_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Shockwave Flash Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="d:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_16_0_0_305.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
@="0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
@="ShockwaveFlash.ShockwaveFlash.16"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="d:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_16_0_0_305.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="ShockwaveFlash.ShockwaveFlash"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Macromedia Flash Factory Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="d:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_16_0_0_305.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
@="FlashFactory.FlashFactory.1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="d:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_16_0_0_305.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="FlashFactory.FlashFactory"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}]
@Denied: (A 2) (Everyone)
@="IFlashBroker6"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Celkový čas: 2015-03-17 17:15:56
ComboFix-quarantined-files.txt 2015-03-17 16:15
.
Před spuštěním: Volných bajtů: 362 150 961 152
Po spuštění: Volných bajtů: 362 310 897 664
.
- - End Of File - - B502E4A8341CCD9CACE8C73DA28FCB98
A36C5E4F47E84449FF07ED3517B43A31
Re: Reklamy, zpomalený počítač
Tak nakonec tam asi nějaká potvora bude, když kliknu na odkaz, třeba i na novinkach nebo google news, tak vyskočí sem tam nové okno s blikajícíma reklamama apod.
Re: Reklamy, zpomalený počítač
1.pouzi zoek - vid kolega vyosek http://forum.viry.cz/viewtopic.php?f=13&t=143498
citat:
2. Stahnete a spustte DelFix - https://toolslib.net/downloads/viewdownload/2-delfix/
• Oznacte jen moznost "Remove disinfection tools"
• kliknete na Run
citat:
2. Stahnete a spustte DelFix - https://toolslib.net/downloads/viewdownload/2-delfix/
• Oznacte jen moznost "Remove disinfection tools"
• kliknete na Run
FRST |ADWCleaner |MBAM |CCleaner |AVPTool
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/


Přispějete na provoz fóra?