
RSIT
Logfile of random's system information tool 1.10 (written by random/random)
Run by Matyáš at 2015-06-30 15:12:16
Microsoft Windows 8.1 Pro
System drive C: has 53 GB (35%) free of 153 GB
Total RAM: 2047 MB (52% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 15:12:43, on 30. 6. 2015
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17840)
Boot mode: Normal
Running processes:
C:\WINDOWS\system32\taskhostex.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20905_x86__8wekyb3d8bbwe\LiveComm.exe
C:\WINDOWS\system32\GWX\GWX.exe
C:\Windows\System32\RuntimeBroker.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Windows\System32\skydrive.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\WINDOWS\system32\taskeng.exe
C:\Program Files\Microsoft Office\Office15\MsoSync.exe
C:\WINDOWS\system32\wbem\unsecapp.exe
C:\Windows\System32\SettingSyncHost.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\system32\SearchProtocolHost.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\WindowsApps\Microsoft.Reader_6.3.9654.17499_x86__8wekyb3d8bbwe\glcnd.exe
C:\Users\Matyáš\Downloads\RSIT.exe
C:\Program Files\trend micro\Matyáš.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.google.com/?trackid=sp-006
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.google.com/search?trackid=s ... earchTerms}
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.com/?trackid=sp-006
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.google.com/?trackid=sp-006
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.google.com/search?trackid=s ... earchTerms}
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.com/?trackid=sp-006
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Skype for Business Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\Office15\OCHelper.dll
O2 - BHO: (no name) - {51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F} - (no file)
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.8.0_40\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\PROGRA~1\MIF5BA~1\Office15\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre1.8.0_40\bin\jp2ssv.dll
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [AMD AVT] Cmd.exe /c start "AMD Accelerated Video Transcoding device initialization" /min "C:\Program Files\AMD AVT\bin\kdbsync.exe" aml
O4 - HKLM\..\Run: [USBToolTip] C:\PROGRA~1\Pinnacle\SHARED~1\Programs\USBTip\USBTip.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKCU\..\Run: [BitTorrent] "C:\Users\Matyáš\AppData\Roaming\BitTorrent\BitTorrent.exe" /MINIMIZED
O4 - HKCU\..\Run: [Spotify Web Helper] "C:\Users\Matyáš\AppData\Roaming\Spotify\SpotifyWebHelper.exe"
O4 - HKCU\..\Run: [Sony PC Companion] "C:\Program Files\Sony\Sony PC Companion\PCCompanion.exe" /Background
O4 - HKCU\..\Run: [Viber] "C:\Users\Matyáš\AppData\Local\Viber\Viber.exe" StartMinimized
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [Spotify] "C:\Users\Matyáš\AppData\Roaming\Spotify\spotify.exe" -autostart -minimized
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xportovat do Microsoft Excelu - res://C:\PROGRA~1\MIF5BA~1\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: En&queue current page with BID - file://C:\Program Files\Bulk Image Downloader\iemenu\iebidqueue.htm
O8 - Extra context menu item: Enqueue link target with BID - file://C:\Program Files\Bulk Image Downloader\iemenu\iebidlinkqueue.htm
O8 - Extra context menu item: Od&eslat do OneNotu - res://C:\PROGRA~1\MIF5BA~1\Office15\ONBttnIE.dll/105
O8 - Extra context menu item: Open &link target with BID - file://C:\Program Files\Bulk Image Downloader\iemenu\iebidlink.htm
O8 - Extra context menu item: Open current page with BID - file://C:\Program Files\Bulk Image Downloader\iemenu\iebid.htm
O8 - Extra context menu item: Open current page with BID Link Explorer - file://C:\Program Files\Bulk Image Downloader\iemenu\iebidlinkexplorer.htm
O9 - Extra button: Odeslat do OneNotu - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do OneNotu - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra button: Volání kliknutím v Lyncu - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\Office15\OCHelper.dll
O9 - Extra 'Tools' menuitem: Volání kliknutím v Lyncu - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\Office15\OCHelper.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter hijack: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - Avast Software s.r.o. - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Avast Firewall (avast! Firewall) - Avast Software s.r.o. - C:\Program Files\AVAST Software\Avast\afwServ.exe
O23 - Service: AvastVBox COM Service (AvastVBoxSvc) - Avast Software - C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
O23 - Service: Disc Soft Lite Bus Service - Disc Soft Ltd - C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe
O23 - Service: FlexNet Licensing Service - Flexera Software LLC - C:\Program Files\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Service KMSELDI - Unknown owner - C:\Program Files\KMSpico\Service_KMS.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: Sony PC Companion - Avanquest Software - C:\Program Files\Sony\Sony PC Companion\PCCService.exe
--
End of file - 7885 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\tasks\APSnotifierPP1.job - C:\Program Files\AnyProtectEx\AnyProtect.exe --notifier 3A
C:\WINDOWS\tasks\APSnotifierPP2.job - C:\Program Files\AnyProtectEx\AnyProtect.exe --notifier 4
C:\WINDOWS\tasks\APSnotifierPP3.job - C:\Program Files\AnyProtectEx\AnyProtect.exe --notifier 6
C:\WINDOWS\tasks\BYAIAMUF.job - C:\Users\Maty�\AppData\Roaming\BYAIAMUF.exe /infocmdline=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
C:\WINDOWS\tasks\dcTl874qo6.job - C:\Users\Maty�\AppData\Roaming\dcTl874qo6.exe --c=IuLrxCdO7GXPLxG3Rplu9X/cbkLc0ZtzwNAdp/GPpW9JKV7J09FGJuh1IVm7oHVqKkLjjAj54SlxSwq1irOnjc/U9WrEnuekzc71EOAirZQhshoWKLrQFeW8R1KjKhjk93ls9kdhcbysAJPs54PeBhcloZxHm77ACp1Z9t1K9cASIzMQs0FTPQBVwrAhsVaaISjhHMBOg1gILv+McymLIK/8T+zkOvtbjjAQRjN8CX22AafSgGWHqq1rPcG9jI2B8Er9e9BltQwJKPOUcbSM2GJfTlSgOeYG5ZC0nSqEaZqNmzUS94Zhuksjl+8gvQL0gO5/1JOi9iPxJWni8i3F8g==
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\KrMbPZVnVux1h.job - C:\Users\Maty�\AppData\Roaming\KrMbPZVnVux1h.exe --c=Fq27MxVCBgSRGh4zh4pqfDhOBNbiO1UbBI6sJ6/OybiSXfSLdzWfi5pgGuSKNMDEuZA/8G2WwQ55xjTbEadD0wJFxlgV6Lcof2Rknu787JVOWd3R1E14VTN3pDRaVsseWdUIdV0YlG3mOqIDNpQjctt9S6WCDffACZXNqUeedJa+brnLtPrzEt6NPkgt+I9GD8soD2Jg5S60iF4oS9iDaXfcek5C3J2M5bJYtl3t8DCM2zDmHlY1GxolIqH3UIGu3GmpXdwpoJVC8umBSrBuAp+dO1MxYUOhguQBildgEfuXK2jU0nvegNnu+z3g+t0jAU+s3vtBaerKujIfRUmGpA==
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Skype for Business Browser Helper - C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2015-05-19 153768]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre1.8.0_40\bin\ssv.dll [2015-03-18 460712]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-06-24 565304]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~1\MIF5BA~1\Office15\GROOVEEX.DLL [2015-05-13 1729752]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre1.8.0_40\bin\jp2ssv.dll [2015-03-18 172968]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2012-11-16 641704]
"AMD AVT"=Cmd.exe /c start AMD Accelerated Video Transcoding device initialization /min C:\Program Files\AMD AVT\bin\kdbsync.exe aml []
"USBToolTip"=C:\PROGRA~1\Pinnacle\SHARED~1\Programs\USBTip\USBTip.exe [2007-02-20 199752]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2015-03-07 335232]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2015-06-24 5515496]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"BitTorrent"=C:\Users\Matyáš\AppData\Roaming\BitTorrent\BitTorrent.exe [2015-06-29 1999976]
"Spotify Web Helper"=C:\Users\Matyáš\AppData\Roaming\Spotify\SpotifyWebHelper.exe [2015-03-13 1959992]
"Sony PC Companion"=C:\Program Files\Sony\Sony PC Companion\PCCompanion.exe [2014-11-27 466144]
"Viber"=C:\Users\Matyáš\AppData\Local\Viber\Viber.exe [2015-02-25 776400]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\DTLite.exe [2015-03-31 4557552]
"Spotify"=C:\Users\Matyáš\AppData\Roaming\Spotify\spotify.exe [2015-03-13 6611512]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iaioi2c.sys]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"SoftwareSASGeneration"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.yuy2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"vidc.cvid"=iccvid.dll
"vidc.yvyu"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"vidc.uyvy"=msyuv.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2015-06-30 15:12:16 ----D---- C:\rsit
2015-06-30 15:12:16 ----D---- C:\Program Files\trend micro
2015-06-30 15:05:55 ----HD---- C:\$WINDOWS.~BT
2015-06-24 21:48:02 ----D---- C:\WINDOWS\system32\vbox
2015-06-24 21:40:15 ----D---- C:\Users\Matyáš\AppData\Roaming\AVAST Software
2015-06-24 21:35:50 ----A---- C:\WINDOWS\system32\drivers\aswVmm.sys
2015-06-24 21:35:50 ----A---- C:\WINDOWS\system32\drivers\aswStm.sys
2015-06-24 21:35:50 ----A---- C:\WINDOWS\system32\drivers\aswsp.sys
2015-06-24 21:35:50 ----A---- C:\WINDOWS\system32\drivers\aswSnx.sys
2015-06-24 21:35:50 ----A---- C:\WINDOWS\system32\drivers\aswRvrt.sys
2015-06-24 21:35:50 ----A---- C:\WINDOWS\system32\drivers\aswRdr2.sys
2015-06-24 21:35:50 ----A---- C:\WINDOWS\system32\drivers\aswMonFlt.sys
2015-06-24 21:35:50 ----A---- C:\WINDOWS\system32\drivers\aswKbd.sys
2015-06-24 21:35:50 ----A---- C:\WINDOWS\system32\drivers\aswHwid.sys
2015-06-24 21:35:40 ----A---- C:\WINDOWS\system32\aswBoot.exe
2015-06-24 21:35:24 ----A---- C:\WINDOWS\avastSS.scr
2015-06-24 21:34:14 ----A---- C:\WINDOWS\system32\drivers\aswNdisFlt.sys
2015-06-24 21:30:39 ----D---- C:\Program Files\AVAST Software
2015-06-24 21:29:12 ----D---- C:\ProgramData\AVAST Software
2015-06-16 23:00:25 ----D---- C:\Program Files\Racing Turtle
2015-06-16 22:54:13 ----D---- C:\ProgramData\regid.2006-08.com.smartftp
2015-06-16 22:51:46 ----A---- C:\WINDOWS\system32\api-ms-win-crt-utility-l1-1-0.dll
2015-06-16 22:51:46 ----A---- C:\WINDOWS\system32\api-ms-win-crt-time-l1-1-0.dll
2015-06-16 22:51:46 ----A---- C:\WINDOWS\system32\api-ms-win-crt-string-l1-1-0.dll
2015-06-16 22:51:46 ----A---- C:\WINDOWS\system32\api-ms-win-crt-stdio-l1-1-0.dll
2015-06-16 22:51:46 ----A---- C:\WINDOWS\system32\api-ms-win-crt-runtime-l1-1-0.dll
2015-06-16 22:51:46 ----A---- C:\WINDOWS\system32\api-ms-win-crt-process-l1-1-0.dll
2015-06-16 22:51:46 ----A---- C:\WINDOWS\system32\api-ms-win-crt-multibyte-l1-1-0.dll
2015-06-16 22:51:46 ----A---- C:\WINDOWS\system32\api-ms-win-crt-locale-l1-1-0.dll
2015-06-16 22:51:46 ----A---- C:\WINDOWS\system32\api-ms-win-crt-heap-l1-1-0.dll
2015-06-16 22:51:46 ----A---- C:\WINDOWS\system32\api-ms-win-crt-filesystem-l1-1-0.dll
2015-06-16 22:51:46 ----A---- C:\WINDOWS\system32\api-ms-win-crt-environment-l1-1-0.dll
2015-06-16 22:51:46 ----A---- C:\WINDOWS\system32\api-ms-win-crt-convert-l1-1-0.dll
2015-06-16 22:51:46 ----A---- C:\WINDOWS\system32\api-ms-win-crt-conio-l1-1-0.dll
2015-06-16 22:51:45 ----A---- C:\WINDOWS\system32\ucrtbase.dll
2015-06-16 22:51:45 ----A---- C:\WINDOWS\system32\api-ms-win-crt-private-l1-1-0.dll
2015-06-16 22:51:45 ----A---- C:\WINDOWS\system32\api-ms-win-crt-math-l1-1-0.dll
2015-06-16 22:46:20 ----D---- C:\Users\Matyáš\AppData\Roaming\FileZilla
2015-06-16 22:45:44 ----D---- C:\Program Files\FileZilla FTP Client
2015-06-16 22:16:23 ----SHD---- C:\Users\Matyáš\AppData\Roaming\AnyProtectEx
2015-06-16 22:12:50 ----D---- C:\Program Files\62f75cf4-2258-44a0-87f2-611dd4d51e17
2015-06-16 22:11:19 ----A---- C:\WINDOWS\system32\roboot.exe
2015-06-16 22:11:03 ----D---- C:\Users\Matyáš\AppData\Roaming\systweak
2015-06-16 20:51:26 ----D---- C:\Users\Matyáš\AppData\Roaming\03000200-1434480686-0500-0006-000700080009
2015-06-16 20:51:14 ----D---- C:\Program Files\predm
2015-06-16 20:44:30 ----D---- C:\ProgramData\IHProtectUpDate
2015-06-16 20:44:12 ----D---- C:\ProgramData\WindowsMangerProtect
2015-06-16 20:44:10 ----A---- C:\WINDOWS\prleth.sys
2015-06-16 20:44:10 ----A---- C:\WINDOWS\hgfs.sys
2015-06-16 20:38:38 ----D---- C:\Program Files\globalUpdate
2015-06-16 20:11:39 ----D---- C:\Program Files\Seznam.cz
2015-06-16 20:08:52 ----D---- C:\Program Files\GUPlayer
2015-06-16 20:08:51 ----D---- C:\Users\Matyáš\AppData\Roaming\Seznam.cz
2015-06-16 16:17:14 ----D---- C:\Output
2015-06-13 18:54:49 ----D---- C:\Users\Matyáš\AppData\Roaming\Sublime Text 2
2015-06-09 20:45:46 ----A---- C:\WINDOWS\system32\authz.dll
2015-06-09 20:45:45 ----A---- C:\WINDOWS\system32\rgb9rast.dll
2015-06-09 20:42:52 ----A---- C:\WINDOWS\system32\tquery.dll
2015-06-09 20:42:52 ----A---- C:\WINDOWS\system32\SearchIndexer.exe
2015-06-09 20:42:52 ----A---- C:\WINDOWS\system32\mssrch.dll
2015-06-09 20:42:51 ----A---- C:\WINDOWS\system32\SearchProtocolHost.exe
2015-06-09 20:42:51 ----A---- C:\WINDOWS\system32\mssvp.dll
2015-06-09 20:42:51 ----A---- C:\WINDOWS\system32\mssph.dll
2015-06-09 20:42:17 ----AC---- C:\WINDOWS\system32\drivers\USBXHCI.SYS
2015-06-09 20:37:25 ----A---- C:\WINDOWS\system32\win32k.sys
2015-06-09 20:37:22 ----A---- C:\WINDOWS\system32\rastapi.dll
2015-06-09 20:37:20 ----A---- C:\WINDOWS\system32\invagent.dll
2015-06-09 20:37:20 ----A---- C:\WINDOWS\system32\generaltel.dll
2015-06-09 20:37:20 ----A---- C:\WINDOWS\system32\devinv.dll
2015-06-09 20:37:20 ----A---- C:\WINDOWS\system32\appraiser.dll
2015-06-09 20:37:20 ----A---- C:\WINDOWS\system32\aepic.dll
2015-06-09 20:37:20 ----A---- C:\WINDOWS\system32\aeinv.dll
2015-06-09 20:37:20 ----A---- C:\WINDOWS\system32\acmigration.dll
2015-06-09 20:37:19 ----A---- C:\WINDOWS\system32\aepdu.dll
2015-06-09 20:35:28 ----A---- C:\WINDOWS\system32\msftedit.dll
2015-06-09 20:35:25 ----A---- C:\WINDOWS\system32\mshtml.dll
2015-06-09 20:35:19 ----A---- C:\WINDOWS\system32\ieframe.dll
2015-06-09 20:35:18 ----A---- C:\WINDOWS\system32\wininet.dll
2015-06-09 20:35:18 ----A---- C:\WINDOWS\system32\jscript9.dll
2015-06-09 20:35:17 ----A---- C:\WINDOWS\system32\urlmon.dll
2015-06-09 20:35:17 ----A---- C:\WINDOWS\system32\jscript9diag.dll
2015-06-09 20:35:17 ----A---- C:\WINDOWS\system32\iertutil.dll
2015-06-09 20:35:16 ----A---- C:\WINDOWS\system32\vbscript.dll
2015-06-09 20:35:16 ----A---- C:\WINDOWS\system32\msfeeds.dll
2015-06-09 20:35:15 ----A---- C:\WINDOWS\system32\jscript.dll
2015-06-09 20:35:15 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2015-06-09 20:35:14 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2015-06-09 20:35:14 ----A---- C:\WINDOWS\system32\dxtrans.dll
2015-06-09 20:35:14 ----A---- C:\WINDOWS\system32\actxprxy.dll
2015-06-09 20:35:13 ----A---- C:\WINDOWS\system32\mshtmled.dll
2015-06-09 20:35:13 ----A---- C:\WINDOWS\system32\iepeers.dll
2015-06-09 20:35:12 ----A---- C:\WINDOWS\system32\inetcomm.dll
2015-06-09 20:34:12 ----A---- C:\WINDOWS\system32\UtcResources.dll
2015-06-09 20:34:12 ----A---- C:\WINDOWS\system32\diagtrack.dll
2015-06-09 20:32:25 ----A---- C:\WINDOWS\system32\UIAutomationCore.dll
2015-06-09 20:28:25 ----A---- C:\WINDOWS\system32\comctl32.dll
2015-06-09 20:28:21 ----A---- C:\WINDOWS\system32\puiobj.dll
2015-06-09 20:28:10 ----A---- C:\WINDOWS\system32\localspl.dll
2015-06-05 22:31:23 ----D---- C:\Program Files\xampp
2015-06-03 12:49:10 ----D---- C:\Program Files\Telerik
2015-06-03 12:42:33 ----D---- C:\ProgramData\Telerik
2015-06-03 12:41:05 ----D---- C:\Users\Matyáš\AppData\Roaming\Telerik
======List of files/folders modified in the last 1 month======
2015-06-30 15:12:16 ----D---- C:\Program Files
2015-06-30 15:11:49 ----D---- C:\WINDOWS\Prefetch
2015-06-30 15:00:52 ----D---- C:\WINDOWS\Temp
2015-06-30 14:59:08 ----D---- C:\WINDOWS\system32\Drivers
2015-06-30 14:13:10 ----D---- C:\WINDOWS\AppReadiness
2015-06-30 14:02:02 ----D---- C:\WINDOWS\system32\sru
2015-06-29 22:22:47 ----D---- C:\Users\Matyáš\AppData\Roaming\BitTorrent
2015-06-29 21:05:46 ----RD---- C:\WINDOWS\System32
2015-06-29 21:05:46 ----D---- C:\WINDOWS\inf
2015-06-29 21:05:46 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2015-06-29 20:12:21 ----D---- C:\Users\Matyáš\AppData\Roaming\DAEMON Tools Lite
2015-06-28 21:38:50 ----D---- C:\Users\Matyáš\AppData\Roaming\Spotify
2015-06-28 21:01:43 ----HD---- C:\Program Files\WindowsApps
2015-06-28 20:55:50 ----D---- C:\WINDOWS\system32\NDF
2015-06-28 20:15:34 ----D---- C:\WINDOWS\Microsoft.NET
2015-06-26 02:25:45 ----D---- C:\Users\Matyáš\AppData\Roaming\TS3Client
2015-06-25 23:07:01 ----SHD---- C:\WINDOWS\Installer
2015-06-25 23:06:58 ----SHD---- C:\Config.Msi
2015-06-25 23:06:58 ----D---- C:\Program Files\LogMeIn Hamachi
2015-06-25 23:05:04 ----SHD---- C:\System Volume Information
2015-06-25 18:28:11 ----D---- C:\WINDOWS\system32\Tasks
2015-06-25 18:28:10 ----D---- C:\WINDOWS\Tasks
2015-06-25 13:10:39 ----D---- C:\WINDOWS
2015-06-25 12:33:08 ----D---- C:\Program Files\AdDuplex
2015-06-24 21:36:40 ----D---- C:\WINDOWS\system32\DriverStore
2015-06-24 21:35:43 ----D---- C:\WINDOWS\WinSxS
2015-06-24 21:29:12 ----HD---- C:\ProgramData
2015-06-24 14:35:49 ----D---- C:\Users\Matyáš\AppData\Roaming\Ukolnicek
2015-06-24 12:04:28 ----D---- C:\WINDOWS\system32\config
2015-06-24 11:57:47 ----D---- C:\WINDOWS\CbsTemp
2015-06-23 10:33:48 ----D---- C:\Users\Matyáš\AppData\Roaming\Audacity
2015-06-20 05:02:45 ----A---- C:\WINDOWS\system32\FlashPlayerApp.exe
2015-06-19 17:46:10 ----D---- C:\WINDOWS\debug
2015-06-19 17:40:05 ----D---- C:\Users\Matyáš\AppData\Roaming\ViberPC
2015-06-16 22:54:29 ----D---- C:\Program Files\SmartFTP Client
2015-06-16 22:51:32 ----D---- C:\WINDOWS\SoftwareDistribution
2015-06-16 22:51:18 ----D---- C:\ProgramData\Package Cache
2015-06-16 22:21:23 ----D---- C:\Program Files\AMD APP
2015-06-16 20:51:52 ----D---- C:\WINDOWS\system32\drivers\etc
2015-06-16 20:21:49 ----D---- C:\Program Files\Mozilla Firefox
2015-06-14 00:46:28 ----RD---- C:\Users
2015-06-11 17:09:50 ----RSD---- C:\WINDOWS\assembly
2015-06-11 17:06:45 ----D---- C:\ProgramData\Microsoft Help
2015-06-10 19:45:58 ----D---- C:\WINDOWS\rescache
2015-06-10 00:07:57 ----RD---- C:\WINDOWS\ToastData
2015-06-10 00:07:55 ----D---- C:\WINDOWS\system32\CompatTel
2015-06-10 00:07:55 ----D---- C:\WINDOWS\system32\appraiser
2015-06-10 00:07:55 ----D---- C:\WINDOWS\PolicyDefinitions
2015-06-10 00:07:55 ----D---- C:\WINDOWS\apppatch
2015-06-10 00:07:54 ----D---- C:\WINDOWS\system32\cs-CZ
2015-06-10 00:07:54 ----D---- C:\Program Files\Internet Explorer
2015-06-10 00:06:04 ----A---- C:\WINDOWS\win.ini
2015-06-09 23:01:40 ----D---- C:\WINDOWS\system32\MRT
2015-06-09 21:26:02 ----A---- C:\WINDOWS\system32\MRT.exe
2015-06-09 20:07:08 ----D---- C:\WINDOWS\system32\catroot2
2015-06-08 11:07:06 ----SD---- C:\Users\Matyáš\AppData\Roaming\Microsoft
2015-06-03 12:56:45 ----D---- C:\Program Files\Microsoft SQL Server
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswNdisFlt;@oem68.inf,%AfwDescriptionFree%;Avast! Firewall Driver; C:\WINDOWS\system32\DRIVERS\aswNdisFlt.sys [2015-06-24 271248]
R0 aswRvrt;avast! Revert; C:\WINDOWS\system32\drivers\aswRvrt.sys [2015-06-24 49904]
R0 aswVmm;avast! VM Monitor; C:\WINDOWS\system32\drivers\aswVmm.sys [2015-06-24 209048]
R1 aswKbd;aswKbd; C:\WINDOWS\system32\drivers\aswKbd.sys [2015-06-24 26096]
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [2015-06-24 81728]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2015-06-24 787760]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2015-06-26 428120]
R1 vwififlt;@%SystemRoot%\System32\drivers\vwififlt.sys,-259; C:\WINDOWS\system32\DRIVERS\vwififlt.sys [2014-04-30 57344]
R2 aswHwid;avast! HardwareID; C:\WINDOWS\system32\drivers\aswHwid.sys [2015-06-24 24144]
R2 aswMonFlt;aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [2015-06-24 74976]
R2 aswStm;aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [2015-06-24 106912]
R2 giveio;giveio; \??\C:\WINDOWS\system32\giveio.sys [1996-04-03 5248]
R2 speedfan;speedfan; \??\C:\WINDOWS\system32\speedfan.sys [2012-12-29 24184]
R2 VBoxAswDrv;VBoxAsw Support Driver; \??\C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [2015-06-24 220752]
R3 amdkmdag;amdkmdag; C:\WINDOWS\system32\DRIVERS\atikmdag.sys [2012-06-19 10071040]
R3 amdkmdap;amdkmdap; C:\WINDOWS\system32\DRIVERS\atikmpag.sys [2012-06-19 290304]
R3 dtlitescsibus;@oem64.inf,%DTLITESCSIBUS.DeviceDesc%;DAEMON Tools Lite Virtual SCSI Bus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [2015-04-13 25104]
R3 MarvinBus;@oem12.inf,%MarvinBus.SVCDESC%;Pinnacle Marvin Bus; C:\WINDOWS\System32\drivers\MarvinBus.sys [2005-09-23 171520]
R3 netr73;@netr73.inf,%General.Service.DispName%;RT73 USB - ovladač rozšiřitelné karty pro bezdrátovou síť LAN; C:\WINDOWS\system32\DRIVERS\netr73.sys [2013-06-18 564800]
R3 SensorsSimulatorDriver;@oem6.inf,%WudfSensorsSimulatorDriverDisplayName%;UMDF Reflector service for SensorsSimulatorDriver; C:\WINDOWS\system32\DRIVERS\WUDFRd.sys [2014-10-29 190976]
R3 tap0901;@oem63.inf,%DeviceDescription%;TAP-Windows Adapter V9; C:\WINDOWS\system32\DRIVERS\tap0901.sys [2013-08-22 35288]
R3 ULI526X;@oem2.inf,%ULIPCI.Service.DispName%;ULi M526X 10/100 Ethernet Controller Driver; C:\WINDOWS\system32\DRIVERS\ULILAN32.SYS [2006-06-30 30720]
R3 vwifimp;@%SystemRoot%\System32\drivers\vwifimp.sys,-261; C:\WINDOWS\system32\DRIVERS\vwifimp.sys [2014-04-30 30720]
S3 ggflt;@oem62.inf,%SvcFltDesc%;SOMC USB Flash Driver Filter; C:\WINDOWS\System32\drivers\ggflt.sys [2015-02-24 13528]
S3 ggsomc;@oem62.inf,%SvcDesc%;SOMC USB Flash Driver; C:\WINDOWS\System32\drivers\ggsomc.sys [2015-02-24 26328]
S3 GPIO;@iaiogpio.inf,%GPIO.SVCDESC%;Intel SoC GPIO Controller Driver; C:\WINDOWS\System32\drivers\iaiogpio.sys [2013-07-23 22016]
S3 Hamachi;LogMeIn Hamachi Virtual Miniport); C:\WINDOWS\system32\DRIVERS\Hamdrv.sys [2015-03-30 37128]
S3 iaioi2c;@iaioi2c.inf,%Driver_Service.Desc%;Intel(R) Atom(TM) Processor I2C Controller Service; C:\WINDOWS\System32\drivers\iaioi2c.sys [2013-07-23 61936]
S3 WinUsb;@oem66.inf,%ServiceDesc%;WinUSB Driver; C:\WINDOWS\System32\drivers\WinUsb.sys [2013-08-22 64000]
S4 WinDivert1.1;WinDivert1.1; \??\C:\Program Files\KMSpico\WinDivert.sys [2015-01-20 30256]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2015-06-24 343336]
R2 avast! Firewall;Avast Firewall; C:\Program Files\AVAST Software\Avast\afwServ.exe [2015-06-24 107448]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\WINDOWS\System32\svchost.exe [2014-10-29 33088]
R2 SQLWriter;SQL Server VSS Writer; C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe [2014-02-21 114368]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2014-10-07 116648]
S2 IpOverUsbSvc;Windows Phone IP over USB Transport (IpOverUsbSvc); C:\Program Files\Common Files\Microsoft Shared\Phone Tools\CoreCon\11.0\bin\IpOverUsbSvc.exe [2014-04-17 22768]
S2 Service KMSELDI;Service KMSELDI; C:\Program Files\KMSpico\Service_KMS.exe [2013-12-11 1050904]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2014-12-11 315496]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2015-06-23 268464]
S3 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework\v4.0.30319\aspnet_rc.dll,-1; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2013-08-10 45664]
S3 AvastVBoxSvc;AvastVBox COM Service; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [2015-06-24 3207800]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2014-10-29 33088]
S3 c2wts;@%ProgramFiles%\Windows Identity Foundation\v3.5\c2wtsres.dll,-1000; C:\Program Files\Windows Identity Foundation\v3.5\c2wtshost.exe [2015-01-21 5632]
S3 Disc Soft Lite Bus Service;Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe [2015-03-31 1023728]
S3 FlexNet Licensing Service;FlexNet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService.exe [2015-02-15 1074480]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696]
S3 fussvc;Windows App Certification Kit Fast User Switching Utility Service; C:\Program Files\Windows Kits\8.1\App Certification Kit\fussvc.exe [2014-02-19 140800]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2014-10-07 116648]
S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2014-08-13 136120]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2012-12-08 150600]
S3 Sony PC Companion;Sony PC Companion; C:\Program Files\Sony\Sony PC Companion\PCCService.exe [2013-02-04 155824]
S3 Te.Service;Te.Service; C:\Program Files\Windows Kits\8.1\Testing\Runtimes\TAEF\Wex.Services.exe [2013-08-21 91136]
S3 VsEtwService120;Visual Studio ETW Event Collection Service; C:\Program Files\Microsoft Visual Studio 12.0\Common7\Packages\Debugger\Services\VsEtwService.exe [2014-07-23 73360]
-----------------EOF-----------------